Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosim o preventivnu kontrolu

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
stelinka
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 06 dub 2013 10:27

Prosim o preventivnu kontrolu

#1 Příspěvek od stelinka »

Logfile of random's system information tool 1.09 (written by random/random)
Run by Viera at 2013-04-06 11:23:08
Microsoft® Windows Vista™ Home Premium Service Pack 1
System drive C: has 25 GB (27%) free of 95 GB
Total RAM: 1916 MB (52% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:23:43, on 6. 4. 2013
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v8.00 (8.00.6001.19088)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\SiS VGA Utilities\SiSTray.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\AVG Secure Search\vprot.exe
C:\Program Files\SweetIM\Messenger\SweetIM.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Viera\Desktop\RSIT.exe
C:\Program Files\trend micro\Viera.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/fwlink/?linkid=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.facebook.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\14.2.0.1\AVG Secure Search_toolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\14.2.0.1\AVG Secure Search_toolbar.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SiSTray] %ProgramFiles%\SiS VGA Utilities\SiSTray.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [vProt] "C:\Program Files\AVG Secure Search\vprot.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Viera\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\14.2.0\ViProtocol.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: vToolbarUpdater14.2.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe

--
End of file - 5098 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3725892672-3043224248-1115301474-1000Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3725892672-3043224248-1115301474-1000UA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Viera\AppData\Roaming\Mozilla\Firefox\Profiles\j5a98b64.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "https://www.google.sk/"
prefs.js - "extensions.enabledItems" - "{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}:4.1, {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.9.3, {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, {AB2CE124-6272-4b12-94A9-7303C7397BD1}:4.2.0.5198, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.19"

"{20a82645-c095-46ed-80e3-08825760534b}"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"avg@toolbar"=C:\ProgramData\AVG Secure Search\FireFoxExt\14.2.0.1


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.6.602.180 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_6_602_180.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw_1168638.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin]
"Description"=
"Path"=C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\14.2.0\\npsitesafety.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.17.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.17.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@parallelgraphics.com/Cortona]
"Description"=Cortona VRML Plugin
"Path"=C:\Program Files\Common Files\ParallelGraphics\Cortona\npCortona.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{AB2CE124-6272-4b12-94A9-7303C7397BD1}
{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
npCortona.xpt

C:\Program Files\Mozilla Firefox\plugins\
exeImagine.IMD
np-mswmp.dll
npCortona.dll
npImagine.dll
npkimi.dll
NPOFF12.DLL
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files\Mozilla Firefox\searchplugins\
amazondotcom.xml
avg-secure-search.xml
bing.xml
eBay.xml
google.xml
twitter.xml
wikipedia.xml
yahoo.xml

C:\Users\Viera\AppData\Roaming\Mozilla\Firefox\Profiles\j5a98b64.default\extensions\
{20a82645-c095-46ed-80e3-08825760534b}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-12-18 66280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-03-13 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
AVG Security Toolbar - C:\Program Files\AVG Secure Search\14.2.0.1\AVG Secure Search_toolbar.dll [2013-02-19 1929392]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-03-13 170912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{95B7759C-8C7F-4BF1-B163-73684A933233} - AVG Security Toolbar - C:\Program Files\AVG Secure Search\14.2.0.1\AVG Secure Search_toolbar.dll [2013-02-19 1929392]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"SiSTray"=C:\Program Files\SiS VGA Utilities\SiSTray.exe [2007-08-24 552960]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-11-14 4706304]
"Skytel"=C:\Windows\Skytel.exe [2007-10-11 1826816]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui []
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2009-02-06 2021400]
"vProt"=C:\Program Files\AVG Secure Search\vprot.exe [2013-02-19 1151152]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]
"SweetIM"=C:\Program Files\SweetIM\Messenger\SweetIM.exe [2012-10-04 115032]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Facebook Update"=C:\Users\Viera\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-16 138096]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-21 202240]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2010-04-06 26102056]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0
"NoDriveTypeAutoRun"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0
"NoDriveTypeAutoRun"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"VIDC.DIVX"=divx.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-04-06 11:23:08 ----D---- C:\rsit
2013-03-13 06:19:05 ----A---- C:\Windows\system32\javaws.exe
2013-03-13 06:18:06 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2013-03-13 06:18:06 ----A---- C:\Windows\system32\javaw.exe
2013-03-13 06:18:06 ----A---- C:\Windows\system32\java.exe

======List of files/folders modified in the last 1 month======

2013-04-06 11:23:19 ----D---- C:\Windows\Prefetch
2013-04-06 11:23:12 ----D---- C:\Windows\temp
2013-04-06 11:23:09 ----D---- C:\Program Files\trend micro
2013-04-06 10:42:49 ----D---- C:\Users\Viera\AppData\Roaming\Skype
2013-04-06 10:01:00 ----SHD---- C:\System Volume Information
2013-04-06 09:47:24 ----D---- C:\Windows\System32
2013-04-06 09:47:24 ----D---- C:\Windows\inf
2013-04-06 09:47:24 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-04-06 09:41:09 ----D---- C:\Users\Viera\AppData\Roaming\skypePM
2013-04-05 14:06:06 ----D---- C:\Windows\system32\catroot2
2013-03-14 00:20:49 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-03-13 06:21:11 ----SHD---- C:\Windows\Installer
2013-03-13 06:17:15 ----A---- C:\Windows\system32\npdeployJava1.dllaa
2013-03-13 06:17:14 ----A---- C:\Windows\system32\deployJava1.dll
2013-03-13 06:17:02 ----D---- C:\Program Files\Java
2013-03-13 06:03:06 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-03-13 00:06:15 ----D---- C:\Program Files\Mozilla Firefox
2013-03-12 01:10:56 ----N---- C:\Windows\system32\MpSigStub.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx86.sys [2013-02-19 33112]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2009-02-06 106208]
R2 eamon;eamon; C:\Windows\system32\DRIVERS\eamon.sys [2009-02-06 113448]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2009-02-06 92800]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-11-14 2016920]
R3 RTL8187B;Realtek RTL8187B Wireless 802.11b/g 54Mbps USB 2.0 Network Adapter; C:\Windows\system32\DRIVERS\RTL8187B.sys [2010-03-31 350720]
R3 SiS6350;SiS6350; C:\Windows\system32\DRIVERS\SISGRKMD.sys [2007-08-24 452096]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSGB6.sys [2008-05-02 48128]
R3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2008-03-17 101632]
S3 KMWDFILTER;HIDUASDesc; C:\Windows\system32\DRIVERS\KMWDFILTER.sys [2008-10-09 17408]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2009-02-06 727720]
R2 vToolbarUpdater14.2.0;vToolbarUpdater14.2.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\14.2.0\ToolbarUpdater.exe [2013-02-19 968880]
S2 NOD32FiXTemDono;Eset Nod32 Boot; C:\Windows\system32\regedt32.exe [2006-11-02 9216]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-03-14 253656]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2009-02-06 20680]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-03-13 115608]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o preventivnu kontrolu

#2 Příspěvek od Márty84 »

Zdravim :)

:arrow: Odinstalujte AVG Secure Search

:arrow: Nainstalujte Service Pack 2. Neaktualizovany system je pozvanka pro havet :)

:arrow: Pak dejte novy log z RSIT
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

stelinka
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 06 dub 2013 10:27

Re: Prosim o preventivnu kontrolu

#3 Příspěvek od stelinka »

Aj ja vas zdravim :)
Posielam novy log po nainstalovani SP 2

Logfile of random's system information tool 1.09 (written by random/random)
Run by Viera at 2013-04-06 13:02:12
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 36 GB (38%) free of 95 GB
Total RAM: 1916 MB (40% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:02:41, on 6. 4. 2013
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.19088)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\SiS VGA Utilities\SiSTray.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\SweetIM\Messenger\SweetIM.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\Users\Viera\Desktop\RSIT.exe
C:\Program Files\trend micro\Viera.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/fwlink/?linkid=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.facebook.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SiSTray] %ProgramFiles%\SiS VGA Utilities\SiSTray.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Viera\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe

--
End of file - 4369 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3725892672-3043224248-1115301474-1000Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3725892672-3043224248-1115301474-1000UA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Viera\AppData\Roaming\Mozilla\Firefox\Profiles\j5a98b64.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "https://www.google.sk/"
prefs.js - "extensions.enabledItems" - "{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}:4.1, {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.9.3, {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, {AB2CE124-6272-4b12-94A9-7303C7397BD1}:4.2.0.5198, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.19"

"{20a82645-c095-46ed-80e3-08825760534b}"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.6.602.180 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_6_602_180.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw_1168638.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.17.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.17.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@parallelgraphics.com/Cortona]
"Description"=Cortona VRML Plugin
"Path"=C:\Program Files\Common Files\ParallelGraphics\Cortona\npCortona.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{AB2CE124-6272-4b12-94A9-7303C7397BD1}
{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
npCortona.xpt

C:\Program Files\Mozilla Firefox\plugins\
exeImagine.IMD
np-mswmp.dll
npCortona.dll
npImagine.dll
npkimi.dll
NPOFF12.DLL
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files\Mozilla Firefox\searchplugins\
amazondotcom.xml
bing.xml
eBay.xml
google.xml
twitter.xml
wikipedia.xml
yahoo.xml

C:\Users\Viera\AppData\Roaming\Mozilla\Firefox\Profiles\j5a98b64.default\extensions\
{20a82645-c095-46ed-80e3-08825760534b}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-12-18 66280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-03-13 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-03-13 170912]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"SiSTray"=C:\Program Files\SiS VGA Utilities\SiSTray.exe [2007-08-24 552960]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-11-14 4706304]
"Skytel"=C:\Windows\Skytel.exe [2007-10-11 1826816]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui []
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2009-02-06 2021400]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]
"SweetIM"=C:\Program Files\SweetIM\Messenger\SweetIM.exe [2012-10-04 115032]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Facebook Update"=C:\Users\Viera\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-16 138096]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-21 202240]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2010-04-06 26102056]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0
"NoDriveTypeAutoRun"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0
"NoDriveTypeAutoRun"=0
"BindDirectlyToPropertySetStorage"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"VIDC.DIVX"=divx.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-04-06 12:47:51 ----D---- C:\Windows\system32\eu-ES
2013-04-06 12:47:51 ----D---- C:\Windows\system32\ca-ES
2013-04-06 12:47:49 ----D---- C:\Windows\system32\vi-VN
2013-04-06 12:37:32 ----D---- C:\Windows\system32\SPReview
2013-04-06 12:22:27 ----A---- C:\Windows\system32\scavenge.dll
2013-04-06 12:22:09 ----A---- C:\Windows\system32\compcln.exe
2013-04-06 12:14:38 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2013-04-06 12:14:38 ----A---- C:\Windows\system32\SearchIndexer.exe
2013-04-06 12:14:38 ----A---- C:\Windows\system32\SearchFilterHost.exe
2013-04-06 12:14:38 ----A---- C:\Windows\system32\sdohlp.dll
2013-04-06 12:14:38 ----A---- C:\Windows\system32\rtffilt.dll
2013-04-06 12:14:38 ----A---- C:\Windows\system32\rsaenh.dll
2013-04-06 12:14:37 ----A---- C:\Windows\system32\samlib.dll
2013-04-06 12:14:37 ----A---- C:\Windows\system32\rpchttp.dll
2013-04-06 12:14:37 ----A---- C:\Windows\system32\rpcss.dll
2013-04-06 12:14:37 ----A---- C:\Windows\system32\riched20.dll
2013-04-06 12:14:37 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2013-04-06 12:14:37 ----A---- C:\Windows\system32\drivers\rmcast.sys
2013-04-06 12:14:36 ----A---- C:\Windows\system32\scrrun.dll
2013-04-06 12:14:36 ----A---- C:\Windows\system32\scansetting.dll
2013-04-06 12:14:35 ----A---- C:\Windows\system32\scksp.dll
2013-04-06 12:14:35 ----A---- C:\Windows\system32\SCardSvr.dll
2013-04-06 12:14:35 ----A---- C:\Windows\system32\samsrv.dll
2013-04-06 12:14:34 ----A---- C:\Windows\system32\scrobj.dll
2013-04-06 12:14:34 ----A---- C:\Windows\system32\scesrv.dll
2013-04-06 12:14:34 ----A---- C:\Windows\system32\scecli.dll
2013-04-06 12:14:31 ----A---- C:\Windows\system32\perfdisk.dll
2013-04-06 12:14:31 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2013-04-06 12:14:31 ----A---- C:\Windows\system32\pdh.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\PNPXAssoc.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\PnPutil.exe
2013-04-06 12:14:30 ----A---- C:\Windows\system32\PnPUnattend.exe
2013-04-06 12:14:30 ----A---- C:\Windows\system32\pnpui.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\pnidui.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\pcaui.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\p2psvc.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\P2PGraph.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\drivers\pciidex.sys
2013-04-06 12:14:30 ----A---- C:\Windows\system32\drivers\pciide.sys
2013-04-06 12:14:30 ----A---- C:\Windows\system32\drivers\pci.sys
2013-04-06 12:14:30 ----A---- C:\Windows\system32\drivers\partmgr.sys
2013-04-06 12:14:30 ----A---- C:\Windows\system32\drivers\pacer.sys
2013-04-06 12:14:29 ----A---- C:\Windows\system32\powercpl.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\pnpsetup.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\pidgenx.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\photowiz.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\drivers\portcls.sys
2013-04-06 12:14:28 ----A---- C:\Windows\system32\PkgMgr.exe
2013-04-06 12:14:28 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2013-04-06 12:14:28 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2013-04-06 12:14:28 ----A---- C:\Windows\system32\nslookup.exe
2013-04-06 12:14:28 ----A---- C:\Windows\system32\drivers\npfs.sys
2013-04-06 12:14:27 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-04-06 12:14:26 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2013-04-06 12:14:25 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2013-04-06 12:14:25 ----A---- C:\Windows\system32\nlhtml.dll
2013-04-06 12:14:24 ----A---- C:\Windows\system32\offfilt.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\osk.exe
2013-04-06 12:14:23 ----A---- C:\Windows\system32\oobefldr.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\onex.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\olepro32.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\oleprn.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\odbccp32.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\odbcconf.dll
2013-04-06 12:14:22 ----A---- C:\Windows\system32\ocsetup.exe
2013-04-06 12:14:22 ----A---- C:\Windows\system32\ntprint.dll
2013-04-06 12:14:22 ----A---- C:\Windows\system32\ntmarta.dll
2013-04-06 12:14:22 ----A---- C:\Windows\system32\drivers\nwifi.sys
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasmontr.dll
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasmans.dll
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasgcw.dll
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasdlg.dll
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasdial.exe
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasdiag.dll
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasapi32.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\rastapi.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\rasppp.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\rasplap.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\raschap.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\Query.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\drivers\rassstp.sys
2013-04-06 12:14:20 ----A---- C:\Windows\system32\drivers\raspppoe.sys
2013-04-06 12:14:19 ----A---- C:\Windows\system32\RelMon.dll
2013-04-06 12:14:19 ----A---- C:\Windows\system32\rekeywiz.exe
2013-04-06 12:14:19 ----A---- C:\Windows\system32\regsvc.dll
2013-04-06 12:14:19 ----A---- C:\Windows\system32\RacEngn.dll
2013-04-06 12:14:19 ----A---- C:\Windows\system32\qmgr.dll
2013-04-06 12:14:19 ----A---- C:\Windows\system32\qedit.dll
2013-04-06 12:14:18 ----A---- C:\Windows\system32\reg.exe
2013-04-06 12:14:18 ----A---- C:\Windows\system32\rdpencom.dll
2013-04-06 12:14:18 ----A---- C:\Windows\system32\drivers\rdbss.sys
2013-04-06 12:14:17 ----A---- C:\Windows\system32\regapi.dll
2013-04-06 12:14:17 ----A---- C:\Windows\system32\rdpwsx.dll
2013-04-06 12:14:17 ----A---- C:\Windows\system32\PresentationSettings.exe
2013-04-06 12:14:17 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2013-04-06 12:14:17 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2013-04-06 12:14:16 ----A---- C:\Windows\system32\prnntfy.dll
2013-04-06 12:14:16 ----A---- C:\Windows\system32\printui.dll
2013-04-06 12:14:16 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2013-04-06 12:14:16 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2013-04-06 12:14:15 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-04-06 12:14:15 ----A---- C:\Windows\system32\powrprof.dll
2013-04-06 12:14:14 ----A---- C:\Windows\system32\qdvd.dll
2013-04-06 12:14:14 ----A---- C:\Windows\system32\QAGENTRT.DLL
2013-04-06 12:14:14 ----A---- C:\Windows\system32\puiapi.dll
2013-04-06 12:14:13 ----A---- C:\Windows\system32\propsys.dll
2013-04-06 12:14:13 ----A---- C:\Windows\system32\propdefs.dll
2013-04-06 12:14:13 ----A---- C:\Windows\system32\profsvc.dll
2013-04-06 12:14:12 ----A---- C:\Windows\system32\psisdecd.dll
2013-04-06 12:14:12 ----A---- C:\Windows\system32\PSHED.DLL
2013-04-06 12:14:08 ----A---- C:\Windows\system32\sendmail.dll
2013-04-06 12:14:07 ----A---- C:\Windows\system32\shdocvw.dll
2013-04-06 12:14:06 ----A---- C:\Windows\system32\sethc.exe
2013-04-06 12:14:06 ----A---- C:\Windows\system32\services.exe
2013-04-06 12:14:05 ----A---- C:\Windows\system32\setupapi.dll
2013-04-06 12:13:56 ----A---- C:\Windows\system32\eapphost.dll
2013-04-06 12:13:56 ----A---- C:\Windows\system32\eappgnui.dll
2013-04-06 12:13:56 ----A---- C:\Windows\system32\drivers\ecache.sys
2013-04-06 12:13:53 ----A---- C:\Windows\system32\eappcfg.dll
2013-04-06 12:13:53 ----A---- C:\Windows\system32\eapp3hst.dll
2013-04-06 12:13:52 ----A---- C:\Windows\system32\EhStorAPI.dll
2013-04-06 12:13:52 ----A---- C:\Windows\system32\dsprop.dll
2013-04-06 12:13:52 ----A---- C:\Windows\system32\drivers\Dumpata.sys
2013-04-06 12:13:51 ----A---- C:\Windows\system32\ExplorerFrame.dll
2013-04-06 12:13:51 ----A---- C:\Windows\system32\evr.dll
2013-04-06 12:13:51 ----A---- C:\Windows\system32\eudcedit.exe
2013-04-06 12:13:51 ----A---- C:\Windows\system32\dwm.exe
2013-04-06 12:13:51 ----A---- C:\Windows\system32\dsound.dll
2013-04-06 12:13:51 ----A---- C:\Windows\system32\drivers\exfat.sys
2013-04-06 12:13:51 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-04-06 12:13:51 ----A---- C:\Windows\system32\drivers\dxg.sys
2013-04-06 12:13:51 ----A---- C:\Windows\explorer.exe
2013-04-06 12:13:50 ----A---- C:\Windows\system32\esent.dll
2013-04-06 12:13:49 ----A---- C:\Windows\system32\f3ahvoas.dll
2013-04-06 12:13:48 ----A---- C:\Windows\system32\es.dll
2013-04-06 12:13:48 ----A---- C:\Windows\system32\emdmgmt.dll
2013-04-06 12:13:48 ----A---- C:\Windows\system32\EhStorShell.dll
2013-04-06 12:13:48 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2013-04-06 12:13:48 ----A---- C:\Windows\system32\EhStorAuthn.dll
2013-04-06 12:13:47 ----A---- C:\Windows\system32\dimsroam.dll
2013-04-06 12:13:47 ----A---- C:\Windows\system32\diagperf.dll
2013-04-06 12:13:47 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2013-04-06 12:13:46 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2013-04-06 12:13:46 ----A---- C:\Windows\system32\drivers\disk.sys
2013-04-06 12:13:46 ----A---- C:\Windows\system32\diskraid.exe
2013-04-06 12:13:46 ----A---- C:\Windows\system32\diskpart.exe
2013-04-06 12:13:45 ----A---- C:\Windows\system32\dfsr.exe
2013-04-06 12:13:45 ----A---- C:\Windows\system32\devmgr.dll
2013-04-06 12:13:44 ----A---- C:\Windows\system32\dhcpcsvc.dll
2013-04-06 12:13:42 ----A---- C:\Windows\system32\dpapimig.exe
2013-04-06 12:13:42 ----A---- C:\Windows\system32\dot3svc.dll
2013-04-06 12:13:42 ----A---- C:\Windows\system32\dot3msm.dll
2013-04-06 12:13:42 ----A---- C:\Windows\system32\dot3cfg.dll
2013-04-06 12:13:41 ----A---- C:\Windows\system32\drvstore.dll
2013-04-06 12:13:39 ----A---- C:\Windows\system32\drvinst.exe
2013-04-06 12:13:39 ----A---- C:\Windows\system32\drmv2clt.dll
2013-04-06 12:13:39 ----A---- C:\Windows\system32\drmmgrtn.dll
2013-04-06 12:13:38 ----A---- C:\Windows\system32\dmusic.dll
2013-04-06 12:13:38 ----A---- C:\Windows\system32\dmsynth.dll
2013-04-06 12:13:37 ----A---- C:\Windows\system32\hbaapi.dll
2013-04-06 12:13:37 ----A---- C:\Windows\system32\gpresult.exe
2013-04-06 12:13:37 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2013-04-06 12:13:36 ----A---- C:\Windows\system32\gpsvc.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\iasnap.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\IasMigReader.exe
2013-04-06 12:13:35 ----A---- C:\Windows\system32\IasMigPlugin.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\iashlpr.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\iasdatastore.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\iasads.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\iasacct.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\gpupdate.exe
2013-04-06 12:13:34 ----A---- C:\Windows\system32\hidserv.dll
2013-04-06 12:13:34 ----A---- C:\Windows\system32\hdwwiz.exe
2013-04-06 12:13:34 ----A---- C:\Windows\system32\drivers\hidusb.sys
2013-04-06 12:13:34 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-04-06 12:13:33 ----A---- C:\Windows\system32\gpapi.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\gdi32.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fontext.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\findstr.exe
2013-04-06 12:13:33 ----A---- C:\Windows\system32\feclient.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdWSD.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdWCN.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdSSDP.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdProxy.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdeploy.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdBthProxy.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdBth.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fc.exe
2013-04-06 12:13:33 ----A---- C:\Windows\system32\Faultrep.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2013-04-06 12:13:33 ----A---- C:\Windows\system32\drivers\fastfat.sys
2013-04-06 12:13:31 ----A---- C:\Windows\system32\gpedit.dll
2013-04-06 12:13:30 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2013-04-06 12:13:30 ----A---- C:\Windows\system32\fundisc.dll
2013-04-06 12:13:30 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2013-04-06 12:13:30 ----A---- C:\Windows\system32\ftp.exe
2013-04-06 12:13:29 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2013-04-06 12:13:29 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-04-06 12:13:29 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-04-06 12:13:29 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\autochk.exe
2013-04-06 12:13:29 ----A---- C:\Windows\system32\authz.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\authui.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\audiosrv.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\AudioSes.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\audiodg.exe
2013-04-06 12:13:28 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2013-04-06 12:13:28 ----A---- C:\Windows\system32\autoplay.dll
2013-04-06 12:13:28 ----A---- C:\Windows\system32\autofmt.exe
2013-04-06 12:13:28 ----A---- C:\Windows\system32\autoconv.exe
2013-04-06 12:13:27 ----A---- C:\Windows\system32\drivers\atapi.sys
2013-04-06 12:13:27 ----A---- C:\Windows\system32\brcpl.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\drivers\bridge.sys
2013-04-06 12:13:26 ----A---- C:\Windows\system32\bthci.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\browseui.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\blackbox.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\bitsigd.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\BFE.DLL
2013-04-06 12:13:26 ----A---- C:\Windows\system32\bcrypt.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\basecsp.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\azroles.dll
2013-04-06 12:13:25 ----A---- C:\Windows\system32\drivers\acpi.sys
2013-04-06 12:13:25 ----A---- C:\Windows\system32\accessibilitycpl.dll
2013-04-06 12:13:23 ----A---- C:\Windows\system32\apphelp.dll
2013-04-06 12:13:23 ----A---- C:\Windows\system32\apds.dll
2013-04-06 12:13:22 ----A---- C:\Windows\system32\adsmsext.dll
2013-04-06 12:13:22 ----A---- C:\Windows\system32\adsldpc.dll
2013-04-06 12:13:21 ----A---- C:\Windows\system32\advapi32.dll
2013-04-06 12:13:21 ----A---- C:\Windows\system32\adtschema.dll
2013-04-06 12:13:20 ----A---- C:\Windows\system32\drivers\crashdmp.sys
2013-04-06 12:13:20 ----A---- C:\Windows\system32\crypt32.dll
2013-04-06 12:13:20 ----A---- C:\Windows\system32\credui.dll
2013-04-06 12:13:20 ----A---- C:\Windows\system32\conime.exe
2013-04-06 12:13:20 ----A---- C:\Windows\system32\comuid.dll
2013-04-06 12:13:20 ----A---- C:\Windows\system32\comsvcs.dll
2013-04-06 12:13:19 ----A---- C:\Windows\system32\connect.dll
2013-04-06 12:13:19 ----A---- C:\Windows\system32\cmdial32.dll
2013-04-06 12:13:18 ----A---- C:\Windows\system32\comdlg32.dll
2013-04-06 12:13:18 ----A---- C:\Windows\system32\cmmon32.exe
2013-04-06 12:13:17 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2013-04-06 12:13:17 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2013-04-06 12:13:17 ----A---- C:\Windows\system32\DevicePairing.dll
2013-04-06 12:13:17 ----A---- C:\Windows\system32\DeviceEject.exe
2013-04-06 12:13:17 ----A---- C:\Windows\system32\dbgeng.dll
2013-04-06 12:13:17 ----A---- C:\Windows\system32\davclnt.dll
2013-04-06 12:13:17 ----A---- C:\Windows\system32\dataclen.dll
2013-04-06 12:13:17 ----A---- C:\Windows\system32\d3d9.dll
2013-04-06 12:13:16 ----A---- C:\Windows\system32\cscdll.dll
2013-04-06 12:13:16 ----A---- C:\Windows\system32\cscapi.dll
2013-04-06 12:13:15 ----A---- C:\Windows\system32\csrstub.exe
2013-04-06 12:13:15 ----A---- C:\Windows\system32\cscript.exe
2013-04-06 12:13:15 ----A---- C:\Windows\system32\cryptui.dll
2013-04-06 12:13:15 ----A---- C:\Windows\system32\cryptsvc.dll
2013-04-06 12:13:14 ----A---- C:\Windows\system32\drivers\cdrom.sys
2013-04-06 12:13:14 ----A---- C:\Windows\system32\certmgr.dll
2013-04-06 12:13:14 ----A---- C:\Windows\system32\CertEnrollUI.dll
2013-04-06 12:13:14 ----A---- C:\Windows\system32\CertEnroll.dll
2013-04-06 12:13:14 ----A---- C:\Windows\system32\certcli.dll
2013-04-06 12:13:14 ----A---- C:\Windows\system32\cdd.dll
2013-04-06 12:13:13 ----A---- C:\Windows\system32\cbsra.exe
2013-04-06 12:13:13 ----A---- C:\Windows\system32\bthudtask.exe
2013-04-06 12:13:13 ----A---- C:\Windows\system32\bthserv.dll
2013-04-06 12:13:12 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2013-04-06 12:13:12 ----A---- C:\Windows\system32\chtbrkr.dll
2013-04-06 12:13:12 ----A---- C:\Windows\system32\chsbrkr.dll
2013-04-06 12:13:12 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2013-04-06 12:13:12 ----A---- C:\Windows\system32\clfs.sys
2013-04-06 12:13:12 ----A---- C:\Windows\system32\cipher.exe
2013-04-06 12:13:12 ----A---- C:\Windows\system32\ci.dll
2013-04-06 12:13:11 ----A---- C:\Windows\system32\certutil.exe
2013-04-06 12:13:11 ----A---- C:\Windows\system32\certreq.exe
2013-04-06 12:13:11 ----A---- C:\Windows\system32\certprop.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msihnd.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msiexec.exe
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msi.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msftedit.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msexch40.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msexcl40.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msdtctm.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\msimsg.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\msdtcprx.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\msctfui.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\msctfp.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\msctf.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\MPSSVC.dll
2013-04-06 12:13:08 ----A---- C:\Windows\system32\mprapi.dll
2013-04-06 12:13:08 ----A---- C:\Windows\system32\mpr.dll
2013-04-06 12:13:08 ----A---- C:\Windows\system32\modemui.dll
2013-04-06 12:13:08 ----A---- C:\Windows\system32\MMDevAPI.dll
2013-04-06 12:13:07 ----A---- C:\Windows\system32\mscories.dll
2013-04-06 12:13:07 ----A---- C:\Windows\system32\mscorier.dll
2013-04-06 12:13:07 ----A---- C:\Windows\system32\mscms.dll
2013-04-06 12:13:07 ----A---- C:\Windows\system32\mscandui.dll
2013-04-06 12:13:06 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2013-04-06 12:13:05 ----A---- C:\Windows\system32\netapi32.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\NetProjW.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\netplwiz.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\netlogon.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\netcenter.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\ncryptui.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\ncrypt.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\drivers\netio.sys
2013-04-06 12:13:04 ----A---- C:\Windows\system32\drivers\netbt.sys
2013-04-06 12:13:04 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2013-04-06 12:13:04 ----A---- C:\Windows\system32\drivers\ndis.sys
2013-04-06 12:13:03 ----A---- C:\Windows\system32\NcdProp.dll
2013-04-06 12:13:03 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2013-04-06 12:13:03 ----A---- C:\Windows\system32\mtxclu.dll
2013-04-06 12:13:03 ----A---- C:\Windows\system32\drivers\mup.sys
2013-04-06 12:13:01 ----A---- C:\Windows\system32\newdev.exe
2013-04-06 12:13:01 ----A---- C:\Windows\system32\newdev.dll
2013-04-06 12:13:01 ----A---- C:\Windows\system32\networkmap.dll
2013-04-06 12:13:01 ----A---- C:\Windows\system32\networkitemfactory.dll
2013-04-06 12:13:01 ----A---- C:\Windows\system32\networkexplorer.dll
2013-04-06 12:13:01 ----A---- C:\Windows\system32\netshell.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msscntrs.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msscb.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msrepl40.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msrd3x40.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msrd2x40.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\mspbde40.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msnetobj.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msltus40.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msimtf.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\drivers\msrpc.sys
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msvcp60.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msutb.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msjtes40.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msjter40.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msjint40.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msjetoledb40.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msjet40.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msisip.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msinfo32.exe
2013-04-06 12:12:59 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msxbde40.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mswstr10.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mswsock.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mswdat10.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\MSVidCtl.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msvcrt.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mstlsapi.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssvp.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msstrc.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssrch.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssprxy.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssphtb.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssph.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssitlb.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msshsq.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msshooks.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msscp.dll
2013-04-06 12:12:57 ----A---- C:\Windows\system32\mstext40.dll
2013-04-06 12:12:57 ----A---- C:\Windows\system32\InkEd.dll
2013-04-06 12:12:57 ----A---- C:\Windows\system32\infocardapi.dll
2013-04-06 12:12:57 ----A---- C:\Windows\system32\inetppui.dll
2013-04-06 12:12:57 ----A---- C:\Windows\system32\inetpp.dll
2013-04-06 12:12:55 ----A---- C:\Windows\system32\iscsilog.dll
2013-04-06 12:12:55 ----A---- C:\Windows\system32\ipsmsnap.dll
2013-04-06 12:12:55 ----A---- C:\Windows\system32\IPSECSVC.DLL
2013-04-06 12:12:55 ----A---- C:\Windows\system32\imm32.dll
2013-04-06 12:12:54 ----A---- C:\Windows\system32\ipsecsnp.dll
2013-04-06 12:12:54 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2013-04-06 12:12:54 ----A---- C:\Windows\system32\ipconfig.exe
2013-04-06 12:12:54 ----A---- C:\Windows\system32\input.dll
2013-04-06 12:12:53 ----A---- C:\Windows\system32\ifmon.dll
2013-04-06 12:12:53 ----A---- C:\Windows\system32\icardres.dll
2013-04-06 12:12:53 ----A---- C:\Windows\system32\icardagt.exe
2013-04-06 12:12:53 ----A---- C:\Windows\system32\iassvcs.dll
2013-04-06 12:12:53 ----A---- C:\Windows\system32\iassdo.dll
2013-04-06 12:12:52 ----A---- C:\Windows\system32\IMJP10K.DLL
2013-04-06 12:12:52 ----A---- C:\Windows\system32\imapi.dll
2013-04-06 12:12:52 ----A---- C:\Windows\system32\iassam.dll
2013-04-06 12:12:52 ----A---- C:\Windows\system32\iasrecst.dll
2013-04-06 12:12:52 ----A---- C:\Windows\system32\iasrad.dll
2013-04-06 12:12:52 ----A---- C:\Windows\system32\iaspolcy.dll
2013-04-06 12:12:51 ----A---- C:\Windows\system32\imapi2fs.dll
2013-04-06 12:12:51 ----A---- C:\Windows\system32\imapi2.dll
2013-04-06 12:12:51 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-04-06 12:12:48 ----A---- C:\Windows\system32\mfplat.dll
2013-04-06 12:12:47 ----A---- C:\Windows\system32\mimefilt.dll
2013-04-06 12:12:47 ----A---- C:\Windows\system32\milcore.dll
2013-04-06 12:12:46 ----A---- C:\Windows\system32\mmcndmgr.dll
2013-04-06 12:12:46 ----A---- C:\Windows\system32\mmcico.dll
2013-04-06 12:12:46 ----A---- C:\Windows\system32\mmci.dll
2013-04-06 12:12:46 ----A---- C:\Windows\system32\midimap.dll
2013-04-06 12:12:45 ----A---- C:\Windows\system32\mmc.exe
2013-04-06 12:12:43 ----A---- C:\Windows\system32\drivers\ks.sys
2013-04-06 12:12:40 ----A---- C:\Windows\system32\l2nacp.dll
2013-04-06 12:12:40 ----A---- C:\Windows\system32\korwbrkr.dll
2013-04-06 12:12:40 ----A---- C:\Windows\system32\kd1394.dll
2013-04-06 12:12:40 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2013-04-06 12:12:39 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2013-04-06 12:12:39 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2013-04-06 12:12:39 ----A---- C:\Windows\system32\mcmde.dll
2013-04-06 12:12:39 ----A---- C:\Windows\system32\mblctr.exe
2013-04-06 12:12:39 ----A---- C:\Windows\system32\kdusb.dll
2013-04-06 12:12:39 ----A---- C:\Windows\system32\kdcom.dll
2013-04-06 12:12:38 ----A---- C:\Windows\system32\Magnify.exe
2013-04-06 12:12:38 ----A---- C:\Windows\system32\logman.exe
2013-04-06 12:12:38 ----A---- C:\Windows\system32\logagent.exe
2013-04-06 12:12:37 ----A---- C:\Windows\system32\shsetup.dll
2013-04-06 12:12:36 ----A---- C:\Windows\system32\wercon.exe
2013-04-06 12:12:36 ----A---- C:\Windows\system32\wer.dll
2013-04-06 12:12:36 ----A---- C:\Windows\system32\WebClnt.dll
2013-04-06 12:12:36 ----A---- C:\Windows\system32\wdscore.dll
2013-04-06 12:12:35 ----A---- C:\Windows\system32\wdc.dll
2013-04-06 12:12:34 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-04-06 12:12:34 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-04-06 12:12:32 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2013-04-06 12:12:31 ----A---- C:\Windows\system32\wevtutil.exe
2013-04-06 12:12:30 ----A---- C:\Windows\system32\whealogr.dll
2013-04-06 12:12:30 ----A---- C:\Windows\system32\wevtsvc.dll
2013-04-06 12:12:29 ----A---- C:\Windows\system32\wevtapi.dll
2013-04-06 12:12:29 ----A---- C:\Windows\system32\wersvc.dll
2013-04-06 12:12:29 ----A---- C:\Windows\system32\WerFaultSecure.exe
2013-04-06 12:12:29 ----A---- C:\Windows\system32\WerFault.exe
2013-04-06 12:12:27 ----A---- C:\Windows\system32\win32spl.dll
2013-04-06 12:12:26 ----A---- C:\Windows\system32\wiaservc.dll
2013-04-06 12:12:26 ----A---- C:\Windows\system32\wiaaut.dll
2013-04-06 12:12:26 ----A---- C:\Windows\system32\version.dll
2013-04-06 12:12:26 ----A---- C:\Windows\system32\vds.exe
2013-04-06 12:12:26 ----A---- C:\Windows\system32\vdmdbg.dll
2013-04-06 12:12:25 ----A---- C:\Windows\system32\vdsutil.dll
2013-04-06 12:12:25 ----A---- C:\Windows\system32\vdsdyn.dll
2013-04-06 12:12:24 ----A---- C:\Windows\system32\uxsms.dll
2013-04-06 12:12:24 ----A---- C:\Windows\system32\Utilman.exe
2013-04-06 12:12:24 ----A---- C:\Windows\system32\user32.dll
2013-04-06 12:12:24 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2013-04-06 12:12:24 ----A---- C:\Windows\system32\drivers\usbport.sys
2013-04-06 12:12:24 ----A---- C:\Windows\system32\drivers\usbohci.sys
2013-04-06 12:12:22 ----A---- C:\Windows\system32\userenv.dll
2013-04-06 12:12:22 ----A---- C:\Windows\system32\usercpl.dll
2013-04-06 12:12:20 ----A---- C:\Windows\system32\wcncsvc.dll
2013-04-06 12:12:20 ----A---- C:\Windows\system32\drivers\watchdog.sys
2013-04-06 12:12:19 ----A---- C:\Windows\system32\wcnwiz2.dll
2013-04-06 12:12:19 ----A---- C:\Windows\system32\wcnwiz.dll
2013-04-06 12:12:19 ----A---- C:\Windows\system32\WcnNetsh.dll
2013-04-06 12:12:18 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2013-04-06 12:12:17 ----A---- C:\Windows\system32\w32time.dll
2013-04-06 12:12:17 ----A---- C:\Windows\system32\VSSVC.exe
2013-04-06 12:12:16 ----A---- C:\Windows\system32\vssapi.dll
2013-04-06 12:12:16 ----A---- C:\Windows\system32\drivers\volsnap.sys
2013-04-06 12:12:15 ----A---- C:\Windows\system32\wscisvif.dll
2013-04-06 12:12:15 ----A---- C:\Windows\system32\WscEapPr.dll
2013-04-06 12:12:15 ----A---- C:\Windows\system32\wscapi.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\WSDMon.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\wsdchngr.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\wscsvc.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\wscript.exe
2013-04-06 12:12:14 ----A---- C:\Windows\system32\wscntfy.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\wow32.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\WMVXENCD.DLL
2013-04-06 12:12:14 ----A---- C:\Windows\system32\WMVSDECD.DLL
2013-04-06 12:12:14 ----A---- C:\Windows\system32\WMVENCOD.DLL
2013-04-06 12:12:13 ----A---- C:\Windows\system32\xmlfilter.dll
2013-04-06 12:12:13 ----A---- C:\Windows\system32\wusa.exe
2013-04-06 12:12:13 ----A---- C:\Windows\system32\wpcsvc.dll
2013-04-06 12:12:13 ----A---- C:\Windows\system32\wpccpl.dll
2013-04-06 12:12:13 ----A---- C:\Windows\system32\wpcao.dll
2013-04-06 12:12:12 ----A---- C:\Windows\system32\wshext.dll
2013-04-06 12:12:12 ----A---- C:\Windows\system32\wshbth.dll
2013-04-06 12:12:12 ----A---- C:\Windows\system32\wsepno.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wsnmp32.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wlgpclnt.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\Wldap32.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wlanui.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wlanpref.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wlangpui.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wisptis.exe
2013-04-06 12:12:10 ----A---- C:\Windows\system32\WinSCard.dll
2013-04-06 12:12:10 ----A---- C:\Windows\system32\WinSAT.exe
2013-04-06 12:12:10 ----A---- C:\Windows\system32\winrnr.dll
2013-04-06 12:12:10 ----A---- C:\Windows\system32\winresume.exe
2013-04-06 12:12:10 ----A---- C:\Windows\system32\winmm.dll
2013-04-06 12:12:10 ----A---- C:\Windows\system32\winlogon.exe
2013-04-06 12:12:10 ----A---- C:\Windows\system32\winload.exe
2013-04-06 12:12:09 ----A---- C:\Windows\system32\WMPhoto.dll
2013-04-06 12:12:09 ----A---- C:\Windows\system32\wmpeffects.dll
2013-04-06 12:12:09 ----A---- C:\Windows\system32\WMNetMgr.dll
2013-04-06 12:12:08 ----A---- C:\Windows\system32\wmdrmsdk.dll
2013-04-06 12:12:07 ----A---- C:\Windows\system32\drivers\Storport.sys
2013-04-06 12:11:57 ----A---- C:\Windows\system32\Storprop.dll
2013-04-06 12:11:57 ----A---- C:\Windows\system32\stobject.dll
2013-04-06 12:11:57 ----A---- C:\Windows\system32\drivers\stream.sys
2013-04-06 12:11:56 ----A---- C:\Windows\system32\sud.dll
2013-04-06 12:11:55 ----A---- C:\Windows\system32\srchadmin.dll
2013-04-06 12:11:55 ----A---- C:\Windows\system32\srcore.dll
2013-04-06 12:11:54 ----A---- C:\Windows\system32\sysmain.dll
2013-04-06 12:11:54 ----A---- C:\Windows\system32\swprv.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\sysclass.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\SyncCenter.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\smss.exe
2013-04-06 12:11:53 ----A---- C:\Windows\system32\SMBHelperClass.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\slwmi.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\drivers\smb.sys
2013-04-06 12:11:52 ----A---- C:\Windows\system32\spp.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\spoolss.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\spinstall.exe
2013-04-06 12:11:52 ----A---- C:\Windows\system32\spcmsg.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SmiEngine.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\slwga.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLUINotify.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLUI.exe
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLsvc.exe
2013-04-06 12:11:52 ----A---- C:\Windows\system32\slmgr.vbs
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLLUA.exe
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLCommDlg.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\slcinst.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLCExt.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\slcc.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLC.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\shwebsvc.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\TSTheme.exe
2013-04-06 12:11:51 ----A---- C:\Windows\system32\sqlsrv32.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\spwizui.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\spwinsat.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\spreview.exe
2013-04-06 12:11:51 ----A---- C:\Windows\system32\sperror.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\softkbd.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\SnippingTool.exe
2013-04-06 12:11:51 ----A---- C:\Windows\system32\SndVol.exe
2013-04-06 12:11:51 ----A---- C:\Windows\system32\drivers\spsys.sys
2013-04-06 12:11:50 ----A---- C:\Windows\system32\TsWpfWrp.exe
2013-04-06 12:11:49 ----A---- C:\Windows\system32\drivers\udfs.sys
2013-04-06 12:11:48 ----A---- C:\Windows\system32\zipfldr.dll
2013-04-06 12:11:48 ----A---- C:\Windows\system32\untfs.dll
2013-04-06 12:11:48 ----A---- C:\Windows\system32\drivers\usbhub.sys
2013-04-06 12:11:48 ----A---- C:\Windows\system32\drivers\usbehci.sys
2013-04-06 12:11:48 ----A---- C:\Windows\system32\drivers\USBCAMD.sys
2013-04-06 12:11:48 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-04-06 12:11:47 ----A---- C:\Windows\system32\ulib.dll
2013-04-06 12:11:47 ----A---- C:\Windows\system32\uDWM.dll
2013-04-06 12:11:47 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2013-04-06 12:11:46 ----A---- C:\Windows\system32\umpnpmgr.dll
2013-04-06 12:11:46 ----A---- C:\Windows\system32\systemcpl.dll
2013-04-06 12:11:42 ----A---- C:\Windows\system32\tquery.dll
2013-04-06 12:11:41 ----A---- C:\Windows\system32\tcpmon.dll
2013-04-06 12:11:41 ----A---- C:\Windows\system32\tcpipcfg.dll
2013-04-06 12:11:40 ----A---- C:\Windows\system32\tapisrv.dll
2013-04-06 12:11:39 ----A---- C:\Windows\system32\termsrv.dll
2013-04-06 12:11:38 ----A---- C:\Windows\system32\themeui.dll
2013-04-06 12:11:38 ----A---- C:\Windows\system32\themecpl.dll
2013-04-06 12:11:38 ----A---- C:\Windows\system32\thawbrkr.dll
2013-04-06 12:11:38 ----A---- C:\Windows\system32\drivers\tdx.sys
2013-04-06 12:11:36 ----A---- C:\Windows\system32\drivers\termdd.sys
2013-04-06 11:23:08 ----D---- C:\rsit
2013-03-13 06:19:05 ----A---- C:\Windows\system32\javaws.exe
2013-03-13 06:18:06 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2013-03-13 06:18:06 ----A---- C:\Windows\system32\javaw.exe
2013-03-13 06:18:06 ----A---- C:\Windows\system32\java.exe

======List of files/folders modified in the last 1 month======

2013-04-06 13:02:39 ----RSD---- C:\Windows\assembly
2013-04-06 13:02:29 ----D---- C:\Program Files\trend micro
2013-04-06 13:02:17 ----D---- C:\Windows\temp
2013-04-06 13:01:29 ----D---- C:\Users\Viera\AppData\Roaming\Skype
2013-04-06 12:58:54 ----D---- C:\Windows\Prefetch
2013-04-06 12:58:42 ----D---- C:\Windows\Microsoft.NET
2013-04-06 12:58:12 ----D---- C:\Windows
2013-04-06 12:58:04 ----D---- C:\Windows\system32\catroot
2013-04-06 12:57:59 ----SHD---- C:\Boot
2013-04-06 12:57:06 ----D---- C:\Windows\inf
2013-04-06 12:53:09 ----D---- C:\Windows\System32
2013-04-06 12:49:50 ----D---- C:\Program Files\Windows Calendar
2013-04-06 12:49:50 ----D---- C:\Program Files\Movie Maker
2013-04-06 12:49:44 ----D---- C:\Program Files\Windows Sidebar
2013-04-06 12:49:44 ----D---- C:\Program Files\Windows Mail
2013-04-06 12:49:44 ----D---- C:\Program Files\Internet Explorer
2013-04-06 12:49:43 ----D---- C:\Program Files\Windows Photo Gallery
2013-04-06 12:49:43 ----D---- C:\Program Files\Windows Media Player
2013-04-06 12:49:43 ----D---- C:\Program Files\Windows Journal
2013-04-06 12:49:43 ----D---- C:\Program Files\Windows Collaboration
2013-04-06 12:49:38 ----D---- C:\Program Files\Common Files\System
2013-04-06 12:49:31 ----D---- C:\Windows\servicing
2013-04-06 12:49:31 ----D---- C:\Program Files\Windows Defender
2013-04-06 12:49:29 ----D---- C:\Windows\ehome
2013-04-06 12:49:11 ----D---- C:\Windows\IME
2013-04-06 12:49:10 ----D---- C:\Windows\system32\XPSViewer
2013-04-06 12:49:10 ----D---- C:\Windows\system32\lv-LV
2013-04-06 12:49:10 ----D---- C:\Windows\system32\hr-HR
2013-04-06 12:49:10 ----D---- C:\Windows\system32\et-EE
2013-04-06 12:49:10 ----D---- C:\Windows\system32\da-DK
2013-04-06 12:49:09 ----D---- C:\Windows\system32\sk-SK
2013-04-06 12:49:08 ----D---- C:\Windows\system32\ko-KR
2013-04-06 12:49:08 ----D---- C:\Windows\system32\en-US
2013-04-06 12:49:07 ----D---- C:\Windows\system32\it-IT
2013-04-06 12:49:07 ----D---- C:\Windows\system32\el-GR
2013-04-06 12:49:07 ----D---- C:\Windows\system32\de-DE
2013-04-06 12:49:06 ----D---- C:\Windows\system32\oobe
2013-04-06 12:49:06 ----D---- C:\Windows\system32\migration
2013-04-06 12:49:02 ----D---- C:\Windows\system32\sv-SE
2013-04-06 12:49:02 ----D---- C:\Windows\system32\ru-RU
2013-04-06 12:49:02 ----D---- C:\Windows\system32\fr-FR
2013-04-06 12:49:02 ----D---- C:\Windows\system32\AdvancedInstallers
2013-04-06 12:49:01 ----D---- C:\Windows\system32\SLUI
2013-04-06 12:49:01 ----D---- C:\Windows\system32\setup
2013-04-06 12:49:01 ----D---- C:\Windows\system32\pt-PT
2013-04-06 12:49:01 ----D---- C:\Windows\system32\hu-HU
2013-04-06 12:49:01 ----D---- C:\Windows\system32\he-IL
2013-04-06 12:49:01 ----D---- C:\Windows\system32\fi-FI
2013-04-06 12:49:01 ----D---- C:\Windows\system32\cs-CZ
2013-04-06 12:49:00 ----D---- C:\Windows\system32\zh-TW
2013-04-06 12:49:00 ----D---- C:\Windows\system32\zh-CN
2013-04-06 12:49:00 ----D---- C:\Windows\system32\uk-UA
2013-04-06 12:49:00 ----D---- C:\Windows\system32\sr-Latn-CS
2013-04-06 12:49:00 ----D---- C:\Windows\system32\sl-SI
2013-04-06 12:49:00 ----D---- C:\Windows\system32\ro-RO
2013-04-06 12:49:00 ----D---- C:\Windows\system32\pl-PL
2013-04-06 12:49:00 ----D---- C:\Windows\system32\manifeststore
2013-04-06 12:49:00 ----D---- C:\Windows\system32\ja-JP
2013-04-06 12:49:00 ----D---- C:\Windows\system32\es-ES
2013-04-06 12:49:00 ----D---- C:\Windows\system32\en
2013-04-06 12:49:00 ----D---- C:\Windows\system32\bg-BG
2013-04-06 12:48:58 ----D---- C:\Windows\system32\th-TH
2013-04-06 12:48:58 ----D---- C:\Windows\system32\drivers\sk-SK
2013-04-06 12:48:58 ----D---- C:\Windows\system32\drivers\en-US
2013-04-06 12:48:57 ----D---- C:\Windows\system32\tr-TR
2013-04-06 12:48:57 ----D---- C:\Windows\system32\drivers
2013-04-06 12:48:56 ----D---- C:\Windows\system32\wbem
2013-04-06 12:48:55 ----D---- C:\Windows\system32\nl-NL
2013-04-06 12:48:55 ----D---- C:\Windows\system32\nb-NO
2013-04-06 12:48:55 ----D---- C:\Windows\system32\lt-LT
2013-04-06 12:48:55 ----D---- C:\Windows\system32\ar-SA
2013-04-06 12:48:54 ----D---- C:\Windows\system32\migwiz
2013-04-06 12:48:53 ----D---- C:\Windows\system32\pt-BR
2013-04-06 12:47:59 ----RSD---- C:\Windows\Fonts
2013-04-06 12:47:58 ----D---- C:\Windows\AppPatch
2013-04-06 12:47:49 ----D---- C:\Windows\system32\Boot
2013-04-06 12:45:57 ----D---- C:\Windows\system32\drivers\UMDF
2013-04-06 12:45:18 ----D---- C:\Windows\system32\RTCOM
2013-04-06 12:39:36 ----D---- C:\Windows\Debug
2013-04-06 12:35:13 ----D---- C:\Windows\winsxs
2013-04-06 12:33:13 ----A---- C:\Windows\fonts\GlobalUserInterface.CompositeFont
2013-04-06 12:10:12 ----SHD---- C:\System Volume Information
2013-04-06 11:49:40 ----RD---- C:\Program Files
2013-04-06 11:49:38 ----D---- C:\Program Files\Common Files
2013-04-06 11:49:34 ----D---- C:\ProgramData
2013-04-06 09:47:24 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-04-06 09:41:09 ----D---- C:\Users\Viera\AppData\Roaming\skypePM
2013-04-05 14:06:06 ----D---- C:\Windows\system32\catroot2
2013-03-14 00:20:49 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-03-13 06:21:11 ----SHD---- C:\Windows\Installer
2013-03-13 06:17:15 ----A---- C:\Windows\system32\npdeployJava1.dll
2013-03-13 06:17:14 ----A---- C:\Windows\system32\deployJava1.dll
2013-03-13 06:17:02 ----D---- C:\Program Files\Java
2013-03-13 06:03:06 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-03-13 00:06:15 ----D---- C:\Program Files\Mozilla Firefox
2013-03-12 01:10:56 ----N---- C:\Windows\system32\MpSigStub.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2009-02-06 106208]
R2 eamon;eamon; C:\Windows\system32\DRIVERS\eamon.sys [2009-02-06 113448]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2009-02-06 92800]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-11-14 2016920]
R3 RTL8187B;Realtek RTL8187B Wireless 802.11b/g 54Mbps USB 2.0 Network Adapter; C:\Windows\system32\DRIVERS\RTL8187B.sys [2010-03-31 350720]
R3 SiS6350;SiS6350; C:\Windows\system32\DRIVERS\SISGRKMD.sys [2007-08-24 452096]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSGB6.sys [2008-05-02 48128]
R3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2008-03-17 101632]
S3 KMWDFILTER;HIDUASDesc; C:\Windows\system32\DRIVERS\KMWDFILTER.sys [2008-10-09 17408]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2009-02-06 727720]
S2 NOD32FiXTemDono;Eset Nod32 Boot; C:\Windows\system32\regedt32.exe [2006-11-02 9216]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-03-14 253656]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2009-02-06 20680]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-03-13 115608]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o preventivnu kontrolu

#4 Příspěvek od Márty84 »

Vyborne :thumbsup:


:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Prohledat a program zacne pracovat.
Az skonci, vyplivne na vas log (pokud ne, najdete ho zde C:\AdwCleaner[R?].txt ), ten mi sem zkopirujte.


:arrow: Udelejte !!!kompletni!!! kontrolu s MBAM http://forum.viry.cz/viewtopic.php?f=29&t=115222 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

stelinka
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 06 dub 2013 10:27

Re: Prosim o preventivnu kontrolu

#5 Příspěvek od stelinka »

prvy log:

# AdwCleaner v2.200 - Log vytvorený 06/04/2013 o 13:24:25
# Aktualizované 02/04/2013 Xplode
# Operaený systém : Windows Vista (TM) Home Premium Service Pack 2 (32 bits)
# Uživateľ : Viera - MAREK
# Spustený systém : Normálny
# Spustené z : C:\Users\Viera\Desktop\adwcleaner.exe
# Voľba [Prehľada?]


***** [Služby] *****


***** [Súbory / Adresáre] *****

Adresár Nájdené : C:\Program Files\SweetIM
Adresár Nájdené : C:\Program Files\sweetpacks bundle uninstaller
Adresár Nájdené : C:\ProgramData\ICQ\ICQToolbar
Adresár Nájdené : C:\ProgramData\SweetIM
Adresár Nájdené : C:\Users\Viera\AppData\Local\PackageAware
Adresár Nájdené : C:\Users\Viera\AppData\Local\Temp\avg@toolbar
Adresár Nájdené : C:\Users\Viera\AppData\LocalLow\AskToolbar
Adresár Nájdené : C:\Users\Viera\AppData\Roaming\Mozilla\Firefox\Profiles\j5a98b64.default\Conduit
Adresár Nájdené : C:\Users\Viera\AppData\Roaming\Mozilla\Firefox\Profiles\j5a98b64.default\FCTB
Adresár Nájdené : C:\Users\Viera\AppData\Roaming\OpenCandy
Adresár Nájdené : C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Adresár Nájdené : C:\Windows\Installer\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
Súbor Nájdené : C:\Users\Viera\AppData\Local\Temp\Uninstall.exe

***** [Registre] *****

Hodnota Nájdené : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]
Hodnota Nájdené : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SweetIM]
Kľúe Nájdené : HKCU\Software\AppDataLow\AskBarDis
Kľúe Nájdené : HKCU\Software\AppDataLow\AskToolbarInfo
Kľúe Nájdené : HKCU\Software\AppDataLow\Software\AskToolbar
Kľúe Nájdené : HKCU\Software\Ask.com
Kľúe Nájdené : HKCU\Software\IGearSettings
Kľúe Nájdené : HKCU\Software\IM
Kľúe Nájdené : HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Kľúe Nájdené : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
Kľúe Nájdené : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Kľúe Nájdené : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Kľúe Nájdené : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ICQToolbar
Kľúe Nájdené : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{055FD26D-3A88-4E15-963D-DC8493744B1D}
Kľúe Nájdené : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Kľúe Nájdené : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Kľúe Nájdené : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Kľúe Nájdené : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F25AF245-4A81-40DC-92F9-E9021F207706}
Kľúe Nájdené : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{055FD26D-3A88-4E15-963D-DC8493744B1D}
Kľúe Nájdené : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Kľúe Nájdené : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Kľúe Nájdené : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Kľúe Nájdené : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Kľúe Nájdené : HKCU\Software\WNLT
Kľúe Nájdené : HKCU\Software\XTTB00001
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\{5D723752-5899-47E8-99B4-62C824EF9E13}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\ICQ Service.exe
Kľúe Nájdené : HKLM\SOFTWARE\Classes\AppID\NCTAudioCDGrabber2.DLL
Kľúe Nájdené : HKLM\SOFTWARE\Classes\CLSID\{82AC53B4-164C-4B07-A016-437A8388B81A}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\CLSID\{A4A0CB15-8465-4F58-A7E5-73084EA2A064}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\CLSID\{CADAF6BE-BF50-4669-8BFD-C27BD4E6181B}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Kľúe Nájdené : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Kľúe Nájdené : HKLM\SOFTWARE\Classes\ICQToolBar.IEHook
Kľúe Nájdené : HKLM\SOFTWARE\Classes\ICQToolBar.IEHook.1
Kľúe Nájdené : HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Kľúe Nájdené : HKLM\Software\Classes\Installer\Features\B2FD9C0A5B9838449838816A28001F4B
Kľúe Nájdené : HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Kľúe Nájdené : HKLM\Software\Classes\Installer\Products\B2FD9C0A5B9838449838816A28001F4B
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{49C00A51-6E59-41FE-B3FA-2D2157FAD67B}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{6DFF5DBA-AE3A-46DB-B301-ECFFC6DB2982}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{A439801C-961D-452C-AB42-7848E9CBD289}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{DE34CD67-F1C8-4001-9A23-B8A68F63F377}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{F4EBB1E2-21F3-4786-8CF4-16EC5925867F}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils
Kľúe Nájdené : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils.1
Kľúe Nájdené : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator
Kľúe Nájdené : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator.1
Kľúe Nájdené : HKLM\SOFTWARE\Classes\sim-packages
Kľúe Nájdené : HKLM\SOFTWARE\Classes\ToolBand.XTTBPos00
Kľúe Nájdené : HKLM\SOFTWARE\Classes\ToolBand.XTTBPos00.1
Kľúe Nájdené : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\TypeLib\{4D3B167E-5FD8-4276-8FD7-9DF19C1E4D19}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Kľúe Nájdené : HKLM\SOFTWARE\Classes\XTTB00001.IEToolbar
Kľúe Nájdené : HKLM\SOFTWARE\Classes\XTTB00001.IEToolbar.1
Kľúe Nájdené : HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Kľúe Nájdené : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Kľúe Nájdené : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Scheduled Update for Ask Toolbar
Kľúe Nájdené : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\SweetIM.exe
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\427EA997C413D1D47907CBFC7B2DB432
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4318DF19719275242801CBE292063A4C
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75D5168E5E176C24981B4E5DBD991078
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8724E58E6C7D00C48A0D4F3345EB2C26
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB676B0E1B9EFA049B9F7DDDA9645734
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B31BBB0B825EDEF45AB0FE7099C68C81
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B471D8D7319336B4CA89374ED0D7B806
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC30043663AA2CA4DA1DAA9CA5FDCC75
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E1C820A74ED67374BA048B52CB3C3804
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FDC83385E6C239F4C876A77A37DF581D
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Kľúe Nájdené : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B2FD9C0A5B9838449838816A28001F4B
Kľúe Nájdené : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Kľúe Nájdené : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
Kľúe Nájdené : HKLM\Software\PrimoPDF\OpenCandy
Kľúe Nájdené : HKU\S-1-5-21-3725892672-3043224248-1115301474-1000\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
Kľúe Nájdené : HKU\S-1-5-21-3725892672-3043224248-1115301474-1000\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}

***** [Internetové prehliadaee] *****

-\\ Internet Explorer v8.0.6001.19088

[HKCU\Software\Microsoft\Internet Explorer\Main - ICQ Search] = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd

-\\ Mozilla Firefox v19.0.2 (en-US)

Súbor : C:\Users\Viera\AppData\Roaming\Mozilla\Firefox\Profiles\j5a98b64.default\prefs.js

Nájdené : user_pref("CT2438727.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Nájdené : user_pref("CT2438727.CTID", "CT2438727");
Nájdené : user_pref("CT2438727.CommunitiesChangesLastCheckTime", "0");
Nájdené : user_pref("CT2438727.CurrentServerDate", "5-2-2010");
Nájdené : user_pref("CT2438727.DialogsAlignMode", "LTR");
Nájdené : user_pref("CT2438727.FirstServerDate", "4-2-2010");
Nájdené : user_pref("CT2438727.FirstTime", true);
Nájdené : user_pref("CT2438727.FirstTimeFF3", true);
Nájdené : user_pref("CT2438727.GroupingInvalidateCache", false);
Nájdené : user_pref("CT2438727.GroupingLastCheckTime", "0");
Nájdené : user_pref("CT2438727.GroupingLastServerUpdateTime", "0");
Nájdené : user_pref("CT2438727.GroupingServerCheckInterval", 1440);
Nájdené : user_pref("CT2438727.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Nájdené : user_pref("CT2438727.Initialize", true);
Nájdené : user_pref("CT2438727.InitializeCommonPrefs", true);
Nájdené : user_pref("CT2438727.InstalledDate", "Thu Feb 04 2010 14:18:41 GMT+0100");
Nájdené : user_pref("CT2438727.InvalidateCache", false);
Nájdené : user_pref("CT2438727.IsGrouping", false);
Nájdené : user_pref("CT2438727.IsMulticommunity", false);
Nájdené : user_pref("CT2438727.IsOpenThankYouPage", true);
Nájdené : user_pref("CT2438727.IsOpenUninstallPage", true);
Nájdené : user_pref("CT2438727.LanguagePackLastCheckTime", "Thu Feb 04 2010 14:18:41 GMT+0100");
Nájdené : user_pref("CT2438727.LanguagePackReloadIntervalMM", 1440);
Nájdené : user_pref("CT2438727.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx[...]
Nájdené : user_pref("CT2438727.LastLogin_2.5.6.0", "Thu Feb 04 2010 22:18:49 GMT+0100");
Nájdené : user_pref("CT2438727.LatestVersion", "2.1.0.18");
Nájdené : user_pref("CT2438727.Locale", "en");
Nájdené : user_pref("CT2438727.LoginCache", 4);
Nájdené : user_pref("CT2438727.MCDetectTooltipHeight", "83");
Nájdené : user_pref("CT2438727.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Nájdené : user_pref("CT2438727.MCDetectTooltipWidth", "295");
Nájdené : user_pref("CT2438727.RadioLastCheckTime", "0");
Nájdené : user_pref("CT2438727.RadioLastUpdateIPServer", "0");
Nájdené : user_pref("CT2438727.RadioLastUpdateServer", "0");
Nájdené : user_pref("CT2438727.SHRINK_TOOLBAR", 1);
Nájdené : user_pref("CT2438727.SearchEngine", "Search||hxxp://search.conduit.com/Results.aspx?q=UCM_SEARCH_TER[...]
Nájdené : user_pref("CT2438727.SearchFromAddressBarIsInit", true);
Nájdené : user_pref("CT2438727.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT243[...]
Nájdené : user_pref("CT2438727.SearchInNewTabEnabled", true);
Nájdené : user_pref("CT2438727.SearchInNewTabIntervalMM", 1440);
Nájdené : user_pref("CT2438727.SearchInNewTabLastCheckTime", "Thu Feb 04 2010 14:18:49 GMT+0100");
Nájdené : user_pref("CT2438727.SearchInNewTabServiceUrl", "hxxp://hosting.conduit-services.com/newtab/?ctid=EB[...]
Nájdené : user_pref("CT2438727.SearchInNewTabUsageUrl", "hxxp://Usage.Hosting.conduit-services.com/UsageServic[...]
Nájdené : user_pref("CT2438727.SettingsCheckIntervalMin", 120);
Nájdené : user_pref("CT2438727.SettingsLastCheckTime", "Thu Feb 04 2010 18:33:21 GMT+0100");
Nájdené : user_pref("CT2438727.SettingsLastUpdate", "1265153145");
Nájdené : user_pref("CT2438727.ThirdPartyComponentsInterval", 504);
Nájdené : user_pref("CT2438727.ThirdPartyComponentsLastCheck", "Thu Feb 04 2010 14:18:25 GMT+0100");
Nájdené : user_pref("CT2438727.ThirdPartyComponentsLastUpdate", "1265153145");
Nájdené : user_pref("CT2438727.TrusteLinkUrl", "hxxp://www.truste.org/pvr.php?page=validate&softwareProgramId=[...]
Nájdené : user_pref("CT2438727.UserID", "UN41935510738917297");
Nájdené : user_pref("CT2438727.ValidationData_Toolbar", 2);
Nájdené : user_pref("CT2438727.alertChannelId", "832836");
Nájdené : user_pref("CT2438727.clientLogIsEnabled", true);
Nájdené : user_pref("CT2438727.clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asm[...]
Nájdené : user_pref("CT2438727.myStuffEnabled", true);
Nájdené : user_pref("CT2438727.myStuffPublihserMinWidth", 400);
Nájdené : user_pref("CT2438727.myStuffSearchUrl", "hxxp://search.conduit.com/Results.aspx?q=SEARCH_TERM&ctid=E[...]
Nájdené : user_pref("CT2438727.myStuffServiceIntervalMM", 1440);
Nájdené : user_pref("CT2438727.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?Co[...]
Nájdené : user_pref("CT2438727.uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/Reg[...]
Nájdené : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "hxxp://us.yhs.search.yahoo.com/avg/searc[...]
Nájdené : user_pref("CommunityToolbar.ToolbarsList", "CT2438727");
Nájdené : user_pref("CommunityToolbar.ToolbarsList2", "CT2438727");
Nájdené : user_pref("CommunityToolbar.alert.alertInfoInterval", 60);
Nájdené : user_pref("CommunityToolbar.alert.alertInfoLastCheckTime", "Thu Feb 04 2010 23:22:47 GMT+0100");
Nájdené : user_pref("CommunityToolbar.alert.clientsServerUrl", "hxxp://alert.client.conduit.com");
Nájdené : user_pref("CommunityToolbar.alert.locale", "en");
Nájdené : user_pref("CommunityToolbar.alert.loginIntervalMin", 1440);
Nájdené : user_pref("CommunityToolbar.alert.loginLastCheckTime", "Thu Feb 04 2010 14:18:25 GMT+0100");
Nájdené : user_pref("CommunityToolbar.alert.loginLastUpdateTime", "1234796400");
Nájdené : user_pref("CommunityToolbar.alert.messageShowTimeSec", 20);
Nájdené : user_pref("CommunityToolbar.alert.servicesServerUrl", "hxxp://alert.services.conduit.com");
Nájdené : user_pref("CommunityToolbar.alert.showTrayIcon", false);
Nájdené : user_pref("CommunityToolbar.alert.userCloseIntervalMin", 300);
Nájdené : user_pref("CommunityToolbar.alert.userId", "{0dccf228-08fa-4ff1-96f4-63553759f36b}");
Nájdené : user_pref("extensions.asktb.cbid", "QP");
Nájdené : user_pref("extensions.asktb.default-channel-url-mask", "hxxp://www.ask.com/web?q={query}&o={o}&l={l}[...]
Nájdené : user_pref("extensions.asktb.l", "dis");
Nájdené : user_pref("extensions.asktb.last-config-req", "1273490177155");
Nájdené : user_pref("extensions.asktb.locale", "en_US");
Nájdené : user_pref("extensions.asktb.o", "16188");
Nájdené : user_pref("extensions.asktb.options-lang", "en");
Nájdené : user_pref("extensions.asktb.options-locale", "US");
Nájdené : user_pref("extensions.asktb.qsrc", "2871");
Nájdené : user_pref("extensions.asktb.search-plugin-suggestions-url", "hxxp://ss.websearch.ask.com/query?qsrc=[...]
Nájdené : user_pref("extensions.asktb.search-suggestions-enabled", true);
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.AutoSearchEventData", "auto%20search");
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.ClearCacheDate", 3);
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.DNSCatch", true);
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.DisplayEULA", false);
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.DnsCatchEventData", "dns%20catch");
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.FirstLaunchShown", true);
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.LoadLayoutDate.62781", 3);
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.NewTabSearchEventData", "tab%20search");
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.ShowDescriptiveText", true);
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.ShowRecommendedOptions", true);
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.StateReportDate", "1362341386742");
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.TopRightSearchEventData", "top%20right%20search[...]
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.beforeInstallSaved", true);
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.beforeinstall.homepage", "hxxp%3A//www.google.s[...]
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.beforeinstall.search", "Google");
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.comp.search.2808538.width", "193");
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.customNewTab", false);
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.helpUsImprove", true);
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.hideOthers", false);
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.processAddrBar", true);
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.restoreSearch", false);
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.revision", "37");
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.searchHistory", true);
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.session", "BA84CF0AA3B4714FE49C829DE97D2857A299[...]
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.showFirstLaunchOptions", false);
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.tb_lang", "en");
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.tool_id", "62781");
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_id", "72070677");
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_key", "29d0abcbd68a822bf3fc29714a178ff56e2[...]
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_layouts", "62781");
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_lnames", "Gamers%20Unite%21%20Snag%20Bar")[...]
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.xml_service_url", "64e3a27980eeceb34248bc3e680b[...]
Nájdené : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.yahooSearch", false);
Nájdené : user_pref("icqtoolbar.allowSendURL", false);
Nájdené : user_pref("icqtoolbar.engineVerified", false);
Nájdené : user_pref("icqtoolbar.geolastmodified", 1266856818);
Nájdené : user_pref("icqtoolbar.hiddenElements", "itb_options");
Nájdené : user_pref("icqtoolbar.icqgeo", 44);
Nájdené : user_pref("icqtoolbar.installTime", "1266856819");
Nájdené : user_pref("icqtoolbar.installsource", "1");
Nájdené : user_pref("icqtoolbar.newtab_state", "1");
Nájdené : user_pref("icqtoolbar.numberOfSearches", 0);
Nájdené : user_pref("icqtoolbar.previousFFVersion", "3.5.8");
Nájdené : user_pref("icqtoolbar.skip_default_search", "yes");
Nájdené : user_pref("icqtoolbar.uniqueID", "126683884112668388411266856819026");
Nájdené : user_pref("icqtoolbar.usageStatstTimestamp", 1266856845);
Nájdené : user_pref("icqtoolbar.xmlLanguage", "sk");

-\\ Google Chrome v [Nemôžem získa? verziu]

Súbor : C:\Users\Viera\AppData\Local\Google\Chrome\User Data\Default\Preferences

Nájdené [l.1] : search_url ={"browser":{"ntp":{"promo_image_remaining":4,"promo_line_remaining":4}},"countryid_at_install":21323,"default_search_provider":{"id":"7","name":"ICQ Search","hxxp://search.icq.com/search/results/?q={searchTerms}&ch_id=icq-fx-plug","suggest_url":""},"download":{"directory_upgrade":true,"extensions_to_open":""},"extensions":{"autoupdate":{"next_check":"12913919095251794"},"settings":{"lmgbaoafnlapnaeilhggnhkiblingnbc":{"location":1,"manifest":{"browser_action":{"default_icon":"icon.png"},"content_scripts":[{"js":["script.js"],"matches":["hxxp://facebook.com/*","hxxp://*.facebook.com/*","hxxps://facebook.com/*","hxxps://*.facebook.com/*"],"run_at":"document_end"}],"description":"Manages farmville wall posts; accepts bonuses, grabs bouquets, adopts animals, hatches eggs, and more","key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCvc5ROBBn0KecmSCyTdkNC3bO5G8Y+dm9GLyGt5f1eQhxTFlffBujUMjZcYT1meCkh71t/TXZa1rfq8MKY8p0s5KjS3Xib5+Fr41ipgK1Rp+xc7nA6R+4jHM7XG6ay2KAjeKZmvokY8aGGMtnAcd0L9pHbRBKAOfKTiUQoVbBroQIDAQAB","name":"FarmVille Wall Manager","update_url":"hxxp://clients2.google.com/service/update2/crx","version":"1.2.176"},"path":"lmgbaoafnlapnaeilhggnhkiblingnbc\\1.2.176","state":1}}},"homepage":"","homepage_is_newtabpage":true,"ntp":{"most_visited_blacklist":{},"pinned_urls":{},"pref_version":1,"shown_sections":29,"tips_cache":{"current_tip":1,"tips":["Ak chcete hľadať webové stránky z panela s adresou, začnite zadávať webovú adresu stránok a po vyzvaní stlačte kláves <strong>Tab</strong>. Viac <a href=\"hxxp://www.google.com/support/chrome/bin/answe ... ip\">tipov na vyhľadávanie</a>."],"topic_id":"24013"},"tips_cache_update":"1269427127.957329","tips_server":"hxxps://clients2.google.com/tools/service/npredir?r=chrometips_win&hl=sk"},"profile":{"exited_cleanly":true,"id":"not-signed-in","name":"","nickname":""},"session":{"restore_on_startup":null,"urls_to_restore_on_startup":[]},"translate_site_blacklist":["www.facebook.com"]}

*************************

AdwCleaner[R1].txt - [29278 octets] - [06/04/2013 13:24:25]

########## EOF - C:\AdwCleaner[R1].txt - [29339 octets] ##########
a idem dalej

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o preventivnu kontrolu

#6 Příspěvek od Márty84 »

OK :)

Podle vysledku pak budem pokracovat.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

stelinka
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 06 dub 2013 10:27

Re: Prosim o preventivnu kontrolu

#7 Příspěvek od stelinka »

Malwarebytes Anti-Malware 1.70.0.1100
www.malwarebytes.org

Verze: v2013.04.06.03

Windows Vista Service Pack 2 x86 NTFS
Internet Explorer 8.0.6001.19088
Viera :: MAREK [administrátor]

6. 4. 2013 13:30:42
MBAM-log-2013-04-06 (15-27-18).txt

Typ: Kompletní kontrola (C:\|D:\|)
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 403251
Uplynulý čas: 1 hodin, 43 minut, 28 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 1
C:\Users\Viera\Downloads\setup2.1_withplugins.exe (PUP.GameBot) -> Nebyla provedena žádná instrukce.

(konec)

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o preventivnu kontrolu

#8 Příspěvek od Márty84 »

:arrow: Nalez MBAM nechte odstranit, pak MBAM odinstalujte.


:arrow: Znovu ukoncete vsechny programy a spustte AdwCleaner jako spravce.
Tentokrat kliknete na Smazat
Program zacne pracovat (muze dojit k restartu pc) a vyplivne dalsi log (pripadne bude zde C:\AdwCleaner [S1].txt ). Ten mi sem zase zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

stelinka
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 06 dub 2013 10:27

Re: Prosim o preventivnu kontrolu

#9 Příspěvek od stelinka »

Tu je ten log

# AdwCleaner v2.200 - Log vytvorený 06/04/2013 o 15:56:14
# Aktualizované 02/04/2013 Xplode
# Operaený systém : Windows Vista (TM) Home Premium Service Pack 2 (32 bits)
# Uživateľ : Viera - MAREK
# Spustený systém : Normálny
# Spustené z : C:\Users\Viera\Desktop\adwcleaner.exe
# Voľba [Vymaza?]


***** [Služby] *****


***** [Súbory / Adresáre] *****

Adresár Vymazané : C:\Program Files\sweetpacks bundle uninstaller
Adresár Vymazané : C:\ProgramData\ICQ\ICQToolbar
Adresár Vymazané : C:\ProgramData\SweetIM
Adresár Vymazané : C:\Users\Viera\AppData\Local\PackageAware
Adresár Vymazané : C:\Users\Viera\AppData\Local\Temp\avg@toolbar
Adresár Vymazané : C:\Users\Viera\AppData\LocalLow\AskToolbar
Adresár Vymazané : C:\Users\Viera\AppData\Roaming\Mozilla\Firefox\Profiles\j5a98b64.default\Conduit
Adresár Vymazané : C:\Users\Viera\AppData\Roaming\Mozilla\Firefox\Profiles\j5a98b64.default\FCTB
Adresár Vymazané : C:\Users\Viera\AppData\Roaming\OpenCandy
Adresár Vymazané : C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Adresár Vymazané : C:\Windows\Installer\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
Súbor Vymazané : C:\Users\Viera\AppData\Local\Temp\Uninstall.exe
Vymazané pri reštarte : C:\Program Files\SweetIM

***** [Registre] *****

Hodnota Vymazané : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]
Hodnota Vymazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SweetIM]
Kľúe Vymazané : HKCU\Software\AppDataLow\AskBarDis
Kľúe Vymazané : HKCU\Software\AppDataLow\AskToolbarInfo
Kľúe Vymazané : HKCU\Software\AppDataLow\Software\AskToolbar
Kľúe Vymazané : HKCU\Software\Ask.com
Kľúe Vymazané : HKCU\Software\IGearSettings
Kľúe Vymazané : HKCU\Software\IM
Kľúe Vymazané : HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Kľúe Vymazané : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E}
Kľúe Vymazané : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Kľúe Vymazané : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Kľúe Vymazané : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ICQToolbar
Kľúe Vymazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{055FD26D-3A88-4E15-963D-DC8493744B1D}
Kľúe Vymazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Kľúe Vymazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
Kľúe Vymazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Kľúe Vymazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F25AF245-4A81-40DC-92F9-E9021F207706}
Kľúe Vymazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{055FD26D-3A88-4E15-963D-DC8493744B1D}
Kľúe Vymazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Kľúe Vymazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Kľúe Vymazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Kľúe Vymazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Kľúe Vymazané : HKCU\Software\WNLT
Kľúe Vymazané : HKCU\Software\XTTB00001
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\{5D723752-5899-47E8-99B4-62C824EF9E13}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\ICQ Service.exe
Kľúe Vymazané : HKLM\SOFTWARE\Classes\AppID\NCTAudioCDGrabber2.DLL
Kľúe Vymazané : HKLM\SOFTWARE\Classes\CLSID\{82AC53B4-164C-4B07-A016-437A8388B81A}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\CLSID\{A4A0CB15-8465-4F58-A7E5-73084EA2A064}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\CLSID\{CADAF6BE-BF50-4669-8BFD-C27BD4E6181B}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Kľúe Vymazané : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Kľúe Vymazané : HKLM\SOFTWARE\Classes\ICQToolBar.IEHook
Kľúe Vymazané : HKLM\SOFTWARE\Classes\ICQToolBar.IEHook.1
Kľúe Vymazané : HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Kľúe Vymazané : HKLM\Software\Classes\Installer\Features\B2FD9C0A5B9838449838816A28001F4B
Kľúe Vymazané : HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Kľúe Vymazané : HKLM\Software\Classes\Installer\Products\B2FD9C0A5B9838449838816A28001F4B
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{49C00A51-6E59-41FE-B3FA-2D2157FAD67B}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{6DFF5DBA-AE3A-46DB-B301-ECFFC6DB2982}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{A439801C-961D-452C-AB42-7848E9CBD289}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{DE34CD67-F1C8-4001-9A23-B8A68F63F377}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{F4EBB1E2-21F3-4786-8CF4-16EC5925867F}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils
Kľúe Vymazané : HKLM\SOFTWARE\Classes\MediaPlayer.GraphicsUtils.1
Kľúe Vymazané : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator
Kľúe Vymazané : HKLM\SOFTWARE\Classes\MgMediaPlayer.GifAnimator.1
Kľúe Vymazané : HKLM\SOFTWARE\Classes\sim-packages
Kľúe Vymazané : HKLM\SOFTWARE\Classes\ToolBand.XTTBPos00
Kľúe Vymazané : HKLM\SOFTWARE\Classes\ToolBand.XTTBPos00.1
Kľúe Vymazané : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\TypeLib\{4D3B167E-5FD8-4276-8FD7-9DF19C1E4D19}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Kľúe Vymazané : HKLM\SOFTWARE\Classes\XTTB00001.IEToolbar
Kľúe Vymazané : HKLM\SOFTWARE\Classes\XTTB00001.IEToolbar.1
Kľúe Vymazané : HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Kľúe Vymazané : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Kľúe Vymazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\SweetIM.exe
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\427EA997C413D1D47907CBFC7B2DB432
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4318DF19719275242801CBE292063A4C
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75D5168E5E176C24981B4E5DBD991078
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8724E58E6C7D00C48A0D4F3345EB2C26
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB676B0E1B9EFA049B9F7DDDA9645734
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B31BBB0B825EDEF45AB0FE7099C68C81
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B471D8D7319336B4CA89374ED0D7B806
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC30043663AA2CA4DA1DAA9CA5FDCC75
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E1C820A74ED67374BA048B52CB3C3804
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FDC83385E6C239F4C876A77A37DF581D
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Kľúe Vymazané : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B2FD9C0A5B9838449838816A28001F4B
Kľúe Vymazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Kľúe Vymazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A0C9DF2B-89B5-4483-8983-18A68200F1B4}
Kľúe Vymazané : HKLM\Software\PrimoPDF\OpenCandy

***** [Internetové prehliadaee] *****

-\\ Internet Explorer v8.0.6001.19088

Zamenené : [HKCU\Software\Microsoft\Internet Explorer\Main - ICQ Search] = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd --> hxxp://www.google.com

-\\ Mozilla Firefox v19.0.2 (en-US)

Súbor : C:\Users\Viera\AppData\Roaming\Mozilla\Firefox\Profiles\j5a98b64.default\prefs.js

Vymazané : user_pref("CT2438727.AboutPrivacyUrl", "hxxp://www.conduit.com/privacy/Default.aspx");
Vymazané : user_pref("CT2438727.CTID", "CT2438727");
Vymazané : user_pref("CT2438727.CommunitiesChangesLastCheckTime", "0");
Vymazané : user_pref("CT2438727.CurrentServerDate", "5-2-2010");
Vymazané : user_pref("CT2438727.DialogsAlignMode", "LTR");
Vymazané : user_pref("CT2438727.FirstServerDate", "4-2-2010");
Vymazané : user_pref("CT2438727.FirstTime", true);
Vymazané : user_pref("CT2438727.FirstTimeFF3", true);
Vymazané : user_pref("CT2438727.GroupingInvalidateCache", false);
Vymazané : user_pref("CT2438727.GroupingLastCheckTime", "0");
Vymazané : user_pref("CT2438727.GroupingLastServerUpdateTime", "0");
Vymazané : user_pref("CT2438727.GroupingServerCheckInterval", 1440);
Vymazané : user_pref("CT2438727.GroupingServiceUrl", "hxxp://grouping.services.conduit.com/");
Vymazané : user_pref("CT2438727.Initialize", true);
Vymazané : user_pref("CT2438727.InitializeCommonPrefs", true);
Vymazané : user_pref("CT2438727.InstalledDate", "Thu Feb 04 2010 14:18:41 GMT+0100");
Vymazané : user_pref("CT2438727.InvalidateCache", false);
Vymazané : user_pref("CT2438727.IsGrouping", false);
Vymazané : user_pref("CT2438727.IsMulticommunity", false);
Vymazané : user_pref("CT2438727.IsOpenThankYouPage", true);
Vymazané : user_pref("CT2438727.IsOpenUninstallPage", true);
Vymazané : user_pref("CT2438727.LanguagePackLastCheckTime", "Thu Feb 04 2010 14:18:41 GMT+0100");
Vymazané : user_pref("CT2438727.LanguagePackReloadIntervalMM", 1440);
Vymazané : user_pref("CT2438727.LanguagePackServiceUrl", "hxxp://translation.users.conduit.com/Translation.ashx[...]
Vymazané : user_pref("CT2438727.LastLogin_2.5.6.0", "Thu Feb 04 2010 22:18:49 GMT+0100");
Vymazané : user_pref("CT2438727.LatestVersion", "2.1.0.18");
Vymazané : user_pref("CT2438727.Locale", "en");
Vymazané : user_pref("CT2438727.LoginCache", 4);
Vymazané : user_pref("CT2438727.MCDetectTooltipHeight", "83");
Vymazané : user_pref("CT2438727.MCDetectTooltipUrl", "hxxp://@EB_INSTALL_LINK@/rank/tooltip/?version=1");
Vymazané : user_pref("CT2438727.MCDetectTooltipWidth", "295");
Vymazané : user_pref("CT2438727.RadioLastCheckTime", "0");
Vymazané : user_pref("CT2438727.RadioLastUpdateIPServer", "0");
Vymazané : user_pref("CT2438727.RadioLastUpdateServer", "0");
Vymazané : user_pref("CT2438727.SHRINK_TOOLBAR", 1);
Vymazané : user_pref("CT2438727.SearchEngine", "Search||hxxp://search.conduit.com/Results.aspx?q=UCM_SEARCH_TER[...]
Vymazané : user_pref("CT2438727.SearchFromAddressBarIsInit", true);
Vymazané : user_pref("CT2438727.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT243[...]
Vymazané : user_pref("CT2438727.SearchInNewTabEnabled", true);
Vymazané : user_pref("CT2438727.SearchInNewTabIntervalMM", 1440);
Vymazané : user_pref("CT2438727.SearchInNewTabLastCheckTime", "Thu Feb 04 2010 14:18:49 GMT+0100");
Vymazané : user_pref("CT2438727.SearchInNewTabServiceUrl", "hxxp://hosting.conduit-services.com/newtab/?ctid=EB[...]
Vymazané : user_pref("CT2438727.SearchInNewTabUsageUrl", "hxxp://Usage.Hosting.conduit-services.com/UsageServic[...]
Vymazané : user_pref("CT2438727.SettingsCheckIntervalMin", 120);
Vymazané : user_pref("CT2438727.SettingsLastCheckTime", "Thu Feb 04 2010 18:33:21 GMT+0100");
Vymazané : user_pref("CT2438727.SettingsLastUpdate", "1265153145");
Vymazané : user_pref("CT2438727.ThirdPartyComponentsInterval", 504);
Vymazané : user_pref("CT2438727.ThirdPartyComponentsLastCheck", "Thu Feb 04 2010 14:18:25 GMT+0100");
Vymazané : user_pref("CT2438727.ThirdPartyComponentsLastUpdate", "1265153145");
Vymazané : user_pref("CT2438727.TrusteLinkUrl", "hxxp://www.truste.org/pvr.php?page=validate&softwareProgramId=[...]
Vymazané : user_pref("CT2438727.UserID", "UN41935510738917297");
Vymazané : user_pref("CT2438727.ValidationData_Toolbar", 2);
Vymazané : user_pref("CT2438727.alertChannelId", "832836");
Vymazané : user_pref("CT2438727.clientLogIsEnabled", true);
Vymazané : user_pref("CT2438727.clientLogServiceUrl", "hxxp://clientlog.users.conduit.com/ClientDiagnostics.asm[...]
Vymazané : user_pref("CT2438727.myStuffEnabled", true);
Vymazané : user_pref("CT2438727.myStuffPublihserMinWidth", 400);
Vymazané : user_pref("CT2438727.myStuffSearchUrl", "hxxp://search.conduit.com/Results.aspx?q=SEARCH_TERM&ctid=E[...]
Vymazané : user_pref("CT2438727.myStuffServiceIntervalMM", 1440);
Vymazané : user_pref("CT2438727.myStuffServiceUrl", "hxxp://mystuff.conduit-services.com/MyStuffService.ashx?Co[...]
Vymazané : user_pref("CT2438727.uninstallLogServiceUrl", "hxxp://uninstall.users.conduit.com/Uninstall.asmx/Reg[...]
Vymazané : user_pref("CommunityToolbar.SearchFromAddressBarSavedUrl", "hxxp://us.yhs.search.yahoo.com/avg/searc[...]
Vymazané : user_pref("CommunityToolbar.ToolbarsList", "CT2438727");
Vymazané : user_pref("CommunityToolbar.ToolbarsList2", "CT2438727");
Vymazané : user_pref("CommunityToolbar.alert.alertInfoInterval", 60);
Vymazané : user_pref("CommunityToolbar.alert.alertInfoLastCheckTime", "Thu Feb 04 2010 23:22:47 GMT+0100");
Vymazané : user_pref("CommunityToolbar.alert.clientsServerUrl", "hxxp://alert.client.conduit.com");
Vymazané : user_pref("CommunityToolbar.alert.locale", "en");
Vymazané : user_pref("CommunityToolbar.alert.loginIntervalMin", 1440);
Vymazané : user_pref("CommunityToolbar.alert.loginLastCheckTime", "Thu Feb 04 2010 14:18:25 GMT+0100");
Vymazané : user_pref("CommunityToolbar.alert.loginLastUpdateTime", "1234796400");
Vymazané : user_pref("CommunityToolbar.alert.messageShowTimeSec", 20);
Vymazané : user_pref("CommunityToolbar.alert.servicesServerUrl", "hxxp://alert.services.conduit.com");
Vymazané : user_pref("CommunityToolbar.alert.showTrayIcon", false);
Vymazané : user_pref("CommunityToolbar.alert.userCloseIntervalMin", 300);
Vymazané : user_pref("CommunityToolbar.alert.userId", "{0dccf228-08fa-4ff1-96f4-63553759f36b}");
Vymazané : user_pref("extensions.asktb.cbid", "QP");
Vymazané : user_pref("extensions.asktb.default-channel-url-mask", "hxxp://www.ask.com/web?q={query}&o={o}&l={l}[...]
Vymazané : user_pref("extensions.asktb.l", "dis");
Vymazané : user_pref("extensions.asktb.last-config-req", "1273490177155");
Vymazané : user_pref("extensions.asktb.locale", "en_US");
Vymazané : user_pref("extensions.asktb.o", "16188");
Vymazané : user_pref("extensions.asktb.options-lang", "en");
Vymazané : user_pref("extensions.asktb.options-locale", "US");
Vymazané : user_pref("extensions.asktb.qsrc", "2871");
Vymazané : user_pref("extensions.asktb.search-plugin-suggestions-url", "hxxp://ss.websearch.ask.com/query?qsrc=[...]
Vymazané : user_pref("extensions.asktb.search-suggestions-enabled", true);
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.AutoSearchEventData", "auto%20search");
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.ClearCacheDate", 3);
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.DNSCatch", true);
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.DisplayEULA", false);
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.DnsCatchEventData", "dns%20catch");
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.FirstLaunchShown", true);
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.LoadLayoutDate.62781", 3);
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.NewTabSearchEventData", "tab%20search");
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.ShowDescriptiveText", true);
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.ShowRecommendedOptions", true);
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.StateReportDate", "1362341386742");
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.TopRightSearchEventData", "top%20right%20search[...]
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.beforeInstallSaved", true);
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.beforeinstall.homepage", "hxxp%3A//www.google.s[...]
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.beforeinstall.search", "Google");
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.comp.search.2808538.width", "193");
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.customNewTab", false);
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.helpUsImprove", true);
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.hideOthers", false);
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.processAddrBar", true);
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.restoreSearch", false);
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.revision", "37");
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.searchHistory", true);
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.session", "BA84CF0AA3B4714FE49C829DE97D2857A299[...]
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.showFirstLaunchOptions", false);
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.tb_lang", "en");
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.tool_id", "62781");
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_id", "72070677");
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_key", "29d0abcbd68a822bf3fc29714a178ff56e2[...]
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_layouts", "62781");
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_lnames", "Gamers%20Unite%21%20Snag%20Bar")[...]
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.xml_service_url", "64e3a27980eeceb34248bc3e680b[...]
Vymazané : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.yahooSearch", false);
Vymazané : user_pref("icqtoolbar.allowSendURL", false);
Vymazané : user_pref("icqtoolbar.engineVerified", false);
Vymazané : user_pref("icqtoolbar.geolastmodified", 1266856818);
Vymazané : user_pref("icqtoolbar.hiddenElements", "itb_options");
Vymazané : user_pref("icqtoolbar.icqgeo", 44);
Vymazané : user_pref("icqtoolbar.installTime", "1266856819");
Vymazané : user_pref("icqtoolbar.installsource", "1");
Vymazané : user_pref("icqtoolbar.newtab_state", "1");
Vymazané : user_pref("icqtoolbar.numberOfSearches", 0);
Vymazané : user_pref("icqtoolbar.previousFFVersion", "3.5.8");
Vymazané : user_pref("icqtoolbar.skip_default_search", "yes");
Vymazané : user_pref("icqtoolbar.uniqueID", "126683884112668388411266856819026");
Vymazané : user_pref("icqtoolbar.usageStatstTimestamp", 1266856845);
Vymazané : user_pref("icqtoolbar.xmlLanguage", "sk");

-\\ Google Chrome v [Nemôžem získa? verziu]

Súbor : C:\Users\Viera\AppData\Local\Google\Chrome\User Data\Default\Preferences

Vymazané [l.1] : search_url ={"browser":{"ntp":{"promo_image_remaining":4,"promo_line_remaining":4}},"countryid_at_install":21323[...]

*************************

AdwCleaner[R1].txt - [29409 octets] - [06/04/2013 13:24:25]
AdwCleaner[S1].txt - [27357 octets] - [06/04/2013 15:56:14]

########## EOF - C:\AdwCleaner[S1].txt - [27418 octets] ##########

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o preventivnu kontrolu

#10 Příspěvek od Márty84 »

Fajn, dejte sem novy log z RSIT
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

stelinka
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 06 dub 2013 10:27

Re: Prosim o preventivnu kontrolu

#11 Příspěvek od stelinka »

Logfile of random's system information tool 1.09 (written by random/random)
Run by Viera at 2013-04-06 16:03:31
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 36 GB (38%) free of 95 GB
Total RAM: 1916 MB (41% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:03:35, on 6. 4. 2013
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.19088)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\SiS VGA Utilities\SiSTray.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Windows\system32\conime.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Viera\Desktop\RSIT.exe
C:\Program Files\trend micro\Viera.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/fwlink/?linkid=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.facebook.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SiSTray] %ProgramFiles%\SiS VGA Utilities\SiSTray.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Viera\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe

--
End of file - 4310 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3725892672-3043224248-1115301474-1000Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3725892672-3043224248-1115301474-1000UA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Viera\AppData\Roaming\Mozilla\Firefox\Profiles\j5a98b64.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "https://www.google.sk/"
prefs.js - "extensions.enabledItems" - "{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}:4.1, {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.9.3, {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, {AB2CE124-6272-4b12-94A9-7303C7397BD1}:4.2.0.5198, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.19"

"{20a82645-c095-46ed-80e3-08825760534b}"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.6.602.180 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_6_602_180.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw_1168638.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.17.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.17.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@parallelgraphics.com/Cortona]
"Description"=Cortona VRML Plugin
"Path"=C:\Program Files\Common Files\ParallelGraphics\Cortona\npCortona.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{AB2CE124-6272-4b12-94A9-7303C7397BD1}
{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
npCortona.xpt

C:\Program Files\Mozilla Firefox\plugins\
exeImagine.IMD
np-mswmp.dll
npCortona.dll
npImagine.dll
npkimi.dll
NPOFF12.DLL
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files\Mozilla Firefox\searchplugins\
amazondotcom.xml
bing.xml
eBay.xml
google.xml
twitter.xml
wikipedia.xml
yahoo.xml

C:\Users\Viera\AppData\Roaming\Mozilla\Firefox\Profiles\j5a98b64.default\extensions\
{20a82645-c095-46ed-80e3-08825760534b}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-12-18 66280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-03-13 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-03-13 170912]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"SiSTray"=C:\Program Files\SiS VGA Utilities\SiSTray.exe [2007-08-24 552960]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-11-14 4706304]
"Skytel"=C:\Windows\Skytel.exe [2007-10-11 1826816]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui []
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2009-02-06 2021400]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Facebook Update"=C:\Users\Viera\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-16 138096]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-21 202240]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2010-04-06 26102056]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0
"NoDriveTypeAutoRun"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0
"NoDriveTypeAutoRun"=0
"BindDirectlyToPropertySetStorage"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"VIDC.DIVX"=divx.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-04-06 15:56:24 ----A---- C:\Windows\DeleteOnReboot.bat
2013-04-06 15:56:14 ----A---- C:\AdwCleaner[S1].txt
2013-04-06 13:28:44 ----D---- C:\Users\Viera\AppData\Roaming\Malwarebytes
2013-04-06 13:28:44 ----A---- C:\Windows\system32\drivers\mbamswissarmy.sys
2013-04-06 13:28:25 ----D---- C:\ProgramData\Malwarebytes
2013-04-06 13:24:25 ----A---- C:\AdwCleaner[R1].txt
2013-04-06 12:47:51 ----D---- C:\Windows\system32\eu-ES
2013-04-06 12:47:51 ----D---- C:\Windows\system32\ca-ES
2013-04-06 12:47:49 ----D---- C:\Windows\system32\vi-VN
2013-04-06 12:37:32 ----D---- C:\Windows\system32\SPReview
2013-04-06 12:22:27 ----A---- C:\Windows\system32\scavenge.dll
2013-04-06 12:22:09 ----A---- C:\Windows\system32\compcln.exe
2013-04-06 12:14:38 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2013-04-06 12:14:38 ----A---- C:\Windows\system32\SearchIndexer.exe
2013-04-06 12:14:38 ----A---- C:\Windows\system32\SearchFilterHost.exe
2013-04-06 12:14:38 ----A---- C:\Windows\system32\sdohlp.dll
2013-04-06 12:14:38 ----A---- C:\Windows\system32\rtffilt.dll
2013-04-06 12:14:38 ----A---- C:\Windows\system32\rsaenh.dll
2013-04-06 12:14:37 ----A---- C:\Windows\system32\samlib.dll
2013-04-06 12:14:37 ----A---- C:\Windows\system32\rpchttp.dll
2013-04-06 12:14:37 ----A---- C:\Windows\system32\rpcss.dll
2013-04-06 12:14:37 ----A---- C:\Windows\system32\riched20.dll
2013-04-06 12:14:37 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2013-04-06 12:14:37 ----A---- C:\Windows\system32\drivers\rmcast.sys
2013-04-06 12:14:36 ----A---- C:\Windows\system32\scrrun.dll
2013-04-06 12:14:36 ----A---- C:\Windows\system32\scansetting.dll
2013-04-06 12:14:35 ----A---- C:\Windows\system32\scksp.dll
2013-04-06 12:14:35 ----A---- C:\Windows\system32\SCardSvr.dll
2013-04-06 12:14:35 ----A---- C:\Windows\system32\samsrv.dll
2013-04-06 12:14:34 ----A---- C:\Windows\system32\scrobj.dll
2013-04-06 12:14:34 ----A---- C:\Windows\system32\scesrv.dll
2013-04-06 12:14:34 ----A---- C:\Windows\system32\scecli.dll
2013-04-06 12:14:31 ----A---- C:\Windows\system32\perfdisk.dll
2013-04-06 12:14:31 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2013-04-06 12:14:31 ----A---- C:\Windows\system32\pdh.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\PNPXAssoc.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\PnPutil.exe
2013-04-06 12:14:30 ----A---- C:\Windows\system32\PnPUnattend.exe
2013-04-06 12:14:30 ----A---- C:\Windows\system32\pnpui.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\pnidui.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\pcaui.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\p2psvc.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\P2PGraph.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\drivers\pciidex.sys
2013-04-06 12:14:30 ----A---- C:\Windows\system32\drivers\pciide.sys
2013-04-06 12:14:30 ----A---- C:\Windows\system32\drivers\pci.sys
2013-04-06 12:14:30 ----A---- C:\Windows\system32\drivers\partmgr.sys
2013-04-06 12:14:30 ----A---- C:\Windows\system32\drivers\pacer.sys
2013-04-06 12:14:29 ----A---- C:\Windows\system32\powercpl.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\pnpsetup.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\pidgenx.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\photowiz.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\drivers\portcls.sys
2013-04-06 12:14:28 ----A---- C:\Windows\system32\PkgMgr.exe
2013-04-06 12:14:28 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2013-04-06 12:14:28 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2013-04-06 12:14:28 ----A---- C:\Windows\system32\nslookup.exe
2013-04-06 12:14:28 ----A---- C:\Windows\system32\drivers\npfs.sys
2013-04-06 12:14:27 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-04-06 12:14:26 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2013-04-06 12:14:25 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2013-04-06 12:14:25 ----A---- C:\Windows\system32\nlhtml.dll
2013-04-06 12:14:24 ----A---- C:\Windows\system32\offfilt.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\osk.exe
2013-04-06 12:14:23 ----A---- C:\Windows\system32\oobefldr.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\onex.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\olepro32.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\oleprn.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\odbccp32.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\odbcconf.dll
2013-04-06 12:14:22 ----A---- C:\Windows\system32\ocsetup.exe
2013-04-06 12:14:22 ----A---- C:\Windows\system32\ntprint.dll
2013-04-06 12:14:22 ----A---- C:\Windows\system32\ntmarta.dll
2013-04-06 12:14:22 ----A---- C:\Windows\system32\drivers\nwifi.sys
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasmontr.dll
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasmans.dll
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasgcw.dll
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasdlg.dll
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasdial.exe
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasdiag.dll
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasapi32.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\rastapi.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\rasppp.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\rasplap.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\raschap.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\Query.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\drivers\rassstp.sys
2013-04-06 12:14:20 ----A---- C:\Windows\system32\drivers\raspppoe.sys
2013-04-06 12:14:19 ----A---- C:\Windows\system32\RelMon.dll
2013-04-06 12:14:19 ----A---- C:\Windows\system32\rekeywiz.exe
2013-04-06 12:14:19 ----A---- C:\Windows\system32\regsvc.dll
2013-04-06 12:14:19 ----A---- C:\Windows\system32\RacEngn.dll
2013-04-06 12:14:19 ----A---- C:\Windows\system32\qmgr.dll
2013-04-06 12:14:19 ----A---- C:\Windows\system32\qedit.dll
2013-04-06 12:14:18 ----A---- C:\Windows\system32\reg.exe
2013-04-06 12:14:18 ----A---- C:\Windows\system32\rdpencom.dll
2013-04-06 12:14:18 ----A---- C:\Windows\system32\drivers\rdbss.sys
2013-04-06 12:14:17 ----A---- C:\Windows\system32\regapi.dll
2013-04-06 12:14:17 ----A---- C:\Windows\system32\rdpwsx.dll
2013-04-06 12:14:17 ----A---- C:\Windows\system32\PresentationSettings.exe
2013-04-06 12:14:17 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2013-04-06 12:14:17 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2013-04-06 12:14:16 ----A---- C:\Windows\system32\prnntfy.dll
2013-04-06 12:14:16 ----A---- C:\Windows\system32\printui.dll
2013-04-06 12:14:16 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2013-04-06 12:14:16 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2013-04-06 12:14:15 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-04-06 12:14:15 ----A---- C:\Windows\system32\powrprof.dll
2013-04-06 12:14:14 ----A---- C:\Windows\system32\qdvd.dll
2013-04-06 12:14:14 ----A---- C:\Windows\system32\QAGENTRT.DLL
2013-04-06 12:14:14 ----A---- C:\Windows\system32\puiapi.dll
2013-04-06 12:14:13 ----A---- C:\Windows\system32\propsys.dll
2013-04-06 12:14:13 ----A---- C:\Windows\system32\propdefs.dll
2013-04-06 12:14:13 ----A---- C:\Windows\system32\profsvc.dll
2013-04-06 12:14:12 ----A---- C:\Windows\system32\psisdecd.dll
2013-04-06 12:14:12 ----A---- C:\Windows\system32\PSHED.DLL
2013-04-06 12:14:08 ----A---- C:\Windows\system32\sendmail.dll
2013-04-06 12:14:07 ----A---- C:\Windows\system32\shdocvw.dll
2013-04-06 12:14:06 ----A---- C:\Windows\system32\sethc.exe
2013-04-06 12:14:06 ----A---- C:\Windows\system32\services.exe
2013-04-06 12:14:05 ----A---- C:\Windows\system32\setupapi.dll
2013-04-06 12:13:56 ----A---- C:\Windows\system32\eapphost.dll
2013-04-06 12:13:56 ----A---- C:\Windows\system32\eappgnui.dll
2013-04-06 12:13:56 ----A---- C:\Windows\system32\drivers\ecache.sys
2013-04-06 12:13:53 ----A---- C:\Windows\system32\eappcfg.dll
2013-04-06 12:13:53 ----A---- C:\Windows\system32\eapp3hst.dll
2013-04-06 12:13:52 ----A---- C:\Windows\system32\EhStorAPI.dll
2013-04-06 12:13:52 ----A---- C:\Windows\system32\dsprop.dll
2013-04-06 12:13:52 ----A---- C:\Windows\system32\drivers\Dumpata.sys
2013-04-06 12:13:51 ----A---- C:\Windows\system32\ExplorerFrame.dll
2013-04-06 12:13:51 ----A---- C:\Windows\system32\evr.dll
2013-04-06 12:13:51 ----A---- C:\Windows\system32\eudcedit.exe
2013-04-06 12:13:51 ----A---- C:\Windows\system32\dwm.exe
2013-04-06 12:13:51 ----A---- C:\Windows\system32\dsound.dll
2013-04-06 12:13:51 ----A---- C:\Windows\system32\drivers\exfat.sys
2013-04-06 12:13:51 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-04-06 12:13:51 ----A---- C:\Windows\system32\drivers\dxg.sys
2013-04-06 12:13:51 ----A---- C:\Windows\explorer.exe
2013-04-06 12:13:50 ----A---- C:\Windows\system32\esent.dll
2013-04-06 12:13:49 ----A---- C:\Windows\system32\f3ahvoas.dll
2013-04-06 12:13:48 ----A---- C:\Windows\system32\es.dll
2013-04-06 12:13:48 ----A---- C:\Windows\system32\emdmgmt.dll
2013-04-06 12:13:48 ----A---- C:\Windows\system32\EhStorShell.dll
2013-04-06 12:13:48 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2013-04-06 12:13:48 ----A---- C:\Windows\system32\EhStorAuthn.dll
2013-04-06 12:13:47 ----A---- C:\Windows\system32\dimsroam.dll
2013-04-06 12:13:47 ----A---- C:\Windows\system32\diagperf.dll
2013-04-06 12:13:47 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2013-04-06 12:13:46 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2013-04-06 12:13:46 ----A---- C:\Windows\system32\drivers\disk.sys
2013-04-06 12:13:46 ----A---- C:\Windows\system32\diskraid.exe
2013-04-06 12:13:46 ----A---- C:\Windows\system32\diskpart.exe
2013-04-06 12:13:45 ----A---- C:\Windows\system32\dfsr.exe
2013-04-06 12:13:45 ----A---- C:\Windows\system32\devmgr.dll
2013-04-06 12:13:44 ----A---- C:\Windows\system32\dhcpcsvc.dll
2013-04-06 12:13:42 ----A---- C:\Windows\system32\dpapimig.exe
2013-04-06 12:13:42 ----A---- C:\Windows\system32\dot3svc.dll
2013-04-06 12:13:42 ----A---- C:\Windows\system32\dot3msm.dll
2013-04-06 12:13:42 ----A---- C:\Windows\system32\dot3cfg.dll
2013-04-06 12:13:41 ----A---- C:\Windows\system32\drvstore.dll
2013-04-06 12:13:39 ----A---- C:\Windows\system32\drvinst.exe
2013-04-06 12:13:39 ----A---- C:\Windows\system32\drmv2clt.dll
2013-04-06 12:13:39 ----A---- C:\Windows\system32\drmmgrtn.dll
2013-04-06 12:13:38 ----A---- C:\Windows\system32\dmusic.dll
2013-04-06 12:13:38 ----A---- C:\Windows\system32\dmsynth.dll
2013-04-06 12:13:37 ----A---- C:\Windows\system32\hbaapi.dll
2013-04-06 12:13:37 ----A---- C:\Windows\system32\gpresult.exe
2013-04-06 12:13:37 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2013-04-06 12:13:36 ----A---- C:\Windows\system32\gpsvc.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\iasnap.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\IasMigReader.exe
2013-04-06 12:13:35 ----A---- C:\Windows\system32\IasMigPlugin.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\iashlpr.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\iasdatastore.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\iasads.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\iasacct.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\gpupdate.exe
2013-04-06 12:13:34 ----A---- C:\Windows\system32\hidserv.dll
2013-04-06 12:13:34 ----A---- C:\Windows\system32\hdwwiz.exe
2013-04-06 12:13:34 ----A---- C:\Windows\system32\drivers\hidusb.sys
2013-04-06 12:13:34 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-04-06 12:13:33 ----A---- C:\Windows\system32\gpapi.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\gdi32.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fontext.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\findstr.exe
2013-04-06 12:13:33 ----A---- C:\Windows\system32\feclient.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdWSD.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdWCN.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdSSDP.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdProxy.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdeploy.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdBthProxy.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdBth.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fc.exe
2013-04-06 12:13:33 ----A---- C:\Windows\system32\Faultrep.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2013-04-06 12:13:33 ----A---- C:\Windows\system32\drivers\fastfat.sys
2013-04-06 12:13:31 ----A---- C:\Windows\system32\gpedit.dll
2013-04-06 12:13:30 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2013-04-06 12:13:30 ----A---- C:\Windows\system32\fundisc.dll
2013-04-06 12:13:30 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2013-04-06 12:13:30 ----A---- C:\Windows\system32\ftp.exe
2013-04-06 12:13:29 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2013-04-06 12:13:29 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-04-06 12:13:29 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-04-06 12:13:29 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\autochk.exe
2013-04-06 12:13:29 ----A---- C:\Windows\system32\authz.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\authui.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\audiosrv.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\AudioSes.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\audiodg.exe
2013-04-06 12:13:28 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2013-04-06 12:13:28 ----A---- C:\Windows\system32\autoplay.dll
2013-04-06 12:13:28 ----A---- C:\Windows\system32\autofmt.exe
2013-04-06 12:13:28 ----A---- C:\Windows\system32\autoconv.exe
2013-04-06 12:13:27 ----A---- C:\Windows\system32\drivers\atapi.sys
2013-04-06 12:13:27 ----A---- C:\Windows\system32\brcpl.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\drivers\bridge.sys
2013-04-06 12:13:26 ----A---- C:\Windows\system32\bthci.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\browseui.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\blackbox.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\bitsigd.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\BFE.DLL
2013-04-06 12:13:26 ----A---- C:\Windows\system32\bcrypt.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\basecsp.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\azroles.dll
2013-04-06 12:13:25 ----A---- C:\Windows\system32\drivers\acpi.sys
2013-04-06 12:13:25 ----A---- C:\Windows\system32\accessibilitycpl.dll
2013-04-06 12:13:23 ----A---- C:\Windows\system32\apphelp.dll
2013-04-06 12:13:23 ----A---- C:\Windows\system32\apds.dll
2013-04-06 12:13:22 ----A---- C:\Windows\system32\adsmsext.dll
2013-04-06 12:13:22 ----A---- C:\Windows\system32\adsldpc.dll
2013-04-06 12:13:21 ----A---- C:\Windows\system32\advapi32.dll
2013-04-06 12:13:21 ----A---- C:\Windows\system32\adtschema.dll
2013-04-06 12:13:20 ----A---- C:\Windows\system32\drivers\crashdmp.sys
2013-04-06 12:13:20 ----A---- C:\Windows\system32\crypt32.dll
2013-04-06 12:13:20 ----A---- C:\Windows\system32\credui.dll
2013-04-06 12:13:20 ----A---- C:\Windows\system32\conime.exe
2013-04-06 12:13:20 ----A---- C:\Windows\system32\comuid.dll
2013-04-06 12:13:20 ----A---- C:\Windows\system32\comsvcs.dll
2013-04-06 12:13:19 ----A---- C:\Windows\system32\connect.dll
2013-04-06 12:13:19 ----A---- C:\Windows\system32\cmdial32.dll
2013-04-06 12:13:18 ----A---- C:\Windows\system32\comdlg32.dll
2013-04-06 12:13:18 ----A---- C:\Windows\system32\cmmon32.exe
2013-04-06 12:13:17 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2013-04-06 12:13:17 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2013-04-06 12:13:17 ----A---- C:\Windows\system32\DevicePairing.dll
2013-04-06 12:13:17 ----A---- C:\Windows\system32\DeviceEject.exe
2013-04-06 12:13:17 ----A---- C:\Windows\system32\dbgeng.dll
2013-04-06 12:13:17 ----A---- C:\Windows\system32\davclnt.dll
2013-04-06 12:13:17 ----A---- C:\Windows\system32\dataclen.dll
2013-04-06 12:13:17 ----A---- C:\Windows\system32\d3d9.dll
2013-04-06 12:13:16 ----A---- C:\Windows\system32\cscdll.dll
2013-04-06 12:13:16 ----A---- C:\Windows\system32\cscapi.dll
2013-04-06 12:13:15 ----A---- C:\Windows\system32\csrstub.exe
2013-04-06 12:13:15 ----A---- C:\Windows\system32\cscript.exe
2013-04-06 12:13:15 ----A---- C:\Windows\system32\cryptui.dll
2013-04-06 12:13:15 ----A---- C:\Windows\system32\cryptsvc.dll
2013-04-06 12:13:14 ----A---- C:\Windows\system32\drivers\cdrom.sys
2013-04-06 12:13:14 ----A---- C:\Windows\system32\certmgr.dll
2013-04-06 12:13:14 ----A---- C:\Windows\system32\CertEnrollUI.dll
2013-04-06 12:13:14 ----A---- C:\Windows\system32\CertEnroll.dll
2013-04-06 12:13:14 ----A---- C:\Windows\system32\certcli.dll
2013-04-06 12:13:14 ----A---- C:\Windows\system32\cdd.dll
2013-04-06 12:13:13 ----A---- C:\Windows\system32\cbsra.exe
2013-04-06 12:13:13 ----A---- C:\Windows\system32\bthudtask.exe
2013-04-06 12:13:13 ----A---- C:\Windows\system32\bthserv.dll
2013-04-06 12:13:12 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2013-04-06 12:13:12 ----A---- C:\Windows\system32\chtbrkr.dll
2013-04-06 12:13:12 ----A---- C:\Windows\system32\chsbrkr.dll
2013-04-06 12:13:12 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2013-04-06 12:13:12 ----A---- C:\Windows\system32\clfs.sys
2013-04-06 12:13:12 ----A---- C:\Windows\system32\cipher.exe
2013-04-06 12:13:12 ----A---- C:\Windows\system32\ci.dll
2013-04-06 12:13:11 ----A---- C:\Windows\system32\certutil.exe
2013-04-06 12:13:11 ----A---- C:\Windows\system32\certreq.exe
2013-04-06 12:13:11 ----A---- C:\Windows\system32\certprop.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msihnd.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msiexec.exe
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msi.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msftedit.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msexch40.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msexcl40.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msdtctm.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\msimsg.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\msdtcprx.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\msctfui.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\msctfp.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\msctf.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\MPSSVC.dll
2013-04-06 12:13:08 ----A---- C:\Windows\system32\mprapi.dll
2013-04-06 12:13:08 ----A---- C:\Windows\system32\mpr.dll
2013-04-06 12:13:08 ----A---- C:\Windows\system32\modemui.dll
2013-04-06 12:13:08 ----A---- C:\Windows\system32\MMDevAPI.dll
2013-04-06 12:13:07 ----A---- C:\Windows\system32\mscories.dll
2013-04-06 12:13:07 ----A---- C:\Windows\system32\mscorier.dll
2013-04-06 12:13:07 ----A---- C:\Windows\system32\mscms.dll
2013-04-06 12:13:07 ----A---- C:\Windows\system32\mscandui.dll
2013-04-06 12:13:06 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2013-04-06 12:13:05 ----A---- C:\Windows\system32\netapi32.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\NetProjW.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\netplwiz.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\netlogon.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\netcenter.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\ncryptui.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\ncrypt.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\drivers\netio.sys
2013-04-06 12:13:04 ----A---- C:\Windows\system32\drivers\netbt.sys
2013-04-06 12:13:04 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2013-04-06 12:13:04 ----A---- C:\Windows\system32\drivers\ndis.sys
2013-04-06 12:13:03 ----A---- C:\Windows\system32\NcdProp.dll
2013-04-06 12:13:03 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2013-04-06 12:13:03 ----A---- C:\Windows\system32\mtxclu.dll
2013-04-06 12:13:03 ----A---- C:\Windows\system32\drivers\mup.sys
2013-04-06 12:13:01 ----A---- C:\Windows\system32\newdev.exe
2013-04-06 12:13:01 ----A---- C:\Windows\system32\newdev.dll
2013-04-06 12:13:01 ----A---- C:\Windows\system32\networkmap.dll
2013-04-06 12:13:01 ----A---- C:\Windows\system32\networkitemfactory.dll
2013-04-06 12:13:01 ----A---- C:\Windows\system32\networkexplorer.dll
2013-04-06 12:13:01 ----A---- C:\Windows\system32\netshell.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msscntrs.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msscb.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msrepl40.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msrd3x40.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msrd2x40.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\mspbde40.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msnetobj.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msltus40.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msimtf.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\drivers\msrpc.sys
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msvcp60.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msutb.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msjtes40.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msjter40.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msjint40.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msjetoledb40.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msjet40.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msisip.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msinfo32.exe
2013-04-06 12:12:59 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msxbde40.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mswstr10.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mswsock.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mswdat10.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\MSVidCtl.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msvcrt.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mstlsapi.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssvp.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msstrc.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssrch.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssprxy.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssphtb.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssph.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssitlb.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msshsq.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msshooks.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msscp.dll
2013-04-06 12:12:57 ----A---- C:\Windows\system32\mstext40.dll
2013-04-06 12:12:57 ----A---- C:\Windows\system32\InkEd.dll
2013-04-06 12:12:57 ----A---- C:\Windows\system32\infocardapi.dll
2013-04-06 12:12:57 ----A---- C:\Windows\system32\inetppui.dll
2013-04-06 12:12:57 ----A---- C:\Windows\system32\inetpp.dll
2013-04-06 12:12:55 ----A---- C:\Windows\system32\iscsilog.dll
2013-04-06 12:12:55 ----A---- C:\Windows\system32\ipsmsnap.dll
2013-04-06 12:12:55 ----A---- C:\Windows\system32\IPSECSVC.DLL
2013-04-06 12:12:55 ----A---- C:\Windows\system32\imm32.dll
2013-04-06 12:12:54 ----A---- C:\Windows\system32\ipsecsnp.dll
2013-04-06 12:12:54 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2013-04-06 12:12:54 ----A---- C:\Windows\system32\ipconfig.exe
2013-04-06 12:12:54 ----A---- C:\Windows\system32\input.dll
2013-04-06 12:12:53 ----A---- C:\Windows\system32\ifmon.dll
2013-04-06 12:12:53 ----A---- C:\Windows\system32\icardres.dll
2013-04-06 12:12:53 ----A---- C:\Windows\system32\icardagt.exe
2013-04-06 12:12:53 ----A---- C:\Windows\system32\iassvcs.dll
2013-04-06 12:12:53 ----A---- C:\Windows\system32\iassdo.dll
2013-04-06 12:12:52 ----A---- C:\Windows\system32\IMJP10K.DLL
2013-04-06 12:12:52 ----A---- C:\Windows\system32\imapi.dll
2013-04-06 12:12:52 ----A---- C:\Windows\system32\iassam.dll
2013-04-06 12:12:52 ----A---- C:\Windows\system32\iasrecst.dll
2013-04-06 12:12:52 ----A---- C:\Windows\system32\iasrad.dll
2013-04-06 12:12:52 ----A---- C:\Windows\system32\iaspolcy.dll
2013-04-06 12:12:51 ----A---- C:\Windows\system32\imapi2fs.dll
2013-04-06 12:12:51 ----A---- C:\Windows\system32\imapi2.dll
2013-04-06 12:12:51 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-04-06 12:12:48 ----A---- C:\Windows\system32\mfplat.dll
2013-04-06 12:12:47 ----A---- C:\Windows\system32\mimefilt.dll
2013-04-06 12:12:47 ----A---- C:\Windows\system32\milcore.dll
2013-04-06 12:12:46 ----A---- C:\Windows\system32\mmcndmgr.dll
2013-04-06 12:12:46 ----A---- C:\Windows\system32\mmcico.dll
2013-04-06 12:12:46 ----A---- C:\Windows\system32\mmci.dll
2013-04-06 12:12:46 ----A---- C:\Windows\system32\midimap.dll
2013-04-06 12:12:45 ----A---- C:\Windows\system32\mmc.exe
2013-04-06 12:12:43 ----A---- C:\Windows\system32\drivers\ks.sys
2013-04-06 12:12:40 ----A---- C:\Windows\system32\l2nacp.dll
2013-04-06 12:12:40 ----A---- C:\Windows\system32\korwbrkr.dll
2013-04-06 12:12:40 ----A---- C:\Windows\system32\kd1394.dll
2013-04-06 12:12:40 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2013-04-06 12:12:39 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2013-04-06 12:12:39 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2013-04-06 12:12:39 ----A---- C:\Windows\system32\mcmde.dll
2013-04-06 12:12:39 ----A---- C:\Windows\system32\mblctr.exe
2013-04-06 12:12:39 ----A---- C:\Windows\system32\kdusb.dll
2013-04-06 12:12:39 ----A---- C:\Windows\system32\kdcom.dll
2013-04-06 12:12:38 ----A---- C:\Windows\system32\Magnify.exe
2013-04-06 12:12:38 ----A---- C:\Windows\system32\logman.exe
2013-04-06 12:12:38 ----A---- C:\Windows\system32\logagent.exe
2013-04-06 12:12:37 ----A---- C:\Windows\system32\shsetup.dll
2013-04-06 12:12:36 ----A---- C:\Windows\system32\wercon.exe
2013-04-06 12:12:36 ----A---- C:\Windows\system32\wer.dll
2013-04-06 12:12:36 ----A---- C:\Windows\system32\WebClnt.dll
2013-04-06 12:12:36 ----A---- C:\Windows\system32\wdscore.dll
2013-04-06 12:12:35 ----A---- C:\Windows\system32\wdc.dll
2013-04-06 12:12:34 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-04-06 12:12:34 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-04-06 12:12:32 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2013-04-06 12:12:31 ----A---- C:\Windows\system32\wevtutil.exe
2013-04-06 12:12:30 ----A---- C:\Windows\system32\whealogr.dll
2013-04-06 12:12:30 ----A---- C:\Windows\system32\wevtsvc.dll
2013-04-06 12:12:29 ----A---- C:\Windows\system32\wevtapi.dll
2013-04-06 12:12:29 ----A---- C:\Windows\system32\wersvc.dll
2013-04-06 12:12:29 ----A---- C:\Windows\system32\WerFaultSecure.exe
2013-04-06 12:12:29 ----A---- C:\Windows\system32\WerFault.exe
2013-04-06 12:12:27 ----A---- C:\Windows\system32\win32spl.dll
2013-04-06 12:12:26 ----A---- C:\Windows\system32\wiaservc.dll
2013-04-06 12:12:26 ----A---- C:\Windows\system32\wiaaut.dll
2013-04-06 12:12:26 ----A---- C:\Windows\system32\version.dll
2013-04-06 12:12:26 ----A---- C:\Windows\system32\vds.exe
2013-04-06 12:12:26 ----A---- C:\Windows\system32\vdmdbg.dll
2013-04-06 12:12:25 ----A---- C:\Windows\system32\vdsutil.dll
2013-04-06 12:12:25 ----A---- C:\Windows\system32\vdsdyn.dll
2013-04-06 12:12:24 ----A---- C:\Windows\system32\uxsms.dll
2013-04-06 12:12:24 ----A---- C:\Windows\system32\Utilman.exe
2013-04-06 12:12:24 ----A---- C:\Windows\system32\user32.dll
2013-04-06 12:12:24 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2013-04-06 12:12:24 ----A---- C:\Windows\system32\drivers\usbport.sys
2013-04-06 12:12:24 ----A---- C:\Windows\system32\drivers\usbohci.sys
2013-04-06 12:12:22 ----A---- C:\Windows\system32\userenv.dll
2013-04-06 12:12:22 ----A---- C:\Windows\system32\usercpl.dll
2013-04-06 12:12:20 ----A---- C:\Windows\system32\wcncsvc.dll
2013-04-06 12:12:20 ----A---- C:\Windows\system32\drivers\watchdog.sys
2013-04-06 12:12:19 ----A---- C:\Windows\system32\wcnwiz2.dll
2013-04-06 12:12:19 ----A---- C:\Windows\system32\wcnwiz.dll
2013-04-06 12:12:19 ----A---- C:\Windows\system32\WcnNetsh.dll
2013-04-06 12:12:18 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2013-04-06 12:12:17 ----A---- C:\Windows\system32\w32time.dll
2013-04-06 12:12:17 ----A---- C:\Windows\system32\VSSVC.exe
2013-04-06 12:12:16 ----A---- C:\Windows\system32\vssapi.dll
2013-04-06 12:12:16 ----A---- C:\Windows\system32\drivers\volsnap.sys
2013-04-06 12:12:15 ----A---- C:\Windows\system32\wscisvif.dll
2013-04-06 12:12:15 ----A---- C:\Windows\system32\WscEapPr.dll
2013-04-06 12:12:15 ----A---- C:\Windows\system32\wscapi.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\WSDMon.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\wsdchngr.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\wscsvc.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\wscript.exe
2013-04-06 12:12:14 ----A---- C:\Windows\system32\wscntfy.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\wow32.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\WMVXENCD.DLL
2013-04-06 12:12:14 ----A---- C:\Windows\system32\WMVSDECD.DLL
2013-04-06 12:12:14 ----A---- C:\Windows\system32\WMVENCOD.DLL
2013-04-06 12:12:13 ----A---- C:\Windows\system32\xmlfilter.dll
2013-04-06 12:12:13 ----A---- C:\Windows\system32\wusa.exe
2013-04-06 12:12:13 ----A---- C:\Windows\system32\wpcsvc.dll
2013-04-06 12:12:13 ----A---- C:\Windows\system32\wpccpl.dll
2013-04-06 12:12:13 ----A---- C:\Windows\system32\wpcao.dll
2013-04-06 12:12:12 ----A---- C:\Windows\system32\wshext.dll
2013-04-06 12:12:12 ----A---- C:\Windows\system32\wshbth.dll
2013-04-06 12:12:12 ----A---- C:\Windows\system32\wsepno.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wsnmp32.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wlgpclnt.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\Wldap32.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wlanui.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wlanpref.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wlangpui.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wisptis.exe
2013-04-06 12:12:10 ----A---- C:\Windows\system32\WinSCard.dll
2013-04-06 12:12:10 ----A---- C:\Windows\system32\WinSAT.exe
2013-04-06 12:12:10 ----A---- C:\Windows\system32\winrnr.dll
2013-04-06 12:12:10 ----A---- C:\Windows\system32\winresume.exe
2013-04-06 12:12:10 ----A---- C:\Windows\system32\winmm.dll
2013-04-06 12:12:10 ----A---- C:\Windows\system32\winlogon.exe
2013-04-06 12:12:10 ----A---- C:\Windows\system32\winload.exe
2013-04-06 12:12:09 ----A---- C:\Windows\system32\WMPhoto.dll
2013-04-06 12:12:09 ----A---- C:\Windows\system32\wmpeffects.dll
2013-04-06 12:12:09 ----A---- C:\Windows\system32\WMNetMgr.dll
2013-04-06 12:12:08 ----A---- C:\Windows\system32\wmdrmsdk.dll
2013-04-06 12:12:07 ----A---- C:\Windows\system32\drivers\Storport.sys
2013-04-06 12:11:57 ----A---- C:\Windows\system32\Storprop.dll
2013-04-06 12:11:57 ----A---- C:\Windows\system32\stobject.dll
2013-04-06 12:11:57 ----A---- C:\Windows\system32\drivers\stream.sys
2013-04-06 12:11:56 ----A---- C:\Windows\system32\sud.dll
2013-04-06 12:11:55 ----A---- C:\Windows\system32\srchadmin.dll
2013-04-06 12:11:55 ----A---- C:\Windows\system32\srcore.dll
2013-04-06 12:11:54 ----A---- C:\Windows\system32\sysmain.dll
2013-04-06 12:11:54 ----A---- C:\Windows\system32\swprv.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\sysclass.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\SyncCenter.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\smss.exe
2013-04-06 12:11:53 ----A---- C:\Windows\system32\SMBHelperClass.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\slwmi.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\drivers\smb.sys
2013-04-06 12:11:52 ----A---- C:\Windows\system32\spp.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\spoolss.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\spinstall.exe
2013-04-06 12:11:52 ----A---- C:\Windows\system32\spcmsg.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SmiEngine.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\slwga.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLUINotify.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLUI.exe
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLsvc.exe
2013-04-06 12:11:52 ----A---- C:\Windows\system32\slmgr.vbs
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLLUA.exe
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLCommDlg.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\slcinst.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLCExt.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\slcc.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLC.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\shwebsvc.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\TSTheme.exe
2013-04-06 12:11:51 ----A---- C:\Windows\system32\sqlsrv32.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\spwizui.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\spwinsat.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\spreview.exe
2013-04-06 12:11:51 ----A---- C:\Windows\system32\sperror.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\softkbd.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\SnippingTool.exe
2013-04-06 12:11:51 ----A---- C:\Windows\system32\SndVol.exe
2013-04-06 12:11:51 ----A---- C:\Windows\system32\drivers\spsys.sys
2013-04-06 12:11:50 ----A---- C:\Windows\system32\TsWpfWrp.exe
2013-04-06 12:11:49 ----A---- C:\Windows\system32\drivers\udfs.sys
2013-04-06 12:11:48 ----A---- C:\Windows\system32\zipfldr.dll
2013-04-06 12:11:48 ----A---- C:\Windows\system32\untfs.dll
2013-04-06 12:11:48 ----A---- C:\Windows\system32\drivers\usbhub.sys
2013-04-06 12:11:48 ----A---- C:\Windows\system32\drivers\usbehci.sys
2013-04-06 12:11:48 ----A---- C:\Windows\system32\drivers\USBCAMD.sys
2013-04-06 12:11:48 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-04-06 12:11:47 ----A---- C:\Windows\system32\ulib.dll
2013-04-06 12:11:47 ----A---- C:\Windows\system32\uDWM.dll
2013-04-06 12:11:47 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2013-04-06 12:11:46 ----A---- C:\Windows\system32\umpnpmgr.dll
2013-04-06 12:11:46 ----A---- C:\Windows\system32\systemcpl.dll
2013-04-06 12:11:42 ----A---- C:\Windows\system32\tquery.dll
2013-04-06 12:11:41 ----A---- C:\Windows\system32\tcpmon.dll
2013-04-06 12:11:41 ----A---- C:\Windows\system32\tcpipcfg.dll
2013-04-06 12:11:40 ----A---- C:\Windows\system32\tapisrv.dll
2013-04-06 12:11:39 ----A---- C:\Windows\system32\termsrv.dll
2013-04-06 12:11:38 ----A---- C:\Windows\system32\themeui.dll
2013-04-06 12:11:38 ----A---- C:\Windows\system32\themecpl.dll
2013-04-06 12:11:38 ----A---- C:\Windows\system32\thawbrkr.dll
2013-04-06 12:11:38 ----A---- C:\Windows\system32\drivers\tdx.sys
2013-04-06 12:11:36 ----A---- C:\Windows\system32\drivers\termdd.sys
2013-04-06 11:23:08 ----D---- C:\rsit
2013-03-13 06:19:05 ----A---- C:\Windows\system32\javaws.exe
2013-03-13 06:18:06 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2013-03-13 06:18:06 ----A---- C:\Windows\system32\javaw.exe
2013-03-13 06:18:06 ----A---- C:\Windows\system32\java.exe

======List of files/folders modified in the last 1 month======

2013-04-06 16:03:35 ----D---- C:\Windows\temp
2013-04-06 16:03:34 ----D---- C:\Program Files\trend micro
2013-04-06 16:00:13 ----D---- C:\Users\Viera\AppData\Roaming\skypePM
2013-04-06 15:59:35 ----D---- C:\Users\Viera\AppData\Roaming\Skype
2013-04-06 15:56:24 ----SHD---- C:\Windows\Installer
2013-04-06 15:56:24 ----RD---- C:\Program Files
2013-04-06 15:56:24 ----D---- C:\Windows
2013-04-06 15:56:23 ----D---- C:\Program Files\SweetIM
2013-04-06 15:56:22 ----D---- C:\ProgramData
2013-04-06 15:54:49 ----D---- C:\Windows\system32\drivers
2013-04-06 15:52:16 ----D---- C:\Windows\inf
2013-04-06 15:52:03 ----D---- C:\Windows\Logs
2013-04-06 14:28:11 ----D---- C:\Windows\Microsoft.NET
2013-04-06 14:27:49 ----RSD---- C:\Windows\assembly
2013-04-06 13:10:42 ----D---- C:\Windows\rescache
2013-04-06 13:03:49 ----D---- C:\Windows\System32
2013-04-06 13:03:49 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-04-06 12:58:54 ----D---- C:\Windows\Prefetch
2013-04-06 12:58:04 ----D---- C:\Windows\system32\catroot
2013-04-06 12:57:59 ----SHD---- C:\Boot
2013-04-06 12:49:50 ----D---- C:\Program Files\Windows Calendar
2013-04-06 12:49:50 ----D---- C:\Program Files\Movie Maker
2013-04-06 12:49:44 ----D---- C:\Program Files\Windows Sidebar
2013-04-06 12:49:44 ----D---- C:\Program Files\Windows Mail
2013-04-06 12:49:44 ----D---- C:\Program Files\Internet Explorer
2013-04-06 12:49:43 ----D---- C:\Program Files\Windows Photo Gallery
2013-04-06 12:49:43 ----D---- C:\Program Files\Windows Media Player
2013-04-06 12:49:43 ----D---- C:\Program Files\Windows Journal
2013-04-06 12:49:43 ----D---- C:\Program Files\Windows Collaboration
2013-04-06 12:49:38 ----D---- C:\Program Files\Common Files\System
2013-04-06 12:49:31 ----D---- C:\Windows\servicing
2013-04-06 12:49:31 ----D---- C:\Program Files\Windows Defender
2013-04-06 12:49:29 ----D---- C:\Windows\ehome
2013-04-06 12:49:11 ----D---- C:\Windows\IME
2013-04-06 12:49:10 ----D---- C:\Windows\system32\XPSViewer
2013-04-06 12:49:10 ----D---- C:\Windows\system32\lv-LV
2013-04-06 12:49:10 ----D---- C:\Windows\system32\hr-HR
2013-04-06 12:49:10 ----D---- C:\Windows\system32\et-EE
2013-04-06 12:49:10 ----D---- C:\Windows\system32\da-DK
2013-04-06 12:49:09 ----D---- C:\Windows\system32\sk-SK
2013-04-06 12:49:08 ----D---- C:\Windows\system32\ko-KR
2013-04-06 12:49:08 ----D---- C:\Windows\system32\en-US
2013-04-06 12:49:07 ----D---- C:\Windows\system32\it-IT
2013-04-06 12:49:07 ----D---- C:\Windows\system32\el-GR
2013-04-06 12:49:07 ----D---- C:\Windows\system32\de-DE
2013-04-06 12:49:06 ----D---- C:\Windows\system32\oobe
2013-04-06 12:49:06 ----D---- C:\Windows\system32\migration
2013-04-06 12:49:02 ----D---- C:\Windows\system32\sv-SE
2013-04-06 12:49:02 ----D---- C:\Windows\system32\ru-RU
2013-04-06 12:49:02 ----D---- C:\Windows\system32\fr-FR
2013-04-06 12:49:02 ----D---- C:\Windows\system32\AdvancedInstallers
2013-04-06 12:49:01 ----D---- C:\Windows\system32\SLUI
2013-04-06 12:49:01 ----D---- C:\Windows\system32\setup
2013-04-06 12:49:01 ----D---- C:\Windows\system32\pt-PT
2013-04-06 12:49:01 ----D---- C:\Windows\system32\hu-HU
2013-04-06 12:49:01 ----D---- C:\Windows\system32\he-IL
2013-04-06 12:49:01 ----D---- C:\Windows\system32\fi-FI
2013-04-06 12:49:01 ----D---- C:\Windows\system32\cs-CZ
2013-04-06 12:49:00 ----D---- C:\Windows\system32\zh-TW
2013-04-06 12:49:00 ----D---- C:\Windows\system32\zh-CN
2013-04-06 12:49:00 ----D---- C:\Windows\system32\uk-UA
2013-04-06 12:49:00 ----D---- C:\Windows\system32\sr-Latn-CS
2013-04-06 12:49:00 ----D---- C:\Windows\system32\sl-SI
2013-04-06 12:49:00 ----D---- C:\Windows\system32\ro-RO
2013-04-06 12:49:00 ----D---- C:\Windows\system32\pl-PL
2013-04-06 12:49:00 ----D---- C:\Windows\system32\manifeststore
2013-04-06 12:49:00 ----D---- C:\Windows\system32\ja-JP
2013-04-06 12:49:00 ----D---- C:\Windows\system32\es-ES
2013-04-06 12:49:00 ----D---- C:\Windows\system32\en
2013-04-06 12:49:00 ----D---- C:\Windows\system32\bg-BG
2013-04-06 12:48:58 ----D---- C:\Windows\system32\th-TH
2013-04-06 12:48:58 ----D---- C:\Windows\system32\drivers\sk-SK
2013-04-06 12:48:58 ----D---- C:\Windows\system32\drivers\en-US
2013-04-06 12:48:57 ----D---- C:\Windows\system32\tr-TR
2013-04-06 12:48:56 ----D---- C:\Windows\system32\wbem
2013-04-06 12:48:55 ----D---- C:\Windows\system32\nl-NL
2013-04-06 12:48:55 ----D---- C:\Windows\system32\nb-NO
2013-04-06 12:48:55 ----D---- C:\Windows\system32\lt-LT
2013-04-06 12:48:55 ----D---- C:\Windows\system32\ar-SA
2013-04-06 12:48:54 ----D---- C:\Windows\system32\migwiz
2013-04-06 12:48:53 ----D---- C:\Windows\system32\pt-BR
2013-04-06 12:47:59 ----RSD---- C:\Windows\Fonts
2013-04-06 12:47:58 ----D---- C:\Windows\AppPatch
2013-04-06 12:47:49 ----D---- C:\Windows\system32\Boot
2013-04-06 12:45:57 ----D---- C:\Windows\system32\drivers\UMDF
2013-04-06 12:45:18 ----D---- C:\Windows\system32\RTCOM
2013-04-06 12:39:36 ----D---- C:\Windows\Debug
2013-04-06 12:35:13 ----D---- C:\Windows\winsxs
2013-04-06 12:33:13 ----A---- C:\Windows\fonts\GlobalUserInterface.CompositeFont
2013-04-06 12:10:12 ----SHD---- C:\System Volume Information
2013-04-06 11:49:38 ----D---- C:\Program Files\Common Files
2013-04-05 14:06:06 ----D---- C:\Windows\system32\catroot2
2013-03-14 00:20:49 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-03-13 06:17:15 ----A---- C:\Windows\system32\npdeployJava1.dll
2013-03-13 06:17:14 ----A---- C:\Windows\system32\deployJava1.dll
2013-03-13 06:17:02 ----D---- C:\Program Files\Java
2013-03-13 06:03:06 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-03-13 00:06:15 ----D---- C:\Program Files\Mozilla Firefox
2013-03-12 01:10:56 ----N---- C:\Windows\system32\MpSigStub.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2009-02-06 106208]
R2 eamon;eamon; C:\Windows\system32\DRIVERS\eamon.sys [2009-02-06 113448]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2009-02-06 92800]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-11-14 2016920]
R3 RTL8187B;Realtek RTL8187B Wireless 802.11b/g 54Mbps USB 2.0 Network Adapter; C:\Windows\system32\DRIVERS\RTL8187B.sys [2010-03-31 350720]
R3 SiS6350;SiS6350; C:\Windows\system32\DRIVERS\SISGRKMD.sys [2007-08-24 452096]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSGB6.sys [2008-05-02 48128]
R3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2008-03-17 101632]
S3 KMWDFILTER;HIDUASDesc; C:\Windows\system32\DRIVERS\KMWDFILTER.sys [2008-10-09 17408]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\mbamswissarmy.sys [2013-04-06 40776]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2009-02-06 727720]
S2 NOD32FiXTemDono;Eset Nod32 Boot; C:\Windows\system32\regedt32.exe [2006-11-02 9216]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-03-14 253656]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2009-02-06 20680]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-03-13 115608]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o preventivnu kontrolu

#12 Příspěvek od Márty84 »

Jak to mate s antivirem. Vidim tam pozustatek Avastu a jinak Nod. Ten Nod je legalni?
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

stelinka
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 06 dub 2013 10:27

Re: Prosim o preventivnu kontrolu

#13 Příspěvek od stelinka »

legalne stiahnuty :D

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosim o preventivnu kontrolu

#14 Příspěvek od Márty84 »

Zas tak vtipne to neni :?:

Prvidla fora http://forum.viry.cz/viewtopic.php?f=12&t=115512 hovori jasne.
Pomáhat NELZE:
2) Pokud stroj uživatele prokazatelně obsahuje nelegální hostitelský čí ochranný software
(operační systém, antivir, firewall, atd.), je nutné navést uživatele k nápravě, např. skrze neplacený software,
a začít řešit, až v době kdy je PC "v pořádku". V případě že uživatel nechce na pravidla přistoupit,
je nutné jej vyzvat ať fórum opustí, a vrátí se až je splní.
Takze pokud to chcete docistit, odinstalujte cracknuty NOD, nainstalujte nejaky free antivir a dejte novy log z RSIT (uz s novym AV). Jinak koncime. Rozhodnuti je zcela na vas :)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

stelinka
Návštěvník
Návštěvník
Příspěvky: 125
Registrován: 06 dub 2013 10:27

Re: Prosim o preventivnu kontrolu

#15 Příspěvek od stelinka »

jasne... viem ake su pravidla na tomto fore
tu je log

Logfile of random's system information tool 1.09 (written by random/random)
Run by Viera at 2013-04-06 17:22:48
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 35 GB (37%) free of 95 GB
Total RAM: 1916 MB (58% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:22:55, on 6. 4. 2013
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.19088)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\SiS VGA Utilities\SiSTray.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Windows\system32\wuauclt.exe
C:\Users\Viera\Desktop\RSIT.exe
C:\Program Files\trend micro\Viera.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/fwlink/?linkid=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.facebook.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SiSTray] %ProgramFiles%\SiS VGA Utilities\SiSTray.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Viera\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe

--
End of file - 4015 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3725892672-3043224248-1115301474-1000Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-3725892672-3043224248-1115301474-1000UA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Viera\AppData\Roaming\Mozilla\Firefox\Profiles\j5a98b64.default

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "https://www.google.sk/"
prefs.js - "extensions.enabledItems" - "{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}:4.1, {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.9.3, {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17, {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20, {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22, {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, {AB2CE124-6272-4b12-94A9-7303C7397BD1}:4.2.0.5198, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.5.19"

"{20a82645-c095-46ed-80e3-08825760534b}"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.6.602.180 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_6_602_180.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw_1168638.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.17.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.17.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@parallelgraphics.com/Cortona]
"Description"=Cortona VRML Plugin
"Path"=C:\Program Files\Common Files\ParallelGraphics\Cortona\npCortona.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{AB2CE124-6272-4b12-94A9-7303C7397BD1}
{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}

C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
npCortona.xpt

C:\Program Files\Mozilla Firefox\plugins\
exeImagine.IMD
np-mswmp.dll
npCortona.dll
npImagine.dll
npkimi.dll
NPOFF12.DLL
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
QuickTimePlugin.class
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt

C:\Program Files\Mozilla Firefox\searchplugins\
amazondotcom.xml
bing.xml
eBay.xml
google.xml
twitter.xml
wikipedia.xml
yahoo.xml

C:\Users\Viera\AppData\Roaming\Mozilla\Firefox\Profiles\j5a98b64.default\extensions\
{20a82645-c095-46ed-80e3-08825760534b}

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-12-18 66280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-03-13 461216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-03-07 1224568]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-03-13 170912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-03-07 1224568]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"SiSTray"=C:\Program Files\SiS VGA Utilities\SiSTray.exe [2007-08-24 552960]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-11-14 4706304]
"Skytel"=C:\Windows\Skytel.exe [2007-10-11 1826816]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-12-03 946352]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-03-07 4767304]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Facebook Update"=C:\Users\Viera\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-16 138096]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-21 202240]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2010-04-06 26102056]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0
"NoDriveTypeAutoRun"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=0
"NoDriveTypeAutoRun"=0
"BindDirectlyToPropertySetStorage"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"VIDC.DIVX"=divx.dll
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2013-04-06 17:20:45 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2013-04-06 17:20:44 ----A---- C:\Windows\system32\drivers\aswSP.sys
2013-04-06 17:20:40 ----A---- C:\Windows\system32\drivers\aswRdr.sys
2013-04-06 17:20:39 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2013-04-06 17:20:38 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2013-04-06 17:20:37 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2013-04-06 17:20:36 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2013-04-06 17:20:35 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2013-04-06 17:20:35 ----A---- C:\Windows\system32\aswBoot.exe
2013-04-06 17:18:53 ----A---- C:\Windows\avastSS.scr
2013-04-06 17:18:13 ----D---- C:\Program Files\AVAST Software
2013-04-06 15:56:24 ----A---- C:\Windows\DeleteOnReboot.bat
2013-04-06 15:56:14 ----A---- C:\AdwCleaner[S1].txt
2013-04-06 13:28:44 ----D---- C:\Users\Viera\AppData\Roaming\Malwarebytes
2013-04-06 13:28:44 ----A---- C:\Windows\system32\drivers\mbamswissarmy.sys
2013-04-06 13:28:25 ----D---- C:\ProgramData\Malwarebytes
2013-04-06 13:24:25 ----A---- C:\AdwCleaner[R1].txt
2013-04-06 12:47:51 ----D---- C:\Windows\system32\eu-ES
2013-04-06 12:47:51 ----D---- C:\Windows\system32\ca-ES
2013-04-06 12:47:49 ----D---- C:\Windows\system32\vi-VN
2013-04-06 12:37:32 ----D---- C:\Windows\system32\SPReview
2013-04-06 12:22:27 ----A---- C:\Windows\system32\scavenge.dll
2013-04-06 12:22:09 ----A---- C:\Windows\system32\compcln.exe
2013-04-06 12:14:38 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2013-04-06 12:14:38 ----A---- C:\Windows\system32\SearchIndexer.exe
2013-04-06 12:14:38 ----A---- C:\Windows\system32\SearchFilterHost.exe
2013-04-06 12:14:38 ----A---- C:\Windows\system32\sdohlp.dll
2013-04-06 12:14:38 ----A---- C:\Windows\system32\rtffilt.dll
2013-04-06 12:14:38 ----A---- C:\Windows\system32\rsaenh.dll
2013-04-06 12:14:37 ----A---- C:\Windows\system32\samlib.dll
2013-04-06 12:14:37 ----A---- C:\Windows\system32\rpchttp.dll
2013-04-06 12:14:37 ----A---- C:\Windows\system32\rpcss.dll
2013-04-06 12:14:37 ----A---- C:\Windows\system32\riched20.dll
2013-04-06 12:14:37 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2013-04-06 12:14:37 ----A---- C:\Windows\system32\drivers\rmcast.sys
2013-04-06 12:14:36 ----A---- C:\Windows\system32\scrrun.dll
2013-04-06 12:14:36 ----A---- C:\Windows\system32\scansetting.dll
2013-04-06 12:14:35 ----A---- C:\Windows\system32\scksp.dll
2013-04-06 12:14:35 ----A---- C:\Windows\system32\SCardSvr.dll
2013-04-06 12:14:35 ----A---- C:\Windows\system32\samsrv.dll
2013-04-06 12:14:34 ----A---- C:\Windows\system32\scrobj.dll
2013-04-06 12:14:34 ----A---- C:\Windows\system32\scesrv.dll
2013-04-06 12:14:34 ----A---- C:\Windows\system32\scecli.dll
2013-04-06 12:14:31 ----A---- C:\Windows\system32\perfdisk.dll
2013-04-06 12:14:31 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2013-04-06 12:14:31 ----A---- C:\Windows\system32\pdh.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\PNPXAssoc.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\PnPutil.exe
2013-04-06 12:14:30 ----A---- C:\Windows\system32\PnPUnattend.exe
2013-04-06 12:14:30 ----A---- C:\Windows\system32\pnpui.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\pnidui.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\pcaui.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\p2psvc.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\P2PGraph.dll
2013-04-06 12:14:30 ----A---- C:\Windows\system32\drivers\pciidex.sys
2013-04-06 12:14:30 ----A---- C:\Windows\system32\drivers\pciide.sys
2013-04-06 12:14:30 ----A---- C:\Windows\system32\drivers\pci.sys
2013-04-06 12:14:30 ----A---- C:\Windows\system32\drivers\partmgr.sys
2013-04-06 12:14:30 ----A---- C:\Windows\system32\drivers\pacer.sys
2013-04-06 12:14:29 ----A---- C:\Windows\system32\powercpl.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\pnpsetup.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\pidgenx.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\photowiz.dll
2013-04-06 12:14:29 ----A---- C:\Windows\system32\drivers\portcls.sys
2013-04-06 12:14:28 ----A---- C:\Windows\system32\PkgMgr.exe
2013-04-06 12:14:28 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2013-04-06 12:14:28 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2013-04-06 12:14:28 ----A---- C:\Windows\system32\nslookup.exe
2013-04-06 12:14:28 ----A---- C:\Windows\system32\drivers\npfs.sys
2013-04-06 12:14:27 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-04-06 12:14:26 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2013-04-06 12:14:25 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2013-04-06 12:14:25 ----A---- C:\Windows\system32\nlhtml.dll
2013-04-06 12:14:24 ----A---- C:\Windows\system32\offfilt.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\osk.exe
2013-04-06 12:14:23 ----A---- C:\Windows\system32\oobefldr.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\onex.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\olepro32.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\oleprn.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\odbccp32.dll
2013-04-06 12:14:23 ----A---- C:\Windows\system32\odbcconf.dll
2013-04-06 12:14:22 ----A---- C:\Windows\system32\ocsetup.exe
2013-04-06 12:14:22 ----A---- C:\Windows\system32\ntprint.dll
2013-04-06 12:14:22 ----A---- C:\Windows\system32\ntmarta.dll
2013-04-06 12:14:22 ----A---- C:\Windows\system32\drivers\nwifi.sys
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasmontr.dll
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasmans.dll
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasgcw.dll
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasdlg.dll
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasdial.exe
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasdiag.dll
2013-04-06 12:14:21 ----A---- C:\Windows\system32\rasapi32.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\rastapi.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\rasppp.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\rasplap.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\raschap.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\Query.dll
2013-04-06 12:14:20 ----A---- C:\Windows\system32\drivers\rassstp.sys
2013-04-06 12:14:20 ----A---- C:\Windows\system32\drivers\raspppoe.sys
2013-04-06 12:14:19 ----A---- C:\Windows\system32\RelMon.dll
2013-04-06 12:14:19 ----A---- C:\Windows\system32\rekeywiz.exe
2013-04-06 12:14:19 ----A---- C:\Windows\system32\regsvc.dll
2013-04-06 12:14:19 ----A---- C:\Windows\system32\RacEngn.dll
2013-04-06 12:14:19 ----A---- C:\Windows\system32\qmgr.dll
2013-04-06 12:14:19 ----A---- C:\Windows\system32\qedit.dll
2013-04-06 12:14:18 ----A---- C:\Windows\system32\reg.exe
2013-04-06 12:14:18 ----A---- C:\Windows\system32\rdpencom.dll
2013-04-06 12:14:18 ----A---- C:\Windows\system32\drivers\rdbss.sys
2013-04-06 12:14:17 ----A---- C:\Windows\system32\regapi.dll
2013-04-06 12:14:17 ----A---- C:\Windows\system32\rdpwsx.dll
2013-04-06 12:14:17 ----A---- C:\Windows\system32\PresentationSettings.exe
2013-04-06 12:14:17 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2013-04-06 12:14:17 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2013-04-06 12:14:16 ----A---- C:\Windows\system32\prnntfy.dll
2013-04-06 12:14:16 ----A---- C:\Windows\system32\printui.dll
2013-04-06 12:14:16 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2013-04-06 12:14:16 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2013-04-06 12:14:15 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-04-06 12:14:15 ----A---- C:\Windows\system32\powrprof.dll
2013-04-06 12:14:14 ----A---- C:\Windows\system32\qdvd.dll
2013-04-06 12:14:14 ----A---- C:\Windows\system32\QAGENTRT.DLL
2013-04-06 12:14:14 ----A---- C:\Windows\system32\puiapi.dll
2013-04-06 12:14:13 ----A---- C:\Windows\system32\propsys.dll
2013-04-06 12:14:13 ----A---- C:\Windows\system32\propdefs.dll
2013-04-06 12:14:13 ----A---- C:\Windows\system32\profsvc.dll
2013-04-06 12:14:12 ----A---- C:\Windows\system32\psisdecd.dll
2013-04-06 12:14:12 ----A---- C:\Windows\system32\PSHED.DLL
2013-04-06 12:14:08 ----A---- C:\Windows\system32\sendmail.dll
2013-04-06 12:14:07 ----A---- C:\Windows\system32\shdocvw.dll
2013-04-06 12:14:06 ----A---- C:\Windows\system32\sethc.exe
2013-04-06 12:14:06 ----A---- C:\Windows\system32\services.exe
2013-04-06 12:14:05 ----A---- C:\Windows\system32\setupapi.dll
2013-04-06 12:13:56 ----A---- C:\Windows\system32\eapphost.dll
2013-04-06 12:13:56 ----A---- C:\Windows\system32\eappgnui.dll
2013-04-06 12:13:56 ----A---- C:\Windows\system32\drivers\ecache.sys
2013-04-06 12:13:53 ----A---- C:\Windows\system32\eappcfg.dll
2013-04-06 12:13:53 ----A---- C:\Windows\system32\eapp3hst.dll
2013-04-06 12:13:52 ----A---- C:\Windows\system32\EhStorAPI.dll
2013-04-06 12:13:52 ----A---- C:\Windows\system32\dsprop.dll
2013-04-06 12:13:52 ----A---- C:\Windows\system32\drivers\Dumpata.sys
2013-04-06 12:13:51 ----A---- C:\Windows\system32\ExplorerFrame.dll
2013-04-06 12:13:51 ----A---- C:\Windows\system32\evr.dll
2013-04-06 12:13:51 ----A---- C:\Windows\system32\eudcedit.exe
2013-04-06 12:13:51 ----A---- C:\Windows\system32\dwm.exe
2013-04-06 12:13:51 ----A---- C:\Windows\system32\dsound.dll
2013-04-06 12:13:51 ----A---- C:\Windows\system32\drivers\exfat.sys
2013-04-06 12:13:51 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-04-06 12:13:51 ----A---- C:\Windows\system32\drivers\dxg.sys
2013-04-06 12:13:51 ----A---- C:\Windows\explorer.exe
2013-04-06 12:13:50 ----A---- C:\Windows\system32\esent.dll
2013-04-06 12:13:49 ----A---- C:\Windows\system32\f3ahvoas.dll
2013-04-06 12:13:48 ----A---- C:\Windows\system32\es.dll
2013-04-06 12:13:48 ----A---- C:\Windows\system32\emdmgmt.dll
2013-04-06 12:13:48 ----A---- C:\Windows\system32\EhStorShell.dll
2013-04-06 12:13:48 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2013-04-06 12:13:48 ----A---- C:\Windows\system32\EhStorAuthn.dll
2013-04-06 12:13:47 ----A---- C:\Windows\system32\dimsroam.dll
2013-04-06 12:13:47 ----A---- C:\Windows\system32\diagperf.dll
2013-04-06 12:13:47 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2013-04-06 12:13:46 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2013-04-06 12:13:46 ----A---- C:\Windows\system32\drivers\disk.sys
2013-04-06 12:13:46 ----A---- C:\Windows\system32\diskraid.exe
2013-04-06 12:13:46 ----A---- C:\Windows\system32\diskpart.exe
2013-04-06 12:13:45 ----A---- C:\Windows\system32\dfsr.exe
2013-04-06 12:13:45 ----A---- C:\Windows\system32\devmgr.dll
2013-04-06 12:13:44 ----A---- C:\Windows\system32\dhcpcsvc.dll
2013-04-06 12:13:42 ----A---- C:\Windows\system32\dpapimig.exe
2013-04-06 12:13:42 ----A---- C:\Windows\system32\dot3svc.dll
2013-04-06 12:13:42 ----A---- C:\Windows\system32\dot3msm.dll
2013-04-06 12:13:42 ----A---- C:\Windows\system32\dot3cfg.dll
2013-04-06 12:13:41 ----A---- C:\Windows\system32\drvstore.dll
2013-04-06 12:13:39 ----A---- C:\Windows\system32\drvinst.exe
2013-04-06 12:13:39 ----A---- C:\Windows\system32\drmv2clt.dll
2013-04-06 12:13:39 ----A---- C:\Windows\system32\drmmgrtn.dll
2013-04-06 12:13:38 ----A---- C:\Windows\system32\dmusic.dll
2013-04-06 12:13:38 ----A---- C:\Windows\system32\dmsynth.dll
2013-04-06 12:13:37 ----A---- C:\Windows\system32\hbaapi.dll
2013-04-06 12:13:37 ----A---- C:\Windows\system32\gpresult.exe
2013-04-06 12:13:37 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2013-04-06 12:13:36 ----A---- C:\Windows\system32\gpsvc.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\iasnap.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\IasMigReader.exe
2013-04-06 12:13:35 ----A---- C:\Windows\system32\IasMigPlugin.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\iashlpr.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\iasdatastore.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\iasads.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\iasacct.dll
2013-04-06 12:13:35 ----A---- C:\Windows\system32\gpupdate.exe
2013-04-06 12:13:34 ----A---- C:\Windows\system32\hidserv.dll
2013-04-06 12:13:34 ----A---- C:\Windows\system32\hdwwiz.exe
2013-04-06 12:13:34 ----A---- C:\Windows\system32\drivers\hidusb.sys
2013-04-06 12:13:34 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-04-06 12:13:33 ----A---- C:\Windows\system32\gpapi.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\gdi32.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fontext.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\findstr.exe
2013-04-06 12:13:33 ----A---- C:\Windows\system32\feclient.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdWSD.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdWCN.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdSSDP.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdProxy.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdeploy.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdBthProxy.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fdBth.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\fc.exe
2013-04-06 12:13:33 ----A---- C:\Windows\system32\Faultrep.dll
2013-04-06 12:13:33 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2013-04-06 12:13:33 ----A---- C:\Windows\system32\drivers\fastfat.sys
2013-04-06 12:13:31 ----A---- C:\Windows\system32\gpedit.dll
2013-04-06 12:13:30 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2013-04-06 12:13:30 ----A---- C:\Windows\system32\fundisc.dll
2013-04-06 12:13:30 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2013-04-06 12:13:30 ----A---- C:\Windows\system32\ftp.exe
2013-04-06 12:13:29 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2013-04-06 12:13:29 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-04-06 12:13:29 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-04-06 12:13:29 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\autochk.exe
2013-04-06 12:13:29 ----A---- C:\Windows\system32\authz.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\authui.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\audiosrv.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\AudioSes.dll
2013-04-06 12:13:29 ----A---- C:\Windows\system32\audiodg.exe
2013-04-06 12:13:28 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2013-04-06 12:13:28 ----A---- C:\Windows\system32\autoplay.dll
2013-04-06 12:13:28 ----A---- C:\Windows\system32\autofmt.exe
2013-04-06 12:13:28 ----A---- C:\Windows\system32\autoconv.exe
2013-04-06 12:13:27 ----A---- C:\Windows\system32\drivers\atapi.sys
2013-04-06 12:13:27 ----A---- C:\Windows\system32\brcpl.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\drivers\bridge.sys
2013-04-06 12:13:26 ----A---- C:\Windows\system32\bthci.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\browseui.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\blackbox.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\bitsigd.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\BFE.DLL
2013-04-06 12:13:26 ----A---- C:\Windows\system32\bcrypt.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\basecsp.dll
2013-04-06 12:13:26 ----A---- C:\Windows\system32\azroles.dll
2013-04-06 12:13:25 ----A---- C:\Windows\system32\drivers\acpi.sys
2013-04-06 12:13:25 ----A---- C:\Windows\system32\accessibilitycpl.dll
2013-04-06 12:13:23 ----A---- C:\Windows\system32\apphelp.dll
2013-04-06 12:13:23 ----A---- C:\Windows\system32\apds.dll
2013-04-06 12:13:22 ----A---- C:\Windows\system32\adsmsext.dll
2013-04-06 12:13:22 ----A---- C:\Windows\system32\adsldpc.dll
2013-04-06 12:13:21 ----A---- C:\Windows\system32\advapi32.dll
2013-04-06 12:13:21 ----A---- C:\Windows\system32\adtschema.dll
2013-04-06 12:13:20 ----A---- C:\Windows\system32\drivers\crashdmp.sys
2013-04-06 12:13:20 ----A---- C:\Windows\system32\crypt32.dll
2013-04-06 12:13:20 ----A---- C:\Windows\system32\credui.dll
2013-04-06 12:13:20 ----A---- C:\Windows\system32\conime.exe
2013-04-06 12:13:20 ----A---- C:\Windows\system32\comuid.dll
2013-04-06 12:13:20 ----A---- C:\Windows\system32\comsvcs.dll
2013-04-06 12:13:19 ----A---- C:\Windows\system32\connect.dll
2013-04-06 12:13:19 ----A---- C:\Windows\system32\cmdial32.dll
2013-04-06 12:13:18 ----A---- C:\Windows\system32\comdlg32.dll
2013-04-06 12:13:18 ----A---- C:\Windows\system32\cmmon32.exe
2013-04-06 12:13:17 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2013-04-06 12:13:17 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2013-04-06 12:13:17 ----A---- C:\Windows\system32\DevicePairing.dll
2013-04-06 12:13:17 ----A---- C:\Windows\system32\DeviceEject.exe
2013-04-06 12:13:17 ----A---- C:\Windows\system32\dbgeng.dll
2013-04-06 12:13:17 ----A---- C:\Windows\system32\davclnt.dll
2013-04-06 12:13:17 ----A---- C:\Windows\system32\dataclen.dll
2013-04-06 12:13:17 ----A---- C:\Windows\system32\d3d9.dll
2013-04-06 12:13:16 ----A---- C:\Windows\system32\cscdll.dll
2013-04-06 12:13:16 ----A---- C:\Windows\system32\cscapi.dll
2013-04-06 12:13:15 ----A---- C:\Windows\system32\csrstub.exe
2013-04-06 12:13:15 ----A---- C:\Windows\system32\cscript.exe
2013-04-06 12:13:15 ----A---- C:\Windows\system32\cryptui.dll
2013-04-06 12:13:15 ----A---- C:\Windows\system32\cryptsvc.dll
2013-04-06 12:13:14 ----A---- C:\Windows\system32\drivers\cdrom.sys
2013-04-06 12:13:14 ----A---- C:\Windows\system32\certmgr.dll
2013-04-06 12:13:14 ----A---- C:\Windows\system32\CertEnrollUI.dll
2013-04-06 12:13:14 ----A---- C:\Windows\system32\CertEnroll.dll
2013-04-06 12:13:14 ----A---- C:\Windows\system32\certcli.dll
2013-04-06 12:13:14 ----A---- C:\Windows\system32\cdd.dll
2013-04-06 12:13:13 ----A---- C:\Windows\system32\cbsra.exe
2013-04-06 12:13:13 ----A---- C:\Windows\system32\bthudtask.exe
2013-04-06 12:13:13 ----A---- C:\Windows\system32\bthserv.dll
2013-04-06 12:13:12 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2013-04-06 12:13:12 ----A---- C:\Windows\system32\chtbrkr.dll
2013-04-06 12:13:12 ----A---- C:\Windows\system32\chsbrkr.dll
2013-04-06 12:13:12 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2013-04-06 12:13:12 ----A---- C:\Windows\system32\clfs.sys
2013-04-06 12:13:12 ----A---- C:\Windows\system32\cipher.exe
2013-04-06 12:13:12 ----A---- C:\Windows\system32\ci.dll
2013-04-06 12:13:11 ----A---- C:\Windows\system32\certutil.exe
2013-04-06 12:13:11 ----A---- C:\Windows\system32\certreq.exe
2013-04-06 12:13:11 ----A---- C:\Windows\system32\certprop.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msihnd.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msiexec.exe
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msi.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msftedit.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msexch40.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msexcl40.dll
2013-04-06 12:13:10 ----A---- C:\Windows\system32\msdtctm.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\msimsg.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\msdtcprx.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\msctfui.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\msctfp.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\msctf.dll
2013-04-06 12:13:09 ----A---- C:\Windows\system32\MPSSVC.dll
2013-04-06 12:13:08 ----A---- C:\Windows\system32\mprapi.dll
2013-04-06 12:13:08 ----A---- C:\Windows\system32\mpr.dll
2013-04-06 12:13:08 ----A---- C:\Windows\system32\modemui.dll
2013-04-06 12:13:08 ----A---- C:\Windows\system32\MMDevAPI.dll
2013-04-06 12:13:07 ----A---- C:\Windows\system32\mscories.dll
2013-04-06 12:13:07 ----A---- C:\Windows\system32\mscorier.dll
2013-04-06 12:13:07 ----A---- C:\Windows\system32\mscms.dll
2013-04-06 12:13:07 ----A---- C:\Windows\system32\mscandui.dll
2013-04-06 12:13:06 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2013-04-06 12:13:05 ----A---- C:\Windows\system32\netapi32.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\NetProjW.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\netplwiz.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\netlogon.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\netcenter.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\ncryptui.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\ncrypt.dll
2013-04-06 12:13:04 ----A---- C:\Windows\system32\drivers\netio.sys
2013-04-06 12:13:04 ----A---- C:\Windows\system32\drivers\netbt.sys
2013-04-06 12:13:04 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2013-04-06 12:13:04 ----A---- C:\Windows\system32\drivers\ndis.sys
2013-04-06 12:13:03 ----A---- C:\Windows\system32\NcdProp.dll
2013-04-06 12:13:03 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2013-04-06 12:13:03 ----A---- C:\Windows\system32\mtxclu.dll
2013-04-06 12:13:03 ----A---- C:\Windows\system32\drivers\mup.sys
2013-04-06 12:13:01 ----A---- C:\Windows\system32\newdev.exe
2013-04-06 12:13:01 ----A---- C:\Windows\system32\newdev.dll
2013-04-06 12:13:01 ----A---- C:\Windows\system32\networkmap.dll
2013-04-06 12:13:01 ----A---- C:\Windows\system32\networkitemfactory.dll
2013-04-06 12:13:01 ----A---- C:\Windows\system32\networkexplorer.dll
2013-04-06 12:13:01 ----A---- C:\Windows\system32\netshell.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msscntrs.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msscb.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msrepl40.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msrd3x40.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msrd2x40.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\mspbde40.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msnetobj.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msltus40.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\msimtf.dll
2013-04-06 12:13:00 ----A---- C:\Windows\system32\drivers\msrpc.sys
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msvcp60.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msutb.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msjtes40.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msjter40.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msjint40.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msjetoledb40.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msjet40.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msisip.dll
2013-04-06 12:12:59 ----A---- C:\Windows\system32\msinfo32.exe
2013-04-06 12:12:59 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msxbde40.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mswstr10.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mswsock.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mswdat10.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\MSVidCtl.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msvcrt.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mstlsapi.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssvp.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msstrc.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssrch.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssprxy.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssphtb.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssph.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\mssitlb.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msshsq.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msshooks.dll
2013-04-06 12:12:58 ----A---- C:\Windows\system32\msscp.dll
2013-04-06 12:12:57 ----A---- C:\Windows\system32\mstext40.dll
2013-04-06 12:12:57 ----A---- C:\Windows\system32\InkEd.dll
2013-04-06 12:12:57 ----A---- C:\Windows\system32\infocardapi.dll
2013-04-06 12:12:57 ----A---- C:\Windows\system32\inetppui.dll
2013-04-06 12:12:57 ----A---- C:\Windows\system32\inetpp.dll
2013-04-06 12:12:55 ----A---- C:\Windows\system32\iscsilog.dll
2013-04-06 12:12:55 ----A---- C:\Windows\system32\ipsmsnap.dll
2013-04-06 12:12:55 ----A---- C:\Windows\system32\IPSECSVC.DLL
2013-04-06 12:12:55 ----A---- C:\Windows\system32\imm32.dll
2013-04-06 12:12:54 ----A---- C:\Windows\system32\ipsecsnp.dll
2013-04-06 12:12:54 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2013-04-06 12:12:54 ----A---- C:\Windows\system32\ipconfig.exe
2013-04-06 12:12:54 ----A---- C:\Windows\system32\input.dll
2013-04-06 12:12:53 ----A---- C:\Windows\system32\ifmon.dll
2013-04-06 12:12:53 ----A---- C:\Windows\system32\icardres.dll
2013-04-06 12:12:53 ----A---- C:\Windows\system32\icardagt.exe
2013-04-06 12:12:53 ----A---- C:\Windows\system32\iassvcs.dll
2013-04-06 12:12:53 ----A---- C:\Windows\system32\iassdo.dll
2013-04-06 12:12:52 ----A---- C:\Windows\system32\IMJP10K.DLL
2013-04-06 12:12:52 ----A---- C:\Windows\system32\imapi.dll
2013-04-06 12:12:52 ----A---- C:\Windows\system32\iassam.dll
2013-04-06 12:12:52 ----A---- C:\Windows\system32\iasrecst.dll
2013-04-06 12:12:52 ----A---- C:\Windows\system32\iasrad.dll
2013-04-06 12:12:52 ----A---- C:\Windows\system32\iaspolcy.dll
2013-04-06 12:12:51 ----A---- C:\Windows\system32\imapi2fs.dll
2013-04-06 12:12:51 ----A---- C:\Windows\system32\imapi2.dll
2013-04-06 12:12:51 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-04-06 12:12:48 ----A---- C:\Windows\system32\mfplat.dll
2013-04-06 12:12:47 ----A---- C:\Windows\system32\mimefilt.dll
2013-04-06 12:12:47 ----A---- C:\Windows\system32\milcore.dll
2013-04-06 12:12:46 ----A---- C:\Windows\system32\mmcndmgr.dll
2013-04-06 12:12:46 ----A---- C:\Windows\system32\mmcico.dll
2013-04-06 12:12:46 ----A---- C:\Windows\system32\mmci.dll
2013-04-06 12:12:46 ----A---- C:\Windows\system32\midimap.dll
2013-04-06 12:12:45 ----A---- C:\Windows\system32\mmc.exe
2013-04-06 12:12:43 ----A---- C:\Windows\system32\drivers\ks.sys
2013-04-06 12:12:40 ----A---- C:\Windows\system32\l2nacp.dll
2013-04-06 12:12:40 ----A---- C:\Windows\system32\korwbrkr.dll
2013-04-06 12:12:40 ----A---- C:\Windows\system32\kd1394.dll
2013-04-06 12:12:40 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2013-04-06 12:12:39 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2013-04-06 12:12:39 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2013-04-06 12:12:39 ----A---- C:\Windows\system32\mcmde.dll
2013-04-06 12:12:39 ----A---- C:\Windows\system32\mblctr.exe
2013-04-06 12:12:39 ----A---- C:\Windows\system32\kdusb.dll
2013-04-06 12:12:39 ----A---- C:\Windows\system32\kdcom.dll
2013-04-06 12:12:38 ----A---- C:\Windows\system32\Magnify.exe
2013-04-06 12:12:38 ----A---- C:\Windows\system32\logman.exe
2013-04-06 12:12:38 ----A---- C:\Windows\system32\logagent.exe
2013-04-06 12:12:37 ----A---- C:\Windows\system32\shsetup.dll
2013-04-06 12:12:36 ----A---- C:\Windows\system32\wercon.exe
2013-04-06 12:12:36 ----A---- C:\Windows\system32\wer.dll
2013-04-06 12:12:36 ----A---- C:\Windows\system32\WebClnt.dll
2013-04-06 12:12:36 ----A---- C:\Windows\system32\wdscore.dll
2013-04-06 12:12:35 ----A---- C:\Windows\system32\wdc.dll
2013-04-06 12:12:34 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-04-06 12:12:34 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-04-06 12:12:32 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2013-04-06 12:12:31 ----A---- C:\Windows\system32\wevtutil.exe
2013-04-06 12:12:30 ----A---- C:\Windows\system32\whealogr.dll
2013-04-06 12:12:30 ----A---- C:\Windows\system32\wevtsvc.dll
2013-04-06 12:12:29 ----A---- C:\Windows\system32\wevtapi.dll
2013-04-06 12:12:29 ----A---- C:\Windows\system32\wersvc.dll
2013-04-06 12:12:29 ----A---- C:\Windows\system32\WerFaultSecure.exe
2013-04-06 12:12:29 ----A---- C:\Windows\system32\WerFault.exe
2013-04-06 12:12:27 ----A---- C:\Windows\system32\win32spl.dll
2013-04-06 12:12:26 ----A---- C:\Windows\system32\wiaservc.dll
2013-04-06 12:12:26 ----A---- C:\Windows\system32\wiaaut.dll
2013-04-06 12:12:26 ----A---- C:\Windows\system32\version.dll
2013-04-06 12:12:26 ----A---- C:\Windows\system32\vds.exe
2013-04-06 12:12:26 ----A---- C:\Windows\system32\vdmdbg.dll
2013-04-06 12:12:25 ----A---- C:\Windows\system32\vdsutil.dll
2013-04-06 12:12:25 ----A---- C:\Windows\system32\vdsdyn.dll
2013-04-06 12:12:24 ----A---- C:\Windows\system32\uxsms.dll
2013-04-06 12:12:24 ----A---- C:\Windows\system32\Utilman.exe
2013-04-06 12:12:24 ----A---- C:\Windows\system32\user32.dll
2013-04-06 12:12:24 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2013-04-06 12:12:24 ----A---- C:\Windows\system32\drivers\usbport.sys
2013-04-06 12:12:24 ----A---- C:\Windows\system32\drivers\usbohci.sys
2013-04-06 12:12:22 ----A---- C:\Windows\system32\userenv.dll
2013-04-06 12:12:22 ----A---- C:\Windows\system32\usercpl.dll
2013-04-06 12:12:20 ----A---- C:\Windows\system32\wcncsvc.dll
2013-04-06 12:12:20 ----A---- C:\Windows\system32\drivers\watchdog.sys
2013-04-06 12:12:19 ----A---- C:\Windows\system32\wcnwiz2.dll
2013-04-06 12:12:19 ----A---- C:\Windows\system32\wcnwiz.dll
2013-04-06 12:12:19 ----A---- C:\Windows\system32\WcnNetsh.dll
2013-04-06 12:12:18 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2013-04-06 12:12:17 ----A---- C:\Windows\system32\w32time.dll
2013-04-06 12:12:17 ----A---- C:\Windows\system32\VSSVC.exe
2013-04-06 12:12:16 ----A---- C:\Windows\system32\vssapi.dll
2013-04-06 12:12:16 ----A---- C:\Windows\system32\drivers\volsnap.sys
2013-04-06 12:12:15 ----A---- C:\Windows\system32\wscisvif.dll
2013-04-06 12:12:15 ----A---- C:\Windows\system32\WscEapPr.dll
2013-04-06 12:12:15 ----A---- C:\Windows\system32\wscapi.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\WSDMon.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\wsdchngr.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\wscsvc.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\wscript.exe
2013-04-06 12:12:14 ----A---- C:\Windows\system32\wscntfy.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\wow32.dll
2013-04-06 12:12:14 ----A---- C:\Windows\system32\WMVXENCD.DLL
2013-04-06 12:12:14 ----A---- C:\Windows\system32\WMVSDECD.DLL
2013-04-06 12:12:14 ----A---- C:\Windows\system32\WMVENCOD.DLL
2013-04-06 12:12:13 ----A---- C:\Windows\system32\xmlfilter.dll
2013-04-06 12:12:13 ----A---- C:\Windows\system32\wusa.exe
2013-04-06 12:12:13 ----A---- C:\Windows\system32\wpcsvc.dll
2013-04-06 12:12:13 ----A---- C:\Windows\system32\wpccpl.dll
2013-04-06 12:12:13 ----A---- C:\Windows\system32\wpcao.dll
2013-04-06 12:12:12 ----A---- C:\Windows\system32\wshext.dll
2013-04-06 12:12:12 ----A---- C:\Windows\system32\wshbth.dll
2013-04-06 12:12:12 ----A---- C:\Windows\system32\wsepno.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wsnmp32.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wlgpclnt.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\Wldap32.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wlanui.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wlanpref.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wlangpui.dll
2013-04-06 12:12:11 ----A---- C:\Windows\system32\wisptis.exe
2013-04-06 12:12:10 ----A---- C:\Windows\system32\WinSCard.dll
2013-04-06 12:12:10 ----A---- C:\Windows\system32\WinSAT.exe
2013-04-06 12:12:10 ----A---- C:\Windows\system32\winrnr.dll
2013-04-06 12:12:10 ----A---- C:\Windows\system32\winresume.exe
2013-04-06 12:12:10 ----A---- C:\Windows\system32\winmm.dll
2013-04-06 12:12:10 ----A---- C:\Windows\system32\winlogon.exe
2013-04-06 12:12:10 ----A---- C:\Windows\system32\winload.exe
2013-04-06 12:12:09 ----A---- C:\Windows\system32\WMPhoto.dll
2013-04-06 12:12:09 ----A---- C:\Windows\system32\wmpeffects.dll
2013-04-06 12:12:09 ----A---- C:\Windows\system32\WMNetMgr.dll
2013-04-06 12:12:08 ----A---- C:\Windows\system32\wmdrmsdk.dll
2013-04-06 12:12:07 ----A---- C:\Windows\system32\drivers\Storport.sys
2013-04-06 12:11:57 ----A---- C:\Windows\system32\Storprop.dll
2013-04-06 12:11:57 ----A---- C:\Windows\system32\stobject.dll
2013-04-06 12:11:57 ----A---- C:\Windows\system32\drivers\stream.sys
2013-04-06 12:11:56 ----A---- C:\Windows\system32\sud.dll
2013-04-06 12:11:55 ----A---- C:\Windows\system32\srchadmin.dll
2013-04-06 12:11:55 ----A---- C:\Windows\system32\srcore.dll
2013-04-06 12:11:54 ----A---- C:\Windows\system32\sysmain.dll
2013-04-06 12:11:54 ----A---- C:\Windows\system32\swprv.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\sysclass.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\SyncCenter.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\smss.exe
2013-04-06 12:11:53 ----A---- C:\Windows\system32\SMBHelperClass.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\slwmi.dll
2013-04-06 12:11:53 ----A---- C:\Windows\system32\drivers\smb.sys
2013-04-06 12:11:52 ----A---- C:\Windows\system32\spp.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\spoolss.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\spinstall.exe
2013-04-06 12:11:52 ----A---- C:\Windows\system32\spcmsg.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SmiEngine.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\slwga.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLUINotify.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLUI.exe
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLsvc.exe
2013-04-06 12:11:52 ----A---- C:\Windows\system32\slmgr.vbs
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLLUA.exe
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLCommDlg.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\slcinst.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLCExt.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\slcc.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\SLC.dll
2013-04-06 12:11:52 ----A---- C:\Windows\system32\shwebsvc.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\TSTheme.exe
2013-04-06 12:11:51 ----A---- C:\Windows\system32\sqlsrv32.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\spwizui.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\spwinsat.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\spreview.exe
2013-04-06 12:11:51 ----A---- C:\Windows\system32\sperror.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\softkbd.dll
2013-04-06 12:11:51 ----A---- C:\Windows\system32\SnippingTool.exe
2013-04-06 12:11:51 ----A---- C:\Windows\system32\SndVol.exe
2013-04-06 12:11:51 ----A---- C:\Windows\system32\drivers\spsys.sys
2013-04-06 12:11:50 ----A---- C:\Windows\system32\TsWpfWrp.exe
2013-04-06 12:11:49 ----A---- C:\Windows\system32\drivers\udfs.sys
2013-04-06 12:11:48 ----A---- C:\Windows\system32\zipfldr.dll
2013-04-06 12:11:48 ----A---- C:\Windows\system32\untfs.dll
2013-04-06 12:11:48 ----A---- C:\Windows\system32\drivers\usbhub.sys
2013-04-06 12:11:48 ----A---- C:\Windows\system32\drivers\usbehci.sys
2013-04-06 12:11:48 ----A---- C:\Windows\system32\drivers\USBCAMD.sys
2013-04-06 12:11:48 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-04-06 12:11:47 ----A---- C:\Windows\system32\ulib.dll
2013-04-06 12:11:47 ----A---- C:\Windows\system32\uDWM.dll
2013-04-06 12:11:47 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2013-04-06 12:11:46 ----A---- C:\Windows\system32\umpnpmgr.dll
2013-04-06 12:11:46 ----A---- C:\Windows\system32\systemcpl.dll
2013-04-06 12:11:42 ----A---- C:\Windows\system32\tquery.dll
2013-04-06 12:11:41 ----A---- C:\Windows\system32\tcpmon.dll
2013-04-06 12:11:41 ----A---- C:\Windows\system32\tcpipcfg.dll
2013-04-06 12:11:40 ----A---- C:\Windows\system32\tapisrv.dll
2013-04-06 12:11:39 ----A---- C:\Windows\system32\termsrv.dll
2013-04-06 12:11:38 ----A---- C:\Windows\system32\themeui.dll
2013-04-06 12:11:38 ----A---- C:\Windows\system32\themecpl.dll
2013-04-06 12:11:38 ----A---- C:\Windows\system32\thawbrkr.dll
2013-04-06 12:11:38 ----A---- C:\Windows\system32\drivers\tdx.sys
2013-04-06 12:11:36 ----A---- C:\Windows\system32\drivers\termdd.sys
2013-04-06 11:23:08 ----D---- C:\rsit
2013-03-13 06:19:05 ----A---- C:\Windows\system32\javaws.exe
2013-03-13 06:18:06 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2013-03-13 06:18:06 ----A---- C:\Windows\system32\javaw.exe
2013-03-13 06:18:06 ----A---- C:\Windows\system32\java.exe

======List of files/folders modified in the last 1 month======

2013-04-06 17:22:54 ----D---- C:\Program Files\trend micro
2013-04-06 17:22:49 ----D---- C:\Windows\temp
2013-04-06 17:22:36 ----D---- C:\Windows\System32
2013-04-06 17:22:36 ----D---- C:\Windows\inf
2013-04-06 17:22:36 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-04-06 17:20:45 ----D---- C:\Windows\system32\drivers
2013-04-06 17:20:35 ----D---- C:\Windows\system32\Tasks
2013-04-06 17:20:25 ----SHD---- C:\Windows\Installer
2013-04-06 17:20:23 ----D---- C:\Windows\winsxs
2013-04-06 17:18:53 ----D---- C:\Windows
2013-04-06 17:18:13 ----RD---- C:\Program Files
2013-04-06 17:18:13 ----D---- C:\ProgramData\Alwil Software
2013-04-06 17:18:10 ----SHD---- C:\System Volume Information
2013-04-06 17:17:20 ----D---- C:\Users\Viera\AppData\Roaming\skypePM
2013-04-06 17:16:29 ----D---- C:\Users\Viera\AppData\Roaming\Skype
2013-04-06 15:56:23 ----D---- C:\Program Files\SweetIM
2013-04-06 15:56:22 ----D---- C:\ProgramData
2013-04-06 15:52:03 ----D---- C:\Windows\Logs
2013-04-06 14:28:11 ----D---- C:\Windows\Microsoft.NET
2013-04-06 14:27:49 ----RSD---- C:\Windows\assembly
2013-04-06 13:10:42 ----D---- C:\Windows\rescache
2013-04-06 12:58:54 ----D---- C:\Windows\Prefetch
2013-04-06 12:58:04 ----D---- C:\Windows\system32\catroot
2013-04-06 12:57:59 ----SHD---- C:\Boot
2013-04-06 12:49:50 ----D---- C:\Program Files\Windows Calendar
2013-04-06 12:49:50 ----D---- C:\Program Files\Movie Maker
2013-04-06 12:49:44 ----D---- C:\Program Files\Windows Sidebar
2013-04-06 12:49:44 ----D---- C:\Program Files\Windows Mail
2013-04-06 12:49:44 ----D---- C:\Program Files\Internet Explorer
2013-04-06 12:49:43 ----D---- C:\Program Files\Windows Photo Gallery
2013-04-06 12:49:43 ----D---- C:\Program Files\Windows Media Player
2013-04-06 12:49:43 ----D---- C:\Program Files\Windows Journal
2013-04-06 12:49:43 ----D---- C:\Program Files\Windows Collaboration
2013-04-06 12:49:38 ----D---- C:\Program Files\Common Files\System
2013-04-06 12:49:31 ----D---- C:\Windows\servicing
2013-04-06 12:49:31 ----D---- C:\Program Files\Windows Defender
2013-04-06 12:49:29 ----D---- C:\Windows\ehome
2013-04-06 12:49:11 ----D---- C:\Windows\IME
2013-04-06 12:49:10 ----D---- C:\Windows\system32\XPSViewer
2013-04-06 12:49:10 ----D---- C:\Windows\system32\lv-LV
2013-04-06 12:49:10 ----D---- C:\Windows\system32\hr-HR
2013-04-06 12:49:10 ----D---- C:\Windows\system32\et-EE
2013-04-06 12:49:10 ----D---- C:\Windows\system32\da-DK
2013-04-06 12:49:09 ----D---- C:\Windows\system32\sk-SK
2013-04-06 12:49:08 ----D---- C:\Windows\system32\ko-KR
2013-04-06 12:49:08 ----D---- C:\Windows\system32\en-US
2013-04-06 12:49:07 ----D---- C:\Windows\system32\it-IT
2013-04-06 12:49:07 ----D---- C:\Windows\system32\el-GR
2013-04-06 12:49:07 ----D---- C:\Windows\system32\de-DE
2013-04-06 12:49:06 ----D---- C:\Windows\system32\oobe
2013-04-06 12:49:06 ----D---- C:\Windows\system32\migration
2013-04-06 12:49:02 ----D---- C:\Windows\system32\sv-SE
2013-04-06 12:49:02 ----D---- C:\Windows\system32\ru-RU
2013-04-06 12:49:02 ----D---- C:\Windows\system32\fr-FR
2013-04-06 12:49:02 ----D---- C:\Windows\system32\AdvancedInstallers
2013-04-06 12:49:01 ----D---- C:\Windows\system32\SLUI
2013-04-06 12:49:01 ----D---- C:\Windows\system32\setup
2013-04-06 12:49:01 ----D---- C:\Windows\system32\pt-PT
2013-04-06 12:49:01 ----D---- C:\Windows\system32\hu-HU
2013-04-06 12:49:01 ----D---- C:\Windows\system32\he-IL
2013-04-06 12:49:01 ----D---- C:\Windows\system32\fi-FI
2013-04-06 12:49:01 ----D---- C:\Windows\system32\cs-CZ
2013-04-06 12:49:00 ----D---- C:\Windows\system32\zh-TW
2013-04-06 12:49:00 ----D---- C:\Windows\system32\zh-CN
2013-04-06 12:49:00 ----D---- C:\Windows\system32\uk-UA
2013-04-06 12:49:00 ----D---- C:\Windows\system32\sr-Latn-CS
2013-04-06 12:49:00 ----D---- C:\Windows\system32\sl-SI
2013-04-06 12:49:00 ----D---- C:\Windows\system32\ro-RO
2013-04-06 12:49:00 ----D---- C:\Windows\system32\pl-PL
2013-04-06 12:49:00 ----D---- C:\Windows\system32\manifeststore
2013-04-06 12:49:00 ----D---- C:\Windows\system32\ja-JP
2013-04-06 12:49:00 ----D---- C:\Windows\system32\es-ES
2013-04-06 12:49:00 ----D---- C:\Windows\system32\en
2013-04-06 12:49:00 ----D---- C:\Windows\system32\bg-BG
2013-04-06 12:48:58 ----D---- C:\Windows\system32\th-TH
2013-04-06 12:48:58 ----D---- C:\Windows\system32\drivers\sk-SK
2013-04-06 12:48:58 ----D---- C:\Windows\system32\drivers\en-US
2013-04-06 12:48:57 ----D---- C:\Windows\system32\tr-TR
2013-04-06 12:48:56 ----D---- C:\Windows\system32\wbem
2013-04-06 12:48:55 ----D---- C:\Windows\system32\nl-NL
2013-04-06 12:48:55 ----D---- C:\Windows\system32\nb-NO
2013-04-06 12:48:55 ----D---- C:\Windows\system32\lt-LT
2013-04-06 12:48:55 ----D---- C:\Windows\system32\ar-SA
2013-04-06 12:48:54 ----D---- C:\Windows\system32\migwiz
2013-04-06 12:48:53 ----D---- C:\Windows\system32\pt-BR
2013-04-06 12:47:59 ----RSD---- C:\Windows\Fonts
2013-04-06 12:47:58 ----D---- C:\Windows\AppPatch
2013-04-06 12:47:49 ----D---- C:\Windows\system32\Boot
2013-04-06 12:45:57 ----D---- C:\Windows\system32\drivers\UMDF
2013-04-06 12:45:18 ----D---- C:\Windows\system32\RTCOM
2013-04-06 12:39:36 ----D---- C:\Windows\Debug
2013-04-06 12:33:13 ----A---- C:\Windows\fonts\GlobalUserInterface.CompositeFont
2013-04-06 11:49:38 ----D---- C:\Program Files\Common Files
2013-04-05 14:06:06 ----D---- C:\Windows\system32\catroot2
2013-03-14 00:20:49 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-03-13 06:17:15 ----A---- C:\Windows\system32\npdeployJava1.dll
2013-03-13 06:17:14 ----A---- C:\Windows\system32\deployJava1.dll
2013-03-13 06:17:02 ----D---- C:\Program Files\Java
2013-03-13 06:03:06 ----D---- C:\Program Files\Mozilla Maintenance Service
2013-03-13 00:06:15 ----D---- C:\Program Files\Mozilla Firefox
2013-03-12 01:10:56 ----N---- C:\Windows\system32\MpSigStub.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2013-03-07 164736]
R1 AswRdr;aswRdr; C:\Windows\system32\drivers\AswRdr.sys [2013-03-07 49760]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2013-03-07 765736]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2013-03-07 368176]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2013-03-07 62376]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2013-03-07 29816]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-03-07 66336]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-11-14 2016920]
R3 RTL8187B;Realtek RTL8187B Wireless 802.11b/g 54Mbps USB 2.0 Network Adapter; C:\Windows\system32\DRIVERS\RTL8187B.sys [2010-03-31 350720]
R3 SiS6350;SiS6350; C:\Windows\system32\DRIVERS\SISGRKMD.sys [2007-08-24 452096]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSGB6.sys [2008-05-02 48128]
R3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2013-03-07 49248]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2008-03-17 101632]
S3 KMWDFILTER;HIDUASDesc; C:\Windows\system32\DRIVERS\KMWDFILTER.sys [2008-10-09 17408]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\mbamswissarmy.sys [2013-04-06 40776]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-12-18 65192]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-03-07 45248]
S2 NOD32FiXTemDono;Eset Nod32 Boot; C:\Windows\system32\regedt32.exe [2006-11-02 9216]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-03-14 253656]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2013-03-13 115608]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

-----------------EOF-----------------

Zamčeno