Po nalezení trojana Dopplera prosím o kontrolu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
-
kengura.ivo
- 5. stupeň - BAN
- Příspěvky: 82
- Registrován: 12 Říj 2008 11:10
Po nalezení trojana Dopplera prosím o kontrolu
Run by ivo at 2013-04-30 12:12:11
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 99 GB (71%) free of 140 GB
Total RAM: 2047 MB (44% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:12:19, on 30.4.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16537)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVG\AVG2013\avgui.exe
C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTuner.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Users\ivo\AppData\Roaming\Yontoo\YontooDesktop.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Users\ivo\Pictures\RSIT.exe
C:\Program Files\trend micro\ivo.exe
C:\Windows\system32\DllHost.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://centrum.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Yontoo Layers - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files\Yontoo\YontooIEClient.dll
O3 - Toolbar: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files\AVG\AVG2013\avgui.exe" /TRAYONLY
O4 - HKLM\..\Run: [Ashampoo WinOptimizer Live-Tuner] "C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTuner.exe" -TRAY
O4 - HKCU\..\Run: [Yontoo Desktop] "C:\Users\ivo\AppData\Roaming\Yontoo\YontooDesktop.exe"
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{27142A06-3188-4F43-B2C6-D8DA4864F6C3}: NameServer = 212.96.161.6,212.96.160.7
O17 - HKLM\System\CS1\Services\Tcpip\..\{27142A06-3188-4F43-B2C6-D8DA4864F6C3}: NameServer = 212.96.161.6,212.96.160.7
O17 - HKLM\System\CS2\Services\Tcpip\..\{27142A06-3188-4F43-B2C6-D8DA4864F6C3}: NameServer = 212.96.161.6,212.96.160.7
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\15.1.0\ViProtocol.dll
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgfws.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgwdsvc.exe
O23 - Service: Defragmentation-Service (DfSdkS) - mst software GmbH, Germany - C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\DfsdkS.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: vToolbarUpdater15.1.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.1.0\ToolbarUpdater.exe
O23 - Service: Ashampoo LiveTuner Service (WO_LiveService) - Unknown owner - C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTunerService.exe
--
End of file - 6115 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\One-Click Optimizer.job
C:\Windows\tasks\schedule!3036567561.job
=========Mozilla firefox=========
ProfilePath - C:\Users\ivo\AppData\Roaming\Mozilla\Firefox\Profiles\1nhnezth.default
prefs.js - "browser.search.useDBForOrder" - "false"
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, {A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}:7.3.4.76, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.16"
prefs.js - "keyword.URL" - "http://search.yahoo.com/search?fr=green ... =198484&p="
"avg@toolbar"=C:\ProgramData\AVG Secure Search\FireFoxExt\15.1.0.2
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.169 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_7_700_169.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin]
"Description"=
"Path"=C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\15.1.0\\npsitesafety.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.21.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
nppdf32.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt
C:\Program Files\Mozilla Firefox\searchplugins\
avg-secure-search.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
yahoo.xml
C:\Users\ivo\AppData\Roaming\Mozilla\Firefox\Profiles\1nhnezth.default\extensions\
plugin@yontoo.com
C:\Users\ivo\AppData\Roaming\Mozilla\Firefox\Profiles\1nhnezth.default\searchplugins\
SweetIM Search.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-04-18 462752]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-03-19 4529272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-04-18 171424]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}]
Yontoo - C:\Program Files\Yontoo\YontooIEClient.dll [2013-04-17 197920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{95B7759C-8C7F-4BF1-B163-73684A933233}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AVG_UI"=C:\Program Files\AVG\AVG2013\avgui.exe [2013-03-05 4394032]
"Ashampoo WinOptimizer Live-Tuner"=C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTuner.exe [2013-04-10 2949480]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Yontoo Desktop"=C:\Users\ivo\AppData\Roaming\Yontoo\YontooDesktop.exe [2013-04-17 42784]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced SystemCare 6]
C:\Program Files\IObit\Advanced SystemCare 6\ASCTray.exe /AutoStart []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IObit Malware Fighter]
C:\Program Files\IObit\IObit Malware Fighter\IMF.exe /autostart []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaOviSuite2]
C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe [2011-06-29 966712]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SearchSettings]
c:\program files\common files\spigot\search settings\searchsettings.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office.lnk]
C:\PROGRA~1\MICROS~2\Office10\OSA.EXE [2001-02-13 83360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"vidc.VP60"=vp6vfw.dll
"vidc.VP61"=vp6vfw.dll
"vidc.VP62"=vp6vfw.dll
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-04-30 12:00:28 ----D---- C:\rsit
2013-04-30 11:32:39 ----SHD---- C:\Config.Msi
2013-04-29 23:44:51 ----D---- C:\Users\ivo\AppData\Roaming\Yontoo
2013-04-29 23:44:51 ----D---- C:\Program Files\Yontoo
2013-04-29 23:44:35 ----D---- C:\ProgramData\Tarma Installer
2013-04-29 23:42:47 ----D---- C:\Program Files\SweetIM
2013-04-29 23:42:32 ----A---- C:\Windows\system32\msvcr80.dll
2013-04-29 23:42:31 ----A---- C:\Windows\system32\msvcp80.dll
2013-04-29 23:42:31 ----A---- C:\Windows\system32\msvcm80.dll
2013-04-29 23:42:27 ----D---- C:\Windows\system32\WNLT
2013-04-29 23:42:24 ----D---- C:\Program Files\sweetpacks bundle uninstaller
2013-04-29 23:41:23 ----D---- C:\Program Files\PutLockerDownloader
2013-04-27 10:50:58 ----A---- C:\Windows\system32\DfSdkBt.exe
2013-04-26 14:37:04 ----A---- C:\Windows\system32\schannel.dll
2013-04-26 14:37:04 ----A---- C:\Windows\system32\lsasrv.dll
2013-04-26 14:37:04 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2013-04-26 14:37:04 ----A---- C:\Windows\system32\drivers\cng.sys
2013-04-26 14:37:01 ----A---- C:\Windows\system32\qdvd.dll
2013-04-25 16:22:18 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-04-25 16:22:18 ----A---- C:\Windows\system32\elshyph.dll
2013-04-25 16:22:17 ----A---- C:\Windows\system32\urlmon.dll
2013-04-25 16:22:17 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-04-25 16:22:16 ----A---- C:\Windows\system32\wininet.dll
2013-04-25 16:22:16 ----A---- C:\Windows\system32\msrating.dll
2013-04-25 16:22:16 ----A---- C:\Windows\system32\msls31.dll
2013-04-25 16:22:16 ----A---- C:\Windows\system32\jsproxy.dll
2013-04-25 16:22:16 ----A---- C:\Windows\system32\iertutil.dll
2013-04-25 16:22:15 ----A---- C:\Windows\system32\wextract.exe
2013-04-25 16:22:15 ----A---- C:\Windows\system32\mshtmled.dll
2013-04-25 16:22:15 ----A---- C:\Windows\system32\msfeeds.dll
2013-04-25 16:22:15 ----A---- C:\Windows\system32\inseng.dll
2013-04-25 16:22:15 ----A---- C:\Windows\system32\iexpress.exe
2013-04-25 16:22:14 ----A---- C:\Windows\system32\vbscript.dll
2013-04-25 16:22:14 ----A---- C:\Windows\system32\mshtml.dll
2013-04-25 16:22:13 ----A---- C:\Windows\system32\occache.dll
2013-04-25 16:22:13 ----A---- C:\Windows\system32\ieUnatt.exe
2013-04-25 16:22:12 ----A---- C:\Windows\system32\pngfilt.dll
2013-04-25 16:22:12 ----A---- C:\Windows\system32\mshta.exe
2013-04-25 16:22:12 ----A---- C:\Windows\system32\jscript.dll
2013-04-25 16:22:12 ----A---- C:\Windows\system32\imgutil.dll
2013-04-25 16:22:12 ----A---- C:\Windows\system32\iepeers.dll
2013-04-25 16:22:11 ----A---- C:\Windows\system32\msfeedssync.exe
2013-04-25 16:22:11 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-04-25 16:22:11 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-04-25 16:22:10 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-04-25 16:22:10 ----A---- C:\Windows\system32\mshtmler.dll
2013-04-25 16:22:10 ----A---- C:\Windows\system32\jscript9.dll
2013-04-25 16:22:10 ----A---- C:\Windows\system32\iesysprep.dll
2013-04-25 16:22:09 ----A---- C:\Windows\system32\ieui.dll
2013-04-25 16:22:09 ----A---- C:\Windows\system32\ieframe.dll
2013-04-25 16:22:07 ----A---- C:\Windows\system32\ieapfltr.dll
2013-04-25 16:22:07 ----A---- C:\Windows\system32\ieapfltr.dat
2013-04-25 16:22:07 ----A---- C:\Windows\system32\icardie.dll
2013-04-25 16:22:07 ----A---- C:\Windows\system32\dxtrans.dll
2013-04-25 16:22:07 ----A---- C:\Windows\system32\dxtmsft.dll
2013-04-25 16:22:06 ----A---- C:\Windows\system32\iernonce.dll
2013-04-25 16:22:06 ----A---- C:\Windows\system32\ie4uinit.exe
2013-04-25 16:22:05 ----A---- C:\Windows\system32\url.dll
2013-04-25 16:22:05 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-04-25 16:22:05 ----A---- C:\Windows\system32\iesetup.dll
2013-04-25 16:22:05 ----A---- C:\Windows\system32\iedkcs32.dll
2013-04-25 16:22:04 ----A---- C:\Windows\system32\webcheck.dll
2013-04-25 16:22:04 ----A---- C:\Windows\system32\licmgr10.dll
2013-04-25 16:20:19 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-04-25 16:20:19 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-04-25 16:20:19 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-04-25 16:20:18 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-04-25 16:20:18 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-04-25 16:20:18 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-04-25 16:20:18 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-04-25 16:20:18 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-04-25 16:20:18 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-04-25 16:20:18 ----A---- C:\Windows\system32\XpsPrint.dll
2013-04-25 16:20:17 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-04-25 16:20:17 ----A---- C:\Windows\system32\WMPhoto.dll
2013-04-25 16:20:17 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-04-25 16:20:17 ----A---- C:\Windows\system32\FntCache.dll
2013-04-25 16:20:16 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-04-25 16:20:16 ----A---- C:\Windows\system32\DWrite.dll
2013-04-25 16:20:16 ----A---- C:\Windows\system32\d3d11.dll
2013-04-25 16:20:16 ----A---- C:\Windows\system32\d3d10core.dll
2013-04-25 16:20:16 ----A---- C:\Windows\system32\d3d10.dll
2013-04-25 16:20:15 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-04-25 16:20:15 ----A---- C:\Windows\system32\d3d10level9.dll
2013-04-25 16:20:15 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-04-25 16:20:15 ----A---- C:\Windows\system32\d3d10_1.dll
2013-04-25 16:20:13 ----A---- C:\Windows\system32\UIAnimation.dll
2013-04-25 16:20:13 ----A---- C:\Windows\system32\dxgi.dll
2013-04-25 16:20:13 ----A---- C:\Windows\system32\d3d10warp.dll
2013-04-25 16:20:13 ----A---- C:\Windows\system32\d2d1.dll
2013-04-25 14:19:48 ----A---- C:\Windows\system32\ncsi.dll
2013-04-25 14:19:47 ----A---- C:\Windows\system32\nlasvc.dll
2013-04-25 14:19:47 ----A---- C:\Windows\system32\nlaapi.dll
2013-04-25 14:19:47 ----A---- C:\Windows\system32\netevent.dll
2013-04-25 14:19:47 ----A---- C:\Windows\system32\netcorehc.dll
2013-04-25 14:19:47 ----A---- C:\Windows\system32\iphlpsvc.dll
2013-04-25 14:19:47 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2013-04-25 14:18:17 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2013-04-25 14:18:17 ----A---- C:\Windows\system32\drivers\ndis.sys
2013-04-25 14:18:13 ----A---- C:\Windows\system32\OxpsConverter.exe
2013-04-25 14:17:56 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2013-04-25 14:17:56 ----A---- C:\Windows\system32\dhcpcore6.dll
2013-04-25 14:17:53 ----A---- C:\Windows\system32\taskhost.exe
2013-04-25 00:42:04 ----D---- C:\Windows\system32\SPReview
2013-04-25 00:41:05 ----D---- C:\Windows\system32\EventProviders
2013-04-25 00:24:24 ----D---- C:\Program Files\Common Files\Designer
2013-04-25 00:09:47 ----A---- C:\Windows\vbaddin.ini
2013-04-25 00:07:44 ----D---- C:\Program Files\Microsoft FrontPage
2013-04-25 00:05:22 ----D---- C:\Users\ivo\AppData\Roaming\Microsoft Web Folders
2013-04-24 23:08:16 ----A---- C:\Windows\system32\dfshim.dll
2013-04-24 23:08:12 ----A---- C:\Windows\system32\LSCSHostPolicy.dll
2013-04-24 23:08:12 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-04-24 23:08:11 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-04-24 23:08:10 ----A---- C:\Windows\system32\tssrvlic.dll
2013-04-24 23:08:10 ----A---- C:\Windows\system32\sysmain.dll
2013-04-24 23:08:10 ----A---- C:\Windows\system32\RDVGHelper.exe
2013-04-24 23:08:09 ----A---- C:\Windows\system32\secproc_isv.dll
2013-04-24 23:08:07 ----A---- C:\Windows\system32\spwizui.dll
2013-04-24 23:08:07 ----A---- C:\Windows\system32\secproc.dll
2013-04-24 23:08:07 ----A---- C:\Windows\system32\scavengeui.dll
2013-04-24 23:08:07 ----A---- C:\Windows\system32\RMActivate_isv.exe
2013-04-24 23:08:07 ----A---- C:\Windows\system32\RMActivate.exe
2013-04-24 23:08:06 ----A---- C:\Windows\system32\mscoree.dll
2013-04-24 23:08:05 ----A---- C:\Windows\system32\schedsvc.dll
2013-04-24 23:08:05 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-04-24 23:08:05 ----A---- C:\Windows\system32\PresentationHost.exe
2013-04-24 23:08:05 ----A---- C:\Windows\system32\CertEnroll.dll
2013-04-24 23:08:04 ----A---- C:\Windows\system32\rdpdd.dll
2013-04-24 23:08:04 ----A---- C:\Windows\system32\RacEngn.dll
2013-04-24 23:08:04 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2013-04-24 23:08:02 ----A---- C:\Windows\system32\vssapi.dll
2013-04-24 23:08:02 ----A---- C:\Windows\system32\taskschd.dll
2013-04-24 23:08:02 ----A---- C:\Windows\system32\SearchFolder.dll
2013-04-24 23:08:02 ----A---- C:\Windows\system32\mstsc.exe
2013-04-24 23:08:01 ----A---- C:\Windows\system32\WinSAT.exe
2013-04-24 23:08:01 ----A---- C:\Windows\system32\termsrv.dll
2013-04-24 23:08:01 ----A---- C:\Windows\system32\spreview.exe
2013-04-24 23:08:01 ----A---- C:\Windows\system32\spinstall.exe
2013-04-24 23:08:01 ----A---- C:\Windows\system32\rpcrt4.dll
2013-04-24 23:08:01 ----A---- C:\Windows\system32\MPSSVC.dll
2013-04-24 23:08:00 ----A---- C:\Windows\system32\umrdp.dll
2013-04-24 23:08:00 ----A---- C:\Windows\system32\TSWorkspace.dll
2013-04-24 23:08:00 ----A---- C:\Windows\system32\tsmf.dll
2013-04-24 23:07:58 ----A---- C:\Windows\system32\winhttp.dll
2013-04-24 23:07:58 ----A---- C:\Windows\system32\VSSVC.exe
2013-04-24 23:07:58 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-04-24 23:07:58 ----A---- C:\Windows\system32\setupapi.dll
2013-04-24 23:07:58 ----A---- C:\Windows\system32\rdpshell.exe
2013-04-24 23:07:58 ----A---- C:\Windows\system32\netlogon.dll
2013-04-24 23:07:58 ----A---- C:\Windows\system32\MSVidCtl.dll
2013-04-24 23:07:57 ----A---- C:\Windows\system32\WsmSvc.dll
2013-04-24 23:07:57 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-04-24 23:07:57 ----A---- C:\Windows\system32\winlogon.exe
2013-04-24 23:07:57 ----A---- C:\Windows\system32\user32.dll
2013-04-24 23:07:57 ----A---- C:\Windows\system32\upnp.dll
2013-04-24 23:07:57 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2013-04-24 23:07:56 ----A---- C:\Windows\system32\sppobjs.dll
2013-04-24 23:07:56 ----A---- C:\Windows\system32\shlwapi.dll
2013-04-24 23:07:56 ----A---- C:\Windows\system32\SessEnv.dll
2013-04-24 23:07:56 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2013-04-24 23:07:56 ----A---- C:\Windows\system32\netfxperf.dll
2013-04-24 23:07:56 ----A---- C:\Windows\system32\msv1_0.dll
2013-04-24 23:07:56 ----A---- C:\Windows\system32\msdrm.dll
2013-04-24 23:07:56 ----A---- C:\Windows\system32\lsm.exe
2013-04-24 23:07:55 ----A---- C:\Windows\system32\WebClnt.dll
2013-04-24 23:07:55 ----A---- C:\Windows\system32\userenv.dll
2013-04-24 23:07:55 ----A---- C:\Windows\system32\sppwinob.dll
2013-04-24 23:07:54 ----A---- C:\Windows\system32\themeui.dll
2013-04-24 23:07:54 ----A---- C:\Windows\system32\rdpendp.dll
2013-04-24 23:07:54 ----A---- C:\Windows\system32\rdpclip.exe
2013-04-24 23:07:54 ----A---- C:\Windows\system32\propsys.dll
2013-04-24 23:07:54 ----A---- C:\Windows\system32\framedynos.dll
2013-04-24 23:07:54 ----A---- C:\Windows\system32\drivers\volsnap.sys
2013-04-24 23:07:53 ----A---- C:\Windows\system32\taskeng.exe
2013-04-24 23:07:53 ----A---- C:\Windows\system32\taskcomp.dll
2013-04-24 23:07:53 ----A---- C:\Windows\system32\spp.dll
2013-04-24 23:07:53 ----A---- C:\Windows\system32\rdpinit.exe
2013-04-24 23:07:53 ----A---- C:\Windows\system32\mswsock.dll
2013-04-24 23:07:53 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2013-04-24 23:07:53 ----A---- C:\Windows\system32\basecsp.dll
2013-04-24 23:07:52 ----A---- C:\Windows\system32\WinSATAPI.dll
2013-04-24 23:07:52 ----A---- C:\Windows\system32\vpnike.dll
2013-04-24 23:07:52 ----A---- C:\Windows\system32\UIRibbon.dll
2013-04-24 23:07:52 ----A---- C:\Windows\system32\tspubwmi.dll
2013-04-24 23:07:52 ----A---- C:\Windows\system32\sxs.dll
2013-04-24 23:07:52 ----A---- C:\Windows\system32\srvsvc.dll
2013-04-24 23:07:52 ----A---- C:\Windows\system32\fveapi.dll
2013-04-24 23:07:51 ----A---- C:\Windows\system32\WSDApi.dll
2013-04-24 23:07:51 ----A---- C:\Windows\system32\ws2_32.dll
2013-04-24 23:07:51 ----A---- C:\Windows\system32\stobject.dll
2013-04-24 23:07:51 ----A---- C:\Windows\system32\prncache.dll
2013-04-24 23:07:51 ----A---- C:\Windows\system32\printui.dll
2013-04-24 23:07:51 ----A---- C:\Windows\system32\inetpp.dll
2013-04-24 23:07:51 ----A---- C:\Windows\system32\hgprint.dll
2013-04-24 23:07:51 ----A---- C:\Windows\system32\drivers\rdbss.sys
2013-04-24 23:07:51 ----A---- C:\Windows\system32\drivers\msdsm.sys
2013-04-24 23:07:51 ----A---- C:\Windows\system32\comctl32.dll
2013-04-24 23:07:50 ----A---- C:\Windows\system32\wlangpui.dll
2013-04-24 23:07:50 ----A---- C:\Windows\system32\vds.exe
2013-04-24 23:07:50 ----A---- C:\Windows\system32\scansetting.dll
2013-04-24 23:07:50 ----A---- C:\Windows\system32\rpchttp.dll
2013-04-24 23:07:50 ----A---- C:\Windows\system32\drivers\vmbus.sys
2013-04-24 23:07:50 ----A---- C:\Windows\system32\davclnt.dll
2013-04-24 23:07:48 ----A---- C:\Windows\system32\wscapi.dll
2013-04-24 23:07:48 ----A---- C:\Windows\system32\wpdshext.dll
2013-04-24 23:07:48 ----A---- C:\Windows\system32\webservices.dll
2013-04-24 23:07:48 ----A---- C:\Windows\system32\vmicsvc.exe
2013-04-24 23:07:48 ----A---- C:\Windows\system32\tscfgwmi.dll
2013-04-24 23:07:48 ----A---- C:\Windows\system32\sdengin2.dll
2013-04-24 23:07:48 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2013-04-24 23:07:48 ----A---- C:\Windows\system32\drivers\rdpdr.sys
2013-04-24 23:07:47 ----A---- C:\Windows\system32\wisptis.exe
2013-04-24 23:07:47 ----A---- C:\Windows\system32\WinSCard.dll
2013-04-24 23:07:47 ----A---- C:\Windows\system32\pla.dll
2013-04-24 23:07:47 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2013-04-24 23:07:46 ----A---- C:\Windows\system32\winsta.dll
2013-04-24 23:07:46 ----A---- C:\Windows\system32\wiaservc.dll
2013-04-24 23:07:46 ----A---- C:\Windows\system32\shsvcs.dll
2013-04-24 23:07:46 ----A---- C:\Windows\system32\setupcl.exe
2013-04-24 23:07:46 ----A---- C:\Windows\system32\rasmans.dll
2013-04-24 23:07:46 ----A---- C:\Windows\system32\drivers\msahci.sys
2013-04-24 23:07:45 ----A---- C:\Windows\system32\vaultsvc.dll
2013-04-24 23:07:45 ----A---- C:\Windows\system32\thumbcache.dll
2013-04-24 23:07:45 ----A---- C:\Windows\system32\TabSvc.dll
2013-04-24 23:07:45 ----A---- C:\Windows\system32\proquota.exe
2013-04-24 23:07:45 ----A---- C:\Windows\system32\netiohlp.dll
2013-04-24 23:07:45 ----A---- C:\Windows\system32\msutb.dll
2013-04-24 23:07:45 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2013-04-24 23:07:45 ----A---- C:\Windows\system32\drivers\udfs.sys
2013-04-24 23:07:44 ----A---- C:\Windows\system32\wcncsvc.dll
2013-04-24 23:07:44 ----A---- C:\Windows\system32\umpo.dll
2013-04-24 23:07:44 ----A---- C:\Windows\system32\tcpipcfg.dll
2013-04-24 23:07:44 ----A---- C:\Windows\system32\schtasks.exe
2013-04-24 23:07:44 ----A---- C:\Windows\system32\regapi.dll
2013-04-24 23:07:44 ----A---- C:\Windows\system32\powercpl.dll
2013-04-24 23:07:44 ----A---- C:\Windows\system32\mscorier.dll
2013-04-24 23:07:44 ----A---- C:\Windows\system32\framedyn.dll
2013-04-24 23:07:44 ----A---- C:\Windows\system32\drivers\winusb.sys
2013-04-24 23:07:43 ----A---- C:\Windows\system32\wdc.dll
2013-04-24 23:07:43 ----A---- C:\Windows\system32\Vault.dll
2013-04-24 23:07:43 ----A---- C:\Windows\system32\StructuredQuery.dll
2013-04-24 23:07:43 ----A---- C:\Windows\system32\sppsvc.exe
2013-04-24 23:07:43 ----A---- C:\Windows\system32\sdclt.exe
2013-04-24 23:07:43 ----A---- C:\Windows\system32\scesrv.dll
2013-04-24 23:07:43 ----A---- C:\Windows\system32\rastls.dll
2013-04-24 23:07:43 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-04-24 23:07:42 ----A---- C:\Windows\system32\wlanpref.dll
2013-04-24 23:07:42 ----A---- C:\Windows\system32\taskmgr.exe
2013-04-24 23:07:42 ----A---- C:\Windows\system32\RpcRtRemote.dll
2013-04-24 23:07:42 ----A---- C:\Windows\system32\Robocopy.exe
2013-04-24 23:07:41 ----A---- C:\Windows\system32\wiadefui.dll
2013-04-24 23:07:41 ----A---- C:\Windows\system32\userinit.exe
2013-04-24 23:07:41 ----A---- C:\Windows\system32\termmgr.dll
2013-04-24 23:07:41 ----A---- C:\Windows\system32\sppcomapi.dll
2013-04-24 23:07:41 ----A---- C:\Windows\system32\shsetup.dll
2013-04-24 23:07:41 ----A---- C:\Windows\system32\sharemediacpl.dll
2013-04-24 23:07:41 ----A---- C:\Windows\system32\rasppp.dll
2013-04-24 23:07:41 ----A---- C:\Windows\system32\puiobj.dll
2013-04-24 23:07:41 ----A---- C:\Windows\system32\logoncli.dll
2013-04-24 23:07:41 ----A---- C:\Windows\system32\drivers\winhv.sys
2013-04-24 23:07:41 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2013-04-24 23:07:41 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2013-04-24 23:07:41 ----A---- C:\Windows\system32\drivers\scsiport.sys
2013-04-24 23:07:41 ----A---- C:\Windows\system32\drivers\mpio.sys
2013-04-24 23:07:40 ----A---- C:\Windows\system32\wpccpl.dll
2013-04-24 23:07:40 ----A---- C:\Windows\system32\themecpl.dll
2013-04-24 23:07:40 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2013-04-24 23:07:40 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2013-04-24 23:07:40 ----A---- C:\Windows\system32\drivers\storvsc.sys
2013-04-24 23:07:40 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2013-04-24 23:07:39 ----A---- C:\Windows\system32\wlanui.dll
2013-04-24 23:07:39 ----A---- C:\Windows\system32\wkssvc.dll
2013-04-24 23:07:39 ----A---- C:\Windows\system32\w32tm.exe
2013-04-24 23:07:39 ----A---- C:\Windows\system32\VAN.dll
2013-04-24 23:07:39 ----A---- C:\Windows\system32\usercpl.dll
2013-04-24 23:07:39 ----A---- C:\Windows\system32\tapisrv.dll
2013-04-24 23:07:39 ----A---- C:\Windows\system32\scecli.dll
2013-04-24 23:07:39 ----A---- C:\Windows\system32\qedit.dll
2013-04-24 23:07:39 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2013-04-24 23:07:39 ----A---- C:\Windows\system32\mscories.dll
2013-04-24 23:07:39 ----A---- C:\Windows\system32\mprddm.dll
2013-04-24 23:07:38 ----A---- C:\Windows\system32\zipfldr.dll
2013-04-24 23:07:38 ----A---- C:\Windows\system32\wusa.exe
2013-04-24 23:07:38 ----A---- C:\Windows\system32\wpdbusenum.dll
2013-04-24 23:07:38 ----A---- C:\Windows\system32\wksprt.exe
2013-04-24 23:07:38 ----A---- C:\Windows\system32\taskbarcpl.dll
2013-04-24 23:07:38 ----A---- C:\Windows\system32\sud.dll
2013-04-24 23:07:38 ----A---- C:\Windows\system32\spwizeng.dll
2013-04-24 23:07:38 ----A---- C:\Windows\system32\prnfldr.dll
2013-04-24 23:07:38 ----A---- C:\Windows\system32\photowiz.dll
2013-04-24 23:07:37 ----A---- C:\Windows\system32\wpd_ci.dll
2013-04-24 23:07:37 ----A---- C:\Windows\system32\slui.exe
2013-04-24 23:07:37 ----A---- C:\Windows\system32\sisbkup.dll
2013-04-24 23:07:37 ----A---- C:\Windows\system32\shwebsvc.dll
2013-04-24 23:07:37 ----A---- C:\Windows\system32\iprtrmgr.dll
2013-04-24 23:07:37 ----A---- C:\Windows\system32\credssp.dll
2013-04-24 23:07:36 ----A---- C:\Windows\system32\wmpmde.dll
2013-04-24 23:07:36 ----A---- C:\Windows\system32\vdsutil.dll
2013-04-24 23:07:36 ----A---- C:\Windows\system32\syncui.dll
2013-04-24 23:07:36 ----A---- C:\Windows\system32\sppnp.dll
2013-04-24 23:07:36 ----A---- C:\Windows\system32\rtutils.dll
2013-04-24 23:07:36 ----A---- C:\Windows\system32\recovery.dll
2013-04-24 23:07:35 ----A---- C:\Windows\system32\wsqmcons.exe
2013-04-24 23:07:35 ----A---- C:\Windows\system32\systemcpl.dll
2013-04-24 23:07:35 ----A---- C:\Windows\system32\sethc.exe
2013-04-24 23:07:35 ----A---- C:\Windows\system32\riched20.dll
2013-04-24 23:07:35 ----A---- C:\Windows\system32\recdisc.exe
2013-04-24 23:07:35 ----A---- C:\Windows\system32\rdpsign.exe
2013-04-24 23:07:35 ----A---- C:\Windows\system32\ntprint.dll
2013-04-24 23:07:35 ----A---- C:\Windows\system32\NAPHLPR.DLL
2013-04-24 23:07:35 ----A---- C:\Windows\system32\fvecpl.dll
2013-04-24 23:07:35 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-04-24 23:07:35 ----A---- C:\Windows\system32\drivers\tdx.sys
2013-04-24 23:07:34 ----A---- C:\Windows\twain_32.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\wvc.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\wtsapi32.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\wlanmsm.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\wimgapi.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\wavemsp.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\tzutil.exe
2013-04-24 23:07:34 ----A---- C:\Windows\system32\twext.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\sysclass.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\shdocvw.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\ReAgent.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\mstask.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2013-04-24 23:07:34 ----A---- C:\Windows\system32\certprop.dll
2013-04-24 23:07:33 ----A---- C:\Windows\system32\wwanconn.dll
2013-04-24 23:07:33 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2013-04-24 23:07:33 ----A---- C:\Windows\system32\uxlib.dll
2013-04-24 23:07:33 ----A---- C:\Windows\system32\ssText3d.scr
2013-04-24 23:07:33 ----A---- C:\Windows\system32\srrstr.dll
2013-04-24 23:07:33 ----A---- C:\Windows\system32\slwga.dll
2013-04-24 23:07:33 ----A---- C:\Windows\system32\msvfw32.dll
2013-04-24 23:07:33 ----A---- C:\Windows\system32\mciavi32.dll
2013-04-24 23:07:33 ----A---- C:\Windows\system32\audiodev.dll
2013-04-24 23:07:32 ----A---- C:\Windows\system32\wpdwcn.dll
2013-04-24 23:07:32 ----A---- C:\Windows\system32\wimserv.exe
2013-04-24 23:07:32 ----A---- C:\Windows\system32\vpnikeapi.dll
2013-04-24 23:07:32 ----A---- C:\Windows\system32\vdsbas.dll
2013-04-24 23:07:32 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2013-04-24 23:07:32 ----A---- C:\Windows\system32\TSpkg.dll
2013-04-24 23:07:32 ----A---- C:\Windows\system32\sdrsvc.dll
2013-04-24 23:07:32 ----A---- C:\Windows\system32\runonce.exe
2013-04-24 23:07:32 ----A---- C:\Windows\system32\remotepg.dll
2013-04-24 23:07:32 ----A---- C:\Windows\system32\rdpencom.dll
2013-04-24 23:07:32 ----A---- C:\Windows\system32\raschap.dll
2013-04-24 23:07:32 ----A---- C:\Windows\system32\perfmon.exe
2013-04-24 23:07:32 ----A---- C:\Windows\system32\nltest.exe
2013-04-24 23:07:32 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2013-04-24 23:07:32 ----A---- C:\Windows\system32\input.dll
2013-04-24 23:07:31 ----A---- C:\Windows\system32\msvidc32.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\WPDSp.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\unimdmat.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\tabcal.exe
2013-04-24 23:07:30 ----A---- C:\Windows\system32\srvcli.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\sqlcese30.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\shacct.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\rdpd3d.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\PnPUnattend.exe
2013-04-24 23:07:30 ----A---- C:\Windows\system32\pdh.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\lsmproxy.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\logman.exe
2013-04-24 23:07:30 ----A---- C:\Windows\system32\drivers\rmcast.sys
2013-04-24 23:07:30 ----A---- C:\Windows\system32\djoin.exe
2013-04-24 23:07:29 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-04-24 23:07:29 ----A---- C:\Windows\system32\WMVSDECD.DLL
2013-04-24 23:07:29 ----A---- C:\Windows\system32\WMADMOD.DLL
2013-04-24 23:07:29 ----A---- C:\Windows\system32\wiavideo.dll
2013-04-24 23:07:29 ----A---- C:\Windows\system32\utildll.dll
2013-04-24 23:07:29 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-04-24 23:07:29 ----A---- C:\Windows\system32\takeown.exe
2013-04-24 23:07:29 ----A---- C:\Windows\system32\sppinst.dll
2013-04-24 23:07:29 ----A---- C:\Windows\system32\Ribbons.scr
2013-04-24 23:07:29 ----A---- C:\Windows\system32\fphc.dll
2013-04-24 23:07:29 ----A---- C:\Windows\system32\avifil32.dll
2013-04-24 23:07:29 ----A---- C:\Windows\system32\ActionQueue.dll
2013-04-24 23:07:28 ----A---- C:\Windows\system32\wsnmp32.dll
2013-04-24 23:07:28 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2013-04-24 23:07:28 ----A---- C:\Windows\system32\unattend.dll
2013-04-24 23:07:28 ----A---- C:\Windows\system32\umb.dll
2013-04-24 23:07:28 ----A---- C:\Windows\system32\setupcln.dll
2013-04-24 23:07:28 ----A---- C:\Windows\system32\RelPost.exe
2013-04-24 23:07:28 ----A---- C:\Windows\system32\qwinsta.exe
2013-04-24 23:07:28 ----A---- C:\Windows\system32\qprocess.exe
2013-04-24 23:07:28 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2013-04-24 23:07:28 ----A---- C:\Windows\system32\pdhui.dll
2013-04-24 23:07:28 ----A---- C:\Windows\system32\msrle32.dll
2013-04-24 23:07:28 ----A---- C:\Windows\system32\msg.exe
2013-04-24 23:07:28 ----A---- C:\Windows\system32\chglogon.exe
2013-04-24 23:07:28 ----A---- C:\Windows\system32\cmstp.exe
2013-04-24 23:07:28 ----A---- C:\Windows\system32\cca.dll
2013-04-24 23:07:27 ----A---- C:\Windows\system32\wkscli.dll
2013-04-24 23:07:27 ----A---- C:\Windows\system32\WavDest.dll
2013-04-24 23:07:27 ----A---- C:\Windows\system32\sppuinotify.dll
2013-04-24 23:07:27 ----A---- C:\Windows\system32\spbcd.dll
2013-04-24 23:07:27 ----A---- C:\Windows\system32\relog.exe
2013-04-24 23:07:27 ----A---- C:\Windows\system32\quser.exe
2013-04-24 23:07:27 ----A---- C:\Windows\system32\netiougc.exe
2013-04-24 23:07:27 ----A---- C:\Windows\system32\BdeHdCfg.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\tsdiscon.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\tscon.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\tlscsp.dll
2013-04-24 23:07:26 ----A---- C:\Windows\system32\syssetup.dll
2013-04-24 23:07:26 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2013-04-24 23:07:26 ----A---- C:\Windows\system32\secproc_ssp.dll
2013-04-24 23:07:26 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\ReAgentc.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\rastapi.dll
2013-04-24 23:07:26 ----A---- C:\Windows\system32\qappsrv.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\PrintBrmUi.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\MultiDigiMon.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\logoff.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\chgusr.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\chgport.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\CertPolEng.dll
2013-04-24 23:07:25 ----A---- C:\Windows\system32\wiarpc.dll
2013-04-24 23:07:25 ----A---- C:\Windows\system32\unlodctr.exe
2013-04-24 23:07:25 ----A---- C:\Windows\system32\tskill.exe
2013-04-24 23:07:25 ----A---- C:\Windows\system32\sppc.dll
2013-04-24 23:07:25 ----A---- C:\Windows\system32\spopk.dll
2013-04-24 23:07:25 ----A---- C:\Windows\system32\shimgvw.dll
2013-04-24 23:07:25 ----A---- C:\Windows\system32\shadow.exe
2013-04-24 23:07:25 ----A---- C:\Windows\system32\rwinsta.exe
2013-04-24 23:07:25 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2013-04-24 23:07:25 ----A---- C:\Windows\system32\repair-bde.exe
2013-04-24 23:07:25 ----A---- C:\Windows\system32\manage-bde.exe
2013-04-24 23:07:25 ----A---- C:\Windows\system32\iccvid.dll
2013-04-24 23:07:25 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2013-04-24 23:07:25 ----A---- C:\Windows\system32\drivers\tdi.sys
2013-04-24 23:07:24 ----A---- C:\Windows\system32\vmstorfltres.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\vmicres.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\vmbusres.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\UIRibbonRes.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\TRAPI.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\schedcli.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\reset.exe
2013-04-24 23:07:24 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\RDPENCDD.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\query.exe
2013-04-24 23:07:24 ----A---- C:\Windows\system32\perfts.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\inetmib1.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\icaapi.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\change.exe
2013-04-24 23:07:24 ----A---- C:\Windows\system32\drivers\tunnel.sys
2013-04-24 23:07:23 ----A---- C:\Windows\system32\wsdchngr.dll
2013-04-24 23:07:23 ----A---- C:\Windows\system32\vmictimeprovider.dll
2013-04-24 23:07:23 ----A---- C:\Windows\system32\vmbuspipe.dll
2013-04-24 23:07:23 ----A---- C:\Windows\system32\sscore.dll
2013-04-24 23:07:23 ----A---- C:\Windows\system32\shgina.dll
2013-04-24 23:07:23 ----A---- C:\Windows\system32\riched32.dll
2013-04-24 23:07:23 ----A---- C:\Windows\system32\rdpcfgex.dll
2013-04-24 23:07:23 ----A---- C:\Windows\system32\drivers\VMBusHID.sys
2013-04-24 23:07:23 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2013-04-24 23:07:23 ----A---- C:\Windows\system32\drivers\USBCAMD.sys
2013-04-24 23:07:23 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2013-04-24 23:07:22 ----A---- C:\Windows\system32\VmdCoinstall.dll
2013-04-24 23:07:22 ----A---- C:\Windows\system32\VmbusCoinstaller.dll
2013-04-24 23:07:22 ----A---- C:\Windows\system32\spwizres.dll
2013-04-24 23:07:22 ----A---- C:\Windows\system32\shunimpl.dll
2013-04-24 23:07:22 ----A---- C:\Windows\system32\RDPREFDD.dll
2013-04-24 23:07:22 ----A---- C:\Windows\system32\pifmgr.dll
2013-04-24 23:07:22 ----A---- C:\Windows\system32\IcCoinstall.dll
2013-04-24 23:07:22 ----A---- C:\Windows\system32\drivers\wanarp.sys
2013-04-24 23:07:22 ----A---- C:\Windows\system32\drivers\vms3cap.sys
2013-04-24 23:07:22 ----A---- C:\Windows\system32\drivers\umbus.sys
2013-04-24 23:07:22 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2013-04-24 23:07:22 ----A---- C:\Windows\system32\drivers\scfilter.sys
2013-04-24 23:07:22 ----A---- C:\Windows\system32\drivers\RDPCDD.sys
2013-04-24 23:06:38 ----A---- C:\Windows\system32\Narrator.exe
2013-04-24 23:06:34 ----A---- C:\Windows\system32\wmicmiplugin.dll
2013-04-24 23:06:34 ----A---- C:\Windows\system32\wbemcomn.dll
2013-04-24 23:06:17 ----A---- C:\Windows\system32\sqmapi.dll
2013-04-24 23:06:17 ----A---- C:\Windows\system32\SmiEngine.dll
2013-04-24 23:06:10 ----A---- C:\Windows\system32\wdscore.dll
2013-04-24 23:06:09 ----A---- C:\Windows\system32\PkgMgr.exe
2013-04-24 23:06:08 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2013-04-24 23:06:08 ----A---- C:\Windows\system32\prntvpt.dll
2013-04-24 23:06:06 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2013-04-24 23:06:05 ----A---- C:\Windows\system32\onexui.dll
2013-04-24 23:06:05 ----A---- C:\Windows\system32\onex.dll
2013-04-24 23:06:05 ----A---- C:\Windows\system32\olepro32.dll
2013-04-24 23:06:05 ----A---- C:\Windows\system32\drivers\csc.sys
2013-04-24 23:06:05 ----A---- C:\Windows\system32\cscui.dll
2013-04-24 23:06:05 ----A---- C:\Windows\system32\cscsvc.dll
2013-04-24 23:06:05 ----A---- C:\Windows\system32\CscMig.dll
2013-04-24 23:06:04 ----A---- C:\Windows\system32\ocsetup.exe
2013-04-24 23:06:04 ----A---- C:\Windows\system32\ocsetapi.dll
2013-04-24 23:06:04 ----A---- C:\Windows\system32\cscobj.dll
2013-04-24 23:06:04 ----A---- C:\Windows\system32\cscdll.dll
2013-04-24 23:06:04 ----A---- C:\Windows\system32\cscapi.dll
2013-04-24 23:06:04 ----A---- C:\Windows\system32\asycfilt.dll
2013-04-24 23:06:03 ----A---- C:\Windows\system32\ntlanman.dll
2013-04-24 23:06:03 ----A---- C:\Windows\system32\nslookup.exe
2013-04-24 23:06:03 ----A---- C:\Windows\system32\dosx.exe
2013-04-24 23:06:02 ----A---- C:\Windows\system32\networkmap.dll
2013-04-24 23:06:02 ----A---- C:\Windows\system32\networkexplorer.dll
2013-04-24 23:06:01 ----A---- C:\Windows\system32\nshwfp.dll
2013-04-24 23:06:01 ----A---- C:\Windows\system32\netcenter.dll
2013-04-24 23:06:01 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-04-24 23:06:01 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2013-04-24 23:06:00 ----A---- C:\Windows\system32\pnidui.dll
2013-04-24 23:06:00 ----A---- C:\Windows\system32\netutils.dll
2013-04-24 23:06:00 ----A---- C:\Windows\system32\netshell.dll
2013-04-24 23:06:00 ----A---- C:\Windows\system32\BFE.DLL
2013-04-24 23:05:59 ----A---- C:\Windows\system32\netplwiz.dll
2013-04-24 23:05:59 ----A---- C:\Windows\system32\netjoin.dll
2013-04-24 23:05:59 ----A---- C:\Windows\system32\netcfg.exe
2013-04-24 23:05:59 ----A---- C:\Windows\system32\netbtugc.exe
2013-04-24 23:05:59 ----A---- C:\Windows\system32\nci.dll
2013-04-24 23:05:59 ----A---- C:\Windows\system32\drivers\netbt.sys
2013-04-24 23:05:58 ----A---- C:\Windows\system32\netcfgx.dll
2013-04-24 23:05:58 ----A---- C:\Windows\system32\net1.exe
2013-04-24 23:05:58 ----A---- C:\Windows\system32\ncryptui.dll
2013-04-24 23:05:58 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2013-04-24 23:05:58 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2013-04-24 23:05:55 ----A---- C:\Windows\system32\QUTIL.DLL
2013-04-24 23:05:55 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2013-04-24 23:05:55 ----A---- C:\Windows\system32\QSHVHOST.DLL
2013-04-24 23:05:55 ----A---- C:\Windows\system32\KMSVC.DLL
2013-04-24 23:05:54 ----A---- C:\Windows\system32\ipsmsnap.dll
2013-04-24 23:05:53 ----A---- C:\Windows\system32\nshipsec.dll
2013-04-24 23:05:53 ----A---- C:\Windows\system32\iasrecst.dll
2013-04-24 23:05:53 ----A---- C:\Windows\system32\iasrad.dll
2013-04-24 23:05:52 ----A---- C:\Windows\system32\QCLIPROV.DLL
2013-04-24 23:05:52 ----A---- C:\Windows\system32\QAGENTRT.DLL
2013-04-24 23:05:52 ----A---- C:\Windows\system32\QAGENT.DLL
2013-04-24 23:05:52 ----A---- C:\Windows\system32\netdiagfx.dll
2013-04-24 23:05:52 ----A---- C:\Windows\system32\napdsnap.dll
2013-04-24 23:05:52 ----A---- C:\Windows\system32\iasacct.dll
2013-04-24 23:05:49 ----A---- C:\Windows\system32\Mystify.scr
2013-04-24 23:05:49 ----A---- C:\Windows\system32\mydocs.dll
2013-04-24 23:05:49 ----A---- C:\Windows\system32\mcbuilder.exe
2013-04-24 23:05:49 ----A---- C:\Windows\system32\IPSECSVC.DLL
2013-04-24 23:05:45 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2013-04-24 23:05:45 ----A---- C:\Windows\system32\msinfo32.exe
2013-04-24 23:05:45 ----A---- C:\Windows\system32\msieftp.dll
2013-04-24 23:05:44 ----A---- C:\Windows\system32\msftedit.dll
2013-04-24 23:05:43 ----A---- C:\Windows\system32\msconfig.exe
2013-04-24 23:05:43 ----A---- C:\Windows\system32\msasn1.dll
2013-04-24 23:05:43 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2013-04-24 23:05:43 ----A---- C:\Windows\system32\mprapi.dll
2013-04-24 23:05:43 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2013-04-24 23:05:42 ----A---- C:\Windows\system32\SyncCenter.dll
2013-04-24 23:05:42 ----A---- C:\Windows\system32\mobsync.exe
2013-04-24 23:05:41 ----A---- C:\Windows\system32\SensorsCpl.dll
2013-04-24 23:05:40 ----A---- C:\Windows\system32\MMDevAPI.dll
2013-04-24 23:05:39 ----A---- C:\Windows\system32\mfreadwrite.dll
2013-04-24 23:05:39 ----A---- C:\Windows\system32\MFPlay.dll
2013-04-24 23:05:39 ----A---- C:\Windows\system32\mfds.dll
2013-04-24 23:05:39 ----A---- C:\Windows\system32\mfc40.dll
2013-04-24 23:05:38 ----A---- C:\Windows\system32\wmdrmnet.dll
2013-04-24 23:05:38 ----A---- C:\Windows\system32\wmdrmdev.dll
2013-04-24 23:05:38 ----A---- C:\Windows\system32\mfc40u.dll
2013-04-24 23:05:37 ----A---- C:\Windows\system32\WMVCORE.DLL
2013-04-24 23:05:37 ----A---- C:\Windows\system32\wmpsrcwp.dll
2013-04-24 23:05:37 ----A---- C:\Windows\system32\wmpshell.dll
2013-04-24 23:05:37 ----A---- C:\Windows\system32\wmpps.dll
2013-04-24 23:05:37 ----A---- C:\Windows\system32\WMPEncEn.dll
2013-04-24 23:05:37 ----A---- C:\Windows\system32\wmpeffects.dll
2013-04-24 23:05:37 ----A---- C:\Windows\system32\wmpdxm.dll
2013-04-24 23:05:37 ----A---- C:\Windows\system32\WMNetMgr.dll
2013-04-24 23:05:36 ----A---- C:\Windows\system32\wmdrmsdk.dll
2013-04-24 23:05:36 ----A---- C:\Windows\system32\msscp.dll
2013-04-24 23:05:36 ----A---- C:\Windows\system32\msnetobj.dll
2013-04-24 23:05:36 ----A---- C:\Windows\system32\logagent.exe
2013-04-24 23:05:36 ----A---- C:\Windows\system32\drmmgrtn.dll
2013-04-24 23:05:36 ----A---- C:\Windows\system32\blackbox.dll
2013-04-24 23:05:35 ----A---- C:\Windows\system32\wmploc.DLL
2013-04-24 23:05:35 ----A---- C:\Windows\system32\wmp.dll
2013-04-24 23:05:34 ----A---- C:\Windows\system32\spwmp.dll
2013-04-24 23:05:34 ----A---- C:\Windows\system32\mf.dll
2013-04-24 23:05:34 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2013-04-24 23:05:34 ----A---- C:\Windows\system32\mapistub.dll
2013-04-24 23:05:34 ----A---- C:\Windows\system32\mapi32.dll
2013-04-24 23:05:34 ----A---- C:\Windows\system32\dxmasf.dll
2013-04-24 23:05:33 ----A---- C:\Windows\system32\migisol.dll
2013-04-24 23:05:33 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2013-04-24 23:05:33 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2013-04-24 23:05:32 ----A---- C:\Windows\system32\PresentationSettings.exe
2013-04-24 23:05:32 ----A---- C:\Windows\system32\odbcconf.dll
2013-04-24 23:05:32 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2013-04-24 23:05:31 ----A---- C:\Windows\system32\sqlsrv32.dll
2013-04-24 23:05:29 ----A---- C:\Windows\system32\mcmde.dll
2013-04-24 23:05:28 ----A---- C:\Windows\system32\mblctr.exe
2013-04-24 23:05:27 ----A---- C:\Windows\system32\mmcndmgr.dll
2013-04-24 23:05:27 ----A---- C:\Windows\system32\MdSched.exe
2013-04-24 23:05:26 ----A---- C:\Windows\system32\odbc32.dll
2013-04-24 23:05:26 ----A---- C:\Windows\system32\msorcl32.dll
2013-04-24 23:05:25 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2013-04-24 23:05:24 ----A---- C:\Windows\system32\luainstall.dll
2013-04-24 23:05:24 ----A---- C:\Windows\system32\consent.exe
2013-04-24 23:05:24 ----A---- C:\Windows\system32\appinfo.dll
2013-04-24 23:05:23 ----A---- C:\Windows\system32\lpremove.exe
2013-04-24 23:05:23 ----A---- C:\Windows\system32\lpksetup.exe
2013-04-24 23:05:22 ----A---- C:\Windows\system32\nrpsrv.dll
2013-04-24 23:05:20 ----A---- C:\Windows\system32\Wldap32.dll
2013-04-24 23:05:02 ----A---- C:\Windows\system32\drivers\ks.sys
2013-04-24 23:05:01 ----A---- C:\Windows\system32\wshirda.dll
2013-04-24 23:05:01 ----A---- C:\Windows\system32\nlsbres.dll
2013-04-24 23:05:01 ----A---- C:\Windows\system32\MuiUnattend.exe
2013-04-24 23:05:01 ----A---- C:\Windows\system32\msihnd.dll
2013-04-24 23:05:01 ----A---- C:\Windows\system32\iTVData.dll
2013-04-24 23:05:01 ----A---- C:\Windows\system32\isoburn.exe
2013-04-24 23:05:00 ----A---- C:\Windows\system32\msiexec.exe
2013-04-24 23:05:00 ----A---- C:\Windows\system32\imm32.dll
2013-04-24 23:04:59 ----A---- C:\Windows\system32\imapi2.dll
2013-04-24 23:04:59 ----A---- C:\Windows\system32\dbghelp.dll
2013-04-24 23:04:59 ----A---- C:\Windows\system32\dbgeng.dll
2013-04-24 23:04:48 ----A---- C:\Windows\system32\mscms.dll
2013-04-24 23:04:46 ----A---- C:\Windows\system32\kbdlk41a.dll
2013-04-24 23:04:37 ----A---- C:\Windows\system32\KBDUS.DLL
2013-04-24 23:04:37 ----A---- C:\Windows\system32\KBDSF.DLL
2013-04-24 23:04:36 ----A---- C:\Windows\system32\C_ISCII.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDTUF.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDSG.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDPO.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDNEPR.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDMON.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDMAORI.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDLT1.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDINTEL.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDINTAM.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDINORI.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDINMAR.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDINKAN.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDINHIN.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDINBEN.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDGR1.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDGKL.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDCZ1.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDBULG.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDBASH.DLL
2013-04-24 23:04:33 ----A---- C:\Windows\system32\KBDTURME.DLL
2013-04-24 23:04:33 ----A---- C:\Windows\system32\KBDTUQ.DLL
2013-04-24 23:04:33 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2013-04-24 23:04:33 ----A---- C:\Windows\system32\KBDGEO.DLL
2013-04-24 23:04:33 ----A---- C:\Windows\system32\KBDBLR.DLL
2013-04-24 23:04:33 ----A---- C:\Windows\system32\iscsium.dll
2013-04-24 23:04:33 ----A---- C:\Windows\system32\iscsicli.exe
2013-04-24 23:04:33 ----A---- C:\Windows\system32\elsTrans.dll
2013-04-24 23:04:29 ----A---- C:\Windows\system32\imapi2fs.dll
2013-04-24 23:04:27 ----A---- C:\Windows\system32\provsvc.dll
2013-04-24 23:04:27 ----A---- C:\Windows\system32\ListSvc.dll
2013-04-24 23:04:27 ----A---- C:\Windows\system32\itircl.dll
2013-04-24 23:04:27 ----A---- C:\Windows\system32\httpapi.dll
2013-04-24 23:04:27 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2013-04-24 23:04:27 ----A---- C:\Windows\system32\drivers\http.sys
2013-04-24 23:04:26 ----A---- C:\Windows\system32\hgcpl.dll
2013-04-24 23:04:25 ----A---- C:\Windows\system32\hbaapi.dll
2013-04-24 23:04:25 ----A---- C:\Windows\system32\halmacpi.dll
2013-04-24 23:04:25 ----A---- C:\Windows\system32\halacpi.dll
2013-04-24 23:04:25 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2013-04-24 23:04:25 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2013-04-24 23:04:25 ----A---- C:\Windows\system32\ActionCenter.dll
2013-04-24 23:04:24 ----A---- C:\Windows\system32\hal.dll
2013-04-24 23:04:14 ----A---- C:\Windows\system32\gpsvc.dll
2013-04-24 23:04:13 ----A---- C:\Windows\system32\gdi32.dll
2013-04-24 23:04:11 ----A---- C:\Windows\system32\gpprefcl.dll
2013-04-24 23:04:11 ----A---- C:\Windows\system32\appmgr.dll
2013-04-24 23:04:10 ----A---- C:\Windows\system32\scrptadm.dll
2013-04-24 23:04:10 ----A---- C:\Windows\system32\ftp.exe
2013-04-24 23:04:10 ----A---- C:\Windows\system32\fontext.dll
2013-04-24 23:04:10 ----A---- C:\Windows\system32\AdmTmpl.dll
2013-04-24 23:04:08 ----A---- C:\Windows\system32\t2embed.dll
2013-04-24 23:04:08 ----A---- C:\Windows\system32\muifontsetup.dll
2013-04-24 23:04:08 ----A---- C:\Windows\system32\FXSTIFF.dll
2013-04-24 23:04:08 ----A---- C:\Windows\system32\FXSSVC.exe
2013-04-24 23:04:08 ----A---- C:\Windows\system32\FXSMON.dll
2013-04-24 23:04:08 ----A---- C:\Windows\system32\fms.dll
2013-04-24 23:04:08 ----A---- C:\Windows\system32\findstr.exe
2013-04-24 23:04:08 ----A---- C:\Windows\system32\fdeploy.dll
2013-04-24 23:04:08 ----A---- C:\Windows\system32\fde.dll
2013-04-24 23:04:07 ----A---- C:\Windows\system32\untfs.dll
2013-04-24 23:04:07 ----A---- C:\Windows\system32\resutils.dll
2013-04-24 23:04:07 ----A---- C:\Windows\system32\ifsutil.dll
2013-04-24 23:04:07 ----A---- C:\Windows\system32\clusapi.dll
2013-04-24 23:04:06 ----A---- C:\Windows\system32\wevtsvc.dll
2013-04-24 23:04:06 ----A---- C:\Windows\system32\ExplorerFrame.dll
2013-04-24 23:04:05 ----A---- C:\Windows\system32\WerFaultSecure.exe
2013-04-24 23:04:05 ----A---- C:\Windows\system32\werconcpl.dll
2013-04-24 23:04:05 ----A---- C:\Windows\system32\wer.dll
2013-04-24 23:04:05 ----A---- C:\Windows\system32\Faultrep.dll
2013-04-24 23:04:05 ----A---- C:\Windows\system32\evr.dll
2013-04-24 23:04:05 ----A---- C:\Windows\system32\eudcedit.exe
2013-04-24 23:04:05 ----A---- C:\Windows\system32\EhStorAPI.dll
2013-04-24 23:04:04 ----A---- C:\Windows\system32\mspbda.dll
2013-04-24 23:04:04 ----A---- C:\Windows\system32\msdri.dll
2013-04-24 23:04:03 ----A---- C:\Windows\system32\Mcx2Svc.dll
2013-04-24 23:04:02 ----A---- C:\Windows\system32\efscore.dll
2013-04-24 23:04:01 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2013-04-24 23:04:01 ----A---- C:\Windows\system32\eapphost.dll
2013-04-24 23:04:01 ----A---- C:\Windows\system32\eappgnui.dll
2013-04-24 23:04:01 ----A---- C:\Windows\system32\eapp3hst.dll
2013-04-24 23:04:00 ----A---- C:\Windows\system32\DxpTaskSync.dll
2013-04-24 23:04:00 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2013-04-24 23:04:00 ----A---- C:\Windows\system32\DXP.dll
2013-04-24 23:04:00 ----A---- C:\Windows\system32\dskquoui.dll
2013-04-24 23:03:59 ----A---- C:\Windows\system32\drvstore.dll
2013-04-24 23:03:59 ----A---- C:\Windows\system32\dot3ui.dll
2013-04-24 23:03:59 ----A---- C:\Windows\system32\dot3svc.dll
2013-04-24 23:03:59 ----A---- C:\Windows\system32\dot3msm.dll
2013-04-24 23:03:59 ----A---- C:\Windows\system32\dot3cfg.dll
2013-04-24 23:03:59 ----A---- C:\Windows\system32\dot3api.dll
2013-04-24 23:03:59 ----A---- C:\Windows\system32\dnscmmc.dll
2013-04-24 23:03:58 ----A---- C:\Windows\system32\Display.dll
2013-04-24 23:03:58 ----A---- C:\Windows\system32\diskraid.exe
2013-04-24 23:03:58 ----A---- C:\Windows\system32\diskpart.exe
2013-04-24 23:03:57 ----A---- C:\Windows\system32\d3d9.dll
2013-04-24 23:03:56 ----A---- C:\Windows\system32\vfwwdm32.dll
2013-04-24 23:03:56 ----A---- C:\Windows\system32\samsrv.dll
2013-04-24 23:03:56 ----A---- C:\Windows\system32\qdv.dll
2013-04-24 23:03:56 ----A---- C:\Windows\system32\qcap.dll
2013-04-24 23:03:56 ----A---- C:\Windows\system32\qasf.dll
2013-04-24 23:03:56 ----A---- C:\Windows\system32\msdmo.dll
2013-04-24 23:03:56 ----A---- C:\Windows\system32\mciqtz32.dll
2013-04-24 23:03:56 ----A---- C:\Windows\system32\amstream.dll
2013-04-24 23:03:55 ----A---- C:\Windows\system32\setupugc.exe
2013-04-24 23:03:55 ----A---- C:\Windows\system32\dsauth.dll
2013-04-24 23:03:55 ----A---- C:\Windows\system32\drivers\dfsc.sys
2013-04-24 23:03:55 ----A---- C:\Windows\system32\dpx.dll
2013-04-24 23:03:55 ----A---- C:\Windows\system32\DiagCpl.dll
2013-04-24 23:03:55 ----A---- C:\Windows\system32\dhcpcore.dll
2013-04-24 23:03:55 ----A---- C:\Windows\system32\dfrgui.exe
2013-04-24 23:03:55 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2013-04-24 23:03:55 ----A---- C:\Windows\system32\DeviceCenter.dll
2013-04-24 23:03:54 ----A---- C:\Windows\system32\samcli.dll
2013-04-24 23:03:54 ----A---- C:\Windows\system32\dxdiagn.dll
2013-04-24 23:03:54 ----A---- C:\Windows\system32\dwmredir.dll
2013-04-24 23:03:52 ----A---- C:\Windows\system32\tsbyuv.dll
2013-04-24 23:03:52 ----A---- C:\Windows\system32\msyuv.dll
2013-04-24 23:03:52 ----A---- C:\Windows\system32\iyuv_32.dll
2013-04-24 23:03:52 ----A---- C:\Windows\system32\dwmcore.dll
2013-04-24 23:03:49 ----A---- C:\Windows\system32\dps.dll
2013-04-24 23:03:47 ----A---- C:\Windows\system32\localsec.dll
2013-04-24 23:03:46 ----A---- C:\Windows\system32\cryptui.dll
2013-04-24 23:03:45 ----A---- C:\Windows\system32\credui.dll
2013-04-24 23:03:43 ----A---- C:\Windows\system32\OpcServices.dll
2013-04-24 23:03:43 ----A---- C:\Windows\system32\netid.dll
2013-04-24 23:03:43 ----A---- C:\Windows\system32\mimefilt.dll
2013-04-24 23:03:43 ----A---- C:\Windows\system32\comdlg32.dll
2013-04-24 23:03:43 ----A---- C:\Windows\system32\cmd.exe
2013-04-24 23:03:43 ----A---- C:\Windows\system32\autoconv.exe
2013-04-24 23:03:42 ----A---- C:\Windows\system32\rpcss.dll
2013-04-24 23:03:42 ----A---- C:\Windows\system32\olethk32.dll
2013-04-24 23:03:42 ----A---- C:\Windows\system32\ole32.dll
2013-04-24 23:03:42 ----A---- C:\Windows\system32\msdtctm.dll
2013-04-24 23:03:42 ----A---- C:\Windows\system32\ci.dll
2013-04-24 23:03:40 ----A---- C:\Windows\system32\certcli.dll
2013-04-24 23:03:40 ----A---- C:\Windows\system32\calc.exe
2013-04-24 23:03:40 ----A---- C:\Windows\system32\cabview.dll
2013-04-24 23:03:40 ----A---- C:\Windows\system32\cabinet.dll
2013-04-24 23:03:39 ----A---- C:\Windows\system32\xpsservices.dll
2013-04-24 23:03:39 ----A---- C:\Windows\system32\diagperf.dll
2013-04-24 23:03:37 ----A---- C:\Windows\system32\XpsRasterService.dll
2013-04-24 23:03:37 ----A---- C:\Windows\system32\Query.dll
2013-04-24 23:03:37 ----A---- C:\Windows\system32\mtxclu.dll
2013-04-24 23:03:37 ----A---- C:\Windows\system32\certmgr.dll
2013-04-24 23:03:36 ----A---- C:\Windows\system32\wshbth.dll
2013-04-24 23:03:36 ----A---- C:\Windows\system32\Bubbles.scr
2013-04-24 23:03:35 ----A---- C:\Windows\system32\browseui.dll
2013-04-24 23:03:35 ----A---- C:\Windows\system32\bootres.dll
2013-04-24 23:03:34 ----A---- C:\Windows\system32\wbengine.exe
2013-04-24 23:03:34 ----A---- C:\Windows\system32\qmgr.dll
2013-04-24 23:03:34 ----A---- C:\Windows\system32\BlbEvents.dll
2013-04-24 23:03:34 ----A---- C:\Windows\system32\bitsperf.dll
2013-04-24 23:03:34 ----A---- C:\Windows\system32\bitsadmin.exe
2013-04-24 23:03:34 ----A---- C:\Windows\system32\biocpl.dll
2013-04-24 23:03:34 ----A---- C:\Windows\system32\bcdboot.exe
2013-04-24 23:03:33 ----A---- C:\Windows\system32\winresume.exe
2013-04-24 23:03:33 ----A---- C:\Windows\system32\winload.exe
2013-04-24 23:03:33 ----A---- C:\Windows\system32\sdcpl.dll
2013-04-24 23:03:33 ----A---- C:\Windows\system32\bcdsrv.dll
2013-04-24 23:03:33 ----A---- C:\Windows\system32\batmeter.dll
2013-04-24 23:03:33 ----A---- C:\Windows\system32\basesrv.dll
2013-04-24 23:03:33 ----A---- C:\Windows\bfsvc.exe
2013-04-24 23:03:31 ----A---- C:\Windows\system32\bcdedit.exe
2013-04-24 23:03:29 ----A---- C:\Windows\system32\setbcdlocale.dll
2013-04-24 23:03:27 ----A---- C:\Windows\system32\AzSqlExt.dll
2013-04-24 23:03:27 ----A---- C:\Windows\system32\azroles.dll
2013-04-24 23:03:27 ----A---- C:\Windows\system32\AxInstSv.dll
2013-04-24 23:03:27 ----A---- C:\Windows\system32\autoplay.dll
2013-04-24 23:03:26 ----A---- C:\Windows\system32\autochk.exe
2013-04-24 23:03:26 ----A---- C:\Windows\system32\autofmt.exe
2013-04-24 23:03:25 ----A---- C:\Windows\system32\azroleui.dll
2013-04-24 23:03:24 ----A---- C:\Windows\system32\LogonUI.exe
2013-04-24 23:03:24 ----A---- C:\Windows\system32\authui.dll
2013-04-24 23:03:23 ----A---- C:\Windows\system32\winmm.dll
2013-04-24 23:03:23 ----A---- C:\Windows\system32\SndVolSSO.dll
2013-04-24 23:03:23 ----A---- C:\Windows\system32\SndVol.exe
2013-04-24 23:03:22 ----A---- C:\Windows\system32\audiosrv.dll
2013-04-24 23:03:22 ----A---- C:\Windows\system32\AudioSes.dll
2013-04-24 23:03:21 ----A---- C:\Windows\system32\audiodg.exe
2013-04-24 23:03:20 ----A---- C:\Windows\system32\drivers\appid.sys
2013-04-24 23:03:19 ----A---- C:\Windows\system32\advapi32.dll
2013-04-24 23:03:18 ----A---- C:\Windows\system32\actxprxy.dll
2013-04-24 23:03:17 ----A---- C:\Windows\system32\accessibilitycpl.dll
2013-04-24 23:03:15 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2013-04-24 23:03:15 ----A---- C:\Windows\system32\aepdu.dll
2013-04-24 23:03:15 ----A---- C:\Windows\system32\aeinv.dll
2013-04-24 23:03:15 ----A---- C:\Windows\system32\adsldp.dll
2013-04-24 23:03:14 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2013-04-24 23:03:14 ----A---- C:\Windows\system32\aitagent.exe
2013-04-24 23:03:14 ----A---- C:\Windows\system32\acppage.dll
2013-04-24 23:03:13 ----A---- C:\Windows\system32\activeds.dll
2013-04-24 23:03:10 ----A---- C:\Windows\system32\apphelp.dll
2013-04-24 23:03:09 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2013-04-24 23:03:08 ----A---- C:\Windows\system32\drivers\usbser.sys
2013-04-24 23:03:04 ----A---- C:\Windows\system32\drivers\volmgr.sys
2013-04-24 23:03:04 ----A---- C:\Windows\system32\drivers\termdd.sys
2013-04-24 23:03:04 ----A---- C:\Windows\system32\drivers\pci.sys
2013-04-24 23:03:04 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2013-04-24 23:03:03 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2013-04-24 23:03:03 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2013-04-24 23:03:03 ----A---- C:\Windows\system32\drivers\hidusb.sys
2013-04-24 23:03:03 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-04-24 23:03:02 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2013-04-24 23:03:01 ----A---- C:\Windows\system32\dsuiext.dll
2013-04-24 23:03:01 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2013-04-24 23:03:00 ----A---- C:\Windows\system32\srchadmin.dll
2013-04-24 23:03:00 ----A---- C:\Windows\system32\OobeFldr.dll
2013-04-24 23:03:00 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2013-04-24 23:02:59 ----A---- C:\Windows\system32\drivers\cdrom.sys
2013-04-24 23:02:57 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2013-04-24 23:02:57 ----A---- C:\Windows\system32\drivers\acpi.sys
2013-04-24 23:02:57 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2013-04-24 09:30:55 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-04-22 13:07:32 ----D---- C:\ProgramData\BetterSoft
2013-04-22 13:07:21 ----D---- C:\Program Files\Optimizer Pro
2013-04-22 13:04:32 ----D---- C:\ProgramData\SoftSafe
2013-04-22 13:04:02 ----D---- C:\ProgramData\InstallMate
2013-04-22 11:14:42 ----D---- C:\Users\ivo\AppData\Roaming\AVG2013
2013-04-22 11:12:51 ----D---- C:\ProgramData\AVG Secure Search
2013-04-22 11:12:33 ----A---- C:\Windows\system32\drivers\avgtpx86.sys
2013-04-22 11:12:24 ----D---- C:\Program Files\Common Files\AVG Secure Search
2013-04-22 11:12:22 ----D---- C:\Program Files\AVG Secure Search
2013-04-22 11:07:21 ----HD---- C:\$AVG
2013-04-22 11:07:21 ----D---- C:\ProgramData\AVG2013
2013-04-22 11:04:29 ----D---- C:\Program Files\AVG
2013-04-21 13:08:36 ----D---- C:\Program Files\Defraggler
2013-04-19 20:36:10 ----A---- C:\Windows\system32\RegistryDefragBootTime.exe
2013-04-19 20:22:56 ----D---- C:\Users\ivo\AppData\Roaming\Apple Computer
2013-04-19 20:18:28 ----D---- C:\ProgramData\IObit
2013-04-19 20:18:28 ----D---- C:\ProgramData\{BDDB56DE-AE4E-48A2-B856-FB60C8498453}
2013-04-19 20:18:26 ----D---- C:\Program Files\Common Files\Spigot
2013-04-19 20:18:21 ----D---- C:\Users\ivo\AppData\Roaming\IObit
2013-04-18 13:24:23 ----A---- C:\Windows\DeleteOnReboot.bat
2013-04-18 12:36:07 ----D---- C:\Program Files\Common Files\Adobe
2013-04-18 12:26:52 ----D---- C:\Program Files\Common Files\Java
2013-04-18 12:26:27 ----A---- C:\Windows\system32\javaws.exe
2013-04-18 12:26:12 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2013-04-18 12:26:12 ----A---- C:\Windows\system32\javaw.exe
2013-04-18 12:26:12 ----A---- C:\Windows\system32\java.exe
2013-04-18 00:03:36 ----D---- C:\Users\ivo\AppData\Roaming\AVG
2013-04-18 00:02:47 ----D---- C:\ProgramData\AVG
2013-04-14 23:06:54 ----D---- C:\Users\ivo\AppData\Roaming\Systweak
2013-04-14 23:06:47 ----A---- C:\Windows\system32\roboot.exe
2013-04-14 13:49:00 ----D---- C:\Program Files\Microsoft Silverlight
2013-04-14 03:07:47 ----A---- C:\Windows\system32\drivers\mbam.sys
2013-04-14 03:07:46 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2013-04-13 13:38:10 ----D---- C:\Users\ivo\AppData\Roaming\AnvSoft
2013-04-13 08:10:11 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2013-04-13 08:10:10 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2013-04-13 08:10:01 ----A---- C:\Windows\system32\WUDFSvc.dll
2013-04-13 08:10:00 ----A---- C:\Windows\system32\WUDFPlatform.dll
2013-04-13 08:09:40 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2013-04-13 08:09:38 ----A---- C:\Windows\system32\WUDFHost.exe
2013-04-13 08:09:37 ----A---- C:\Windows\system32\WUDFx.dll
2013-04-12 18:02:01 ----RD---- C:\Program Files\Skype
2013-04-12 18:02:01 ----D---- C:\Program Files\Common Files\Skype
2013-04-12 17:23:28 ----A---- C:\Windows\system32\atmlib.dll
2013-04-12 17:23:28 ----A---- C:\Windows\system32\atmfd.dll
2013-04-12 16:39:53 ----A---- C:\Windows\system32\Wdfres.dll
2013-04-12 16:39:53 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2013-04-12 16:39:53 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2013-04-12 13:59:00 ----A---- C:\Windows\system32\usp10.dll
2013-04-12 13:58:57 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-04-12 13:58:55 ----A---- C:\Windows\system32\win32k.sys
2013-04-12 13:58:52 ----A---- C:\Windows\system32\wintrust.dll
2013-04-12 13:58:06 ----A---- C:\Windows\system32\dpnet.dll
2013-04-12 13:58:06 ----A---- C:\Windows\system32\dpnaddr.dll
2013-04-12 13:57:38 ----A---- C:\Windows\system32\win32spl.dll
2013-04-12 13:57:37 ----A---- C:\Windows\system32\drivers\fvevol.sys
2013-04-12 13:57:33 ----A---- C:\Windows\system32\ntkrnlpa.exe
2013-04-12 13:57:31 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-04-12 13:57:27 ----A---- C:\Windows\system32\smss.exe
2013-04-12 13:57:27 ----A---- C:\Windows\system32\csrsrv.dll
2013-04-12 13:56:53 ----A---- C:\Windows\system32\crypt32.dll
2013-04-12 13:56:52 ----A---- C:\Windows\system32\cryptsvc.dll
2013-04-12 13:56:52 ----A---- C:\Windows\system32\cryptnet.dll
2013-04-12 13:56:23 ----A---- C:\Windows\system32\mstscax.dll
2013-04-12 13:56:19 ----A---- C:\Windows\system32\aaclient.dll
2013-04-12 13:56:18 ----A---- C:\Windows\system32\tsgqec.dll
2013-04-12 13:55:52 ----A---- C:\Windows\system32\msxml6.dll
2013-04-12 13:55:48 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-04-12 13:55:48 ----A---- C:\Windows\system32\drivers\netio.sys
2013-04-12 13:55:47 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-04-12 13:55:46 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-04-12 13:55:32 ----A---- C:\Windows\system32\KernelBase.dll
2013-04-12 13:55:32 ----A---- C:\Windows\system32\conhost.exe
2013-04-12 13:55:31 ----A---- C:\Windows\system32\kernel32.dll
2013-04-12 13:55:30 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-04-12 13:55:30 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-04-12 13:55:30 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-04-12 13:55:30 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-04-12 13:55:30 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-04-12 13:55:30 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-04-12 13:55:30 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-04-12 13:55:30 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-04-12 13:55:28 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-04-12 13:55:28 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-04-12 13:55:28 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-04-12 13:55:28 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-04-12 13:55:28 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-04-12 13:55:28 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-04-12 13:55:28 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-04-12 13:53:43 ----A---- C:\Windows\system32\kerberos.dll
2013-04-12 13:53:18 ----A---- C:\Windows\system32\gameux.dll
2013-04-12 13:53:17 ----A---- C:\Windows\system32\Wpc.dll
2013-04-12 13:52:36 ----A---- C:\Windows\system32\ncrypt.dll
2013-04-12 13:52:33 ----A---- C:\Windows\system32\synceng.dll
2013-04-12 13:42:51 ----A---- C:\Windows\system32\tzres.dll
2013-04-12 13:40:27 ----A---- C:\Windows\system32\winsrv.dll
2013-04-12 12:58:07 ----D---- C:\Program Files\CCleaner
2013-04-12 12:50:21 ----D---- C:\ProgramData\Browser Manager
2013-04-12 11:05:30 ----A---- C:\Windows\system32\npDeployJava1.dll
2013-04-12 08:29:17 ----D---- C:\Program Files\trend micro
2013-04-05 07:54:44 ----D---- C:\ProgramData\Norton
2013-04-05 07:54:31 ----D---- C:\ProgramData\NortonInstaller
==
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 99 GB (71%) free of 140 GB
Total RAM: 2047 MB (44% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:12:19, on 30.4.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16537)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVG\AVG2013\avgui.exe
C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTuner.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Users\ivo\AppData\Roaming\Yontoo\YontooDesktop.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Users\ivo\Pictures\RSIT.exe
C:\Program Files\trend micro\ivo.exe
C:\Windows\system32\DllHost.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://centrum.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O2 - BHO: Yontoo Layers - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files\Yontoo\YontooIEClient.dll
O3 - Toolbar: (no name) - {95B7759C-8C7F-4BF1-B163-73684A933233} - (no file)
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files\AVG\AVG2013\avgui.exe" /TRAYONLY
O4 - HKLM\..\Run: [Ashampoo WinOptimizer Live-Tuner] "C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTuner.exe" -TRAY
O4 - HKCU\..\Run: [Yontoo Desktop] "C:\Users\ivo\AppData\Roaming\Yontoo\YontooDesktop.exe"
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{27142A06-3188-4F43-B2C6-D8DA4864F6C3}: NameServer = 212.96.161.6,212.96.160.7
O17 - HKLM\System\CS1\Services\Tcpip\..\{27142A06-3188-4F43-B2C6-D8DA4864F6C3}: NameServer = 212.96.161.6,212.96.160.7
O17 - HKLM\System\CS2\Services\Tcpip\..\{27142A06-3188-4F43-B2C6-D8DA4864F6C3}: NameServer = 212.96.161.6,212.96.160.7
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\15.1.0\ViProtocol.dll
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgfws.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG2013\avgwdsvc.exe
O23 - Service: Defragmentation-Service (DfSdkS) - mst software GmbH, Germany - C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\DfsdkS.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: vToolbarUpdater15.1.0 - Unknown owner - C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.1.0\ToolbarUpdater.exe
O23 - Service: Ashampoo LiveTuner Service (WO_LiveService) - Unknown owner - C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTunerService.exe
--
End of file - 6115 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\One-Click Optimizer.job
C:\Windows\tasks\schedule!3036567561.job
=========Mozilla firefox=========
ProfilePath - C:\Users\ivo\AppData\Roaming\Mozilla\Firefox\Profiles\1nhnezth.default
prefs.js - "browser.search.useDBForOrder" - "false"
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23, {A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}:7.3.4.76, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.16"
prefs.js - "keyword.URL" - "http://search.yahoo.com/search?fr=green ... =198484&p="
"avg@toolbar"=C:\ProgramData\AVG Secure Search\FireFoxExt\15.1.0.2
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.7.700.169 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_11_7_700_169.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin]
"Description"=
"Path"=C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\15.1.0\\npsitesafety.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.21.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
C:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files\Mozilla Firefox\plugins\
np-mswmp.dll
nppdf32.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt
C:\Program Files\Mozilla Firefox\searchplugins\
avg-secure-search.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
yahoo.xml
C:\Users\ivo\AppData\Roaming\Mozilla\Firefox\Profiles\1nhnezth.default\extensions\
plugin@yontoo.com
C:\Users\ivo\AppData\Roaming\Mozilla\Firefox\Profiles\1nhnezth.default\searchplugins\
SweetIM Search.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23 60568]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-04-18 462752]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2013-03-19 4529272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-04-18 171424]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD72061E-9FDE-484D-A58A-0BAB4151CAD8}]
Yontoo - C:\Program Files\Yontoo\YontooIEClient.dll [2013-04-17 197920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{95B7759C-8C7F-4BF1-B163-73684A933233}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AVG_UI"=C:\Program Files\AVG\AVG2013\avgui.exe [2013-03-05 4394032]
"Ashampoo WinOptimizer Live-Tuner"=C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTuner.exe [2013-04-10 2949480]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Yontoo Desktop"=C:\Users\ivo\AppData\Roaming\Yontoo\YontooDesktop.exe [2013-04-17 42784]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced SystemCare 6]
C:\Program Files\IObit\Advanced SystemCare 6\ASCTray.exe /AutoStart []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IObit Malware Fighter]
C:\Program Files\IObit\IObit Malware Fighter\IMF.exe /autostart []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaOviSuite2]
C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe [2011-06-29 966712]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SearchSettings]
c:\program files\common files\spigot\search settings\searchsettings.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Sidebar]
C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1174016]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office.lnk]
C:\PROGRA~1\MICROS~2\Office10\OSA.EXE [2001-02-13 83360]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" "
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"vidc.VP60"=vp6vfw.dll
"vidc.VP61"=vp6vfw.dll
"vidc.VP62"=vp6vfw.dll
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-04-30 12:00:28 ----D---- C:\rsit
2013-04-30 11:32:39 ----SHD---- C:\Config.Msi
2013-04-29 23:44:51 ----D---- C:\Users\ivo\AppData\Roaming\Yontoo
2013-04-29 23:44:51 ----D---- C:\Program Files\Yontoo
2013-04-29 23:44:35 ----D---- C:\ProgramData\Tarma Installer
2013-04-29 23:42:47 ----D---- C:\Program Files\SweetIM
2013-04-29 23:42:32 ----A---- C:\Windows\system32\msvcr80.dll
2013-04-29 23:42:31 ----A---- C:\Windows\system32\msvcp80.dll
2013-04-29 23:42:31 ----A---- C:\Windows\system32\msvcm80.dll
2013-04-29 23:42:27 ----D---- C:\Windows\system32\WNLT
2013-04-29 23:42:24 ----D---- C:\Program Files\sweetpacks bundle uninstaller
2013-04-29 23:41:23 ----D---- C:\Program Files\PutLockerDownloader
2013-04-27 10:50:58 ----A---- C:\Windows\system32\DfSdkBt.exe
2013-04-26 14:37:04 ----A---- C:\Windows\system32\schannel.dll
2013-04-26 14:37:04 ----A---- C:\Windows\system32\lsasrv.dll
2013-04-26 14:37:04 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2013-04-26 14:37:04 ----A---- C:\Windows\system32\drivers\cng.sys
2013-04-26 14:37:01 ----A---- C:\Windows\system32\qdvd.dll
2013-04-25 16:22:18 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-04-25 16:22:18 ----A---- C:\Windows\system32\elshyph.dll
2013-04-25 16:22:17 ----A---- C:\Windows\system32\urlmon.dll
2013-04-25 16:22:17 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-04-25 16:22:16 ----A---- C:\Windows\system32\wininet.dll
2013-04-25 16:22:16 ----A---- C:\Windows\system32\msrating.dll
2013-04-25 16:22:16 ----A---- C:\Windows\system32\msls31.dll
2013-04-25 16:22:16 ----A---- C:\Windows\system32\jsproxy.dll
2013-04-25 16:22:16 ----A---- C:\Windows\system32\iertutil.dll
2013-04-25 16:22:15 ----A---- C:\Windows\system32\wextract.exe
2013-04-25 16:22:15 ----A---- C:\Windows\system32\mshtmled.dll
2013-04-25 16:22:15 ----A---- C:\Windows\system32\msfeeds.dll
2013-04-25 16:22:15 ----A---- C:\Windows\system32\inseng.dll
2013-04-25 16:22:15 ----A---- C:\Windows\system32\iexpress.exe
2013-04-25 16:22:14 ----A---- C:\Windows\system32\vbscript.dll
2013-04-25 16:22:14 ----A---- C:\Windows\system32\mshtml.dll
2013-04-25 16:22:13 ----A---- C:\Windows\system32\occache.dll
2013-04-25 16:22:13 ----A---- C:\Windows\system32\ieUnatt.exe
2013-04-25 16:22:12 ----A---- C:\Windows\system32\pngfilt.dll
2013-04-25 16:22:12 ----A---- C:\Windows\system32\mshta.exe
2013-04-25 16:22:12 ----A---- C:\Windows\system32\jscript.dll
2013-04-25 16:22:12 ----A---- C:\Windows\system32\imgutil.dll
2013-04-25 16:22:12 ----A---- C:\Windows\system32\iepeers.dll
2013-04-25 16:22:11 ----A---- C:\Windows\system32\msfeedssync.exe
2013-04-25 16:22:11 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-04-25 16:22:11 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-04-25 16:22:10 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-04-25 16:22:10 ----A---- C:\Windows\system32\mshtmler.dll
2013-04-25 16:22:10 ----A---- C:\Windows\system32\jscript9.dll
2013-04-25 16:22:10 ----A---- C:\Windows\system32\iesysprep.dll
2013-04-25 16:22:09 ----A---- C:\Windows\system32\ieui.dll
2013-04-25 16:22:09 ----A---- C:\Windows\system32\ieframe.dll
2013-04-25 16:22:07 ----A---- C:\Windows\system32\ieapfltr.dll
2013-04-25 16:22:07 ----A---- C:\Windows\system32\ieapfltr.dat
2013-04-25 16:22:07 ----A---- C:\Windows\system32\icardie.dll
2013-04-25 16:22:07 ----A---- C:\Windows\system32\dxtrans.dll
2013-04-25 16:22:07 ----A---- C:\Windows\system32\dxtmsft.dll
2013-04-25 16:22:06 ----A---- C:\Windows\system32\iernonce.dll
2013-04-25 16:22:06 ----A---- C:\Windows\system32\ie4uinit.exe
2013-04-25 16:22:05 ----A---- C:\Windows\system32\url.dll
2013-04-25 16:22:05 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-04-25 16:22:05 ----A---- C:\Windows\system32\iesetup.dll
2013-04-25 16:22:05 ----A---- C:\Windows\system32\iedkcs32.dll
2013-04-25 16:22:04 ----A---- C:\Windows\system32\webcheck.dll
2013-04-25 16:22:04 ----A---- C:\Windows\system32\licmgr10.dll
2013-04-25 16:20:19 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-04-25 16:20:19 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-04-25 16:20:19 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-04-25 16:20:18 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-04-25 16:20:18 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-04-25 16:20:18 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-04-25 16:20:18 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-04-25 16:20:18 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-04-25 16:20:18 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-04-25 16:20:18 ----A---- C:\Windows\system32\XpsPrint.dll
2013-04-25 16:20:17 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-04-25 16:20:17 ----A---- C:\Windows\system32\WMPhoto.dll
2013-04-25 16:20:17 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-04-25 16:20:17 ----A---- C:\Windows\system32\FntCache.dll
2013-04-25 16:20:16 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-04-25 16:20:16 ----A---- C:\Windows\system32\DWrite.dll
2013-04-25 16:20:16 ----A---- C:\Windows\system32\d3d11.dll
2013-04-25 16:20:16 ----A---- C:\Windows\system32\d3d10core.dll
2013-04-25 16:20:16 ----A---- C:\Windows\system32\d3d10.dll
2013-04-25 16:20:15 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-04-25 16:20:15 ----A---- C:\Windows\system32\d3d10level9.dll
2013-04-25 16:20:15 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-04-25 16:20:15 ----A---- C:\Windows\system32\d3d10_1.dll
2013-04-25 16:20:13 ----A---- C:\Windows\system32\UIAnimation.dll
2013-04-25 16:20:13 ----A---- C:\Windows\system32\dxgi.dll
2013-04-25 16:20:13 ----A---- C:\Windows\system32\d3d10warp.dll
2013-04-25 16:20:13 ----A---- C:\Windows\system32\d2d1.dll
2013-04-25 14:19:48 ----A---- C:\Windows\system32\ncsi.dll
2013-04-25 14:19:47 ----A---- C:\Windows\system32\nlasvc.dll
2013-04-25 14:19:47 ----A---- C:\Windows\system32\nlaapi.dll
2013-04-25 14:19:47 ----A---- C:\Windows\system32\netevent.dll
2013-04-25 14:19:47 ----A---- C:\Windows\system32\netcorehc.dll
2013-04-25 14:19:47 ----A---- C:\Windows\system32\iphlpsvc.dll
2013-04-25 14:19:47 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2013-04-25 14:18:17 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2013-04-25 14:18:17 ----A---- C:\Windows\system32\drivers\ndis.sys
2013-04-25 14:18:13 ----A---- C:\Windows\system32\OxpsConverter.exe
2013-04-25 14:17:56 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2013-04-25 14:17:56 ----A---- C:\Windows\system32\dhcpcore6.dll
2013-04-25 14:17:53 ----A---- C:\Windows\system32\taskhost.exe
2013-04-25 00:42:04 ----D---- C:\Windows\system32\SPReview
2013-04-25 00:41:05 ----D---- C:\Windows\system32\EventProviders
2013-04-25 00:24:24 ----D---- C:\Program Files\Common Files\Designer
2013-04-25 00:09:47 ----A---- C:\Windows\vbaddin.ini
2013-04-25 00:07:44 ----D---- C:\Program Files\Microsoft FrontPage
2013-04-25 00:05:22 ----D---- C:\Users\ivo\AppData\Roaming\Microsoft Web Folders
2013-04-24 23:08:16 ----A---- C:\Windows\system32\dfshim.dll
2013-04-24 23:08:12 ----A---- C:\Windows\system32\LSCSHostPolicy.dll
2013-04-24 23:08:12 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-04-24 23:08:11 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-04-24 23:08:10 ----A---- C:\Windows\system32\tssrvlic.dll
2013-04-24 23:08:10 ----A---- C:\Windows\system32\sysmain.dll
2013-04-24 23:08:10 ----A---- C:\Windows\system32\RDVGHelper.exe
2013-04-24 23:08:09 ----A---- C:\Windows\system32\secproc_isv.dll
2013-04-24 23:08:07 ----A---- C:\Windows\system32\spwizui.dll
2013-04-24 23:08:07 ----A---- C:\Windows\system32\secproc.dll
2013-04-24 23:08:07 ----A---- C:\Windows\system32\scavengeui.dll
2013-04-24 23:08:07 ----A---- C:\Windows\system32\RMActivate_isv.exe
2013-04-24 23:08:07 ----A---- C:\Windows\system32\RMActivate.exe
2013-04-24 23:08:06 ----A---- C:\Windows\system32\mscoree.dll
2013-04-24 23:08:05 ----A---- C:\Windows\system32\schedsvc.dll
2013-04-24 23:08:05 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-04-24 23:08:05 ----A---- C:\Windows\system32\PresentationHost.exe
2013-04-24 23:08:05 ----A---- C:\Windows\system32\CertEnroll.dll
2013-04-24 23:08:04 ----A---- C:\Windows\system32\rdpdd.dll
2013-04-24 23:08:04 ----A---- C:\Windows\system32\RacEngn.dll
2013-04-24 23:08:04 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2013-04-24 23:08:02 ----A---- C:\Windows\system32\vssapi.dll
2013-04-24 23:08:02 ----A---- C:\Windows\system32\taskschd.dll
2013-04-24 23:08:02 ----A---- C:\Windows\system32\SearchFolder.dll
2013-04-24 23:08:02 ----A---- C:\Windows\system32\mstsc.exe
2013-04-24 23:08:01 ----A---- C:\Windows\system32\WinSAT.exe
2013-04-24 23:08:01 ----A---- C:\Windows\system32\termsrv.dll
2013-04-24 23:08:01 ----A---- C:\Windows\system32\spreview.exe
2013-04-24 23:08:01 ----A---- C:\Windows\system32\spinstall.exe
2013-04-24 23:08:01 ----A---- C:\Windows\system32\rpcrt4.dll
2013-04-24 23:08:01 ----A---- C:\Windows\system32\MPSSVC.dll
2013-04-24 23:08:00 ----A---- C:\Windows\system32\umrdp.dll
2013-04-24 23:08:00 ----A---- C:\Windows\system32\TSWorkspace.dll
2013-04-24 23:08:00 ----A---- C:\Windows\system32\tsmf.dll
2013-04-24 23:07:58 ----A---- C:\Windows\system32\winhttp.dll
2013-04-24 23:07:58 ----A---- C:\Windows\system32\VSSVC.exe
2013-04-24 23:07:58 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-04-24 23:07:58 ----A---- C:\Windows\system32\setupapi.dll
2013-04-24 23:07:58 ----A---- C:\Windows\system32\rdpshell.exe
2013-04-24 23:07:58 ----A---- C:\Windows\system32\netlogon.dll
2013-04-24 23:07:58 ----A---- C:\Windows\system32\MSVidCtl.dll
2013-04-24 23:07:57 ----A---- C:\Windows\system32\WsmSvc.dll
2013-04-24 23:07:57 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-04-24 23:07:57 ----A---- C:\Windows\system32\winlogon.exe
2013-04-24 23:07:57 ----A---- C:\Windows\system32\user32.dll
2013-04-24 23:07:57 ----A---- C:\Windows\system32\upnp.dll
2013-04-24 23:07:57 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2013-04-24 23:07:56 ----A---- C:\Windows\system32\sppobjs.dll
2013-04-24 23:07:56 ----A---- C:\Windows\system32\shlwapi.dll
2013-04-24 23:07:56 ----A---- C:\Windows\system32\SessEnv.dll
2013-04-24 23:07:56 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2013-04-24 23:07:56 ----A---- C:\Windows\system32\netfxperf.dll
2013-04-24 23:07:56 ----A---- C:\Windows\system32\msv1_0.dll
2013-04-24 23:07:56 ----A---- C:\Windows\system32\msdrm.dll
2013-04-24 23:07:56 ----A---- C:\Windows\system32\lsm.exe
2013-04-24 23:07:55 ----A---- C:\Windows\system32\WebClnt.dll
2013-04-24 23:07:55 ----A---- C:\Windows\system32\userenv.dll
2013-04-24 23:07:55 ----A---- C:\Windows\system32\sppwinob.dll
2013-04-24 23:07:54 ----A---- C:\Windows\system32\themeui.dll
2013-04-24 23:07:54 ----A---- C:\Windows\system32\rdpendp.dll
2013-04-24 23:07:54 ----A---- C:\Windows\system32\rdpclip.exe
2013-04-24 23:07:54 ----A---- C:\Windows\system32\propsys.dll
2013-04-24 23:07:54 ----A---- C:\Windows\system32\framedynos.dll
2013-04-24 23:07:54 ----A---- C:\Windows\system32\drivers\volsnap.sys
2013-04-24 23:07:53 ----A---- C:\Windows\system32\taskeng.exe
2013-04-24 23:07:53 ----A---- C:\Windows\system32\taskcomp.dll
2013-04-24 23:07:53 ----A---- C:\Windows\system32\spp.dll
2013-04-24 23:07:53 ----A---- C:\Windows\system32\rdpinit.exe
2013-04-24 23:07:53 ----A---- C:\Windows\system32\mswsock.dll
2013-04-24 23:07:53 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2013-04-24 23:07:53 ----A---- C:\Windows\system32\basecsp.dll
2013-04-24 23:07:52 ----A---- C:\Windows\system32\WinSATAPI.dll
2013-04-24 23:07:52 ----A---- C:\Windows\system32\vpnike.dll
2013-04-24 23:07:52 ----A---- C:\Windows\system32\UIRibbon.dll
2013-04-24 23:07:52 ----A---- C:\Windows\system32\tspubwmi.dll
2013-04-24 23:07:52 ----A---- C:\Windows\system32\sxs.dll
2013-04-24 23:07:52 ----A---- C:\Windows\system32\srvsvc.dll
2013-04-24 23:07:52 ----A---- C:\Windows\system32\fveapi.dll
2013-04-24 23:07:51 ----A---- C:\Windows\system32\WSDApi.dll
2013-04-24 23:07:51 ----A---- C:\Windows\system32\ws2_32.dll
2013-04-24 23:07:51 ----A---- C:\Windows\system32\stobject.dll
2013-04-24 23:07:51 ----A---- C:\Windows\system32\prncache.dll
2013-04-24 23:07:51 ----A---- C:\Windows\system32\printui.dll
2013-04-24 23:07:51 ----A---- C:\Windows\system32\inetpp.dll
2013-04-24 23:07:51 ----A---- C:\Windows\system32\hgprint.dll
2013-04-24 23:07:51 ----A---- C:\Windows\system32\drivers\rdbss.sys
2013-04-24 23:07:51 ----A---- C:\Windows\system32\drivers\msdsm.sys
2013-04-24 23:07:51 ----A---- C:\Windows\system32\comctl32.dll
2013-04-24 23:07:50 ----A---- C:\Windows\system32\wlangpui.dll
2013-04-24 23:07:50 ----A---- C:\Windows\system32\vds.exe
2013-04-24 23:07:50 ----A---- C:\Windows\system32\scansetting.dll
2013-04-24 23:07:50 ----A---- C:\Windows\system32\rpchttp.dll
2013-04-24 23:07:50 ----A---- C:\Windows\system32\drivers\vmbus.sys
2013-04-24 23:07:50 ----A---- C:\Windows\system32\davclnt.dll
2013-04-24 23:07:48 ----A---- C:\Windows\system32\wscapi.dll
2013-04-24 23:07:48 ----A---- C:\Windows\system32\wpdshext.dll
2013-04-24 23:07:48 ----A---- C:\Windows\system32\webservices.dll
2013-04-24 23:07:48 ----A---- C:\Windows\system32\vmicsvc.exe
2013-04-24 23:07:48 ----A---- C:\Windows\system32\tscfgwmi.dll
2013-04-24 23:07:48 ----A---- C:\Windows\system32\sdengin2.dll
2013-04-24 23:07:48 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2013-04-24 23:07:48 ----A---- C:\Windows\system32\drivers\rdpdr.sys
2013-04-24 23:07:47 ----A---- C:\Windows\system32\wisptis.exe
2013-04-24 23:07:47 ----A---- C:\Windows\system32\WinSCard.dll
2013-04-24 23:07:47 ----A---- C:\Windows\system32\pla.dll
2013-04-24 23:07:47 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2013-04-24 23:07:46 ----A---- C:\Windows\system32\winsta.dll
2013-04-24 23:07:46 ----A---- C:\Windows\system32\wiaservc.dll
2013-04-24 23:07:46 ----A---- C:\Windows\system32\shsvcs.dll
2013-04-24 23:07:46 ----A---- C:\Windows\system32\setupcl.exe
2013-04-24 23:07:46 ----A---- C:\Windows\system32\rasmans.dll
2013-04-24 23:07:46 ----A---- C:\Windows\system32\drivers\msahci.sys
2013-04-24 23:07:45 ----A---- C:\Windows\system32\vaultsvc.dll
2013-04-24 23:07:45 ----A---- C:\Windows\system32\thumbcache.dll
2013-04-24 23:07:45 ----A---- C:\Windows\system32\TabSvc.dll
2013-04-24 23:07:45 ----A---- C:\Windows\system32\proquota.exe
2013-04-24 23:07:45 ----A---- C:\Windows\system32\netiohlp.dll
2013-04-24 23:07:45 ----A---- C:\Windows\system32\msutb.dll
2013-04-24 23:07:45 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2013-04-24 23:07:45 ----A---- C:\Windows\system32\drivers\udfs.sys
2013-04-24 23:07:44 ----A---- C:\Windows\system32\wcncsvc.dll
2013-04-24 23:07:44 ----A---- C:\Windows\system32\umpo.dll
2013-04-24 23:07:44 ----A---- C:\Windows\system32\tcpipcfg.dll
2013-04-24 23:07:44 ----A---- C:\Windows\system32\schtasks.exe
2013-04-24 23:07:44 ----A---- C:\Windows\system32\regapi.dll
2013-04-24 23:07:44 ----A---- C:\Windows\system32\powercpl.dll
2013-04-24 23:07:44 ----A---- C:\Windows\system32\mscorier.dll
2013-04-24 23:07:44 ----A---- C:\Windows\system32\framedyn.dll
2013-04-24 23:07:44 ----A---- C:\Windows\system32\drivers\winusb.sys
2013-04-24 23:07:43 ----A---- C:\Windows\system32\wdc.dll
2013-04-24 23:07:43 ----A---- C:\Windows\system32\Vault.dll
2013-04-24 23:07:43 ----A---- C:\Windows\system32\StructuredQuery.dll
2013-04-24 23:07:43 ----A---- C:\Windows\system32\sppsvc.exe
2013-04-24 23:07:43 ----A---- C:\Windows\system32\sdclt.exe
2013-04-24 23:07:43 ----A---- C:\Windows\system32\scesrv.dll
2013-04-24 23:07:43 ----A---- C:\Windows\system32\rastls.dll
2013-04-24 23:07:43 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-04-24 23:07:42 ----A---- C:\Windows\system32\wlanpref.dll
2013-04-24 23:07:42 ----A---- C:\Windows\system32\taskmgr.exe
2013-04-24 23:07:42 ----A---- C:\Windows\system32\RpcRtRemote.dll
2013-04-24 23:07:42 ----A---- C:\Windows\system32\Robocopy.exe
2013-04-24 23:07:41 ----A---- C:\Windows\system32\wiadefui.dll
2013-04-24 23:07:41 ----A---- C:\Windows\system32\userinit.exe
2013-04-24 23:07:41 ----A---- C:\Windows\system32\termmgr.dll
2013-04-24 23:07:41 ----A---- C:\Windows\system32\sppcomapi.dll
2013-04-24 23:07:41 ----A---- C:\Windows\system32\shsetup.dll
2013-04-24 23:07:41 ----A---- C:\Windows\system32\sharemediacpl.dll
2013-04-24 23:07:41 ----A---- C:\Windows\system32\rasppp.dll
2013-04-24 23:07:41 ----A---- C:\Windows\system32\puiobj.dll
2013-04-24 23:07:41 ----A---- C:\Windows\system32\logoncli.dll
2013-04-24 23:07:41 ----A---- C:\Windows\system32\drivers\winhv.sys
2013-04-24 23:07:41 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2013-04-24 23:07:41 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2013-04-24 23:07:41 ----A---- C:\Windows\system32\drivers\scsiport.sys
2013-04-24 23:07:41 ----A---- C:\Windows\system32\drivers\mpio.sys
2013-04-24 23:07:40 ----A---- C:\Windows\system32\wpccpl.dll
2013-04-24 23:07:40 ----A---- C:\Windows\system32\themecpl.dll
2013-04-24 23:07:40 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2013-04-24 23:07:40 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2013-04-24 23:07:40 ----A---- C:\Windows\system32\drivers\storvsc.sys
2013-04-24 23:07:40 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2013-04-24 23:07:39 ----A---- C:\Windows\system32\wlanui.dll
2013-04-24 23:07:39 ----A---- C:\Windows\system32\wkssvc.dll
2013-04-24 23:07:39 ----A---- C:\Windows\system32\w32tm.exe
2013-04-24 23:07:39 ----A---- C:\Windows\system32\VAN.dll
2013-04-24 23:07:39 ----A---- C:\Windows\system32\usercpl.dll
2013-04-24 23:07:39 ----A---- C:\Windows\system32\tapisrv.dll
2013-04-24 23:07:39 ----A---- C:\Windows\system32\scecli.dll
2013-04-24 23:07:39 ----A---- C:\Windows\system32\qedit.dll
2013-04-24 23:07:39 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2013-04-24 23:07:39 ----A---- C:\Windows\system32\mscories.dll
2013-04-24 23:07:39 ----A---- C:\Windows\system32\mprddm.dll
2013-04-24 23:07:38 ----A---- C:\Windows\system32\zipfldr.dll
2013-04-24 23:07:38 ----A---- C:\Windows\system32\wusa.exe
2013-04-24 23:07:38 ----A---- C:\Windows\system32\wpdbusenum.dll
2013-04-24 23:07:38 ----A---- C:\Windows\system32\wksprt.exe
2013-04-24 23:07:38 ----A---- C:\Windows\system32\taskbarcpl.dll
2013-04-24 23:07:38 ----A---- C:\Windows\system32\sud.dll
2013-04-24 23:07:38 ----A---- C:\Windows\system32\spwizeng.dll
2013-04-24 23:07:38 ----A---- C:\Windows\system32\prnfldr.dll
2013-04-24 23:07:38 ----A---- C:\Windows\system32\photowiz.dll
2013-04-24 23:07:37 ----A---- C:\Windows\system32\wpd_ci.dll
2013-04-24 23:07:37 ----A---- C:\Windows\system32\slui.exe
2013-04-24 23:07:37 ----A---- C:\Windows\system32\sisbkup.dll
2013-04-24 23:07:37 ----A---- C:\Windows\system32\shwebsvc.dll
2013-04-24 23:07:37 ----A---- C:\Windows\system32\iprtrmgr.dll
2013-04-24 23:07:37 ----A---- C:\Windows\system32\credssp.dll
2013-04-24 23:07:36 ----A---- C:\Windows\system32\wmpmde.dll
2013-04-24 23:07:36 ----A---- C:\Windows\system32\vdsutil.dll
2013-04-24 23:07:36 ----A---- C:\Windows\system32\syncui.dll
2013-04-24 23:07:36 ----A---- C:\Windows\system32\sppnp.dll
2013-04-24 23:07:36 ----A---- C:\Windows\system32\rtutils.dll
2013-04-24 23:07:36 ----A---- C:\Windows\system32\recovery.dll
2013-04-24 23:07:35 ----A---- C:\Windows\system32\wsqmcons.exe
2013-04-24 23:07:35 ----A---- C:\Windows\system32\systemcpl.dll
2013-04-24 23:07:35 ----A---- C:\Windows\system32\sethc.exe
2013-04-24 23:07:35 ----A---- C:\Windows\system32\riched20.dll
2013-04-24 23:07:35 ----A---- C:\Windows\system32\recdisc.exe
2013-04-24 23:07:35 ----A---- C:\Windows\system32\rdpsign.exe
2013-04-24 23:07:35 ----A---- C:\Windows\system32\ntprint.dll
2013-04-24 23:07:35 ----A---- C:\Windows\system32\NAPHLPR.DLL
2013-04-24 23:07:35 ----A---- C:\Windows\system32\fvecpl.dll
2013-04-24 23:07:35 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-04-24 23:07:35 ----A---- C:\Windows\system32\drivers\tdx.sys
2013-04-24 23:07:34 ----A---- C:\Windows\twain_32.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\wvc.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\wtsapi32.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\wlanmsm.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\wimgapi.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\wavemsp.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\tzutil.exe
2013-04-24 23:07:34 ----A---- C:\Windows\system32\twext.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\sysclass.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\shdocvw.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\ReAgent.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\mstask.dll
2013-04-24 23:07:34 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2013-04-24 23:07:34 ----A---- C:\Windows\system32\certprop.dll
2013-04-24 23:07:33 ----A---- C:\Windows\system32\wwanconn.dll
2013-04-24 23:07:33 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2013-04-24 23:07:33 ----A---- C:\Windows\system32\uxlib.dll
2013-04-24 23:07:33 ----A---- C:\Windows\system32\ssText3d.scr
2013-04-24 23:07:33 ----A---- C:\Windows\system32\srrstr.dll
2013-04-24 23:07:33 ----A---- C:\Windows\system32\slwga.dll
2013-04-24 23:07:33 ----A---- C:\Windows\system32\msvfw32.dll
2013-04-24 23:07:33 ----A---- C:\Windows\system32\mciavi32.dll
2013-04-24 23:07:33 ----A---- C:\Windows\system32\audiodev.dll
2013-04-24 23:07:32 ----A---- C:\Windows\system32\wpdwcn.dll
2013-04-24 23:07:32 ----A---- C:\Windows\system32\wimserv.exe
2013-04-24 23:07:32 ----A---- C:\Windows\system32\vpnikeapi.dll
2013-04-24 23:07:32 ----A---- C:\Windows\system32\vdsbas.dll
2013-04-24 23:07:32 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2013-04-24 23:07:32 ----A---- C:\Windows\system32\TSpkg.dll
2013-04-24 23:07:32 ----A---- C:\Windows\system32\sdrsvc.dll
2013-04-24 23:07:32 ----A---- C:\Windows\system32\runonce.exe
2013-04-24 23:07:32 ----A---- C:\Windows\system32\remotepg.dll
2013-04-24 23:07:32 ----A---- C:\Windows\system32\rdpencom.dll
2013-04-24 23:07:32 ----A---- C:\Windows\system32\raschap.dll
2013-04-24 23:07:32 ----A---- C:\Windows\system32\perfmon.exe
2013-04-24 23:07:32 ----A---- C:\Windows\system32\nltest.exe
2013-04-24 23:07:32 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2013-04-24 23:07:32 ----A---- C:\Windows\system32\input.dll
2013-04-24 23:07:31 ----A---- C:\Windows\system32\msvidc32.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\WPDSp.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\unimdmat.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\tabcal.exe
2013-04-24 23:07:30 ----A---- C:\Windows\system32\srvcli.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\sqlcese30.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\shacct.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\rdpd3d.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\PnPUnattend.exe
2013-04-24 23:07:30 ----A---- C:\Windows\system32\pdh.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\lsmproxy.dll
2013-04-24 23:07:30 ----A---- C:\Windows\system32\logman.exe
2013-04-24 23:07:30 ----A---- C:\Windows\system32\drivers\rmcast.sys
2013-04-24 23:07:30 ----A---- C:\Windows\system32\djoin.exe
2013-04-24 23:07:29 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-04-24 23:07:29 ----A---- C:\Windows\system32\WMVSDECD.DLL
2013-04-24 23:07:29 ----A---- C:\Windows\system32\WMADMOD.DLL
2013-04-24 23:07:29 ----A---- C:\Windows\system32\wiavideo.dll
2013-04-24 23:07:29 ----A---- C:\Windows\system32\utildll.dll
2013-04-24 23:07:29 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-04-24 23:07:29 ----A---- C:\Windows\system32\takeown.exe
2013-04-24 23:07:29 ----A---- C:\Windows\system32\sppinst.dll
2013-04-24 23:07:29 ----A---- C:\Windows\system32\Ribbons.scr
2013-04-24 23:07:29 ----A---- C:\Windows\system32\fphc.dll
2013-04-24 23:07:29 ----A---- C:\Windows\system32\avifil32.dll
2013-04-24 23:07:29 ----A---- C:\Windows\system32\ActionQueue.dll
2013-04-24 23:07:28 ----A---- C:\Windows\system32\wsnmp32.dll
2013-04-24 23:07:28 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2013-04-24 23:07:28 ----A---- C:\Windows\system32\unattend.dll
2013-04-24 23:07:28 ----A---- C:\Windows\system32\umb.dll
2013-04-24 23:07:28 ----A---- C:\Windows\system32\setupcln.dll
2013-04-24 23:07:28 ----A---- C:\Windows\system32\RelPost.exe
2013-04-24 23:07:28 ----A---- C:\Windows\system32\qwinsta.exe
2013-04-24 23:07:28 ----A---- C:\Windows\system32\qprocess.exe
2013-04-24 23:07:28 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2013-04-24 23:07:28 ----A---- C:\Windows\system32\pdhui.dll
2013-04-24 23:07:28 ----A---- C:\Windows\system32\msrle32.dll
2013-04-24 23:07:28 ----A---- C:\Windows\system32\msg.exe
2013-04-24 23:07:28 ----A---- C:\Windows\system32\chglogon.exe
2013-04-24 23:07:28 ----A---- C:\Windows\system32\cmstp.exe
2013-04-24 23:07:28 ----A---- C:\Windows\system32\cca.dll
2013-04-24 23:07:27 ----A---- C:\Windows\system32\wkscli.dll
2013-04-24 23:07:27 ----A---- C:\Windows\system32\WavDest.dll
2013-04-24 23:07:27 ----A---- C:\Windows\system32\sppuinotify.dll
2013-04-24 23:07:27 ----A---- C:\Windows\system32\spbcd.dll
2013-04-24 23:07:27 ----A---- C:\Windows\system32\relog.exe
2013-04-24 23:07:27 ----A---- C:\Windows\system32\quser.exe
2013-04-24 23:07:27 ----A---- C:\Windows\system32\netiougc.exe
2013-04-24 23:07:27 ----A---- C:\Windows\system32\BdeHdCfg.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\tsdiscon.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\tscon.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\tlscsp.dll
2013-04-24 23:07:26 ----A---- C:\Windows\system32\syssetup.dll
2013-04-24 23:07:26 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2013-04-24 23:07:26 ----A---- C:\Windows\system32\secproc_ssp.dll
2013-04-24 23:07:26 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\ReAgentc.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\rastapi.dll
2013-04-24 23:07:26 ----A---- C:\Windows\system32\qappsrv.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\PrintBrmUi.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\MultiDigiMon.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\logoff.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\chgusr.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\chgport.exe
2013-04-24 23:07:26 ----A---- C:\Windows\system32\CertPolEng.dll
2013-04-24 23:07:25 ----A---- C:\Windows\system32\wiarpc.dll
2013-04-24 23:07:25 ----A---- C:\Windows\system32\unlodctr.exe
2013-04-24 23:07:25 ----A---- C:\Windows\system32\tskill.exe
2013-04-24 23:07:25 ----A---- C:\Windows\system32\sppc.dll
2013-04-24 23:07:25 ----A---- C:\Windows\system32\spopk.dll
2013-04-24 23:07:25 ----A---- C:\Windows\system32\shimgvw.dll
2013-04-24 23:07:25 ----A---- C:\Windows\system32\shadow.exe
2013-04-24 23:07:25 ----A---- C:\Windows\system32\rwinsta.exe
2013-04-24 23:07:25 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2013-04-24 23:07:25 ----A---- C:\Windows\system32\repair-bde.exe
2013-04-24 23:07:25 ----A---- C:\Windows\system32\manage-bde.exe
2013-04-24 23:07:25 ----A---- C:\Windows\system32\iccvid.dll
2013-04-24 23:07:25 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2013-04-24 23:07:25 ----A---- C:\Windows\system32\drivers\tdi.sys
2013-04-24 23:07:24 ----A---- C:\Windows\system32\vmstorfltres.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\vmicres.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\vmbusres.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\UIRibbonRes.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\TRAPI.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\schedcli.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\reset.exe
2013-04-24 23:07:24 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\RDPENCDD.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\query.exe
2013-04-24 23:07:24 ----A---- C:\Windows\system32\perfts.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\inetmib1.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\icaapi.dll
2013-04-24 23:07:24 ----A---- C:\Windows\system32\change.exe
2013-04-24 23:07:24 ----A---- C:\Windows\system32\drivers\tunnel.sys
2013-04-24 23:07:23 ----A---- C:\Windows\system32\wsdchngr.dll
2013-04-24 23:07:23 ----A---- C:\Windows\system32\vmictimeprovider.dll
2013-04-24 23:07:23 ----A---- C:\Windows\system32\vmbuspipe.dll
2013-04-24 23:07:23 ----A---- C:\Windows\system32\sscore.dll
2013-04-24 23:07:23 ----A---- C:\Windows\system32\shgina.dll
2013-04-24 23:07:23 ----A---- C:\Windows\system32\riched32.dll
2013-04-24 23:07:23 ----A---- C:\Windows\system32\rdpcfgex.dll
2013-04-24 23:07:23 ----A---- C:\Windows\system32\drivers\VMBusHID.sys
2013-04-24 23:07:23 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2013-04-24 23:07:23 ----A---- C:\Windows\system32\drivers\USBCAMD.sys
2013-04-24 23:07:23 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2013-04-24 23:07:22 ----A---- C:\Windows\system32\VmdCoinstall.dll
2013-04-24 23:07:22 ----A---- C:\Windows\system32\VmbusCoinstaller.dll
2013-04-24 23:07:22 ----A---- C:\Windows\system32\spwizres.dll
2013-04-24 23:07:22 ----A---- C:\Windows\system32\shunimpl.dll
2013-04-24 23:07:22 ----A---- C:\Windows\system32\RDPREFDD.dll
2013-04-24 23:07:22 ----A---- C:\Windows\system32\pifmgr.dll
2013-04-24 23:07:22 ----A---- C:\Windows\system32\IcCoinstall.dll
2013-04-24 23:07:22 ----A---- C:\Windows\system32\drivers\wanarp.sys
2013-04-24 23:07:22 ----A---- C:\Windows\system32\drivers\vms3cap.sys
2013-04-24 23:07:22 ----A---- C:\Windows\system32\drivers\umbus.sys
2013-04-24 23:07:22 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2013-04-24 23:07:22 ----A---- C:\Windows\system32\drivers\scfilter.sys
2013-04-24 23:07:22 ----A---- C:\Windows\system32\drivers\RDPCDD.sys
2013-04-24 23:06:38 ----A---- C:\Windows\system32\Narrator.exe
2013-04-24 23:06:34 ----A---- C:\Windows\system32\wmicmiplugin.dll
2013-04-24 23:06:34 ----A---- C:\Windows\system32\wbemcomn.dll
2013-04-24 23:06:17 ----A---- C:\Windows\system32\sqmapi.dll
2013-04-24 23:06:17 ----A---- C:\Windows\system32\SmiEngine.dll
2013-04-24 23:06:10 ----A---- C:\Windows\system32\wdscore.dll
2013-04-24 23:06:09 ----A---- C:\Windows\system32\PkgMgr.exe
2013-04-24 23:06:08 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2013-04-24 23:06:08 ----A---- C:\Windows\system32\prntvpt.dll
2013-04-24 23:06:06 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2013-04-24 23:06:05 ----A---- C:\Windows\system32\onexui.dll
2013-04-24 23:06:05 ----A---- C:\Windows\system32\onex.dll
2013-04-24 23:06:05 ----A---- C:\Windows\system32\olepro32.dll
2013-04-24 23:06:05 ----A---- C:\Windows\system32\drivers\csc.sys
2013-04-24 23:06:05 ----A---- C:\Windows\system32\cscui.dll
2013-04-24 23:06:05 ----A---- C:\Windows\system32\cscsvc.dll
2013-04-24 23:06:05 ----A---- C:\Windows\system32\CscMig.dll
2013-04-24 23:06:04 ----A---- C:\Windows\system32\ocsetup.exe
2013-04-24 23:06:04 ----A---- C:\Windows\system32\ocsetapi.dll
2013-04-24 23:06:04 ----A---- C:\Windows\system32\cscobj.dll
2013-04-24 23:06:04 ----A---- C:\Windows\system32\cscdll.dll
2013-04-24 23:06:04 ----A---- C:\Windows\system32\cscapi.dll
2013-04-24 23:06:04 ----A---- C:\Windows\system32\asycfilt.dll
2013-04-24 23:06:03 ----A---- C:\Windows\system32\ntlanman.dll
2013-04-24 23:06:03 ----A---- C:\Windows\system32\nslookup.exe
2013-04-24 23:06:03 ----A---- C:\Windows\system32\dosx.exe
2013-04-24 23:06:02 ----A---- C:\Windows\system32\networkmap.dll
2013-04-24 23:06:02 ----A---- C:\Windows\system32\networkexplorer.dll
2013-04-24 23:06:01 ----A---- C:\Windows\system32\nshwfp.dll
2013-04-24 23:06:01 ----A---- C:\Windows\system32\netcenter.dll
2013-04-24 23:06:01 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-04-24 23:06:01 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2013-04-24 23:06:00 ----A---- C:\Windows\system32\pnidui.dll
2013-04-24 23:06:00 ----A---- C:\Windows\system32\netutils.dll
2013-04-24 23:06:00 ----A---- C:\Windows\system32\netshell.dll
2013-04-24 23:06:00 ----A---- C:\Windows\system32\BFE.DLL
2013-04-24 23:05:59 ----A---- C:\Windows\system32\netplwiz.dll
2013-04-24 23:05:59 ----A---- C:\Windows\system32\netjoin.dll
2013-04-24 23:05:59 ----A---- C:\Windows\system32\netcfg.exe
2013-04-24 23:05:59 ----A---- C:\Windows\system32\netbtugc.exe
2013-04-24 23:05:59 ----A---- C:\Windows\system32\nci.dll
2013-04-24 23:05:59 ----A---- C:\Windows\system32\drivers\netbt.sys
2013-04-24 23:05:58 ----A---- C:\Windows\system32\netcfgx.dll
2013-04-24 23:05:58 ----A---- C:\Windows\system32\net1.exe
2013-04-24 23:05:58 ----A---- C:\Windows\system32\ncryptui.dll
2013-04-24 23:05:58 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2013-04-24 23:05:58 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2013-04-24 23:05:55 ----A---- C:\Windows\system32\QUTIL.DLL
2013-04-24 23:05:55 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2013-04-24 23:05:55 ----A---- C:\Windows\system32\QSHVHOST.DLL
2013-04-24 23:05:55 ----A---- C:\Windows\system32\KMSVC.DLL
2013-04-24 23:05:54 ----A---- C:\Windows\system32\ipsmsnap.dll
2013-04-24 23:05:53 ----A---- C:\Windows\system32\nshipsec.dll
2013-04-24 23:05:53 ----A---- C:\Windows\system32\iasrecst.dll
2013-04-24 23:05:53 ----A---- C:\Windows\system32\iasrad.dll
2013-04-24 23:05:52 ----A---- C:\Windows\system32\QCLIPROV.DLL
2013-04-24 23:05:52 ----A---- C:\Windows\system32\QAGENTRT.DLL
2013-04-24 23:05:52 ----A---- C:\Windows\system32\QAGENT.DLL
2013-04-24 23:05:52 ----A---- C:\Windows\system32\netdiagfx.dll
2013-04-24 23:05:52 ----A---- C:\Windows\system32\napdsnap.dll
2013-04-24 23:05:52 ----A---- C:\Windows\system32\iasacct.dll
2013-04-24 23:05:49 ----A---- C:\Windows\system32\Mystify.scr
2013-04-24 23:05:49 ----A---- C:\Windows\system32\mydocs.dll
2013-04-24 23:05:49 ----A---- C:\Windows\system32\mcbuilder.exe
2013-04-24 23:05:49 ----A---- C:\Windows\system32\IPSECSVC.DLL
2013-04-24 23:05:45 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2013-04-24 23:05:45 ----A---- C:\Windows\system32\msinfo32.exe
2013-04-24 23:05:45 ----A---- C:\Windows\system32\msieftp.dll
2013-04-24 23:05:44 ----A---- C:\Windows\system32\msftedit.dll
2013-04-24 23:05:43 ----A---- C:\Windows\system32\msconfig.exe
2013-04-24 23:05:43 ----A---- C:\Windows\system32\msasn1.dll
2013-04-24 23:05:43 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2013-04-24 23:05:43 ----A---- C:\Windows\system32\mprapi.dll
2013-04-24 23:05:43 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2013-04-24 23:05:42 ----A---- C:\Windows\system32\SyncCenter.dll
2013-04-24 23:05:42 ----A---- C:\Windows\system32\mobsync.exe
2013-04-24 23:05:41 ----A---- C:\Windows\system32\SensorsCpl.dll
2013-04-24 23:05:40 ----A---- C:\Windows\system32\MMDevAPI.dll
2013-04-24 23:05:39 ----A---- C:\Windows\system32\mfreadwrite.dll
2013-04-24 23:05:39 ----A---- C:\Windows\system32\MFPlay.dll
2013-04-24 23:05:39 ----A---- C:\Windows\system32\mfds.dll
2013-04-24 23:05:39 ----A---- C:\Windows\system32\mfc40.dll
2013-04-24 23:05:38 ----A---- C:\Windows\system32\wmdrmnet.dll
2013-04-24 23:05:38 ----A---- C:\Windows\system32\wmdrmdev.dll
2013-04-24 23:05:38 ----A---- C:\Windows\system32\mfc40u.dll
2013-04-24 23:05:37 ----A---- C:\Windows\system32\WMVCORE.DLL
2013-04-24 23:05:37 ----A---- C:\Windows\system32\wmpsrcwp.dll
2013-04-24 23:05:37 ----A---- C:\Windows\system32\wmpshell.dll
2013-04-24 23:05:37 ----A---- C:\Windows\system32\wmpps.dll
2013-04-24 23:05:37 ----A---- C:\Windows\system32\WMPEncEn.dll
2013-04-24 23:05:37 ----A---- C:\Windows\system32\wmpeffects.dll
2013-04-24 23:05:37 ----A---- C:\Windows\system32\wmpdxm.dll
2013-04-24 23:05:37 ----A---- C:\Windows\system32\WMNetMgr.dll
2013-04-24 23:05:36 ----A---- C:\Windows\system32\wmdrmsdk.dll
2013-04-24 23:05:36 ----A---- C:\Windows\system32\msscp.dll
2013-04-24 23:05:36 ----A---- C:\Windows\system32\msnetobj.dll
2013-04-24 23:05:36 ----A---- C:\Windows\system32\logagent.exe
2013-04-24 23:05:36 ----A---- C:\Windows\system32\drmmgrtn.dll
2013-04-24 23:05:36 ----A---- C:\Windows\system32\blackbox.dll
2013-04-24 23:05:35 ----A---- C:\Windows\system32\wmploc.DLL
2013-04-24 23:05:35 ----A---- C:\Windows\system32\wmp.dll
2013-04-24 23:05:34 ----A---- C:\Windows\system32\spwmp.dll
2013-04-24 23:05:34 ----A---- C:\Windows\system32\mf.dll
2013-04-24 23:05:34 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2013-04-24 23:05:34 ----A---- C:\Windows\system32\mapistub.dll
2013-04-24 23:05:34 ----A---- C:\Windows\system32\mapi32.dll
2013-04-24 23:05:34 ----A---- C:\Windows\system32\dxmasf.dll
2013-04-24 23:05:33 ----A---- C:\Windows\system32\migisol.dll
2013-04-24 23:05:33 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2013-04-24 23:05:33 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2013-04-24 23:05:32 ----A---- C:\Windows\system32\PresentationSettings.exe
2013-04-24 23:05:32 ----A---- C:\Windows\system32\odbcconf.dll
2013-04-24 23:05:32 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2013-04-24 23:05:31 ----A---- C:\Windows\system32\sqlsrv32.dll
2013-04-24 23:05:29 ----A---- C:\Windows\system32\mcmde.dll
2013-04-24 23:05:28 ----A---- C:\Windows\system32\mblctr.exe
2013-04-24 23:05:27 ----A---- C:\Windows\system32\mmcndmgr.dll
2013-04-24 23:05:27 ----A---- C:\Windows\system32\MdSched.exe
2013-04-24 23:05:26 ----A---- C:\Windows\system32\odbc32.dll
2013-04-24 23:05:26 ----A---- C:\Windows\system32\msorcl32.dll
2013-04-24 23:05:25 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2013-04-24 23:05:24 ----A---- C:\Windows\system32\luainstall.dll
2013-04-24 23:05:24 ----A---- C:\Windows\system32\consent.exe
2013-04-24 23:05:24 ----A---- C:\Windows\system32\appinfo.dll
2013-04-24 23:05:23 ----A---- C:\Windows\system32\lpremove.exe
2013-04-24 23:05:23 ----A---- C:\Windows\system32\lpksetup.exe
2013-04-24 23:05:22 ----A---- C:\Windows\system32\nrpsrv.dll
2013-04-24 23:05:20 ----A---- C:\Windows\system32\Wldap32.dll
2013-04-24 23:05:02 ----A---- C:\Windows\system32\drivers\ks.sys
2013-04-24 23:05:01 ----A---- C:\Windows\system32\wshirda.dll
2013-04-24 23:05:01 ----A---- C:\Windows\system32\nlsbres.dll
2013-04-24 23:05:01 ----A---- C:\Windows\system32\MuiUnattend.exe
2013-04-24 23:05:01 ----A---- C:\Windows\system32\msihnd.dll
2013-04-24 23:05:01 ----A---- C:\Windows\system32\iTVData.dll
2013-04-24 23:05:01 ----A---- C:\Windows\system32\isoburn.exe
2013-04-24 23:05:00 ----A---- C:\Windows\system32\msiexec.exe
2013-04-24 23:05:00 ----A---- C:\Windows\system32\imm32.dll
2013-04-24 23:04:59 ----A---- C:\Windows\system32\imapi2.dll
2013-04-24 23:04:59 ----A---- C:\Windows\system32\dbghelp.dll
2013-04-24 23:04:59 ----A---- C:\Windows\system32\dbgeng.dll
2013-04-24 23:04:48 ----A---- C:\Windows\system32\mscms.dll
2013-04-24 23:04:46 ----A---- C:\Windows\system32\kbdlk41a.dll
2013-04-24 23:04:37 ----A---- C:\Windows\system32\KBDUS.DLL
2013-04-24 23:04:37 ----A---- C:\Windows\system32\KBDSF.DLL
2013-04-24 23:04:36 ----A---- C:\Windows\system32\C_ISCII.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDTUF.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDSG.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDPO.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDNEPR.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDMON.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDMAORI.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDLT1.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDINTEL.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDINTAM.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDINORI.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDINMAR.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDINKAN.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDINHIN.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDINBEN.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDGR1.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDGKL.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDCZ1.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDBULG.DLL
2013-04-24 23:04:34 ----A---- C:\Windows\system32\KBDBASH.DLL
2013-04-24 23:04:33 ----A---- C:\Windows\system32\KBDTURME.DLL
2013-04-24 23:04:33 ----A---- C:\Windows\system32\KBDTUQ.DLL
2013-04-24 23:04:33 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2013-04-24 23:04:33 ----A---- C:\Windows\system32\KBDGEO.DLL
2013-04-24 23:04:33 ----A---- C:\Windows\system32\KBDBLR.DLL
2013-04-24 23:04:33 ----A---- C:\Windows\system32\iscsium.dll
2013-04-24 23:04:33 ----A---- C:\Windows\system32\iscsicli.exe
2013-04-24 23:04:33 ----A---- C:\Windows\system32\elsTrans.dll
2013-04-24 23:04:29 ----A---- C:\Windows\system32\imapi2fs.dll
2013-04-24 23:04:27 ----A---- C:\Windows\system32\provsvc.dll
2013-04-24 23:04:27 ----A---- C:\Windows\system32\ListSvc.dll
2013-04-24 23:04:27 ----A---- C:\Windows\system32\itircl.dll
2013-04-24 23:04:27 ----A---- C:\Windows\system32\httpapi.dll
2013-04-24 23:04:27 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2013-04-24 23:04:27 ----A---- C:\Windows\system32\drivers\http.sys
2013-04-24 23:04:26 ----A---- C:\Windows\system32\hgcpl.dll
2013-04-24 23:04:25 ----A---- C:\Windows\system32\hbaapi.dll
2013-04-24 23:04:25 ----A---- C:\Windows\system32\halmacpi.dll
2013-04-24 23:04:25 ----A---- C:\Windows\system32\halacpi.dll
2013-04-24 23:04:25 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2013-04-24 23:04:25 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2013-04-24 23:04:25 ----A---- C:\Windows\system32\ActionCenter.dll
2013-04-24 23:04:24 ----A---- C:\Windows\system32\hal.dll
2013-04-24 23:04:14 ----A---- C:\Windows\system32\gpsvc.dll
2013-04-24 23:04:13 ----A---- C:\Windows\system32\gdi32.dll
2013-04-24 23:04:11 ----A---- C:\Windows\system32\gpprefcl.dll
2013-04-24 23:04:11 ----A---- C:\Windows\system32\appmgr.dll
2013-04-24 23:04:10 ----A---- C:\Windows\system32\scrptadm.dll
2013-04-24 23:04:10 ----A---- C:\Windows\system32\ftp.exe
2013-04-24 23:04:10 ----A---- C:\Windows\system32\fontext.dll
2013-04-24 23:04:10 ----A---- C:\Windows\system32\AdmTmpl.dll
2013-04-24 23:04:08 ----A---- C:\Windows\system32\t2embed.dll
2013-04-24 23:04:08 ----A---- C:\Windows\system32\muifontsetup.dll
2013-04-24 23:04:08 ----A---- C:\Windows\system32\FXSTIFF.dll
2013-04-24 23:04:08 ----A---- C:\Windows\system32\FXSSVC.exe
2013-04-24 23:04:08 ----A---- C:\Windows\system32\FXSMON.dll
2013-04-24 23:04:08 ----A---- C:\Windows\system32\fms.dll
2013-04-24 23:04:08 ----A---- C:\Windows\system32\findstr.exe
2013-04-24 23:04:08 ----A---- C:\Windows\system32\fdeploy.dll
2013-04-24 23:04:08 ----A---- C:\Windows\system32\fde.dll
2013-04-24 23:04:07 ----A---- C:\Windows\system32\untfs.dll
2013-04-24 23:04:07 ----A---- C:\Windows\system32\resutils.dll
2013-04-24 23:04:07 ----A---- C:\Windows\system32\ifsutil.dll
2013-04-24 23:04:07 ----A---- C:\Windows\system32\clusapi.dll
2013-04-24 23:04:06 ----A---- C:\Windows\system32\wevtsvc.dll
2013-04-24 23:04:06 ----A---- C:\Windows\system32\ExplorerFrame.dll
2013-04-24 23:04:05 ----A---- C:\Windows\system32\WerFaultSecure.exe
2013-04-24 23:04:05 ----A---- C:\Windows\system32\werconcpl.dll
2013-04-24 23:04:05 ----A---- C:\Windows\system32\wer.dll
2013-04-24 23:04:05 ----A---- C:\Windows\system32\Faultrep.dll
2013-04-24 23:04:05 ----A---- C:\Windows\system32\evr.dll
2013-04-24 23:04:05 ----A---- C:\Windows\system32\eudcedit.exe
2013-04-24 23:04:05 ----A---- C:\Windows\system32\EhStorAPI.dll
2013-04-24 23:04:04 ----A---- C:\Windows\system32\mspbda.dll
2013-04-24 23:04:04 ----A---- C:\Windows\system32\msdri.dll
2013-04-24 23:04:03 ----A---- C:\Windows\system32\Mcx2Svc.dll
2013-04-24 23:04:02 ----A---- C:\Windows\system32\efscore.dll
2013-04-24 23:04:01 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2013-04-24 23:04:01 ----A---- C:\Windows\system32\eapphost.dll
2013-04-24 23:04:01 ----A---- C:\Windows\system32\eappgnui.dll
2013-04-24 23:04:01 ----A---- C:\Windows\system32\eapp3hst.dll
2013-04-24 23:04:00 ----A---- C:\Windows\system32\DxpTaskSync.dll
2013-04-24 23:04:00 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2013-04-24 23:04:00 ----A---- C:\Windows\system32\DXP.dll
2013-04-24 23:04:00 ----A---- C:\Windows\system32\dskquoui.dll
2013-04-24 23:03:59 ----A---- C:\Windows\system32\drvstore.dll
2013-04-24 23:03:59 ----A---- C:\Windows\system32\dot3ui.dll
2013-04-24 23:03:59 ----A---- C:\Windows\system32\dot3svc.dll
2013-04-24 23:03:59 ----A---- C:\Windows\system32\dot3msm.dll
2013-04-24 23:03:59 ----A---- C:\Windows\system32\dot3cfg.dll
2013-04-24 23:03:59 ----A---- C:\Windows\system32\dot3api.dll
2013-04-24 23:03:59 ----A---- C:\Windows\system32\dnscmmc.dll
2013-04-24 23:03:58 ----A---- C:\Windows\system32\Display.dll
2013-04-24 23:03:58 ----A---- C:\Windows\system32\diskraid.exe
2013-04-24 23:03:58 ----A---- C:\Windows\system32\diskpart.exe
2013-04-24 23:03:57 ----A---- C:\Windows\system32\d3d9.dll
2013-04-24 23:03:56 ----A---- C:\Windows\system32\vfwwdm32.dll
2013-04-24 23:03:56 ----A---- C:\Windows\system32\samsrv.dll
2013-04-24 23:03:56 ----A---- C:\Windows\system32\qdv.dll
2013-04-24 23:03:56 ----A---- C:\Windows\system32\qcap.dll
2013-04-24 23:03:56 ----A---- C:\Windows\system32\qasf.dll
2013-04-24 23:03:56 ----A---- C:\Windows\system32\msdmo.dll
2013-04-24 23:03:56 ----A---- C:\Windows\system32\mciqtz32.dll
2013-04-24 23:03:56 ----A---- C:\Windows\system32\amstream.dll
2013-04-24 23:03:55 ----A---- C:\Windows\system32\setupugc.exe
2013-04-24 23:03:55 ----A---- C:\Windows\system32\dsauth.dll
2013-04-24 23:03:55 ----A---- C:\Windows\system32\drivers\dfsc.sys
2013-04-24 23:03:55 ----A---- C:\Windows\system32\dpx.dll
2013-04-24 23:03:55 ----A---- C:\Windows\system32\DiagCpl.dll
2013-04-24 23:03:55 ----A---- C:\Windows\system32\dhcpcore.dll
2013-04-24 23:03:55 ----A---- C:\Windows\system32\dfrgui.exe
2013-04-24 23:03:55 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2013-04-24 23:03:55 ----A---- C:\Windows\system32\DeviceCenter.dll
2013-04-24 23:03:54 ----A---- C:\Windows\system32\samcli.dll
2013-04-24 23:03:54 ----A---- C:\Windows\system32\dxdiagn.dll
2013-04-24 23:03:54 ----A---- C:\Windows\system32\dwmredir.dll
2013-04-24 23:03:52 ----A---- C:\Windows\system32\tsbyuv.dll
2013-04-24 23:03:52 ----A---- C:\Windows\system32\msyuv.dll
2013-04-24 23:03:52 ----A---- C:\Windows\system32\iyuv_32.dll
2013-04-24 23:03:52 ----A---- C:\Windows\system32\dwmcore.dll
2013-04-24 23:03:49 ----A---- C:\Windows\system32\dps.dll
2013-04-24 23:03:47 ----A---- C:\Windows\system32\localsec.dll
2013-04-24 23:03:46 ----A---- C:\Windows\system32\cryptui.dll
2013-04-24 23:03:45 ----A---- C:\Windows\system32\credui.dll
2013-04-24 23:03:43 ----A---- C:\Windows\system32\OpcServices.dll
2013-04-24 23:03:43 ----A---- C:\Windows\system32\netid.dll
2013-04-24 23:03:43 ----A---- C:\Windows\system32\mimefilt.dll
2013-04-24 23:03:43 ----A---- C:\Windows\system32\comdlg32.dll
2013-04-24 23:03:43 ----A---- C:\Windows\system32\cmd.exe
2013-04-24 23:03:43 ----A---- C:\Windows\system32\autoconv.exe
2013-04-24 23:03:42 ----A---- C:\Windows\system32\rpcss.dll
2013-04-24 23:03:42 ----A---- C:\Windows\system32\olethk32.dll
2013-04-24 23:03:42 ----A---- C:\Windows\system32\ole32.dll
2013-04-24 23:03:42 ----A---- C:\Windows\system32\msdtctm.dll
2013-04-24 23:03:42 ----A---- C:\Windows\system32\ci.dll
2013-04-24 23:03:40 ----A---- C:\Windows\system32\certcli.dll
2013-04-24 23:03:40 ----A---- C:\Windows\system32\calc.exe
2013-04-24 23:03:40 ----A---- C:\Windows\system32\cabview.dll
2013-04-24 23:03:40 ----A---- C:\Windows\system32\cabinet.dll
2013-04-24 23:03:39 ----A---- C:\Windows\system32\xpsservices.dll
2013-04-24 23:03:39 ----A---- C:\Windows\system32\diagperf.dll
2013-04-24 23:03:37 ----A---- C:\Windows\system32\XpsRasterService.dll
2013-04-24 23:03:37 ----A---- C:\Windows\system32\Query.dll
2013-04-24 23:03:37 ----A---- C:\Windows\system32\mtxclu.dll
2013-04-24 23:03:37 ----A---- C:\Windows\system32\certmgr.dll
2013-04-24 23:03:36 ----A---- C:\Windows\system32\wshbth.dll
2013-04-24 23:03:36 ----A---- C:\Windows\system32\Bubbles.scr
2013-04-24 23:03:35 ----A---- C:\Windows\system32\browseui.dll
2013-04-24 23:03:35 ----A---- C:\Windows\system32\bootres.dll
2013-04-24 23:03:34 ----A---- C:\Windows\system32\wbengine.exe
2013-04-24 23:03:34 ----A---- C:\Windows\system32\qmgr.dll
2013-04-24 23:03:34 ----A---- C:\Windows\system32\BlbEvents.dll
2013-04-24 23:03:34 ----A---- C:\Windows\system32\bitsperf.dll
2013-04-24 23:03:34 ----A---- C:\Windows\system32\bitsadmin.exe
2013-04-24 23:03:34 ----A---- C:\Windows\system32\biocpl.dll
2013-04-24 23:03:34 ----A---- C:\Windows\system32\bcdboot.exe
2013-04-24 23:03:33 ----A---- C:\Windows\system32\winresume.exe
2013-04-24 23:03:33 ----A---- C:\Windows\system32\winload.exe
2013-04-24 23:03:33 ----A---- C:\Windows\system32\sdcpl.dll
2013-04-24 23:03:33 ----A---- C:\Windows\system32\bcdsrv.dll
2013-04-24 23:03:33 ----A---- C:\Windows\system32\batmeter.dll
2013-04-24 23:03:33 ----A---- C:\Windows\system32\basesrv.dll
2013-04-24 23:03:33 ----A---- C:\Windows\bfsvc.exe
2013-04-24 23:03:31 ----A---- C:\Windows\system32\bcdedit.exe
2013-04-24 23:03:29 ----A---- C:\Windows\system32\setbcdlocale.dll
2013-04-24 23:03:27 ----A---- C:\Windows\system32\AzSqlExt.dll
2013-04-24 23:03:27 ----A---- C:\Windows\system32\azroles.dll
2013-04-24 23:03:27 ----A---- C:\Windows\system32\AxInstSv.dll
2013-04-24 23:03:27 ----A---- C:\Windows\system32\autoplay.dll
2013-04-24 23:03:26 ----A---- C:\Windows\system32\autochk.exe
2013-04-24 23:03:26 ----A---- C:\Windows\system32\autofmt.exe
2013-04-24 23:03:25 ----A---- C:\Windows\system32\azroleui.dll
2013-04-24 23:03:24 ----A---- C:\Windows\system32\LogonUI.exe
2013-04-24 23:03:24 ----A---- C:\Windows\system32\authui.dll
2013-04-24 23:03:23 ----A---- C:\Windows\system32\winmm.dll
2013-04-24 23:03:23 ----A---- C:\Windows\system32\SndVolSSO.dll
2013-04-24 23:03:23 ----A---- C:\Windows\system32\SndVol.exe
2013-04-24 23:03:22 ----A---- C:\Windows\system32\audiosrv.dll
2013-04-24 23:03:22 ----A---- C:\Windows\system32\AudioSes.dll
2013-04-24 23:03:21 ----A---- C:\Windows\system32\audiodg.exe
2013-04-24 23:03:20 ----A---- C:\Windows\system32\drivers\appid.sys
2013-04-24 23:03:19 ----A---- C:\Windows\system32\advapi32.dll
2013-04-24 23:03:18 ----A---- C:\Windows\system32\actxprxy.dll
2013-04-24 23:03:17 ----A---- C:\Windows\system32\accessibilitycpl.dll
2013-04-24 23:03:15 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2013-04-24 23:03:15 ----A---- C:\Windows\system32\aepdu.dll
2013-04-24 23:03:15 ----A---- C:\Windows\system32\aeinv.dll
2013-04-24 23:03:15 ----A---- C:\Windows\system32\adsldp.dll
2013-04-24 23:03:14 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2013-04-24 23:03:14 ----A---- C:\Windows\system32\aitagent.exe
2013-04-24 23:03:14 ----A---- C:\Windows\system32\acppage.dll
2013-04-24 23:03:13 ----A---- C:\Windows\system32\activeds.dll
2013-04-24 23:03:10 ----A---- C:\Windows\system32\apphelp.dll
2013-04-24 23:03:09 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2013-04-24 23:03:08 ----A---- C:\Windows\system32\drivers\usbser.sys
2013-04-24 23:03:04 ----A---- C:\Windows\system32\drivers\volmgr.sys
2013-04-24 23:03:04 ----A---- C:\Windows\system32\drivers\termdd.sys
2013-04-24 23:03:04 ----A---- C:\Windows\system32\drivers\pci.sys
2013-04-24 23:03:04 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2013-04-24 23:03:03 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2013-04-24 23:03:03 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2013-04-24 23:03:03 ----A---- C:\Windows\system32\drivers\hidusb.sys
2013-04-24 23:03:03 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-04-24 23:03:02 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2013-04-24 23:03:01 ----A---- C:\Windows\system32\dsuiext.dll
2013-04-24 23:03:01 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2013-04-24 23:03:00 ----A---- C:\Windows\system32\srchadmin.dll
2013-04-24 23:03:00 ----A---- C:\Windows\system32\OobeFldr.dll
2013-04-24 23:03:00 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2013-04-24 23:02:59 ----A---- C:\Windows\system32\drivers\cdrom.sys
2013-04-24 23:02:57 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2013-04-24 23:02:57 ----A---- C:\Windows\system32\drivers\acpi.sys
2013-04-24 23:02:57 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2013-04-24 09:30:55 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-04-22 13:07:32 ----D---- C:\ProgramData\BetterSoft
2013-04-22 13:07:21 ----D---- C:\Program Files\Optimizer Pro
2013-04-22 13:04:32 ----D---- C:\ProgramData\SoftSafe
2013-04-22 13:04:02 ----D---- C:\ProgramData\InstallMate
2013-04-22 11:14:42 ----D---- C:\Users\ivo\AppData\Roaming\AVG2013
2013-04-22 11:12:51 ----D---- C:\ProgramData\AVG Secure Search
2013-04-22 11:12:33 ----A---- C:\Windows\system32\drivers\avgtpx86.sys
2013-04-22 11:12:24 ----D---- C:\Program Files\Common Files\AVG Secure Search
2013-04-22 11:12:22 ----D---- C:\Program Files\AVG Secure Search
2013-04-22 11:07:21 ----HD---- C:\$AVG
2013-04-22 11:07:21 ----D---- C:\ProgramData\AVG2013
2013-04-22 11:04:29 ----D---- C:\Program Files\AVG
2013-04-21 13:08:36 ----D---- C:\Program Files\Defraggler
2013-04-19 20:36:10 ----A---- C:\Windows\system32\RegistryDefragBootTime.exe
2013-04-19 20:22:56 ----D---- C:\Users\ivo\AppData\Roaming\Apple Computer
2013-04-19 20:18:28 ----D---- C:\ProgramData\IObit
2013-04-19 20:18:28 ----D---- C:\ProgramData\{BDDB56DE-AE4E-48A2-B856-FB60C8498453}
2013-04-19 20:18:26 ----D---- C:\Program Files\Common Files\Spigot
2013-04-19 20:18:21 ----D---- C:\Users\ivo\AppData\Roaming\IObit
2013-04-18 13:24:23 ----A---- C:\Windows\DeleteOnReboot.bat
2013-04-18 12:36:07 ----D---- C:\Program Files\Common Files\Adobe
2013-04-18 12:26:52 ----D---- C:\Program Files\Common Files\Java
2013-04-18 12:26:27 ----A---- C:\Windows\system32\javaws.exe
2013-04-18 12:26:12 ----A---- C:\Windows\system32\WindowsAccessBridge.dll
2013-04-18 12:26:12 ----A---- C:\Windows\system32\javaw.exe
2013-04-18 12:26:12 ----A---- C:\Windows\system32\java.exe
2013-04-18 00:03:36 ----D---- C:\Users\ivo\AppData\Roaming\AVG
2013-04-18 00:02:47 ----D---- C:\ProgramData\AVG
2013-04-14 23:06:54 ----D---- C:\Users\ivo\AppData\Roaming\Systweak
2013-04-14 23:06:47 ----A---- C:\Windows\system32\roboot.exe
2013-04-14 13:49:00 ----D---- C:\Program Files\Microsoft Silverlight
2013-04-14 03:07:47 ----A---- C:\Windows\system32\drivers\mbam.sys
2013-04-14 03:07:46 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2013-04-13 13:38:10 ----D---- C:\Users\ivo\AppData\Roaming\AnvSoft
2013-04-13 08:10:11 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2013-04-13 08:10:10 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2013-04-13 08:10:01 ----A---- C:\Windows\system32\WUDFSvc.dll
2013-04-13 08:10:00 ----A---- C:\Windows\system32\WUDFPlatform.dll
2013-04-13 08:09:40 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2013-04-13 08:09:38 ----A---- C:\Windows\system32\WUDFHost.exe
2013-04-13 08:09:37 ----A---- C:\Windows\system32\WUDFx.dll
2013-04-12 18:02:01 ----RD---- C:\Program Files\Skype
2013-04-12 18:02:01 ----D---- C:\Program Files\Common Files\Skype
2013-04-12 17:23:28 ----A---- C:\Windows\system32\atmlib.dll
2013-04-12 17:23:28 ----A---- C:\Windows\system32\atmfd.dll
2013-04-12 16:39:53 ----A---- C:\Windows\system32\Wdfres.dll
2013-04-12 16:39:53 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2013-04-12 16:39:53 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2013-04-12 13:59:00 ----A---- C:\Windows\system32\usp10.dll
2013-04-12 13:58:57 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-04-12 13:58:55 ----A---- C:\Windows\system32\win32k.sys
2013-04-12 13:58:52 ----A---- C:\Windows\system32\wintrust.dll
2013-04-12 13:58:06 ----A---- C:\Windows\system32\dpnet.dll
2013-04-12 13:58:06 ----A---- C:\Windows\system32\dpnaddr.dll
2013-04-12 13:57:38 ----A---- C:\Windows\system32\win32spl.dll
2013-04-12 13:57:37 ----A---- C:\Windows\system32\drivers\fvevol.sys
2013-04-12 13:57:33 ----A---- C:\Windows\system32\ntkrnlpa.exe
2013-04-12 13:57:31 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-04-12 13:57:27 ----A---- C:\Windows\system32\smss.exe
2013-04-12 13:57:27 ----A---- C:\Windows\system32\csrsrv.dll
2013-04-12 13:56:53 ----A---- C:\Windows\system32\crypt32.dll
2013-04-12 13:56:52 ----A---- C:\Windows\system32\cryptsvc.dll
2013-04-12 13:56:52 ----A---- C:\Windows\system32\cryptnet.dll
2013-04-12 13:56:23 ----A---- C:\Windows\system32\mstscax.dll
2013-04-12 13:56:19 ----A---- C:\Windows\system32\aaclient.dll
2013-04-12 13:56:18 ----A---- C:\Windows\system32\tsgqec.dll
2013-04-12 13:55:52 ----A---- C:\Windows\system32\msxml6.dll
2013-04-12 13:55:48 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-04-12 13:55:48 ----A---- C:\Windows\system32\drivers\netio.sys
2013-04-12 13:55:47 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-04-12 13:55:46 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-04-12 13:55:32 ----A---- C:\Windows\system32\KernelBase.dll
2013-04-12 13:55:32 ----A---- C:\Windows\system32\conhost.exe
2013-04-12 13:55:31 ----A---- C:\Windows\system32\kernel32.dll
2013-04-12 13:55:30 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-04-12 13:55:30 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-04-12 13:55:30 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-04-12 13:55:30 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-04-12 13:55:30 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-04-12 13:55:30 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-04-12 13:55:30 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-04-12 13:55:30 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-04-12 13:55:29 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-04-12 13:55:28 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-04-12 13:55:28 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-04-12 13:55:28 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-04-12 13:55:28 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-04-12 13:55:28 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-04-12 13:55:28 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-04-12 13:55:28 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-04-12 13:53:43 ----A---- C:\Windows\system32\kerberos.dll
2013-04-12 13:53:18 ----A---- C:\Windows\system32\gameux.dll
2013-04-12 13:53:17 ----A---- C:\Windows\system32\Wpc.dll
2013-04-12 13:52:36 ----A---- C:\Windows\system32\ncrypt.dll
2013-04-12 13:52:33 ----A---- C:\Windows\system32\synceng.dll
2013-04-12 13:42:51 ----A---- C:\Windows\system32\tzres.dll
2013-04-12 13:40:27 ----A---- C:\Windows\system32\winsrv.dll
2013-04-12 12:58:07 ----D---- C:\Program Files\CCleaner
2013-04-12 12:50:21 ----D---- C:\ProgramData\Browser Manager
2013-04-12 11:05:30 ----A---- C:\Windows\system32\npDeployJava1.dll
2013-04-12 08:29:17 ----D---- C:\Program Files\trend micro
2013-04-05 07:54:44 ----D---- C:\ProgramData\Norton
2013-04-05 07:54:31 ----D---- C:\ProgramData\NortonInstaller
==
-
kengura.ivo
- 5. stupeň - BAN
- Příspěvky: 82
- Registrován: 12 Říj 2008 11:10
Re: Po nalezení trojana Dopplera prosím o kontrolu
====List of files/folders modified in the last 1 month======
2013-04-30 12:12:12 ----D---- C:\Windows\Temp
2013-04-30 11:36:24 ----D---- C:\Windows\inf
2013-04-30 11:36:23 ----D---- C:\Windows
2013-04-30 11:35:34 ----D---- C:\Program Files
2013-04-30 11:34:38 ----D---- C:\Windows\System32
2013-04-30 11:32:51 ----SHD---- C:\Windows\Installer
2013-04-30 11:32:45 ----HD---- C:\ProgramData
2013-04-30 11:32:11 ----SHD---- C:\System Volume Information
2013-04-30 11:30:43 ----D---- C:\ProgramData\MFAData
2013-04-30 11:23:26 ----D---- C:\ProgramData\NVIDIA
2013-04-30 09:49:56 ----D---- C:\Windows\system32\config
2013-04-30 00:06:22 ----D---- C:\Windows\system32\drivers
2013-04-30 00:06:22 ----D---- C:\Windows\en-US
2013-04-29 23:42:39 ----D---- C:\Program Files\Mozilla Firefox
2013-04-29 18:59:50 ----SHD---- C:\Boot
2013-04-29 15:06:56 ----D---- C:\Users\ivo\AppData\Roaming\Skype
2013-04-29 14:28:24 ----D---- C:\Windows\SoftwareDistribution
2013-04-29 10:10:54 ----D---- C:\Windows\Prefetch
2013-04-28 16:11:50 ----D---- C:\Users\ivo\AppData\Roaming\Vso
2013-04-27 17:39:56 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-04-27 11:03:42 ----D---- C:\Windows\Panther
2013-04-27 10:51:54 ----D---- C:\Windows\system32\Tasks
2013-04-27 10:51:53 ----D---- C:\Windows\Tasks
2013-04-27 10:51:09 ----D---- C:\ProgramData\ashampoo
2013-04-27 10:50:49 ----D---- C:\Program Files\Ashampoo
2013-04-27 10:23:47 ----D---- C:\Windows\system32\catroot2
2013-04-26 17:27:18 ----A---- C:\Windows\ODBC.INI
2013-04-26 17:18:46 ----D---- C:\Windows\winsxs
2013-04-26 14:38:51 ----D---- C:\Windows\system32\cs-CZ
2013-04-26 14:36:49 ----D---- C:\Windows\system32\catroot
2013-04-26 11:34:15 ----D---- C:\Windows\Microsoft.NET
2013-04-26 10:20:27 ----RSD---- C:\Windows\assembly
2013-04-25 16:51:05 ----D---- C:\Windows\Logs
2013-04-25 16:49:47 ----D---- C:\Windows\system32\DriverStore
2013-04-25 16:30:37 ----D---- C:\Program Files\Internet Explorer
2013-04-25 16:30:36 ----D---- C:\Windows\system32\migration
2013-04-25 16:30:36 ----D---- C:\Windows\system32\en-US
2013-04-25 16:30:36 ----D---- C:\Windows\PolicyDefinitions
2013-04-25 16:30:31 ----D---- C:\Windows\system32\pt-PT
2013-04-25 16:30:31 ----D---- C:\Windows\system32\pt-BR
2013-04-25 16:30:31 ----D---- C:\Windows\system32\it-IT
2013-04-25 16:30:30 ----D---- C:\Windows\system32\zh-TW
2013-04-25 16:30:30 ----D---- C:\Windows\system32\zh-HK
2013-04-25 16:30:30 ----D---- C:\Windows\system32\tr-TR
2013-04-25 16:30:30 ----D---- C:\Windows\system32\sv-SE
2013-04-25 16:30:30 ----D---- C:\Windows\system32\pl-PL
2013-04-25 16:30:30 ----D---- C:\Windows\system32\nl-NL
2013-04-25 16:30:30 ----D---- C:\Windows\system32\ko-KR
2013-04-25 16:30:30 ----D---- C:\Windows\system32\hu-HU
2013-04-25 16:30:30 ----D---- C:\Windows\system32\fr-FR
2013-04-25 16:30:30 ----D---- C:\Windows\system32\fi-FI
2013-04-25 16:30:30 ----D---- C:\Windows\system32\es-ES
2013-04-25 16:30:30 ----D---- C:\Windows\system32\el-GR
2013-04-25 16:30:30 ----D---- C:\Windows\system32\de-DE
2013-04-25 16:30:29 ----D---- C:\Windows\system32\zh-CN
2013-04-25 16:30:29 ----D---- C:\Windows\system32\ru-RU
2013-04-25 16:30:29 ----D---- C:\Windows\system32\nb-NO
2013-04-25 16:30:29 ----D---- C:\Windows\system32\ja-JP
2013-04-25 16:30:29 ----D---- C:\Windows\system32\da-DK
2013-04-25 16:04:36 ----D---- C:\Windows\AppPatch
2013-04-25 12:39:59 ----D---- C:\Windows\rescache
2013-04-25 11:20:54 ----D---- C:\Program Files\Common Files\microsoft shared
2013-04-25 11:10:56 ----A---- C:\Windows\Cmicnfg3.ini.cfl
2013-04-25 11:10:46 ----A---- C:\Windows\Cmicnfg3.ini.imi
2013-04-25 11:10:35 ----D---- C:\Windows\system
2013-04-25 01:40:52 ----D---- C:\Program Files\Windows Sidebar
2013-04-25 01:40:52 ----D---- C:\Program Files\Windows Portable Devices
2013-04-25 01:40:52 ----D---- C:\Program Files\Windows Media Player
2013-04-25 01:40:52 ----D---- C:\Program Files\Windows Mail
2013-04-25 01:40:52 ----D---- C:\Program Files\DVD Maker
2013-04-25 01:40:51 ----D---- C:\Program Files\Windows Photo Viewer
2013-04-25 01:40:51 ----D---- C:\Program Files\Windows Journal
2013-04-25 01:40:50 ----D---- C:\Program Files\Common Files\System
2013-04-25 01:40:48 ----D---- C:\Windows\servicing
2013-04-25 01:40:48 ----D---- C:\Windows\ehome
2013-04-25 01:40:48 ----D---- C:\Program Files\Windows Defender
2013-04-25 01:40:35 ----SHD---- C:\Windows\BitLockerDiscoveryVolumeContents
2013-04-25 01:40:34 ----D---- C:\Windows\system32\sysprep
2013-04-25 01:40:34 ----D---- C:\Windows\system32\oobe
2013-04-25 01:40:33 ----D---- C:\Windows\system32\AdvancedInstallers
2013-04-25 01:40:32 ----D---- C:\Windows\system32\Setup
2013-04-25 01:40:32 ----D---- C:\Windows\system32\cs
2013-04-25 01:40:30 ----D---- C:\Windows\system32\sppui
2013-04-25 01:40:30 ----D---- C:\Windows\system32\manifeststore
2013-04-25 01:40:29 ----D---- C:\Windows\system32\drivers\UMDF
2013-04-25 01:40:29 ----D---- C:\Windows\system32\drivers\cs-CZ
2013-04-25 01:40:28 ----D---- C:\Windows\system32\wbem
2013-04-25 01:40:27 ----D---- C:\Windows\system32\migwiz
2013-04-25 01:40:27 ----D---- C:\Windows\system32\Dism
2013-04-25 01:39:58 ----RSD---- C:\Windows\Fonts
2013-04-25 01:39:39 ----D---- C:\Windows\system32\Boot
2013-04-25 01:04:02 ----A---- C:\Windows\system32\msclmd.dll
2013-04-25 00:24:27 ----D---- C:\Windows\ShellNew
2013-04-25 00:24:24 ----D---- C:\Program Files\Common Files
2013-04-25 00:24:06 ----D---- C:\Program Files\Microsoft Office
2013-04-25 00:17:09 ----RSD---- C:\Windows\Media
2013-04-25 00:09:51 ----D---- C:\Windows\Help
2013-04-25 00:06:41 ----D---- C:\Windows\Msagent
2013-04-25 00:04:55 ----D---- C:\Temp
2013-04-24 23:54:37 ----D---- C:\ProgramData\Microsoft Help
2013-04-24 23:53:10 ----D---- C:\Program Files\Microsoft.NET
2013-04-24 23:37:52 ----A---- C:\Windows\win.ini
2013-04-22 08:26:47 ----D---- C:\Program Files\The KMPlayer
2013-04-21 23:35:05 ----D---- C:\Users\ivo\AppData\Roaming\Adobe
2013-04-21 01:34:13 ----D---- C:\Program Files\Google
2013-04-21 01:25:56 ----D---- C:\ProgramData\TP-LINK
2013-04-18 12:37:58 ----D---- C:\ProgramData\Adobe
2013-04-18 12:36:07 ----D---- C:\Program Files\Adobe
2013-04-18 12:25:57 ----A---- C:\Windows\system32\deployJava1.dll
2013-04-18 11:33:28 ----D---- C:\Program Files\Java
2013-04-15 11:08:43 ----D---- C:\Users\ivo\AppData\Roaming\Ashampoo
2013-04-14 23:22:55 ----D---- C:\Users\ivo\AppData\Roaming\TuneUp Software
2013-04-14 23:22:55 ----D---- C:\ProgramData\TuneUp Software
2013-04-14 19:00:03 ----D---- C:\Windows\system32\drivers\etc
2013-04-14 15:02:21 ----D---- C:\ProgramData\Skype
2013-04-14 00:45:26 ----D---- C:\Users\ivo\AppData\Roaming\ICQ
2013-04-14 00:23:42 ----HD---- C:\Program Files\InstallShield Installation Information
2013-04-14 00:23:37 ----D---- C:\ProgramData\ICQ
2013-04-13 13:44:29 ----AD---- C:\ProgramData\Temp
2013-04-13 08:21:11 ----D---- C:\Program Files\NVIDIA Corporation
2013-04-13 08:20:33 ----RD---- C:\Users
2013-04-13 02:50:47 ----D---- C:\Windows\debug
2013-04-12 13:59:58 ----SD---- C:\Users\ivo\AppData\Roaming\Microsoft
2013-04-12 09:13:54 ----D---- C:\Windows\system32\NDF
2013-04-01 19:48:44 ----A---- C:\Windows\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSHX;AVGIDSHX; C:\Windows\system32\DRIVERS\avgidshx.sys [2013-02-08 60216]
R0 Avglogx;AVG Logging Driver; C:\Windows\system32\DRIVERS\avglogx.sys [2013-02-08 245048]
R0 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield; C:\Windows\system32\DRIVERS\avgmfx86.sys [2013-02-08 96568]
R0 Avgrkx86;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx86.sys [2013-02-08 39224]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 Avgfwfd;AVG network filter service; C:\Windows\system32\DRIVERS\avgfwd6x.sys [2012-09-04 50296]
R1 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\avgidsdriverx.sys [2013-02-26 208184]
R1 AVGIDSShim;AVGIDSShim; C:\Windows\system32\DRIVERS\avgidsshimx.sys [2013-03-01 22328]
R1 Avgldx86;AVG AVI Loader Driver; C:\Windows\system32\DRIVERS\avgldx86.sys [2013-02-08 170808]
R1 Avgtdix;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdix.sys [2013-02-14 182072]
R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx86.sys [2013-04-22 34592]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2010-04-12 59388]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 {B154377D-700F-42cc-9474-23858FBDF4BD};Power Control [2011/08/16 18:16:22]; \??\C:\Program Files\CyberLink\PowerDVD9\000.fcl [2009-02-28 87536]
R2 enodpl;enodpl; C:\Windows\System32\drivers\enodpl.sys [2003-03-02 7552]
R2 LiveTunerPM;Ashampoo LiveTuner ProcessMonitor Driver; \??\C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTunerProcessMonitor32.sys [2011-03-08 12696]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R2 tandpl;tandpl; C:\Windows\System32\drivers\tandpl.sys [2003-04-19 4736]
R3 cmuda3;C-Media PCI Audio Interface; C:\Windows\system32\drivers\cmudax3.sys [2009-05-22 1872320]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2013-04-04 22856]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2013-02-18 149352]
R3 PAC207;SoC PC-Camera; C:\Windows\system32\DRIVERS\PFC027.SYS [2006-12-05 507136]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2011-01-03 47360]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-14 4194816]
S3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-11-26 231936]
S3 athur;Wireless Network Adapter Service; C:\Windows\system32\DRIVERS\athur.sys [2010-01-05 1500160]
S3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW73.sys [2010-11-17 101392]
S3 atikmdag;atikmdag; C:\Windows\system32\drivers\atikmdag.sys [2009-07-14 4194816]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 FileMonitor;FileMonitor; \??\C:\Program Files\IObit\IObit Malware Fighter\Drivers\win7_x86\FileMonitor.sys []
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2009-06-10 4756480]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2011-08-17 18176]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbo.sys [2011-08-17 23168]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsu.sys [2011-08-17 137472]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 15872]
S3 RegFilter;RegFilter; \??\C:\Program Files\IObit\IObit Malware Fighter\drivers\win7_x86\regfilter.sys []
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2011-08-17 8192]
S3 UrlFilter;UrlFilter; \??\C:\Program Files\IObit\IObit Malware Fighter\drivers\win7_x86\UrlFilter.sys []
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2010-11-20 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2011-08-17 8192]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avgfws;AVG Firewall; C:\Program Files\AVG\AVG2013\avgfws.exe [2013-02-19 1418184]
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files\AVG\AVG2013\avgidsagent.exe [2013-02-27 4937264]
R2 avgwd;AVG WatchDog; C:\Program Files\AVG\AVG2013\avgwdsvc.exe [2013-02-19 282624]
R2 DfSdkS;Defragmentation-Service; C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\DfsdkS.exe [2009-08-24 406016]
R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]
R2 NVSvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-01-18 639776]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-01-18 383264]
R2 vToolbarUpdater15.1.0;vToolbarUpdater15.1.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.1.0\ToolbarUpdater.exe [2013-04-22 1008816]
R2 WO_LiveService;Ashampoo LiveTuner Service; C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTunerService.exe [2013-04-10 885096]
R2 Yontoo Desktop Updater;Yontoo Desktop Updater; C:\Program Files\Yontoo\Y2Desktop.Updater.exe [2013-04-17 23552]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-09-23 65192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-04-18 253656]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2011-10-27 718384]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-01-03 1343400]
S4 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S4 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S4 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
-----------------EOF-----------------
2013-04-30 12:12:12 ----D---- C:\Windows\Temp
2013-04-30 11:36:24 ----D---- C:\Windows\inf
2013-04-30 11:36:23 ----D---- C:\Windows
2013-04-30 11:35:34 ----D---- C:\Program Files
2013-04-30 11:34:38 ----D---- C:\Windows\System32
2013-04-30 11:32:51 ----SHD---- C:\Windows\Installer
2013-04-30 11:32:45 ----HD---- C:\ProgramData
2013-04-30 11:32:11 ----SHD---- C:\System Volume Information
2013-04-30 11:30:43 ----D---- C:\ProgramData\MFAData
2013-04-30 11:23:26 ----D---- C:\ProgramData\NVIDIA
2013-04-30 09:49:56 ----D---- C:\Windows\system32\config
2013-04-30 00:06:22 ----D---- C:\Windows\system32\drivers
2013-04-30 00:06:22 ----D---- C:\Windows\en-US
2013-04-29 23:42:39 ----D---- C:\Program Files\Mozilla Firefox
2013-04-29 18:59:50 ----SHD---- C:\Boot
2013-04-29 15:06:56 ----D---- C:\Users\ivo\AppData\Roaming\Skype
2013-04-29 14:28:24 ----D---- C:\Windows\SoftwareDistribution
2013-04-29 10:10:54 ----D---- C:\Windows\Prefetch
2013-04-28 16:11:50 ----D---- C:\Users\ivo\AppData\Roaming\Vso
2013-04-27 17:39:56 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-04-27 11:03:42 ----D---- C:\Windows\Panther
2013-04-27 10:51:54 ----D---- C:\Windows\system32\Tasks
2013-04-27 10:51:53 ----D---- C:\Windows\Tasks
2013-04-27 10:51:09 ----D---- C:\ProgramData\ashampoo
2013-04-27 10:50:49 ----D---- C:\Program Files\Ashampoo
2013-04-27 10:23:47 ----D---- C:\Windows\system32\catroot2
2013-04-26 17:27:18 ----A---- C:\Windows\ODBC.INI
2013-04-26 17:18:46 ----D---- C:\Windows\winsxs
2013-04-26 14:38:51 ----D---- C:\Windows\system32\cs-CZ
2013-04-26 14:36:49 ----D---- C:\Windows\system32\catroot
2013-04-26 11:34:15 ----D---- C:\Windows\Microsoft.NET
2013-04-26 10:20:27 ----RSD---- C:\Windows\assembly
2013-04-25 16:51:05 ----D---- C:\Windows\Logs
2013-04-25 16:49:47 ----D---- C:\Windows\system32\DriverStore
2013-04-25 16:30:37 ----D---- C:\Program Files\Internet Explorer
2013-04-25 16:30:36 ----D---- C:\Windows\system32\migration
2013-04-25 16:30:36 ----D---- C:\Windows\system32\en-US
2013-04-25 16:30:36 ----D---- C:\Windows\PolicyDefinitions
2013-04-25 16:30:31 ----D---- C:\Windows\system32\pt-PT
2013-04-25 16:30:31 ----D---- C:\Windows\system32\pt-BR
2013-04-25 16:30:31 ----D---- C:\Windows\system32\it-IT
2013-04-25 16:30:30 ----D---- C:\Windows\system32\zh-TW
2013-04-25 16:30:30 ----D---- C:\Windows\system32\zh-HK
2013-04-25 16:30:30 ----D---- C:\Windows\system32\tr-TR
2013-04-25 16:30:30 ----D---- C:\Windows\system32\sv-SE
2013-04-25 16:30:30 ----D---- C:\Windows\system32\pl-PL
2013-04-25 16:30:30 ----D---- C:\Windows\system32\nl-NL
2013-04-25 16:30:30 ----D---- C:\Windows\system32\ko-KR
2013-04-25 16:30:30 ----D---- C:\Windows\system32\hu-HU
2013-04-25 16:30:30 ----D---- C:\Windows\system32\fr-FR
2013-04-25 16:30:30 ----D---- C:\Windows\system32\fi-FI
2013-04-25 16:30:30 ----D---- C:\Windows\system32\es-ES
2013-04-25 16:30:30 ----D---- C:\Windows\system32\el-GR
2013-04-25 16:30:30 ----D---- C:\Windows\system32\de-DE
2013-04-25 16:30:29 ----D---- C:\Windows\system32\zh-CN
2013-04-25 16:30:29 ----D---- C:\Windows\system32\ru-RU
2013-04-25 16:30:29 ----D---- C:\Windows\system32\nb-NO
2013-04-25 16:30:29 ----D---- C:\Windows\system32\ja-JP
2013-04-25 16:30:29 ----D---- C:\Windows\system32\da-DK
2013-04-25 16:04:36 ----D---- C:\Windows\AppPatch
2013-04-25 12:39:59 ----D---- C:\Windows\rescache
2013-04-25 11:20:54 ----D---- C:\Program Files\Common Files\microsoft shared
2013-04-25 11:10:56 ----A---- C:\Windows\Cmicnfg3.ini.cfl
2013-04-25 11:10:46 ----A---- C:\Windows\Cmicnfg3.ini.imi
2013-04-25 11:10:35 ----D---- C:\Windows\system
2013-04-25 01:40:52 ----D---- C:\Program Files\Windows Sidebar
2013-04-25 01:40:52 ----D---- C:\Program Files\Windows Portable Devices
2013-04-25 01:40:52 ----D---- C:\Program Files\Windows Media Player
2013-04-25 01:40:52 ----D---- C:\Program Files\Windows Mail
2013-04-25 01:40:52 ----D---- C:\Program Files\DVD Maker
2013-04-25 01:40:51 ----D---- C:\Program Files\Windows Photo Viewer
2013-04-25 01:40:51 ----D---- C:\Program Files\Windows Journal
2013-04-25 01:40:50 ----D---- C:\Program Files\Common Files\System
2013-04-25 01:40:48 ----D---- C:\Windows\servicing
2013-04-25 01:40:48 ----D---- C:\Windows\ehome
2013-04-25 01:40:48 ----D---- C:\Program Files\Windows Defender
2013-04-25 01:40:35 ----SHD---- C:\Windows\BitLockerDiscoveryVolumeContents
2013-04-25 01:40:34 ----D---- C:\Windows\system32\sysprep
2013-04-25 01:40:34 ----D---- C:\Windows\system32\oobe
2013-04-25 01:40:33 ----D---- C:\Windows\system32\AdvancedInstallers
2013-04-25 01:40:32 ----D---- C:\Windows\system32\Setup
2013-04-25 01:40:32 ----D---- C:\Windows\system32\cs
2013-04-25 01:40:30 ----D---- C:\Windows\system32\sppui
2013-04-25 01:40:30 ----D---- C:\Windows\system32\manifeststore
2013-04-25 01:40:29 ----D---- C:\Windows\system32\drivers\UMDF
2013-04-25 01:40:29 ----D---- C:\Windows\system32\drivers\cs-CZ
2013-04-25 01:40:28 ----D---- C:\Windows\system32\wbem
2013-04-25 01:40:27 ----D---- C:\Windows\system32\migwiz
2013-04-25 01:40:27 ----D---- C:\Windows\system32\Dism
2013-04-25 01:39:58 ----RSD---- C:\Windows\Fonts
2013-04-25 01:39:39 ----D---- C:\Windows\system32\Boot
2013-04-25 01:04:02 ----A---- C:\Windows\system32\msclmd.dll
2013-04-25 00:24:27 ----D---- C:\Windows\ShellNew
2013-04-25 00:24:24 ----D---- C:\Program Files\Common Files
2013-04-25 00:24:06 ----D---- C:\Program Files\Microsoft Office
2013-04-25 00:17:09 ----RSD---- C:\Windows\Media
2013-04-25 00:09:51 ----D---- C:\Windows\Help
2013-04-25 00:06:41 ----D---- C:\Windows\Msagent
2013-04-25 00:04:55 ----D---- C:\Temp
2013-04-24 23:54:37 ----D---- C:\ProgramData\Microsoft Help
2013-04-24 23:53:10 ----D---- C:\Program Files\Microsoft.NET
2013-04-24 23:37:52 ----A---- C:\Windows\win.ini
2013-04-22 08:26:47 ----D---- C:\Program Files\The KMPlayer
2013-04-21 23:35:05 ----D---- C:\Users\ivo\AppData\Roaming\Adobe
2013-04-21 01:34:13 ----D---- C:\Program Files\Google
2013-04-21 01:25:56 ----D---- C:\ProgramData\TP-LINK
2013-04-18 12:37:58 ----D---- C:\ProgramData\Adobe
2013-04-18 12:36:07 ----D---- C:\Program Files\Adobe
2013-04-18 12:25:57 ----A---- C:\Windows\system32\deployJava1.dll
2013-04-18 11:33:28 ----D---- C:\Program Files\Java
2013-04-15 11:08:43 ----D---- C:\Users\ivo\AppData\Roaming\Ashampoo
2013-04-14 23:22:55 ----D---- C:\Users\ivo\AppData\Roaming\TuneUp Software
2013-04-14 23:22:55 ----D---- C:\ProgramData\TuneUp Software
2013-04-14 19:00:03 ----D---- C:\Windows\system32\drivers\etc
2013-04-14 15:02:21 ----D---- C:\ProgramData\Skype
2013-04-14 00:45:26 ----D---- C:\Users\ivo\AppData\Roaming\ICQ
2013-04-14 00:23:42 ----HD---- C:\Program Files\InstallShield Installation Information
2013-04-14 00:23:37 ----D---- C:\ProgramData\ICQ
2013-04-13 13:44:29 ----AD---- C:\ProgramData\Temp
2013-04-13 08:21:11 ----D---- C:\Program Files\NVIDIA Corporation
2013-04-13 08:20:33 ----RD---- C:\Users
2013-04-13 02:50:47 ----D---- C:\Windows\debug
2013-04-12 13:59:58 ----SD---- C:\Users\ivo\AppData\Roaming\Microsoft
2013-04-12 09:13:54 ----D---- C:\Windows\system32\NDF
2013-04-01 19:48:44 ----A---- C:\Windows\system32\MRT.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSHX;AVGIDSHX; C:\Windows\system32\DRIVERS\avgidshx.sys [2013-02-08 60216]
R0 Avglogx;AVG Logging Driver; C:\Windows\system32\DRIVERS\avglogx.sys [2013-02-08 245048]
R0 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield; C:\Windows\system32\DRIVERS\avgmfx86.sys [2013-02-08 96568]
R0 Avgrkx86;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx86.sys [2013-02-08 39224]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 Avgfwfd;AVG network filter service; C:\Windows\system32\DRIVERS\avgfwd6x.sys [2012-09-04 50296]
R1 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\avgidsdriverx.sys [2013-02-26 208184]
R1 AVGIDSShim;AVGIDSShim; C:\Windows\system32\DRIVERS\avgidsshimx.sys [2013-03-01 22328]
R1 Avgldx86;AVG AVI Loader Driver; C:\Windows\system32\DRIVERS\avgldx86.sys [2013-02-08 170808]
R1 Avgtdix;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdix.sys [2013-02-14 182072]
R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx86.sys [2013-04-22 34592]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2010-04-12 59388]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 {B154377D-700F-42cc-9474-23858FBDF4BD};Power Control [2011/08/16 18:16:22]; \??\C:\Program Files\CyberLink\PowerDVD9\000.fcl [2009-02-28 87536]
R2 enodpl;enodpl; C:\Windows\System32\drivers\enodpl.sys [2003-03-02 7552]
R2 LiveTunerPM;Ashampoo LiveTuner ProcessMonitor Driver; \??\C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTunerProcessMonitor32.sys [2011-03-08 12696]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R2 tandpl;tandpl; C:\Windows\System32\drivers\tandpl.sys [2003-04-19 4736]
R3 cmuda3;C-Media PCI Audio Interface; C:\Windows\system32\drivers\cmudax3.sys [2009-05-22 1872320]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2013-04-04 22856]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2013-02-18 149352]
R3 PAC207;SoC PC-Camera; C:\Windows\system32\DRIVERS\PFC027.SYS [2006-12-05 507136]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2011-01-03 47360]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2011-06-10 394856]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-14 4194816]
S3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-11-26 231936]
S3 athur;Wireless Network Adapter Service; C:\Windows\system32\DRIVERS\athur.sys [2010-01-05 1500160]
S3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW73.sys [2010-11-17 101392]
S3 atikmdag;atikmdag; C:\Windows\system32\drivers\atikmdag.sys [2009-07-14 4194816]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 FileMonitor;FileMonitor; \??\C:\Program Files\IObit\IObit Malware Fighter\Drivers\win7_x86\FileMonitor.sys []
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2009-06-10 4756480]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2011-08-17 18176]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbo.sys [2011-08-17 23168]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsu.sys [2011-08-17 137472]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 15872]
S3 RegFilter;RegFilter; \??\C:\Program Files\IObit\IObit Malware Fighter\drivers\win7_x86\regfilter.sys []
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2011-08-17 8192]
S3 UrlFilter;UrlFilter; \??\C:\Program Files\IObit\IObit Malware Fighter\drivers\win7_x86\UrlFilter.sys []
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2010-11-20 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2011-08-17 8192]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avgfws;AVG Firewall; C:\Program Files\AVG\AVG2013\avgfws.exe [2013-02-19 1418184]
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files\AVG\AVG2013\avgidsagent.exe [2013-02-27 4937264]
R2 avgwd;AVG WatchDog; C:\Program Files\AVG\AVG2013\avgwdsvc.exe [2013-02-19 282624]
R2 DfSdkS;Defragmentation-Service; C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\DfsdkS.exe [2009-08-24 406016]
R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2013-04-04 701512]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-04-04 418376]
R2 NVSvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-01-18 639776]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-01-18 383264]
R2 vToolbarUpdater15.1.0;vToolbarUpdater15.1.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.1.0\ToolbarUpdater.exe [2013-04-22 1008816]
R2 WO_LiveService;Ashampoo LiveTuner Service; C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTunerService.exe [2013-04-10 885096]
R2 Yontoo Desktop Updater;Yontoo Desktop Updater; C:\Program Files\Yontoo\Y2Desktop.Updater.exe [2013-04-17 23552]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-09-23 65192]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-04-18 253656]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2011-10-27 718384]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-01-03 1343400]
S4 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S4 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S4 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
-----------------EOF-----------------
Re: Po nalezení trojana Dopplera prosím o kontrolu
Zdravim
To zas zadate o kontrolu s temi nelegalnimi Ultimate jako minule
To zas zadate o kontrolu s temi nelegalnimi Ultimate jako minule
-
kengura.ivo
- 5. stupeň - BAN
- Příspěvky: 82
- Registrován: 12 Říj 2008 11:10
Re: Po nalezení trojana Dopplera prosím o kontrolu
Mám si jít koupit jiný PC? A zase mně natáhnou o pirátské Windowsy...
Re: Po nalezení trojana Dopplera prosím o kontrolu
K nelegalnimu OS jsme se tu uz vyjadrili, to nas jako zkousite jestli naahodou nepomuzem nebo co

-
kengura.ivo
- 5. stupeň - BAN
- Příspěvky: 82
- Registrován: 12 Říj 2008 11:10
Re: Po nalezení trojana Dopplera prosím o kontrolu
Já už jsem takový naiva...Podle sebe hodnotím i ostatní a bohužel často narazím...Za těch 59 let bych se měl už dávno poučit o tom jaká je většina populace....Nicméně ,přeji Vám příjemný den...
Re: Po nalezení trojana Dopplera prosím o kontrolu
Muzete mi jeste prosim napsat neco k tomuto nicku http://forum.viry.cz/memberlist.php?mod ... le&u=51700
Neni to naaahodou vas druhy ucet?? Dle meho je v lozich az moc spolecnych markantu 


Přispějete na provoz fóra?