Stránka 1 z 3

blbne mi komp, asi je to trojan, prosim o pomoc, prikladam l

Napsal: 17 pro 2009 18:19
od angela
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:15:03, on 17. 12. 2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\ICQ6.5\ICQ.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_clipbook.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Tomas\Plocha\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0 CE\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ6.5\ICQ.exe" silent
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: HP Chytrý výběr - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{8C7111E8-05B9-4DB1-A209-1DEFC4ACAD1F}: NameServer = 195.168.1.2,195.168.1.4
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Update Service (gupdate1c9ef5bb8db673e) (gupdate1c9ef5bb8db673e) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O24 - Desktop Component 0: (no name) - http://213.215.107.96/fotoalbumy/175/58 ... 2b0fcf.jpg

--
End of file - 6280 bytes

Re: blbne mi komp, asi je to trojan, prosim o pomoc, prikladam l

Napsal: 17 pro 2009 19:38
od angela
ahoj, H je podla vsetkeho dvd room a F je flaska

Re: blbne mi komp, asi je to trojan, prosim o pomoc, prikladam l

Napsal: 17 pro 2009 20:07
od angela
ComboFix 09-12-16.05 - Tomas . 12. 2009 19:54:08.1.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1029.18.1917.1440 [GMT 1:00]
Spuštěný z: c:\documents and settings\Tomas\Plocha\KittyFix.exe
AV: avast! antivirus 4.8.1351 [VPS 091217-0] *On-access scanning enabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\windows\system32\ieuinit.inf

.
((((((((((((((((((((((((( Soubory vytvořené od 2009-11-17 do 2009-12-17 )))))))))))))))))))))))))))))))
.

2009-11-24 16:08 . 2009-11-24 16:12 -------- d-----w- c:\program files\ICQ6.5

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-12-11 14:16 . 2001-10-25 12:00 46196 ----a-w- c:\windows\system32\perfc005.dat
2009-12-11 14:16 . 2001-10-25 12:00 309990 ----a-w- c:\windows\system32\perfh005.dat
2009-12-01 12:01 . 2009-06-17 14:53 -------- d-----w- c:\program files\Google
2009-11-24 17:18 . 2009-01-28 17:38 -------- d-----w- c:\program files\ICQ6Toolbar
2009-10-29 05:48 . 2004-08-17 13:49 663040 ----a-w- c:\windows\system32\wininet.dll
2009-10-21 06:03 . 2004-08-17 13:49 75776 ----a-w- c:\windows\system32\strmfilt.dll
2009-10-21 06:03 . 2004-08-17 13:49 25088 ----a-w- c:\windows\system32\httpapi.dll
2009-10-20 20:16 . 2009-10-20 20:16 -------- d-----w- c:\program files\VirtualDJ
2009-10-20 14:58 . 2004-08-03 21:00 263552 ----a-w- c:\windows\system32\drivers\http.sys
2009-10-13 10:53 . 2004-08-17 13:49 267776 ----a-w- c:\windows\system32\oakley.dll
2009-10-12 13:54 . 2004-08-17 13:49 112640 ----a-w- c:\windows\system32\rastls.dll
2009-10-12 13:54 . 2004-08-17 13:49 69632 ----a-w- c:\windows\system32\raschap.dll
2009-09-25 05:58 . 2004-08-17 13:49 81920 ----a-w- c:\windows\system32\ieencode.dll
.

(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2004-08-17 1667584]
"ICQ"="c:\program files\ICQ6.5\ICQ.exe" [2009-03-01 172792]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2007-10-04 8491008]
"nwiz"="nwiz.exe" [2007-10-04 1626112]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2007-10-04 81920]
"RTHDCPL"="RTHDCPL.EXE" [2007-09-19 16844800]
"SkyTel"="SkyTel.EXE" [2007-08-03 1826816]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 155648]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2007-10-14 49152]
"hpqSRMon"="c:\program files\HP\Digital Imaging\bin\hpqSRMon.exe" [2007-08-22 80896]
"DAEMON Tools"="c:\program files\DAEMON Tools\daemon.exe" [2005-11-08 128920]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-08-17 81000]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-17 15360]

c:\documents and settings\All Users\Nabˇdka Start\Programy\Po spuçtŘnˇ\
HP Digital Imaging Monitor.lnk - c:\program files\HP\Digital Imaging\bin\hpqtra08.exe [2007-10-14 214360]
Microsoft Office.lnk - c:\program files\Microsoft Office\Office10\OSA.EXE [2001-2-13 83360]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Authentication Packages REG_MULTI_SZ msv1_0 nwprovau

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpiscnapp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"c:\\Program Files\\Electronic Arts\\Need For Speed III\\nfs3.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\ICQ6.5\\ICQ.exe"=

R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [1. 9. 2009 14:14 114768]
R2 Angelnt;Angelnt;c:\windows\system32\drivers\ANGELNT.SYS [29. 1. 2009 17:51 51072]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [1. 9. 2009 14:14 20560]
R2 ICQ Service;ICQ Service;c:\program files\ICQ6Toolbar\ICQ Service.exe [28. 1. 2009 18:38 222456]
S0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [29. 1. 2009 17:13 664064]
S2 gupdate1c9ef5bb8db673e;Google Update Service (gupdate1c9ef5bb8db673e);c:\program files\Google\Update\GoogleUpdate.exe [17. 6. 2009 15:55 133104]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
------- Doplňkový sken -------
.
uStart Page = hxxp://start.icq.com/
uInternet Connection Wizard,ShellNext = iexplore
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~2\Office10\EXCEL.EXE/3000
TCP: {8C7111E8-05B9-4DB1-A209-1DEFC4ACAD1F} = 195.168.1.2,195.168.1.4
FF - ProfilePath - c:\documents and settings\Tomas\Data aplikací\Mozilla\Firefox\Profiles\remtuffz.default\
FF - prefs.js: browser.search.selectedEngine - ICQ Search
FF - prefs.js: browser.startup.homepage - hxxp://start.icq.com/
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_results.php?ch_id=afex&q=
FF - component: c:\program files\Mozilla Firefox\extensions\{B13721C7-F507-4982-B2E5-502A71474FED}\components\NPComponent.dll
FF - plugin: c:\program files\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\Google\Update\1.2.183.13\npGoogleOneClick8.dll

---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -

AddRemove-HijackThis - c:\documents and settings\Tomas\Plocha\HijackThis.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-12-17 19:56
Windows 5.1.2600 Service Pack 2 NTFS

skenování skrytých procesů ...

skenování skrytých položek 'Po spuštění' ...

skenování skrytých souborů ...

sken byl úspešně dokončen
skryté soubory: 0

**************************************************************************
.
Celkový čas: 2009-12-17 19:57:34
ComboFix-quarantined-files.txt 2009-12-17 18:57

Před spuštěním: Volných bajtů: 121 745 604 608
Po spuštění: Volných bajtů: 121 929 465 856

WindowsXP-KB310994-SP2-Pro-BootDisk-CSY.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect

- - End Of File - - B1D960128E0D48AC675F8C9EC3C3C833

Re: blbne mi komp, asi je to trojan, prosim o pomoc, prikladam l

Napsal: 18 pro 2009 17:25
od angela
mlady muz, poslusne hlasim: akcia prevedena, tu je log: dnes sa tu dlho nezdrzim, ale zajtra si pozriem dalsiu ulohu :wink:

:SystemLook v1.0 by jpshortstuff (29.08.09)
Log created at 17:21 on 18/12/2009 by Tomas (Administrator - Elevation successful)

========== filefind ==========

Searching for "n1deiect"
No files found.

Searching for "mje12tni"
No files found.

========== regfind ==========

Searching for "n1deiect"
No data found.

Searching for "mje12tni"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{78915b7e-6b72-11dd-b04b-001d7dd7ec15}\Shell\AutoRun\command]
@="mje12tni.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{78915b7e-6b72-11dd-b04b-001d7dd7ec15}\Shell\open\Command]
@="mje12tni.exe"
[HKEY_USERS\S-1-5-21-1177238915-602162358-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{78915b7e-6b72-11dd-b04b-001d7dd7ec15}\Shell\AutoRun\command]
@="mje12tni.exe"
[HKEY_USERS\S-1-5-21-1177238915-602162358-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{78915b7e-6b72-11dd-b04b-001d7dd7ec15}\Shell\open\Command]
@="mje12tni.exe"

-=End Of File=-

Re: blbne mi komp, asi je to trojan, prosim o pomoc, prikladam l

Napsal: 18 pro 2009 17:28
od angela
opat sa potvrdilo, ze som len slaba zena :)
zabudla som pripojit flashku, netusim, ci budu logy rozdielne, ale postup som zopakovala a toto je novy log:


zoSystemLook v1.0 by jpshortstuff (29.08.09)
Log created at 17:26 on 18/12/2009 by Tomas (Administrator - Elevation successful)

========== filefind ==========

Searching for "n1deiect"
No files found.

Searching for "mje12tni"
No files found.

========== regfind ==========

Searching for "n1deiect"
No data found.

Searching for "mje12tni"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{78915b7e-6b72-11dd-b04b-001d7dd7ec15}\Shell\AutoRun\command]
@="mje12tni.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{78915b7e-6b72-11dd-b04b-001d7dd7ec15}\Shell\open\Command]
@="mje12tni.exe"
[HKEY_USERS\S-1-5-21-1177238915-602162358-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{78915b7e-6b72-11dd-b04b-001d7dd7ec15}\Shell\AutoRun\command]
@="mje12tni.exe"
[HKEY_USERS\S-1-5-21-1177238915-602162358-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{78915b7e-6b72-11dd-b04b-001d7dd7ec15}\Shell\open\Command]
@="mje12tni.exe"

-=End Of File=-

Re: blbne mi komp, asi je to trojan, prosim o pomoc, prikladam l

Napsal: 18 pro 2009 19:00
od angela
toto je log po restarte:
========== PROCESSES ==========
Process Explorer.exe killed successfully!
========== REGISTRY ==========
Registry key HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{78915b7e-6b72-11dd-b04b-001d7dd7ec15}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{78915b7e-6b72-11dd-b04b-001d7dd7ec15}\ not found.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{78915b7e-6b72-11dd-b04b-001d7dd7ec15}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{78915b7e-6b72-11dd-b04b-001d7dd7ec15}\ not found.
Registry key HKEY_USERS\S-1-5-21-1177238915-602162358-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{78915b7e-6b72-11dd-b04b-001d7dd7ec15}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{78915b7e-6b72-11dd-b04b-001d7dd7ec15}\ not found.
Registry key HKEY_USERS\S-1-5-21-1177238915-602162358-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{78915b7e-6b72-11dd-b04b-001d7dd7ec15}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{78915b7e-6b72-11dd-b04b-001d7dd7ec15}\ not found.
========== COMMANDS ==========

OTM by OldTimer - Version 3.1.2.2 log created on 12182009_184931

Re: blbne mi komp, asi je to trojan, prosim o pomoc, prikladam l

Napsal: 18 pro 2009 19:07
od angela
toto: je log z rsit:

btw, stav pocitaca: je stale na rovnakom mieste, teda fajn? :) ( ako zisti zena stav pocitaca, hm? )

Logfile of random's system information tool 1.06 (written by random/random)
Run by Tomas at 2009-12-18 19:04:56
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 116 GB (77%) free of 150 GB
Total RAM: 1917 MB (76% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:05:02, on 18. 12. 2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\ICQ6.5\ICQ.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_clipbook.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Documents and Settings\Tomas\Plocha\RSIT.exe
C:\Program Files\trend micro\Tomas.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0 CE\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ6.5\ICQ.exe" silent
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: HP Chytrý výběr - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{8C7111E8-05B9-4DB1-A209-1DEFC4ACAD1F}: NameServer = 195.168.1.2,195.168.1.4
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Update Service (gupdate1c9ef5bb8db673e) (gupdate1c9ef5bb8db673e) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O24 - Desktop Component 0: (no name) - http://213.215.107.96/fotoalbumy/175/58 ... 2b0fcf.jpg

--
End of file - 6189 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\WGASetup.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2007-11-06 322880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 5.0 CE\Reader\ActiveX\AcroIEHelper.ocx [2001-04-16 37808]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2007-11-06 542016]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2008-06-12 958712]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2007-10-04 8491008]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2007-10-04 81920]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2007-09-19 16844800]
"SkyTel"=C:\WINDOWS\SkyTel.EXE [2007-08-03 1826816]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-10-14 49152]
"hpqSRMon"=C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe [2007-08-22 80896]
"DAEMON Tools"=C:\Program Files\DAEMON Tools\daemon.exe [2005-11-08 128920]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-08-17 81000]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2004-08-17 1667584]
"ICQ"=C:\Program Files\ICQ6.5\ICQ.exe [2009-03-01 172792]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
nwprovau

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe:*:Enabled:hpiscnapp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\Electronic Arts\Need For Speed III\nfs3.exe"="C:\Program Files\Electronic Arts\Need For Speed III\nfs3.exe:*:Enabled:Need For Speed III for Win32"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{78915b7e-6b72-11dd-b04b-001d7dd7ec15}]
shell\AutoRun\command - mje12tni.exe
shell\open\command - mje12tni.exe


======List of files/folders created in the last 1 months======

2009-12-18 19:04:56 ----D---- C:\rsit
2009-12-18 19:04:56 ----D---- C:\Program Files\trend micro
2009-12-18 19:03:05 ----SHD---- C:\RECYCLER
2009-12-18 18:49:31 ----D---- C:\_OTM
2009-12-17 20:05:56 ----SD---- C:\KittyFix
2009-12-17 19:53:19 ----A---- C:\Boot.bak
2009-12-17 19:53:16 ----RASHD---- C:\cmdcons
2009-12-17 19:51:15 ----A---- C:\WINDOWS\zip.exe
2009-12-17 19:51:15 ----A---- C:\WINDOWS\SWXCACLS.exe
2009-12-17 19:51:15 ----A---- C:\WINDOWS\SWSC.exe
2009-12-17 19:51:15 ----A---- C:\WINDOWS\SWREG.exe
2009-12-17 19:51:15 ----A---- C:\WINDOWS\sed.exe
2009-12-17 19:51:15 ----A---- C:\WINDOWS\PEV.exe
2009-12-17 19:51:15 ----A---- C:\WINDOWS\MBR.exe
2009-12-17 19:51:15 ----A---- C:\WINDOWS\grep.exe
2009-12-17 19:49:41 ----D---- C:\WINDOWS\ERDNT
2009-12-17 19:47:52 ----D---- C:\Qoobox
2009-12-11 09:43:05 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2009-12-11 09:42:59 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2009-12-11 09:42:44 ----HDC---- C:\WINDOWS\$NtUninstallKB976325$
2009-12-11 09:42:34 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2009-12-11 09:42:29 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2009-12-11 09:42:22 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2009-11-26 17:36:25 ----HDC---- C:\WINDOWS\$NtUninstallKB976098-v2$
2009-11-26 17:36:19 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2009-11-24 17:08:05 ----D---- C:\Program Files\ICQ6.5

======List of files/folders modified in the last 1 months======

2009-12-18 19:04:56 ----RD---- C:\Program Files
2009-12-18 18:59:26 ----D---- C:\WINDOWS\Prefetch
2009-12-18 18:57:52 ----D---- C:\WINDOWS\Temp
2009-12-18 18:57:14 ----D---- C:\Documents and Settings\Tomas\Data aplikací\HPAppData
2009-12-18 18:55:01 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-12-18 17:47:44 ----SHD---- C:\WINDOWS\Installer
2009-12-18 17:47:44 ----D---- C:\Config.Msi
2009-12-18 17:47:37 ----D---- C:\Program Files\Google
2009-12-17 20:06:10 ----D---- C:\WINDOWS
2009-12-17 20:04:05 ----D---- C:\WINDOWS\system32\CatRoot2
2009-12-17 19:56:47 ----A---- C:\WINDOWS\system.ini
2009-12-17 19:55:47 ----D---- C:\WINDOWS\system32
2009-12-17 19:55:15 ----D---- C:\WINDOWS\system32\drivers
2009-12-17 19:55:14 ----D---- C:\WINDOWS\AppPatch
2009-12-17 19:55:11 ----D---- C:\Program Files\Common Files
2009-12-17 19:53:19 ----RASH---- C:\boot.ini
2009-12-17 17:17:21 ----D---- C:\Program Files\Mozilla Firefox
2009-12-14 18:33:01 ----A---- C:\WINDOWS\TextSpy.ini
2009-12-11 15:16:09 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-12-11 09:43:09 ----HD---- C:\WINDOWS\inf
2009-12-11 09:43:08 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-12-11 09:43:03 ----A---- C:\WINDOWS\imsins.BAK
2009-12-11 09:42:51 ----D---- C:\Program Files\Internet Explorer
2009-12-11 09:42:33 ----HD---- C:\WINDOWS\$hf_mig$
2009-12-03 21:27:41 ----D---- C:\WINDOWS\Help
2009-12-01 21:06:19 ----A---- C:\WINDOWS\system32\MRT.exe
2009-11-26 17:34:50 ----D---- C:\WINDOWS\WinSxS
2009-11-24 18:18:59 ----D---- C:\Program Files\ICQ6Toolbar
2009-11-24 17:11:02 ----D---- C:\Documents and Settings\All Users\Data aplikací\ICQ

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2009-08-17 26944]
R1 aswSP;avast! Self Protection; C:\WINDOWS\system32\drivers\aswSP.sys [2009-08-17 114768]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2009-08-17 51376]
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-17 39936]
R2 Angelnt;Angelnt; C:\WINDOWS\System32\Drivers\ANGELNT.SYS [2009-01-29 51072]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2009-08-17 20560]
R2 aswMon2;avast! Standard Shield Support; C:\WINDOWS\system32\drivers\aswMon2.sys [2009-08-17 94160]
R2 NwlnkIpx;Transportní protokol kompatibilní s NWLink IPX/SPX/NetBIOS; C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys [2004-08-03 88448]
R2 NwlnkNb;Služba NWLink pro rozhraní NetBIOS; C:\WINDOWS\system32\DRIVERS\nwlnknb.sys [2001-10-25 63232]
R2 NwlnkSpx;Protokol NWLink SPX/SPXII; C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys [2001-10-25 55936]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2009-08-17 23152]
R3 dtscsi;dtscsi; C:\WINDOWS\System32\Drivers\dtscsi.sys [2009-01-29 223128]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-09-19 4617728]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2007-10-04 6854464]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2007-09-20 53632]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2007-09-20 22016]
R3 NWRDR;NetWare Rdr; C:\WINDOWS\system32\DRIVERS\nwrdr.sys [2004-08-03 163584]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-03 26624]
R3 usbhub;Rozbočovač umožnující USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]
R3 usbohci;Ovladač Miniport otevřeného hostitelského řadiče Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2004-08-03 17024]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
S3 catchme;catchme; \??\C:\DOCUME~1\Tomas\LOCALS~1\Temp\catchme.sys []
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2007-10-30 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2007-10-30 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2007-10-30 21568]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-08-17 18752]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-08-17 138680]
R2 hpqddsvc;Služba HP CUE DeviceDiscovery; C:\WINDOWS\system32\svchost.exe [2004-08-17 14336]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2008-06-10 222456]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2004-08-17 14336]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2007-10-04 155716]
R2 NWCWorkstation;Klient systému NetWare; C:\WINDOWS\system32\svchost.exe [2004-08-17 14336]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2004-08-17 14336]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-08-17 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-08-17 352920]
R3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2004-08-17 14336]
S2 gupdate1c9ef5bb8db673e;Google Update Service (gupdate1c9ef5bb8db673e); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-06-17 133104]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2006-06-08 208896]

-----------------EOF-----------------

Re: blbne mi komp, asi je to trojan, prosim o pomoc, prikladam l

Napsal: 21 led 2010 21:36
od angela
no fajn a som tu zas :(
pre zmenu teraz naozaj blbne - ale ten moj vlastny komp
je taky pomaly, ze pomalsi uz snad ani nemoze byt
pls hlp

Re: blbne mi komp, asi je to trojan, prosim o pomoc, prikladam l

Napsal: 22 led 2010 14:49
od angela
ahoj, dakujem za odozvu, ale tu predchadzajucu "cistku" som robila na kamaratkinom PC, takze prosim este raz a od zaciatku :oops:
no a cez vikend budem v Znojme, takze na kompe nebudem, iba dnes vecer, alebo az v pondelok
dik

R.

Re: blbne mi komp, asi je to trojan, prosim o pomoc, prikladam l

Napsal: 22 led 2010 15:04
od angela
Akoze toto by mohlo byt ono? :o
R.


Logfile of random's system information tool 1.06 (written by random/random)
Run by Renata at 2010-01-22 15:01:53
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 40 GB (50%) free of 80 GB
Total RAM: 768 MB (36% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:02:04, on 22.01.2010
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Application Updater\ApplicationUpdater.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\Program Files\Ahead\InCD\InCD.exe
C:\WINDOWS\PixArt\PAC7311\Monitor.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe
C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Search Settings\SearchSettings.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Common Files\Teleca Shared\CapabilityManager.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
C:\Program Files\TOPCOM\Common\Topcom_USB_4101gmr.exe
C:\Program Files\VIA\RAID\raid_tool.exe
C:\Program Files\Common Files\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Opera\opera.exe
C:\Documents and Settings\Renata\Plocha\RSIT.exe
C:\Program Files\Renata.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - URLSearchHook: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\PROGRA~1\ICQTOO~1\1236\toolbaru.dll
R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\SearchSettings.dll
O2 - BHO: Dealio Toolbar - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - C:\Program Files\Dealio Toolbar\IE\4.0.2\dealioToolbarIE.dll
O2 - BHO: XTTBPos00 - {055FD26D-3A88-4e15-963D-DC8493744B1D} - C:\PROGRA~1\ICQTOO~1\1236\toolbaru.dll
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\SearchSettings.dll
O3 - Toolbar: ICQ Toolbar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\PROGRA~1\ICQTOO~1\1236\toolbaru.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: Dealio Toolbar - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - C:\Program Files\Dealio Toolbar\IE\4.0.2\dealioToolbarIE.dll
O4 - HKLM\..\Run: [Smapp] C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [PAC7311_Monitor] C:\WINDOWS\PixArt\PAC7311\Monitor.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
O4 - HKLM\..\Run: [Google Quick Search Box] "C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe" /autorun
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Renata\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [GameShadow] C:\Program Files\GameShadow\GameShadow.exe /q
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: BlueSoleil.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Topcom Wireless LAN Utility.lnk = C:\Program Files\TOPCOM\Common\Topcom_USB_4101gmr.exe
O4 - Global Startup: VIA RAID TOOL.lnk = C:\Program Files\VIA\RAID\raid_tool.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {6218F7B5-0D3A-48BA-AE4C-49DCFA63D400} (CSEQueryObject Object) - http://www.myheritage.sk/Genoogle/Compo ... eQuery.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files\Application Updater\ApplicationUpdater.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Služba Google Update (gupdate1ca7750223baf0a) (gupdate1ca7750223baf0a) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: PIXMA Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: InCD Helper (read only) (InCDsrvR) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/Renata/LOCALS~1/Temp/msohtml1/01/clip_image002.jpg

--
End of file - 9637 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2000478354-706699826-725345543-1003Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-2000478354-706699826-725345543-1003UA.job
C:\WINDOWS\tasks\Norton Security Scan for Renata.job
C:\WINDOWS\tasks\WGASetup.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}]
Dealio Toolbar - C:\Program Files\Dealio Toolbar\IE\4.0.2\dealioToolbarIE.dll [2010-01-08 700416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{055FD26D-3A88-4e15-963D-DC8493744B1D}]
XTTBPos00 Class - C:\PROGRA~1\ICQTOO~1\1236\toolbaru.dll [2006-12-25 701952]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2009-08-04 1586472]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-12-14 263280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll [2009-11-17 764912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}]
SearchSettings Class - C:\Program Files\Search Settings\SearchSettings.dll [2010-01-08 1109504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQ Toolbar - C:\PROGRA~1\ICQTOO~1\1236\toolbaru.dll [2006-12-25 701952]

{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-12-14 263280]
{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - Dealio Toolbar - C:\Program Files\Dealio Toolbar\IE\4.0.2\dealioToolbarIE.dll [2010-01-08 700416]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Smapp"=C:\Program Files\Analog Devices\SoundMAX\SMTray.exe [2003-05-05 143360]
"Adobe Photo Downloader"=C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe [2005-06-06 57344]
"InCD"=C:\Program Files\Ahead\InCD\InCD.exe [2006-04-06 1398272]
"PAC7311_Monitor"=C:\WINDOWS\PixArt\PAC7311\Monitor.exe [2006-11-03 319488]
"Sony Ericsson PC Suite"=C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe [2005-10-26 159744]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]
"DAEMON Tools-1033"=C:\Program Files\D-Tools\daemon.exe [2004-08-22 81920]
"CanonSolutionMenu"=C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2007-05-14 644696]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2007-04-03 1603152]
"SSBkgdUpdate"=C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"OpwareSE4"=C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe [2007-02-04 79400]
"Google Quick Search Box"=C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe [2009-05-12 68592]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2009-11-16 2054360]
"SearchSettings"=C:\Program Files\Search Settings\SearchSettings.exe [2010-01-08 974848]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-17 15360]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2004-10-13 1694208]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-12-16 68856]
"Google Update"=C:\Documents and Settings\Renata\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2009-04-15 133104]
"GameShadow"=C:\Program Files\GameShadow\GameShadow.exe /q []

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
BlueSoleil.lnk - C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE
Topcom Wireless LAN Utility.lnk - C:\Program Files\TOPCOM\Common\Topcom_USB_4101gmr.exe
VIA RAID TOOL.lnk - C:\Program Files\VIA\RAID\raid_tool.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2007-03-15 183808]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
"HonorAutoRunSetting"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe"="C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe:*:Enabled:BlueSoleil"
"C:\Program Files\ICQ6\ICQ.exe"="C:\Program Files\ICQ6\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Infogrames\Trophy Hunter 2003\TH2003.exe"="C:\Program Files\Infogrames\Trophy Hunter 2003\TH2003.exe:*:Enabled:TH2003"
"C:\Documents and Settings\Renata\Local Settings\Data aplikací\Google\Google Talk Plugin\googletalkplugin.dll"="C:\Documents and Settings\Renata\Local Settings\Data aplikací\Google\Google Talk Plugin\googletalkplugin.dll:*:Enabled:Google Talk Plugin"
"C:\Documents and Settings\Renata\Local Settings\Data aplikací\Google\Google Talk Plugin\googletalkplugin.exe"="C:\Documents and Settings\Renata\Local Settings\Data aplikací\Google\Google Talk Plugin\googletalkplugin.exe:*:Enabled:Google Talk Plugin"
"C:\Program Files\Counter-Strike 1.6\hl.exe"="C:\Program Files\Counter-Strike 1.6\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype. Take a deep breath "

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

======List of files/folders created in the last 1 months======

2010-01-22 15:01:54 ----A---- C:\Program Files\Renata.exe
2010-01-22 15:01:53 ----D---- C:\rsit
2010-01-22 14:18:54 ----D---- C:\WINDOWS\LastGood
2010-01-17 16:33:32 ----D---- C:\Documents and Settings\Renata\Data aplikací\Search Settings
2010-01-17 16:33:32 ----D---- C:\Documents and Settings\Renata\Data aplikací\Dealio
2010-01-17 16:01:09 ----D---- C:\Program Files\Dealio Toolbar
2010-01-17 16:00:18 ----SHD---- C:\Config.Msi
2010-01-17 15:59:32 ----D---- C:\Program Files\Application Updater
2010-01-17 15:59:31 ----D---- C:\Program Files\Search Settings
2010-01-14 08:11:53 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-01-13 07:54:14 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$

======List of files/folders modified in the last 1 months======

2010-01-22 15:02:01 ----RD---- C:\Program Files
2010-01-22 15:01:50 ----D---- C:\WINDOWS\temp
2010-01-22 15:01:49 ----D---- C:\WINDOWS\Prefetch
2010-01-22 14:34:27 ----HD---- C:\WINDOWS\inf
2010-01-22 14:32:08 ----D---- C:\WINDOWS
2010-01-22 14:20:51 ----D---- C:\WINDOWS\SoftwareDistribution
2010-01-22 14:18:55 ----HD---- C:\WINDOWS\$hf_mig$
2010-01-22 14:18:47 ----D---- C:\WINDOWS\system32\CatRoot2
2010-01-21 21:46:28 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-01-21 20:49:48 ----D---- C:\Documents and Settings\Renata\Data aplikací\Skype
2010-01-20 22:44:56 ----D---- C:\Documents and Settings\Renata\Data aplikací\skypePM
2010-01-19 20:39:38 ----SD---- C:\Documents and Settings\Renata\Data aplikací\Microsoft
2010-01-17 16:01:13 ----SHD---- C:\WINDOWS\Installer
2010-01-17 16:01:09 ----D---- C:\WINDOWS\WinSxS
2010-01-17 16:01:05 ----D---- C:\WINDOWS\SxsCaPendDel
2010-01-14 20:52:52 ----D---- C:\WINDOWS\system32\drivers
2010-01-14 20:52:21 ----D---- C:\Program Files\ESET
2010-01-14 08:11:57 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-01-14 08:11:57 ----D---- C:\WINDOWS\system32
2010-01-13 08:15:56 ----D---- C:\WINDOWS\AppPatch
2010-01-13 07:54:26 ----A---- C:\WINDOWS\imsins.BAK
2010-01-08 22:26:11 ----A---- C:\WINDOWS\wdict32.INI
2010-01-05 01:17:46 ----A---- C:\WINDOWS\system32\MRT.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AmdK7;Ovladač procesoru AMD K7; C:\WINDOWS\system32\DRIVERS\amdk7.sys [2004-08-17 41216]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2009-11-16 108792]
R1 epfwtdir;epfwtdir; C:\WINDOWS\system32\DRIVERS\epfwtdir.sys [2009-11-16 96408]
R1 InCDPass;InCDPass; C:\WINDOWS\System32\DRIVERS\InCDPass.sys [2006-04-06 29440]
R1 incdrm;InCD Reader; C:\WINDOWS\system32\drivers\incdrm.sys [2006-04-06 33408]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.4.3.0; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2009-12-17 20747]
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2009-11-16 116520]
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2002-04-01 4816]
R3 Afc;PPdus ASPI Shell; C:\WINDOWS\system32\drivers\Afc.sys [2005-02-23 11776]
R3 BlueletAudio;Bluetooth Audio Service; C:\WINDOWS\system32\DRIVERS\blueletaudio.sys [2005-05-31 20480]
R3 BT;Bluetooth PAN Network Adapter; C:\WINDOWS\system32\DRIVERS\btnetdrv.sys [2005-04-30 10804]
R3 BTHidEnum;Bluetooth HID Enumerator; C:\WINDOWS\system32\DRIVERS\vbtenum.sys [2005-04-30 11860]
R3 FETNDIS;VIA PCI 10/100Mb Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\fetnd5.sys [2001-08-17 27165]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-03 1897408]
R3 PAC7311;Trust CP-2300 Webcam; C:\WINDOWS\system32\DRIVERS\PA707UCM.SYS [2007-03-14 449024]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2001-10-25 5888]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2003-07-15 578368]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-03 26624]
R3 usbhub;Ovladač standardního rozbočovače USB; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-03 20480]
R3 VComm;Virtual Serial port driver; C:\WINDOWS\system32\DRIVERS\VComm.sys [2004-10-19 61312]
R3 VcommMgr;Bluetooth VComm Manager Service; C:\WINDOWS\System32\Drivers\VcommMgr.sys [2005-03-25 82148]
R4 InCDfs;InCD File System; C:\WINDOWS\system32\drivers\InCDfs.sys [2006-04-06 102016]
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\WINDOWS\System32\Drivers\btcusb.sys [2005-05-31 23000]
S3 catchme;catchme; \??\C:\DOCUME~1\Renata\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-03 17024]
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2008-12-16 25280]
S3 k750bus;Sony Ericsson 750 driver (WDM); C:\WINDOWS\system32\DRIVERS\k750bus.sys [2008-03-18 55216]
S3 k750mdfl;Sony Ericsson 750 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\k750mdfl.sys [2008-03-18 6576]
S3 k750mdm;Sony Ericsson 750 USB WMC Modem Drivers; C:\WINDOWS\system32\DRIVERS\k750mdm.sys [2008-03-18 89872]
S3 k750mgmt;Sony Ericsson 750 USB WMC Device Management Drivers; C:\WINDOWS\system32\DRIVERS\k750mgmt.sys [2008-03-18 81728]
S3 k750obex;Sony Ericsson 750 USB WMC OBEX Interface Drivers; C:\WINDOWS\system32\DRIVERS\k750obex.sys [2008-03-18 79488]
S3 libusb0;LibUsb-Win32 - Kernel Driver 11/20/2005, 20051120; C:\WINDOWS\system32\DRIVERS\libusb0.sys [2006-04-22 29184]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-03 85376]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-03 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-03 11136]
S3 StillCam;Ovladač digitálního fotoaparátu pro sériový port; C:\WINDOWS\system32\DRIVERS\serscan.sys [2001-10-24 6784]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-03 15360]
S3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2004-08-03 59264]
S3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S3 usbprint;Třída USB Printer; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856]
S3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104]
S3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-03 19328]
S3 z520bus;Sony Ericsson 520 driver (WDM); C:\WINDOWS\system32\DRIVERS\z520bus.sys [2005-09-07 57648]
S3 z520mdfl;Sony Ericsson 520 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\z520mdfl.sys [2005-09-07 8336]
S3 z520mdm;Sony Ericsson 520 USB WMC Modem Drivers; C:\WINDOWS\system32\DRIVERS\z520mdm.sys [2005-09-07 93488]
S3 z520mgmt;Sony Ericsson 520 USB WMC Device Management Drivers; C:\WINDOWS\system32\DRIVERS\z520mgmt.sys [2005-09-07 84928]
S3 z520obex;Sony Ericsson 520 USB WMC OBEX Interface Drivers; C:\WINDOWS\system32\DRIVERS\z520obex.sys [2005-09-07 82864]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
S4 WS2IFSL;Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-10-25 12032]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Application Updater;Application Updater; C:\Program Files\Application Updater\ApplicationUpdater.exe [2010-01-08 380928]
R2 BlueSoleil Hid Service;BlueSoleil Hid Service; C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe [2005-04-06 110592]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2009-11-16 735960]
R2 IJPLMSVC;PIXMA Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2007-04-13 97432]
R2 InCDsrv;InCD Helper; C:\Program Files\Ahead\InCD\InCDsrv.exe [2006-04-06 880128]
R2 SoundMAX Agent Service (default);SoundMAX Agent Service; C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe [2002-09-20 45056]
S2 gupdate1ca7750223baf0a;Služba Google Update (gupdate1ca7750223baf0a); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-12-07 133104]
S2 InCDsrvR;InCD Helper (read only); C:\Program Files\Ahead\InCD\InCDsrv.exe [2006-04-06 880128]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2009-11-16 20680]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-05-12 182768]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Re: blbne mi komp, asi je to trojan, prosim o pomoc, prikladam l

Napsal: 22 led 2010 15:11
od angela
OMG, uz som medzitym poslala logy z RSIT, ale prikladam aj to "druhe" :) NO hej, znojmo ja budem vidiet dvojmo, to cestovanie ma zabije


DDS (Ver_09-12-01.01) - NTFSx86
Run by Renata at 15:09:23,85 on 22.01.2010
Internet Explorer: 6.0.2900.2180
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1029.18.768.320 [GMT 1:00]

AV: ESET NOD32 Antivirus 4.0 *On-access scanning enabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}

============== Running Processes ===============

C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\Program Files\Ahead\InCD\InCDsrv.exe
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Program Files\Application Updater\ApplicationUpdater.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\Program Files\Ahead\InCD\InCD.exe
C:\WINDOWS\PixArt\PAC7311\Monitor.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Canon\MyPrinter\BJMyPrt.exe
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe
C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Search Settings\SearchSettings.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Common Files\Teleca Shared\CapabilityManager.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
C:\Program Files\TOPCOM\Common\Topcom_USB_4101gmr.exe
C:\Program Files\VIA\RAID\raid_tool.exe
C:\Program Files\Common Files\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Opera\opera.exe
C:\Documents and Settings\Renata\Plocha\dds.scr

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.google.sk/
uSearch Page = hxxp://www.google.com
uSearch Bar = hxxp://www.google.com/ie
uInternet Connection Wizard,ShellNext = iexplore
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
uURLSearchHooks: ICQ Toolbar: {855f3b16-6d32-4fe6-8a56-bbb695989046} - c:\progra~1\icqtoo~1\1236\toolbaru.dll
uURLSearchHooks: SearchSettings Class: {e312764e-7706-43f1-8dab-fcdd2b1e416d} - c:\program files\search settings\SearchSettings.dll
BHO: Dealio Toolbar: {01398b87-61af-4ffb-9ab5-1a1c5fb39a9c} - c:\program files\dealio toolbar\ie\4.0.2\dealioToolbarIE.dll
BHO: XTTBPos00 Class: {055fd26d-3a88-4e15-963d-dc8493744b1d} - c:\progra~1\icqtoo~1\1236\toolbaru.dll
BHO: Podpora odkazu pro Adobe PDF Reader: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: Skype add-on (mastermind): {22bf413b-c6d2-4d91-82a9-a0f997ba588c} - c:\program files\skype\toolbars\internet explorer\SkypeIEPlugin.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.4.4525.1752\swg.dll
BHO: SearchSettings Class: {e312764e-7706-43f1-8dab-fcdd2b1e416d} - c:\program files\search settings\SearchSettings.dll
TB: ICQ Toolbar: {855f3b16-6d32-4fe6-8a56-bbb695989046} - c:\progra~1\icqtoo~1\1236\toolbaru.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
TB: Dealio Toolbar: {01398b87-61af-4ffb-9ab5-1a1c5fb39a9c} - c:\program files\dealio toolbar\ie\4.0.2\dealioToolbarIE.dll
uRun: [CTFMON.EXE] c:\windows\system32\ctfmon.exe
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
uRun: [swg] "c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe"
uRun: [Google Update] "c:\documents and settings\renata\local settings\data aplikací\google\update\GoogleUpdate.exe" /c
uRun: [GameShadow] c:\program files\gameshadow\GameShadow.exe /q
mRun: [Smapp] c:\program files\analog devices\soundmax\SMTray.exe
mRun: [Adobe Photo Downloader] "c:\program files\adobe\photoshop album starter edition\3.0\apps\apdproxy.exe"
mRun: [InCD] c:\program files\ahead\incd\InCD.exe
mRun: [PAC7311_Monitor] c:\windows\pixart\pac7311\Monitor.exe
mRun: [Sony Ericsson PC Suite] "c:\program files\sony ericsson\mobile2\application launcher\Application Launcher.exe" /startoptions
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe"
mRun: [DAEMON Tools-1033] "c:\program files\d-tools\daemon.exe" -lang 1033
mRun: [CanonSolutionMenu] c:\program files\canon\solutionmenu\CNSLMAIN.exe /logon
mRun: [CanonMyPrinter] c:\program files\canon\myprinter\BJMyPrt.exe /logon
mRun: [SSBkgdUpdate] "c:\program files\common files\scansoft shared\ssbkgdupdate\SSBkgdupdate.exe" -Embedding -boot
mRun: [OpwareSE4] "c:\program files\scansoft\omnipagese4\OpwareSE4.exe"
mRun: [Google Quick Search Box] "c:\program files\google\quick search box\GoogleQuickSearchBox.exe" /autorun
mRun: [egui] "c:\program files\eset\eset nod32 antivirus\egui.exe" /hide /waitservice
mRun: [SearchSettings] c:\program files\search settings\SearchSettings.exe
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
StartupFolder: c:\docume~1\alluse~1\nabdka~1\programy\posput~1\blueso~1.lnk - c:\program files\ivt corporation\bluesoleil\BlueSoleil.exe
StartupFolder: c:\docume~1\alluse~1\nabdka~1\programy\posput~1\micros~1.lnk - c:\program files\microsoft office\office10\OSA.EXE
StartupFolder: c:\docume~1\alluse~1\nabdka~1\programy\posput~1\topcom~1.lnk - c:\program files\topcom\common\Topcom_USB_4101gmr.exe
StartupFolder: c:\docume~1\alluse~1\nabdka~1\programy\posput~1\viarai~1.lnk - c:\program files\via\raid\raid_tool.exe
IE: Add to AMV Converter... - c:\program files\mp3 player utilities 4.13\amvconverter\grab.html
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\micros~2\office10\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\google\google toolbar\component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
IE: MediaManager tool grab multimedia file - c:\program files\mp3 player utilities 4.13\mediamanager\grab.html
IE: {E59EB121-F339-4851-A3BA-FE49C35617C2} - c:\program files\icq6\ICQ.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {5067A26B-1337-4436-8AFE-EE169C2DA79F} - {77BF5300-1474-4EC7-9980-D32B190E9B07} - c:\program files\skype\toolbars\internet explorer\SkypeIEPlugin.dll
IE: {77BF5300-1474-4EC7-9980-D32B190E9B07} - {77BF5300-1474-4EC7-9980-D32B190E9B07} - c:\program files\skype\toolbars\internet explorer\SkypeIEPlugin.dll
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {6218F7B5-0D3A-48BA-AE4C-49DCFA63D400} - hxxp://www.myheritage.sk/Genoogle/Components/A ... eQuery.dll
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab
Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - c:\program files\common files\microsoft shared\web folders\PKMCDO.DLL
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL

============= SERVICES / DRIVERS ===============

R0 d347bus;d347bus;c:\windows\system32\drivers\d347bus.sys [2009-1-9 155136]
R0 d347prt;d347prt;c:\windows\system32\drivers\d347prt.sys [2009-1-9 5248]
R0 viasraid;viasraid;c:\windows\system32\drivers\viasraid.sys [2008-3-3 77312]
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [2009-11-16 108792]
R1 epfwtdir;epfwtdir;c:\windows\system32\drivers\epfwtdir.sys [2009-11-16 96408]
R2 Application Updater;Application Updater;c:\program files\application updater\ApplicationUpdater.exe [2010-1-8 380928]
R2 ekrn;ESET Service;c:\program files\eset\eset nod32 antivirus\ekrn.exe [2009-11-16 735960]
R3 PAC7311;Trust CP-2300 Webcam;c:\windows\system32\drivers\PA707UCM.SYS [2007-3-14 449024]
R3 PSched;Plánovač paketů technologie QoS;c:\windows\system32\drivers\psched.sys [2004-8-3 69120]
S2 gupdate1ca7750223baf0a;Služba Google Update (gupdate1ca7750223baf0a);c:\program files\google\update\GoogleUpdate.exe [2009-12-7 133104]
S3 libusb0;LibUsb-Win32 - Kernel Driver 11/20/2005, 20051120;c:\windows\system32\drivers\libusb0.sys [2009-3-17 29184]
S3 z520bus;Sony Ericsson 520 driver (WDM);c:\windows\system32\drivers\z520bus.sys [2005-9-7 57648]
S3 z520mdfl;Sony Ericsson 520 USB WMC Modem Filter;c:\windows\system32\drivers\z520mdfl.sys [2005-9-7 8336]
S3 z520mdm;Sony Ericsson 520 USB WMC Modem Drivers;c:\windows\system32\drivers\z520mdm.sys [2005-9-7 93488]
S3 z520mgmt;Sony Ericsson 520 USB WMC Device Management Drivers;c:\windows\system32\drivers\z520mgmt.sys [2005-9-7 84928]
S3 z520obex;Sony Ericsson 520 USB WMC OBEX Interface Drivers;c:\windows\system32\drivers\z520obex.sys [2005-9-7 82864]

=============== Created Last 30 ================

2010-01-22 14:01:54 401720 ----a-w- c:\program files\Renata.exe
2010-01-17 15:33:32 0 d-----w- c:\docume~1\renata\dataap~1\Search Settings
2010-01-17 15:33:32 0 d-----w- c:\docume~1\renata\dataap~1\Dealio
2010-01-17 15:01:09 0 d-----w- c:\program files\Dealio Toolbar
2010-01-17 14:59:32 0 d-----w- c:\program files\Application Updater
2010-01-17 14:59:31 0 d-----w- c:\program files\Search Settings

==================== Find3M ====================

2010-01-22 14:02:04 9638 ----a-w- c:\program files\hijackthis.log
2010-01-11 00:17:14 230432 ----a-w- C:\PA7311.DAT
2009-12-17 20:04:24 20747 ----a-w- c:\windows\system32\drivers\AegisP.sys
2009-12-10 18:15:46 82462 ----a-w- c:\windows\system32\perfc005.dat
2009-12-10 18:15:46 437062 ----a-w- c:\windows\system32\perfh005.dat
2009-10-29 05:48:26 663040 ----a-w- c:\windows\system32\wininet.dll
2009-10-13 15:49:58 19282288 ----a-w- c:\program files\IE8-WindowsXP-x86-SKY.exe
2008-11-27 06:32:51 401720 ----a-w- c:\program files\HijackThis.exe

============= FINISH: 15:09:50,03 ===============

Re: blbne mi komp, asi je to trojan, prosim o pomoc, prikladam l

Napsal: 22 led 2010 15:16
od angela
ale uz som tam vlozila aj dds

Re: blbne mi komp, asi je to trojan, prosim o pomoc, prikladam l

Napsal: 22 led 2010 15:55
od angela
OMG, nechce mi to odoslat naraz, tak to roztrham na kusy

1 kus:

ComboFix 10-01-21.08 - Renata 22.01.2010 15:34:25.7.1 - x86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1029.18.768.541 [GMT 1:00]
Spuštěný z: c:\documents and settings\Renata\Plocha\ComboFix.exe
AV: ESET NOD32 Antivirus 4.0 *On-access scanning disabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
* Rezidentní štít AV je zapnutý

.

((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\program files\Dealio Toolbar
c:\program files\Dealio Toolbar\IE\4.0.2\config.ini
c:\program files\Dealio Toolbar\IE\4.0.2\dealioToolbarIE.dll
c:\program files\Dealio Toolbar\Res\amazon.gif
c:\program files\Dealio Toolbar\Res\apple.gif
c:\program files\Dealio Toolbar\Res\barnes.gif
c:\program files\Dealio Toolbar\Res\bestbuy.gif
c:\program files\Dealio Toolbar\Res\dealio_logo.gif
c:\program files\Dealio Toolbar\Res\dealio_logo_hover.gif
c:\program files\Dealio Toolbar\Res\ebay.gif
c:\program files\Dealio Toolbar\Res\icon_settings.gif
c:\program files\Dealio Toolbar\Res\macys.gif
c:\program files\Dealio Toolbar\Res\newegg.gif
c:\program files\Dealio Toolbar\Res\overstock.gif
c:\program files\Dealio Toolbar\Res\search-button-hover.gif
c:\program files\Dealio Toolbar\Res\search-button.gif
c:\program files\Dealio Toolbar\Res\search-chevron-hover.gif
c:\program files\Dealio Toolbar\Res\search-chevron.gif
c:\program files\Dealio Toolbar\Res\search_amazon.gif
c:\program files\Dealio Toolbar\Res\search_dealio.gif
c:\program files\Dealio Toolbar\Res\search_ebay.gif
c:\program files\Dealio Toolbar\Res\search_yahoo.gif
c:\program files\Dealio Toolbar\Res\target.gif
c:\program files\Dealio Toolbar\Res\walmart.gif
c:\program files\Dealio Toolbar\Res\widgets.xml
c:\program files\Dealio Toolbar\WidgiHelper.exe
c:\program files\Renata.exe
c:\program files\Search Settings
c:\program files\Search Settings\SearchSettings.dll
c:\program files\Search Settings\SearchSettings.exe
c:\program files\Search Settings\SearchSettingsRes409.dll
c:\windows\system32\ieuinit.inf

.
((((((((((((((((((((((((( Soubory vytvořené od 2009-12-22 do 2010-01-22 )))))))))))))))))))))))))))))))
.

2010-01-22 14:26 . 2010-01-22 14:26 389632 ----a-w- c:\windows\system32\CF4795.exe
2010-01-22 14:01 . 2010-01-22 14:02 -------- d-----w- C:\rsit
2010-01-17 14:59 . 2010-01-17 14:59 -------- d-----w- c:\program files\Application Updater

.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-22 14:02 . 2008-11-27 06:33 9638 ----a-w- c:\program files\hijackthis.log
2010-01-14 19:52 . 2008-11-11 21:18 -------- d-----w- c:\program files\ESET
2010-01-11 00:17 . 2009-06-07 05:56 230432 ----a-w- C:\PA7311.DAT
2009-12-17 20:04 . 2009-12-17 20:04 20747 ----a-w- c:\windows\system32\drivers\AegisP.sys
2009-12-17 20:04 . 2009-12-17 20:03 -------- d-----w- c:\program files\TOPCOM
2009-12-17 20:04 . 2008-03-03 15:36 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-12-10 18:15 . 2001-10-25 12:00 82462 ----a-w- c:\windows\system32\perfc005.dat
2009-12-10 18:15 . 2001-10-25 12:00 437062 ----a-w- c:\windows\system32\perfh005.dat
2009-12-07 15:24 . 2008-03-03 18:03 -------- d-----w- c:\program files\Google
2009-12-07 15:15 . 2008-03-03 18:03 -------- d-----r- c:\program files\Skype
2009-12-07 15:15 . 2009-12-07 15:15 -------- d-----w- c:\program files\Common Files\Skype
2009-11-21 16:46 . 2004-08-17 13:49 470528 ----a-w- c:\windows\AppPatch\aclayers.dll
2009-11-16 08:06 . 2009-11-16 08:06 96408 ----a-w- c:\windows\system32\drivers\epfwtdir.sys
2009-11-16 08:03 . 2009-11-16 08:03 108792 ----a-w- c:\windows\system32\drivers\ehdrv.sys
2009-11-16 07:56 . 2009-11-16 07:56 116520 ----a-w- c:\windows\system32\drivers\eamon.sys
2009-10-29 05:48 . 2004-08-17 13:49 663040 ----a-w- c:\windows\system32\wininet.dll
2009-10-13 15:49 . 2009-10-13 15:39 19282288 ----a-w- c:\program files\IE8-WindowsXP-x86-SKY.exe
2008-11-27 06:32 . 2008-11-27 06:32 401720 ----a-w- c:\program files\HijackThis.exe
.

Re: blbne mi komp, asi je to trojan, prosim o pomoc, prikladam l

Napsal: 22 led 2010 15:58
od angela
((((((((((((((((((((((((((((( SnapShot@2009-06-15_17.12.08 )))))))))))))))))))))))))))))))))))))))))
.
+ 2007-07-30 18:19 . 2009-08-06 17:24 44768 c:\windows\system32\wups2.dll
+ 2008-03-03 15:25 . 2009-08-06 17:24 35552 c:\windows\system32\wups.dll
+ 2008-03-03 15:25 . 2009-08-06 17:24 53472 c:\windows\system32\wuauclt.exe
+ 2004-08-17 13:49 . 2009-06-25 08:48 59392 c:\windows\system32\wdigest.dll
+ 2004-08-17 13:49 . 2006-10-04 13:34 50176 c:\windows\system32\utilman.exe
- 2004-08-17 13:49 . 2004-08-17 13:49 50176 c:\windows\system32\utilman.exe
- 2004-08-17 13:49 . 2004-08-17 13:49 36352 c:\windows\system32\umandlg.dll
+ 2004-08-17 13:49 . 2006-10-04 13:39 36352 c:\windows\system32\umandlg.dll
+ 2007-11-13 11:31 . 2009-10-28 15:07 46080 c:\windows\system32\tzchange.exe
+ 2008-07-29 19:10 . 2008-07-29 19:10 26112 c:\windows\system32\TsWpfWrp.exe
+ 2004-08-17 13:49 . 2009-06-15 11:33 81408 c:\windows\system32\tlntsess.exe
+ 2004-08-17 13:49 . 2009-06-15 11:33 78336 c:\windows\system32\telnet.exe
+ 2004-08-17 13:49 . 2009-10-21 06:03 75776 c:\windows\system32\strmfilt.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 75776 c:\windows\system32\strmfilt.dll
- 2008-04-03 22:01 . 2008-07-09 07:36 26488 c:\windows\system32\spupdsvc.exe
+ 2008-04-03 22:01 . 2007-07-27 08:41 26488 c:\windows\system32\spupdsvc.exe
+ 2009-08-09 16:40 . 2008-07-06 12:06 89088 c:\windows\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll
- 2008-04-03 22:01 . 2008-07-09 07:36 18296 c:\windows\system32\spmsg.dll
+ 2008-04-03 22:01 . 2008-07-08 12:59 18296 c:\windows\system32\spmsg.dll
+ 2009-10-20 13:28 . 2009-08-06 17:24 44768 c:\windows\system32\SoftwareDistribution\Setup\ServiceStartup\wups2.dll\7.4.7600.226\wups2.dll
+ 2009-10-20 13:28 . 2009-08-06 17:24 35552 c:\windows\system32\SoftwareDistribution\Setup\ServiceStartup\wups.dll\7.4.7600.226\wups.dll
+ 2004-08-17 13:49 . 2009-06-25 08:48 56320 c:\windows\system32\secur32.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 69632 c:\windows\system32\raschap.dll
+ 2004-08-17 13:49 . 2009-10-12 13:54 69632 c:\windows\system32\raschap.dll
+ 2008-07-29 17:59 . 2008-07-29 17:59 43544 c:\windows\system32\PresentationHostProxy.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 39424 c:\windows\system32\pngfilt.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 39424 c:\windows\system32\pngfilt.dll
+ 2001-10-25 12:00 . 2009-12-10 18:15 71002 c:\windows\system32\perfc009.dat
+ 2004-08-17 13:49 . 2006-10-04 13:34 54784 c:\windows\system32\narrator.exe
- 2004-08-17 13:49 . 2004-08-17 13:49 54784 c:\windows\system32\narrator.exe
+ 2008-07-25 09:17 . 2008-07-25 09:17 15360 c:\windows\system32\mui\0409\mscorees.dll
+ 2007-05-08 15:08 . 2007-05-08 15:08 86728 c:\windows\system32\msxml6r.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 83968 c:\windows\system32\mscories.dll
+ 2004-08-17 13:49 . 2009-09-04 20:47 58880 c:\windows\system32\msasn1.dll
- 2004-08-17 13:49 . 2007-07-06 12:51 48640 c:\windows\system32\mqupgrd.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 48640 c:\windows\system32\mqupgrd.dll
- 2004-08-17 13:49 . 2007-07-06 12:51 95744 c:\windows\system32\mqsec.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 95744 c:\windows\system32\mqsec.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 16896 c:\windows\system32\mqise.dll
- 2004-08-17 13:49 . 2007-07-06 12:51 16896 c:\windows\system32\mqise.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 47104 c:\windows\system32\mqdscli.dll
- 2004-08-17 13:49 . 2007-07-06 12:51 47104 c:\windows\system32\mqdscli.dll
+ 2004-08-17 13:49 . 2009-06-22 11:49 19968 c:\windows\system32\mqbkup.exe
- 2004-08-17 13:49 . 2004-08-17 13:49 19968 c:\windows\system32\mqbkup.exe
- 2004-08-17 13:49 . 2004-08-17 13:49 72704 c:\windows\system32\magnify.exe
+ 2004-08-17 13:49 . 2006-10-04 13:34 72704 c:\windows\system32\magnify.exe
+ 2008-03-06 15:57 . 2009-08-02 07:55 88589 c:\windows\system32\Macromed\Flash\uninstall_activeX.exe
- 2004-08-17 13:49 . 2009-04-29 04:53 16384 c:\windows\system32\jsproxy.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 16384 c:\windows\system32\jsproxy.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 96768 c:\windows\system32\inseng.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 96768 c:\windows\system32\inseng.dll
+ 2008-07-29 17:24 . 2008-07-29 17:24 97800 c:\windows\system32\infocardapi.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 81920 c:\windows\system32\ieencode.dll
+ 2004-08-17 13:49 . 2009-09-25 05:58 81920 c:\windows\system32\ieencode.dll
+ 2008-07-29 17:24 . 2008-07-29 17:24 11264 c:\windows\system32\icardres.dll
+ 2004-08-17 13:49 . 2009-10-21 06:03 25088 c:\windows\system32\httpapi.dll
+ 2001-10-25 12:00 . 2009-10-15 17:22 82432 c:\windows\system32\fontsub.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 55808 c:\windows\system32\extmgr.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 55808 c:\windows\system32\extmgr.dll
+ 2008-07-29 19:10 . 2008-07-29 19:10 73720 c:\windows\system32\dxva2.dll
+ 2004-08-03 20:58 . 2009-06-22 11:48 91776 c:\windows\system32\drivers\mqac.sys
+ 2004-08-03 20:59 . 2009-06-22 11:34 92544 c:\windows\system32\drivers\ksecdd.sys
+ 2008-03-03 15:25 . 2009-08-06 17:24 35552 c:\windows\system32\dllcache\wups.dll
+ 2008-03-03 15:25 . 2009-08-06 17:24 53472 c:\windows\system32\dllcache\wuauclt.exe
+ 2004-08-17 13:49 . 2009-06-25 08:48 59392 c:\windows\system32\dllcache\wdigest.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 50176 c:\windows\system32\dllcache\utilman.exe
+ 2004-08-17 13:49 . 2006-10-04 13:34 50176 c:\windows\system32\dllcache\utilman.exe
+ 2004-08-17 13:49 . 2006-10-04 13:39 36352 c:\windows\system32\dllcache\umandlg.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 36352 c:\windows\system32\dllcache\umandlg.dll
+ 2004-08-17 13:49 . 2009-06-15 11:33 81408 c:\windows\system32\dllcache\tlntsess.exe
+ 2004-08-17 13:49 . 2009-06-15 11:33 78336 c:\windows\system32\dllcache\telnet.exe
- 2004-08-17 13:49 . 2004-08-17 13:49 75776 c:\windows\system32\dllcache\strmfilt.dll
+ 2004-08-17 13:49 . 2009-10-21 06:03 75776 c:\windows\system32\dllcache\strmfilt.dll
+ 2004-08-17 13:49 . 2009-06-25 08:48 56320 c:\windows\system32\dllcache\secur32.dll
+ 2004-08-17 13:49 . 2009-10-12 13:54 69632 c:\windows\system32\dllcache\raschap.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 69632 c:\windows\system32\dllcache\raschap.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 39424 c:\windows\system32\dllcache\pngfilt.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 39424 c:\windows\system32\dllcache\pngfilt.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 54784 c:\windows\system32\dllcache\narrator.exe
+ 2004-08-17 13:49 . 2006-10-04 13:34 54784 c:\windows\system32\dllcache\narrator.exe
+ 2004-08-17 13:49 . 2009-09-04 20:47 58880 c:\windows\system32\dllcache\msasn1.dll
- 2004-08-17 13:49 . 2007-07-06 12:51 48640 c:\windows\system32\dllcache\mqupgrd.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 48640 c:\windows\system32\dllcache\mqupgrd.dll
- 2004-08-17 13:49 . 2007-07-06 12:51 95744 c:\windows\system32\dllcache\mqsec.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 95744 c:\windows\system32\dllcache\mqsec.dll
- 2004-08-17 13:49 . 2007-07-06 12:51 16896 c:\windows\system32\dllcache\mqise.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 16896 c:\windows\system32\dllcache\mqise.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 47104 c:\windows\system32\dllcache\mqdscli.dll
- 2004-08-17 13:49 . 2007-07-06 12:51 47104 c:\windows\system32\dllcache\mqdscli.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 19968 c:\windows\system32\dllcache\mqbkup.exe
+ 2004-08-17 13:49 . 2009-06-22 11:49 19968 c:\windows\system32\dllcache\mqbkup.exe
+ 2004-08-03 20:58 . 2009-06-22 11:48 91776 c:\windows\system32\dllcache\mqac.sys
+ 2004-08-17 13:49 . 2006-10-04 13:34 72704 c:\windows\system32\dllcache\magnify.exe
- 2004-08-17 13:49 . 2004-08-17 13:49 72704 c:\windows\system32\dllcache\magnify.exe
+ 2004-08-03 20:59 . 2009-06-22 11:34 92544 c:\windows\system32\dllcache\ksecdd.sys
- 2004-08-17 13:49 . 2009-04-29 04:53 16384 c:\windows\system32\dllcache\jsproxy.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 16384 c:\windows\system32\dllcache\jsproxy.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 96768 c:\windows\system32\dllcache\inseng.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 96768 c:\windows\system32\dllcache\inseng.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 81920 c:\windows\system32\dllcache\ieencode.dll
+ 2004-08-17 13:49 . 2009-09-25 05:58 81920 c:\windows\system32\dllcache\ieencode.dll
+ 2008-03-03 15:25 . 2009-10-27 11:06 18432 c:\windows\system32\dllcache\iedw.exe
- 2008-03-03 15:25 . 2009-04-27 09:17 18432 c:\windows\system32\dllcache\iedw.exe
+ 2004-08-17 13:49 . 2009-10-21 06:03 25088 c:\windows\system32\dllcache\httpapi.dll
+ 2001-10-25 12:00 . 2009-10-15 17:22 82432 c:\windows\system32\dllcache\fontsub.dll
+ 2009-08-09 16:39 . 2008-07-06 12:06 89088 c:\windows\system32\dllcache\filterpipelineprintproc.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 55808 c:\windows\system32\dllcache\extmgr.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 55808 c:\windows\system32\dllcache\extmgr.dll
+ 2004-08-17 13:49 . 2009-08-06 17:24 96480 c:\windows\system32\dllcache\cdm.dll
+ 2004-08-17 13:49 . 2009-06-10 14:24 84992 c:\windows\system32\dllcache\avifil32.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 84992 c:\windows\system32\dllcache\avifil32.dll
+ 2004-08-17 13:49 . 2009-07-17 18:57 58880 c:\windows\system32\dllcache\atl.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 58880 c:\windows\system32\dllcache\atl.dll
+ 2004-08-03 20:59 . 2004-08-03 20:59 95360 c:\windows\system32\dllcache\atapi.sys
+ 2008-07-25 09:16 . 2008-07-25 09:16 96760 c:\windows\system32\dfshim.dll
+ 2004-08-17 13:49 . 2009-08-06 17:24 96480 c:\windows\system32\cdm.dll
+ 2004-08-17 13:49 . 2009-06-10 14:24 84992 c:\windows\system32\avifil32.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 84992 c:\windows\system32\avifil32.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 58880 c:\windows\system32\atl.dll
+ 2004-08-17 13:49 . 2009-07-17 18:57 58880 c:\windows\system32\atl.dll
+ 2009-07-16 10:15 . 2009-07-16 10:15 78566 c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe
+ 2009-06-04 12:15 . 2009-06-04 12:15 94208 c:\windows\system32\Adobe\Shockwave 11\SwMenu.dll
+ 2009-06-04 11:45 . 2009-06-04 11:45 79488 c:\windows\system32\Adobe\Shockwave 11\gtapi.dll
+ 2009-06-05 11:39 . 2009-06-05 11:39 67000 c:\windows\system32\Adobe\Director\SWDNLD.EXE
+ 2008-07-29 21:40 . 2008-07-29 21:40 70648 c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
+ 2008-07-29 21:40 . 2008-07-29 21:40 91136 c:\windows\Microsoft.NET\Framework\v3.5\MSBuild.exe
+ 2008-07-29 21:40 . 2008-07-29 21:40 41984 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft.VisualC.STLCLR.dll
+ 2008-07-29 21:40 . 2008-07-29 21:40 40960 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft.Data.Entity.Build.Tasks.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 89080 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.2052.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 92664 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1042.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 95224 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1041.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 89592 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1028.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 84480 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.2052.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 94720 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1042.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 97792 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1041.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 84992 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1028.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 97280 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\DeleteTemp.exe
+ 2008-07-29 21:40 . 2008-07-29 21:40 95224 c:\windows\Microsoft.NET\Framework\v3.5\EdmGen.exe
+ 2008-07-29 21:40 . 2008-07-29 21:40 78856 c:\windows\Microsoft.NET\Framework\v3.5\DataSvcUtil.exe
+ 2008-07-29 21:40 . 2008-07-29 21:40 41984 c:\windows\Microsoft.NET\Framework\v3.5\AddInUtil.exe
+ 2008-07-29 21:40 . 2008-07-29 21:40 41992 c:\windows\Microsoft.NET\Framework\v3.5\AddInProcess32.exe
+ 2008-07-29 21:40 . 2008-07-29 21:40 41992 c:\windows\Microsoft.NET\Framework\v3.5\AddInProcess.exe
+ 2008-07-29 19:10 . 2008-07-29 19:10 46104 c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
+ 2008-07-29 17:59 . 2008-07-29 17:59 32768 c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationCFFRasterizer.dll
+ 2008-07-29 19:10 . 2008-07-29 19:10 71160 c:\windows\Microsoft.NET\Framework\v3.0\WPF\PenIMC.dll
+ 2008-07-29 17:32 . 2008-07-29 17:32 17448 c:\windows\Microsoft.NET\Framework\v3.0\Windows Workflow Foundation\PerformanceCounterInstaller.exe
+ 2008-07-29 17:16 . 2008-07-29 17:16 32768 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.WasHosting.dll
+ 2008-07-29 17:16 . 2008-07-29 17:16 73728 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.Install.dll
+ 2008-07-29 17:16 . 2008-07-29 17:16 20504 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceMonikerSupport.dll
+ 2008-07-29 17:16 . 2008-07-29 17:16 11280 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelEvents.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 37896 c:\windows\Microsoft.NET\Framework\v2.0.50727\WMINet_Utils.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 81400 c:\windows\Microsoft.NET\Framework\v2.0.50727\TLBREF.DLL
+ 2008-07-25 09:17 . 2008-07-25 09:17 77824 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.RegularExpressions.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 57392 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.Thunk.dll
- 2005-09-23 06:28 . 2005-09-23 06:28 81920 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.Design.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 81920 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.Design.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 81920 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Configuration.Install.dll
- 2005-09-23 06:28 . 2005-09-23 06:28 81920 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Configuration.Install.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 95232 c:\windows\Microsoft.NET\Framework\v2.0.50727\ShFusRes.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 16896 c:\windows\Microsoft.NET\Framework\v2.0.50727\sbscmp20_mscorlib.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 61952 c:\windows\Microsoft.NET\Framework\v2.0.50727\regtlibv12.exe
+ 2008-07-25 09:17 . 2008-07-25 09:17 32768 c:\windows\Microsoft.NET\Framework\v2.0.50727\RegSvcs.exe
- 2005-09-23 06:28 . 2005-09-23 06:28 32768 c:\windows\Microsoft.NET\Framework\v2.0.50727\RegSvcs.exe
- 2005-09-23 06:28 . 2005-09-23 06:28 53248 c:\windows\Microsoft.NET\Framework\v2.0.50727\RegAsm.exe
+ 2008-07-25 09:17 . 2008-07-25 09:17 53248 c:\windows\Microsoft.NET\Framework\v2.0.50727\RegAsm.exe
+ 2008-07-25 09:17 . 2008-07-25 09:17 88584 c:\windows\Microsoft.NET\Framework\v2.0.50727\PerfCounter.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 24584 c:\windows\Microsoft.NET\Framework\v2.0.50727\normalization.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 31744 c:\windows\Microsoft.NET\Framework\v2.0.50727\MUI\0409\mscorsecr.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 19456 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscortim.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 69632 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
+ 2008-07-25 09:16 . 2008-07-25 09:16 18944 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsn.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 77312 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsec.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 94208 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorld.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 46592 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorie.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 83456 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordbc.dll
- 2005-09-23 06:28 . 2005-09-23 06:28 69632 c:\windows\Microsoft.NET\Framework\v2.0.50727\MSBuild.exe
+ 2008-07-25 09:16 . 2008-07-25 09:16 69632 c:\windows\Microsoft.NET\Framework\v2.0.50727\MSBuild.exe
+ 2008-07-25 09:16 . 2008-07-25 09:16 97792 c:\windows\Microsoft.NET\Framework\v2.0.50727\MmcAspExt.dll
- 2005-09-23 06:28 . 2005-09-23 06:28 12800 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 12800 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
- 2005-09-23 06:28 . 2005-09-23 06:28 32768 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 32768 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.dll
- 2005-09-23 06:28 . 2005-09-23 06:28 28672 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Vsa.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 28672 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Vsa.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 77824 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Utilities.dll
- 2005-09-23 06:28 . 2005-09-23 06:28 36864 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Framework.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 36864 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Framework.dll
- 2005-09-23 06:28 . 2005-09-23 06:28 40960 c:\windows\Microsoft.NET\Framework\v2.0.50727\jsc.exe
+ 2008-07-25 09:16 . 2008-07-25 09:16 40960 c:\windows\Microsoft.NET\Framework\v2.0.50727\jsc.exe
- 2005-09-23 06:28 . 2005-09-23 06:28 72192 c:\windows\Microsoft.NET\Framework\v2.0.50727\ISymWrapper.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 72192 c:\windows\Microsoft.NET\Framework\v2.0.50727\ISymWrapper.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 65032 c:\windows\Microsoft.NET\Framework\v2.0.50727\InstallUtilLib.dll
- 2005-09-23 06:28 . 2005-09-23 06:28 28672 c:\windows\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe
+ 2008-07-25 09:17 . 2008-07-25 09:17 28672 c:\windows\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe
+ 2008-07-25 09:17 . 2008-07-25 09:17 77824 c:\windows\Microsoft.NET\Framework\v2.0.50727\IEHost.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 18936 c:\windows\Microsoft.NET\Framework\v2.0.50727\fusion.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 62968 c:\windows\Microsoft.NET\Framework\v2.0.50727\dfdll.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 35320 c:\windows\Microsoft.NET\Framework\v2.0.50727\cvtres.exe
+ 2008-07-25 09:17 . 2008-07-25 09:17 69120 c:\windows\Microsoft.NET\Framework\v2.0.50727\CustomMarshalers.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 27136 c:\windows\Microsoft.NET\Framework\v2.0.50727\Culture.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 13312 c:\windows\Microsoft.NET\Framework\v2.0.50727\cscompmgd.dll
- 2005-09-23 06:28 . 2005-09-23 06:28 13312 c:\windows\Microsoft.NET\Framework\v2.0.50727\cscompmgd.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 80376 c:\windows\Microsoft.NET\Framework\v2.0.50727\csc.exe
+ 2008-07-25 09:17 . 2008-07-25 09:17 89608 c:\windows\Microsoft.NET\Framework\v2.0.50727\CORPerfMonExt.dll
+ 2008-11-25 02:59 . 2008-11-25 02:59 31560 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe
+ 2008-07-25 09:16 . 2008-07-25 09:16 34312 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
+ 2008-07-25 09:16 . 2008-07-25 09:16 33288 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regiis.exe
+ 2008-07-25 09:16 . 2008-07-25 09:16 24576 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regbrowsers.exe
+ 2008-07-25 09:16 . 2008-07-25 09:16 84480 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_rc.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 33800 c:\windows\Microsoft.NET\Framework\v2.0.50727\Aspnet_perf.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 17416 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_isapi.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 22024 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_filter.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 36864 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_compiler.exe
- 2005-09-23 06:28 . 2005-09-23 06:28 36864 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_compiler.exe
+ 2008-07-25 09:17 . 2008-07-25 09:17 58880 c:\windows\Microsoft.NET\Framework\v2.0.50727\AppLaunch.exe
+ 2008-07-25 09:16 . 2008-07-25 09:16 98808 c:\windows\Microsoft.NET\Framework\v2.0.50727\alink.dll
- 2005-09-23 06:28 . 2005-09-23 06:28 10752 c:\windows\Microsoft.NET\Framework\v2.0.50727\Accessibility.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 10752 c:\windows\Microsoft.NET\Framework\v2.0.50727\Accessibility.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 13824 c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\CvtResUI.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 28672 c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\alinkui.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 96768 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscormmc.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 16896 c:\windows\Microsoft.NET\Framework\SharedReg12.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 16896 c:\windows\Microsoft.NET\Framework\sbscmp20_perfcounter.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 16896 c:\windows\Microsoft.NET\Framework\sbscmp20_mscorwks.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 16896 c:\windows\Microsoft.NET\Framework\sbscmp10.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 82944 c:\windows\Microsoft.NET\Framework\NETFXSBS10.exe
+ 2009-05-12 16:28 . 2009-05-12 16:28 24064 c:\windows\Installer\964c2b.msi
+ 2008-07-29 19:07 . 2008-07-29 19:07 23040 c:\windows\Installer\83801.msp
+ 2008-07-29 15:27 . 2008-07-29 15:27 93184 c:\windows\Installer\50e833.msi
+ 2009-08-09 16:37 . 2009-08-09 16:37 88576 c:\windows\Installer\30694.msi
+ 2009-12-07 15:24 . 2009-12-07 15:24 22528 c:\windows\Installer\2546ef.msi
+ 2009-11-25 04:50 . 2009-11-25 04:50 32768 c:\windows\Installer\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}\icon.exe
+ 2010-01-17 15:01 . 2010-01-17 15:01 10134 c:\windows\Installer\{C878CD69-85DB-426B-81A3-E71175AAEB91}\ARPPRODUCTICON.exe
+ 2010-01-14 19:52 . 2010-01-14 19:52 10134 c:\windows\Installer\{60F53518-1D76-447F-8E2C-A696B00E18DC}\callmsi.exe
+ 2010-01-17 14:59 . 2010-01-17 14:59 10134 c:\windows\Installer\{5F05C28D-DEA9-4AD6-A73A-064175988EAB}\ARPPRODUCTICON.exe
+ 2009-08-09 16:39 . 2008-07-06 12:06 89088 c:\windows\Driver Cache\i386\filterpipelineprintproc.dll
+ 2009-10-16 11:53 . 2009-10-16 11:53 60928 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\b4a9e413d5cd6d6ec2d50aa05381e293\UIAutomationProvider.ni.dll
+ 2009-10-17 06:51 . 2009-10-17 06:51 37888 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Pres#\8acb476a0d4ee17a12881e17ae74a6af\System.Windows.Presentation.ni.dll
+ 2009-10-17 06:50 . 2009-10-17 06:50 36864 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\4b87ca3482a3c0ee733e028ecee7de65\System.Web.DynamicData.Design.ni.dll
+ 2009-10-17 06:48 . 2009-10-17 06:48 94208 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ComponentMod#\a0c71055364bd356971791284c3fb910\System.ComponentModel.DataAnnotations.ni.dll
+ 2009-10-17 06:48 . 2009-10-17 06:48 82944 c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn.Contra#\f9a75bbdc2ce7db578b5977766a09b99\System.AddIn.Contract.ni.dll
+ 2009-10-16 11:50 . 2009-10-16 11:50 47104 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\3dd0f86c966c75755d62eab8ddf0634c\PresentationFontCache.ni.exe
+ 2009-10-16 11:48 . 2009-10-16 11:48 39424 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\034d081fe294bab1ee1ecc98c1181424\PresentationCFFRasterizer.ni.dll
+ 2009-10-17 06:50 . 2009-10-17 06:50 55296 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Vsa\f2673aec397c52796aef05bb9d2668df\Microsoft.Vsa.ni.dll
+ 2009-10-17 06:48 . 2009-10-17 06:48 65024 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\d513fe1a81c441e7656a9b062cff4e9f\Microsoft.Build.Framework.ni.dll
+ 2009-10-17 06:47 . 2009-10-17 06:47 74752 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\c5d504724d7f351b1d034615dbb72a2a\Microsoft.Build.Framework.ni.dll
+ 2009-10-17 06:47 . 2009-10-17 06:47 14336 c:\windows\assembly\NativeImages_v2.0.50727_32\dfsvc\a664ccab020f93f1d533919f57131190\dfsvc.ni.exe
+ 2009-10-17 06:46 . 2009-10-17 06:46 25600 c:\windows\assembly\NativeImages_v2.0.50727_32\Accessibility\e63d6d26b8a664cfdfbd4ad75e03c14d\Accessibility.ni.dll
+ 2009-08-09 16:40 . 2009-08-09 16:40 94208 c:\windows\assembly\GAC_MSIL\WindowsFormsIntegration\3.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll
+ 2009-08-09 16:40 . 2009-08-09 16:40 98304 c:\windows\assembly\GAC_MSIL\UIAutomationTypes\3.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll
+ 2009-08-09 16:40 . 2009-08-09 16:40 40960 c:\windows\assembly\GAC_MSIL\UIAutomationProvider\3.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll
+ 2009-08-09 16:42 . 2009-08-09 16:42 12288 c:\windows\assembly\GAC_MSIL\System.Windows.Presentation\3.5.0.0__b77a5c561934e089\System.Windows.Presentation.dll
+ 2009-08-09 16:42 . 2009-08-09 16:42 61440 c:\windows\assembly\GAC_MSIL\System.Web.Routing\3.5.0.0__31bf3856ad364e35\System.Web.Routing.dll
+ 2009-10-16 04:33 . 2009-10-16 04:33 77824 c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
+ 2009-08-09 16:42 . 2009-08-09 16:42 32768 c:\windows\assembly\GAC_MSIL\System.Web.DynamicData.Design\3.5.0.0__31bf3856ad364e35\System.Web.DynamicData.Design.dll
+ 2009-08-09 16:42 . 2009-08-09 16:42 77824 c:\windows\assembly\GAC_MSIL\System.Web.Abstractions\3.5.0.0__31bf3856ad364e35\System.Web.Abstractions.dll
+ 2009-08-09 16:40 . 2009-08-09 16:40 32768 c:\windows\assembly\GAC_MSIL\System.ServiceModel.WasHosting\3.0.0.0__b77a5c561934e089\System.ServiceModel.WasHosting.dll
+ 2009-08-09 16:40 . 2009-08-09 16:40 73728 c:\windows\assembly\GAC_MSIL\System.ServiceModel.Install\3.0.0.0__b77a5c561934e089\System.ServiceModel.Install.dll
+ 2009-10-16 04:33 . 2009-10-16 04:33 81920 c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
- 2009-01-03 11:01 . 2009-01-03 11:01 81920 c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
+ 2009-08-09 16:42 . 2009-08-09 16:42 53248 c:\windows\assembly\GAC_MSIL\System.Data.DataSetExtensions\3.5.0.0__b77a5c561934e089\System.Data.DataSetExtensions.dll
+ 2009-10-16 04:34 . 2009-10-16 04:34 81920 c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
- 2009-01-03 11:01 . 2009-01-03 11:01 81920 c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
+ 2009-08-09 16:42 . 2009-08-09 16:42 57344 c:\windows\assembly\GAC_MSIL\System.ComponentModel.DataAnnotations\3.5.0.0__31bf3856ad364e35\System.ComponentModel.DataAnnotations.dll
+ 2009-08-09 16:42 . 2009-08-09 16:42 45056 c:\windows\assembly\GAC_MSIL\System.AddIn.Contract\2.0.0.0__b03f5f7f11d50a3a\System.AddIn.Contract.dll
+ 2009-08-09 16:40 . 2009-08-09 16:40 46104 c:\windows\assembly\GAC_MSIL\PresentationFontCache\3.0.0.0__31bf3856ad364e35\PresentationFontCache.exe
+ 2009-08-09 16:40 . 2009-08-09 16:40 32768 c:\windows\assembly\GAC_MSIL\PresentationCFFRasterizer\3.0.0.0__31bf3856ad364e35\PresentationCFFRasterizer.dll
+ 2009-10-16 04:33 . 2009-10-16 04:33 32768 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
- 2009-01-03 11:01 . 2009-01-03 11:01 32768 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
- 2009-01-03 11:01 . 2009-01-03 11:01 12800 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2009-10-16 04:34 . 2009-10-16 04:34 12800 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2009-08-09 16:42 . 2009-08-09 16:42 41984 c:\windows\assembly\GAC_MSIL\Microsoft.VisualC.STLCLR\1.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.STLCLR.dll
+ 2009-10-16 04:34 . 2009-10-16 04:34 28672 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
- 2009-01-03 11:01 . 2009-01-03 11:01 28672 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
+ 2009-10-16 04:34 . 2009-10-16 04:34 77824 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
+ 2009-08-09 16:42 . 2009-08-09 16:42 94208 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities.v3.5\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.v3.5.dll
+ 2009-08-09 16:42 . 2009-08-09 16:42 36864 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
- 2009-01-03 11:01 . 2009-01-03 11:01 36864 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
+ 2009-10-16 04:34 . 2009-10-16 04:34 36864 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
+ 2009-10-16 04:33 . 2009-10-16 04:33 77824 c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
+ 2009-10-16 04:33 . 2009-10-16 04:33 13312 c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
- 2009-01-03 11:01 . 2009-01-03 11:01 13312 c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
+ 2009-10-16 04:33 . 2009-10-16 04:33 10752 c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
- 2009-01-03 11:01 . 2009-01-03 11:01 10752 c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
+ 2009-10-16 04:34 . 2009-10-16 04:34 72192 c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
- 2009-01-03 11:01 . 2009-01-03 11:01 72192 c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2009-10-16 04:33 . 2009-10-16 04:33 69120 c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2009-08-12 17:54 . 2009-08-12 17:54 12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
- 2009-04-24 19:31 . 2009-04-24 19:31 12800 c:\windows\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
- 2009-04-24 19:31 . 2009-04-24 19:31 53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2009-08-12 17:54 . 2009-08-12 17:54 53248 c:\windows\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2009-12-09 23:41 . 2009-09-25 05:58 39424 c:\windows\$NtUninstallKB976325$\pngfilt.dll
+ 2009-12-09 23:41 . 2009-09-25 05:58 16384 c:\windows\$NtUninstallKB976325$\jsproxy.dll
+ 2009-12-09 23:41 . 2009-09-25 05:58 96768 c:\windows\$NtUninstallKB976325$\inseng.dll
+ 2009-12-09 23:41 . 2009-09-18 09:56 18432 c:\windows\$NtUninstallKB976325$\iedw.exe

Re: blbne mi komp, asi je to trojan, prosim o pomoc, prikladam l

Napsal: 22 led 2010 16:01
od angela
+ 2009-12-09 23:41 . 2009-09-25 05:58 55808 c:\windows\$NtUninstallKB976325$\extmgr.dll
+ 2009-11-25 04:51 . 2009-07-14 11:03 46080 c:\windows\$NtUninstallKB976098-v2$\tzchange.exe
+ 2009-11-25 04:51 . 2009-10-29 02:05 16896 c:\windows\$NtUninstallKB976098-v2$\spuninst\tzchange.dll
+ 2009-10-15 09:00 . 2004-08-17 13:49 57344 c:\windows\$NtUninstallKB974571$\msasn1.dll
+ 2009-10-16 04:31 . 2009-06-26 16:20 39424 c:\windows\$NtUninstallKB974455$\pngfilt.dll
+ 2009-10-16 04:31 . 2009-06-26 16:20 16384 c:\windows\$NtUninstallKB974455$\jsproxy.dll
+ 2009-10-16 04:31 . 2009-06-26 16:20 96768 c:\windows\$NtUninstallKB974455$\inseng.dll
+ 2009-10-16 04:31 . 2009-06-26 16:20 81920 c:\windows\$NtUninstallKB974455$\ieencode.dll
+ 2009-10-16 04:31 . 2009-06-22 11:38 18432 c:\windows\$NtUninstallKB974455$\iedw.exe
+ 2009-10-16 04:31 . 2009-06-26 16:20 55808 c:\windows\$NtUninstallKB974455$\extmgr.dll
+ 2009-12-09 23:42 . 2004-08-17 13:49 69632 c:\windows\$NtUninstallKB974318$\raschap.dll
+ 2009-08-14 06:35 . 2004-08-17 13:49 58880 c:\windows\$NtUninstallKB973507$\atl.dll
+ 2009-07-29 10:29 . 2009-04-29 04:53 39424 c:\windows\$NtUninstallKB972260$\pngfilt.dll
+ 2009-07-29 10:29 . 2009-04-29 04:53 16384 c:\windows\$NtUninstallKB972260$\jsproxy.dll
+ 2009-07-29 10:29 . 2009-04-29 04:53 96768 c:\windows\$NtUninstallKB972260$\inseng.dll
+ 2009-07-29 10:29 . 2009-04-29 04:53 81920 c:\windows\$NtUninstallKB972260$\ieencode.dll
+ 2009-07-29 10:29 . 2009-04-27 09:17 18432 c:\windows\$NtUninstallKB972260$\iedw.exe
+ 2009-07-29 10:29 . 2009-04-29 04:53 55808 c:\windows\$NtUninstallKB972260$\extmgr.dll
+ 2009-08-14 06:36 . 2004-08-17 13:49 84992 c:\windows\$NtUninstallKB971557$\avifil32.dll
+ 2009-08-14 06:30 . 2007-07-06 12:51 48640 c:\windows\$NtUninstallKB971032$\mqupgrd.dll
+ 2009-08-14 06:30 . 2007-07-06 12:51 95744 c:\windows\$NtUninstallKB971032$\mqsec.dll
+ 2009-08-14 06:30 . 2007-07-06 12:51 16896 c:\windows\$NtUninstallKB971032$\mqise.dll
+ 2009-08-14 06:30 . 2007-07-06 12:51 47104 c:\windows\$NtUninstallKB971032$\mqdscli.dll
+ 2009-08-14 06:30 . 2004-08-17 13:49 19968 c:\windows\$NtUninstallKB971032$\mqbkup.exe
+ 2009-08-14 06:30 . 2007-07-06 10:05 72960 c:\windows\$NtUninstallKB971032$\mqac.sys
+ 2009-08-27 05:22 . 2008-10-22 09:47 62976 c:\windows\$NtUninstallKB970653-v3$\tzchange.exe
+ 2009-08-27 05:22 . 2009-07-16 04:18 14336 c:\windows\$NtUninstallKB970653-v3$\spuninst\tzchange.dll
+ 2009-12-09 23:42 . 2004-08-17 13:49 75776 c:\windows\$NtUninstallKB970430$\strmfilt.dll
+ 2009-12-09 23:42 . 2004-08-17 13:49 24576 c:\windows\$NtUninstallKB970430$\httpapi.dll
+ 2009-09-07 05:49 . 2004-08-17 13:49 49152 c:\windows\$NtUninstallKB968389$\wdigest.dll
+ 2009-09-07 05:49 . 2009-02-03 20:11 55808 c:\windows\$NtUninstallKB968389$\secur32.dll
+ 2009-09-07 05:49 . 2004-08-03 20:59 92032 c:\windows\$NtUninstallKB968389$\ksecdd.sys
+ 2009-07-16 06:59 . 2005-10-17 21:21 80896 c:\windows\$NtUninstallKB961371$\fontsub.dll
+ 2009-08-14 06:36 . 2004-08-17 13:49 78848 c:\windows\$NtUninstallKB960859$\tlntsess.exe
+ 2009-08-14 06:36 . 2005-05-11 02:31 77824 c:\windows\$NtUninstallKB960859$\telnet.exe
+ 2009-08-10 09:02 . 2004-08-17 13:49 50176 c:\windows\$NtUninstallKB925720$\utilman.exe
+ 2009-08-10 09:02 . 2004-08-17 13:49 36352 c:\windows\$NtUninstallKB925720$\umandlg.dll
+ 2009-08-10 09:02 . 2004-08-17 13:49 54784 c:\windows\$NtUninstallKB925720$\narrator.exe
+ 2009-08-10 09:02 . 2004-08-17 13:49 72704 c:\windows\$NtUninstallKB925720$\magnify.exe
+ 2009-11-05 06:54 . 2008-07-08 12:59 26488 c:\windows\$hf_mig$\KB976749\update\spcustom.dll
+ 2009-11-05 06:54 . 2008-07-08 12:59 18296 c:\windows\$hf_mig$\KB976749\spmsg.dll
+ 2009-12-09 23:41 . 2008-07-08 12:59 26488 c:\windows\$hf_mig$\KB976325\update\spcustom.dll
+ 2009-12-09 23:41 . 2008-07-08 12:59 18296 c:\windows\$hf_mig$\KB976325\spmsg.dll
+ 2009-09-25 05:33 . 2009-09-25 05:33 81920 c:\windows\$hf_mig$\KB976325\SP3QFE\ieencode.dll
+ 2009-09-25 05:37 . 2009-09-25 05:37 81920 c:\windows\$hf_mig$\KB976325\SP3GDR\ieencode.dll
+ 2009-10-29 05:21 . 2009-10-29 05:21 39424 c:\windows\$hf_mig$\KB976325\SP2QFE\pngfilt.dll
+ 2009-10-29 05:21 . 2009-10-29 05:21 16384 c:\windows\$hf_mig$\KB976325\SP2QFE\jsproxy.dll
+ 2009-10-29 05:21 . 2009-10-29 05:21 96768 c:\windows\$hf_mig$\KB976325\SP2QFE\inseng.dll
+ 2009-09-25 05:50 . 2009-09-25 05:50 81920 c:\windows\$hf_mig$\KB976325\SP2QFE\ieencode.dll
+ 2009-10-27 11:01 . 2009-10-27 11:01 18432 c:\windows\$hf_mig$\KB976325\SP2QFE\iedw.exe
+ 2009-10-29 05:21 . 2009-10-29 05:21 55808 c:\windows\$hf_mig$\KB976325\SP2QFE\extmgr.dll
+ 2009-10-16 04:30 . 2008-07-08 12:59 26488 c:\windows\$hf_mig$\KB975467\update\spcustom.dll
+ 2009-10-16 04:30 . 2008-07-08 12:59 18296 c:\windows\$hf_mig$\KB975467\spmsg.dll
+ 2009-10-15 09:01 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB975025\update\spcustom.dll
+ 2009-10-15 09:01 . 2009-05-26 11:40 18296 c:\windows\$hf_mig$\KB975025\spmsg.dll
+ 2009-10-15 09:00 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB974571\update\spcustom.dll
+ 2009-10-15 09:00 . 2009-05-26 11:40 18296 c:\windows\$hf_mig$\KB974571\spmsg.dll
+ 2009-09-04 21:01 . 2009-09-04 21:01 58880 c:\windows\$hf_mig$\KB974571\SP3QFE\msasn1.dll
+ 2009-09-04 21:05 . 2009-09-04 21:05 58880 c:\windows\$hf_mig$\KB974571\SP3GDR\msasn1.dll
+ 2009-09-04 20:37 . 2009-09-04 20:37 58880 c:\windows\$hf_mig$\KB974571\SP2QFE\msasn1.dll
+ 2009-10-16 04:31 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB974455\update\spcustom.dll
+ 2009-10-16 04:31 . 2009-05-26 11:40 18296 c:\windows\$hf_mig$\KB974455\spmsg.dll
+ 2009-09-25 05:33 . 2009-09-25 05:33 81920 c:\windows\$hf_mig$\KB974455\SP3QFE\ieencode.dll
+ 2009-09-25 05:37 . 2009-09-25 05:37 81920 c:\windows\$hf_mig$\KB974455\SP3GDR\ieencode.dll
+ 2009-09-25 05:50 . 2009-09-25 05:50 39424 c:\windows\$hf_mig$\KB974455\SP2QFE\pngfilt.dll
+ 2009-09-25 05:50 . 2009-09-25 05:50 16384 c:\windows\$hf_mig$\KB974455\SP2QFE\jsproxy.dll
+ 2009-09-25 05:50 . 2009-09-25 05:50 96768 c:\windows\$hf_mig$\KB974455\SP2QFE\inseng.dll
+ 2009-09-25 05:50 . 2009-09-25 05:50 81920 c:\windows\$hf_mig$\KB974455\SP2QFE\ieencode.dll
+ 2009-09-18 09:46 . 2009-09-18 09:46 18432 c:\windows\$hf_mig$\KB974455\SP2QFE\iedw.exe
+ 2009-09-25 05:50 . 2009-09-25 05:50 55808 c:\windows\$hf_mig$\KB974455\SP2QFE\extmgr.dll
+ 2009-12-09 23:41 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB974392\update\spcustom.dll
+ 2009-12-09 23:41 . 2009-05-26 11:40 18296 c:\windows\$hf_mig$\KB974392\spmsg.dll
+ 2009-12-09 23:42 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB974318\update\spcustom.dll
+ 2009-12-09 23:42 . 2009-05-26 11:40 18296 c:\windows\$hf_mig$\KB974318\spmsg.dll
+ 2009-10-12 13:33 . 2009-10-12 13:33 79872 c:\windows\$hf_mig$\KB974318\SP3QFE\raschap.dll
+ 2009-10-12 13:40 . 2009-10-12 13:40 79872 c:\windows\$hf_mig$\KB974318\SP3GDR\raschap.dll
+ 2009-10-12 13:41 . 2009-10-12 13:41 69632 c:\windows\$hf_mig$\KB974318\SP2QFE\raschap.dll
+ 2009-10-15 09:01 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB974112\update\spcustom.dll
+ 2009-10-15 09:01 . 2009-05-26 11:40 18296 c:\windows\$hf_mig$\KB974112\spmsg.dll
+ 2009-12-09 23:41 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB973904\update\spcustom.dll
+ 2009-12-09 23:41 . 2009-05-26 11:40 18296 c:\windows\$hf_mig$\KB973904\spmsg.dll
+ 2009-08-14 06:36 . 2008-07-08 12:59 26488 c:\windows\$hf_mig$\KB973869\update\spcustom.dll
+ 2009-08-14 06:36 . 2008-07-08 12:59 18296 c:\windows\$hf_mig$\KB973869\spmsg.dll
+ 2009-08-14 06:31 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB973815\update\spcustom.dll
+ 2009-08-14 06:31 . 2009-05-26 11:40 18296 c:\windows\$hf_mig$\KB973815\spmsg.dll
+ 2009-11-25 04:51 . 2008-07-08 12:59 26488 c:\windows\$hf_mig$\KB973687\update\spcustom.dll
+ 2009-11-25 04:51 . 2008-07-08 12:59 18296 c:\windows\$hf_mig$\KB973687\spmsg.dll
+ 2009-10-15 09:00 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB973525\update\spcustom.dll
+ 2009-10-15 09:00 . 2009-05-26 11:40 18296 c:\windows\$hf_mig$\KB973525\spmsg.dll
+ 2009-08-14 06:35 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB973507\update\spcustom.dll
+ 2009-08-14 06:35 . 2009-05-26 11:40 18296 c:\windows\$hf_mig$\KB973507\spmsg.dll
+ 2009-07-17 19:27 . 2009-07-17 19:27 58880 c:\windows\$hf_mig$\KB973507\SP3QFE\atl.dll
+ 2009-07-17 19:04 . 2009-07-17 19:04 58880 c:\windows\$hf_mig$\KB973507\SP3GDR\atl.dll
+ 2009-07-17 18:45 . 2009-07-17 18:45 58880 c:\windows\$hf_mig$\KB973507\SP2QFE\atl.dll
+ 2009-08-14 06:35 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB973354\update\spcustom.dll
+ 2009-08-14 06:35 . 2009-05-26 11:40 18296 c:\windows\$hf_mig$\KB973354\spmsg.dll
+ 2009-07-16 07:02 . 2008-07-08 12:59 26488 c:\windows\$hf_mig$\KB973346\update\spcustom.dll
+ 2009-07-16 07:02 . 2008-07-08 12:59 18296 c:\windows\$hf_mig$\KB973346\spmsg.dll
+ 2009-07-29 10:29 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB972260\update\spcustom.dll
+ 2009-07-29 10:29 . 2009-05-26 11:40 18296 c:\windows\$hf_mig$\KB972260\spmsg.dll
+ 2009-06-26 16:48 . 2009-06-26 16:48 81920 c:\windows\$hf_mig$\KB972260\SP3QFE\ieencode.dll
+ 2009-06-26 16:51 . 2009-06-26 16:51 81920 c:\windows\$hf_mig$\KB972260\SP3GDR\ieencode.dll
+ 2009-06-26 16:02 . 2009-06-26 16:02 39424 c:\windows\$hf_mig$\KB972260\SP2QFE\pngfilt.dll
+ 2009-06-26 16:02 . 2009-06-26 16:02 16384 c:\windows\$hf_mig$\KB972260\SP2QFE\jsproxy.dll
+ 2009-06-26 16:02 . 2009-06-26 16:02 96768 c:\windows\$hf_mig$\KB972260\SP2QFE\inseng.dll
+ 2009-06-26 16:02 . 2009-06-26 16:02 81920 c:\windows\$hf_mig$\KB972260\SP2QFE\ieencode.dll
+ 2009-06-22 11:40 . 2009-06-22 11:40 18432 c:\windows\$hf_mig$\KB972260\SP2QFE\iedw.exe
+ 2009-06-26 16:02 . 2009-06-26 16:02 55808 c:\windows\$hf_mig$\KB972260\SP2QFE\extmgr.dll
+ 2009-09-10 18:51 . 2007-03-06 01:07 22752 c:\windows\$hf_mig$\KB971961\update\spcustom.dll
+ 2009-09-10 18:51 . 2007-03-06 01:07 15072 c:\windows\$hf_mig$\KB971961\spmsg.dll
+ 2009-12-09 23:40 . 2008-07-08 12:59 26488 c:\windows\$hf_mig$\KB971737\update\spcustom.dll
+ 2009-12-09 23:40 . 2008-07-08 12:59 18296 c:\windows\$hf_mig$\KB971737\spmsg.dll
+ 2009-08-14 06:36 . 2008-07-08 12:59 26488 c:\windows\$hf_mig$\KB971657\update\spcustom.dll
+ 2009-08-14 06:36 . 2008-07-08 12:59 18296 c:\windows\$hf_mig$\KB971657\spmsg.dll
+ 2009-07-16 07:01 . 2008-07-08 12:59 26488 c:\windows\$hf_mig$\KB971633\update\spcustom.dll
+ 2009-07-16 07:01 . 2008-07-08 12:59 18296 c:\windows\$hf_mig$\KB971633\spmsg.dll
+ 2009-08-14 06:36 . 2008-07-08 12:59 26488 c:\windows\$hf_mig$\KB971557\update\spcustom.dll
+ 2009-08-14 06:36 . 2008-07-08 12:59 18296 c:\windows\$hf_mig$\KB971557\spmsg.dll
+ 2009-06-10 14:02 . 2009-06-10 14:02 84992 c:\windows\$hf_mig$\KB971557\SP3QFE\avifil32.dll
+ 2009-06-10 14:15 . 2009-06-10 14:15 84992 c:\windows\$hf_mig$\KB971557\SP3GDR\avifil32.dll
+ 2009-06-10 14:53 . 2009-06-10 14:53 84992 c:\windows\$hf_mig$\KB971557\SP2QFE\avifil32.dll
+ 2009-10-16 04:30 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB971486\update\spcustom.dll
+ 2009-10-16 04:30 . 2009-05-26 11:40 18296 c:\windows\$hf_mig$\KB971486\spmsg.dll
+ 2009-08-14 06:30 . 2007-03-06 01:07 22752 c:\windows\$hf_mig$\KB971032\update\spcustom.dll
+ 2009-08-14 06:30 . 2007-03-06 01:07 15072 c:\windows\$hf_mig$\KB971032\spmsg.dll
+ 2009-06-25 18:33 . 2009-06-25 18:33 48640 c:\windows\$hf_mig$\KB971032\SP2QFE\mqupgrd.dll
+ 2009-06-25 18:33 . 2009-06-25 18:33 95744 c:\windows\$hf_mig$\KB971032\SP2QFE\mqsec.dll
+ 2009-06-25 18:33 . 2009-06-25 18:33 16896 c:\windows\$hf_mig$\KB971032\SP2QFE\mqise.dll
+ 2009-06-25 18:33 . 2009-06-25 18:33 47104 c:\windows\$hf_mig$\KB971032\SP2QFE\mqdscli.dll
+ 2009-06-22 11:30 . 2009-06-22 11:30 19968 c:\windows\$hf_mig$\KB971032\SP2QFE\mqbkup.exe
+ 2009-06-22 11:30 . 2009-06-22 11:30 91776 c:\windows\$hf_mig$\KB971032\SP2QFE\mqac.sys
+ 2009-12-09 23:42 . 2009-05-26 11:40 26488 c:\windows\$hf_mig$\KB970430\update\spcustom.dll
+ 2009-12-09 23:42 . 2009-05-26 11:40 18296 c:\windows\$hf_mig$\KB970430\spmsg.dll
+ 2009-10-21 05:42 . 2009-10-21 05:42 75776 c:\windows\$hf_mig$\KB970430\SP3QFE\strmfilt.dll
+ 2009-10-21 05:42 . 2009-10-21 05:42 25088 c:\windows\$hf_mig$\KB970430\SP3QFE\httpapi.dll
+ 2009-10-21 05:40 . 2009-10-21 05:40 75776 c:\windows\$hf_mig$\KB970430\SP3GDR\strmfilt.dll
+ 2009-10-21 05:40 . 2009-10-21 05:40 25088 c:\windows\$hf_mig$\KB970430\SP3GDR\httpapi.dll
+ 2009-10-21 05:51 . 2009-10-21 05:51 75776 c:\windows\$hf_mig$\KB970430\SP2QFE\strmfilt.dll
+ 2009-10-21 05:51 . 2009-10-21 05:51 25088 c:\windows\$hf_mig$\KB970430\SP2QFE\httpapi.dll
+ 2009-11-12 17:25 . 2008-07-08 12:59 26488 c:\windows\$hf_mig$\KB969947\update\spcustom.dll
+ 2009-11-12 17:25 . 2008-07-08 12:59 18296 c:\windows\$hf_mig$\KB969947\spmsg.dll
+ 2009-10-16 04:30 . 2008-07-08 12:59 26488 c:\windows\$hf_mig$\KB969059\update\spcustom.dll
+ 2009-10-16 04:30 . 2008-07-08 12:59 18296 c:\windows\$hf_mig$\KB969059\spmsg.dll
+ 2009-09-07 05:49 . 2008-07-08 12:59 26488 c:\windows\$hf_mig$\KB968389\update\spcustom.dll
+ 2009-09-07 05:49 . 2008-07-08 12:59 18296 c:\windows\$hf_mig$\KB968389\spmsg.dll
+ 2009-06-25 08:42 . 2009-06-25 08:42 54272 c:\windows\$hf_mig$\KB968389\SP3QFE\wdigest.dll
+ 2009-06-25 08:42 . 2009-06-25 08:42 56832 c:\windows\$hf_mig$\KB968389\SP3QFE\secur32.dll
+ 2009-06-24 10:28 . 2009-06-24 10:28 92928 c:\windows\$hf_mig$\KB968389\SP3QFE\ksecdd.sys
+ 2009-06-25 08:27 . 2009-06-25 08:27 54272 c:\windows\$hf_mig$\KB968389\SP3GDR\wdigest.dll
+ 2009-06-25 08:27 . 2009-06-25 08:27 56832 c:\windows\$hf_mig$\KB968389\SP3GDR\secur32.dll
+ 2009-06-24 11:18 . 2009-06-24 11:18 92928 c:\windows\$hf_mig$\KB968389\SP3GDR\ksecdd.sys
+ 2009-06-25 08:23 . 2009-06-25 08:23 59392 c:\windows\$hf_mig$\KB968389\SP2QFE\wdigest.dll
+ 2009-06-25 08:23 . 2009-06-25 08:23 56320 c:\windows\$hf_mig$\KB968389\SP2QFE\secur32.dll
+ 2009-06-22 11:35 . 2009-06-22 11:35 92544 c:\windows\$hf_mig$\KB968389\SP2QFE\ksecdd.sys
+ 2009-07-16 06:59 . 2008-07-08 12:59 26488 c:\windows\$hf_mig$\KB961371\update\spcustom.dll
+ 2009-07-16 06:59 . 2008-07-08 12:59 18296 c:\windows\$hf_mig$\KB961371\spmsg.dll
+ 2009-06-16 14:44 . 2009-06-16 14:44 81920 c:\windows\$hf_mig$\KB961371\SP3QFE\fontsub.dll
+ 2009-06-16 14:40 . 2009-06-16 14:40 81920 c:\windows\$hf_mig$\KB961371\SP3GDR\fontsub.dll
+ 2009-06-16 14:45 . 2009-06-16 14:45 81920 c:\windows\$hf_mig$\KB961371\SP2QFE\fontsub.dll
+ 2009-08-10 09:03 . 2007-11-30 11:18 26488 c:\windows\$hf_mig$\KB961118\update\spcustom.dll
+ 2009-08-10 09:03 . 2007-11-30 11:18 18296 c:\windows\$hf_mig$\KB961118\spmsg.dll
+ 2009-08-14 06:36 . 2008-07-08 12:59 26488 c:\windows\$hf_mig$\KB960859\update\spcustom.dll
+ 2009-08-14 06:36 . 2008-07-08 12:59 18296 c:\windows\$hf_mig$\KB960859\spmsg.dll
+ 2009-06-15 11:14 . 2009-06-15 11:14 81408 c:\windows\$hf_mig$\KB960859\SP3QFE\tlntsess.exe
+ 2009-06-15 11:14 . 2009-06-15 11:14 78336 c:\windows\$hf_mig$\KB960859\SP3QFE\telnet.exe
+ 2009-06-15 10:45 . 2009-06-15 10:45 81408 c:\windows\$hf_mig$\KB960859\SP3GDR\tlntsess.exe
+ 2009-06-15 10:45 . 2009-06-15 10:45 78336 c:\windows\$hf_mig$\KB960859\SP3GDR\telnet.exe
+ 2009-06-15 12:09 . 2009-06-15 12:09 81408 c:\windows\$hf_mig$\KB960859\SP2QFE\tlntsess.exe
+ 2009-06-15 12:09 . 2009-06-15 12:09 78336 c:\windows\$hf_mig$\KB960859\SP2QFE\telnet.exe
+ 2009-08-14 06:31 . 2007-03-06 01:07 22752 c:\windows\$hf_mig$\KB958470\update\spcustom.dll
+ 2009-08-13 07:46 . 2009-06-05 07:46 17408 c:\windows\$hf_mig$\KB958470\update\msrdpcustom.dll
+ 2009-08-14 06:31 . 2007-03-06 01:07 15072 c:\windows\$hf_mig$\KB958470\spmsg.dll
+ 2009-09-10 18:52 . 2008-07-08 12:59 26488 c:\windows\$hf_mig$\KB956844\update\spcustom.dll
+ 2009-09-10 18:52 . 2008-07-08 12:59 18296 c:\windows\$hf_mig$\KB956844\spmsg.dll
+ 2009-08-10 09:02 . 2005-10-12 23:13 22752 c:\windows\$hf_mig$\KB925720\update\spcustom.dll
+ 2009-08-10 09:02 . 2005-10-12 23:13 15072 c:\windows\$hf_mig$\KB925720\spmsg.dll
+ 2006-10-04 14:06 . 2006-10-04 14:06 50176 c:\windows\$hf_mig$\KB925720\SP2QFE\utilman.exe
+ 2006-10-04 14:11 . 2006-10-04 14:11 36352 c:\windows\$hf_mig$\KB925720\SP2QFE\umandlg.dll
+ 2006-10-04 14:06 . 2006-10-04 14:06 54784 c:\windows\$hf_mig$\KB925720\SP2QFE\narrator.exe
+ 2006-10-04 14:06 . 2006-10-04 14:06 72704 c:\windows\$hf_mig$\KB925720\SP2QFE\magnify.exe
+ 2009-10-16 04:33 . 2009-10-16 04:33 8192 c:\windows\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
+ 2004-08-17 13:49 . 2009-06-22 11:49 4608 c:\windows\system32\mqsvc.exe
- 2004-08-17 13:49 . 2004-08-17 13:49 4608 c:\windows\system32\mqsvc.exe
+ 2009-12-17 20:04 . 2005-11-30 10:33 2048 c:\windows\system32\drivers\rt73.bin
- 2004-08-17 13:49 . 2004-08-17 13:49 4608 c:\windows\system32\dllcache\mqsvc.exe
+ 2004-08-17 13:49 . 2009-06-22 11:49 4608 c:\windows\system32\dllcache\mqsvc.exe
+ 2009-06-04 12:17 . 2009-06-04 12:17 9216 c:\windows\system32\Adobe\Shockwave 11\DynaPlayer.dll
+ 2008-07-29 21:40 . 2008-07-29 21:40 5632 c:\windows\Microsoft.NET\Framework\v3.5\Sentinel.v3.5Client.dll
- 2005-09-23 06:28 . 2005-09-23 06:28 7168 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft_VsaVb.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 7168 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft_VsaVb.dll
- 2005-09-23 06:29 . 2005-09-23 06:29 5632 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualC.Dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 5632 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualC.Dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 6656 c:\windows\Microsoft.NET\Framework\v2.0.50727\IIEHost.dll
- 2005-09-23 06:28 . 2005-09-23 06:28 8192 c:\windows\Microsoft.NET\Framework\v2.0.50727\IEExecRemote.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 8192 c:\windows\Microsoft.NET\Framework\v2.0.50727\IEExecRemote.dll
- 2005-09-23 06:28 . 2005-09-23 06:28 9728 c:\windows\Microsoft.NET\Framework\v2.0.50727\IEExec.exe
+ 2008-07-25 09:17 . 2008-07-25 09:17 9728 c:\windows\Microsoft.NET\Framework\v2.0.50727\IEExec.exe
+ 2008-07-25 09:16 . 2008-07-25 09:16 5120 c:\windows\Microsoft.NET\Framework\v2.0.50727\dfsvc.exe
+ 2009-08-09 16:42 . 2009-08-09 16:42 5632 c:\windows\assembly\GAC_MSIL\Sentinel.v3.5Client\3.5.0.0__b03f5f7f11d50a3a\Sentinel.v3.5Client.dll
- 2009-01-03 11:01 . 2009-01-03 11:01 7168 c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
+ 2009-10-16 04:33 . 2009-10-16 04:33 7168 c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
+ 2009-10-16 04:34 . 2009-10-16 04:34 5632 c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
- 2009-01-03 11:01 . 2009-01-03 11:01 5632 c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
+ 2009-10-16 04:33 . 2009-10-16 04:33 6656 c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
+ 2009-10-16 04:33 . 2009-10-16 04:33 8192 c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
- 2009-01-03 11:01 . 2009-01-03 11:01 8192 c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2009-08-14 06:30 . 2004-08-17 13:49 4608 c:\windows\$NtUninstallKB971032$\mqsvc.exe
+ 2009-06-22 11:30 . 2009-06-22 11:30 4608 c:\windows\$hf_mig$\KB971032\SP2QFE\mqsvc.exe
+ 2009-10-16 04:34 . 2009-10-16 04:34 113664 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
+ 2009-10-16 04:34 . 2009-10-16 04:34 258048 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
- 2009-01-03 11:01 . 2009-01-03 11:01 258048 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
+ 2008-03-04 02:17 . 2008-03-04 02:17 655872 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30304.0_x-ww_003f2b36\msvcr90.dll
- 2008-03-04 01:17 . 2008-03-04 01:17 655872 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30304.0_x-ww_003f2b36\msvcr90.dll
+ 2008-03-04 02:17 . 2008-03-04 02:17 572928 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30304.0_x-ww_003f2b36\msvcp90.dll
- 2008-03-04 01:17 . 2008-03-04 01:17 572928 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30304.0_x-ww_003f2b36\msvcp90.dll
+ 2008-03-03 20:52 . 2008-03-03 20:52 225280 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30304.0_x-ww_003f2b36\msvcm90.dll
- 2008-03-03 19:52 . 2008-03-03 19:52 225280 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30304.0_x-ww_003f2b36\msvcm90.dll
+ 2007-11-07 00:19 . 2007-11-07 00:19 655872 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_d08d0375\msvcr90.dll
+ 2007-11-07 00:19 . 2007-11-07 00:19 568832 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_d08d0375\msvcp90.dll
+ 2007-11-06 19:23 . 2007-11-06 19:23 224768 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_d08d0375\msvcm90.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 635904 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.3053_x-ww_b80fa8ca\msvcr80.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 558080 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.3053_x-ww_b80fa8ca\msvcp80.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 479232 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.3053_x-ww_b80fa8ca\msvcm80.dll
+ 2008-07-29 19:26 . 2008-07-29 19:26 301568 c:\windows\system32\XPSViewer\XPSViewer.exe
+ 2009-08-09 16:39 . 2008-07-06 12:06 575488 c:\windows\system32\xpsshhdr.dll
+ 2007-03-09 10:23 . 2009-10-28 00:43 360448 c:\windows\system32\xpsp3res.dll
+ 2008-03-03 15:25 . 2009-08-06 17:24 209632 c:\windows\system32\wuweb.dll
+ 2008-03-03 15:25 . 2009-08-06 17:24 327896 c:\windows\system32\wucltui.dll
+ 2008-03-03 15:25 . 2009-08-06 17:23 575704 c:\windows\system32\wuapi.dll
+ 2004-08-17 13:49 . 2009-04-03 10:15 485376 c:\windows\system32\wmspdmod.dll
+ 2006-10-24 10:30 . 2006-10-24 10:30 276992 c:\windows\system32\WMPhoto.dll
+ 2004-08-17 13:49 . 2009-07-13 00:18 233472 c:\windows\system32\wmpdxm.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 233472 c:\windows\system32\wmpdxm.dll
+ 2004-08-17 13:49 . 2009-06-10 06:31 132096 c:\windows\system32\wkssvc.dll
- 2004-08-17 13:49 . 2006-08-17 12:29 132096 c:\windows\system32\wkssvc.dll
+ 2004-08-17 13:49 . 2009-08-25 09:49 352256 c:\windows\system32\winhttp.dll
+ 2006-10-24 10:29 . 2006-10-24 10:29 352256 c:\windows\system32\WindowsCodecsExt.dll
+ 2006-10-24 10:30 . 2006-10-24 10:30 716288 c:\windows\system32\WindowsCodecs.dll
+ 2009-08-12 17:46 . 2005-06-24 14:24 438272 c:\windows\system32\vp6vfw.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 625152 c:\windows\system32\urlmon.dll
+ 2008-07-29 17:59 . 2008-07-29 17:59 161296 c:\windows\system32\UIAutomationCore.dll
+ 2004-08-17 13:49 . 2009-10-15 21:52 119808 c:\windows\system32\t2embed.dll
- 2004-08-17 13:49 . 2008-10-03 10:17 247326 c:\windows\system32\strmdll.dll
+ 2004-08-17 13:49 . 2009-08-26 08:16 247326 c:\windows\system32\strmdll.dll
+ 2009-08-09 16:40 . 2008-07-06 12:06 765440 c:\windows\system32\spool\XPSEP\i386\mxdwdrv.dll
+ 2009-08-09 16:40 . 2008-07-06 12:06 765440 c:\windows\system32\spool\XPSEP\i386\i386\mxdwdrv.dll
+ 2009-08-09 16:40 . 2008-07-06 12:06 748032 c:\windows\system32\spool\XPSEP\amd64\mxdwdrv.dll
+ 2009-08-09 16:40 . 2008-07-06 12:06 748032 c:\windows\system32\spool\XPSEP\amd64\amd64\mxdwdrv.dll
+ 2009-08-09 16:40 . 2008-07-06 12:06 147456 c:\windows\system32\spool\prtprocs\x64\filterpipelineprintproc.dll
+ 2009-08-09 16:39 . 2008-07-06 10:50 597504 c:\windows\system32\spool\prtprocs\w32x86\printfilterpipelinesvc.exe
+ 2009-08-09 16:39 . 2008-03-13 04:52 761344 c:\windows\system32\spool\drivers\w32x86\3\unires.dll
+ 2009-08-09 16:39 . 2008-07-06 12:06 744960 c:\windows\system32\spool\drivers\w32x86\3\unidrvui.dll
+ 2009-08-09 16:39 . 2008-07-06 12:06 373248 c:\windows\system32\spool\drivers\w32x86\3\unidrv.dll
+ 2009-10-10 08:47 . 2004-08-17 13:49 464384 c:\windows\system32\spool\drivers\w32x86\3\PSCRIPT5.DLL
+ 2009-10-10 08:47 . 2004-08-17 13:49 133632 c:\windows\system32\spool\drivers\w32x86\3\PS5UI.DLL
+ 2009-08-09 16:39 . 2008-07-06 12:06 198656 c:\windows\system32\spool\drivers\w32x86\3\mxdwdui.dll
+ 2009-08-09 16:39 . 2008-07-06 12:06 765440 c:\windows\system32\spool\drivers\w32x86\3\mxdwdrv.dll
+ 2004-08-17 13:49 . 2009-06-25 08:48 168448 c:\windows\system32\schannel.dll
+ 2004-08-17 13:49 . 2009-09-25 05:58 473600 c:\windows\system32\shlwapi.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 169472 c:\windows\system32\Setup\msmqocm.dll
+ 2006-08-24 14:15 . 2006-08-24 14:15 150808 c:\windows\system32\rgb9rast_2.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 112640 c:\windows\system32\rastls.dll
+ 2004-08-17 13:49 . 2009-10-12 13:54 112640 c:\windows\system32\rastls.dll
+ 2009-08-09 16:39 . 2008-07-06 12:06 117760 c:\windows\system32\prntvpt.dll
+ 2008-07-29 17:59 . 2008-07-29 17:59 781344 c:\windows\system32\PresentationNative_v0300.dll
+ 2008-07-29 18:35 . 2008-07-29 18:35 326160 c:\windows\system32\PresentationHost.exe
+ 2008-07-29 17:59 . 2008-07-29 17:59 105016 c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
+ 2006-10-24 10:30 . 2006-10-24 10:30 412160 c:\windows\system32\photometadatahandler.dll
+ 2001-10-25 12:00 . 2009-12-10 18:15 440684 c:\windows\system32\perfh009.dat
+ 2004-08-17 13:49 . 2006-10-04 13:34 216064 c:\windows\system32\osk.exe
- 2004-08-17 13:49 . 2004-08-17 13:49 216064 c:\windows\system32\osk.exe
- 2004-08-17 13:49 . 2004-08-17 13:49 267776 c:\windows\system32\oakley.dll
+ 2004-08-17 13:49 . 2009-10-13 10:53 267776 c:\windows\system32\oakley.dll
+ 2004-08-17 13:49 . 2009-08-05 09:07 205312 c:\windows\system32\mswebdvd.dll
+ 2004-08-17 13:49 . 2009-09-11 14:35 133632 c:\windows\system32\msv1_0.dll
+ 2008-03-03 15:23 . 2009-06-05 07:46 655872 c:\windows\system32\mstscax.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 532480 c:\windows\system32\mstime.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 532480 c:\windows\system32\mstime.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 146432 c:\windows\system32\msrating.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 146432 c:\windows\system32\msrating.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 449024 c:\windows\system32\mshtmled.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 449024 c:\windows\system32\mshtmled.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 158720 c:\windows\system32\mscorier.dll
+ 2008-07-25 09:16 . 2008-07-25 09:16 282112 c:\windows\system32\mscoree.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 489472 c:\windows\system32\mqutil.dll
- 2004-08-17 13:49 . 2007-07-06 12:51 489472 c:\windows\system32\mqutil.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 186880 c:\windows\system32\mqtrig.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 186880 c:\windows\system32\mqtrig.dll
+ 2004-08-17 13:49 . 2009-06-22 11:49 117248 c:\windows\system32\mqtgsvc.exe
- 2004-08-17 13:49 . 2004-08-17 13:49 117248 c:\windows\system32\mqtgsvc.exe
+ 2004-08-17 13:49 . 2009-06-25 18:37 517120 c:\windows\system32\mqsnap.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 123392 c:\windows\system32\mqrtdep.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 123392 c:\windows\system32\mqrtdep.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 177152 c:\windows\system32\mqrt.dll
- 2004-08-17 13:49 . 2007-07-06 12:51 177152 c:\windows\system32\mqrt.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 661504 c:\windows\system32\mqqm.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 225280 c:\windows\system32\mqoa.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 225280 c:\windows\system32\mqoa.dll
- 2004-08-17 13:49 . 2007-07-06 12:51 138240 c:\windows\system32\mqad.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 138240 c:\windows\system32\mqad.dll
+ 2009-07-18 03:12 . 2009-07-18 03:12 257440 c:\windows\system32\Macromed\Flash\FlashUtil10c.exe
+ 2004-08-17 13:49 . 2009-06-25 08:48 723456 c:\windows\system32\lsasrv.dll
+ 2004-08-17 13:49 . 2009-06-25 08:48 298496 c:\windows\system32\kerberos.dll
+ 2004-08-17 13:49 . 2009-08-21 06:52 450560 c:\windows\system32\jscript.dll
- 2004-08-17 13:49 . 2007-12-18 14:43 450560 c:\windows\system32\jscript.dll
+ 2009-12-17 20:04 . 2005-12-05 18:01 114688 c:\windows\system32\Install7x.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 251392 c:\windows\system32\iepeers.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 251392 c:\windows\system32\iepeers.dll
+ 2008-07-29 17:24 . 2008-07-29 17:24 622080 c:\windows\system32\icardagt.exe
+ 2008-03-03 16:05 . 2009-11-12 17:39 141240 c:\windows\system32\FNTCACHE.DAT
+ 2008-07-29 19:10 . 2008-07-29 19:10 493048 c:\windows\system32\evr.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 205312 c:\windows\system32\dxtrans.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 205312 c:\windows\system32\dxtrans.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 357888 c:\windows\system32\dxtmsft.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 357888 c:\windows\system32\dxtmsft.dll
+ 2009-12-17 20:04 . 2006-01-12 18:46 252928 c:\windows\system32\drivers\rt73.sys
+ 2009-12-17 20:04 . 2005-10-17 18:50 245376 c:\windows\system32\drivers\rt2500usb.SYS
+ 2004-08-03 21:00 . 2009-10-20 14:58 263552 c:\windows\system32\drivers\http.sys
+ 2009-08-09 16:39 . 2008-07-06 12:06 575488 c:\windows\system32\dllcache\xpsshhdr.dll
+ 2008-03-03 15:25 . 2009-08-06 17:24 209632 c:\windows\system32\dllcache\wuweb.dll
+ 2008-03-03 15:25 . 2009-08-06 17:24 327896 c:\windows\system32\dllcache\wucltui.dll
+ 2008-03-03 15:25 . 2009-08-06 17:23 575704 c:\windows\system32\dllcache\wuapi.dll
+ 2004-08-17 13:49 . 2009-04-03 10:15 485376 c:\windows\system32\dllcache\wmspdmod.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 233472 c:\windows\system32\dllcache\wmpdxm.dll
+ 2004-08-17 13:49 . 2009-07-13 00:18 233472 c:\windows\system32\dllcache\wmpdxm.dll
- 2004-08-17 13:49 . 2006-08-17 12:29 132096 c:\windows\system32\dllcache\wkssvc.dll
+ 2004-08-17 13:49 . 2009-06-10 06:31 132096 c:\windows\system32\dllcache\wkssvc.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 663040 c:\windows\system32\dllcache\wininet.dll
+ 2004-08-17 13:49 . 2009-08-25 09:49 352256 c:\windows\system32\dllcache\winhttp.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 625152 c:\windows\system32\dllcache\urlmon.dll
+ 2008-03-03 15:25 . 2009-06-21 22:07 153088 c:\windows\system32\dllcache\triedit.dll
- 2008-03-03 15:25 . 2004-08-17 13:49 153088 c:\windows\system32\dllcache\triedit.dll
+ 2004-08-17 13:49 . 2009-10-15 21:52 119808 c:\windows\system32\dllcache\t2embed.dll
- 2004-08-17 13:49 . 2008-10-03 10:17 247326 c:\windows\system32\dllcache\strmdll.dll
+ 2004-08-17 13:49 . 2009-08-26 08:16 247326 c:\windows\system32\dllcache\strmdll.dll
+ 2004-08-17 13:49 . 2009-06-25 08:48 168448 c:\windows\system32\dllcache\schannel.dll
+ 2004-08-17 13:49 . 2009-09-25 05:58 473600 c:\windows\system32\dllcache\shlwapi.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 112640 c:\windows\system32\dllcache\rastls.dll
+ 2004-08-17 13:49 . 2009-10-12 13:54 112640 c:\windows\system32\dllcache\rastls.dll
+ 2009-08-09 16:39 . 2008-07-06 10:50 597504 c:\windows\system32\dllcache\printfilterpipelinesvc.exe
- 2004-08-17 13:49 . 2004-08-17 13:49 216064 c:\windows\system32\dllcache\osk.exe
+ 2004-08-17 13:49 . 2006-10-04 13:34 216064 c:\windows\system32\dllcache\osk.exe
- 2004-08-17 13:49 . 2004-08-17 13:49 267776 c:\windows\system32\dllcache\oakley.dll
+ 2004-08-17 13:49 . 2009-10-13 10:53 267776 c:\windows\system32\dllcache\oakley.dll
+ 2004-08-17 13:49 . 2009-08-05 09:07 205312 c:\windows\system32\dllcache\mswebdvd.dll
+ 2004-08-17 13:49 . 2009-09-11 14:35 133632 c:\windows\system32\dllcache\msv1_0.dll
+ 2008-03-03 15:23 . 2009-06-05 07:46 655872 c:\windows\system32\dllcache\mstscax.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 532480 c:\windows\system32\dllcache\mstime.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 532480 c:\windows\system32\dllcache\mstime.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 146432 c:\windows\system32\dllcache\msrating.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 146432 c:\windows\system32\dllcache\msrating.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 169472 c:\windows\system32\dllcache\msmqocm.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 449024 c:\windows\system32\dllcache\mshtmled.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 449024 c:\windows\system32\dllcache\mshtmled.dll
- 2004-08-17 13:49 . 2007-07-06 12:51 489472 c:\windows\system32\dllcache\mqutil.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 489472 c:\windows\system32\dllcache\mqutil.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 186880 c:\windows\system32\dllcache\mqtrig.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 186880 c:\windows\system32\dllcache\mqtrig.dll
+ 2004-08-17 13:49 . 2009-06-22 11:49 117248 c:\windows\system32\dllcache\mqtgsvc.exe
- 2004-08-17 13:49 . 2004-08-17 13:49 117248 c:\windows\system32\dllcache\mqtgsvc.exe
+ 2004-08-17 13:49 . 2009-06-25 18:37 517120 c:\windows\system32\dllcache\mqsnap.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 123392 c:\windows\system32\dllcache\mqrtdep.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 123392 c:\windows\system32\dllcache\mqrtdep.dll
- 2004-08-17 13:49 . 2007-07-06 12:51 177152 c:\windows\system32\dllcache\mqrt.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 177152 c:\windows\system32\dllcache\mqrt.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 661504 c:\windows\system32\dllcache\mqqm.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 225280 c:\windows\system32\dllcache\mqoa.dll
- 2004-08-17 13:49 . 2004-08-17 13:49 225280 c:\windows\system32\dllcache\mqoa.dll
- 2004-08-17 13:49 . 2007-07-06 12:51 138240 c:\windows\system32\dllcache\mqad.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 138240 c:\windows\system32\dllcache\mqad.dll
+ 2004-08-17 13:49 . 2009-06-25 08:48 723456 c:\windows\system32\dllcache\lsasrv.dll
+ 2004-08-17 13:49 . 2009-06-25 08:48 298496 c:\windows\system32\dllcache\kerberos.dll
- 2004-08-17 13:49 . 2007-12-18 14:43 450560 c:\windows\system32\dllcache\jscript.dll
+ 2004-08-17 13:49 . 2009-08-21 06:52 450560 c:\windows\system32\dllcache\jscript.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 251392 c:\windows\system32\dllcache\iepeers.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 251392 c:\windows\system32\dllcache\iepeers.dll
+ 2009-10-20 14:58 . 2009-10-20 14:58 263552 c:\windows\system32\dllcache\http.sys
+ 2004-08-17 13:49 . 2009-10-29 05:48 205312 c:\windows\system32\dllcache\dxtrans.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 205312 c:\windows\system32\dllcache\dxtrans.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 357888 c:\windows\system32\dllcache\dxtmsft.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 357888 c:\windows\system32\dllcache\dxtmsft.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 151552 c:\windows\system32\dllcache\cdfview.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 151552 c:\windows\system32\dllcache\cdfview.dll
+ 2004-08-17 13:49 . 2009-11-21 16:46 470528 c:\windows\system32\dllcache\aclayers.dll
- 2004-08-17 13:49 . 2009-04-29 04:53 151552 c:\windows\system32\cdfview.dll
+ 2004-08-17 13:49 . 2009-10-29 05:48 151552 c:\windows\system32\cdfview.dll
+ 2009-12-17 20:04 . 2005-05-17 14:24 311296 c:\windows\system32\AegisI5.exe
+ 2009-06-04 12:15 . 2009-06-04 12:15 114688 c:\windows\system32\Adobe\Shockwave 11\SwInit.exe
+ 2009-06-05 11:38 . 2009-06-05 11:38 468408 c:\windows\system32\Adobe\Shockwave 11\SwHelper_1150600.exe
+ 2009-06-04 12:17 . 2009-06-04 12:17 446464 c:\windows\system32\Adobe\Shockwave 11\Proj.dll
+ 2009-06-04 12:16 . 2009-06-04 12:16 372736 c:\windows\system32\Adobe\Shockwave 11\Plugin.dll
+ 2009-06-05 11:34 . 2009-06-05 11:34 714752 c:\windows\system32\Adobe\Shockwave 11\gi.dll
+ 2009-06-04 12:15 . 2009-06-04 12:15 614400 c:\windows\system32\Adobe\Shockwave 11\Control.dll
+ 2009-06-05 11:38 . 2009-06-05 11:38 202168 c:\windows\system32\Adobe\Director\SwDir.dll
+ 2009-06-04 12:17 . 2009-06-04 12:17 131072 c:\windows\system32\Adobe\Director\np32dsw.dll
+ 2008-07-29 21:40 . 2008-07-29 21:40 196104 c:\windows\Microsoft.NET\Framework\v3.5\WFServicesReg.exe
+ 2008-07-29 21:40 . 2008-07-29 21:40 802816 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft.Build.Tasks.v3.5.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 984056 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapUI.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 107512 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 111096 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.3082.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 110072 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.2070.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 106488 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1055.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 105976 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1053.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 107000 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1049.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 107512 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1046.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 109048 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1045.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 106488 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1044.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 108536 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1043.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 110072 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1040.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 111096 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1038.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 101368 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1037.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 112120 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1036.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 106488 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1035.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 113656 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1032.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 111608 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1031.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 108536 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1030.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 108536 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1029.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 102904 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1025.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 689152 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\vsscenario.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 413184 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\vsbasereqs.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 632320 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\vs70uimgr.dll
+ 2009-08-09 16:42 . 2009-08-09 16:42 652800 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\vs_setup.msi
+ 2008-07-29 16:47 . 2008-07-29 16:47 110080 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 131584 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.3082.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 131072 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.2070.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 121344 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1055.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 121344 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1053.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 123904 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1049.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 122880 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1046.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 128512 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1045.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 121856 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1044.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 129024 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1043.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 128512 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1040.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 132096 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1038.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 111104 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1037.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 133120 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1036.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 122368 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1035.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 137728 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1032.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 130048 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1031.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 126464 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1030.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 125440 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1029.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 113152 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1025.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 269304 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
+ 2008-07-29 16:47 . 2008-07-29 16:47 177152 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\HtmlLite.dll
+ 2008-07-29 16:47 . 2008-07-29 16:47 276984 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\dlmgr.dll
+ 2008-07-29 21:15 . 2008-07-29 21:15 225490 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\baseline.dat
+ 2008-07-29 21:40 . 2008-07-29 21:40 233976 c:\windows\Microsoft.NET\Framework\v3.5\1033\vbc7ui.dll
+ 2008-07-29 21:40 . 2008-07-29 21:40 168448 c:\windows\Microsoft.NET\Framework\v3.5\1033\cscompui.dll
+ 2008-07-29 18:35 . 2008-07-29 18:35 864256 c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationUI.dll
+ 2008-07-29 17:59 . 2008-07-29 17:59 132120 c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationHostDLL.dll
+ 2008-07-29 19:10 . 2008-07-29 19:10 806928 c:\windows\Microsoft.NET\Framework\v3.0\WPF\NaturalLanguage6.dll
+ 2008-07-29 17:16 . 2008-07-29 17:16 152576 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\WsatConfig.exe
+ 2008-07-29 17:16 . 2008-07-29 17:16 966656 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
+ 2008-07-29 17:16 . 2008-07-29 17:16 132096 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
+ 2008-07-29 17:16 . 2008-07-29 17:16 110592 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMdiagnostics.dll
+ 2008-07-29 17:16 . 2008-07-29 17:16 156688 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelReg.exe
+ 2008-07-29 17:16 . 2008-07-29 17:16 163840 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\Microsoft.Transactions.Bridge.Dtc.dll
+ 2008-07-29 17:16 . 2008-07-29 17:16 397312 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\Microsoft.Transactions.Bridge.dll
+ 2008-07-29 17:24 . 2008-07-29 17:24 881664 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
+ 2008-07-29 17:16 . 2008-07-29 17:16 168968 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ComSvcConfig.exe
+ 2008-11-25 02:59 . 2008-11-25 02:59 436040 c:\windows\Microsoft.NET\Framework\v2.0.50727\webengine.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 839680 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.Services.dll
+ 2008-07-25 09:17 . 2008-07-25 09:17 835584 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.Mobile.dll