sshnas32.dll
Napsal: 31 led 2010 11:56
Dobrý den, píšu protože mám podobný problém jako na topicu sshnas21.dll - Trojský kůň - Po vyléčení chyba
Ta tabulka s C:\Windows\system32\sshnas32.dll mi sama vyskočila a ani mě Avast na nic neupozornil.
Co mám prosim vás dělat?
Zde je můj log:
Spuštěno v režimu kompatibility WINDOWS XP SP3
Logfile of random's system information tool 1.06 (written by random/random)
Run by Jan at 2010-01-31 11:18:05
Microsoft Windows 7 Home Premium Service Pack 3
System drive C: has 168 GB (71%) free of 238 GB
Total RAM: 4061 MB (65% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:18:06, on 31.1.2010
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Windows\msa.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
C:\Users\Jan\AppData\Local\Temp\Mb1.exe
C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\Monitor.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Adobe\Photoshop Elements 5.0\apdproxy.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosHdpProc.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\Jan\Desktop\RSIT.exe
C:\Program Files (x86)\trend micro\Jan.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.centrum.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [SVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe SVPwUTIL
O4 - HKLM\..\Run: [HWSetup] "C:\Program Files\TOSHIBA\Utilities\HWSetup.exe" hwSetUP
O4 - HKLM\..\Run: [KeNotify] C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ToshibaServiceStation] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe /hide:60
O4 - HKLM\..\Run: [avast!] "C:\Program Files\Alwil Software\Avast4\ashDisp.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Ulead AutoDetector v2] C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\monitor.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files (x86)\Adobe\Photoshop Elements 5.0\apdproxy.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [LosAlamos] rundll32.exe C:\Windows\system32\sshnas21.dll,AttachConsoleA
O4 - HKCU\..\Run: [BMIMZMHMFM] C:\Users\Jan\AppData\Local\Temp\Mb1.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (User 'Default user')
O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (User 'Default user')
O4 - Global Startup: Bluetooth Manager.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files (x86)\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files (x86)\ICQ6.5\ICQ.exe
O13 - Gopher Prefix:
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Active File Monitor V5 (AdobeActiveFileMonitor5.0) - Unknown owner - C:\Program Files (x86)\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Active File Monitor V6 (AdobeActiveFileMonitor6.0) - Unknown owner - C:\Program Files (x86)\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: ConfigFree WiMAX Service (cfWiMAXService) - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
O23 - Service: ConfigFree Gadget Service - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe
O23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files (x86)\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Notebook Performance Tuning Service (TEMPRO) (TemproMonitoringService) - Toshiba Europe GmbH - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\Windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TECO\TecoService.exe
O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12051 bytes
======Scheduled tasks folder======
C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
C:\Windows\tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2010-01-11 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll [2009-11-24 953800]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SVPWUTIL"=C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe [2009-08-12 352256]
"HWSetup"=C:\Program Files\TOSHIBA\Utilities\HWSetup.exe [2009-06-02 423936]
"KeNotify"=C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [2009-01-13 34088]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-07-29 98304]
"ToshibaServiceStation"=C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe [2009-08-17 1294136]
"avast!"=C:\Program Files\Alwil Software\Avast4\ashDisp.exe [2009-11-25 81000]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2010-01-11 246504]
"Ulead AutoDetector v2"=C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\monitor.exe [2006-11-29 90112]
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2009-11-10 417792]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2009-11-12 141600]
"Adobe Photo Downloader"=C:\Program Files (x86)\Adobe\Photoshop Elements 5.0\apdproxy.exe [2006-12-22 67752]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1475072]
"LosAlamos"=C:\Windows\system32\sshnas21.dll [2010-01-29 183808]
"BMIMZMHMFM"=C:\Users\Jan\AppData\Local\Temp\Mb1.exe [2010-01-29 194560]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth Manager.lnk - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MpfService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=
"NoActiveDesktopChanges"=
"ForceActiveDesktopOn"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-01-31 11:16:47 ----D---- C:\rsit
2010-01-31 11:16:47 ----D---- C:\Program Files (x86)\trend micro
2010-01-30 20:54:07 ----D---- C:\Program Files (x86)\VALVe
2010-01-30 16:48:59 ----D---- C:\Games
2010-01-29 17:22:16 ----A---- C:\Windows\msa.exe
2010-01-29 17:21:27 ----A---- C:\Windows\system32\sshnas21.dll
2010-01-27 15:04:38 ----A---- C:\Windows\system32\explorer.exe
2010-01-27 15:04:38 ----A---- C:\Windows\explorer.exe
2010-01-26 23:25:43 ----D---- C:\Program Files (x86)\MSXML 4.0
2010-01-26 15:59:39 ----D---- C:\Users\Jan\AppData\Roaming\GHISLER
2010-01-26 15:59:39 ----D---- C:\totalcmd
2010-01-25 22:40:46 ----D---- C:\Users\Jan\AppData\Roaming\Nero
2010-01-25 22:09:35 ----D---- C:\Program Files (x86)\Nero
2010-01-25 22:09:20 ----D---- C:\ProgramData\Nero
2010-01-25 22:09:19 ----D---- C:\Program Files (x86)\Common Files\Nero
2010-01-25 19:02:29 ----D---- C:\Program Files (x86)\The Sir. Community
2010-01-24 22:13:50 ----D---- C:\ProgramData\FLEXnet
2010-01-24 22:13:27 ----D---- C:\Program Files (x86)\Common Files\Macrovision Shared
2010-01-24 22:11:25 ----N---- C:\Windows\system32\vxblock.dll
2010-01-24 22:11:25 ----N---- C:\Windows\system32\pxwave.dll
2010-01-24 22:11:25 ----N---- C:\Windows\system32\pxsfs.dll
2010-01-24 22:11:25 ----N---- C:\Windows\system32\pxmas.dll
2010-01-24 22:11:25 ----N---- C:\Windows\system32\pxinsi64.exe
2010-01-24 22:11:25 ----N---- C:\Windows\system32\pxinsa64.exe
2010-01-24 22:11:25 ----N---- C:\Windows\system32\pxhpinst.exe
2010-01-24 22:11:25 ----N---- C:\Windows\system32\pxdrv.dll
2010-01-24 22:11:25 ----N---- C:\Windows\system32\pxcpyi64.exe
2010-01-24 22:11:25 ----N---- C:\Windows\system32\pxcpya64.exe
2010-01-24 22:11:25 ----N---- C:\Windows\system32\pxafs.dll
2010-01-24 22:11:25 ----N---- C:\Windows\system32\px.dll
2010-01-22 17:15:56 ----D---- C:\ProgramData\Sun
2010-01-22 17:15:55 ----D---- C:\Program Files (x86)\Common Files\Java
2010-01-22 17:15:48 ----A---- C:\Windows\system32\javaws.exe
2010-01-22 17:15:48 ----A---- C:\Windows\system32\javaw.exe
2010-01-22 17:15:48 ----A---- C:\Windows\system32\java.exe
2010-01-22 15:03:21 ----A---- C:\Windows\system32\mshtml.dll
2010-01-22 15:03:20 ----A---- C:\Windows\system32\ieframe.dll
2010-01-22 15:03:19 ----A---- C:\Windows\system32\urlmon.dll
2010-01-22 15:03:19 ----A---- C:\Windows\system32\iedkcs32.dll
2010-01-22 15:03:18 ----A---- C:\Windows\system32\wininet.dll
2010-01-22 15:03:18 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-01-20 22:07:42 ----D---- C:\SmartSound Software
2010-01-20 22:07:22 ----D---- C:\ProgramData\SmartSound Software Inc
2010-01-20 22:07:22 ----D---- C:\Program Files (x86)\SmartSound Software
2010-01-20 22:07:05 ----A---- C:\Windows\IsUninst.exe
2010-01-20 22:06:40 ----D---- C:\Program Files (x86)\Windows Media Components
2010-01-20 21:57:28 ----A---- C:\Windows\ULEAD32.INI
2010-01-20 21:57:28 ----A---- C:\Windows\dswplug.ini
2010-01-20 21:56:29 ----D---- C:\Windows\ulead.dat
2010-01-20 17:20:55 ----A---- C:\Windows\headache.ini
2010-01-20 16:15:50 ----D---- C:\Program Files (x86)\Osmisměrky - ITPro CZ
2010-01-17 20:16:16 ----D---- C:\Program Files (x86)\Movie Maker 2.6
2010-01-17 19:06:57 ----D---- C:\Fraps
2010-01-17 19:06:57 ----AD---- C:\ProgramData\TEMP
2010-01-17 19:06:36 ----D---- C:\Program Files (x86)\Game Cam V2
2010-01-17 18:26:54 ----D---- C:\Users\Jan\AppData\Roaming\Sony
2010-01-17 17:52:11 ----D---- C:\Program Files (x86)\CamStudio
2010-01-17 17:34:30 ----D---- C:\ProgramData\McAfee Security Scan
2010-01-16 19:52:27 ----D---- C:\Program Files (x86)\Call of Duty 4 Modern Warfare
2010-01-16 19:41:50 ----D---- C:\Program Files (x86)\Modern Warfare 2
2010-01-15 18:39:50 ----A---- C:\Windows\game.ini
2010-01-15 17:49:22 ----D---- C:\Program Files (x86)\Ventrilo
2010-01-15 17:49:19 ----A---- C:\Windows\{789289CA-F73A-4A16-A331-54D498CE069F}_WiseFW.ini
2010-01-13 19:46:07 ----A---- C:\AdobeDebug.txt
2010-01-13 19:31:31 ----A---- C:\Windows\ODBCINST.INI
2010-01-13 15:15:17 ----A---- C:\Windows\system32\t2embed.dll
2010-01-13 15:15:17 ----A---- C:\Windows\system32\fontsub.dll
2010-01-12 19:11:28 ----D---- C:\Users\Jan\AppData\Roaming\ICQ
2010-01-12 19:11:01 ----D---- C:\Program Files (x86)\ICQ6.5
2010-01-11 22:17:52 ----D---- C:\Users\Jan\AppData\Roaming\WinRAR
2010-01-10 23:33:53 ----D---- C:\Program Files (x86)\iTunes
2010-01-10 23:33:53 ----D---- C:\Program Files (x86)\iPod
2010-01-10 23:33:06 ----D---- C:\Program Files (x86)\QuickTime
2010-01-10 23:32:12 ----D---- C:\Program Files (x86)\Common Files\Apple
2010-01-10 13:20:54 ----D---- C:\Users\Jan\AppData\Roaming\Ulead Systems
2010-01-10 13:19:06 ----D---- C:\ProgramData\InstallShield
2010-01-10 13:16:30 ----N---- C:\Windows\system32\ROBOEX32.DLL
2010-01-10 13:16:30 ----N---- C:\Windows\system32\INETWH32.dll
2010-01-10 13:16:29 ----D---- C:\Program Files (x86)\Ulead Systems
2010-01-10 13:16:29 ----D---- C:\Program Files (x86)\Common Files\Ulead Systems
2010-01-10 13:16:04 ----D---- C:\ProgramData\Ulead Systems
2010-01-08 19:17:44 ----D---- C:\ProgramData\Solidshield
2010-01-07 21:14:28 ----D---- C:\Users\Jan\AppData\Roaming\Total Immersion
2010-01-07 21:13:46 ----D---- C:\Program Files (x86)\Total Immersion
2010-01-07 17:28:35 ----A---- C:\Windows\system32\d3dx10_41.dll
2010-01-07 17:28:35 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2010-01-07 17:28:33 ----A---- C:\Windows\system32\XAudio2_4.dll
2010-01-07 17:28:33 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2010-01-07 17:28:33 ----A---- C:\Windows\system32\xactengine3_4.dll
2010-01-07 17:28:33 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2010-01-07 17:28:32 ----A---- C:\Windows\system32\d3dx10_40.dll
2010-01-07 17:28:32 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2010-01-07 17:28:31 ----A---- C:\Windows\system32\D3DX9_40.dll
2010-01-07 17:28:30 ----A---- C:\Windows\system32\XAudio2_3.dll
2010-01-07 17:28:30 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2010-01-07 17:28:30 ----A---- C:\Windows\system32\xactengine3_3.dll
2010-01-07 17:28:30 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2010-01-07 17:28:29 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-01-07 17:28:29 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-01-07 17:28:28 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-01-07 17:28:28 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-01-07 17:28:28 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-01-07 17:28:27 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-01-07 17:28:26 ----A---- C:\Windows\system32\XAudio2_1.dll
2010-01-07 17:28:26 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2010-01-07 17:28:26 ----A---- C:\Windows\system32\xactengine3_1.dll
2010-01-07 17:28:26 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2010-01-07 17:28:25 ----A---- C:\Windows\system32\d3dx10_38.dll
2010-01-07 17:28:25 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2010-01-07 17:28:24 ----A---- C:\Windows\system32\D3DX9_38.dll
2010-01-07 17:28:23 ----A---- C:\Windows\system32\XAudio2_0.dll
2010-01-07 17:28:23 ----A---- C:\Windows\system32\xactengine3_0.dll
2010-01-07 17:28:23 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2010-01-07 17:28:22 ----A---- C:\Windows\system32\d3dx10_37.dll
2010-01-07 17:28:22 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2010-01-07 17:28:21 ----A---- C:\Windows\system32\D3DX9_37.dll
2010-01-07 17:28:20 ----A---- C:\Windows\system32\xactengine2_10.dll
2010-01-07 17:28:19 ----A---- C:\Windows\system32\d3dx10_36.dll
2010-01-07 17:28:19 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2010-01-07 17:28:18 ----A---- C:\Windows\system32\xactengine2_9.dll
2010-01-07 17:28:18 ----A---- C:\Windows\system32\d3dx9_36.dll
2010-01-07 17:28:17 ----A---- C:\Windows\system32\d3dx10_35.dll
2010-01-07 17:28:17 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2010-01-07 17:28:16 ----A---- C:\Windows\system32\xactengine2_8.dll
2010-01-07 17:28:16 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2010-01-07 17:28:16 ----A---- C:\Windows\system32\d3dx9_35.dll
2010-01-07 17:28:15 ----A---- C:\Windows\system32\d3dx10_34.dll
2010-01-07 17:28:15 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2010-01-07 17:28:14 ----A---- C:\Windows\system32\xinput1_3.dll
2010-01-07 17:28:14 ----A---- C:\Windows\system32\d3dx9_34.dll
2010-01-07 17:28:13 ----A---- C:\Windows\system32\xactengine2_7.dll
2010-01-07 17:28:13 ----A---- C:\Windows\system32\d3dx10_33.dll
2010-01-07 17:28:12 ----A---- C:\Windows\system32\d3dx9_33.dll
2010-01-07 17:28:12 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2010-01-07 17:28:11 ----A---- C:\Windows\system32\xactengine2_6.dll
2010-01-07 17:28:11 ----A---- C:\Windows\system32\xactengine2_5.dll
2010-01-07 17:28:10 ----A---- C:\Windows\system32\d3dx10.dll
2010-01-07 17:28:09 ----A---- C:\Windows\system32\d3dx9_32.dll
2010-01-07 17:28:08 ----A---- C:\Windows\system32\xactengine2_4.dll
2010-01-07 17:28:08 ----A---- C:\Windows\system32\x3daudio1_1.dll
2010-01-07 17:28:08 ----A---- C:\Windows\system32\d3dx9_31.dll
2010-01-07 17:28:07 ----A---- C:\Windows\system32\xactengine2_3.dll
2010-01-07 17:28:06 ----A---- C:\Windows\system32\xinput1_2.dll
2010-01-07 17:28:06 ----A---- C:\Windows\system32\xinput1_1.dll
2010-01-07 17:28:06 ----A---- C:\Windows\system32\xactengine2_2.dll
2010-01-07 17:28:06 ----A---- C:\Windows\system32\xactengine2_1.dll
2010-01-07 17:28:00 ----A---- C:\Windows\system32\d3dx9_30.dll
2010-01-07 17:27:59 ----A---- C:\Windows\system32\xactengine2_0.dll
2010-01-07 17:27:59 ----A---- C:\Windows\system32\x3daudio1_0.dll
2010-01-07 17:27:58 ----A---- C:\Windows\system32\d3dx9_29.dll
2010-01-07 17:27:57 ----A---- C:\Windows\system32\d3dx9_28.dll
2010-01-07 17:27:56 ----A---- C:\Windows\system32\d3dx9_26.dll
2010-01-07 17:25:23 ----D---- C:\Program Files (x86)\Ubisoft
2010-01-04 21:45:35 ----D---- C:\Users\Jan\AppData\Roaming\Apple Computer
2010-01-04 21:44:52 ----D---- C:\Program Files (x86)\Bonjour
2010-01-04 21:44:25 ----D---- C:\ProgramData\Apple Computer
2010-01-04 21:44:14 ----D---- C:\ProgramData\Apple
2010-01-04 21:44:14 ----D---- C:\Program Files (x86)\Apple Software Update
2010-01-04 20:36:58 ----D---- C:\Windows\Sun
2010-01-03 22:01:04 ----D---- C:\Program Files (x86)\FLVPlayer
2010-01-03 21:45:49 ----D---- C:\Program Files (x86)\BitLord
2010-01-01 18:16:40 ----D---- C:\Program Files (x86)\Games
======List of files/folders modified in the last 1 months======
2010-01-31 11:18:05 ----D---- C:\Windows\Temp
2010-01-31 11:16:47 ----RD---- C:\Program Files (x86)
2010-01-31 11:09:56 ----D---- C:\Program Files (x86)\Mozilla Firefox
2010-01-31 11:09:18 ----D---- C:\Windows\Tasks
2010-01-30 22:38:26 ----A---- C:\Windows\system32\PnkBstrB.exe
2010-01-30 20:55:23 ----SHD---- C:\System Volume Information
2010-01-30 17:40:15 ----D---- C:\Shoty
2010-01-30 16:46:51 ----D---- C:\Windows
2010-01-30 15:57:38 ----SHD---- C:\Windows\Installer
2010-01-30 12:11:58 ----RD---- C:\Program Files
2010-01-30 11:53:53 ----A---- C:\Windows\system32\PnkBstrA.exe
2010-01-30 11:53:53 ----A---- C:\Windows\system32\pbsvc.exe
2010-01-30 11:46:06 ----D---- C:\Windows\System32
2010-01-30 11:46:06 ----D---- C:\Windows\inf
2010-01-29 19:23:28 ----D---- C:\Users\Jan\AppData\Roaming\Skype
2010-01-29 18:24:35 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2010-01-29 17:40:27 ----RSD---- C:\Windows\assembly
2010-01-29 17:21:27 ----D---- C:\Windows\SysWOW64
2010-01-29 16:06:24 ----D---- C:\Users\Jan\AppData\Roaming\skypePM
2010-01-29 12:26:15 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy
2010-01-28 20:17:55 ----D---- C:\ProgramData\Spybot - Search & Destroy
2010-01-28 17:21:11 ----D---- C:\Windows\Prefetch
2010-01-28 14:25:21 ----D---- C:\Users\Jan\AppData\Roaming\IObit
2010-01-28 14:19:02 ----D---- C:\Windows\system32\config
2010-01-27 21:08:49 ----D---- C:\Program Files (x86)\Common Files\InstallShield
2010-01-27 21:08:37 ----D---- C:\Program Files (x86)\EA GAMES
2010-01-27 20:21:17 ----D---- C:\Windows\winsxs
2010-01-27 17:53:20 ----D---- C:\Program Files (x86)\Internet Explorer
2010-01-25 22:09:20 ----HD---- C:\ProgramData
2010-01-25 22:09:19 ----D---- C:\Program Files (x86)\Common Files
2010-01-24 22:19:02 ----D---- C:\Users\Jan\AppData\Roaming\Adobe
2010-01-24 22:13:28 ----D---- C:\Program Files (x86)\Common Files\Adobe
2010-01-24 22:11:45 ----RSD---- C:\Windows\Fonts
2010-01-24 22:11:31 ----D---- C:\Program Files (x86)\Adobe
2010-01-24 21:26:10 ----A---- C:\Windows\win.ini
2010-01-22 17:15:44 ----D---- C:\Program Files (x86)\Java
2010-01-17 22:28:29 ----SHD---- C:\$RECYCLE.BIN
2010-01-17 18:09:24 ----D---- C:\Program Files (x86)\Common Files\microsoft shared
2010-01-15 17:48:59 ----D---- C:\Program Files (x86)\Common Files\Wise Installation Wizard
2010-01-14 22:14:27 ----D---- C:\Windows\debug
2010-01-13 22:28:41 ----D---- C:\Users\Jan\AppData\Roaming\DAEMON Tools Lite
2010-01-13 19:46:07 ----D---- C:\ProgramData\Adobe
2010-01-10 20:37:10 ----D---- C:\Windows\Corel
2010-01-10 13:16:29 ----D---- C:\Windows\Downloaded Program Files
POKRAČOVÁNÍ
Ta tabulka s C:\Windows\system32\sshnas32.dll mi sama vyskočila a ani mě Avast na nic neupozornil.
Co mám prosim vás dělat?
Zde je můj log:
Spuštěno v režimu kompatibility WINDOWS XP SP3
Logfile of random's system information tool 1.06 (written by random/random)
Run by Jan at 2010-01-31 11:18:05
Microsoft Windows 7 Home Premium Service Pack 3
System drive C: has 168 GB (71%) free of 238 GB
Total RAM: 4061 MB (65% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:18:06, on 31.1.2010
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Windows\msa.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
C:\Users\Jan\AppData\Local\Temp\Mb1.exe
C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\Monitor.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Adobe\Photoshop Elements 5.0\apdproxy.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosHdpProc.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\Jan\Desktop\RSIT.exe
C:\Program Files (x86)\trend micro\Jan.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.centrum.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [SVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe SVPwUTIL
O4 - HKLM\..\Run: [HWSetup] "C:\Program Files\TOSHIBA\Utilities\HWSetup.exe" hwSetUP
O4 - HKLM\..\Run: [KeNotify] C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ToshibaServiceStation] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe /hide:60
O4 - HKLM\..\Run: [avast!] "C:\Program Files\Alwil Software\Avast4\ashDisp.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Ulead AutoDetector v2] C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\monitor.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files (x86)\Adobe\Photoshop Elements 5.0\apdproxy.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [LosAlamos] rundll32.exe C:\Windows\system32\sshnas21.dll,AttachConsoleA
O4 - HKCU\..\Run: [BMIMZMHMFM] C:\Users\Jan\AppData\Local\Temp\Mb1.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (User 'Default user')
O4 - .DEFAULT User Startup: TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (User 'Default user')
O4 - Global Startup: Bluetooth Manager.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files (x86)\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files (x86)\ICQ6.5\ICQ.exe
O13 - Gopher Prefix:
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Active File Monitor V5 (AdobeActiveFileMonitor5.0) - Unknown owner - C:\Program Files (x86)\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Active File Monitor V6 (AdobeActiveFileMonitor6.0) - Unknown owner - C:\Program Files (x86)\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: ConfigFree WiMAX Service (cfWiMAXService) - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
O23 - Service: ConfigFree Gadget Service - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe
O23 - Service: ConfigFree Service - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files (x86)\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Notebook Performance Tuning Service (TEMPRO) (TemproMonitoringService) - Toshiba Europe GmbH - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\Windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TECO\TecoService.exe
O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12051 bytes
======Scheduled tasks folder======
C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
C:\Windows\tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2010-01-11 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll [2009-11-24 953800]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SVPWUTIL"=C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe [2009-08-12 352256]
"HWSetup"=C:\Program Files\TOSHIBA\Utilities\HWSetup.exe [2009-06-02 423936]
"KeNotify"=C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [2009-01-13 34088]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-07-29 98304]
"ToshibaServiceStation"=C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe [2009-08-17 1294136]
"avast!"=C:\Program Files\Alwil Software\Avast4\ashDisp.exe [2009-11-25 81000]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2010-01-11 246504]
"Ulead AutoDetector v2"=C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\monitor.exe [2006-11-29 90112]
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2009-11-10 417792]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2009-11-12 141600]
"Adobe Photo Downloader"=C:\Program Files (x86)\Adobe\Photoshop Elements 5.0\apdproxy.exe [2006-12-22 67752]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1475072]
"LosAlamos"=C:\Windows\system32\sshnas21.dll [2010-01-29 183808]
"BMIMZMHMFM"=C:\Users\Jan\AppData\Local\Temp\Mb1.exe [2010-01-29 194560]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth Manager.lnk - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MpfService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=
"NoActiveDesktopChanges"=
"ForceActiveDesktopOn"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-01-31 11:16:47 ----D---- C:\rsit
2010-01-31 11:16:47 ----D---- C:\Program Files (x86)\trend micro
2010-01-30 20:54:07 ----D---- C:\Program Files (x86)\VALVe
2010-01-30 16:48:59 ----D---- C:\Games
2010-01-29 17:22:16 ----A---- C:\Windows\msa.exe
2010-01-29 17:21:27 ----A---- C:\Windows\system32\sshnas21.dll
2010-01-27 15:04:38 ----A---- C:\Windows\system32\explorer.exe
2010-01-27 15:04:38 ----A---- C:\Windows\explorer.exe
2010-01-26 23:25:43 ----D---- C:\Program Files (x86)\MSXML 4.0
2010-01-26 15:59:39 ----D---- C:\Users\Jan\AppData\Roaming\GHISLER
2010-01-26 15:59:39 ----D---- C:\totalcmd
2010-01-25 22:40:46 ----D---- C:\Users\Jan\AppData\Roaming\Nero
2010-01-25 22:09:35 ----D---- C:\Program Files (x86)\Nero
2010-01-25 22:09:20 ----D---- C:\ProgramData\Nero
2010-01-25 22:09:19 ----D---- C:\Program Files (x86)\Common Files\Nero
2010-01-25 19:02:29 ----D---- C:\Program Files (x86)\The Sir. Community
2010-01-24 22:13:50 ----D---- C:\ProgramData\FLEXnet
2010-01-24 22:13:27 ----D---- C:\Program Files (x86)\Common Files\Macrovision Shared
2010-01-24 22:11:25 ----N---- C:\Windows\system32\vxblock.dll
2010-01-24 22:11:25 ----N---- C:\Windows\system32\pxwave.dll
2010-01-24 22:11:25 ----N---- C:\Windows\system32\pxsfs.dll
2010-01-24 22:11:25 ----N---- C:\Windows\system32\pxmas.dll
2010-01-24 22:11:25 ----N---- C:\Windows\system32\pxinsi64.exe
2010-01-24 22:11:25 ----N---- C:\Windows\system32\pxinsa64.exe
2010-01-24 22:11:25 ----N---- C:\Windows\system32\pxhpinst.exe
2010-01-24 22:11:25 ----N---- C:\Windows\system32\pxdrv.dll
2010-01-24 22:11:25 ----N---- C:\Windows\system32\pxcpyi64.exe
2010-01-24 22:11:25 ----N---- C:\Windows\system32\pxcpya64.exe
2010-01-24 22:11:25 ----N---- C:\Windows\system32\pxafs.dll
2010-01-24 22:11:25 ----N---- C:\Windows\system32\px.dll
2010-01-22 17:15:56 ----D---- C:\ProgramData\Sun
2010-01-22 17:15:55 ----D---- C:\Program Files (x86)\Common Files\Java
2010-01-22 17:15:48 ----A---- C:\Windows\system32\javaws.exe
2010-01-22 17:15:48 ----A---- C:\Windows\system32\javaw.exe
2010-01-22 17:15:48 ----A---- C:\Windows\system32\java.exe
2010-01-22 15:03:21 ----A---- C:\Windows\system32\mshtml.dll
2010-01-22 15:03:20 ----A---- C:\Windows\system32\ieframe.dll
2010-01-22 15:03:19 ----A---- C:\Windows\system32\urlmon.dll
2010-01-22 15:03:19 ----A---- C:\Windows\system32\iedkcs32.dll
2010-01-22 15:03:18 ----A---- C:\Windows\system32\wininet.dll
2010-01-22 15:03:18 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-01-20 22:07:42 ----D---- C:\SmartSound Software
2010-01-20 22:07:22 ----D---- C:\ProgramData\SmartSound Software Inc
2010-01-20 22:07:22 ----D---- C:\Program Files (x86)\SmartSound Software
2010-01-20 22:07:05 ----A---- C:\Windows\IsUninst.exe
2010-01-20 22:06:40 ----D---- C:\Program Files (x86)\Windows Media Components
2010-01-20 21:57:28 ----A---- C:\Windows\ULEAD32.INI
2010-01-20 21:57:28 ----A---- C:\Windows\dswplug.ini
2010-01-20 21:56:29 ----D---- C:\Windows\ulead.dat
2010-01-20 17:20:55 ----A---- C:\Windows\headache.ini
2010-01-20 16:15:50 ----D---- C:\Program Files (x86)\Osmisměrky - ITPro CZ
2010-01-17 20:16:16 ----D---- C:\Program Files (x86)\Movie Maker 2.6
2010-01-17 19:06:57 ----D---- C:\Fraps
2010-01-17 19:06:57 ----AD---- C:\ProgramData\TEMP
2010-01-17 19:06:36 ----D---- C:\Program Files (x86)\Game Cam V2
2010-01-17 18:26:54 ----D---- C:\Users\Jan\AppData\Roaming\Sony
2010-01-17 17:52:11 ----D---- C:\Program Files (x86)\CamStudio
2010-01-17 17:34:30 ----D---- C:\ProgramData\McAfee Security Scan
2010-01-16 19:52:27 ----D---- C:\Program Files (x86)\Call of Duty 4 Modern Warfare
2010-01-16 19:41:50 ----D---- C:\Program Files (x86)\Modern Warfare 2
2010-01-15 18:39:50 ----A---- C:\Windows\game.ini
2010-01-15 17:49:22 ----D---- C:\Program Files (x86)\Ventrilo
2010-01-15 17:49:19 ----A---- C:\Windows\{789289CA-F73A-4A16-A331-54D498CE069F}_WiseFW.ini
2010-01-13 19:46:07 ----A---- C:\AdobeDebug.txt
2010-01-13 19:31:31 ----A---- C:\Windows\ODBCINST.INI
2010-01-13 15:15:17 ----A---- C:\Windows\system32\t2embed.dll
2010-01-13 15:15:17 ----A---- C:\Windows\system32\fontsub.dll
2010-01-12 19:11:28 ----D---- C:\Users\Jan\AppData\Roaming\ICQ
2010-01-12 19:11:01 ----D---- C:\Program Files (x86)\ICQ6.5
2010-01-11 22:17:52 ----D---- C:\Users\Jan\AppData\Roaming\WinRAR
2010-01-10 23:33:53 ----D---- C:\Program Files (x86)\iTunes
2010-01-10 23:33:53 ----D---- C:\Program Files (x86)\iPod
2010-01-10 23:33:06 ----D---- C:\Program Files (x86)\QuickTime
2010-01-10 23:32:12 ----D---- C:\Program Files (x86)\Common Files\Apple
2010-01-10 13:20:54 ----D---- C:\Users\Jan\AppData\Roaming\Ulead Systems
2010-01-10 13:19:06 ----D---- C:\ProgramData\InstallShield
2010-01-10 13:16:30 ----N---- C:\Windows\system32\ROBOEX32.DLL
2010-01-10 13:16:30 ----N---- C:\Windows\system32\INETWH32.dll
2010-01-10 13:16:29 ----D---- C:\Program Files (x86)\Ulead Systems
2010-01-10 13:16:29 ----D---- C:\Program Files (x86)\Common Files\Ulead Systems
2010-01-10 13:16:04 ----D---- C:\ProgramData\Ulead Systems
2010-01-08 19:17:44 ----D---- C:\ProgramData\Solidshield
2010-01-07 21:14:28 ----D---- C:\Users\Jan\AppData\Roaming\Total Immersion
2010-01-07 21:13:46 ----D---- C:\Program Files (x86)\Total Immersion
2010-01-07 17:28:35 ----A---- C:\Windows\system32\d3dx10_41.dll
2010-01-07 17:28:35 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2010-01-07 17:28:33 ----A---- C:\Windows\system32\XAudio2_4.dll
2010-01-07 17:28:33 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2010-01-07 17:28:33 ----A---- C:\Windows\system32\xactengine3_4.dll
2010-01-07 17:28:33 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2010-01-07 17:28:32 ----A---- C:\Windows\system32\d3dx10_40.dll
2010-01-07 17:28:32 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2010-01-07 17:28:31 ----A---- C:\Windows\system32\D3DX9_40.dll
2010-01-07 17:28:30 ----A---- C:\Windows\system32\XAudio2_3.dll
2010-01-07 17:28:30 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2010-01-07 17:28:30 ----A---- C:\Windows\system32\xactengine3_3.dll
2010-01-07 17:28:30 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2010-01-07 17:28:29 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-01-07 17:28:29 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-01-07 17:28:28 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-01-07 17:28:28 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-01-07 17:28:28 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-01-07 17:28:27 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-01-07 17:28:26 ----A---- C:\Windows\system32\XAudio2_1.dll
2010-01-07 17:28:26 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2010-01-07 17:28:26 ----A---- C:\Windows\system32\xactengine3_1.dll
2010-01-07 17:28:26 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2010-01-07 17:28:25 ----A---- C:\Windows\system32\d3dx10_38.dll
2010-01-07 17:28:25 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2010-01-07 17:28:24 ----A---- C:\Windows\system32\D3DX9_38.dll
2010-01-07 17:28:23 ----A---- C:\Windows\system32\XAudio2_0.dll
2010-01-07 17:28:23 ----A---- C:\Windows\system32\xactengine3_0.dll
2010-01-07 17:28:23 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2010-01-07 17:28:22 ----A---- C:\Windows\system32\d3dx10_37.dll
2010-01-07 17:28:22 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2010-01-07 17:28:21 ----A---- C:\Windows\system32\D3DX9_37.dll
2010-01-07 17:28:20 ----A---- C:\Windows\system32\xactengine2_10.dll
2010-01-07 17:28:19 ----A---- C:\Windows\system32\d3dx10_36.dll
2010-01-07 17:28:19 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2010-01-07 17:28:18 ----A---- C:\Windows\system32\xactengine2_9.dll
2010-01-07 17:28:18 ----A---- C:\Windows\system32\d3dx9_36.dll
2010-01-07 17:28:17 ----A---- C:\Windows\system32\d3dx10_35.dll
2010-01-07 17:28:17 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2010-01-07 17:28:16 ----A---- C:\Windows\system32\xactengine2_8.dll
2010-01-07 17:28:16 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2010-01-07 17:28:16 ----A---- C:\Windows\system32\d3dx9_35.dll
2010-01-07 17:28:15 ----A---- C:\Windows\system32\d3dx10_34.dll
2010-01-07 17:28:15 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2010-01-07 17:28:14 ----A---- C:\Windows\system32\xinput1_3.dll
2010-01-07 17:28:14 ----A---- C:\Windows\system32\d3dx9_34.dll
2010-01-07 17:28:13 ----A---- C:\Windows\system32\xactengine2_7.dll
2010-01-07 17:28:13 ----A---- C:\Windows\system32\d3dx10_33.dll
2010-01-07 17:28:12 ----A---- C:\Windows\system32\d3dx9_33.dll
2010-01-07 17:28:12 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2010-01-07 17:28:11 ----A---- C:\Windows\system32\xactengine2_6.dll
2010-01-07 17:28:11 ----A---- C:\Windows\system32\xactengine2_5.dll
2010-01-07 17:28:10 ----A---- C:\Windows\system32\d3dx10.dll
2010-01-07 17:28:09 ----A---- C:\Windows\system32\d3dx9_32.dll
2010-01-07 17:28:08 ----A---- C:\Windows\system32\xactengine2_4.dll
2010-01-07 17:28:08 ----A---- C:\Windows\system32\x3daudio1_1.dll
2010-01-07 17:28:08 ----A---- C:\Windows\system32\d3dx9_31.dll
2010-01-07 17:28:07 ----A---- C:\Windows\system32\xactengine2_3.dll
2010-01-07 17:28:06 ----A---- C:\Windows\system32\xinput1_2.dll
2010-01-07 17:28:06 ----A---- C:\Windows\system32\xinput1_1.dll
2010-01-07 17:28:06 ----A---- C:\Windows\system32\xactengine2_2.dll
2010-01-07 17:28:06 ----A---- C:\Windows\system32\xactengine2_1.dll
2010-01-07 17:28:00 ----A---- C:\Windows\system32\d3dx9_30.dll
2010-01-07 17:27:59 ----A---- C:\Windows\system32\xactengine2_0.dll
2010-01-07 17:27:59 ----A---- C:\Windows\system32\x3daudio1_0.dll
2010-01-07 17:27:58 ----A---- C:\Windows\system32\d3dx9_29.dll
2010-01-07 17:27:57 ----A---- C:\Windows\system32\d3dx9_28.dll
2010-01-07 17:27:56 ----A---- C:\Windows\system32\d3dx9_26.dll
2010-01-07 17:25:23 ----D---- C:\Program Files (x86)\Ubisoft
2010-01-04 21:45:35 ----D---- C:\Users\Jan\AppData\Roaming\Apple Computer
2010-01-04 21:44:52 ----D---- C:\Program Files (x86)\Bonjour
2010-01-04 21:44:25 ----D---- C:\ProgramData\Apple Computer
2010-01-04 21:44:14 ----D---- C:\ProgramData\Apple
2010-01-04 21:44:14 ----D---- C:\Program Files (x86)\Apple Software Update
2010-01-04 20:36:58 ----D---- C:\Windows\Sun
2010-01-03 22:01:04 ----D---- C:\Program Files (x86)\FLVPlayer
2010-01-03 21:45:49 ----D---- C:\Program Files (x86)\BitLord
2010-01-01 18:16:40 ----D---- C:\Program Files (x86)\Games
======List of files/folders modified in the last 1 months======
2010-01-31 11:18:05 ----D---- C:\Windows\Temp
2010-01-31 11:16:47 ----RD---- C:\Program Files (x86)
2010-01-31 11:09:56 ----D---- C:\Program Files (x86)\Mozilla Firefox
2010-01-31 11:09:18 ----D---- C:\Windows\Tasks
2010-01-30 22:38:26 ----A---- C:\Windows\system32\PnkBstrB.exe
2010-01-30 20:55:23 ----SHD---- C:\System Volume Information
2010-01-30 17:40:15 ----D---- C:\Shoty
2010-01-30 16:46:51 ----D---- C:\Windows
2010-01-30 15:57:38 ----SHD---- C:\Windows\Installer
2010-01-30 12:11:58 ----RD---- C:\Program Files
2010-01-30 11:53:53 ----A---- C:\Windows\system32\PnkBstrA.exe
2010-01-30 11:53:53 ----A---- C:\Windows\system32\pbsvc.exe
2010-01-30 11:46:06 ----D---- C:\Windows\System32
2010-01-30 11:46:06 ----D---- C:\Windows\inf
2010-01-29 19:23:28 ----D---- C:\Users\Jan\AppData\Roaming\Skype
2010-01-29 18:24:35 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2010-01-29 17:40:27 ----RSD---- C:\Windows\assembly
2010-01-29 17:21:27 ----D---- C:\Windows\SysWOW64
2010-01-29 16:06:24 ----D---- C:\Users\Jan\AppData\Roaming\skypePM
2010-01-29 12:26:15 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy
2010-01-28 20:17:55 ----D---- C:\ProgramData\Spybot - Search & Destroy
2010-01-28 17:21:11 ----D---- C:\Windows\Prefetch
2010-01-28 14:25:21 ----D---- C:\Users\Jan\AppData\Roaming\IObit
2010-01-28 14:19:02 ----D---- C:\Windows\system32\config
2010-01-27 21:08:49 ----D---- C:\Program Files (x86)\Common Files\InstallShield
2010-01-27 21:08:37 ----D---- C:\Program Files (x86)\EA GAMES
2010-01-27 20:21:17 ----D---- C:\Windows\winsxs
2010-01-27 17:53:20 ----D---- C:\Program Files (x86)\Internet Explorer
2010-01-25 22:09:20 ----HD---- C:\ProgramData
2010-01-25 22:09:19 ----D---- C:\Program Files (x86)\Common Files
2010-01-24 22:19:02 ----D---- C:\Users\Jan\AppData\Roaming\Adobe
2010-01-24 22:13:28 ----D---- C:\Program Files (x86)\Common Files\Adobe
2010-01-24 22:11:45 ----RSD---- C:\Windows\Fonts
2010-01-24 22:11:31 ----D---- C:\Program Files (x86)\Adobe
2010-01-24 21:26:10 ----A---- C:\Windows\win.ini
2010-01-22 17:15:44 ----D---- C:\Program Files (x86)\Java
2010-01-17 22:28:29 ----SHD---- C:\$RECYCLE.BIN
2010-01-17 18:09:24 ----D---- C:\Program Files (x86)\Common Files\microsoft shared
2010-01-15 17:48:59 ----D---- C:\Program Files (x86)\Common Files\Wise Installation Wizard
2010-01-14 22:14:27 ----D---- C:\Windows\debug
2010-01-13 22:28:41 ----D---- C:\Users\Jan\AppData\Roaming\DAEMON Tools Lite
2010-01-13 19:46:07 ----D---- C:\ProgramData\Adobe
2010-01-10 20:37:10 ----D---- C:\Windows\Corel
2010-01-10 13:16:29 ----D---- C:\Windows\Downloaded Program Files
POKRAČOVÁNÍ