prosím o kontrolu logu...
Napsal: 16 úno 2010 19:11
Logfile of random's system information tool 1.06 (written by random/random)
Run by Admin at 2010-02-16 19:10:05
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 87 GB (57%) free of 153 GB
Total RAM: 3071 MB (71% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:10:19, on 16.2.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Creative\Shared Files\CTAudSvc.exe
C:\Program Files\AskBarDis\bar\bin\AskService.exe
C:\Program Files\MSI\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\tcpsvcs.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\system32\CTHELPER.EXE
C:\WINDOWS\tsnpstd3.exe
C:\WINDOWS\vsnpstd3.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TC UP\PLUGINS\Media\uTorrent\uTorrent.exe
C:\Program Files\ICQ7.0\ICQ.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Admin\Dokumenty\Install\RSIT.exe
C:\Program Files\trend micro\Admin.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.zonelabs.com/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: ZoneAlarm Spy Blocker Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [tsnpstd3] C:\WINDOWS\tsnpstd3.exe
O4 - HKLM\..\Run: [snpstd3] C:\WINDOWS\vsnpstd3.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\TC UP\PLUGINS\Media\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7.0\ICQ.exe" silent loginmode=4
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Webshots.lnk = C:\Program Files\Webshots\Launcher.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\MSI\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\MSI\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\MSI\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 5985630437
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwar ... /CTPID.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{2DCCF6B3-95E2-4288-B6C5-B9A035737551}: NameServer = 194.108.158.1
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ASKService - Unknown owner - C:\Program Files\AskBarDis\bar\bin\AskService.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - WIDCOMM, Inc. - C:\Program Files\MSI\Bluetooth Software\bin\btwdins.exe
O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files\Creative\Shared Files\CTAudSvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
--
End of file - 9239 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\User_Feed_Synchronization-{E95D08AC-BEE2-4844-B8BD-E5603F2D69C4}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}]
AskBar BHO - C:\Program Files\AskBarDis\bar\bin\askBar.dll [2008-10-16 333192]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08 804136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{3041d03e-fd4b-44e0-b742-2d9b88305f98} - ZoneAlarm Spy Blocker Toolbar - C:\Program Files\AskBarDis\bar\bin\askBar.dll [2008-10-16 333192]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2010-01-11 110696]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2010-01-11 13666408]
"ZoneAlarm Client"=C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe [2009-02-16 981384]
"CTHelper"=C:\WINDOWS\system32\CTHELPER.EXE [2009-06-23 19456]
"tsnpstd3"=C:\WINDOWS\tsnpstd3.exe [2005-12-20 94208]
"snpstd3"=C:\WINDOWS\vsnpstd3.exe [2005-09-05 339968]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"VirtualCloneDrive"=C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [2009-05-26 85160]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"uTorrent"=C:\Program Files\TC UP\PLUGINS\Media\uTorrent\uTorrent.exe [2009-12-25 289584]
"ICQ"=C:\Program Files\ICQ7.0\ICQ.exe [2010-02-11 133368]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
BTTray.lnk - C:\Program Files\MSI\Bluetooth Software\BTTray.exe
Windows Search.lnk - C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\Documents and Settings\Admin\Nabídka Start\Programy\Po spuštění
Webshots.lnk - C:\Program Files\Webshots\Launcher.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 239616]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2009-05-24 304128]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ7.0\ICQ.exe"="C:\Program Files\ICQ7.0\ICQ.exe:*:Enabled:ICQ7"
"C:\Program Files\ICQ7.0\aolload.exe"="C:\Program Files\ICQ7.0\aolload.exe:*:Enabled:aolload.exe"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Program Files\TC UP\PLUGINS\Media\uTorrent\utorrent.exe"="C:\Program Files\TC UP\PLUGINS\Media\uTorrent\utorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\TeamViewer\Version5\TeamViewer.exe"="C:\Program Files\TeamViewer\Version5\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ7.0\ICQ.exe"="C:\Program Files\ICQ7.0\ICQ.exe:*:Enabled:ICQ7"
"C:\Program Files\ICQ7.0\aolload.exe"="C:\Program Files\ICQ7.0\aolload.exe:*:Enabled:aolload.exe"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{eda67af5-18b9-11df-844c-0019dbf2a944}]
shell\AutoRun\command - I:\Support\AutoRun\AutoRun.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{f839ea5c-17b5-11df-8444-0019dbf2a944}]
shell\AutoRun\command - J:\setup.exe
======File associations======
.inf - open - "C:\Program Files\TC UP\PLUGINS\Media\Notepad++\notepad++.exe" "%1"
.inf - install -
.ini - open - "C:\Program Files\TC UP\PLUGINS\Media\Notepad++\notepad++.exe" "%1"
.js - edit -
.js - open - "C:\Program Files\TC UP\PLUGINS\Media\HateML\HateML.exe" "%1"
.scr - open - "C:\Program Files\TC UP\PLUGINS\Media\XnView\xnview.exe" "%1"
.scr - install -
.scr - config -
.txt - open - "C:\Program Files\TC UP\PLUGINS\Media\Notepad++\notepad++.exe" "%1"
======List of files/folders created in the last 1 months======
2010-02-16 19:10:05 ----D---- C:\rsit
2010-02-16 19:10:05 ----D---- C:\Program Files\trend micro
2010-02-16 18:57:09 ----A---- C:\ComboFix.txt
2010-02-16 18:46:50 ----A---- C:\WINDOWS\ntbtlog.txt
2010-02-16 16:03:51 ----D---- C:\Documents and Settings\Admin\Data aplikací\Webshots
2010-02-16 16:03:27 ----D---- C:\Program Files\Webshots
2010-02-16 15:38:22 ----A---- C:\WINDOWS\system32\d3dx10_42.dll
2010-02-16 15:38:21 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2010-02-16 15:38:03 ----D---- C:\WINDOWS\Logs
2010-02-16 15:37:49 ----D---- C:\WINDOWS\system32\xlive
2010-02-16 15:37:48 ----D---- C:\Program Files\Microsoft Games for Windows - LIVE
2010-02-16 15:36:30 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2010-02-16 15:36:30 ----A---- C:\WINDOWS\system32\x3daudio1_2.dll
2010-02-16 15:36:29 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2010-02-16 15:36:29 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2010-02-16 15:36:28 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2010-02-16 15:36:27 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2010-02-16 15:36:26 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2010-02-16 15:36:24 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2010-02-16 15:36:24 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2010-02-16 15:36:21 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2010-02-16 15:36:20 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2010-02-16 15:36:19 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2010-02-16 15:36:16 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2010-02-16 15:36:16 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2010-02-16 15:36:15 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2010-02-16 15:36:14 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2010-02-16 15:36:12 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2010-02-16 15:36:11 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2010-02-16 15:36:10 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2010-02-16 15:36:09 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2010-02-16 15:35:46 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2010-02-16 15:35:42 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2010-02-16 15:35:42 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2010-02-16 15:35:41 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2010-02-16 15:00:11 ----D---- C:\Program Files\2K Games
2010-02-16 14:17:13 ----D---- C:\Program Files\GRISOFT
2010-02-16 13:41:19 ----D---- C:\Documents and Settings\Admin\Data aplikací\Ashampoo
2010-02-16 13:41:08 ----D---- C:\Documents and Settings\All Users\Data aplikací\ashampoo
2010-02-16 13:40:59 ----D---- C:\Program Files\Ashampoo
2010-02-15 13:01:24 ----D---- C:\Program Files\Legion
2010-02-15 13:01:15 ----A---- C:\WINDOWS\system32\VB5StKit.dll
2010-02-15 13:01:15 ----A---- C:\WINDOWS\ST5UNST.EXE
2010-02-15 12:59:20 ----D---- C:\Program Files\N-Stealth Free Edition
2010-02-15 12:49:00 ----A---- C:\WINDOWS\UnGins.exe
2010-02-15 12:48:59 ----D---- C:\Program Files\ShadowScan
2010-02-15 12:42:58 ----D---- C:\Program Files\LanTricks
2010-02-15 12:41:20 ----D---- C:\Program Files\johnyTech
2010-02-15 12:34:51 ----D---- C:\xxxx
2010-02-14 23:38:06 ----D---- C:\Downloads
2010-02-14 17:24:44 ----D---- C:\Program Files\Hide Your IP Address
2010-02-14 17:09:11 ----D---- C:\Program Files\USDownloader
2010-02-14 17:00:56 ----D---- C:\Program Files\ophcrack
2010-02-14 14:07:08 ----D---- C:\Documents and Settings\Admin\Data aplikací\TeamViewer
2010-02-14 14:06:52 ----D---- C:\Program Files\TeamViewer
2010-02-14 01:16:54 ----A---- C:\WINDOWS\{00000001-00000000-00000000-00001102-00000004-00521102}.BAK
2010-02-14 00:18:49 ----AT---- C:\WINDOWS\system32\SIntfNT.dll
2010-02-14 00:18:49 ----AT---- C:\WINDOWS\system32\SIntf32.dll
2010-02-14 00:18:49 ----AT---- C:\WINDOWS\system32\SIntf16.dll
2010-02-14 00:17:19 ----A---- C:\WINDOWS\DIIUnin.exe
2010-02-14 00:16:33 ----D---- C:\Program Files\Diablo II
2010-02-13 17:47:55 ----D---- C:\Documents and Settings\Admin\Data aplikací\FSW2
2010-02-13 17:42:56 ----D---- C:\Documents and Settings\Admin\Data aplikací\Xfire
2010-02-13 17:42:50 ----SD---- C:\Program Files\Xfire
2010-02-13 17:41:04 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2010-02-13 17:41:03 ----A---- C:\WINDOWS\system32\xinput9_1_0.dll
2010-02-13 17:41:02 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2010-02-13 17:41:00 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2010-02-13 17:40:59 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2010-02-13 17:40:57 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2010-02-13 17:38:22 ----D---- C:\Program Files\THQ
2010-02-13 17:33:22 ----D---- C:\Program Files\Elaborate Bytes
2010-02-13 16:36:45 ----D---- C:\Program Files\DAEMON Tools Lite
2010-02-12 20:52:47 ----HDC---- C:\WINDOWS\$NtUninstallKB961503$
2010-02-12 20:52:32 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2010-02-12 20:52:15 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2010-02-12 20:52:02 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2010-02-12 20:51:46 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2010-02-12 20:45:21 ----N---- C:\WINDOWS\system32\spmsg2.dll
2010-02-12 20:45:19 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2010-02-12 19:33:02 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$
2010-02-12 19:14:06 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2010-02-12 19:14:06 ----A---- C:\WINDOWS\system32\mucltui.dll
2010-02-12 18:50:10 ----D---- C:\Program Files\CCleaner
2010-02-12 18:48:42 ----D---- C:\Program Files\VirusTotalUploader
2010-02-12 18:47:44 ----D---- C:\Documents and Settings\Admin\Data aplikací\Mikrotik
2010-02-12 18:33:46 ----D---- C:\Program Files\Smart Projects
2010-02-12 18:31:24 ----D---- C:\Documents and Settings\Admin\Data aplikací\XnView
2010-02-12 17:33:37 ----D---- C:\Documents and Settings\Admin\Data aplikací\Windows Search
2010-02-12 17:31:10 ----HDC---- C:\WINDOWS\$NtUninstallKB977165$
2010-02-12 17:30:59 ----HDC---- C:\WINDOWS\$NtUninstallKB971513$
2010-02-12 17:29:11 ----D---- C:\Program Files\Microsoft Sync Framework
2010-02-12 17:28:24 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2010-02-12 17:28:11 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2010-02-12 17:27:09 ----D---- C:\Program Files\Microsoft
2010-02-12 17:26:50 ----D---- C:\Program Files\Windows Live SkyDrive
2010-02-12 17:26:39 ----D---- C:\Program Files\Windows Live
2010-02-12 17:15:31 ----D---- C:\Program Files\Common Files\Windows Live
2010-02-12 17:10:59 ----D---- C:\WINDOWS\system32\XPSViewer
2010-02-12 17:10:54 ----D---- C:\WINDOWS\system32\en-US
2010-02-12 17:10:48 ----D---- C:\Program Files\Reference Assemblies
2010-02-12 17:10:29 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2010-02-12 17:10:29 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2010-02-12 17:10:29 ----N---- C:\WINDOWS\system32\prntvpt.dll
2010-02-12 17:10:29 ----D---- C:\b87aaee7f7012996d4
2010-02-12 17:06:42 ----HDC---- C:\WINDOWS\$NtUninstallKB963093$
2010-02-12 17:06:28 ----HDC---- C:\WINDOWS\$NtUninstallbasecsp$
2010-02-12 17:06:19 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-02-12 17:06:18 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2010-02-12 17:05:57 ----D---- C:\Program Files\Windows Media Connect 2
2010-02-12 17:05:51 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2010-02-12 17:04:56 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2010-02-12 17:04:18 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2010-02-12 17:02:08 ----RSD---- C:\WINDOWS\assembly
2010-02-12 17:02:08 ----D---- C:\WINDOWS\Microsoft.NET
2010-02-12 17:02:06 ----D---- C:\WINDOWS\system32\URTTemp
2010-02-12 14:14:47 ----D---- C:\Documents and Settings\Admin\Data aplikací\Windows Desktop Search
2010-02-12 14:11:37 ----D---- C:\Program Files\Windows Desktop Search
2010-02-12 14:11:36 ----D---- C:\WINDOWS\system32\GroupPolicy
2010-02-12 14:11:23 ----HDC---- C:\WINDOWS\$NtUninstallKB940157$
2010-02-12 14:11:11 ----HDC---- C:\WINDOWS\$NtUninstallKB915800-v4$
2010-02-12 13:29:30 ----D---- C:\Documents and Settings\Admin\Data aplikací\SumatraPDF
2010-02-12 11:54:02 ----D---- C:\Program Files\Microsoft Silverlight
2010-02-12 10:30:42 ----A---- C:\WINDOWS\system32\mdimon.dll
2010-02-12 10:30:33 ----A---- C:\WINDOWS\system32\msonpmon.dll
2010-02-12 10:29:47 ----D---- C:\Program Files\Microsoft Works
2010-02-12 10:29:32 ----D---- C:\Program Files\MSBuild
2010-02-12 10:29:02 ----D---- C:\Program Files\Microsoft Visual Studio
2010-02-12 10:29:01 ----D---- C:\Program Files\Common Files\DESIGNER
2010-02-12 10:27:40 ----D---- C:\Program Files\Common Files\ODBC
2010-02-12 10:25:26 ----D---- C:\WINDOWS\SHELLNEW
2010-02-12 10:25:13 ----D---- C:\Program Files\Microsoft Office
2010-02-12 10:25:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-02-12 10:24:58 ----RD---- C:\MSOCache
2010-02-12 10:06:10 ----D---- C:\Program Files\Setup Files
2010-02-12 09:55:04 ----D---- C:\WINDOWS\pss
2010-02-12 09:44:37 ----D---- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Pro
2010-02-12 09:44:37 ----D---- C:\Documents and Settings\Admin\Data aplikací\DAEMON Tools Pro
2010-02-12 09:34:33 ----D---- C:\WINDOWS\system32\LogFiles
2010-02-12 09:15:59 ----A---- C:\Boot.bak
2010-02-12 09:15:51 ----RASHD---- C:\cmdcons
2010-02-12 09:14:58 ----A---- C:\WINDOWS\PEV.exe
2010-02-12 09:14:58 ----A---- C:\WINDOWS\NIRCMD.exe
2010-02-12 09:14:58 ----A---- C:\WINDOWS\MBR.exe
2010-02-12 09:14:57 ----A---- C:\WINDOWS\zip.exe
2010-02-12 09:14:57 ----A---- C:\WINDOWS\SWXCACLS.exe
2010-02-12 09:14:57 ----A---- C:\WINDOWS\SWSC.exe
2010-02-12 09:14:57 ----A---- C:\WINDOWS\SWREG.exe
2010-02-12 09:14:57 ----A---- C:\WINDOWS\sed.exe
2010-02-12 09:14:57 ----A---- C:\WINDOWS\grep.exe
2010-02-12 09:14:44 ----D---- C:\WINDOWS\ERDNT
2010-02-12 09:14:22 ----D---- C:\Qoobox
2010-02-11 23:32:22 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-02-11 23:32:14 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2010-02-11 23:32:08 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2010-02-11 23:32:04 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-02-11 23:32:01 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-02-11 23:31:52 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2010-02-11 23:31:48 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-02-11 23:31:40 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-02-11 23:02:22 ----HD---- C:\Program Files\Uninstall Information
2010-02-11 22:26:11 ----HDC---- C:\WINDOWS\$NtUninstallKB978262$
2010-02-11 22:26:03 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-02-11 22:25:56 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-02-11 22:25:48 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-02-11 22:25:41 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-02-11 22:25:34 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-02-11 22:25:27 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-02-11 22:25:20 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2010-02-11 22:25:11 ----HDC---- C:\WINDOWS\$NtUninstallKB978207$
2010-02-11 22:25:05 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-02-11 22:24:58 ----HDC---- C:\WINDOWS\$NtUninstallKB976098-v2$
2010-02-11 22:23:37 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-02-11 22:23:30 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-02-11 22:23:23 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-02-11 22:22:39 ----D---- C:\WINDOWS\ie8updates
2010-02-11 22:22:10 ----D---- C:\WINDOWS\WBEM
2010-02-11 22:21:49 ----HDC---- C:\WINDOWS\ie8
2010-02-11 22:19:56 ----A---- C:\WINDOWS\system32\MRT.exe
2010-02-11 21:13:29 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-02-11 21:13:23 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-02-11 21:13:18 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-02-11 21:13:12 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-02-11 21:13:06 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-02-11 21:13:01 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-02-11 21:12:55 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-02-11 21:12:46 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-02-11 21:12:39 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-02-11 21:12:33 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-02-11 21:12:28 ----HDC---- C:\WINDOWS\$NtUninstallKB978251$
2010-02-11 21:12:22 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-02-11 21:12:17 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-02-11 21:12:11 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-02-11 21:12:05 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-02-11 21:11:59 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-02-11 21:11:52 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-02-11 21:11:46 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-02-11 21:11:41 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-02-11 21:11:36 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-02-11 21:11:30 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-02-11 21:11:24 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-02-11 21:11:17 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-02-11 21:11:12 ----HDC---- C:\WINDOWS\$NtUninstallKB950760$
2010-02-11 21:11:07 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2010-02-11 21:11:02 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-02-11 21:10:56 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-02-11 21:10:44 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-02-11 21:10:39 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-02-11 21:10:32 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2010-02-11 21:10:26 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-02-11 21:10:22 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-02-11 21:10:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-02-11 21:10:12 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-02-11 21:10:07 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-02-11 21:10:02 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-02-11 21:09:57 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-02-11 21:09:50 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-02-11 21:09:42 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-02-11 21:09:34 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-02-11 21:07:23 ----D---- C:\WINDOWS\Prefetch
2010-02-11 20:47:37 ----D---- C:\WINDOWS\ServicePackFiles
2010-02-11 20:42:37 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-02-11 20:11:22 ----D---- C:\Documents and Settings\All Users\Data aplikací\Creative
2010-02-11 20:01:09 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2010-02-11 19:36:26 ----D---- C:\Documents and Settings\Admin\Data aplikací\DAEMON Tools Lite
2010-02-11 19:36:24 ----D---- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
2010-02-11 19:34:55 ----D---- C:\WINDOWS\system32\cs-cz
2010-02-11 19:34:54 ----D---- C:\WINDOWS\l2schemas
2010-02-11 19:34:53 ----D---- C:\WINDOWS\system32\cs
2010-02-11 19:34:53 ----D---- C:\WINDOWS\system32\bits
2010-02-11 19:33:13 ----D---- C:\Documents and Settings\Admin\Data aplikací\skypePM
2010-02-11 19:31:22 ----D---- C:\WINDOWS\network diagnostic
2010-02-11 19:30:09 ----N---- C:\WINDOWS\system32\mspmsnsv.dll
2010-02-11 19:30:09 ----A---- C:\WINDOWS\system32\wmvdmoe2.dll
2010-02-11 19:30:09 ----A---- C:\WINDOWS\system32\WMSPDMOE.dll
2010-02-11 19:30:09 ----A---- C:\WINDOWS\system32\wmspdmod.dll
2010-02-11 19:30:09 ----A---- C:\WINDOWS\system32\wmsdmoe2.dll
2010-02-11 19:30:09 ----A---- C:\WINDOWS\system32\wmpdxm.dll
2010-02-11 19:30:09 ----A---- C:\WINDOWS\system32\wmpasf.dll
2010-02-11 19:30:09 ----A---- C:\WINDOWS\system32\wmp.dll
2010-02-11 19:30:09 ----A---- C:\WINDOWS\system32\wmidx.dll
2010-02-11 19:30:09 ----A---- C:\WINDOWS\system32\wmerror.dll
2010-02-11 19:30:09 ----A---- C:\WINDOWS\system32\MP4SDMOD.dll
2010-02-11 19:30:08 ----A---- C:\WINDOWS\system32\MP43DMOD.dll
2010-02-11 19:30:08 ----A---- C:\WINDOWS\system32\hccoin.dll
2010-02-11 19:30:08 ----A---- C:\WINDOWS\system32\fsquirt.exe
2010-02-11 19:30:08 ----A---- C:\WINDOWS\system32\bthserv.dll
2010-02-11 19:30:08 ----A---- C:\WINDOWS\system32\bthci.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\xpsp2res.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\xpsp1res.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\xpob2res.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\wshbth.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\sdhcinst.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\mstscax.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\mstsc.exe
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\ir50_qcx.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\ir50_qc.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\ir50_32.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\ir41_qcx.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\ir41_qc.dll
2010-02-11 19:30:03 ----N---- C:\WINDOWS\system32\wscntfy.exe
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\w3ssl.dll
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\pnrpnsp.dll
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\pidgen.dll
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\p2pgasvc.dll
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\logman.exe
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\kbdukx.dll
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\extmgr.dll
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\encdec.dll
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\dxdiagn.dll
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\dsprpres.dll
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\dpcdll.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\sbeio.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\sbe.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\p2psvc.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\p2pgraph.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\msftedit.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\msdadiag.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\kbdsmsno.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\kbdmlt47.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\kbdfi1.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\httpapi.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\fltlib.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2010-02-11 19:30:01 ----N---- C:\WINDOWS\system32\xmlprov.dll
2010-02-11 19:30:01 ----N---- C:\WINDOWS\system32\qmgr.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\xmlprovi.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\winbrand.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\twext.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\spnpinst.exe
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\smbinst.exe
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\proxycfg.exe
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\p2pnetsh.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\mssap.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\kbdinmal.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\kbdinbe1.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\iuengine.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\fwcfg.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\d3d9.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\cmsetacl.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\btpanui.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\wuauserv.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\wscsvc.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\winshfhc.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\winhttp.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\strmfilt.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\powercfg.exe
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\p2p.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\kbdsmsfi.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\kbdno1.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\kbdmlt48.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\kbdmaori.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\kbdinben.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\fltmc.exe
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\encapi.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\blastcln.exe
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\auditusr.exe
2010-02-11 19:29:44 ----N---- C:\WINDOWS\explorer.exe
2010-02-11 19:29:44 ----A---- C:\WINDOWS\winhlp32.exe
2010-02-11 19:29:44 ----A---- C:\WINDOWS\twain_32.dll
2010-02-11 19:29:44 ----A---- C:\WINDOWS\regedit.exe
2010-02-11 19:29:44 ----A---- C:\WINDOWS\hh.exe
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\authz.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\audiosrv.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\attrib.exe
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\atmlib.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\atmfd.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\atmadm.exe
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\atl.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\at.exe
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\asycfilt.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\asferror.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\apphelp.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\amstream.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\alrsvc.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\alg.exe
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\ahui.exe
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\advpack.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\adsnt.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\adsmsext.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\adsldpc.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\adsldp.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\admparse.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\actxprxy.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\actmovie.exe
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\activeds.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\aclui.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\accwiz.exe
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\6to4svc.dll
2010-02-11 19:29:42 ----N---- C:\WINDOWS\system32\browser.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\cewmdm.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\certmgr.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\certcli.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\cdosys.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\cdfview.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\catsrvut.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\catsrvps.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\catsrv.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\capesnpn.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\camocx.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\cabview.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\cabinet.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\browsewm.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\browseui.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\browselc.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\blackbox.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\bidispl.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\batt.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\batmeter.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\basesrv.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\avifil32.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\autolfn.exe
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\autofmt.exe
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\comsnap.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\comres.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\comrepl.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\compstui.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\compatui.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\comaddin.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\colbact.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cnbjmon.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cmutil.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cmstp.exe
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cmprops.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cmmon32.exe
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cmdl32.exe
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cmdial32.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cmcfg32.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\clusapi.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\clipsrv.exe
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\clipbrd.exe
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cliconfg.exe
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cliconfg.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cleanmgr.exe
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\clbcatq.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\clbcatex.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cisvc.exe
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\ciodm.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cic.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cfgmgr32.dll
2010-02-11 19:29:40 ----N---- C:\WINDOWS\system32\ctfmon.exe
2010-02-11 19:29:40 ----N---- C:\WINDOWS\system32\cryptsvc.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\datime.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\dataclen.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\danim.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\d3dim700.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\d3d8thk.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\d3d8.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\csrss.exe
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\cscui.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\cscript.exe
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\cscdll.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\cryptui.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\cryptnet.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\cryptext.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\cryptdll.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\cryptdlg.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\crypt32.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\credui.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\corpol.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\conime.exe
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\confmsp.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\comuid.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\comsvcs.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dmdlgs.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dmcompos.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dmband.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dmadmin.exe
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dllhost.exe
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dispex.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\diskpart.exe
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\diskcopy.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dinput8.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dinput.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\digest.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\diantz.exe
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dhcpmon.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dgnet.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dfsshlex.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dfrgui.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dfrgsnap.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dfrgntfs.exe
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dfrgfat.exe
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\devmgr.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\devenum.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\defrag.exe
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\ddrawex.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\ddraw.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\ddeshare.exe
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dciman32.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dbnmpntw.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dbnetlib.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dbmsrpcn.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dbghelp.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\davclnt.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dsound.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dskquoui.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dskquota.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dsdmoprp.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dsdmo.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\ds32gt.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\drprov.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\drmv2clt.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\drmstor.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\drmclien.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpwsockx.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpvvox.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpvsetup.exe
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpvoice.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpvacm.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpnsvr.exe
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpnlobby.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpnhupnp.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpnhpast.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpnet.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpnaddr.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpmodemx.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dplayx.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dplaysvr.exe
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\docprop2.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dnsapi.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dmutil.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dmusic.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dmsynth.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dmstyle.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dmserver.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dmscript.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dmremote.exe
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dmloader.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dmime.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dmdskmgr.dll
2010-02-11 19:29:37 ----N---- C:\WINDOWS\system32\es.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\ersvc.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\els.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dxtrans.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dxmasf.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dxdiag.exe
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dx8vb.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dx7vb.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dwwin.exe
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dvdupgrd.exe
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\duser.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dumprep.exe
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dswave.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dsuiext.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dssenh.dll
Run by Admin at 2010-02-16 19:10:05
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 87 GB (57%) free of 153 GB
Total RAM: 3071 MB (71% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:10:19, on 16.2.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Creative\Shared Files\CTAudSvc.exe
C:\Program Files\AskBarDis\bar\bin\AskService.exe
C:\Program Files\MSI\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\tcpsvcs.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\system32\CTHELPER.EXE
C:\WINDOWS\tsnpstd3.exe
C:\WINDOWS\vsnpstd3.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TC UP\PLUGINS\Media\uTorrent\uTorrent.exe
C:\Program Files\ICQ7.0\ICQ.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Admin\Dokumenty\Install\RSIT.exe
C:\Program Files\trend micro\Admin.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.zonelabs.com/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: ZoneAlarm Spy Blocker Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [tsnpstd3] C:\WINDOWS\tsnpstd3.exe
O4 - HKLM\..\Run: [snpstd3] C:\WINDOWS\vsnpstd3.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\TC UP\PLUGINS\Media\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7.0\ICQ.exe" silent loginmode=4
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Webshots.lnk = C:\Program Files\Webshots\Launcher.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\MSI\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe
O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\MSI\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\MSI\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 5985630437
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwar ... /CTPID.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{2DCCF6B3-95E2-4288-B6C5-B9A035737551}: NameServer = 194.108.158.1
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ASKService - Unknown owner - C:\Program Files\AskBarDis\bar\bin\AskService.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Bluetooth Service (btwdins) - WIDCOMM, Inc. - C:\Program Files\MSI\Bluetooth Software\bin\btwdins.exe
O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files\Creative\Shared Files\CTAudSvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
--
End of file - 9239 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\User_Feed_Synchronization-{E95D08AC-BEE2-4844-B8BD-E5603F2D69C4}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}]
AskBar BHO - C:\Program Files\AskBarDis\bar\bin\askBar.dll [2008-10-16 333192]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08 804136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{3041d03e-fd4b-44e0-b742-2d9b88305f98} - ZoneAlarm Spy Blocker Toolbar - C:\Program Files\AskBarDis\bar\bin\askBar.dll [2008-10-16 333192]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2010-01-11 110696]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2010-01-11 13666408]
"ZoneAlarm Client"=C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe [2009-02-16 981384]
"CTHelper"=C:\WINDOWS\system32\CTHELPER.EXE [2009-06-23 19456]
"tsnpstd3"=C:\WINDOWS\tsnpstd3.exe [2005-12-20 94208]
"snpstd3"=C:\WINDOWS\vsnpstd3.exe [2005-09-05 339968]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"VirtualCloneDrive"=C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [2009-05-26 85160]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"uTorrent"=C:\Program Files\TC UP\PLUGINS\Media\uTorrent\uTorrent.exe [2009-12-25 289584]
"ICQ"=C:\Program Files\ICQ7.0\ICQ.exe [2010-02-11 133368]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
BTTray.lnk - C:\Program Files\MSI\Bluetooth Software\BTTray.exe
Windows Search.lnk - C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\Documents and Settings\Admin\Nabídka Start\Programy\Po spuštění
Webshots.lnk - C:\Program Files\Webshots\Launcher.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 239616]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2009-05-24 304128]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ7.0\ICQ.exe"="C:\Program Files\ICQ7.0\ICQ.exe:*:Enabled:ICQ7"
"C:\Program Files\ICQ7.0\aolload.exe"="C:\Program Files\ICQ7.0\aolload.exe:*:Enabled:aolload.exe"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
"C:\Program Files\TC UP\PLUGINS\Media\uTorrent\utorrent.exe"="C:\Program Files\TC UP\PLUGINS\Media\uTorrent\utorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\TeamViewer\Version5\TeamViewer.exe"="C:\Program Files\TeamViewer\Version5\TeamViewer.exe:*:Enabled:Teamviewer Remote Control Application"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ICQ7.0\ICQ.exe"="C:\Program Files\ICQ7.0\ICQ.exe:*:Enabled:ICQ7"
"C:\Program Files\ICQ7.0\aolload.exe"="C:\Program Files\ICQ7.0\aolload.exe:*:Enabled:aolload.exe"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{eda67af5-18b9-11df-844c-0019dbf2a944}]
shell\AutoRun\command - I:\Support\AutoRun\AutoRun.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{f839ea5c-17b5-11df-8444-0019dbf2a944}]
shell\AutoRun\command - J:\setup.exe
======File associations======
.inf - open - "C:\Program Files\TC UP\PLUGINS\Media\Notepad++\notepad++.exe" "%1"
.inf - install -
.ini - open - "C:\Program Files\TC UP\PLUGINS\Media\Notepad++\notepad++.exe" "%1"
.js - edit -
.js - open - "C:\Program Files\TC UP\PLUGINS\Media\HateML\HateML.exe" "%1"
.scr - open - "C:\Program Files\TC UP\PLUGINS\Media\XnView\xnview.exe" "%1"
.scr - install -
.scr - config -
.txt - open - "C:\Program Files\TC UP\PLUGINS\Media\Notepad++\notepad++.exe" "%1"
======List of files/folders created in the last 1 months======
2010-02-16 19:10:05 ----D---- C:\rsit
2010-02-16 19:10:05 ----D---- C:\Program Files\trend micro
2010-02-16 18:57:09 ----A---- C:\ComboFix.txt
2010-02-16 18:46:50 ----A---- C:\WINDOWS\ntbtlog.txt
2010-02-16 16:03:51 ----D---- C:\Documents and Settings\Admin\Data aplikací\Webshots
2010-02-16 16:03:27 ----D---- C:\Program Files\Webshots
2010-02-16 15:38:22 ----A---- C:\WINDOWS\system32\d3dx10_42.dll
2010-02-16 15:38:21 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2010-02-16 15:38:03 ----D---- C:\WINDOWS\Logs
2010-02-16 15:37:49 ----D---- C:\WINDOWS\system32\xlive
2010-02-16 15:37:48 ----D---- C:\Program Files\Microsoft Games for Windows - LIVE
2010-02-16 15:36:30 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2010-02-16 15:36:30 ----A---- C:\WINDOWS\system32\x3daudio1_2.dll
2010-02-16 15:36:29 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2010-02-16 15:36:29 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2010-02-16 15:36:28 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2010-02-16 15:36:27 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2010-02-16 15:36:26 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2010-02-16 15:36:24 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2010-02-16 15:36:24 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2010-02-16 15:36:21 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2010-02-16 15:36:20 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2010-02-16 15:36:19 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2010-02-16 15:36:16 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2010-02-16 15:36:16 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2010-02-16 15:36:15 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2010-02-16 15:36:14 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2010-02-16 15:36:12 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2010-02-16 15:36:11 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2010-02-16 15:36:10 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2010-02-16 15:36:09 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2010-02-16 15:35:46 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2010-02-16 15:35:42 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2010-02-16 15:35:42 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2010-02-16 15:35:41 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2010-02-16 15:00:11 ----D---- C:\Program Files\2K Games
2010-02-16 14:17:13 ----D---- C:\Program Files\GRISOFT
2010-02-16 13:41:19 ----D---- C:\Documents and Settings\Admin\Data aplikací\Ashampoo
2010-02-16 13:41:08 ----D---- C:\Documents and Settings\All Users\Data aplikací\ashampoo
2010-02-16 13:40:59 ----D---- C:\Program Files\Ashampoo
2010-02-15 13:01:24 ----D---- C:\Program Files\Legion
2010-02-15 13:01:15 ----A---- C:\WINDOWS\system32\VB5StKit.dll
2010-02-15 13:01:15 ----A---- C:\WINDOWS\ST5UNST.EXE
2010-02-15 12:59:20 ----D---- C:\Program Files\N-Stealth Free Edition
2010-02-15 12:49:00 ----A---- C:\WINDOWS\UnGins.exe
2010-02-15 12:48:59 ----D---- C:\Program Files\ShadowScan
2010-02-15 12:42:58 ----D---- C:\Program Files\LanTricks
2010-02-15 12:41:20 ----D---- C:\Program Files\johnyTech
2010-02-15 12:34:51 ----D---- C:\xxxx
2010-02-14 23:38:06 ----D---- C:\Downloads
2010-02-14 17:24:44 ----D---- C:\Program Files\Hide Your IP Address
2010-02-14 17:09:11 ----D---- C:\Program Files\USDownloader
2010-02-14 17:00:56 ----D---- C:\Program Files\ophcrack
2010-02-14 14:07:08 ----D---- C:\Documents and Settings\Admin\Data aplikací\TeamViewer
2010-02-14 14:06:52 ----D---- C:\Program Files\TeamViewer
2010-02-14 01:16:54 ----A---- C:\WINDOWS\{00000001-00000000-00000000-00001102-00000004-00521102}.BAK
2010-02-14 00:18:49 ----AT---- C:\WINDOWS\system32\SIntfNT.dll
2010-02-14 00:18:49 ----AT---- C:\WINDOWS\system32\SIntf32.dll
2010-02-14 00:18:49 ----AT---- C:\WINDOWS\system32\SIntf16.dll
2010-02-14 00:17:19 ----A---- C:\WINDOWS\DIIUnin.exe
2010-02-14 00:16:33 ----D---- C:\Program Files\Diablo II
2010-02-13 17:47:55 ----D---- C:\Documents and Settings\Admin\Data aplikací\FSW2
2010-02-13 17:42:56 ----D---- C:\Documents and Settings\Admin\Data aplikací\Xfire
2010-02-13 17:42:50 ----SD---- C:\Program Files\Xfire
2010-02-13 17:41:04 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2010-02-13 17:41:03 ----A---- C:\WINDOWS\system32\xinput9_1_0.dll
2010-02-13 17:41:02 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2010-02-13 17:41:00 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2010-02-13 17:40:59 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2010-02-13 17:40:57 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2010-02-13 17:38:22 ----D---- C:\Program Files\THQ
2010-02-13 17:33:22 ----D---- C:\Program Files\Elaborate Bytes
2010-02-13 16:36:45 ----D---- C:\Program Files\DAEMON Tools Lite
2010-02-12 20:52:47 ----HDC---- C:\WINDOWS\$NtUninstallKB961503$
2010-02-12 20:52:32 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
2010-02-12 20:52:15 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2010-02-12 20:52:02 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2010-02-12 20:51:46 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2010-02-12 20:45:21 ----N---- C:\WINDOWS\system32\spmsg2.dll
2010-02-12 20:45:19 ----HDC---- C:\WINDOWS\$NtUninstallXPSEPSCLP$
2010-02-12 19:33:02 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$
2010-02-12 19:14:06 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2010-02-12 19:14:06 ----A---- C:\WINDOWS\system32\mucltui.dll
2010-02-12 18:50:10 ----D---- C:\Program Files\CCleaner
2010-02-12 18:48:42 ----D---- C:\Program Files\VirusTotalUploader
2010-02-12 18:47:44 ----D---- C:\Documents and Settings\Admin\Data aplikací\Mikrotik
2010-02-12 18:33:46 ----D---- C:\Program Files\Smart Projects
2010-02-12 18:31:24 ----D---- C:\Documents and Settings\Admin\Data aplikací\XnView
2010-02-12 17:33:37 ----D---- C:\Documents and Settings\Admin\Data aplikací\Windows Search
2010-02-12 17:31:10 ----HDC---- C:\WINDOWS\$NtUninstallKB977165$
2010-02-12 17:30:59 ----HDC---- C:\WINDOWS\$NtUninstallKB971513$
2010-02-12 17:29:11 ----D---- C:\Program Files\Microsoft Sync Framework
2010-02-12 17:28:24 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2010-02-12 17:28:11 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2010-02-12 17:27:09 ----D---- C:\Program Files\Microsoft
2010-02-12 17:26:50 ----D---- C:\Program Files\Windows Live SkyDrive
2010-02-12 17:26:39 ----D---- C:\Program Files\Windows Live
2010-02-12 17:15:31 ----D---- C:\Program Files\Common Files\Windows Live
2010-02-12 17:10:59 ----D---- C:\WINDOWS\system32\XPSViewer
2010-02-12 17:10:54 ----D---- C:\WINDOWS\system32\en-US
2010-02-12 17:10:48 ----D---- C:\Program Files\Reference Assemblies
2010-02-12 17:10:29 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2010-02-12 17:10:29 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2010-02-12 17:10:29 ----N---- C:\WINDOWS\system32\prntvpt.dll
2010-02-12 17:10:29 ----D---- C:\b87aaee7f7012996d4
2010-02-12 17:06:42 ----HDC---- C:\WINDOWS\$NtUninstallKB963093$
2010-02-12 17:06:28 ----HDC---- C:\WINDOWS\$NtUninstallbasecsp$
2010-02-12 17:06:19 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-02-12 17:06:18 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2010-02-12 17:05:57 ----D---- C:\Program Files\Windows Media Connect 2
2010-02-12 17:05:51 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2010-02-12 17:04:56 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2010-02-12 17:04:18 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2010-02-12 17:02:08 ----RSD---- C:\WINDOWS\assembly
2010-02-12 17:02:08 ----D---- C:\WINDOWS\Microsoft.NET
2010-02-12 17:02:06 ----D---- C:\WINDOWS\system32\URTTemp
2010-02-12 14:14:47 ----D---- C:\Documents and Settings\Admin\Data aplikací\Windows Desktop Search
2010-02-12 14:11:37 ----D---- C:\Program Files\Windows Desktop Search
2010-02-12 14:11:36 ----D---- C:\WINDOWS\system32\GroupPolicy
2010-02-12 14:11:23 ----HDC---- C:\WINDOWS\$NtUninstallKB940157$
2010-02-12 14:11:11 ----HDC---- C:\WINDOWS\$NtUninstallKB915800-v4$
2010-02-12 13:29:30 ----D---- C:\Documents and Settings\Admin\Data aplikací\SumatraPDF
2010-02-12 11:54:02 ----D---- C:\Program Files\Microsoft Silverlight
2010-02-12 10:30:42 ----A---- C:\WINDOWS\system32\mdimon.dll
2010-02-12 10:30:33 ----A---- C:\WINDOWS\system32\msonpmon.dll
2010-02-12 10:29:47 ----D---- C:\Program Files\Microsoft Works
2010-02-12 10:29:32 ----D---- C:\Program Files\MSBuild
2010-02-12 10:29:02 ----D---- C:\Program Files\Microsoft Visual Studio
2010-02-12 10:29:01 ----D---- C:\Program Files\Common Files\DESIGNER
2010-02-12 10:27:40 ----D---- C:\Program Files\Common Files\ODBC
2010-02-12 10:25:26 ----D---- C:\WINDOWS\SHELLNEW
2010-02-12 10:25:13 ----D---- C:\Program Files\Microsoft Office
2010-02-12 10:25:12 ----D---- C:\Documents and Settings\All Users\Data aplikací\Microsoft Help
2010-02-12 10:24:58 ----RD---- C:\MSOCache
2010-02-12 10:06:10 ----D---- C:\Program Files\Setup Files
2010-02-12 09:55:04 ----D---- C:\WINDOWS\pss
2010-02-12 09:44:37 ----D---- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Pro
2010-02-12 09:44:37 ----D---- C:\Documents and Settings\Admin\Data aplikací\DAEMON Tools Pro
2010-02-12 09:34:33 ----D---- C:\WINDOWS\system32\LogFiles
2010-02-12 09:15:59 ----A---- C:\Boot.bak
2010-02-12 09:15:51 ----RASHD---- C:\cmdcons
2010-02-12 09:14:58 ----A---- C:\WINDOWS\PEV.exe
2010-02-12 09:14:58 ----A---- C:\WINDOWS\NIRCMD.exe
2010-02-12 09:14:58 ----A---- C:\WINDOWS\MBR.exe
2010-02-12 09:14:57 ----A---- C:\WINDOWS\zip.exe
2010-02-12 09:14:57 ----A---- C:\WINDOWS\SWXCACLS.exe
2010-02-12 09:14:57 ----A---- C:\WINDOWS\SWSC.exe
2010-02-12 09:14:57 ----A---- C:\WINDOWS\SWREG.exe
2010-02-12 09:14:57 ----A---- C:\WINDOWS\sed.exe
2010-02-12 09:14:57 ----A---- C:\WINDOWS\grep.exe
2010-02-12 09:14:44 ----D---- C:\WINDOWS\ERDNT
2010-02-12 09:14:22 ----D---- C:\Qoobox
2010-02-11 23:32:22 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-02-11 23:32:14 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2010-02-11 23:32:08 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2010-02-11 23:32:04 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-02-11 23:32:01 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-02-11 23:31:52 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2010-02-11 23:31:48 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-02-11 23:31:40 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-02-11 23:02:22 ----HD---- C:\Program Files\Uninstall Information
2010-02-11 22:26:11 ----HDC---- C:\WINDOWS\$NtUninstallKB978262$
2010-02-11 22:26:03 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-02-11 22:25:56 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-02-11 22:25:48 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-02-11 22:25:41 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-02-11 22:25:34 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-02-11 22:25:27 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-02-11 22:25:20 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2010-02-11 22:25:11 ----HDC---- C:\WINDOWS\$NtUninstallKB978207$
2010-02-11 22:25:05 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-02-11 22:24:58 ----HDC---- C:\WINDOWS\$NtUninstallKB976098-v2$
2010-02-11 22:23:37 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-02-11 22:23:30 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-02-11 22:23:23 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-02-11 22:22:39 ----D---- C:\WINDOWS\ie8updates
2010-02-11 22:22:10 ----D---- C:\WINDOWS\WBEM
2010-02-11 22:21:49 ----HDC---- C:\WINDOWS\ie8
2010-02-11 22:19:56 ----A---- C:\WINDOWS\system32\MRT.exe
2010-02-11 21:13:29 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-02-11 21:13:23 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-02-11 21:13:18 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-02-11 21:13:12 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-02-11 21:13:06 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-02-11 21:13:01 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-02-11 21:12:55 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-02-11 21:12:46 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-02-11 21:12:39 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-02-11 21:12:33 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-02-11 21:12:28 ----HDC---- C:\WINDOWS\$NtUninstallKB978251$
2010-02-11 21:12:22 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-02-11 21:12:17 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-02-11 21:12:11 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-02-11 21:12:05 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-02-11 21:11:59 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-02-11 21:11:52 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-02-11 21:11:46 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-02-11 21:11:41 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-02-11 21:11:36 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-02-11 21:11:30 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-02-11 21:11:24 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-02-11 21:11:17 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-02-11 21:11:12 ----HDC---- C:\WINDOWS\$NtUninstallKB950760$
2010-02-11 21:11:07 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2010-02-11 21:11:02 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-02-11 21:10:56 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-02-11 21:10:44 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-02-11 21:10:39 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-02-11 21:10:32 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2010-02-11 21:10:26 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-02-11 21:10:22 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-02-11 21:10:17 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-02-11 21:10:12 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-02-11 21:10:07 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-02-11 21:10:02 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-02-11 21:09:57 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-02-11 21:09:50 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-02-11 21:09:42 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-02-11 21:09:34 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-02-11 21:07:23 ----D---- C:\WINDOWS\Prefetch
2010-02-11 20:47:37 ----D---- C:\WINDOWS\ServicePackFiles
2010-02-11 20:42:37 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-02-11 20:11:22 ----D---- C:\Documents and Settings\All Users\Data aplikací\Creative
2010-02-11 20:01:09 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2010-02-11 19:36:26 ----D---- C:\Documents and Settings\Admin\Data aplikací\DAEMON Tools Lite
2010-02-11 19:36:24 ----D---- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
2010-02-11 19:34:55 ----D---- C:\WINDOWS\system32\cs-cz
2010-02-11 19:34:54 ----D---- C:\WINDOWS\l2schemas
2010-02-11 19:34:53 ----D---- C:\WINDOWS\system32\cs
2010-02-11 19:34:53 ----D---- C:\WINDOWS\system32\bits
2010-02-11 19:33:13 ----D---- C:\Documents and Settings\Admin\Data aplikací\skypePM
2010-02-11 19:31:22 ----D---- C:\WINDOWS\network diagnostic
2010-02-11 19:30:09 ----N---- C:\WINDOWS\system32\mspmsnsv.dll
2010-02-11 19:30:09 ----A---- C:\WINDOWS\system32\wmvdmoe2.dll
2010-02-11 19:30:09 ----A---- C:\WINDOWS\system32\WMSPDMOE.dll
2010-02-11 19:30:09 ----A---- C:\WINDOWS\system32\wmspdmod.dll
2010-02-11 19:30:09 ----A---- C:\WINDOWS\system32\wmsdmoe2.dll
2010-02-11 19:30:09 ----A---- C:\WINDOWS\system32\wmpdxm.dll
2010-02-11 19:30:09 ----A---- C:\WINDOWS\system32\wmpasf.dll
2010-02-11 19:30:09 ----A---- C:\WINDOWS\system32\wmp.dll
2010-02-11 19:30:09 ----A---- C:\WINDOWS\system32\wmidx.dll
2010-02-11 19:30:09 ----A---- C:\WINDOWS\system32\wmerror.dll
2010-02-11 19:30:09 ----A---- C:\WINDOWS\system32\MP4SDMOD.dll
2010-02-11 19:30:08 ----A---- C:\WINDOWS\system32\MP43DMOD.dll
2010-02-11 19:30:08 ----A---- C:\WINDOWS\system32\hccoin.dll
2010-02-11 19:30:08 ----A---- C:\WINDOWS\system32\fsquirt.exe
2010-02-11 19:30:08 ----A---- C:\WINDOWS\system32\bthserv.dll
2010-02-11 19:30:08 ----A---- C:\WINDOWS\system32\bthci.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\xpsp2res.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\xpsp1res.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\xpob2res.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\wshbth.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\sdhcinst.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\mstscax.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\mstsc.exe
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\ir50_qcx.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\ir50_qc.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\ir50_32.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\ir41_qcx.dll
2010-02-11 19:30:07 ----A---- C:\WINDOWS\system32\ir41_qc.dll
2010-02-11 19:30:03 ----N---- C:\WINDOWS\system32\wscntfy.exe
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\w3ssl.dll
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\pnrpnsp.dll
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\pidgen.dll
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\p2pgasvc.dll
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\logman.exe
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\kbdukx.dll
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\extmgr.dll
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\encdec.dll
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\dxdiagn.dll
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\dsprpres.dll
2010-02-11 19:30:03 ----A---- C:\WINDOWS\system32\dpcdll.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\sbeio.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\sbe.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\p2psvc.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\p2pgraph.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\msftedit.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\msdadiag.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\kbdsmsno.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\kbdmlt47.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\kbdfi1.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\httpapi.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\fltlib.dll
2010-02-11 19:30:02 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2010-02-11 19:30:01 ----N---- C:\WINDOWS\system32\xmlprov.dll
2010-02-11 19:30:01 ----N---- C:\WINDOWS\system32\qmgr.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\xmlprovi.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\winbrand.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\twext.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\spnpinst.exe
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\smbinst.exe
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\proxycfg.exe
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\p2pnetsh.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\mssap.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\kbdinmal.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\kbdinbe1.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\iuengine.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\fwcfg.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\d3d9.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\cmsetacl.dll
2010-02-11 19:30:01 ----A---- C:\WINDOWS\system32\btpanui.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\wuauserv.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\wscsvc.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\winshfhc.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\winhttp.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\strmfilt.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\powercfg.exe
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\p2p.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\kbdsmsfi.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\kbdno1.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\kbdmlt48.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\kbdmaori.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\kbdinben.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\fltmc.exe
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\encapi.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\blastcln.exe
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2010-02-11 19:30:00 ----A---- C:\WINDOWS\system32\auditusr.exe
2010-02-11 19:29:44 ----N---- C:\WINDOWS\explorer.exe
2010-02-11 19:29:44 ----A---- C:\WINDOWS\winhlp32.exe
2010-02-11 19:29:44 ----A---- C:\WINDOWS\twain_32.dll
2010-02-11 19:29:44 ----A---- C:\WINDOWS\regedit.exe
2010-02-11 19:29:44 ----A---- C:\WINDOWS\hh.exe
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\authz.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\audiosrv.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\attrib.exe
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\atmlib.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\atmfd.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\atmadm.exe
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\atl.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\at.exe
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\asycfilt.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\asferror.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\apphelp.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\amstream.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\alrsvc.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\alg.exe
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\ahui.exe
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\advpack.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\adsnt.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\adsmsext.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\adsldpc.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\adsldp.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\admparse.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\actxprxy.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\actmovie.exe
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\activeds.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\aclui.dll
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\accwiz.exe
2010-02-11 19:29:43 ----A---- C:\WINDOWS\system32\6to4svc.dll
2010-02-11 19:29:42 ----N---- C:\WINDOWS\system32\browser.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\cewmdm.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\certmgr.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\certcli.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\cdosys.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\cdfview.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\catsrvut.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\catsrvps.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\catsrv.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\capesnpn.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\camocx.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\cabview.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\cabinet.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\browsewm.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\browseui.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\browselc.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\blackbox.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\bidispl.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\batt.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\batmeter.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\basesrv.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\avifil32.dll
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\autolfn.exe
2010-02-11 19:29:42 ----A---- C:\WINDOWS\system32\autofmt.exe
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\comsnap.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\comres.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\comrepl.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\compstui.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\compatui.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\comaddin.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\colbact.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cnbjmon.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cmutil.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cmstp.exe
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cmprops.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cmmon32.exe
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cmdl32.exe
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cmdial32.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cmcfg32.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\clusapi.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\clipsrv.exe
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\clipbrd.exe
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cliconfg.exe
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cliconfg.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cleanmgr.exe
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\clbcatq.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\clbcatex.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cisvc.exe
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\ciodm.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cic.dll
2010-02-11 19:29:41 ----A---- C:\WINDOWS\system32\cfgmgr32.dll
2010-02-11 19:29:40 ----N---- C:\WINDOWS\system32\ctfmon.exe
2010-02-11 19:29:40 ----N---- C:\WINDOWS\system32\cryptsvc.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\datime.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\dataclen.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\danim.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\d3dim700.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\d3d8thk.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\d3d8.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\csrss.exe
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\cscui.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\cscript.exe
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\cscdll.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\cryptui.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\cryptnet.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\cryptext.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\cryptdll.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\cryptdlg.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\crypt32.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\credui.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\corpol.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\conime.exe
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\confmsp.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\comuid.dll
2010-02-11 19:29:40 ----A---- C:\WINDOWS\system32\comsvcs.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dmdlgs.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dmcompos.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dmband.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dmadmin.exe
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dllhost.exe
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dispex.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\diskpart.exe
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\diskcopy.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dinput8.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dinput.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\digest.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\diantz.exe
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dhcpmon.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dgnet.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dfsshlex.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dfrgui.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dfrgsnap.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dfrgntfs.exe
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dfrgfat.exe
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\devmgr.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\devenum.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\defrag.exe
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\ddrawex.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\ddraw.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\ddeshare.exe
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dciman32.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dbnmpntw.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dbnetlib.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dbmsrpcn.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\dbghelp.dll
2010-02-11 19:29:39 ----A---- C:\WINDOWS\system32\davclnt.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dsound.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dskquoui.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dskquota.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dsdmoprp.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dsdmo.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\ds32gt.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\drprov.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\drmv2clt.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\drmstor.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\drmclien.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpwsockx.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpvvox.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpvsetup.exe
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpvoice.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpvacm.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpnsvr.exe
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpnlobby.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpnhupnp.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpnhpast.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpnet.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpnaddr.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dpmodemx.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dplayx.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dplaysvr.exe
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\docprop2.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dnsapi.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dmutil.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dmusic.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dmsynth.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dmstyle.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dmserver.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dmscript.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dmremote.exe
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dmloader.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dmime.dll
2010-02-11 19:29:38 ----A---- C:\WINDOWS\system32\dmdskmgr.dll
2010-02-11 19:29:37 ----N---- C:\WINDOWS\system32\es.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\ersvc.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\els.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dxtrans.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dxmasf.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dxdiag.exe
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dx8vb.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dx7vb.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dwwin.exe
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dvdupgrd.exe
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\duser.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dumprep.exe
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dswave.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dsuiext.dll
2010-02-11 19:29:37 ----A---- C:\WINDOWS\system32\dssenh.dll