
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím kontrolu logu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Prosím kontrolu logu
Dobrý den,
mám prosbu můžu poprosit o preventivní kontrolu.
Díky
Logfile of random's system information tool 1.06 (written by random/random)
Run by Elena at 2010-02-22 19:02:35
Microsoft® Windows Vista™ Home Basic Service Pack 2
System drive C: has 34 GB (61%) free of 56 GB
Total RAM: 1013 MB (22% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:02:41, on 22.2.2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18882)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Keyboard Manager\Manager Utility\KeyboardManager.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\system32\igfxext.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\system32\wuauclt.exe
C:\Users\Elena\Downloads\RSIT.exe
C:\Program Files\trend micro\Elena.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {83821C2B-32A8-4DD7-B6D4-44309A78E668} - (no file)
R3 - URLSearchHook: (no name) - {9CB65206-89C4-402c-BA80-02D8C59F9B1D} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Ask Search Assistant BHO - {9CB65201-89C4-402c-BA80-02D8C59F9B1D} - (no file)
O2 - BHO: Ask Toolbar BHO - {FE063DB1-4EC0-403e-8DD8-394C54984B2C} - (no file)
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Keyboard Manager Utility] "C:\Program Files\Keyboard Manager\Manager Utility\KeyboardManager.exe" /lang en /H
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKCU\..\Run: [Google Update] "C:\Users\Elena\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O13 - Gopher Prefix:
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: NMIndexingService - Unknown owner - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe (file missing)
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
--
End of file - 4527 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-161961244-2301921912-1863419576-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-161961244-2301921912-1863419576-1000UA.job
C:\Windows\tasks\User_Feed_Synchronization-{018BC8D0-72C8-4218-838B-76196E8C205D}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9CB65201-89C4-402c-BA80-02D8C59F9B1D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FE063DB1-4EC0-403e-8DD8-394C54984B2C}]
Ask Toolbar BHO
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2009-11-16 2054360]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-18 1008184]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2006-10-28 815104]
"Keyboard Manager Utility"=C:\Program Files\Keyboard Manager\Manager Utility\KeyboardManager.exe [2007-01-11 1359872]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2006-09-29 151552]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2007-10-10 39792]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2008-02-11 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2008-02-11 166424]
"Persistence"=C:\Windows\system32\igfxpers.exe [2008-02-11 133656]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Elena\AppData\Local\Google\Update\GoogleUpdate.exe [2010-02-09 135664]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-18 202240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Monitor]
C:\Windows\PixArt\PAC207\Monitor.exe [2006-11-03 319488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2008-02-11 204800]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{1685bbc7-d6f0-11dc-b2bd-0011e2fc6c3a}]
shell\AutoRun\command - wscript.exe .\.vbs
shell\open\command - wscript.exe .\.vbs
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{3513f2da-8014-11dc-aef2-0011e2fc6c3a}]
shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL E:\copy.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{36109be3-5d14-11de-9e3a-001b240e47c5}]
shell\AutoRun\command - I:\RECYCLE\D-0-060-0000000000-1111111-2222222\FiX.exe
shell\open\command - I:\RECYCLE\D-0-060-0000000000-1111111-2222222\FiX.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{47bf58ed-229a-11dd-b437-0011e2fc6c3a}]
shell\AutoRun\command - G:\
shell\open\command - rundll32.exe .\desktop.dll,InstallM
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{52a738c6-fb75-11dc-8f1a-0011e2fc6c3a}]
shell\AutoRun\command - G:\
shell\open\command - rundll32.exe .\desktop.dll,InstallM
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{54d82bb0-4b2e-11dd-9e88-001b240e47c5}]
shell\AutoRun\command - G:\RECYCLE\D-0-060-0000000000-1111111-2222222\FiX.exe
shell\open\command - G:\RECYCLE\D-0-060-0000000000-1111111-2222222\FiX.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{6e0627a8-d61b-11dc-b3d8-0011e2fc6c3a}]
shell\Auto\command - H:\syscom.exe
shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL H:\syscom.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{80775271-e624-11dc-8260-0011e2fc6c3a}]
shell\AutoRun\command - G:\LaunchU3.exe -a
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{8565c0d2-8e1e-11dc-b443-001b240e47c5}]
shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL G:\copy.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9c851763-9c34-11dc-8460-001b240e47c5}]
shell\AutoRun\command - E:\AutoTransfer.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ab512411-3e22-11dd-b8be-0011e2fc6c3a}]
shell\AutoRun\command - wscript.exe .\.vbs
shell\open\command - wscript.exe .\.vbs
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ba30f039-951c-11dc-bd7f-001b240e47c5}]
shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL E:\Recycled\ctfmon.exe
shell\Open(&0)\command - E:\Recycled\ctfmon.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ba8f7ef7-2820-11dd-ae1d-0011e2fc6c3a}]
shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL wscript.exe .MS32DLL.dll.vbs
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bf3beac5-8533-11dc-9341-0011e2fc6c3a}]
shell\AutoRun\command - wscript.exe .\.vbs
shell\open\command - wscript.exe .\.vbs
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d1a0559f-eb58-11dc-8c09-0011e2fc6c3a}]
shell\AutoRun\command - E:\SETUP.EXE
shell\configure\command - E:\SETUP.EXE
shell\install\command - E:\SETUP.EXE
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
======List of files/folders modified in the last 1 months======
2010-02-22 19:02:40 ----D---- C:\Windows\Temp
2010-02-22 18:59:15 ----D---- C:\Windows\System32
2010-02-22 18:59:15 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-02-22 18:59:14 ----D---- C:\Windows\inf
2010-02-22 18:57:52 ----RD---- C:\Program Files
2010-02-22 18:44:17 ----D---- C:\Windows\Debug
2010-02-22 18:44:17 ----D---- C:\Windows
2010-02-21 22:49:59 ----D---- C:\Windows\rescache
2010-02-21 22:33:49 ----D---- C:\Windows\system32\Tasks
2010-02-21 22:30:44 ----D---- C:\Windows\system32\en-US
2010-02-21 22:30:40 ----D---- C:\Windows\system32\drivers
2010-02-21 22:30:39 ----D---- C:\Windows\system32\wbem
2010-02-21 22:30:37 ----D---- C:\Windows\system32\zh-TW
2010-02-21 22:30:37 ----D---- C:\Windows\system32\zh-HK
2010-02-21 22:30:37 ----D---- C:\Windows\system32\zh-CN
2010-02-21 22:30:37 ----D---- C:\Windows\system32\uk-UA
2010-02-21 22:30:37 ----D---- C:\Windows\system32\tr-TR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\th-TH
2010-02-21 22:30:37 ----D---- C:\Windows\system32\sv-SE
2010-02-21 22:30:37 ----D---- C:\Windows\system32\sr-Latn-CS
2010-02-21 22:30:37 ----D---- C:\Windows\system32\sl-SI
2010-02-21 22:30:37 ----D---- C:\Windows\system32\sk-SK
2010-02-21 22:30:37 ----D---- C:\Windows\system32\ru-RU
2010-02-21 22:30:37 ----D---- C:\Windows\system32\ro-RO
2010-02-21 22:30:37 ----D---- C:\Windows\system32\pt-PT
2010-02-21 22:30:37 ----D---- C:\Windows\system32\pt-BR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\pl-PL
2010-02-21 22:30:37 ----D---- C:\Windows\system32\nl-NL
2010-02-21 22:30:37 ----D---- C:\Windows\system32\nb-NO
2010-02-21 22:30:37 ----D---- C:\Windows\system32\lv-LV
2010-02-21 22:30:37 ----D---- C:\Windows\system32\lt-LT
2010-02-21 22:30:37 ----D---- C:\Windows\system32\ko-KR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\ja-JP
2010-02-21 22:30:37 ----D---- C:\Windows\system32\it-IT
2010-02-21 22:30:37 ----D---- C:\Windows\system32\hu-HU
2010-02-21 22:30:37 ----D---- C:\Windows\system32\hr-HR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\he-IL
2010-02-21 22:30:37 ----D---- C:\Windows\system32\fr-FR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\fi-FI
2010-02-21 22:30:37 ----D---- C:\Windows\system32\et-EE
2010-02-21 22:30:37 ----D---- C:\Windows\system32\es-ES
2010-02-21 22:30:37 ----D---- C:\Windows\system32\el-GR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\de-DE
2010-02-21 22:30:37 ----D---- C:\Windows\system32\da-DK
2010-02-21 22:30:37 ----D---- C:\Windows\system32\cs-CZ
2010-02-21 22:30:37 ----D---- C:\Windows\system32\bg-BG
2010-02-21 22:30:37 ----D---- C:\Windows\system32\ar-SA
2010-02-21 22:27:53 ----D---- C:\Windows\winsxs
2010-02-21 22:27:32 ----D---- C:\Windows\system32\catroot
2010-02-21 22:26:08 ----D---- C:\Windows\system32\catroot2
2010-02-21 22:23:17 ----D---- C:\Program Files\Windows Mail
2010-02-21 22:23:01 ----D---- C:\System Volume Information
2010-02-21 21:55:25 ----HD---- C:\ProgramData
2010-02-21 21:55:20 ----SD---- C:\Windows\Downloaded Program Files
2010-02-21 21:50:34 ----D---- C:\Windows\AppPatch
2010-02-21 21:50:30 ----D---- C:\Program Files\Windows Media Player
2010-02-21 21:44:18 ----D---- C:\Program Files\CONEXANT
2010-02-21 20:11:52 ----RSD---- C:\Windows\assembly
2010-02-21 20:05:29 ----D---- C:\Windows\Microsoft.NET
2010-02-21 20:00:14 ----SHD---- C:\Windows\Installer
2010-02-21 18:49:07 ----D---- C:\Users\Elena\AppData\Roaming\skypePM
2010-02-21 18:39:04 ----D---- C:\Windows\system32\migration
2010-02-21 18:39:04 ----D---- C:\Program Files\Internet Explorer
2010-02-21 18:38:50 ----D---- C:\Windows\PolicyDefinitions
2010-02-21 15:01:25 ----D---- C:\Windows\system32\WDI
2010-02-21 13:54:47 ----SHD---- C:\Boot
2010-02-21 13:46:34 ----D---- C:\Program Files\Windows Sidebar
2010-02-21 13:46:34 ----D---- C:\Program Files\Windows Collaboration
2010-02-21 13:46:34 ----D---- C:\Program Files\Windows Calendar
2010-02-21 13:46:34 ----D---- C:\Program Files\Movie Maker
2010-02-21 13:46:33 ----D---- C:\Program Files\Windows Photo Gallery
2010-02-21 13:46:33 ----D---- C:\Program Files\Common Files\System
2010-02-21 13:46:32 ----D---- C:\Windows\servicing
2010-02-21 13:46:32 ----D---- C:\Program Files\Windows Defender
2010-02-21 13:46:30 ----D---- C:\Windows\IME
2010-02-21 13:46:29 ----D---- C:\Windows\system32\XPSViewer
2010-02-21 13:46:26 ----D---- C:\Windows\system32\oobe
2010-02-21 13:46:25 ----D---- C:\Windows\system32\AdvancedInstallers
2010-02-21 13:46:24 ----D---- C:\Windows\system32\SLUI
2010-02-21 13:46:24 ----D---- C:\Windows\system32\setup
2010-02-21 13:46:23 ----D---- C:\Windows\system32\manifeststore
2010-02-21 13:46:23 ----D---- C:\Windows\system32\en
2010-02-21 13:46:21 ----D---- C:\Windows\system32\migwiz
2010-02-21 13:46:00 ----RSD---- C:\Windows\Fonts
2010-02-21 13:45:53 ----D---- C:\Windows\system32\Boot
2010-02-21 12:43:17 ----ASH---- C:\Program Files\desktop.ini
2010-02-21 12:29:52 ----D---- C:\Windows\MSAgent
2010-02-21 12:29:50 ----D---- C:\Windows\L2Schemas
2010-02-21 12:29:50 ----D---- C:\Windows\DigitalLocker
2010-02-21 12:29:43 ----D---- C:\Windows\system32\com
2010-02-21 12:29:22 ----D---- C:\Windows\system32\sysprep
2010-02-21 12:29:14 ----D---- C:\Windows\system32\ias
2010-02-21 12:29:13 ----D---- C:\Windows\system32\ras
2010-02-21 12:29:09 ----D---- C:\Windows\system32\icsxml
2010-02-21 12:26:06 ----D---- C:\Windows\Boot
2010-02-21 11:57:36 ----A---- C:\Windows\system32\ifxcardm.dll
2010-02-21 11:57:17 ----A---- C:\Windows\system32\axaltocm.dll
2010-02-20 22:09:19 ----HD---- C:\Program Files\InstallShield Installation Information
2010-02-20 22:07:44 ----D---- C:\Windows\PAC207
2010-02-20 22:07:44 ----A---- C:\Windows\win.ini
2010-02-20 22:07:38 ----D---- C:\Program Files\Common Files
2010-02-20 22:07:01 ----D---- C:\Windows\twain_32
2010-02-20 17:27:13 ----D---- C:\Users\Elena\AppData\Roaming\Mozilla
2010-02-20 17:19:47 ----D---- C:\Windows\Minidump
2010-02-20 16:50:35 ----D---- C:\Program Files\nLite
2010-02-20 14:08:10 ----D---- C:\ProgramData\Skype
2010-02-10 22:52:26 ----D---- C:\Windows\Prefetch
2010-02-09 20:59:11 ----D---- C:\Windows\Tasks
2010-02-08 21:54:33 ----D---- C:\Program Files\Common Files\InstallShield
2010-02-08 21:51:09 ----D---- C:\Users\Elena\AppData\Roaming\GHISLER
2010-02-07 21:30:01 ----D---- C:\ProgramData\BVRP Software
2010-02-06 09:42:25 ----D---- C:\ProgramData\Microsoft Help
2010-02-06 09:41:46 ----SD---- C:\ProgramData\Microsoft
2010-02-06 09:41:46 ----D---- C:\Program Files\Common Files\microsoft shared
2010-02-06 09:41:45 ----SD---- C:\Users\Elena\AppData\Roaming\Microsoft
2010-02-06 09:41:40 ----D---- C:\Program Files\Microsoft Works
2010-02-06 09:39:48 ----D---- C:\Program Files\MSBuild
2010-02-06 09:27:31 ----D---- C:\Windows\system32\screensaver dir
2010-02-01 11:26:22 ----A---- C:\Windows\system32\mrt.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2009-11-16 108792]
R1 epfwtdi;epfwtdi; C:\Windows\system32\DRIVERS\epfwtdi.sys [2009-11-16 55768]
R2 eamon;eamon; C:\Windows\system32\DRIVERS\eamon.sys [2009-11-16 116520]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2009-12-18 135048]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2006-11-15 32256]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2006-11-15 43520]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2006-11-15 37376]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2006-08-04 8192]
R3 Afc;PPdus ASPI Shell; C:\Windows\system32\drivers\Afc.sys [2005-02-23 11776]
R3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-10 22528]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-18 92160]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-10 29696]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-18 14208]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT32.sys [2008-03-04 188416]
R3 E100B;Intel(R) PRO Adapter Driver; C:\Windows\system32\DRIVERS\e100b325.sys [2008-01-18 159744]
R3 Epfwndis;Eset Personal Firewall; C:\Windows\system32\DRIVERS\Epfwndis.sys [2010-01-08 33096]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2006-10-18 986624]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2006-10-18 206848]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-02-11 2302976]
R3 NETw3v32;Intel(R) PRO/Wireless 3945ABG Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw3v32.sys [2006-10-30 1786880]
R3 qkbfiltr;Quanta Keyboard Filter Driver; C:\Windows\system32\DRIVERS\qkbfiltr.sys [2006-08-17 33664]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-10 148992]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-10 89088]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2006-10-28 179896]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2006-10-18 659968]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2006-11-02 167936]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-04-10 507904]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632]
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2006-11-01 145920]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-02-11 2302976]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016]
S3 SANDRA;SANDRA; \??\C:\Program Files\SiSoftware\SiSoftware Sandra Lite XII.SP2c\WNt500x86\Sandra.sys []
S3 UIUSys;Conexant Setup API; C:\Windows\system32\DRIVERS\UIUSYS.SYS []
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-18 83328]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-18 21504]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-11-16 735960]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2006-09-29 81920]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-20 322120]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2006-08-04 386560]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-11-16 20680]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-18 21504]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe []
-----------------EOF-----------------
mám prosbu můžu poprosit o preventivní kontrolu.
Díky
Logfile of random's system information tool 1.06 (written by random/random)
Run by Elena at 2010-02-22 19:02:35
Microsoft® Windows Vista™ Home Basic Service Pack 2
System drive C: has 34 GB (61%) free of 56 GB
Total RAM: 1013 MB (22% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:02:41, on 22.2.2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18882)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Keyboard Manager\Manager Utility\KeyboardManager.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\system32\igfxext.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\system32\wuauclt.exe
C:\Users\Elena\Downloads\RSIT.exe
C:\Program Files\trend micro\Elena.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {83821C2B-32A8-4DD7-B6D4-44309A78E668} - (no file)
R3 - URLSearchHook: (no name) - {9CB65206-89C4-402c-BA80-02D8C59F9B1D} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Ask Search Assistant BHO - {9CB65201-89C4-402c-BA80-02D8C59F9B1D} - (no file)
O2 - BHO: Ask Toolbar BHO - {FE063DB1-4EC0-403e-8DD8-394C54984B2C} - (no file)
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Keyboard Manager Utility] "C:\Program Files\Keyboard Manager\Manager Utility\KeyboardManager.exe" /lang en /H
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKCU\..\Run: [Google Update] "C:\Users\Elena\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O13 - Gopher Prefix:
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: NMIndexingService - Unknown owner - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe (file missing)
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
--
End of file - 4527 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-161961244-2301921912-1863419576-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-161961244-2301921912-1863419576-1000UA.job
C:\Windows\tasks\User_Feed_Synchronization-{018BC8D0-72C8-4218-838B-76196E8C205D}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9CB65201-89C4-402c-BA80-02D8C59F9B1D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FE063DB1-4EC0-403e-8DD8-394C54984B2C}]
Ask Toolbar BHO
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2009-11-16 2054360]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-18 1008184]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2006-10-28 815104]
"Keyboard Manager Utility"=C:\Program Files\Keyboard Manager\Manager Utility\KeyboardManager.exe [2007-01-11 1359872]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2006-09-29 151552]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2007-10-10 39792]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2008-02-11 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2008-02-11 166424]
"Persistence"=C:\Windows\system32\igfxpers.exe [2008-02-11 133656]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Elena\AppData\Local\Google\Update\GoogleUpdate.exe [2010-02-09 135664]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-18 202240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Monitor]
C:\Windows\PixArt\PAC207\Monitor.exe [2006-11-03 319488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2008-02-11 204800]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{1685bbc7-d6f0-11dc-b2bd-0011e2fc6c3a}]
shell\AutoRun\command - wscript.exe .\.vbs
shell\open\command - wscript.exe .\.vbs
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{3513f2da-8014-11dc-aef2-0011e2fc6c3a}]
shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL E:\copy.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{36109be3-5d14-11de-9e3a-001b240e47c5}]
shell\AutoRun\command - I:\RECYCLE\D-0-060-0000000000-1111111-2222222\FiX.exe
shell\open\command - I:\RECYCLE\D-0-060-0000000000-1111111-2222222\FiX.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{47bf58ed-229a-11dd-b437-0011e2fc6c3a}]
shell\AutoRun\command - G:\
shell\open\command - rundll32.exe .\desktop.dll,InstallM
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{52a738c6-fb75-11dc-8f1a-0011e2fc6c3a}]
shell\AutoRun\command - G:\
shell\open\command - rundll32.exe .\desktop.dll,InstallM
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{54d82bb0-4b2e-11dd-9e88-001b240e47c5}]
shell\AutoRun\command - G:\RECYCLE\D-0-060-0000000000-1111111-2222222\FiX.exe
shell\open\command - G:\RECYCLE\D-0-060-0000000000-1111111-2222222\FiX.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{6e0627a8-d61b-11dc-b3d8-0011e2fc6c3a}]
shell\Auto\command - H:\syscom.exe
shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL H:\syscom.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{80775271-e624-11dc-8260-0011e2fc6c3a}]
shell\AutoRun\command - G:\LaunchU3.exe -a
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{8565c0d2-8e1e-11dc-b443-001b240e47c5}]
shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL G:\copy.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9c851763-9c34-11dc-8460-001b240e47c5}]
shell\AutoRun\command - E:\AutoTransfer.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ab512411-3e22-11dd-b8be-0011e2fc6c3a}]
shell\AutoRun\command - wscript.exe .\.vbs
shell\open\command - wscript.exe .\.vbs
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ba30f039-951c-11dc-bd7f-001b240e47c5}]
shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL E:\Recycled\ctfmon.exe
shell\Open(&0)\command - E:\Recycled\ctfmon.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ba8f7ef7-2820-11dd-ae1d-0011e2fc6c3a}]
shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL wscript.exe .MS32DLL.dll.vbs
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bf3beac5-8533-11dc-9341-0011e2fc6c3a}]
shell\AutoRun\command - wscript.exe .\.vbs
shell\open\command - wscript.exe .\.vbs
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d1a0559f-eb58-11dc-8c09-0011e2fc6c3a}]
shell\AutoRun\command - E:\SETUP.EXE
shell\configure\command - E:\SETUP.EXE
shell\install\command - E:\SETUP.EXE
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
======List of files/folders modified in the last 1 months======
2010-02-22 19:02:40 ----D---- C:\Windows\Temp
2010-02-22 18:59:15 ----D---- C:\Windows\System32
2010-02-22 18:59:15 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-02-22 18:59:14 ----D---- C:\Windows\inf
2010-02-22 18:57:52 ----RD---- C:\Program Files
2010-02-22 18:44:17 ----D---- C:\Windows\Debug
2010-02-22 18:44:17 ----D---- C:\Windows
2010-02-21 22:49:59 ----D---- C:\Windows\rescache
2010-02-21 22:33:49 ----D---- C:\Windows\system32\Tasks
2010-02-21 22:30:44 ----D---- C:\Windows\system32\en-US
2010-02-21 22:30:40 ----D---- C:\Windows\system32\drivers
2010-02-21 22:30:39 ----D---- C:\Windows\system32\wbem
2010-02-21 22:30:37 ----D---- C:\Windows\system32\zh-TW
2010-02-21 22:30:37 ----D---- C:\Windows\system32\zh-HK
2010-02-21 22:30:37 ----D---- C:\Windows\system32\zh-CN
2010-02-21 22:30:37 ----D---- C:\Windows\system32\uk-UA
2010-02-21 22:30:37 ----D---- C:\Windows\system32\tr-TR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\th-TH
2010-02-21 22:30:37 ----D---- C:\Windows\system32\sv-SE
2010-02-21 22:30:37 ----D---- C:\Windows\system32\sr-Latn-CS
2010-02-21 22:30:37 ----D---- C:\Windows\system32\sl-SI
2010-02-21 22:30:37 ----D---- C:\Windows\system32\sk-SK
2010-02-21 22:30:37 ----D---- C:\Windows\system32\ru-RU
2010-02-21 22:30:37 ----D---- C:\Windows\system32\ro-RO
2010-02-21 22:30:37 ----D---- C:\Windows\system32\pt-PT
2010-02-21 22:30:37 ----D---- C:\Windows\system32\pt-BR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\pl-PL
2010-02-21 22:30:37 ----D---- C:\Windows\system32\nl-NL
2010-02-21 22:30:37 ----D---- C:\Windows\system32\nb-NO
2010-02-21 22:30:37 ----D---- C:\Windows\system32\lv-LV
2010-02-21 22:30:37 ----D---- C:\Windows\system32\lt-LT
2010-02-21 22:30:37 ----D---- C:\Windows\system32\ko-KR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\ja-JP
2010-02-21 22:30:37 ----D---- C:\Windows\system32\it-IT
2010-02-21 22:30:37 ----D---- C:\Windows\system32\hu-HU
2010-02-21 22:30:37 ----D---- C:\Windows\system32\hr-HR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\he-IL
2010-02-21 22:30:37 ----D---- C:\Windows\system32\fr-FR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\fi-FI
2010-02-21 22:30:37 ----D---- C:\Windows\system32\et-EE
2010-02-21 22:30:37 ----D---- C:\Windows\system32\es-ES
2010-02-21 22:30:37 ----D---- C:\Windows\system32\el-GR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\de-DE
2010-02-21 22:30:37 ----D---- C:\Windows\system32\da-DK
2010-02-21 22:30:37 ----D---- C:\Windows\system32\cs-CZ
2010-02-21 22:30:37 ----D---- C:\Windows\system32\bg-BG
2010-02-21 22:30:37 ----D---- C:\Windows\system32\ar-SA
2010-02-21 22:27:53 ----D---- C:\Windows\winsxs
2010-02-21 22:27:32 ----D---- C:\Windows\system32\catroot
2010-02-21 22:26:08 ----D---- C:\Windows\system32\catroot2
2010-02-21 22:23:17 ----D---- C:\Program Files\Windows Mail
2010-02-21 22:23:01 ----D---- C:\System Volume Information
2010-02-21 21:55:25 ----HD---- C:\ProgramData
2010-02-21 21:55:20 ----SD---- C:\Windows\Downloaded Program Files
2010-02-21 21:50:34 ----D---- C:\Windows\AppPatch
2010-02-21 21:50:30 ----D---- C:\Program Files\Windows Media Player
2010-02-21 21:44:18 ----D---- C:\Program Files\CONEXANT
2010-02-21 20:11:52 ----RSD---- C:\Windows\assembly
2010-02-21 20:05:29 ----D---- C:\Windows\Microsoft.NET
2010-02-21 20:00:14 ----SHD---- C:\Windows\Installer
2010-02-21 18:49:07 ----D---- C:\Users\Elena\AppData\Roaming\skypePM
2010-02-21 18:39:04 ----D---- C:\Windows\system32\migration
2010-02-21 18:39:04 ----D---- C:\Program Files\Internet Explorer
2010-02-21 18:38:50 ----D---- C:\Windows\PolicyDefinitions
2010-02-21 15:01:25 ----D---- C:\Windows\system32\WDI
2010-02-21 13:54:47 ----SHD---- C:\Boot
2010-02-21 13:46:34 ----D---- C:\Program Files\Windows Sidebar
2010-02-21 13:46:34 ----D---- C:\Program Files\Windows Collaboration
2010-02-21 13:46:34 ----D---- C:\Program Files\Windows Calendar
2010-02-21 13:46:34 ----D---- C:\Program Files\Movie Maker
2010-02-21 13:46:33 ----D---- C:\Program Files\Windows Photo Gallery
2010-02-21 13:46:33 ----D---- C:\Program Files\Common Files\System
2010-02-21 13:46:32 ----D---- C:\Windows\servicing
2010-02-21 13:46:32 ----D---- C:\Program Files\Windows Defender
2010-02-21 13:46:30 ----D---- C:\Windows\IME
2010-02-21 13:46:29 ----D---- C:\Windows\system32\XPSViewer
2010-02-21 13:46:26 ----D---- C:\Windows\system32\oobe
2010-02-21 13:46:25 ----D---- C:\Windows\system32\AdvancedInstallers
2010-02-21 13:46:24 ----D---- C:\Windows\system32\SLUI
2010-02-21 13:46:24 ----D---- C:\Windows\system32\setup
2010-02-21 13:46:23 ----D---- C:\Windows\system32\manifeststore
2010-02-21 13:46:23 ----D---- C:\Windows\system32\en
2010-02-21 13:46:21 ----D---- C:\Windows\system32\migwiz
2010-02-21 13:46:00 ----RSD---- C:\Windows\Fonts
2010-02-21 13:45:53 ----D---- C:\Windows\system32\Boot
2010-02-21 12:43:17 ----ASH---- C:\Program Files\desktop.ini
2010-02-21 12:29:52 ----D---- C:\Windows\MSAgent
2010-02-21 12:29:50 ----D---- C:\Windows\L2Schemas
2010-02-21 12:29:50 ----D---- C:\Windows\DigitalLocker
2010-02-21 12:29:43 ----D---- C:\Windows\system32\com
2010-02-21 12:29:22 ----D---- C:\Windows\system32\sysprep
2010-02-21 12:29:14 ----D---- C:\Windows\system32\ias
2010-02-21 12:29:13 ----D---- C:\Windows\system32\ras
2010-02-21 12:29:09 ----D---- C:\Windows\system32\icsxml
2010-02-21 12:26:06 ----D---- C:\Windows\Boot
2010-02-21 11:57:36 ----A---- C:\Windows\system32\ifxcardm.dll
2010-02-21 11:57:17 ----A---- C:\Windows\system32\axaltocm.dll
2010-02-20 22:09:19 ----HD---- C:\Program Files\InstallShield Installation Information
2010-02-20 22:07:44 ----D---- C:\Windows\PAC207
2010-02-20 22:07:44 ----A---- C:\Windows\win.ini
2010-02-20 22:07:38 ----D---- C:\Program Files\Common Files
2010-02-20 22:07:01 ----D---- C:\Windows\twain_32
2010-02-20 17:27:13 ----D---- C:\Users\Elena\AppData\Roaming\Mozilla
2010-02-20 17:19:47 ----D---- C:\Windows\Minidump
2010-02-20 16:50:35 ----D---- C:\Program Files\nLite
2010-02-20 14:08:10 ----D---- C:\ProgramData\Skype
2010-02-10 22:52:26 ----D---- C:\Windows\Prefetch
2010-02-09 20:59:11 ----D---- C:\Windows\Tasks
2010-02-08 21:54:33 ----D---- C:\Program Files\Common Files\InstallShield
2010-02-08 21:51:09 ----D---- C:\Users\Elena\AppData\Roaming\GHISLER
2010-02-07 21:30:01 ----D---- C:\ProgramData\BVRP Software
2010-02-06 09:42:25 ----D---- C:\ProgramData\Microsoft Help
2010-02-06 09:41:46 ----SD---- C:\ProgramData\Microsoft
2010-02-06 09:41:46 ----D---- C:\Program Files\Common Files\microsoft shared
2010-02-06 09:41:45 ----SD---- C:\Users\Elena\AppData\Roaming\Microsoft
2010-02-06 09:41:40 ----D---- C:\Program Files\Microsoft Works
2010-02-06 09:39:48 ----D---- C:\Program Files\MSBuild
2010-02-06 09:27:31 ----D---- C:\Windows\system32\screensaver dir
2010-02-01 11:26:22 ----A---- C:\Windows\system32\mrt.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2009-11-16 108792]
R1 epfwtdi;epfwtdi; C:\Windows\system32\DRIVERS\epfwtdi.sys [2009-11-16 55768]
R2 eamon;eamon; C:\Windows\system32\DRIVERS\eamon.sys [2009-11-16 116520]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2009-12-18 135048]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2006-11-15 32256]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2006-11-15 43520]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2006-11-15 37376]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2006-08-04 8192]
R3 Afc;PPdus ASPI Shell; C:\Windows\system32\drivers\Afc.sys [2005-02-23 11776]
R3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-10 22528]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-18 92160]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-10 29696]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-18 14208]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT32.sys [2008-03-04 188416]
R3 E100B;Intel(R) PRO Adapter Driver; C:\Windows\system32\DRIVERS\e100b325.sys [2008-01-18 159744]
R3 Epfwndis;Eset Personal Firewall; C:\Windows\system32\DRIVERS\Epfwndis.sys [2010-01-08 33096]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2006-10-18 986624]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2006-10-18 206848]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-02-11 2302976]
R3 NETw3v32;Intel(R) PRO/Wireless 3945ABG Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw3v32.sys [2006-10-30 1786880]
R3 qkbfiltr;Quanta Keyboard Filter Driver; C:\Windows\system32\DRIVERS\qkbfiltr.sys [2006-08-17 33664]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-10 148992]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-10 89088]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2006-10-28 179896]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2006-10-18 659968]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2006-11-02 167936]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-04-10 507904]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632]
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2006-11-01 145920]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-02-11 2302976]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016]
S3 SANDRA;SANDRA; \??\C:\Program Files\SiSoftware\SiSoftware Sandra Lite XII.SP2c\WNt500x86\Sandra.sys []
S3 UIUSys;Conexant Setup API; C:\Windows\system32\DRIVERS\UIUSYS.SYS []
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-18 83328]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-18 21504]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-11-16 735960]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2006-09-29 81920]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-20 322120]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2006-08-04 386560]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-11-16 20680]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-18 21504]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe []
-----------------EOF-----------------
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Prosím kontrolu logu








Re: Prosím kontrolu logu
tady je ten combofix... dík předem...
ComboFix 10-02-21.02 - Elena 22.02.2010 21:52:12.1.2 - x86
Microsoft® Windows Vista™ Home Basic 6.0.6002.2.1250.420.1033.18.1013.428 [GMT 1:00]
Spuštěný z: c:\users\Elena\Desktop\ComboFix.exe
* Rezidentní štít AV je zapnutý
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\$recycle.bin\S-1-5-21-189508150-3312308453-972262665-500
c:\$recycle.bin\S-1-5-21-2365545147-1999384947-2466353664-500
c:\$recycle.bin\S-1-5-21-584220063-406672360-1510999575-500
c:\program files\INSTALL.LOG
c:\windows\system32\gatherWirelessInfo.vbs
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-01-22 do 2010-02-22 )))))))))))))))))))))))))))))))
.
2010-02-22 21:03 . 2010-02-22 21:03 -------- d-----w- c:\users\Elena\AppData\Local\temp
2010-02-22 17:57 . 2010-02-22 18:02 -------- d-----w- c:\program files\trend micro
2010-02-22 17:57 . 2010-02-22 17:59 -------- d-----w- C:\rsit
2010-02-22 17:41 . 2010-02-22 17:41 -------- d-----w- c:\program files\CCleaner
2010-02-21 21:30 . 2010-02-21 21:30 -------- d-----w- c:\program files\Windows Portable Devices
2010-02-21 21:27 . 2009-09-10 02:00 92672 ----a-w- c:\windows\system32\UIAnimation.dll
2010-02-21 21:27 . 2009-09-10 02:00 1164800 ----a-w- c:\windows\system32\UIRibbonRes.dll
2010-02-21 21:27 . 2009-09-10 02:01 3023360 ----a-w- c:\windows\system32\UIRibbon.dll
2010-02-21 21:25 . 2009-10-01 01:02 30208 ----a-w- c:\windows\system32\WPDShextAutoplay.exe
2010-02-21 21:24 . 2009-10-08 21:07 4096 ----a-w- c:\windows\system32\oleaccrc.dll
2010-02-21 21:24 . 2009-10-08 21:08 555520 ----a-w- c:\windows\system32\UIAutomationCore.dll
2010-02-21 21:24 . 2009-10-08 21:08 234496 ----a-w- c:\windows\system32\oleacc.dll
2010-02-21 21:22 . 2009-08-24 11:36 377344 ----a-w- c:\windows\system32\winhttp.dll
2010-02-21 21:22 . 2009-11-03 19:41 411648 ----a-w- c:\windows\system32\drivers\http.sys
2010-02-21 21:22 . 2009-11-03 21:42 30720 ----a-w- c:\windows\system32\httpapi.dll
2010-02-21 21:22 . 2009-11-03 21:43 24064 ----a-w- c:\windows\system32\nshhttp.dll
2010-02-21 20:46 . 2008-02-11 19:13 920088 ----a-w- c:\windows\system32\igxpun.exe
2010-02-21 20:39 . 2009-09-10 14:58 310784 ----a-w- c:\windows\system32\unregmp2.exe
2010-02-21 20:39 . 2009-09-10 14:59 8147456 ----a-w- c:\windows\system32\wmploc.DLL
2010-02-21 20:37 . 2009-08-29 00:27 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll
2010-02-21 20:37 . 2009-08-29 00:14 28672 ----a-w- c:\windows\system32\Apphlpdm.dll
2010-02-21 18:55 . 2009-06-15 14:52 499712 ----a-w- c:\windows\system32\kerberos.dll
2010-02-21 18:55 . 2009-06-15 14:53 270848 ----a-w- c:\windows\system32\schannel.dll
2010-02-21 17:32 . 2009-03-08 11:32 72704 ----a-w- c:\windows\system32\admparse.dll
2010-02-21 17:32 . 2009-03-08 11:31 48128 ----a-w- c:\windows\system32\mshtmler.dll
2010-02-21 17:32 . 2009-03-08 11:22 156160 ----a-w- c:\windows\system32\msls31.dll
2010-02-21 17:32 . 2009-03-08 11:33 18944 ----a-w- c:\windows\system32\corpol.dll
2010-02-21 17:32 . 2009-03-08 11:31 34816 ----a-w- c:\windows\system32\imgutil.dll
2010-02-21 12:45 . 2010-02-21 12:46 -------- d-----w- c:\windows\system32\ca-ES
2010-02-21 12:45 . 2010-02-21 12:46 -------- d-----w- c:\windows\system32\eu-ES
2010-02-21 12:45 . 2010-02-21 12:46 -------- d-----w- c:\windows\system32\vi-VN
2010-02-21 12:37 . 2010-02-21 12:37 -------- d-----w- c:\windows\system32\SPReview
2010-02-21 12:14 . 2009-04-10 22:28 928768 ----a-w- c:\windows\system32\scavenge.dll
2010-02-21 12:13 . 2009-04-10 22:27 57856 ----a-w- c:\windows\system32\compcln.exe
2010-02-21 12:04 . 2009-04-10 22:28 950784 ----a-w- c:\windows\system32\gpedit.dll
2010-02-21 12:03 . 2009-04-10 22:28 378368 ----a-w- c:\windows\system32\srcore.dll
2010-02-21 11:25 . 2010-02-21 11:25 -------- d-----w- C:\PerfLogs
2010-02-21 10:08 . 2010-02-21 10:08 -------- d-----w- C:\79c250fb128b28425d89
2010-02-21 10:04 . 2010-02-21 10:04 -------- d-----w- c:\windows\system32\EventProviders
2010-02-21 10:03 . 2010-02-21 10:08 -------- d-----w- C:\41e7fa4665b561a2a2fd
2010-02-21 09:04 . 2008-01-18 22:36 6656 ----a-w- c:\windows\system32\sdspres.dll
2010-02-21 09:04 . 2008-01-18 22:33 193024 ----a-w- c:\windows\system32\recdisc.exe
2010-02-21 09:02 . 2008-01-18 22:36 28160 ----a-w- c:\windows\system32\sxproxy.dll
2010-02-21 08:48 . 2008-01-18 22:33 128512 ----a-w- c:\windows\system32\MdSched.exe
2010-02-21 08:47 . 2008-01-18 22:36 151552 ----a-w- c:\windows\system32\rgb9rast.dll
2010-02-21 08:46 . 2008-01-18 22:38 4595712 ----a-w- c:\windows\system32\AuthFWSnapin.dll
2010-02-21 08:45 . 2008-01-18 22:34 54272 ----a-w- c:\windows\system32\fwcfg.dll
2010-02-21 08:44 . 2008-01-18 22:41 17976 ----a-w- c:\windows\system32\drivers\wmilib.sys
2010-02-21 08:43 . 2008-01-18 22:36 83456 ----a-w- c:\windows\system32\usbui.dll
2010-02-20 20:50 . 2010-02-20 20:50 2036736 ----a-w- c:\windows\system32\win32k.sys
2010-02-20 20:49 . 2010-02-20 20:49 313344 ----a-w- c:\windows\system32\wmpdxm.dll
2010-02-20 20:49 . 2010-02-20 20:49 7680 ----a-w- c:\windows\system32\spwmp.dll
2010-02-20 20:49 . 2010-02-20 20:49 4096 ----a-w- c:\windows\system32\dxmasf.dll
2010-02-20 20:48 . 2010-02-20 20:48 904776 ----a-w- c:\windows\system32\drivers\tcpip.sys
2010-02-20 20:48 . 2010-02-20 20:48 30720 ----a-w- c:\windows\system32\drivers\tcpipreg.sys
2010-02-20 18:45 . 2010-02-20 18:46 -------- d-----w- c:\users\Elena\AppData\Local\Ahead
2010-02-20 18:39 . 2010-02-20 18:45 -------- d-----w- c:\program files\Common Files\Ahead
2010-02-20 18:39 . 2010-02-20 18:39 -------- d-----w- c:\program files\Nero
2010-02-20 16:27 . 2010-02-20 16:27 -------- d-----w- c:\users\Elena\AppData\Local\Mozilla
2010-02-20 13:08 . 2010-02-22 20:46 -------- d-----w- c:\users\Elena\AppData\Roaming\Skype
2010-02-20 13:08 . 2010-02-20 13:08 -------- d-----w- c:\program files\Common Files\Skype
2010-02-20 13:08 . 2010-02-20 13:08 -------- d-----r- c:\program files\Skype
2010-02-20 08:57 . 2010-02-22 20:44 1 ----a-w- c:\users\Elena\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2010-02-20 08:56 . 2010-02-20 08:56 -------- d-----w- c:\users\Elena\AppData\Roaming\OpenOffice.org
2010-02-20 08:51 . 2010-02-20 08:52 -------- d-----w- c:\program files\OpenOffice.org 3
2010-02-10 23:40 . 2010-02-10 23:40 72704 ----a-w- c:\windows\system32\fontsub.dll
2010-02-10 23:40 . 2010-02-10 23:40 34304 ----a-w- c:\windows\system32\atmlib.dll
2010-02-10 23:40 . 2010-02-10 23:40 289792 ----a-w- c:\windows\system32\atmfd.dll
2010-02-10 23:40 . 2010-02-10 23:40 23552 ----a-w- c:\windows\system32\lpk.dll
2010-02-10 23:40 . 2010-02-10 23:40 156672 ----a-w- c:\windows\system32\t2embed.dll
2010-02-10 23:40 . 2010-02-10 23:40 10240 ----a-w- c:\windows\system32\dciman32.dll
2010-02-10 23:32 . 2010-02-10 23:32 61440 ----a-w- c:\windows\system32\winipsec.dll
2010-02-10 23:32 . 2010-02-10 23:32 272896 ----a-w- c:\windows\system32\polstore.dll
2010-02-10 23:31 . 2010-02-10 23:31 98816 ----a-w- c:\windows\system32\drivers\srvnet.sys
2010-02-10 23:30 . 2010-02-10 23:30 302080 ----a-w- c:\windows\system32\drivers\srv.sys
2010-02-10 23:29 . 2010-02-10 23:29 17920 ----a-w- c:\windows\system32\netevent.dll
2010-02-10 23:29 . 2010-02-10 23:29 9728 ----a-w- c:\windows\system32\TCPSVCS.EXE
2010-02-10 23:29 . 2010-02-10 23:29 11264 ----a-w- c:\windows\system32\MRINFO.EXE
2010-02-10 23:29 . 2010-02-10 23:29 8704 ----a-w- c:\windows\system32\HOSTNAME.EXE
2010-02-10 23:29 . 2010-02-10 23:29 105984 ----a-w- c:\windows\system32\netiohlp.dll
2010-02-10 23:29 . 2010-02-10 23:29 10240 ----a-w- c:\windows\system32\finger.exe
2010-02-10 23:29 . 2010-02-10 23:29 27136 ----a-w- c:\windows\system32\NETSTAT.EXE
2010-02-10 23:29 . 2010-02-10 23:29 19968 ----a-w- c:\windows\system32\ARP.EXE
2010-02-10 23:29 . 2010-02-10 23:29 17920 ----a-w- c:\windows\system32\ROUTE.EXE
2010-02-10 23:26 . 2010-02-10 23:26 127488 ----a-w- c:\windows\system32\L2SecHC.dll
2010-02-10 23:26 . 2010-02-10 23:26 68096 ----a-w- c:\windows\system32\wlanhlp.dll
2010-02-10 23:26 . 2010-02-10 23:26 65024 ----a-w- c:\windows\system32\wlanapi.dll
2010-02-10 23:26 . 2010-02-10 23:26 513536 ----a-w- c:\windows\system32\wlansvc.dll
2010-02-10 23:26 . 2010-02-10 23:26 302592 ----a-w- c:\windows\system32\wlansec.dll
2010-02-10 23:26 . 2010-02-10 23:26 293376 ----a-w- c:\windows\system32\wlanmsm.dll
2010-02-10 23:25 . 2010-02-10 23:25 1248768 ----a-w- c:\windows\system32\msxml3.dll
2010-02-10 23:25 . 2010-02-10 23:25 1401856 ----a-w- c:\windows\system32\msxml6.dll
2010-02-10 23:25 . 2010-02-10 23:25 2048 ----a-w- c:\windows\system32\msxml3r.dll
2010-02-10 23:24 . 2010-02-10 23:24 2048 ----a-w- c:\windows\system32\msxml6r.dll
2010-02-10 23:23 . 2010-02-10 23:23 218624 ----a-w- c:\windows\system32\msv1_0.dll
2010-02-10 23:23 . 2010-02-10 23:23 175104 ----a-w- c:\windows\system32\wdigest.dll
2010-02-10 23:23 . 2010-02-10 23:23 72704 ----a-w- c:\windows\system32\secur32.dll
2010-02-10 23:23 . 2010-02-10 23:23 439864 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2010-02-10 23:23 . 2010-02-10 23:23 9728 ----a-w- c:\windows\system32\lsass.exe
2010-02-10 23:23 . 2010-02-10 23:23 1259008 ----a-w- c:\windows\system32\lsasrv.dll
2010-02-10 23:21 . 2010-02-10 23:21 98816 ----a-w- c:\windows\system32\mfps.dll
2010-02-10 23:21 . 2010-02-10 23:21 2868224 ----a-w- c:\windows\system32\mf.dll
2010-02-10 23:21 . 2010-02-10 23:21 53248 ----a-w- c:\windows\system32\rrinstaller.exe
2010-02-10 23:21 . 2010-02-10 23:21 2048 ----a-w- c:\windows\system32\mferror.dll
2010-02-10 23:21 . 2010-02-10 23:21 24576 ----a-w- c:\windows\system32\mfpmp.exe
2010-02-10 23:20 . 2010-02-10 23:20 2048 ----a-w- c:\windows\system32\tzres.dll
2010-02-10 23:14 . 2010-02-10 23:14 71680 ----a-w- c:\windows\system32\atl.dll
2010-02-10 23:08 . 2010-02-10 23:08 160256 ----a-w- c:\windows\system32\wkssvc.dll
2010-02-10 23:07 . 2010-02-10 23:07 53248 ----a-w- c:\windows\system32\tsgqec.dll
2010-02-10 23:07 . 2010-02-10 23:07 2066432 ----a-w- c:\windows\system32\mstscax.dll
2010-02-10 23:07 . 2010-02-10 23:07 136192 ----a-w- c:\windows\system32\aaclient.dll
2010-02-10 22:13 . 2010-02-10 22:13 41984 ----a-w- c:\windows\system32\netfxperf.dll
2010-02-10 21:53 . 2010-02-10 21:53 84480 ----a-w- c:\windows\system32\INETRES.dll
2010-02-10 21:53 . 2010-02-10 21:53 60928 ----a-w- c:\windows\system32\msasn1.dll
2010-02-10 21:53 . 2010-02-10 21:53 784896 ----a-w- c:\windows\system32\rpcrt4.dll
2010-02-10 21:52 . 2010-02-10 21:52 144896 ----a-w- c:\windows\system32\drivers\srv2.sys
2010-02-10 21:52 . 2010-02-10 21:52 243712 ----a-w- c:\windows\system32\rastls.dll
2010-02-10 21:51 . 2010-02-10 21:51 355328 ----a-w- c:\windows\system32\WSDApi.dll
2010-02-10 21:50 . 2010-02-10 21:50 65024 ----a-w- c:\windows\system32\avicap32.dll
2010-02-10 21:50 . 2010-02-10 21:50 123904 ----a-w- c:\windows\system32\msvfw32.dll
2010-02-10 21:50 . 2010-02-10 21:50 91136 ----a-w- c:\windows\system32\avifil32.dll
2010-02-10 21:50 . 2010-02-10 21:50 82944 ----a-w- c:\windows\system32\mciavi32.dll
2010-02-10 21:50 . 2010-02-10 21:50 31744 ----a-w- c:\windows\system32\msvidc32.dll
2010-02-10 21:50 . 2010-02-10 21:50 13312 ----a-w- c:\windows\system32\msrle32.dll
2010-02-10 21:50 . 2010-02-10 21:50 22528 ----a-w- c:\windows\system32\msyuv.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-02-22 20:47 . 2007-09-22 14:06 12 ----a-w- c:\windows\bthservsdp.dat
2010-02-22 18:46 . 2007-12-03 13:28 -------- d-----w- c:\users\Elena\AppData\Roaming\skypePM
2010-02-21 21:30 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat
2010-02-21 21:30 . 2010-02-21 21:30 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_07_00.Wdf
2010-02-21 21:29 . 2010-02-21 21:29 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_07_00.Wdf
2010-02-21 21:23 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2010-02-21 20:44 . 2007-09-22 21:43 -------- d-----w- c:\program files\CONEXANT
2010-02-21 12:46 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Sidebar
2010-02-21 12:46 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Collaboration
2010-02-21 12:46 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Calendar
2010-02-21 12:46 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Photo Gallery
2010-02-21 12:46 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Defender
2010-02-21 12:43 . 2010-02-21 12:43 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_00_00.Wdf
2010-02-21 12:43 . 2010-02-21 12:43 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_00_00.Wdf
2010-02-21 10:57 . 2006-11-02 10:32 101888 ----a-w- c:\windows\system32\ifxcardm.dll
2010-02-21 10:57 . 2006-11-02 10:32 82432 ----a-w- c:\windows\system32\axaltocm.dll
2010-02-20 21:09 . 2007-09-22 21:44 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-02-20 15:50 . 2008-05-04 15:33 -------- d-----w- c:\program files\nLite
2010-02-20 13:08 . 2007-12-03 13:23 -------- d-----w- c:\programdata\Skype
2010-02-20 12:57 . 2010-02-20 12:57 56 ---ha-w- c:\programdata\ezsidmv.dat
2010-02-20 09:32 . 2007-09-22 14:05 102024 ----a-w- c:\users\Elena\AppData\Local\GDIPFONTCACHEV1.DAT
2010-02-08 20:54 . 2007-10-07 21:15 -------- d-----w- c:\program files\Common Files\InstallShield
2010-02-08 20:51 . 2008-05-04 14:35 -------- d-----w- c:\users\Elena\AppData\Roaming\GHISLER
2010-02-07 20:30 . 2008-03-27 11:58 -------- d-----w- c:\programdata\BVRP Software
2010-02-06 08:42 . 2007-10-01 17:40 -------- d-----w- c:\programdata\Microsoft Help
2010-02-06 08:41 . 2008-06-12 13:51 -------- d-----w- c:\program files\Microsoft Works
2010-02-06 08:39 . 2006-11-02 12:35 -------- d-----w- c:\program files\MSBuild
2010-01-14 10:12 . 2009-11-14 00:35 181120 ----a-w- c:\windows\system32\MpSigStub.exe
2010-01-08 07:13 . 2010-01-08 07:13 33096 ----a-w- c:\windows\system32\drivers\epfwndis.sys
2010-01-02 06:38 . 2010-02-21 17:34 916480 ----a-w- c:\windows\system32\wininet.dll
2010-01-02 06:32 . 2010-02-21 17:34 71680 ----a-w- c:\windows\system32\iesetup.dll
2010-01-02 06:32 . 2010-02-21 17:34 109056 ----a-w- c:\windows\system32\iesysprep.dll
2010-01-02 04:57 . 2010-02-21 17:34 133632 ----a-w- c:\windows\system32\ieUnatt.exe
2009-12-18 14:02 . 2009-12-18 14:02 135048 ----a-w- c:\windows\system32\drivers\epfw.sys
2007-03-21 13:46 . 2007-03-21 13:46 8192 --sha-w- c:\windows\Users\Default\NTUSER.DAT
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Google Update"="c:\users\Elena\AppData\Local\Google\Update\GoogleUpdate.exe" [2010-02-09 135664]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-18 202240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2009-11-16 2054360]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-18 1008184]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2006-10-28 815104]
"Keyboard Manager Utility"="c:\program files\Keyboard Manager\Manager Utility\KeyboardManager.exe" [2007-01-11 1359872]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" [2006-09-29 151552]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 39792]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 155648]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2008-02-11 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2008-02-11 166424]
"Persistence"="c:\windows\system32\igfxpers.exe" [2008-02-11 133656]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Monitor]
2006-11-03 11:01 319488 ----a-w- c:\windows\PixArt\Pac207\Monitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"AntiVirusOverride"=dword:00000001
"AntiSpywareOverride"=dword:00000001
"FirewallOverride"=dword:00000001
"VistaSp2"=hex(b):f4,aa,f5,d4,f4,b2,ca,01
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-161961244-2301921912-1863419576-1000]
"EnableNotifications"=dword:00000001
"EnableNotificationsRef"=dword:00000002
R1 ehdrv;ehdrv;c:\windows\System32\drivers\ehdrv.sys [16.11.2009 9:03 108792]
R2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [16.11.2009 9:04 735960]
S0 sptd;sptd;c:\windows\System32\drivers\sptd.sys [6.3.2008 9:38 716272]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\System32\drivers\b57nd60x.sys [2.11.2006 11:25 167936]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc
bthsvcs REG_MULTI_SZ BthServ
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
Obsah adresáře 'Naplánované úlohy'
2010-02-22 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-161961244-2301921912-1863419576-1000Core.job
- c:\users\Elena\AppData\Local\Google\Update\GoogleUpdate.exe [2010-02-09 19:59]
2010-02-22 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-161961244-2301921912-1863419576-1000UA.job
- c:\users\Elena\AppData\Local\Google\Update\GoogleUpdate.exe [2010-02-09 19:59]
2010-02-22 c:\windows\Tasks\User_Feed_Synchronization-{018BC8D0-72C8-4218-838B-76196E8C205D}.job
- c:\windows\system32\msfeedssync.exe [2010-02-21 04:56]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: &??????? ? Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\users\Elena\AppData\Roaming\Mozilla\Firefox\Profiles\rxyhe6z0.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - plugin: c:\users\Elena\AppData\Local\Google\Update\1.2.183.13\npGoogleOneClick8.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
URLSearchHooks-{83821C2B-32A8-4DD7-B6D4-44309A78E668} - (no file)
URLSearchHooks-{9CB65206-89C4-402c-BA80-02D8C59F9B1D} - (no file)
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-02-22 22:03
Windows 6.0.6002 Service Pack 2 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
ComboFix 10-02-21.02 - Elena 22.02.2010 21:52:12.1.2 - x86
Microsoft® Windows Vista™ Home Basic 6.0.6002.2.1250.420.1033.18.1013.428 [GMT 1:00]
Spuštěný z: c:\users\Elena\Desktop\ComboFix.exe
* Rezidentní štít AV je zapnutý
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\$recycle.bin\S-1-5-21-189508150-3312308453-972262665-500
c:\$recycle.bin\S-1-5-21-2365545147-1999384947-2466353664-500
c:\$recycle.bin\S-1-5-21-584220063-406672360-1510999575-500
c:\program files\INSTALL.LOG
c:\windows\system32\gatherWirelessInfo.vbs
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-01-22 do 2010-02-22 )))))))))))))))))))))))))))))))
.
2010-02-22 21:03 . 2010-02-22 21:03 -------- d-----w- c:\users\Elena\AppData\Local\temp
2010-02-22 17:57 . 2010-02-22 18:02 -------- d-----w- c:\program files\trend micro
2010-02-22 17:57 . 2010-02-22 17:59 -------- d-----w- C:\rsit
2010-02-22 17:41 . 2010-02-22 17:41 -------- d-----w- c:\program files\CCleaner
2010-02-21 21:30 . 2010-02-21 21:30 -------- d-----w- c:\program files\Windows Portable Devices
2010-02-21 21:27 . 2009-09-10 02:00 92672 ----a-w- c:\windows\system32\UIAnimation.dll
2010-02-21 21:27 . 2009-09-10 02:00 1164800 ----a-w- c:\windows\system32\UIRibbonRes.dll
2010-02-21 21:27 . 2009-09-10 02:01 3023360 ----a-w- c:\windows\system32\UIRibbon.dll
2010-02-21 21:25 . 2009-10-01 01:02 30208 ----a-w- c:\windows\system32\WPDShextAutoplay.exe
2010-02-21 21:24 . 2009-10-08 21:07 4096 ----a-w- c:\windows\system32\oleaccrc.dll
2010-02-21 21:24 . 2009-10-08 21:08 555520 ----a-w- c:\windows\system32\UIAutomationCore.dll
2010-02-21 21:24 . 2009-10-08 21:08 234496 ----a-w- c:\windows\system32\oleacc.dll
2010-02-21 21:22 . 2009-08-24 11:36 377344 ----a-w- c:\windows\system32\winhttp.dll
2010-02-21 21:22 . 2009-11-03 19:41 411648 ----a-w- c:\windows\system32\drivers\http.sys
2010-02-21 21:22 . 2009-11-03 21:42 30720 ----a-w- c:\windows\system32\httpapi.dll
2010-02-21 21:22 . 2009-11-03 21:43 24064 ----a-w- c:\windows\system32\nshhttp.dll
2010-02-21 20:46 . 2008-02-11 19:13 920088 ----a-w- c:\windows\system32\igxpun.exe
2010-02-21 20:39 . 2009-09-10 14:58 310784 ----a-w- c:\windows\system32\unregmp2.exe
2010-02-21 20:39 . 2009-09-10 14:59 8147456 ----a-w- c:\windows\system32\wmploc.DLL
2010-02-21 20:37 . 2009-08-29 00:27 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll
2010-02-21 20:37 . 2009-08-29 00:14 28672 ----a-w- c:\windows\system32\Apphlpdm.dll
2010-02-21 18:55 . 2009-06-15 14:52 499712 ----a-w- c:\windows\system32\kerberos.dll
2010-02-21 18:55 . 2009-06-15 14:53 270848 ----a-w- c:\windows\system32\schannel.dll
2010-02-21 17:32 . 2009-03-08 11:32 72704 ----a-w- c:\windows\system32\admparse.dll
2010-02-21 17:32 . 2009-03-08 11:31 48128 ----a-w- c:\windows\system32\mshtmler.dll
2010-02-21 17:32 . 2009-03-08 11:22 156160 ----a-w- c:\windows\system32\msls31.dll
2010-02-21 17:32 . 2009-03-08 11:33 18944 ----a-w- c:\windows\system32\corpol.dll
2010-02-21 17:32 . 2009-03-08 11:31 34816 ----a-w- c:\windows\system32\imgutil.dll
2010-02-21 12:45 . 2010-02-21 12:46 -------- d-----w- c:\windows\system32\ca-ES
2010-02-21 12:45 . 2010-02-21 12:46 -------- d-----w- c:\windows\system32\eu-ES
2010-02-21 12:45 . 2010-02-21 12:46 -------- d-----w- c:\windows\system32\vi-VN
2010-02-21 12:37 . 2010-02-21 12:37 -------- d-----w- c:\windows\system32\SPReview
2010-02-21 12:14 . 2009-04-10 22:28 928768 ----a-w- c:\windows\system32\scavenge.dll
2010-02-21 12:13 . 2009-04-10 22:27 57856 ----a-w- c:\windows\system32\compcln.exe
2010-02-21 12:04 . 2009-04-10 22:28 950784 ----a-w- c:\windows\system32\gpedit.dll
2010-02-21 12:03 . 2009-04-10 22:28 378368 ----a-w- c:\windows\system32\srcore.dll
2010-02-21 11:25 . 2010-02-21 11:25 -------- d-----w- C:\PerfLogs
2010-02-21 10:08 . 2010-02-21 10:08 -------- d-----w- C:\79c250fb128b28425d89
2010-02-21 10:04 . 2010-02-21 10:04 -------- d-----w- c:\windows\system32\EventProviders
2010-02-21 10:03 . 2010-02-21 10:08 -------- d-----w- C:\41e7fa4665b561a2a2fd
2010-02-21 09:04 . 2008-01-18 22:36 6656 ----a-w- c:\windows\system32\sdspres.dll
2010-02-21 09:04 . 2008-01-18 22:33 193024 ----a-w- c:\windows\system32\recdisc.exe
2010-02-21 09:02 . 2008-01-18 22:36 28160 ----a-w- c:\windows\system32\sxproxy.dll
2010-02-21 08:48 . 2008-01-18 22:33 128512 ----a-w- c:\windows\system32\MdSched.exe
2010-02-21 08:47 . 2008-01-18 22:36 151552 ----a-w- c:\windows\system32\rgb9rast.dll
2010-02-21 08:46 . 2008-01-18 22:38 4595712 ----a-w- c:\windows\system32\AuthFWSnapin.dll
2010-02-21 08:45 . 2008-01-18 22:34 54272 ----a-w- c:\windows\system32\fwcfg.dll
2010-02-21 08:44 . 2008-01-18 22:41 17976 ----a-w- c:\windows\system32\drivers\wmilib.sys
2010-02-21 08:43 . 2008-01-18 22:36 83456 ----a-w- c:\windows\system32\usbui.dll
2010-02-20 20:50 . 2010-02-20 20:50 2036736 ----a-w- c:\windows\system32\win32k.sys
2010-02-20 20:49 . 2010-02-20 20:49 313344 ----a-w- c:\windows\system32\wmpdxm.dll
2010-02-20 20:49 . 2010-02-20 20:49 7680 ----a-w- c:\windows\system32\spwmp.dll
2010-02-20 20:49 . 2010-02-20 20:49 4096 ----a-w- c:\windows\system32\dxmasf.dll
2010-02-20 20:48 . 2010-02-20 20:48 904776 ----a-w- c:\windows\system32\drivers\tcpip.sys
2010-02-20 20:48 . 2010-02-20 20:48 30720 ----a-w- c:\windows\system32\drivers\tcpipreg.sys
2010-02-20 18:45 . 2010-02-20 18:46 -------- d-----w- c:\users\Elena\AppData\Local\Ahead
2010-02-20 18:39 . 2010-02-20 18:45 -------- d-----w- c:\program files\Common Files\Ahead
2010-02-20 18:39 . 2010-02-20 18:39 -------- d-----w- c:\program files\Nero
2010-02-20 16:27 . 2010-02-20 16:27 -------- d-----w- c:\users\Elena\AppData\Local\Mozilla
2010-02-20 13:08 . 2010-02-22 20:46 -------- d-----w- c:\users\Elena\AppData\Roaming\Skype
2010-02-20 13:08 . 2010-02-20 13:08 -------- d-----w- c:\program files\Common Files\Skype
2010-02-20 13:08 . 2010-02-20 13:08 -------- d-----r- c:\program files\Skype
2010-02-20 08:57 . 2010-02-22 20:44 1 ----a-w- c:\users\Elena\AppData\Roaming\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2010-02-20 08:56 . 2010-02-20 08:56 -------- d-----w- c:\users\Elena\AppData\Roaming\OpenOffice.org
2010-02-20 08:51 . 2010-02-20 08:52 -------- d-----w- c:\program files\OpenOffice.org 3
2010-02-10 23:40 . 2010-02-10 23:40 72704 ----a-w- c:\windows\system32\fontsub.dll
2010-02-10 23:40 . 2010-02-10 23:40 34304 ----a-w- c:\windows\system32\atmlib.dll
2010-02-10 23:40 . 2010-02-10 23:40 289792 ----a-w- c:\windows\system32\atmfd.dll
2010-02-10 23:40 . 2010-02-10 23:40 23552 ----a-w- c:\windows\system32\lpk.dll
2010-02-10 23:40 . 2010-02-10 23:40 156672 ----a-w- c:\windows\system32\t2embed.dll
2010-02-10 23:40 . 2010-02-10 23:40 10240 ----a-w- c:\windows\system32\dciman32.dll
2010-02-10 23:32 . 2010-02-10 23:32 61440 ----a-w- c:\windows\system32\winipsec.dll
2010-02-10 23:32 . 2010-02-10 23:32 272896 ----a-w- c:\windows\system32\polstore.dll
2010-02-10 23:31 . 2010-02-10 23:31 98816 ----a-w- c:\windows\system32\drivers\srvnet.sys
2010-02-10 23:30 . 2010-02-10 23:30 302080 ----a-w- c:\windows\system32\drivers\srv.sys
2010-02-10 23:29 . 2010-02-10 23:29 17920 ----a-w- c:\windows\system32\netevent.dll
2010-02-10 23:29 . 2010-02-10 23:29 9728 ----a-w- c:\windows\system32\TCPSVCS.EXE
2010-02-10 23:29 . 2010-02-10 23:29 11264 ----a-w- c:\windows\system32\MRINFO.EXE
2010-02-10 23:29 . 2010-02-10 23:29 8704 ----a-w- c:\windows\system32\HOSTNAME.EXE
2010-02-10 23:29 . 2010-02-10 23:29 105984 ----a-w- c:\windows\system32\netiohlp.dll
2010-02-10 23:29 . 2010-02-10 23:29 10240 ----a-w- c:\windows\system32\finger.exe
2010-02-10 23:29 . 2010-02-10 23:29 27136 ----a-w- c:\windows\system32\NETSTAT.EXE
2010-02-10 23:29 . 2010-02-10 23:29 19968 ----a-w- c:\windows\system32\ARP.EXE
2010-02-10 23:29 . 2010-02-10 23:29 17920 ----a-w- c:\windows\system32\ROUTE.EXE
2010-02-10 23:26 . 2010-02-10 23:26 127488 ----a-w- c:\windows\system32\L2SecHC.dll
2010-02-10 23:26 . 2010-02-10 23:26 68096 ----a-w- c:\windows\system32\wlanhlp.dll
2010-02-10 23:26 . 2010-02-10 23:26 65024 ----a-w- c:\windows\system32\wlanapi.dll
2010-02-10 23:26 . 2010-02-10 23:26 513536 ----a-w- c:\windows\system32\wlansvc.dll
2010-02-10 23:26 . 2010-02-10 23:26 302592 ----a-w- c:\windows\system32\wlansec.dll
2010-02-10 23:26 . 2010-02-10 23:26 293376 ----a-w- c:\windows\system32\wlanmsm.dll
2010-02-10 23:25 . 2010-02-10 23:25 1248768 ----a-w- c:\windows\system32\msxml3.dll
2010-02-10 23:25 . 2010-02-10 23:25 1401856 ----a-w- c:\windows\system32\msxml6.dll
2010-02-10 23:25 . 2010-02-10 23:25 2048 ----a-w- c:\windows\system32\msxml3r.dll
2010-02-10 23:24 . 2010-02-10 23:24 2048 ----a-w- c:\windows\system32\msxml6r.dll
2010-02-10 23:23 . 2010-02-10 23:23 218624 ----a-w- c:\windows\system32\msv1_0.dll
2010-02-10 23:23 . 2010-02-10 23:23 175104 ----a-w- c:\windows\system32\wdigest.dll
2010-02-10 23:23 . 2010-02-10 23:23 72704 ----a-w- c:\windows\system32\secur32.dll
2010-02-10 23:23 . 2010-02-10 23:23 439864 ----a-w- c:\windows\system32\drivers\ksecdd.sys
2010-02-10 23:23 . 2010-02-10 23:23 9728 ----a-w- c:\windows\system32\lsass.exe
2010-02-10 23:23 . 2010-02-10 23:23 1259008 ----a-w- c:\windows\system32\lsasrv.dll
2010-02-10 23:21 . 2010-02-10 23:21 98816 ----a-w- c:\windows\system32\mfps.dll
2010-02-10 23:21 . 2010-02-10 23:21 2868224 ----a-w- c:\windows\system32\mf.dll
2010-02-10 23:21 . 2010-02-10 23:21 53248 ----a-w- c:\windows\system32\rrinstaller.exe
2010-02-10 23:21 . 2010-02-10 23:21 2048 ----a-w- c:\windows\system32\mferror.dll
2010-02-10 23:21 . 2010-02-10 23:21 24576 ----a-w- c:\windows\system32\mfpmp.exe
2010-02-10 23:20 . 2010-02-10 23:20 2048 ----a-w- c:\windows\system32\tzres.dll
2010-02-10 23:14 . 2010-02-10 23:14 71680 ----a-w- c:\windows\system32\atl.dll
2010-02-10 23:08 . 2010-02-10 23:08 160256 ----a-w- c:\windows\system32\wkssvc.dll
2010-02-10 23:07 . 2010-02-10 23:07 53248 ----a-w- c:\windows\system32\tsgqec.dll
2010-02-10 23:07 . 2010-02-10 23:07 2066432 ----a-w- c:\windows\system32\mstscax.dll
2010-02-10 23:07 . 2010-02-10 23:07 136192 ----a-w- c:\windows\system32\aaclient.dll
2010-02-10 22:13 . 2010-02-10 22:13 41984 ----a-w- c:\windows\system32\netfxperf.dll
2010-02-10 21:53 . 2010-02-10 21:53 84480 ----a-w- c:\windows\system32\INETRES.dll
2010-02-10 21:53 . 2010-02-10 21:53 60928 ----a-w- c:\windows\system32\msasn1.dll
2010-02-10 21:53 . 2010-02-10 21:53 784896 ----a-w- c:\windows\system32\rpcrt4.dll
2010-02-10 21:52 . 2010-02-10 21:52 144896 ----a-w- c:\windows\system32\drivers\srv2.sys
2010-02-10 21:52 . 2010-02-10 21:52 243712 ----a-w- c:\windows\system32\rastls.dll
2010-02-10 21:51 . 2010-02-10 21:51 355328 ----a-w- c:\windows\system32\WSDApi.dll
2010-02-10 21:50 . 2010-02-10 21:50 65024 ----a-w- c:\windows\system32\avicap32.dll
2010-02-10 21:50 . 2010-02-10 21:50 123904 ----a-w- c:\windows\system32\msvfw32.dll
2010-02-10 21:50 . 2010-02-10 21:50 91136 ----a-w- c:\windows\system32\avifil32.dll
2010-02-10 21:50 . 2010-02-10 21:50 82944 ----a-w- c:\windows\system32\mciavi32.dll
2010-02-10 21:50 . 2010-02-10 21:50 31744 ----a-w- c:\windows\system32\msvidc32.dll
2010-02-10 21:50 . 2010-02-10 21:50 13312 ----a-w- c:\windows\system32\msrle32.dll
2010-02-10 21:50 . 2010-02-10 21:50 22528 ----a-w- c:\windows\system32\msyuv.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-02-22 20:47 . 2007-09-22 14:06 12 ----a-w- c:\windows\bthservsdp.dat
2010-02-22 18:46 . 2007-12-03 13:28 -------- d-----w- c:\users\Elena\AppData\Roaming\skypePM
2010-02-21 21:30 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat
2010-02-21 21:30 . 2010-02-21 21:30 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_07_00.Wdf
2010-02-21 21:29 . 2010-02-21 21:29 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_07_00.Wdf
2010-02-21 21:23 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2010-02-21 20:44 . 2007-09-22 21:43 -------- d-----w- c:\program files\CONEXANT
2010-02-21 12:46 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Sidebar
2010-02-21 12:46 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Collaboration
2010-02-21 12:46 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Calendar
2010-02-21 12:46 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Photo Gallery
2010-02-21 12:46 . 2006-11-02 12:35 -------- d-----w- c:\program files\Windows Defender
2010-02-21 12:43 . 2010-02-21 12:43 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_00_00.Wdf
2010-02-21 12:43 . 2010-02-21 12:43 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdMtpDr_01_00_00.Wdf
2010-02-21 10:57 . 2006-11-02 10:32 101888 ----a-w- c:\windows\system32\ifxcardm.dll
2010-02-21 10:57 . 2006-11-02 10:32 82432 ----a-w- c:\windows\system32\axaltocm.dll
2010-02-20 21:09 . 2007-09-22 21:44 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-02-20 15:50 . 2008-05-04 15:33 -------- d-----w- c:\program files\nLite
2010-02-20 13:08 . 2007-12-03 13:23 -------- d-----w- c:\programdata\Skype
2010-02-20 12:57 . 2010-02-20 12:57 56 ---ha-w- c:\programdata\ezsidmv.dat
2010-02-20 09:32 . 2007-09-22 14:05 102024 ----a-w- c:\users\Elena\AppData\Local\GDIPFONTCACHEV1.DAT
2010-02-08 20:54 . 2007-10-07 21:15 -------- d-----w- c:\program files\Common Files\InstallShield
2010-02-08 20:51 . 2008-05-04 14:35 -------- d-----w- c:\users\Elena\AppData\Roaming\GHISLER
2010-02-07 20:30 . 2008-03-27 11:58 -------- d-----w- c:\programdata\BVRP Software
2010-02-06 08:42 . 2007-10-01 17:40 -------- d-----w- c:\programdata\Microsoft Help
2010-02-06 08:41 . 2008-06-12 13:51 -------- d-----w- c:\program files\Microsoft Works
2010-02-06 08:39 . 2006-11-02 12:35 -------- d-----w- c:\program files\MSBuild
2010-01-14 10:12 . 2009-11-14 00:35 181120 ----a-w- c:\windows\system32\MpSigStub.exe
2010-01-08 07:13 . 2010-01-08 07:13 33096 ----a-w- c:\windows\system32\drivers\epfwndis.sys
2010-01-02 06:38 . 2010-02-21 17:34 916480 ----a-w- c:\windows\system32\wininet.dll
2010-01-02 06:32 . 2010-02-21 17:34 71680 ----a-w- c:\windows\system32\iesetup.dll
2010-01-02 06:32 . 2010-02-21 17:34 109056 ----a-w- c:\windows\system32\iesysprep.dll
2010-01-02 04:57 . 2010-02-21 17:34 133632 ----a-w- c:\windows\system32\ieUnatt.exe
2009-12-18 14:02 . 2009-12-18 14:02 135048 ----a-w- c:\windows\system32\drivers\epfw.sys
2007-03-21 13:46 . 2007-03-21 13:46 8192 --sha-w- c:\windows\Users\Default\NTUSER.DAT
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Google Update"="c:\users\Elena\AppData\Local\Google\Update\GoogleUpdate.exe" [2010-02-09 135664]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-18 202240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2009-11-16 2054360]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-18 1008184]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2006-10-28 815104]
"Keyboard Manager Utility"="c:\program files\Keyboard Manager\Manager Utility\KeyboardManager.exe" [2007-01-11 1359872]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" [2006-09-29 151552]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 39792]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2006-01-12 155648]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2008-02-11 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2008-02-11 166424]
"Persistence"="c:\windows\system32\igfxpers.exe" [2008-02-11 133656]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Monitor]
2006-11-03 11:01 319488 ----a-w- c:\windows\PixArt\Pac207\Monitor.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"AntiVirusOverride"=dword:00000001
"AntiSpywareOverride"=dword:00000001
"FirewallOverride"=dword:00000001
"VistaSp2"=hex(b):f4,aa,f5,d4,f4,b2,ca,01
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-161961244-2301921912-1863419576-1000]
"EnableNotifications"=dword:00000001
"EnableNotificationsRef"=dword:00000002
R1 ehdrv;ehdrv;c:\windows\System32\drivers\ehdrv.sys [16.11.2009 9:03 108792]
R2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [16.11.2009 9:04 735960]
S0 sptd;sptd;c:\windows\System32\drivers\sptd.sys [6.3.2008 9:38 716272]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\System32\drivers\b57nd60x.sys [2.11.2006 11:25 167936]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc
bthsvcs REG_MULTI_SZ BthServ
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
Obsah adresáře 'Naplánované úlohy'
2010-02-22 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-161961244-2301921912-1863419576-1000Core.job
- c:\users\Elena\AppData\Local\Google\Update\GoogleUpdate.exe [2010-02-09 19:59]
2010-02-22 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-161961244-2301921912-1863419576-1000UA.job
- c:\users\Elena\AppData\Local\Google\Update\GoogleUpdate.exe [2010-02-09 19:59]
2010-02-22 c:\windows\Tasks\User_Feed_Synchronization-{018BC8D0-72C8-4218-838B-76196E8C205D}.job
- c:\windows\system32\msfeedssync.exe [2010-02-21 04:56]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: &??????? ? Microsoft Excel - c:\progra~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\users\Elena\AppData\Roaming\Mozilla\Firefox\Profiles\rxyhe6z0.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - plugin: c:\users\Elena\AppData\Local\Google\Update\1.2.183.13\npGoogleOneClick8.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
URLSearchHooks-{83821C2B-32A8-4DD7-B6D4-44309A78E668} - (no file)
URLSearchHooks-{9CB65206-89C4-402c-BA80-02D8C59F9B1D} - (no file)
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-02-22 22:03
Windows 6.0.6002 Service Pack 2 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Prosím kontrolu logu
tak tady jsou oba logy z gmeru:
1 log:
MER 1.0.15.15281 - http://www.gmer.net
Rootkit quick scan 2010-02-23 21:54:18
Windows 6.0.6002 Service Pack 2
Running: gmer.exe; Driver: C:\Users\Elena\AppData\Local\Temp\fxddypod.sys
---- Devices - GMER 1.0.15 ----
Device \FileSystem\Ntfs \Ntfs 84B031F8
AttachedDevice \FileSystem\Ntfs \Ntfs eamon.sys (Amon monitor/ESET)
AttachedDevice \Driver\tdx \Device\Ip epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
AttachedDevice \Driver\tdx \Device\Tcp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
AttachedDevice \Driver\tdx \Device\Udp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
AttachedDevice \Driver\tdx \Device\RawIp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
AttachedDevice \Driver\kbdclass \Device\KeyboardClass0 Wdf01000.sys (WDF Dynamic/Microsoft Corporation)
AttachedDevice \Driver\kbdclass \Device\KeyboardClass1 Wdf01000.sys (WDF Dynamic/Microsoft Corporation)
---- Threads - GMER 1.0.15 ----
Thread System [4:420] 8C92B930
---- EOF - GMER 1.0.15 ----
.....a tady je druhý log:
GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-02-23 22:24:19
Windows 6.0.6002 Service Pack 2
Running: gmer.exe; Driver: C:\Users\Elena\AppData\Local\Temp\fxddypod.sys
---- System - GMER 1.0.15 ----
INT 0x62 ? 861A5BF8
INT 0x82 ? 84B00BF8
INT 0x92 ? 83D46BF8
INT 0xA2 ? 861A5BF8
INT 0xB2 ? 861A5BF8
---- Kernel code sections - GMER 1.0.15 ----
? System32\Drivers\spyt.sys The system cannot find the path specified. !
.text USBPORT.SYS!DllUnload 869F141B 5 Bytes JMP 861A51D8
---- User code sections - GMER 1.0.15 ----
.text C:\Program Files\ESET\ESET Smart Security\ekrn.exe[1748] kernel32.dll!SetUnhandledExceptionFilter 7704A84F 4 Bytes [C2, 04, 00, 00]
---- Kernel IAT/EAT - GMER 1.0.15 ----
IAT \SystemRoot\system32\drivers\atapi.sys[ataport.SYS!AtaPortWritePortUchar] [8069A6D2] \SystemRoot\System32\Drivers\spyt.sys
IAT \SystemRoot\system32\drivers\atapi.sys[ataport.SYS!AtaPortReadPortUchar] [8069A040] \SystemRoot\System32\Drivers\spyt.sys
IAT \SystemRoot\system32\drivers\atapi.sys[ataport.SYS!AtaPortWritePortBufferUshort] [8069A7FC] \SystemRoot\System32\Drivers\spyt.sys
IAT \SystemRoot\system32\drivers\atapi.sys[ataport.SYS!AtaPortReadPortUshort] [8069A0BE] \SystemRoot\System32\Drivers\spyt.sys
IAT \SystemRoot\system32\drivers\atapi.sys[ataport.SYS!AtaPortReadPortBufferUshort] [8069A13C] \SystemRoot\System32\Drivers\spyt.sys
IAT \SystemRoot\system32\DRIVERS\i8042prt.sys[HAL.dll!READ_PORT_UCHAR] [806A9D92] \SystemRoot\System32\Drivers\spyt.sys
---- Devices - GMER 1.0.15 ----
Device \FileSystem\Ntfs \Ntfs 84B031F8
AttachedDevice \FileSystem\Ntfs \Ntfs eamon.sys (Amon monitor/ESET)
AttachedDevice \Driver\kbdclass \Device\KeyboardClass0 Wdf01000.sys (WDF Dynamic/Microsoft Corporation)
AttachedDevice \Driver\kbdclass \Device\KeyboardClass1 Wdf01000.sys (WDF Dynamic/Microsoft Corporation)
Device \Driver\netbt \Device\NetBT_Tcpip_{063A7FAF-A6A2-4C02-9EDE-0D9912C1DEA2} 8C8A4500
Device \Driver\volmgr \Device\VolMgrControl 84AFE1F8
Device \Driver\usbuhci \Device\USBPDO-0 862511F8
Device \Driver\usbuhci \Device\USBPDO-1 862511F8
Device \Driver\usbuhci \Device\USBPDO-2 862511F8
Device \Driver\usbuhci \Device\USBPDO-3 862511F8
Device \Driver\usbehci \Device\USBPDO-4 862521F8
AttachedDevice \Driver\tdx \Device\Tcp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
Device \Driver\volmgr \Device\HarddiskVolume1 84AFE1F8
Device \Driver\volmgr \Device\HarddiskVolume2 84AFE1F8
Device \Driver\cdrom \Device\CdRom0 862EC2A0
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-0 84B011F8
Device \Driver\iaStor \Device\Ide\iaStor0 [82753F90] \SystemRoot\system32\DRIVERS\iaStor.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX}
Device \Driver\atapi \Device\Ide\IdePort0 84B011F8
Device \Driver\iaStor \Device\Ide\IAAStorageDevice-0 [82753F90] \SystemRoot\system32\DRIVERS\iaStor.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX}
Device \Driver\volmgr \Device\HarddiskVolume3 84AFE1F8
Device \Driver\netbt \Device\NetBt_Wins_Export 8C8A4500
Device \Driver\Smb \Device\NetbiosSmb 8C8691F8
Device \Driver\iScsiPrt \Device\RaidPort0 863311F8
Device \Driver\netbt \Device\NetBT_Tcpip_{C28C4573-1273-4A20-8372-D82A58D7E9FE} 8C8A4500
AttachedDevice \Driver\tdx \Device\Udp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
AttachedDevice \Driver\tdx \Device\RawIp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
Device \Driver\usbuhci \Device\USBFDO-0 862511F8
Device \Driver\usbuhci \Device\USBFDO-1 862511F8
Device \Driver\usbuhci \Device\USBFDO-2 862511F8
Device \Driver\usbuhci \Device\USBFDO-3 862511F8
Device \Driver\netbt \Device\NetBT_Tcpip_{C61E41FB-EA2B-4222-A2BE-509DDC46F5AC} 8C8A4500
Device \Driver\usbehci \Device\USBFDO-4 862521F8
Device \FileSystem\cdfs \Cdfs 8627A1F8
---- Threads - GMER 1.0.15 ----
Thread System [4:420] 8C92B930
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\0011e2fc6c3a
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s1 771343423
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s2 285507792
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@h0 1
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0 0
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh 0xA2 0x57 0xAC 0x0E ...
Reg HKLM\SYSTEM\ControlSet002\Services\BTHPORT\Parameters\Keys\0011e2fc6c3a (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0 0
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh 0xA2 0x57 0xAC 0x0E ...
---- EOF - GMER 1.0.15 ----
díky moc
1 log:
MER 1.0.15.15281 - http://www.gmer.net
Rootkit quick scan 2010-02-23 21:54:18
Windows 6.0.6002 Service Pack 2
Running: gmer.exe; Driver: C:\Users\Elena\AppData\Local\Temp\fxddypod.sys
---- Devices - GMER 1.0.15 ----
Device \FileSystem\Ntfs \Ntfs 84B031F8
AttachedDevice \FileSystem\Ntfs \Ntfs eamon.sys (Amon monitor/ESET)
AttachedDevice \Driver\tdx \Device\Ip epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
AttachedDevice \Driver\tdx \Device\Tcp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
AttachedDevice \Driver\tdx \Device\Udp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
AttachedDevice \Driver\tdx \Device\RawIp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
AttachedDevice \Driver\kbdclass \Device\KeyboardClass0 Wdf01000.sys (WDF Dynamic/Microsoft Corporation)
AttachedDevice \Driver\kbdclass \Device\KeyboardClass1 Wdf01000.sys (WDF Dynamic/Microsoft Corporation)
---- Threads - GMER 1.0.15 ----
Thread System [4:420] 8C92B930
---- EOF - GMER 1.0.15 ----
.....a tady je druhý log:
GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-02-23 22:24:19
Windows 6.0.6002 Service Pack 2
Running: gmer.exe; Driver: C:\Users\Elena\AppData\Local\Temp\fxddypod.sys
---- System - GMER 1.0.15 ----
INT 0x62 ? 861A5BF8
INT 0x82 ? 84B00BF8
INT 0x92 ? 83D46BF8
INT 0xA2 ? 861A5BF8
INT 0xB2 ? 861A5BF8
---- Kernel code sections - GMER 1.0.15 ----
? System32\Drivers\spyt.sys The system cannot find the path specified. !
.text USBPORT.SYS!DllUnload 869F141B 5 Bytes JMP 861A51D8
---- User code sections - GMER 1.0.15 ----
.text C:\Program Files\ESET\ESET Smart Security\ekrn.exe[1748] kernel32.dll!SetUnhandledExceptionFilter 7704A84F 4 Bytes [C2, 04, 00, 00]
---- Kernel IAT/EAT - GMER 1.0.15 ----
IAT \SystemRoot\system32\drivers\atapi.sys[ataport.SYS!AtaPortWritePortUchar] [8069A6D2] \SystemRoot\System32\Drivers\spyt.sys
IAT \SystemRoot\system32\drivers\atapi.sys[ataport.SYS!AtaPortReadPortUchar] [8069A040] \SystemRoot\System32\Drivers\spyt.sys
IAT \SystemRoot\system32\drivers\atapi.sys[ataport.SYS!AtaPortWritePortBufferUshort] [8069A7FC] \SystemRoot\System32\Drivers\spyt.sys
IAT \SystemRoot\system32\drivers\atapi.sys[ataport.SYS!AtaPortReadPortUshort] [8069A0BE] \SystemRoot\System32\Drivers\spyt.sys
IAT \SystemRoot\system32\drivers\atapi.sys[ataport.SYS!AtaPortReadPortBufferUshort] [8069A13C] \SystemRoot\System32\Drivers\spyt.sys
IAT \SystemRoot\system32\DRIVERS\i8042prt.sys[HAL.dll!READ_PORT_UCHAR] [806A9D92] \SystemRoot\System32\Drivers\spyt.sys
---- Devices - GMER 1.0.15 ----
Device \FileSystem\Ntfs \Ntfs 84B031F8
AttachedDevice \FileSystem\Ntfs \Ntfs eamon.sys (Amon monitor/ESET)
AttachedDevice \Driver\kbdclass \Device\KeyboardClass0 Wdf01000.sys (WDF Dynamic/Microsoft Corporation)
AttachedDevice \Driver\kbdclass \Device\KeyboardClass1 Wdf01000.sys (WDF Dynamic/Microsoft Corporation)
Device \Driver\netbt \Device\NetBT_Tcpip_{063A7FAF-A6A2-4C02-9EDE-0D9912C1DEA2} 8C8A4500
Device \Driver\volmgr \Device\VolMgrControl 84AFE1F8
Device \Driver\usbuhci \Device\USBPDO-0 862511F8
Device \Driver\usbuhci \Device\USBPDO-1 862511F8
Device \Driver\usbuhci \Device\USBPDO-2 862511F8
Device \Driver\usbuhci \Device\USBPDO-3 862511F8
Device \Driver\usbehci \Device\USBPDO-4 862521F8
AttachedDevice \Driver\tdx \Device\Tcp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
Device \Driver\volmgr \Device\HarddiskVolume1 84AFE1F8
Device \Driver\volmgr \Device\HarddiskVolume2 84AFE1F8
Device \Driver\cdrom \Device\CdRom0 862EC2A0
Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-0 84B011F8
Device \Driver\iaStor \Device\Ide\iaStor0 [82753F90] \SystemRoot\system32\DRIVERS\iaStor.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX}
Device \Driver\atapi \Device\Ide\IdePort0 84B011F8
Device \Driver\iaStor \Device\Ide\IAAStorageDevice-0 [82753F90] \SystemRoot\system32\DRIVERS\iaStor.sys[unknown section] {MOV EDX, [ESP+0x8]; LEA ECX, [ESP+0x4]; PUSH EAX; MOV EAX, ESP; PUSH EAX}
Device \Driver\volmgr \Device\HarddiskVolume3 84AFE1F8
Device \Driver\netbt \Device\NetBt_Wins_Export 8C8A4500
Device \Driver\Smb \Device\NetbiosSmb 8C8691F8
Device \Driver\iScsiPrt \Device\RaidPort0 863311F8
Device \Driver\netbt \Device\NetBT_Tcpip_{C28C4573-1273-4A20-8372-D82A58D7E9FE} 8C8A4500
AttachedDevice \Driver\tdx \Device\Udp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
AttachedDevice \Driver\tdx \Device\RawIp epfwtdi.sys (ESET Personal Firewall TDI filter/ESET)
Device \Driver\usbuhci \Device\USBFDO-0 862511F8
Device \Driver\usbuhci \Device\USBFDO-1 862511F8
Device \Driver\usbuhci \Device\USBFDO-2 862511F8
Device \Driver\usbuhci \Device\USBFDO-3 862511F8
Device \Driver\netbt \Device\NetBT_Tcpip_{C61E41FB-EA2B-4222-A2BE-509DDC46F5AC} 8C8A4500
Device \Driver\usbehci \Device\USBFDO-4 862521F8
Device \FileSystem\cdfs \Cdfs 8627A1F8
---- Threads - GMER 1.0.15 ----
Thread System [4:420] 8C92B930
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\0011e2fc6c3a
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s1 771343423
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s2 285507792
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@h0 1
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0 0
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh 0xA2 0x57 0xAC 0x0E ...
Reg HKLM\SYSTEM\ControlSet002\Services\BTHPORT\Parameters\Keys\0011e2fc6c3a (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0 0
Reg HKLM\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh 0xA2 0x57 0xAC 0x0E ...
---- EOF - GMER 1.0.15 ----
díky moc
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Prosím kontrolu logu
Jde o nově pořízený notebook z 2. ruky (neznám historii) a kromě toho, že se mi zdá malinko pomalej, se při spuštění pokoušel dovolat na nějakou neplatnou (nebo poškozenou) int. adresu... to se po použití CCcleaneru odstranilo, doupdatovali jsme ho a malinko se to zlepšilo, takže nijak zásadně negativně se ten ntb teď netváří (ale musím třeba říct, že ty scany trvaly docela dlouho (combo fix asi 17 min, ten GMER trval asi 25 minut, místo avizovanejch 10)...a ten první scan s RSITu měl strašně moc záznamů... jde mi spíš o to to nějak preventivně překontrolovat, než si do ntb začnu tahat svoje věci. zkusím tedy ještě ten nový log z RSIT až se k němu večer dostanu. Zatím dík moc.
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Prosím kontrolu logu
omlouvám se za zpoždění. Tady je ten nový log z RSIT. Musel jsem ho rozdělit na dvě části, protože celkem má asi 105.000 znaků a tady lze posílat max 60.000, takže část 1:
Logfile of random's system information tool 1.06 (written by random/random)
Run by Elena at 2010-02-26 08:37:10
Microsoft® Windows Vista™ Home Basic Service Pack 2
System drive C: has 33 GB (59%) free of 56 GB
Total RAM: 1013 MB (31% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:37:42, on 26.2.2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18882)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Keyboard Manager\Manager Utility\KeyboardManager.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\system32\igfxext.exe
C:\Program Files\Internet Explorer\IELowutil.exe
C:\Users\Elena\Desktop\RSIT.exe
C:\Program Files\trend micro\Elena.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Ask Search Assistant BHO - {9CB65201-89C4-402c-BA80-02D8C59F9B1D} - (no file)
O2 - BHO: Ask Toolbar BHO - {FE063DB1-4EC0-403e-8DD8-394C54984B2C} - (no file)
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Keyboard Manager Utility] "C:\Program Files\Keyboard Manager\Manager Utility\KeyboardManager.exe" /lang en /H
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKCU\..\Run: [Google Update] "C:\Users\Elena\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: NMIndexingService - Unknown owner - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe (file missing)
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
--
End of file - 3908 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-161961244-2301921912-1863419576-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-161961244-2301921912-1863419576-1000UA.job
C:\Windows\tasks\User_Feed_Synchronization-{018BC8D0-72C8-4218-838B-76196E8C205D}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9CB65201-89C4-402c-BA80-02D8C59F9B1D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FE063DB1-4EC0-403e-8DD8-394C54984B2C}]
Ask Toolbar BHO
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2009-11-16 2054360]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-18 1008184]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2006-10-28 815104]
"Keyboard Manager Utility"=C:\Program Files\Keyboard Manager\Manager Utility\KeyboardManager.exe [2007-01-11 1359872]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2006-09-29 151552]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2007-10-10 39792]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2008-02-11 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2008-02-11 166424]
"Persistence"=C:\Windows\system32\igfxpers.exe [2008-02-11 133656]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Elena\AppData\Local\Google\Update\GoogleUpdate.exe [2010-02-09 135664]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-18 202240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Monitor]
C:\Windows\PixArt\PAC207\Monitor.exe [2006-11-03 319488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2008-02-11 204800]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2010-02-26 08:37:10 ----D---- C:\rsit
2010-02-22 22:08:40 ----SHD---- C:\$RECYCLE.BIN
2010-02-22 22:08:34 ----D---- C:\Windows\temp
2010-02-22 22:08:31 ----A---- C:\ComboFix.txt
2010-02-22 21:49:55 ----A---- C:\Windows\MBR.exe
2010-02-22 21:49:54 ----A---- C:\Windows\NIRCMD.exe
2010-02-22 21:49:48 ----A---- C:\Windows\PEV.exe
2010-02-22 21:49:47 ----A---- C:\Windows\SWREG.exe
2010-02-22 21:49:46 ----A---- C:\Windows\zip.exe
2010-02-22 21:49:46 ----A---- C:\Windows\grep.exe
2010-02-22 21:49:45 ----A---- C:\Windows\sed.exe
2010-02-22 21:49:44 ----A---- C:\Windows\SWSC.exe
2010-02-22 21:49:28 ----D---- C:\Windows\ERDNT
2010-02-22 21:46:56 ----D---- C:\ComboFix
2010-02-22 21:46:36 ----D---- C:\Qoobox
2010-02-22 21:46:15 ----A---- C:\Windows\SWXCACLS.exe
2010-02-22 18:57:52 ----D---- C:\Program Files\trend micro
2010-02-22 18:41:07 ----D---- C:\Program Files\CCleaner
2010-02-21 22:30:40 ----D---- C:\Program Files\Windows Portable Devices
2010-02-21 22:27:17 ----A---- C:\Windows\system32\UIAnimation.dll
2010-02-21 22:27:16 ----A---- C:\Windows\system32\UIRibbonRes.dll
2010-02-21 22:27:15 ----A---- C:\Windows\system32\UIRibbon.dll
2010-02-21 22:26:31 ----A---- C:\Windows\system32\WMPhoto.dll
2010-02-21 22:26:31 ----A---- C:\Windows\system32\cdd.dll
2010-02-21 22:26:29 ----A---- C:\Windows\system32\XpsRasterService.dll
2010-02-21 22:26:29 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2010-02-21 22:26:29 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2010-02-21 22:26:29 ----A---- C:\Windows\system32\d3d10warp.dll
2010-02-21 22:26:29 ----A---- C:\Windows\system32\d2d1.dll
2010-02-21 22:26:28 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2010-02-21 22:26:28 ----A---- C:\Windows\system32\WindowsCodecs.dll
2010-02-21 22:26:28 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2010-02-21 22:26:28 ----A---- C:\Windows\system32\dxdiagn.dll
2010-02-21 22:26:28 ----A---- C:\Windows\system32\dxdiag.exe
2010-02-21 22:26:27 ----A---- C:\Windows\system32\XpsPrint.dll
2010-02-21 22:26:27 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2010-02-21 22:26:26 ----A---- C:\Windows\system32\xpsservices.dll
2010-02-21 22:26:26 ----A---- C:\Windows\system32\OpcServices.dll
2010-02-21 22:26:26 ----A---- C:\Windows\system32\FntCache.dll
2010-02-21 22:26:25 ----A---- C:\Windows\system32\dxgi.dll
2010-02-21 22:26:25 ----A---- C:\Windows\system32\DWrite.dll
2010-02-21 22:26:25 ----A---- C:\Windows\system32\d3d11.dll
2010-02-21 22:26:25 ----A---- C:\Windows\system32\d3d10level9.dll
2010-02-21 22:26:25 ----A---- C:\Windows\system32\d3d10core.dll
2010-02-21 22:26:25 ----A---- C:\Windows\system32\d3d10_1core.dll
2010-02-21 22:26:25 ----A---- C:\Windows\system32\d3d10_1.dll
2010-02-21 22:26:25 ----A---- C:\Windows\system32\d3d10.dll
2010-02-21 22:25:41 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2010-02-21 22:25:41 ----A---- C:\Windows\system32\wpdbusenum.dll
2010-02-21 22:25:41 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2010-02-21 22:25:37 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2010-02-21 22:25:35 ----A---- C:\Windows\system32\WpdMtpUS.dll
2010-02-21 22:25:35 ----A---- C:\Windows\system32\WpdConns.dll
2010-02-21 22:25:33 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2010-02-21 22:25:33 ----A---- C:\Windows\system32\wpdshext.dll
2010-02-21 22:25:33 ----A---- C:\Windows\system32\WpdMtp.dll
2010-02-21 22:25:33 ----A---- C:\Windows\system32\wpd_ci.dll
2010-02-21 22:25:33 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2010-02-21 22:25:33 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2010-02-21 22:25:33 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2010-02-21 22:25:33 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2010-02-21 22:25:32 ----A---- C:\Windows\system32\WPDSp.dll
2010-02-21 22:24:16 ----A---- C:\Windows\system32\oleaccrc.dll
2010-02-21 22:24:15 ----A---- C:\Windows\system32\UIAutomationCore.dll
2010-02-21 22:24:15 ----A---- C:\Windows\system32\oleacc.dll
2010-02-21 22:22:27 ----A---- C:\Windows\system32\winhttp.dll
2010-02-21 22:22:08 ----A---- C:\Windows\system32\httpapi.dll
2010-02-21 22:22:05 ----A---- C:\Windows\system32\nshhttp.dll
2010-02-21 21:46:05 ----A---- C:\Windows\system32\igxpun.exe
2010-02-21 21:39:30 ----A---- C:\Windows\system32\wmp.dll
2010-02-21 21:39:14 ----A---- C:\Windows\system32\unregmp2.exe
2010-02-21 21:39:01 ----A---- C:\Windows\system32\wmploc.DLL
2010-02-21 21:37:42 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2010-02-21 21:37:42 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-02-21 21:37:35 ----A---- C:\Windows\system32\jscript.dll
2010-02-21 19:55:51 ----A---- C:\Windows\system32\kerberos.dll
2010-02-21 19:55:44 ----A---- C:\Windows\system32\schannel.dll
2010-02-21 18:34:34 ----A---- C:\Windows\system32\occache.dll
2010-02-21 18:34:33 ----A---- C:\Windows\system32\jsproxy.dll
2010-02-21 18:34:33 ----A---- C:\Windows\system32\iepeers.dll
2010-02-21 18:34:32 ----A---- C:\Windows\system32\msfeeds.dll
2010-02-21 18:34:31 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-02-21 18:34:31 ----A---- C:\Windows\system32\ieui.dll
2010-02-21 18:34:30 ----A---- C:\Windows\system32\iesetup.dll
2010-02-21 18:34:30 ----A---- C:\Windows\system32\iernonce.dll
2010-02-21 18:34:29 ----A---- C:\Windows\system32\wininet.dll
2010-02-21 18:34:28 ----A---- C:\Windows\system32\msfeedssync.exe
2010-02-21 18:34:27 ----A---- C:\Windows\system32\ie4uinit.exe
2010-02-21 18:34:26 ----A---- C:\Windows\system32\iertutil.dll
2010-02-21 18:34:26 ----A---- C:\Windows\system32\iedkcs32.dll
2010-02-21 18:34:23 ----A---- C:\Windows\system32\urlmon.dll
2010-02-21 18:34:23 ----A---- C:\Windows\system32\ieUnatt.exe
2010-02-21 18:34:23 ----A---- C:\Windows\system32\iesysprep.dll
2010-02-21 18:34:18 ----A---- C:\Windows\system32\mshtml.dll
2010-02-21 18:34:18 ----A---- C:\Windows\system32\ieframe.dll
2010-02-21 18:32:06 ----A---- C:\Windows\system32\mshtmled.dll
2010-02-21 18:32:05 ----A---- C:\Windows\system32\mshtmler.dll
2010-02-21 18:32:05 ----A---- C:\Windows\system32\icardie.dll
2010-02-21 18:32:05 ----A---- C:\Windows\system32\admparse.dll
2010-02-21 18:32:04 ----A---- C:\Windows\system32\msls31.dll
2010-02-21 18:32:03 ----A---- C:\Windows\system32\corpol.dll
2010-02-21 18:32:02 ----A---- C:\Windows\system32\imgutil.dll
2010-02-21 18:32:02 ----A---- C:\Windows\system32\ieakeng.dll
2010-02-21 18:32:02 ----A---- C:\Windows\system32\dxtmsft.dll
2010-02-21 18:32:01 ----A---- C:\Windows\system32\dxtrans.dll
2010-02-21 18:31:59 ----A---- C:\Windows\system32\licmgr10.dll
2010-02-21 18:31:59 ----A---- C:\Windows\system32\inseng.dll
2010-02-21 18:31:58 ----A---- C:\Windows\system32\ieaksie.dll
2010-02-21 18:31:56 ----A---- C:\Windows\system32\webcheck.dll
2010-02-21 18:31:56 ----A---- C:\Windows\system32\msrating.dll
2010-02-21 18:31:55 ----A---- C:\Windows\system32\wextract.exe
2010-02-21 18:31:55 ----A---- C:\Windows\system32\ieakui.dll
2010-02-21 18:31:54 ----A---- C:\Windows\system32\WinFXDocObj.exe
2010-02-21 18:31:53 ----A---- C:\Windows\system32\mstime.dll
2010-02-21 18:31:52 ----A---- C:\Windows\system32\pngfilt.dll
2010-02-21 18:31:52 ----A---- C:\Windows\system32\advpack.dll
2010-02-21 18:31:50 ----A---- C:\Windows\system32\ieapfltr.dll
2010-02-21 18:31:49 ----A---- C:\Windows\system32\vbscript.dll
2010-02-21 18:31:49 ----A---- C:\Windows\system32\url.dll
2010-02-21 18:31:45 ----A---- C:\Windows\system32\mshta.exe
2010-02-21 18:31:45 ----A---- C:\Windows\system32\iexpress.exe
2010-02-21 18:31:43 ----A---- C:\Windows\system32\SetDepNx.exe
2010-02-21 18:31:43 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2010-02-21 18:31:42 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2010-02-21 18:31:42 ----A---- C:\Windows\system32\PDMSetup.exe
2010-02-21 13:45:54 ----D---- C:\Windows\system32\eu-ES
2010-02-21 13:45:54 ----D---- C:\Windows\system32\ca-ES
2010-02-21 13:45:53 ----D---- C:\Windows\system32\vi-VN
2010-02-21 13:37:13 ----D---- C:\Windows\system32\SPReview
2010-02-21 13:14:07 ----A---- C:\Windows\system32\scavenge.dll
2010-02-21 13:13:53 ----A---- C:\Windows\system32\compcln.exe
2010-02-21 13:05:36 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-02-21 13:05:36 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-02-21 13:05:36 ----A---- C:\Windows\system32\secproc_isv.dll
2010-02-21 13:05:36 ----A---- C:\Windows\system32\secproc.dll
2010-02-21 13:05:36 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2010-02-21 13:05:36 ----A---- C:\Windows\system32\SearchIndexer.exe
2010-02-21 13:05:36 ----A---- C:\Windows\system32\SearchFilterHost.exe
2010-02-21 13:05:36 ----A---- C:\Windows\system32\sdohlp.dll
2010-02-21 13:05:36 ----A---- C:\Windows\system32\sdclt.exe
2010-02-21 13:05:35 ----A---- C:\Windows\system32\samlib.dll
2010-02-21 13:05:35 ----A---- C:\Windows\system32\rtutils.dll
2010-02-21 13:05:35 ----A---- C:\Windows\system32\rtffilt.dll
2010-02-21 13:05:35 ----A---- C:\Windows\system32\rsaenh.dll
2010-02-21 13:05:35 ----A---- C:\Windows\system32\rpcss.dll
2010-02-21 13:05:35 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-02-21 13:05:35 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-02-21 13:05:35 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-02-21 13:05:35 ----A---- C:\Windows\system32\RMActivate.exe
2010-02-21 13:05:35 ----A---- C:\Windows\system32\riched20.dll
2010-02-21 13:05:34 ----A---- C:\Windows\system32\scrrun.dll
2010-02-21 13:05:34 ----A---- C:\Windows\system32\SCardSvr.dll
2010-02-21 13:05:34 ----A---- C:\Windows\system32\scansetting.dll
2010-02-21 13:05:34 ----A---- C:\Windows\system32\samsrv.dll
2010-02-21 13:05:34 ----A---- C:\Windows\system32\rpchttp.dll
2010-02-21 13:05:33 ----A---- C:\Windows\system32\schedsvc.dll
2010-02-21 13:05:33 ----A---- C:\Windows\system32\scrobj.dll
2010-02-21 13:05:33 ----A---- C:\Windows\system32\scksp.dll
2010-02-21 13:05:33 ----A---- C:\Windows\system32\scesrv.dll
2010-02-21 13:05:33 ----A---- C:\Windows\system32\scecli.dll
2010-02-21 13:05:31 ----A---- C:\Windows\system32\PNPXAssoc.dll
2010-02-21 13:05:31 ----A---- C:\Windows\system32\PnPutil.exe
2010-02-21 13:05:31 ----A---- C:\Windows\system32\PnPUnattend.exe
2010-02-21 13:05:31 ----A---- C:\Windows\system32\pnidui.dll
2010-02-21 13:05:31 ----A---- C:\Windows\system32\perfdisk.dll
2010-02-21 13:05:31 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2010-02-21 13:05:31 ----A---- C:\Windows\system32\pdh.dll
2010-02-21 13:05:31 ----A---- C:\Windows\system32\pcaui.dll
2010-02-21 13:05:31 ----A---- C:\Windows\system32\p2psvc.dll
2010-02-21 13:05:31 ----A---- C:\Windows\system32\P2PGraph.dll
2010-02-21 13:05:30 ----A---- C:\Windows\system32\powercpl.dll
2010-02-21 13:05:30 ----A---- C:\Windows\system32\pnpui.dll
2010-02-21 13:05:30 ----A---- C:\Windows\system32\pnpsetup.dll
2010-02-21 13:05:29 ----A---- C:\Windows\system32\PkgMgr.exe
2010-02-21 13:05:29 ----A---- C:\Windows\system32\pidgenx.dll
2010-02-21 13:05:29 ----A---- C:\Windows\system32\photowiz.dll
2010-02-21 13:05:28 ----A---- C:\Windows\system32\ntdll.dll
2010-02-21 13:05:28 ----A---- C:\Windows\system32\nslookup.exe
2010-02-21 13:05:27 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2010-02-21 13:05:25 ----A---- C:\Windows\system32\offfilt.dll
2010-02-21 13:05:25 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2010-02-21 13:05:25 ----A---- C:\Windows\system32\nlhtml.dll
2010-02-21 13:05:24 ----A---- C:\Windows\system32\osk.exe
2010-02-21 13:05:24 ----A---- C:\Windows\system32\oobefldr.dll
2010-02-21 13:05:24 ----A---- C:\Windows\system32\onex.dll
2010-02-21 13:05:24 ----A---- C:\Windows\system32\olepro32.dll
2010-02-21 13:05:24 ----A---- C:\Windows\system32\oleaut32.dll
2010-02-21 13:05:24 ----A---- C:\Windows\system32\ole32.dll
2010-02-21 13:05:24 ----A---- C:\Windows\system32\odbccp32.dll
2010-02-21 13:05:24 ----A---- C:\Windows\system32\odbcconf.dll
2010-02-21 13:05:24 ----A---- C:\Windows\system32\odbc32.dll
2010-02-21 13:05:23 ----A---- C:\Windows\system32\oleprn.dll
2010-02-21 13:05:23 ----A---- C:\Windows\system32\ocsetup.exe
2010-02-21 13:05:23 ----A---- C:\Windows\system32\ntprint.dll
2010-02-21 13:05:23 ----A---- C:\Windows\system32\ntmarta.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\rastapi.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\rasppp.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\rasplap.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\rasmontr.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\rasmans.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\raschap.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\rasgcw.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\rasdlg.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\rasdial.exe
2010-02-21 13:05:22 ----A---- C:\Windows\system32\rasdiag.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\rasapi32.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\Query.dll
2010-02-21 13:05:21 ----A---- C:\Windows\system32\RelMon.dll
2010-02-21 13:05:21 ----A---- C:\Windows\system32\rekeywiz.exe
2010-02-21 13:05:21 ----A---- C:\Windows\system32\regsvc.dll
2010-02-21 13:05:21 ----A---- C:\Windows\system32\RacEngn.dll
2010-02-21 13:05:21 ----A---- C:\Windows\system32\qmgr.dll
2010-02-21 13:05:21 ----A---- C:\Windows\system32\qedit.dll
2010-02-21 13:05:20 ----A---- C:\Windows\system32\regapi.dll
2010-02-21 13:05:20 ----A---- C:\Windows\system32\reg.exe
2010-02-21 13:05:20 ----A---- C:\Windows\system32\rdpwsx.dll
2010-02-21 13:05:20 ----A---- C:\Windows\system32\rdpencom.dll
2010-02-21 13:05:20 ----A---- C:\Windows\system32\prnntfy.dll
2010-02-21 13:05:20 ----A---- C:\Windows\system32\printui.dll
2010-02-21 13:05:20 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2010-02-21 13:05:20 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-02-21 13:05:20 ----A---- C:\Windows\system32\PresentationHost.exe
2010-02-21 13:05:19 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2010-02-21 13:05:19 ----A---- C:\Windows\system32\powrprof.dll
2010-02-21 13:05:18 ----A---- C:\Windows\system32\qdvd.dll
2010-02-21 13:05:18 ----A---- C:\Windows\system32\QAGENTRT.DLL
2010-02-21 13:05:18 ----A---- C:\Windows\system32\puiapi.dll
2010-02-21 13:05:18 ----A---- C:\Windows\system32\psisdecd.dll
2010-02-21 13:05:18 ----A---- C:\Windows\system32\PSHED.DLL
2010-02-21 13:05:18 ----A---- C:\Windows\system32\propsys.dll
2010-02-21 13:05:18 ----A---- C:\Windows\system32\propdefs.dll
2010-02-21 13:05:18 ----A---- C:\Windows\system32\profsvc.dll
2010-02-21 13:05:16 ----A---- C:\Windows\system32\sendmail.dll
2010-02-21 13:05:13 ----A---- C:\Windows\system32\shlwapi.dll
2010-02-21 13:05:13 ----A---- C:\Windows\system32\shell32.dll
2010-02-21 13:05:13 ----A---- C:\Windows\system32\shdocvw.dll
2010-02-21 13:05:12 ----A---- C:\Windows\system32\setupapi.dll
2010-02-21 13:05:12 ----A---- C:\Windows\system32\sethc.exe
2010-02-21 13:05:12 ----A---- C:\Windows\system32\services.exe
2010-02-21 13:05:09 ----A---- C:\Windows\system32\eapphost.dll
2010-02-21 13:05:09 ----A---- C:\Windows\system32\eappgnui.dll
2010-02-21 13:05:08 ----A---- C:\Windows\system32\EhStorAPI.dll
2010-02-21 13:05:08 ----A---- C:\Windows\system32\eappcfg.dll
2010-02-21 13:05:08 ----A---- C:\Windows\system32\eapp3hst.dll
2010-02-21 13:05:08 ----A---- C:\Windows\system32\dsprop.dll
2010-02-21 13:05:08 ----A---- C:\Windows\system32\dsound.dll
2010-02-21 13:05:07 ----A---- C:\Windows\system32\f3ahvoas.dll
2010-02-21 13:05:07 ----A---- C:\Windows\system32\ExplorerFrame.dll
2010-02-21 13:05:07 ----A---- C:\Windows\system32\evr.dll
2010-02-21 13:05:07 ----A---- C:\Windows\system32\eudcedit.exe
2010-02-21 13:05:07 ----A---- C:\Windows\system32\esent.dll
2010-02-21 13:05:07 ----A---- C:\Windows\system32\dwm.exe
2010-02-21 13:05:07 ----A---- C:\Windows\explorer.exe
2010-02-21 13:05:06 ----A---- C:\Windows\system32\es.dll
2010-02-21 13:05:06 ----A---- C:\Windows\system32\EncDec.dll
2010-02-21 13:05:06 ----A---- C:\Windows\system32\emdmgmt.dll
2010-02-21 13:05:06 ----A---- C:\Windows\system32\EhStorShell.dll
2010-02-21 13:05:06 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2010-02-21 13:05:06 ----A---- C:\Windows\system32\EhStorAuthn.dll
2010-02-21 13:05:06 ----A---- C:\Windows\system32\dimsroam.dll
2010-02-21 13:05:06 ----A---- C:\Windows\system32\diagperf.dll
2010-02-21 13:05:05 ----A---- C:\Windows\system32\diskraid.exe
2010-02-21 13:05:05 ----A---- C:\Windows\system32\diskpart.exe
2010-02-21 13:05:05 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2010-02-21 13:05:05 ----A---- C:\Windows\system32\dfshim.dll
2010-02-21 13:05:04 ----A---- C:\Windows\system32\dpapimig.exe
2010-02-21 13:05:04 ----A---- C:\Windows\system32\dot3cfg.dll
2010-02-21 13:05:04 ----A---- C:\Windows\system32\dhcpcsvc.dll
2010-02-21 13:05:04 ----A---- C:\Windows\system32\dfsr.exe
2010-02-21 13:05:04 ----A---- C:\Windows\system32\devmgr.dll
2010-02-21 13:05:03 ----A---- C:\Windows\system32\hbaapi.dll
2010-02-21 13:05:03 ----A---- C:\Windows\system32\drvstore.dll
2010-02-21 13:05:03 ----A---- C:\Windows\system32\drvinst.exe
2010-02-21 13:05:03 ----A---- C:\Windows\system32\drmv2clt.dll
2010-02-21 13:05:03 ----A---- C:\Windows\system32\drmmgrtn.dll
2010-02-21 13:05:03 ----A---- C:\Windows\system32\dot3svc.dll
2010-02-21 13:05:03 ----A---- C:\Windows\system32\dot3msm.dll
2010-02-21 13:05:03 ----A---- C:\Windows\system32\dnsrslvr.dll
2010-02-21 13:05:03 ----A---- C:\Windows\system32\dnsapi.dll
2010-02-21 13:05:03 ----A---- C:\Windows\system32\dmusic.dll
2010-02-21 13:05:03 ----A---- C:\Windows\system32\dmsynth.dll
2010-02-21 13:05:02 ----A---- C:\Windows\system32\iasnap.dll
2010-02-21 13:05:02 ----A---- C:\Windows\system32\IasMigReader.exe
2010-02-21 13:05:02 ----A---- C:\Windows\system32\IasMigPlugin.dll
2010-02-21 13:05:02 ----A---- C:\Windows\system32\iashlpr.dll
2010-02-21 13:05:02 ----A---- C:\Windows\system32\iasdatastore.dll
2010-02-21 13:05:02 ----A---- C:\Windows\system32\iasads.dll
2010-02-21 13:05:02 ----A---- C:\Windows\system32\iasacct.dll
2010-02-21 13:05:02 ----A---- C:\Windows\system32\gpupdate.exe
2010-02-21 13:05:02 ----A---- C:\Windows\system32\gpsvc.dll
2010-02-21 13:05:02 ----A---- C:\Windows\system32\gpresult.exe
2010-02-21 13:05:01 ----A---- C:\Windows\system32\hidserv.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\hdwwiz.exe
2010-02-21 13:05:01 ----A---- C:\Windows\system32\gpapi.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\gdi32.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\fontext.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\findstr.exe
2010-02-21 13:05:01 ----A---- C:\Windows\system32\feclient.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\fdWSD.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\fdWCN.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\fdSSDP.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\fdProxy.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\fdeploy.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\fdBthProxy.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\fdBth.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\fc.exe
2010-02-21 13:05:01 ----A---- C:\Windows\system32\Faultrep.dll
2010-02-21 13:04:59 ----A---- C:\Windows\system32\gpedit.dll
2010-02-21 13:04:59 ----A---- C:\Windows\system32\gameux.dll
2010-02-21 13:04:59 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2010-02-21 13:04:59 ----A---- C:\Windows\system32\fundisc.dll
2010-02-21 13:04:59 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2010-02-21 13:04:59 ----A---- C:\Windows\system32\ftp.exe
2010-02-21 13:04:59 ----A---- C:\Windows\system32\fsquirt.exe
2010-02-21 13:04:58 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2010-02-21 13:04:58 ----A---- C:\Windows\system32\autochk.exe
2010-02-21 13:04:58 ----A---- C:\Windows\system32\autofmt.exe
2010-02-21 13:04:58 ----A---- C:\Windows\system32\autoconv.exe
2010-02-21 13:04:58 ----A---- C:\Windows\system32\authz.dll
2010-02-21 13:04:58 ----A---- C:\Windows\system32\authui.dll
2010-02-21 13:04:58 ----A---- C:\Windows\system32\audiosrv.dll
2010-02-21 13:04:58 ----A---- C:\Windows\system32\AudioSes.dll
2010-02-21 13:04:58 ----A---- C:\Windows\system32\audiodg.exe
2010-02-21 13:04:57 ----A---- C:\Windows\system32\autoplay.dll
2010-02-21 13:04:56 ----A---- C:\Windows\system32\bthci.dll
2010-02-21 13:04:56 ----A---- C:\Windows\system32\browseui.dll
2010-02-21 13:04:56 ----A---- C:\Windows\system32\brcpl.dll
2010-02-21 13:04:56 ----A---- C:\Windows\system32\blackbox.dll
2010-02-21 13:04:56 ----A---- C:\Windows\system32\bitsigd.dll
2010-02-21 13:04:56 ----A---- C:\Windows\system32\BFE.DLL
2010-02-21 13:04:56 ----A---- C:\Windows\system32\bcrypt.dll
2010-02-21 13:04:56 ----A---- C:\Windows\system32\basecsp.dll
2010-02-21 13:04:56 ----A---- C:\Windows\system32\azroles.dll
2010-02-21 13:04:55 ----A---- C:\Windows\system32\accessibilitycpl.dll
2010-02-21 13:04:54 ----A---- C:\Windows\system32\apphelp.dll
2010-02-21 13:04:54 ----A---- C:\Windows\system32\apds.dll
2010-02-21 13:04:53 ----A---- C:\Windows\system32\conime.exe
2010-02-21 13:04:53 ----A---- C:\Windows\system32\comuid.dll
2010-02-21 13:04:53 ----A---- C:\Windows\system32\comsvcs.dll
2010-02-21 13:04:53 ----A---- C:\Windows\system32\advapi32.dll
2010-02-21 13:04:53 ----A---- C:\Windows\system32\adtschema.dll
2010-02-21 13:04:53 ----A---- C:\Windows\system32\adsmsext.dll
2010-02-21 13:04:53 ----A---- C:\Windows\system32\adsldpc.dll
2010-02-21 13:04:52 ----A---- C:\Windows\system32\crypt32.dll
2010-02-21 13:04:52 ----A---- C:\Windows\system32\credui.dll
2010-02-21 13:04:52 ----A---- C:\Windows\system32\connect.dll
2010-02-21 13:04:52 ----A---- C:\Windows\system32\comdlg32.dll
2010-02-21 13:04:52 ----A---- C:\Windows\system32\cmmon32.exe
2010-02-21 13:04:52 ----A---- C:\Windows\system32\cmdial32.dll
2010-02-21 13:04:51 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2010-02-21 13:04:51 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2010-02-21 13:04:51 ----A---- C:\Windows\system32\DevicePairing.dll
2010-02-21 13:04:51 ----A---- C:\Windows\system32\DeviceEject.exe
2010-02-21 13:04:51 ----A---- C:\Windows\system32\dbgeng.dll
2010-02-21 13:04:51 ----A---- C:\Windows\system32\davclnt.dll
2010-02-21 13:04:51 ----A---- C:\Windows\system32\dataclen.dll
2010-02-21 13:04:51 ----A---- C:\Windows\system32\d3d9.dll
2010-02-21 13:04:51 ----A---- C:\Windows\system32\cscdll.dll
2010-02-21 13:04:51 ----A---- C:\Windows\system32\cscapi.dll
2010-02-21 13:04:51 ----A---- C:\Windows\system32\cryptui.dll
2010-02-21 13:04:51 ----A---- C:\Windows\system32\cryptsvc.dll
2010-02-21 13:04:50 ----A---- C:\Windows\system32\csrstub.exe
2010-02-21 13:04:50 ----A---- C:\Windows\system32\cscript.exe
2010-02-21 13:04:50 ----A---- C:\Windows\system32\certmgr.dll
2010-02-21 13:04:50 ----A---- C:\Windows\system32\CertEnrollUI.dll
2010-02-21 13:04:50 ----A---- C:\Windows\system32\CertEnroll.dll
2010-02-21 13:04:50 ----A---- C:\Windows\system32\certcli.dll
2010-02-21 13:04:49 ----A---- C:\Windows\system32\cbsra.exe
2010-02-21 13:04:49 ----A---- C:\Windows\system32\bthudtask.exe
2010-02-21 13:04:49 ----A---- C:\Windows\system32\bthserv.dll
2010-02-21 13:04:48 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2010-02-21 13:04:48 ----A---- C:\Windows\system32\chtbrkr.dll
2010-02-21 13:04:48 ----A---- C:\Windows\system32\chsbrkr.dll
2010-02-21 13:04:48 ----A---- C:\Windows\system32\cipher.exe
2010-02-21 13:04:48 ----A---- C:\Windows\system32\ci.dll
2010-02-21 13:04:47 ----A---- C:\Windows\system32\msftedit.dll
2010-02-21 13:04:47 ----A---- C:\Windows\system32\certutil.exe
2010-02-21 13:04:47 ----A---- C:\Windows\system32\certreq.exe
2010-02-21 13:04:47 ----A---- C:\Windows\system32\certprop.dll
2010-02-21 13:04:46 ----A---- C:\Windows\system32\msihnd.dll
2010-02-21 13:04:46 ----A---- C:\Windows\system32\msiexec.exe
2010-02-21 13:04:46 ----A---- C:\Windows\system32\msi.dll
2010-02-21 13:04:46 ----A---- C:\Windows\system32\msexch40.dll
2010-02-21 13:04:46 ----A---- C:\Windows\system32\msexcl40.dll
2010-02-21 13:04:46 ----A---- C:\Windows\system32\msdtctm.dll
2010-02-21 13:04:45 ----A---- C:\Windows\system32\msimsg.dll
2010-02-21 13:04:45 ----A---- C:\Windows\system32\msdtcprx.dll
2010-02-21 13:04:45 ----A---- C:\Windows\system32\msdrm.dll
2010-02-21 13:04:45 ----A---- C:\Windows\system32\msctfui.dll
2010-02-21 13:04:45 ----A---- C:\Windows\system32\msctfp.dll
2010-02-21 13:04:45 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2010-02-21 13:04:45 ----A---- C:\Windows\system32\msctf.dll
2010-02-21 13:04:44 ----A---- C:\Windows\system32\MPSSVC.dll
2010-02-21 13:04:44 ----A---- C:\Windows\system32\mprapi.dll
2010-02-21 13:04:44 ----A---- C:\Windows\system32\mpr.dll
2010-02-21 13:04:44 ----A---- C:\Windows\system32\MMDevAPI.dll
2010-02-21 13:04:43 ----A---- C:\Windows\system32\mscories.dll
2010-02-21 13:04:43 ----A---- C:\Windows\system32\mscorier.dll
2010-02-21 13:04:43 ----A---- C:\Windows\system32\mscoree.dll
2010-02-21 13:04:43 ----A---- C:\Windows\system32\mscms.dll
2010-02-21 13:04:43 ----A---- C:\Windows\system32\mscandui.dll
2010-02-21 13:04:43 ----A---- C:\Windows\system32\modemui.dll
2010-02-21 13:04:42 ----A---- C:\Windows\system32\netcenter.dll
2010-02-21 13:04:42 ----A---- C:\Windows\system32\netapi32.dll
2010-02-21 13:04:42 ----A---- C:\Windows\system32\ncryptui.dll
2010-02-21 13:04:42 ----A---- C:\Windows\system32\ncrypt.dll
2010-02-21 13:04:41 ----A---- C:\Windows\system32\netplwiz.dll
2010-02-21 13:04:41 ----A---- C:\Windows\system32\netlogon.dll
2010-02-21 13:04:41 ----A---- C:\Windows\system32\mtxclu.dll
2010-02-21 13:04:39 ----A---- C:\Windows\system32\newdev.exe
2010-02-21 13:04:39 ----A---- C:\Windows\system32\netshell.dll
2010-02-21 13:04:39 ----A---- C:\Windows\system32\NcdProp.dll
2010-02-21 13:04:39 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2010-02-21 13:04:38 ----A---- C:\Windows\system32\newdev.dll
2010-02-21 13:04:38 ----A---- C:\Windows\system32\networkmap.dll
2010-02-21 13:04:38 ----A---- C:\Windows\system32\networkitemfactory.dll
2010-02-21 13:04:38 ----A---- C:\Windows\system32\networkexplorer.dll
2010-02-21 13:04:38 ----A---- C:\Windows\system32\msscntrs.dll
2010-02-21 13:04:38 ----A---- C:\Windows\system32\msscb.dll
2010-02-21 13:04:38 ----A---- C:\Windows\system32\msrepl40.dll
2010-02-21 13:04:38 ----A---- C:\Windows\system32\msnetobj.dll
2010-02-21 13:04:38 ----A---- C:\Windows\system32\msltus40.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msxbde40.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\mswstr10.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\mswsock.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\mswdat10.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msvcrt.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msvcp60.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msutb.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msrd3x40.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msrd2x40.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\mspbde40.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msjtes40.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msjter40.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msjint40.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msjetoledb40.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msjet40.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msisip.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msinfo32.exe
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msimtf.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\MSVidCtl.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\mstsc.exe
2010-02-21 13:04:36 ----A---- C:\Windows\system32\mstlsapi.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\mstext40.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\mssvp.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\msstrc.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\mssrch.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\mssprxy.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\mssphtb.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\mssph.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\mssitlb.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\msshsq.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\msshooks.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\msscp.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\inetcomm.dll
2010-02-21 13:04:35 ----A---- C:\Windows\system32\InkEd.dll
2010-02-21 13:04:35 ----A---- C:\Windows\system32\infocardapi.dll
2010-02-21 13:04:35 ----A---- C:\Windows\system32\inetppui.dll
2010-02-21 13:04:35 ----A---- C:\Windows\system32\inetpp.dll
2010-02-21 13:04:34 ----A---- C:\Windows\system32\iscsilog.dll
2010-02-21 13:04:34 ----A---- C:\Windows\system32\ipsmsnap.dll
2010-02-21 13:04:34 ----A---- C:\Windows\system32\IPSECSVC.DLL
2010-02-21 13:04:34 ----A---- C:\Windows\system32\imm32.dll
2010-02-21 13:04:33 ----A---- C:\Windows\system32\ipsecsnp.dll
2010-02-21 13:04:33 ----A---- C:\Windows\system32\iphlpsvc.dll
2010-02-21 13:04:33 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2010-02-21 13:04:33 ----A---- C:\Windows\system32\ipconfig.exe
2010-02-21 13:04:33 ----A---- C:\Windows\system32\input.dll
2010-02-21 13:04:32 ----A---- C:\Windows\system32\IMJP10K.DLL
2010-02-21 13:04:32 ----A---- C:\Windows\system32\ifmon.dll
2010-02-21 13:04:32 ----A---- C:\Windows\system32\icardres.dll
2010-02-21 13:04:32 ----A---- C:\Windows\system32\icardagt.exe
2010-02-21 13:04:32 ----A---- C:\Windows\system32\iassvcs.dll
2010-02-21 13:04:32 ----A---- C:\Windows\system32\iassdo.dll
2010-02-21 13:04:32 ----A---- C:\Windows\system32\iassam.dll
2010-02-21 13:04:32 ----A---- C:\Windows\system32\iasrecst.dll
2010-02-21 13:04:32 ----A---- C:\Windows\system32\iasrad.dll
2010-02-21 13:04:32 ----A---- C:\Windows\system32\iaspolcy.dll
2010-02-21 13:04:29 ----A---- C:\Windows\system32\imapi2fs.dll
2010-02-21 13:04:29 ----A---- C:\Windows\system32\imapi2.dll
2010-02-21 13:04:29 ----A---- C:\Windows\system32\imapi.dll
2010-02-21 13:04:29 ----A---- C:\Windows\system32\IKEEXT.DLL
2010-02-21 13:04:27 ----A---- C:\Windows\system32\mfplat.dll
2010-02-21 13:04:27 ----A---- C:\Windows\system32\mfc42.dll
2010-02-21 13:04:26 ----A---- C:\Windows\system32\mfc42u.dll
2010-02-21 13:04:25 ----A---- C:\Windows\system32\mimefilt.dll
2010-02-21 13:04:25 ----A---- C:\Windows\system32\milcore.dll
2010-02-21 13:04:24 ----A---- C:\Windows\system32\mmcndmgr.dll
2010-02-21 13:04:24 ----A---- C:\Windows\system32\mmcico.dll
2010-02-21 13:04:24 ----A---- C:\Windows\system32\mmci.dll
2010-02-21 13:04:24 ----A---- C:\Windows\system32\mmc.exe
2010-02-21 13:04:24 ----A---- C:\Windows\system32\midimap.dll
2010-02-21 13:04:23 ----A---- C:\Windows\system32\korwbrkr.dll
2010-02-21 13:04:22 ----A---- C:\Windows\system32\l2nacp.dll
2010-02-21 13:04:21 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2010-02-21 13:04:21 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2010-02-21 13:04:21 ----A---- C:\Windows\system32\mblctr.exe
2010-02-21 13:04:21 ----A---- C:\Windows\system32\kernel32.dll
2010-02-21 13:04:21 ----A---- C:\Windows\system32\kdusb.dll
2010-02-21 13:04:21 ----A---- C:\Windows\system32\kdcom.dll
2010-02-21 13:04:21 ----A---- C:\Windows\system32\kd1394.dll
2010-02-21 13:04:20 ----A---- C:\Windows\system32\logman.exe
2010-02-21 13:04:20 ----A---- C:\Windows\system32\logagent.exe
2010-02-21 13:04:19 ----A---- C:\Windows\system32\shsetup.dll
2010-02-21 13:04:19 ----A---- C:\Windows\system32\Magnify.exe
2010-02-21 13:04:18 ----A---- C:\Windows\system32\wercon.exe
2010-02-21 13:04:18 ----A---- C:\Windows\system32\wer.dll
2010-02-21 13:04:18 ----A---- C:\Windows\system32\WebClnt.dll
2010-02-21 13:04:17 ----A---- C:\Windows\system32\wdscore.dll
2010-02-21 13:04:17 ----A---- C:\Windows\system32\wdc.dll
2010-02-21 13:04:16 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2010-02-21 13:04:16 ----A---- C:\Windows\system32\whealogr.dll
2010-02-21 13:04:16 ----A---- C:\Windows\system32\wevtutil.exe
2010-02-21 13:04:16 ----A---- C:\Windows\system32\wevtsvc.dll
2010-02-21 13:04:16 ----A---- C:\Windows\system32\wevtapi.dll
2010-02-21 13:04:16 ----A---- C:\Windows\system32\wersvc.dll
2010-02-21 13:04:16 ----A---- C:\Windows\system32\WerFaultSecure.exe
2010-02-21 13:04:16 ----A---- C:\Windows\system32\WerFault.exe
2010-02-21 13:04:15 ----A---- C:\Windows\system32\win32spl.dll
2010-02-21 13:04:15 ----A---- C:\Windows\system32\wiaservc.dll
2010-02-21 13:04:15 ----A---- C:\Windows\system32\wiaaut.dll
2010-02-21 13:04:15 ----A---- C:\Windows\system32\version.dll
2010-02-21 13:04:15 ----A---- C:\Windows\system32\vdsutil.dll
2010-02-21 13:04:15 ----A---- C:\Windows\system32\vdsdyn.dll
2010-02-21 13:04:15 ----A---- C:\Windows\system32\vds.exe
2010-02-21 13:04:15 ----A---- C:\Windows\system32\vdmdbg.dll
2010-02-21 13:04:15 ----A---- C:\Windows\system32\uxsms.dll
2010-02-21 13:04:15 ----A---- C:\Windows\system32\Utilman.exe
2010-02-21 13:04:15 ----A---- C:\Windows\system32\user32.dll
2010-02-21 13:04:14 ----A---- C:\Windows\system32\wcnwiz2.dll
2010-02-21 13:04:14 ----A---- C:\Windows\system32\wcnwiz.dll
2010-02-21 13:04:14 ----A---- C:\Windows\system32\WcnNetsh.dll
2010-02-21 13:04:14 ----A---- C:\Windows\system32\wcncsvc.dll
2010-02-21 13:04:14 ----A---- C:\Windows\system32\usp10.dll
2010-02-21 13:04:14 ----A---- C:\Windows\system32\userenv.dll
2010-02-21 13:04:14 ----A---- C:\Windows\system32\usercpl.dll
2010-02-21 13:04:13 ----A---- C:\Windows\system32\WSDMon.dll
2010-02-21 13:04:13 ----A---- C:\Windows\system32\wsdchngr.dll
2010-02-21 13:04:13 ----A---- C:\Windows\system32\wscript.exe
2010-02-21 13:04:13 ----A---- C:\Windows\system32\wscisvif.dll
2010-02-21 13:04:13 ----A---- C:\Windows\system32\WscEapPr.dll
2010-02-21 13:04:13 ----A---- C:\Windows\system32\wscapi.dll
2010-02-21 13:04:13 ----A---- C:\Windows\system32\w32time.dll
2010-02-21 13:04:13 ----A---- C:\Windows\system32\VSSVC.exe
2010-02-21 13:04:13 ----A---- C:\Windows\system32\vssapi.dll
2010-02-21 13:04:12 ----A---- C:\Windows\system32\wusa.exe
2010-02-21 13:04:12 ----A---- C:\Windows\system32\wscsvc.dll
2010-02-21 13:04:12 ----A---- C:\Windows\system32\wscntfy.dll
2010-02-21 13:04:12 ----A---- C:\Windows\system32\wpcsvc.dll
2010-02-21 13:04:12 ----A---- C:\Windows\system32\wpccpl.dll
2010-02-21 13:04:12 ----A---- C:\Windows\system32\wpcao.dll
2010-02-21 13:04:12 ----A---- C:\Windows\system32\wow32.dll
2010-02-21 13:04:12 ----A---- C:\Windows\system32\WMVXENCD.DLL
2010-02-21 13:04:12 ----A---- C:\Windows\system32\WMVSDECD.DLL
2010-02-21 13:04:12 ----A---- C:\Windows\system32\WMVENCOD.DLL
2010-02-21 13:04:11 ----A---- C:\Windows\system32\xmlfilter.dll
2010-02-21 13:04:11 ----A---- C:\Windows\system32\wshext.dll
2010-02-21 13:04:11 ----A---- C:\Windows\system32\wshbth.dll
2010-02-21 13:04:11 ----A---- C:\Windows\system32\wsepno.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\wsnmp32.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\WsmSvc.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\wlgpclnt.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\Wldap32.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\wlanui.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\wlanpref.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\wlangpui.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\wisptis.exe
2010-02-21 13:04:10 ----A---- C:\Windows\system32\WinSCard.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\WinSAT.exe
2010-02-21 13:04:10 ----A---- C:\Windows\system32\winrnr.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\winresume.exe
2010-02-21 13:04:10 ----A---- C:\Windows\system32\winmm.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\winlogon.exe
2010-02-21 13:04:10 ----A---- C:\Windows\system32\winload.exe
2010-02-21 13:04:09 ----A---- C:\Windows\system32\wmpmde.dll
2010-02-21 13:04:09 ----A---- C:\Windows\system32\wmpeffects.dll
2010-02-21 13:04:09 ----A---- C:\Windows\system32\WMNetMgr.dll
2010-02-21 13:04:09 ----A---- C:\Windows\system32\winsrv.dll
2010-02-21 13:04:07 ----A---- C:\Windows\system32\wmdrmsdk.dll
2010-02-21 13:04:06 ----A---- C:\Windows\system32\wmicmiplugin.dll
Logfile of random's system information tool 1.06 (written by random/random)
Run by Elena at 2010-02-26 08:37:10
Microsoft® Windows Vista™ Home Basic Service Pack 2
System drive C: has 33 GB (59%) free of 56 GB
Total RAM: 1013 MB (31% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:37:42, on 26.2.2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18882)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Keyboard Manager\Manager Utility\KeyboardManager.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\system32\igfxext.exe
C:\Program Files\Internet Explorer\IELowutil.exe
C:\Users\Elena\Desktop\RSIT.exe
C:\Program Files\trend micro\Elena.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Ask Search Assistant BHO - {9CB65201-89C4-402c-BA80-02D8C59F9B1D} - (no file)
O2 - BHO: Ask Toolbar BHO - {FE063DB1-4EC0-403e-8DD8-394C54984B2C} - (no file)
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Keyboard Manager Utility] "C:\Program Files\Keyboard Manager\Manager Utility\KeyboardManager.exe" /lang en /H
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKCU\..\Run: [Google Update] "C:\Users\Elena\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: NMIndexingService - Unknown owner - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe (file missing)
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
--
End of file - 3908 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-161961244-2301921912-1863419576-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-161961244-2301921912-1863419576-1000UA.job
C:\Windows\tasks\User_Feed_Synchronization-{018BC8D0-72C8-4218-838B-76196E8C205D}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9CB65201-89C4-402c-BA80-02D8C59F9B1D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FE063DB1-4EC0-403e-8DD8-394C54984B2C}]
Ask Toolbar BHO
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2009-11-16 2054360]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-18 1008184]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2006-10-28 815104]
"Keyboard Manager Utility"=C:\Program Files\Keyboard Manager\Manager Utility\KeyboardManager.exe [2007-01-11 1359872]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2006-09-29 151552]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2007-10-10 39792]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2008-02-11 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2008-02-11 166424]
"Persistence"=C:\Windows\system32\igfxpers.exe [2008-02-11 133656]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Elena\AppData\Local\Google\Update\GoogleUpdate.exe [2010-02-09 135664]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-18 202240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Monitor]
C:\Windows\PixArt\PAC207\Monitor.exe [2006-11-03 319488]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2008-02-11 204800]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2010-02-26 08:37:10 ----D---- C:\rsit
2010-02-22 22:08:40 ----SHD---- C:\$RECYCLE.BIN
2010-02-22 22:08:34 ----D---- C:\Windows\temp
2010-02-22 22:08:31 ----A---- C:\ComboFix.txt
2010-02-22 21:49:55 ----A---- C:\Windows\MBR.exe
2010-02-22 21:49:54 ----A---- C:\Windows\NIRCMD.exe
2010-02-22 21:49:48 ----A---- C:\Windows\PEV.exe
2010-02-22 21:49:47 ----A---- C:\Windows\SWREG.exe
2010-02-22 21:49:46 ----A---- C:\Windows\zip.exe
2010-02-22 21:49:46 ----A---- C:\Windows\grep.exe
2010-02-22 21:49:45 ----A---- C:\Windows\sed.exe
2010-02-22 21:49:44 ----A---- C:\Windows\SWSC.exe
2010-02-22 21:49:28 ----D---- C:\Windows\ERDNT
2010-02-22 21:46:56 ----D---- C:\ComboFix
2010-02-22 21:46:36 ----D---- C:\Qoobox
2010-02-22 21:46:15 ----A---- C:\Windows\SWXCACLS.exe
2010-02-22 18:57:52 ----D---- C:\Program Files\trend micro
2010-02-22 18:41:07 ----D---- C:\Program Files\CCleaner
2010-02-21 22:30:40 ----D---- C:\Program Files\Windows Portable Devices
2010-02-21 22:27:17 ----A---- C:\Windows\system32\UIAnimation.dll
2010-02-21 22:27:16 ----A---- C:\Windows\system32\UIRibbonRes.dll
2010-02-21 22:27:15 ----A---- C:\Windows\system32\UIRibbon.dll
2010-02-21 22:26:31 ----A---- C:\Windows\system32\WMPhoto.dll
2010-02-21 22:26:31 ----A---- C:\Windows\system32\cdd.dll
2010-02-21 22:26:29 ----A---- C:\Windows\system32\XpsRasterService.dll
2010-02-21 22:26:29 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2010-02-21 22:26:29 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2010-02-21 22:26:29 ----A---- C:\Windows\system32\d3d10warp.dll
2010-02-21 22:26:29 ----A---- C:\Windows\system32\d2d1.dll
2010-02-21 22:26:28 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2010-02-21 22:26:28 ----A---- C:\Windows\system32\WindowsCodecs.dll
2010-02-21 22:26:28 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2010-02-21 22:26:28 ----A---- C:\Windows\system32\dxdiagn.dll
2010-02-21 22:26:28 ----A---- C:\Windows\system32\dxdiag.exe
2010-02-21 22:26:27 ----A---- C:\Windows\system32\XpsPrint.dll
2010-02-21 22:26:27 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2010-02-21 22:26:26 ----A---- C:\Windows\system32\xpsservices.dll
2010-02-21 22:26:26 ----A---- C:\Windows\system32\OpcServices.dll
2010-02-21 22:26:26 ----A---- C:\Windows\system32\FntCache.dll
2010-02-21 22:26:25 ----A---- C:\Windows\system32\dxgi.dll
2010-02-21 22:26:25 ----A---- C:\Windows\system32\DWrite.dll
2010-02-21 22:26:25 ----A---- C:\Windows\system32\d3d11.dll
2010-02-21 22:26:25 ----A---- C:\Windows\system32\d3d10level9.dll
2010-02-21 22:26:25 ----A---- C:\Windows\system32\d3d10core.dll
2010-02-21 22:26:25 ----A---- C:\Windows\system32\d3d10_1core.dll
2010-02-21 22:26:25 ----A---- C:\Windows\system32\d3d10_1.dll
2010-02-21 22:26:25 ----A---- C:\Windows\system32\d3d10.dll
2010-02-21 22:25:41 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2010-02-21 22:25:41 ----A---- C:\Windows\system32\wpdbusenum.dll
2010-02-21 22:25:41 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2010-02-21 22:25:37 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2010-02-21 22:25:35 ----A---- C:\Windows\system32\WpdMtpUS.dll
2010-02-21 22:25:35 ----A---- C:\Windows\system32\WpdConns.dll
2010-02-21 22:25:33 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2010-02-21 22:25:33 ----A---- C:\Windows\system32\wpdshext.dll
2010-02-21 22:25:33 ----A---- C:\Windows\system32\WpdMtp.dll
2010-02-21 22:25:33 ----A---- C:\Windows\system32\wpd_ci.dll
2010-02-21 22:25:33 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2010-02-21 22:25:33 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2010-02-21 22:25:33 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2010-02-21 22:25:33 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2010-02-21 22:25:32 ----A---- C:\Windows\system32\WPDSp.dll
2010-02-21 22:24:16 ----A---- C:\Windows\system32\oleaccrc.dll
2010-02-21 22:24:15 ----A---- C:\Windows\system32\UIAutomationCore.dll
2010-02-21 22:24:15 ----A---- C:\Windows\system32\oleacc.dll
2010-02-21 22:22:27 ----A---- C:\Windows\system32\winhttp.dll
2010-02-21 22:22:08 ----A---- C:\Windows\system32\httpapi.dll
2010-02-21 22:22:05 ----A---- C:\Windows\system32\nshhttp.dll
2010-02-21 21:46:05 ----A---- C:\Windows\system32\igxpun.exe
2010-02-21 21:39:30 ----A---- C:\Windows\system32\wmp.dll
2010-02-21 21:39:14 ----A---- C:\Windows\system32\unregmp2.exe
2010-02-21 21:39:01 ----A---- C:\Windows\system32\wmploc.DLL
2010-02-21 21:37:42 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2010-02-21 21:37:42 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-02-21 21:37:35 ----A---- C:\Windows\system32\jscript.dll
2010-02-21 19:55:51 ----A---- C:\Windows\system32\kerberos.dll
2010-02-21 19:55:44 ----A---- C:\Windows\system32\schannel.dll
2010-02-21 18:34:34 ----A---- C:\Windows\system32\occache.dll
2010-02-21 18:34:33 ----A---- C:\Windows\system32\jsproxy.dll
2010-02-21 18:34:33 ----A---- C:\Windows\system32\iepeers.dll
2010-02-21 18:34:32 ----A---- C:\Windows\system32\msfeeds.dll
2010-02-21 18:34:31 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-02-21 18:34:31 ----A---- C:\Windows\system32\ieui.dll
2010-02-21 18:34:30 ----A---- C:\Windows\system32\iesetup.dll
2010-02-21 18:34:30 ----A---- C:\Windows\system32\iernonce.dll
2010-02-21 18:34:29 ----A---- C:\Windows\system32\wininet.dll
2010-02-21 18:34:28 ----A---- C:\Windows\system32\msfeedssync.exe
2010-02-21 18:34:27 ----A---- C:\Windows\system32\ie4uinit.exe
2010-02-21 18:34:26 ----A---- C:\Windows\system32\iertutil.dll
2010-02-21 18:34:26 ----A---- C:\Windows\system32\iedkcs32.dll
2010-02-21 18:34:23 ----A---- C:\Windows\system32\urlmon.dll
2010-02-21 18:34:23 ----A---- C:\Windows\system32\ieUnatt.exe
2010-02-21 18:34:23 ----A---- C:\Windows\system32\iesysprep.dll
2010-02-21 18:34:18 ----A---- C:\Windows\system32\mshtml.dll
2010-02-21 18:34:18 ----A---- C:\Windows\system32\ieframe.dll
2010-02-21 18:32:06 ----A---- C:\Windows\system32\mshtmled.dll
2010-02-21 18:32:05 ----A---- C:\Windows\system32\mshtmler.dll
2010-02-21 18:32:05 ----A---- C:\Windows\system32\icardie.dll
2010-02-21 18:32:05 ----A---- C:\Windows\system32\admparse.dll
2010-02-21 18:32:04 ----A---- C:\Windows\system32\msls31.dll
2010-02-21 18:32:03 ----A---- C:\Windows\system32\corpol.dll
2010-02-21 18:32:02 ----A---- C:\Windows\system32\imgutil.dll
2010-02-21 18:32:02 ----A---- C:\Windows\system32\ieakeng.dll
2010-02-21 18:32:02 ----A---- C:\Windows\system32\dxtmsft.dll
2010-02-21 18:32:01 ----A---- C:\Windows\system32\dxtrans.dll
2010-02-21 18:31:59 ----A---- C:\Windows\system32\licmgr10.dll
2010-02-21 18:31:59 ----A---- C:\Windows\system32\inseng.dll
2010-02-21 18:31:58 ----A---- C:\Windows\system32\ieaksie.dll
2010-02-21 18:31:56 ----A---- C:\Windows\system32\webcheck.dll
2010-02-21 18:31:56 ----A---- C:\Windows\system32\msrating.dll
2010-02-21 18:31:55 ----A---- C:\Windows\system32\wextract.exe
2010-02-21 18:31:55 ----A---- C:\Windows\system32\ieakui.dll
2010-02-21 18:31:54 ----A---- C:\Windows\system32\WinFXDocObj.exe
2010-02-21 18:31:53 ----A---- C:\Windows\system32\mstime.dll
2010-02-21 18:31:52 ----A---- C:\Windows\system32\pngfilt.dll
2010-02-21 18:31:52 ----A---- C:\Windows\system32\advpack.dll
2010-02-21 18:31:50 ----A---- C:\Windows\system32\ieapfltr.dll
2010-02-21 18:31:49 ----A---- C:\Windows\system32\vbscript.dll
2010-02-21 18:31:49 ----A---- C:\Windows\system32\url.dll
2010-02-21 18:31:45 ----A---- C:\Windows\system32\mshta.exe
2010-02-21 18:31:45 ----A---- C:\Windows\system32\iexpress.exe
2010-02-21 18:31:43 ----A---- C:\Windows\system32\SetDepNx.exe
2010-02-21 18:31:43 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2010-02-21 18:31:42 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2010-02-21 18:31:42 ----A---- C:\Windows\system32\PDMSetup.exe
2010-02-21 13:45:54 ----D---- C:\Windows\system32\eu-ES
2010-02-21 13:45:54 ----D---- C:\Windows\system32\ca-ES
2010-02-21 13:45:53 ----D---- C:\Windows\system32\vi-VN
2010-02-21 13:37:13 ----D---- C:\Windows\system32\SPReview
2010-02-21 13:14:07 ----A---- C:\Windows\system32\scavenge.dll
2010-02-21 13:13:53 ----A---- C:\Windows\system32\compcln.exe
2010-02-21 13:05:36 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-02-21 13:05:36 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-02-21 13:05:36 ----A---- C:\Windows\system32\secproc_isv.dll
2010-02-21 13:05:36 ----A---- C:\Windows\system32\secproc.dll
2010-02-21 13:05:36 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2010-02-21 13:05:36 ----A---- C:\Windows\system32\SearchIndexer.exe
2010-02-21 13:05:36 ----A---- C:\Windows\system32\SearchFilterHost.exe
2010-02-21 13:05:36 ----A---- C:\Windows\system32\sdohlp.dll
2010-02-21 13:05:36 ----A---- C:\Windows\system32\sdclt.exe
2010-02-21 13:05:35 ----A---- C:\Windows\system32\samlib.dll
2010-02-21 13:05:35 ----A---- C:\Windows\system32\rtutils.dll
2010-02-21 13:05:35 ----A---- C:\Windows\system32\rtffilt.dll
2010-02-21 13:05:35 ----A---- C:\Windows\system32\rsaenh.dll
2010-02-21 13:05:35 ----A---- C:\Windows\system32\rpcss.dll
2010-02-21 13:05:35 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-02-21 13:05:35 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-02-21 13:05:35 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-02-21 13:05:35 ----A---- C:\Windows\system32\RMActivate.exe
2010-02-21 13:05:35 ----A---- C:\Windows\system32\riched20.dll
2010-02-21 13:05:34 ----A---- C:\Windows\system32\scrrun.dll
2010-02-21 13:05:34 ----A---- C:\Windows\system32\SCardSvr.dll
2010-02-21 13:05:34 ----A---- C:\Windows\system32\scansetting.dll
2010-02-21 13:05:34 ----A---- C:\Windows\system32\samsrv.dll
2010-02-21 13:05:34 ----A---- C:\Windows\system32\rpchttp.dll
2010-02-21 13:05:33 ----A---- C:\Windows\system32\schedsvc.dll
2010-02-21 13:05:33 ----A---- C:\Windows\system32\scrobj.dll
2010-02-21 13:05:33 ----A---- C:\Windows\system32\scksp.dll
2010-02-21 13:05:33 ----A---- C:\Windows\system32\scesrv.dll
2010-02-21 13:05:33 ----A---- C:\Windows\system32\scecli.dll
2010-02-21 13:05:31 ----A---- C:\Windows\system32\PNPXAssoc.dll
2010-02-21 13:05:31 ----A---- C:\Windows\system32\PnPutil.exe
2010-02-21 13:05:31 ----A---- C:\Windows\system32\PnPUnattend.exe
2010-02-21 13:05:31 ----A---- C:\Windows\system32\pnidui.dll
2010-02-21 13:05:31 ----A---- C:\Windows\system32\perfdisk.dll
2010-02-21 13:05:31 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2010-02-21 13:05:31 ----A---- C:\Windows\system32\pdh.dll
2010-02-21 13:05:31 ----A---- C:\Windows\system32\pcaui.dll
2010-02-21 13:05:31 ----A---- C:\Windows\system32\p2psvc.dll
2010-02-21 13:05:31 ----A---- C:\Windows\system32\P2PGraph.dll
2010-02-21 13:05:30 ----A---- C:\Windows\system32\powercpl.dll
2010-02-21 13:05:30 ----A---- C:\Windows\system32\pnpui.dll
2010-02-21 13:05:30 ----A---- C:\Windows\system32\pnpsetup.dll
2010-02-21 13:05:29 ----A---- C:\Windows\system32\PkgMgr.exe
2010-02-21 13:05:29 ----A---- C:\Windows\system32\pidgenx.dll
2010-02-21 13:05:29 ----A---- C:\Windows\system32\photowiz.dll
2010-02-21 13:05:28 ----A---- C:\Windows\system32\ntdll.dll
2010-02-21 13:05:28 ----A---- C:\Windows\system32\nslookup.exe
2010-02-21 13:05:27 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2010-02-21 13:05:25 ----A---- C:\Windows\system32\offfilt.dll
2010-02-21 13:05:25 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2010-02-21 13:05:25 ----A---- C:\Windows\system32\nlhtml.dll
2010-02-21 13:05:24 ----A---- C:\Windows\system32\osk.exe
2010-02-21 13:05:24 ----A---- C:\Windows\system32\oobefldr.dll
2010-02-21 13:05:24 ----A---- C:\Windows\system32\onex.dll
2010-02-21 13:05:24 ----A---- C:\Windows\system32\olepro32.dll
2010-02-21 13:05:24 ----A---- C:\Windows\system32\oleaut32.dll
2010-02-21 13:05:24 ----A---- C:\Windows\system32\ole32.dll
2010-02-21 13:05:24 ----A---- C:\Windows\system32\odbccp32.dll
2010-02-21 13:05:24 ----A---- C:\Windows\system32\odbcconf.dll
2010-02-21 13:05:24 ----A---- C:\Windows\system32\odbc32.dll
2010-02-21 13:05:23 ----A---- C:\Windows\system32\oleprn.dll
2010-02-21 13:05:23 ----A---- C:\Windows\system32\ocsetup.exe
2010-02-21 13:05:23 ----A---- C:\Windows\system32\ntprint.dll
2010-02-21 13:05:23 ----A---- C:\Windows\system32\ntmarta.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\rastapi.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\rasppp.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\rasplap.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\rasmontr.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\rasmans.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\raschap.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\rasgcw.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\rasdlg.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\rasdial.exe
2010-02-21 13:05:22 ----A---- C:\Windows\system32\rasdiag.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\rasapi32.dll
2010-02-21 13:05:22 ----A---- C:\Windows\system32\Query.dll
2010-02-21 13:05:21 ----A---- C:\Windows\system32\RelMon.dll
2010-02-21 13:05:21 ----A---- C:\Windows\system32\rekeywiz.exe
2010-02-21 13:05:21 ----A---- C:\Windows\system32\regsvc.dll
2010-02-21 13:05:21 ----A---- C:\Windows\system32\RacEngn.dll
2010-02-21 13:05:21 ----A---- C:\Windows\system32\qmgr.dll
2010-02-21 13:05:21 ----A---- C:\Windows\system32\qedit.dll
2010-02-21 13:05:20 ----A---- C:\Windows\system32\regapi.dll
2010-02-21 13:05:20 ----A---- C:\Windows\system32\reg.exe
2010-02-21 13:05:20 ----A---- C:\Windows\system32\rdpwsx.dll
2010-02-21 13:05:20 ----A---- C:\Windows\system32\rdpencom.dll
2010-02-21 13:05:20 ----A---- C:\Windows\system32\prnntfy.dll
2010-02-21 13:05:20 ----A---- C:\Windows\system32\printui.dll
2010-02-21 13:05:20 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2010-02-21 13:05:20 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-02-21 13:05:20 ----A---- C:\Windows\system32\PresentationHost.exe
2010-02-21 13:05:19 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2010-02-21 13:05:19 ----A---- C:\Windows\system32\powrprof.dll
2010-02-21 13:05:18 ----A---- C:\Windows\system32\qdvd.dll
2010-02-21 13:05:18 ----A---- C:\Windows\system32\QAGENTRT.DLL
2010-02-21 13:05:18 ----A---- C:\Windows\system32\puiapi.dll
2010-02-21 13:05:18 ----A---- C:\Windows\system32\psisdecd.dll
2010-02-21 13:05:18 ----A---- C:\Windows\system32\PSHED.DLL
2010-02-21 13:05:18 ----A---- C:\Windows\system32\propsys.dll
2010-02-21 13:05:18 ----A---- C:\Windows\system32\propdefs.dll
2010-02-21 13:05:18 ----A---- C:\Windows\system32\profsvc.dll
2010-02-21 13:05:16 ----A---- C:\Windows\system32\sendmail.dll
2010-02-21 13:05:13 ----A---- C:\Windows\system32\shlwapi.dll
2010-02-21 13:05:13 ----A---- C:\Windows\system32\shell32.dll
2010-02-21 13:05:13 ----A---- C:\Windows\system32\shdocvw.dll
2010-02-21 13:05:12 ----A---- C:\Windows\system32\setupapi.dll
2010-02-21 13:05:12 ----A---- C:\Windows\system32\sethc.exe
2010-02-21 13:05:12 ----A---- C:\Windows\system32\services.exe
2010-02-21 13:05:09 ----A---- C:\Windows\system32\eapphost.dll
2010-02-21 13:05:09 ----A---- C:\Windows\system32\eappgnui.dll
2010-02-21 13:05:08 ----A---- C:\Windows\system32\EhStorAPI.dll
2010-02-21 13:05:08 ----A---- C:\Windows\system32\eappcfg.dll
2010-02-21 13:05:08 ----A---- C:\Windows\system32\eapp3hst.dll
2010-02-21 13:05:08 ----A---- C:\Windows\system32\dsprop.dll
2010-02-21 13:05:08 ----A---- C:\Windows\system32\dsound.dll
2010-02-21 13:05:07 ----A---- C:\Windows\system32\f3ahvoas.dll
2010-02-21 13:05:07 ----A---- C:\Windows\system32\ExplorerFrame.dll
2010-02-21 13:05:07 ----A---- C:\Windows\system32\evr.dll
2010-02-21 13:05:07 ----A---- C:\Windows\system32\eudcedit.exe
2010-02-21 13:05:07 ----A---- C:\Windows\system32\esent.dll
2010-02-21 13:05:07 ----A---- C:\Windows\system32\dwm.exe
2010-02-21 13:05:07 ----A---- C:\Windows\explorer.exe
2010-02-21 13:05:06 ----A---- C:\Windows\system32\es.dll
2010-02-21 13:05:06 ----A---- C:\Windows\system32\EncDec.dll
2010-02-21 13:05:06 ----A---- C:\Windows\system32\emdmgmt.dll
2010-02-21 13:05:06 ----A---- C:\Windows\system32\EhStorShell.dll
2010-02-21 13:05:06 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2010-02-21 13:05:06 ----A---- C:\Windows\system32\EhStorAuthn.dll
2010-02-21 13:05:06 ----A---- C:\Windows\system32\dimsroam.dll
2010-02-21 13:05:06 ----A---- C:\Windows\system32\diagperf.dll
2010-02-21 13:05:05 ----A---- C:\Windows\system32\diskraid.exe
2010-02-21 13:05:05 ----A---- C:\Windows\system32\diskpart.exe
2010-02-21 13:05:05 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2010-02-21 13:05:05 ----A---- C:\Windows\system32\dfshim.dll
2010-02-21 13:05:04 ----A---- C:\Windows\system32\dpapimig.exe
2010-02-21 13:05:04 ----A---- C:\Windows\system32\dot3cfg.dll
2010-02-21 13:05:04 ----A---- C:\Windows\system32\dhcpcsvc.dll
2010-02-21 13:05:04 ----A---- C:\Windows\system32\dfsr.exe
2010-02-21 13:05:04 ----A---- C:\Windows\system32\devmgr.dll
2010-02-21 13:05:03 ----A---- C:\Windows\system32\hbaapi.dll
2010-02-21 13:05:03 ----A---- C:\Windows\system32\drvstore.dll
2010-02-21 13:05:03 ----A---- C:\Windows\system32\drvinst.exe
2010-02-21 13:05:03 ----A---- C:\Windows\system32\drmv2clt.dll
2010-02-21 13:05:03 ----A---- C:\Windows\system32\drmmgrtn.dll
2010-02-21 13:05:03 ----A---- C:\Windows\system32\dot3svc.dll
2010-02-21 13:05:03 ----A---- C:\Windows\system32\dot3msm.dll
2010-02-21 13:05:03 ----A---- C:\Windows\system32\dnsrslvr.dll
2010-02-21 13:05:03 ----A---- C:\Windows\system32\dnsapi.dll
2010-02-21 13:05:03 ----A---- C:\Windows\system32\dmusic.dll
2010-02-21 13:05:03 ----A---- C:\Windows\system32\dmsynth.dll
2010-02-21 13:05:02 ----A---- C:\Windows\system32\iasnap.dll
2010-02-21 13:05:02 ----A---- C:\Windows\system32\IasMigReader.exe
2010-02-21 13:05:02 ----A---- C:\Windows\system32\IasMigPlugin.dll
2010-02-21 13:05:02 ----A---- C:\Windows\system32\iashlpr.dll
2010-02-21 13:05:02 ----A---- C:\Windows\system32\iasdatastore.dll
2010-02-21 13:05:02 ----A---- C:\Windows\system32\iasads.dll
2010-02-21 13:05:02 ----A---- C:\Windows\system32\iasacct.dll
2010-02-21 13:05:02 ----A---- C:\Windows\system32\gpupdate.exe
2010-02-21 13:05:02 ----A---- C:\Windows\system32\gpsvc.dll
2010-02-21 13:05:02 ----A---- C:\Windows\system32\gpresult.exe
2010-02-21 13:05:01 ----A---- C:\Windows\system32\hidserv.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\hdwwiz.exe
2010-02-21 13:05:01 ----A---- C:\Windows\system32\gpapi.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\gdi32.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\fontext.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\findstr.exe
2010-02-21 13:05:01 ----A---- C:\Windows\system32\feclient.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\fdWSD.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\fdWCN.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\fdSSDP.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\fdProxy.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\fdeploy.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\fdBthProxy.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\fdBth.dll
2010-02-21 13:05:01 ----A---- C:\Windows\system32\fc.exe
2010-02-21 13:05:01 ----A---- C:\Windows\system32\Faultrep.dll
2010-02-21 13:04:59 ----A---- C:\Windows\system32\gpedit.dll
2010-02-21 13:04:59 ----A---- C:\Windows\system32\gameux.dll
2010-02-21 13:04:59 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2010-02-21 13:04:59 ----A---- C:\Windows\system32\fundisc.dll
2010-02-21 13:04:59 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2010-02-21 13:04:59 ----A---- C:\Windows\system32\ftp.exe
2010-02-21 13:04:59 ----A---- C:\Windows\system32\fsquirt.exe
2010-02-21 13:04:58 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2010-02-21 13:04:58 ----A---- C:\Windows\system32\autochk.exe
2010-02-21 13:04:58 ----A---- C:\Windows\system32\autofmt.exe
2010-02-21 13:04:58 ----A---- C:\Windows\system32\autoconv.exe
2010-02-21 13:04:58 ----A---- C:\Windows\system32\authz.dll
2010-02-21 13:04:58 ----A---- C:\Windows\system32\authui.dll
2010-02-21 13:04:58 ----A---- C:\Windows\system32\audiosrv.dll
2010-02-21 13:04:58 ----A---- C:\Windows\system32\AudioSes.dll
2010-02-21 13:04:58 ----A---- C:\Windows\system32\audiodg.exe
2010-02-21 13:04:57 ----A---- C:\Windows\system32\autoplay.dll
2010-02-21 13:04:56 ----A---- C:\Windows\system32\bthci.dll
2010-02-21 13:04:56 ----A---- C:\Windows\system32\browseui.dll
2010-02-21 13:04:56 ----A---- C:\Windows\system32\brcpl.dll
2010-02-21 13:04:56 ----A---- C:\Windows\system32\blackbox.dll
2010-02-21 13:04:56 ----A---- C:\Windows\system32\bitsigd.dll
2010-02-21 13:04:56 ----A---- C:\Windows\system32\BFE.DLL
2010-02-21 13:04:56 ----A---- C:\Windows\system32\bcrypt.dll
2010-02-21 13:04:56 ----A---- C:\Windows\system32\basecsp.dll
2010-02-21 13:04:56 ----A---- C:\Windows\system32\azroles.dll
2010-02-21 13:04:55 ----A---- C:\Windows\system32\accessibilitycpl.dll
2010-02-21 13:04:54 ----A---- C:\Windows\system32\apphelp.dll
2010-02-21 13:04:54 ----A---- C:\Windows\system32\apds.dll
2010-02-21 13:04:53 ----A---- C:\Windows\system32\conime.exe
2010-02-21 13:04:53 ----A---- C:\Windows\system32\comuid.dll
2010-02-21 13:04:53 ----A---- C:\Windows\system32\comsvcs.dll
2010-02-21 13:04:53 ----A---- C:\Windows\system32\advapi32.dll
2010-02-21 13:04:53 ----A---- C:\Windows\system32\adtschema.dll
2010-02-21 13:04:53 ----A---- C:\Windows\system32\adsmsext.dll
2010-02-21 13:04:53 ----A---- C:\Windows\system32\adsldpc.dll
2010-02-21 13:04:52 ----A---- C:\Windows\system32\crypt32.dll
2010-02-21 13:04:52 ----A---- C:\Windows\system32\credui.dll
2010-02-21 13:04:52 ----A---- C:\Windows\system32\connect.dll
2010-02-21 13:04:52 ----A---- C:\Windows\system32\comdlg32.dll
2010-02-21 13:04:52 ----A---- C:\Windows\system32\cmmon32.exe
2010-02-21 13:04:52 ----A---- C:\Windows\system32\cmdial32.dll
2010-02-21 13:04:51 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2010-02-21 13:04:51 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2010-02-21 13:04:51 ----A---- C:\Windows\system32\DevicePairing.dll
2010-02-21 13:04:51 ----A---- C:\Windows\system32\DeviceEject.exe
2010-02-21 13:04:51 ----A---- C:\Windows\system32\dbgeng.dll
2010-02-21 13:04:51 ----A---- C:\Windows\system32\davclnt.dll
2010-02-21 13:04:51 ----A---- C:\Windows\system32\dataclen.dll
2010-02-21 13:04:51 ----A---- C:\Windows\system32\d3d9.dll
2010-02-21 13:04:51 ----A---- C:\Windows\system32\cscdll.dll
2010-02-21 13:04:51 ----A---- C:\Windows\system32\cscapi.dll
2010-02-21 13:04:51 ----A---- C:\Windows\system32\cryptui.dll
2010-02-21 13:04:51 ----A---- C:\Windows\system32\cryptsvc.dll
2010-02-21 13:04:50 ----A---- C:\Windows\system32\csrstub.exe
2010-02-21 13:04:50 ----A---- C:\Windows\system32\cscript.exe
2010-02-21 13:04:50 ----A---- C:\Windows\system32\certmgr.dll
2010-02-21 13:04:50 ----A---- C:\Windows\system32\CertEnrollUI.dll
2010-02-21 13:04:50 ----A---- C:\Windows\system32\CertEnroll.dll
2010-02-21 13:04:50 ----A---- C:\Windows\system32\certcli.dll
2010-02-21 13:04:49 ----A---- C:\Windows\system32\cbsra.exe
2010-02-21 13:04:49 ----A---- C:\Windows\system32\bthudtask.exe
2010-02-21 13:04:49 ----A---- C:\Windows\system32\bthserv.dll
2010-02-21 13:04:48 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2010-02-21 13:04:48 ----A---- C:\Windows\system32\chtbrkr.dll
2010-02-21 13:04:48 ----A---- C:\Windows\system32\chsbrkr.dll
2010-02-21 13:04:48 ----A---- C:\Windows\system32\cipher.exe
2010-02-21 13:04:48 ----A---- C:\Windows\system32\ci.dll
2010-02-21 13:04:47 ----A---- C:\Windows\system32\msftedit.dll
2010-02-21 13:04:47 ----A---- C:\Windows\system32\certutil.exe
2010-02-21 13:04:47 ----A---- C:\Windows\system32\certreq.exe
2010-02-21 13:04:47 ----A---- C:\Windows\system32\certprop.dll
2010-02-21 13:04:46 ----A---- C:\Windows\system32\msihnd.dll
2010-02-21 13:04:46 ----A---- C:\Windows\system32\msiexec.exe
2010-02-21 13:04:46 ----A---- C:\Windows\system32\msi.dll
2010-02-21 13:04:46 ----A---- C:\Windows\system32\msexch40.dll
2010-02-21 13:04:46 ----A---- C:\Windows\system32\msexcl40.dll
2010-02-21 13:04:46 ----A---- C:\Windows\system32\msdtctm.dll
2010-02-21 13:04:45 ----A---- C:\Windows\system32\msimsg.dll
2010-02-21 13:04:45 ----A---- C:\Windows\system32\msdtcprx.dll
2010-02-21 13:04:45 ----A---- C:\Windows\system32\msdrm.dll
2010-02-21 13:04:45 ----A---- C:\Windows\system32\msctfui.dll
2010-02-21 13:04:45 ----A---- C:\Windows\system32\msctfp.dll
2010-02-21 13:04:45 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2010-02-21 13:04:45 ----A---- C:\Windows\system32\msctf.dll
2010-02-21 13:04:44 ----A---- C:\Windows\system32\MPSSVC.dll
2010-02-21 13:04:44 ----A---- C:\Windows\system32\mprapi.dll
2010-02-21 13:04:44 ----A---- C:\Windows\system32\mpr.dll
2010-02-21 13:04:44 ----A---- C:\Windows\system32\MMDevAPI.dll
2010-02-21 13:04:43 ----A---- C:\Windows\system32\mscories.dll
2010-02-21 13:04:43 ----A---- C:\Windows\system32\mscorier.dll
2010-02-21 13:04:43 ----A---- C:\Windows\system32\mscoree.dll
2010-02-21 13:04:43 ----A---- C:\Windows\system32\mscms.dll
2010-02-21 13:04:43 ----A---- C:\Windows\system32\mscandui.dll
2010-02-21 13:04:43 ----A---- C:\Windows\system32\modemui.dll
2010-02-21 13:04:42 ----A---- C:\Windows\system32\netcenter.dll
2010-02-21 13:04:42 ----A---- C:\Windows\system32\netapi32.dll
2010-02-21 13:04:42 ----A---- C:\Windows\system32\ncryptui.dll
2010-02-21 13:04:42 ----A---- C:\Windows\system32\ncrypt.dll
2010-02-21 13:04:41 ----A---- C:\Windows\system32\netplwiz.dll
2010-02-21 13:04:41 ----A---- C:\Windows\system32\netlogon.dll
2010-02-21 13:04:41 ----A---- C:\Windows\system32\mtxclu.dll
2010-02-21 13:04:39 ----A---- C:\Windows\system32\newdev.exe
2010-02-21 13:04:39 ----A---- C:\Windows\system32\netshell.dll
2010-02-21 13:04:39 ----A---- C:\Windows\system32\NcdProp.dll
2010-02-21 13:04:39 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2010-02-21 13:04:38 ----A---- C:\Windows\system32\newdev.dll
2010-02-21 13:04:38 ----A---- C:\Windows\system32\networkmap.dll
2010-02-21 13:04:38 ----A---- C:\Windows\system32\networkitemfactory.dll
2010-02-21 13:04:38 ----A---- C:\Windows\system32\networkexplorer.dll
2010-02-21 13:04:38 ----A---- C:\Windows\system32\msscntrs.dll
2010-02-21 13:04:38 ----A---- C:\Windows\system32\msscb.dll
2010-02-21 13:04:38 ----A---- C:\Windows\system32\msrepl40.dll
2010-02-21 13:04:38 ----A---- C:\Windows\system32\msnetobj.dll
2010-02-21 13:04:38 ----A---- C:\Windows\system32\msltus40.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msxbde40.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\mswstr10.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\mswsock.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\mswdat10.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msvcrt.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msvcp60.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msutb.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msrd3x40.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msrd2x40.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\mspbde40.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msjtes40.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msjter40.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msjint40.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msjetoledb40.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msjet40.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msisip.dll
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msinfo32.exe
2010-02-21 13:04:37 ----A---- C:\Windows\system32\msimtf.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\MSVidCtl.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\mstsc.exe
2010-02-21 13:04:36 ----A---- C:\Windows\system32\mstlsapi.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\mstext40.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\mssvp.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\msstrc.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\mssrch.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\mssprxy.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\mssphtb.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\mssph.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\mssitlb.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\msshsq.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\msshooks.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\msscp.dll
2010-02-21 13:04:36 ----A---- C:\Windows\system32\inetcomm.dll
2010-02-21 13:04:35 ----A---- C:\Windows\system32\InkEd.dll
2010-02-21 13:04:35 ----A---- C:\Windows\system32\infocardapi.dll
2010-02-21 13:04:35 ----A---- C:\Windows\system32\inetppui.dll
2010-02-21 13:04:35 ----A---- C:\Windows\system32\inetpp.dll
2010-02-21 13:04:34 ----A---- C:\Windows\system32\iscsilog.dll
2010-02-21 13:04:34 ----A---- C:\Windows\system32\ipsmsnap.dll
2010-02-21 13:04:34 ----A---- C:\Windows\system32\IPSECSVC.DLL
2010-02-21 13:04:34 ----A---- C:\Windows\system32\imm32.dll
2010-02-21 13:04:33 ----A---- C:\Windows\system32\ipsecsnp.dll
2010-02-21 13:04:33 ----A---- C:\Windows\system32\iphlpsvc.dll
2010-02-21 13:04:33 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2010-02-21 13:04:33 ----A---- C:\Windows\system32\ipconfig.exe
2010-02-21 13:04:33 ----A---- C:\Windows\system32\input.dll
2010-02-21 13:04:32 ----A---- C:\Windows\system32\IMJP10K.DLL
2010-02-21 13:04:32 ----A---- C:\Windows\system32\ifmon.dll
2010-02-21 13:04:32 ----A---- C:\Windows\system32\icardres.dll
2010-02-21 13:04:32 ----A---- C:\Windows\system32\icardagt.exe
2010-02-21 13:04:32 ----A---- C:\Windows\system32\iassvcs.dll
2010-02-21 13:04:32 ----A---- C:\Windows\system32\iassdo.dll
2010-02-21 13:04:32 ----A---- C:\Windows\system32\iassam.dll
2010-02-21 13:04:32 ----A---- C:\Windows\system32\iasrecst.dll
2010-02-21 13:04:32 ----A---- C:\Windows\system32\iasrad.dll
2010-02-21 13:04:32 ----A---- C:\Windows\system32\iaspolcy.dll
2010-02-21 13:04:29 ----A---- C:\Windows\system32\imapi2fs.dll
2010-02-21 13:04:29 ----A---- C:\Windows\system32\imapi2.dll
2010-02-21 13:04:29 ----A---- C:\Windows\system32\imapi.dll
2010-02-21 13:04:29 ----A---- C:\Windows\system32\IKEEXT.DLL
2010-02-21 13:04:27 ----A---- C:\Windows\system32\mfplat.dll
2010-02-21 13:04:27 ----A---- C:\Windows\system32\mfc42.dll
2010-02-21 13:04:26 ----A---- C:\Windows\system32\mfc42u.dll
2010-02-21 13:04:25 ----A---- C:\Windows\system32\mimefilt.dll
2010-02-21 13:04:25 ----A---- C:\Windows\system32\milcore.dll
2010-02-21 13:04:24 ----A---- C:\Windows\system32\mmcndmgr.dll
2010-02-21 13:04:24 ----A---- C:\Windows\system32\mmcico.dll
2010-02-21 13:04:24 ----A---- C:\Windows\system32\mmci.dll
2010-02-21 13:04:24 ----A---- C:\Windows\system32\mmc.exe
2010-02-21 13:04:24 ----A---- C:\Windows\system32\midimap.dll
2010-02-21 13:04:23 ----A---- C:\Windows\system32\korwbrkr.dll
2010-02-21 13:04:22 ----A---- C:\Windows\system32\l2nacp.dll
2010-02-21 13:04:21 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2010-02-21 13:04:21 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2010-02-21 13:04:21 ----A---- C:\Windows\system32\mblctr.exe
2010-02-21 13:04:21 ----A---- C:\Windows\system32\kernel32.dll
2010-02-21 13:04:21 ----A---- C:\Windows\system32\kdusb.dll
2010-02-21 13:04:21 ----A---- C:\Windows\system32\kdcom.dll
2010-02-21 13:04:21 ----A---- C:\Windows\system32\kd1394.dll
2010-02-21 13:04:20 ----A---- C:\Windows\system32\logman.exe
2010-02-21 13:04:20 ----A---- C:\Windows\system32\logagent.exe
2010-02-21 13:04:19 ----A---- C:\Windows\system32\shsetup.dll
2010-02-21 13:04:19 ----A---- C:\Windows\system32\Magnify.exe
2010-02-21 13:04:18 ----A---- C:\Windows\system32\wercon.exe
2010-02-21 13:04:18 ----A---- C:\Windows\system32\wer.dll
2010-02-21 13:04:18 ----A---- C:\Windows\system32\WebClnt.dll
2010-02-21 13:04:17 ----A---- C:\Windows\system32\wdscore.dll
2010-02-21 13:04:17 ----A---- C:\Windows\system32\wdc.dll
2010-02-21 13:04:16 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2010-02-21 13:04:16 ----A---- C:\Windows\system32\whealogr.dll
2010-02-21 13:04:16 ----A---- C:\Windows\system32\wevtutil.exe
2010-02-21 13:04:16 ----A---- C:\Windows\system32\wevtsvc.dll
2010-02-21 13:04:16 ----A---- C:\Windows\system32\wevtapi.dll
2010-02-21 13:04:16 ----A---- C:\Windows\system32\wersvc.dll
2010-02-21 13:04:16 ----A---- C:\Windows\system32\WerFaultSecure.exe
2010-02-21 13:04:16 ----A---- C:\Windows\system32\WerFault.exe
2010-02-21 13:04:15 ----A---- C:\Windows\system32\win32spl.dll
2010-02-21 13:04:15 ----A---- C:\Windows\system32\wiaservc.dll
2010-02-21 13:04:15 ----A---- C:\Windows\system32\wiaaut.dll
2010-02-21 13:04:15 ----A---- C:\Windows\system32\version.dll
2010-02-21 13:04:15 ----A---- C:\Windows\system32\vdsutil.dll
2010-02-21 13:04:15 ----A---- C:\Windows\system32\vdsdyn.dll
2010-02-21 13:04:15 ----A---- C:\Windows\system32\vds.exe
2010-02-21 13:04:15 ----A---- C:\Windows\system32\vdmdbg.dll
2010-02-21 13:04:15 ----A---- C:\Windows\system32\uxsms.dll
2010-02-21 13:04:15 ----A---- C:\Windows\system32\Utilman.exe
2010-02-21 13:04:15 ----A---- C:\Windows\system32\user32.dll
2010-02-21 13:04:14 ----A---- C:\Windows\system32\wcnwiz2.dll
2010-02-21 13:04:14 ----A---- C:\Windows\system32\wcnwiz.dll
2010-02-21 13:04:14 ----A---- C:\Windows\system32\WcnNetsh.dll
2010-02-21 13:04:14 ----A---- C:\Windows\system32\wcncsvc.dll
2010-02-21 13:04:14 ----A---- C:\Windows\system32\usp10.dll
2010-02-21 13:04:14 ----A---- C:\Windows\system32\userenv.dll
2010-02-21 13:04:14 ----A---- C:\Windows\system32\usercpl.dll
2010-02-21 13:04:13 ----A---- C:\Windows\system32\WSDMon.dll
2010-02-21 13:04:13 ----A---- C:\Windows\system32\wsdchngr.dll
2010-02-21 13:04:13 ----A---- C:\Windows\system32\wscript.exe
2010-02-21 13:04:13 ----A---- C:\Windows\system32\wscisvif.dll
2010-02-21 13:04:13 ----A---- C:\Windows\system32\WscEapPr.dll
2010-02-21 13:04:13 ----A---- C:\Windows\system32\wscapi.dll
2010-02-21 13:04:13 ----A---- C:\Windows\system32\w32time.dll
2010-02-21 13:04:13 ----A---- C:\Windows\system32\VSSVC.exe
2010-02-21 13:04:13 ----A---- C:\Windows\system32\vssapi.dll
2010-02-21 13:04:12 ----A---- C:\Windows\system32\wusa.exe
2010-02-21 13:04:12 ----A---- C:\Windows\system32\wscsvc.dll
2010-02-21 13:04:12 ----A---- C:\Windows\system32\wscntfy.dll
2010-02-21 13:04:12 ----A---- C:\Windows\system32\wpcsvc.dll
2010-02-21 13:04:12 ----A---- C:\Windows\system32\wpccpl.dll
2010-02-21 13:04:12 ----A---- C:\Windows\system32\wpcao.dll
2010-02-21 13:04:12 ----A---- C:\Windows\system32\wow32.dll
2010-02-21 13:04:12 ----A---- C:\Windows\system32\WMVXENCD.DLL
2010-02-21 13:04:12 ----A---- C:\Windows\system32\WMVSDECD.DLL
2010-02-21 13:04:12 ----A---- C:\Windows\system32\WMVENCOD.DLL
2010-02-21 13:04:11 ----A---- C:\Windows\system32\xmlfilter.dll
2010-02-21 13:04:11 ----A---- C:\Windows\system32\wshext.dll
2010-02-21 13:04:11 ----A---- C:\Windows\system32\wshbth.dll
2010-02-21 13:04:11 ----A---- C:\Windows\system32\wsepno.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\wsnmp32.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\WsmSvc.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\wlgpclnt.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\Wldap32.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\wlanui.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\wlanpref.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\wlangpui.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\wisptis.exe
2010-02-21 13:04:10 ----A---- C:\Windows\system32\WinSCard.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\WinSAT.exe
2010-02-21 13:04:10 ----A---- C:\Windows\system32\winrnr.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\winresume.exe
2010-02-21 13:04:10 ----A---- C:\Windows\system32\winmm.dll
2010-02-21 13:04:10 ----A---- C:\Windows\system32\winlogon.exe
2010-02-21 13:04:10 ----A---- C:\Windows\system32\winload.exe
2010-02-21 13:04:09 ----A---- C:\Windows\system32\wmpmde.dll
2010-02-21 13:04:09 ----A---- C:\Windows\system32\wmpeffects.dll
2010-02-21 13:04:09 ----A---- C:\Windows\system32\WMNetMgr.dll
2010-02-21 13:04:09 ----A---- C:\Windows\system32\winsrv.dll
2010-02-21 13:04:07 ----A---- C:\Windows\system32\wmdrmsdk.dll
2010-02-21 13:04:06 ----A---- C:\Windows\system32\wmicmiplugin.dll
Re: Prosím kontrolu logu
...tady je druhá část:
2010-02-21 13:04:06 ----A---- C:\Windows\system32\Storprop.dll
2010-02-21 13:04:02 ----A---- C:\Windows\system32\stobject.dll
2010-02-21 13:04:00 ----A---- C:\Windows\system32\sud.dll
2010-02-21 13:03:59 ----A---- C:\Windows\system32\srvsvc.dll
2010-02-21 13:03:59 ----A---- C:\Windows\system32\srchadmin.dll
2010-02-21 13:03:59 ----A---- C:\Windows\system32\srcore.dll
2010-02-21 13:03:57 ----A---- C:\Windows\system32\sysmain.dll
2010-02-21 13:03:57 ----A---- C:\Windows\system32\sysclass.dll
2010-02-21 13:03:57 ----A---- C:\Windows\system32\SyncCenter.dll
2010-02-21 13:03:57 ----A---- C:\Windows\system32\swprv.dll
2010-02-21 13:03:56 ----A---- C:\Windows\system32\smss.exe
2010-02-21 13:03:56 ----A---- C:\Windows\system32\SmiEngine.dll
2010-02-21 13:03:56 ----A---- C:\Windows\system32\SMBHelperClass.dll
2010-02-21 13:03:56 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2010-02-21 13:03:56 ----A---- C:\Windows\system32\slwmi.dll
2010-02-21 13:03:56 ----A---- C:\Windows\system32\slcc.dll
2010-02-21 13:03:56 ----A---- C:\Windows\system32\SLC.dll
2010-02-21 13:03:56 ----A---- C:\Windows\system32\shwebsvc.dll
2010-02-21 13:03:55 ----A---- C:\Windows\system32\spp.dll
2010-02-21 13:03:55 ----A---- C:\Windows\system32\spoolsv.exe
2010-02-21 13:03:55 ----A---- C:\Windows\system32\spoolss.dll
2010-02-21 13:03:55 ----A---- C:\Windows\system32\spinstall.exe
2010-02-21 13:03:55 ----A---- C:\Windows\system32\spcmsg.dll
2010-02-21 13:03:55 ----A---- C:\Windows\system32\slwga.dll
2010-02-21 13:03:55 ----A---- C:\Windows\system32\SLUINotify.dll
2010-02-21 13:03:55 ----A---- C:\Windows\system32\SLUI.exe
2010-02-21 13:03:55 ----A---- C:\Windows\system32\SLsvc.exe
2010-02-21 13:03:55 ----A---- C:\Windows\system32\slmgr.vbs
2010-02-21 13:03:55 ----A---- C:\Windows\system32\SLLUA.exe
2010-02-21 13:03:55 ----A---- C:\Windows\system32\SLCommDlg.dll
2010-02-21 13:03:55 ----A---- C:\Windows\system32\slcinst.dll
2010-02-21 13:03:55 ----A---- C:\Windows\system32\SLCExt.dll
2010-02-21 13:03:55 ----A---- C:\Windows\system32\shsvcs.dll
2010-02-21 13:03:54 ----A---- C:\Windows\system32\sqlsrv32.dll
2010-02-21 13:03:54 ----A---- C:\Windows\system32\spwizui.dll
2010-02-21 13:03:54 ----A---- C:\Windows\system32\spwinsat.dll
2010-02-21 13:03:54 ----A---- C:\Windows\system32\sperror.dll
2010-02-21 13:03:53 ----A---- C:\Windows\system32\TsWpfWrp.exe
2010-02-21 13:03:53 ----A---- C:\Windows\system32\TSTheme.exe
2010-02-21 13:03:53 ----A---- C:\Windows\system32\spreview.exe
2010-02-21 13:03:53 ----A---- C:\Windows\system32\softkbd.dll
2010-02-21 13:03:53 ----A---- C:\Windows\system32\SndVol.exe
2010-02-21 13:03:52 ----A---- C:\Windows\system32\tscupgrd.exe
2010-02-21 13:03:51 ----A---- C:\Windows\system32\zipfldr.dll
2010-02-21 13:03:51 ----A---- C:\Windows\system32\untfs.dll
2010-02-21 13:03:51 ----A---- C:\Windows\system32\uDWM.dll
2010-02-21 13:03:50 ----A---- C:\Windows\system32\umpnpmgr.dll
2010-02-21 13:03:50 ----A---- C:\Windows\system32\ulib.dll
2010-02-21 13:03:50 ----A---- C:\Windows\system32\systemcpl.dll
2010-02-21 13:03:46 ----A---- C:\Windows\system32\tquery.dll
2010-02-21 13:03:46 ----A---- C:\Windows\system32\themeui.dll
2010-02-21 13:03:46 ----A---- C:\Windows\system32\thawbrkr.dll
2010-02-21 13:03:46 ----A---- C:\Windows\system32\termsrv.dll
2010-02-21 13:03:46 ----A---- C:\Windows\system32\tcpmon.dll
2010-02-21 13:03:46 ----A---- C:\Windows\system32\tcpipcfg.dll
2010-02-21 13:03:46 ----A---- C:\Windows\system32\taskeng.exe
2010-02-21 13:03:46 ----A---- C:\Windows\system32\taskcomp.dll
2010-02-21 13:03:46 ----A---- C:\Windows\system32\tapisrv.dll
2010-02-21 13:03:45 ----A---- C:\Windows\system32\themecpl.dll
2010-02-21 12:25:43 ----D---- C:\PerfLogs
2010-02-21 11:08:10 ----D---- C:\79c250fb128b28425d89
2010-02-21 11:04:09 ----D---- C:\Windows\system32\EventProviders
2010-02-21 11:03:45 ----D---- C:\41e7fa4665b561a2a2fd
2010-02-21 10:04:58 ----A---- C:\Windows\system32\sdspres.dll
2010-02-21 10:04:44 ----A---- C:\Windows\system32\recdisc.exe
2010-02-21 10:02:14 ----A---- C:\Windows\system32\sxproxy.dll
2010-02-21 09:49:46 ----A---- C:\Windows\system32\mssha.dll
2010-02-21 09:49:45 ----A---- C:\Windows\system32\mstask.dll
2010-02-21 09:49:45 ----A---- C:\Windows\system32\msrdc.dll
2010-02-21 09:49:45 ----A---- C:\Windows\system32\msra.exe
2010-02-21 09:49:42 ----A---- C:\Windows\system32\NAPMONTR.DLL
2010-02-21 09:49:42 ----A---- C:\Windows\system32\napipsec.dll
2010-02-21 09:49:42 ----A---- C:\Windows\system32\NapiNSP.dll
2010-02-21 09:49:42 ----A---- C:\Windows\system32\NAPHLPR.DLL
2010-02-21 09:49:42 ----A---- C:\Windows\system32\napdsnap.dll
2010-02-21 09:49:42 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2010-02-21 09:49:42 ----A---- C:\Windows\system32\mydocs.dll
2010-02-21 09:49:42 ----A---- C:\Windows\system32\mycomput.dll
2010-02-21 09:49:42 ----A---- C:\Windows\system32\MuiUnattend.exe
2010-02-21 09:49:42 ----A---- C:\Windows\system32\mtxoci.dll
2010-02-21 09:49:42 ----A---- C:\Windows\system32\mtxlegih.dll
2010-02-21 09:49:42 ----A---- C:\Windows\system32\mtxdm.dll
2010-02-21 09:49:42 ----A---- C:\Windows\system32\mtstocom.exe
2010-02-21 09:49:41 ----A---- C:\Windows\system32\msvbvm60.dll
2010-02-21 09:49:40 ----A---- C:\Windows\system32\mswmdm.dll
2010-02-21 09:49:39 ----A---- C:\Windows\system32\msdtcVSp1res.dll
2010-02-21 09:49:39 ----A---- C:\Windows\system32\msdtcuiu.dll
2010-02-21 09:49:36 ----A---- C:\Windows\system32\msdtclog.dll
2010-02-21 09:49:36 ----A---- C:\Windows\system32\msdtckrm.dll
2010-02-21 09:49:36 ----A---- C:\Windows\system32\msdtc.exe
2010-02-21 09:49:36 ----A---- C:\Windows\system32\msdt.exe
2010-02-21 09:49:36 ----A---- C:\Windows\system32\msdelta.dll
2010-02-21 09:49:36 ----A---- C:\Windows\system32\msdart.dll
2010-02-21 09:49:36 ----A---- C:\Windows\system32\msdadiag.dll
2010-02-21 09:49:35 ----A---- C:\Windows\system32\msmmsp.dll
2010-02-21 09:49:35 ----A---- C:\Windows\system32\msdt.dll
2010-02-21 09:49:35 ----A---- C:\Windows\system32\msdmo.dll
2010-02-21 09:49:33 ----A---- C:\Windows\system32\mspatcha.dll
2010-02-21 09:49:33 ----A---- C:\Windows\system32\mspaint.exe
2010-02-21 09:49:33 ----A---- C:\Windows\system32\msorcl32.dll
2010-02-21 09:49:33 ----A---- C:\Windows\system32\msoert2.dll
2010-02-21 09:49:33 ----A---- C:\Windows\system32\msoeacct.dll
2010-02-21 09:49:33 ----A---- C:\Windows\system32\msobjs.dll
2010-02-21 09:49:32 ----A---- C:\Windows\system32\msieftp.dll
2010-02-21 09:49:32 ----A---- C:\Windows\system32\msidle.dll
2010-02-21 09:49:32 ----A---- C:\Windows\system32\msident.dll
2010-02-21 09:49:32 ----A---- C:\Windows\system32\msidcrl30.dll
2010-02-21 09:49:28 ----A---- C:\Windows\system32\NlsData004b.dll
2010-02-21 09:49:28 ----A---- C:\Windows\system32\NlsData004a.dll
2010-02-21 09:49:28 ----A---- C:\Windows\system32\NlsData0047.dll
2010-02-21 09:49:28 ----A---- C:\Windows\system32\NlsData0046.dll
2010-02-21 09:49:28 ----A---- C:\Windows\system32\NlsData0045.dll
2010-02-21 09:49:28 ----A---- C:\Windows\system32\NlsData003e.dll
2010-02-21 09:49:27 ----A---- C:\Windows\system32\notepad.exe
2010-02-21 09:49:27 ----A---- C:\Windows\system32\Nlsdl.dll
2010-02-21 09:49:27 ----A---- C:\Windows\system32\NlsData0c1a.dll
2010-02-21 09:49:27 ----A---- C:\Windows\system32\NlsData004e.dll
2010-02-21 09:49:27 ----A---- C:\Windows\system32\NlsData0049.dll
2010-02-21 09:49:27 ----A---- C:\Windows\system32\NlsData0039.dll
2010-02-21 09:49:27 ----A---- C:\Windows\system32\NlsData002a.dll
2010-02-21 09:49:27 ----A---- C:\Windows\system32\NlsData0027.dll
2010-02-21 09:49:27 ----A---- C:\Windows\system32\NlsData0026.dll
2010-02-21 09:49:27 ----A---- C:\Windows\system32\NlsData0024.dll
2010-02-21 09:49:27 ----A---- C:\Windows\system32\NlsData0022.dll
2010-02-21 09:49:27 ----A---- C:\Windows\notepad.exe
2010-02-21 09:49:26 ----A---- C:\Windows\system32\NlsData081a.dll
2010-02-21 09:49:26 ----A---- C:\Windows\system32\NlsData0816.dll
2010-02-21 09:49:26 ----A---- C:\Windows\system32\NlsData0414.dll
2010-02-21 09:49:26 ----A---- C:\Windows\system32\NlsData004c.dll
2010-02-21 09:49:25 ----A---- C:\Windows\system32\NlsData0416.dll
2010-02-21 09:49:25 ----A---- C:\Windows\system32\NlsData0009.dll
2010-02-21 09:49:25 ----A---- C:\Windows\system32\NlsData0003.dll
2010-02-21 09:49:25 ----A---- C:\Windows\system32\NlsData0002.dll
2010-02-21 09:49:25 ----A---- C:\Windows\system32\NlsData0001.dll
2010-02-21 09:49:25 ----A---- C:\Windows\system32\NlsData0000.dll
2010-02-21 09:49:24 ----A---- C:\Windows\system32\NlsData001b.dll
2010-02-21 09:49:24 ----A---- C:\Windows\system32\NlsData001a.dll
2010-02-21 09:49:24 ----A---- C:\Windows\system32\NlsData000a.dll
2010-02-21 09:49:24 ----A---- C:\Windows\system32\NlsData0007.dll
2010-02-21 09:49:24 ----A---- C:\Windows\system32\nlsbres.dll
2010-02-21 09:49:24 ----A---- C:\Windows\system32\nlmgp.dll
2010-02-21 09:49:23 ----A---- C:\Windows\system32\NlsData0021.dll
2010-02-21 09:49:23 ----A---- C:\Windows\system32\NlsData0020.dll
2010-02-21 09:49:23 ----A---- C:\Windows\system32\NlsData001d.dll
2010-02-21 09:49:23 ----A---- C:\Windows\system32\NlsData0019.dll
2010-02-21 09:49:23 ----A---- C:\Windows\system32\NlsData0018.dll
2010-02-21 09:49:22 ----A---- C:\Windows\system32\odbcbcp.dll
2010-02-21 09:49:22 ----A---- C:\Windows\system32\objsel.dll
2010-02-21 09:49:22 ----A---- C:\Windows\system32\NlsData0013.dll
2010-02-21 09:49:22 ----A---- C:\Windows\system32\NlsData0011.dll
2010-02-21 09:49:22 ----A---- C:\Windows\system32\NlsData0010.dll
2010-02-21 09:49:22 ----A---- C:\Windows\system32\NlsData000f.dll
2010-02-21 09:49:22 ----A---- C:\Windows\system32\NlsData000d.dll
2010-02-21 09:49:22 ----A---- C:\Windows\system32\NlsData000c.dll
2010-02-21 09:49:21 ----A---- C:\Windows\system32\odbctrac.dll
2010-02-21 09:49:21 ----A---- C:\Windows\system32\odbcjt32.dll
2010-02-21 09:49:21 ----A---- C:\Windows\system32\odbccu32.dll
2010-02-21 09:49:21 ----A---- C:\Windows\system32\odbccr32.dll
2010-02-21 09:49:21 ----A---- C:\Windows\system32\ntdsapi.dll
2010-02-21 09:49:20 ----A---- C:\Windows\system32\ntvdm.exe
2010-02-21 09:49:20 ----A---- C:\Windows\system32\ntshrui.dll
2010-02-21 09:49:20 ----A---- C:\Windows\system32\nsisvc.dll
2010-02-21 09:49:20 ----A---- C:\Windows\system32\nsi.dll
2010-02-21 09:49:20 ----A---- C:\Windows\system32\nshipsec.dll
2010-02-21 09:49:19 ----A---- C:\Windows\system32\ntlanman.dll
2010-02-21 09:49:19 ----A---- C:\Windows\system32\netdiagfx.dll
2010-02-21 09:49:19 ----A---- C:\Windows\system32\netcorehc.dll
2010-02-21 09:49:19 ----A---- C:\Windows\system32\netcfgx.dll
2010-02-21 09:49:19 ----A---- C:\Windows\system32\netcfg.exe
2010-02-21 09:49:19 ----A---- C:\Windows\system32\netbtugc.exe
2010-02-21 09:49:18 ----A---- C:\Windows\system32\netiougc.exe
2010-02-21 09:49:18 ----A---- C:\Windows\system32\netid.dll
2010-02-21 09:49:18 ----A---- C:\Windows\system32\net1.exe
2010-02-21 09:49:18 ----A---- C:\Windows\system32\net.exe
2010-02-21 09:49:18 ----A---- C:\Windows\system32\ndfetw.dll
2010-02-21 09:49:18 ----A---- C:\Windows\system32\ncsi.dll
2010-02-21 09:49:18 ----A---- C:\Windows\system32\ncobjapi.dll
2010-02-21 09:49:18 ----A---- C:\Windows\system32\nci.dll
2010-02-21 09:49:18 ----A---- C:\Windows\system32\nbtstat.exe
2010-02-21 09:49:18 ----A---- C:\Windows\system32\NAPSTAT.EXE
2010-02-21 09:49:17 ----A---- C:\Windows\system32\ndfapi.dll
2010-02-21 09:49:16 ----A---- C:\Windows\system32\nlasvc.dll
2010-02-21 09:49:16 ----A---- C:\Windows\system32\nlaapi.dll
2010-02-21 09:49:14 ----A---- C:\Windows\system32\netprof.dll
2010-02-21 09:49:14 ----A---- C:\Windows\system32\Netplwiz.exe
2010-02-21 09:49:14 ----A---- C:\Windows\system32\netman.dll
2010-02-21 09:49:13 ----A---- C:\Windows\system32\netprofm.dll
2010-02-21 09:49:13 ----A---- C:\Windows\system32\lsmproxy.dll
2010-02-21 09:49:13 ----A---- C:\Windows\system32\lsm.exe
2010-02-21 09:49:11 ----A---- C:\Windows\system32\makecab.exe
2010-02-21 09:49:11 ----A---- C:\Windows\system32\luainstall.dll
2010-02-21 09:49:10 ----A---- C:\Windows\system32\loghours.dll
2010-02-21 09:49:10 ----A---- C:\Windows\system32\lodctr.exe
2010-02-21 09:49:09 ----A---- C:\Windows\system32\lpksetup.exe
2010-02-21 09:49:09 ----A---- C:\Windows\system32\localui.dll
2010-02-21 09:49:09 ----A---- C:\Windows\system32\localsec.dll
2010-02-21 09:49:08 ----A---- C:\Windows\system32\lpremove.exe
2010-02-21 09:49:07 ----A---- C:\Windows\system32\LogonUI.exe
2010-02-21 09:49:06 ----A---- C:\Windows\system32\MFWMAAEC.DLL
2010-02-21 09:49:06 ----A---- C:\Windows\system32\mfvdsp.dll
2010-02-21 09:49:06 ----A---- C:\Windows\system32\mfcsubs.dll
2010-02-21 09:49:05 ----A---- C:\Windows\system32\mcbuilder.exe
2010-02-21 09:49:00 ----A---- C:\Windows\system32\mdminst.dll
2010-02-21 09:48:59 ----A---- C:\Windows\system32\MdSched.exe
2010-02-21 09:48:58 ----A---- C:\Windows\system32\McxDriv.dll
2010-02-21 09:48:57 ----A---- C:\Windows\system32\itss.dll
2010-02-21 09:48:57 ----A---- C:\Windows\system32\iscsiwmi.dll
2010-02-21 09:48:57 ----A---- C:\Windows\system32\iscsium.dll
2010-02-21 09:48:57 ----A---- C:\Windows\system32\iscsiexe.dll
2010-02-21 09:48:57 ----A---- C:\Windows\system32\iscsied.dll
2010-02-21 09:48:56 ----A---- C:\Windows\system32\ktmw32.dll
2010-02-21 09:48:56 ----A---- C:\Windows\system32\ktmutil.exe
2010-02-21 09:48:56 ----A---- C:\Windows\system32\iprtrmgr.dll
2010-02-21 09:48:56 ----A---- C:\Windows\system32\iprtprio.dll
2010-02-21 09:48:56 ----A---- C:\Windows\system32\ipnathlp.dll
2010-02-21 09:48:56 ----A---- C:\Windows\system32\IPBusEnum.dll
2010-02-21 09:48:55 ----A---- C:\Windows\system32\loadperf.dll
2010-02-21 09:48:55 ----A---- C:\Windows\system32\lnkstub.exe
2010-02-21 09:48:55 ----A---- C:\Windows\system32\lltdsvc.dll
2010-02-21 09:48:55 ----A---- C:\Windows\system32\lltdapi.dll
2010-02-21 09:48:55 ----A---- C:\Windows\system32\LangCleanupSysprepAction.dll
2010-02-21 09:48:55 ----A---- C:\Windows\system32\l2gpstore.dll
2010-02-21 09:48:55 ----A---- C:\Windows\system32\KMSVC.DLL
2010-02-21 09:48:55 ----A---- C:\Windows\system32\keymgr.dll
2010-02-21 09:48:53 ----A---- C:\Windows\system32\mprmsg.dll
2010-02-21 09:48:53 ----A---- C:\Windows\system32\mprdim.dll
2010-02-21 09:48:53 ----A---- C:\Windows\system32\mprddm.dll
2010-02-21 09:48:53 ----A---- C:\Windows\system32\KBDKOR.DLL
2010-02-21 09:48:53 ----A---- C:\Windows\system32\KBDJPN.DLL
2010-02-21 09:48:51 ----A---- C:\Windows\system32\mountvol.exe
2010-02-21 09:48:50 ----A---- C:\Windows\system32\MPG4DECD.DLL
2010-02-21 09:48:49 ----A---- C:\Windows\system32\msconfig.exe
2010-02-21 09:48:49 ----A---- C:\Windows\system32\MP4SDECD.DLL
2010-02-21 09:48:49 ----A---- C:\Windows\system32\MP43DECD.DLL
2010-02-21 09:48:49 ----A---- C:\Windows\system32\MP3DMOD.DLL
2010-02-21 09:48:48 ----A---- C:\Windows\system32\msaatext.dll
2010-02-21 09:48:47 ----A---- C:\Windows\system32\msacm32.dll
2010-02-21 09:48:44 ----A---- C:\Windows\system32\mmcshext.dll
2010-02-21 09:48:44 ----A---- C:\Windows\system32\mmcbase.dll
2010-02-21 09:48:43 ----A---- C:\Windows\system32\mobsync.exe
2010-02-21 09:48:43 ----A---- C:\Windows\system32\mmcss.dll
2010-02-21 09:48:43 ----A---- C:\Windows\system32\mlang.dll
2010-02-21 09:48:41 ----A---- C:\Windows\system32\migisol.dll
2010-02-21 09:48:41 ----A---- C:\Windows\system32\MigAutoPlay.exe
2010-02-21 09:48:39 ----A---- C:\Windows\system32\seclogon.dll
2010-02-21 09:48:39 ----A---- C:\Windows\system32\SecEdit.exe
2010-02-21 09:48:38 ----A---- C:\Windows\system32\sdshext.dll
2010-02-21 09:48:38 ----A---- C:\Windows\system32\sdrsvc.dll
2010-02-21 09:48:37 ----A---- C:\Windows\system32\shrink.dll
2010-02-21 09:48:37 ----A---- C:\Windows\system32\shimgvw.dll
2010-02-21 09:48:37 ----A---- C:\Windows\system32\shgina.dll
2010-02-21 09:48:36 ----A---- C:\Windows\system32\shutdown.exe
2010-02-21 09:48:36 ----A---- C:\Windows\system32\shrpubw.exe
2010-02-21 09:48:35 ----A---- C:\Windows\system32\shacct.dll
2010-02-21 09:48:30 ----A---- C:\Windows\system32\SmiInstaller.dll
2010-02-21 09:48:24 ----A---- C:\Windows\system32\SessEnv.dll
2010-02-21 09:48:23 ----A---- C:\Windows\system32\sfc_os.dll
2010-02-21 09:48:23 ----A---- C:\Windows\system32\sfc.exe
2010-02-21 09:48:23 ----A---- C:\Windows\system32\setupugc.exe
2010-02-21 09:48:23 ----A---- C:\Windows\system32\setupSNK.exe
2010-02-21 09:48:23 ----A---- C:\Windows\system32\setupcln.dll
2010-02-21 09:48:23 ----A---- C:\Windows\system32\setupcl.exe
2010-02-21 09:48:23 ----A---- C:\Windows\system32\setbcdlocale.dll
2010-02-21 09:48:23 ----A---- C:\Windows\system32\serialui.dll
2010-02-21 09:48:22 ----A---- C:\Windows\system32\Sens.dll
2010-02-21 09:48:20 ----A---- C:\Windows\system32\pnrpnsp.dll
2010-02-21 09:48:20 ----A---- C:\Windows\system32\PNPXAssocPrx.dll
2010-02-21 09:48:19 ----A---- C:\Windows\system32\pots.dll
2010-02-21 09:48:19 ----A---- C:\Windows\system32\PortableDeviceWiaCompat.dll
2010-02-21 09:48:19 ----A---- C:\Windows\system32\pnpts.dll
2010-02-21 09:48:18 ----A---- C:\Windows\system32\QAGENT.DLL
2010-02-21 09:48:18 ----A---- C:\Windows\system32\puiobj.dll
2010-02-21 09:48:18 ----A---- C:\Windows\system32\psbase.dll
2010-02-21 09:48:18 ----A---- C:\Windows\system32\provthrd.dll
2010-02-21 09:48:16 ----A---- C:\Windows\system32\profprov.dll
2010-02-21 09:48:16 ----A---- C:\Windows\system32\procinst.dll
2010-02-21 09:48:16 ----A---- C:\Windows\system32\prntvpt.dll
2010-02-21 09:48:16 ----A---- C:\Windows\system32\printcom.dll
2010-02-21 09:48:16 ----A---- C:\Windows\system32\prevhost.exe
2010-02-21 09:48:15 ----A---- C:\Windows\system32\pcasvc.dll
2010-02-21 09:48:15 ----A---- C:\Windows\system32\pcadm.dll
2010-02-21 09:48:15 ----A---- C:\Windows\system32\p2pnetsh.dll
2010-02-21 09:48:15 ----A---- C:\Windows\system32\p2phost.exe
2010-02-21 09:48:15 ----A---- C:\Windows\system32\p2pcollab.dll
2010-02-21 09:48:15 ----A---- C:\Windows\system32\P2P.dll
2010-02-21 09:48:14 ----A---- C:\Windows\system32\olethk32.dll
2010-02-21 09:48:14 ----A---- C:\Windows\system32\olesvr32.dll
2010-02-21 09:48:14 ----A---- C:\Windows\system32\oledlg.dll
2010-02-21 09:48:14 ----A---- C:\Windows\system32\olecli32.dll
2010-02-21 09:48:14 ----A---- C:\Windows\system32\ogldrv.dll
2010-02-21 09:48:13 ----A---- C:\Windows\system32\OptionalFeatures.exe
2010-02-21 09:48:12 ----A---- C:\Windows\system32\osblprov.dll
2010-02-21 09:48:12 ----A---- C:\Windows\system32\osbaseln.dll
2010-02-21 09:48:09 ----A---- C:\Windows\system32\PING.EXE
2010-02-21 09:48:08 ----A---- C:\Windows\system32\PlaySndSrv.dll
2010-02-21 09:48:08 ----A---- C:\Windows\system32\pla.dll
2010-02-21 09:48:07 ----A---- C:\Windows\system32\pdhui.dll
2010-02-21 09:48:05 ----A---- C:\Windows\system32\perfts.dll
2010-02-21 09:48:05 ----A---- C:\Windows\system32\perfnet.dll
2010-02-21 09:48:05 ----A---- C:\Windows\system32\perfmon.msc
2010-02-21 09:48:05 ----A---- C:\Windows\system32\perfmon.exe
2010-02-21 09:48:04 ----A---- C:\Windows\system32\rstrui.exe
2010-02-21 09:48:04 ----A---- C:\Windows\system32\RstrtMgr.dll
2010-02-21 09:48:04 ----A---- C:\Windows\system32\rshx32.dll
2010-02-21 09:48:00 ----A---- C:\Windows\system32\runonce.exe
2010-02-21 09:47:59 ----A---- C:\Windows\system32\rtm.dll
2010-02-21 09:47:59 ----A---- C:\Windows\system32\rgb9rast.dll
2010-02-21 09:47:58 ----A---- C:\Windows\system32\riched32.dll
2010-02-21 09:47:58 ----A---- C:\Windows\system32\resutils.dll
2010-02-21 09:47:58 ----A---- C:\Windows\system32\RESAMPLEDMO.DLL
2010-02-21 09:47:57 ----A---- C:\Windows\system32\RpcPing.exe
2010-02-21 09:47:55 ----A---- C:\Windows\system32\schtasks.exe
2010-02-21 09:47:55 ----A---- C:\Windows\system32\Robocopy.exe
2010-02-21 09:47:54 ----A---- C:\Windows\system32\sbunattend.exe
2010-02-21 09:47:53 ----A---- C:\Windows\system32\sdchange.exe
2010-02-21 09:47:53 ----A---- C:\Windows\system32\sdengin2.dll
2010-02-21 09:47:48 ----A---- C:\Windows\system32\sbeio.dll
2010-02-21 09:47:48 ----A---- C:\Windows\system32\sbe.dll
2010-02-21 09:47:47 ----A---- C:\Windows\system32\rasctrs.dll
2010-02-21 09:47:47 ----A---- C:\Windows\system32\RacAgent.exe
2010-02-21 09:47:45 ----A---- C:\Windows\system32\rascfg.dll
2010-02-21 09:47:45 ----A---- C:\Windows\system32\rasauto.dll
2010-02-21 09:47:44 ----A---- C:\Windows\system32\qdv.dll
2010-02-21 09:47:44 ----A---- C:\Windows\system32\QCLIPROV.DLL
2010-02-21 09:47:44 ----A---- C:\Windows\system32\qcap.dll
2010-02-21 09:47:44 ----A---- C:\Windows\system32\qasf.dll
2010-02-21 09:47:43 ----A---- C:\Windows\system32\qwave.dll
2010-02-21 09:47:43 ----A---- C:\Windows\system32\QUTIL.DLL
2010-02-21 09:47:42 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2010-02-21 09:47:42 ----A---- C:\Windows\system32\QSHVHOST.DLL
2010-02-21 09:47:40 ----A---- C:\Windows\system32\rdrleakdiag.exe
2010-02-21 09:47:40 ----A---- C:\Windows\system32\RDPENCDD.dll
2010-02-21 09:47:39 ----A---- C:\Windows\system32\remotepg.dll
2010-02-21 09:47:39 ----A---- C:\Windows\system32\regini.exe
2010-02-21 09:47:38 ----A---- C:\Windows\system32\RegCtrl.dll
2010-02-21 09:47:38 ----A---- C:\Windows\system32\rasphone.exe
2010-02-21 09:47:38 ----A---- C:\Windows\system32\RASMM.dll
2010-02-21 09:47:38 ----A---- C:\Windows\regedit.exe
2010-02-21 09:47:37 ----A---- C:\Windows\system32\rasman.dll
2010-02-21 09:47:37 ----A---- C:\Windows\system32\raserver.exe
2010-02-21 09:47:36 ----A---- C:\Windows\system32\rdpdd.dll
2010-02-21 09:47:36 ----A---- C:\Windows\system32\rdpcfgex.dll
2010-02-21 09:47:36 ----A---- C:\Windows\system32\rasqec.dll
2010-02-21 09:47:35 ----A---- C:\Windows\system32\d3dim700.dll
2010-02-21 09:47:35 ----A---- C:\Windows\system32\d3dim.dll
2010-02-21 09:47:35 ----A---- C:\Windows\system32\d3d8.dll
2010-02-21 09:47:34 ----A---- C:\Windows\system32\devenum.dll
2010-02-21 09:47:33 ----A---- C:\Windows\system32\Defrag.exe
2010-02-21 09:47:33 ----A---- C:\Windows\system32\ddraw.dll
2010-02-21 09:47:33 ----A---- C:\Windows\system32\dbnetlib.dll
2010-02-21 09:47:33 ----A---- C:\Windows\system32\dbghelp.dll
2010-02-21 09:47:33 ----A---- C:\Windows\system32\d3dxof.dll
2010-02-21 09:47:33 ----A---- C:\Windows\system32\cryptnet.dll
2010-02-21 09:47:33 ----A---- C:\Windows\system32\credssp.dll
2010-02-21 09:47:32 ----A---- C:\Windows\system32\csrss.exe
2010-02-21 09:47:32 ----A---- C:\Windows\system32\cryptdll.dll
2010-02-21 09:47:31 ----A---- C:\Windows\system32\dinput8.dll
2010-02-21 09:47:31 ----A---- C:\Windows\system32\dimsjob.dll
2010-02-21 09:47:31 ----A---- C:\Windows\system32\csrsrv.dll
2010-02-21 09:47:30 ----A---- C:\Windows\system32\dispdiag.exe
2010-02-21 09:47:30 ----A---- C:\Windows\system32\dispci.dll
2010-02-21 09:47:30 ----A---- C:\Windows\system32\diantz.exe
2010-02-21 09:47:29 ----A---- C:\Windows\system32\dispex.dll
2010-02-21 09:47:28 ----A---- C:\Windows\system32\dfrgui.exe
2010-02-21 09:47:28 ----A---- C:\Windows\system32\DfrgNtfs.exe
2010-02-21 09:47:28 ----A---- C:\Windows\system32\dfrgifc.exe
2010-02-21 09:47:28 ----A---- C:\Windows\system32\dfrgfat.exe
2010-02-21 09:47:28 ----A---- C:\Windows\system32\DFDWiz.exe
2010-02-21 09:47:28 ----A---- C:\Windows\system32\dfdts.dll
2010-02-21 09:47:27 ----A---- C:\Windows\system32\dhcpsapi.dll
2010-02-21 09:47:27 ----A---- C:\Windows\system32\DHCPQEC.DLL
2010-02-21 09:47:27 ----A---- C:\Windows\system32\DfsShlEx.dll
2010-02-21 09:47:26 ----A---- C:\Windows\system32\cmlua.dll
2010-02-21 09:47:26 ----A---- C:\Windows\system32\cmd.exe
2010-02-21 09:47:26 ----A---- C:\Windows\system32\cmcfg32.dll
2010-02-21 09:47:26 ----A---- C:\Windows\system32\clusapi.dll
2010-02-21 09:47:25 ----A---- C:\Windows\system32\cmipnpinstall.dll
2010-02-21 09:47:25 ----A---- C:\Windows\system32\cmifw.dll
2010-02-21 09:47:25 ----A---- C:\Windows\system32\cmicryptinstall.dll
2010-02-21 09:47:25 ----A---- C:\Windows\system32\cmdl32.exe
2010-02-21 09:47:25 ----A---- C:\Windows\system32\cic.dll
2010-02-21 09:47:24 ----A---- C:\Windows\system32\clfsw32.dll
2010-02-21 09:47:24 ----A---- C:\Windows\system32\clbcatq.dll
2010-02-21 09:47:23 ----A---- C:\Windows\system32\comsnap.dll
2010-02-21 09:47:23 ----A---- C:\Windows\system32\comres.dll
2010-02-21 09:47:23 ----A---- C:\Windows\system32\comrepl.dll
2010-02-21 09:47:23 ----A---- C:\Windows\system32\ComputerDefaults.exe
2010-02-21 09:47:23 ----A---- C:\Windows\system32\compstui.dll
2010-02-21 09:47:23 ----A---- C:\Windows\system32\CompMgmtLauncher.exe
2010-02-21 09:47:23 ----A---- C:\Windows\system32\CompatUI.dll
2010-02-21 09:47:22 ----A---- C:\Windows\system32\convert.exe
2010-02-21 09:47:21 ----A---- C:\Windows\system32\consent.exe
2010-02-21 09:47:21 ----A---- C:\Windows\system32\colorui.dll
2010-02-21 09:47:21 ----A---- C:\Windows\system32\COLORCNV.DLL
2010-02-21 09:47:21 ----A---- C:\Windows\system32\colbact.dll
2010-02-21 09:47:21 ----A---- C:\Windows\system32\cofiredm.dll
2010-02-21 09:47:20 ----A---- C:\Windows\system32\cmutil.dll
2010-02-21 09:47:20 ----A---- C:\Windows\system32\cmstplua.dll
2010-02-21 09:47:20 ----A---- C:\Windows\system32\cmstp.exe
2010-02-21 09:47:20 ----A---- C:\Windows\system32\cmpbk32.dll
2010-02-21 09:47:19 ----A---- C:\Windows\system32\comctl32.dll
2010-02-21 09:47:18 ----A---- C:\Windows\system32\els.dll
2010-02-21 09:47:14 ----A---- C:\Windows\system32\esentutl.exe
2010-02-21 09:47:14 ----A---- C:\Windows\system32\esentprf.dll
2010-02-21 09:47:14 ----A---- C:\Windows\system32\EncDump.dll
2010-02-21 09:47:13 ----A---- C:\Windows\system32\efsadu.dll
2010-02-21 09:47:13 ----A---- C:\Windows\system32\eapsvc.dll
2010-02-21 09:47:13 ----A---- C:\Windows\system32\EAPQEC.DLL
2010-02-21 09:47:13 ----A---- C:\Windows\system32\eappprxy.dll
2010-02-21 09:47:11 ----A---- C:\Windows\system32\fmifs.dll
2010-02-21 09:47:11 ----A---- C:\Windows\system32\filemgmt.dll
2010-02-21 09:47:11 ----A---- C:\Windows\system32\fdPHost.dll
2010-02-21 09:47:11 ----A---- C:\Windows\system32\fde.dll
2010-02-21 09:47:10 ----A---- C:\Windows\system32\FirewallControlPanel.exe
2010-02-21 09:47:10 ----A---- C:\Windows\system32\FirewallAPI.dll
2010-02-21 09:47:10 ----A---- C:\Windows\system32\findnetprinters.dll
2010-02-21 09:47:09 ----A---- C:\Windows\system32\eventcls.dll
2010-02-21 09:47:08 ----A---- C:\Windows\system32\extrac32.exe
2010-02-21 09:47:08 ----A---- C:\Windows\system32\expand.exe
2010-02-21 09:47:07 ----A---- C:\Windows\system32\dot3ui.dll
2010-02-21 09:47:07 ----A---- C:\Windows\system32\dot3gpui.dll
2010-02-21 09:47:07 ----A---- C:\Windows\system32\dot3gpclnt.dll
2010-02-21 09:47:07 ----A---- C:\Windows\system32\dot3dlg.dll
2010-02-21 09:47:07 ----A---- C:\Windows\system32\dot3api.dll
2010-02-21 09:47:06 ----A---- C:\Windows\system32\driverquery.exe
2010-02-21 09:47:06 ----A---- C:\Windows\system32\dpx.dll
2010-02-21 09:47:06 ----A---- C:\Windows\system32\dps.dll
2010-02-21 09:47:06 ----A---- C:\Windows\system32\dpnet.dll
2010-02-21 09:47:06 ----A---- C:\Windows\system32\DpiScaling.exe
2010-02-21 09:47:06 ----A---- C:\Windows\system32\dmscript.dll
2010-02-21 09:47:06 ----A---- C:\Windows\system32\dmloader.dll
2010-02-21 09:47:06 ----A---- C:\Windows\system32\dmime.dll
2010-02-21 09:47:06 ----A---- C:\Windows\system32\dmdskres2.dll
2010-02-21 09:47:06 ----A---- C:\Windows\system32\dmdskmgr.dll
2010-02-21 09:47:05 ----A---- C:\Windows\system32\dnshc.dll
2010-02-21 09:47:05 ----A---- C:\Windows\system32\dmocx.dll
2010-02-21 09:47:05 ----A---- C:\Windows\system32\dmdlgs.dll
2010-02-21 09:47:04 ----A---- C:\Windows\system32\dnscacheugc.exe
2010-02-21 09:47:04 ----A---- C:\Windows\system32\dmvdsitf.dll
2010-02-21 09:47:04 ----A---- C:\Windows\system32\dmutil.dll
2010-02-21 09:47:03 ----A---- C:\Windows\system32\DWWIN.EXE
2010-02-21 09:47:02 ----A---- C:\Windows\system32\dwmredir.dll
2010-02-21 09:47:02 ----A---- C:\Windows\system32\dwmapi.dll
2010-02-21 09:47:01 ----A---- C:\Windows\system32\dxva2.dll
2010-02-21 09:47:01 ----A---- C:\Windows\system32\duser.dll
2010-02-21 09:47:01 ----A---- C:\Windows\system32\dsuiext.dll
2010-02-21 09:47:01 ----A---- C:\Windows\system32\dssenh.dll
2010-02-21 09:47:01 ----A---- C:\Windows\system32\dskquoui.dll
2010-02-21 09:47:01 ----A---- C:\Windows\system32\dskquota.dll
2010-02-21 09:47:01 ----A---- C:\Windows\system32\dsdmo.dll
2010-02-21 09:47:01 ----A---- C:\Windows\system32\dsauth.dll
2010-02-21 09:47:00 ----A---- C:\Windows\system32\dssec.dll
2010-02-21 09:47:00 ----A---- C:\Windows\system32\dsquery.dll
2010-02-21 09:47:00 ----A---- C:\Windows\system32\AudioEng.dll
2010-02-21 09:47:00 ----A---- C:\Windows\system32\audiodev.dll
2010-02-21 09:47:00 ----A---- C:\Windows\system32\AtBroker.exe
2010-02-21 09:47:00 ----A---- C:\Windows\system32\at.exe
2010-02-21 09:46:59 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2010-02-21 09:46:59 ----A---- C:\Windows\system32\AuthFWGP.dll
2010-02-21 09:46:59 ----A---- C:\Windows\system32\authfwcfg.dll
2010-02-21 09:46:59 ----A---- C:\Windows\system32\auditpol.exe
2010-02-21 09:46:59 ----A---- C:\Windows\system32\AUDIOKSE.dll
2010-02-21 09:46:56 ----A---- C:\Windows\system32\bcdedit.exe
2010-02-21 09:46:56 ----A---- C:\Windows\system32\batt.dll
2010-02-21 09:46:56 ----A---- C:\Windows\system32\basesrv.dll
2010-02-21 09:46:55 ----A---- C:\Windows\system32\bitsadmin.exe
2010-02-21 09:46:55 ----A---- C:\Windows\system32\bcdsrv.dll
2010-02-21 09:46:55 ----A---- C:\Windows\system32\bcdprov.dll
2010-02-21 09:46:55 ----A---- C:\Windows\system32\AuxiliaryDisplayApi.dll
2010-02-21 09:46:55 ----A---- C:\Windows\bfsvc.exe
2010-02-21 09:46:54 ----A---- C:\Windows\system32\AzSqlExt.dll
2010-02-21 09:46:54 ----A---- C:\Windows\system32\azroleui.dll
2010-02-21 09:46:53 ----A---- C:\Windows\system32\avrt.dll
2010-02-21 09:46:53 ----A---- C:\Windows\system32\ACW.exe
2010-02-21 09:46:53 ----A---- C:\Windows\system32\actxprxy.dll
2010-02-21 09:46:53 ----A---- C:\Windows\system32\activeds.dll
2010-02-21 09:46:53 ----A---- C:\Windows\system32\ActiveContentWizard.dll
2010-02-21 09:46:53 ----A---- C:\Windows\system32\ActionQueue.dll
2010-02-21 09:46:50 ----A---- C:\Windows\system32\aclui.dll
2010-02-21 09:46:48 ----A---- C:\Windows\system32\apircl.dll
2010-02-21 09:46:48 ----A---- C:\Windows\system32\apilogen.dll
2010-02-21 09:46:48 ----A---- C:\Windows\system32\amxread.dll
2010-02-21 09:46:48 ----A---- C:\Windows\system32\amstream.dll
2010-02-21 09:46:47 ----A---- C:\Windows\system32\apss.dll
2010-02-21 09:46:46 ----A---- C:\Windows\system32\appinfo.dll
2010-02-21 09:46:46 ----A---- C:\Windows\system32\adsnt.dll
2010-02-21 09:46:45 ----A---- C:\Windows\system32\alg.exe
2010-02-21 09:46:45 ----A---- C:\Windows\system32\adsldp.dll
2010-02-21 09:46:44 ----A---- C:\Windows\system32\catsrvut.dll
2010-02-21 09:46:44 ----A---- C:\Windows\system32\catsrv.dll
2010-02-21 09:46:44 ----A---- C:\Windows\system32\cacls.exe
2010-02-21 09:46:44 ----A---- C:\Windows\system32\cabview.dll
2010-02-21 09:46:44 ----A---- C:\Windows\system32\cabinet.dll
2010-02-21 09:46:44 ----A---- C:\Windows\system32\btpanui.dll
2010-02-21 09:46:43 ----A---- C:\Windows\system32\capisp.dll
2010-02-21 09:46:43 ----A---- C:\Windows\system32\BOOTVID.DLL
2010-02-21 09:46:43 ----A---- C:\Windows\system32\bootstr.dll
2010-02-21 09:46:42 ----A---- C:\Windows\system32\browser.dll
2010-02-21 09:46:42 ----A---- C:\Windows\system32\bridgeunattend.exe
2010-02-21 09:46:42 ----A---- C:\Windows\system32\brcplsdw.dll
2010-02-21 09:46:41 ----A---- C:\Windows\system32\CertEnrollCtrl.exe
2010-02-21 09:46:40 ----A---- C:\Windows\system32\cewmdm.dll
2010-02-21 09:46:39 ----A---- C:\Windows\system32\cfgmgr32.dll
2010-02-21 09:46:39 ----A---- C:\Windows\system32\cfgbkend.dll
2010-02-21 09:46:39 ----A---- C:\Windows\system32\cdosys.dll
2010-02-21 09:46:37 ----A---- C:\Windows\system32\bootcfg.exe
2010-02-21 09:46:20 ----A---- C:\Windows\system32\imagesp1.dll
2010-02-21 09:46:20 ----A---- C:\Windows\system32\imagehlp.dll
2010-02-21 09:46:19 ----A---- C:\Windows\system32\inetmib1.dll
2010-02-21 09:46:16 ----A---- C:\Windows\system32\InfDefaultInstall.exe
2010-02-21 09:46:12 ----A---- C:\Windows\system32\iashost.exe
2010-02-21 09:46:12 ----A---- C:\Windows\system32\ias.dll
2010-02-21 09:46:10 ----A---- C:\Windows\system32\icaapi.dll
2010-02-21 09:46:07 ----A---- C:\Windows\system32\ifsutil.dll
2010-02-21 09:46:05 ----A---- C:\Windows\system32\idndl.dll
2010-02-21 09:46:05 ----A---- C:\Windows\system32\icsunattend.exe
2010-02-21 09:46:05 ----A---- C:\Windows\system32\icsfiltr.dll
2010-02-21 09:46:05 ----A---- C:\Windows\system32\icm32.dll
2010-02-21 09:46:05 ----A---- C:\Windows\system32\icfupgd.dll
2010-02-21 09:46:05 ----A---- C:\Windows\system32\icacls.exe
2010-02-21 09:46:02 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2010-02-21 09:46:02 ----A---- C:\Windows\system32\hlink.dll
2010-02-21 09:46:01 ----A---- C:\Windows\system32\hnetmon.dll
2010-02-21 09:46:01 ----A---- C:\Windows\system32\hnetcfg.dll
2010-02-21 09:45:57 ----A---- C:\Windows\system32\fwcfg.dll
2010-02-21 09:45:57 ----A---- C:\Windows\system32\fsutil.exe
2010-02-21 09:45:57 ----A---- C:\Windows\system32\fsmgmt.msc
2010-02-21 09:45:57 ----A---- C:\Windows\system32\framedynos.dll
2010-02-21 09:45:57 ----A---- C:\Windows\system32\framedyn.dll
2010-02-21 09:45:57 ----A---- C:\Windows\system32\framebuf.dll
2010-02-21 09:45:57 ----A---- C:\Windows\system32\fphc.dll
2010-02-21 09:45:57 ----A---- C:\Windows\fveupdate.exe
2010-02-21 09:45:54 ----A---- C:\Windows\system32\hcrstco.dll
2010-02-21 09:45:53 ----A---- C:\Windows\system32\HelpPaneProxy.dll
2010-02-21 09:45:53 ----A---- C:\Windows\system32\GuidedHelp.dll
2010-02-21 09:45:52 ----A---- C:\Windows\system32\getmac.exe
2010-02-21 09:45:52 ----A---- C:\Windows\system32\gacinstall.dll
2010-02-21 09:45:52 ----A---- C:\Windows\HelpPane.exe
2010-02-21 09:45:51 ----A---- C:\Windows\system32\graftabl.com
2010-02-21 09:45:51 ----A---- C:\Windows\system32\gatherWiredInfo.vbs
2010-02-21 09:45:42 ----A---- C:\Windows\system32\WindowsAnytimeUpgrade.exe
2010-02-21 09:45:40 ----A---- C:\Windows\system32\wiadss.dll
2010-02-21 09:45:40 ----A---- C:\Windows\system32\wiadefui.dll
2010-02-21 09:45:40 ----A---- C:\Windows\system32\wiaacmgr.exe
2010-02-21 09:45:40 ----A---- C:\Windows\system32\wfapigp.dll
2010-02-21 09:45:40 ----A---- C:\Windows\system32\wevtfwd.dll
2010-02-21 09:45:38 ----A---- C:\Windows\system32\winusb.dll
2010-02-21 09:45:38 ----A---- C:\Windows\system32\wintrust.dll
2010-02-21 09:45:38 ----A---- C:\Windows\system32\winsta.dll
2010-02-21 09:45:38 ----A---- C:\Windows\system32\WINSRPC.DLL
2010-02-21 09:45:38 ----A---- C:\Windows\system32\wiashext.dll
2010-02-21 09:45:38 ----A---- C:\Windows\system32\wiascanprofiles.dll
2010-02-21 09:45:38 ----A---- C:\Windows\system32\wiarpc.dll
2010-02-21 09:45:37 ----A---- C:\Windows\system32\WLanConn.dll
2010-02-21 09:45:37 ----A---- C:\Windows\system32\wlancfg.dll
2010-02-21 09:45:37 ----A---- C:\Windows\system32\WinSATAPI.dll
2010-02-21 09:45:37 ----A---- C:\Windows\system32\winrsmgr.dll
2010-02-21 09:45:36 ----A---- C:\Windows\system32\wininit.exe
2010-02-21 09:45:36 ----A---- C:\Windows\system32\winethc.dll
2010-02-21 09:45:35 ----A---- C:\Windows\system32\winrshost.exe
2010-02-21 09:45:35 ----A---- C:\Windows\system32\winrscmd.dll
2010-02-21 09:45:35 ----A---- C:\Windows\system32\winrs.exe
2010-02-21 09:45:35 ----A---- C:\Windows\system32\winrm.vbs
2010-02-21 09:45:35 ----A---- C:\Windows\system32\winnsi.dll
2010-02-21 09:45:34 ----A---- C:\Windows\system32\wbemcomn.dll
2010-02-21 09:45:34 ----A---- C:\Windows\system32\wavemsp.dll
2010-02-21 09:45:34 ----A---- C:\Windows\system32\WavDest.dll
2010-02-21 09:45:34 ----A---- C:\Windows\system32\w32tm.exe
2010-02-21 09:45:33 ----A---- C:\Windows\system32\waitfor.exe
2010-02-21 09:45:33 ----A---- C:\Windows\system32\vsstrace.dll
2010-02-21 09:45:33 ----A---- C:\Windows\system32\vssadmin.exe
2010-02-21 09:45:33 ----A---- C:\Windows\system32\vss_ps.dll
2010-02-21 09:45:32 ----A---- C:\Windows\system32\wermgr.exe
2010-02-21 09:45:31 ----A---- C:\Windows\system32\werdiagcontroller.dll
2010-02-21 09:45:31 ----A---- C:\Windows\system32\wercplsupport.dll
2010-02-21 09:45:31 ----A---- C:\Windows\system32\wecutil.exe
2010-02-21 09:45:31 ----A---- C:\Windows\system32\wecsvc.dll
2010-02-21 09:45:31 ----A---- C:\Windows\system32\wecapi.dll
2010-02-21 09:45:30 ----A---- C:\Windows\system32\wdi.dll
2010-02-21 09:45:29 ----A---- C:\Windows\system32\wscproxystub.dll
2010-02-21 09:45:28 ----A---- C:\Windows\system32\wship6.dll
2010-02-21 09:45:28 ----A---- C:\Windows\system32\wshcon.dll
2010-02-21 09:45:28 ----A---- C:\Windows\system32\wsecedit.dll
2010-02-21 09:45:28 ----A---- C:\Windows\system32\wscmisetup.dll
2010-02-21 09:45:25 ----A---- C:\Windows\system32\Wpc.dll
2010-02-21 09:45:23 ----A---- C:\Windows\system32\ws2_32.dll
2010-02-21 09:45:23 ----A---- C:\Windows\system32\wpnpinst.exe
2010-02-21 09:45:23 ----A---- C:\Windows\system32\wpdwcn.dll
2010-02-21 09:45:23 ----A---- C:\Windows\system32\wpclsp.dll
2010-02-21 09:45:22 ----A---- C:\Windows\system32\xcopy.exe
2010-02-21 09:45:21 ----A---- C:\Windows\system32\XPSSHHDR.dll
2010-02-21 09:45:21 ----A---- C:\Windows\system32\xolehlp.dll
2010-02-21 09:45:21 ----A---- C:\Windows\system32\xmlprovi.dll
2010-02-21 09:45:21 ----A---- C:\Windows\system32\xmllite.dll
2010-02-21 09:45:21 ----A---- C:\Windows\system32\xactsrv.dll
2010-02-21 09:45:21 ----A---- C:\Windows\system32\wzcdlg.dll
2010-02-21 09:45:21 ----A---- C:\Windows\system32\wvc.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WUDFx.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WUDFSvc.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WUDFPlatform.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\wsqmcons.exe
2010-02-21 09:45:20 ----A---- C:\Windows\system32\wsock32.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WsmWmiPl.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WsmRes.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WsmProv.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WsmCl.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WsmAuto.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WSHTCPIP.DLL
2010-02-21 09:45:19 ----A---- C:\Windows\system32\xpssvcs.dll
2010-02-21 09:45:19 ----A---- C:\Windows\system32\WUDFHost.exe
2010-02-21 09:45:19 ----A---- C:\Windows\system32\wtsapi32.dll
2010-02-21 09:45:18 ----A---- C:\Windows\system32\xwizards.dll
2010-02-21 09:45:00 ----A---- C:\Windows\system32\wmidx.dll
2010-02-21 09:44:58 ----A---- C:\Windows\system32\WlanMmHC.dll
2010-02-21 09:44:58 ----A---- C:\Windows\system32\wlanext.exe
2010-02-21 09:44:57 ----A---- C:\Windows\system32\wmdrmdev.dll
2010-02-21 09:44:57 ----A---- C:\Windows\system32\WlanMM.dll
2010-02-21 09:44:57 ----A---- C:\Windows\system32\WLanHC.dll
2010-02-21 09:44:57 ----A---- C:\Windows\system32\wlandlg.dll
2010-02-21 09:44:56 ----A---- C:\Windows\system32\wmdrmnet.dll
2010-02-21 09:44:56 ----A---- C:\Windows\system32\WMASF.DLL
2010-02-21 09:44:56 ----A---- C:\Windows\system32\WMADMOE.DLL
2010-02-21 09:44:56 ----A---- C:\Windows\system32\WMADMOD.DLL
2010-02-21 09:44:55 ----A---- C:\Windows\system32\WMSPDMOE.DLL
2010-02-21 09:44:55 ----A---- C:\Windows\system32\wmpshell.dll
2010-02-21 09:44:54 ----A---- C:\Windows\system32\wmpsrcwp.dll
2010-02-21 09:44:52 ----A---- C:\Windows\system32\WMVSENCD.DLL
2010-02-21 09:44:47 ----A---- C:\Windows\system32\wmvdspa.dll
2010-02-21 09:44:46 ----A---- C:\Windows\system32\WMVDECOD.DLL
2010-02-21 09:44:45 ----A---- C:\Windows\system32\wmiprop.dll
2010-02-21 09:44:43 ----A---- C:\Windows\system32\WMPEncEn.dll
2010-02-21 09:44:41 ----A---- C:\Windows\system32\wmpcm.dll
2010-02-21 09:44:37 ----A---- C:\Windows\system32\systeminfo.exe
2010-02-21 09:44:36 ----A---- C:\Windows\system32\Tabbtn.dll
2010-02-21 09:44:27 ----A---- C:\Windows\system32\tbssvc.dll
2010-02-21 09:44:27 ----A---- C:\Windows\system32\tasklist.exe
2010-02-21 09:44:26 ----A---- C:\Windows\system32\tbs.dll
2010-02-21 09:44:26 ----A---- C:\Windows\system32\taskschd.dll
2010-02-21 09:44:26 ----A---- C:\Windows\system32\taskmgr.exe
2010-02-21 09:44:26 ----A---- C:\Windows\system32\taskkill.exe
2010-02-21 09:44:25 ----A---- C:\Windows\system32\tdh.dll
2010-02-21 09:44:25 ----A---- C:\Windows\system32\tcpmon.ini
2010-02-21 09:44:24 ----A---- C:\Windows\system32\tabcal.exe
2010-02-21 09:44:23 ----A---- C:\Windows\system32\TabbtnEx.dll
2010-02-21 09:44:21 ----A---- C:\Windows\system32\TapiMigPlugin.dll
2010-02-21 09:44:19 ----A---- C:\Windows\system32\takeown.exe
2010-02-21 09:44:19 ----A---- C:\Windows\system32\srclient.dll
2010-02-21 09:44:19 ----A---- C:\Windows\system32\sqmapi.dll
2010-02-21 09:44:18 ----A---- C:\Windows\system32\srrstr.dll
2010-02-21 09:44:18 ----A---- C:\Windows\system32\srdelayed.exe
2010-02-21 09:44:18 ----A---- C:\Windows\system32\sqlcese30.dll
2010-02-21 09:44:17 ----A---- C:\Windows\system32\sqlceqp30.dll
2010-02-21 09:44:16 ----A---- C:\Windows\system32\sstpsvc.dll
2010-02-21 09:44:16 ----A---- C:\Windows\system32\SSShim.dll
2010-02-21 09:44:16 ----A---- C:\Windows\system32\ssdpsrv.dll
2010-02-21 09:44:15 ----A---- C:\Windows\system32\srwmi.dll
2010-02-21 09:44:11 ----A---- C:\Windows\system32\SoundRecorder.exe
2010-02-21 09:44:10 ----A---- C:\Windows\system32\spwizeng.dll
2010-02-21 09:44:10 ----A---- C:\Windows\system32\spbcd.dll
2010-02-21 09:44:09 ----A---- C:\Windows\system32\spwizres.dll
2010-02-21 09:44:08 ----A---- C:\Windows\system32\syncui.dll
2010-02-21 09:44:08 ----A---- C:\Windows\system32\synceng.dll
2010-02-21 09:44:08 ----A---- C:\Windows\system32\spwizimg.dll
2010-02-21 09:44:08 ----A---- C:\Windows\system32\sppnp.dll
2010-02-21 09:44:08 ----A---- C:\Windows\system32\spopk.dll
2010-02-21 09:44:07 ----A---- C:\Windows\system32\SysFxUI.dll
2010-02-21 09:44:07 ----A---- C:\Windows\system32\sxstrace.exe
2010-02-21 09:44:06 ----A---- C:\Windows\system32\sxsstore.dll
2010-02-21 09:44:06 ----A---- C:\Windows\system32\sxs.dll
2010-02-21 09:44:04 ----A---- C:\Windows\system32\syskey.exe
2010-02-21 09:44:03 ----A---- C:\Windows\system32\syssetup.dll
2010-02-21 09:44:03 ----A---- C:\Windows\system32\sti_ci.dll
2010-02-21 09:44:01 ----A---- C:\Windows\system32\svchost.exe
2010-02-21 09:44:00 ----A---- C:\Windows\system32\usbperf.dll
2010-02-21 09:44:00 ----A---- C:\Windows\system32\usbmon.dll
2010-02-21 09:43:59 ----A---- C:\Windows\system32\userinit.exe
2010-02-21 09:43:59 ----A---- C:\Windows\system32\usbui.dll
2010-02-21 09:43:58 ----A---- C:\Windows\system32\upnphost.dll
2010-02-21 09:43:58 ----A---- C:\Windows\system32\upnpcont.exe
2010-02-21 09:43:58 ----A---- C:\Windows\system32\upnp.dll
2010-02-21 09:43:57 ----A---- C:\Windows\system32\xwtpw32.dll
2010-02-21 09:43:55 ----A---- C:\Windows\system32\vga64k.dll
2010-02-21 09:43:55 ----A---- C:\Windows\system32\vga256.dll
2010-02-21 09:43:55 ----A---- C:\Windows\system32\vga.dll
2010-02-21 09:43:54 ----A---- C:\Windows\system32\VIDRESZR.DLL
2010-02-21 09:43:53 ----A---- C:\Windows\system32\VAN.dll
2010-02-21 09:43:53 ----A---- C:\Windows\system32\uudf.dll
2010-02-21 09:43:53 ----A---- C:\Windows\system32\utildll.dll
2010-02-21 09:43:52 ----A---- C:\Windows\system32\vfwwdm32.dll
2010-02-21 09:43:52 ----A---- C:\Windows\system32\verifier.exe
2010-02-21 09:43:52 ----A---- C:\Windows\system32\verifier.dll
2010-02-21 09:43:52 ----A---- C:\Windows\system32\vds_ps.dll
2010-02-21 09:43:52 ----A---- C:\Windows\system32\uxtheme.dll
2010-02-21 09:43:51 ----A---- C:\Windows\system32\vdsldr.exe
2010-02-21 09:43:51 ----A---- C:\Windows\system32\vdsbas.dll
2010-02-21 09:43:51 ----A---- C:\Windows\system32\vdmredir.dll
2010-02-21 09:43:51 ----A---- C:\Windows\system32\trkwks.dll
2010-02-21 09:43:51 ----A---- C:\Windows\system32\tracerpt.exe
2010-02-21 09:43:50 ----A---- C:\Windows\system32\TpmInit.exe
2010-02-21 09:43:50 ----A---- C:\Windows\system32\TMM.dll
2010-02-21 09:43:49 ----A---- C:\Windows\system32\TSpkg.dll
2010-02-21 09:43:48 ----A---- C:\Windows\system32\tsddd.dll
2010-02-21 09:43:48 ----A---- C:\Windows\system32\termmgr.dll
2010-02-21 09:43:47 ----A---- C:\Windows\system32\TimeDateMUICallback.dll
2010-02-21 09:43:46 ----A---- C:\Windows\system32\thumbcache.dll
2010-02-21 09:43:45 ----A---- C:\Windows\system32\umb.dll
2010-02-21 09:43:42 ----A---- C:\Windows\system32\UIHub.dll
2010-02-21 09:43:41 ----A---- C:\Windows\system32\unlodctr.exe
2010-02-21 09:43:36 ----A---- C:\Windows\system32\unbcl.dll
2010-02-21 09:43:36 ----A---- C:\Windows\system32\unattendedjoin.exe
2010-02-21 09:43:36 ----A---- C:\Windows\system32\unattend.dll
2010-02-21 09:43:35 ----A---- C:\Windows\system32\ucsvc.exe
2010-02-21 09:43:35 ----A---- C:\Windows\system32\txfw32.dll
2010-02-21 09:43:34 ----A---- C:\Windows\system32\txflog.dll
2010-02-21 09:43:33 ----A---- C:\Windows\system32\ufat.dll
2010-02-21 09:43:33 ----A---- C:\Windows\system32\uexfat.dll
2010-02-21 09:43:31 ----A---- C:\Windows\system32\UI0Detect.exe
2010-02-20 21:49:41 ----A---- C:\Windows\system32\wmpdxm.dll
2010-02-20 21:49:37 ----A---- C:\Windows\system32\spwmp.dll
2010-02-20 21:49:34 ----A---- C:\Windows\system32\dxmasf.dll
2010-02-20 19:39:33 ----D---- C:\Program Files\Nero
2010-02-20 19:39:33 ----D---- C:\Program Files\Common Files\Ahead
2010-02-20 17:26:41 ----D---- C:\Program Files\Mozilla Firefox
2010-02-20 14:08:32 ----D---- C:\Users\Elena\AppData\Roaming\Skype
2010-02-20 14:08:18 ----D---- C:\Program Files\Common Files\Skype
2010-02-20 14:08:11 ----RD---- C:\Program Files\Skype
2010-02-20 09:56:14 ----D---- C:\Users\Elena\AppData\Roaming\OpenOffice.org
2010-02-20 09:51:55 ----D---- C:\Program Files\OpenOffice.org 3
2010-02-11 00:40:34 ----A---- C:\Windows\system32\t2embed.dll
2010-02-11 00:40:34 ----A---- C:\Windows\system32\lpk.dll
2010-02-11 00:40:34 ----A---- C:\Windows\system32\fontsub.dll
2010-02-11 00:40:34 ----A---- C:\Windows\system32\dciman32.dll
2010-02-11 00:40:34 ----A---- C:\Windows\system32\atmlib.dll
2010-02-11 00:40:34 ----A---- C:\Windows\system32\atmfd.dll
2010-02-11 00:32:21 ----A---- C:\Windows\system32\winipsec.dll
2010-02-11 00:32:20 ----A---- C:\Windows\system32\polstore.dll
2010-02-11 00:29:05 ----A---- C:\Windows\system32\netevent.dll
2010-02-11 00:29:04 ----A---- C:\Windows\system32\TCPSVCS.EXE
2010-02-11 00:29:04 ----A---- C:\Windows\system32\MRINFO.EXE
2010-02-11 00:29:03 ----A---- C:\Windows\system32\netiohlp.dll
2010-02-11 00:29:03 ----A---- C:\Windows\system32\HOSTNAME.EXE
2010-02-11 00:29:02 ----A---- C:\Windows\system32\finger.exe
2010-02-11 00:29:01 ----A---- C:\Windows\system32\NETSTAT.EXE
2010-02-11 00:29:00 ----A---- C:\Windows\system32\ROUTE.EXE
2010-02-11 00:29:00 ----A---- C:\Windows\system32\ARP.EXE
2010-02-11 00:26:36 ----A---- C:\Windows\system32\L2SecHC.dll
2010-02-11 00:26:34 ----A---- C:\Windows\system32\wlansvc.dll
2010-02-11 00:26:34 ----A---- C:\Windows\system32\wlansec.dll
2010-02-11 00:26:34 ----A---- C:\Windows\system32\wlanmsm.dll
2010-02-11 00:26:34 ----A---- C:\Windows\system32\wlanhlp.dll
2010-02-11 00:26:34 ----A---- C:\Windows\system32\wlanapi.dll
2010-02-11 00:25:04 ----A---- C:\Windows\system32\msxml3.dll
2010-02-11 00:25:02 ----A---- C:\Windows\system32\msxml6.dll
2010-02-11 00:25:00 ----A---- C:\Windows\system32\msxml3r.dll
2010-02-11 00:24:59 ----A---- C:\Windows\system32\msxml6r.dll
2010-02-11 00:23:28 ----A---- C:\Windows\system32\wdigest.dll
2010-02-11 00:23:28 ----A---- C:\Windows\system32\msv1_0.dll
2010-02-11 00:23:27 ----A---- C:\Windows\system32\secur32.dll
2010-02-11 00:23:26 ----A---- C:\Windows\system32\lsass.exe
2010-02-11 00:23:26 ----A---- C:\Windows\system32\lsasrv.dll
2010-02-11 00:21:58 ----A---- C:\Windows\system32\mfps.dll
2010-02-11 00:21:58 ----A---- C:\Windows\system32\mf.dll
2010-02-11 00:21:57 ----A---- C:\Windows\system32\rrinstaller.exe
2010-02-11 00:21:57 ----A---- C:\Windows\system32\mferror.dll
2010-02-11 00:21:56 ----A---- C:\Windows\system32\mfpmp.exe
2010-02-11 00:21:53 ----A---- C:\Windows\system32\WMVCORE.DLL
2010-02-11 00:20:20 ----A---- C:\Windows\system32\tzres.dll
2010-02-11 00:14:41 ----A---- C:\Windows\system32\atl.dll
2010-02-11 00:08:54 ----A---- C:\Windows\system32\wkssvc.dll
2010-02-11 00:07:34 ----A---- C:\Windows\system32\tsgqec.dll
2010-02-11 00:07:34 ----A---- C:\Windows\system32\mstscax.dll
2010-02-11 00:07:34 ----A---- C:\Windows\system32\aaclient.dll
2010-02-10 23:13:04 ----A---- C:\Windows\system32\netfxperf.dll
2010-02-10 22:53:33 ----A---- C:\Windows\system32\INETRES.dll
2010-02-10 22:53:18 ----A---- C:\Windows\system32\msasn1.dll
2010-02-10 22:53:05 ----A---- C:\Windows\system32\rpcrt4.dll
2010-02-10 22:52:09 ----A---- C:\Windows\system32\rastls.dll
2010-02-10 22:51:55 ----A---- C:\Windows\system32\WSDApi.dll
2010-02-10 22:50:42 ----A---- C:\Windows\system32\msvfw32.dll
2010-02-10 22:50:42 ----A---- C:\Windows\system32\avicap32.dll
2010-02-10 22:50:41 ----A---- C:\Windows\system32\msvidc32.dll
2010-02-10 22:50:41 ----A---- C:\Windows\system32\msrle32.dll
2010-02-10 22:50:41 ----A---- C:\Windows\system32\mciavi32.dll
2010-02-10 22:50:41 ----A---- C:\Windows\system32\avifil32.dll
2010-02-10 22:50:39 ----A---- C:\Windows\system32\quartz.dll
2010-02-10 22:50:39 ----A---- C:\Windows\system32\msyuv.dll
2010-02-10 22:50:38 ----A---- C:\Windows\system32\tsbyuv.dll
2010-02-10 22:50:38 ----A---- C:\Windows\system32\iyuv_32.dll
2010-02-10 22:50:00 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2010-02-10 22:25:26 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-02-10 22:25:24 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-02-10 22:16:54 ----A---- C:\Windows\system32\localspl.dll
2010-02-10 19:04:10 ----D---- C:\Users\Elena\AppData\Roaming\ESET
2010-02-10 19:02:24 ----D---- C:\ProgramData\ESET
2010-02-10 19:02:24 ----D---- C:\Program Files\ESET
2010-02-06 14:16:40 ----A---- C:\Windows\pro.INI
2010-02-06 14:15:49 ----D---- C:\Users\Elena\AppData\Roaming\Mra
======List of files/folders modified in the last 1 months======
2010-02-26 08:35:18 ----D---- C:\Windows
2010-02-24 22:53:22 ----D---- C:\Windows\System32
2010-02-24 22:53:21 ----D---- C:\Windows\inf
2010-02-24 22:53:21 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-02-24 22:46:23 ----D---- C:\Windows\system32\catroot2
2010-02-23 22:39:59 ----D---- C:\Windows\Minidump
2010-02-23 21:36:16 ----D---- C:\Users\Elena\AppData\Roaming\skypePM
2010-02-22 22:03:45 ----A---- C:\Windows\system.ini
2010-02-22 22:02:21 ----RD---- C:\Program Files
2010-02-22 21:57:48 ----D---- C:\Windows\system32\drivers
2010-02-22 21:57:48 ----D---- C:\Windows\AppPatch
2010-02-22 21:57:45 ----D---- C:\Program Files\Common Files
2010-02-22 18:44:17 ----D---- C:\Windows\Debug
2010-02-21 22:49:59 ----D---- C:\Windows\rescache
2010-02-21 22:33:49 ----D---- C:\Windows\system32\Tasks
2010-02-21 22:30:44 ----D---- C:\Windows\system32\en-US
2010-02-21 22:30:39 ----D---- C:\Windows\system32\wbem
2010-02-21 22:30:37 ----D---- C:\Windows\system32\zh-TW
2010-02-21 22:30:37 ----D---- C:\Windows\system32\zh-HK
2010-02-21 22:30:37 ----D---- C:\Windows\system32\zh-CN
2010-02-21 22:30:37 ----D---- C:\Windows\system32\uk-UA
2010-02-21 22:30:37 ----D---- C:\Windows\system32\tr-TR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\th-TH
2010-02-21 22:30:37 ----D---- C:\Windows\system32\sv-SE
2010-02-21 22:30:37 ----D---- C:\Windows\system32\sr-Latn-CS
2010-02-21 22:30:37 ----D---- C:\Windows\system32\sl-SI
2010-02-21 22:30:37 ----D---- C:\Windows\system32\sk-SK
2010-02-21 22:30:37 ----D---- C:\Windows\system32\ru-RU
2010-02-21 22:30:37 ----D---- C:\Windows\system32\ro-RO
2010-02-21 22:30:37 ----D---- C:\Windows\system32\pt-PT
2010-02-21 22:30:37 ----D---- C:\Windows\system32\pt-BR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\pl-PL
2010-02-21 22:30:37 ----D---- C:\Windows\system32\nl-NL
2010-02-21 22:30:37 ----D---- C:\Windows\system32\nb-NO
2010-02-21 22:30:37 ----D---- C:\Windows\system32\lv-LV
2010-02-21 22:30:37 ----D---- C:\Windows\system32\lt-LT
2010-02-21 22:30:37 ----D---- C:\Windows\system32\ko-KR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\ja-JP
2010-02-21 22:30:37 ----D---- C:\Windows\system32\it-IT
2010-02-21 22:30:37 ----D---- C:\Windows\system32\hu-HU
2010-02-21 22:30:37 ----D---- C:\Windows\system32\hr-HR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\he-IL
2010-02-21 22:30:37 ----D---- C:\Windows\system32\fr-FR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\fi-FI
2010-02-21 22:30:37 ----D---- C:\Windows\system32\et-EE
2010-02-21 22:30:37 ----D---- C:\Windows\system32\es-ES
2010-02-21 22:30:37 ----D---- C:\Windows\system32\el-GR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\de-DE
2010-02-21 22:30:37 ----D---- C:\Windows\system32\da-DK
2010-02-21 22:30:37 ----D---- C:\Windows\system32\cs-CZ
2010-02-21 22:30:37 ----D---- C:\Windows\system32\bg-BG
2010-02-21 22:30:37 ----D---- C:\Windows\system32\ar-SA
2010-02-21 22:27:53 ----D---- C:\Windows\winsxs
2010-02-21 22:27:32 ----D---- C:\Windows\system32\catroot
2010-02-21 22:23:17 ----D---- C:\Program Files\Windows Mail
2010-02-21 22:23:01 ----D---- C:\System Volume Information
2010-02-21 21:55:25 ----D---- C:\ProgramData
2010-02-21 21:55:20 ----SD---- C:\Windows\Downloaded Program Files
2010-02-21 21:50:30 ----D---- C:\Program Files\Windows Media Player
2010-02-21 21:44:18 ----D---- C:\Program Files\CONEXANT
2010-02-21 20:11:52 ----RSD---- C:\Windows\assembly
2010-02-21 20:05:29 ----D---- C:\Windows\Microsoft.NET
2010-02-21 20:00:14 ----SHD---- C:\Windows\Installer
2010-02-21 18:39:04 ----D---- C:\Windows\system32\migration
2010-02-21 18:39:04 ----D---- C:\Program Files\Internet Explorer
2010-02-21 18:38:50 ----D---- C:\Windows\PolicyDefinitions
2010-02-21 15:01:25 ----D---- C:\Windows\system32\WDI
2010-02-21 13:54:47 ----D---- C:\Boot
2010-02-21 13:46:34 ----D---- C:\Program Files\Windows Sidebar
2010-02-21 13:46:34 ----D---- C:\Program Files\Windows Collaboration
2010-02-21 13:46:34 ----D---- C:\Program Files\Windows Calendar
2010-02-21 13:46:34 ----D---- C:\Program Files\Movie Maker
2010-02-21 13:46:33 ----D---- C:\Program Files\Windows Photo Gallery
2010-02-21 13:46:33 ----D---- C:\Program Files\Common Files\System
2010-02-21 13:46:32 ----D---- C:\Windows\servicing
2010-02-21 13:46:32 ----D---- C:\Program Files\Windows Defender
2010-02-21 13:46:30 ----D---- C:\Windows\IME
2010-02-21 13:46:29 ----D---- C:\Windows\system32\XPSViewer
2010-02-21 13:46:26 ----D---- C:\Windows\system32\oobe
2010-02-21 13:46:25 ----D---- C:\Windows\system32\AdvancedInstallers
2010-02-21 13:46:24 ----D---- C:\Windows\system32\SLUI
2010-02-21 13:46:24 ----D---- C:\Windows\system32\setup
2010-02-21 13:46:23 ----D---- C:\Windows\system32\manifeststore
2010-02-21 13:46:23 ----D---- C:\Windows\system32\en
2010-02-21 13:46:21 ----D---- C:\Windows\system32\migwiz
2010-02-21 13:46:00 ----RSD---- C:\Windows\Fonts
2010-02-21 13:45:53 ----D---- C:\Windows\system32\Boot
2010-02-21 12:43:17 ----ASH---- C:\Program Files\desktop.ini
2010-02-21 12:29:52 ----D---- C:\Windows\MSAgent
2010-02-21 12:29:50 ----D---- C:\Windows\L2Schemas
2010-02-21 12:29:50 ----D---- C:\Windows\DigitalLocker
2010-02-21 12:29:43 ----D---- C:\Windows\system32\com
2010-02-21 12:29:22 ----D---- C:\Windows\system32\sysprep
2010-02-21 12:29:14 ----D---- C:\Windows\system32\ias
2010-02-21 12:29:13 ----D---- C:\Windows\system32\ras
2010-02-21 12:29:09 ----D---- C:\Windows\system32\icsxml
2010-02-21 12:26:06 ----D---- C:\Windows\Boot
2010-02-21 11:57:36 ----A---- C:\Windows\system32\ifxcardm.dll
2010-02-21 11:57:17 ----A---- C:\Windows\system32\axaltocm.dll
2010-02-20 22:09:19 ----HD---- C:\Program Files\InstallShield Installation Information
2010-02-20 22:07:44 ----D---- C:\Windows\PAC207
2010-02-20 22:07:44 ----A---- C:\Windows\win.ini
2010-02-20 22:07:01 ----D---- C:\Windows\twain_32
2010-02-20 17:27:13 ----D---- C:\Users\Elena\AppData\Roaming\Mozilla
2010-02-20 16:50:35 ----D---- C:\Program Files\nLite
2010-02-20 14:08:10 ----D---- C:\ProgramData\Skype
2010-02-10 22:52:26 ----D---- C:\Windows\Prefetch
2010-02-09 20:59:11 ----D---- C:\Windows\Tasks
2010-02-08 21:54:33 ----D---- C:\Program Files\Common Files\InstallShield
2010-02-08 21:51:09 ----D---- C:\Users\Elena\AppData\Roaming\GHISLER
2010-02-07 21:30:01 ----D---- C:\ProgramData\BVRP Software
2010-02-06 09:42:25 ----D---- C:\ProgramData\Microsoft Help
2010-02-06 09:41:46 ----SD---- C:\ProgramData\Microsoft
2010-02-06 09:41:46 ----D---- C:\Program Files\Common Files\microsoft shared
2010-02-06 09:41:45 ----SD---- C:\Users\Elena\AppData\Roaming\Microsoft
2010-02-06 09:41:40 ----D---- C:\Program Files\Microsoft Works
2010-02-06 09:39:48 ----D---- C:\Program Files\MSBuild
2010-02-06 09:27:31 ----D---- C:\Windows\system32\screensaver dir
2010-02-01 11:26:22 ----A---- C:\Windows\system32\mrt.exe
2010-02-21 13:04:06 ----A---- C:\Windows\system32\Storprop.dll
2010-02-21 13:04:02 ----A---- C:\Windows\system32\stobject.dll
2010-02-21 13:04:00 ----A---- C:\Windows\system32\sud.dll
2010-02-21 13:03:59 ----A---- C:\Windows\system32\srvsvc.dll
2010-02-21 13:03:59 ----A---- C:\Windows\system32\srchadmin.dll
2010-02-21 13:03:59 ----A---- C:\Windows\system32\srcore.dll
2010-02-21 13:03:57 ----A---- C:\Windows\system32\sysmain.dll
2010-02-21 13:03:57 ----A---- C:\Windows\system32\sysclass.dll
2010-02-21 13:03:57 ----A---- C:\Windows\system32\SyncCenter.dll
2010-02-21 13:03:57 ----A---- C:\Windows\system32\swprv.dll
2010-02-21 13:03:56 ----A---- C:\Windows\system32\smss.exe
2010-02-21 13:03:56 ----A---- C:\Windows\system32\SmiEngine.dll
2010-02-21 13:03:56 ----A---- C:\Windows\system32\SMBHelperClass.dll
2010-02-21 13:03:56 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2010-02-21 13:03:56 ----A---- C:\Windows\system32\slwmi.dll
2010-02-21 13:03:56 ----A---- C:\Windows\system32\slcc.dll
2010-02-21 13:03:56 ----A---- C:\Windows\system32\SLC.dll
2010-02-21 13:03:56 ----A---- C:\Windows\system32\shwebsvc.dll
2010-02-21 13:03:55 ----A---- C:\Windows\system32\spp.dll
2010-02-21 13:03:55 ----A---- C:\Windows\system32\spoolsv.exe
2010-02-21 13:03:55 ----A---- C:\Windows\system32\spoolss.dll
2010-02-21 13:03:55 ----A---- C:\Windows\system32\spinstall.exe
2010-02-21 13:03:55 ----A---- C:\Windows\system32\spcmsg.dll
2010-02-21 13:03:55 ----A---- C:\Windows\system32\slwga.dll
2010-02-21 13:03:55 ----A---- C:\Windows\system32\SLUINotify.dll
2010-02-21 13:03:55 ----A---- C:\Windows\system32\SLUI.exe
2010-02-21 13:03:55 ----A---- C:\Windows\system32\SLsvc.exe
2010-02-21 13:03:55 ----A---- C:\Windows\system32\slmgr.vbs
2010-02-21 13:03:55 ----A---- C:\Windows\system32\SLLUA.exe
2010-02-21 13:03:55 ----A---- C:\Windows\system32\SLCommDlg.dll
2010-02-21 13:03:55 ----A---- C:\Windows\system32\slcinst.dll
2010-02-21 13:03:55 ----A---- C:\Windows\system32\SLCExt.dll
2010-02-21 13:03:55 ----A---- C:\Windows\system32\shsvcs.dll
2010-02-21 13:03:54 ----A---- C:\Windows\system32\sqlsrv32.dll
2010-02-21 13:03:54 ----A---- C:\Windows\system32\spwizui.dll
2010-02-21 13:03:54 ----A---- C:\Windows\system32\spwinsat.dll
2010-02-21 13:03:54 ----A---- C:\Windows\system32\sperror.dll
2010-02-21 13:03:53 ----A---- C:\Windows\system32\TsWpfWrp.exe
2010-02-21 13:03:53 ----A---- C:\Windows\system32\TSTheme.exe
2010-02-21 13:03:53 ----A---- C:\Windows\system32\spreview.exe
2010-02-21 13:03:53 ----A---- C:\Windows\system32\softkbd.dll
2010-02-21 13:03:53 ----A---- C:\Windows\system32\SndVol.exe
2010-02-21 13:03:52 ----A---- C:\Windows\system32\tscupgrd.exe
2010-02-21 13:03:51 ----A---- C:\Windows\system32\zipfldr.dll
2010-02-21 13:03:51 ----A---- C:\Windows\system32\untfs.dll
2010-02-21 13:03:51 ----A---- C:\Windows\system32\uDWM.dll
2010-02-21 13:03:50 ----A---- C:\Windows\system32\umpnpmgr.dll
2010-02-21 13:03:50 ----A---- C:\Windows\system32\ulib.dll
2010-02-21 13:03:50 ----A---- C:\Windows\system32\systemcpl.dll
2010-02-21 13:03:46 ----A---- C:\Windows\system32\tquery.dll
2010-02-21 13:03:46 ----A---- C:\Windows\system32\themeui.dll
2010-02-21 13:03:46 ----A---- C:\Windows\system32\thawbrkr.dll
2010-02-21 13:03:46 ----A---- C:\Windows\system32\termsrv.dll
2010-02-21 13:03:46 ----A---- C:\Windows\system32\tcpmon.dll
2010-02-21 13:03:46 ----A---- C:\Windows\system32\tcpipcfg.dll
2010-02-21 13:03:46 ----A---- C:\Windows\system32\taskeng.exe
2010-02-21 13:03:46 ----A---- C:\Windows\system32\taskcomp.dll
2010-02-21 13:03:46 ----A---- C:\Windows\system32\tapisrv.dll
2010-02-21 13:03:45 ----A---- C:\Windows\system32\themecpl.dll
2010-02-21 12:25:43 ----D---- C:\PerfLogs
2010-02-21 11:08:10 ----D---- C:\79c250fb128b28425d89
2010-02-21 11:04:09 ----D---- C:\Windows\system32\EventProviders
2010-02-21 11:03:45 ----D---- C:\41e7fa4665b561a2a2fd
2010-02-21 10:04:58 ----A---- C:\Windows\system32\sdspres.dll
2010-02-21 10:04:44 ----A---- C:\Windows\system32\recdisc.exe
2010-02-21 10:02:14 ----A---- C:\Windows\system32\sxproxy.dll
2010-02-21 09:49:46 ----A---- C:\Windows\system32\mssha.dll
2010-02-21 09:49:45 ----A---- C:\Windows\system32\mstask.dll
2010-02-21 09:49:45 ----A---- C:\Windows\system32\msrdc.dll
2010-02-21 09:49:45 ----A---- C:\Windows\system32\msra.exe
2010-02-21 09:49:42 ----A---- C:\Windows\system32\NAPMONTR.DLL
2010-02-21 09:49:42 ----A---- C:\Windows\system32\napipsec.dll
2010-02-21 09:49:42 ----A---- C:\Windows\system32\NapiNSP.dll
2010-02-21 09:49:42 ----A---- C:\Windows\system32\NAPHLPR.DLL
2010-02-21 09:49:42 ----A---- C:\Windows\system32\napdsnap.dll
2010-02-21 09:49:42 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2010-02-21 09:49:42 ----A---- C:\Windows\system32\mydocs.dll
2010-02-21 09:49:42 ----A---- C:\Windows\system32\mycomput.dll
2010-02-21 09:49:42 ----A---- C:\Windows\system32\MuiUnattend.exe
2010-02-21 09:49:42 ----A---- C:\Windows\system32\mtxoci.dll
2010-02-21 09:49:42 ----A---- C:\Windows\system32\mtxlegih.dll
2010-02-21 09:49:42 ----A---- C:\Windows\system32\mtxdm.dll
2010-02-21 09:49:42 ----A---- C:\Windows\system32\mtstocom.exe
2010-02-21 09:49:41 ----A---- C:\Windows\system32\msvbvm60.dll
2010-02-21 09:49:40 ----A---- C:\Windows\system32\mswmdm.dll
2010-02-21 09:49:39 ----A---- C:\Windows\system32\msdtcVSp1res.dll
2010-02-21 09:49:39 ----A---- C:\Windows\system32\msdtcuiu.dll
2010-02-21 09:49:36 ----A---- C:\Windows\system32\msdtclog.dll
2010-02-21 09:49:36 ----A---- C:\Windows\system32\msdtckrm.dll
2010-02-21 09:49:36 ----A---- C:\Windows\system32\msdtc.exe
2010-02-21 09:49:36 ----A---- C:\Windows\system32\msdt.exe
2010-02-21 09:49:36 ----A---- C:\Windows\system32\msdelta.dll
2010-02-21 09:49:36 ----A---- C:\Windows\system32\msdart.dll
2010-02-21 09:49:36 ----A---- C:\Windows\system32\msdadiag.dll
2010-02-21 09:49:35 ----A---- C:\Windows\system32\msmmsp.dll
2010-02-21 09:49:35 ----A---- C:\Windows\system32\msdt.dll
2010-02-21 09:49:35 ----A---- C:\Windows\system32\msdmo.dll
2010-02-21 09:49:33 ----A---- C:\Windows\system32\mspatcha.dll
2010-02-21 09:49:33 ----A---- C:\Windows\system32\mspaint.exe
2010-02-21 09:49:33 ----A---- C:\Windows\system32\msorcl32.dll
2010-02-21 09:49:33 ----A---- C:\Windows\system32\msoert2.dll
2010-02-21 09:49:33 ----A---- C:\Windows\system32\msoeacct.dll
2010-02-21 09:49:33 ----A---- C:\Windows\system32\msobjs.dll
2010-02-21 09:49:32 ----A---- C:\Windows\system32\msieftp.dll
2010-02-21 09:49:32 ----A---- C:\Windows\system32\msidle.dll
2010-02-21 09:49:32 ----A---- C:\Windows\system32\msident.dll
2010-02-21 09:49:32 ----A---- C:\Windows\system32\msidcrl30.dll
2010-02-21 09:49:28 ----A---- C:\Windows\system32\NlsData004b.dll
2010-02-21 09:49:28 ----A---- C:\Windows\system32\NlsData004a.dll
2010-02-21 09:49:28 ----A---- C:\Windows\system32\NlsData0047.dll
2010-02-21 09:49:28 ----A---- C:\Windows\system32\NlsData0046.dll
2010-02-21 09:49:28 ----A---- C:\Windows\system32\NlsData0045.dll
2010-02-21 09:49:28 ----A---- C:\Windows\system32\NlsData003e.dll
2010-02-21 09:49:27 ----A---- C:\Windows\system32\notepad.exe
2010-02-21 09:49:27 ----A---- C:\Windows\system32\Nlsdl.dll
2010-02-21 09:49:27 ----A---- C:\Windows\system32\NlsData0c1a.dll
2010-02-21 09:49:27 ----A---- C:\Windows\system32\NlsData004e.dll
2010-02-21 09:49:27 ----A---- C:\Windows\system32\NlsData0049.dll
2010-02-21 09:49:27 ----A---- C:\Windows\system32\NlsData0039.dll
2010-02-21 09:49:27 ----A---- C:\Windows\system32\NlsData002a.dll
2010-02-21 09:49:27 ----A---- C:\Windows\system32\NlsData0027.dll
2010-02-21 09:49:27 ----A---- C:\Windows\system32\NlsData0026.dll
2010-02-21 09:49:27 ----A---- C:\Windows\system32\NlsData0024.dll
2010-02-21 09:49:27 ----A---- C:\Windows\system32\NlsData0022.dll
2010-02-21 09:49:27 ----A---- C:\Windows\notepad.exe
2010-02-21 09:49:26 ----A---- C:\Windows\system32\NlsData081a.dll
2010-02-21 09:49:26 ----A---- C:\Windows\system32\NlsData0816.dll
2010-02-21 09:49:26 ----A---- C:\Windows\system32\NlsData0414.dll
2010-02-21 09:49:26 ----A---- C:\Windows\system32\NlsData004c.dll
2010-02-21 09:49:25 ----A---- C:\Windows\system32\NlsData0416.dll
2010-02-21 09:49:25 ----A---- C:\Windows\system32\NlsData0009.dll
2010-02-21 09:49:25 ----A---- C:\Windows\system32\NlsData0003.dll
2010-02-21 09:49:25 ----A---- C:\Windows\system32\NlsData0002.dll
2010-02-21 09:49:25 ----A---- C:\Windows\system32\NlsData0001.dll
2010-02-21 09:49:25 ----A---- C:\Windows\system32\NlsData0000.dll
2010-02-21 09:49:24 ----A---- C:\Windows\system32\NlsData001b.dll
2010-02-21 09:49:24 ----A---- C:\Windows\system32\NlsData001a.dll
2010-02-21 09:49:24 ----A---- C:\Windows\system32\NlsData000a.dll
2010-02-21 09:49:24 ----A---- C:\Windows\system32\NlsData0007.dll
2010-02-21 09:49:24 ----A---- C:\Windows\system32\nlsbres.dll
2010-02-21 09:49:24 ----A---- C:\Windows\system32\nlmgp.dll
2010-02-21 09:49:23 ----A---- C:\Windows\system32\NlsData0021.dll
2010-02-21 09:49:23 ----A---- C:\Windows\system32\NlsData0020.dll
2010-02-21 09:49:23 ----A---- C:\Windows\system32\NlsData001d.dll
2010-02-21 09:49:23 ----A---- C:\Windows\system32\NlsData0019.dll
2010-02-21 09:49:23 ----A---- C:\Windows\system32\NlsData0018.dll
2010-02-21 09:49:22 ----A---- C:\Windows\system32\odbcbcp.dll
2010-02-21 09:49:22 ----A---- C:\Windows\system32\objsel.dll
2010-02-21 09:49:22 ----A---- C:\Windows\system32\NlsData0013.dll
2010-02-21 09:49:22 ----A---- C:\Windows\system32\NlsData0011.dll
2010-02-21 09:49:22 ----A---- C:\Windows\system32\NlsData0010.dll
2010-02-21 09:49:22 ----A---- C:\Windows\system32\NlsData000f.dll
2010-02-21 09:49:22 ----A---- C:\Windows\system32\NlsData000d.dll
2010-02-21 09:49:22 ----A---- C:\Windows\system32\NlsData000c.dll
2010-02-21 09:49:21 ----A---- C:\Windows\system32\odbctrac.dll
2010-02-21 09:49:21 ----A---- C:\Windows\system32\odbcjt32.dll
2010-02-21 09:49:21 ----A---- C:\Windows\system32\odbccu32.dll
2010-02-21 09:49:21 ----A---- C:\Windows\system32\odbccr32.dll
2010-02-21 09:49:21 ----A---- C:\Windows\system32\ntdsapi.dll
2010-02-21 09:49:20 ----A---- C:\Windows\system32\ntvdm.exe
2010-02-21 09:49:20 ----A---- C:\Windows\system32\ntshrui.dll
2010-02-21 09:49:20 ----A---- C:\Windows\system32\nsisvc.dll
2010-02-21 09:49:20 ----A---- C:\Windows\system32\nsi.dll
2010-02-21 09:49:20 ----A---- C:\Windows\system32\nshipsec.dll
2010-02-21 09:49:19 ----A---- C:\Windows\system32\ntlanman.dll
2010-02-21 09:49:19 ----A---- C:\Windows\system32\netdiagfx.dll
2010-02-21 09:49:19 ----A---- C:\Windows\system32\netcorehc.dll
2010-02-21 09:49:19 ----A---- C:\Windows\system32\netcfgx.dll
2010-02-21 09:49:19 ----A---- C:\Windows\system32\netcfg.exe
2010-02-21 09:49:19 ----A---- C:\Windows\system32\netbtugc.exe
2010-02-21 09:49:18 ----A---- C:\Windows\system32\netiougc.exe
2010-02-21 09:49:18 ----A---- C:\Windows\system32\netid.dll
2010-02-21 09:49:18 ----A---- C:\Windows\system32\net1.exe
2010-02-21 09:49:18 ----A---- C:\Windows\system32\net.exe
2010-02-21 09:49:18 ----A---- C:\Windows\system32\ndfetw.dll
2010-02-21 09:49:18 ----A---- C:\Windows\system32\ncsi.dll
2010-02-21 09:49:18 ----A---- C:\Windows\system32\ncobjapi.dll
2010-02-21 09:49:18 ----A---- C:\Windows\system32\nci.dll
2010-02-21 09:49:18 ----A---- C:\Windows\system32\nbtstat.exe
2010-02-21 09:49:18 ----A---- C:\Windows\system32\NAPSTAT.EXE
2010-02-21 09:49:17 ----A---- C:\Windows\system32\ndfapi.dll
2010-02-21 09:49:16 ----A---- C:\Windows\system32\nlasvc.dll
2010-02-21 09:49:16 ----A---- C:\Windows\system32\nlaapi.dll
2010-02-21 09:49:14 ----A---- C:\Windows\system32\netprof.dll
2010-02-21 09:49:14 ----A---- C:\Windows\system32\Netplwiz.exe
2010-02-21 09:49:14 ----A---- C:\Windows\system32\netman.dll
2010-02-21 09:49:13 ----A---- C:\Windows\system32\netprofm.dll
2010-02-21 09:49:13 ----A---- C:\Windows\system32\lsmproxy.dll
2010-02-21 09:49:13 ----A---- C:\Windows\system32\lsm.exe
2010-02-21 09:49:11 ----A---- C:\Windows\system32\makecab.exe
2010-02-21 09:49:11 ----A---- C:\Windows\system32\luainstall.dll
2010-02-21 09:49:10 ----A---- C:\Windows\system32\loghours.dll
2010-02-21 09:49:10 ----A---- C:\Windows\system32\lodctr.exe
2010-02-21 09:49:09 ----A---- C:\Windows\system32\lpksetup.exe
2010-02-21 09:49:09 ----A---- C:\Windows\system32\localui.dll
2010-02-21 09:49:09 ----A---- C:\Windows\system32\localsec.dll
2010-02-21 09:49:08 ----A---- C:\Windows\system32\lpremove.exe
2010-02-21 09:49:07 ----A---- C:\Windows\system32\LogonUI.exe
2010-02-21 09:49:06 ----A---- C:\Windows\system32\MFWMAAEC.DLL
2010-02-21 09:49:06 ----A---- C:\Windows\system32\mfvdsp.dll
2010-02-21 09:49:06 ----A---- C:\Windows\system32\mfcsubs.dll
2010-02-21 09:49:05 ----A---- C:\Windows\system32\mcbuilder.exe
2010-02-21 09:49:00 ----A---- C:\Windows\system32\mdminst.dll
2010-02-21 09:48:59 ----A---- C:\Windows\system32\MdSched.exe
2010-02-21 09:48:58 ----A---- C:\Windows\system32\McxDriv.dll
2010-02-21 09:48:57 ----A---- C:\Windows\system32\itss.dll
2010-02-21 09:48:57 ----A---- C:\Windows\system32\iscsiwmi.dll
2010-02-21 09:48:57 ----A---- C:\Windows\system32\iscsium.dll
2010-02-21 09:48:57 ----A---- C:\Windows\system32\iscsiexe.dll
2010-02-21 09:48:57 ----A---- C:\Windows\system32\iscsied.dll
2010-02-21 09:48:56 ----A---- C:\Windows\system32\ktmw32.dll
2010-02-21 09:48:56 ----A---- C:\Windows\system32\ktmutil.exe
2010-02-21 09:48:56 ----A---- C:\Windows\system32\iprtrmgr.dll
2010-02-21 09:48:56 ----A---- C:\Windows\system32\iprtprio.dll
2010-02-21 09:48:56 ----A---- C:\Windows\system32\ipnathlp.dll
2010-02-21 09:48:56 ----A---- C:\Windows\system32\IPBusEnum.dll
2010-02-21 09:48:55 ----A---- C:\Windows\system32\loadperf.dll
2010-02-21 09:48:55 ----A---- C:\Windows\system32\lnkstub.exe
2010-02-21 09:48:55 ----A---- C:\Windows\system32\lltdsvc.dll
2010-02-21 09:48:55 ----A---- C:\Windows\system32\lltdapi.dll
2010-02-21 09:48:55 ----A---- C:\Windows\system32\LangCleanupSysprepAction.dll
2010-02-21 09:48:55 ----A---- C:\Windows\system32\l2gpstore.dll
2010-02-21 09:48:55 ----A---- C:\Windows\system32\KMSVC.DLL
2010-02-21 09:48:55 ----A---- C:\Windows\system32\keymgr.dll
2010-02-21 09:48:53 ----A---- C:\Windows\system32\mprmsg.dll
2010-02-21 09:48:53 ----A---- C:\Windows\system32\mprdim.dll
2010-02-21 09:48:53 ----A---- C:\Windows\system32\mprddm.dll
2010-02-21 09:48:53 ----A---- C:\Windows\system32\KBDKOR.DLL
2010-02-21 09:48:53 ----A---- C:\Windows\system32\KBDJPN.DLL
2010-02-21 09:48:51 ----A---- C:\Windows\system32\mountvol.exe
2010-02-21 09:48:50 ----A---- C:\Windows\system32\MPG4DECD.DLL
2010-02-21 09:48:49 ----A---- C:\Windows\system32\msconfig.exe
2010-02-21 09:48:49 ----A---- C:\Windows\system32\MP4SDECD.DLL
2010-02-21 09:48:49 ----A---- C:\Windows\system32\MP43DECD.DLL
2010-02-21 09:48:49 ----A---- C:\Windows\system32\MP3DMOD.DLL
2010-02-21 09:48:48 ----A---- C:\Windows\system32\msaatext.dll
2010-02-21 09:48:47 ----A---- C:\Windows\system32\msacm32.dll
2010-02-21 09:48:44 ----A---- C:\Windows\system32\mmcshext.dll
2010-02-21 09:48:44 ----A---- C:\Windows\system32\mmcbase.dll
2010-02-21 09:48:43 ----A---- C:\Windows\system32\mobsync.exe
2010-02-21 09:48:43 ----A---- C:\Windows\system32\mmcss.dll
2010-02-21 09:48:43 ----A---- C:\Windows\system32\mlang.dll
2010-02-21 09:48:41 ----A---- C:\Windows\system32\migisol.dll
2010-02-21 09:48:41 ----A---- C:\Windows\system32\MigAutoPlay.exe
2010-02-21 09:48:39 ----A---- C:\Windows\system32\seclogon.dll
2010-02-21 09:48:39 ----A---- C:\Windows\system32\SecEdit.exe
2010-02-21 09:48:38 ----A---- C:\Windows\system32\sdshext.dll
2010-02-21 09:48:38 ----A---- C:\Windows\system32\sdrsvc.dll
2010-02-21 09:48:37 ----A---- C:\Windows\system32\shrink.dll
2010-02-21 09:48:37 ----A---- C:\Windows\system32\shimgvw.dll
2010-02-21 09:48:37 ----A---- C:\Windows\system32\shgina.dll
2010-02-21 09:48:36 ----A---- C:\Windows\system32\shutdown.exe
2010-02-21 09:48:36 ----A---- C:\Windows\system32\shrpubw.exe
2010-02-21 09:48:35 ----A---- C:\Windows\system32\shacct.dll
2010-02-21 09:48:30 ----A---- C:\Windows\system32\SmiInstaller.dll
2010-02-21 09:48:24 ----A---- C:\Windows\system32\SessEnv.dll
2010-02-21 09:48:23 ----A---- C:\Windows\system32\sfc_os.dll
2010-02-21 09:48:23 ----A---- C:\Windows\system32\sfc.exe
2010-02-21 09:48:23 ----A---- C:\Windows\system32\setupugc.exe
2010-02-21 09:48:23 ----A---- C:\Windows\system32\setupSNK.exe
2010-02-21 09:48:23 ----A---- C:\Windows\system32\setupcln.dll
2010-02-21 09:48:23 ----A---- C:\Windows\system32\setupcl.exe
2010-02-21 09:48:23 ----A---- C:\Windows\system32\setbcdlocale.dll
2010-02-21 09:48:23 ----A---- C:\Windows\system32\serialui.dll
2010-02-21 09:48:22 ----A---- C:\Windows\system32\Sens.dll
2010-02-21 09:48:20 ----A---- C:\Windows\system32\pnrpnsp.dll
2010-02-21 09:48:20 ----A---- C:\Windows\system32\PNPXAssocPrx.dll
2010-02-21 09:48:19 ----A---- C:\Windows\system32\pots.dll
2010-02-21 09:48:19 ----A---- C:\Windows\system32\PortableDeviceWiaCompat.dll
2010-02-21 09:48:19 ----A---- C:\Windows\system32\pnpts.dll
2010-02-21 09:48:18 ----A---- C:\Windows\system32\QAGENT.DLL
2010-02-21 09:48:18 ----A---- C:\Windows\system32\puiobj.dll
2010-02-21 09:48:18 ----A---- C:\Windows\system32\psbase.dll
2010-02-21 09:48:18 ----A---- C:\Windows\system32\provthrd.dll
2010-02-21 09:48:16 ----A---- C:\Windows\system32\profprov.dll
2010-02-21 09:48:16 ----A---- C:\Windows\system32\procinst.dll
2010-02-21 09:48:16 ----A---- C:\Windows\system32\prntvpt.dll
2010-02-21 09:48:16 ----A---- C:\Windows\system32\printcom.dll
2010-02-21 09:48:16 ----A---- C:\Windows\system32\prevhost.exe
2010-02-21 09:48:15 ----A---- C:\Windows\system32\pcasvc.dll
2010-02-21 09:48:15 ----A---- C:\Windows\system32\pcadm.dll
2010-02-21 09:48:15 ----A---- C:\Windows\system32\p2pnetsh.dll
2010-02-21 09:48:15 ----A---- C:\Windows\system32\p2phost.exe
2010-02-21 09:48:15 ----A---- C:\Windows\system32\p2pcollab.dll
2010-02-21 09:48:15 ----A---- C:\Windows\system32\P2P.dll
2010-02-21 09:48:14 ----A---- C:\Windows\system32\olethk32.dll
2010-02-21 09:48:14 ----A---- C:\Windows\system32\olesvr32.dll
2010-02-21 09:48:14 ----A---- C:\Windows\system32\oledlg.dll
2010-02-21 09:48:14 ----A---- C:\Windows\system32\olecli32.dll
2010-02-21 09:48:14 ----A---- C:\Windows\system32\ogldrv.dll
2010-02-21 09:48:13 ----A---- C:\Windows\system32\OptionalFeatures.exe
2010-02-21 09:48:12 ----A---- C:\Windows\system32\osblprov.dll
2010-02-21 09:48:12 ----A---- C:\Windows\system32\osbaseln.dll
2010-02-21 09:48:09 ----A---- C:\Windows\system32\PING.EXE
2010-02-21 09:48:08 ----A---- C:\Windows\system32\PlaySndSrv.dll
2010-02-21 09:48:08 ----A---- C:\Windows\system32\pla.dll
2010-02-21 09:48:07 ----A---- C:\Windows\system32\pdhui.dll
2010-02-21 09:48:05 ----A---- C:\Windows\system32\perfts.dll
2010-02-21 09:48:05 ----A---- C:\Windows\system32\perfnet.dll
2010-02-21 09:48:05 ----A---- C:\Windows\system32\perfmon.msc
2010-02-21 09:48:05 ----A---- C:\Windows\system32\perfmon.exe
2010-02-21 09:48:04 ----A---- C:\Windows\system32\rstrui.exe
2010-02-21 09:48:04 ----A---- C:\Windows\system32\RstrtMgr.dll
2010-02-21 09:48:04 ----A---- C:\Windows\system32\rshx32.dll
2010-02-21 09:48:00 ----A---- C:\Windows\system32\runonce.exe
2010-02-21 09:47:59 ----A---- C:\Windows\system32\rtm.dll
2010-02-21 09:47:59 ----A---- C:\Windows\system32\rgb9rast.dll
2010-02-21 09:47:58 ----A---- C:\Windows\system32\riched32.dll
2010-02-21 09:47:58 ----A---- C:\Windows\system32\resutils.dll
2010-02-21 09:47:58 ----A---- C:\Windows\system32\RESAMPLEDMO.DLL
2010-02-21 09:47:57 ----A---- C:\Windows\system32\RpcPing.exe
2010-02-21 09:47:55 ----A---- C:\Windows\system32\schtasks.exe
2010-02-21 09:47:55 ----A---- C:\Windows\system32\Robocopy.exe
2010-02-21 09:47:54 ----A---- C:\Windows\system32\sbunattend.exe
2010-02-21 09:47:53 ----A---- C:\Windows\system32\sdchange.exe
2010-02-21 09:47:53 ----A---- C:\Windows\system32\sdengin2.dll
2010-02-21 09:47:48 ----A---- C:\Windows\system32\sbeio.dll
2010-02-21 09:47:48 ----A---- C:\Windows\system32\sbe.dll
2010-02-21 09:47:47 ----A---- C:\Windows\system32\rasctrs.dll
2010-02-21 09:47:47 ----A---- C:\Windows\system32\RacAgent.exe
2010-02-21 09:47:45 ----A---- C:\Windows\system32\rascfg.dll
2010-02-21 09:47:45 ----A---- C:\Windows\system32\rasauto.dll
2010-02-21 09:47:44 ----A---- C:\Windows\system32\qdv.dll
2010-02-21 09:47:44 ----A---- C:\Windows\system32\QCLIPROV.DLL
2010-02-21 09:47:44 ----A---- C:\Windows\system32\qcap.dll
2010-02-21 09:47:44 ----A---- C:\Windows\system32\qasf.dll
2010-02-21 09:47:43 ----A---- C:\Windows\system32\qwave.dll
2010-02-21 09:47:43 ----A---- C:\Windows\system32\QUTIL.DLL
2010-02-21 09:47:42 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2010-02-21 09:47:42 ----A---- C:\Windows\system32\QSHVHOST.DLL
2010-02-21 09:47:40 ----A---- C:\Windows\system32\rdrleakdiag.exe
2010-02-21 09:47:40 ----A---- C:\Windows\system32\RDPENCDD.dll
2010-02-21 09:47:39 ----A---- C:\Windows\system32\remotepg.dll
2010-02-21 09:47:39 ----A---- C:\Windows\system32\regini.exe
2010-02-21 09:47:38 ----A---- C:\Windows\system32\RegCtrl.dll
2010-02-21 09:47:38 ----A---- C:\Windows\system32\rasphone.exe
2010-02-21 09:47:38 ----A---- C:\Windows\system32\RASMM.dll
2010-02-21 09:47:38 ----A---- C:\Windows\regedit.exe
2010-02-21 09:47:37 ----A---- C:\Windows\system32\rasman.dll
2010-02-21 09:47:37 ----A---- C:\Windows\system32\raserver.exe
2010-02-21 09:47:36 ----A---- C:\Windows\system32\rdpdd.dll
2010-02-21 09:47:36 ----A---- C:\Windows\system32\rdpcfgex.dll
2010-02-21 09:47:36 ----A---- C:\Windows\system32\rasqec.dll
2010-02-21 09:47:35 ----A---- C:\Windows\system32\d3dim700.dll
2010-02-21 09:47:35 ----A---- C:\Windows\system32\d3dim.dll
2010-02-21 09:47:35 ----A---- C:\Windows\system32\d3d8.dll
2010-02-21 09:47:34 ----A---- C:\Windows\system32\devenum.dll
2010-02-21 09:47:33 ----A---- C:\Windows\system32\Defrag.exe
2010-02-21 09:47:33 ----A---- C:\Windows\system32\ddraw.dll
2010-02-21 09:47:33 ----A---- C:\Windows\system32\dbnetlib.dll
2010-02-21 09:47:33 ----A---- C:\Windows\system32\dbghelp.dll
2010-02-21 09:47:33 ----A---- C:\Windows\system32\d3dxof.dll
2010-02-21 09:47:33 ----A---- C:\Windows\system32\cryptnet.dll
2010-02-21 09:47:33 ----A---- C:\Windows\system32\credssp.dll
2010-02-21 09:47:32 ----A---- C:\Windows\system32\csrss.exe
2010-02-21 09:47:32 ----A---- C:\Windows\system32\cryptdll.dll
2010-02-21 09:47:31 ----A---- C:\Windows\system32\dinput8.dll
2010-02-21 09:47:31 ----A---- C:\Windows\system32\dimsjob.dll
2010-02-21 09:47:31 ----A---- C:\Windows\system32\csrsrv.dll
2010-02-21 09:47:30 ----A---- C:\Windows\system32\dispdiag.exe
2010-02-21 09:47:30 ----A---- C:\Windows\system32\dispci.dll
2010-02-21 09:47:30 ----A---- C:\Windows\system32\diantz.exe
2010-02-21 09:47:29 ----A---- C:\Windows\system32\dispex.dll
2010-02-21 09:47:28 ----A---- C:\Windows\system32\dfrgui.exe
2010-02-21 09:47:28 ----A---- C:\Windows\system32\DfrgNtfs.exe
2010-02-21 09:47:28 ----A---- C:\Windows\system32\dfrgifc.exe
2010-02-21 09:47:28 ----A---- C:\Windows\system32\dfrgfat.exe
2010-02-21 09:47:28 ----A---- C:\Windows\system32\DFDWiz.exe
2010-02-21 09:47:28 ----A---- C:\Windows\system32\dfdts.dll
2010-02-21 09:47:27 ----A---- C:\Windows\system32\dhcpsapi.dll
2010-02-21 09:47:27 ----A---- C:\Windows\system32\DHCPQEC.DLL
2010-02-21 09:47:27 ----A---- C:\Windows\system32\DfsShlEx.dll
2010-02-21 09:47:26 ----A---- C:\Windows\system32\cmlua.dll
2010-02-21 09:47:26 ----A---- C:\Windows\system32\cmd.exe
2010-02-21 09:47:26 ----A---- C:\Windows\system32\cmcfg32.dll
2010-02-21 09:47:26 ----A---- C:\Windows\system32\clusapi.dll
2010-02-21 09:47:25 ----A---- C:\Windows\system32\cmipnpinstall.dll
2010-02-21 09:47:25 ----A---- C:\Windows\system32\cmifw.dll
2010-02-21 09:47:25 ----A---- C:\Windows\system32\cmicryptinstall.dll
2010-02-21 09:47:25 ----A---- C:\Windows\system32\cmdl32.exe
2010-02-21 09:47:25 ----A---- C:\Windows\system32\cic.dll
2010-02-21 09:47:24 ----A---- C:\Windows\system32\clfsw32.dll
2010-02-21 09:47:24 ----A---- C:\Windows\system32\clbcatq.dll
2010-02-21 09:47:23 ----A---- C:\Windows\system32\comsnap.dll
2010-02-21 09:47:23 ----A---- C:\Windows\system32\comres.dll
2010-02-21 09:47:23 ----A---- C:\Windows\system32\comrepl.dll
2010-02-21 09:47:23 ----A---- C:\Windows\system32\ComputerDefaults.exe
2010-02-21 09:47:23 ----A---- C:\Windows\system32\compstui.dll
2010-02-21 09:47:23 ----A---- C:\Windows\system32\CompMgmtLauncher.exe
2010-02-21 09:47:23 ----A---- C:\Windows\system32\CompatUI.dll
2010-02-21 09:47:22 ----A---- C:\Windows\system32\convert.exe
2010-02-21 09:47:21 ----A---- C:\Windows\system32\consent.exe
2010-02-21 09:47:21 ----A---- C:\Windows\system32\colorui.dll
2010-02-21 09:47:21 ----A---- C:\Windows\system32\COLORCNV.DLL
2010-02-21 09:47:21 ----A---- C:\Windows\system32\colbact.dll
2010-02-21 09:47:21 ----A---- C:\Windows\system32\cofiredm.dll
2010-02-21 09:47:20 ----A---- C:\Windows\system32\cmutil.dll
2010-02-21 09:47:20 ----A---- C:\Windows\system32\cmstplua.dll
2010-02-21 09:47:20 ----A---- C:\Windows\system32\cmstp.exe
2010-02-21 09:47:20 ----A---- C:\Windows\system32\cmpbk32.dll
2010-02-21 09:47:19 ----A---- C:\Windows\system32\comctl32.dll
2010-02-21 09:47:18 ----A---- C:\Windows\system32\els.dll
2010-02-21 09:47:14 ----A---- C:\Windows\system32\esentutl.exe
2010-02-21 09:47:14 ----A---- C:\Windows\system32\esentprf.dll
2010-02-21 09:47:14 ----A---- C:\Windows\system32\EncDump.dll
2010-02-21 09:47:13 ----A---- C:\Windows\system32\efsadu.dll
2010-02-21 09:47:13 ----A---- C:\Windows\system32\eapsvc.dll
2010-02-21 09:47:13 ----A---- C:\Windows\system32\EAPQEC.DLL
2010-02-21 09:47:13 ----A---- C:\Windows\system32\eappprxy.dll
2010-02-21 09:47:11 ----A---- C:\Windows\system32\fmifs.dll
2010-02-21 09:47:11 ----A---- C:\Windows\system32\filemgmt.dll
2010-02-21 09:47:11 ----A---- C:\Windows\system32\fdPHost.dll
2010-02-21 09:47:11 ----A---- C:\Windows\system32\fde.dll
2010-02-21 09:47:10 ----A---- C:\Windows\system32\FirewallControlPanel.exe
2010-02-21 09:47:10 ----A---- C:\Windows\system32\FirewallAPI.dll
2010-02-21 09:47:10 ----A---- C:\Windows\system32\findnetprinters.dll
2010-02-21 09:47:09 ----A---- C:\Windows\system32\eventcls.dll
2010-02-21 09:47:08 ----A---- C:\Windows\system32\extrac32.exe
2010-02-21 09:47:08 ----A---- C:\Windows\system32\expand.exe
2010-02-21 09:47:07 ----A---- C:\Windows\system32\dot3ui.dll
2010-02-21 09:47:07 ----A---- C:\Windows\system32\dot3gpui.dll
2010-02-21 09:47:07 ----A---- C:\Windows\system32\dot3gpclnt.dll
2010-02-21 09:47:07 ----A---- C:\Windows\system32\dot3dlg.dll
2010-02-21 09:47:07 ----A---- C:\Windows\system32\dot3api.dll
2010-02-21 09:47:06 ----A---- C:\Windows\system32\driverquery.exe
2010-02-21 09:47:06 ----A---- C:\Windows\system32\dpx.dll
2010-02-21 09:47:06 ----A---- C:\Windows\system32\dps.dll
2010-02-21 09:47:06 ----A---- C:\Windows\system32\dpnet.dll
2010-02-21 09:47:06 ----A---- C:\Windows\system32\DpiScaling.exe
2010-02-21 09:47:06 ----A---- C:\Windows\system32\dmscript.dll
2010-02-21 09:47:06 ----A---- C:\Windows\system32\dmloader.dll
2010-02-21 09:47:06 ----A---- C:\Windows\system32\dmime.dll
2010-02-21 09:47:06 ----A---- C:\Windows\system32\dmdskres2.dll
2010-02-21 09:47:06 ----A---- C:\Windows\system32\dmdskmgr.dll
2010-02-21 09:47:05 ----A---- C:\Windows\system32\dnshc.dll
2010-02-21 09:47:05 ----A---- C:\Windows\system32\dmocx.dll
2010-02-21 09:47:05 ----A---- C:\Windows\system32\dmdlgs.dll
2010-02-21 09:47:04 ----A---- C:\Windows\system32\dnscacheugc.exe
2010-02-21 09:47:04 ----A---- C:\Windows\system32\dmvdsitf.dll
2010-02-21 09:47:04 ----A---- C:\Windows\system32\dmutil.dll
2010-02-21 09:47:03 ----A---- C:\Windows\system32\DWWIN.EXE
2010-02-21 09:47:02 ----A---- C:\Windows\system32\dwmredir.dll
2010-02-21 09:47:02 ----A---- C:\Windows\system32\dwmapi.dll
2010-02-21 09:47:01 ----A---- C:\Windows\system32\dxva2.dll
2010-02-21 09:47:01 ----A---- C:\Windows\system32\duser.dll
2010-02-21 09:47:01 ----A---- C:\Windows\system32\dsuiext.dll
2010-02-21 09:47:01 ----A---- C:\Windows\system32\dssenh.dll
2010-02-21 09:47:01 ----A---- C:\Windows\system32\dskquoui.dll
2010-02-21 09:47:01 ----A---- C:\Windows\system32\dskquota.dll
2010-02-21 09:47:01 ----A---- C:\Windows\system32\dsdmo.dll
2010-02-21 09:47:01 ----A---- C:\Windows\system32\dsauth.dll
2010-02-21 09:47:00 ----A---- C:\Windows\system32\dssec.dll
2010-02-21 09:47:00 ----A---- C:\Windows\system32\dsquery.dll
2010-02-21 09:47:00 ----A---- C:\Windows\system32\AudioEng.dll
2010-02-21 09:47:00 ----A---- C:\Windows\system32\audiodev.dll
2010-02-21 09:47:00 ----A---- C:\Windows\system32\AtBroker.exe
2010-02-21 09:47:00 ----A---- C:\Windows\system32\at.exe
2010-02-21 09:46:59 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2010-02-21 09:46:59 ----A---- C:\Windows\system32\AuthFWGP.dll
2010-02-21 09:46:59 ----A---- C:\Windows\system32\authfwcfg.dll
2010-02-21 09:46:59 ----A---- C:\Windows\system32\auditpol.exe
2010-02-21 09:46:59 ----A---- C:\Windows\system32\AUDIOKSE.dll
2010-02-21 09:46:56 ----A---- C:\Windows\system32\bcdedit.exe
2010-02-21 09:46:56 ----A---- C:\Windows\system32\batt.dll
2010-02-21 09:46:56 ----A---- C:\Windows\system32\basesrv.dll
2010-02-21 09:46:55 ----A---- C:\Windows\system32\bitsadmin.exe
2010-02-21 09:46:55 ----A---- C:\Windows\system32\bcdsrv.dll
2010-02-21 09:46:55 ----A---- C:\Windows\system32\bcdprov.dll
2010-02-21 09:46:55 ----A---- C:\Windows\system32\AuxiliaryDisplayApi.dll
2010-02-21 09:46:55 ----A---- C:\Windows\bfsvc.exe
2010-02-21 09:46:54 ----A---- C:\Windows\system32\AzSqlExt.dll
2010-02-21 09:46:54 ----A---- C:\Windows\system32\azroleui.dll
2010-02-21 09:46:53 ----A---- C:\Windows\system32\avrt.dll
2010-02-21 09:46:53 ----A---- C:\Windows\system32\ACW.exe
2010-02-21 09:46:53 ----A---- C:\Windows\system32\actxprxy.dll
2010-02-21 09:46:53 ----A---- C:\Windows\system32\activeds.dll
2010-02-21 09:46:53 ----A---- C:\Windows\system32\ActiveContentWizard.dll
2010-02-21 09:46:53 ----A---- C:\Windows\system32\ActionQueue.dll
2010-02-21 09:46:50 ----A---- C:\Windows\system32\aclui.dll
2010-02-21 09:46:48 ----A---- C:\Windows\system32\apircl.dll
2010-02-21 09:46:48 ----A---- C:\Windows\system32\apilogen.dll
2010-02-21 09:46:48 ----A---- C:\Windows\system32\amxread.dll
2010-02-21 09:46:48 ----A---- C:\Windows\system32\amstream.dll
2010-02-21 09:46:47 ----A---- C:\Windows\system32\apss.dll
2010-02-21 09:46:46 ----A---- C:\Windows\system32\appinfo.dll
2010-02-21 09:46:46 ----A---- C:\Windows\system32\adsnt.dll
2010-02-21 09:46:45 ----A---- C:\Windows\system32\alg.exe
2010-02-21 09:46:45 ----A---- C:\Windows\system32\adsldp.dll
2010-02-21 09:46:44 ----A---- C:\Windows\system32\catsrvut.dll
2010-02-21 09:46:44 ----A---- C:\Windows\system32\catsrv.dll
2010-02-21 09:46:44 ----A---- C:\Windows\system32\cacls.exe
2010-02-21 09:46:44 ----A---- C:\Windows\system32\cabview.dll
2010-02-21 09:46:44 ----A---- C:\Windows\system32\cabinet.dll
2010-02-21 09:46:44 ----A---- C:\Windows\system32\btpanui.dll
2010-02-21 09:46:43 ----A---- C:\Windows\system32\capisp.dll
2010-02-21 09:46:43 ----A---- C:\Windows\system32\BOOTVID.DLL
2010-02-21 09:46:43 ----A---- C:\Windows\system32\bootstr.dll
2010-02-21 09:46:42 ----A---- C:\Windows\system32\browser.dll
2010-02-21 09:46:42 ----A---- C:\Windows\system32\bridgeunattend.exe
2010-02-21 09:46:42 ----A---- C:\Windows\system32\brcplsdw.dll
2010-02-21 09:46:41 ----A---- C:\Windows\system32\CertEnrollCtrl.exe
2010-02-21 09:46:40 ----A---- C:\Windows\system32\cewmdm.dll
2010-02-21 09:46:39 ----A---- C:\Windows\system32\cfgmgr32.dll
2010-02-21 09:46:39 ----A---- C:\Windows\system32\cfgbkend.dll
2010-02-21 09:46:39 ----A---- C:\Windows\system32\cdosys.dll
2010-02-21 09:46:37 ----A---- C:\Windows\system32\bootcfg.exe
2010-02-21 09:46:20 ----A---- C:\Windows\system32\imagesp1.dll
2010-02-21 09:46:20 ----A---- C:\Windows\system32\imagehlp.dll
2010-02-21 09:46:19 ----A---- C:\Windows\system32\inetmib1.dll
2010-02-21 09:46:16 ----A---- C:\Windows\system32\InfDefaultInstall.exe
2010-02-21 09:46:12 ----A---- C:\Windows\system32\iashost.exe
2010-02-21 09:46:12 ----A---- C:\Windows\system32\ias.dll
2010-02-21 09:46:10 ----A---- C:\Windows\system32\icaapi.dll
2010-02-21 09:46:07 ----A---- C:\Windows\system32\ifsutil.dll
2010-02-21 09:46:05 ----A---- C:\Windows\system32\idndl.dll
2010-02-21 09:46:05 ----A---- C:\Windows\system32\icsunattend.exe
2010-02-21 09:46:05 ----A---- C:\Windows\system32\icsfiltr.dll
2010-02-21 09:46:05 ----A---- C:\Windows\system32\icm32.dll
2010-02-21 09:46:05 ----A---- C:\Windows\system32\icfupgd.dll
2010-02-21 09:46:05 ----A---- C:\Windows\system32\icacls.exe
2010-02-21 09:46:02 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2010-02-21 09:46:02 ----A---- C:\Windows\system32\hlink.dll
2010-02-21 09:46:01 ----A---- C:\Windows\system32\hnetmon.dll
2010-02-21 09:46:01 ----A---- C:\Windows\system32\hnetcfg.dll
2010-02-21 09:45:57 ----A---- C:\Windows\system32\fwcfg.dll
2010-02-21 09:45:57 ----A---- C:\Windows\system32\fsutil.exe
2010-02-21 09:45:57 ----A---- C:\Windows\system32\fsmgmt.msc
2010-02-21 09:45:57 ----A---- C:\Windows\system32\framedynos.dll
2010-02-21 09:45:57 ----A---- C:\Windows\system32\framedyn.dll
2010-02-21 09:45:57 ----A---- C:\Windows\system32\framebuf.dll
2010-02-21 09:45:57 ----A---- C:\Windows\system32\fphc.dll
2010-02-21 09:45:57 ----A---- C:\Windows\fveupdate.exe
2010-02-21 09:45:54 ----A---- C:\Windows\system32\hcrstco.dll
2010-02-21 09:45:53 ----A---- C:\Windows\system32\HelpPaneProxy.dll
2010-02-21 09:45:53 ----A---- C:\Windows\system32\GuidedHelp.dll
2010-02-21 09:45:52 ----A---- C:\Windows\system32\getmac.exe
2010-02-21 09:45:52 ----A---- C:\Windows\system32\gacinstall.dll
2010-02-21 09:45:52 ----A---- C:\Windows\HelpPane.exe
2010-02-21 09:45:51 ----A---- C:\Windows\system32\graftabl.com
2010-02-21 09:45:51 ----A---- C:\Windows\system32\gatherWiredInfo.vbs
2010-02-21 09:45:42 ----A---- C:\Windows\system32\WindowsAnytimeUpgrade.exe
2010-02-21 09:45:40 ----A---- C:\Windows\system32\wiadss.dll
2010-02-21 09:45:40 ----A---- C:\Windows\system32\wiadefui.dll
2010-02-21 09:45:40 ----A---- C:\Windows\system32\wiaacmgr.exe
2010-02-21 09:45:40 ----A---- C:\Windows\system32\wfapigp.dll
2010-02-21 09:45:40 ----A---- C:\Windows\system32\wevtfwd.dll
2010-02-21 09:45:38 ----A---- C:\Windows\system32\winusb.dll
2010-02-21 09:45:38 ----A---- C:\Windows\system32\wintrust.dll
2010-02-21 09:45:38 ----A---- C:\Windows\system32\winsta.dll
2010-02-21 09:45:38 ----A---- C:\Windows\system32\WINSRPC.DLL
2010-02-21 09:45:38 ----A---- C:\Windows\system32\wiashext.dll
2010-02-21 09:45:38 ----A---- C:\Windows\system32\wiascanprofiles.dll
2010-02-21 09:45:38 ----A---- C:\Windows\system32\wiarpc.dll
2010-02-21 09:45:37 ----A---- C:\Windows\system32\WLanConn.dll
2010-02-21 09:45:37 ----A---- C:\Windows\system32\wlancfg.dll
2010-02-21 09:45:37 ----A---- C:\Windows\system32\WinSATAPI.dll
2010-02-21 09:45:37 ----A---- C:\Windows\system32\winrsmgr.dll
2010-02-21 09:45:36 ----A---- C:\Windows\system32\wininit.exe
2010-02-21 09:45:36 ----A---- C:\Windows\system32\winethc.dll
2010-02-21 09:45:35 ----A---- C:\Windows\system32\winrshost.exe
2010-02-21 09:45:35 ----A---- C:\Windows\system32\winrscmd.dll
2010-02-21 09:45:35 ----A---- C:\Windows\system32\winrs.exe
2010-02-21 09:45:35 ----A---- C:\Windows\system32\winrm.vbs
2010-02-21 09:45:35 ----A---- C:\Windows\system32\winnsi.dll
2010-02-21 09:45:34 ----A---- C:\Windows\system32\wbemcomn.dll
2010-02-21 09:45:34 ----A---- C:\Windows\system32\wavemsp.dll
2010-02-21 09:45:34 ----A---- C:\Windows\system32\WavDest.dll
2010-02-21 09:45:34 ----A---- C:\Windows\system32\w32tm.exe
2010-02-21 09:45:33 ----A---- C:\Windows\system32\waitfor.exe
2010-02-21 09:45:33 ----A---- C:\Windows\system32\vsstrace.dll
2010-02-21 09:45:33 ----A---- C:\Windows\system32\vssadmin.exe
2010-02-21 09:45:33 ----A---- C:\Windows\system32\vss_ps.dll
2010-02-21 09:45:32 ----A---- C:\Windows\system32\wermgr.exe
2010-02-21 09:45:31 ----A---- C:\Windows\system32\werdiagcontroller.dll
2010-02-21 09:45:31 ----A---- C:\Windows\system32\wercplsupport.dll
2010-02-21 09:45:31 ----A---- C:\Windows\system32\wecutil.exe
2010-02-21 09:45:31 ----A---- C:\Windows\system32\wecsvc.dll
2010-02-21 09:45:31 ----A---- C:\Windows\system32\wecapi.dll
2010-02-21 09:45:30 ----A---- C:\Windows\system32\wdi.dll
2010-02-21 09:45:29 ----A---- C:\Windows\system32\wscproxystub.dll
2010-02-21 09:45:28 ----A---- C:\Windows\system32\wship6.dll
2010-02-21 09:45:28 ----A---- C:\Windows\system32\wshcon.dll
2010-02-21 09:45:28 ----A---- C:\Windows\system32\wsecedit.dll
2010-02-21 09:45:28 ----A---- C:\Windows\system32\wscmisetup.dll
2010-02-21 09:45:25 ----A---- C:\Windows\system32\Wpc.dll
2010-02-21 09:45:23 ----A---- C:\Windows\system32\ws2_32.dll
2010-02-21 09:45:23 ----A---- C:\Windows\system32\wpnpinst.exe
2010-02-21 09:45:23 ----A---- C:\Windows\system32\wpdwcn.dll
2010-02-21 09:45:23 ----A---- C:\Windows\system32\wpclsp.dll
2010-02-21 09:45:22 ----A---- C:\Windows\system32\xcopy.exe
2010-02-21 09:45:21 ----A---- C:\Windows\system32\XPSSHHDR.dll
2010-02-21 09:45:21 ----A---- C:\Windows\system32\xolehlp.dll
2010-02-21 09:45:21 ----A---- C:\Windows\system32\xmlprovi.dll
2010-02-21 09:45:21 ----A---- C:\Windows\system32\xmllite.dll
2010-02-21 09:45:21 ----A---- C:\Windows\system32\xactsrv.dll
2010-02-21 09:45:21 ----A---- C:\Windows\system32\wzcdlg.dll
2010-02-21 09:45:21 ----A---- C:\Windows\system32\wvc.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WUDFx.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WUDFSvc.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WUDFPlatform.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\wsqmcons.exe
2010-02-21 09:45:20 ----A---- C:\Windows\system32\wsock32.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WsmWmiPl.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WsmRes.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WsmProv.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WsmCl.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WsmAuto.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2010-02-21 09:45:20 ----A---- C:\Windows\system32\WSHTCPIP.DLL
2010-02-21 09:45:19 ----A---- C:\Windows\system32\xpssvcs.dll
2010-02-21 09:45:19 ----A---- C:\Windows\system32\WUDFHost.exe
2010-02-21 09:45:19 ----A---- C:\Windows\system32\wtsapi32.dll
2010-02-21 09:45:18 ----A---- C:\Windows\system32\xwizards.dll
2010-02-21 09:45:00 ----A---- C:\Windows\system32\wmidx.dll
2010-02-21 09:44:58 ----A---- C:\Windows\system32\WlanMmHC.dll
2010-02-21 09:44:58 ----A---- C:\Windows\system32\wlanext.exe
2010-02-21 09:44:57 ----A---- C:\Windows\system32\wmdrmdev.dll
2010-02-21 09:44:57 ----A---- C:\Windows\system32\WlanMM.dll
2010-02-21 09:44:57 ----A---- C:\Windows\system32\WLanHC.dll
2010-02-21 09:44:57 ----A---- C:\Windows\system32\wlandlg.dll
2010-02-21 09:44:56 ----A---- C:\Windows\system32\wmdrmnet.dll
2010-02-21 09:44:56 ----A---- C:\Windows\system32\WMASF.DLL
2010-02-21 09:44:56 ----A---- C:\Windows\system32\WMADMOE.DLL
2010-02-21 09:44:56 ----A---- C:\Windows\system32\WMADMOD.DLL
2010-02-21 09:44:55 ----A---- C:\Windows\system32\WMSPDMOE.DLL
2010-02-21 09:44:55 ----A---- C:\Windows\system32\wmpshell.dll
2010-02-21 09:44:54 ----A---- C:\Windows\system32\wmpsrcwp.dll
2010-02-21 09:44:52 ----A---- C:\Windows\system32\WMVSENCD.DLL
2010-02-21 09:44:47 ----A---- C:\Windows\system32\wmvdspa.dll
2010-02-21 09:44:46 ----A---- C:\Windows\system32\WMVDECOD.DLL
2010-02-21 09:44:45 ----A---- C:\Windows\system32\wmiprop.dll
2010-02-21 09:44:43 ----A---- C:\Windows\system32\WMPEncEn.dll
2010-02-21 09:44:41 ----A---- C:\Windows\system32\wmpcm.dll
2010-02-21 09:44:37 ----A---- C:\Windows\system32\systeminfo.exe
2010-02-21 09:44:36 ----A---- C:\Windows\system32\Tabbtn.dll
2010-02-21 09:44:27 ----A---- C:\Windows\system32\tbssvc.dll
2010-02-21 09:44:27 ----A---- C:\Windows\system32\tasklist.exe
2010-02-21 09:44:26 ----A---- C:\Windows\system32\tbs.dll
2010-02-21 09:44:26 ----A---- C:\Windows\system32\taskschd.dll
2010-02-21 09:44:26 ----A---- C:\Windows\system32\taskmgr.exe
2010-02-21 09:44:26 ----A---- C:\Windows\system32\taskkill.exe
2010-02-21 09:44:25 ----A---- C:\Windows\system32\tdh.dll
2010-02-21 09:44:25 ----A---- C:\Windows\system32\tcpmon.ini
2010-02-21 09:44:24 ----A---- C:\Windows\system32\tabcal.exe
2010-02-21 09:44:23 ----A---- C:\Windows\system32\TabbtnEx.dll
2010-02-21 09:44:21 ----A---- C:\Windows\system32\TapiMigPlugin.dll
2010-02-21 09:44:19 ----A---- C:\Windows\system32\takeown.exe
2010-02-21 09:44:19 ----A---- C:\Windows\system32\srclient.dll
2010-02-21 09:44:19 ----A---- C:\Windows\system32\sqmapi.dll
2010-02-21 09:44:18 ----A---- C:\Windows\system32\srrstr.dll
2010-02-21 09:44:18 ----A---- C:\Windows\system32\srdelayed.exe
2010-02-21 09:44:18 ----A---- C:\Windows\system32\sqlcese30.dll
2010-02-21 09:44:17 ----A---- C:\Windows\system32\sqlceqp30.dll
2010-02-21 09:44:16 ----A---- C:\Windows\system32\sstpsvc.dll
2010-02-21 09:44:16 ----A---- C:\Windows\system32\SSShim.dll
2010-02-21 09:44:16 ----A---- C:\Windows\system32\ssdpsrv.dll
2010-02-21 09:44:15 ----A---- C:\Windows\system32\srwmi.dll
2010-02-21 09:44:11 ----A---- C:\Windows\system32\SoundRecorder.exe
2010-02-21 09:44:10 ----A---- C:\Windows\system32\spwizeng.dll
2010-02-21 09:44:10 ----A---- C:\Windows\system32\spbcd.dll
2010-02-21 09:44:09 ----A---- C:\Windows\system32\spwizres.dll
2010-02-21 09:44:08 ----A---- C:\Windows\system32\syncui.dll
2010-02-21 09:44:08 ----A---- C:\Windows\system32\synceng.dll
2010-02-21 09:44:08 ----A---- C:\Windows\system32\spwizimg.dll
2010-02-21 09:44:08 ----A---- C:\Windows\system32\sppnp.dll
2010-02-21 09:44:08 ----A---- C:\Windows\system32\spopk.dll
2010-02-21 09:44:07 ----A---- C:\Windows\system32\SysFxUI.dll
2010-02-21 09:44:07 ----A---- C:\Windows\system32\sxstrace.exe
2010-02-21 09:44:06 ----A---- C:\Windows\system32\sxsstore.dll
2010-02-21 09:44:06 ----A---- C:\Windows\system32\sxs.dll
2010-02-21 09:44:04 ----A---- C:\Windows\system32\syskey.exe
2010-02-21 09:44:03 ----A---- C:\Windows\system32\syssetup.dll
2010-02-21 09:44:03 ----A---- C:\Windows\system32\sti_ci.dll
2010-02-21 09:44:01 ----A---- C:\Windows\system32\svchost.exe
2010-02-21 09:44:00 ----A---- C:\Windows\system32\usbperf.dll
2010-02-21 09:44:00 ----A---- C:\Windows\system32\usbmon.dll
2010-02-21 09:43:59 ----A---- C:\Windows\system32\userinit.exe
2010-02-21 09:43:59 ----A---- C:\Windows\system32\usbui.dll
2010-02-21 09:43:58 ----A---- C:\Windows\system32\upnphost.dll
2010-02-21 09:43:58 ----A---- C:\Windows\system32\upnpcont.exe
2010-02-21 09:43:58 ----A---- C:\Windows\system32\upnp.dll
2010-02-21 09:43:57 ----A---- C:\Windows\system32\xwtpw32.dll
2010-02-21 09:43:55 ----A---- C:\Windows\system32\vga64k.dll
2010-02-21 09:43:55 ----A---- C:\Windows\system32\vga256.dll
2010-02-21 09:43:55 ----A---- C:\Windows\system32\vga.dll
2010-02-21 09:43:54 ----A---- C:\Windows\system32\VIDRESZR.DLL
2010-02-21 09:43:53 ----A---- C:\Windows\system32\VAN.dll
2010-02-21 09:43:53 ----A---- C:\Windows\system32\uudf.dll
2010-02-21 09:43:53 ----A---- C:\Windows\system32\utildll.dll
2010-02-21 09:43:52 ----A---- C:\Windows\system32\vfwwdm32.dll
2010-02-21 09:43:52 ----A---- C:\Windows\system32\verifier.exe
2010-02-21 09:43:52 ----A---- C:\Windows\system32\verifier.dll
2010-02-21 09:43:52 ----A---- C:\Windows\system32\vds_ps.dll
2010-02-21 09:43:52 ----A---- C:\Windows\system32\uxtheme.dll
2010-02-21 09:43:51 ----A---- C:\Windows\system32\vdsldr.exe
2010-02-21 09:43:51 ----A---- C:\Windows\system32\vdsbas.dll
2010-02-21 09:43:51 ----A---- C:\Windows\system32\vdmredir.dll
2010-02-21 09:43:51 ----A---- C:\Windows\system32\trkwks.dll
2010-02-21 09:43:51 ----A---- C:\Windows\system32\tracerpt.exe
2010-02-21 09:43:50 ----A---- C:\Windows\system32\TpmInit.exe
2010-02-21 09:43:50 ----A---- C:\Windows\system32\TMM.dll
2010-02-21 09:43:49 ----A---- C:\Windows\system32\TSpkg.dll
2010-02-21 09:43:48 ----A---- C:\Windows\system32\tsddd.dll
2010-02-21 09:43:48 ----A---- C:\Windows\system32\termmgr.dll
2010-02-21 09:43:47 ----A---- C:\Windows\system32\TimeDateMUICallback.dll
2010-02-21 09:43:46 ----A---- C:\Windows\system32\thumbcache.dll
2010-02-21 09:43:45 ----A---- C:\Windows\system32\umb.dll
2010-02-21 09:43:42 ----A---- C:\Windows\system32\UIHub.dll
2010-02-21 09:43:41 ----A---- C:\Windows\system32\unlodctr.exe
2010-02-21 09:43:36 ----A---- C:\Windows\system32\unbcl.dll
2010-02-21 09:43:36 ----A---- C:\Windows\system32\unattendedjoin.exe
2010-02-21 09:43:36 ----A---- C:\Windows\system32\unattend.dll
2010-02-21 09:43:35 ----A---- C:\Windows\system32\ucsvc.exe
2010-02-21 09:43:35 ----A---- C:\Windows\system32\txfw32.dll
2010-02-21 09:43:34 ----A---- C:\Windows\system32\txflog.dll
2010-02-21 09:43:33 ----A---- C:\Windows\system32\ufat.dll
2010-02-21 09:43:33 ----A---- C:\Windows\system32\uexfat.dll
2010-02-21 09:43:31 ----A---- C:\Windows\system32\UI0Detect.exe
2010-02-20 21:49:41 ----A---- C:\Windows\system32\wmpdxm.dll
2010-02-20 21:49:37 ----A---- C:\Windows\system32\spwmp.dll
2010-02-20 21:49:34 ----A---- C:\Windows\system32\dxmasf.dll
2010-02-20 19:39:33 ----D---- C:\Program Files\Nero
2010-02-20 19:39:33 ----D---- C:\Program Files\Common Files\Ahead
2010-02-20 17:26:41 ----D---- C:\Program Files\Mozilla Firefox
2010-02-20 14:08:32 ----D---- C:\Users\Elena\AppData\Roaming\Skype
2010-02-20 14:08:18 ----D---- C:\Program Files\Common Files\Skype
2010-02-20 14:08:11 ----RD---- C:\Program Files\Skype
2010-02-20 09:56:14 ----D---- C:\Users\Elena\AppData\Roaming\OpenOffice.org
2010-02-20 09:51:55 ----D---- C:\Program Files\OpenOffice.org 3
2010-02-11 00:40:34 ----A---- C:\Windows\system32\t2embed.dll
2010-02-11 00:40:34 ----A---- C:\Windows\system32\lpk.dll
2010-02-11 00:40:34 ----A---- C:\Windows\system32\fontsub.dll
2010-02-11 00:40:34 ----A---- C:\Windows\system32\dciman32.dll
2010-02-11 00:40:34 ----A---- C:\Windows\system32\atmlib.dll
2010-02-11 00:40:34 ----A---- C:\Windows\system32\atmfd.dll
2010-02-11 00:32:21 ----A---- C:\Windows\system32\winipsec.dll
2010-02-11 00:32:20 ----A---- C:\Windows\system32\polstore.dll
2010-02-11 00:29:05 ----A---- C:\Windows\system32\netevent.dll
2010-02-11 00:29:04 ----A---- C:\Windows\system32\TCPSVCS.EXE
2010-02-11 00:29:04 ----A---- C:\Windows\system32\MRINFO.EXE
2010-02-11 00:29:03 ----A---- C:\Windows\system32\netiohlp.dll
2010-02-11 00:29:03 ----A---- C:\Windows\system32\HOSTNAME.EXE
2010-02-11 00:29:02 ----A---- C:\Windows\system32\finger.exe
2010-02-11 00:29:01 ----A---- C:\Windows\system32\NETSTAT.EXE
2010-02-11 00:29:00 ----A---- C:\Windows\system32\ROUTE.EXE
2010-02-11 00:29:00 ----A---- C:\Windows\system32\ARP.EXE
2010-02-11 00:26:36 ----A---- C:\Windows\system32\L2SecHC.dll
2010-02-11 00:26:34 ----A---- C:\Windows\system32\wlansvc.dll
2010-02-11 00:26:34 ----A---- C:\Windows\system32\wlansec.dll
2010-02-11 00:26:34 ----A---- C:\Windows\system32\wlanmsm.dll
2010-02-11 00:26:34 ----A---- C:\Windows\system32\wlanhlp.dll
2010-02-11 00:26:34 ----A---- C:\Windows\system32\wlanapi.dll
2010-02-11 00:25:04 ----A---- C:\Windows\system32\msxml3.dll
2010-02-11 00:25:02 ----A---- C:\Windows\system32\msxml6.dll
2010-02-11 00:25:00 ----A---- C:\Windows\system32\msxml3r.dll
2010-02-11 00:24:59 ----A---- C:\Windows\system32\msxml6r.dll
2010-02-11 00:23:28 ----A---- C:\Windows\system32\wdigest.dll
2010-02-11 00:23:28 ----A---- C:\Windows\system32\msv1_0.dll
2010-02-11 00:23:27 ----A---- C:\Windows\system32\secur32.dll
2010-02-11 00:23:26 ----A---- C:\Windows\system32\lsass.exe
2010-02-11 00:23:26 ----A---- C:\Windows\system32\lsasrv.dll
2010-02-11 00:21:58 ----A---- C:\Windows\system32\mfps.dll
2010-02-11 00:21:58 ----A---- C:\Windows\system32\mf.dll
2010-02-11 00:21:57 ----A---- C:\Windows\system32\rrinstaller.exe
2010-02-11 00:21:57 ----A---- C:\Windows\system32\mferror.dll
2010-02-11 00:21:56 ----A---- C:\Windows\system32\mfpmp.exe
2010-02-11 00:21:53 ----A---- C:\Windows\system32\WMVCORE.DLL
2010-02-11 00:20:20 ----A---- C:\Windows\system32\tzres.dll
2010-02-11 00:14:41 ----A---- C:\Windows\system32\atl.dll
2010-02-11 00:08:54 ----A---- C:\Windows\system32\wkssvc.dll
2010-02-11 00:07:34 ----A---- C:\Windows\system32\tsgqec.dll
2010-02-11 00:07:34 ----A---- C:\Windows\system32\mstscax.dll
2010-02-11 00:07:34 ----A---- C:\Windows\system32\aaclient.dll
2010-02-10 23:13:04 ----A---- C:\Windows\system32\netfxperf.dll
2010-02-10 22:53:33 ----A---- C:\Windows\system32\INETRES.dll
2010-02-10 22:53:18 ----A---- C:\Windows\system32\msasn1.dll
2010-02-10 22:53:05 ----A---- C:\Windows\system32\rpcrt4.dll
2010-02-10 22:52:09 ----A---- C:\Windows\system32\rastls.dll
2010-02-10 22:51:55 ----A---- C:\Windows\system32\WSDApi.dll
2010-02-10 22:50:42 ----A---- C:\Windows\system32\msvfw32.dll
2010-02-10 22:50:42 ----A---- C:\Windows\system32\avicap32.dll
2010-02-10 22:50:41 ----A---- C:\Windows\system32\msvidc32.dll
2010-02-10 22:50:41 ----A---- C:\Windows\system32\msrle32.dll
2010-02-10 22:50:41 ----A---- C:\Windows\system32\mciavi32.dll
2010-02-10 22:50:41 ----A---- C:\Windows\system32\avifil32.dll
2010-02-10 22:50:39 ----A---- C:\Windows\system32\quartz.dll
2010-02-10 22:50:39 ----A---- C:\Windows\system32\msyuv.dll
2010-02-10 22:50:38 ----A---- C:\Windows\system32\tsbyuv.dll
2010-02-10 22:50:38 ----A---- C:\Windows\system32\iyuv_32.dll
2010-02-10 22:50:00 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2010-02-10 22:25:26 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-02-10 22:25:24 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-02-10 22:16:54 ----A---- C:\Windows\system32\localspl.dll
2010-02-10 19:04:10 ----D---- C:\Users\Elena\AppData\Roaming\ESET
2010-02-10 19:02:24 ----D---- C:\ProgramData\ESET
2010-02-10 19:02:24 ----D---- C:\Program Files\ESET
2010-02-06 14:16:40 ----A---- C:\Windows\pro.INI
2010-02-06 14:15:49 ----D---- C:\Users\Elena\AppData\Roaming\Mra
======List of files/folders modified in the last 1 months======
2010-02-26 08:35:18 ----D---- C:\Windows
2010-02-24 22:53:22 ----D---- C:\Windows\System32
2010-02-24 22:53:21 ----D---- C:\Windows\inf
2010-02-24 22:53:21 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-02-24 22:46:23 ----D---- C:\Windows\system32\catroot2
2010-02-23 22:39:59 ----D---- C:\Windows\Minidump
2010-02-23 21:36:16 ----D---- C:\Users\Elena\AppData\Roaming\skypePM
2010-02-22 22:03:45 ----A---- C:\Windows\system.ini
2010-02-22 22:02:21 ----RD---- C:\Program Files
2010-02-22 21:57:48 ----D---- C:\Windows\system32\drivers
2010-02-22 21:57:48 ----D---- C:\Windows\AppPatch
2010-02-22 21:57:45 ----D---- C:\Program Files\Common Files
2010-02-22 18:44:17 ----D---- C:\Windows\Debug
2010-02-21 22:49:59 ----D---- C:\Windows\rescache
2010-02-21 22:33:49 ----D---- C:\Windows\system32\Tasks
2010-02-21 22:30:44 ----D---- C:\Windows\system32\en-US
2010-02-21 22:30:39 ----D---- C:\Windows\system32\wbem
2010-02-21 22:30:37 ----D---- C:\Windows\system32\zh-TW
2010-02-21 22:30:37 ----D---- C:\Windows\system32\zh-HK
2010-02-21 22:30:37 ----D---- C:\Windows\system32\zh-CN
2010-02-21 22:30:37 ----D---- C:\Windows\system32\uk-UA
2010-02-21 22:30:37 ----D---- C:\Windows\system32\tr-TR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\th-TH
2010-02-21 22:30:37 ----D---- C:\Windows\system32\sv-SE
2010-02-21 22:30:37 ----D---- C:\Windows\system32\sr-Latn-CS
2010-02-21 22:30:37 ----D---- C:\Windows\system32\sl-SI
2010-02-21 22:30:37 ----D---- C:\Windows\system32\sk-SK
2010-02-21 22:30:37 ----D---- C:\Windows\system32\ru-RU
2010-02-21 22:30:37 ----D---- C:\Windows\system32\ro-RO
2010-02-21 22:30:37 ----D---- C:\Windows\system32\pt-PT
2010-02-21 22:30:37 ----D---- C:\Windows\system32\pt-BR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\pl-PL
2010-02-21 22:30:37 ----D---- C:\Windows\system32\nl-NL
2010-02-21 22:30:37 ----D---- C:\Windows\system32\nb-NO
2010-02-21 22:30:37 ----D---- C:\Windows\system32\lv-LV
2010-02-21 22:30:37 ----D---- C:\Windows\system32\lt-LT
2010-02-21 22:30:37 ----D---- C:\Windows\system32\ko-KR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\ja-JP
2010-02-21 22:30:37 ----D---- C:\Windows\system32\it-IT
2010-02-21 22:30:37 ----D---- C:\Windows\system32\hu-HU
2010-02-21 22:30:37 ----D---- C:\Windows\system32\hr-HR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\he-IL
2010-02-21 22:30:37 ----D---- C:\Windows\system32\fr-FR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\fi-FI
2010-02-21 22:30:37 ----D---- C:\Windows\system32\et-EE
2010-02-21 22:30:37 ----D---- C:\Windows\system32\es-ES
2010-02-21 22:30:37 ----D---- C:\Windows\system32\el-GR
2010-02-21 22:30:37 ----D---- C:\Windows\system32\de-DE
2010-02-21 22:30:37 ----D---- C:\Windows\system32\da-DK
2010-02-21 22:30:37 ----D---- C:\Windows\system32\cs-CZ
2010-02-21 22:30:37 ----D---- C:\Windows\system32\bg-BG
2010-02-21 22:30:37 ----D---- C:\Windows\system32\ar-SA
2010-02-21 22:27:53 ----D---- C:\Windows\winsxs
2010-02-21 22:27:32 ----D---- C:\Windows\system32\catroot
2010-02-21 22:23:17 ----D---- C:\Program Files\Windows Mail
2010-02-21 22:23:01 ----D---- C:\System Volume Information
2010-02-21 21:55:25 ----D---- C:\ProgramData
2010-02-21 21:55:20 ----SD---- C:\Windows\Downloaded Program Files
2010-02-21 21:50:30 ----D---- C:\Program Files\Windows Media Player
2010-02-21 21:44:18 ----D---- C:\Program Files\CONEXANT
2010-02-21 20:11:52 ----RSD---- C:\Windows\assembly
2010-02-21 20:05:29 ----D---- C:\Windows\Microsoft.NET
2010-02-21 20:00:14 ----SHD---- C:\Windows\Installer
2010-02-21 18:39:04 ----D---- C:\Windows\system32\migration
2010-02-21 18:39:04 ----D---- C:\Program Files\Internet Explorer
2010-02-21 18:38:50 ----D---- C:\Windows\PolicyDefinitions
2010-02-21 15:01:25 ----D---- C:\Windows\system32\WDI
2010-02-21 13:54:47 ----D---- C:\Boot
2010-02-21 13:46:34 ----D---- C:\Program Files\Windows Sidebar
2010-02-21 13:46:34 ----D---- C:\Program Files\Windows Collaboration
2010-02-21 13:46:34 ----D---- C:\Program Files\Windows Calendar
2010-02-21 13:46:34 ----D---- C:\Program Files\Movie Maker
2010-02-21 13:46:33 ----D---- C:\Program Files\Windows Photo Gallery
2010-02-21 13:46:33 ----D---- C:\Program Files\Common Files\System
2010-02-21 13:46:32 ----D---- C:\Windows\servicing
2010-02-21 13:46:32 ----D---- C:\Program Files\Windows Defender
2010-02-21 13:46:30 ----D---- C:\Windows\IME
2010-02-21 13:46:29 ----D---- C:\Windows\system32\XPSViewer
2010-02-21 13:46:26 ----D---- C:\Windows\system32\oobe
2010-02-21 13:46:25 ----D---- C:\Windows\system32\AdvancedInstallers
2010-02-21 13:46:24 ----D---- C:\Windows\system32\SLUI
2010-02-21 13:46:24 ----D---- C:\Windows\system32\setup
2010-02-21 13:46:23 ----D---- C:\Windows\system32\manifeststore
2010-02-21 13:46:23 ----D---- C:\Windows\system32\en
2010-02-21 13:46:21 ----D---- C:\Windows\system32\migwiz
2010-02-21 13:46:00 ----RSD---- C:\Windows\Fonts
2010-02-21 13:45:53 ----D---- C:\Windows\system32\Boot
2010-02-21 12:43:17 ----ASH---- C:\Program Files\desktop.ini
2010-02-21 12:29:52 ----D---- C:\Windows\MSAgent
2010-02-21 12:29:50 ----D---- C:\Windows\L2Schemas
2010-02-21 12:29:50 ----D---- C:\Windows\DigitalLocker
2010-02-21 12:29:43 ----D---- C:\Windows\system32\com
2010-02-21 12:29:22 ----D---- C:\Windows\system32\sysprep
2010-02-21 12:29:14 ----D---- C:\Windows\system32\ias
2010-02-21 12:29:13 ----D---- C:\Windows\system32\ras
2010-02-21 12:29:09 ----D---- C:\Windows\system32\icsxml
2010-02-21 12:26:06 ----D---- C:\Windows\Boot
2010-02-21 11:57:36 ----A---- C:\Windows\system32\ifxcardm.dll
2010-02-21 11:57:17 ----A---- C:\Windows\system32\axaltocm.dll
2010-02-20 22:09:19 ----HD---- C:\Program Files\InstallShield Installation Information
2010-02-20 22:07:44 ----D---- C:\Windows\PAC207
2010-02-20 22:07:44 ----A---- C:\Windows\win.ini
2010-02-20 22:07:01 ----D---- C:\Windows\twain_32
2010-02-20 17:27:13 ----D---- C:\Users\Elena\AppData\Roaming\Mozilla
2010-02-20 16:50:35 ----D---- C:\Program Files\nLite
2010-02-20 14:08:10 ----D---- C:\ProgramData\Skype
2010-02-10 22:52:26 ----D---- C:\Windows\Prefetch
2010-02-09 20:59:11 ----D---- C:\Windows\Tasks
2010-02-08 21:54:33 ----D---- C:\Program Files\Common Files\InstallShield
2010-02-08 21:51:09 ----D---- C:\Users\Elena\AppData\Roaming\GHISLER
2010-02-07 21:30:01 ----D---- C:\ProgramData\BVRP Software
2010-02-06 09:42:25 ----D---- C:\ProgramData\Microsoft Help
2010-02-06 09:41:46 ----SD---- C:\ProgramData\Microsoft
2010-02-06 09:41:46 ----D---- C:\Program Files\Common Files\microsoft shared
2010-02-06 09:41:45 ----SD---- C:\Users\Elena\AppData\Roaming\Microsoft
2010-02-06 09:41:40 ----D---- C:\Program Files\Microsoft Works
2010-02-06 09:39:48 ----D---- C:\Program Files\MSBuild
2010-02-06 09:27:31 ----D---- C:\Windows\system32\screensaver dir
2010-02-01 11:26:22 ----A---- C:\Windows\system32\mrt.exe
Re: Prosím kontrolu logu
... a tady 3. část... díky moc
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2009-11-16 108792]
R1 epfwtdi;epfwtdi; C:\Windows\system32\DRIVERS\epfwtdi.sys [2009-11-16 55768]
R2 eamon;eamon; C:\Windows\system32\DRIVERS\eamon.sys [2009-11-16 116520]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2009-12-18 135048]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2006-11-15 32256]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2006-11-15 43520]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2006-11-15 37376]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2006-08-04 8192]
R3 Afc;PPdus ASPI Shell; C:\Windows\system32\drivers\Afc.sys [2005-02-23 11776]
R3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-10 22528]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-18 92160]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-10 29696]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-18 14208]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT32.sys [2008-03-04 188416]
R3 E100B;Intel(R) PRO Adapter Driver; C:\Windows\system32\DRIVERS\e100b325.sys [2008-01-18 159744]
R3 Epfwndis;Eset Personal Firewall; C:\Windows\system32\DRIVERS\Epfwndis.sys [2010-01-08 33096]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2006-10-18 986624]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2006-10-18 206848]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-02-11 2302976]
R3 NETw3v32;Intel(R) PRO/Wireless 3945ABG Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw3v32.sys [2006-10-30 1786880]
R3 qkbfiltr;Quanta Keyboard Filter Driver; C:\Windows\system32\DRIVERS\qkbfiltr.sys [2006-08-17 33664]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-10 148992]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-10 89088]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2006-10-28 179896]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2006-10-18 659968]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2006-11-02 167936]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-04-10 507904]
S3 catchme;catchme; \??\C:\Users\Elena\AppData\Local\Temp\catchme.sys []
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632]
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2006-11-01 145920]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-02-11 2302976]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016]
S3 SANDRA;SANDRA; \??\C:\Program Files\SiSoftware\SiSoftware Sandra Lite XII.SP2c\WNt500x86\Sandra.sys []
S3 UIUSys;Conexant Setup API; C:\Windows\system32\DRIVERS\UIUSYS.SYS []
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-18 83328]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-18 21504]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-11-16 735960]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2006-09-29 81920]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-20 322120]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2006-08-04 386560]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-11-16 20680]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-18 21504]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe []
-----------------EOF-----------------
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2009-11-16 108792]
R1 epfwtdi;epfwtdi; C:\Windows\system32\DRIVERS\epfwtdi.sys [2009-11-16 55768]
R2 eamon;eamon; C:\Windows\system32\DRIVERS\eamon.sys [2009-11-16 116520]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2009-12-18 135048]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2006-11-15 32256]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2006-11-15 43520]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2006-11-15 37376]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2006-08-04 8192]
R3 Afc;PPdus ASPI Shell; C:\Windows\system32\drivers\Afc.sys [2005-02-23 11776]
R3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-10 22528]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-18 92160]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-10 29696]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-18 14208]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT32.sys [2008-03-04 188416]
R3 E100B;Intel(R) PRO Adapter Driver; C:\Windows\system32\DRIVERS\e100b325.sys [2008-01-18 159744]
R3 Epfwndis;Eset Personal Firewall; C:\Windows\system32\DRIVERS\Epfwndis.sys [2010-01-08 33096]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2006-10-18 986624]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2006-10-18 206848]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-02-11 2302976]
R3 NETw3v32;Intel(R) PRO/Wireless 3945ABG Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw3v32.sys [2006-10-30 1786880]
R3 qkbfiltr;Quanta Keyboard Filter Driver; C:\Windows\system32\DRIVERS\qkbfiltr.sys [2006-08-17 33664]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-10 148992]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-10 89088]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2006-10-28 179896]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2006-10-18 659968]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2006-11-02 167936]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-04-10 507904]
S3 catchme;catchme; \??\C:\Users\Elena\AppData\Local\Temp\catchme.sys []
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632]
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2006-11-01 145920]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-02-11 2302976]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016]
S3 SANDRA;SANDRA; \??\C:\Program Files\SiSoftware\SiSoftware Sandra Lite XII.SP2c\WNt500x86\Sandra.sys []
S3 UIUSys;Conexant Setup API; C:\Windows\system32\DRIVERS\UIUSYS.SYS []
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-18 83328]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-18 21504]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-11-16 735960]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2006-09-29 81920]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-20 322120]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2006-08-04 386560]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-11-16 20680]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-18 21504]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe []
-----------------EOF-----------------
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Prosím kontrolu logu

Start >> Spustit, zkopírujte do okénka:
ComboFix /Uninstall
stiskněte Enter

http://sweb.cz/Marinus/T-Cleaner.exe
- Spusťte, pro potvrzení volby mačkejte klávesu A, Enter
- Po použití program vymažte. Pozor,antiviry ho mohou falešně označit za vir.

- Spusťte.
- Klikněte na "CleanUp!". Potvrďte hlášky stiskem "Yes" (Bude následovat restart)
Stáhněte Ccleaner http://viry.cz/forum/viewtopic.php?t=7478
- Nainstalujte a v průběhu instalace odškrtněte, že chcete instalovat yahoo toolbar.
Záložka Čistič
- Dejte analyzovat, po dokončení dejte Spustit Ccleaner.
Záložka Registry
- Klikněte na Hledej problémy, po dokončení klikněte na Opravit problémy, zálohu dělat nemusíte, potom dejte Opravit všechny problémy.
OK
Zavřít


Re: Prosím kontrolu logu
Dík... proved jsem to podle návodu. Rychlost se nepatrně zvýšila... ale hlavně mám lepší pocit, že se na to někdo mrk... i když jistotu asi člověk nebude mít nikdy...Tak díky ještě jednou
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele: