Nevzpomínám si. Myslím, že ne. Od doby co mám nový pc ne.motji píše:Tyto složky se mi nezdají, dělal přeinstalovával jste ted někdy ovladače na grafiku ATI?
c:\users\User\AppData\Local\AMD
c:\programdata\AMD
c:\users\Default\AppData\Roaming\ATI
c:\users\Default\AppData\Local\ATI

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
vir z Facebooku
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
- MaximusBrutus
- Návštěvník
- Příspěvky: 57
- Registrován: 18 črc 2011 22:11
- Bydliště: Vyškov
Re: vir z Facebooku
Největší potěšení pro muže je svlékat ženu a oblékat ragbyový dres.
Mrtvý nepřítel vždy voní krásně.", Alus Vitellus
Kdo si přeje mír, ať připravuje válku, Vegetius Renatus
Fotbal je hra gentlemanů, kterou hrají barbaři a ragby je hra barbarů, kterou hrají gentlemani - Oscar Wilde
Per Aspera ad Astra !
Mrtvý nepřítel vždy voní krásně.", Alus Vitellus
Kdo si přeje mír, ať připravuje válku, Vegetius Renatus
Fotbal je hra gentlemanů, kterou hrají barbaři a ragby je hra barbarů, kterou hrají gentlemani - Oscar Wilde
Per Aspera ad Astra !
Re: vir z Facebooku

-do bílého okna dole skopírujte tento skript:
Kód: Vybrat vše
:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
[2011.07.19 08:20:58 | 000,014,448 | -H-- | M] () -- C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011.07.19 08:20:58 | 000,014,448 | -H-- | M] () -- C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011.07.19 22:21:33 | 000,122,708 | ---- | M] () -- C:\Windows\system32\perfc005.dat
[2011.07.19 22:21:33 | 000,107,190 | ---- | M] () -- C:\Windows\system32\perfc009.dat
[2011.07.19 22:21:33 | 000,633,154 | ---- | M] () -- C:\Windows\system32\perfh005.dat
[2011.07.19 22:21:33 | 000,617,910 | ---- | M] () -- C:\Windows\system32\perfh009.dat
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4FE6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
O3 - HKLM\..\Toolbar: (@C:\Program Files\MSN Toolbar\Platform\6.3.2348.0\npwinext.dll,-100) - {8dcb7100-df86-4384-8842-8fa844297b3f} - File not found
O2 - BHO: (Bing Bar BHO) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - File not found
O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
:files
C:\Program Files\Ask.com
C:\WINDOWS\system32\*.tmp.dll /s
C:\WINDOWS\system32\SET*.tmp /s
C:\WINDOWS\*.tmp /s
C:\Users\User\AppData\Roaming\0AF8.24C
C:\ProgramData\ezsidmv.dat
c:\users\User\AppData\Local\AMD
c:\programdata\AMD
c:\users\Default\AppData\Roaming\ATI
c:\users\Default\AppData\Local\ATI
:commands
[resethosts]
[emptytemp]
[EMPTYFLASH]
[Reboot]
-klikněte na tlačítko opravit.
-Následně se pc restartuje.
- Log vložte zde

Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
- MaximusBrutus
- Návštěvník
- Příspěvky: 57
- Registrován: 18 črc 2011 22:11
- Bydliště: Vyškov
Re: vir z Facebooku
log z OTL po restartu pc
All processes killed
========== OTL ==========
No active process named explorer.exe was found!
C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 moved successfully.
C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 moved successfully.
C:\Windows\System32\perfc005.dat moved successfully.
C:\Windows\System32\perfc009.dat moved successfully.
C:\Windows\System32\perfh005.dat moved successfully.
C:\Windows\System32\perfh009.dat moved successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
C:\Program Files\Ask.com\GenericAskToolbar.dll moved successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{855F3B16-6D32-4FE6-8A56-BBB695989046} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4FE6-8A56-BBB695989046}\ deleted successfully.
C:\Program Files\ICQ6Toolbar\ICQToolBar.dll moved successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
File C:\Program Files\Ask.com\GenericAskToolbar.dll not found.
========== FILES ==========
C:\Program Files\Ask.com\assets\oobe folder moved successfully.
C:\Program Files\Ask.com\assets folder moved successfully.
C:\Program Files\Ask.com folder moved successfully.
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
C:\WINDOWS\1C4551A64743409391E41477CD655043.TMP folder moved successfully.
C:\WINDOWS\74224F8D4A1748169EDB7BB854DE532C.TMP folder moved successfully.
C:\WINDOWS\E10DB5DAE57640EAA7FC1CB2A7B283A6.TMP folder moved successfully.
C:\WINDOWS\msdownld.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP4EAA.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5E64.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP8545.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAPE149.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAPEBA6.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAPEF3E.tmp folder moved successfully.
C:\WINDOWS\Installer\MSI7DC.tmp moved successfully.
C:\WINDOWS\SoftwareDistribution\Download\dc5785e9c8b3c9af476ade166b57dd6e\BITEDEE.tmp moved successfully.
C:\WINDOWS\SoftwareDistribution\Download\f1172ec065789780f3e853c2a63ff94c\BITF070.tmp moved successfully.
C:\WINDOWS\System32\tmp6B78.tmp moved successfully.
C:\WINDOWS\System32\tmp85A6.tmp moved successfully.
C:\WINDOWS\System32\tmp85B7.tmp moved successfully.
C:\WINDOWS\System32\tmp8C0B.tmp moved successfully.
C:\WINDOWS\System32\tmpA824.tmp moved successfully.
C:\WINDOWS\System32\tmpA835.tmp moved successfully.
C:\WINDOWS\System32\tmpBC7E.tmp moved successfully.
C:\WINDOWS\System32\tmpBC7F.tmp moved successfully.
C:\WINDOWS\System32\tmpBE42.tmp moved successfully.
C:\WINDOWS\System32\tmpBE43.tmp moved successfully.
C:\WINDOWS\System32\tmpC8C4.tmp moved successfully.
C:\WINDOWS\System32\tmpDFD6.tmp moved successfully.
C:\WINDOWS\System32\tmpDFE6.tmp moved successfully.
C:\WINDOWS\System32\tmpEE59.tmp moved successfully.
File move failed. C:\WINDOWS\System32\DriverStore\FileRepository\hposcu08.inf_x86_neutral_6b02d39ff7213a85\drivers\scanner\hpqgends.tmp scheduled to be moved on reboot.
C:\Users\User\AppData\Roaming\0AF8.24C moved successfully.
C:\ProgramData\ezsidmv.dat moved successfully.
c:\users\User\AppData\Local\AMD\Fuel folder moved successfully.
c:\users\User\AppData\Local\AMD folder moved successfully.
c:\programdata\AMD\Fuel\Profiles folder moved successfully.
c:\programdata\AMD\Fuel folder moved successfully.
c:\programdata\AMD folder moved successfully.
c:\users\Default\AppData\Roaming\ATI\ACE folder moved successfully.
c:\users\Default\AppData\Roaming\ATI folder moved successfully.
c:\users\Default\AppData\Local\ATI\ACE folder moved successfully.
c:\users\Default\AppData\Local\ATI folder moved successfully.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 402 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Public
->Temp folder emptied: 0 bytes
User: User
->Temp folder emptied: 1443088 bytes
->Temporary Internet Files folder emptied: 5300068 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 9515092 bytes
->Google Chrome cache emptied: 33010582 bytes
->Flash cache emptied: 25802 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 10748 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 47,00 mb
[EMPTYFLASH]
User: All Users
User: Default
User: Default User
User: Public
User: User
->Flash cache emptied: 0 bytes
Total Flash Files Cleaned = 0,00 mb
OTL by OldTimer - Version 3.2.26.1 log created on 07202011_143559
Files\Folders moved on Reboot...
File move failed. C:\WINDOWS\System32\DriverStore\FileRepository\hposcu08.inf_x86_neutral_6b02d39ff7213a85\drivers\scanner\hpqgends.tmp scheduled to be moved on reboot.
Registry entries deleted on Reboot...
All processes killed
========== OTL ==========
No active process named explorer.exe was found!
C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 moved successfully.
C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 moved successfully.
C:\Windows\System32\perfc005.dat moved successfully.
C:\Windows\System32\perfc009.dat moved successfully.
C:\Windows\System32\perfh005.dat moved successfully.
C:\Windows\System32\perfh009.dat moved successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
C:\Program Files\Ask.com\GenericAskToolbar.dll moved successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{855F3B16-6D32-4FE6-8A56-BBB695989046} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4FE6-8A56-BBB695989046}\ deleted successfully.
C:\Program Files\ICQ6Toolbar\ICQToolBar.dll moved successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
File C:\Program Files\Ask.com\GenericAskToolbar.dll not found.
========== FILES ==========
C:\Program Files\Ask.com\assets\oobe folder moved successfully.
C:\Program Files\Ask.com\assets folder moved successfully.
C:\Program Files\Ask.com folder moved successfully.
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
C:\WINDOWS\1C4551A64743409391E41477CD655043.TMP folder moved successfully.
C:\WINDOWS\74224F8D4A1748169EDB7BB854DE532C.TMP folder moved successfully.
C:\WINDOWS\E10DB5DAE57640EAA7FC1CB2A7B283A6.TMP folder moved successfully.
C:\WINDOWS\msdownld.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP4EAA.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP5E64.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP8545.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAPE149.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAPEBA6.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAPEF3E.tmp folder moved successfully.
C:\WINDOWS\Installer\MSI7DC.tmp moved successfully.
C:\WINDOWS\SoftwareDistribution\Download\dc5785e9c8b3c9af476ade166b57dd6e\BITEDEE.tmp moved successfully.
C:\WINDOWS\SoftwareDistribution\Download\f1172ec065789780f3e853c2a63ff94c\BITF070.tmp moved successfully.
C:\WINDOWS\System32\tmp6B78.tmp moved successfully.
C:\WINDOWS\System32\tmp85A6.tmp moved successfully.
C:\WINDOWS\System32\tmp85B7.tmp moved successfully.
C:\WINDOWS\System32\tmp8C0B.tmp moved successfully.
C:\WINDOWS\System32\tmpA824.tmp moved successfully.
C:\WINDOWS\System32\tmpA835.tmp moved successfully.
C:\WINDOWS\System32\tmpBC7E.tmp moved successfully.
C:\WINDOWS\System32\tmpBC7F.tmp moved successfully.
C:\WINDOWS\System32\tmpBE42.tmp moved successfully.
C:\WINDOWS\System32\tmpBE43.tmp moved successfully.
C:\WINDOWS\System32\tmpC8C4.tmp moved successfully.
C:\WINDOWS\System32\tmpDFD6.tmp moved successfully.
C:\WINDOWS\System32\tmpDFE6.tmp moved successfully.
C:\WINDOWS\System32\tmpEE59.tmp moved successfully.
File move failed. C:\WINDOWS\System32\DriverStore\FileRepository\hposcu08.inf_x86_neutral_6b02d39ff7213a85\drivers\scanner\hpqgends.tmp scheduled to be moved on reboot.
C:\Users\User\AppData\Roaming\0AF8.24C moved successfully.
C:\ProgramData\ezsidmv.dat moved successfully.
c:\users\User\AppData\Local\AMD\Fuel folder moved successfully.
c:\users\User\AppData\Local\AMD folder moved successfully.
c:\programdata\AMD\Fuel\Profiles folder moved successfully.
c:\programdata\AMD\Fuel folder moved successfully.
c:\programdata\AMD folder moved successfully.
c:\users\Default\AppData\Roaming\ATI\ACE folder moved successfully.
c:\users\Default\AppData\Roaming\ATI folder moved successfully.
c:\users\Default\AppData\Local\ATI\ACE folder moved successfully.
c:\users\Default\AppData\Local\ATI folder moved successfully.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 402 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Public
->Temp folder emptied: 0 bytes
User: User
->Temp folder emptied: 1443088 bytes
->Temporary Internet Files folder emptied: 5300068 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 9515092 bytes
->Google Chrome cache emptied: 33010582 bytes
->Flash cache emptied: 25802 bytes
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 10748 bytes
RecycleBin emptied: 0 bytes
Total Files Cleaned = 47,00 mb
[EMPTYFLASH]
User: All Users
User: Default
User: Default User
User: Public
User: User
->Flash cache emptied: 0 bytes
Total Flash Files Cleaned = 0,00 mb
OTL by OldTimer - Version 3.2.26.1 log created on 07202011_143559
Files\Folders moved on Reboot...
File move failed. C:\WINDOWS\System32\DriverStore\FileRepository\hposcu08.inf_x86_neutral_6b02d39ff7213a85\drivers\scanner\hpqgends.tmp scheduled to be moved on reboot.
Registry entries deleted on Reboot...
Největší potěšení pro muže je svlékat ženu a oblékat ragbyový dres.
Mrtvý nepřítel vždy voní krásně.", Alus Vitellus
Kdo si přeje mír, ať připravuje válku, Vegetius Renatus
Fotbal je hra gentlemanů, kterou hrají barbaři a ragby je hra barbarů, kterou hrají gentlemani - Oscar Wilde
Per Aspera ad Astra !
Mrtvý nepřítel vždy voní krásně.", Alus Vitellus
Kdo si přeje mír, ať připravuje válku, Vegetius Renatus
Fotbal je hra gentlemanů, kterou hrají barbaři a ragby je hra barbarů, kterou hrají gentlemani - Oscar Wilde
Per Aspera ad Astra !
Re: vir z Facebooku
Fajn, poprosím o nový log ze Rsitu. jak je na tom počítač?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
- MaximusBrutus
- Návštěvník
- Příspěvky: 57
- Registrován: 18 črc 2011 22:11
- Bydliště: Vyškov
Re: vir z Facebooku
RSIT log část první
Logfile of random's system information tool 1.09 (written by random/random)
Run by User at 2011-07-20 15:53:52
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 186 GB (26%) free of 715 GB
Total RAM: 3326 MB (80% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:54:17, on 20.7.2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Safe mode with network support
Running processes:
C:\Windows\Explorer.EXE
C:\Windows\system32\ctfmon.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\rundll32.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\Downloads\RSIT.exe
C:\Program Files\trend micro\User.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - (no file)
R3 - URLSearchHook: (no name) - - (no file)
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [VC10Player] C:\Program Files\Virtual CD v10\System\VC10Play.exe
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Microsoft Default Manager] "C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKLM\..\RunOnce: [GrpConv] grpconv -o
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7.2\ICQ.exe" silent loginmode=4
O4 - Startup: SaveSnap.lnk = C:\Program Files\SaveSnap\SaveSnap.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10} (Windows Live OneCare safety scanner control) - http://cdn.scan.onecare.live.com/resour ... cctrl2.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: ES lite Service for program management. (ES lite Service) - Unknown owner - C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: JMB36X - Unknown owner - C:\Windows\System32\XSrvSetup.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: Virtual CD v10 Management Service (VC10SecS) - H+H Software GmbH - C:\Program Files\Virtual CD v10\System\VC10SecS.exe
--
End of file - 9107 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1807786179-3034001536-2686373736-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1807786179-3034001536-2686373736-1000UA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\0ezud4fw.default
prefs.js - "browser.startup.homepage" - "http://start.icq.com/"
prefs.js - "extensions.enabledItems" - "{972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.13"
"{27182e60-b5f3-411c-b545-b44205977502}"=C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension\
"{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}"=C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DMExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@canon.com/EPPEX]
"Description"=Canon Easy-PhotoPrint EX
"Path"=C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.12.69]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files\Magic Video Converter\codec\real\browser\plugins\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.69]
"Description"=6.0.12.69
"Path"=C:\Program Files\Magic Video Converter\codec\real\browser\plugins\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
C:\Program Files\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsIQTScriptablePlugin.xpt
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js
C:\Program Files\Mozilla Firefox\plugins\
npdeployJava1.dll
npnul32.dll
nppdf32.dll
C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\0ezud4fw.default\extensions\
plugin3@gameplaylabs.com
{800b5000-a755-47e1-992b-48a1c1357f07}
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\0ezud4fw.default\searchplugins\
icqplugin.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2010-06-28 202144]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-07-27 191792]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-05-16 1164680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-05-04 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2010-06-28 1615256]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2009-12-08 8120864]
"JMB36X IDE Setup"=C:\Windows\RaidTool\xInsIDE.exe [2007-03-20 36864]
"NUSB3MON"=C:\Program Files\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2009-11-20 106496]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2008-05-28 570664]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2009-07-27 1983816]
"CanonSolutionMenu"=C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-03-18 767312]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-06-08 37296]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-03-30 937920]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-11-25 98304]
"ATICustomerCare"=C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe [2010-05-04 311296]
"VC10Player"=C:\Program Files\Virtual CD v10\System\VC10Play.exe [2010-04-14 411464]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2010-11-30 997408]
"PWRISOVM.EXE"=C:\Program Files\PowerISO\PWRISOVM.EXE [2010-04-12 180224]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-04-08 254696]
"Microsoft Default Manager"=C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe [2010-05-10 439568]
"Malwarebytes' Anti-Malware (reboot)"=C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe [2011-07-06 1047656]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"GrpConv"=grpconv -o []
"Malwarebytes' Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2011-07-06 449584]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2008-01-22 152872]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"Steam"=C:\Program Files\Steam\Steam.exe [2010-11-17 1242448]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2011-06-15 15141768]
"ICQ"=C:\Program Files\ICQ7.2\ICQ.exe [2011-01-05 133432]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
SaveSnap.lnk - C:\Program Files\SaveSnap\SaveSnap.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2011-07-06 203776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.FFDS"=ff_vfw.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2011-07-20 15:53:52 ----D---- C:\rsit
2011-07-20 15:53:52 ----D---- C:\Program Files\trend micro
2011-07-20 14:35:59 ----D---- C:\_OTL
2011-07-19 22:46:52 ----D---- C:\Users\User\AppData\Roaming\Malwarebytes
2011-07-19 22:46:41 ----D---- C:\ProgramData\Malwarebytes
2011-07-19 22:46:41 ----A---- C:\Windows\system32\drivers\mbamswissarmy.sys
2011-07-19 22:46:39 ----A---- C:\Windows\system32\drivers\mbam.sys
2011-07-19 22:46:38 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-07-19 22:32:52 ----D---- C:\Windows\temp
2011-07-19 22:32:51 ----A---- C:\ComboFix.txt
2011-07-19 22:29:02 ----SHD---- C:\$RECYCLE.BIN
2011-07-19 11:25:26 ----A---- C:\Windows\zip.exe
2011-07-19 11:25:26 ----A---- C:\Windows\SWSC.exe
2011-07-19 11:25:26 ----A---- C:\Windows\SWREG.exe
2011-07-19 11:25:26 ----A---- C:\Windows\PEV.exe
2011-07-19 11:25:26 ----A---- C:\Windows\MBR.exe
2011-07-19 11:25:26 ----A---- C:\Windows\grep.exe
2011-07-19 11:10:24 ----A---- C:\Windows\ntbtlog.txt
2011-07-19 10:22:28 ----D---- C:\ProgramData\ESET
2011-07-19 10:22:28 ----D---- C:\Program Files\ESET
2011-07-18 23:39:47 ----A---- C:\Windows\sed.exe
2011-07-18 23:39:47 ----A---- C:\Windows\NIRCMD.exe
2011-07-18 23:39:43 ----D---- C:\Windows\ERDNT
2011-07-18 23:39:39 ----D---- C:\Qoobox
2011-07-18 19:57:19 ----D---- C:\Users\User\AppData\Roaming\ESET
2011-07-18 13:17:31 ----D---- C:\ProgramData\ATI
2011-07-17 23:03:02 ----D---- C:\Users\User\AppData\Roaming\STV Software
2011-07-17 23:02:49 ----D---- C:\Program Files\SensorsViewPro41
2011-07-11 21:08:33 ----D---- C:\Program Files\The Witcher 2
2011-07-09 22:53:56 ----D---- C:\Program Files\Microsoft
2011-07-09 22:51:38 ----D---- C:\Windows\system32\directx
2011-07-06 08:40:26 ----A---- C:\Windows\system32\wininet.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\urlmon.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\url.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2011-07-06 08:40:26 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2011-07-06 08:40:26 ----A---- C:\Windows\system32\msrating.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\msls31.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\mshtmler.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\msfeedssync.exe
2011-07-06 08:40:26 ----A---- C:\Windows\system32\msfeedsbs.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\jsproxy.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\ieui.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\iesysprep.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\iesetup.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\iertutil.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\iernonce.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\ieframe.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\iedkcs32.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\ieapfltr.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\ieapfltr.dat
2011-07-06 08:40:26 ----A---- C:\Windows\system32\ieakeng.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\IEAdvpack.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\ie4uinit.exe
2011-07-06 08:40:26 ----A---- C:\Windows\system32\icardie.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\dxtrans.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\dxtmsft.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\wextract.exe
2011-07-06 08:40:25 ----A---- C:\Windows\system32\webcheck.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\vbscript.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\pngfilt.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\occache.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\mshtmled.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\mshtml.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\mshta.exe
2011-07-06 08:40:25 ----A---- C:\Windows\system32\msfeeds.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\licmgr10.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\jscript9.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\jscript.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\inseng.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\imgutil.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\iexpress.exe
2011-07-06 08:40:25 ----A---- C:\Windows\system32\ieUnatt.exe
2011-07-06 08:40:25 ----A---- C:\Windows\system32\iepeers.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\ieakui.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\ieaksie.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\admparse.dll
2011-07-06 08:27:29 ----D---- C:\Windows\system32\SPReview
2011-07-06 08:25:41 ----D---- C:\Windows\system32\EventProviders
2011-07-02 13:51:44 ----D---- C:\Users\User\AppData\Roaming\The Creative Assembly
2011-07-02 13:23:53 ----D---- C:\Program Files\Napoleon Total War
2011-06-29 10:14:23 ----A---- C:\Windows\system32\umpnpmgr.dll
2011-06-29 10:14:23 ----A---- C:\Windows\system32\cfgmgr32.dll
2011-06-29 10:14:16 ----A---- C:\Windows\system32\tquery.dll
2011-06-29 10:14:16 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2011-06-29 10:14:16 ----A---- C:\Windows\system32\SearchIndexer.exe
2011-06-29 10:14:16 ----A---- C:\Windows\system32\mssrch.dll
2011-06-29 10:14:15 ----A---- C:\Windows\system32\SearchFilterHost.exe
2011-06-29 10:14:15 ----A---- C:\Windows\system32\mssvp.dll
2011-06-29 10:14:15 ----A---- C:\Windows\system32\mssphtb.dll
2011-06-29 10:14:15 ----A---- C:\Windows\system32\mssph.dll
2011-06-29 10:14:14 ----A---- C:\Windows\system32\msscntrs.dll
2011-06-22 15:45:03 ----D---- C:\Program Files\Common Files\Java
2011-06-22 15:44:47 ----A---- C:\Windows\system32\javaws.exe
2011-06-22 15:44:47 ----A---- C:\Windows\system32\javaw.exe
2011-06-22 15:44:47 ----A---- C:\Windows\system32\java.exe
2011-06-21 22:42:47 ----D---- C:\ProgramData\CanonIJEPPEX
2011-06-21 14:33:06 ----A---- C:\Windows\system32\dfshim.dll
2011-06-21 14:33:02 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2011-06-21 14:33:02 ----A---- C:\Windows\system32\mstscax.dll
2011-06-21 14:33:02 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2011-06-21 14:33:00 ----A---- C:\Windows\system32\d3d10warp.dll
2011-06-21 14:32:59 ----A---- C:\Windows\system32\mfc40u.dll
2011-06-21 14:32:59 ----A---- C:\Windows\system32\mfc40.dll
2011-06-21 14:32:58 ----A---- C:\Windows\system32\sysmain.dll
2011-06-21 14:32:57 ----A---- C:\Windows\system32\shell32.dll
2011-06-21 14:32:57 ----A---- C:\Windows\system32\secproc_isv.dll
2011-06-21 14:32:57 ----A---- C:\Windows\system32\RMActivate_isv.exe
2011-06-21 14:32:56 ----A---- C:\Windows\system32\secproc.dll
2011-06-21 14:32:55 ----A---- C:\Windows\system32\RMActivate.exe
2011-06-21 14:32:54 ----A---- C:\Windows\system32\spwizui.dll
2011-06-21 14:32:54 ----A---- C:\Windows\system32\mscoree.dll
2011-06-21 14:32:52 ----A---- C:\Windows\system32\mf.dll
2011-06-21 14:32:52 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2011-06-21 14:32:52 ----A---- C:\Windows\system32\CertEnroll.dll
2011-06-21 14:32:51 ----A---- C:\Windows\system32\wmp.dll
2011-06-21 14:32:50 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2011-06-21 14:32:49 ----A---- C:\Windows\system32\schedsvc.dll
2011-06-21 14:32:49 ----A---- C:\Windows\system32\PresentationHost.exe
2011-06-21 14:32:49 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2011-06-21 14:32:49 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2011-06-21 14:32:48 ----A---- C:\Windows\system32\RacEngn.dll
2011-06-21 14:32:47 ----A---- C:\Windows\system32\ntdll.dll
2011-06-21 14:32:47 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2011-06-21 14:32:46 ----A---- C:\Windows\system32\rdpdd.dll
2011-06-21 14:32:46 ----A---- C:\Windows\system32\qmgr.dll
2011-06-21 14:32:45 ----A---- C:\Windows\system32\wevtsvc.dll
2011-06-21 14:32:45 ----A---- C:\Windows\system32\ole32.dll
2011-06-21 14:32:45 ----A---- C:\Windows\system32\ExplorerFrame.dll
2011-06-21 14:32:44 ----A---- C:\Windows\system32\vssapi.dll
2011-06-21 14:32:44 ----A---- C:\Windows\system32\taskschd.dll
2011-06-21 14:32:44 ----A---- C:\Windows\system32\SearchFolder.dll
2011-06-21 14:32:44 ----A---- C:\Windows\system32\IKEEXT.DLL
2011-06-21 14:32:44 ----A---- C:\Windows\system32\d3d9.dll
2011-06-21 14:32:43 ----A---- C:\Windows\system32\spreview.exe
2011-06-21 14:32:43 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2011-06-21 14:32:43 ----A---- C:\Windows\system32\mstsc.exe
2011-06-21 14:32:43 ----A---- C:\Windows\system32\kernel32.dll
2011-06-21 14:32:43 ----A---- C:\Windows\system32\crypt32.dll
2011-06-21 14:32:42 ----A---- C:\Windows\system32\wer.dll
2011-06-21 14:32:42 ----A---- C:\Windows\system32\termsrv.dll
2011-06-21 14:32:42 ----A---- C:\Windows\system32\spinstall.exe
2011-06-21 14:32:42 ----A---- C:\Windows\system32\rpcrt4.dll
2011-06-21 14:32:42 ----A---- C:\Windows\system32\msxml6.dll
2011-06-21 14:32:42 ----A---- C:\Windows\system32\lsasrv.dll
2011-06-21 14:32:42 ----A---- C:\Windows\system32\gpsvc.dll
2011-06-21 14:32:42 ----A---- C:\Windows\system32\dwmcore.dll
2011-06-21 14:32:42 ----A---- C:\Windows\system32\certcli.dll
2011-06-21 14:32:41 ----A---- C:\Windows\system32\wbengine.exe
2011-06-21 14:32:41 ----A---- C:\Windows\system32\scavengeui.dll
2011-06-21 14:32:41 ----A---- C:\Windows\system32\odbc32.dll
2011-06-21 14:32:41 ----A---- C:\Windows\system32\MPSSVC.dll
2011-06-21 14:32:41 ----A---- C:\Windows\system32\diagperf.dll
2011-06-21 14:32:40 ----A---- C:\Windows\system32\WinSAT.exe
2011-06-21 14:32:40 ----A---- C:\Windows\system32\umrdp.dll
2011-06-21 14:32:40 ----A---- C:\Windows\system32\TSWorkspace.dll
2011-06-21 14:32:40 ----A---- C:\Windows\system32\tsmf.dll
2011-06-21 14:32:40 ----A---- C:\Windows\system32\quartz.dll
2011-06-21 14:32:40 ----A---- C:\Windows\system32\localspl.dll
2011-06-21 14:32:40 ----A---- C:\Windows\system32\dot3api.dll
2011-06-21 14:32:39 ----A---- C:\Windows\system32\winhttp.dll
2011-06-21 14:32:39 ----A---- C:\Windows\system32\setupapi.dll
2011-06-21 14:32:39 ----A---- C:\Windows\system32\MSVidCtl.dll
2011-06-21 14:32:39 ----A---- C:\Windows\system32\dbgeng.dll
2011-06-21 14:32:39 ----A---- C:\Windows\system32\apphelp.dll
2011-06-21 14:32:38 ----A---- C:\Windows\system32\WMVDECOD.DLL
2011-06-21 14:32:38 ----A---- C:\Windows\system32\winlogon.exe
2011-06-21 14:32:38 ----A---- C:\Windows\system32\WindowsCodecs.dll
2011-06-21 14:32:38 ----A---- C:\Windows\system32\VSSVC.exe
2011-06-21 14:32:38 ----A---- C:\Windows\system32\user32.dll
2011-06-21 14:32:38 ----A---- C:\Windows\system32\netlogon.dll
2011-06-21 14:32:38 ----A---- C:\Windows\system32\netcfgx.dll
2011-06-21 14:32:38 ----A---- C:\Windows\system32\d3d11.dll
2011-06-21 14:32:37 ----A---- C:\Windows\system32\WsmSvc.dll
2011-06-21 14:32:37 ----A---- C:\Windows\system32\webio.dll
2011-06-21 14:32:37 ----A---- C:\Windows\system32\Query.dll
2011-06-21 14:32:37 ----A---- C:\Windows\system32\gpprefcl.dll
2011-06-21 14:32:37 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2011-06-21 14:32:37 ----A---- C:\Windows\system32\advapi32.dll
2011-06-21 14:32:36 ----A---- C:\Windows\system32\upnp.dll
2011-06-21 14:32:36 ----A---- C:\Windows\system32\schannel.dll
2011-06-21 14:32:36 ----A---- C:\Windows\system32\netfxperf.dll
2011-06-21 14:32:36 ----A---- C:\Windows\system32\msv1_0.dll
2011-06-21 14:32:36 ----A---- C:\Windows\system32\mmcndmgr.dll
2011-06-21 14:32:36 ----A---- C:\Windows\system32\lsm.exe
2011-06-21 14:32:36 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2011-06-21 14:32:36 ----A---- C:\Windows\system32\drivers\csc.sys
2011-06-21 14:32:35 ----A---- C:\Windows\system32\sppobjs.dll
2011-06-21 14:32:35 ----A---- C:\Windows\system32\shlwapi.dll
2011-06-21 14:32:35 ----A---- C:\Windows\system32\SessEnv.dll
2011-06-21 14:32:35 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2011-06-21 14:32:35 ----A---- C:\Windows\system32\msdrm.dll
2011-06-21 14:32:35 ----A---- C:\Windows\system32\imapi2fs.dll
2011-06-21 14:32:35 ----A---- C:\Windows\system32\authui.dll
2011-06-21 14:32:34 ----A---- C:\Windows\system32\xpsservices.dll
2011-06-21 14:32:34 ----A---- C:\Windows\system32\winload.exe
2011-06-21 14:32:34 ----A---- C:\Windows\system32\usp10.dll
2011-06-21 14:32:34 ----A---- C:\Windows\system32\userenv.dll
2011-06-21 14:32:34 ----A---- C:\Windows\system32\mcbuilder.exe
2011-06-21 14:32:34 ----A---- C:\Windows\system32\KernelBase.dll
2011-06-21 14:32:34 ----A---- C:\Windows\system32\certmgr.dll
2011-06-21 14:32:33 ----A---- C:\Windows\system32\WebClnt.dll
2011-06-21 14:32:33 ----A---- C:\Windows\system32\sppwinob.dll
2011-06-21 14:32:33 ----A---- C:\Windows\system32\rpcss.dll
2011-06-21 14:32:33 ----A---- C:\Windows\system32\iphlpsvc.dll
2011-06-21 14:32:33 ----A---- C:\Windows\system32\comdlg32.dll
Logfile of random's system information tool 1.09 (written by random/random)
Run by User at 2011-07-20 15:53:52
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 186 GB (26%) free of 715 GB
Total RAM: 3326 MB (80% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:54:17, on 20.7.2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Safe mode with network support
Running processes:
C:\Windows\Explorer.EXE
C:\Windows\system32\ctfmon.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\rundll32.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\Downloads\RSIT.exe
C:\Program Files\trend micro\User.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - (no file)
R3 - URLSearchHook: (no name) - - (no file)
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [VC10Player] C:\Program Files\Virtual CD v10\System\VC10Play.exe
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Microsoft Default Manager] "C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKLM\..\RunOnce: [GrpConv] grpconv -o
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7.2\ICQ.exe" silent loginmode=4
O4 - Startup: SaveSnap.lnk = C:\Program Files\SaveSnap\SaveSnap.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - C:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10} (Windows Live OneCare safety scanner control) - http://cdn.scan.onecare.live.com/resour ... cctrl2.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: ES lite Service for program management. (ES lite Service) - Unknown owner - C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: JMB36X - Unknown owner - C:\Windows\System32\XSrvSetup.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: Virtual CD v10 Management Service (VC10SecS) - H+H Software GmbH - C:\Program Files\Virtual CD v10\System\VC10SecS.exe
--
End of file - 9107 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1807786179-3034001536-2686373736-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1807786179-3034001536-2686373736-1000UA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\0ezud4fw.default
prefs.js - "browser.startup.homepage" - "http://start.icq.com/"
prefs.js - "extensions.enabledItems" - "{972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.13"
"{27182e60-b5f3-411c-b545-b44205977502}"=C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension\
"{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}"=C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DMExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\system32\Adobe\Director\np32dsw.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@canon.com/EPPEX]
"Description"=Canon Easy-PhotoPrint EX
"Path"=C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~1\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nppl3260;version=6.0.12.69]
"Description"=RealPlayer(tm) LiveConnect-Enabled Plug-In
"Path"=C:\Program Files\Magic Video Converter\codec\real\browser\plugins\nppl3260.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.69]
"Description"=6.0.12.69
"Path"=C:\Program Files\Magic Video Converter\codec\real\browser\plugins\nprpjplug.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=]
"Description"=
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
C:\Program Files\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsIQTScriptablePlugin.xpt
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js
C:\Program Files\Mozilla Firefox\plugins\
npdeployJava1.dll
npnul32.dll
nppdf32.dll
C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
jyxo-cz.xml
mall-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\0ezud4fw.default\extensions\
plugin3@gameplaylabs.com
{800b5000-a755-47e1-992b-48a1c1357f07}
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\0ezud4fw.default\searchplugins\
icqplugin.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2010-06-28 202144]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-07-27 191792]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-05-16 1164680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-05-04 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2010-06-28 1615256]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2009-12-08 8120864]
"JMB36X IDE Setup"=C:\Windows\RaidTool\xInsIDE.exe [2007-03-20 36864]
"NUSB3MON"=C:\Program Files\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2009-11-20 106496]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2008-05-28 570664]
"BCSSync"=C:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2009-07-27 1983816]
"CanonSolutionMenu"=C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [2009-03-18 767312]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-06-08 37296]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-03-30 937920]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-11-25 98304]
"ATICustomerCare"=C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe [2010-05-04 311296]
"VC10Player"=C:\Program Files\Virtual CD v10\System\VC10Play.exe [2010-04-14 411464]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2010-11-30 997408]
"PWRISOVM.EXE"=C:\Program Files\PowerISO\PWRISOVM.EXE [2010-04-12 180224]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-04-08 254696]
"Microsoft Default Manager"=C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe [2010-05-10 439568]
"Malwarebytes' Anti-Malware (reboot)"=C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe [2011-07-06 1047656]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"GrpConv"=grpconv -o []
"Malwarebytes' Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2011-07-06 449584]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2008-01-22 152872]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"Steam"=C:\Program Files\Steam\Steam.exe [2010-11-17 1242448]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2011-06-15 15141768]
"ICQ"=C:\Program Files\ICQ7.2\ICQ.exe [2011-01-05 133432]
C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
SaveSnap.lnk - C:\Program Files\SaveSnap\SaveSnap.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2011-07-06 203776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"VIDC.FFDS"=ff_vfw.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2011-07-20 15:53:52 ----D---- C:\rsit
2011-07-20 15:53:52 ----D---- C:\Program Files\trend micro
2011-07-20 14:35:59 ----D---- C:\_OTL
2011-07-19 22:46:52 ----D---- C:\Users\User\AppData\Roaming\Malwarebytes
2011-07-19 22:46:41 ----D---- C:\ProgramData\Malwarebytes
2011-07-19 22:46:41 ----A---- C:\Windows\system32\drivers\mbamswissarmy.sys
2011-07-19 22:46:39 ----A---- C:\Windows\system32\drivers\mbam.sys
2011-07-19 22:46:38 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-07-19 22:32:52 ----D---- C:\Windows\temp
2011-07-19 22:32:51 ----A---- C:\ComboFix.txt
2011-07-19 22:29:02 ----SHD---- C:\$RECYCLE.BIN
2011-07-19 11:25:26 ----A---- C:\Windows\zip.exe
2011-07-19 11:25:26 ----A---- C:\Windows\SWSC.exe
2011-07-19 11:25:26 ----A---- C:\Windows\SWREG.exe
2011-07-19 11:25:26 ----A---- C:\Windows\PEV.exe
2011-07-19 11:25:26 ----A---- C:\Windows\MBR.exe
2011-07-19 11:25:26 ----A---- C:\Windows\grep.exe
2011-07-19 11:10:24 ----A---- C:\Windows\ntbtlog.txt
2011-07-19 10:22:28 ----D---- C:\ProgramData\ESET
2011-07-19 10:22:28 ----D---- C:\Program Files\ESET
2011-07-18 23:39:47 ----A---- C:\Windows\sed.exe
2011-07-18 23:39:47 ----A---- C:\Windows\NIRCMD.exe
2011-07-18 23:39:43 ----D---- C:\Windows\ERDNT
2011-07-18 23:39:39 ----D---- C:\Qoobox
2011-07-18 19:57:19 ----D---- C:\Users\User\AppData\Roaming\ESET
2011-07-18 13:17:31 ----D---- C:\ProgramData\ATI
2011-07-17 23:03:02 ----D---- C:\Users\User\AppData\Roaming\STV Software
2011-07-17 23:02:49 ----D---- C:\Program Files\SensorsViewPro41
2011-07-11 21:08:33 ----D---- C:\Program Files\The Witcher 2
2011-07-09 22:53:56 ----D---- C:\Program Files\Microsoft
2011-07-09 22:51:38 ----D---- C:\Windows\system32\directx
2011-07-06 08:40:26 ----A---- C:\Windows\system32\wininet.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\urlmon.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\url.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2011-07-06 08:40:26 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2011-07-06 08:40:26 ----A---- C:\Windows\system32\msrating.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\msls31.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\mshtmler.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\msfeedssync.exe
2011-07-06 08:40:26 ----A---- C:\Windows\system32\msfeedsbs.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\jsproxy.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\ieui.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\iesysprep.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\iesetup.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\iertutil.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\iernonce.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\ieframe.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\iedkcs32.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\ieapfltr.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\ieapfltr.dat
2011-07-06 08:40:26 ----A---- C:\Windows\system32\ieakeng.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\IEAdvpack.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\ie4uinit.exe
2011-07-06 08:40:26 ----A---- C:\Windows\system32\icardie.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\dxtrans.dll
2011-07-06 08:40:26 ----A---- C:\Windows\system32\dxtmsft.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\wextract.exe
2011-07-06 08:40:25 ----A---- C:\Windows\system32\webcheck.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\vbscript.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\pngfilt.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\occache.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\mshtmled.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\mshtml.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\mshta.exe
2011-07-06 08:40:25 ----A---- C:\Windows\system32\msfeeds.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\licmgr10.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\jscript9.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\jscript.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\inseng.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\imgutil.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\iexpress.exe
2011-07-06 08:40:25 ----A---- C:\Windows\system32\ieUnatt.exe
2011-07-06 08:40:25 ----A---- C:\Windows\system32\iepeers.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\ieakui.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\ieaksie.dll
2011-07-06 08:40:25 ----A---- C:\Windows\system32\admparse.dll
2011-07-06 08:27:29 ----D---- C:\Windows\system32\SPReview
2011-07-06 08:25:41 ----D---- C:\Windows\system32\EventProviders
2011-07-02 13:51:44 ----D---- C:\Users\User\AppData\Roaming\The Creative Assembly
2011-07-02 13:23:53 ----D---- C:\Program Files\Napoleon Total War
2011-06-29 10:14:23 ----A---- C:\Windows\system32\umpnpmgr.dll
2011-06-29 10:14:23 ----A---- C:\Windows\system32\cfgmgr32.dll
2011-06-29 10:14:16 ----A---- C:\Windows\system32\tquery.dll
2011-06-29 10:14:16 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2011-06-29 10:14:16 ----A---- C:\Windows\system32\SearchIndexer.exe
2011-06-29 10:14:16 ----A---- C:\Windows\system32\mssrch.dll
2011-06-29 10:14:15 ----A---- C:\Windows\system32\SearchFilterHost.exe
2011-06-29 10:14:15 ----A---- C:\Windows\system32\mssvp.dll
2011-06-29 10:14:15 ----A---- C:\Windows\system32\mssphtb.dll
2011-06-29 10:14:15 ----A---- C:\Windows\system32\mssph.dll
2011-06-29 10:14:14 ----A---- C:\Windows\system32\msscntrs.dll
2011-06-22 15:45:03 ----D---- C:\Program Files\Common Files\Java
2011-06-22 15:44:47 ----A---- C:\Windows\system32\javaws.exe
2011-06-22 15:44:47 ----A---- C:\Windows\system32\javaw.exe
2011-06-22 15:44:47 ----A---- C:\Windows\system32\java.exe
2011-06-21 22:42:47 ----D---- C:\ProgramData\CanonIJEPPEX
2011-06-21 14:33:06 ----A---- C:\Windows\system32\dfshim.dll
2011-06-21 14:33:02 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2011-06-21 14:33:02 ----A---- C:\Windows\system32\mstscax.dll
2011-06-21 14:33:02 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2011-06-21 14:33:00 ----A---- C:\Windows\system32\d3d10warp.dll
2011-06-21 14:32:59 ----A---- C:\Windows\system32\mfc40u.dll
2011-06-21 14:32:59 ----A---- C:\Windows\system32\mfc40.dll
2011-06-21 14:32:58 ----A---- C:\Windows\system32\sysmain.dll
2011-06-21 14:32:57 ----A---- C:\Windows\system32\shell32.dll
2011-06-21 14:32:57 ----A---- C:\Windows\system32\secproc_isv.dll
2011-06-21 14:32:57 ----A---- C:\Windows\system32\RMActivate_isv.exe
2011-06-21 14:32:56 ----A---- C:\Windows\system32\secproc.dll
2011-06-21 14:32:55 ----A---- C:\Windows\system32\RMActivate.exe
2011-06-21 14:32:54 ----A---- C:\Windows\system32\spwizui.dll
2011-06-21 14:32:54 ----A---- C:\Windows\system32\mscoree.dll
2011-06-21 14:32:52 ----A---- C:\Windows\system32\mf.dll
2011-06-21 14:32:52 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2011-06-21 14:32:52 ----A---- C:\Windows\system32\CertEnroll.dll
2011-06-21 14:32:51 ----A---- C:\Windows\system32\wmp.dll
2011-06-21 14:32:50 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2011-06-21 14:32:49 ----A---- C:\Windows\system32\schedsvc.dll
2011-06-21 14:32:49 ----A---- C:\Windows\system32\PresentationHost.exe
2011-06-21 14:32:49 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2011-06-21 14:32:49 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2011-06-21 14:32:48 ----A---- C:\Windows\system32\RacEngn.dll
2011-06-21 14:32:47 ----A---- C:\Windows\system32\ntdll.dll
2011-06-21 14:32:47 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2011-06-21 14:32:46 ----A---- C:\Windows\system32\rdpdd.dll
2011-06-21 14:32:46 ----A---- C:\Windows\system32\qmgr.dll
2011-06-21 14:32:45 ----A---- C:\Windows\system32\wevtsvc.dll
2011-06-21 14:32:45 ----A---- C:\Windows\system32\ole32.dll
2011-06-21 14:32:45 ----A---- C:\Windows\system32\ExplorerFrame.dll
2011-06-21 14:32:44 ----A---- C:\Windows\system32\vssapi.dll
2011-06-21 14:32:44 ----A---- C:\Windows\system32\taskschd.dll
2011-06-21 14:32:44 ----A---- C:\Windows\system32\SearchFolder.dll
2011-06-21 14:32:44 ----A---- C:\Windows\system32\IKEEXT.DLL
2011-06-21 14:32:44 ----A---- C:\Windows\system32\d3d9.dll
2011-06-21 14:32:43 ----A---- C:\Windows\system32\spreview.exe
2011-06-21 14:32:43 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2011-06-21 14:32:43 ----A---- C:\Windows\system32\mstsc.exe
2011-06-21 14:32:43 ----A---- C:\Windows\system32\kernel32.dll
2011-06-21 14:32:43 ----A---- C:\Windows\system32\crypt32.dll
2011-06-21 14:32:42 ----A---- C:\Windows\system32\wer.dll
2011-06-21 14:32:42 ----A---- C:\Windows\system32\termsrv.dll
2011-06-21 14:32:42 ----A---- C:\Windows\system32\spinstall.exe
2011-06-21 14:32:42 ----A---- C:\Windows\system32\rpcrt4.dll
2011-06-21 14:32:42 ----A---- C:\Windows\system32\msxml6.dll
2011-06-21 14:32:42 ----A---- C:\Windows\system32\lsasrv.dll
2011-06-21 14:32:42 ----A---- C:\Windows\system32\gpsvc.dll
2011-06-21 14:32:42 ----A---- C:\Windows\system32\dwmcore.dll
2011-06-21 14:32:42 ----A---- C:\Windows\system32\certcli.dll
2011-06-21 14:32:41 ----A---- C:\Windows\system32\wbengine.exe
2011-06-21 14:32:41 ----A---- C:\Windows\system32\scavengeui.dll
2011-06-21 14:32:41 ----A---- C:\Windows\system32\odbc32.dll
2011-06-21 14:32:41 ----A---- C:\Windows\system32\MPSSVC.dll
2011-06-21 14:32:41 ----A---- C:\Windows\system32\diagperf.dll
2011-06-21 14:32:40 ----A---- C:\Windows\system32\WinSAT.exe
2011-06-21 14:32:40 ----A---- C:\Windows\system32\umrdp.dll
2011-06-21 14:32:40 ----A---- C:\Windows\system32\TSWorkspace.dll
2011-06-21 14:32:40 ----A---- C:\Windows\system32\tsmf.dll
2011-06-21 14:32:40 ----A---- C:\Windows\system32\quartz.dll
2011-06-21 14:32:40 ----A---- C:\Windows\system32\localspl.dll
2011-06-21 14:32:40 ----A---- C:\Windows\system32\dot3api.dll
2011-06-21 14:32:39 ----A---- C:\Windows\system32\winhttp.dll
2011-06-21 14:32:39 ----A---- C:\Windows\system32\setupapi.dll
2011-06-21 14:32:39 ----A---- C:\Windows\system32\MSVidCtl.dll
2011-06-21 14:32:39 ----A---- C:\Windows\system32\dbgeng.dll
2011-06-21 14:32:39 ----A---- C:\Windows\system32\apphelp.dll
2011-06-21 14:32:38 ----A---- C:\Windows\system32\WMVDECOD.DLL
2011-06-21 14:32:38 ----A---- C:\Windows\system32\winlogon.exe
2011-06-21 14:32:38 ----A---- C:\Windows\system32\WindowsCodecs.dll
2011-06-21 14:32:38 ----A---- C:\Windows\system32\VSSVC.exe
2011-06-21 14:32:38 ----A---- C:\Windows\system32\user32.dll
2011-06-21 14:32:38 ----A---- C:\Windows\system32\netlogon.dll
2011-06-21 14:32:38 ----A---- C:\Windows\system32\netcfgx.dll
2011-06-21 14:32:38 ----A---- C:\Windows\system32\d3d11.dll
2011-06-21 14:32:37 ----A---- C:\Windows\system32\WsmSvc.dll
2011-06-21 14:32:37 ----A---- C:\Windows\system32\webio.dll
2011-06-21 14:32:37 ----A---- C:\Windows\system32\Query.dll
2011-06-21 14:32:37 ----A---- C:\Windows\system32\gpprefcl.dll
2011-06-21 14:32:37 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2011-06-21 14:32:37 ----A---- C:\Windows\system32\advapi32.dll
2011-06-21 14:32:36 ----A---- C:\Windows\system32\upnp.dll
2011-06-21 14:32:36 ----A---- C:\Windows\system32\schannel.dll
2011-06-21 14:32:36 ----A---- C:\Windows\system32\netfxperf.dll
2011-06-21 14:32:36 ----A---- C:\Windows\system32\msv1_0.dll
2011-06-21 14:32:36 ----A---- C:\Windows\system32\mmcndmgr.dll
2011-06-21 14:32:36 ----A---- C:\Windows\system32\lsm.exe
2011-06-21 14:32:36 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2011-06-21 14:32:36 ----A---- C:\Windows\system32\drivers\csc.sys
2011-06-21 14:32:35 ----A---- C:\Windows\system32\sppobjs.dll
2011-06-21 14:32:35 ----A---- C:\Windows\system32\shlwapi.dll
2011-06-21 14:32:35 ----A---- C:\Windows\system32\SessEnv.dll
2011-06-21 14:32:35 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2011-06-21 14:32:35 ----A---- C:\Windows\system32\msdrm.dll
2011-06-21 14:32:35 ----A---- C:\Windows\system32\imapi2fs.dll
2011-06-21 14:32:35 ----A---- C:\Windows\system32\authui.dll
2011-06-21 14:32:34 ----A---- C:\Windows\system32\xpsservices.dll
2011-06-21 14:32:34 ----A---- C:\Windows\system32\winload.exe
2011-06-21 14:32:34 ----A---- C:\Windows\system32\usp10.dll
2011-06-21 14:32:34 ----A---- C:\Windows\system32\userenv.dll
2011-06-21 14:32:34 ----A---- C:\Windows\system32\mcbuilder.exe
2011-06-21 14:32:34 ----A---- C:\Windows\system32\KernelBase.dll
2011-06-21 14:32:34 ----A---- C:\Windows\system32\certmgr.dll
2011-06-21 14:32:33 ----A---- C:\Windows\system32\WebClnt.dll
2011-06-21 14:32:33 ----A---- C:\Windows\system32\sppwinob.dll
2011-06-21 14:32:33 ----A---- C:\Windows\system32\rpcss.dll
2011-06-21 14:32:33 ----A---- C:\Windows\system32\iphlpsvc.dll
2011-06-21 14:32:33 ----A---- C:\Windows\system32\comdlg32.dll
Největší potěšení pro muže je svlékat ženu a oblékat ragbyový dres.
Mrtvý nepřítel vždy voní krásně.", Alus Vitellus
Kdo si přeje mír, ať připravuje válku, Vegetius Renatus
Fotbal je hra gentlemanů, kterou hrají barbaři a ragby je hra barbarů, kterou hrají gentlemani - Oscar Wilde
Per Aspera ad Astra !
Mrtvý nepřítel vždy voní krásně.", Alus Vitellus
Kdo si přeje mír, ať připravuje válku, Vegetius Renatus
Fotbal je hra gentlemanů, kterou hrají barbaři a ragby je hra barbarů, kterou hrají gentlemani - Oscar Wilde
Per Aspera ad Astra !
- MaximusBrutus
- Návštěvník
- Příspěvky: 57
- Registrován: 18 črc 2011 22:11
- Bydliště: Vyškov
Re: vir z Facebooku
RSIT log část druhá
2011-06-21 14:32:33 ----A---- C:\Windows\system32\cmd.exe
2011-06-21 14:32:33 ----A---- C:\Windows\system32\audiosrv.dll
2011-06-21 14:32:32 ----A---- C:\Windows\system32\Wldap32.dll
2011-06-21 14:32:32 ----A---- C:\Windows\system32\win32spl.dll
2011-06-21 14:32:32 ----A---- C:\Windows\system32\rdpendp.dll
2011-06-21 14:32:32 ----A---- C:\Windows\system32\propsys.dll
2011-06-21 14:32:32 ----A---- C:\Windows\system32\nlasvc.dll
2011-06-21 14:32:32 ----A---- C:\Windows\system32\mfds.dll
2011-06-21 14:32:32 ----A---- C:\Windows\system32\framedynos.dll
2011-06-21 14:32:32 ----A---- C:\Windows\system32\drivers\volsnap.sys
2011-06-21 14:32:32 ----A---- C:\Windows\system32\BFE.DLL
2011-06-21 14:32:31 ----A---- C:\Windows\system32\wucltux.dll
2011-06-21 14:32:31 ----A---- C:\Windows\system32\wuaueng.dll
2011-06-21 14:32:31 ----A---- C:\Windows\system32\winresume.exe
2011-06-21 14:32:31 ----A---- C:\Windows\system32\werconcpl.dll
2011-06-21 14:32:31 ----A---- C:\Windows\system32\samsrv.dll
2011-06-21 14:32:31 ----A---- C:\Windows\system32\rdpclip.exe
2011-06-21 14:32:31 ----A---- C:\Windows\system32\profsvc.dll
2011-06-21 14:32:31 ----A---- C:\Windows\system32\ncsi.dll
2011-06-21 14:32:31 ----A---- C:\Windows\system32\drivers\netio.sys
2011-06-21 14:32:31 ----A---- C:\Windows\system32\drivers\ndis.sys
2011-06-21 14:32:31 ----A---- C:\Windows\system32\cscsvc.dll
2011-06-21 14:32:31 ----A---- C:\Windows\system32\azroles.dll
2011-06-21 14:32:30 ----A---- C:\Windows\system32\themeui.dll
2011-06-21 14:32:30 ----A---- C:\Windows\system32\taskeng.exe
2011-06-21 14:32:30 ----A---- C:\Windows\system32\spp.dll
2011-06-21 14:32:30 ----A---- C:\Windows\system32\mswsock.dll
2011-06-21 14:32:30 ----A---- C:\Windows\system32\drivers\http.sys
2011-06-21 14:32:30 ----A---- C:\Windows\system32\dhcpcore.dll
2011-06-21 14:32:30 ----A---- C:\Windows\system32\credui.dll
2011-06-21 14:32:30 ----A---- C:\Windows\system32\appmgr.dll
2011-06-21 14:32:29 ----A---- C:\Windows\system32\wintrust.dll
2011-06-21 14:32:29 ----A---- C:\Windows\system32\taskcomp.dll
2011-06-21 14:32:29 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2011-06-21 14:32:29 ----A---- C:\Windows\system32\msxml3.dll
2011-06-21 14:32:29 ----A---- C:\Windows\system32\mfreadwrite.dll
2011-06-21 14:32:29 ----A---- C:\Windows\system32\evr.dll
2011-06-21 14:32:29 ----A---- C:\Windows\system32\dxgi.dll
2011-06-21 14:32:29 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2011-06-21 14:32:29 ----A---- C:\Windows\system32\dbghelp.dll
2011-06-21 14:32:29 ----A---- C:\Windows\system32\basecsp.dll
2011-06-21 14:32:28 ----A---- C:\Windows\system32\WinSATAPI.dll
2011-06-21 14:32:28 ----A---- C:\Windows\system32\vpnike.dll
2011-06-21 14:32:28 ----A---- C:\Windows\system32\sqlsrv32.dll
2011-06-21 14:32:28 ----A---- C:\Windows\system32\spoolsv.exe
2011-06-21 14:32:28 ----A---- C:\Windows\system32\QAGENTRT.DLL
2011-06-21 14:32:28 ----A---- C:\Windows\system32\gdi32.dll
2011-06-21 14:32:28 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2011-06-21 14:32:28 ----A---- C:\Windows\system32\calc.exe
2011-06-21 14:32:27 ----A---- C:\Windows\system32\UIRibbon.dll
2011-06-21 14:32:27 ----A---- C:\Windows\system32\srvsvc.dll
2011-06-21 14:32:27 ----A---- C:\Windows\system32\lpksetup.exe
2011-06-21 14:32:27 ----A---- C:\Windows\system32\fveapi.dll
2011-06-21 14:32:27 ----A---- C:\Windows\system32\cryptsvc.dll
2011-06-21 14:32:26 ----A---- C:\Windows\system32\ws2_32.dll
2011-06-21 14:32:26 ----A---- C:\Windows\system32\sxs.dll
2011-06-21 14:32:26 ----A---- C:\Windows\system32\stobject.dll
2011-06-21 14:32:26 ----A---- C:\Windows\system32\netshell.dll
2011-06-21 14:32:26 ----A---- C:\Windows\system32\hgprint.dll
2011-06-21 14:32:26 ----A---- C:\Windows\system32\drivers\rdbss.sys
2011-06-21 14:32:26 ----A---- C:\Windows\system32\drivers\msdsm.sys
2011-06-21 14:32:26 ----A---- C:\Windows\system32\drivers\fvevol.sys
2011-06-21 14:32:25 ----A---- C:\Windows\system32\wmpeffects.dll
2011-06-21 14:32:25 ----A---- C:\Windows\system32\prncache.dll
2011-06-21 14:32:25 ----A---- C:\Windows\system32\printui.dll
2011-06-21 14:32:25 ----A---- C:\Windows\system32\msi.dll
2011-06-21 14:32:25 ----A---- C:\Windows\system32\inetpp.dll
2011-06-21 14:32:25 ----A---- C:\Windows\system32\dps.dll
2011-06-21 14:32:25 ----A---- C:\Windows\system32\comctl32.dll
2011-06-21 14:32:24 ----A---- C:\Windows\system32\WSDApi.dll
2011-06-21 14:32:24 ----A---- C:\Windows\system32\rpchttp.dll
2011-06-21 14:32:24 ----A---- C:\Windows\system32\net1.exe
2011-06-21 14:32:24 ----A---- C:\Windows\system32\FXSSVC.exe
2011-06-21 14:32:24 ----A---- C:\Windows\system32\drivers\vmbus.sys
2011-06-21 14:32:24 ----A---- C:\Windows\system32\drivers\pci.sys
2011-06-21 14:32:24 ----A---- C:\Windows\system32\ci.dll
2011-06-21 14:32:24 ----A---- C:\Windows\system32\aitagent.exe
2011-06-21 14:32:24 ----A---- C:\Windows\system32\aepdu.dll
2011-06-21 14:32:23 ----A---- C:\Windows\system32\WMVCORE.DLL
2011-06-21 14:32:23 ----A---- C:\Windows\system32\wlangpui.dll
2011-06-21 14:32:23 ----A---- C:\Windows\system32\vds.exe
2011-06-21 14:32:23 ----A---- C:\Windows\system32\scansetting.dll
2011-06-21 14:32:23 ----A---- C:\Windows\system32\MMDevAPI.dll
2011-06-21 14:32:23 ----A---- C:\Windows\system32\davclnt.dll
2011-06-21 14:32:23 ----A---- C:\Windows\system32\aaclient.dll
2011-06-21 14:32:22 ----A---- C:\Windows\system32\wpdshext.dll
2011-06-21 14:32:22 ----A---- C:\Windows\system32\webservices.dll
2011-06-21 14:32:22 ----A---- C:\Windows\system32\t2embed.dll
2011-06-21 14:32:22 ----A---- C:\Windows\system32\scrptadm.dll
2011-06-21 14:32:22 ----A---- C:\Windows\system32\QSHVHOST.DLL
2011-06-21 14:32:22 ----A---- C:\Windows\system32\pnidui.dll
2011-06-21 14:32:22 ----A---- C:\Windows\system32\IPSECSVC.DLL
2011-06-21 14:32:22 ----A---- C:\Windows\system32\drivers\termdd.sys
2011-06-21 14:32:22 ----A---- C:\Windows\system32\consent.exe
2011-06-21 14:32:21 ----A---- C:\Windows\system32\vmicsvc.exe
2011-06-21 14:32:21 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2011-06-21 14:32:21 ----A---- C:\Windows\system32\tscfgwmi.dll
2011-06-21 14:32:21 ----A---- C:\Windows\system32\SyncCenter.dll
2011-06-21 14:32:21 ----A---- C:\Windows\system32\sdengin2.dll
2011-06-21 14:32:21 ----A---- C:\Windows\system32\netdiagfx.dll
2011-06-21 14:32:21 ----A---- C:\Windows\system32\fde.dll
2011-06-21 14:32:21 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2011-06-21 14:32:21 ----A---- C:\Windows\system32\drivers\rdpdr.sys
2011-06-21 14:32:20 ----A---- C:\Windows\system32\wuapi.dll
2011-06-21 14:32:20 ----A---- C:\Windows\system32\wscapi.dll
2011-06-21 14:32:20 ----A---- C:\Windows\system32\wisptis.exe
2011-06-21 14:32:20 ----A---- C:\Windows\system32\WinSCard.dll
2011-06-21 14:32:20 ----A---- C:\Windows\system32\pla.dll
2011-06-21 14:32:20 ----A---- C:\Windows\system32\msasn1.dll
2011-06-21 14:32:20 ----A---- C:\Windows\system32\cscobj.dll
2011-06-21 14:32:19 ----A---- C:\Windows\system32\winsta.dll
2011-06-21 14:32:19 ----A---- C:\Windows\system32\setupcl.exe
2011-06-21 14:32:19 ----A---- C:\Windows\system32\rdpcore.dll
2011-06-21 14:32:19 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2011-06-21 14:32:19 ----A---- C:\Windows\system32\mcmde.dll
2011-06-21 14:32:19 ----A---- C:\Windows\system32\imapi2.dll
2011-06-21 14:32:19 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2011-06-21 14:32:19 ----A---- C:\Windows\system32\drivers\msahci.sys
2011-06-21 14:32:19 ----A---- C:\Windows\system32\conhost.exe
2011-06-21 14:32:18 ----A---- C:\Windows\system32\WUDFSvc.dll
2011-06-21 14:32:18 ----A---- C:\Windows\system32\wiaservc.dll
2011-06-21 14:32:18 ----A---- C:\Windows\system32\ntshrui.dll
2011-06-21 14:32:18 ----A---- C:\Windows\system32\gameux.dll
2011-06-21 14:32:18 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2011-06-21 14:32:18 ----A---- C:\Windows\system32\aeinv.dll
2011-06-21 14:32:17 ----A---- C:\Windows\system32\WMPEncEn.dll
2011-06-21 14:32:17 ----A---- C:\Windows\system32\shsvcs.dll
2011-06-21 14:32:17 ----A---- C:\Windows\system32\rasmans.dll
2011-06-21 14:32:17 ----A---- C:\Windows\system32\onex.dll
2011-06-21 14:32:17 ----A---- C:\Windows\system32\dwmredir.dll
2011-06-21 14:32:17 ----A---- C:\Windows\system32\drivers\acpi.sys
2011-06-21 14:32:16 ----A---- C:\Windows\system32\winmm.dll
2011-06-21 14:32:16 ----A---- C:\Windows\system32\vaultsvc.dll
2011-06-21 14:32:16 ----A---- C:\Windows\system32\TabSvc.dll
2011-06-21 14:32:16 ----A---- C:\Windows\system32\hbaapi.dll
2011-06-21 14:32:16 ----A---- C:\Windows\system32\drivers\udfs.sys
2011-06-21 14:32:16 ----A---- C:\Windows\system32\autofmt.exe
2011-06-21 14:32:15 ----A---- C:\Windows\system32\samcli.dll
2011-06-21 14:32:15 ----A---- C:\Windows\system32\proquota.exe
2011-06-21 14:32:15 ----A---- C:\Windows\system32\netiohlp.dll
2011-06-21 14:32:15 ----A---- C:\Windows\system32\Narrator.exe
2011-06-21 14:32:15 ----A---- C:\Windows\system32\msutb.dll
2011-06-21 14:32:15 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2011-06-21 14:32:15 ----A---- C:\Windows\system32\halmacpi.dll
2011-06-21 14:32:15 ----A---- C:\Windows\system32\hal.dll
2011-06-21 14:32:15 ----A---- C:\Windows\system32\bootres.dll
2011-06-21 14:32:15 ----A---- C:\Windows\system32\autochk.exe
2011-06-21 14:32:15 ----A---- C:\Windows\system32\AudioSes.dll
2011-06-21 14:32:15 ----A---- C:\Windows\system32\audiodg.exe
2011-06-21 14:32:14 ----A---- C:\Windows\system32\thumbcache.dll
2011-06-21 14:32:14 ----A---- C:\Windows\system32\tcpipcfg.dll
2011-06-21 14:32:14 ----A---- C:\Windows\system32\srchadmin.dll
2011-06-21 14:32:14 ----A---- C:\Windows\system32\schtasks.exe
2011-06-21 14:32:14 ----A---- C:\Windows\system32\regapi.dll
2011-06-21 14:32:14 ----A---- C:\Windows\system32\msinfo32.exe
2011-06-21 14:32:14 ----A---- C:\Windows\system32\mimefilt.dll
2011-06-21 14:32:14 ----A---- C:\Windows\system32\ipsmsnap.dll
2011-06-21 14:32:14 ----A---- C:\Windows\system32\drivers\winusb.sys
2011-06-21 14:32:14 ----A---- C:\Windows\system32\autoconv.exe
2011-06-21 14:32:13 ----A---- C:\Windows\system32\wcncsvc.dll
2011-06-21 14:32:13 ----A---- C:\Windows\system32\sspicli.dll
2011-06-21 14:32:13 ----A---- C:\Windows\system32\powercpl.dll
2011-06-21 14:32:13 ----A---- C:\Windows\system32\msihnd.dll
2011-06-21 14:32:13 ----A---- C:\Windows\system32\mscorier.dll
2011-06-21 14:32:13 ----A---- C:\Windows\system32\framedyn.dll
2011-06-21 14:32:13 ----A---- C:\Windows\system32\eapphost.dll
2011-06-21 14:32:13 ----A---- C:\Windows\system32\drivers\volmgr.sys
2011-06-21 14:32:12 ----A---- C:\Windows\system32\umpo.dll
2011-06-21 14:32:12 ----A---- C:\Windows\system32\QAGENT.DLL
2011-06-21 14:32:12 ----A---- C:\Windows\system32\netid.dll
2011-06-21 14:32:12 ----A---- C:\Windows\system32\DXP.dll
2011-06-21 14:32:12 ----A---- C:\Windows\system32\drivers\partmgr.sys
2011-06-21 14:32:12 ----A---- C:\Windows\system32\drivers\netbt.sys
2011-06-21 14:32:12 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2011-06-21 14:32:12 ----A---- C:\Windows\system32\actxprxy.dll
2011-06-21 14:32:11 ----A---- C:\Windows\system32\wdc.dll
2011-06-21 14:32:11 ----A---- C:\Windows\system32\untfs.dll
2011-06-21 14:32:11 ----A---- C:\Windows\system32\StructuredQuery.dll
2011-06-21 14:32:11 ----A---- C:\Windows\system32\scesrv.dll
2011-06-21 14:32:11 ----A---- C:\Windows\system32\rastls.dll
2011-06-21 14:32:10 ----A---- C:\Windows\system32\wlanpref.dll
2011-06-21 14:32:10 ----A---- C:\Windows\system32\Vault.dll
2011-06-21 14:32:10 ----A---- C:\Windows\system32\sppsvc.exe
2011-06-21 14:32:10 ----A---- C:\Windows\system32\sdclt.exe
2011-06-21 14:32:10 ----A---- C:\Windows\system32\RpcRtRemote.dll
2011-06-21 14:32:10 ----A---- C:\Windows\system32\nci.dll
2011-06-21 14:32:10 ----A---- C:\Windows\system32\ListSvc.dll
2011-06-21 14:32:10 ----A---- C:\Windows\system32\drivers\ataport.sys
2011-06-21 14:32:09 ----A---- C:\Windows\system32\WMNetMgr.dll
2011-06-21 14:32:09 ----A---- C:\Windows\system32\Robocopy.exe
2011-06-21 14:32:09 ----A---- C:\Windows\system32\DxpTaskSync.dll
2011-06-21 14:32:08 ----A---- C:\Windows\system32\XpsRasterService.dll
2011-06-21 14:32:08 ----A---- C:\Windows\system32\userinit.exe
2011-06-21 14:32:08 ----A---- C:\Windows\system32\taskmgr.exe
2011-06-21 14:32:08 ----A---- C:\Windows\system32\sharemediacpl.dll
2011-06-21 14:32:08 ----A---- C:\Windows\system32\puiobj.dll
2011-06-21 14:32:08 ----A---- C:\Windows\system32\mtxclu.dll
2011-06-21 14:32:08 ----A---- C:\Windows\system32\msdri.dll
2011-06-21 14:32:08 ----A---- C:\Windows\system32\drivers\mpio.sys
2011-06-21 14:32:08 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2011-06-21 14:32:08 ----A---- C:\Windows\system32\Display.dll
2011-06-21 14:32:08 ----A---- C:\Windows\system32\cscui.dll
2011-06-21 14:32:07 ----A---- C:\Windows\system32\termmgr.dll
2011-06-21 14:32:07 ----A---- C:\Windows\system32\eudcedit.exe
2011-06-21 14:32:07 ----A---- C:\Windows\system32\drivers\winhv.sys
2011-06-21 14:32:07 ----A---- C:\Windows\system32\drivers\scsiport.sys
2011-06-21 14:32:07 ----A---- C:\Windows\system32\DiagCpl.dll
2011-06-21 14:32:06 ----A---- C:\Windows\system32\wiadefui.dll
2011-06-21 14:32:06 ----A---- C:\Windows\system32\sppcomapi.dll
2011-06-21 14:32:06 ----A---- C:\Windows\system32\shsetup.dll
2011-06-21 14:32:06 ----A---- C:\Windows\system32\rasppp.dll
2011-06-21 14:32:06 ----A---- C:\Windows\system32\msdtctm.dll
2011-06-21 14:32:06 ----A---- C:\Windows\system32\msconfig.exe
2011-06-21 14:32:06 ----A---- C:\Windows\system32\logoncli.dll
2011-06-21 14:32:06 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2011-06-21 14:32:06 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2011-06-21 14:32:06 ----A---- C:\Windows\system32\cabview.dll
2011-06-21 14:32:06 ----A---- C:\Windows\system32\biocpl.dll
2011-06-21 14:32:05 ----A---- C:\Windows\system32\themecpl.dll
2011-06-21 14:32:05 ----A---- C:\Windows\system32\SensorsCpl.dll
2011-06-21 14:32:05 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2011-06-21 14:32:05 ----A---- C:\Windows\system32\drivers\storvsc.sys
2011-06-21 14:32:04 ----A---- C:\Windows\system32\wpccpl.dll
2011-06-21 14:32:04 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2011-06-21 14:32:04 ----A---- C:\Windows\system32\hgcpl.dll
2011-06-21 14:32:04 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2011-06-21 14:32:04 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2011-06-21 14:32:04 ----A---- C:\Windows\system32\dnscmmc.dll
2011-06-21 14:32:03 ----A---- C:\Windows\system32\winsrv.dll
2011-06-21 14:32:03 ----A---- C:\Windows\system32\tapisrv.dll
2011-06-21 14:32:03 ----A---- C:\Windows\system32\scecli.dll
2011-06-21 14:32:03 ----A---- C:\Windows\system32\mscories.dll
2011-06-21 14:32:03 ----A---- C:\Windows\system32\mscms.dll
2011-06-21 14:32:03 ----A---- C:\Windows\system32\mprddm.dll
2011-06-21 14:32:03 ----A---- C:\Windows\system32\localsec.dll
2011-06-21 14:32:03 ----A---- C:\Windows\system32\fontext.dll
2011-06-21 14:32:03 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2011-06-21 14:32:02 ----A---- C:\Windows\system32\wlanui.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\wkssvc.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\w32tm.exe
2011-06-21 14:32:02 ----A---- C:\Windows\system32\VAN.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\usercpl.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\srcore.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\SndVolSSO.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\SndVol.exe
2011-06-21 14:32:02 ----A---- C:\Windows\system32\qedit.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\qdvd.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\prntvpt.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\netcenter.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\mblctr.exe
2011-06-21 14:32:02 ----A---- C:\Windows\system32\KMSVC.DLL
2011-06-21 14:32:02 ----A---- C:\Windows\system32\iasacct.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\bcdsrv.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\batmeter.dll
2011-06-21 14:32:01 ----A---- C:\Windows\system32\zipfldr.dll
2011-06-21 14:32:01 ----A---- C:\Windows\system32\wpdbusenum.dll
2011-06-21 14:32:01 ----A---- C:\Windows\system32\wksprt.exe
2011-06-21 14:32:01 ----A---- C:\Windows\system32\spwizeng.dll
2011-06-21 14:32:01 ----A---- C:\Windows\system32\fdeploy.dll
2011-06-21 14:32:01 ----A---- C:\Windows\system32\drivers\ks.sys
2011-06-21 14:32:01 ----A---- C:\Windows\system32\azroleui.dll
2011-06-21 14:32:01 ----A---- C:\Windows\system32\accessibilitycpl.dll
2011-06-21 14:32:00 ----A---- C:\Windows\system32\networkmap.dll
2011-06-21 14:32:00 ----A---- C:\Windows\system32\netjoin.dll
2011-06-21 14:32:00 ----A---- C:\Windows\system32\mspbda.dll
2011-06-21 14:32:00 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2011-06-21 14:32:00 ----A---- C:\Windows\system32\cryptui.dll
2011-06-21 14:32:00 ----A---- C:\Windows\system32\adsldp.dll
2011-06-21 14:31:59 ----A---- C:\Windows\system32\wusa.exe
2011-06-21 14:31:59 ----A---- C:\Windows\system32\prnfldr.dll
2011-06-21 14:31:59 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2011-06-21 14:31:59 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2011-06-21 14:31:59 ----A---- C:\Windows\system32\Faultrep.dll
2011-06-21 14:31:58 ----A---- C:\Windows\system32\taskhost.exe
2011-06-21 14:31:58 ----A---- C:\Windows\system32\taskbarcpl.dll
2011-06-21 14:31:58 ----A---- C:\Windows\system32\sud.dll
2011-06-21 14:31:58 ----A---- C:\Windows\system32\slui.exe
2011-06-21 14:31:58 ----A---- C:\Windows\system32\photowiz.dll
2011-06-21 14:31:58 ----A---- C:\Windows\system32\msieftp.dll
2011-06-21 14:31:58 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2011-06-21 14:31:58 ----A---- C:\Windows\system32\iprtrmgr.dll
2011-06-21 14:31:58 ----A---- C:\Windows\system32\iasrad.dll
2011-06-21 14:31:58 ----A---- C:\Windows\system32\drivers\hidclass.sys
2011-06-21 14:31:58 ----A---- C:\Windows\system32\credssp.dll
2011-06-21 14:31:58 ----A---- C:\Windows\system32\ActionCenter.dll
2011-06-21 14:31:57 ----A---- C:\Windows\system32\sisbkup.dll
2011-06-21 14:31:57 ----A---- C:\Windows\system32\shwebsvc.dll
2011-06-21 14:31:57 ----A---- C:\Windows\system32\rdpcorekmts.dll
2011-06-21 14:31:57 ----A---- C:\Windows\system32\ifsutil.dll
2011-06-21 14:31:57 ----A---- C:\Windows\system32\halacpi.dll
2011-06-21 14:31:57 ----A---- C:\Windows\system32\ftp.exe
2011-06-21 14:31:57 ----A---- C:\Windows\system32\dot3cfg.dll
2011-06-21 14:31:57 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2011-06-21 14:31:56 ----A---- C:\Windows\system32\wpd_ci.dll
2011-06-21 14:31:56 ----A---- C:\Windows\system32\syncui.dll
2011-06-21 14:31:56 ----A---- C:\Windows\system32\sdcpl.dll
2011-06-21 14:31:56 ----A---- C:\Windows\system32\recovery.dll
2011-06-21 14:31:56 ----A---- C:\Windows\system32\odbcjt32.dll
2011-06-21 14:31:56 ----A---- C:\Windows\system32\efscore.dll
2011-06-21 14:31:56 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2011-06-21 14:31:55 ----A---- C:\Windows\system32\wmpmde.dll
2011-06-21 14:31:55 ----A---- C:\Windows\system32\sppnp.dll
2011-06-21 14:31:55 ----A---- C:\Windows\system32\rdpwsx.dll
2011-06-21 14:31:55 ----A---- C:\Windows\system32\ntlanman.dll
2011-06-21 14:31:55 ----A---- C:\Windows\system32\fsquirt.exe
2011-06-21 14:31:55 ----A---- C:\Windows\system32\dskquoui.dll
2011-06-21 14:31:55 ----A---- C:\Windows\system32\DeviceCenter.dll
2011-06-21 14:31:55 ----A---- C:\Windows\system32\bcdedit.exe
2011-06-21 14:31:55 ----A---- C:\Windows\system32\autoplay.dll
2011-06-21 14:31:54 ----A---- C:\Windows\system32\vdsutil.dll
2011-06-21 14:31:54 ----A---- C:\Windows\system32\systemcpl.dll
2011-06-21 14:31:54 ----A---- C:\Windows\system32\rtutils.dll
2011-06-21 14:31:54 ----A---- C:\Windows\system32\OobeFldr.dll
2011-06-21 14:31:53 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2011-06-21 14:31:53 ----A---- C:\Windows\system32\sethc.exe
2011-06-21 14:31:53 ----A---- C:\Windows\system32\rstrui.exe
2011-06-21 14:31:53 ----A---- C:\Windows\system32\riched20.dll
2011-06-21 14:31:53 ----A---- C:\Windows\system32\recdisc.exe
2011-06-21 14:31:53 ----A---- C:\Windows\system32\ntprint.dll
2011-06-21 14:31:53 ----A---- C:\Windows\system32\nshwfp.dll
2011-06-21 14:31:53 ----A---- C:\Windows\system32\drivers\tdx.sys
2011-06-21 14:31:53 ----A---- C:\Windows\system32\bcdboot.exe
2011-06-21 14:31:52 ----A---- C:\Windows\system32\wmpsrcwp.dll
2011-06-21 14:31:52 ----A---- C:\Windows\system32\netplwiz.dll
2011-06-21 14:31:52 ----A---- C:\Windows\system32\NAPHLPR.DLL
2011-06-21 14:31:52 ----A---- C:\Windows\system32\migisol.dll
2011-06-21 14:31:52 ----A---- C:\Windows\system32\fms.dll
2011-06-21 14:31:52 ----A---- C:\Windows\system32\blackbox.dll
2011-06-21 14:31:52 ----A---- C:\Windows\system32\AxInstSv.dll
2011-06-21 14:31:52 ----A---- C:\Windows\system32\activeds.dll
2011-06-21 14:31:51 ----A---- C:\Windows\system32\wsqmcons.exe
2011-06-21 14:31:51 ----A---- C:\Windows\system32\nshipsec.dll
2011-06-21 14:31:51 ----A---- C:\Windows\system32\nlaapi.dll
2011-06-21 14:31:51 ----A---- C:\Windows\system32\isoburn.exe
2011-06-21 14:31:51 ----A---- C:\Windows\system32\httpapi.dll
2011-06-21 14:31:51 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2011-06-21 14:31:51 ----A---- C:\Windows\system32\dot3svc.dll
2011-06-21 14:31:51 ----A---- C:\Windows\system32\cdosys.dll
2011-06-21 14:31:51 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2011-06-21 14:31:51 ----A---- C:\Windows\system32\asycfilt.dll
2011-06-21 14:31:50 ----A---- C:\Windows\system32\wuwebv.dll
2011-06-21 14:31:50 ----A---- C:\Windows\system32\wlanmsm.dll
2011-06-21 14:31:50 ----A---- C:\Windows\system32\wavemsp.dll
2011-06-21 14:31:50 ----A---- C:\Windows\system32\tzutil.exe
2011-06-21 14:31:50 ----A---- C:\Windows\system32\sysclass.dll
2011-06-21 14:31:50 ----A---- C:\Windows\system32\ReAgent.dll
2011-06-21 14:31:50 ----A---- C:\Windows\system32\provsvc.dll
2011-06-21 14:31:50 ----A---- C:\Windows\system32\msftedit.dll
2011-06-21 14:31:50 ----A---- C:\Windows\system32\dsuiext.dll
2011-06-21 14:31:50 ----A---- C:\Windows\system32\dot3ui.dll
2011-06-21 14:31:50 ----A---- C:\Windows\system32\dfrgui.exe
2011-06-21 14:31:49 ----A---- C:\Windows\system32\wvc.dll
2011-06-21 14:31:49 ----A---- C:\Windows\system32\wtsapi32.dll
2011-06-21 14:31:49 ----A---- C:\Windows\system32\wimgapi.dll
2011-06-21 14:31:49 ----A---- C:\Windows\system32\ocsetup.exe
2011-06-21 14:31:49 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2011-06-21 14:31:49 ----A---- C:\Windows\system32\appinfo.dll
2011-06-21 14:31:49 ----A---- C:\Windows\system32\AdmTmpl.dll
2011-06-21 14:31:48 ----A---- C:\Windows\system32\twext.dll
2011-06-21 14:31:48 ----A---- C:\Windows\system32\mstask.dll
2011-06-21 14:31:48 ----A---- C:\Windows\system32\certprop.dll
2011-06-21 14:31:47 ----A---- C:\Windows\twain_32.dll
2011-06-21 14:31:47 ----A---- C:\Windows\system32\uxlib.dll
2011-06-21 14:31:47 ----A---- C:\Windows\system32\shdocvw.dll
2011-06-21 14:31:47 ----A---- C:\Windows\system32\setupugc.exe
2011-06-21 14:31:47 ----A---- C:\Windows\system32\qcap.dll
2011-06-21 14:31:47 ----A---- C:\Windows\system32\qasf.dll
2011-06-21 14:31:47 ----A---- C:\Windows\system32\PresentationSettings.exe
2011-06-21 14:31:46 ----A---- C:\Windows\system32\wwanconn.dll
2011-06-21 14:31:46 ----A---- C:\Windows\system32\ssText3d.scr
2011-06-21 14:31:46 ----A---- C:\Windows\system32\srrstr.dll
2011-06-21 14:31:46 ----A---- C:\Windows\system32\slwga.dll
2011-06-21 14:31:46 ----A---- C:\Windows\system32\nslookup.exe
2011-06-21 14:31:46 ----A---- C:\Windows\system32\msvfw32.dll
2011-06-21 14:31:46 ----A---- C:\Windows\system32\mciavi32.dll
2011-06-21 14:31:46 ----A---- C:\Windows\system32\imm32.dll
2011-06-21 14:31:46 ----A---- C:\Windows\system32\audiodev.dll
2011-06-21 14:31:45 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2011-06-21 14:31:45 ----A---- C:\Windows\system32\wmdrmsdk.dll
2011-06-21 14:31:45 ----A---- C:\Windows\system32\wimserv.exe
2011-06-21 14:31:45 ----A---- C:\Windows\system32\msscp.dll
2011-06-21 14:31:45 ----A---- C:\Windows\system32\diskraid.exe
2011-06-21 14:31:45 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2011-06-21 14:31:45 ----A---- C:\Windows\system32\clusapi.dll
2011-06-21 14:31:44 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2011-06-21 14:31:44 ----A---- C:\Windows\system32\TSpkg.dll
2011-06-21 14:31:44 ----A---- C:\Windows\system32\sdrsvc.dll
2011-06-21 14:31:44 ----A---- C:\Windows\system32\remotepg.dll
2011-06-21 14:31:44 ----A---- C:\Windows\system32\rdpencom.dll
2011-06-21 14:31:44 ----A---- C:\Windows\system32\raschap.dll
2011-06-21 14:31:44 ----A---- C:\Windows\system32\QUTIL.DLL
2011-06-21 14:31:44 ----A---- C:\Windows\system32\perfmon.exe
2011-06-21 14:31:44 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2011-06-21 14:31:44 ----A---- C:\Windows\system32\input.dll
2011-06-21 14:31:44 ----A---- C:\Windows\system32\drmmgrtn.dll
2011-06-21 14:31:44 ----A---- C:\Windows\system32\browser.dll
2011-06-21 14:31:44 ----A---- C:\Windows\system32\acppage.dll
2011-06-21 14:31:43 ----A---- C:\Windows\system32\wmpdxm.dll
2011-06-21 14:31:43 ----A---- C:\Windows\system32\vpnikeapi.dll
2011-06-21 14:31:43 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2011-06-21 14:31:43 ----A---- C:\Windows\system32\onexui.dll
2011-06-21 14:31:43 ----A---- C:\Windows\system32\olepro32.dll
2011-06-21 14:31:43 ----A---- C:\Windows\system32\odbccp32.dll
2011-06-21 14:31:43 ----A---- C:\Windows\system32\ocsetapi.dll
2011-06-21 14:31:43 ----A---- C:\Windows\system32\nltest.exe
2011-06-21 14:31:43 ----A---- C:\Windows\system32\networkexplorer.dll
2011-06-21 14:31:42 ----A---- C:\Windows\system32\wpdwcn.dll
2011-06-21 14:31:42 ----A---- C:\Windows\system32\vdsbas.dll
2011-06-21 14:31:42 ----A---- C:\Windows\system32\sspisrv.dll
2011-06-21 14:31:42 ----A---- C:\Windows\system32\runonce.exe
2011-06-21 14:31:42 ----A---- C:\Windows\system32\Mcx2Svc.dll
2011-06-21 14:31:42 ----A---- C:\Windows\system32\logagent.exe
2011-06-21 14:31:42 ----A---- C:\Windows\system32\iTVData.dll
2011-06-21 14:31:42 ----A---- C:\Windows\system32\dxdiagn.dll
2011-06-21 14:31:42 ----A---- C:\Windows\system32\drivers\sdbus.sys
2011-06-21 14:31:42 ----A---- C:\Windows\bfsvc.exe
2011-06-21 14:31:41 ----A---- C:\Windows\system32\wmpshell.dll
2011-06-21 14:31:41 ----A---- C:\Windows\system32\wmdrmdev.dll
2011-06-21 14:31:41 ----A---- C:\Windows\system32\shacct.dll
2011-06-21 14:31:41 ----A---- C:\Windows\system32\PnPUnattend.exe
2011-06-21 14:31:41 ----A---- C:\Windows\system32\msvidc32.dll
2011-06-21 14:31:41 ----A---- C:\Windows\system32\msiexec.exe
2011-06-21 14:31:41 ----A---- C:\Windows\system32\MFPlay.dll
2011-06-21 14:31:41 ----A---- C:\Windows\system32\eapp3hst.dll
2011-06-21 14:31:41 ----A---- C:\Windows\system32\drivers\rmcast.sys
2011-06-21 14:31:41 ----A---- C:\Windows\system32\d3d10level9.dll
2011-06-21 14:31:40 ----A---- C:\Windows\system32\lsmproxy.dll
2011-06-21 14:31:40 ----A---- C:\Windows\system32\bitsadmin.exe
2011-06-21 14:31:39 ----A---- C:\Windows\system32\wudriver.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\WPDSp.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\unimdmat.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\tabcal.exe
2011-06-21 14:31:39 ----A---- C:\Windows\system32\srvcli.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\sqlcese30.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\rdpd3d.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\pdh.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\OpcServices.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\ncryptui.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\mprapi.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\logman.exe
2011-06-21 14:31:39 ----A---- C:\Windows\system32\iscsium.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\cscapi.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\Bubbles.scr
2011-06-21 14:31:38 ----A---- C:\Windows\system32\wwanprotdim.dll
2011-06-21 14:31:38 ----A---- C:\Windows\system32\WUDFPlatform.dll
2011-06-21 14:31:38 ----A---- C:\Windows\system32\WMPhoto.dll
2011-06-21 14:31:38 ----A---- C:\Windows\system32\tsgqec.dll
2011-06-21 14:31:38 ----A---- C:\Windows\system32\Ribbons.scr
2011-06-21 14:31:38 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2011-06-21 14:31:38 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2011-06-21 14:31:38 ----A---- C:\Windows\system32\olethk32.dll
2011-06-21 14:31:38 ----A---- C:\Windows\system32\odbctrac.dll
2011-06-21 14:31:38 ----A---- C:\Windows\system32\Mystify.scr
2011-06-21 14:31:38 ----A---- C:\Windows\system32\MdSched.exe
2011-06-21 14:31:38 ----A---- C:\Windows\system32\mapistub.dll
2011-06-21 14:31:38 ----A---- C:\Windows\system32\mapi32.dll
2011-06-21 14:32:33 ----A---- C:\Windows\system32\cmd.exe
2011-06-21 14:32:33 ----A---- C:\Windows\system32\audiosrv.dll
2011-06-21 14:32:32 ----A---- C:\Windows\system32\Wldap32.dll
2011-06-21 14:32:32 ----A---- C:\Windows\system32\win32spl.dll
2011-06-21 14:32:32 ----A---- C:\Windows\system32\rdpendp.dll
2011-06-21 14:32:32 ----A---- C:\Windows\system32\propsys.dll
2011-06-21 14:32:32 ----A---- C:\Windows\system32\nlasvc.dll
2011-06-21 14:32:32 ----A---- C:\Windows\system32\mfds.dll
2011-06-21 14:32:32 ----A---- C:\Windows\system32\framedynos.dll
2011-06-21 14:32:32 ----A---- C:\Windows\system32\drivers\volsnap.sys
2011-06-21 14:32:32 ----A---- C:\Windows\system32\BFE.DLL
2011-06-21 14:32:31 ----A---- C:\Windows\system32\wucltux.dll
2011-06-21 14:32:31 ----A---- C:\Windows\system32\wuaueng.dll
2011-06-21 14:32:31 ----A---- C:\Windows\system32\winresume.exe
2011-06-21 14:32:31 ----A---- C:\Windows\system32\werconcpl.dll
2011-06-21 14:32:31 ----A---- C:\Windows\system32\samsrv.dll
2011-06-21 14:32:31 ----A---- C:\Windows\system32\rdpclip.exe
2011-06-21 14:32:31 ----A---- C:\Windows\system32\profsvc.dll
2011-06-21 14:32:31 ----A---- C:\Windows\system32\ncsi.dll
2011-06-21 14:32:31 ----A---- C:\Windows\system32\drivers\netio.sys
2011-06-21 14:32:31 ----A---- C:\Windows\system32\drivers\ndis.sys
2011-06-21 14:32:31 ----A---- C:\Windows\system32\cscsvc.dll
2011-06-21 14:32:31 ----A---- C:\Windows\system32\azroles.dll
2011-06-21 14:32:30 ----A---- C:\Windows\system32\themeui.dll
2011-06-21 14:32:30 ----A---- C:\Windows\system32\taskeng.exe
2011-06-21 14:32:30 ----A---- C:\Windows\system32\spp.dll
2011-06-21 14:32:30 ----A---- C:\Windows\system32\mswsock.dll
2011-06-21 14:32:30 ----A---- C:\Windows\system32\drivers\http.sys
2011-06-21 14:32:30 ----A---- C:\Windows\system32\dhcpcore.dll
2011-06-21 14:32:30 ----A---- C:\Windows\system32\credui.dll
2011-06-21 14:32:30 ----A---- C:\Windows\system32\appmgr.dll
2011-06-21 14:32:29 ----A---- C:\Windows\system32\wintrust.dll
2011-06-21 14:32:29 ----A---- C:\Windows\system32\taskcomp.dll
2011-06-21 14:32:29 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2011-06-21 14:32:29 ----A---- C:\Windows\system32\msxml3.dll
2011-06-21 14:32:29 ----A---- C:\Windows\system32\mfreadwrite.dll
2011-06-21 14:32:29 ----A---- C:\Windows\system32\evr.dll
2011-06-21 14:32:29 ----A---- C:\Windows\system32\dxgi.dll
2011-06-21 14:32:29 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2011-06-21 14:32:29 ----A---- C:\Windows\system32\dbghelp.dll
2011-06-21 14:32:29 ----A---- C:\Windows\system32\basecsp.dll
2011-06-21 14:32:28 ----A---- C:\Windows\system32\WinSATAPI.dll
2011-06-21 14:32:28 ----A---- C:\Windows\system32\vpnike.dll
2011-06-21 14:32:28 ----A---- C:\Windows\system32\sqlsrv32.dll
2011-06-21 14:32:28 ----A---- C:\Windows\system32\spoolsv.exe
2011-06-21 14:32:28 ----A---- C:\Windows\system32\QAGENTRT.DLL
2011-06-21 14:32:28 ----A---- C:\Windows\system32\gdi32.dll
2011-06-21 14:32:28 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2011-06-21 14:32:28 ----A---- C:\Windows\system32\calc.exe
2011-06-21 14:32:27 ----A---- C:\Windows\system32\UIRibbon.dll
2011-06-21 14:32:27 ----A---- C:\Windows\system32\srvsvc.dll
2011-06-21 14:32:27 ----A---- C:\Windows\system32\lpksetup.exe
2011-06-21 14:32:27 ----A---- C:\Windows\system32\fveapi.dll
2011-06-21 14:32:27 ----A---- C:\Windows\system32\cryptsvc.dll
2011-06-21 14:32:26 ----A---- C:\Windows\system32\ws2_32.dll
2011-06-21 14:32:26 ----A---- C:\Windows\system32\sxs.dll
2011-06-21 14:32:26 ----A---- C:\Windows\system32\stobject.dll
2011-06-21 14:32:26 ----A---- C:\Windows\system32\netshell.dll
2011-06-21 14:32:26 ----A---- C:\Windows\system32\hgprint.dll
2011-06-21 14:32:26 ----A---- C:\Windows\system32\drivers\rdbss.sys
2011-06-21 14:32:26 ----A---- C:\Windows\system32\drivers\msdsm.sys
2011-06-21 14:32:26 ----A---- C:\Windows\system32\drivers\fvevol.sys
2011-06-21 14:32:25 ----A---- C:\Windows\system32\wmpeffects.dll
2011-06-21 14:32:25 ----A---- C:\Windows\system32\prncache.dll
2011-06-21 14:32:25 ----A---- C:\Windows\system32\printui.dll
2011-06-21 14:32:25 ----A---- C:\Windows\system32\msi.dll
2011-06-21 14:32:25 ----A---- C:\Windows\system32\inetpp.dll
2011-06-21 14:32:25 ----A---- C:\Windows\system32\dps.dll
2011-06-21 14:32:25 ----A---- C:\Windows\system32\comctl32.dll
2011-06-21 14:32:24 ----A---- C:\Windows\system32\WSDApi.dll
2011-06-21 14:32:24 ----A---- C:\Windows\system32\rpchttp.dll
2011-06-21 14:32:24 ----A---- C:\Windows\system32\net1.exe
2011-06-21 14:32:24 ----A---- C:\Windows\system32\FXSSVC.exe
2011-06-21 14:32:24 ----A---- C:\Windows\system32\drivers\vmbus.sys
2011-06-21 14:32:24 ----A---- C:\Windows\system32\drivers\pci.sys
2011-06-21 14:32:24 ----A---- C:\Windows\system32\ci.dll
2011-06-21 14:32:24 ----A---- C:\Windows\system32\aitagent.exe
2011-06-21 14:32:24 ----A---- C:\Windows\system32\aepdu.dll
2011-06-21 14:32:23 ----A---- C:\Windows\system32\WMVCORE.DLL
2011-06-21 14:32:23 ----A---- C:\Windows\system32\wlangpui.dll
2011-06-21 14:32:23 ----A---- C:\Windows\system32\vds.exe
2011-06-21 14:32:23 ----A---- C:\Windows\system32\scansetting.dll
2011-06-21 14:32:23 ----A---- C:\Windows\system32\MMDevAPI.dll
2011-06-21 14:32:23 ----A---- C:\Windows\system32\davclnt.dll
2011-06-21 14:32:23 ----A---- C:\Windows\system32\aaclient.dll
2011-06-21 14:32:22 ----A---- C:\Windows\system32\wpdshext.dll
2011-06-21 14:32:22 ----A---- C:\Windows\system32\webservices.dll
2011-06-21 14:32:22 ----A---- C:\Windows\system32\t2embed.dll
2011-06-21 14:32:22 ----A---- C:\Windows\system32\scrptadm.dll
2011-06-21 14:32:22 ----A---- C:\Windows\system32\QSHVHOST.DLL
2011-06-21 14:32:22 ----A---- C:\Windows\system32\pnidui.dll
2011-06-21 14:32:22 ----A---- C:\Windows\system32\IPSECSVC.DLL
2011-06-21 14:32:22 ----A---- C:\Windows\system32\drivers\termdd.sys
2011-06-21 14:32:22 ----A---- C:\Windows\system32\consent.exe
2011-06-21 14:32:21 ----A---- C:\Windows\system32\vmicsvc.exe
2011-06-21 14:32:21 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2011-06-21 14:32:21 ----A---- C:\Windows\system32\tscfgwmi.dll
2011-06-21 14:32:21 ----A---- C:\Windows\system32\SyncCenter.dll
2011-06-21 14:32:21 ----A---- C:\Windows\system32\sdengin2.dll
2011-06-21 14:32:21 ----A---- C:\Windows\system32\netdiagfx.dll
2011-06-21 14:32:21 ----A---- C:\Windows\system32\fde.dll
2011-06-21 14:32:21 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2011-06-21 14:32:21 ----A---- C:\Windows\system32\drivers\rdpdr.sys
2011-06-21 14:32:20 ----A---- C:\Windows\system32\wuapi.dll
2011-06-21 14:32:20 ----A---- C:\Windows\system32\wscapi.dll
2011-06-21 14:32:20 ----A---- C:\Windows\system32\wisptis.exe
2011-06-21 14:32:20 ----A---- C:\Windows\system32\WinSCard.dll
2011-06-21 14:32:20 ----A---- C:\Windows\system32\pla.dll
2011-06-21 14:32:20 ----A---- C:\Windows\system32\msasn1.dll
2011-06-21 14:32:20 ----A---- C:\Windows\system32\cscobj.dll
2011-06-21 14:32:19 ----A---- C:\Windows\system32\winsta.dll
2011-06-21 14:32:19 ----A---- C:\Windows\system32\setupcl.exe
2011-06-21 14:32:19 ----A---- C:\Windows\system32\rdpcore.dll
2011-06-21 14:32:19 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2011-06-21 14:32:19 ----A---- C:\Windows\system32\mcmde.dll
2011-06-21 14:32:19 ----A---- C:\Windows\system32\imapi2.dll
2011-06-21 14:32:19 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2011-06-21 14:32:19 ----A---- C:\Windows\system32\drivers\msahci.sys
2011-06-21 14:32:19 ----A---- C:\Windows\system32\conhost.exe
2011-06-21 14:32:18 ----A---- C:\Windows\system32\WUDFSvc.dll
2011-06-21 14:32:18 ----A---- C:\Windows\system32\wiaservc.dll
2011-06-21 14:32:18 ----A---- C:\Windows\system32\ntshrui.dll
2011-06-21 14:32:18 ----A---- C:\Windows\system32\gameux.dll
2011-06-21 14:32:18 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2011-06-21 14:32:18 ----A---- C:\Windows\system32\aeinv.dll
2011-06-21 14:32:17 ----A---- C:\Windows\system32\WMPEncEn.dll
2011-06-21 14:32:17 ----A---- C:\Windows\system32\shsvcs.dll
2011-06-21 14:32:17 ----A---- C:\Windows\system32\rasmans.dll
2011-06-21 14:32:17 ----A---- C:\Windows\system32\onex.dll
2011-06-21 14:32:17 ----A---- C:\Windows\system32\dwmredir.dll
2011-06-21 14:32:17 ----A---- C:\Windows\system32\drivers\acpi.sys
2011-06-21 14:32:16 ----A---- C:\Windows\system32\winmm.dll
2011-06-21 14:32:16 ----A---- C:\Windows\system32\vaultsvc.dll
2011-06-21 14:32:16 ----A---- C:\Windows\system32\TabSvc.dll
2011-06-21 14:32:16 ----A---- C:\Windows\system32\hbaapi.dll
2011-06-21 14:32:16 ----A---- C:\Windows\system32\drivers\udfs.sys
2011-06-21 14:32:16 ----A---- C:\Windows\system32\autofmt.exe
2011-06-21 14:32:15 ----A---- C:\Windows\system32\samcli.dll
2011-06-21 14:32:15 ----A---- C:\Windows\system32\proquota.exe
2011-06-21 14:32:15 ----A---- C:\Windows\system32\netiohlp.dll
2011-06-21 14:32:15 ----A---- C:\Windows\system32\Narrator.exe
2011-06-21 14:32:15 ----A---- C:\Windows\system32\msutb.dll
2011-06-21 14:32:15 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2011-06-21 14:32:15 ----A---- C:\Windows\system32\halmacpi.dll
2011-06-21 14:32:15 ----A---- C:\Windows\system32\hal.dll
2011-06-21 14:32:15 ----A---- C:\Windows\system32\bootres.dll
2011-06-21 14:32:15 ----A---- C:\Windows\system32\autochk.exe
2011-06-21 14:32:15 ----A---- C:\Windows\system32\AudioSes.dll
2011-06-21 14:32:15 ----A---- C:\Windows\system32\audiodg.exe
2011-06-21 14:32:14 ----A---- C:\Windows\system32\thumbcache.dll
2011-06-21 14:32:14 ----A---- C:\Windows\system32\tcpipcfg.dll
2011-06-21 14:32:14 ----A---- C:\Windows\system32\srchadmin.dll
2011-06-21 14:32:14 ----A---- C:\Windows\system32\schtasks.exe
2011-06-21 14:32:14 ----A---- C:\Windows\system32\regapi.dll
2011-06-21 14:32:14 ----A---- C:\Windows\system32\msinfo32.exe
2011-06-21 14:32:14 ----A---- C:\Windows\system32\mimefilt.dll
2011-06-21 14:32:14 ----A---- C:\Windows\system32\ipsmsnap.dll
2011-06-21 14:32:14 ----A---- C:\Windows\system32\drivers\winusb.sys
2011-06-21 14:32:14 ----A---- C:\Windows\system32\autoconv.exe
2011-06-21 14:32:13 ----A---- C:\Windows\system32\wcncsvc.dll
2011-06-21 14:32:13 ----A---- C:\Windows\system32\sspicli.dll
2011-06-21 14:32:13 ----A---- C:\Windows\system32\powercpl.dll
2011-06-21 14:32:13 ----A---- C:\Windows\system32\msihnd.dll
2011-06-21 14:32:13 ----A---- C:\Windows\system32\mscorier.dll
2011-06-21 14:32:13 ----A---- C:\Windows\system32\framedyn.dll
2011-06-21 14:32:13 ----A---- C:\Windows\system32\eapphost.dll
2011-06-21 14:32:13 ----A---- C:\Windows\system32\drivers\volmgr.sys
2011-06-21 14:32:12 ----A---- C:\Windows\system32\umpo.dll
2011-06-21 14:32:12 ----A---- C:\Windows\system32\QAGENT.DLL
2011-06-21 14:32:12 ----A---- C:\Windows\system32\netid.dll
2011-06-21 14:32:12 ----A---- C:\Windows\system32\DXP.dll
2011-06-21 14:32:12 ----A---- C:\Windows\system32\drivers\partmgr.sys
2011-06-21 14:32:12 ----A---- C:\Windows\system32\drivers\netbt.sys
2011-06-21 14:32:12 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2011-06-21 14:32:12 ----A---- C:\Windows\system32\actxprxy.dll
2011-06-21 14:32:11 ----A---- C:\Windows\system32\wdc.dll
2011-06-21 14:32:11 ----A---- C:\Windows\system32\untfs.dll
2011-06-21 14:32:11 ----A---- C:\Windows\system32\StructuredQuery.dll
2011-06-21 14:32:11 ----A---- C:\Windows\system32\scesrv.dll
2011-06-21 14:32:11 ----A---- C:\Windows\system32\rastls.dll
2011-06-21 14:32:10 ----A---- C:\Windows\system32\wlanpref.dll
2011-06-21 14:32:10 ----A---- C:\Windows\system32\Vault.dll
2011-06-21 14:32:10 ----A---- C:\Windows\system32\sppsvc.exe
2011-06-21 14:32:10 ----A---- C:\Windows\system32\sdclt.exe
2011-06-21 14:32:10 ----A---- C:\Windows\system32\RpcRtRemote.dll
2011-06-21 14:32:10 ----A---- C:\Windows\system32\nci.dll
2011-06-21 14:32:10 ----A---- C:\Windows\system32\ListSvc.dll
2011-06-21 14:32:10 ----A---- C:\Windows\system32\drivers\ataport.sys
2011-06-21 14:32:09 ----A---- C:\Windows\system32\WMNetMgr.dll
2011-06-21 14:32:09 ----A---- C:\Windows\system32\Robocopy.exe
2011-06-21 14:32:09 ----A---- C:\Windows\system32\DxpTaskSync.dll
2011-06-21 14:32:08 ----A---- C:\Windows\system32\XpsRasterService.dll
2011-06-21 14:32:08 ----A---- C:\Windows\system32\userinit.exe
2011-06-21 14:32:08 ----A---- C:\Windows\system32\taskmgr.exe
2011-06-21 14:32:08 ----A---- C:\Windows\system32\sharemediacpl.dll
2011-06-21 14:32:08 ----A---- C:\Windows\system32\puiobj.dll
2011-06-21 14:32:08 ----A---- C:\Windows\system32\mtxclu.dll
2011-06-21 14:32:08 ----A---- C:\Windows\system32\msdri.dll
2011-06-21 14:32:08 ----A---- C:\Windows\system32\drivers\mpio.sys
2011-06-21 14:32:08 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2011-06-21 14:32:08 ----A---- C:\Windows\system32\Display.dll
2011-06-21 14:32:08 ----A---- C:\Windows\system32\cscui.dll
2011-06-21 14:32:07 ----A---- C:\Windows\system32\termmgr.dll
2011-06-21 14:32:07 ----A---- C:\Windows\system32\eudcedit.exe
2011-06-21 14:32:07 ----A---- C:\Windows\system32\drivers\winhv.sys
2011-06-21 14:32:07 ----A---- C:\Windows\system32\drivers\scsiport.sys
2011-06-21 14:32:07 ----A---- C:\Windows\system32\DiagCpl.dll
2011-06-21 14:32:06 ----A---- C:\Windows\system32\wiadefui.dll
2011-06-21 14:32:06 ----A---- C:\Windows\system32\sppcomapi.dll
2011-06-21 14:32:06 ----A---- C:\Windows\system32\shsetup.dll
2011-06-21 14:32:06 ----A---- C:\Windows\system32\rasppp.dll
2011-06-21 14:32:06 ----A---- C:\Windows\system32\msdtctm.dll
2011-06-21 14:32:06 ----A---- C:\Windows\system32\msconfig.exe
2011-06-21 14:32:06 ----A---- C:\Windows\system32\logoncli.dll
2011-06-21 14:32:06 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2011-06-21 14:32:06 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2011-06-21 14:32:06 ----A---- C:\Windows\system32\cabview.dll
2011-06-21 14:32:06 ----A---- C:\Windows\system32\biocpl.dll
2011-06-21 14:32:05 ----A---- C:\Windows\system32\themecpl.dll
2011-06-21 14:32:05 ----A---- C:\Windows\system32\SensorsCpl.dll
2011-06-21 14:32:05 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2011-06-21 14:32:05 ----A---- C:\Windows\system32\drivers\storvsc.sys
2011-06-21 14:32:04 ----A---- C:\Windows\system32\wpccpl.dll
2011-06-21 14:32:04 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2011-06-21 14:32:04 ----A---- C:\Windows\system32\hgcpl.dll
2011-06-21 14:32:04 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2011-06-21 14:32:04 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2011-06-21 14:32:04 ----A---- C:\Windows\system32\dnscmmc.dll
2011-06-21 14:32:03 ----A---- C:\Windows\system32\winsrv.dll
2011-06-21 14:32:03 ----A---- C:\Windows\system32\tapisrv.dll
2011-06-21 14:32:03 ----A---- C:\Windows\system32\scecli.dll
2011-06-21 14:32:03 ----A---- C:\Windows\system32\mscories.dll
2011-06-21 14:32:03 ----A---- C:\Windows\system32\mscms.dll
2011-06-21 14:32:03 ----A---- C:\Windows\system32\mprddm.dll
2011-06-21 14:32:03 ----A---- C:\Windows\system32\localsec.dll
2011-06-21 14:32:03 ----A---- C:\Windows\system32\fontext.dll
2011-06-21 14:32:03 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2011-06-21 14:32:02 ----A---- C:\Windows\system32\wlanui.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\wkssvc.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\w32tm.exe
2011-06-21 14:32:02 ----A---- C:\Windows\system32\VAN.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\usercpl.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\srcore.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\SndVolSSO.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\SndVol.exe
2011-06-21 14:32:02 ----A---- C:\Windows\system32\qedit.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\qdvd.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\prntvpt.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\netcenter.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\mblctr.exe
2011-06-21 14:32:02 ----A---- C:\Windows\system32\KMSVC.DLL
2011-06-21 14:32:02 ----A---- C:\Windows\system32\iasacct.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\bcdsrv.dll
2011-06-21 14:32:02 ----A---- C:\Windows\system32\batmeter.dll
2011-06-21 14:32:01 ----A---- C:\Windows\system32\zipfldr.dll
2011-06-21 14:32:01 ----A---- C:\Windows\system32\wpdbusenum.dll
2011-06-21 14:32:01 ----A---- C:\Windows\system32\wksprt.exe
2011-06-21 14:32:01 ----A---- C:\Windows\system32\spwizeng.dll
2011-06-21 14:32:01 ----A---- C:\Windows\system32\fdeploy.dll
2011-06-21 14:32:01 ----A---- C:\Windows\system32\drivers\ks.sys
2011-06-21 14:32:01 ----A---- C:\Windows\system32\azroleui.dll
2011-06-21 14:32:01 ----A---- C:\Windows\system32\accessibilitycpl.dll
2011-06-21 14:32:00 ----A---- C:\Windows\system32\networkmap.dll
2011-06-21 14:32:00 ----A---- C:\Windows\system32\netjoin.dll
2011-06-21 14:32:00 ----A---- C:\Windows\system32\mspbda.dll
2011-06-21 14:32:00 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2011-06-21 14:32:00 ----A---- C:\Windows\system32\cryptui.dll
2011-06-21 14:32:00 ----A---- C:\Windows\system32\adsldp.dll
2011-06-21 14:31:59 ----A---- C:\Windows\system32\wusa.exe
2011-06-21 14:31:59 ----A---- C:\Windows\system32\prnfldr.dll
2011-06-21 14:31:59 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2011-06-21 14:31:59 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2011-06-21 14:31:59 ----A---- C:\Windows\system32\Faultrep.dll
2011-06-21 14:31:58 ----A---- C:\Windows\system32\taskhost.exe
2011-06-21 14:31:58 ----A---- C:\Windows\system32\taskbarcpl.dll
2011-06-21 14:31:58 ----A---- C:\Windows\system32\sud.dll
2011-06-21 14:31:58 ----A---- C:\Windows\system32\slui.exe
2011-06-21 14:31:58 ----A---- C:\Windows\system32\photowiz.dll
2011-06-21 14:31:58 ----A---- C:\Windows\system32\msieftp.dll
2011-06-21 14:31:58 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2011-06-21 14:31:58 ----A---- C:\Windows\system32\iprtrmgr.dll
2011-06-21 14:31:58 ----A---- C:\Windows\system32\iasrad.dll
2011-06-21 14:31:58 ----A---- C:\Windows\system32\drivers\hidclass.sys
2011-06-21 14:31:58 ----A---- C:\Windows\system32\credssp.dll
2011-06-21 14:31:58 ----A---- C:\Windows\system32\ActionCenter.dll
2011-06-21 14:31:57 ----A---- C:\Windows\system32\sisbkup.dll
2011-06-21 14:31:57 ----A---- C:\Windows\system32\shwebsvc.dll
2011-06-21 14:31:57 ----A---- C:\Windows\system32\rdpcorekmts.dll
2011-06-21 14:31:57 ----A---- C:\Windows\system32\ifsutil.dll
2011-06-21 14:31:57 ----A---- C:\Windows\system32\halacpi.dll
2011-06-21 14:31:57 ----A---- C:\Windows\system32\ftp.exe
2011-06-21 14:31:57 ----A---- C:\Windows\system32\dot3cfg.dll
2011-06-21 14:31:57 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2011-06-21 14:31:56 ----A---- C:\Windows\system32\wpd_ci.dll
2011-06-21 14:31:56 ----A---- C:\Windows\system32\syncui.dll
2011-06-21 14:31:56 ----A---- C:\Windows\system32\sdcpl.dll
2011-06-21 14:31:56 ----A---- C:\Windows\system32\recovery.dll
2011-06-21 14:31:56 ----A---- C:\Windows\system32\odbcjt32.dll
2011-06-21 14:31:56 ----A---- C:\Windows\system32\efscore.dll
2011-06-21 14:31:56 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2011-06-21 14:31:55 ----A---- C:\Windows\system32\wmpmde.dll
2011-06-21 14:31:55 ----A---- C:\Windows\system32\sppnp.dll
2011-06-21 14:31:55 ----A---- C:\Windows\system32\rdpwsx.dll
2011-06-21 14:31:55 ----A---- C:\Windows\system32\ntlanman.dll
2011-06-21 14:31:55 ----A---- C:\Windows\system32\fsquirt.exe
2011-06-21 14:31:55 ----A---- C:\Windows\system32\dskquoui.dll
2011-06-21 14:31:55 ----A---- C:\Windows\system32\DeviceCenter.dll
2011-06-21 14:31:55 ----A---- C:\Windows\system32\bcdedit.exe
2011-06-21 14:31:55 ----A---- C:\Windows\system32\autoplay.dll
2011-06-21 14:31:54 ----A---- C:\Windows\system32\vdsutil.dll
2011-06-21 14:31:54 ----A---- C:\Windows\system32\systemcpl.dll
2011-06-21 14:31:54 ----A---- C:\Windows\system32\rtutils.dll
2011-06-21 14:31:54 ----A---- C:\Windows\system32\OobeFldr.dll
2011-06-21 14:31:53 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2011-06-21 14:31:53 ----A---- C:\Windows\system32\sethc.exe
2011-06-21 14:31:53 ----A---- C:\Windows\system32\rstrui.exe
2011-06-21 14:31:53 ----A---- C:\Windows\system32\riched20.dll
2011-06-21 14:31:53 ----A---- C:\Windows\system32\recdisc.exe
2011-06-21 14:31:53 ----A---- C:\Windows\system32\ntprint.dll
2011-06-21 14:31:53 ----A---- C:\Windows\system32\nshwfp.dll
2011-06-21 14:31:53 ----A---- C:\Windows\system32\drivers\tdx.sys
2011-06-21 14:31:53 ----A---- C:\Windows\system32\bcdboot.exe
2011-06-21 14:31:52 ----A---- C:\Windows\system32\wmpsrcwp.dll
2011-06-21 14:31:52 ----A---- C:\Windows\system32\netplwiz.dll
2011-06-21 14:31:52 ----A---- C:\Windows\system32\NAPHLPR.DLL
2011-06-21 14:31:52 ----A---- C:\Windows\system32\migisol.dll
2011-06-21 14:31:52 ----A---- C:\Windows\system32\fms.dll
2011-06-21 14:31:52 ----A---- C:\Windows\system32\blackbox.dll
2011-06-21 14:31:52 ----A---- C:\Windows\system32\AxInstSv.dll
2011-06-21 14:31:52 ----A---- C:\Windows\system32\activeds.dll
2011-06-21 14:31:51 ----A---- C:\Windows\system32\wsqmcons.exe
2011-06-21 14:31:51 ----A---- C:\Windows\system32\nshipsec.dll
2011-06-21 14:31:51 ----A---- C:\Windows\system32\nlaapi.dll
2011-06-21 14:31:51 ----A---- C:\Windows\system32\isoburn.exe
2011-06-21 14:31:51 ----A---- C:\Windows\system32\httpapi.dll
2011-06-21 14:31:51 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2011-06-21 14:31:51 ----A---- C:\Windows\system32\dot3svc.dll
2011-06-21 14:31:51 ----A---- C:\Windows\system32\cdosys.dll
2011-06-21 14:31:51 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2011-06-21 14:31:51 ----A---- C:\Windows\system32\asycfilt.dll
2011-06-21 14:31:50 ----A---- C:\Windows\system32\wuwebv.dll
2011-06-21 14:31:50 ----A---- C:\Windows\system32\wlanmsm.dll
2011-06-21 14:31:50 ----A---- C:\Windows\system32\wavemsp.dll
2011-06-21 14:31:50 ----A---- C:\Windows\system32\tzutil.exe
2011-06-21 14:31:50 ----A---- C:\Windows\system32\sysclass.dll
2011-06-21 14:31:50 ----A---- C:\Windows\system32\ReAgent.dll
2011-06-21 14:31:50 ----A---- C:\Windows\system32\provsvc.dll
2011-06-21 14:31:50 ----A---- C:\Windows\system32\msftedit.dll
2011-06-21 14:31:50 ----A---- C:\Windows\system32\dsuiext.dll
2011-06-21 14:31:50 ----A---- C:\Windows\system32\dot3ui.dll
2011-06-21 14:31:50 ----A---- C:\Windows\system32\dfrgui.exe
2011-06-21 14:31:49 ----A---- C:\Windows\system32\wvc.dll
2011-06-21 14:31:49 ----A---- C:\Windows\system32\wtsapi32.dll
2011-06-21 14:31:49 ----A---- C:\Windows\system32\wimgapi.dll
2011-06-21 14:31:49 ----A---- C:\Windows\system32\ocsetup.exe
2011-06-21 14:31:49 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2011-06-21 14:31:49 ----A---- C:\Windows\system32\appinfo.dll
2011-06-21 14:31:49 ----A---- C:\Windows\system32\AdmTmpl.dll
2011-06-21 14:31:48 ----A---- C:\Windows\system32\twext.dll
2011-06-21 14:31:48 ----A---- C:\Windows\system32\mstask.dll
2011-06-21 14:31:48 ----A---- C:\Windows\system32\certprop.dll
2011-06-21 14:31:47 ----A---- C:\Windows\twain_32.dll
2011-06-21 14:31:47 ----A---- C:\Windows\system32\uxlib.dll
2011-06-21 14:31:47 ----A---- C:\Windows\system32\shdocvw.dll
2011-06-21 14:31:47 ----A---- C:\Windows\system32\setupugc.exe
2011-06-21 14:31:47 ----A---- C:\Windows\system32\qcap.dll
2011-06-21 14:31:47 ----A---- C:\Windows\system32\qasf.dll
2011-06-21 14:31:47 ----A---- C:\Windows\system32\PresentationSettings.exe
2011-06-21 14:31:46 ----A---- C:\Windows\system32\wwanconn.dll
2011-06-21 14:31:46 ----A---- C:\Windows\system32\ssText3d.scr
2011-06-21 14:31:46 ----A---- C:\Windows\system32\srrstr.dll
2011-06-21 14:31:46 ----A---- C:\Windows\system32\slwga.dll
2011-06-21 14:31:46 ----A---- C:\Windows\system32\nslookup.exe
2011-06-21 14:31:46 ----A---- C:\Windows\system32\msvfw32.dll
2011-06-21 14:31:46 ----A---- C:\Windows\system32\mciavi32.dll
2011-06-21 14:31:46 ----A---- C:\Windows\system32\imm32.dll
2011-06-21 14:31:46 ----A---- C:\Windows\system32\audiodev.dll
2011-06-21 14:31:45 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2011-06-21 14:31:45 ----A---- C:\Windows\system32\wmdrmsdk.dll
2011-06-21 14:31:45 ----A---- C:\Windows\system32\wimserv.exe
2011-06-21 14:31:45 ----A---- C:\Windows\system32\msscp.dll
2011-06-21 14:31:45 ----A---- C:\Windows\system32\diskraid.exe
2011-06-21 14:31:45 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2011-06-21 14:31:45 ----A---- C:\Windows\system32\clusapi.dll
2011-06-21 14:31:44 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2011-06-21 14:31:44 ----A---- C:\Windows\system32\TSpkg.dll
2011-06-21 14:31:44 ----A---- C:\Windows\system32\sdrsvc.dll
2011-06-21 14:31:44 ----A---- C:\Windows\system32\remotepg.dll
2011-06-21 14:31:44 ----A---- C:\Windows\system32\rdpencom.dll
2011-06-21 14:31:44 ----A---- C:\Windows\system32\raschap.dll
2011-06-21 14:31:44 ----A---- C:\Windows\system32\QUTIL.DLL
2011-06-21 14:31:44 ----A---- C:\Windows\system32\perfmon.exe
2011-06-21 14:31:44 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2011-06-21 14:31:44 ----A---- C:\Windows\system32\input.dll
2011-06-21 14:31:44 ----A---- C:\Windows\system32\drmmgrtn.dll
2011-06-21 14:31:44 ----A---- C:\Windows\system32\browser.dll
2011-06-21 14:31:44 ----A---- C:\Windows\system32\acppage.dll
2011-06-21 14:31:43 ----A---- C:\Windows\system32\wmpdxm.dll
2011-06-21 14:31:43 ----A---- C:\Windows\system32\vpnikeapi.dll
2011-06-21 14:31:43 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2011-06-21 14:31:43 ----A---- C:\Windows\system32\onexui.dll
2011-06-21 14:31:43 ----A---- C:\Windows\system32\olepro32.dll
2011-06-21 14:31:43 ----A---- C:\Windows\system32\odbccp32.dll
2011-06-21 14:31:43 ----A---- C:\Windows\system32\ocsetapi.dll
2011-06-21 14:31:43 ----A---- C:\Windows\system32\nltest.exe
2011-06-21 14:31:43 ----A---- C:\Windows\system32\networkexplorer.dll
2011-06-21 14:31:42 ----A---- C:\Windows\system32\wpdwcn.dll
2011-06-21 14:31:42 ----A---- C:\Windows\system32\vdsbas.dll
2011-06-21 14:31:42 ----A---- C:\Windows\system32\sspisrv.dll
2011-06-21 14:31:42 ----A---- C:\Windows\system32\runonce.exe
2011-06-21 14:31:42 ----A---- C:\Windows\system32\Mcx2Svc.dll
2011-06-21 14:31:42 ----A---- C:\Windows\system32\logagent.exe
2011-06-21 14:31:42 ----A---- C:\Windows\system32\iTVData.dll
2011-06-21 14:31:42 ----A---- C:\Windows\system32\dxdiagn.dll
2011-06-21 14:31:42 ----A---- C:\Windows\system32\drivers\sdbus.sys
2011-06-21 14:31:42 ----A---- C:\Windows\bfsvc.exe
2011-06-21 14:31:41 ----A---- C:\Windows\system32\wmpshell.dll
2011-06-21 14:31:41 ----A---- C:\Windows\system32\wmdrmdev.dll
2011-06-21 14:31:41 ----A---- C:\Windows\system32\shacct.dll
2011-06-21 14:31:41 ----A---- C:\Windows\system32\PnPUnattend.exe
2011-06-21 14:31:41 ----A---- C:\Windows\system32\msvidc32.dll
2011-06-21 14:31:41 ----A---- C:\Windows\system32\msiexec.exe
2011-06-21 14:31:41 ----A---- C:\Windows\system32\MFPlay.dll
2011-06-21 14:31:41 ----A---- C:\Windows\system32\eapp3hst.dll
2011-06-21 14:31:41 ----A---- C:\Windows\system32\drivers\rmcast.sys
2011-06-21 14:31:41 ----A---- C:\Windows\system32\d3d10level9.dll
2011-06-21 14:31:40 ----A---- C:\Windows\system32\lsmproxy.dll
2011-06-21 14:31:40 ----A---- C:\Windows\system32\bitsadmin.exe
2011-06-21 14:31:39 ----A---- C:\Windows\system32\wudriver.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\WPDSp.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\unimdmat.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\tabcal.exe
2011-06-21 14:31:39 ----A---- C:\Windows\system32\srvcli.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\sqlcese30.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\rdpd3d.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\pdh.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\OpcServices.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\ncryptui.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\mprapi.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\logman.exe
2011-06-21 14:31:39 ----A---- C:\Windows\system32\iscsium.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\cscapi.dll
2011-06-21 14:31:39 ----A---- C:\Windows\system32\Bubbles.scr
2011-06-21 14:31:38 ----A---- C:\Windows\system32\wwanprotdim.dll
2011-06-21 14:31:38 ----A---- C:\Windows\system32\WUDFPlatform.dll
2011-06-21 14:31:38 ----A---- C:\Windows\system32\WMPhoto.dll
2011-06-21 14:31:38 ----A---- C:\Windows\system32\tsgqec.dll
2011-06-21 14:31:38 ----A---- C:\Windows\system32\Ribbons.scr
2011-06-21 14:31:38 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2011-06-21 14:31:38 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2011-06-21 14:31:38 ----A---- C:\Windows\system32\olethk32.dll
2011-06-21 14:31:38 ----A---- C:\Windows\system32\odbctrac.dll
2011-06-21 14:31:38 ----A---- C:\Windows\system32\Mystify.scr
2011-06-21 14:31:38 ----A---- C:\Windows\system32\MdSched.exe
2011-06-21 14:31:38 ----A---- C:\Windows\system32\mapistub.dll
2011-06-21 14:31:38 ----A---- C:\Windows\system32\mapi32.dll
Největší potěšení pro muže je svlékat ženu a oblékat ragbyový dres.
Mrtvý nepřítel vždy voní krásně.", Alus Vitellus
Kdo si přeje mír, ať připravuje válku, Vegetius Renatus
Fotbal je hra gentlemanů, kterou hrají barbaři a ragby je hra barbarů, kterou hrají gentlemani - Oscar Wilde
Per Aspera ad Astra !
Mrtvý nepřítel vždy voní krásně.", Alus Vitellus
Kdo si přeje mír, ať připravuje válku, Vegetius Renatus
Fotbal je hra gentlemanů, kterou hrají barbaři a ragby je hra barbarů, kterou hrají gentlemani - Oscar Wilde
Per Aspera ad Astra !
- MaximusBrutus
- Návštěvník
- Příspěvky: 57
- Registrován: 18 črc 2011 22:11
- Bydliště: Vyškov
Re: vir z Facebooku
RSIT log část třetí
2011-06-21 14:31:38 ----A---- C:\Windows\system32\lpremove.exe
2011-06-21 14:31:38 ----A---- C:\Windows\system32\djoin.exe
2011-06-21 14:31:38 ----A---- C:\Windows\system32\CscMig.dll
2011-06-21 14:31:38 ----A---- C:\Windows\system32\ActionQueue.dll
2011-06-21 14:31:37 ----A---- C:\Windows\system32\WMADMOD.DLL
2011-06-21 14:31:37 ----A---- C:\Windows\system32\wiavideo.dll
2011-06-21 14:31:37 ----A---- C:\Windows\system32\utildll.dll
2011-06-21 14:31:37 ----A---- C:\Windows\system32\fphc.dll
2011-06-21 14:31:37 ----A---- C:\Windows\system32\drivers\USBAUDIO.sys
2011-06-21 14:31:37 ----A---- C:\Windows\system32\dot3msm.dll
2011-06-21 14:31:37 ----A---- C:\Windows\system32\avifil32.dll
2011-06-21 14:31:36 ----A---- C:\Windows\system32\WMVSDECD.DLL
2011-06-21 14:31:36 ----A---- C:\Windows\system32\wmdrmnet.dll
2011-06-21 14:31:36 ----A---- C:\Windows\system32\WindowsAnytimeUpgrade.exe
2011-06-21 14:31:36 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2011-06-21 14:31:36 ----A---- C:\Windows\system32\takeown.exe
2011-06-21 14:31:36 ----A---- C:\Windows\system32\sqmapi.dll
2011-06-21 14:31:36 ----A---- C:\Windows\system32\iyuv_32.dll
2011-06-21 14:31:35 ----A---- C:\Windows\system32\sppinst.dll
2011-06-21 14:31:35 ----A---- C:\Windows\system32\qdv.dll
2011-06-21 14:31:35 ----A---- C:\Windows\system32\msyuv.dll
2011-06-21 14:31:35 ----A---- C:\Windows\system32\msnetobj.dll
2011-06-21 14:31:35 ----A---- C:\Windows\system32\imagehlp.dll
2011-06-21 14:31:35 ----A---- C:\Windows\system32\EhStorAPI.dll
2011-06-21 14:31:34 ----A---- C:\Windows\system32\WUDFx.dll
2011-06-21 14:31:34 ----A---- C:\Windows\system32\WUDFHost.exe
2011-06-21 14:31:34 ----A---- C:\Windows\system32\wsnmp32.dll
2011-06-21 14:31:34 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2011-06-21 14:31:34 ----A---- C:\Windows\system32\vfwwdm32.dll
2011-06-21 14:31:34 ----A---- C:\Windows\system32\unattend.dll
2011-06-21 14:31:34 ----A---- C:\Windows\system32\RelPost.exe
2011-06-21 14:31:34 ----A---- C:\Windows\system32\qprocess.exe
2011-06-21 14:31:34 ----A---- C:\Windows\system32\QCLIPROV.DLL
2011-06-21 14:31:34 ----A---- C:\Windows\system32\pdhui.dll
2011-06-21 14:31:34 ----A---- C:\Windows\system32\MuiUnattend.exe
2011-06-21 14:31:34 ----A---- C:\Windows\system32\msrle32.dll
2011-06-21 14:31:34 ----A---- C:\Windows\system32\cmstp.exe
2011-06-21 14:31:34 ----A---- C:\Windows\system32\cca.dll
2011-06-21 14:31:34 ----A---- C:\Windows\system32\basesrv.dll
2011-06-21 14:31:33 ----A---- C:\Windows\system32\wuauclt.exe
2011-06-21 14:31:33 ----A---- C:\Windows\system32\umb.dll
2011-06-21 14:31:33 ----A---- C:\Windows\system32\tsbyuv.dll
2011-06-21 14:31:33 ----A---- C:\Windows\system32\setupcln.dll
2011-06-21 14:31:33 ----A---- C:\Windows\system32\msorcl32.dll
2011-06-21 14:31:33 ----A---- C:\Windows\system32\msg.exe
2011-06-21 14:31:33 ----A---- C:\Windows\system32\iasrecst.dll
2011-06-21 14:31:33 ----A---- C:\Windows\system32\chglogon.exe
2011-06-21 14:31:33 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2011-06-21 14:31:33 ----A---- C:\Windows\system32\drivers\bthport.sys
2011-06-21 14:31:33 ----A---- C:\Windows\system32\AzSqlExt.dll
2011-06-21 14:31:32 ----A---- C:\Windows\system32\wkscli.dll
2011-06-21 14:31:32 ----A---- C:\Windows\system32\WavDest.dll
2011-06-21 14:31:32 ----A---- C:\Windows\system32\sppuinotify.dll
2011-06-21 14:31:32 ----A---- C:\Windows\system32\spbcd.dll
2011-06-21 14:31:32 ----A---- C:\Windows\system32\relog.exe
2011-06-21 14:31:32 ----A---- C:\Windows\system32\qwinsta.exe
2011-06-21 14:31:32 ----A---- C:\Windows\system32\quser.exe
2011-06-21 14:31:32 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2011-06-21 14:31:32 ----A---- C:\Windows\system32\netiougc.exe
2011-06-21 14:31:32 ----A---- C:\Windows\system32\mydocs.dll
2011-06-21 14:31:32 ----A---- C:\Windows\system32\iscsicli.exe
2011-06-21 14:31:32 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2011-06-21 14:31:32 ----A---- C:\Windows\system32\diskpart.exe
2011-06-21 14:31:32 ----A---- C:\Windows\system32\amstream.dll
2011-06-21 14:31:31 ----A---- C:\Windows\system32\syssetup.dll
2011-06-21 14:31:31 ----A---- C:\Windows\system32\setbcdlocale.dll
2011-06-21 14:31:31 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2011-06-21 14:31:31 ----A---- C:\Windows\system32\secproc_ssp.dll
2011-06-21 14:31:31 ----A---- C:\Windows\system32\resutils.dll
2011-06-21 14:31:31 ----A---- C:\Windows\system32\rastapi.dll
2011-06-21 14:31:31 ----A---- C:\Windows\system32\nrpsrv.dll
2011-06-21 14:31:31 ----A---- C:\Windows\system32\netbtugc.exe
2011-06-21 14:31:31 ----A---- C:\Windows\system32\MultiDigiMon.exe
2011-06-21 14:31:31 ----A---- C:\Windows\system32\itircl.dll
2011-06-21 14:31:31 ----A---- C:\Windows\system32\CertPolEng.dll
2011-06-21 14:31:30 ----A---- C:\Windows\system32\wuapp.exe
2011-06-21 14:31:30 ----A---- C:\Windows\system32\wmpps.dll
2011-06-21 14:31:30 ----A---- C:\Windows\system32\WerFaultSecure.exe
2011-06-21 14:31:30 ----A---- C:\Windows\system32\tsdiscon.exe
2011-06-21 14:31:30 ----A---- C:\Windows\system32\tscon.exe
2011-06-21 14:31:30 ----A---- C:\Windows\system32\tlscsp.dll
2011-06-21 14:31:30 ----A---- C:\Windows\system32\secur32.dll
2011-06-21 14:31:30 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2011-06-21 14:31:30 ----A---- C:\Windows\system32\ReAgentc.exe
2011-06-21 14:31:30 ----A---- C:\Windows\system32\qappsrv.exe
2011-06-21 14:31:30 ----A---- C:\Windows\system32\PrintBrmUi.exe
2011-06-21 14:31:30 ----A---- C:\Windows\system32\chgusr.exe
2011-06-21 14:31:30 ----A---- C:\Windows\system32\chgport.exe
2011-06-21 14:31:30 ----A---- C:\Windows\system32\FXSTIFF.dll
2011-06-21 14:31:30 ----A---- C:\Windows\system32\eappgnui.dll
2011-06-21 14:31:29 ----A---- C:\Windows\system32\wiarpc.dll
2011-06-21 14:31:29 ----A---- C:\Windows\system32\tskill.exe
2011-06-21 14:31:29 ----A---- C:\Windows\system32\shadow.exe
2011-06-21 14:31:29 ----A---- C:\Windows\system32\rwinsta.exe
2011-06-21 14:31:29 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2011-06-21 14:31:29 ----A---- C:\Windows\system32\netutils.dll
2011-06-21 14:31:29 ----A---- C:\Windows\system32\mobsync.exe
2011-06-21 14:31:29 ----A---- C:\Windows\system32\mciqtz32.dll
2011-06-21 14:31:29 ----A---- C:\Windows\system32\logoff.exe
2011-06-21 14:31:29 ----A---- C:\Windows\system32\findstr.exe
2011-06-21 14:31:28 ----A---- C:\Windows\system32\sppc.dll
2011-06-21 14:31:28 ----A---- C:\Windows\system32\spopk.dll
2011-06-21 14:31:28 ----A---- C:\Windows\system32\shimgvw.dll
2011-06-21 14:31:28 ----A---- C:\Windows\system32\netapi32.dll
2011-06-21 14:31:28 ----A---- C:\Windows\system32\muifontsetup.dll
2011-06-21 14:31:28 ----A---- C:\Windows\system32\luainstall.dll
2011-06-21 14:31:28 ----A---- C:\Windows\system32\iccvid.dll
2011-06-21 14:31:28 ----A---- C:\Windows\system32\drivers\tdi.sys
2011-06-21 14:31:28 ----A---- C:\Windows\system32\dosx.exe
2011-06-21 14:31:28 ----A---- C:\Windows\system32\cabinet.dll
2011-06-21 14:31:27 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2011-06-21 14:31:27 ----A---- C:\Windows\system32\vmstorfltres.dll
2011-06-21 14:31:27 ----A---- C:\Windows\system32\vmicres.dll
2011-06-21 14:31:27 ----A---- C:\Windows\system32\unlodctr.exe
2011-06-21 14:31:27 ----A---- C:\Windows\system32\repair-bde.exe
2011-06-21 14:31:27 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2011-06-21 14:31:27 ----A---- C:\Windows\system32\netcfg.exe
2011-06-21 14:31:27 ----A---- C:\Windows\system32\msdmo.dll
2011-06-21 14:31:27 ----A---- C:\Windows\system32\manage-bde.exe
2011-06-21 14:31:27 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2011-06-21 14:31:27 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2011-06-21 14:31:27 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2011-06-21 14:31:26 ----A---- C:\Windows\system32\wups.dll
2011-06-21 14:31:26 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2011-06-21 14:31:26 ----A---- C:\Windows\system32\vmbusres.dll
2011-06-21 14:31:26 ----A---- C:\Windows\system32\UIRibbonRes.dll
2011-06-21 14:31:26 ----A---- C:\Windows\system32\reset.exe
2011-06-21 14:31:26 ----A---- C:\Windows\system32\query.exe
2011-06-21 14:31:26 ----A---- C:\Windows\system32\profprov.dll
2011-06-21 14:31:26 ----A---- C:\Windows\system32\odbcconf.dll
2011-06-21 14:31:26 ----A---- C:\Windows\system32\inetmib1.dll
2011-06-21 14:31:26 ----A---- C:\Windows\system32\change.exe
2011-06-21 14:31:26 ----A---- C:\Windows\system32\drivers\cdrom.sys
2011-06-21 14:31:26 ----A---- C:\Windows\system32\browcli.dll
2011-06-21 14:31:25 ----A---- C:\Windows\system32\perfts.dll
2011-06-21 14:31:25 ----A---- C:\Windows\system32\icaapi.dll
2011-06-21 14:31:24 ----A---- C:\Windows\system32\TRAPI.dll
2011-06-21 14:31:24 ----A---- C:\Windows\system32\RDPENCDD.dll
2011-06-21 14:31:24 ----A---- C:\Windows\system32\FXSMON.dll
2011-06-21 14:31:24 ----A---- C:\Windows\system32\elsTrans.dll
2011-06-21 14:31:24 ----A---- C:\Windows\system32\drivers\tunnel.sys
2011-06-21 14:31:24 ----A---- C:\Windows\system32\drivers\dfsc.sys
2011-06-21 14:31:24 ----A---- C:\Windows\system32\bitsperf.dll
2011-06-21 14:31:23 ----A---- C:\Windows\system32\wshbth.dll
2011-06-21 14:31:23 ----A---- C:\Windows\system32\schedcli.dll
2011-06-21 14:31:23 ----A---- C:\Windows\system32\napdsnap.dll
2011-06-21 14:31:23 ----A---- C:\Windows\system32\LogonUI.exe
2011-06-21 14:31:23 ----A---- C:\Windows\system32\dsauth.dll
2011-06-21 14:31:23 ----A---- C:\Windows\system32\cscdll.dll
2011-06-21 14:31:22 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2011-06-21 14:31:21 ----A---- C:\Windows\system32\wsdchngr.dll
2011-06-21 14:31:21 ----A---- C:\Windows\system32\sscore.dll
2011-06-21 14:31:20 ----A---- C:\Windows\system32\wups2.dll
2011-06-21 14:31:20 ----A---- C:\Windows\system32\shgina.dll
2011-06-21 14:31:20 ----A---- C:\Windows\system32\riched32.dll
2011-06-21 14:31:20 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2011-06-21 14:31:19 ----A---- C:\Windows\system32\rdpcfgex.dll
2011-06-21 14:31:19 ----A---- C:\Windows\system32\drivers\VMBusHID.sys
2011-06-21 14:31:19 ----A---- C:\Windows\system32\drivers\hidusb.sys
2011-06-21 14:31:19 ----A---- C:\Windows\system32\drivers\appid.sys
2011-06-21 14:31:18 ----A---- C:\Windows\system32\wshirda.dll
2011-06-21 14:31:18 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2011-06-21 14:31:18 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2011-06-21 14:31:17 ----A---- C:\Windows\system32\vmictimeprovider.dll
2011-06-21 14:31:17 ----A---- C:\Windows\system32\VmdCoinstall.dll
2011-06-21 14:31:17 ----A---- C:\Windows\system32\vmbuspipe.dll
2011-06-21 14:31:17 ----A---- C:\Windows\system32\VmbusCoinstaller.dll
2011-06-21 14:31:17 ----A---- C:\Windows\system32\spwmp.dll
2011-06-21 14:31:17 ----A---- C:\Windows\system32\IcCoinstall.dll
2011-06-21 14:31:17 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2011-06-21 14:31:17 ----A---- C:\Windows\system32\drivers\USBCAMD.sys
2011-06-21 14:31:17 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2011-06-21 14:31:17 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2011-06-21 14:31:17 ----A---- C:\Windows\system32\browseui.dll
2011-06-21 14:31:16 ----A---- C:\Windows\system32\drivers\wanarp.sys
2011-06-21 14:31:16 ----A---- C:\Windows\system32\drivers\umbus.sys
2011-06-21 14:31:16 ----A---- C:\Windows\system32\drivers\tdpipe.sys
2011-06-21 14:31:16 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2011-06-21 14:31:16 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2011-06-21 14:31:16 ----A---- C:\Windows\system32\C_ISCII.DLL
2011-06-21 14:31:15 ----A---- C:\Windows\system32\shunimpl.dll
2011-06-21 14:31:15 ----A---- C:\Windows\system32\RDPREFDD.dll
2011-06-21 14:31:15 ----A---- C:\Windows\system32\dxmasf.dll
2011-06-21 14:31:15 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2011-06-21 14:31:15 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2011-06-21 14:31:15 ----A---- C:\Windows\system32\drivers\scfilter.sys
2011-06-21 14:31:15 ----A---- C:\Windows\system32\drivers\RDPCDD.sys
2011-06-21 14:31:14 ----A---- C:\Windows\system32\wmploc.DLL
2011-06-21 14:31:14 ----A---- C:\Windows\system32\KBDUS.DLL
2011-06-21 14:31:14 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2011-06-21 14:31:14 ----A---- C:\Windows\system32\KBDTURME.DLL
2011-06-21 14:31:14 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2011-06-21 14:31:14 ----A---- C:\Windows\system32\KBDMON.DLL
2011-06-21 14:31:14 ----A---- C:\Windows\system32\KBDMAORI.DLL
2011-06-21 14:31:14 ----A---- C:\Windows\system32\KBDLT1.DLL
2011-06-21 14:31:14 ----A---- C:\Windows\system32\KBDINTEL.DLL
2011-06-21 14:31:14 ----A---- C:\Windows\system32\KBDINKAN.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\tzres.dll
2011-06-21 14:31:13 ----A---- C:\Windows\system32\spwizres.dll
2011-06-21 14:31:13 ----A---- C:\Windows\system32\pifmgr.dll
2011-06-21 14:31:13 ----A---- C:\Windows\system32\nlsbres.dll
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDTUQ.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDTUF.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDSG.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDSF.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDPO.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDNEPR.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\kbdlk41a.dll
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDINTAM.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDINORI.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDINMAR.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDINHIN.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDINBEN.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDGR1.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDGKL.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDGEO.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDCZ1.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDBULG.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDBLR.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDBASH.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\drivers\vms3cap.sys
2011-06-21 14:31:13 ----A---- C:\Windows\system32\dpnaddr.dll
2011-06-21 14:31:13 ----A---- C:\Windows\system32\BlbEvents.dll
2011-06-21 14:30:38 ----A---- C:\Windows\system32\wmicmiplugin.dll
2011-06-21 14:30:38 ----A---- C:\Windows\system32\wbemcomn.dll
2011-06-21 14:30:25 ----A---- C:\Windows\system32\SmiEngine.dll
2011-06-21 14:30:20 ----A---- C:\Windows\system32\wdscore.dll
2011-06-21 14:30:20 ----A---- C:\Windows\system32\PkgMgr.exe
2011-06-21 14:29:29 ----A---- C:\Windows\system32\drvstore.dll
2011-06-21 14:29:28 ----A---- C:\Windows\system32\dpx.dll
======List of files/folders modified in the last 1 month======
2011-07-20 15:53:52 ----RD---- C:\Program Files
2011-07-20 14:36:50 ----D---- C:\Windows\system32\drivers\etc
2011-07-20 14:36:50 ----D---- C:\ProgramData
2011-07-20 14:36:21 ----D---- C:\Windows\System32
2011-07-20 14:36:11 ----SHD---- C:\Windows\Installer
2011-07-20 14:36:07 ----D---- C:\Windows
2011-07-20 14:36:01 ----D---- C:\Program Files\ICQ6Toolbar
2011-07-20 14:31:13 ----D---- C:\Windows\system32\drivers
2011-07-20 14:31:13 ----D---- C:\Windows\en-US
2011-07-19 22:29:01 ----A---- C:\Windows\system.ini
2011-07-19 22:26:52 ----D---- C:\Windows\system32\config
2011-07-19 22:26:10 ----D---- C:\Windows\Tasks
2011-07-19 22:24:36 ----D---- C:\Windows\AppPatch
2011-07-19 22:24:35 ----D---- C:\Program Files\Common Files
2011-07-19 22:21:33 ----D---- C:\Windows\inf
2011-07-19 22:21:33 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-07-19 11:25:21 ----D---- C:\Windows\system32\catroot2
2011-07-19 10:55:41 ----D---- C:\Windows\system32\wbem
2011-07-19 10:54:38 ----D---- C:\Windows\system32\wfp
2011-07-19 10:54:38 ----D---- C:\Windows\system32\DriverStore
2011-07-19 10:54:37 ----D---- C:\Windows\winsxs
2011-07-19 10:54:37 ----D---- C:\Windows\system32\cs-CZ
2011-07-19 10:54:35 ----D---- C:\Windows\system32\Macromed
2011-07-19 10:54:35 ----D---- C:\Windows\system32\drivers\UMDF
2011-07-19 10:54:35 ----D---- C:\Windows\system32\CodeIntegrity
2011-07-19 10:54:34 ----D---- C:\Windows\AppCompat
2011-07-19 10:54:33 ----D---- C:\Users\User\AppData\Roaming\uTorrent
2011-07-19 10:54:31 ----D---- C:\Program Files\Steam
2011-07-19 10:54:31 ----D---- C:\Program Files\Mozilla Firefox
2011-07-19 10:54:31 ----D---- C:\Program Files\Microsoft Security Client
2011-07-19 10:54:31 ----D---- C:\Program Files\Common Files\Steam
2011-07-19 10:54:27 ----D---- C:\Program Files\ATI Stream
2011-07-19 10:54:15 ----D---- C:\Windows\registration
2011-07-19 10:53:58 ----D---- C:\Windows\system32\catroot
2011-07-19 10:53:38 ----RSD---- C:\Windows\assembly
2011-07-19 10:53:28 ----D---- C:\Users\User\AppData\Roaming\Skype
2011-07-19 10:53:27 ----SD---- C:\Users\User\AppData\Roaming\Microsoft
2011-07-19 10:53:04 ----RD---- C:\Users
2011-07-19 10:52:47 ----D---- C:\Program Files\ATI Technologies
2011-07-19 10:52:46 ----D---- C:\ATI
2011-07-19 10:28:38 ----SHD---- C:\System Volume Information
2011-07-19 10:23:31 ----D---- C:\Users\User\AppData\Roaming\ICQ
2011-07-18 12:00:13 ----D---- C:\Windows\Prefetch
2011-07-11 20:06:31 ----D---- C:\Windows\Minidump
2011-07-10 18:23:03 ----D---- C:\Program Files\Common Files\Symantec Shared
2011-07-10 17:32:34 ----D---- C:\Program Files\ICQ7.5
2011-07-09 22:53:59 ----SD---- C:\ProgramData\Microsoft
2011-07-08 18:57:21 ----D---- C:\Windows\Microsoft.NET
2011-07-07 19:29:00 ----D---- C:\Windows\rescache
2011-07-07 11:13:07 ----D---- C:\Windows\system32\migration
2011-07-07 11:13:07 ----D---- C:\Windows\system32\en-US
2011-07-07 11:13:07 ----D---- C:\Windows\PolicyDefinitions
2011-07-07 11:13:07 ----D---- C:\Program Files\Internet Explorer
2011-07-07 00:46:20 ----D---- C:\Program Files\Windows Sidebar
2011-07-07 00:46:20 ----D---- C:\Program Files\Windows Mail
2011-07-07 00:46:20 ----D---- C:\Program Files\DVD Maker
2011-07-07 00:46:19 ----D---- C:\Program Files\Windows Portable Devices
2011-07-07 00:46:19 ----D---- C:\Program Files\Windows Photo Viewer
2011-07-07 00:46:19 ----D---- C:\Program Files\Windows Media Player
2011-07-07 00:46:19 ----D---- C:\Program Files\Windows Journal
2011-07-07 00:46:14 ----D---- C:\Windows\servicing
2011-07-07 00:46:14 ----D---- C:\Windows\ehome
2011-07-07 00:46:14 ----D---- C:\Program Files\Windows Defender
2011-07-07 00:46:05 ----D---- C:\Windows\system32\oobe
2011-07-07 00:46:05 ----D---- C:\Windows\system32\da-DK
2011-07-07 00:46:04 ----D---- C:\Windows\system32\sysprep
2011-07-07 00:46:03 ----D---- C:\Windows\system32\Setup
2011-07-07 00:46:03 ----D---- C:\Windows\system32\cs
2011-07-07 00:46:03 ----D---- C:\Windows\system32\AdvancedInstallers
2011-07-07 00:45:59 ----D---- C:\Windows\system32\sppui
2011-07-07 00:45:59 ----D---- C:\Windows\system32\manifeststore
2011-07-07 00:45:59 ----D---- C:\Windows\system32\es-ES
2011-07-07 00:45:58 ----D---- C:\Windows\system32\drivers\cs-CZ
2011-07-07 00:45:56 ----D---- C:\Windows\system32\migwiz
2011-07-07 00:45:56 ----D---- C:\Windows\system32\Dism
2011-07-07 00:45:23 ----RSD---- C:\Windows\Fonts
2011-07-07 00:45:11 ----D---- C:\Windows\system32\Boot
2011-07-06 08:41:10 ----D---- C:\Windows\Logs
2011-07-06 08:35:15 ----A---- C:\Windows\system32\msclmd.dll
2011-07-01 14:41:14 ----D---- C:\ProgramData\CanonIJPLM
2011-07-01 09:38:51 ----D---- C:\Windows\system32\Tasks
2011-07-01 09:38:48 ----RD---- C:\Program Files\Skype
2011-07-01 09:38:44 ----D---- C:\ProgramData\Skype
2011-06-30 16:04:37 ----D---- C:\Users\User\AppData\Roaming\skypePM
2011-06-27 12:03:33 ----D---- C:\ProgramData\Skype Extras
2011-06-22 15:44:37 ----D---- C:\Program Files\Java
2011-06-21 22:42:46 ----D---- C:\Windows\system32\FxsTmp
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 BtHidBus;Bluetooth HID Bus Service; C:\Windows\System32\Drivers\BtHidBus.sys [2009-09-24 19592]
R0 BTHidMgr;Bluetooth HID Manager Service; C:\Windows\System32\Drivers\BTHidMgr.sys [2005-04-30 28271]
R0 JRAID;JRAID; C:\Windows\system32\DRIVERS\jraid.sys [2009-10-29 99440]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R3 nusb3hub;NEC Electronics USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\nusb3hub.sys [2009-11-20 58880]
R3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\DRIVERS\nusb3xhc.sys [2009-11-20 137728]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-08-20 189440]
S0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-09-03 691696]
S1 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2010-10-24 165264]
S1 MpKsl0856aac9;MpKsl0856aac9; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{575638FC-8324-4391-8E40-73DF5F5F78A0}\MpKsl0856aac9.sys []
S1 MpKsl08c5a6bd;MpKsl08c5a6bd; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{2EF5F91E-97E7-42FA-8B16-FC34F6B07D35}\MpKsl08c5a6bd.sys []
S1 MpKsl10a3ef9c;MpKsl10a3ef9c; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{55A03CCA-8A89-4B70-8559-18DC10564263}\MpKsl10a3ef9c.sys []
S1 MpKsl2c0c7dfa;MpKsl2c0c7dfa; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{EB8C8738-34A6-4B30-9916-EF3788640B3B}\MpKsl2c0c7dfa.sys []
S1 MpKsl34a70e3d;MpKsl34a70e3d; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{86C17EDA-74E8-415B-8181-5FEA9320DCAB}\MpKsl34a70e3d.sys []
S1 MpKsl4c775cd8;MpKsl4c775cd8; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7B512DD5-EC72-4846-9862-532F9152B8F0}\MpKsl4c775cd8.sys []
S1 MpKsl5089d058;MpKsl5089d058; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C63F2DDC-BE52-49A1-BB43-1D2C93E2F85E}\MpKsl5089d058.sys []
S1 MpKsl82e927da;MpKsl82e927da; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{9B2265C9-72F6-4826-AAD5-3DD204110005}\MpKsl82e927da.sys []
S1 MpKsl9996d9fe;MpKsl9996d9fe; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{E2410AF9-2BB1-4359-8118-342CC0B0EFE7}\MpKsl9996d9fe.sys []
S1 MpKsl9fbcda3e;MpKsl9fbcda3e; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{86C17EDA-74E8-415B-8181-5FEA9320DCAB}\MpKsl9fbcda3e.sys []
S1 MpKslb86f1c95;MpKslb86f1c95; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{91E9B4E9-E0EA-4484-A685-F75198F58F8D}\MpKslb86f1c95.sys []
S1 MpKslc275244f;MpKslc275244f; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D154B264-485F-46B1-BC0A-A0EC850F78D0}\MpKslc275244f.sys []
S1 MpKsleb5765d6;MpKsleb5765d6; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{05635216-FFB5-434E-9E76-9CEAA4ACAAE5}\MpKsleb5765d6.sys []
S1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2010-04-12 59388]
S2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2011-05-24 281760]
S2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2011-05-24 25888]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-11-26 6650368]
S3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-11-26 231936]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BlueletAudio;Bluetooth Audio Service; C:\Windows\system32\DRIVERS\blueletaudio.sys [2005-05-31 20480]
S3 BT;Bluetooth PAN Network Adapter; C:\Windows\system32\DRIVERS\btnetdrv.sys [2005-04-30 10804]
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\Windows\System32\Drivers\btcusb.sys [2005-05-31 23000]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BTHidEnum;Bluetooth HID Enumerator; C:\Windows\system32\DRIVERS\vbtenum.sys [2005-04-30 11860]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2010-11-20 393216]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2010-11-20 60416]
S3 btnetBUs;Bluetooth PAN Bus Service; C:\Windows\System32\Drivers\btnetBus.sys [2009-09-24 22528]
S3 catchme;catchme; \??\C:\Users\User\AppData\Local\Temp\catchme.sys []
S3 CrystalSysInfo;CrystalSysInfo; \??\C:\Program Files\MediaCoder\SysInfo.sys [2007-09-25 15152]
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2011-07-11 17488]
S3 HH10Help.sys;HH10Help.sys; \??\C:\Windows\system32\drivers\HH10Help.sys [2010-03-10 13952]
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-12-08 2975776]
S3 IvtBtBUs;IVT Bluetooth Bus Service; C:\Windows\System32\Drivers\IvtBtBus.sys [2009-08-26 25480]
S3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2011-07-06 22712]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\mbamswissarmy.sys [2011-07-06 41272]
S3 MpNWMon;Microsoft Malware Protection Network Driver; C:\Windows\system32\DRIVERS\MpNWMon.sys [2010-10-24 43392]
S3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2010-10-24 54144]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2009-07-14 8192]
S3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIV.sys [2009-12-02 168480]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 84992]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 VComm;Virtual Serial port driver; C:\Windows\system32\DRIVERS\VComm.sys [2004-10-19 61312]
S3 VcommMgr;Bluetooth VComm Manager Service; C:\Windows\System32\Drivers\VcommMgr.sys [2005-03-25 82148]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUSB.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2010-11-11 11736]
S2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-11-26 176128]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S2 ES lite Service;ES lite Service for program management.; C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE [2009-08-24 68136]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-10-18 136176]
S2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2010-11-21 247608]
S2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2009-02-10 116104]
S2 JMB36X;JMB36X; C:\Windows\System32\XSrvSetup.exe [2009-08-06 65536]
S2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2011-07-06 366640]
S2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\system32\IoctlSvc.exe [2006-12-19 81920]
S2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2011-04-09 75136]
S2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2010-07-27 249136]
S2 VC10SecS;Virtual CD v10 Management Service; C:\Program Files\Virtual CD v10\System\VC10SecS.exe [2010-04-14 144712]
S2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 1529728]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-10-18 136176]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2008-04-08 800040]
S3 NisSrv;@c:\Program Files\Microsoft Security Client\Antimalware\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2010-11-11 206360]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2008-01-22 275752]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2008-09-08 575488]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2011-06-03 403240]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-09-01 1343400]
-----------------EOF-----------------
2011-06-21 14:31:38 ----A---- C:\Windows\system32\lpremove.exe
2011-06-21 14:31:38 ----A---- C:\Windows\system32\djoin.exe
2011-06-21 14:31:38 ----A---- C:\Windows\system32\CscMig.dll
2011-06-21 14:31:38 ----A---- C:\Windows\system32\ActionQueue.dll
2011-06-21 14:31:37 ----A---- C:\Windows\system32\WMADMOD.DLL
2011-06-21 14:31:37 ----A---- C:\Windows\system32\wiavideo.dll
2011-06-21 14:31:37 ----A---- C:\Windows\system32\utildll.dll
2011-06-21 14:31:37 ----A---- C:\Windows\system32\fphc.dll
2011-06-21 14:31:37 ----A---- C:\Windows\system32\drivers\USBAUDIO.sys
2011-06-21 14:31:37 ----A---- C:\Windows\system32\dot3msm.dll
2011-06-21 14:31:37 ----A---- C:\Windows\system32\avifil32.dll
2011-06-21 14:31:36 ----A---- C:\Windows\system32\WMVSDECD.DLL
2011-06-21 14:31:36 ----A---- C:\Windows\system32\wmdrmnet.dll
2011-06-21 14:31:36 ----A---- C:\Windows\system32\WindowsAnytimeUpgrade.exe
2011-06-21 14:31:36 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2011-06-21 14:31:36 ----A---- C:\Windows\system32\takeown.exe
2011-06-21 14:31:36 ----A---- C:\Windows\system32\sqmapi.dll
2011-06-21 14:31:36 ----A---- C:\Windows\system32\iyuv_32.dll
2011-06-21 14:31:35 ----A---- C:\Windows\system32\sppinst.dll
2011-06-21 14:31:35 ----A---- C:\Windows\system32\qdv.dll
2011-06-21 14:31:35 ----A---- C:\Windows\system32\msyuv.dll
2011-06-21 14:31:35 ----A---- C:\Windows\system32\msnetobj.dll
2011-06-21 14:31:35 ----A---- C:\Windows\system32\imagehlp.dll
2011-06-21 14:31:35 ----A---- C:\Windows\system32\EhStorAPI.dll
2011-06-21 14:31:34 ----A---- C:\Windows\system32\WUDFx.dll
2011-06-21 14:31:34 ----A---- C:\Windows\system32\WUDFHost.exe
2011-06-21 14:31:34 ----A---- C:\Windows\system32\wsnmp32.dll
2011-06-21 14:31:34 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2011-06-21 14:31:34 ----A---- C:\Windows\system32\vfwwdm32.dll
2011-06-21 14:31:34 ----A---- C:\Windows\system32\unattend.dll
2011-06-21 14:31:34 ----A---- C:\Windows\system32\RelPost.exe
2011-06-21 14:31:34 ----A---- C:\Windows\system32\qprocess.exe
2011-06-21 14:31:34 ----A---- C:\Windows\system32\QCLIPROV.DLL
2011-06-21 14:31:34 ----A---- C:\Windows\system32\pdhui.dll
2011-06-21 14:31:34 ----A---- C:\Windows\system32\MuiUnattend.exe
2011-06-21 14:31:34 ----A---- C:\Windows\system32\msrle32.dll
2011-06-21 14:31:34 ----A---- C:\Windows\system32\cmstp.exe
2011-06-21 14:31:34 ----A---- C:\Windows\system32\cca.dll
2011-06-21 14:31:34 ----A---- C:\Windows\system32\basesrv.dll
2011-06-21 14:31:33 ----A---- C:\Windows\system32\wuauclt.exe
2011-06-21 14:31:33 ----A---- C:\Windows\system32\umb.dll
2011-06-21 14:31:33 ----A---- C:\Windows\system32\tsbyuv.dll
2011-06-21 14:31:33 ----A---- C:\Windows\system32\setupcln.dll
2011-06-21 14:31:33 ----A---- C:\Windows\system32\msorcl32.dll
2011-06-21 14:31:33 ----A---- C:\Windows\system32\msg.exe
2011-06-21 14:31:33 ----A---- C:\Windows\system32\iasrecst.dll
2011-06-21 14:31:33 ----A---- C:\Windows\system32\chglogon.exe
2011-06-21 14:31:33 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2011-06-21 14:31:33 ----A---- C:\Windows\system32\drivers\bthport.sys
2011-06-21 14:31:33 ----A---- C:\Windows\system32\AzSqlExt.dll
2011-06-21 14:31:32 ----A---- C:\Windows\system32\wkscli.dll
2011-06-21 14:31:32 ----A---- C:\Windows\system32\WavDest.dll
2011-06-21 14:31:32 ----A---- C:\Windows\system32\sppuinotify.dll
2011-06-21 14:31:32 ----A---- C:\Windows\system32\spbcd.dll
2011-06-21 14:31:32 ----A---- C:\Windows\system32\relog.exe
2011-06-21 14:31:32 ----A---- C:\Windows\system32\qwinsta.exe
2011-06-21 14:31:32 ----A---- C:\Windows\system32\quser.exe
2011-06-21 14:31:32 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2011-06-21 14:31:32 ----A---- C:\Windows\system32\netiougc.exe
2011-06-21 14:31:32 ----A---- C:\Windows\system32\mydocs.dll
2011-06-21 14:31:32 ----A---- C:\Windows\system32\iscsicli.exe
2011-06-21 14:31:32 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2011-06-21 14:31:32 ----A---- C:\Windows\system32\diskpart.exe
2011-06-21 14:31:32 ----A---- C:\Windows\system32\amstream.dll
2011-06-21 14:31:31 ----A---- C:\Windows\system32\syssetup.dll
2011-06-21 14:31:31 ----A---- C:\Windows\system32\setbcdlocale.dll
2011-06-21 14:31:31 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2011-06-21 14:31:31 ----A---- C:\Windows\system32\secproc_ssp.dll
2011-06-21 14:31:31 ----A---- C:\Windows\system32\resutils.dll
2011-06-21 14:31:31 ----A---- C:\Windows\system32\rastapi.dll
2011-06-21 14:31:31 ----A---- C:\Windows\system32\nrpsrv.dll
2011-06-21 14:31:31 ----A---- C:\Windows\system32\netbtugc.exe
2011-06-21 14:31:31 ----A---- C:\Windows\system32\MultiDigiMon.exe
2011-06-21 14:31:31 ----A---- C:\Windows\system32\itircl.dll
2011-06-21 14:31:31 ----A---- C:\Windows\system32\CertPolEng.dll
2011-06-21 14:31:30 ----A---- C:\Windows\system32\wuapp.exe
2011-06-21 14:31:30 ----A---- C:\Windows\system32\wmpps.dll
2011-06-21 14:31:30 ----A---- C:\Windows\system32\WerFaultSecure.exe
2011-06-21 14:31:30 ----A---- C:\Windows\system32\tsdiscon.exe
2011-06-21 14:31:30 ----A---- C:\Windows\system32\tscon.exe
2011-06-21 14:31:30 ----A---- C:\Windows\system32\tlscsp.dll
2011-06-21 14:31:30 ----A---- C:\Windows\system32\secur32.dll
2011-06-21 14:31:30 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2011-06-21 14:31:30 ----A---- C:\Windows\system32\ReAgentc.exe
2011-06-21 14:31:30 ----A---- C:\Windows\system32\qappsrv.exe
2011-06-21 14:31:30 ----A---- C:\Windows\system32\PrintBrmUi.exe
2011-06-21 14:31:30 ----A---- C:\Windows\system32\chgusr.exe
2011-06-21 14:31:30 ----A---- C:\Windows\system32\chgport.exe
2011-06-21 14:31:30 ----A---- C:\Windows\system32\FXSTIFF.dll
2011-06-21 14:31:30 ----A---- C:\Windows\system32\eappgnui.dll
2011-06-21 14:31:29 ----A---- C:\Windows\system32\wiarpc.dll
2011-06-21 14:31:29 ----A---- C:\Windows\system32\tskill.exe
2011-06-21 14:31:29 ----A---- C:\Windows\system32\shadow.exe
2011-06-21 14:31:29 ----A---- C:\Windows\system32\rwinsta.exe
2011-06-21 14:31:29 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2011-06-21 14:31:29 ----A---- C:\Windows\system32\netutils.dll
2011-06-21 14:31:29 ----A---- C:\Windows\system32\mobsync.exe
2011-06-21 14:31:29 ----A---- C:\Windows\system32\mciqtz32.dll
2011-06-21 14:31:29 ----A---- C:\Windows\system32\logoff.exe
2011-06-21 14:31:29 ----A---- C:\Windows\system32\findstr.exe
2011-06-21 14:31:28 ----A---- C:\Windows\system32\sppc.dll
2011-06-21 14:31:28 ----A---- C:\Windows\system32\spopk.dll
2011-06-21 14:31:28 ----A---- C:\Windows\system32\shimgvw.dll
2011-06-21 14:31:28 ----A---- C:\Windows\system32\netapi32.dll
2011-06-21 14:31:28 ----A---- C:\Windows\system32\muifontsetup.dll
2011-06-21 14:31:28 ----A---- C:\Windows\system32\luainstall.dll
2011-06-21 14:31:28 ----A---- C:\Windows\system32\iccvid.dll
2011-06-21 14:31:28 ----A---- C:\Windows\system32\drivers\tdi.sys
2011-06-21 14:31:28 ----A---- C:\Windows\system32\dosx.exe
2011-06-21 14:31:28 ----A---- C:\Windows\system32\cabinet.dll
2011-06-21 14:31:27 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2011-06-21 14:31:27 ----A---- C:\Windows\system32\vmstorfltres.dll
2011-06-21 14:31:27 ----A---- C:\Windows\system32\vmicres.dll
2011-06-21 14:31:27 ----A---- C:\Windows\system32\unlodctr.exe
2011-06-21 14:31:27 ----A---- C:\Windows\system32\repair-bde.exe
2011-06-21 14:31:27 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2011-06-21 14:31:27 ----A---- C:\Windows\system32\netcfg.exe
2011-06-21 14:31:27 ----A---- C:\Windows\system32\msdmo.dll
2011-06-21 14:31:27 ----A---- C:\Windows\system32\manage-bde.exe
2011-06-21 14:31:27 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2011-06-21 14:31:27 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2011-06-21 14:31:27 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2011-06-21 14:31:26 ----A---- C:\Windows\system32\wups.dll
2011-06-21 14:31:26 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2011-06-21 14:31:26 ----A---- C:\Windows\system32\vmbusres.dll
2011-06-21 14:31:26 ----A---- C:\Windows\system32\UIRibbonRes.dll
2011-06-21 14:31:26 ----A---- C:\Windows\system32\reset.exe
2011-06-21 14:31:26 ----A---- C:\Windows\system32\query.exe
2011-06-21 14:31:26 ----A---- C:\Windows\system32\profprov.dll
2011-06-21 14:31:26 ----A---- C:\Windows\system32\odbcconf.dll
2011-06-21 14:31:26 ----A---- C:\Windows\system32\inetmib1.dll
2011-06-21 14:31:26 ----A---- C:\Windows\system32\change.exe
2011-06-21 14:31:26 ----A---- C:\Windows\system32\drivers\cdrom.sys
2011-06-21 14:31:26 ----A---- C:\Windows\system32\browcli.dll
2011-06-21 14:31:25 ----A---- C:\Windows\system32\perfts.dll
2011-06-21 14:31:25 ----A---- C:\Windows\system32\icaapi.dll
2011-06-21 14:31:24 ----A---- C:\Windows\system32\TRAPI.dll
2011-06-21 14:31:24 ----A---- C:\Windows\system32\RDPENCDD.dll
2011-06-21 14:31:24 ----A---- C:\Windows\system32\FXSMON.dll
2011-06-21 14:31:24 ----A---- C:\Windows\system32\elsTrans.dll
2011-06-21 14:31:24 ----A---- C:\Windows\system32\drivers\tunnel.sys
2011-06-21 14:31:24 ----A---- C:\Windows\system32\drivers\dfsc.sys
2011-06-21 14:31:24 ----A---- C:\Windows\system32\bitsperf.dll
2011-06-21 14:31:23 ----A---- C:\Windows\system32\wshbth.dll
2011-06-21 14:31:23 ----A---- C:\Windows\system32\schedcli.dll
2011-06-21 14:31:23 ----A---- C:\Windows\system32\napdsnap.dll
2011-06-21 14:31:23 ----A---- C:\Windows\system32\LogonUI.exe
2011-06-21 14:31:23 ----A---- C:\Windows\system32\dsauth.dll
2011-06-21 14:31:23 ----A---- C:\Windows\system32\cscdll.dll
2011-06-21 14:31:22 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2011-06-21 14:31:21 ----A---- C:\Windows\system32\wsdchngr.dll
2011-06-21 14:31:21 ----A---- C:\Windows\system32\sscore.dll
2011-06-21 14:31:20 ----A---- C:\Windows\system32\wups2.dll
2011-06-21 14:31:20 ----A---- C:\Windows\system32\shgina.dll
2011-06-21 14:31:20 ----A---- C:\Windows\system32\riched32.dll
2011-06-21 14:31:20 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2011-06-21 14:31:19 ----A---- C:\Windows\system32\rdpcfgex.dll
2011-06-21 14:31:19 ----A---- C:\Windows\system32\drivers\VMBusHID.sys
2011-06-21 14:31:19 ----A---- C:\Windows\system32\drivers\hidusb.sys
2011-06-21 14:31:19 ----A---- C:\Windows\system32\drivers\appid.sys
2011-06-21 14:31:18 ----A---- C:\Windows\system32\wshirda.dll
2011-06-21 14:31:18 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2011-06-21 14:31:18 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2011-06-21 14:31:17 ----A---- C:\Windows\system32\vmictimeprovider.dll
2011-06-21 14:31:17 ----A---- C:\Windows\system32\VmdCoinstall.dll
2011-06-21 14:31:17 ----A---- C:\Windows\system32\vmbuspipe.dll
2011-06-21 14:31:17 ----A---- C:\Windows\system32\VmbusCoinstaller.dll
2011-06-21 14:31:17 ----A---- C:\Windows\system32\spwmp.dll
2011-06-21 14:31:17 ----A---- C:\Windows\system32\IcCoinstall.dll
2011-06-21 14:31:17 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2011-06-21 14:31:17 ----A---- C:\Windows\system32\drivers\USBCAMD.sys
2011-06-21 14:31:17 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2011-06-21 14:31:17 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2011-06-21 14:31:17 ----A---- C:\Windows\system32\browseui.dll
2011-06-21 14:31:16 ----A---- C:\Windows\system32\drivers\wanarp.sys
2011-06-21 14:31:16 ----A---- C:\Windows\system32\drivers\umbus.sys
2011-06-21 14:31:16 ----A---- C:\Windows\system32\drivers\tdpipe.sys
2011-06-21 14:31:16 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2011-06-21 14:31:16 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2011-06-21 14:31:16 ----A---- C:\Windows\system32\C_ISCII.DLL
2011-06-21 14:31:15 ----A---- C:\Windows\system32\shunimpl.dll
2011-06-21 14:31:15 ----A---- C:\Windows\system32\RDPREFDD.dll
2011-06-21 14:31:15 ----A---- C:\Windows\system32\dxmasf.dll
2011-06-21 14:31:15 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2011-06-21 14:31:15 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2011-06-21 14:31:15 ----A---- C:\Windows\system32\drivers\scfilter.sys
2011-06-21 14:31:15 ----A---- C:\Windows\system32\drivers\RDPCDD.sys
2011-06-21 14:31:14 ----A---- C:\Windows\system32\wmploc.DLL
2011-06-21 14:31:14 ----A---- C:\Windows\system32\KBDUS.DLL
2011-06-21 14:31:14 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2011-06-21 14:31:14 ----A---- C:\Windows\system32\KBDTURME.DLL
2011-06-21 14:31:14 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2011-06-21 14:31:14 ----A---- C:\Windows\system32\KBDMON.DLL
2011-06-21 14:31:14 ----A---- C:\Windows\system32\KBDMAORI.DLL
2011-06-21 14:31:14 ----A---- C:\Windows\system32\KBDLT1.DLL
2011-06-21 14:31:14 ----A---- C:\Windows\system32\KBDINTEL.DLL
2011-06-21 14:31:14 ----A---- C:\Windows\system32\KBDINKAN.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\tzres.dll
2011-06-21 14:31:13 ----A---- C:\Windows\system32\spwizres.dll
2011-06-21 14:31:13 ----A---- C:\Windows\system32\pifmgr.dll
2011-06-21 14:31:13 ----A---- C:\Windows\system32\nlsbres.dll
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDTUQ.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDTUF.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDSG.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDSF.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDPO.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDNEPR.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\kbdlk41a.dll
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDINTAM.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDINORI.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDINMAR.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDINHIN.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDINBEN.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDGR1.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDGKL.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDGEO.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDCZ1.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDBULG.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDBLR.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\KBDBASH.DLL
2011-06-21 14:31:13 ----A---- C:\Windows\system32\drivers\vms3cap.sys
2011-06-21 14:31:13 ----A---- C:\Windows\system32\dpnaddr.dll
2011-06-21 14:31:13 ----A---- C:\Windows\system32\BlbEvents.dll
2011-06-21 14:30:38 ----A---- C:\Windows\system32\wmicmiplugin.dll
2011-06-21 14:30:38 ----A---- C:\Windows\system32\wbemcomn.dll
2011-06-21 14:30:25 ----A---- C:\Windows\system32\SmiEngine.dll
2011-06-21 14:30:20 ----A---- C:\Windows\system32\wdscore.dll
2011-06-21 14:30:20 ----A---- C:\Windows\system32\PkgMgr.exe
2011-06-21 14:29:29 ----A---- C:\Windows\system32\drvstore.dll
2011-06-21 14:29:28 ----A---- C:\Windows\system32\dpx.dll
======List of files/folders modified in the last 1 month======
2011-07-20 15:53:52 ----RD---- C:\Program Files
2011-07-20 14:36:50 ----D---- C:\Windows\system32\drivers\etc
2011-07-20 14:36:50 ----D---- C:\ProgramData
2011-07-20 14:36:21 ----D---- C:\Windows\System32
2011-07-20 14:36:11 ----SHD---- C:\Windows\Installer
2011-07-20 14:36:07 ----D---- C:\Windows
2011-07-20 14:36:01 ----D---- C:\Program Files\ICQ6Toolbar
2011-07-20 14:31:13 ----D---- C:\Windows\system32\drivers
2011-07-20 14:31:13 ----D---- C:\Windows\en-US
2011-07-19 22:29:01 ----A---- C:\Windows\system.ini
2011-07-19 22:26:52 ----D---- C:\Windows\system32\config
2011-07-19 22:26:10 ----D---- C:\Windows\Tasks
2011-07-19 22:24:36 ----D---- C:\Windows\AppPatch
2011-07-19 22:24:35 ----D---- C:\Program Files\Common Files
2011-07-19 22:21:33 ----D---- C:\Windows\inf
2011-07-19 22:21:33 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-07-19 11:25:21 ----D---- C:\Windows\system32\catroot2
2011-07-19 10:55:41 ----D---- C:\Windows\system32\wbem
2011-07-19 10:54:38 ----D---- C:\Windows\system32\wfp
2011-07-19 10:54:38 ----D---- C:\Windows\system32\DriverStore
2011-07-19 10:54:37 ----D---- C:\Windows\winsxs
2011-07-19 10:54:37 ----D---- C:\Windows\system32\cs-CZ
2011-07-19 10:54:35 ----D---- C:\Windows\system32\Macromed
2011-07-19 10:54:35 ----D---- C:\Windows\system32\drivers\UMDF
2011-07-19 10:54:35 ----D---- C:\Windows\system32\CodeIntegrity
2011-07-19 10:54:34 ----D---- C:\Windows\AppCompat
2011-07-19 10:54:33 ----D---- C:\Users\User\AppData\Roaming\uTorrent
2011-07-19 10:54:31 ----D---- C:\Program Files\Steam
2011-07-19 10:54:31 ----D---- C:\Program Files\Mozilla Firefox
2011-07-19 10:54:31 ----D---- C:\Program Files\Microsoft Security Client
2011-07-19 10:54:31 ----D---- C:\Program Files\Common Files\Steam
2011-07-19 10:54:27 ----D---- C:\Program Files\ATI Stream
2011-07-19 10:54:15 ----D---- C:\Windows\registration
2011-07-19 10:53:58 ----D---- C:\Windows\system32\catroot
2011-07-19 10:53:38 ----RSD---- C:\Windows\assembly
2011-07-19 10:53:28 ----D---- C:\Users\User\AppData\Roaming\Skype
2011-07-19 10:53:27 ----SD---- C:\Users\User\AppData\Roaming\Microsoft
2011-07-19 10:53:04 ----RD---- C:\Users
2011-07-19 10:52:47 ----D---- C:\Program Files\ATI Technologies
2011-07-19 10:52:46 ----D---- C:\ATI
2011-07-19 10:28:38 ----SHD---- C:\System Volume Information
2011-07-19 10:23:31 ----D---- C:\Users\User\AppData\Roaming\ICQ
2011-07-18 12:00:13 ----D---- C:\Windows\Prefetch
2011-07-11 20:06:31 ----D---- C:\Windows\Minidump
2011-07-10 18:23:03 ----D---- C:\Program Files\Common Files\Symantec Shared
2011-07-10 17:32:34 ----D---- C:\Program Files\ICQ7.5
2011-07-09 22:53:59 ----SD---- C:\ProgramData\Microsoft
2011-07-08 18:57:21 ----D---- C:\Windows\Microsoft.NET
2011-07-07 19:29:00 ----D---- C:\Windows\rescache
2011-07-07 11:13:07 ----D---- C:\Windows\system32\migration
2011-07-07 11:13:07 ----D---- C:\Windows\system32\en-US
2011-07-07 11:13:07 ----D---- C:\Windows\PolicyDefinitions
2011-07-07 11:13:07 ----D---- C:\Program Files\Internet Explorer
2011-07-07 00:46:20 ----D---- C:\Program Files\Windows Sidebar
2011-07-07 00:46:20 ----D---- C:\Program Files\Windows Mail
2011-07-07 00:46:20 ----D---- C:\Program Files\DVD Maker
2011-07-07 00:46:19 ----D---- C:\Program Files\Windows Portable Devices
2011-07-07 00:46:19 ----D---- C:\Program Files\Windows Photo Viewer
2011-07-07 00:46:19 ----D---- C:\Program Files\Windows Media Player
2011-07-07 00:46:19 ----D---- C:\Program Files\Windows Journal
2011-07-07 00:46:14 ----D---- C:\Windows\servicing
2011-07-07 00:46:14 ----D---- C:\Windows\ehome
2011-07-07 00:46:14 ----D---- C:\Program Files\Windows Defender
2011-07-07 00:46:05 ----D---- C:\Windows\system32\oobe
2011-07-07 00:46:05 ----D---- C:\Windows\system32\da-DK
2011-07-07 00:46:04 ----D---- C:\Windows\system32\sysprep
2011-07-07 00:46:03 ----D---- C:\Windows\system32\Setup
2011-07-07 00:46:03 ----D---- C:\Windows\system32\cs
2011-07-07 00:46:03 ----D---- C:\Windows\system32\AdvancedInstallers
2011-07-07 00:45:59 ----D---- C:\Windows\system32\sppui
2011-07-07 00:45:59 ----D---- C:\Windows\system32\manifeststore
2011-07-07 00:45:59 ----D---- C:\Windows\system32\es-ES
2011-07-07 00:45:58 ----D---- C:\Windows\system32\drivers\cs-CZ
2011-07-07 00:45:56 ----D---- C:\Windows\system32\migwiz
2011-07-07 00:45:56 ----D---- C:\Windows\system32\Dism
2011-07-07 00:45:23 ----RSD---- C:\Windows\Fonts
2011-07-07 00:45:11 ----D---- C:\Windows\system32\Boot
2011-07-06 08:41:10 ----D---- C:\Windows\Logs
2011-07-06 08:35:15 ----A---- C:\Windows\system32\msclmd.dll
2011-07-01 14:41:14 ----D---- C:\ProgramData\CanonIJPLM
2011-07-01 09:38:51 ----D---- C:\Windows\system32\Tasks
2011-07-01 09:38:48 ----RD---- C:\Program Files\Skype
2011-07-01 09:38:44 ----D---- C:\ProgramData\Skype
2011-06-30 16:04:37 ----D---- C:\Users\User\AppData\Roaming\skypePM
2011-06-27 12:03:33 ----D---- C:\ProgramData\Skype Extras
2011-06-22 15:44:37 ----D---- C:\Program Files\Java
2011-06-21 22:42:46 ----D---- C:\Windows\system32\FxsTmp
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 BtHidBus;Bluetooth HID Bus Service; C:\Windows\System32\Drivers\BtHidBus.sys [2009-09-24 19592]
R0 BTHidMgr;Bluetooth HID Manager Service; C:\Windows\System32\Drivers\BTHidMgr.sys [2005-04-30 28271]
R0 JRAID;JRAID; C:\Windows\system32\DRIVERS\jraid.sys [2009-10-29 99440]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R3 nusb3hub;NEC Electronics USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\nusb3hub.sys [2009-11-20 58880]
R3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\DRIVERS\nusb3xhc.sys [2009-11-20 137728]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-08-20 189440]
S0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-09-03 691696]
S1 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2010-10-24 165264]
S1 MpKsl0856aac9;MpKsl0856aac9; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{575638FC-8324-4391-8E40-73DF5F5F78A0}\MpKsl0856aac9.sys []
S1 MpKsl08c5a6bd;MpKsl08c5a6bd; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{2EF5F91E-97E7-42FA-8B16-FC34F6B07D35}\MpKsl08c5a6bd.sys []
S1 MpKsl10a3ef9c;MpKsl10a3ef9c; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{55A03CCA-8A89-4B70-8559-18DC10564263}\MpKsl10a3ef9c.sys []
S1 MpKsl2c0c7dfa;MpKsl2c0c7dfa; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{EB8C8738-34A6-4B30-9916-EF3788640B3B}\MpKsl2c0c7dfa.sys []
S1 MpKsl34a70e3d;MpKsl34a70e3d; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{86C17EDA-74E8-415B-8181-5FEA9320DCAB}\MpKsl34a70e3d.sys []
S1 MpKsl4c775cd8;MpKsl4c775cd8; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7B512DD5-EC72-4846-9862-532F9152B8F0}\MpKsl4c775cd8.sys []
S1 MpKsl5089d058;MpKsl5089d058; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C63F2DDC-BE52-49A1-BB43-1D2C93E2F85E}\MpKsl5089d058.sys []
S1 MpKsl82e927da;MpKsl82e927da; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{9B2265C9-72F6-4826-AAD5-3DD204110005}\MpKsl82e927da.sys []
S1 MpKsl9996d9fe;MpKsl9996d9fe; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{E2410AF9-2BB1-4359-8118-342CC0B0EFE7}\MpKsl9996d9fe.sys []
S1 MpKsl9fbcda3e;MpKsl9fbcda3e; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{86C17EDA-74E8-415B-8181-5FEA9320DCAB}\MpKsl9fbcda3e.sys []
S1 MpKslb86f1c95;MpKslb86f1c95; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{91E9B4E9-E0EA-4484-A685-F75198F58F8D}\MpKslb86f1c95.sys []
S1 MpKslc275244f;MpKslc275244f; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D154B264-485F-46B1-BC0A-A0EC850F78D0}\MpKslc275244f.sys []
S1 MpKsleb5765d6;MpKsleb5765d6; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{05635216-FFB5-434E-9E76-9CEAA4ACAAE5}\MpKsleb5765d6.sys []
S1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2010-04-12 59388]
S2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2011-05-24 281760]
S2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2011-05-24 25888]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-11-26 6650368]
S3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-11-26 231936]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BlueletAudio;Bluetooth Audio Service; C:\Windows\system32\DRIVERS\blueletaudio.sys [2005-05-31 20480]
S3 BT;Bluetooth PAN Network Adapter; C:\Windows\system32\DRIVERS\btnetdrv.sys [2005-04-30 10804]
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\Windows\System32\Drivers\btcusb.sys [2005-05-31 23000]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BTHidEnum;Bluetooth HID Enumerator; C:\Windows\system32\DRIVERS\vbtenum.sys [2005-04-30 11860]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2010-11-20 393216]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2010-11-20 60416]
S3 btnetBUs;Bluetooth PAN Bus Service; C:\Windows\System32\Drivers\btnetBus.sys [2009-09-24 22528]
S3 catchme;catchme; \??\C:\Users\User\AppData\Local\Temp\catchme.sys []
S3 CrystalSysInfo;CrystalSysInfo; \??\C:\Program Files\MediaCoder\SysInfo.sys [2007-09-25 15152]
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2011-07-11 17488]
S3 HH10Help.sys;HH10Help.sys; \??\C:\Windows\system32\drivers\HH10Help.sys [2010-03-10 13952]
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-12-08 2975776]
S3 IvtBtBUs;IVT Bluetooth Bus Service; C:\Windows\System32\Drivers\IvtBtBus.sys [2009-08-26 25480]
S3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2011-07-06 22712]
S3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\mbamswissarmy.sys [2011-07-06 41272]
S3 MpNWMon;Microsoft Malware Protection Network Driver; C:\Windows\system32\DRIVERS\MpNWMon.sys [2010-10-24 43392]
S3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2010-10-24 54144]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2009-07-14 8192]
S3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIV.sys [2009-12-02 168480]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 84992]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 VComm;Virtual Serial port driver; C:\Windows\system32\DRIVERS\VComm.sys [2004-10-19 61312]
S3 VcommMgr;Bluetooth VComm Manager Service; C:\Windows\System32\Drivers\VcommMgr.sys [2005-03-25 82148]
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\drivers\WinUSB.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2010-11-11 11736]
S2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-11-26 176128]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S2 ES lite Service;ES lite Service for program management.; C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE [2009-08-24 68136]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-10-18 136176]
S2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2010-11-21 247608]
S2 IJPLMSVC;Canon Inkjet Printer/Scanner/Fax Extended Survey Program; C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE [2009-02-10 116104]
S2 JMB36X;JMB36X; C:\Windows\System32\XSrvSetup.exe [2009-08-06 65536]
S2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2011-07-06 366640]
S2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\system32\IoctlSvc.exe [2006-12-19 81920]
S2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2011-04-09 75136]
S2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2010-07-27 249136]
S2 VC10SecS;Virtual CD v10 Management Service; C:\Program Files\Virtual CD v10\System\VC10SecS.exe [2010-04-14 144712]
S2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 1529728]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-10-18 136176]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2008-04-08 800040]
S3 NisSrv;@c:\Program Files\Microsoft Security Client\Antimalware\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2010-11-11 206360]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2008-01-22 275752]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4640000]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2008-09-08 575488]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2011-06-03 403240]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-09-01 1343400]
-----------------EOF-----------------
Největší potěšení pro muže je svlékat ženu a oblékat ragbyový dres.
Mrtvý nepřítel vždy voní krásně.", Alus Vitellus
Kdo si přeje mír, ať připravuje válku, Vegetius Renatus
Fotbal je hra gentlemanů, kterou hrají barbaři a ragby je hra barbarů, kterou hrají gentlemani - Oscar Wilde
Per Aspera ad Astra !
Mrtvý nepřítel vždy voní krásně.", Alus Vitellus
Kdo si přeje mír, ať připravuje válku, Vegetius Renatus
Fotbal je hra gentlemanů, kterou hrají barbaři a ragby je hra barbarů, kterou hrají gentlemani - Oscar Wilde
Per Aspera ad Astra !
Re: vir z Facebooku
Pořád nejde běžný režim?
Tyto složky znáte?
C:\Windows\system32\migwiz
C:\Windows\system32\Dism
Tyto složky znáte?
C:\Windows\system32\migwiz
C:\Windows\system32\Dism
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
- MaximusBrutus
- Návštěvník
- Příspěvky: 57
- Registrován: 18 črc 2011 22:11
- Bydliště: Vyškov
Re: vir z Facebooku
PC je pořád v nouzovém režimu a nechce se mu zpět. Při restartu se dere furt do nouzového režimu bez sítě. Akorát při držení kláves F8 při startu se objevilo více nabídek, které tam myslím před tím nebyly.
Největší potěšení pro muže je svlékat ženu a oblékat ragbyový dres.
Mrtvý nepřítel vždy voní krásně.", Alus Vitellus
Kdo si přeje mír, ať připravuje válku, Vegetius Renatus
Fotbal je hra gentlemanů, kterou hrají barbaři a ragby je hra barbarů, kterou hrají gentlemani - Oscar Wilde
Per Aspera ad Astra !
Mrtvý nepřítel vždy voní krásně.", Alus Vitellus
Kdo si přeje mír, ať připravuje válku, Vegetius Renatus
Fotbal je hra gentlemanů, kterou hrají barbaři a ragby je hra barbarů, kterou hrají gentlemani - Oscar Wilde
Per Aspera ad Astra !
- MaximusBrutus
- Návštěvník
- Příspěvky: 57
- Registrován: 18 črc 2011 22:11
- Bydliště: Vyškov
Re: vir z Facebooku
Ne, neznám. Do souboru Windowsu se nikdy nedívám a nic s něma nedělám.motji píše:Pořád nejde běžný režim?
Tyto složky znáte?
C:\Windows\system32\migwiz
C:\Windows\system32\Dism
Největší potěšení pro muže je svlékat ženu a oblékat ragbyový dres.
Mrtvý nepřítel vždy voní krásně.", Alus Vitellus
Kdo si přeje mír, ať připravuje válku, Vegetius Renatus
Fotbal je hra gentlemanů, kterou hrají barbaři a ragby je hra barbarů, kterou hrají gentlemani - Oscar Wilde
Per Aspera ad Astra !
Mrtvý nepřítel vždy voní krásně.", Alus Vitellus
Kdo si přeje mír, ať připravuje válku, Vegetius Renatus
Fotbal je hra gentlemanů, kterou hrají barbaři a ragby je hra barbarů, kterou hrají gentlemani - Oscar Wilde
Per Aspera ad Astra !
Re: vir z Facebooku
Prosím podívejte se do těch složek.
Můžete se zkusit přes F8 dostat do běžného režimu?
Můžete se zkusit přes F8 dostat do běžného režimu?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
- MaximusBrutus
- Návštěvník
- Příspěvky: 57
- Registrován: 18 črc 2011 22:11
- Bydliště: Vyškov
Re: vir z Facebooku
Teď jsem se do těch složek podíval. Nevypadají jako soubory windowsu. Chtěl jsem je tedy smazat. Vyjelo mi, že na to nemám oprávnění a mám požádat nějakyho trustedinstaller o práva.motji píše:Prosím podívejte se do těch složek.
Můžete se zkusit přes F8 dostat do běžného režimu?
Největší potěšení pro muže je svlékat ženu a oblékat ragbyový dres.
Mrtvý nepřítel vždy voní krásně.", Alus Vitellus
Kdo si přeje mír, ať připravuje válku, Vegetius Renatus
Fotbal je hra gentlemanů, kterou hrají barbaři a ragby je hra barbarů, kterou hrají gentlemani - Oscar Wilde
Per Aspera ad Astra !
Mrtvý nepřítel vždy voní krásně.", Alus Vitellus
Kdo si přeje mír, ať připravuje válku, Vegetius Renatus
Fotbal je hra gentlemanů, kterou hrají barbaři a ragby je hra barbarů, kterou hrají gentlemani - Oscar Wilde
Per Aspera ad Astra !
- MaximusBrutus
- Návštěvník
- Příspěvky: 57
- Registrován: 18 črc 2011 22:11
- Bydliště: Vyškov
Re: vir z Facebooku
Tak jsem zkusil nějak spustit pc do normálu a nepodařilo se. Dal jsem přes F8 spustit systém windows obvyklým způsobem a nic.
Největší potěšení pro muže je svlékat ženu a oblékat ragbyový dres.
Mrtvý nepřítel vždy voní krásně.", Alus Vitellus
Kdo si přeje mír, ať připravuje válku, Vegetius Renatus
Fotbal je hra gentlemanů, kterou hrají barbaři a ragby je hra barbarů, kterou hrají gentlemani - Oscar Wilde
Per Aspera ad Astra !
Mrtvý nepřítel vždy voní krásně.", Alus Vitellus
Kdo si přeje mír, ať připravuje válku, Vegetius Renatus
Fotbal je hra gentlemanů, kterou hrají barbaři a ragby je hra barbarů, kterou hrají gentlemani - Oscar Wilde
Per Aspera ad Astra !
Re: vir z Facebooku
Můžete mi udělat screen, co v těch složkách je?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
- MaximusBrutus
- Návštěvník
- Příspěvky: 57
- Registrován: 18 črc 2011 22:11
- Bydliště: Vyškov
Re: vir z Facebooku
Ale jistě beze všeho. Zde jsou :motji píše:Můžete mi udělat screen, co v těch složkách je?
http://www.pictureup.cz/verejne/443523-migwiz-1
http://www.pictureup.cz/verejne/443524-migwiz-2
http://www.pictureup.cz/verejne/443525-dism-1
Pojmenoval jsem to podle názvů těch složek. Pomalu začínám doufat, že to dobře dopadne

Největší potěšení pro muže je svlékat ženu a oblékat ragbyový dres.
Mrtvý nepřítel vždy voní krásně.", Alus Vitellus
Kdo si přeje mír, ať připravuje válku, Vegetius Renatus
Fotbal je hra gentlemanů, kterou hrají barbaři a ragby je hra barbarů, kterou hrají gentlemani - Oscar Wilde
Per Aspera ad Astra !
Mrtvý nepřítel vždy voní krásně.", Alus Vitellus
Kdo si přeje mír, ať připravuje válku, Vegetius Renatus
Fotbal je hra gentlemanů, kterou hrají barbaři a ragby je hra barbarů, kterou hrají gentlemani - Oscar Wilde
Per Aspera ad Astra !