Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosim o kontrolu pc

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosim o kontrolu pc

#46 Příspěvek od motji »

Není zač, kdyby byli problémy, ozvěte se :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

dodo65
Návštěvník
Návštěvník
Příspěvky: 99
Registrován: 02 říj 2009 13:37

Re: Prosim o kontrolu pc

#47 Příspěvek od dodo65 »

Prosim o dalsiu kontrolu pc,teraz sa mi zacal sam vypinat.Dakujem

Logfile of random's system information tool 1.06 (written by random/random)
Run by Dodo at 2009-12-14 19:42:41
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 183 GB (77%) free of 238 GB
Total RAM: 3070 MB (63% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:42:54, on 14. 12. 2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v7.00 (7.00.6002.18005)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Windows\WindowsMobile\wmdc.exe
C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files\Windows Sidebar\sidebar.exe
D:\Program files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Users\Dodo\Desktop\RSIT.exe
C:\Program Files\trend micro\Dodo.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O3 - Toolbar: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe"
O4 - HKLM\..\Run: [P2Go_Menu] "C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [SpybotSD TeaTimer] D:\Program files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - D:\Program files\Spybot - Search & Destroy\SDWinSec.exe

--
End of file - 6469 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - D:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2009-07-02 2215960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2009-07-02 2215960]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-21 1008184]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-08-30 61440]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-11-24 81000]
"NeroFilterCheck"=C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2007-03-01 153136]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"Windows Mobile Device Center"=C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 648072]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]
"CLMLServer"=C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe [2008-07-18 104936]
"P2Go_Menu"=C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2008-06-13 210216]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920]
"SpybotSD TeaTimer"=D:\Program files\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [2007-06-27 152872]
"LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-06-09 2363392]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UniblueSpeedUpMyPC]
D:\Program files\Uniblue\Uniblue\SpeedUpMyPC\Launcher.exe [2009-04-29 614696]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
"NoDrives"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======List of files/folders created in the last 1 months======

2009-12-13 17:36:22 ----A---- C:\Windows\system32\SDDEVMGR.dll
2009-12-13 15:31:24 ----D---- C:\rsit
2009-12-13 11:15:48 ----SHD---- C:\$RECYCLE.BIN
2009-12-12 09:55:29 ----D---- C:\Windows\temp
2009-12-12 09:48:17 ----D---- C:\Windows\ERDNT
2009-12-11 18:43:09 ----D---- C:\Program Files\trend micro
2009-12-11 17:48:20 ----D---- C:\Users\Dodo\AppData\Roaming\CyberLink
2009-12-10 19:21:37 ----D---- C:\ProgramData\CyberLink
2009-12-10 19:19:34 ----D---- C:\Program Files\Common Files\LightScribe
2009-12-10 19:19:07 ----N---- C:\Windows\system32\MFC71u.dll
2009-12-10 19:18:33 ----D---- C:\Program Files\CyberLink
2009-12-10 19:18:01 ----D---- C:\ProgramData\Temp
2009-12-09 08:39:49 ----A---- C:\Windows\system32\nshhttp.dll
2009-12-09 08:39:45 ----A---- C:\Windows\system32\httpapi.dll
2009-12-09 08:04:24 ----A---- C:\Windows\system32\winhttp.dll
2009-12-09 08:04:05 ----A---- C:\Windows\system32\wininet.dll
2009-12-09 08:04:04 ----A---- C:\Windows\system32\mshtml.dll
2009-12-09 08:04:03 ----A---- C:\Windows\system32\urlmon.dll
2009-12-09 08:04:02 ----A---- C:\Windows\system32\ieframe.dll
2009-12-09 08:04:00 ----A---- C:\Windows\system32\ieui.dll
2009-12-09 08:03:59 ----A---- C:\Windows\system32\ieencode.dll
2009-12-09 08:03:58 ----A---- C:\Windows\system32\ieapfltr.dll
2009-12-09 08:03:29 ----A---- C:\Windows\system32\rastls.dll
2009-12-03 10:45:36 ----D---- C:\ProgramData\Adobe
2009-12-03 10:45:26 ----D---- C:\Program Files\Common Files\Adobe
2009-12-03 10:45:26 ----D---- C:\Program Files\Adobe
2009-11-27 08:09:50 ----A---- C:\Windows\system32\tzres.dll
2009-11-25 21:49:49 ----A---- C:\Windows\system32\msxml6.dll
2009-11-25 21:49:49 ----A---- C:\Windows\system32\msxml3.dll
2009-11-20 11:28:35 ----D---- C:\ProgramData\Martau
2009-11-16 18:36:30 ----D---- C:\Program Files\Windows Portable Devices
2009-11-16 18:34:46 ----A---- C:\Windows\system32\UIAnimation.dll
2009-11-16 18:34:45 ----A---- C:\Windows\system32\UIRibbonRes.dll
2009-11-16 18:34:44 ----A---- C:\Windows\system32\UIRibbon.dll
2009-11-16 18:34:18 ----A---- C:\Windows\system32\WMPhoto.dll
2009-11-16 18:34:17 ----A---- C:\Windows\system32\cdd.dll
2009-11-16 18:34:16 ----A---- C:\Windows\system32\XpsRasterService.dll
2009-11-16 18:34:16 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2009-11-16 18:34:16 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2009-11-16 18:34:16 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2009-11-16 18:34:16 ----A---- C:\Windows\system32\d3d10warp.dll
2009-11-16 18:34:16 ----A---- C:\Windows\system32\d2d1.dll
2009-11-16 18:34:15 ----A---- C:\Windows\system32\XpsPrint.dll
2009-11-16 18:34:15 ----A---- C:\Windows\system32\WindowsCodecs.dll
2009-11-16 18:34:15 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2009-11-16 18:34:15 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2009-11-16 18:34:15 ----A---- C:\Windows\system32\OpcServices.dll
2009-11-16 18:34:15 ----A---- C:\Windows\system32\dxdiagn.dll
2009-11-16 18:34:15 ----A---- C:\Windows\system32\dxdiag.exe
2009-11-16 18:34:14 ----A---- C:\Windows\system32\xpsservices.dll
2009-11-16 18:34:14 ----A---- C:\Windows\system32\FntCache.dll
2009-11-16 18:34:14 ----A---- C:\Windows\system32\dxgi.dll
2009-11-16 18:34:14 ----A---- C:\Windows\system32\DWrite.dll
2009-11-16 18:34:14 ----A---- C:\Windows\system32\d3d11.dll
2009-11-16 18:34:14 ----A---- C:\Windows\system32\d3d10level9.dll
2009-11-16 18:34:14 ----A---- C:\Windows\system32\d3d10core.dll
2009-11-16 18:34:14 ----A---- C:\Windows\system32\d3d10_1core.dll
2009-11-16 18:34:13 ----A---- C:\Windows\system32\d3d10_1.dll
2009-11-16 18:34:13 ----A---- C:\Windows\system32\d3d10.dll
2009-11-16 18:33:34 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2009-11-16 18:33:34 ----A---- C:\Windows\system32\wpdbusenum.dll
2009-11-16 18:33:34 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2009-11-16 18:33:31 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2009-11-16 18:33:28 ----A---- C:\Windows\system32\WPDSp.dll
2009-11-16 18:33:28 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2009-11-16 18:33:28 ----A---- C:\Windows\system32\wpdshext.dll
2009-11-16 18:33:28 ----A---- C:\Windows\system32\wpd_ci.dll
2009-11-16 18:33:28 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2009-11-16 18:33:28 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2009-11-16 18:33:28 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2009-11-16 18:33:28 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2009-11-16 18:32:04 ----A---- C:\Windows\system32\oleaccrc.dll
2009-11-16 18:32:03 ----A---- C:\Windows\system32\UIAutomationCore.dll
2009-11-16 18:32:03 ----A---- C:\Windows\system32\oleacc.dll
2009-11-15 11:01:08 ----D---- C:\Windows\system32\eu-ES
2009-11-15 11:01:08 ----D---- C:\Windows\system32\ca-ES
2009-11-15 11:01:07 ----D---- C:\Windows\system32\vi-VN
2009-11-15 09:06:14 ----D---- C:\Windows\system32\EventProviders
2009-11-15 08:57:32 ----D---- C:\Windows\system32\ErrorLogs
2009-11-15 08:41:11 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2009-11-15 08:41:08 ----A---- C:\Windows\system32\SLCExt.dll
2009-11-15 08:41:07 ----A---- C:\Windows\system32\SLsvc.exe
2009-11-15 08:41:05 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2009-11-15 08:41:05 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2009-11-15 08:41:04 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2009-11-15 08:41:00 ----A---- C:\Windows\system32\mssrch.dll
2009-11-15 08:40:57 ----A---- C:\Windows\system32\tquery.dll
2009-11-15 08:40:56 ----A---- C:\Windows\system32\RMActivate_isv.exe
2009-11-15 08:40:56 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2009-11-15 08:40:55 ----A---- C:\Windows\system32\scavenge.dll
2009-11-15 08:40:55 ----A---- C:\Windows\system32\RMActivate.exe
2009-11-15 08:40:54 ----A---- C:\Windows\system32\msi.dll
2009-11-15 08:40:53 ----A---- C:\Windows\system32\imapi2fs.dll
2009-11-15 08:40:52 ----A---- C:\Windows\system32\WscEapPr.dll
2009-11-15 08:40:52 ----A---- C:\Windows\system32\wcnwiz2.dll
2009-11-15 08:40:52 ----A---- C:\Windows\system32\sysmain.dll
2009-11-15 08:40:52 ----A---- C:\Windows\system32\secproc_isv.dll
2009-11-15 08:40:50 ----A---- C:\Windows\system32\icardagt.exe
2009-11-15 08:40:49 ----A---- C:\Windows\system32\EhStorShell.dll
2009-11-15 08:40:49 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2009-11-15 08:40:48 ----A---- C:\Windows\system32\spreview.exe
2009-11-15 08:40:48 ----A---- C:\Windows\system32\spinstall.exe
2009-11-15 08:40:47 ----A---- C:\Windows\system32\drmv2clt.dll
2009-11-15 08:40:46 ----A---- C:\Windows\system32\spwizui.dll
2009-11-15 08:40:46 ----A---- C:\Windows\system32\secproc.dll
2009-11-15 08:40:46 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2009-11-15 08:40:45 ----A---- C:\Windows\system32\shell32.dll
2009-11-15 08:40:44 ----A---- C:\Windows\system32\SearchIndexer.exe
2009-11-15 08:40:44 ----A---- C:\Windows\system32\p2psvc.dll
2009-11-15 08:40:43 ----A---- C:\Windows\system32\mssvp.dll
2009-11-15 08:40:42 ----A---- C:\Windows\system32\mssphtb.dll
2009-11-15 08:40:42 ----A---- C:\Windows\system32\mssph.dll
2009-11-15 08:40:42 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2009-11-15 08:40:42 ----A---- C:\Windows\system32\mscoree.dll
2009-11-15 08:40:42 ----A---- C:\Windows\system32\imapi2.dll
2009-11-15 08:40:41 ----A---- C:\Windows\system32\sdohlp.dll
2009-11-15 08:40:40 ----A---- C:\Windows\system32\IMJP10K.DLL
2009-11-15 08:40:40 ----A---- C:\Windows\system32\esent.dll
2009-11-15 08:40:39 ----A---- C:\Windows\system32\wevtsvc.dll
2009-11-15 08:40:39 ----A---- C:\Windows\system32\sperror.dll
2009-11-15 08:40:39 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2009-11-15 08:40:39 ----A---- C:\Windows\system32\korwbrkr.dll
2009-11-15 08:40:39 ----A---- C:\Windows\system32\DevicePairing.dll
2009-11-15 08:40:38 ----A---- C:\Windows\system32\SLC.dll
2009-11-15 08:40:38 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2009-11-15 08:40:38 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2009-11-15 08:40:38 ----A---- C:\Windows\system32\msshsq.dll
2009-11-15 08:40:36 ----A---- C:\Windows\system32\msjet40.dll
2009-11-15 08:40:36 ----A---- C:\Windows\system32\MPSSVC.dll
2009-11-15 08:40:34 ----A---- C:\Windows\system32\Query.dll
2009-11-15 08:40:34 ----A---- C:\Windows\system32\qmgr.dll
2009-11-15 08:40:34 ----A---- C:\Windows\system32\msexch40.dll
2009-11-15 08:40:33 ----A---- C:\Windows\system32\P2PGraph.dll
2009-11-15 08:40:33 ----A---- C:\Windows\system32\IasMigReader.exe
2009-11-15 08:40:33 ----A---- C:\Windows\system32\diagperf.dll
2009-11-15 08:40:32 ----A---- C:\Windows\system32\ole32.dll
2009-11-15 08:40:31 ----A---- C:\Windows\system32\srchadmin.dll
2009-11-15 08:40:31 ----A---- C:\Windows\system32\ntdll.dll
2009-11-15 08:40:30 ----A---- C:\Windows\system32\winload.exe
2009-11-15 08:40:30 ----A---- C:\Windows\system32\mblctr.exe
2009-11-15 08:40:30 ----A---- C:\Windows\system32\EncDec.dll
2009-11-15 08:40:29 ----A---- C:\Windows\system32\uDWM.dll
2009-11-15 08:40:29 ----A---- C:\Windows\system32\mmc.exe
2009-11-15 08:40:28 ----A---- C:\Windows\system32\riched20.dll
2009-11-15 08:40:28 ----A---- C:\Windows\system32\IasMigPlugin.dll
2009-11-15 08:40:27 ----A---- C:\Windows\system32\RacEngn.dll
2009-11-15 08:40:27 ----A---- C:\Windows\system32\fdBth.dll
2009-11-15 08:40:25 ----A---- C:\Windows\system32\spoolss.dll
2009-11-15 08:40:25 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2009-11-15 08:40:25 ----A---- C:\Windows\system32\SearchFilterHost.exe
2009-11-15 08:40:25 ----A---- C:\Windows\system32\milcore.dll
2009-11-15 08:40:25 ----A---- C:\Windows\system32\kernel32.dll
2009-11-15 08:40:25 ----A---- C:\Windows\system32\EhStorAPI.dll
2009-11-15 08:40:25 ----A---- C:\Windows\system32\CertEnroll.dll
2009-11-15 08:40:24 ----A---- C:\Windows\system32\schedsvc.dll
2009-11-15 08:40:24 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2009-11-15 08:40:23 ----A---- C:\Windows\system32\msjtes40.dll
2009-11-15 08:40:23 ----A---- C:\Windows\system32\fsquirt.exe
2009-11-15 08:40:23 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2009-11-15 08:40:22 ----A---- C:\Windows\system32\msvcp60.dll
2009-11-15 08:40:22 ----A---- C:\Windows\system32\infocardapi.dll
2009-11-15 08:40:22 ----A---- C:\Windows\system32\gpedit.dll
2009-11-15 08:40:21 ----A---- C:\Windows\system32\WinSAT.exe
2009-11-15 08:40:21 ----A---- C:\Windows\system32\PresentationSettings.exe
2009-11-15 08:40:21 ----A---- C:\Windows\system32\es.dll
2009-11-15 08:40:20 ----A---- C:\Windows\system32\mstext40.dll
2009-11-15 08:40:20 ----A---- C:\Windows\system32\Magnify.exe
2009-11-15 08:40:20 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2009-11-15 08:40:20 ----A---- C:\Windows\system32\advapi32.dll
2009-11-15 08:40:18 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2009-11-15 08:40:18 ----A---- C:\Windows\system32\WebClnt.dll
2009-11-15 08:40:18 ----A---- C:\Windows\system32\slwmi.dll
2009-11-15 08:40:18 ----A---- C:\Windows\system32\msxbde40.dll
2009-11-15 08:40:18 ----A---- C:\Windows\system32\msexcl40.dll
2009-11-15 08:40:18 ----A---- C:\Windows\system32\comsvcs.dll
2009-11-15 08:40:17 ----A---- C:\Windows\system32\vssapi.dll
2009-11-15 08:40:17 ----A---- C:\Windows\system32\msfeeds.dll
2009-11-15 08:40:17 ----A---- C:\Windows\system32\authui.dll
2009-11-15 08:40:15 ----A---- C:\Windows\system32\vbscript.dll
2009-11-15 08:40:15 ----A---- C:\Windows\system32\PresentationHost.exe
2009-11-15 08:40:15 ----A---- C:\Windows\system32\NetProjW.dll
2009-11-15 08:40:15 ----A---- C:\Windows\system32\msrepl40.dll
2009-11-15 08:40:14 ----A---- C:\Windows\system32\propsys.dll
2009-11-15 08:40:14 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-11-15 08:40:14 ----A---- C:\Windows\system32\newdev.dll
2009-11-15 08:40:14 ----A---- C:\Windows\system32\iasrecst.dll
2009-11-15 08:40:14 ----A---- C:\Windows\system32\gpsvc.dll
2009-11-15 08:40:14 ----A---- C:\Windows\system32\eudcedit.exe
2009-11-15 08:40:14 ----A---- C:\Windows\system32\crypt32.dll
2009-11-15 08:40:13 ----A---- C:\Windows\system32\setupapi.dll
2009-11-15 08:40:13 ----A---- C:\Windows\system32\rpcss.dll
2009-11-15 08:40:13 ----A---- C:\Windows\system32\iedkcs32.dll
2009-11-15 08:40:13 ----A---- C:\Windows\explorer.exe
2009-11-15 08:40:12 ----A---- C:\Windows\system32\mspbde40.dll
2009-11-15 08:40:12 ----A---- C:\Windows\system32\d3d9.dll
2009-11-15 08:40:11 ----A---- C:\Windows\system32\shlwapi.dll
2009-11-15 08:40:11 ----A---- C:\Windows\system32\msltus40.dll
2009-11-15 08:40:11 ----A---- C:\Windows\system32\mfc42.dll
2009-11-15 08:40:11 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2009-11-15 08:40:11 ----A---- C:\Windows\system32\EhStorAuthn.dll
2009-11-15 08:40:11 ----A---- C:\Windows\system32\davclnt.dll
2009-11-15 08:40:10 ----A---- C:\Windows\system32\wevtapi.dll
2009-11-15 08:40:10 ----A---- C:\Windows\system32\msrd3x40.dll
2009-11-15 08:40:10 ----A---- C:\Windows\system32\msdtctm.dll
2009-11-15 08:40:10 ----A---- C:\Windows\system32\browseui.dll
2009-11-15 08:40:09 ----A---- C:\Windows\system32\photowiz.dll
2009-11-15 08:40:09 ----A---- C:\Windows\system32\nlhtml.dll
2009-11-15 08:40:08 ----A---- C:\Windows\system32\user32.dll
2009-11-15 08:40:08 ----A---- C:\Windows\system32\samsrv.dll
2009-11-15 08:40:08 ----A---- C:\Windows\system32\quartz.dll
2009-11-15 08:40:08 ----A---- C:\Windows\system32\ci.dll
2009-11-15 08:40:07 ----A---- C:\Windows\system32\win32spl.dll
2009-11-15 08:40:07 ----A---- C:\Windows\system32\WcnNetsh.dll
2009-11-15 08:40:07 ----A---- C:\Windows\system32\SLCommDlg.dll
2009-11-15 08:40:07 ----A---- C:\Windows\system32\oleaut32.dll
2009-11-15 08:40:06 ----A---- C:\Windows\system32\netshell.dll
2009-11-15 08:40:06 ----A---- C:\Windows\system32\IKEEXT.DLL
2009-11-15 08:40:06 ----A---- C:\Windows\system32\compcln.exe
2009-11-15 08:40:06 ----A---- C:\Windows\system32\apds.dll
2009-11-15 08:40:05 ----A---- C:\Windows\system32\xmlfilter.dll
2009-11-15 08:40:05 ----A---- C:\Windows\system32\mswstr10.dll
2009-11-15 08:40:05 ----A---- C:\Windows\system32\msctf.dll
2009-11-15 08:40:05 ----A---- C:\Windows\system32\emdmgmt.dll
2009-11-15 08:40:05 ----A---- C:\Windows\system32\audiosrv.dll
2009-11-15 08:40:04 ----A---- C:\Windows\system32\QAGENTRT.DLL
2009-11-15 08:40:04 ----A---- C:\Windows\system32\msvcrt.dll
2009-11-15 08:40:04 ----A---- C:\Windows\system32\gdi32.dll
2009-11-15 08:40:03 ----A---- C:\Windows\system32\VSSVC.exe
2009-11-15 08:40:03 ----A---- C:\Windows\system32\SLUI.exe
2009-11-15 08:40:03 ----A---- C:\Windows\system32\mfc42u.dll
2009-11-15 08:40:03 ----A---- C:\Windows\system32\iphlpsvc.dll
2009-11-15 08:40:02 ----A---- C:\Windows\system32\sqlsrv32.dll
2009-11-15 08:40:02 ----A---- C:\Windows\system32\msrd2x40.dll
2009-11-15 08:40:02 ----A---- C:\Windows\system32\eapphost.dll
2009-11-15 08:40:00 ----A---- C:\Windows\system32\winresume.exe
2009-11-15 08:40:00 ----A---- C:\Windows\system32\propdefs.dll
2009-11-15 08:40:00 ----A---- C:\Windows\system32\odbc32.dll
2009-11-15 08:39:59 ----A---- C:\Windows\system32\shdocvw.dll
2009-11-15 08:39:58 ----A---- C:\Windows\system32\wevtutil.exe
2009-11-15 08:39:58 ----A---- C:\Windows\system32\mssitlb.dll
2009-11-15 08:39:58 ----A---- C:\Windows\system32\dbgeng.dll
2009-11-15 08:39:56 ----A---- C:\Windows\system32\WsmSvc.dll
2009-11-15 08:39:56 ----A---- C:\Windows\system32\usp10.dll
2009-11-15 08:39:56 ----A---- C:\Windows\system32\swprv.dll
2009-11-15 08:39:56 ----A---- C:\Windows\system32\mmcndmgr.dll
2009-11-15 08:39:55 ----A---- C:\Windows\system32\vds.exe
2009-11-15 08:39:55 ----A---- C:\Windows\system32\netlogon.dll
2009-11-15 08:39:55 ----A---- C:\Windows\system32\mshtmled.dll
2009-11-15 08:39:55 ----A---- C:\Windows\system32\msctfp.dll
2009-11-15 08:39:55 ----A---- C:\Windows\system32\fdBthProxy.dll
2009-11-15 08:39:55 ----A---- C:\Windows\system32\drvinst.exe
2009-11-15 08:39:55 ----A---- C:\Windows\system32\devmgr.dll
2009-11-15 08:39:54 ----A---- C:\Windows\system32\Wldap32.dll
2009-11-15 08:39:54 ----A---- C:\Windows\system32\wcnwiz.dll
2009-11-15 08:39:54 ----A---- C:\Windows\system32\msscb.dll
2009-11-15 08:39:54 ----A---- C:\Windows\system32\evr.dll
2009-11-15 08:39:54 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2009-11-15 08:39:54 ----A---- C:\Windows\system32\BFE.DLL
2009-11-15 08:39:54 ----A---- C:\Windows\system32\adsldpc.dll
2009-11-15 08:39:53 ----A---- C:\Windows\system32\WMVSDECD.DLL
2009-11-15 08:39:53 ----A---- C:\Windows\system32\services.exe
2009-11-15 08:39:52 ----A---- C:\Windows\system32\wercon.exe
2009-11-15 08:39:52 ----A---- C:\Windows\system32\wcncsvc.dll
2009-11-15 08:39:52 ----A---- C:\Windows\system32\mimefilt.dll
2009-11-15 08:39:52 ----A---- C:\Windows\system32\iertutil.dll
2009-11-15 08:39:52 ----A---- C:\Windows\system32\comdlg32.dll
2009-11-15 08:39:52 ----A---- C:\Windows\system32\certcli.dll
2009-11-15 08:39:52 ----A---- C:\Windows\system32\adtschema.dll
2009-11-15 08:39:51 ----A---- C:\Windows\system32\umpnpmgr.dll
2009-11-15 08:39:51 ----A---- C:\Windows\system32\taskeng.exe
2009-11-15 08:39:51 ----A---- C:\Windows\system32\rtffilt.dll
2009-11-15 08:39:51 ----A---- C:\Windows\system32\reg.exe
2009-11-15 08:39:51 ----A---- C:\Windows\system32\mswdat10.dll
2009-11-15 08:39:51 ----A---- C:\Windows\system32\msjter40.dll
2009-11-15 08:39:51 ----A---- C:\Windows\system32\msdtcprx.dll
2009-11-15 08:39:51 ----A---- C:\Windows\system32\msdrm.dll
2009-11-15 08:39:51 ----A---- C:\Windows\system32\ipsmsnap.dll
2009-11-15 08:39:51 ----A---- C:\Windows\system32\dnsapi.dll
2009-11-15 08:39:51 ----A---- C:\Windows\system32\certutil.exe
2009-11-15 08:39:50 ----A---- C:\Windows\system32\WMNetMgr.dll
2009-11-15 08:39:50 ----A---- C:\Windows\system32\w32time.dll
2009-11-15 08:39:50 ----A---- C:\Windows\system32\rsaenh.dll
2009-11-15 08:39:50 ----A---- C:\Windows\system32\msshooks.dll
2009-11-15 08:39:50 ----A---- C:\Windows\system32\msscntrs.dll
2009-11-15 08:39:50 ----A---- C:\Windows\system32\IPSECSVC.DLL
2009-11-15 08:39:50 ----A---- C:\Windows\system32\bthserv.dll
2009-11-15 08:39:50 ----A---- C:\Windows\system32\bcrypt.dll
2009-11-15 08:39:49 ----A---- C:\Windows\system32\TsWpfWrp.exe
2009-11-15 08:39:49 ----A---- C:\Windows\system32\netapi32.dll
2009-11-15 08:39:49 ----A---- C:\Windows\system32\msstrc.dll
2009-11-15 08:39:49 ----A---- C:\Windows\system32\msihnd.dll
2009-11-15 08:39:49 ----A---- C:\Windows\system32\MMDevAPI.dll
2009-11-15 08:39:49 ----A---- C:\Windows\system32\inetpp.dll
2009-11-15 08:39:49 ----A---- C:\Windows\system32\inetcomm.dll
2009-11-15 08:39:49 ----A---- C:\Windows\system32\dfshim.dll
2009-11-15 08:39:48 ----A---- C:\Windows\system32\wmicmiplugin.dll
2009-11-15 08:39:48 ----A---- C:\Windows\system32\termsrv.dll
2009-11-15 08:39:48 ----A---- C:\Windows\system32\profsvc.dll
2009-11-15 08:39:48 ----A---- C:\Windows\system32\mtxclu.dll
2009-11-15 08:39:48 ----A---- C:\Windows\system32\mscories.dll
2009-11-15 08:39:48 ----A---- C:\Windows\system32\hidserv.dll
2009-11-15 08:39:48 ----A---- C:\Windows\system32\fundisc.dll
2009-11-15 08:39:48 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2009-11-15 08:39:48 ----A---- C:\Windows\system32\cryptsvc.dll
2009-11-15 08:39:47 ----A---- C:\Windows\system32\wdc.dll
2009-11-15 08:39:47 ----A---- C:\Windows\system32\shsvcs.dll
2009-11-15 08:39:47 ----A---- C:\Windows\system32\msiexec.exe
2009-11-15 08:39:47 ----A---- C:\Windows\system32\imapi.dll
2009-11-15 08:39:47 ----A---- C:\Windows\system32\chsbrkr.dll
2009-11-15 08:39:46 ----A---- C:\Windows\system32\spoolsv.exe
2009-11-15 08:39:46 ----A---- C:\Windows\system32\rasmans.dll
2009-11-15 08:39:46 ----A---- C:\Windows\system32\pnidui.dll
2009-11-15 08:39:46 ----A---- C:\Windows\system32\icardres.dll
2009-11-15 08:39:46 ----A---- C:\Windows\system32\iassdo.dll
2009-11-15 08:39:46 ----A---- C:\Windows\system32\autofmt.exe
2009-11-15 08:39:45 ----A---- C:\Windows\system32\wersvc.dll
2009-11-15 08:39:45 ----A---- C:\Windows\system32\slmgr.vbs
2009-11-15 08:39:45 ----A---- C:\Windows\system32\scrrun.dll
2009-11-15 08:39:45 ----A---- C:\Windows\system32\PSHED.DLL
2009-11-15 08:39:45 ----A---- C:\Windows\system32\pidgenx.dll
2009-11-15 08:39:45 ----A---- C:\Windows\system32\pdh.dll
2009-11-15 08:39:45 ----A---- C:\Windows\system32\dhcpcsvc.dll
2009-11-15 08:39:45 ----A---- C:\Windows\system32\CertEnrollUI.dll
2009-11-15 08:39:45 ----A---- C:\Windows\system32\azroles.dll
2009-11-15 08:39:44 ----A---- C:\Windows\system32\wmpmde.dll
2009-11-15 08:39:44 ----A---- C:\Windows\system32\winlogon.exe
2009-11-15 08:39:44 ----A---- C:\Windows\system32\SyncCenter.dll
2009-11-15 08:39:43 ----A---- C:\Windows\system32\SLUINotify.dll
2009-11-15 08:39:43 ----A---- C:\Windows\system32\sethc.exe
2009-11-15 08:39:43 ----A---- C:\Windows\system32\ncrypt.dll
2009-11-15 08:39:43 ----A---- C:\Windows\system32\msjetoledb40.dll
2009-11-15 08:39:43 ----A---- C:\Windows\system32\kd1394.dll
2009-11-15 08:39:43 ----A---- C:\Windows\system32\comuid.dll
2009-11-15 08:39:43 ----A---- C:\Windows\system32\certmgr.dll
2009-11-15 08:39:42 ----A---- C:\Windows\system32\wisptis.exe
2009-11-15 08:39:42 ----A---- C:\Windows\system32\untfs.dll
2009-11-15 08:39:42 ----A---- C:\Windows\system32\taskcomp.dll
2009-11-15 08:39:42 ----A---- C:\Windows\system32\spp.dll
2009-11-15 08:39:42 ----A---- C:\Windows\system32\scrobj.dll
2009-11-15 08:39:42 ----A---- C:\Windows\system32\rtutils.dll
2009-11-15 08:39:42 ----A---- C:\Windows\system32\iassam.dll
2009-11-15 08:39:42 ----A---- C:\Windows\system32\dwm.exe
2009-11-15 08:39:42 ----A---- C:\Windows\system32\autochk.exe
2009-11-15 08:39:41 ----A---- C:\Windows\system32\winsrv.dll
2009-11-15 08:39:41 ----A---- C:\Windows\system32\printui.dll
2009-11-15 08:39:41 ----A---- C:\Windows\system32\iasnap.dll
2009-11-15 08:39:41 ----A---- C:\Windows\system32\autoconv.exe
2009-11-15 08:39:40 ----A---- C:\Windows\system32\wow32.dll
2009-11-15 08:39:40 ----A---- C:\Windows\system32\userenv.dll
2009-11-15 08:39:40 ----A---- C:\Windows\system32\osk.exe
2009-11-15 08:39:40 ----A---- C:\Windows\system32\onex.dll
2009-11-15 08:39:40 ----A---- C:\Windows\system32\mswsock.dll
2009-11-15 08:39:40 ----A---- C:\Windows\system32\kdcom.dll
2009-11-15 08:39:40 ----A---- C:\Windows\system32\cscript.exe
2009-11-15 08:39:40 ----A---- C:\Windows\system32\basecsp.dll
2009-11-15 08:39:40 ----A---- C:\Windows\system32\audiodg.exe
2009-11-15 08:39:39 ----A---- C:\Windows\system32\WinSCard.dll
2009-11-15 08:39:39 ----A---- C:\Windows\system32\winmm.dll
2009-11-15 08:39:39 ----A---- C:\Windows\system32\WerFaultSecure.exe
2009-11-15 08:39:39 ----A---- C:\Windows\system32\spcmsg.dll
2009-11-15 08:39:39 ----A---- C:\Windows\system32\RelMon.dll
2009-11-15 08:39:39 ----A---- C:\Windows\system32\rdpencom.dll
2009-11-15 08:39:39 ----A---- C:\Windows\system32\offfilt.dll
2009-11-15 08:39:39 ----A---- C:\Windows\system32\msftedit.dll
2009-11-15 08:39:39 ----A---- C:\Windows\system32\kdusb.dll
2009-11-15 08:39:38 ----A---- C:\Windows\system32\wsepno.dll
2009-11-15 08:39:38 ----A---- C:\Windows\system32\WerFault.exe
2009-11-15 08:39:38 ----A---- C:\Windows\system32\Utilman.exe
2009-11-15 08:39:38 ----A---- C:\Windows\system32\stobject.dll
2009-11-15 08:39:38 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2009-11-15 08:39:38 ----A---- C:\Windows\system32\secproc_ssp.dll
2009-11-15 08:39:38 ----A---- C:\Windows\system32\mfplat.dll
2009-11-15 08:39:38 ----A---- C:\Windows\system32\dnsrslvr.dll
2009-11-15 08:39:38 ----A---- C:\Windows\system32\diskraid.exe
2009-11-15 08:39:37 ----A---- C:\Windows\system32\wscript.exe
2009-11-15 08:39:37 ----A---- C:\Windows\system32\wiaservc.dll
2009-11-15 08:39:37 ----A---- C:\Windows\system32\ulib.dll
2009-11-15 08:39:37 ----A---- C:\Windows\system32\sysclass.dll
2009-11-15 08:39:37 ----A---- C:\Windows\system32\SndVol.exe
2009-11-15 08:39:37 ----A---- C:\Windows\system32\prnntfy.dll
2009-11-15 08:39:37 ----A---- C:\Windows\system32\odbccp32.dll
2009-11-15 08:39:37 ----A---- C:\Windows\system32\msnetobj.dll
2009-11-15 08:39:37 ----A---- C:\Windows\system32\mscms.dll
2009-11-15 08:39:37 ----A---- C:\Windows\system32\mcmde.dll
2009-11-15 08:39:37 ----A---- C:\Windows\system32\iasdatastore.dll
2009-11-15 08:39:37 ----A---- C:\Windows\system32\apphelp.dll
2009-11-15 08:39:37 ----A---- C:\Windows\system32\adsmsext.dll
2009-11-15 08:39:36 ----A---- C:\Windows\system32\wscntfy.dll
2009-11-15 08:39:36 ----A---- C:\Windows\system32\rastapi.dll
2009-11-15 08:39:36 ----A---- C:\Windows\system32\pnpsetup.dll
2009-11-15 08:39:36 ----A---- C:\Windows\system32\ipsecsnp.dll
2009-11-15 08:39:36 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2009-11-15 08:39:36 ----A---- C:\Windows\system32\fdProxy.dll
2009-11-15 08:39:36 ----A---- C:\Windows\system32\dsound.dll
2009-11-15 08:39:36 ----A---- C:\Windows\system32\cryptui.dll
2009-11-15 08:39:36 ----A---- C:\Windows\system32\brcpl.dll
2009-11-15 08:39:35 ----A---- C:\Windows\system32\wscsvc.dll
2009-11-15 08:39:35 ----A---- C:\Windows\system32\WMVENCOD.DLL
2009-11-15 08:39:35 ----A---- C:\Windows\system32\wlangpui.dll
2009-11-15 08:39:35 ----A---- C:\Windows\system32\vdsdyn.dll
2009-11-15 08:39:35 ----A---- C:\Windows\system32\regsvc.dll
2009-11-15 08:39:35 ----A---- C:\Windows\system32\rasapi32.dll
2009-11-15 08:39:35 ----A---- C:\Windows\system32\ntprint.dll
2009-11-15 08:39:35 ----A---- C:\Windows\system32\logman.exe
2009-11-15 08:39:35 ----A---- C:\Windows\system32\iepeers.dll
2009-11-15 08:39:35 ----A---- C:\Windows\system32\iashlpr.dll
2009-11-15 08:39:35 ----A---- C:\Windows\system32\gpapi.dll
2009-11-15 08:39:35 ----A---- C:\Windows\system32\diskpart.exe
2009-11-15 08:39:34 ----A---- C:\Windows\system32\zipfldr.dll
2009-11-15 08:39:34 ----A---- C:\Windows\system32\wusa.exe
2009-11-15 08:39:34 ----A---- C:\Windows\system32\wshext.dll
2009-11-15 08:39:34 ----A---- C:\Windows\system32\wpccpl.dll
2009-11-15 08:39:34 ----A---- C:\Windows\system32\webcheck.dll
2009-11-15 08:39:34 ----A---- C:\Windows\system32\netcenter.dll
2009-11-15 08:39:34 ----A---- C:\Windows\system32\mscorier.dll
2009-11-15 08:39:34 ----A---- C:\Windows\system32\iasrad.dll
2009-11-15 08:39:34 ----A---- C:\Windows\system32\findstr.exe
2009-11-15 08:39:33 ----A---- C:\Windows\system32\wsnmp32.dll
2009-11-15 08:39:33 ----A---- C:\Windows\system32\wer.dll
2009-11-15 08:39:33 ----A---- C:\Windows\system32\themecpl.dll
2009-11-15 08:39:33 ----A---- C:\Windows\system32\rasdlg.dll
2009-11-15 08:39:33 ----A---- C:\Windows\system32\iassvcs.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\uxsms.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\tsbyuv.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\srvsvc.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\slcc.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\scansetting.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\powrprof.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\ntmarta.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\msutb.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\mstsc.exe
2009-11-15 08:39:32 ----A---- C:\Windows\system32\mstlsapi.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\mssprxy.dll
2009-11-15 08:39:32 ----A---- C:\Windows\system32\iasads.dll
2009-11-15 08:39:31 ----A---- C:\Windows\system32\powercpl.dll
2009-11-15 08:39:31 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2009-11-15 08:39:31 ----A---- C:\Windows\system32\newdev.exe
2009-11-15 08:39:31 ----A---- C:\Windows\system32\networkmap.dll
2009-11-15 08:39:31 ----A---- C:\Windows\system32\iasacct.dll
2009-11-15 08:39:31 ----A---- C:\Windows\system32\authz.dll
2009-11-15 08:39:30 ----A---- C:\Windows\system32\themeui.dll
2009-11-15 08:39:30 ----A---- C:\Windows\system32\systemcpl.dll
2009-11-15 08:39:30 ----A---- C:\Windows\system32\sud.dll
2009-11-15 08:39:30 ----A---- C:\Windows\system32\samlib.dll
2009-11-15 08:39:30 ----A---- C:\Windows\system32\pcaui.dll
2009-11-15 08:39:30 ----A---- C:\Windows\system32\mmci.dll
2009-11-15 08:39:30 ----A---- C:\Windows\system32\dot3svc.dll
2009-11-15 08:39:30 ----A---- C:\Windows\system32\connect.dll
2009-11-15 08:39:30 ----A---- C:\Windows\system32\accessibilitycpl.dll
2009-11-15 08:39:29 ----A---- C:\Windows\system32\wlanpref.dll
2009-11-15 08:39:29 ----A---- C:\Windows\system32\usercpl.dll
2009-11-15 08:39:29 ----A---- C:\Windows\system32\rpchttp.dll
2009-11-15 08:39:29 ----A---- C:\Windows\system32\regapi.dll
2009-11-15 08:39:29 ----A---- C:\Windows\system32\qdvd.dll
2009-11-15 08:39:29 ----A---- C:\Windows\system32\msinfo32.exe
2009-11-15 08:39:29 ----A---- C:\Windows\system32\ieaksie.dll
2009-11-15 08:39:29 ----A---- C:\Windows\system32\autoplay.dll
2009-11-15 08:39:28 ----A---- C:\Windows\system32\wpcao.dll
2009-11-15 08:39:28 ----A---- C:\Windows\system32\vdsutil.dll
2009-11-15 08:39:28 ----A---- C:\Windows\system32\tapisrv.dll
2009-11-15 08:39:28 ----A---- C:\Windows\system32\scksp.dll
2009-11-15 08:39:28 ----A---- C:\Windows\system32\scesrv.dll
2009-11-15 08:39:28 ----A---- C:\Windows\system32\psisdecd.dll
2009-11-15 08:39:28 ----A---- C:\Windows\system32\oleprn.dll
2009-11-15 08:39:28 ----A---- C:\Windows\system32\mpr.dll
2009-11-15 08:39:28 ----A---- C:\Windows\system32\feclient.dll
2009-11-15 08:39:28 ----A---- C:\Windows\system32\AudioSes.dll
2009-11-15 08:39:27 ----A---- C:\Windows\system32\wscisvif.dll
2009-11-15 08:39:27 ----A---- C:\Windows\system32\sdclt.exe
2009-11-15 08:39:27 ----A---- C:\Windows\system32\rekeywiz.exe
2009-11-15 08:39:27 ----A---- C:\Windows\system32\qedit.dll
2009-11-15 08:39:27 ----A---- C:\Windows\system32\perfdisk.dll
2009-11-15 08:39:27 ----A---- C:\Windows\system32\ncryptui.dll
2009-11-15 08:39:27 ----A---- C:\Windows\system32\imm32.dll
2009-11-15 08:39:27 ----A---- C:\Windows\system32\iaspolcy.dll
2009-11-15 08:39:27 ----A---- C:\Windows\system32\Faultrep.dll
2009-11-15 08:39:27 ----A---- C:\Windows\system32\dpapimig.exe
2009-11-15 08:39:27 ----A---- C:\Windows\system32\dot3msm.dll
2009-11-15 08:39:27 ----A---- C:\Windows\system32\DeviceEject.exe
2009-11-15 08:39:26 ----A---- C:\Windows\system32\TSTheme.exe
2009-11-15 08:39:26 ----A---- C:\Windows\system32\tcpipcfg.dll
2009-11-15 08:39:26 ----A---- C:\Windows\system32\spwinsat.dll
2009-11-15 08:39:26 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2009-11-15 08:39:26 ----A---- C:\Windows\system32\scecli.dll
2009-11-15 08:39:26 ----A---- C:\Windows\system32\rasplap.dll
2009-11-15 08:39:26 ----A---- C:\Windows\system32\rasgcw.dll
2009-11-15 08:39:26 ----A---- C:\Windows\system32\pnpui.dll
2009-11-15 08:39:26 ----A---- C:\Windows\system32\hdwwiz.exe
2009-11-15 08:39:26 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2009-11-15 08:39:26 ----A---- C:\Windows\system32\extmgr.dll
2009-11-15 08:39:26 ----A---- C:\Windows\system32\certreq.exe
2009-11-15 08:39:25 ----A---- C:\Windows\system32\whealogr.dll
2009-11-15 08:39:25 ----A---- C:\Windows\system32\tcpmon.dll
2009-11-15 08:39:25 ----A---- C:\Windows\system32\srcore.dll
2009-11-15 08:39:25 ----A---- C:\Windows\system32\SCardSvr.dll
2009-11-15 08:39:25 ----A---- C:\Windows\system32\raschap.dll
2009-11-15 08:39:25 ----A---- C:\Windows\system32\PnPUnattend.exe
2009-11-15 08:39:25 ----A---- C:\Windows\system32\fontext.dll
2009-11-15 08:39:25 ----A---- C:\Windows\system32\fdWSD.dll
2009-11-15 08:39:25 ----A---- C:\Windows\system32\conime.exe
2009-11-15 08:39:25 ----A---- C:\Windows\system32\cmmon32.exe
2009-11-15 08:39:25 ----A---- C:\Windows\system32\cmdial32.dll
2009-11-15 08:39:24 ----A---- C:\Windows\system32\WMVXENCD.DLL
2009-11-15 08:39:24 ----A---- C:\Windows\system32\wlanui.dll
2009-11-15 08:39:24 ----A---- C:\Windows\system32\wiaaut.dll
2009-11-15 08:39:24 ----A---- C:\Windows\system32\shwebsvc.dll
2009-11-15 08:39:24 ----A---- C:\Windows\system32\rasppp.dll
2009-11-15 08:39:24 ----A---- C:\Windows\system32\PnPutil.exe
2009-11-15 08:39:24 ----A---- C:\Windows\system32\oobefldr.dll
2009-11-15 08:39:24 ----A---- C:\Windows\system32\MSVidCtl.dll
2009-11-15 08:39:24 ----A---- C:\Windows\system32\dsprop.dll
2009-11-15 08:39:24 ----A---- C:\Windows\system32\dimsroam.dll
2009-11-15 08:39:23 ----A---- C:\Windows\system32\shsetup.dll
2009-11-15 08:39:23 ----A---- C:\Windows\system32\rasmontr.dll
2009-11-15 08:39:23 ----A---- C:\Windows\system32\occache.dll
2009-11-15 08:39:23 ----A---- C:\Windows\system32\mscandui.dll
2009-11-15 08:39:23 ----A---- C:\Windows\system32\modemui.dll
2009-11-15 08:39:23 ----A---- C:\Windows\system32\chtbrkr.dll
2009-11-15 08:39:22 ----A---- C:\Windows\system32\wmdrmsdk.dll
2009-11-15 08:39:22 ----A---- C:\Windows\system32\wlgpclnt.dll
2009-11-15 08:39:22 ----A---- C:\Windows\system32\smss.exe
2009-11-15 08:39:22 ----A---- C:\Windows\system32\rdpwsx.dll
2009-11-15 08:39:22 ----A---- C:\Windows\system32\netplwiz.dll
2009-11-15 08:39:22 ----A---- C:\Windows\system32\dataclen.dll
2009-11-15 08:39:22 ----A---- C:\Windows\system32\credui.dll
2009-11-15 08:39:22 ----A---- C:\Windows\system32\blackbox.dll
2009-11-15 08:39:21 ----A---- C:\Windows\system32\WSDMon.dll
2009-11-15 08:39:21 ----A---- C:\Windows\system32\wpcsvc.dll
2009-11-15 08:39:21 ----A---- C:\Windows\system32\wmpeffects.dll
2009-11-15 08:39:21 ----A---- C:\Windows\system32\networkexplorer.dll
2009-11-15 08:39:21 ----A---- C:\Windows\system32\mstime.dll
2009-11-15 08:39:21 ----A---- C:\Windows\system32\logagent.exe
2009-11-15 08:39:21 ----A---- C:\Windows\system32\ifmon.dll
2009-11-15 08:39:21 ----A---- C:\Windows\system32\cipher.exe
2009-11-15 08:39:21 ----A---- C:\Windows\system32\certprop.dll
2009-11-15 08:39:20 ----A---- C:\Windows\system32\wscapi.dll
2009-11-15 08:39:20 ----A---- C:\Windows\system32\thawbrkr.dll
2009-11-15 08:39:20 ----A---- C:\Windows\system32\softkbd.dll
2009-11-15 08:39:20 ----A---- C:\Windows\system32\sendmail.dll
2009-11-15 08:39:20 ----A---- C:\Windows\system32\msscp.dll
2009-11-15 08:39:20 ----A---- C:\Windows\system32\msrating.dll
2009-11-15 08:39:20 ----A---- C:\Windows\system32\msimtf.dll
2009-11-15 08:39:20 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2009-11-15 08:39:20 ----A---- C:\Windows\system32\InkEd.dll
2009-11-15 08:39:20 ----A---- C:\Windows\system32\gpresult.exe
2009-11-15 08:39:19 ----A---- C:\Windows\system32\wshbth.dll
2009-11-15 08:39:19 ----A---- C:\Windows\system32\version.dll
2009-11-15 08:39:19 ----A---- C:\Windows\system32\SLLUA.exe
2009-11-15 08:39:19 ----A---- C:\Windows\system32\puiapi.dll
2009-11-15 08:39:19 ----A---- C:\Windows\system32\olepro32.dll
2009-11-15 08:39:19 ----A---- C:\Windows\system32\msisip.dll
2009-11-15 08:39:19 ----A---- C:\Windows\system32\msctfui.dll
2009-11-15 08:39:19 ----A---- C:\Windows\system32\mprapi.dll
2009-11-15 08:39:19 ----A---- C:\Windows\system32\input.dll
2009-11-15 08:39:19 ----A---- C:\Windows\system32\ExplorerFrame.dll
2009-11-15 08:39:19 ----A---- C:\Windows\system32\drmmgrtn.dll
2009-11-15 08:39:19 ----A---- C:\Windows\system32\dmsynth.dll
2009-11-15 08:39:18 ----A---- C:\Windows\system32\msjint40.dll
2009-11-15 08:39:18 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2009-11-15 08:39:18 ----A---- C:\Windows\system32\l2nacp.dll
2009-11-15 08:39:18 ----A---- C:\Windows\system32\ftp.exe
2009-11-15 08:39:18 ----A---- C:\Windows\system32\fdSSDP.dll
2009-11-15 08:39:18 ----A---- C:\Windows\system32\fc.exe
2009-11-15 08:39:18 ----A---- C:\Windows\system32\eapp3hst.dll
2009-11-15 08:39:18 ----A---- C:\Windows\system32\dmusic.dll
2009-11-15 08:39:18 ----A---- C:\Windows\system32\cscapi.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\wsdchngr.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\tscupgrd.exe
2009-11-15 08:39:17 ----A---- C:\Windows\system32\Storprop.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\SMBHelperClass.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\slcinst.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\rasdial.exe
2009-11-15 08:39:17 ----A---- C:\Windows\system32\rasdiag.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\nslookup.exe
2009-11-15 08:39:17 ----A---- C:\Windows\system32\networkitemfactory.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\msfeedsbs.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\ipconfig.exe
2009-11-15 08:39:17 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\fdWCN.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\eappcfg.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\dot3cfg.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\cscdll.dll
2009-11-15 08:39:17 ----A---- C:\Windows\system32\bthudtask.exe
2009-11-15 08:39:17 ----A---- C:\Windows\system32\bthci.dll
2009-11-15 08:39:16 ----A---- C:\Windows\system32\PNPXAssoc.dll
2009-11-15 08:39:16 ----A---- C:\Windows\system32\ocsetup.exe
2009-11-15 08:39:16 ----A---- C:\Windows\system32\mmcico.dll
2009-11-15 08:39:16 ----A---- C:\Windows\system32\hbaapi.dll
2009-11-15 08:39:16 ----A---- C:\Windows\system32\gpupdate.exe
2009-11-15 08:39:16 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2009-11-15 08:39:16 ----A---- C:\Windows\system32\fdeploy.dll
2009-11-15 08:39:16 ----A---- C:\Windows\system32\eappgnui.dll
2009-11-15 08:39:15 ----A---- C:\Windows\system32\NcdProp.dll
2009-11-15 08:39:15 ----A---- C:\Windows\system32\iscsilog.dll
2009-11-15 08:39:15 ----A---- C:\Windows\system32\csrstub.exe
2009-11-15 08:39:15 ----A---- C:\Windows\system32\cbsra.exe
2009-11-15 08:39:15 ----A---- C:\Windows\system32\bitsigd.dll
2009-11-15 08:39:14 ----A---- C:\Windows\system32\winrnr.dll
2009-11-15 08:39:14 ----A---- C:\Windows\system32\vdmdbg.dll
2009-11-15 08:39:14 ----A---- C:\Windows\system32\slwga.dll
2009-11-15 08:39:14 ----A---- C:\Windows\system32\odbcconf.dll
2009-11-15 08:39:14 ----A---- C:\Windows\system32\midimap.dll
2009-11-15 08:39:14 ----A---- C:\Windows\system32\inetppui.dll
2009-11-15 08:39:11 ----A---- C:\Windows\system32\msimsg.dll
2009-11-15 08:39:11 ----A---- C:\Windows\system32\f3ahvoas.dll
2009-11-15 08:38:58 ----A---- C:\Windows\system32\SmiEngine.dll
2009-11-15 08:38:55 ----A---- C:\Windows\system32\wdscore.dll
2009-11-15 08:38:55 ----A---- C:\Windows\system32\PkgMgr.exe
2009-11-15 08:38:43 ----A---- C:\Windows\system32\drvstore.dll

======List of files/folders modified in the last 1 months======

2009-12-14 19:41:38 ----SHD---- C:\System Volume Information
2009-12-14 19:29:27 ----D---- C:\Users\Dodo\AppData\Roaming\Skype
2009-12-14 19:28:06 ----D---- C:\Users\Dodo\AppData\Roaming\skypePM
2009-12-14 19:23:11 ----D---- C:\ProgramData\Spybot - Search & Destroy
2009-12-14 19:23:03 ----D---- C:\Windows\System32
2009-12-14 19:23:03 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-12-14 19:23:02 ----D---- C:\Windows\inf
2009-12-14 19:14:11 ----D---- C:\Windows
2009-12-14 19:12:04 ----RD---- C:\Program Files
2009-12-14 19:12:04 ----HD---- C:\Program Files\InstallShield Installation Information
2009-12-14 19:12:04 ----D---- C:\ProgramData
2009-12-13 15:18:51 ----D---- C:\Windows\system32\drivers
2009-12-13 11:39:30 ----D---- C:\Windows\Prefetch
2009-12-13 11:14:12 ----N---- C:\Windows\system.ini
2009-12-13 11:11:45 ----D---- C:\Windows\AppPatch
2009-12-13 11:11:45 ----D---- C:\Program Files\Common Files
2009-12-13 10:46:08 ----SD---- C:\ProgramData\Microsoft
2009-12-12 19:12:56 ----D---- C:\Program Files\Mozilla Firefox
2009-12-11 17:41:14 ----D---- C:\Windows\rescache
2009-12-11 08:38:25 ----SD---- C:\Users\Dodo\AppData\Roaming\Microsoft
2009-12-10 19:25:27 ----SHD---- C:\Windows\Installer
2009-12-09 20:12:10 ----D---- C:\Windows\Debug
2009-12-09 18:38:37 ----D---- C:\Program Files\BS_Player
2009-12-09 08:55:32 ----D---- C:\Windows\winsxs
2009-12-09 08:45:22 ----D---- C:\Windows\system32\catroot
2009-12-09 08:45:21 ----D---- C:\Windows\system32\catroot2
2009-12-09 08:42:36 ----D---- C:\Windows\system32\en-US
2009-12-09 08:42:35 ----D---- C:\Program Files\Windows Mail
2009-12-03 10:47:00 ----D---- C:\Users\Dodo\AppData\Roaming\Adobe
2009-12-01 20:06:19 ----A---- C:\Windows\system32\mrt.exe
2009-11-27 08:57:10 ----D---- C:\Windows\system32\sk-SK
2009-11-24 23:54:29 ----A---- C:\Windows\system32\aswBoot.exe
2009-11-22 14:21:05 ----D---- C:\PerfLogs
2009-11-22 14:15:48 ----D---- C:\Windows\system32\codec
2009-11-20 11:47:40 ----A---- C:\Windows\NeroDigital.ini
2009-11-16 21:10:42 ----D---- C:\Windows\system32\WDI
2009-11-16 18:44:22 ----D---- C:\Windows\system32\Tasks
2009-11-16 18:43:01 ----D---- C:\Windows\WindowsMobile
2009-11-16 18:36:30 ----D---- C:\Windows\system32\wbem
2009-11-16 18:36:29 ----D---- C:\Windows\system32\zh-TW
2009-11-16 18:36:29 ----D---- C:\Windows\system32\zh-HK
2009-11-16 18:36:29 ----D---- C:\Windows\system32\zh-CN
2009-11-16 18:36:29 ----D---- C:\Windows\system32\uk-UA
2009-11-16 18:36:29 ----D---- C:\Windows\system32\tr-TR
2009-11-16 18:36:29 ----D---- C:\Windows\system32\th-TH
2009-11-16 18:36:29 ----D---- C:\Windows\system32\sv-SE
2009-11-16 18:36:29 ----D---- C:\Windows\system32\sr-Latn-CS
2009-11-16 18:36:29 ----D---- C:\Windows\system32\sl-SI
2009-11-16 18:36:29 ----D---- C:\Windows\system32\ru-RU
2009-11-16 18:36:29 ----D---- C:\Windows\system32\ro-RO
2009-11-16 18:36:29 ----D---- C:\Windows\system32\pt-PT
2009-11-16 18:36:29 ----D---- C:\Windows\system32\pt-BR
2009-11-16 18:36:29 ----D---- C:\Windows\system32\pl-PL
2009-11-16 18:36:29 ----D---- C:\Windows\system32\nl-NL
2009-11-16 18:36:29 ----D---- C:\Windows\system32\nb-NO
2009-11-16 18:36:29 ----D---- C:\Windows\system32\lv-LV
2009-11-16 18:36:29 ----D---- C:\Windows\system32\lt-LT
2009-11-16 18:36:29 ----D---- C:\Windows\system32\ko-KR
2009-11-16 18:36:29 ----D---- C:\Windows\system32\ja-JP
2009-11-16 18:36:29 ----D---- C:\Windows\system32\it-IT
2009-11-16 18:36:29 ----D---- C:\Windows\system32\hu-HU
2009-11-16 18:36:29 ----D---- C:\Windows\system32\hr-HR
2009-11-16 18:36:29 ----D---- C:\Windows\system32\he-IL
2009-11-16 18:36:29 ----D---- C:\Windows\system32\fr-FR
2009-11-16 18:36:29 ----D---- C:\Windows\system32\fi-FI
2009-11-16 18:36:29 ----D---- C:\Windows\system32\et-EE
2009-11-16 18:36:29 ----D---- C:\Windows\system32\es-ES
2009-11-16 18:36:29 ----D---- C:\Windows\system32\el-GR
2009-11-16 18:36:29 ----D---- C:\Windows\system32\de-DE
2009-11-16 18:36:29 ----D---- C:\Windows\system32\cs-CZ
2009-11-16 18:36:29 ----D---- C:\Windows\system32\bg-BG
2009-11-16 18:36:29 ----D---- C:\Windows\system32\ar-SA
2009-11-16 18:36:28 ----D---- C:\Windows\system32\da-DK
2009-11-16 18:32:34 ----D---- C:\Windows\system32\LogFiles
2009-11-15 17:32:56 ----D---- C:\Windows\Microsoft.NET
2009-11-15 17:32:49 ----RSD---- C:\Windows\assembly
2009-11-15 11:07:24 ----D---- C:\Boot
2009-11-15 11:01:35 ----D---- C:\Program Files\Windows Sidebar
2009-11-15 11:01:35 ----D---- C:\Program Files\Windows Calendar
2009-11-15 11:01:35 ----D---- C:\Program Files\Movie Maker
2009-11-15 11:01:34 ----D---- C:\Program Files\Internet Explorer
2009-11-15 11:01:31 ----D---- C:\Program Files\Windows Photo Gallery
2009-11-15 11:01:31 ----D---- C:\Program Files\Windows Media Player
2009-11-15 11:01:31 ----D---- C:\Program Files\Windows Collaboration
2009-11-15 11:01:31 ----D---- C:\Program Files\Common Files\System
2009-11-15 11:01:30 ----D---- C:\Windows\servicing
2009-11-15 11:01:30 ----D---- C:\Windows\ehome
2009-11-15 11:01:30 ----D---- C:\Program Files\Windows Defender
2009-11-15 11:01:29 ----D---- C:\Windows\IME
2009-11-15 11:01:28 ----D---- C:\Windows\system32\XPSViewer
2009-11-15 11:01:28 ----D---- C:\Windows\system32\oobe
2009-11-15 11:01:28 ----D---- C:\Windows\system32\migration
2009-11-15 11:01:27 ----D---- C:\Windows\system32\SLUI
2009-11-15 11:01:27 ----D---- C:\Windows\system32\setup
2009-11-15 11:01:27 ----D---- C:\Windows\system32\AdvancedInstallers
2009-11-15 11:01:26 ----D---- C:\Windows\system32\manifeststore
2009-11-15 11:01:26 ----D---- C:\Windows\system32\en
2009-11-15 11:01:21 ----D---- C:\Windows\system32\migwiz
2009-11-15 11:01:13 ----RSD---- C:\Windows\Fonts
2009-11-15 11:01:07 ----D---- C:\Windows\system32\Boot

dodo65
Návštěvník
Návštěvník
Příspěvky: 99
Registrován: 02 říj 2009 13:37

Re: Prosim o kontrolu pc

#48 Příspěvek od dodo65 »

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2009-11-24 23120]
R1 aswSP;avast! Self Protection; C:\Windows\system32\drivers\aswSP.sys [2009-09-15 114768]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2009-11-24 48560]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys [2009-09-15 20560]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys [2009-09-15 53328]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-09-30 1184768]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-12-01 4179968]
R3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-21 92160]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-11 29696]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-21 14208]
R3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2006-12-14 7680]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2009-11-11 47360]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
R3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIV.sys [2009-09-25 159232]
R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSGB6.sys [2008-05-02 48128]
R3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-21 134016]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-04-11 507904]
S3 catchme;catchme; \??\C:\Users\Dodo\AppData\Local\Temp\catchme.sys []
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-21 5632]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-21 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-21 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-21 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-21 6016]
S3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-02 1010560]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2009-04-11 15872]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-21 83328]
S3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2006-11-02 194048]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-21 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-21 386616]
S4 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-21 88576]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-21 11264]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-11-24 18752]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-12-01 720896]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-11-24 138680]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-06-09 73728]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R2 SBSDWSCService;SBSD Security Center Service; D:\Program files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-21 21504]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-11-24 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-11-24 352920]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2007-06-27 279848]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-21 21504]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-06-29 800040]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]

-----------------EOF-----------------

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosim o kontrolu pc

#49 Příspěvek od motji »

Sám vypínat znamená co? Jak často se vypíná? Já nikde nic nevidím.


:arrow: Otevřete si Poznámkový blok a zkopírujte do něj text

Kód: Vybrat vše

Regedit4

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=-

 
-uložte jako (typ: všechny soubory) kde za název souboru zadáte "smazani.reg" bez uvozovek,
klikněte na uložit, pak na soubor standardně 2X klikněte a potvrďte dialogové okno.



:arrow: Stáhněte Gmer http://www.viry.cz/forum/viewtopic.php?f=29&t=62878
- rozbalte a spusťte
-proběhne sken, po skončení se otevře okno s výsledky, klikněte na Save a tím si uložíte log,který sem vložíte

-Podle návodu v odkazu provedete druhý sken a log sem také vložíte.

:arrow: Stahoval jste od včera něco?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosim o kontrolu pc

#50 Příspěvek od motji »

Problém se vyřešil? :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

dodo65
Návštěvník
Návštěvník
Příspěvky: 99
Registrován: 02 říj 2009 13:37

Re: Prosim o kontrolu pc

#51 Příspěvek od dodo65 »

Tak uz som tu.Tu je ten scan.

GMER 1.0.15.15281 - http://www.gmer.net
Rootkit quick scan 2009-12-19 18:39:45
Windows 6.0.6002 Service Pack 2
Running: gmer.exe; Driver: C:\Users\Dodo\AppData\Local\Temp\kwldapog.sys


---- Devices - GMER 1.0.15 ----

AttachedDevice \FileSystem\fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)
AttachedDevice \Driver\tdx \Device\Tcp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \Driver\tdx \Device\Udp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)

---- EOF - GMER 1.0.15 ----

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosim o kontrolu pc

#52 Příspěvek od motji »

Ještě poprosím o druhý log z gmeru :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

dodo65
Návštěvník
Návštěvník
Příspěvky: 99
Registrován: 02 říj 2009 13:37

Re: Prosim o kontrolu pc

#53 Příspěvek od dodo65 »

Tak uz so sa konecne dostal k notebooku.Tu je ten druhy sken.
GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2009-12-22 14:31:22
Windows 6.0.6002 Service Pack 2
Running: gmer.exe; Driver: C:\Users\Dodo\AppData\Local\Temp\kwldapog.sys


---- Kernel code sections - GMER 1.0.15 ----

.text C:\Windows\system32\DRIVERS\atikmdag.sys section is writeable [0x8DA0B000, 0x23097E, 0xE8000020]
PAGE spsys.sys!?SPVersion@@3PADA + 1ABF 99A5903F 110 Bytes [8B, FF, 55, 8B, EC, 8B, 45, ...]
PAGE spsys.sys!?SPVersion@@3PADA + 1B2F 99A590AF 1 Byte [16]
PAGE spsys.sys!?SPVersion@@3PADA + 1B2F 99A590AF 128 Bytes [16, 3B, C8, 75, E2, B0, 01, ...]
PAGE spsys.sys!?SPVersion@@3PADA + 1BB0 99A59130 6 Bytes [0E, 83, 78, 14, 01, 75]
PAGE spsys.sys!?SPVersion@@3PADA + 1BB7 99A59137 2298 Bytes [83, 78, 18, 37, 75, 02, B3, ...]
PAGE ...

---- User IAT/EAT - GMER 1.0.15 ----

IAT C:\Windows\system32\services.exe[632] @ C:\Windows\system32\services.exe [ADVAPI32.dll!CreateProcessAsUserW] 000E0002
IAT C:\Windows\system32\services.exe[632] @ C:\Windows\system32\services.exe [KERNEL32.dll!CreateProcessW] 000E0000
IAT C:\Windows\Explorer.EXE[1872] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdiplusShutdown] [74BD7817] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1872] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCloneImage] [74C2A86D] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1872] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDrawImageRectI] [74BDBB22] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1872] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipSetInterpolationMode] [74BCF695] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1872] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdiplusStartup] [74BD75E9] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1872] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateFromHDC] [74BCE7CA] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1872] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateBitmapFromStreamICM] [74C08395] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1872] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateBitmapFromStream] [74BDDA60] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1872] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipGetImageHeight] [74BCFFFA] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1872] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipGetImageWidth] [74BCFF61] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1872] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDisposeImage] [74BC71CF] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1872] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipLoadImageFromFileICM] [74C5CAE2] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1872] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipLoadImageFromFile] [74BFC8D8] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1872] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDeleteGraphics] [74BCD968] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1872] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipFree] [74BC6853] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1872] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipAlloc] [74BC687E] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)
IAT C:\Windows\Explorer.EXE[1872] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipSetCompositingMode] [74BD2AD1] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.0.6002.18005_none_9e50b396ca17ae07\gdiplus.dll (Microsoft GDI+/Microsoft Corporation)

---- Devices - GMER 1.0.15 ----

AttachedDevice \Driver\tdx \Device\Tcp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)

Device \Driver\BTHUSB \Device\00000062 bthport.sys (Bluetooth Bus Driver/Microsoft Corporation)
Device \Driver\BTHUSB \Device\00000062 bthport.sys (Bluetooth Bus Driver/Microsoft Corporation)
Device \Driver\BTHUSB \Device\00000064 bthport.sys (Bluetooth Bus Driver/Microsoft Corporation)
Device \Driver\BTHUSB \Device\00000064 bthport.sys (Bluetooth Bus Driver/Microsoft Corporation)

AttachedDevice \Driver\tdx \Device\Udp aswTdi.SYS (avast! TDI Filter Driver/ALWIL Software)
AttachedDevice \FileSystem\fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)

---- Registry - GMER 1.0.15 ----

Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\002243c40e61
Reg HKLM\SYSTEM\ControlSet002\Services\BTHPORT\Parameters\Keys\002243c40e61 (not active ControlSet)

---- EOF - GMER 1.0.15 ----

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosim o kontrolu pc

#54 Příspěvek od motji »

Logy jsou ok, jak to vypadá s počítačem?
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

dodo65
Návštěvník
Návštěvník
Příspěvky: 99
Registrován: 02 říj 2009 13:37

Re: Prosim o kontrolu pc

#55 Příspěvek od dodo65 »

Ked som vytvaral druhy log tak sa mi niekolko krat vypol pc.Teraz zatial ide bez problemov,tak neviem co s tym.A nemoze to byt tym ze sa mi prehrieva pc?

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosim o kontrolu pc

#56 Příspěvek od motji »

U Gmeru občas pc padá.
Odinstalujte G-Mer
přes start-spustit-do okénka vložte příkaz
C:\WINDOWS\gmer_uninstall.cmd
:arrow: potvrdit Enter
:arrow: Stáhněte T-Cleaner
http://sweb.cz/Marinus/T-Cleaner.exe

-Spusťte,pro potvrzení volby mačkejte klávesu A, Enter
-po použití prográmek vymažte.Pozor,antiviry ho mohou falešně označit za vir


Pokud máte podezdření na přehřívání pc, zkuste zjistit jaké má teploty, třeba přes Everest.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

dodo65
Návštěvník
Návštěvník
Příspěvky: 99
Registrován: 02 říj 2009 13:37

Re: Prosim o kontrolu pc

#57 Příspěvek od dodo65 »

Som ho otestoval a takyto je vysledok.Je vsetko ok?Dakujem.
Přílohy
stabilitytest.png
(31.62 KiB) Staženo 38 x

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosim o kontrolu pc

#58 Příspěvek od motji »

Teplota CPu je dost vysoká, zkuste vyčistit prach z chladiče. Je možné že se pc restartuje i kvůli tomu
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

dodo65
Návštěvník
Návštěvník
Příspěvky: 99
Registrován: 02 říj 2009 13:37

Re: Prosim o kontrolu pc

#59 Příspěvek od dodo65 »

Idem to vycistit a zatial dakujem.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Prosim o kontrolu pc

#60 Příspěvek od motji »

Není zač, pak napište jestli to pomohlo :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Odpovědět