Prosím o kontrolu logu

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
cosmosD
Level 3
Level 3
Příspěvky: 437
Registrován: únor 11
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline

Prosím o kontrolu logu

Příspěvekod cosmosD » 30 čer 2011 18:44

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:43:01, on 30.6.2011
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16800)
Boot mode: Normal

Running processes:
C:\Windows\PLFSetI.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files (x86)\McAfee Security Scan\2.0.181\SSScheduler.exe
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\reader_sl.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
C:\Windows\SysWOW64\RunDll32.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\Launch Manager\LMworker.exe
C:\Users\PC\Downloads\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.emachines.com/rdr.aspx? ... 5r4632r82o
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://mirostart.com/?cfg=2-365-0-...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.emachines.com/rdr.aspx? ... 5r4632r82o
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.emachines.com/rdr.aspx? ... 5r4632r82o
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: PandoraTV Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [ApnUpdater] "C:\Program Files (x86)\Ask.com\Updater\Updater.exe"
O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [Infium] "C:\Program Files (x86)\QIP 2010\qip.exe" /autorun
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: McAfee Security Scan Plus.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Odeslat obrázek do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Odeslat stránku do zařízení &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files (x86)\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\eMachines\eMachines Power Management\ePowerSvc.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\eMachines Games\eMachines Game Console\GameConsoleService.exe
O23 - Service: GREGService - Acer Incorporated - C:\Program Files (x86)\eMachines\Registration\GREGsvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - c:\PROGRA~2\mcafee\SITEAD~1\mcsacore.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TeamViewer 6 (TeamViewer6) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Updater Service - Acer Group - C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12408 bytes

Reklama
Uživatelský avatar
Žbeky
Moderátor
Guru Level 13
Guru Level 13
Příspěvky: 22288
Registrován: květen 08
Bydliště: Vsetín - Pardubice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Žbeky » 30 čer 2011 19:33

Nějaké problémy?

Odiinstaluj:
McAfee
Google toolbar
ASK Toolbar
Pandora TV Toolbar


Nainstaluj si nějaký normální antivir

Fixni:

Kód: Vybrat vše

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.emachines.com/rdr.aspx? ... 5r4632r82o
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://mirostart.com/?cfg=2-365-0-...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.emachines.com/rdr.aspx? ... 5r4632r82o
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://homepage.emachines.com/rdr.aspx? ... 5r4632r82o
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: PandoraTV Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [ApnUpdater] "C:\Program Files (x86)\Ask.com\Updater\Updater.exe"
O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: McAfee Security Scan Plus.lnk = ?
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.

Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).
Vlož sem pak obsah toho logu.
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.

HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra

Uživatelský avatar
cosmosD
Level 3
Level 3
Příspěvky: 437
Registrován: únor 11
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod cosmosD » 30 čer 2011 20:02

delší zapínání, vypínání... Zdá se mi, že je načase trochu pc pročistit :)
Malwarebytes' Anti-Malware 1.51.0.1200
www.malwarebytes.org

Verze databáze: 6988

Windows 6.1.7600
Internet Explorer 8.0.7600.16385

30.6.2011 19:59:50
mbam-log-2011-06-30 (19-59-50).txt

Typ: Rychlá kontrola
Kontrolované objekty: 164762
Uplynulý čas: 4 minut, 52 sekund

Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče v registru: 0
Infikované hodnoty v registru: 0
Infikované datové položky v registru: 0
Infikované složky: 0
Infikované soubory: 0

Infikované procesy v paměti:
(Žádné škodlivé položky nebyly zjištěny)

Infikované moduly v paměti:
(Žádné škodlivé položky nebyly zjištěny)

Infikované klíče v registru:
(Žádné škodlivé položky nebyly zjištěny)

Infikované hodnoty v registru:
(Žádné škodlivé položky nebyly zjištěny)

Infikované datové položky v registru:
(Žádné škodlivé položky nebyly zjištěny)

Infikované složky:
(Žádné škodlivé položky nebyly zjištěny)

Infikované soubory:
(Žádné škodlivé položky nebyly zjištěny)

Uživatelský avatar
Žbeky
Moderátor
Guru Level 13
Guru Level 13
Příspěvky: 22288
Registrován: květen 08
Bydliště: Vsetín - Pardubice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Žbeky » 30 čer 2011 20:07

Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je označen pro odstranění, stačí restartovat počítač.
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.

HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra

Uživatelský avatar
cosmosD
Level 3
Level 3
Příspěvky: 437
Registrován: únor 11
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod cosmosD » 30 čer 2011 20:46

ComboFix 11-06-30.03 - PC 30.06.2011 20:16:11.1.2 - x64
Microsoft Windows 7 Home Premium 6.1.7600.0.1250.420.1029.18.1787.732 [GMT 2:00]
Spuštěný z: c:\users\PC\Downloads\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {BF5CEBDC-F2D3-7540-343C-F0CE11FD6E66}
SP: Microsoft Security Essentials *Disabled/Updated* {043D0A38-D4E9-7ACE-0E8C-CBBC6A7A24DB}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\page
c:\programdata\page\page.ico
c:\programdata\page\page.URL
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-05-28 do 2011-06-30 )))))))))))))))))))))))))))))))
.
.
2011-06-30 18:26 . 2011-06-30 18:26 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-06-30 17:54 . 2011-06-30 17:54 -------- d-----w- c:\users\PC\AppData\Roaming\Malwarebytes
2011-06-30 17:54 . 2011-05-29 07:11 39984 ----a-w- c:\windows\SysWow64\drivers\mbamswissarmy.sys
2011-06-30 17:54 . 2011-06-30 17:54 -------- d-----w- c:\programdata\Malwarebytes
2011-06-30 17:53 . 2011-06-30 17:54 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2011-06-30 17:53 . 2011-05-29 07:11 25912 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-06-30 16:53 . 2011-06-07 17:10 8873296 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E6268E7E-7A22-4085-89FF-65629C664261}\mpengine.dll
2011-06-29 10:11 . 2011-05-24 11:21 404992 ----a-w- c:\windows\system32\umpnpmgr.dll
2011-06-29 10:11 . 2011-05-24 10:34 64512 ----a-w- c:\windows\SysWow64\devobj.dll
2011-06-29 10:11 . 2011-05-24 10:34 44544 ----a-w- c:\windows\SysWow64\devrtl.dll
2011-06-29 10:11 . 2011-05-24 10:34 145920 ----a-w- c:\windows\SysWow64\cfgmgr32.dll
2011-06-29 10:11 . 2011-05-24 10:32 252928 ----a-w- c:\windows\SysWow64\drvinst.exe
2011-06-16 18:41 . 2011-04-27 02:57 102400 ----a-w- c:\windows\system32\drivers\dfsc.sys
2011-06-16 18:41 . 2011-04-25 05:32 1896832 ----a-w- c:\windows\system32\drivers\tcpip.sys
2011-06-16 18:41 . 2011-04-25 02:44 499712 ----a-w- c:\windows\system32\drivers\afd.sys
2011-06-16 18:41 . 2011-04-29 05:47 1110528 ----a-w- c:\program files\Common Files\Microsoft Shared\VGX\VGX.dll
2011-06-16 18:41 . 2011-04-29 05:08 759296 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\VGX\VGX.dll
2011-06-16 18:41 . 2011-05-04 02:51 287744 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-06-16 18:41 . 2011-05-04 02:51 157696 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-06-16 18:41 . 2011-05-04 02:51 126464 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-06-16 18:41 . 2011-05-28 03:07 3133952 ----a-w- c:\windows\system32\win32k.sys
2011-06-04 09:15 . 2011-06-04 09:15 -------- d-----w- c:\programdata\DivX
2011-06-03 14:12 . 2011-06-03 14:12 -------- d-----w- c:\users\PC\AppData\Roaming\PCF-VLC
2011-06-03 14:09 . 2011-06-03 14:09 -------- d-----w- c:\users\PC\AppData\Roaming\Participatory Culture Foundation
2011-06-03 14:09 . 2011-06-03 14:09 -------- d-----w- c:\program files (x86)\GetMiro Toolbar
2011-06-03 14:08 . 2011-06-03 14:08 -------- d-----w- c:\program files (x86)\Participatory Culture Foundation
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-06-07 17:10 . 2010-10-13 15:47 8873296 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2011-05-01 00:32 . 2011-05-01 00:32 0 ---ha-w- c:\users\PC\AppData\Local\BIT4707.tmp
2011-04-22 20:18 . 2011-05-25 11:11 27008 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2011-04-09 06:58 . 2011-05-13 17:28 142336 ----a-w- c:\windows\system32\poqexec.exe
2011-04-09 06:45 . 2011-05-11 11:50 5509504 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-04-09 06:13 . 2011-05-11 11:50 3957632 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe
2011-04-09 06:13 . 2011-05-11 11:50 3901824 ----a-w- c:\windows\SysWow64\ntoskrnl.exe
2011-04-09 05:56 . 2011-05-13 17:28 123904 ----a-w- c:\windows\SysWow64\poqexec.exe
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Infium"="c:\program files (x86)\QIP 2010\qip.exe" [2010-10-12 5810128]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1475072]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2011-05-26 15147400]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-03-29 98304]
"LManager"="c:\program files (x86)\Launch Manager\LManager.exe" [2010-03-03 1300560]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2011-05-29 449584]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2010-3-26 1125152]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer2"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
R2 gupdate;Služba Google Update (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-13 135664]
R3 btwampfl;Bluetooth AMP USB Filter;c:\windows\system32\drivers\btwampfl.sys [x]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [x]
R3 gupdatem;Služba Google Update (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-13 135664]
R3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe [2010-01-15 227232]
R3 NTIBackupSvc;NTI Backup Now 5 Backup Service;c:\program files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2009-11-06 50432]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe [2010-03-03 325200]
S2 ePowerSvc;Acer ePower Service;c:\program files\eMachines\eMachines Power Management\ePowerSvc.exe [2010-03-17 866336]
S2 GREGService;GREGService;c:\program files (x86)\eMachines\Registration\GREGsvc.exe [2010-01-08 23584]
S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\progra~2\mcafee\SITEAD~1\mcsacore.exe [2011-02-16 101048]
S2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;c:\program files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2009-11-06 144640]
S2 TeamViewer6;TeamViewer 6;c:\program files (x86)\TeamViewer\Version6\TeamViewer_Service.exe [2011-01-27 2253688]
S2 Updater Service;Updater Service;c:\program files\eMachines\eMachines Updater\UpdaterService.exe [2010-01-28 243232]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atipmdag.sys [x]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys [x]
S3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\DRIVERS\MpNWMon.sys [x]
S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys [x]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2011-06-30 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-13 06:50]
.
2011-06-30 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-13 06:50]
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2009-12-15 9644576]
"PLFSetI"="c:\windows\PLFSetI.exe" [2010-01-13 206208]
"Acer ePower Management"="c:\program files\eMachines\eMachines Power Management\ePowerTray.exe" [2010-03-17 860704]
"MSSE"="c:\program files\Microsoft Security Essentials\msseces.exe" [2010-09-15 1448568]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SYSTEM32\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Odeslat obrázek do zařízení &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Odeslat stránku do zařízení &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: WikiKomentáře Google... - c:\program files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\08d2xksz.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - Ext: Skype extension: {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} - c:\program files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: McAfee SiteAdvisor: {B7082FAA-CB62-4872-9106-E42DD88EDE45} - c:\program files (x86)\McAfee\SiteAdvisor
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
Toolbar-Locked - (no file)
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10e.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10e.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10e.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10e.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10e.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10e.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}]
@Denied: (A 2) (Everyone)
@="IFlashBroker3"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2011-06-30 20:44:17
ComboFix-quarantined-files.txt 2011-06-30 18:44
.
Před spuštěním: Volných bajtů: 87 303 557 120
Po spuštění: Volných bajtů: 87 336 251 392
.
- - End Of File - - 303E90192B85FBD1CD3B715AAF0B6FA8

Uživatelský avatar
Žbeky
Moderátor
Guru Level 13
Guru Level 13
Příspěvky: 22288
Registrován: květen 08
Bydliště: Vsetín - Pardubice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Žbeky » 30 čer 2011 21:20

Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Poznámka: Nepoužij k označení skriptu funkci VYBRAT VŠE

Kód: Vybrat vše

Folder::
c:\program files (x86)\GetMiro Toolbar
c:\program files (x86)\McAfee Security Scan
c:\progra~2\mcafee

File::
c:\users\PC\AppData\Local\BIT4707.tmp
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

Registry::
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"=-
"ConsentPromptBehaviorUser"=-
"EnableUIADesktopToggle"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=-

Driver::
McComponentHostService
McAfee SiteAdvisor Service

Firefox::
FF - ProfilePath - c:\users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\08d2xksz.default\
FF - Ext: McAfee SiteAdvisor: {B7082FAA-CB62-4872-9106-E42DD88EDE45} - c:\program files (x86)\McAfee\SiteAdvisor

RegLock::
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

RegNull::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.

Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.

HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra

Uživatelský avatar
cosmosD
Level 3
Level 3
Příspěvky: 437
Registrován: únor 11
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod cosmosD » 30 čer 2011 21:41

ComboFix 11-06-30.03 - PC 30.06.2011 21:24:40.2.2 - x64
Microsoft Windows 7 Home Premium 6.1.7600.0.1250.420.1029.18.1787.812 [GMT 2:00]
Spuštěný z: c:\users\PC\Downloads\ComboFix.exe
Použité ovládací přepínače :: c:\users\PC\Desktop\CFScript.txt
AV: Microsoft Security Essentials *Disabled/Updated* {BF5CEBDC-F2D3-7540-343C-F0CE11FD6E66}
SP: Microsoft Security Essentials *Disabled/Updated* {043D0A38-D4E9-7ACE-0E8C-CBBC6A7A24DB}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
FILE ::
"c:\users\PC\AppData\Local\BIT4707.tmp"
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\progra~2\mcafee
c:\progra~2\mcafee\SiteAdvisor\ActUtil.exe
c:\progra~2\mcafee\SiteAdvisor\Components\IMcFFPlg.xpt
c:\progra~2\mcafee\SiteAdvisor\Components\McFFPlg.dll
c:\progra~2\mcafee\SiteAdvisor\contents.rdf
c:\progra~2\mcafee\SiteAdvisor\default.txt
c:\progra~2\mcafee\SiteAdvisor\elist.dat
c:\progra~2\mcafee\SiteAdvisor\chr.inf
c:\progra~2\mcafee\SiteAdvisor\chrome.manifest
c:\progra~2\mcafee\SiteAdvisor\install.rdf
c:\progra~2\mcafee\SiteAdvisor\mcbrwctl.dll
c:\progra~2\mcafee\SiteAdvisor\McChPlg.crx
c:\progra~2\mcafee\SiteAdvisor\McPlgUI.dll
c:\progra~2\mcafee\SiteAdvisor\mcsacore.exe
c:\progra~2\mcafee\SiteAdvisor\McSACorePS.dll
c:\progra~2\mcafee\SiteAdvisor\SA_indep.inf
c:\progra~2\mcafee\SiteAdvisor\SA_main.inf
c:\progra~2\mcafee\SiteAdvisor\SA_x64.inf
c:\progra~2\mcafee\SiteAdvisor\sahook.dll
c:\progra~2\mcafee\SiteAdvisor\saOemMgr.exe
c:\progra~2\mcafee\SiteAdvisor\saplugin.dll
c:\progra~2\mcafee\SiteAdvisor\sares.dll
c:\progra~2\mcafee\SiteAdvisor\saSets.ini
c:\progra~2\mcafee\SiteAdvisor\sasshmod.dll
c:\progra~2\mcafee\SiteAdvisor\saSubMgr.dll
c:\progra~2\mcafee\SiteAdvisor\saupkeep.dll
c:\progra~2\mcafee\SiteAdvisor\Scripts\balloon.html
c:\progra~2\mcafee\SiteAdvisor\Scripts\balloon.js
c:\progra~2\mcafee\SiteAdvisor\Scripts\balloon_logo.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\balloon_logo_plus.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\blackpixel.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\bullet.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\button_black.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\button_black_lock.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\button_disabled.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\button_green.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\button_green_lock.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\button_grey.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\button_grey_lock.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\button_hs.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\button_hs_lock.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\button_red.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\button_red_lock.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\button_yellow.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\button_yellow_lock.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\common.js
c:\progra~2\mcafee\SiteAdvisor\Scripts\corner-solid.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\cornersm-hollow.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\cornersm-solid.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\down_arrow.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\download_careful.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\download_unsafe.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\empty.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\error-icon.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\favicon.ico
c:\progra~2\mcafee\SiteAdvisor\Scripts\g_banner_c.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\g_banner_l.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\g_banner_r.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\g_banner_sep.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\g_bottom_c.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\g_bottom_l.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\g_bottom_r.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\g_bottom_sep.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\g_facet.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\g_footer_c.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\g_footer_l.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\g_footer_r.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\g_header_c.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\g_header_l.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\g_header_r.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\g_icon.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\g_upsell_border.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\gleftarrow.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\green.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\grightarrow.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\hackersafe.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\hs.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\hs_icon.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\inst-background.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\inst-top.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\inst-xup.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\large-buttonC.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\large-buttonL.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\large-buttonR.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\main.js
c:\progra~2\mcafee\SiteAdvisor\Scripts\mcafee_logo.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\mcafee_yahoo_cobranded_toolbar.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\mcafeesiteadvisor.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\mcwedge.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\nb_arrow_down.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\nb_arrow_up.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\nb_button_black.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\nb_button_black_lock.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\nb_button_disabled.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\nb_button_green.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\nb_button_green_lock.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\nb_button_grey.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\nb_button_grey_lock.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\nb_button_hs.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\nb_button_hs_lock.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\nb_button_red.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\nb_button_red_lock.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\nb_button_yellow.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\nb_button_yellow_lock.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\protectedmode.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\protection.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\protmode-off.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\protmode-on.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\question-icon.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\r_banner_c.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\r_banner_l.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\r_banner_r.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\r_banner_sep.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\r_bottom_c.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\r_bottom_l.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\r_bottom_r.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\r_bottom_sep.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\r_facet.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\r_footer_c.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\r_footer_l.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\r_footer_r.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\r_header_c.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\r_header_l.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\r_header_r.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\r_header_r_nox.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\r_icon.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\r_upsell_border.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\red.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\redarrow.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\rleftarrow.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\rrightarrow.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\sa-logo-plus.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\sa-logo.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\safe.js
c:\progra~2\mcafee\SiteAdvisor\Scripts\safe.xul
c:\progra~2\mcafee\SiteAdvisor\Scripts\safe_im.js
c:\progra~2\mcafee\SiteAdvisor\Scripts\safeshare_green.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\safeshare_grey.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\safeshare_red.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\safeshare_yellow.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\saffplg.js
c:\progra~2\mcafee\SiteAdvisor\Scripts\SAPlus-graphic.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\searchglass.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\selected_tab.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\siteadvisor.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\SliderA1.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\SliderA2.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\SliderA3.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\SliderA4.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\SliderD1.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\SliderD2.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\SliderD3.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\SliderD4.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\small-buttonC.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\small-buttonL.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\small-buttonR.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\ss_bottom_c.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\ss_bottom_l.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\ss_bottom_r.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\ss_copylink_off.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\ss_copylink_on.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\ss_facebook_off.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\ss_facebook_on.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\ss_footer_c.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\ss_footer_l.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\ss_footer_r.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\ss_header_c.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\ss_header_l.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\ss_header_r.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\ss_twitter_off.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\ss_twitter_on.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\unselected_tab.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\untested.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\w_banner_c.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\w_banner_l.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\w_banner_r.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\w_banner_sep.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\w_bottom_c.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\w_bottom_l.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\w_bottom_r.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\w_bottom_sep.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\w_footer_c.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\w_footer_l.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\w_footer_r.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\w_header_c.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\w_header_l.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\w_header_r.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\w_icon.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\w_upsell_border.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\wleftarrow.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\wrightarrow.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\xup.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\y_banner_c.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\y_banner_l.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\y_banner_r.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\y_banner_sep.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\y_bottom_c.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\y_bottom_l.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\y_bottom_r.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\y_bottom_sep.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\y_facet.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\y_footer_c.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\y_footer_l.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\y_footer_r.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\y_header_c.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\y_header_l.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\y_header_r.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\y_header_r_nox.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\y_icon.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\y_upsell_border.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\yellow.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\yleftarrow.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\yrightarrow.gif
c:\progra~2\mcafee\SiteAdvisor\Scripts\ytri.gif
c:\progra~2\mcafee\SiteAdvisor\uninstall.exe
c:\progra~2\mcafee\SiteAdvisor\x64\McBrwCtl.dll
c:\progra~2\mcafee\SiteAdvisor\x64\McIEPlg.dll
c:\progra~2\mcafee\SiteAdvisor\x64\McPlgUI.dll
c:\progra~2\mcafee\SiteAdvisor\x64\McSACorePS.dll
c:\program files (x86)\GetMiro Toolbar
c:\program files (x86)\GetMiro Toolbar\icon.ico
c:\program files (x86)\McAfee Security Scan
c:\program files (x86)\McAfee Security Scan\2.0.181\AVScanComponent.dll
c:\program files (x86)\McAfee Security Scan\2.0.181\AVScanner.ini
c:\program files (x86)\McAfee Security Scan\2.0.181\avvclean.dat
c:\program files (x86)\McAfee Security Scan\2.0.181\avvnames.dat
c:\program files (x86)\McAfee Security Scan\2.0.181\avvscan.dat
c:\program files (x86)\McAfee Security Scan\2.0.181\config.dat
c:\program files (x86)\McAfee Security Scan\2.0.181\ftconfig.ini
c:\program files (x86)\McAfee Security Scan\2.0.181\McAfee.ico
c:\program files (x86)\McAfee Security Scan\2.0.181\mcbrwsr2.dll
c:\program files (x86)\McAfee Security Scan\2.0.181\MCCompHostConfig.ini
c:\program files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe
c:\program files (x86)\McAfee Security Scan\2.0.181\mcscan32.dll
c:\program files (x86)\McAfee Security Scan\2.0.181\mcuicnt.exe
c:\program files (x86)\McAfee Security Scan\2.0.181\McUpdater.dll
c:\program files (x86)\McAfee Security Scan\2.0.181\sa_cache_sqlite.dll
c:\program files (x86)\McAfee Security Scan\2.0.181\sa_http_win32.dll
c:\program files (x86)\McAfee Security Scan\2.0.181\sa_mbl.dll
c:\program files (x86)\McAfee Security Scan\2.0.181\sa_store_sqlite.dll
c:\program files (x86)\McAfee Security Scan\2.0.181\sacore.db
c:\program files (x86)\McAfee Security Scan\2.0.181\sacore.dll
c:\program files (x86)\McAfee Security Scan\2.0.181\sacoredata\uds_filetypes.txt
c:\program files (x86)\McAfee Security Scan\2.0.181\sacoredata\uds_hosting.txt
c:\program files (x86)\McAfee Security Scan\2.0.181\sacoredata\uds_tlds.txt
c:\program files (x86)\McAfee Security Scan\2.0.181\SecurityScanner.dll
c:\program files (x86)\McAfee Security Scan\2.0.181\SecurityScanner_LD.dll
c:\program files (x86)\McAfee Security Scan\2.0.181\sqlite3.dll
c:\program files (x86)\McAfee Security Scan\2.0.181\SSCustom_LD.dll
c:\program files (x86)\McAfee Security Scan\2.0.181\SSScheduler.exe
c:\program files (x86)\McAfee Security Scan\2.0.181\WebInfoScanner.dll
c:\program files (x86)\McAfee Security Scan\2.0.181\WMIScanner.dll
c:\program files (x86)\McAfee Security Scan\uninstall.exe
c:\program files (x86)\McAfee\SiteAdvisor\ActUtil.exe
c:\program files (x86)\McAfee\SiteAdvisor\Components\IMcFFPlg.xpt
c:\program files (x86)\McAfee\SiteAdvisor\Components\McFFPlg.dll
c:\program files (x86)\McAfee\SiteAdvisor\contents.rdf
c:\program files (x86)\McAfee\SiteAdvisor\default.txt
c:\program files (x86)\McAfee\SiteAdvisor\elist.dat
c:\program files (x86)\McAfee\SiteAdvisor\chr.inf
c:\program files (x86)\McAfee\SiteAdvisor\chrome.manifest
c:\program files (x86)\McAfee\SiteAdvisor\install.rdf
c:\program files (x86)\McAfee\SiteAdvisor\mcbrwctl.dll
c:\program files (x86)\McAfee\SiteAdvisor\McChPlg.crx
c:\program files (x86)\McAfee\SiteAdvisor\McPlgUI.dll
c:\program files (x86)\McAfee\SiteAdvisor\mcsacore.exe
c:\program files (x86)\McAfee\SiteAdvisor\McSACorePS.dll
c:\program files (x86)\McAfee\SiteAdvisor\SA_indep.inf
c:\program files (x86)\McAfee\SiteAdvisor\SA_main.inf
c:\program files (x86)\McAfee\SiteAdvisor\SA_x64.inf
c:\program files (x86)\McAfee\SiteAdvisor\sahook.dll
c:\program files (x86)\McAfee\SiteAdvisor\saOemMgr.exe
c:\program files (x86)\McAfee\SiteAdvisor\saplugin.dll
c:\program files (x86)\McAfee\SiteAdvisor\sares.dll
c:\program files (x86)\McAfee\SiteAdvisor\saSets.ini
c:\program files (x86)\McAfee\SiteAdvisor\sasshmod.dll
c:\program files (x86)\McAfee\SiteAdvisor\saSubMgr.dll
c:\program files (x86)\McAfee\SiteAdvisor\saupkeep.dll
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\balloon.html
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\balloon.js
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\balloon_logo.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\balloon_logo_plus.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\blackpixel.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\bullet.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\button_black.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\button_black_lock.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\button_disabled.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\button_green.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\button_green_lock.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\button_grey.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\button_grey_lock.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\button_hs.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\button_hs_lock.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\button_red.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\button_red_lock.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\button_yellow.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\button_yellow_lock.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\common.js
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\corner-solid.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\cornersm-hollow.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\cornersm-solid.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\down_arrow.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\download_careful.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\download_unsafe.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\empty.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\error-icon.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\favicon.ico
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\g_banner_c.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\g_banner_l.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\g_banner_r.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\g_banner_sep.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\g_bottom_c.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\g_bottom_l.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\g_bottom_r.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\g_bottom_sep.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\g_facet.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\g_footer_c.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\g_footer_l.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\g_footer_r.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\g_header_c.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\g_header_l.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\g_header_r.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\g_icon.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\g_upsell_border.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\gleftarrow.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\green.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\grightarrow.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\hackersafe.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\hs.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\hs_icon.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\inst-background.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\inst-top.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\inst-xup.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\large-buttonC.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\large-buttonL.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\large-buttonR.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\main.js
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\mcafee_logo.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\mcafee_yahoo_cobranded_toolbar.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\mcafeesiteadvisor.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\mcwedge.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\nb_arrow_down.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\nb_arrow_up.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\nb_button_black.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\nb_button_black_lock.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\nb_button_disabled.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\nb_button_green.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\nb_button_green_lock.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\nb_button_grey.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\nb_button_grey_lock.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\nb_button_hs.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\nb_button_hs_lock.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\nb_button_red.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\nb_button_red_lock.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\nb_button_yellow.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\nb_button_yellow_lock.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\protectedmode.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\protection.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\protmode-off.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\protmode-on.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\question-icon.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\r_banner_c.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\r_banner_l.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\r_banner_r.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\r_banner_sep.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\r_bottom_c.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\r_bottom_l.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\r_bottom_r.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\r_bottom_sep.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\r_facet.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\r_footer_c.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\r_footer_l.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\r_footer_r.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\r_header_c.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\r_header_l.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\r_header_r.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\r_header_r_nox.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\r_icon.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\r_upsell_border.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\red.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\redarrow.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\rleftarrow.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\rrightarrow.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\sa-logo-plus.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\sa-logo.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\safe.js
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\safe.xul
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\safe_im.js
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\safeshare_green.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\safeshare_grey.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\safeshare_red.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\safeshare_yellow.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\saffplg.js
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\SAPlus-graphic.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\searchglass.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\selected_tab.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\siteadvisor.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\SliderA1.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\SliderA2.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\SliderA3.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\SliderA4.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\SliderD1.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\SliderD2.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\SliderD3.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\SliderD4.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\small-buttonC.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\small-buttonL.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\small-buttonR.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\ss_bottom_c.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\ss_bottom_l.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\ss_bottom_r.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\ss_copylink_off.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\ss_copylink_on.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\ss_facebook_off.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\ss_facebook_on.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\ss_footer_c.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\ss_footer_l.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\ss_footer_r.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\ss_header_c.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\ss_header_l.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\ss_header_r.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\ss_twitter_off.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\ss_twitter_on.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\unselected_tab.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\untested.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\w_banner_c.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\w_banner_l.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\w_banner_r.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\w_banner_sep.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\w_bottom_c.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\w_bottom_l.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\w_bottom_r.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\w_bottom_sep.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\w_footer_c.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\w_footer_l.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\w_footer_r.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\w_header_c.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\w_header_l.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\w_header_r.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\w_icon.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\w_upsell_border.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\wleftarrow.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\wrightarrow.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\xup.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\y_banner_c.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\y_banner_l.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\y_banner_r.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\y_banner_sep.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\y_bottom_c.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\y_bottom_l.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\y_bottom_r.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\y_bottom_sep.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\y_facet.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\y_footer_c.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\y_footer_l.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\y_footer_r.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\y_header_c.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\y_header_l.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\y_header_r.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\y_header_r_nox.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\y_icon.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\y_upsell_border.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\yellow.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\yleftarrow.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\yrightarrow.gif
c:\program files (x86)\McAfee\SiteAdvisor\Scripts\ytri.gif
c:\program files (x86)\McAfee\SiteAdvisor\uninstall.exe
c:\program files (x86)\McAfee\SiteAdvisor\x64\McBrwCtl.dll
c:\program files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
c:\program files (x86)\McAfee\SiteAdvisor\x64\McPlgUI.dll
c:\program files (x86)\McAfee\SiteAdvisor\x64\McSACorePS.dll
c:\users\PC\AppData\Local\BIT4707.tmp
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_McAfee SiteAdvisor Service
-------\Service_McComponentHostService
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-05-28 do 2011-06-30 )))))))))))))))))))))))))))))))
.
.
2011-06-30 19:30 . 2011-06-30 19:30 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-06-30 17:54 . 2011-06-30 17:54 -------- d-----w- c:\users\PC\AppData\Roaming\Malwarebytes
2011-06-30 17:54 . 2011-05-29 07:11 39984 ----a-w- c:\windows\SysWow64\drivers\mbamswissarmy.sys
2011-06-30 17:54 . 2011-06-30 17:54 -------- d-----w- c:\programdata\Malwarebytes
2011-06-30 17:53 . 2011-06-30 17:54 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2011-06-30 17:53 . 2011-05-29 07:11 25912 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-06-30 16:53 . 2011-06-07 17:10 8873296 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E6268E7E-7A22-4085-89FF-65629C664261}\mpengine.dll
2011-06-29 10:11 . 2011-05-24 11:21 404992 ----a-w- c:\windows\system32\umpnpmgr.dll
2011-06-29 10:11 . 2011-05-24 10:34 64512 ----a-w- c:\windows\SysWow64\devobj.dll
2011-06-29 10:11 . 2011-05-24 10:34 44544 ----a-w- c:\windows\SysWow64\devrtl.dll
2011-06-29 10:11 . 2011-05-24 10:34 145920 ----a-w- c:\windows\SysWow64\cfgmgr32.dll
2011-06-29 10:11 . 2011-05-24 10:32 252928 ----a-w- c:\windows\SysWow64\drvinst.exe
2011-06-16 18:41 . 2011-04-27 02:57 102400 ----a-w- c:\windows\system32\drivers\dfsc.sys
2011-06-16 18:41 . 2011-04-25 05:32 1896832 ----a-w- c:\windows\system32\drivers\tcpip.sys
2011-06-16 18:41 . 2011-04-25 02:44 499712 ----a-w- c:\windows\system32\drivers\afd.sys
2011-06-16 18:41 . 2011-04-29 05:47 1110528 ----a-w- c:\program files\Common Files\Microsoft Shared\VGX\VGX.dll
2011-06-16 18:41 . 2011-04-29 05:08 759296 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\VGX\VGX.dll
2011-06-16 18:41 . 2011-05-04 02:51 287744 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-06-16 18:41 . 2011-05-04 02:51 157696 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-06-16 18:41 . 2011-05-04 02:51 126464 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-06-16 18:41 . 2011-05-28 03:07 3133952 ----a-w- c:\windows\system32\win32k.sys
2011-06-04 09:15 . 2011-06-04 09:15 -------- d-----w- c:\programdata\DivX
2011-06-03 14:12 . 2011-06-03 14:12 -------- d-----w- c:\users\PC\AppData\Roaming\PCF-VLC
2011-06-03 14:09 . 2011-06-03 14:09 -------- d-----w- c:\users\PC\AppData\Roaming\Participatory Culture Foundation
2011-06-03 14:08 . 2011-06-03 14:08 -------- d-----w- c:\program files (x86)\Participatory Culture Foundation
.
.
.

Uživatelský avatar
cosmosD
Level 3
Level 3
Příspěvky: 437
Registrován: únor 11
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod cosmosD » 30 čer 2011 21:41

(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-06-07 17:10 . 2010-10-13 15:47 8873296 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2011-04-22 20:18 . 2011-05-25 11:11 27008 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2011-04-09 06:58 . 2011-05-13 17:28 142336 ----a-w- c:\windows\system32\poqexec.exe
2011-04-09 06:45 . 2011-05-11 11:50 5509504 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-04-09 06:13 . 2011-05-11 11:50 3957632 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe
2011-04-09 06:13 . 2011-05-11 11:50 3901824 ----a-w- c:\windows\SysWow64\ntoskrnl.exe
2011-04-09 05:56 . 2011-05-13 17:28 123904 ----a-w- c:\windows\SysWow64\poqexec.exe
.
.
((((((((((((((((((((((((((((( SnapShot@2011-06-30_18.26.56 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-07-14 05:10 . 2011-06-30 19:34 43884 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2010-10-12 13:41 . 2011-06-30 19:34 14304 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-1393373148-2329852522-3876831931-1000_UserData.bin
- 2010-10-13 04:07 . 2011-06-30 18:05 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2010-10-13 04:07 . 2011-06-30 19:02 16384 c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2010-10-13 04:07 . 2011-06-30 18:05 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2010-10-13 04:07 . 2011-06-30 19:02 16384 c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2011-06-30 19:07 . 2011-06-30 19:07 42496 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Pres#\e7db9562ecd26271bb6ceac7026ea333\System.Windows.Presentation.ni.dll
+ 2011-06-30 19:07 . 2011-06-30 19:07 86016 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Web.Applicat#\e0fc9c42b2d28edebc1dd2c67c5c94a7\System.Web.ApplicationServices.ni.dll
+ 2011-06-30 19:04 . 2011-06-30 19:04 97792 c:\windows\assembly\NativeImages_v4.0.30319_64\System.AddIn.Contra#\32d3441efb46d802cdc65de502f28e3b\System.AddIn.Contract.ni.dll
+ 2011-06-30 18:59 . 2011-06-30 18:59 14336 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualC\512c12c2af578c00e8655b0ec2a92102\Microsoft.VisualC.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 96768 c:\windows\assembly\NativeImages_v4.0.30319_32\UIAutomationProvider\4cd8ba75f60cf8dc66767b833520241e\UIAutomationProvider.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 35328 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Pres#\3261cf5aa8c44f49ea44e995bb1c798c\System.Windows.Presentation.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 71680 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Web.Applicat#\8f37e1ebcb6a993092f8701f4f0bff4e\System.Web.ApplicationServices.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 82432 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\f43eab6f117c2733cc296f11e8ebe9ed\System.ServiceModel.Channels.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 78848 c:\windows\assembly\NativeImages_v4.0.30319_32\System.AddIn.Contra#\a1cbada42bb39fc34ee40e9e4afba87e\System.AddIn.Contract.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 11776 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualC\2bdbd057211d05a088b7a9004203e58b\Microsoft.VisualC.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 44544 c:\windows\assembly\NativeImages_v4.0.30319_32\Accessibility\0c39314a7513b436d3aaaeae3b4bd3e7\Accessibility.ni.dll
+ 2011-06-30 18:59 . 2011-06-30 18:59 60416 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Windows.Pres#\0936d4d4d46026a04b2e21f17e46a012\System.Windows.Presentation.ni.dll
+ 2011-06-30 18:59 . 2011-06-30 18:59 54784 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\1d3a83e09a28dd5fb6cda016154d0211\System.Web.DynamicData.Design.ni.dll
+ 2011-06-30 18:39 . 2011-06-30 18:39 72192 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationFontCac#\cac2c644dd74469a15d4916b12e0dd7f\PresentationFontCache.ni.exe
+ 2011-06-30 18:39 . 2011-06-30 18:39 33792 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.WSMan.Run#\4459b3220c0d01c5095aff4843afe7e1\Microsoft.WSMan.Runtime.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 70144 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\e1c1b4ab295d49b143ccb298abedcefb\Microsoft.Windows.Diagnosis.SDEngine.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 40448 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\d50c56a1fcc3eac99b747471a64ca9ba\Microsoft.Windows.Diagnosis.Commands.UpdateDiagRootcause.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 36864 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\ca1711e2ce458e2a694db63e77093fb8\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 45056 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\4c409e10f8d8aff82b61b74bcbf492aa\Microsoft.Windows.Diagnosis.Commands.UpdateDiagReport.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 59904 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\2d00e7010bf9509e1faba8f4ba11eff2\Microsoft.Windows.Diagnosis.SDHost.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 43520 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\1cc11bb59928fb91fd3c81ed05d93e91\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 40960 c:\windows\assembly\NativeImages_v2.0.50727_64\LoadMxf\6dae15a913cf2d938ab0b8bd606eef92\LoadMxf.ni.exe
+ 2011-06-30 19:09 . 2011-06-30 19:09 37888 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Pres#\8493fe7a36a59066ccd7d372c323e2f3\System.Windows.Presentation.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 36864 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\0df3e084246e59e6d76b4c6fe20490e5\System.Web.DynamicData.Design.ni.dll
- 2011-06-30 16:41 . 2011-06-30 16:41 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2011-06-30 19:32 . 2011-06-30 19:32 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2011-06-30 19:32 . 2011-06-30 19:32 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2011-06-30 16:41 . 2011-06-30 16:41 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
+ 2011-06-30 19:09 . 2011-06-30 19:09 9728 c:\windows\assembly\NativeImages_v4.0.30319_32\dfsvc\cec5dc6db7419a80bba3f9d73833fb65\dfsvc.ni.exe
- 2009-07-14 05:01 . 2011-06-30 16:40 394268 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2009-07-14 05:01 . 2011-06-30 19:31 394268 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2011-06-30 19:07 . 2011-06-30 19:07 322048 c:\windows\assembly\NativeImages_v4.0.30319_64\WindowsFormsIntegra#\67701a0afb40872303a50c673387ba22\WindowsFormsIntegration.ni.dll
+ 2011-06-30 19:02 . 2011-06-30 19:02 231424 c:\windows\assembly\NativeImages_v4.0.30319_64\UIAutomationTypes\21b0a1645439e2c615a317dc4cca191d\UIAutomationTypes.ni.dll
+ 2011-06-30 19:02 . 2011-06-30 19:02 122368 c:\windows\assembly\NativeImages_v4.0.30319_64\UIAutomationProvider\792559a31b651ec7c2d5da9847961736\UIAutomationProvider.ni.dll
+ 2011-06-30 19:07 . 2011-06-30 19:07 645120 c:\windows\assembly\NativeImages_v4.0.30319_64\UIAutomationClient\550c47e15879f39fed79e4eb1c2195db\UIAutomationClient.ni.dll
+ 2011-06-30 19:02 . 2011-06-30 19:02 525824 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Xml.Linq\0a0a776f67e84c2da967ac111c5df164\System.Xml.Linq.ni.dll
+ 2011-06-30 19:02 . 2011-06-30 19:02 254976 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Inpu#\cf8c22d4266e070a299c02d2850ef818\System.Windows.Input.Manipulations.ni.dll
+ 2011-06-30 19:02 . 2011-06-30 19:02 903168 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Transactions\4b6a7186f6c401b66d1be535e7d6104a\System.Transactions.ni.dll
+ 2011-06-30 19:07 . 2011-06-30 19:07 280576 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceProce#\a829cc80ca5acc2da26bd8ea918e1a4e\System.ServiceProcess.ni.dll
+ 2011-06-30 19:07 . 2011-06-30 19:07 107520 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\5381d639b68e4fcd1233df4aaa8fc9be\System.ServiceModel.Channels.ni.dll
+ 2011-06-30 19:07 . 2011-06-30 19:07 507904 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\23cddffe6a749acdc1cf2bbf7ea2470c\System.ServiceModel.Routing.ni.dll
+ 2011-06-30 19:02 . 2011-06-30 19:02 376320 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\93ee99e5061f73f7e0d64e28e72acdd8\System.Runtime.Serialization.Formatters.Soap.ni.dll
+ 2011-06-30 19:02 . 2011-06-30 19:02 987648 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Remo#\7706bf7b15e5f41daf680bf00fb3040b\System.Runtime.Remoting.ni.dll
+ 2011-06-30 19:06 . 2011-06-30 19:06 930304 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Net\92ffc2dd1a4c2ea95b472a26e774a835\System.Net.ni.dll
+ 2011-06-30 19:06 . 2011-06-30 19:06 781824 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Messaging\b8de5567948f35962ddf7122752ff04d\System.Messaging.ni.dll
+ 2011-06-30 19:05 . 2011-06-30 19:05 521728 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Management.I#\b131749bfb98ce8ec9b87ce2841afe60\System.Management.Instrumentation.ni.dll
+ 2011-06-30 19:05 . 2011-06-30 19:05 531456 c:\windows\assembly\NativeImages_v4.0.30319_64\System.IO.Log\0fe92ebf0087c98840e99d37480711c0\System.IO.Log.ni.dll
+ 2011-06-30 19:05 . 2011-06-30 19:05 290816 c:\windows\assembly\NativeImages_v4.0.30319_64\System.IdentityMode#\4b0079c9d88b51955f53d52f6b7f3e5a\System.IdentityModel.Selectors.ni.dll
+ 2011-06-30 19:02 . 2011-06-30 19:02 348672 c:\windows\assembly\NativeImages_v4.0.30319_64\System.EnterpriseSe#\c22b41c9c0a31a087d16689ac0889607\System.EnterpriseServices.Wrapper.dll
+ 2011-06-30 19:05 . 2011-06-30 19:05 628736 c:\windows\assembly\NativeImages_v4.0.30319_64\System.DirectorySer#\82362eb90e580c5b2afc3150c69d784f\System.DirectoryServices.Protocols.ni.dll
+ 2011-06-30 19:05 . 2011-06-30 19:05 141824 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Device\342afec9aa4ee8a572a0cd8da6833a5c\System.Device.ni.dll
+ 2011-06-30 19:04 . 2011-06-30 19:04 176128 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data.DataSet#\bf4f62e5c39821ee6225ed92dae486ed\System.Data.DataSetExtensions.ni.dll
+ 2011-06-30 19:04 . 2011-06-30 19:04 181248 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Configuratio#\ad9d61d394a46e9f9590b0a9f0fa0ad5\System.Configuration.Install.ni.dll
+ 2011-06-30 19:04 . 2011-06-30 19:04 255488 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ComponentMod#\693ee2ff660f89258326be91758da220\System.ComponentModel.DataAnnotations.ni.dll
+ 2011-06-30 19:04 . 2011-06-30 19:04 865792 c:\windows\assembly\NativeImages_v4.0.30319_64\System.AddIn\5f08af7480608daceecfec057280efac\System.AddIn.ni.dll
+ 2011-06-30 19:04 . 2011-06-30 19:04 553472 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Activities.D#\4afbca9170450994db0228341d24c42d\System.Activities.DurableInstancing.ni.dll
+ 2011-06-30 19:02 . 2011-06-30 19:02 184832 c:\windows\assembly\NativeImages_v4.0.30319_64\SMDiagnostics\991bb9aedef58467529703e0c83af2de\SMDiagnostics.ni.dll
+ 2011-06-30 19:01 . 2011-06-30 19:01 745984 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\fdac975a3fac325ee1cb3961bbc11acf\PresentationFramework.Luna.ni.dll
+ 2011-06-30 19:01 . 2011-06-30 19:01 331264 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\e5e71b03b631939f951c85fb1cddab68\PresentationFramework.Classic.ni.dll
+ 2011-06-30 19:01 . 2011-06-30 19:01 555520 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\7028852deef01a6e4e4636db5e12e09b\PresentationFramework.Aero.ni.dll
+ 2011-06-30 19:01 . 2011-06-30 19:01 387584 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\1354d301871cb639ab1b885c626f1ffe\PresentationFramework.Royale.ni.dll
+ 2011-06-30 18:59 . 2011-06-30 18:59 422400 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\4754eb5629d571dac6586602b1f1fbd6\Microsoft.VisualBasic.Compatibility.Data.ni.dll
+ 2011-06-30 19:13 . 2011-06-30 19:13 252416 c:\windows\assembly\NativeImages_v4.0.30319_32\WindowsFormsIntegra#\97a1f8a5a83114e0cea11549602e8e72\WindowsFormsIntegration.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 196096 c:\windows\assembly\NativeImages_v4.0.30319_32\UIAutomationTypes\7297158168dfc68b1b96bf6b0f56b093\UIAutomationTypes.ni.dll
+ 2011-06-30 19:13 . 2011-06-30 19:13 482816 c:\windows\assembly\NativeImages_v4.0.30319_32\UIAutomationClient\acc81364b5b1d54918a55f0ae0fbc043\UIAutomationClient.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 391680 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Xml.Linq\ff20e15edfa14ce628b0502173347062\System.Xml.Linq.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 188928 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Inpu#\40e165d670da20b9911cf7f15db916d2\System.Windows.Input.Manipulations.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 646656 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Transactions\0df91adfb9c0e51b7b967d61e8151b78\System.Transactions.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 221696 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\840f9b4d51622f9f29888aae168a196c\System.ServiceProcess.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 365056 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\8e99e3e3b47a1b63e678271947a72e22\System.ServiceModel.Routing.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 311296 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\a31a4045963913a3228777af311f4428\System.Runtime.Serialization.Formatters.Soap.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 762368 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Remo#\8985ef7c12df01b25c53bd80f7103819\System.Runtime.Remoting.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 653312 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Net\ce945fe046c7c152d4785fe24c22eee9\System.Net.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 626176 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Messaging\f07d8a06ff89e9c2db9f2ad73e88d421\System.Messaging.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 395264 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Management.I#\ec65b7f29e6d9c27cad0bb4f6199701f\System.Management.Instrumentation.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 413696 c:\windows\assembly\NativeImages_v4.0.30319_32\System.IO.Log\5e1621afee65228e6dc7fbc9fb35f091\System.IO.Log.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 229376 c:\windows\assembly\NativeImages_v4.0.30319_32\System.IdentityMode#\1f10456671d393187b6e2511155b8cd6\System.IdentityModel.Selectors.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 236032 c:\windows\assembly\NativeImages_v4.0.30319_32\System.EnterpriseSe#\401ca9defa4213be5372532a2754d50d\System.EnterpriseServices.Wrapper.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 786944 c:\windows\assembly\NativeImages_v4.0.30319_32\System.EnterpriseSe#\401ca9defa4213be5372532a2754d50d\System.EnterpriseServices.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 468992 c:\windows\assembly\NativeImages_v4.0.30319_32\System.DirectorySer#\f75ffd1a51b56e5171335277ca7d2ead\System.DirectoryServices.Protocols.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 913920 c:\windows\assembly\NativeImages_v4.0.30319_32\System.DirectorySer#\448b1912c09fe3be836533e1c04332ce\System.DirectoryServices.AccountManagement.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 112640 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Device\a8f34f6b7fc87869ea63c0a5a45e4106\System.Device.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 134656 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Data.DataSet#\8e8d0552f18365e5f57fe20cf3aebcbb\System.Data.DataSetExtensions.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 148480 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Configuratio#\1f12624743789147c54a5c70b34e47b7\System.Configuration.Install.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 194048 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ComponentMod#\4ce4ff836715d7e822200dd340ce8c32\System.ComponentModel.DataAnnotations.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 617984 c:\windows\assembly\NativeImages_v4.0.30319_32\System.AddIn\285ebbd21d182235113a348c951afd12\System.AddIn.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 404992 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Activities.D#\4a37977779bc648b11b8c333bfc1c2b8\System.Activities.DurableInstancing.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 317952 c:\windows\assembly\NativeImages_v4.0.30319_32\SMSvcHost\7190f7e40c8095e13f45e40b1709671f\SMSvcHost.ni.exe
+ 2011-06-30 19:10 . 2011-06-30 19:10 142848 c:\windows\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\b028b6680f5a3b315320a5bf7b659518\SMDiagnostics.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 303104 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\7e182b360a875b8723e9f988bef9f2ca\Microsoft.VisualBasic.Compatibility.Data.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 418816 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Transacti#\23c48b3a578d71fd90e8d8db8e7d6b37\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 194048 c:\windows\assembly\NativeImages_v4.0.30319_32\CustomMarshalers\dcc2883f0bbf0909874059fe9768016b\CustomMarshalers.ni.dll
+ 2011-06-30 18:59 . 2011-06-30 18:59 468992 c:\windows\assembly\NativeImages_v2.0.50727_64\WsatConfig\3cdff7617120272a285c0778ddbe8785\WsatConfig.ni.exe
+ 2011-06-30 18:59 . 2011-06-30 18:59 329216 c:\windows\assembly\NativeImages_v2.0.50727_64\WindowsFormsIntegra#\034d7dab8fddcce6cc6ac14bf5b938a5\WindowsFormsIntegration.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 653312 c:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationClient\021b892d67d9024dcadc010ec9e5d074\UIAutomationClient.ni.dll
+ 2011-06-30 18:59 . 2011-06-30 18:59 304128 c:\windows\assembly\NativeImages_v2.0.50727_64\TaskScheduler\4cd6cd3dc41c5603693294e236eadb56\TaskScheduler.ni.dll
+ 2011-06-30 18:58 . 2011-06-30 18:58 529920 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Xml.Linq\ffb7fbe35e074849c7a79dbabe948ca1\System.Xml.Linq.ni.dll
+ 2011-06-30 18:59 . 2011-06-30 18:59 187392 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Routing\50e18215fcf7801691f04d49a983633a\System.Web.Routing.ni.dll
+ 2011-06-30 18:59 . 2011-06-30 18:59 449024 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity\1e400f46cba4bb4902d568a82ad60d2b\System.Web.Entity.ni.dll
+ 2011-06-30 18:59 . 2011-06-30 18:59 398848 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Entity.D#\64773e3cb1730204d222479298c1cc0a\System.Web.Entity.Design.ni.dll
+ 2011-06-30 18:59 . 2011-06-30 18:59 753664 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.DynamicD#\4b1f2df7128b1fbc3dde66b64a6349f1\System.Web.DynamicData.ni.dll
+ 2011-06-30 18:58 . 2011-06-30 18:58 204800 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Abstract#\43e59ba475383c5322c9793d54725242\System.Web.Abstractions.ni.dll
+ 2011-06-30 18:58 . 2011-06-30 18:58 916480 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Net\f0ce9d7a823da2bc5b90916625b5df66\System.Net.ni.dll
+ 2011-06-30 18:58 . 2011-06-30 18:58 534016 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Management.I#\05306f592a8235eda1def41077c48f56\System.Management.Instrumentation.ni.dll
+ 2011-06-30 18:58 . 2011-06-30 18:58 569344 c:\windows\assembly\NativeImages_v2.0.50727_64\System.IO.Log\6eccb7acd6ac6e7d0fa8680fcdb3415b\System.IO.Log.ni.dll
+ 2011-06-30 18:58 . 2011-06-30 18:58 493056 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Service#\5c515902c7ba2ded1fd720503fd54ec8\System.Data.Services.Design.ni.dll
+ 2011-06-30 18:39 . 2011-06-30 18:39 194560 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.DataSet#\57c5c9e7ee7306072de335d0f5636354\System.Data.DataSetExtensions.ni.dll
+ 2011-06-30 18:39 . 2011-06-30 18:39 132096 c:\windows\assembly\NativeImages_v2.0.50727_64\System.ComponentMod#\7e998433b55bda4645a91d878e2477a9\System.ComponentModel.DataAnnotations.ni.dll
+ 2011-06-30 18:39 . 2011-06-30 18:39 889344 c:\windows\assembly\NativeImages_v2.0.50727_64\System.AddIn\781679ea2c458cacbdae304246804093\System.AddIn.ni.dll
+ 2011-06-30 18:39 . 2011-06-30 18:39 156672 c:\windows\assembly\NativeImages_v2.0.50727_64\System.AddIn.Contra#\2f9a3f7cb355902f1006b526d6e283a2\System.AddIn.Contract.ni.dll
+ 2011-06-30 18:59 . 2011-06-30 18:59 297984 c:\windows\assembly\NativeImages_v2.0.50727_64\sysglobl\6f0949db9a999cee6e55c5783a90cee0\sysglobl.ni.dll
+ 2011-06-30 18:39 . 2011-06-30 18:39 525824 c:\windows\assembly\NativeImages_v2.0.50727_64\SMSvcHost\2cc84c9eabf5d843ea8acdbc1e2fc80a\SMSvcHost.ni.exe
+ 2011-06-30 18:39 . 2011-06-30 18:39 855040 c:\windows\assembly\NativeImages_v2.0.50727_64\napsnap\2ee8a2096e53d60929ba527beb9e1885\napsnap.ni.dll
+ 2011-06-30 18:39 . 2011-06-30 18:39 162816 c:\windows\assembly\NativeImages_v2.0.50727_64\napinit\3e9fa433da6237f65e8f56dbabf86813\napinit.ni.dll
+ 2011-06-30 18:39 . 2011-06-30 18:39 175104 c:\windows\assembly\NativeImages_v2.0.50727_64\naphlpr\bc5d158b3f2d97939fe5a6c0f8c8f87b\naphlpr.ni.dll
+ 2011-06-30 18:39 . 2011-06-30 18:39 127488 c:\windows\assembly\NativeImages_v2.0.50727_64\napcrypt\701f374ba78342978c5545d4840259ea\napcrypt.ni.dll
+ 2011-06-30 18:39 . 2011-06-30 18:39 184320 c:\windows\assembly\NativeImages_v2.0.50727_64\MSBuild\102c7425c3560c7829677aa92f2cadf7\MSBuild.ni.exe
+ 2011-06-30 18:31 . 2011-06-30 18:31 417792 c:\windows\assembly\NativeImages_v2.0.50727_64\MMCFxCommon\93364e11cdb203a4c112c7abe44afc52\MMCFxCommon.ni.dll
+ 2011-06-30 18:39 . 2011-06-30 18:39 681472 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.WSMan.Man#\50c2c593d7d523723a2dce06afaa83db\Microsoft.WSMan.Management.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 122368 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Windows.D#\7159dd2e07054feb06d826680fab3aed\Microsoft.Windows.Diagnosis.TroubleshootingPack.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 105984 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Vsa\d9ad995c7eed5c062f79a13382f40ff2\Microsoft.Vsa.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 584192 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Transacti#\8655c3dd6bfddc6971965a32f4ba9ddb\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 713216 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\f05e252848ac19cce1f2b5a22710009f\Microsoft.PowerShell.ConsoleHost.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 999936 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\c752ca12c2f05b985d4333af3639dbc8\Microsoft.PowerShell.GraphicalHost.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 416768 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\774e416f90e63ceced5217745ddc4fce\Microsoft.PowerShell.Commands.Diagnostics.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 237056 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\19eb9afedd454d84b91317ac5baaedf0\Microsoft.PowerShell.Security.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 312320 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\fb13690e69e392188649d3e3c59cd921\Microsoft.MediaCenter.iTv.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 219648 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\1914d9bcc2faafe5093c491ead42baed\Microsoft.MediaCenter.iTv.Media.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 164864 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\0076f69bb5c6881d61e165282655c5cb\Microsoft.MediaCenter.Mheg.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 797696 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Managemen#\5be69ad589b672dcbdec01445f56afbc\Microsoft.ManagementConsole.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 198656 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Uti#\b82000397850cfe72f32fe1712dbc3fa\Microsoft.Build.Utilities.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 244224 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Uti#\3b8737dfb0c0b8237b86e58433832e38\Microsoft.Build.Utilities.v3.5.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 142336 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Fra#\fe53bc9afbbe7ddcd019b5901f385f56\Microsoft.Build.Framework.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 120832 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Fra#\5dba71a416170b8fcc087cbc041bbd36\Microsoft.Build.Framework.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 294912 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Con#\d41d9a0fe5e0f68c8d16e446c0db090c\Microsoft.Build.Conversion.v3.5.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 107520 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft-Windows-H#\7776f0878fd11bf3d82ca292f7f3338f\Microsoft-Windows-HomeGroupDiagnostic.NetListMgr.Interop.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 380928 c:\windows\assembly\NativeImages_v2.0.50727_64\Mcx2Dvcs\60008858b034574075897c78d928fe04\Mcx2Dvcs.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 547328 c:\windows\assembly\NativeImages_v2.0.50727_64\mcupdate\f8b5c86ed10424bd5f4fa57998ec1fb7\mcupdate.ni.exe
+ 2011-06-30 18:31 . 2011-06-30 18:31 549376 c:\windows\assembly\NativeImages_v2.0.50727_64\mcplayerinterop\eaa57fe7cd0ce04bf168fd1dd20ff420\mcplayerinterop.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 156672 c:\windows\assembly\NativeImages_v2.0.50727_64\MCESidebarCtrl\5e915d085b432c78cabc5d8a06856d68\MCESidebarCtrl.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 659456 c:\windows\assembly\NativeImages_v2.0.50727_64\EventViewer\300dde414cbd950fab9100f4febffee9\EventViewer.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 321024 c:\windows\assembly\NativeImages_v2.0.50727_32\WsatConfig\373a480080a7101d1ade3b5947f82a0b\WsatConfig.ni.exe
+ 2011-06-30 19:09 . 2011-06-30 19:09 240128 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\e353149c06e4844344cf04b12efa75ea\WindowsFormsIntegration.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 245248 c:\windows\assembly\NativeImages_v2.0.50727_32\TaskScheduler\ffdf9317e0b93b23afb730cd479a2a5d\TaskScheduler.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 401408 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq\43c7a50b800812e3867c5d535d5ec7a1\System.Xml.Linq.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 129536 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Routing\dc5bdd8f4a485330a82e8efe0528d972\System.Web.Routing.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 860160 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\9851e6d5da6226248832e051e7456e7a\System.Web.Extensions.Design.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 328192 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity\3b6e9a3a3488ee7cf91444b59ca513ce\System.Web.Entity.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 301568 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity.D#\1cf6432592706f0ccf71d8268d1aefb6\System.Web.Entity.Design.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 547328 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\683fd94cf3441a95c54f9e752d5f82ee\System.Web.DynamicData.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 141312 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Abstract#\8d9835767afa6516d9b02476ad8cdff3\System.Web.Abstractions.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 624128 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Net\e75ac4f1b9e55b9336bde135abc026c8\System.Net.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 330240 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management.I#\a62507f369fa2d0509f29235dd15eed6\System.Management.Instrumentation.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 381440 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IO.Log\f30d56b751b798574e6ce7506347b8d0\System.IO.Log.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 887808 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\e1134326b8b23452e5ac3f9abf949f18\System.DirectoryServices.AccountManagement.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 946176 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\48a7107c1d40b7e7c6aa6dffdc405869\System.Data.Services.Client.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 356864 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\2778851146a53b6e88ced224e6853bba\System.Data.Services.Design.ni.dll
+ 2011-06-30 19:08 . 2011-06-30 19:08 762880 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity.#\4f282df684db617cf70b4ca6041d604f\System.Data.Entity.Design.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 232448 c:\windows\assembly\NativeImages_v2.0.50727_32\sysglobl\788cc2579c0a59283c3a1f24ac41323f\sysglobl.ni.dll
+ 2011-06-30 19:00 . 2011-06-30 19:00 5176320 c:\windows\assembly\NativeImages_v4.0.30319_64\WindowsBase\b85182fc8cb6b68aa8d5895b2dcf50fb\WindowsBase.ni.dll
+ 2011-06-30 19:07 . 2011-06-30 19:07 1430016 c:\windows\assembly\NativeImages_v4.0.30319_64\UIAutomationClients#\fc0f6caeac4b62e4453a981e8dd9e992\UIAutomationClientsideProviders.ni.dll
+ 2011-06-30 19:01 . 2011-06-30 19:01 2447360 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Xaml\3cb1b81e1d90af2a7cc6bd2d4e41fd9e\System.Xaml.ni.dll
+ 2011-06-30 19:07 . 2011-06-30 19:07 5627392 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Form#\9d393c8287d436c1ea11ef2ca2a755ac\System.Windows.Forms.DataVisualization.ni.dll
+ 2011-06-30 19:07 . 2011-06-30 19:07 2222592 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Web.Services\ed8b807859c169bbb7543c43baa3c46f\System.Web.Services.ni.dll
+ 2011-06-30 19:07 . 2011-06-30 19:07 2733568 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Speech\a129d574137f4829ef3a6eacee64094d\System.Speech.ni.dll
+ 2011-06-30 19:07 . 2011-06-30 19:07 1904640 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\8db9c29aee38fc9934549ad6bf59f0d3\System.ServiceModel.Activities.ni.dll
+ 2011-06-30 19:07 . 2011-06-30 19:07 1561600 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel#\0e6ba2c11ddf0405b6c7066a345f7f15\System.ServiceModel.Discovery.ni.dll
+ 2011-06-30 19:02 . 2011-06-30 19:02 3404288 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Seri#\11a7b044d8ed163b690a74486484e08f\System.Runtime.Serialization.ni.dll
+ 2011-06-30 19:02 . 2011-06-30 19:02 1346560 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Runtime.Dura#\abf0cf0b488e39c97d961cd40978e514\System.Runtime.DurableInstancing.ni.dll
+ 2011-06-30 19:03 . 2011-06-30 19:03 1422336 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Printing\cbff165d2eee7f23b284f6830fd267c2\System.Printing.ni.dll
+ 2011-06-30 19:05 . 2011-06-30 19:05 1470464 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Management\2b81b61ad1b36207e49962f22658d6ef\System.Management.ni.dll
+ 2011-06-30 19:05 . 2011-06-30 19:05 1416192 c:\windows\assembly\NativeImages_v4.0.30319_64\System.IdentityModel\f192d95372b472643187607ef7a55117\System.IdentityModel.ni.dll
+ 2011-06-30 19:02 . 2011-06-30 19:02 1096704 c:\windows\assembly\NativeImages_v4.0.30319_64\System.EnterpriseSe#\c22b41c9c0a31a087d16689ac0889607\System.EnterpriseServices.ni.dll
+ 2011-06-30 19:02 . 2011-06-30 19:02 2290688 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Drawing\0d248e7219f87d2a3853f8a1d425965a\System.Drawing.ni.dll
+ 2011-06-30 19:02 . 2011-06-30 19:02 1622016 c:\windows\assembly\NativeImages_v4.0.30319_64\System.DirectorySer#\49467224883b56bb7f006c307dbfeb65\System.DirectoryServices.ni.dll
+ 2011-06-30 19:05 . 2011-06-30 19:05 1217024 c:\windows\assembly\NativeImages_v4.0.30319_64\System.DirectorySer#\2637c192d310b158dd6d00dbfe8a49f0\System.DirectoryServices.AccountManagement.ni.dll
+ 2011-06-30 19:02 . 2011-06-30 19:02 2400256 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Deployment\991208daf29872f43e6684f5c6f100e3\System.Deployment.ni.dll
+ 2011-06-30 19:02 . 2011-06-30 19:02 8580608 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data\e4bc4fb58d9830daa0b8e7e031d3e2ae\System.Data.ni.dll
+ 2011-06-30 19:05 . 2011-06-30 19:05 1791488 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data.Service#\8539eeead63ef32bd938a66589c0816b\System.Data.Services.Client.ni.dll
+ 2011-06-30 19:05 . 2011-06-30 19:05 3380736 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data.Linq\36b03e7d976b707f3c8eef3fbe0e469a\System.Data.Linq.ni.dll
+ 2011-06-30 19:04 . 2011-06-30 19:04 1002496 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ComponentMod#\a2ed1733acb5793b7f6e00d706e7ae1f\System.ComponentModel.Composition.ni.dll
+ 2011-06-30 19:03 . 2011-06-30 19:03 5680640 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Activities\803b90bb06cdd2834f5be8aa194c8bb5\System.Activities.ni.dll
+ 2011-06-30 19:04 . 2011-06-30 19:04 4887040 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Activities.P#\e2d47e53e4ca392fa98d5e23e69827a8\System.Activities.Presentation.ni.dll
+ 2011-06-30 19:04 . 2011-06-30 19:04 2005504 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Activities.C#\2273e9b1f9f04cf906d31ab17f24c279\System.Activities.Core.Presentation.ni.dll
+ 2011-06-30 19:03 . 2011-06-30 19:03 4127232 c:\windows\assembly\NativeImages_v4.0.30319_64\ReachFramework\65847157601a8f77b6e9415eb38d2192\ReachFramework.ni.dll
+ 2011-06-30 19:01 . 2011-06-30 19:01 2032128 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationUI\3275a80a6a180597640f877b30a44395\PresentationUI.ni.dll
+ 2011-06-30 18:59 . 2011-06-30 18:59 1622528 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\d719ea7ff4729771fd367b5da217e474\Microsoft.VisualBasic.Activities.Compiler.ni.dll
+ 2011-06-30 18:59 . 2011-06-30 18:59 1843200 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\b42ecbfe8bc489110fa0aaa1ef379dc2\Microsoft.VisualBasic.Compatibility.ni.dll
+ 2011-06-30 18:59 . 2011-06-30 18:59 2314752 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.VisualBas#\744d38da96091b44ff26a966425f247d\Microsoft.VisualBasic.ni.dll
+ 2011-06-30 19:05 . 2011-06-30 19:05 3312128 c:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.JScript\4351bfa190b7948085e361e0447a9eb8\Microsoft.JScript.ni.dll
+ 2011-06-30 19:13 . 2011-06-30 19:13 1057792 c:\windows\assembly\NativeImages_v4.0.30319_32\UIAutomationClients#\2b22ef03091f893f5b381514149a472b\UIAutomationClientsideProviders.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 1781760 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\19f85a4f6faaeb87a9055ccf23a9f8b7\System.Xaml.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 4545024 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Form#\de9ec945d6cdd90010c824320e8bc332\System.Windows.Forms.DataVisualization.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 1859584 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Web.Services\3e5c07211446b947b1ecb6963946320a\System.Web.Services.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 2011136 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Speech\11a89b103320d603c0bfa48179c3fe1d\System.Speech.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 1387520 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\e492bb75168cc53d57c2dd5e32e9911c\System.ServiceModel.Activities.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 1128960 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel#\b66a8b2c0b8c12540831b41c92bede12\System.ServiceModel.Discovery.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 2637312 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\d0ce480f313eb8be9a3a4dd6d7902325\System.Runtime.Serialization.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 1020928 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Runtime.Dura#\b9f7f5b0b28dd57cb5400c437c388545\System.Runtime.DurableInstancing.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 1050112 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Printing\39c3d706f0fbc21443c7747f203b0b34\System.Printing.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 1218560 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Management\76d7e84f5dca7908b45edba58bd12f48\System.Management.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 1072128 c:\windows\assembly\NativeImages_v4.0.30319_32\System.IdentityModel\02c1363d5beb2ae5c5722bc8f6c5b77a\System.IdentityModel.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 1172992 c:\windows\assembly\NativeImages_v4.0.30319_32\System.DirectorySer#\66c88143bc4b9f4a744b6d65e2c3629a\System.DirectoryServices.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 1878016 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Deployment\03ca38b342903b50623336b29aa507c9\System.Deployment.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 1338880 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Data.Service#\0e629bbc4ccd76e072189ccbc9d7903f\System.Data.Services.Client.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 4121088 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Activities\4d3a20f0598b5da0ebf9e505b51886b9\System.Activities.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 3713024 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Activities.P#\e4566f552e3bda84571e04a7e5d1c41f\System.Activities.Presentation.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 1518080 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Activities.C#\236373716dcb48f5687dd6997559a425\System.Activities.Core.Presentation.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 2859008 c:\windows\assembly\NativeImages_v4.0.30319_32\ReachFramework\48530a5ad6ec27254cde667e02d3f198\ReachFramework.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 1630208 c:\windows\assembly\NativeImages_v4.0.30319_32\PresentationUI\5dcab8576a5e02d7264bfeed28ce69b9\PresentationUI.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 1139200 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\dcc02014610a0955ea2696b29f00abea\Microsoft.VisualBasic.Compatibility.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 1836544 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\b4879bc20d7a718dcb51f0419721e5e5\Microsoft.VisualBasic.ni.dll
+ 2011-06-30 19:10 . 2011-06-30 19:10 1172480 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.VisualBas#\aff7d215dd130cd94c54784c2df60e95\Microsoft.VisualBasic.Activities.Compiler.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 1082368 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.Transacti#\156733cb276aff562e0c39d8b4fde1c6\Microsoft.Transactions.Bridge.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 2452480 c:\windows\assembly\NativeImages_v4.0.30319_32\Microsoft.JScript\2f83c7b63b1443a26f40b9f66bec3e2a\Microsoft.JScript.ni.dll
+ 2011-06-30 18:59 . 2011-06-30 18:59 1458688 c:\windows\assembly\NativeImages_v2.0.50727_64\UIAutomationClients#\e610635cb374d99e2f1da639ab3c4a2f\UIAutomationClientsideProviders.ni.dll
+ 2011-06-30 18:32 . 2011-06-30 18:32 3208192 c:\windows\assembly\NativeImages_v2.0.50727_64\Temp\ZAP9A6C.tmp\Microsoft.JScript.dll
+ 2011-06-30 18:59 . 2011-06-30 18:59 1817600 c:\windows\assembly\NativeImages_v2.0.50727_64\System.WorkflowServ#\ad1d0b1b90359583750a7813f8c927c7\System.WorkflowServices.ni.dll
+ 2011-06-30 18:59 . 2011-06-30 18:59 3335680 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Mobile\a086b42f66cf3ea72e12872d6b90caca\System.Web.Mobile.ni.dll
+ 2011-06-30 18:58 . 2011-06-30 18:58 3041792 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Extensio#\9dd95758fc5553c337a26265e55b07f3\System.Web.Extensions.ni.dll
+ 2011-06-30 18:59 . 2011-06-30 18:59 1155072 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Web.Extensio#\8730b99288f3518a73820106bfdc3a9a\System.Web.Extensions.Design.ni.dll
+ 2011-06-30 18:59 . 2011-06-30 18:59 2727936 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Speech\2a640c9d570eded72c1a5a2b7f3c1b75\System.Speech.ni.dll
+ 2011-06-30 18:58 . 2011-06-30 18:58 2312704 c:\windows\assembly\NativeImages_v2.0.50727_64\System.ServiceModel#\b921807486042f731c2245af7c08816b\System.ServiceModel.Web.ni.dll
+ 2011-06-30 18:32 . 2011-06-30 18:32 1408512 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Management\798dfe98b8deb89bb9b00ff5f04622cc\System.Management.ni.dll
+ 2011-06-30 18:58 . 2011-06-30 18:58 1229824 c:\windows\assembly\NativeImages_v2.0.50727_64\System.DirectorySer#\3f8340399a6322c0eda86dd9ac7114a9\System.DirectoryServices.AccountManagement.ni.dll
+ 2011-06-30 18:58 . 2011-06-30 18:58 1846272 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Services\2a4b31cbc2551043cb1f9db26087fc89\System.Data.Services.ni.dll
+ 2011-06-30 18:58 . 2011-06-30 18:58 1289728 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Service#\ce56e80dd805d1370be7d23604fe9fbc\System.Data.Services.Client.ni.dll
+ 2011-06-30 18:58 . 2011-06-30 18:58 3480576 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Linq\e5644f8995fe92008c6376e6fa097bfb\System.Data.Linq.ni.dll
+ 2011-06-30 18:58 . 2011-06-30 18:58 1080320 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Entity.#\80d9e58f0ae33baa2beb8dedf2975ef5\System.Data.Entity.Design.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 3312128 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Core\cbac0c6212e176a2c2766b717a1a9a82\System.Core.ni.dll
+ 2011-06-30 18:39 . 2011-06-30 18:39 1881088 c:\windows\assembly\NativeImages_v2.0.50727_64\PresentationBuildTa#\6dba89af5c38c7b748c7193b2e2c8f2c\PresentationBuildTasks.ni.dll
+ 2011-06-30 18:39 . 2011-06-30 18:39 3601920 c:\windows\assembly\NativeImages_v2.0.50727_64\Narrator\c17306b7e76a2cdf719519645fb8e268\Narrator.ni.exe
+ 2011-06-30 18:39 . 2011-06-30 18:39 2327040 c:\windows\assembly\NativeImages_v2.0.50727_64\MMCEx\c7ae597f04825ab2a17a5f66e5c5f868\MMCEx.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 7966208 c:\windows\assembly\NativeImages_v2.0.50727_64\MIGUIControls\ee90f1e5e0363ff3c307053d82265044\MIGUIControls.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 2131968 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.VisualBas#\64824259035b565d3e8aa3053f319a0b\Microsoft.VisualBasic.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 1131008 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\e2dab5d88b2e1d66ab0e014a01a1fe2a\Microsoft.PowerShell.Commands.Management.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 2175488 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\924a1550459060e1dfc45d6fb3726739\Microsoft.PowerShell.Commands.Utility.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 2105344 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\729d5cc07f5ea4e78899b135fb373f02\Microsoft.PowerShell.GPowerShell.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 5351424 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.PowerShel#\1675b40867bcd8f7449924531487dfb8\Microsoft.PowerShell.Editor.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 1508864 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.MediaCent#\5ae76be4484ce454e39e71b15d7ad40a\Microsoft.MediaCenter.Bml.ni.dll
+ 2011-06-30 18:38 . 2011-06-30 18:38 3208192 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.JScript\9300e82370041e11d51c54b43e20d40c\Microsoft.JScript.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 2365952 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Ink\72b382bc27533e2af6f7858ef51a3df3\Microsoft.Ink.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 2677760 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Tas#\e10161b77d8e76c8a5d2d0d12820392e\Microsoft.Build.Tasks.v3.5.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 2218496 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Tas#\4bee5dc75502e0c7f89940ae9fc763fc\Microsoft.Build.Tasks.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 1137152 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Eng#\930be5380b6cc5a1537644779c51a64a\Microsoft.Build.Engine.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 2544640 c:\windows\assembly\NativeImages_v2.0.50727_64\Microsoft.Build.Eng#\2458288e73aaef081dbc85f263f1d1ec\Microsoft.Build.Engine.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 1047552 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClients#\c38fdbce21ee0675e9ab5ae0faed57b5\UIAutomationClientsideProviders.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 1358336 c:\windows\assembly\NativeImages_v2.0.50727_32\System.WorkflowServ#\552f8aaaf0883da379ea52a663b059c1\System.WorkflowServices.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 2209792 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Mobile\1209d7e54ef107a1fff6a2b394079f85\System.Web.Mobile.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 2402816 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\ed9f2c61572eece33a5e7a2a90aefb24\System.Web.Extensions.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 1917440 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Speech\c1c431a434b0c86097b2cecd0c79698b\System.Speech.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 1705984 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\c7f98d3d0c1e5f3e7bd477034c3a0779\System.ServiceModel.Web.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 1328640 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Services\2a85eefc9693c9479eb6fb938c8b15e8\System.Data.Services.ni.dll
+ 2011-06-30 19:09 . 2011-06-30 19:09 2516992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Linq\ccce5d4ba4ce73411a2dca61a690a4df\System.Data.Linq.ni.dll
+ 2011-06-30 19:08 . 2011-06-30 19:08 9921024 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity\675dac95dbdc1037c67db47692afebb1\System.Data.Entity.ni.dll
+ 2011-06-30 19:03 . 2011-06-30 19:03 17288192 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Windows.Forms\ddee14aa45752907499bd27e0d8915b4\System.Windows.Forms.ni.dll
+ 2011-06-30 19:06 . 2011-06-30 19:06 24483840 c:\windows\assembly\NativeImages_v4.0.30319_64\System.ServiceModel\2dbeb0d8155771a760efb0a97f139666\System.ServiceModel.ni.dll
+ 2011-06-30 19:05 . 2011-06-30 19:05 18434048 c:\windows\assembly\NativeImages_v4.0.30319_64\System.Data.Entity\5a3b90fdffe37b03bb5046c34c7ee8e3\System.Data.Entity.ni.dll
+ 2011-06-30 19:01 . 2011-06-30 19:01 23242240 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationFramewo#\7c15f0bf45ad9ac59ffb5e225ca82f82\PresentationFramework.ni.dll
+ 2011-06-30 19:00 . 2011-06-30 19:00 15102976 c:\windows\assembly\NativeImages_v4.0.30319_64\PresentationCore\5977bc366d13d0891536acdbdea28c67\PresentationCore.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 17996800 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\dc31b22f78cb510bf470f0ab5ef65816\System.ServiceModel.ni.dll
+ 2011-06-30 19:12 . 2011-06-30 19:12 13325312 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Data.Entity\978e8514751373383f79c3fdd667aa2b\System.Data.Entity.ni.dll
+ 2011-06-30 18:32 . 2011-06-30 18:32 11898880 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Management.A#\6389bbd53adfbee7d0014e287f946d7e\System.Management.Automation.ni.dll
+ 2011-06-30 18:58 . 2011-06-30 18:58 13757952 c:\windows\assembly\NativeImages_v2.0.50727_64\System.Data.Entity\49b9167e1ccc08dfdf80d44a1cc1de78\System.Data.Entity.ni.dll
+ 2011-06-30 18:31 . 2011-06-30 18:31 25462272 c:\windows\assembly\NativeImages_v2.0.50727_64\ehshell\1d3a030b54b9e98771e49afe92ed1e77\ehshell.ni.dll
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Infium"="c:\program files (x86)\QIP 2010\qip.exe" [2010-10-12 5810128]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-07-14 1475072]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2011-05-26 15147400]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-03-29 98304]
"LManager"="c:\program files (x86)\Launch Manager\LManager.exe" [2010-03-03 1300560]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2010-3-26 1125152]
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer2"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 gupdate;Služba Google Update (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-13 135664]
R3 btwampfl;Bluetooth AMP USB Filter;c:\windows\system32\drivers\btwampfl.sys [x]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [x]
R3 gupdatem;Služba Google Update (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-13 135664]
R3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\DRIVERS\MpNWMon.sys [x]
R3 NTIBackupSvc;NTI Backup Now 5 Backup Service;c:\program files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2009-11-06 50432]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
S2 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe [2010-03-03 325200]
S2 ePowerSvc;Acer ePower Service;c:\program files\eMachines\eMachines Power Management\ePowerSvc.exe [2010-03-17 866336]
S2 GREGService;GREGService;c:\program files (x86)\eMachines\Registration\GREGsvc.exe [2010-01-08 23584]
S2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;c:\program files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2009-11-06 144640]
S2 TeamViewer6;TeamViewer 6;c:\program files (x86)\TeamViewer\Version6\TeamViewer_Service.exe [2011-01-27 2253688]
S2 Updater Service;Updater Service;c:\program files\eMachines\eMachines Updater\UpdaterService.exe [2010-01-28 243232]
S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atipmdag.sys [x]
S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys [x]
S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys [x]
.
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"combofix"="c:\combofix\CF25620.cfxxe" [X]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2009-12-15 9644576]
"PLFSetI"="c:\windows\PLFSetI.exe" [2010-01-13 206208]
"SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [BU]
"Acer ePower Management"="c:\program files\eMachines\eMachines Power Management\ePowerTray.exe" [2010-03-17 860704]
"MSSE"="c:\program files\Microsoft Security Essentials\msseces.exe" [2010-09-15 1448568]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SYSTEM32\blank.htm
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Odeslat obrázek do zařízení &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Odeslat stránku do zařízení &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: WikiKomentáře Google... - c:\program files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_6CE5017F567343CA.dll/cmsidewiki.html
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\08d2xksz.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - Ext: Skype extension: {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} - c:\program files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
AddRemove-McAfee Security Scan - c:\program files (x86)\McAfee Security Scan\uninstall.exe
AddRemove-{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A} - c:\program files (x86)\McAfee\SiteAdvisor\Uninstall.exe
.
.
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\SysWOW64\RunDll32.exe
c:\program files (x86)\Launch Manager\LMworker.exe
c:\program files (x86)\Skype\Plugin Manager\skypePM.exe
.
**************************************************************************
.
Celkový čas: 2011-06-30 21:39:21 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-06-30 19:39
ComboFix2.txt 2011-06-30 18:44
.
Před spuštěním: Volných bajtů: 87 586 009 088
Po spuštění: Volných bajtů: 87 154 450 432
.
- - End Of File - - 65AADE3AF50BA85E6405D9AA6F51045C

Uživatelský avatar
Žbeky
Moderátor
Guru Level 13
Guru Level 13
Příspěvky: 22288
Registrován: květen 08
Bydliště: Vsetín - Pardubice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Žbeky » 01 črc 2011 15:28

ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall

vyčisti systém CCleanerem

a použij i T-Cleaner
smaže vše po Combu,MWAVu atd.-stáhneš>spustíš

pozn. před stažením T-Cleaneru a po dobu čištění deaktivuj AVG , Avast,Avira či Microsoft Security Essentials následně T-Cleaner smaž a zapni si AVG , Avast, Avira či Microsoft Security Essentials

+ Nový log z HJT

Jak se chová PC?
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.

HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra

Uživatelský avatar
cosmosD
Level 3
Level 3
Příspěvky: 437
Registrován: únor 11
Bydliště: Praha
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod cosmosD » 06 črc 2011 17:30

Děkuji za rady, vše pomohlo. :)

Uživatelský avatar
Žbeky
Moderátor
Guru Level 13
Guru Level 13
Příspěvky: 22288
Registrován: květen 08
Bydliště: Vsetín - Pardubice
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Žbeky » 06 črc 2011 19:16

Dej sem ještě ten HJT
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.

HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 64 hostů