+ 2012-06-13 12:14 . 2012-06-13 12:14 3186688 c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
- 2011-06-23 00:28 . 2011-06-23 00:34 2048000 c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
+ 2012-06-13 12:14 . 2012-06-13 12:14 2048000 c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
+ 2012-06-13 12:14 . 2012-06-13 12:14 5025792 c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
- 2011-06-23 00:34 . 2011-06-23 00:34 5025792 c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2012-01-11 00:48 . 2012-01-11 00:48 1277952 c:\windows\assembly\GAC_MSIL\System.Web.Extensions\3.5.0.0__31bf3856ad364e35\System.Web.Extensions.dll
- 2010-11-05 15:24 . 2010-11-05 15:24 1277952 c:\windows\assembly\GAC_MSIL\System.Web.Extensions\3.5.0.0__31bf3856ad364e35\System.Web.Extensions.dll
+ 2011-06-29 14:23 . 2011-06-29 14:23 2682880 c:\windows\assembly\GAC_MSIL\System.Management.Automation\1.0.0.0__31bf3856ad364e35\System.Management.Automation.dll
- 2011-06-23 00:34 . 2011-06-23 00:34 5062656 c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
+ 2012-06-13 12:14 . 2012-06-13 12:14 5062656 c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
+ 2012-05-10 05:50 . 2012-05-10 05:50 5283840 c:\windows\assembly\GAC_MSIL\PresentationFramework\3.0.0.0__31bf3856ad364e35\PresentationFramework.dll
+ 2012-06-13 12:14 . 2012-06-13 12:14 5246976 c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
+ 2012-06-13 12:14 . 2012-06-13 12:14 2933248 c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
- 2011-06-23 00:34 . 2011-06-23 00:34 2933248 c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
+ 2012-05-10 05:50 . 2012-05-10 05:50 4214784 c:\windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll
- 2011-06-23 00:34 . 2011-06-23 00:34 4550656 c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2012-06-13 12:14 . 2012-06-13 12:14 4550656 c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
- 2010-11-08 13:29 . 2010-11-08 13:29 1232896 c:\windows\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
+ 2012-01-11 00:48 . 2012-01-11 00:48 1232896 c:\windows\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
+ 2012-01-11 00:48 . 2012-01-11 00:48 2064384 c:\windows\assembly\GAC\System.Windows.Forms\1.0.5000.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2012-01-11 00:48 . 2012-01-11 00:48 1269760 c:\windows\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
+ 2012-08-11 23:01 . 2012-08-11 23:01 2846720 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-06-25 16:16 . 2011-06-25 16:16 2846720 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2012-08-11 23:01 . 2012-08-11 23:01 2676224 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2011-06-25 16:16 . 2011-06-25 16:16 2676224 c:\windows\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2011-08-28 14:05 . 2008-04-14 12:00 2843136 c:\windows\$NtUninstallKB942288-v3$\msi.dll
+ 2012-07-12 00:04 . 2009-07-31 09:05 1372672 c:\windows\$NtUninstallKB2719985$\msxml6.dll
+ 2012-07-12 00:04 . 2010-06-14 07:43 1172480 c:\windows\$NtUninstallKB2719985$\msxml3.dll
+ 2012-07-12 00:05 . 2012-05-15 13:55 1863168 c:\windows\$NtUninstallKB2718523$\win32k.sys
+ 2012-06-13 12:00 . 2012-04-11 13:55 1862272 c:\windows\$NtUninstallKB2709162$\win32k.sys
+ 2012-06-13 12:15 . 2012-04-11 13:55 2150400 c:\windows\$NtUninstallKB2707511$\ntoskrnl.exe
+ 2012-06-13 12:15 . 2012-04-11 13:55 2028544 c:\windows\$NtUninstallKB2707511$\ntkrpamp.exe
+ 2012-06-13 12:15 . 2012-04-11 13:55 2028544 c:\windows\$NtUninstallKB2707511$\ntkrnlpa.exe
+ 2012-06-13 12:15 . 2012-04-11 13:55 2150400 c:\windows\$NtUninstallKB2707511$\ntkrnlmp.exe
+ 2012-07-12 00:05 . 2011-01-21 14:44 8466432 c:\windows\$NtUninstallKB2691442$\shell32.dll
+ 2012-05-10 05:45 . 2012-02-03 09:57 1860096 c:\windows\$NtUninstallKB2676562$\win32k.sys
+ 2012-05-10 05:45 . 2011-10-26 10:49 2150912 c:\windows\$NtUninstallKB2676562$\ntoskrnl.exe
+ 2012-05-10 05:45 . 2011-10-26 10:49 2029056 c:\windows\$NtUninstallKB2676562$\ntkrpamp.exe
+ 2012-05-10 05:45 . 2011-10-26 10:49 2029056 c:\windows\$NtUninstallKB2676562$\ntkrnlpa.exe
+ 2012-05-10 05:45 . 2011-10-26 10:49 2150912 c:\windows\$NtUninstallKB2676562$\ntkrnlmp.exe
+ 2012-02-15 13:03 . 2011-11-23 14:40 1859584 c:\windows\$NtUninstallKB2660465$\win32k.sys
+ 2012-03-13 22:53 . 2012-01-12 17:20 1859968 c:\windows\$NtUninstallKB2641653$\win32k.sys
+ 2011-12-13 20:52 . 2011-09-06 14:10 1858944 c:\windows\$NtUninstallKB2639417$\win32k.sys
+ 2011-12-13 20:53 . 2010-12-09 15:14 2150912 c:\windows\$NtUninstallKB2633171$\ntoskrnl.exe
+ 2011-12-13 20:53 . 2010-12-09 15:14 2029056 c:\windows\$NtUninstallKB2633171$\ntkrpamp.exe
+ 2011-12-13 20:53 . 2010-12-09 15:14 2029056 c:\windows\$NtUninstallKB2633171$\ntkrnlpa.exe
+ 2011-12-13 20:53 . 2010-12-09 15:14 2150912 c:\windows\$NtUninstallKB2633171$\ntkrnlmp.exe
+ 2012-01-11 23:46 . 2010-02-05 18:27 1294336 c:\windows\$NtUninstallKB2631813$\quartz.dll
+ 2011-12-13 20:52 . 2010-07-16 12:00 1287680 c:\windows\$NtUninstallKB2624667$\ole32.dll
+ 2011-10-13 12:04 . 2011-06-06 11:35 1858944 c:\windows\$NtUninstallKB2567053$\win32k.sys
+ 2011-07-13 12:00 . 2011-03-03 13:53 1857920 c:\windows\$NtUninstallKB2555917$\win32k.sys
+ 2012-06-05 15:48 . 2012-06-05 15:48 1447936 c:\windows\$hf_mig$\KB2719985\SP3QFE\msxml6.dll
+ 2012-06-05 15:48 . 2012-06-05 15:48 1172480 c:\windows\$hf_mig$\KB2719985\SP3QFE\msxml3.dll
+ 2012-07-11 16:34 . 2012-06-13 13:55 1875072 c:\windows\$hf_mig$\KB2718523\SP3QFE\win32k.sys
+ 2012-05-15 13:55 . 2012-05-15 13:55 1872128 c:\windows\$hf_mig$\KB2709162\SP3QFE\win32k.sys
+ 2012-05-05 03:14 . 2012-05-05 03:14 2194816 c:\windows\$hf_mig$\KB2707511\SP3QFE\ntoskrnl.exe
+ 2012-05-05 03:14 . 2012-05-05 03:14 2028544 c:\windows\$hf_mig$\KB2707511\SP3QFE\ntkrpamp.exe
+ 2012-05-05 03:14 . 2012-05-05 03:14 2071296 c:\windows\$hf_mig$\KB2707511\SP3QFE\ntkrnlpa.exe
+ 2012-05-05 03:14 . 2012-05-05 03:14 2150400 c:\windows\$hf_mig$\KB2707511\SP3QFE\ntkrnlmp.exe
+ 2012-06-13 11:10 . 2012-05-11 14:43 1214464 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\urlmon.dll
+ 2012-06-13 11:10 . 2012-05-11 14:43 6009344 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\mshtml.dll
+ 2012-06-13 11:10 . 2012-05-11 14:43 2001408 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\iertutil.dll
+ 2012-06-08 14:24 . 2012-06-08 14:24 8467968 c:\windows\$hf_mig$\KB2691442\SP3QFE\shell32.dll
+ 2012-04-11 13:51 . 2012-04-11 13:51 1871360 c:\windows\$hf_mig$\KB2676562\SP3QFE\win32k.sys
+ 2012-04-11 13:51 . 2012-04-11 13:51 2194816 c:\windows\$hf_mig$\KB2676562\SP3QFE\ntoskrnl.exe
+ 2012-04-11 13:50 . 2012-04-11 13:50 2028544 c:\windows\$hf_mig$\KB2676562\SP3QFE\ntkrpamp.exe
+ 2012-04-11 13:51 . 2012-04-11 13:51 2071296 c:\windows\$hf_mig$\KB2676562\SP3QFE\ntkrnlpa.exe
+ 2012-04-11 13:50 . 2012-04-11 13:50 2150400 c:\windows\$hf_mig$\KB2676562\SP3QFE\ntkrnlmp.exe
+ 2012-04-11 12:53 . 2012-03-01 10:56 1214464 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\urlmon.dll
+ 2012-04-11 12:53 . 2012-03-01 10:56 5980672 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\mshtml.dll
+ 2012-04-11 12:53 . 2012-03-01 10:56 2001408 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\iertutil.dll
+ 2012-01-12 17:21 . 2012-01-12 17:21 1869056 c:\windows\$hf_mig$\KB2660465\SP3QFE\win32k.sys
+ 2012-02-15 12:33 . 2011-12-17 19:41 1214464 c:\windows\$hf_mig$\KB2647516-IE8\SP3QFE\urlmon.dll
+ 2012-02-15 12:33 . 2011-12-17 19:41 5980160 c:\windows\$hf_mig$\KB2647516-IE8\SP3QFE\mshtml.dll
+ 2012-02-15 12:33 . 2011-12-17 19:41 2001408 c:\windows\$hf_mig$\KB2647516-IE8\SP3QFE\iertutil.dll
+ 2012-03-13 18:29 . 2012-02-03 09:56 1869184 c:\windows\$hf_mig$\KB2641653\SP3QFE\win32k.sys
+ 2011-12-13 20:52 . 2011-11-23 14:39 1868544 c:\windows\$hf_mig$\KB2639417\SP3QFE\win32k.sys
+ 2011-12-13 20:53 . 2011-10-26 10:49 2194944 c:\windows\$hf_mig$\KB2633171\SP3QFE\ntoskrnl.exe
+ 2011-12-13 20:53 . 2011-10-26 10:49 2029056 c:\windows\$hf_mig$\KB2633171\SP3QFE\ntkrpamp.exe
+ 2011-10-26 15:19 . 2011-10-26 15:19 2071552 c:\windows\$hf_mig$\KB2633171\SP3QFE\ntkrnlpa.exe
+ 2011-12-13 20:53 . 2011-10-26 10:49 2150912 c:\windows\$hf_mig$\KB2633171\SP3QFE\ntkrnlmp.exe
+ 2011-11-03 15:27 . 2011-11-03 15:27 1294848 c:\windows\$hf_mig$\KB2631813\SP3QFE\quartz.dll
+ 2011-12-13 20:51 . 2011-11-01 16:05 1288704 c:\windows\$hf_mig$\KB2624667\SP3QFE\ole32.dll
+ 2011-12-13 20:54 . 2011-11-04 19:12 1214464 c:\windows\$hf_mig$\KB2618444-IE8\SP3QFE\urlmon.dll
+ 2011-12-13 20:54 . 2011-11-04 19:12 5978624 c:\windows\$hf_mig$\KB2618444-IE8\SP3QFE\mshtml.dll
+ 2011-12-13 20:54 . 2011-11-04 19:12 2001408 c:\windows\$hf_mig$\KB2618444-IE8\SP3QFE\iertutil.dll
+ 2011-10-13 11:03 . 2011-08-22 23:40 1214464 c:\windows\$hf_mig$\KB2586448-IE8\SP3QFE\urlmon.dll
+ 2011-10-13 11:03 . 2011-10-03 08:30 5972992 c:\windows\$hf_mig$\KB2586448-IE8\SP3QFE\mshtml.dll
+ 2011-10-13 11:03 . 2011-08-22 23:40 2001408 c:\windows\$hf_mig$\KB2586448-IE8\SP3QFE\iertutil.dll
+ 2011-09-06 14:08 . 2011-09-06 14:08 1867904 c:\windows\$hf_mig$\KB2567053\SP3QFE\win32k.sys
+ 2011-08-11 13:43 . 2011-06-23 18:29 1214464 c:\windows\$hf_mig$\KB2559049-IE8\SP3QFE\urlmon.dll
+ 2011-08-11 13:43 . 2011-07-25 15:07 5971456 c:\windows\$hf_mig$\KB2559049-IE8\SP3QFE\mshtml.dll
+ 2011-08-11 13:43 . 2011-06-23 18:29 1992192 c:\windows\$hf_mig$\KB2559049-IE8\SP3QFE\iertutil.dll
+ 2011-06-06 11:36 . 2011-06-06 11:36 1867904 c:\windows\$hf_mig$\KB2555917\SP3QFE\win32k.sys
- 2010-04-02 16:17 . 2010-04-02 16:17 13642904 c:\windows\system32\xlivefnt.dll
+ 2011-04-09 16:55 . 2011-04-09 16:55 13642904 c:\windows\system32\xlivefnt.dll
+ 2011-04-09 16:55 . 2011-04-09 16:55 15453336 c:\windows\system32\xlive.dll
+ 2011-12-02 02:20 . 2010-08-26 02:01 15876096 c:\windows\system32\ReinstallBackups\0002\DriverFiles\B104286\atioglxx.dll
+ 2010-11-05 13:54 . 2012-08-17 08:18 59884088 c:\windows\system32\MRT.exe
+ 2011-10-08 20:51 . 2010-09-22 11:12 19087360 c:\windows\system32\mkl_blueripple.dll
+ 2009-03-08 03:39 . 2012-07-02 21:08 11111424 c:\windows\system32\ieframe.dll
+ 2010-11-05 13:56 . 2012-07-02 21:08 11111424 c:\windows\system32\dllcache\ieframe.dll
+ 2010-11-05 14:49 . 2011-10-26 02:16 18968576 c:\windows\system32\atioglxx.dll
+ 2011-10-25 20:20 . 2011-10-25 20:20 13950464 c:\windows\system32\amdocl.dll
+ 2011-12-26 16:02 . 2011-12-26 16:02 12482048 c:\windows\Microsoft.NET\Framework\v1.1.4322\Updates\M2656353\M2656353Uninstall.msp
+ 2011-12-17 17:33 . 2011-12-17 17:33 32140288 c:\windows\Installer\6741a10.msi
+ 2011-10-01 15:50 . 2011-10-01 15:50 14308864 c:\windows\Installer\664aab.msi
+ 2011-10-13 12:08 . 2011-10-13 12:08 20333568 c:\windows\Installer\37a6fd.msp
+ 2011-07-11 18:43 . 2011-07-11 18:43 11641344 c:\windows\Installer\37a6f1.msp
+ 2011-07-11 15:19 . 2011-07-11 15:19 10619904 c:\windows\Installer\37a6e7.msp
+ 2011-07-12 13:50 . 2011-07-12 13:50 17555968 c:\windows\Installer\37a6da.msp
+ 2012-02-16 13:00 . 2012-02-16 13:00 20333056 c:\windows\Installer\325337.msp
+ 2012-05-21 23:49 . 2012-05-21 23:49 23771136 c:\windows\Installer\30ea8b2.msp
+ 2011-10-26 21:46 . 2011-10-26 21:46 11580928 c:\windows\Installer\303603.msp
+ 2011-12-26 08:02 . 2011-12-26 08:02 19677184 c:\windows\Installer\2834d15.msp
+ 2012-04-06 00:12 . 2012-04-06 00:12 15709696 c:\windows\Installer\1c41c0.msp
+ 2012-01-04 00:25 . 2012-01-04 00:25 17751552 c:\windows\Installer\1c41b0.msp
+ 2012-04-06 01:13 . 2012-04-06 01:13 16527872 c:\windows\Installer\1c418c.msp
+ 2011-12-15 11:40 . 2011-12-15 11:40 23374336 c:\windows\Installer\1c4180.msp
+ 2012-05-10 05:44 . 2012-05-10 05:44 20343808 c:\windows\Installer\1c4160.msp
+ 2011-04-28 18:28 . 2011-04-28 18:28 62802432 c:\windows\Installer\12fe005.msp
+ 2011-06-29 14:28 . 2011-06-29 14:28 20333056 c:\windows\Installer\12fdfb7.msp
+ 2011-03-28 01:27 . 2011-03-28 01:27 15456256 c:\windows\Installer\12fdfa9.msp
+ 2011-03-18 21:01 . 2011-03-18 21:01 20525416 c:\windows\Installer\$PatchCache$\Managed\00004109C10000000000000000F01FEC\14.0.6029\OART.DLL
+ 2011-04-06 18:53 . 2011-04-06 18:53 72521600 c:\windows\Installer\$PatchCache$\Managed\00004109C10000000000000000F01FEC\14.0.6029\MSORES.DLL
+ 2010-03-13 13:08 . 2010-03-13 13:08 20516712 c:\windows\Installer\$PatchCache$\Managed\00004109C10000000000000000F01FEC\14.0.4763\OART.DLL
+ 2010-03-22 18:36 . 2010-03-22 18:36 72521600 c:\windows\Installer\$PatchCache$\Managed\00004109C10000000000000000F01FEC\14.0.4763\MSORES.DLL
+ 2010-03-01 03:09 . 2010-03-01 03:09 13988704 c:\windows\Installer\$PatchCache$\Managed\00004109C10000000000000000F01FEC\14.0.4763\MSACCESS.EXE
+ 2012-08-17 08:16 . 2012-05-11 18:14 11111424 c:\windows\ie8updates\KB2722913-IE8\ieframe.dll
+ 2012-06-13 12:04 . 2012-03-02 03:59 11082752 c:\windows\ie8updates\KB2699988-IE8\ieframe.dll
+ 2012-04-12 00:06 . 2011-12-18 13:42 11082240 c:\windows\ie8updates\KB2675157-IE8\ieframe.dll
+ 2012-02-15 13:03 . 2011-11-05 13:13 11081728 c:\windows\ie8updates\KB2647516-IE8\ieframe.dll
+ 2011-12-13 20:54 . 2011-08-23 15:41 11081728 c:\windows\ie8updates\KB2618444-IE8\ieframe.dll
+ 2011-10-13 12:04 . 2011-06-23 18:31 11081728 c:\windows\ie8updates\KB2586448-IE8\ieframe.dll
+ 2011-08-11 17:53 . 2011-04-26 08:06 11081728 c:\windows\ie8updates\KB2559049-IE8\ieframe.dll
+ 2012-06-13 12:11 . 2012-06-13 12:11 13197824 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\54d61af44b1dedee6aea0d1bbc46b13a\System.Windows.Forms.ni.dll
+ 2012-06-14 05:08 . 2012-06-14 05:08 12076544 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Web\06694670b427e38e8f3df4b7b0ff8e0d\System.Web.ni.dll
+ 2012-05-10 10:37 . 2012-05-10 10:37 17996800 c:\windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\5be1370b1331393f73af710d0d71b02d\System.ServiceModel.ni.dll
+ 2012-06-13 12:11 . 2012-06-13 12:11 11002880 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Design\e2fb9536a5cdf2c136b1c2f2c65cee11\System.Design.ni.dll
+ 2012-05-10 10:36 . 2012-05-10 10:36 13324288 c:\windows\assembly\NativeImages_v4.0.30319_32\System.Data.Entity\65d0d6f4cdbc47ecd5cce9e959827fe8\System.Data.Entity.ni.dll
+ 2012-06-13 12:07 . 2012-06-13 12:07 17998848 c:\windows\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\5d585d5428ce69abc28238ffa9f4d3a2\PresentationFramework.ni.dll
+ 2012-06-13 12:06 . 2012-06-13 12:06 11451904 c:\windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\fe068ba4be8f6cb7d6a58bccff05c75e\PresentationCore.ni.dll
+ 2012-05-10 05:48 . 2012-05-10 05:48 14412800 c:\windows\assembly\NativeImages_v4.0.30319_32\mscorlib\3953b1d8b9b57e4957bff8f58145384e\mscorlib.ni.dll
+ 2012-05-10 05:57 . 2012-05-10 05:57 12430848 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\995fcf39ead2c2a53e084505c2c67d49\System.Windows.Forms.ni.dll
+ 2012-06-13 12:16 . 2012-06-13 12:16 12433920 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\01abbadafaf265d9f4ac9bbb247acb98\System.Windows.Forms.ni.dll
+ 2012-06-14 05:08 . 2012-06-14 05:08 11817472 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web\dbc413807cb7360b3e26ef3ca1d54f9a\System.Web.ni.dll
+ 2012-05-10 10:27 . 2012-05-10 10:27 11817472 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web\7861cd979ea5db3fb7d30ed94fb0edd2\System.Web.ni.dll
+ 2012-05-10 10:24 . 2012-05-10 10:25 17403904 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\bc254d2fa26664898ae21d45643bc194\System.ServiceModel.ni.dll
+ 2012-06-13 12:16 . 2012-06-13 12:16 10682368 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Design\f73a8455f384e90f6925309336fece24\System.Design.ni.dll
+ 2012-05-10 05:57 . 2012-05-10 05:57 10683392 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Design\a9256d2ad7e4be2bbb4e9b18c3997b84\System.Design.ni.dll
+ 2012-06-13 12:16 . 2012-06-13 12:16 14329856 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\e4ecfaaf5417aceecb7fa8abddf06113\PresentationFramework.ni.dll
+ 2012-05-10 05:56 . 2012-05-10 05:56 14329856 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\5b8ff47c1db373a2a4c638ca31988bd2\PresentationFramework.ni.dll
+ 2012-06-13 12:15 . 2012-06-13 12:15 12218368 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\f33e2a4d9b385234406fa2d662f78875\PresentationCore.ni.dll
+ 2012-05-10 05:56 . 2012-05-10 05:56 12218368 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\4eb3cd1f1d5a83617524a9dfb96a657d\PresentationCore.ni.dll
+ 2012-05-10 05:55 . 2012-05-10 05:55 11492352 c:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\e337c89bc9f81b69d7237aa70e935900\mscorlib.ni.dll
+ 2012-06-13 11:10 . 2012-05-11 14:43 11112960 c:\windows\$hf_mig$\KB2699988-IE8\SP3QFE\ieframe.dll
+ 2012-04-11 12:53 . 2012-03-01 10:56 11085312 c:\windows\$hf_mig$\KB2675157-IE8\SP3QFE\ieframe.dll
+ 2012-02-15 12:33 . 2011-12-17 19:41 11085312 c:\windows\$hf_mig$\KB2647516-IE8\SP3QFE\ieframe.dll
+ 2011-12-13 20:54 . 2011-11-04 19:12 11083776 c:\windows\$hf_mig$\KB2618444-IE8\SP3QFE\ieframe.dll
+ 2011-10-13 11:03 . 2011-08-22 23:40 11084288 c:\windows\$hf_mig$\KB2586448-IE8\SP3QFE\ieframe.dll
+ 2011-06-24 22:59 . 2011-06-24 22:59 11083776 c:\windows\$hf_mig$\KB2559049-IE8\SP3QFE\ieframe.dll
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AlcoholAutomount"="c:\program files\Alcohol Soft\Alcohol 120\axcmd.exe" [2009-09-18 205976]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2009-04-23 691656]
"ICQ"="c:\program files\ICQ7.5\ICQ.exe" [2011-08-01 124480]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2008-05-16 16862720]
"VirtualCloneDrive"="c:\program files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" [2011-03-07 89456]
"amd_dc_opt"="c:\program files\AMD\Dual-Core Optimizer\amd_dc_opt.exe" [2008-07-22 77824]
"Adobe Photo Downloader"="d:\programky\Adobe Photoshop Elements\Adobe Photoshop Elements\apdproxy.exe" [2007-09-10 67488]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-10-25 98304]
"RoccatIsku"="c:\program files\ROCCAT\Isku Keyboard\IskuMonitor.EXE" [2011-05-12 539688]
"ProfilerU"="c:\program files\Saitek\SD6\Software\ProfilerU.exe" [2010-07-29 227840]
"SaiMfd"="c:\program files\Saitek\SD6\Software\SaiMfd.exe" [2010-07-29 123392]
"4-Day Forecast"="d:\programky\Počasí\4-Day Forecast.exe" [2008-07-02 1064960]
"TkBellExe"="c:\program files\Real\RealPlayer\update\realsched.exe" [2012-05-26 296056]
"SwitchBoard"="c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"AdobeCS5.5ServiceManager"="c:\program files\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" [2011-01-12 1523360]
"LogMeIn Hamachi Ui"="c:\program files\LogMeIn Hamachi\hamachi-2-ui.exe" [2012-06-27 1996200]
"Malwarebytes' Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-07-03 462920]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes Anti-Malware"="c:\program files\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-07-03 462920]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\Milan\Nabídka Start\Programy\Po spuštění\
OpenOffice.org 3.2.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2010-6-7 1195520]
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice]
@="Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
2011-03-30 04:59 937920 ----a-r- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2011-06-08 04:02 37296 -c--a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATICustomerCare]
2010-03-04 13:31 311296 -c--a-w- c:\program files\ATI\ATICustomerCare\ATICustomerCare.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
2008-01-22 10:13 152872 ----a-w- c:\program files\Common Files\Ahead\Lib\NMBgMonitor.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2008-05-28 07:27 570664 -c--a-w- c:\program files\Common Files\Ahead\Lib\NeroCheck.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroHomeFirstStart]
2008-01-22 10:13 16680 -c--a-w- c:\program files\Common Files\Ahead\Lib\NMFirstStart.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
2011-06-09 11:06 254696 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
"FirewallOverride"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
"DisableNotifications"= 1 (0x1)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\Program Files\\Xfire\\Xfire.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"d:\\Hry\\TM Forewer\\TmNationsForever\\TmForever.exe"=
"d:\\Hry\\Trackmania\\TrackMania Nations ESWC\\TmNationsESWC.exe"=
"d:\\Hry\\TMU Forever\\TmUnitedForever\\TmForever.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\Java\\jre6\\bin\\javaw.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"d:\\Hry\\BFBC2\\BFBC2Updater.exe"=
"d:\\Hry\\BFBC2\\BFBC2Game.exe"=
"c:\\Program Files\\Java\\jre6\\bin\\java.exe"=
"d:\\Hry\\Terraria\\terraria\\Terraria.exe"=
"c:\\Program Files\\Google\\Google Earth\\client\\googleearth.exe"=
"c:\\Program Files\\TeamViewer\\Version6\\TeamViewer.exe"=
"c:\\Program Files\\TeamViewer\\Version6\\TeamViewer_Service.exe"=
"c:\\Program Files\\Steam\\Steam.exe"=
"c:\\Program Files\\Ubisoft\\Ubisoft Game Launcher\\UbisoftGameLauncher.exe"=
"d:\\Hry\\Dirt3\\dirt3_game.exe"=
"c:\\Program Files\\ICQ7.5\\ICQ.exe"=
"c:\\Program Files\\Pando Networks\\Media Booster\\PMB.exe"=
"c:\\Program Files\\Opera\\pluginwrapper\\opera_plugin_wrapper.exe"=
"d:\\Hry\\Mass Effect\\Binaries\\MassEffect.exe"=
"d:\\Hry\\Mass Effect\\MassEffectLauncher.exe"=
"c:\\Documents and Settings\\All Users\\Data aplikaci\\Battle.net\\Agent\\Agent.1225\\Agent.exe"=
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"56964:TCP"= 56964:TCP:Pando Media Booster
"56964:UDP"= 56964:UDP:Pando Media Booster
"56394:TCP"= 56394:TCP:Pando Media Booster
"56394:UDP"= 56394:UDP:Pando Media Booster
.
R0 SmartDefragDriver;SmartDefragDriver;c:\windows\system32\drivers\SmartDefragDriver.sys [13.12.2011 22:36 14776]
R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [26.1.2011 0:55 436792]
R2 AdvancedSystemCareService5;Advanced SystemCare Service 5;c:\program files\IObit\Advanced SystemCare 5\ASCService.exe [13.12.2011 22:36 494424]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files\LogMeIn Hamachi\hamachi-2.exe [27.6.2012 12:29 1385896]
R2 IMFservice;IMF Service;c:\program files\IObit\IObit Malware Fighter\IMFsrv.exe [13.12.2011 22:36 820568]
R2 libusbd;LibUsb-Win32 - Daemon, Version 0.1.10.1;system32\libusbd-nt.exe --> system32\libusbd-nt.exe [?]
R2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [25.8.2012 13:33 655944]
R2 TeamViewer6;TeamViewer 6;c:\program files\TeamViewer\Version6\TeamViewer_Service.exe [11.7.2011 16:48 2337144]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdXP3.sys [5.11.2010 16:53 101904]
R3 LgBttPort;LGE Bluetooth TransPort;c:\windows\system32\drivers\lgbtport.sys [29.9.2009 9:11 12160]
R3 lgbusenum;LG Bluetooth Bus Enumerator;c:\windows\system32\drivers\lgbtbus.sys [29.9.2009 9:11 10496]
R3 LGVMODEM;LGE Virtual Modem;c:\windows\system32\drivers\lgvmodem.sys [29.9.2009 9:11 12928]
R3 libusb0;LibUsb-Win32 - Kernel Driver, Version 0.1.10.1;c:\windows\system32\drivers\libusb0.sys [21.1.2012 3:05 33792]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [25.8.2012 13:33 22344]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32.sys [5.11.2010 16:46 31392]
R3 SaiK0CCD;SaiK0CCD;c:\windows\system32\drivers\SaiK0CCD.sys [7.10.2011 18:35 147264]
R3 SaiU0CCD;SaiU0CCD;c:\windows\system32\drivers\SaiU0CCD.sys [7.10.2011 18:35 41152]
S2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [10.6.2011 10:38 136176]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [3.6.2012 21:34 250056]
S3 BBSvc;Bing Bar Update Service;c:\program files\Microsoft\BingBar\BBSvc.EXE [1.3.2011 21:23 183560]
S3 cpuz134;cpuz134;c:\program files\CPUID\PC Wizard 2010\pcwiz_x32.sys [31.3.2011 14:37 20328]
S3 GGSAFERDriver;GGSAFER Driver;\??\c:\program files\Garena Plus\Room\safedrv.sys --> c:\program files\Garena Plus\Room\safedrv.sys [?]
S3 gupdatem;Služba Google Update (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [10.6.2011 10:38 136176]
S3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [27.4.2012 21:44 113120]
S3 osppsvc;Office Software Protection Platform;c:\program files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [9.1.2010 21:37 4640000]
S3 SwitchBoard;SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [19.2.2010 13:37 517096]
S3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files\IObit\Game Booster 3\Driver\WinRing0.sys [13.8.2012 18:36 14416]
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - IPFILTERDRIVER
*NewlyCreated* - MBAMPROTECTOR
*NewlyCreated* - MBAMSERVICE
.
Obsah adresáře 'Naplánované úlohy'
.
2012-08-25 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-03 12:49]
.
2012-08-13 c:\windows\Tasks\AdobeAAMUpdater-1.0-JANA-47D2AA5B26-Admin.job
- c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [2012-05-29 16:25]
.
2012-08-25 c:\windows\Tasks\Game_Booster_AutoUpdate.job
- c:\program files\IObit\Game Booster 3\AutoUpdate.exe [2011-12-06 09:21]
.
2012-08-25 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-06-10 08:38]
.
2012-08-25 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2011-06-10 08:38]
.
2012-08-25 c:\windows\Tasks\RealUpgradeLogonTaskS-1-5-21-1060284298-616249376-682003330-1004.job
- c:\program files\Real\RealUpgrade\realupgrade.exe [2012-04-30 16:21]
.
2012-08-25 c:\windows\Tasks\RealUpgradeScheduledTaskS-1-5-21-1060284298-616249376-682003330-1004.job
- c:\program files\Real\RealUpgrade\realupgrade.exe [2012-04-30 16:21]
.
2012-08-25 c:\windows\Tasks\SmartDefrag_Startup.job
- c:\program files\IObit\Smart Defrag 2\SmartDefrag.exe [2011-12-13 09:35]
.
.
------- Doplňkový sken -------
.
IE: {{7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - c:\program files\ICQ7.5\ICQ.exe
TCP: DhcpNameServer = 93.91.144.100 212.80.67.98
FF - ProfilePath - c:\documents and settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\c30iw663.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.bing.com/search?FORM=NP01DF&PC=NP01&q=
FF - prefs.js: browser.search.selectedEngine -
FF - prefs.js: browser.startup.homepage - hxxp://search.babylon.com/?AF=108602&ba ... 248c73953f
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_result ... r=1.1.9&q=
FF - user.js: extensions.BabylonToolbar_i.id - 2028a53f00000000000000248c73953f
FF - user.js: extensions.BabylonToolbar_i.hardId - 2028a53f00000000000000248c73953f
FF - user.js: extensions.BabylonToolbar_i.instlDay - 15409
FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1721:38
FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar_i.tlbrId - base
FF - user.js: extensions.BabylonToolbar_i.newTab - false
FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=108602
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar_i.instlRef - sst
FF - user.js: extentions.y2layers.installId - dd7c7d46-2448-49a1-858e-7bcf43f85dfe
FF - user.js: extentions.y2layers.defaultEnableAppsList - bestvideodownloader,ezLooker,pagerage,buzzdock,toprelatedtopics,twittube
FF - user.js: extensions.autoDisableScopes - 14
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
HKCU-Run-Infium - c:\program files\QIP 2012\qip.exe
AddRemove-ArnA 2: Combined Operations - d:\hry\Arma 2\uninstall.exe
AddRemove-Command & Conquer - d:\hry\CaC Generals\Uninstal.exe
AddRemove-Cool's_Codec_pack_4.12 - c:\windows\iun6002.exe
AddRemove-FreeArc - d:\hry\NFS RUN\Game\FreeArc\uninst.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2012-08-25 21:36
Windows 5.1.2600 Service Pack 3 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-1060284298-616249376-682003330-1004\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:c2,8e,da,4e,da,fd,17,71,8a,55,e9,4c,f3,d4,80,bd,bd,ec,e4,1e,fc,ed,7d,
07,aa,36,ac,bf,37,d2,f5,af,30,f2,9f,36,e1,d1,a0,03,3c,cd,fa,06,da,4c,f5,f3,\
"??"=hex:5d,2e,bc,00,9b,07,bc,9c,34,34,87,88,c9,ab,ca,0d
.
[HKEY_USERS\S-1-5-21-1060284298-616249376-682003330-1004\Software\SecuROM\License information*]
"datasecu"=hex:d8,d3,e0,b4,17,6a,27,77,25,53,ed,76,b0,7b,b4,29,bd,56,03,5f,5f,
6b,40,ce,e2,c0,fa,7a,6a,7d,87,ed,50,a6,72,f1,5f,31,5a,9c,ef,88,38,d2,38,03,\
"rkeysecu"=hex:55,f4,71,9e,1c,bd,fb,91,ca,60,50,1b,d6,85,45,49
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'winlogon.exe'(964)
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\atiadlxx.dll
.
Celkový čas: 2012-08-25 21:38:05
ComboFix-quarantined-files.txt 2012-08-25 19:37
ComboFix2.txt 2011-06-29 13:47
ComboFix3.txt 2011-06-29 11:44
.
Před spuštěním: 3 582 365 696
Po spuštění: 6 404 526 080
.
- - End Of File - - C3A11FBBD304355AFC1C7E2657F46EB6
Kontrola PC - Slabé FPS
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Kontrola PC - Slabé FPS
Nemáš málo volného místa na disku?
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Kód: Vybrat vše
ClearJavaCache::
KillAll::
File::
c:\program files\Google\Update\GoogleUpdate.exe
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
Folder::
c:\documents and settings\Admin\Data aplikací\searchresultstb
c:\program files\Common Files\Spigot
Driver::
libusbd
cpuz134
GGSAFERDriver
gupdatem
gupdate
Registry::
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000000
"FirewallOverride"=dword:00000000
Firefox::
FF - ProfilePath - c:\documents and settings\Admin\Data aplikací\Mozilla\Firefox\Profiles\c30iw663.default\
FF - prefs.js: browser.search.selectedEngine -
FF - prefs.js: browser.startup.homepage - hxxp://search.babylon.com/?AF=108602&ba ... 248c73953f
FF - prefs.js: keyword.URL - hxxp://search.icq.com/search/afe_result ... r=1.1.9&q=
FF - user.js: extensions.BabylonToolbar_i.id - 2028a53f00000000000000248c73953f
FF - user.js: extensions.BabylonToolbar_i.hardId - 2028a53f00000000000000248c73953f
FF - user.js: extensions.BabylonToolbar_i.instlDay - 15409
FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1721:38
FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar_i.tlbrId - base
FF - user.js: extensions.BabylonToolbar_i.newTab - false
FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=108602
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar_i.instlRef - sst
FF - user.js: extentions.y2layers.installId - dd7c7d46-2448-49a1-858e-7bcf43f85dfe
FF - user.js: extentions.y2layers.defaultEnableAppsList - bestvideodownloader,ezLooker,pagerage,buzzdock,toprelatedtopics,twittube
FF - user.js: extensions.autoDisableScopes - 14
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu + nový log z HJT
Upozornění : Může se stát, že po aplikaci Combofixu a restartu počítače, Windows nenaběhnou , nebo nenajede plocha , budou problémy s připojením, pak znovu restartuj počítač, pokud to nepomůže , po restartu mačkej klávesu F8 a pak zvol poslední známou funkční konfiguraci. , či použij bod obnovy.
Stáhni si aswMBR
na svojí plochu. Uzavři všechna okna , programy a prohlížeče. Poklepej na aswMBR.exe. Pokud se objeví hláška o možnosti stáhnutí databáze Avastu , klikni na NE. Poté klikni na „Scan“ . Po skenu klikni na „Save Log“ a ulož si log na plochu .Zkopíruj sem celý obsah toho logu. Pak klikni na „Exit“ k zavření programu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 38 hostů