Prosim o kontrolu.

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Prosim o kontrolu.

Příspěvekod Damned » 09 zář 2009 12:39

Stáhni si RSIT, klikni na "Continue" a nech ho provést sken.
Za chvíli se vygeneruje log se jménem log.txt (pokud nebude log vygenerován, najdeš jej v C:\rsit\log.txt); jeho obsah mi sem zkopíruj.
Zkopíruj sem (nebo přilož) i druhý log s názvem info.txt
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

Reklama
pome
nováček
Příspěvky: 14
Registrován: září 09
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosim o kontrolu.

Příspěvekod pome » 10 zář 2009 11:53

log zo suboru info -->

info.txt logfile of random's system information tool 1.06 2009-09-10 11:51:53

======Uninstall list======

-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Acer OrbiCam-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{4A57592C-FF92-4083-97A9-92783BD5AFB4}\Setup.exe" -l0x9
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Atheros Client Installation Program-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{92F31257-15BA-46EE-887D-3C18C0790ACE}\setup.exe" -l0x9 -removeonly
Auto Diagnostika-->"C:\Auto-diagnostika\unins000.exe"
Codec Pack - All In 1 6.0.3.0-->C:\WINDOWS\iun6002.exe "C:\Program Files\Codec Pack - All In 1\irunin.ini"
HD Tune 2.55-->"C:\Program Files\HD Tune\unins000.exe"
High Definition Audio Driver Package - KB888111-->"C:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe"
HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix for Windows XP (KB926239)-->"C:\WINDOWS\$NtUninstallKB926239$\spuninst\spuninst.exe"
Launch Manager-->C:\WINDOWS\UnInst32.exe LManager.UNI
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Microsoft .NET Framework 2.0-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.exe
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Office Access MUI (Slovak) 2007-->MsiExec.exe /X{90120000-0015-041B-0000-0000000FF1CE}
Microsoft Office Excel MUI (Slovak) 2007-->MsiExec.exe /X{90120000-0016-041B-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (Slovak) 2007-->MsiExec.exe /X{90120000-0044-041B-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Slovak) 2007-->MsiExec.exe /X{90120000-001A-041B-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Slovak) 2007-->MsiExec.exe /X{90120000-0018-041B-0000-0000000FF1CE}
Microsoft Office Professional Plus 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL
Microsoft Office Professional Plus 2007-->MsiExec.exe /X{90120000-0011-0000-0000-0000000FF1CE}
Microsoft Office Proof (Czech) 2007-->MsiExec.exe /X{90120000-001F-0405-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Hungarian) 2007-->MsiExec.exe /X{90120000-001F-040E-0000-0000000FF1CE}
Microsoft Office Proof (Slovak) 2007-->MsiExec.exe /X{90120000-001F-041B-0000-0000000FF1CE}
Microsoft Office Proofing (Slovak) 2007-->MsiExec.exe /X{90120000-002C-041B-0000-0000000FF1CE}
Microsoft Office Publisher MUI (Slovak) 2007-->MsiExec.exe /X{90120000-0019-041B-0000-0000000FF1CE}
Microsoft Office Shared MUI (Slovak) 2007-->MsiExec.exe /X{90120000-006E-041B-0000-0000000FF1CE}
Microsoft Office Word MUI (Slovak) 2007-->MsiExec.exe /X{90120000-001B-041B-0000-0000000FF1CE}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
MV2Player (remove only)-->C:\Program Files\Mv2Player\uninst.exe
NVIDIA Drivers-->C:\WINDOWS\system32\nvuide.exe UninstallGUI
Opera 10.00-->MsiExec.exe /X{2085F05D-24C5-4E27-B7B4-A51DE890FFC9}
PowerQuest PartitionMagic 8.0-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{6BE2A4A4-99FB-48ED-AE1E-4E850389F804}
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -l0x9 -removeonly
Skype™ 4.1-->MsiExec.exe /X{D103C4BA-F905-437A-8049-DB24763BBE36}
Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
Texas Instruments PCIxx21/x515/xx12 drivers.-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{4497AFF6-98C4-4F49-B073-F48F42BCBF9E} /l1033
VLC media player 1.0.1-->C:\Program Files\VideoLAN\VLC\uninstall.exe
Windows Driver Package - Advanced Micro Devices (AmdK8) Processor (04/28/2006 1.3.1.0)-->C:\PROGRA~1\DIFX\7B44739871F4D539FA473F57A832EA4B6A59EF06\DPInst.exe /d /u C:\WINDOWS\system32\DRVSTORE\amdk8_9EA6D2FA46FEFFB7011ED0B6015B626D07F1EEF7\amdk8.inf
Windows Driver Package - Ross-Tech USB Driver Package (11/16/2007 6.0.2.0)-->C:\PROGRA~1\DIFX\270581355A767BF1\DPInst.exe /u C:\WINDOWS\system32\DRVSTORE\rt-usb_3C465006B48E3FFC70C99F2071FD1F21BB749614\rt-usb.inf
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
XP Codec Pack-->C:\Program Files\XP Codec Pack\Uninstall.exe

=====HijackThis Backups=====

O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE [2009-09-08]

======Security center information======

AV: ESET Smart Security 4.0
FW: ESET personal firewall

======System event log======

Computer Name: BRANO-B75649504
Event Code: 60055
Message: Inštalátor systému Windows pri inštalácii zistil nezávažnú chybu. Ďalšie informácie sú v súbore setuperr.log, ktorý sa nachádza v adresári Windows.
Record Number: 5
Source Name: Setup
Time Written: 20090906204231.000000+120
Event Type: chyba
User:

Computer Name: BRANO-B75649504
Event Code: 15007
Message: Vyhradenie priestoru názvov identifikovaného predponou adresy URL http://*:2869/ bolo úspešne pridané.

Record Number: 4
Source Name: HTTP
Time Written: 20090906204050.000000+120
Event Type: informácie
User:

Computer Name: BRANO-B75649504
Event Code: 6011
Message: Názvy systému NetBIOS a hostiteľa servera DNS tohto počítača boli zmenené z MACHINENAME na BRANO-B75649504.

Record Number: 3
Source Name: EventLog
Time Written: 20090906203634.000000+120
Event Type: informácie
User:

Computer Name: MACHINENAME
Event Code: 6005
Message: Spustila sa služba Denník udalostí.

Record Number: 2
Source Name: EventLog
Time Written: 20090906133204.000000+120
Event Type: informácie
User:

Computer Name: MACHINENAME
Event Code: 6009
Message: Microsoft (R) Windows (R) 5.01. 2600 Service Pack 2 Uniprocessor Free.

Record Number: 1
Source Name: EventLog
Time Written: 20090906133204.000000+120
Event Type: informácie
User:

=====Application event log=====

Computer Name: BRANO-B75649504
Event Code: 1000
Message: Podarilo sa načítať počítadlá výkonu služby MSDTC (MSDTC).
Údaje záznamu obsahujú nové hodnoty registra priradené
k tejto službe.

Record Number: 5
Source Name: LoadPerf
Time Written: 20090906203831.000000+120
Event Type: informácie
User:

Computer Name: BRANO-B75649504
Event Code: 1000
Message: Podarilo sa načítať počítadlá výkonu služby TermService (Terminal Services).
Údaje záznamu obsahujú nové hodnoty registra priradené
k tejto službe.

Record Number: 4
Source Name: LoadPerf
Time Written: 20090906203827.000000+120
Event Type: informácie
User:

Computer Name: BRANO-B75649504
Event Code: 1000
Message: Podarilo sa načítať počítadlá výkonu služby RemoteAccess (Routing and Remote Access).
Údaje záznamu obsahujú nové hodnoty registra priradené
k tejto službe.

Record Number: 3
Source Name: LoadPerf
Time Written: 20090906203713.000000+120
Event Type: informácie
User:

Computer Name: BRANO-B75649504
Event Code: 1000
Message: Podarilo sa načítať počítadlá výkonu služby PSched (PSched).
Údaje záznamu obsahujú nové hodnoty registra priradené
k tejto službe.

Record Number: 2
Source Name: LoadPerf
Time Written: 20090906203645.000000+120
Event Type: informácie
User:

Computer Name: BRANO-B75649504
Event Code: 1000
Message: Podarilo sa načítať počítadlá výkonu služby RSVP (QoS RSVP).
Údaje záznamu obsahujú nové hodnoty registra priradené
k tejto službe.

Record Number: 1
Source Name: LoadPerf
Time Written: 20090906203644.000000+120
Event Type: informácie
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 76 Stepping 2, AuthenticAMD
"PROCESSOR_REVISION"=4c02
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP

-----------------EOF-----------------


log zo suboru log --->

Logfile of random's system information tool 1.06 (written by random/random)
Run by Administrator at 2009-09-10 11:51:44
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 19 GB (44%) free of 43 GB
Total RAM: 767 MB (22% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:51:51, on 10.9.2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Atheros\ACU.exe
C:\PROGRA~1\LAUNCH~1\LManager.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\RtkBtMnt.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Opera\opera.exe
C:\Documents and Settings\Administrator\Desktop\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Administrator.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
O4 - HKLM\..\Run: [ACU] "C:\Program Files\Atheros\ACU.exe" -nogui
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Atheros Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 3471 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ACU"=C:\Program Files\Atheros\ACU.exe [2005-01-31 253952]
"LManager"=C:\PROGRA~1\LAUNCH~1\LManager.exe [2006-07-25 630784]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2006-07-21 7581696]
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2006-07-21 86016]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2006-05-26 786521]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-07-22 16261632]
"SkyTel"=C:\WINDOWS\SkyTel.EXE [2006-05-17 2879488]
"AzMixerSel"=C:\Program Files\Realtek\InstallShield\AzMixerSel.exe [2005-06-12 53248]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2009-05-15 2029640]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2009-09-02 25623336]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{7cfec9db-9cb4-11de-88a5-0016d3530b90}]
shell\AutoRun\command - E:\LaunchU3.exe -a


======List of files/folders created in the last 1 months======

2009-09-10 11:51:44 ----D---- C:\rsit
2009-09-08 21:59:56 ----D---- C:\Program Files\Microsoft Works
2009-09-08 21:59:43 ----D---- C:\Program Files\MSBuild
2009-09-08 21:59:28 ----D---- C:\Program Files\Microsoft Visual Studio
2009-09-08 21:59:28 ----D---- C:\Program Files\Common Files\DESIGNER
2009-09-08 21:58:44 ----D---- C:\Program Files\Microsoft.NET
2009-09-08 21:58:03 ----HDC---- C:\WINDOWS\$NtUninstallKB926239$
2009-09-08 21:57:51 ----N---- C:\WINDOWS\system32\spmsg.dll
2009-09-08 21:57:46 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2009-09-08 21:57:18 ----D---- C:\Program Files\Windows Media Connect 2
2009-09-08 21:57:04 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2009-09-08 21:55:11 ----D---- C:\Program Files\Microsoft Visual Studio 8
2009-09-08 21:53:57 ----D---- C:\WINDOWS\SHELLNEW
2009-09-08 21:52:48 ----D---- C:\Program Files\Microsoft Office
2009-09-08 21:52:45 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2009-09-08 21:52:43 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2009-09-08 21:52:14 ----RHD---- C:\MSOCache
2009-09-08 21:49:26 ----D---- C:\WINDOWS\system32\LogFiles
2009-09-08 21:49:21 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2009-09-08 21:46:29 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2009-09-08 21:39:23 ----SHD---- C:\RECYCLER
2009-09-08 21:19:17 ----D---- C:\WINDOWS\temp
2009-09-08 21:19:15 ----A---- C:\ComboFix.txt
2009-09-08 21:14:30 ----D---- C:\ComboFix
2009-09-08 20:44:25 ----A---- C:\WINDOWS\zip.exe
2009-09-08 20:44:25 ----A---- C:\WINDOWS\SWXCACLS.exe
2009-09-08 20:44:25 ----A---- C:\WINDOWS\SWSC.exe
2009-09-08 20:44:25 ----A---- C:\WINDOWS\SWREG.exe
2009-09-08 20:44:25 ----A---- C:\WINDOWS\sed.exe
2009-09-08 20:44:25 ----A---- C:\WINDOWS\PEV.exe
2009-09-08 20:44:25 ----A---- C:\WINDOWS\NIRCMD.exe
2009-09-08 20:44:25 ----A---- C:\WINDOWS\grep.exe
2009-09-08 20:44:20 ----D---- C:\WINDOWS\ERDNT
2009-09-08 20:44:08 ----D---- C:\Qoobox
2009-09-08 20:38:58 ----D---- C:\Documents and Settings\Administrator\Application Data\skypePM
2009-09-08 20:38:10 ----D---- C:\Program Files\Mv2Player
2009-09-08 20:38:09 ----D---- C:\Documents and Settings\Administrator\Application Data\Skype
2009-09-08 20:37:58 ----D---- C:\Program Files\Common Files\Skype
2009-09-08 20:37:53 ----RD---- C:\Program Files\Skype
2009-09-08 20:37:47 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2009-09-08 20:09:47 ----D---- C:\Documents and Settings\Administrator\Application Data\Malwarebytes
2009-09-08 20:09:33 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2009-09-08 20:09:32 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-09-08 20:05:16 ----D---- C:\Documents and Settings\Administrator\Application Data\ESET
2009-09-08 20:01:47 ----D---- C:\Program Files\ESET
2009-09-08 20:01:47 ----D---- C:\Documents and Settings\All Users\Application Data\ESET
2009-09-08 19:45:50 ----D---- C:\Program Files\Trend Micro
2009-09-08 11:42:45 ----D---- C:\Program Files\HD Tune
2009-09-08 11:41:57 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2009-09-08 11:41:57 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2009-09-08 11:41:57 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2009-09-08 11:41:57 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2009-09-08 11:41:57 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2009-09-08 11:41:57 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2009-09-08 11:41:56 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2009-09-08 11:41:56 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2009-09-08 11:41:56 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2009-09-08 11:41:56 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2009-09-08 11:41:56 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2009-09-08 11:41:56 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2009-09-08 11:41:56 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2009-09-08 11:41:56 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2009-09-08 11:41:55 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2009-09-08 11:41:55 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2009-09-08 11:41:55 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2009-09-08 11:41:55 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2009-09-08 11:41:55 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2009-09-08 11:41:55 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2009-09-08 11:41:54 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2009-09-08 11:41:54 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2009-09-08 11:41:54 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2009-09-08 11:41:54 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2009-09-08 11:41:54 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2009-09-08 11:41:54 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2009-09-08 11:41:54 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2009-09-08 11:41:53 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2009-09-08 11:41:53 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2009-09-08 11:41:53 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2009-09-08 11:41:53 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2009-09-08 11:41:53 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2009-09-08 11:41:53 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2009-09-08 11:41:53 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2009-09-08 11:41:52 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2009-09-08 11:41:52 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2009-09-08 11:41:52 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2009-09-08 11:41:52 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2009-09-08 11:41:52 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2009-09-08 11:41:52 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2009-09-08 11:41:52 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2009-09-08 11:41:51 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2009-09-08 11:41:51 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2009-09-08 11:41:51 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2009-09-08 11:41:51 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2009-09-08 11:41:51 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2009-09-08 11:41:51 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2009-09-08 11:41:50 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2009-09-08 11:41:50 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2009-09-08 11:41:50 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2009-09-08 11:41:49 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2009-09-08 11:41:49 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2009-09-08 11:41:49 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2009-09-08 11:41:49 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2009-09-08 11:41:48 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2009-09-08 11:41:48 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2009-09-08 11:41:48 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2009-09-08 11:41:48 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2009-09-08 11:41:48 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2009-09-08 11:41:48 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2009-09-08 11:41:48 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2009-09-08 11:41:47 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2009-09-08 11:41:46 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2009-09-08 11:41:46 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2009-09-08 11:41:46 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2009-09-08 11:41:46 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2009-09-08 11:41:45 ----A---- C:\WINDOWS\system32\xinput9_1_0.dll
2009-09-08 11:41:45 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2009-09-08 11:41:45 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2009-09-08 11:41:45 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2009-09-08 11:41:44 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2009-09-08 11:41:43 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2009-09-08 11:37:14 ----D---- C:\WINDOWS\Logs
2009-09-08 11:35:54 ----D---- C:\Documents and Settings\Administrator\Application Data\Macromedia
2009-09-08 11:35:53 ----D---- C:\Documents and Settings\Administrator\Application Data\Adobe
2009-09-06 21:08:33 ----D---- C:\WINDOWS\system32\Wendy-918-NewDriDate-50316
2009-09-06 21:08:33 ----D---- C:\WINDOWS\system32\T60H918_01_4.0.0.14001_50323_Acer_SVID_1025
2009-09-06 21:08:33 ----D---- C:\WINDOWS\system32\4.0.0.167
2009-09-06 21:08:33 ----D---- C:\WINDOWS\system32\4.0.0.14001
2009-09-06 21:08:33 ----D---- C:\WINDOWS\Options
2009-09-06 21:08:30 ----A---- C:\WINDOWS\system32\results.txt
2009-09-06 21:08:30 ----A---- C:\WINDOWS\system32\acs.exe
2009-09-06 21:08:25 ----A---- C:\WINDOWS\system32\AegisI5.exe
2009-09-06 21:08:24 ----A---- C:\WINDOWS\system32\wgapi.dll
2009-09-06 21:08:24 ----A---- C:\WINDOWS\system32\wcapi.dll
2009-09-06 21:08:24 ----A---- C:\WINDOWS\system32\athcfg11res.dll
2009-09-06 21:08:24 ----A---- C:\WINDOWS\system32\athcfg11.dll
2009-09-06 21:08:24 ----A---- C:\WINDOWS\system32\AegisE5.dll
2009-09-06 21:08:23 ----HD---- C:\Program Files\InstallShield Installation Information
2009-09-06 21:08:23 ----D---- C:\Program Files\Atheros
2009-09-06 21:08:12 ----D---- C:\temp
2009-09-06 21:08:09 ----D---- C:\Program Files\Common Files\InstallShield
2009-09-06 21:07:36 ----D---- C:\Program Files\xerox
2009-09-06 21:07:35 ----D---- C:\WINDOWS\system32\xircom
2009-09-06 21:07:35 ----D---- C:\Program Files\microsoft frontpage
2009-09-06 21:07:00 ----D---- C:\WINDOWS\Prefetch
2009-09-06 21:03:03 ----N---- C:\WINDOWS\system32\smtpapi.dll
2009-09-06 21:03:03 ----N---- C:\WINDOWS\system32\rwnh.dll
2009-09-06 21:03:03 ----N---- C:\WINDOWS\system32\comsdupd.exe
2009-09-06 21:03:00 ----N---- C:\WINDOWS\system32\slserv.exe
2009-09-06 21:03:00 ----N---- C:\WINDOWS\system32\slrundll.exe
2009-09-06 21:03:00 ----N---- C:\WINDOWS\system32\slgen.dll
2009-09-06 21:03:00 ----N---- C:\WINDOWS\system32\slextspk.dll
2009-09-06 21:03:00 ----N---- C:\WINDOWS\system32\slcoinst.dll
2009-09-06 21:03:00 ----N---- C:\WINDOWS\system32\s3gnb.dll
2009-09-06 21:03:00 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2009-09-06 21:03:00 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2009-09-06 21:03:00 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2009-09-06 21:03:00 ----N---- C:\WINDOWS\system32\ativvaxx.dll
2009-09-06 21:03:00 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2009-09-06 21:03:00 ----N---- C:\WINDOWS\system32\ati3duag.dll
2009-09-06 21:03:00 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2009-09-06 21:03:00 ----N---- C:\WINDOWS\system32\ati2dvag.dll
2009-09-06 21:03:00 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2009-09-06 21:03:00 ----N---- C:\WINDOWS\system32\ati2cqag.dll
2009-09-06 21:03:00 ----N---- C:\WINDOWS\slrundll.exe
2009-09-06 21:03:00 ----A---- C:\WINDOWS\system32\nv4_disp.dll
2009-09-06 21:01:55 ----D---- C:\WINDOWS\ServicePackFiles
2009-09-06 21:01:35 ----A---- C:\WINDOWS\000001_.tmp
2009-09-06 21:01:19 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2009-09-06 20:59:34 ----RSD---- C:\WINDOWS\assembly
2009-09-06 20:59:08 ----D---- C:\WINDOWS\Microsoft.NET
2009-09-06 20:57:47 ----A---- C:\WINDOWS\UNINST32.EXE
2009-09-06 20:57:47 ----A---- C:\WINDOWS\system32\FILTRCOI.DLL
2009-09-06 20:56:57 ----D---- C:\Program Files\NeoSmart Technologies
2009-09-06 20:56:17 ----D---- C:\Documents and Settings\Administrator\Application Data\U3
2009-09-06 20:52:01 ----D---- C:\WINDOWS\pss
2009-09-06 20:44:07 ----D---- C:\Documents and Settings\Administrator\Application Data\Identities
2009-09-06 20:44:06 ----HD---- C:\Program Files\Uninstall Information
2009-09-06 20:44:00 ----ASH---- C:\Documents and Settings\Administrator\Application Data\desktop.ini
2009-09-06 20:43:59 ----SD---- C:\Documents and Settings\Administrator\Application Data\Microsoft
2009-09-06 20:43:53 ----D---- C:\WINDOWS\SoftwareDistribution
2009-09-06 20:43:50 ----SD---- C:\WINDOWS\system32\Microsoft
2009-09-06 20:43:50 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-09-06 20:42:05 ----A---- C:\WINDOWS\control.ini
2009-09-06 20:42:05 ----A---- C:\AUTOEXEC.BAT
2009-09-06 20:41:50 ----A---- C:\WINDOWS\OEWABLog.txt
2009-09-06 20:41:46 ----A---- C:\WINDOWS\system32\mapi32.dll
2009-09-06 20:41:01 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-09-06 20:41:01 ----RD---- C:\WINDOWS\Offline Web Pages
2009-09-06 20:41:01 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2009-09-06 20:40:55 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2009-09-06 20:40:51 ----HD---- C:\Program Files\WindowsUpdate
2009-09-06 20:40:32 ----D---- C:\WINDOWS\system32\DirectX
2009-09-06 20:40:11 ----A---- C:\WINDOWS\system32\atrace.dll
2009-09-06 20:40:08 ----A---- C:\WINDOWS\system32\desktop.ini
2009-09-06 20:40:08 ----A---- C:\WINDOWS\desktop.ini
2009-09-06 20:40:01 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2009-09-06 20:40:00 ----A---- C:\WINDOWS\system32\acctres.dll
2009-09-06 20:39:59 ----D---- C:\Program Files\Common Files\Services
2009-09-06 20:39:56 ----SD---- C:\WINDOWS\Tasks
2009-09-06 20:39:56 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2009-09-06 20:39:55 ----D---- C:\Program Files\Common Files\MSSoap
2009-09-06 20:39:51 ----D---- C:\WINDOWS\srchasst
2009-09-06 20:39:50 ----D---- C:\WINDOWS\system32\Macromed
2009-09-06 20:39:47 ----A---- C:\WINDOWS\system32\wuweb.dll
2009-09-06 20:39:47 ----A---- C:\WINDOWS\system32\wucltui.dll
2009-09-06 20:39:47 ----A---- C:\WINDOWS\system32\wuauserv.dll
2009-09-06 20:39:47 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2009-09-06 20:39:46 ----N---- C:\WINDOWS\system32\wuauclt.exe
2009-09-06 20:39:46 ----A---- C:\WINDOWS\system32\wups.dll
2009-09-06 20:39:46 ----A---- C:\WINDOWS\system32\wuaueng.dll
2009-09-06 20:39:46 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2009-09-06 20:39:46 ----A---- C:\WINDOWS\system32\wuapi.dll
2009-09-06 20:39:46 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2009-09-06 20:39:46 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2009-09-06 20:39:46 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2009-09-06 20:39:45 ----N---- C:\WINDOWS\system32\qmgr.dll
2009-09-06 20:39:41 ----D---- C:\Program Files\Movie Maker
2009-09-06 20:39:37 ----A---- C:\WINDOWS\system32\safrslv.dll
2009-09-06 20:39:37 ----A---- C:\WINDOWS\system32\safrdm.dll
2009-09-06 20:39:37 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2009-09-06 20:39:37 ----A---- C:\WINDOWS\system32\racpldlg.dll
2009-09-06 20:39:33 ----A---- C:\WINDOWS\system32\fltMc.exe
2009-09-06 20:39:33 ----A---- C:\WINDOWS\system32\fltlib.dll
2009-09-06 20:39:32 ----N---- C:\WINDOWS\system32\srsvc.dll
2009-09-06 20:39:32 ----D---- C:\WINDOWS\system32\Restore
2009-09-06 20:39:32 ----A---- C:\WINDOWS\system32\srrstr.dll
2009-09-06 20:39:32 ----A---- C:\WINDOWS\system32\srclient.dll
2009-09-06 20:39:31 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2009-09-06 20:39:31 ----A---- C:\WINDOWS\system32\mnmdd.dll
2009-09-06 20:39:31 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2009-09-06 20:39:31 ----A---- C:\WINDOWS\system32\ils.dll
2009-09-06 20:39:30 ----A---- C:\WINDOWS\system32\msconf.dll
2009-09-06 20:39:30 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2009-09-06 20:39:27 ----D---- C:\Program Files\NetMeeting
2009-09-06 20:39:27 ----A---- C:\WINDOWS\system32\msoert2.dll
2009-09-06 20:39:27 ----A---- C:\WINDOWS\system32\msoeacct.dll
2009-09-06 20:39:26 ----A---- C:\WINDOWS\system32\inetres.dll
2009-09-06 20:39:26 ----A---- C:\WINDOWS\system32\inetcomm.dll
2009-09-06 20:39:24 ----N---- C:\WINDOWS\system32\schedsvc.dll
2009-09-06 20:39:24 ----D---- C:\Program Files\Outlook Express
2009-09-06 20:39:24 ----A---- C:\WINDOWS\system32\mstinit.exe
2009-09-06 20:39:24 ----A---- C:\WINDOWS\system32\mstask.dll
2009-09-06 20:39:23 ----A---- C:\WINDOWS\system32\isign32.dll
2009-09-06 20:39:23 ----A---- C:\WINDOWS\system32\inetcfg.dll
2009-09-06 20:39:23 ----A---- C:\WINDOWS\system32\icwphbk.dll
2009-09-06 20:39:23 ----A---- C:\WINDOWS\system32\icwdial.dll
2009-09-06 20:39:17 ----D---- C:\Program Files\Common Files\System
2009-09-06 20:39:13 ----D---- C:\Program Files\Internet Explorer
2009-09-06 20:38:42 ----D---- C:\Program Files\ComPlus Applications
2009-09-06 20:38:40 ----A---- C:\WINDOWS\vbaddin.ini
2009-09-06 20:38:40 ----A---- C:\WINDOWS\vb.ini
2009-09-06 20:38:35 ----D---- C:\WINDOWS\Registration
2009-09-06 20:38:28 ----D---- C:\Program Files\Online Services
2009-09-06 20:38:27 ----D---- C:\Program Files\Windows Media Player
2009-09-06 20:38:22 ----D---- C:\Program Files\Messenger
2009-09-06 20:38:18 ----D---- C:\Program Files\MSN Gaming Zone
2009-09-06 20:38:18 ----A---- C:\WINDOWS\system32\write.exe
2009-09-06 20:38:09 ----A---- C:\WINDOWS\system32\hticons.dll
2009-09-06 20:38:09 ----A---- C:\WINDOWS\system32\avwav.dll
2009-09-06 20:38:09 ----A---- C:\WINDOWS\system32\avtapi.dll
2009-09-06 20:38:09 ----A---- C:\WINDOWS\system32\avmeter.dll
2009-09-06 20:38:08 ----A---- C:\WINDOWS\system32\winchat.exe
2009-09-06 20:38:01 ----A---- C:\WINDOWS\system32\charmap.exe
2009-09-06 20:38:01 ----A---- C:\WINDOWS\system32\getuname.dll
2009-09-06 20:38:00 ----A---- C:\WINDOWS\system32\winmine.exe
2009-09-06 20:38:00 ----A---- C:\WINDOWS\system32\sol.exe
2009-09-06 20:38:00 ----A---- C:\WINDOWS\system32\mshearts.exe
2009-09-06 20:38:00 ----A---- C:\WINDOWS\system32\calc.exe
2009-09-06 20:37:59 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2009-09-06 20:37:59 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2009-09-06 20:37:59 ----A---- C:\WINDOWS\system32\tslabels.ini
2009-09-06 20:37:59 ----A---- C:\WINDOWS\system32\tskill.exe
2009-09-06 20:37:59 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2009-09-06 20:37:59 ----A---- C:\WINDOWS\system32\tscon.exe
2009-09-06 20:37:59 ----A---- C:\WINDOWS\system32\shadow.exe
2009-09-06 20:37:59 ----A---- C:\WINDOWS\system32\rwinsta.exe
2009-09-06 20:37:59 ----A---- C:\WINDOWS\system32\reset.exe
2009-09-06 20:37:59 ----A---- C:\WINDOWS\system32\freecell.exe
2009-09-06 20:37:58 ----A---- C:\WINDOWS\system32\regini.exe
2009-09-06 20:37:58 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2009-09-06 20:37:58 ----A---- C:\WINDOWS\system32\qwinsta.exe
2009-09-06 20:37:58 ----A---- C:\WINDOWS\system32\qappsrv.exe
2009-09-06 20:37:58 ----A---- C:\WINDOWS\system32\msg.exe
2009-09-06 20:37:58 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2009-09-06 20:37:58 ----A---- C:\WINDOWS\system32\logoff.exe
2009-09-06 20:37:58 ----A---- C:\WINDOWS\system32\cdmodem.dll
2009-09-06 20:37:57 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2009-09-06 20:37:57 ----A---- C:\WINDOWS\system32\mtxex.dll
2009-09-06 20:37:57 ----A---- C:\WINDOWS\system32\mtxdm.dll
2009-09-06 20:37:57 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2009-09-06 20:37:57 ----A---- C:\WINDOWS\system32\comrepl.dll
2009-09-06 20:37:57 ----A---- C:\WINDOWS\system32\comaddin.dll
2009-09-06 20:37:56 ----A---- C:\WINDOWS\system32\stclient.dll
2009-09-06 20:37:56 ----A---- C:\WINDOWS\system32\comsnap.dll
2009-09-06 20:37:51 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2009-09-06 20:37:38 ----D---- C:\Program Files\MSN
2009-09-06 20:37:37 ----A---- C:\WINDOWS\system32\sndrec32.exe
2009-09-06 20:37:37 ----A---- C:\WINDOWS\system32\mplay32.exe
2009-09-06 20:37:37 ----A---- C:\WINDOWS\system32\accwiz.exe
2009-09-06 20:37:36 ----D---- C:\Program Files\Windows NT
2009-09-06 20:37:36 ----A---- C:\WINDOWS\system32\mspaint.exe
2009-09-06 20:37:36 ----A---- C:\WINDOWS\system32\hypertrm.dll
2009-09-06 20:37:36 ----A---- C:\WINDOWS\system32\clipbrd.exe
2009-09-06 20:37:35 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2009-09-06 20:37:35 ----A---- C:\WINDOWS\system32\spider.exe
2009-09-06 20:37:34 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2009-09-06 20:37:34 ----A---- C:\WINDOWS\system32\sessmgr.exe
2009-09-06 20:37:34 ----A---- C:\WINDOWS\system32\remotepg.dll
2009-09-06 20:37:34 ----A---- C:\WINDOWS\system32\rdshost.exe
2009-09-06 20:37:34 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2009-09-06 20:37:34 ----A---- C:\WINDOWS\system32\rdchost.dll
2009-09-06 20:37:34 ----A---- C:\WINDOWS\system32\mstscax.dll
2009-09-06 20:37:34 ----A---- C:\WINDOWS\system32\mstsc.exe
2009-09-06 20:37:33 ----N---- C:\WINDOWS\system32\termsrv.dll
2009-09-06 20:37:33 ----D---- C:\WINDOWS\system32\MsDtc
2009-09-06 20:37:33 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2009-09-06 20:37:33 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2009-09-06 20:37:33 ----A---- C:\WINDOWS\system32\rdpclip.exe
2009-09-06 20:37:33 ----A---- C:\WINDOWS\system32\qprocess.exe
2009-09-06 20:37:33 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2009-09-06 20:37:33 ----A---- C:\WINDOWS\system32\icaapi.dll
2009-09-06 20:37:33 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2009-09-06 20:37:32 ----A---- C:\WINDOWS\system32\xolehlp.dll
2009-09-06 20:37:32 ----A---- C:\WINDOWS\system32\mtxoci.dll
2009-09-06 20:37:32 ----A---- C:\WINDOWS\system32\msdtctm.dll
2009-09-06 20:37:32 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2009-09-06 20:37:32 ----A---- C:\WINDOWS\system32\msdtclog.dll
2009-09-06 20:37:32 ----A---- C:\WINDOWS\system32\msdtc.exe
2009-09-06 20:37:31 ----D---- C:\WINDOWS\system32\Com
2009-09-06 20:37:31 ----A---- C:\WINDOWS\system32\colbact.dll
2009-09-06 20:37:31 ----A---- C:\WINDOWS\system32\clbcatex.dll
2009-09-06 20:37:31 ----A---- C:\WINDOWS\system32\catsrvps.dll
2009-09-06 20:37:30 ----A---- C:\WINDOWS\system32\comsvcs.dll
2009-09-06 20:37:30 ----A---- C:\WINDOWS\system32\catsrvut.dll
2009-09-06 20:37:30 ----A---- C:\WINDOWS\system32\catsrv.dll
2009-09-06 20:37:29 ----A---- C:\WINDOWS\system32\comuid.dll
2009-09-06 20:37:29 ----A---- C:\WINDOWS\system32\clbcatq.dll
2009-09-06 20:37:22 ----A---- C:\WINDOWS\system32\servdeps.dll
2009-09-06 20:37:22 ----A---- C:\WINDOWS\system32\mmfutil.dll
2009-09-06 20:37:22 ----A---- C:\WINDOWS\system32\licwmi.dll
2009-09-06 20:37:22 ----A---- C:\WINDOWS\system32\cmprops.dll
2009-09-06 13:47:43 ----D---- C:\Program Files\PowerQuest
2009-09-06 13:36:35 ----D---- C:\Documents and Settings\Administrator\Application Data\Media Player Classic
2009-09-06 13:36:31 ----A---- C:\WINDOWS\system32\h323log.txt
2009-09-06 13:36:08 ----D---- C:\Program Files\XP Codec Pack
2009-09-06 13:35:37 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2009-09-06 13:35:37 ----A---- C:\WINDOWS\system32\ksuser.dll
2009-09-06 13:34:29 ----A---- C:\WINDOWS\system32\usbui.dll
2009-09-06 13:33:22 ----A---- C:\WINDOWS\imsins.BAK
2009-09-06 13:33:20 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-09-06 13:33:19 ----SHD---- C:\WINDOWS\Installer
2009-09-06 13:33:19 ----D---- C:\Program Files\Common Files\ODBC
2009-09-06 13:33:19 ----A---- C:\WINDOWS\ODBCINST.INI
2009-09-06 13:33:15 ----RD---- C:\Program Files
2009-09-06 13:33:15 ----D---- C:\Program Files\Common Files\SpeechEngines
2009-09-06 13:33:15 ----D---- C:\Program Files\Common Files\Microsoft Shared
2009-09-06 13:33:15 ----D---- C:\Program Files\Common Files
2009-09-06 13:33:09 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2009-09-06 13:33:09 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2009-09-06 13:33:09 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2009-09-06 13:33:07 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2009-09-06 13:33:07 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2009-09-06 13:33:07 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2009-09-06 13:33:07 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2009-09-06 13:33:07 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2009-09-06 13:33:06 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2009-09-06 13:33:06 ----RA---- C:\WINDOWS\system32\kbdur.dll
2009-09-06 13:33:06 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2009-09-06 13:33:06 ----RA---- C:\WINDOWS\system32\kbdru.dll
2009-09-06 13:33:06 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2009-09-06 13:33:06 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2009-09-06 13:33:06 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2009-09-06 13:33:04 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2009-09-06 13:33:04 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2009-09-06 13:33:04 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2009-09-06 13:33:04 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2009-09-06 13:33:04 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2009-09-06 13:33:04 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2009-09-06 13:33:04 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2009-09-06 13:33:03 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2009-09-06 13:33:03 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2009-09-06 13:33:03 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2009-09-06 13:33:03 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2009-09-06 13:33:03 ----RA---- C:\WINDOWS\system32\kbdest.dll
2009-09-06 13:33:01 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2009-09-06 13:33:01 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2009-09-06 13:33:01 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2009-09-06 13:33:01 ----RA---- C:\WINDOWS\system32\kbdro.dll
2009-09-06 13:33:01 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2009-09-06 13:33:01 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2009-09-06 13:33:01 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2009-09-06 13:33:01 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2009-09-06 13:33:01 ----RA---- C:\WINDOWS\system32\kbdcz2.dll
2009-09-06 13:33:01 ----RA---- C:\WINDOWS\system32\kbdcz1.dll
2009-09-06 13:33:01 ----RA---- C:\WINDOWS\system32\kbdcz.dll
2009-09-06 13:33:01 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2009-09-06 13:33:01 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2009-09-06 13:32:56 ----A---- C:\WINDOWS\system32\spxcoins.dll
2009-09-06 13:32:56 ----A---- C:\WINDOWS\system32\irclass.dll
2009-09-06 13:32:56 ----A---- C:\WINDOWS\system32\dgsetup.dll
2009-09-06 13:32:56 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2009-09-06 13:32:55 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2009-09-06 13:32:53 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2009-09-06 13:32:53 ----A---- C:\WINDOWS\TASKMAN.EXE
2009-09-06 13:32:52 ----A---- C:\WINDOWS\system32\batt.dll
2009-09-06 13:32:52 ----A---- C:\WINDOWS\NOTEPAD.EXE
2009-09-06 13:32:51 ----A---- C:\WINDOWS\system32\storprop.dll
2009-09-06 13:32:42 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
2009-09-06 13:32:39 ----RA---- C:\WINDOWS\SET8.tmp
2009-09-06 13:32:36 ----RA---- C:\WINDOWS\SET4.tmp
2009-09-06 13:32:34 ----RA---- C:\WINDOWS\SET3.tmp
2009-09-06 13:32:29 ----D---- C:\WINDOWS\system32\CatRoot2
2009-09-06 13:32:29 ----D---- C:\WINDOWS\system32\CatRoot
2009-09-06 13:32:23 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2009-09-06 13:32:02 ----A---- C:\WINDOWS\setuplog.txt
2009-09-06 13:31:58 ----SHD---- C:\System Volume Information
2009-09-06 13:31:58 ----D---- C:\Documents and Settings
2009-09-06 13:31:13 ----RSH---- C:\boot.ini
2009-09-06 13:28:38 ----A---- C:\WINDOWS\system32\RT-USB.DLL
2009-09-06 13:26:50 ----D---- C:\Auto-diagnostika
2009-09-06 13:26:30 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-09-06 13:26:30 ----RSD---- C:\WINDOWS\Fonts
2009-09-06 13:26:30 ----RD---- C:\WINDOWS\Web
2009-09-06 13:26:30 ----HD---- C:\WINDOWS\inf
2009-09-06 13:26:30 ----D---- C:\WINDOWS\WinSxS
2009-09-06 13:26:30 ----D---- C:\WINDOWS\twain_32
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\wins
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\wbem
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\usmt
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\spool
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\ShellExt
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\Setup
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\ras
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\oobe
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\npp
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\mui
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\inetsrv
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\IME
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\icsxml
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\ias
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\export
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\drivers
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\dhcp
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\config
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\3com_dmi
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\3076
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\2052
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\1054
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\1042
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\1041
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\1037
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\1033
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\1031
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\1028
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32\1025
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system32
2009-09-06 13:26:30 ----D---- C:\WINDOWS\system
2009-09-06 13:26:30 ----D---- C:\WINDOWS\security
2009-09-06 13:26:30 ----D---- C:\WINDOWS\Resources
2009-09-06 13:26:30 ----D---- C:\WINDOWS\repair
2009-09-06 13:26:30 ----D---- C:\WINDOWS\Provisioning
2009-09-06 13:26:30 ----D---- C:\WINDOWS\pchealth
2009-09-06 13:26:30 ----D---- C:\WINDOWS\PeerNet
2009-09-06 13:26:30 ----D---- C:\WINDOWS\NLDRV
2009-09-06 13:26:30 ----D---- C:\WINDOWS\mui
2009-09-06 13:26:30 ----D---- C:\WINDOWS\msapps
2009-09-06 13:26:30 ----D---- C:\WINDOWS\msagent
2009-09-06 13:26:30 ----D---- C:\WINDOWS\Media
2009-09-06 13:26:30 ----D---- C:\WINDOWS\java
2009-09-06 13:26:30 ----D---- C:\WINDOWS\ime
2009-09-06 13:26:30 ----D---- C:\WINDOWS\Help
2009-09-06 13:26:30 ----D---- C:\WINDOWS\ehome
2009-09-06 13:26:30 ----D---- C:\WINDOWS\Driver Cache
2009-09-06 13:26:30 ----D---- C:\WINDOWS\Debug
2009-09-06 13:26:30 ----D---- C:\WINDOWS\Cursors
2009-09-06 13:26:30 ----D---- C:\WINDOWS\Connection Wizard
2009-09-06 13:26:30 ----D---- C:\WINDOWS\Config
2009-09-06 13:26:30 ----D---- C:\WINDOWS\AppPatch
2009-09-06 13:26:30 ----D---- C:\WINDOWS\addins
2009-09-06 13:26:30 ----D---- C:\WINDOWS
2009-09-06 12:58:33 ----D---- C:\Documents and Settings\Administrator\Application Data\vlc
2009-09-06 12:57:45 ----D---- C:\Program Files\VideoLAN
2009-09-06 12:53:31 ----A---- C:\WINDOWS\system32\WMErrSKY.dll
2009-09-06 12:53:30 ----D---- C:\WINDOWS\system32\1051
2009-09-06 12:35:46 ----A---- C:\WINDOWS\iun6002.exe
2009-09-06 12:35:42 ----D---- C:\Program Files\Codec Pack - All In 1
2009-09-06 12:35:35 ----A---- C:\WINDOWS\Codec Pack - All In 1 Setup Log.txt
2009-09-06 12:33:42 ----D---- C:\Documents and Settings\Administrator\Application Data\Opera
2009-09-06 12:33:25 ----D---- C:\Program Files\Opera
2009-09-06 12:29:29 ----D---- C:\WINDOWS\system32\Lang
2009-09-06 12:27:44 ----A---- C:\WINDOWS\system32\RtlCPAPI.dll
2009-09-06 12:27:44 ----A---- C:\WINDOWS\system32\ChCfg.exe
2009-09-06 12:27:26 ----D---- C:\WINDOWS\system32\RTCOM
2009-09-06 12:26:51 ----HDC---- C:\WINDOWS\$NtUninstallKB888111WXPSP2$
2009-09-06 12:26:47 ----A---- C:\WINDOWS\SoundMan.exe
2009-09-06 12:26:46 ----A---- C:\WINDOWS\SkyTel.exe
2009-09-06 12:26:46 ----A---- C:\WINDOWS\RtlUpd.exe
2009-09-06 12:26:45 ----A---- C:\WINDOWS\RTLCPL.exe
2009-09-06 12:26:44 ----A---- C:\WINDOWS\RTHDCPL.exe
2009-09-06 12:26:44 ----A---- C:\WINDOWS\MicCal.exe
2009-09-06 12:26:44 ----A---- C:\WINDOWS\alcwzrd.exe
2009-09-06 12:26:44 ----A---- C:\WINDOWS\Alcmtr.exe
2009-09-06 12:26:43 ----D---- C:\Program Files\Realtek
2009-09-06 12:26:40 ----A---- C:\WINDOWS\RtlExUpd.dll
2009-09-06 12:24:50 ----D---- C:\Program Files\Synaptics
2009-09-06 12:24:50 ----A---- C:\WINDOWS\system32\SynTPFcs.dll
2009-09-06 12:24:50 ----A---- C:\WINDOWS\system32\SynTPCo2.dll
2009-09-06 12:24:50 ----A---- C:\WINDOWS\system32\SynTPAPI.dll
2009-09-06 12:24:50 ----A---- C:\WINDOWS\system32\SynCtrl.dll
2009-09-06 12:24:50 ----A---- C:\WINDOWS\system32\SynCOM.dll
2009-09-06 12:21:46 ----N---- C:\WINDOWS\system32\nvuide.exe
2009-09-06 12:21:24 ----A---- C:\WINDOWS\system32\nvunrm.exe
2009-09-06 12:21:22 ----A---- C:\WINDOWS\system32\nvusmb.exe
2009-09-06 12:20:43 ----A---- C:\WINDOWS\system32\NVCOI.DLL
2009-09-06 12:20:43 ----A---- C:\WINDOWS\system32\idecoiins.dll
2009-09-06 12:20:43 ----A---- C:\WINDOWS\system32\idecoi.dll
2009-09-06 12:20:40 ----A---- C:\WINDOWS\system32\nvconrm.dll
2009-09-06 12:20:40 ----A---- C:\WINDOWS\system32\fdco1ins.dll
2009-09-06 12:20:40 ----A---- C:\WINDOWS\system32\fdco1.dll
2009-09-06 12:20:40 ----A---- C:\WINDOWS\system32\fdco_l2052.dll
2009-09-06 12:20:40 ----A---- C:\WINDOWS\system32\fdco_l1046.dll
2009-09-06 12:20:40 ----A---- C:\WINDOWS\system32\fdco_l1042.dll
2009-09-06 12:20:40 ----A---- C:\WINDOWS\system32\fdco_l1041.dll
2009-09-06 12:20:40 ----A---- C:\WINDOWS\system32\fdco_l1040.dll
2009-09-06 12:20:40 ----A---- C:\WINDOWS\system32\fdco_l1036.dll
2009-09-06 12:20:40 ----A---- C:\WINDOWS\system32\fdco_l1034.dll
2009-09-06 12:20:40 ----A---- C:\WINDOWS\system32\fdco_l1031.dll
2009-09-06 12:20:40 ----A---- C:\WINDOWS\system32\fdco_l1028.dll
2009-09-06 12:20:40 ----A---- C:\WINDOWS\system32\bdco1ins.dll
2009-09-06 12:20:40 ----A---- C:\WINDOWS\system32\bdco1.dll
2009-09-06 12:18:01 ----D---- C:\Program Files\DIFX
2009-09-06 12:18:00 ----DC---- C:\WINDOWS\system32\DRVSTORE
2009-09-06 12:16:51 ----D---- C:\WINDOWS\BisonCam
2009-09-06 12:16:51 ----A---- C:\WINDOWS\system32\BisonRem.dll
2009-09-06 12:16:51 ----A---- C:\WINDOWS\M2000Twn.ini
2009-09-06 12:13:45 ----D---- C:\WINDOWS\tiinst
2009-09-06 12:12:50 ----D---- C:\WINDOWS\nview
2009-09-06 12:12:50 ----A---- C:\WINDOWS\system32\nvudisp.exe
2009-09-06 12:12:41 ----A---- C:\WINDOWS\system32\NVUNINST.EXE
2009-09-06 12:12:30 ----A---- C:\WINDOWS\system32\nwiz.exe
2009-09-06 12:12:30 ----A---- C:\WINDOWS\system32\nvwrszht.dll
2009-09-06 12:12:30 ----A---- C:\WINDOWS\system32\nvwrszhc.dll
2009-09-06 12:12:30 ----A---- C:\WINDOWS\system32\nvwrstr.dll
2009-09-06 12:12:30 ----A---- C:\WINDOWS\system32\nvwrssv.dll
2009-09-06 12:12:30 ----A---- C:\WINDOWS\system32\nvwrsru.dll
2009-09-06 12:12:30 ----A---- C:\WINDOWS\system32\nvwrsptb.dll
2009-09-06 12:12:30 ----A---- C:\WINDOWS\system32\nvwrspt.dll
2009-09-06 12:12:30 ----A---- C:\WINDOWS\system32\nvwrsno.dll
2009-09-06 12:12:30 ----A---- C:\WINDOWS\system32\nvwrsnl.dll
2009-09-06 12:12:30 ----A---- C:\WINDOWS\system32\nvwrsko.dll
2009-09-06 12:12:30 ----A---- C:\WINDOWS\system32\nvwrsja.dll
2009-09-06 12:12:30 ----A---- C:\WINDOWS\system32\nvwrsit.dll
2009-09-06 12:12:29 ----A---- C:\WINDOWS\system32\nvwrshe.dll
2009-09-06 12:12:29 ----A---- C:\WINDOWS\system32\nvwrsfr.dll
2009-09-06 12:12:29 ----A---- C:\WINDOWS\system32\nvwrsfi.dll
2009-09-06 12:12:29 ----A---- C:\WINDOWS\system32\nvwrses.dll
2009-09-06 12:12:29 ----A---- C:\WINDOWS\system32\nvwrseng.dll
2009-09-06 12:12:28 ----A---- C:\WINDOWS\system32\nvwrsde.dll
2009-09-06 12:12:28 ----A---- C:\WINDOWS\system32\nvwrsda.dll
2009-09-06 12:12:28 ----A---- C:\WINDOWS\system32\nvwrsar.dll
2009-09-06 12:12:28 ----A---- C:\WINDOWS\system32\nvwimg.dll
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvwdmcpl.dll
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvwddi.dll
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvsvc32.exe
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvshell.dll
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvrszht.dll
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvrszhc.dll
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvrstr.dll
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvrssv.dll
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvrsru.dll
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvrsptb.dll
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvrspt.dll
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvrsno.dll
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvrsnl.dll
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvrsko.dll
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvrsja.dll
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvrsit.dll
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvrshe.dll
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvrsfr.dll
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvrsfi.dll
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvrses.dll
2009-09-06 12:12:27 ----A---- C:\WINDOWS\system32\nvrseng.dll
2009-09-06 12:12:26 ----A---- C:\WINDOWS\system32\nvrsde.dll
2009-09-06 12:12:26 ----A---- C:\WINDOWS\system32\nvrsda.dll
2009-09-06 12:12:26 ----A---- C:\WINDOWS\system32\nvrsar.dll
2009-09-06 12:12:26 ----A---- C:\WINDOWS\system32\nvoglnt.dll
2009-09-06 12:12:26 ----A---- C:\WINDOWS\system32\nvmctray.dll
2009-09-06 12:12:26 ----A---- C:\WINDOWS\system32\nview.dll
2009-09-06 12:12:26 ----A---- C:\WINDOWS\system32\nvdspsch.exe
2009-09-06 12:12:23 ----A---- C:\WINDOWS\system32\nvcpl.dll
2009-09-06 12:12:22 ----A---- C:\WINDOWS\system32\nvcodins.dll
2009-09-06 12:12:22 ----A---- C:\WINDOWS\system32\nvcod.dll
2009-09-06 12:12:22 ----A---- C:\WINDOWS\system32\nvappbar.exe
2009-09-06 12:12:22 ----A---- C:\WINDOWS\system32\nvapi.dll
2009-09-06 12:12:21 ----A---- C:\WINDOWS\system32\keystone.exe
2009-09-06 12:10:29 ----D---- C:\WINDOWS\system32\ReinstallBackups
2009-09-06 12:10:25 ----D---- C:\Program Files\Launch Manager

======List of files/folders modified in the last 1 months======

2009-09-08 21:57:26 ----A---- C:\WINDOWS\win.ini
2009-09-08 21:18:22 ----A---- C:\WINDOWS\system.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AmdK8;AMD Processor Driver; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2006-05-10 36864]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2009-05-15 107256]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2009-05-15 55768]
R1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-04 14848]
R1 PQNTDrv;PQNTDrv; C:\WINDOWS\system32\drivers\PQNTDrv.sys [2002-09-17 4228]
R1 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2004-08-04 8832]
R2 AegisP;AEGIS Protocol (IEEE 802.1x) v3.2.0.3; C:\WINDOWS\system32\DRIVERS\AegisP.sys [2009-09-06 17801]
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2009-05-15 114472]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2009-05-15 133000]
R3 AR5211;Atheros Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\ar5211.sys [2005-01-11 449888]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2004-08-04 14080]
R3 DKbFltr;Dritek Keyboard Filter Driver; C:\WINDOWS\system32\DRIVERS\DKbFltr.sys [2006-01-20 17408]
R3 Epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2009-05-15 33096]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-08 138752]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-07-25 4353024]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2006-07-21 3685152]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-03-04 34176]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-03-04 13056]
R3 nvsmu;nvsmu; C:\WINDOWS\system32\DRIVERS\nvsmu.sys [2006-03-07 11136]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2006-05-26 193088]
R3 tifm21;tifm21; C:\WINDOWS\system32\drivers\tifm21.sys [2006-05-18 162560]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-03 26624]
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]
R3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2004-08-03 17024]
R3 usbvideo;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2004-08-04 78464]
S3 catchme;catchme; \??\C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-04 17024]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-04 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-04 85376]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-04 10880]
S3 RT-USB;Ross-Tech USB driver; C:\WINDOWS\system32\drivers\RT-USB.sys [2007-11-17 54400]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-04 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-04 15360]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-04 26496]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-04 19328]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ACS;Atheros Configuration Service; C:\WINDOWS\system32\acs.exe [2004-12-28 36864]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-05-15 731840]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2006-07-21 143426]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2005-09-23 29896]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2005-09-23 66240]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-05-15 20680]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2004-08-04 14336]

-----------------EOF-----------------

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Prosim o kontrolu.

Příspěvekod Damned » 10 zář 2009 13:01

Odinstaluj si ten Codec Pack - All In 1, XP Codec Pack a všechny přehrávače a kodeky co tam máš. Pak reinstaluj WMP-11. Pak vybereme jen jeden balík kodeků a jeden přehrávač.

Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok).
Zkopíruj do něj následující celý text označený zeleně:

File::
C:\WINDOWS\000001_.tmp
C:\WINDOWS\system32\CONFIG.TMP
C:\WINDOWS\SET8.tmp
C:\WINDOWS\SET4.tmp
C:\WINDOWS\SET3.tmp
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\catchme.sys

Folder::
C:\WINDOWS\000001_.tmp
C:\WINDOWS\system32\CONFIG.TMP
C:\WINDOWS\SET8.tmp
C:\WINDOWS\SET4.tmp
C:\WINDOWS\SET3.tmp

FileLook::
C:\WINDOWS\system32\results.txt

Driver::
catchme;catchme
catchme

Rootkit::
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\catchme.sys




Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.


Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe
a když se oba soubory překryjí, skript upusť.
Obrázek

- Automaticky se spustí ComboFix, oprava může trvat i déle než 10 minut. ! Nech ComboFix dokončit svou práci !
- Vlož sem log, který vyběhne v závěru čistícího procesu
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner

pome
nováček
Příspěvky: 14
Registrován: září 09
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosim o kontrolu.

Příspěvekod pome » 10 zář 2009 20:58

Nech sa páči--->
ComboFix 09-09-08.01 - Administrator 10.09.2009 20:49.3.1 - NTFSx86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.421.1033.18.767.433 [GMT 2:00]
Running from: c:\documents and settings\Administrator\Desktop\ComboFix.exe
Command switches used :: c:\documents and settings\Administrator\Desktop\CFScript.txt
AV: ESET Smart Security 4.0 *On-access scanning disabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *disabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}

WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!

FILE ::
"c:\docume~1\ADMINI~1\LOCALS~1\Temp\catchme.sys"
"c:\windows\000001_.tmp"
"c:\windows\SET3.tmp"
"c:\windows\SET4.tmp"
"c:\windows\SET8.tmp"
"c:\windows\system32\CONFIG.TMP"
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\windows\000001_.tmp
c:\windows\SET3.tmp
c:\windows\SET4.tmp
c:\windows\SET8.tmp
c:\windows\system32\CONFIG.TMP

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_CATCHME
-------\Service_catchme


((((((((((((((((((((((((( Files Created from 2009-08-10 to 2009-09-10 )))))))))))))))))))))))))))))))
.

2009-09-10 18:35 . 2008-09-16 19:23 168448 ----a-w- c:\windows\system32\unrar.dll
2009-09-10 18:35 . 2009-05-29 21:37 205824 ----a-w- c:\windows\system32\xvidvfw.dll
2009-09-10 18:35 . 2009-05-29 21:31 881664 ----a-w- c:\windows\system32\xvidcore.dll
2009-09-10 18:35 . 2004-01-25 16:18 217088 ----a-w- c:\windows\system32\yv12vfw.dll
2009-09-10 18:35 . 2009-05-01 21:02 90112 ----a-w- c:\windows\system32\dpl100.dll
2009-09-10 18:35 . 2008-11-06 16:37 3596288 ----a-w- c:\windows\system32\qt-dx331.dll
2009-09-10 18:35 . 2009-05-01 21:02 685056 ----a-w- c:\windows\system32\divx.dll
2009-09-10 18:35 . 2009-06-02 16:11 85504 ----a-w- c:\windows\system32\ff_vfw.dll
2009-09-10 18:35 . 2009-09-10 18:36 -------- d-----w- c:\program files\K-Lite Codec Pack
2009-09-10 09:51 . 2009-09-10 09:52 -------- d-----w- C:\rsit
2009-09-08 19:59 . 2009-09-08 19:59 -------- d-----w- c:\program files\Microsoft Works
2009-09-08 19:59 . 2009-09-08 19:59 -------- d-----w- c:\program files\MSBuild
2009-09-08 19:58 . 2009-09-08 19:58 -------- d-----w- c:\program files\Microsoft.NET
2009-09-08 19:57 . 2009-09-10 18:29 -------- d-----w- c:\program files\Windows Media Connect 2
2009-09-08 19:55 . 2009-09-08 19:55 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2009-09-08 19:53 . 2009-09-08 19:59 -------- d-----w- c:\windows\SHELLNEW
2009-09-08 19:53 . 2009-09-08 19:53 -------- d-----w- c:\documents and settings\Administrator\Local Settings\Application Data\Microsoft Help
2009-09-08 19:52 . 2009-09-08 20:01 -------- d-----w- c:\documents and settings\All Users\Application Data\Microsoft Help
2009-09-08 19:52 . 2009-09-08 19:52 -------- d-----r- C:\MSOCache
2009-09-08 19:49 . 2009-09-10 18:28 -------- d-----w- c:\windows\system32\drivers\UMDF
2009-09-08 19:49 . 2009-09-08 19:49 -------- d-----w- c:\windows\system32\LogFiles
2009-09-08 19:22 . 2009-09-08 19:22 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2009-09-08 18:38 . 2009-09-10 08:16 -------- d-----w- c:\documents and settings\Administrator\Application Data\skypePM
2009-09-08 18:38 . 2009-09-10 12:10 -------- d-----w- c:\program files\Mv2Player
2009-09-08 18:38 . 2009-09-10 18:47 -------- d-----w- c:\documents and settings\Administrator\Application Data\Skype
2009-09-08 18:37 . 2009-09-08 18:37 -------- d-----w- c:\program files\Common Files\Skype
2009-09-08 18:37 . 2009-09-08 18:37 -------- d-----r- c:\program files\Skype
2009-09-08 18:37 . 2009-09-08 18:37 -------- d-----w- c:\documents and settings\All Users\Application Data\Skype
2009-09-08 18:29 . 2001-08-17 20:48 12160 ----a-w- c:\windows\system32\drivers\mouhid.sys
2009-09-08 18:29 . 2004-08-04 05:58 14848 ----a-w- c:\windows\system32\drivers\kbdhid.sys
2009-09-08 18:28 . 2001-08-17 21:02 9600 ----a-w- c:\windows\system32\drivers\hidusb.sys
2009-09-08 18:09 . 2009-09-08 18:09 -------- d-----w- c:\documents and settings\Administrator\Application Data\Malwarebytes
2009-09-08 18:09 . 2009-08-03 20:36 38160 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-09-08 18:09 . 2009-09-08 18:09 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2009-09-08 18:09 . 2009-08-03 20:36 19096 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-09-08 18:09 . 2009-09-08 18:09 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-09-08 18:05 . 2009-09-08 18:05 -------- d-----w- c:\documents and settings\Administrator\Application Data\ESET
2009-09-08 18:01 . 2009-09-08 18:01 -------- d-----w- c:\program files\ESET
2009-09-08 18:01 . 2009-09-08 18:01 -------- d-----w- c:\documents and settings\All Users\Application Data\ESET
2009-09-08 17:45 . 2009-09-08 17:45 -------- d-----w- c:\program files\Trend Micro
2009-09-08 09:42 . 2009-09-08 09:42 -------- d-----w- c:\program files\HD Tune
2009-09-08 09:37 . 2009-09-08 09:37 -------- d-----w- c:\windows\Logs
2009-09-06 19:07 . 2009-09-06 19:07 -------- d-----w- c:\windows\system32\wbem\snmp
2009-09-06 19:07 . 2009-09-06 19:07 -------- d-----w- c:\windows\system32\xircom
2009-09-06 19:07 . 2009-09-06 19:07 -------- d-----w- c:\program files\microsoft frontpage
2009-09-06 19:01 . 2009-09-06 19:01 -------- d-----w- c:\windows\ServicePackFiles
2009-09-06 19:01 . 2006-09-25 15:58 23856 ----a-w- c:\windows\system32\spupdsvc.exe

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-09-08 18:43 . 2009-09-06 18:56 -------- d-----w- c:\documents and settings\Administrator\Application Data\U3
2009-09-06 19:08 . 2009-09-06 19:08 17801 ----a-w- c:\windows\system32\drivers\AegisP.sys
2009-09-06 10:10 . 2009-09-06 10:10 -------- d-----w- c:\program files\Launch Manager
.

(((((((((((((((((((((((((((((((((((((((((((( Look )))))))))))))))))))))))))))))))))))))))))))))))))))))))))
.

--- c:\windows\system32\results.txt ---
Company: ------
File Description: ------
File Version: ------
Product Name: ------
Copyright: ------
Original Filename: ------
File size: 308
Created time: 2009-09-06 19:08
Modified time: 2009-09-06 19:08
MD5: 8070764A925643A8F32320703D80D437
SHA1: B7B2269F3EA46AEEE20ADC1FECD74D66B7D2EA9F


((((((((((((((((((((((((((((( SnapShot@2009-09-08_18.48.05 )))))))))))))))))))))))))))))))))))))))))
.
+ 2006-10-26 11:40 . 2006-10-26 11:40 49152 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0\mfc80KOR.dll
+ 2006-10-26 11:40 . 2006-10-26 11:40 49152 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0\mfc80JPN.dll
+ 2006-10-26 11:40 . 2006-10-26 11:40 61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0\mfc80ITA.dll
+ 2006-10-26 11:40 . 2006-10-26 11:40 45056 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0\mfc80CHT.dll
+ 2006-10-26 11:40 . 2006-10-26 11:40 40960 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0\mfc80CHS.dll
+ 2006-10-26 11:40 . 2006-10-26 11:40 61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0\mfc80FRA.dll
+ 2006-10-26 11:40 . 2006-10-26 11:40 61440 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0\mfc80ESP.dll
+ 2006-10-26 11:40 . 2006-10-26 11:40 57344 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0\mfc80ENU.dll
+ 2006-10-26 11:40 . 2006-10-26 11:40 65536 c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0\mfc80DEU.dll
+ 2006-10-26 11:40 . 2006-10-26 11:40 57344 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_dec6ddd2\mfcm80u.dll
+ 2006-10-26 11:40 . 2006-10-26 11:40 69632 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_dec6ddd2\mfcm80.dll
+ 2006-10-26 11:40 . 2006-10-26 11:40 95744 c:\windows\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_6e805841\ATL80.dll
+ 2006-09-28 16:56 . 2006-09-28 16:56 55808 c:\windows\system32\WudfSvc.dll
+ 2006-09-28 18:13 . 2006-09-28 18:13 95344 c:\windows\system32\WUDFCoinstaller.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 38400 c:\windows\system32\wpdshextres.dll
+ 2006-10-18 18:00 . 2006-10-18 18:00 17408 c:\windows\system32\wpdshextautoplay.exe
+ 2006-10-18 19:47 . 2006-10-18 19:47 63488 c:\windows\system32\wpdmtpus.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 35840 c:\windows\system32\wpdconns.dll
+ 2004-08-04 00:56 . 2007-01-05 18:57 99840 c:\windows\system32\wmpshell.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 37376 c:\windows\system32\wmdmps.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 33792 c:\windows\system32\wmdmlog.dll
+ 2006-07-24 08:50 . 2006-07-24 08:50 47920 c:\windows\system32\VBAME.DLL
+ 2009-09-10 18:30 . 2006-09-25 15:58 14640 c:\windows\system32\spmsg.dll
+ 2006-07-24 08:50 . 2006-07-24 08:50 39728 c:\windows\system32\SCP32.DLL
+ 2001-08-23 12:00 . 2009-09-10 18:50 58930 c:\windows\system32\perfc009.dat
- 2001-08-23 12:00 . 2009-09-08 18:37 58930 c:\windows\system32\perfc009.dat
+ 2004-08-04 00:56 . 2006-10-18 19:47 27136 c:\windows\system32\mspmsnsv.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 11264 c:\windows\system32\LAPRXY.dll
+ 2006-10-26 12:10 . 2006-10-26 12:10 33088 c:\windows\system32\FM20ENU.DLL
+ 2006-09-28 17:00 . 2006-09-28 17:00 82944 c:\windows\system32\drivers\WudfRd.sys
+ 2006-09-28 16:55 . 2006-09-28 16:55 77568 c:\windows\system32\drivers\WudfPf.sys
+ 2006-10-18 18:00 . 2006-10-18 18:00 38528 c:\windows\system32\drivers\wpdusb.sys
+ 2009-09-08 19:55 . 2009-09-08 19:55 50688 c:\windows\Installer\1a1a8f.msi
+ 2009-09-08 20:00 . 2009-09-08 20:00 35088 c:\windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\oisicon.exe
+ 2009-09-08 20:00 . 2009-09-08 20:00 18704 c:\windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\mspicons.exe
+ 2009-09-08 20:00 . 2009-09-08 20:00 20240 c:\windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\cagicon.exe
+ 2009-09-08 19:59 . 2009-09-08 19:59 39624 c:\windows\assembly\GAC_MSIL\System.AddIn\2.0.0.0__b03f5f7f11d50a3a\System.AddIn.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 47832 c:\windows\assembly\GAC_MSIL\System.AddIn.Contract\2.0.0.0__b03f5f7f11d50a3a\System.AddIn.Contract.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 72472 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.DesignTime\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.DesignTime.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 39704 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Contract\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Contract.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 39712 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.ComRPCChannel\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.ComRPCChannel.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 60200 c:\windows\assembly\GAC_MSIL\Microsoft.Office.InfoPath\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Infopath.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 39728 c:\windows\assembly\GAC_MSIL\Microsoft.Office.InfoPath.Vsta\12.0.0.0__71e9bce111e9429c\Microsoft.Office.InfoPath.Vsta.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 43840 c:\windows\assembly\GAC_MSIL\Microsoft.Office.InfoPath.FormControl\12.0.0.0__71e9bce111e9429c\microsoft.office.infopath.formcontrol.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 16384 c:\windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 11544 c:\windows\assembly\GAC\Policy.11.0.office\12.0.0.0__71e9bce111e9429c\Policy.11.0.Office.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 12080 c:\windows\assembly\GAC\Policy.11.0.Microsoft.Vbe.Interop\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Vbe.Interop.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 12096 c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Word\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Word.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 12104 c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.SmartTag\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.SmartTag.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 12104 c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Publisher\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Publisher.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 12112 c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.PowerPoint\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.PowerPoint.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 12632 c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.OutlookViewCtl\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.OutlookViewCtl.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 12104 c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Outlook\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Outlook.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 12616 c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.InfoPath\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.InfoPath.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 12616 c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.InfoPath.Xml\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.InfoPath.Xml.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 12096 c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Graph\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Graph.dll
+ 2009-09-08 19:58 . 2009-09-08 19:58 12096 c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Excel\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Excel.dll
+ 2009-09-08 19:58 . 2009-09-08 19:58 12104 c:\windows\assembly\GAC\Policy.11.0.Microsoft.Office.Interop.Access\12.0.0.0__71e9bce111e9429c\Policy.11.0.Microsoft.Office.Interop.Access.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 64288 c:\windows\assembly\GAC\Microsoft.Vbe.Interop\12.0.0.0__71e9bce111e9429c\Microsoft.Vbe.Interop.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 13312 c:\windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.stdformat.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 20280 c:\windows\assembly\GAC\Microsoft.Office.Interop.SmartTag\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.SmartTag.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 35648 c:\windows\assembly\GAC\Microsoft.Office.Interop.OutlookViewCtl\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.OutlookViewCtl.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 88896 c:\windows\assembly\GAC\Microsoft.Office.Interop.InfoPath.Xml\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.InfoPath.Xml.dll
+ 2009-09-08 19:58 . 2009-09-08 19:58 80696 c:\windows\assembly\GAC\Microsoft.Office.Interop.Access.Dao\12.0.0.0__71e9bce111e9429c\Microsoft.Office.interop.access.dao.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 16712 c:\windows\assembly\GAC\Microsoft.Office.InfoPath.Permission\12.0.0.0__71e9bce111e9429c\Microsoft.Office.InfoPath.Permission.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 31560 c:\windows\assembly\GAC\ipdmctrl\11.0.0.0__71e9bce111e9429c\IPDMCTRL.DLL
+ 2009-09-08 19:59 . 2009-09-08 19:59 65536 c:\windows\assembly\GAC\dao\10.0.4504.0__31bf3856ad364e35\DAO.DLL
+ 2009-09-08 19:57 . 2006-10-04 14:05 39424 c:\windows\AppPatch\acadproc.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 4096 c:\windows\system32\wmvdmoe2.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 4096 c:\windows\system32\wmvdmod.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 4096 c:\windows\system32\WMVADVE.DLL
+ 2006-10-18 19:47 . 2006-10-18 19:47 4096 c:\windows\system32\WMVADVD.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 4096 c:\windows\system32\wmsdmoe2.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 4096 c:\windows\system32\wmsdmod.dll
+ 2006-10-18 19:58 . 2006-10-18 19:58 8704 c:\windows\system32\wdfmgr.exe
+ 2006-10-18 19:47 . 2006-10-18 19:47 4096 c:\windows\system32\wdfapi.dll
+ 2006-10-18 19:58 . 2006-10-18 19:58 8704 c:\windows\system32\uwdf.exe
+ 2004-08-04 00:56 . 2006-10-18 19:47 4096 c:\windows\system32\MPG4DMOD.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 4096 c:\windows\system32\MP4SDMOD.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 4096 c:\windows\system32\MP43DMOD.dll
+ 2004-08-04 00:56 . 2007-01-05 18:50 6656 c:\windows\system32\asferror.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 4096 c:\windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\msdatasrc.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 4608 c:\windows\assembly\GAC\Extensibility\7.0.3300.0__b03f5f7f11d50a3a\extensibility.dll
+ 2006-09-28 16:56 . 2006-09-28 16:56 316416 c:\windows\system32\WUDFx.dll
+ 2006-09-28 16:56 . 2006-09-28 16:56 165376 c:\windows\system32\WudfPlatform.dll
+ 2006-09-28 16:56 . 2006-09-28 16:56 146432 c:\windows\system32\WudfHost.exe
+ 2006-10-18 19:47 . 2006-10-18 19:47 356352 c:\windows\system32\wpdsp.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 133632 c:\windows\system32\WPDShServiceObj.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 154624 c:\windows\system32\wpdmtp.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 629760 c:\windows\system32\wpd_ci.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 656896 c:\windows\system32\WMVXENCD.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 767488 c:\windows\system32\WMVSENCD.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 603648 c:\windows\system32\WMSPDMOD.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 204288 c:\windows\system32\wmpsrcwp.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 130048 c:\windows\system32\wmpps.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 613376 c:\windows\system32\wmpmde.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 295936 c:\windows\system32\wmpeffects.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 314880 c:\windows\system32\wmpdxm.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 242688 c:\windows\system32\wmpasf.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 937984 c:\windows\system32\WMNetMgr.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 157184 c:\windows\system32\wmidx.dll
+ 2004-08-04 00:56 . 2007-01-05 18:55 238592 c:\windows\system32\wmerror.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 535040 c:\windows\system32\wmdrmsdk.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 348672 c:\windows\system32\wmdrmnet.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 429056 c:\windows\system32\wmdrmdev.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 222208 c:\windows\system32\WMASF.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 757248 c:\windows\system32\WMADMOD.dll
+ 2006-10-26 11:45 . 2006-10-26 11:45 293376 c:\windows\system32\WISPTIS.EXE
+ 2004-08-04 00:56 . 2006-10-18 19:47 211456 c:\windows\system32\qasf.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 199168 c:\windows\system32\PortableDeviceWMDRM.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 132096 c:\windows\system32\PortableDeviceWiaCompat.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 166912 c:\windows\system32\PortableDeviceTypes.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 101888 c:\windows\system32\PortableDeviceClassExtension.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 284160 c:\windows\system32\PortableDeviceApi.dll
- 2001-08-23 12:00 . 2009-09-08 18:37 392630 c:\windows\system32\perfh009.dat
+ 2001-08-23 12:00 . 2009-09-10 18:50 392630 c:\windows\system32\perfh009.dat
+ 2004-08-04 00:56 . 2006-10-18 19:47 321536 c:\windows\system32\mswmdm.dll
+ 2006-07-24 08:50 . 2006-07-24 08:50 125744 c:\windows\system32\MSSTDFMT.DLL
+ 2004-08-04 00:57 . 2006-10-18 19:47 414208 c:\windows\system32\msscp.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 175616 c:\windows\system32\mspmsp.dll
+ 2004-08-04 00:57 . 2006-10-18 19:47 179712 c:\windows\system32\msnetobj.dll
+ 2006-10-02 13:28 . 2006-10-02 13:28 312128 c:\windows\system32\msdelta.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 259072 c:\windows\system32\MPG4DECD.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 317440 c:\windows\system32\MP4SDECD.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 259072 c:\windows\system32\MP43DECD.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 212992 c:\windows\system32\MFPLAT.dll
+ 2004-08-04 00:56 . 2006-10-18 18:03 100864 c:\windows\system32\logagent.exe
+ 2006-10-26 11:45 . 2006-10-26 11:45 207360 c:\windows\system32\INKED.DLL
+ 2009-09-06 11:31 . 2009-09-08 20:03 264616 c:\windows\system32\FNTCACHE.DAT
+ 2004-08-04 00:57 . 2006-10-18 19:47 991744 c:\windows\system32\drmv2clt.dll
+ 2006-10-18 18:00 . 2006-10-18 18:00 249856 c:\windows\system32\drmupgds.exe
+ 2006-10-18 19:47 . 2006-10-18 19:47 671232 c:\windows\system32\drivers\UMDF\wpdmtpdr.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 229376 c:\windows\system32\cewmdm.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 542720 c:\windows\system32\blackbox.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 276992 c:\windows\system32\audiodev.dll
+ 2009-09-08 19:57 . 2009-09-08 19:57 515072 c:\windows\Installer\1a1aba.msi
+ 2009-09-08 19:57 . 2009-09-08 19:57 506880 c:\windows\Installer\1a1ab4.msi
+ 2009-09-08 19:57 . 2009-09-08 19:57 513536 c:\windows\Installer\1a1aad.msi
+ 2009-09-08 19:56 . 2009-09-08 19:56 507904 c:\windows\Installer\1a1aa7.msi
+ 2009-09-08 19:55 . 2009-09-08 19:55 518144 c:\windows\Installer\1a1aa1.msi
+ 2009-09-08 19:55 . 2009-09-08 19:55 516608 c:\windows\Installer\1a1a9b.msi
+ 2009-09-08 19:53 . 2009-09-08 19:53 220504 c:\windows\Installer\{90120000-006E-041B-0000-0000000FF1CE}\misc.exe
+ 2009-09-08 20:00 . 2009-09-08 20:00 888080 c:\windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\wordicon.exe
+ 2009-09-08 20:00 . 2009-09-08 20:00 272648 c:\windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\pubs.exe
+ 2009-09-08 20:00 . 2009-09-08 20:00 922384 c:\windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\pptico.exe
+ 2009-09-08 20:00 . 2009-09-08 20:00 845584 c:\windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\outicon.exe
+ 2009-09-08 20:00 . 2009-09-08 20:00 217864 c:\windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\misc.exe
+ 2009-09-08 20:00 . 2009-09-08 20:00 159504 c:\windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\inficon.exe
+ 2004-08-04 00:56 . 2007-01-05 18:55 316416 c:\windows\inf\unregmp2.exe
+ 2009-09-08 19:59 . 2009-09-08 19:59 330520 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Blueprints\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Blueprints.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 105248 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.AddInManager\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.AddInManager.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 211736 c:\windows\assembly\GAC_MSIL\Microsoft.VisualStudio.Tools.Applications.Adapter\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.Adapter.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 609104 c:\windows\assembly\GAC_MSIL\Microsoft.Office.InfoPath.Client.Internal.Host\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Infopath.Client.Internal.Host.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 367400 c:\windows\assembly\GAC_32\Microsoft.VisualStudio.Tools.Applications.InteropAdapter\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualStudio.Tools.Applications.InteropAdapter.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 118112 c:\windows\assembly\GAC_32\Microsoft.Office.InfoPath.Client.Internal.Host.Interop\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Infopath.Client.Internal.Host.Interop.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 416544 c:\windows\assembly\GAC\office\12.0.0.0__71e9bce111e9429c\OFFICE.DLL
+ 2009-09-08 19:59 . 2009-09-08 19:59 229376 c:\windows\assembly\GAC\mscomctl\10.0.4504.0__31bf3856ad364e35\MSCOMCTL.DLL
+ 2009-09-08 19:59 . 2009-09-08 19:59 371496 c:\windows\assembly\GAC\Microsoft.Vbe.Interop.Forms\11.0.0.0__71e9bce111e9429c\Microsoft.Vbe.Interop.Forms.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 781104 c:\windows\assembly\GAC\Microsoft.Office.Interop.Word\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Word.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 232248 c:\windows\assembly\GAC\Microsoft.Office.Interop.Publisher\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Publisher.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 248632 c:\windows\assembly\GAC\Microsoft.Office.Interop.PowerPoint\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.PowerPoint.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 920376 c:\windows\assembly\GAC\Microsoft.Office.Interop.Outlook\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Outlook.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 146232 c:\windows\assembly\GAC\Microsoft.Office.Interop.InfoPath\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.InfoPath.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 404296 c:\windows\assembly\GAC\Microsoft.Office.Interop.InfoPath.SemiTrust\11.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.InfoPath.SemiTrust.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 150320 c:\windows\assembly\GAC\Microsoft.Office.Interop.Graph\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Graph.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 110592 c:\windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\adodb.dll
+ 2006-10-26 11:40 . 2006-10-26 11:40 1079808 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_dec6ddd2\mfc80u.dll
+ 2006-10-26 11:40 . 2006-10-26 11:40 1093632 c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_dec6ddd2\mfc80.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 2603008 c:\windows\system32\WpdShext.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 1382912 c:\windows\system32\WMVSDECD.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 1574912 c:\windows\system32\WMVENCOD.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 1543680 c:\windows\system32\WMVDECOD.dll
+ 2004-08-04 00:57 . 2006-10-18 19:47 2450944 c:\windows\system32\wmvcore.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 1329152 c:\windows\system32\WMSPDMOE.dll
+ 2004-08-04 00:56 . 2007-01-05 19:33 8257536 c:\windows\system32\wmploc.dll
+ 2006-10-18 19:47 . 2006-10-18 19:47 1661440 c:\windows\system32\wmpencen.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 1117696 c:\windows\system32\WMADMOE.dll
+ 2006-10-26 12:10 . 2006-10-26 12:10 1190688 c:\windows\system32\FM20.DLL
+ 2009-09-08 19:58 . 2009-09-08 19:58 1667072 c:\windows\Installer\1a1acc.msi
+ 2009-09-08 19:57 . 2009-09-08 19:57 1666560 c:\windows\Installer\1a1ac6.msi
+ 2009-09-08 19:57 . 2009-09-08 19:57 1666560 c:\windows\Installer\1a1ac0.msi
+ 2009-09-08 19:55 . 2009-09-08 19:55 2338816 c:\windows\Installer\1a1a95.msi
+ 2009-09-08 19:54 . 2009-09-08 19:54 1654784 c:\windows\Installer\1a1a86.msi
+ 2009-09-08 19:54 . 2009-09-08 19:54 2039808 c:\windows\Installer\1a1a80.msi
+ 2009-09-08 19:54 . 2009-09-08 19:54 1727488 c:\windows\Installer\1a1a7a.msi
+ 2009-09-08 19:53 . 2009-09-08 19:53 2410496 c:\windows\Installer\1a1a74.msi
+ 2009-09-08 20:00 . 2009-09-08 20:00 1172240 c:\windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\xlicons.exe
+ 2009-09-08 20:00 . 2009-09-08 20:00 1165584 c:\windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\accicons.exe
+ 2009-09-08 19:59 . 2009-09-08 19:59 1276720 c:\windows\assembly\GAC\Microsoft.Office.Interop.Excel\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Excel.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 1612592 c:\windows\assembly\GAC\Microsoft.Office.Interop.Access\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Access.dll
+ 2009-09-08 19:59 . 2009-09-08 19:59 8007680 c:\windows\assembly\GAC\Microsoft.mshtml\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.mshtml.dll
+ 2004-08-04 00:56 . 2006-10-18 19:47 10834432 c:\windows\system32\wmp.dll
+ 2009-09-08 20:00 . 2009-09-08 20:00 15830016 c:\windows\Installer\1a1adb.msi
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2009-09-02 25623336]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ACU"="c:\program files\Atheros\ACU.exe" [2005-01-31 253952]
"LManager"="c:\progra~1\LAUNCH~1\LManager.exe" [2006-07-25 630784]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-07-21 7581696]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2006-07-21 86016]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2006-05-26 786521]
"AzMixerSel"="c:\program files\Realtek\InstallShield\AzMixerSel.exe" [2005-06-12 53248]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2009-05-14 2029640]
"RTHDCPL"="RTHDCPL.EXE" - c:\windows\RTHDCPL.exe [2006-07-22 16261632]
"SkyTel"="SkyTel.EXE" - c:\windows\SkyTel.exe [2006-05-17 2879488]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-04 15360]

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [15.5.2009 0:47 107256]
R2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [15.5.2009 0:47 731840]
S3 RT-USB;Ross-Tech USB driver;c:\windows\system32\drivers\RT-USB.SYS [6.9.2009 13:28 54400]
.
.
------- Supplementary Scan -------
.
IE: E&xportovať do programu Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-09-10 20:54
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'explorer.exe'(3008)
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\acs.exe
c:\windows\system32\nvsvc32.exe
c:\windows\system32\rundll32.exe
c:\program files\Skype\Plugin Manager\skypePM.exe
.
**************************************************************************
.
Completion time: 2009-09-10 20:56 - machine was rebooted
ComboFix-quarantined-files.txt 2009-09-10 18:56
ComboFix2.txt 2009-09-08 19:19
ComboFix3.txt 2009-09-08 18:48

Pre-Run: 19 564 732 416 bytes free
Post-Run: 9 adresárov, 19 481 231 360 voľných bajtov

361

Uživatelský avatar
Damned
Tvůrce článků
Master Level 9
Master Level 9
Příspěvky: 8353
Registrován: prosinec 06
Bydliště: Rokycany
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Prosim o kontrolu.

Příspěvekod Damned » 10 zář 2009 21:10

Soubor: c:\windows\system32\results.txt smaž.

V logu nevidím nic, co by ti mělo, z hlediska virů a podobných šmejdů bránit v koukání na filmy. Funguje ti to s novými kodeky?

Odinstaluj ComboFix.
ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix[mezera]/u

takže jestli nejsou problémy,tak vyčisti systém CCleanerem
a použij i T-Cleaner
smaže vše po Combu,SDFixu,Avengeru,MWAVu atd.-stáhneš->spustíš

(pozn.Pokud máš AVG, avast! nebo Aviru, před stažením T-Cleaneru a po dobu čištění deaktivuj AVG, avast! i Aviru (i rezidenty), následně T-Cleaner smaž a zapni si AVG,avast!, Aviru.)


Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni select all found, pak klik empty selected.
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.

ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache,
cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer,
Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
Nic není nemožné, proto tam, kde jsme s rozumem v koncích, neváháme použít kladivo.
Chceš-li vědět, co je nového, podívej se do starých knih.
Damnedovy češtiny - překlady programů pro údržbu PC
HiJackThis 2+návod FCleaner+čeština Wise Registry Cleaner


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: DotNetDotCom.org [Bot], Majestic-12 [Bot] a 6 hostů