Combofix 3
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\MountOverlayIcon]
@="{0F49CF41-FD97-4942-9F2A-35E8B489E7FB}"
[HKEY_CLASSES_ROOT\CLSID\{0F49CF41-FD97-4942-9F2A-35E8B489E7FB}]
2010-10-20 11:22 257024 ----a-w- c:\program files\WinMount\WinMTExt.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Eee Docking"="c:\program files\ASUS\Eee Docking\Eee Docking.exe" [2010-06-10 414384]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2010-04-27 9177632]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2009-11-19 1594664]
"ASUSPRP"="c:\program files\ASUS\APRP\APRP.EXE" [2010-12-22 2018032]
"SynAsusAcpi"="c:\program files\Synaptics\SynTP\SynAsusAcpi.exe" [2009-11-19 83240]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-04-19 142104]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-04-19 174360]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-04-19 150808]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-09-17 254896]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-05-09 4858968]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
AsusVibeLauncher.lnk - c:\program files\ASUS\AsusVibe\AsusVibeLauncher.exe /start [2011-11-16 549040]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"MIDI1"=vpnt.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2009-02-28 01:10 35696 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CapsHook]
2010-09-08 02:45 34728 ----a-w- c:\windows\System32\AsusSender.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotkeyMon]
2010-09-08 02:45 34728 ----a-w- c:\windows\System32\AsusSender.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotkeyService]
2010-09-08 02:45 34728 ----a-w- c:\windows\System32\AsusSender.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LiveUpdate]
2010-09-08 02:45 34728 ----a-w- c:\windows\System32\AsusSender.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn GUI]
2011-01-11 17:04 63048 ----a-w- c:\program files\LogMeIn\x86\LogMeInSystray.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SuperHybridEngine]
2010-09-08 02:45 34728 ----a-w- c:\windows\System32\AsusSender.exe
.
R1 MpKsl39c8afa5;MpKsl39c8afa5;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{FF593350-875E-4466-B015-3459668779BC}\MpKsl39c8afa5.sys [x]
R3 androidusb;SAMSUNG Android Composite ADB Interface Driver;c:\windows\system32\Drivers\ssadadb.sys [2011-05-13 30312]
R3 btusbflt;Bluetooth USB Filter;c:\windows\system32\drivers\btusbflt.sys [2009-07-01 43944]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [x]
R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS\ew_hwusbdev.sys [2011-07-12 102784]
R3 ewusbnet;HUAWEI USB-NDIS miniport;c:\windows\system32\DRIVERS\ewusbnet.sys [2011-07-12 349184]
R3 hwusbfake;Huawei DataCard USB Fake;c:\windows\system32\DRIVERS\ewusbfake.sys [2009-07-23 100736]
R3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\DRIVERS\ssadbus.sys [2011-05-13 121064]
R3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\DRIVERS\ssadmdfl.sys [2011-05-13 12776]
R3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\DRIVERS\ssadmdm.sys [2011-05-13 136808]
R3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM);c:\windows\system32\DRIVERS\ssadserd.sys [2011-05-13 114280]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R4 AsusService;Asus Launcher Service;c:\windows\System32\AsusService.exe [2009-08-19 219136]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 51040]
S0 aswRvrt;aswRvrt; [x]
S0 aswVmm;aswVmm; [x]
S1 AsUpIO;AsUpIO;c:\windows\system32\drivers\AsUpIO.sys [2010-03-31 11520]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 WMDrive;WMDrive;c:\windows\system32\drivers\WMDrive.sys [2011-07-03 65856]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2013-05-09 66336]
S2 cvhsvc;Client Virtualization Handler;c:\program files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2012-01-04 822624]
S2 LMIGuardianSvc;LMIGuardianSvc;c:\program files\LogMeIn\x86\LMIGuardianSvc.exe [2011-09-26 374152]
S2 LMIInfo;LogMeIn Kernel Information Provider;c:\program files\LogMeIn\x86\RaInfo.sys [2011-01-11 12856]
S2 sftlist;Application Virtualization Client;c:\program files\Microsoft Application Virtualization Client\sftlist.exe [2011-10-01 508776]
S2 TeamViewer4;TeamViewer 4;c:\program files\TeamViewer\Version4\TeamViewer_Service.exe [2009-05-06 185640]
S3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.sys [2011-07-12 73344]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x86.sys [2010-08-24 68208]
S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys [2011-10-01 579944]
S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys [2011-10-01 194408]
S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys [2011-10-01 21864]
S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys [2011-10-01 19304]
S3 sftvsa;Application Virtualization Service Agent;c:\program files\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-01 219496]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS fdrespub AppIDSvc QWAVE wcncsvc
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-07-31 15:48 1173456 ----a-w- c:\program files\Google\Chrome\Application\28.0.1500.95\Installer\chrmstp.exe
.
.
------- Doplňkový sken -------
.
uStart Page =
hxxp://www.google.cz/TCP: DhcpNameServer = 192.168.1.1
.
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'Explorer.exe'(1088)
c:\program files\WinMount\WinMTExt.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\LogMeIn\x86\RaMaint.exe
c:\program files\LogMeIn\x86\LogMeIn.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\servicing\TrustedInstaller.exe
c:\windows\System32\WUDFHost.exe
c:\windows\system32\taskhost.exe
c:\program files\Google\Update\GoogleUpdate.exe
c:\windows\system32\conhost.exe
.
**************************************************************************
.
Celkový čas: 2013-08-21 12:05:46 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-08-21 10:05
ComboFix2.txt 2013-08-20 11:05
.
Před spuštěním: Volných bajtů: 51 665 108 992
Po spuštění: Volných bajtů: 52 445 372 416
.
- - End Of File - - E511EB804FE63A607698A085710B52DC
A36C5E4F47E84449FF07ED3517B43A31c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\ja-jp\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\ja-ploc-jp\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\ja-ploc-jp\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\ja-ploc-jp\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\kn-in\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\ko-kr\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\ko-kr\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\ko-kr\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\lt-lt\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\lt-lt\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\lt-lt\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\lv-lv\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\lv-lv\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\lv-lv\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\ml-in\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\mr-in\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\ms-my\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\ms-my\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\ms-my\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\nb-no\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\nb-no\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\nb-no\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\nl-be\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\nl-be\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\nl-be\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\nl-nl\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\nl-nl\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\nl-nl\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\pl-pl\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\pl-pl\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\pl-pl\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\pt-br\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\pt-br\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\pt-br\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\pt-pt\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\pt-pt\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\pt-pt\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\ro-ro\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\ro-ro\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\ro-ro\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\ru-ru\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\ru-ru\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\ru-ru\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\sk-sk\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\sk-sk\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\sk-sk\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\sl-si\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\sl-si\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\sl-si\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\sr-cyrl-cs\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\sr-cyrl-cs\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\sr-cyrl-cs\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\sr-latn-cs\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\sr-latn-cs\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\sr-latn-cs\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\sv-se\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\sv-se\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\sv-se\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\ta-in\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\te-in\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\th-th\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\th-th\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\th-th\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\tr-tr\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\tr-tr\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\tr-tr\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\uk-ua\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\uk-ua\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\uk-ua\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\vi-vn\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\vi-vn\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\vi-vn\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\zh-cn\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\zh-cn\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\zh-cn\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\zh-hk\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\zh-hk\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\zh-hk\settings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\zh-tw\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\zh-tw\locStrings.js
c:\program files\Microsoft\BingBar\apps\facebooklike\7.0.850\loc\zh-tw\settings.js
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\css\bingclient.css
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\css\finance.css
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\css\jquery-ui-1.8.7.custom.min.css
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\css\newscarousel.css
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\css\watchlistcarousel.css
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\finance.html
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\footer\footer.css
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\footer\footer.js
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\footer\progress_indicator.gif
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\100x100_no_image_available.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\arrow_down_lg.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\arrow_down_sm.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\arrow_in-depth_coverage.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\arrow_up_lg.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\arrow_up_sm.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\arrowleft.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\arrowleft_disable.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\arrowright.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\arrowright_disable.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_4_default.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_4_disabled.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_4_focus.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_4_hover.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_4_press.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_4_selected.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_5_disabled_left.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_5_disabled_right.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_5_down_left.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_5_down_right.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_5_focus_left.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_5_focus_right.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_5_hover_left.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_5_hover_right.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_5_selected_left.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_5_selected_right.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_5_up_left.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_5_up_right.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_6_disabled_down.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_6_disabled_up.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_6_down_down.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_6_down_up.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_6_focus_down.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_6_focus_up.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_6_hover_down.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_6_hover_up.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_6_selected_down.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_6_selected_up.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_6_up_down.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_6_up_up.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_8_disabled_left.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_8_disabled_right.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_8_down_left.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_8_down_right.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_8_focus_left.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_8_focus_right.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_8_hover_left.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_8_hover_right.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_8_selected_left.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_8_selected_right.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_8_up_left.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\btn_8_up_right.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\close_focus.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\close_hover.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\close_up.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\gradient_a.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\gradient_b.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\gradient_c.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\checkbox_deselected.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\checkbox_deselected_focus.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\checkbox_selected.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\checkbox_selected_focus.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\radio_selected.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\radio_selected_focus.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\radio_up.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\buttons\radio_up_focus.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\carousel_arrow_left_disabled.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\carousel_arrow_left_on.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\carousel_arrow_right_disabled.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\carousel_arrow_right_on.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\close_hover.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\close_up.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\Finance.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\FinanceToast.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\images\GreenBingBarTickF.png
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\js\common.js
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\js\dateUtil.js
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\js\finance.js
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\js\jquery-1.4.2.min.js
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\js\jquery-ui-1.8.2.custom.min.js
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\js\json2.js
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\js\locStrings.js
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\js\service.js
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\js\serviceutility.js
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\js\settings.js
c:\program files\Microsoft\BingBar\apps\finance\7.0.850\js\utility.js
c:\program files\Microsoft\BingBar\apps\games\7.0.850\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\games\7.0.850\css\bingclient.css
c:\program files\Microsoft\BingBar\apps\games\7.0.850\css\games.css
c:\program files\Microsoft\BingBar\apps\games\7.0.850\footer\footer.css
c:\program files\Microsoft\BingBar\apps\games\7.0.850\footer\footer.js
c:\program files\Microsoft\BingBar\apps\games\7.0.850\footer\progress_indicator.gif
c:\program files\Microsoft\BingBar\apps\games\7.0.850\games.html
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_4_default.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_4_disabled.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_4_focus.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_4_hover.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_4_press.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_4_selected.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_5_disabled_left.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_5_disabled_right.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_5_down_left.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_5_down_right.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_5_focus_left.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_5_focus_right.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_5_hover_left.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_5_hover_right.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_5_selected_left.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_5_selected_right.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_5_up_left.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_5_up_right.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_6_disabled_down.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_6_disabled_up.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_6_down_down.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_6_down_up.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_6_focus_down.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_6_focus_up.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_6_hover_down.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_6_hover_up.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_6_selected_down.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_6_selected_up.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_6_up_down.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_6_up_up.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_8_disabled_left.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_8_disabled_right.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_8_down_left.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_8_down_right.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_8_focus_left.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_8_focus_right.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_8_hover_left.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_8_hover_right.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_8_selected_left.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_8_selected_right.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_8_up_left.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\btn_8_up_right.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\close_focus.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\close_hover.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\close_up.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\gradient_a.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\gradient_b.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\gradient_c.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\checkbox_deselected.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\checkbox_deselected_focus.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\checkbox_selected.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\checkbox_selected_focus.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\radio_selected.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\radio_selected_focus.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\radio_up.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\buttons\radio_up_focus.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\icons\game_icon_reg.png
c:\program files\Microsoft\BingBar\apps\games\7.0.850\images\icons\notification_default.jpg
c:\program files\Microsoft\BingBar\apps\games\7.0.850\js\common.js
c:\program files\Microsoft\BingBar\apps\games\7.0.850\js\GameButton.js
c:\program files\Microsoft\BingBar\apps\games\7.0.850\js\games.js
c:\program files\Microsoft\BingBar\apps\games\7.0.850\js\locStrings.js
c:\program files\Microsoft\BingBar\apps\games\7.0.850\js\RecentGamesMonitor.js
c:\program files\Microsoft\BingBar\apps\games\7.0.850\js\service.js
c:\program files\Microsoft\BingBar\apps\games\7.0.850\js\settings.js
c:\program files\Microsoft\BingBar\apps\games\7.0.850\js\shared\appsettings.js
c:\program files\Microsoft\BingBar\apps\games\7.0.850\js\shared\jquery-1.4.2.min.js
c:\program files\Microsoft\BingBar\apps\games\7.0.850\js\shared\json2.js
c:\program files\Microsoft\BingBar\apps\games\7.0.850\js\shared\serviceutility.js
c:\program files\Microsoft\BingBar\apps\games\7.0.850\js\shared\utility.js
c:\program files\Microsoft\BingBar\apps\games\7.0.850\js\SocialGameEventMonitor.js
c:\program files\Microsoft\BingBar\apps\games\7.0.850\js\SocialGameEventScheduler.js
c:\program files\Microsoft\BingBar\apps\games\7.0.850\js\storage.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\js\service.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\js\serviceutility.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\js\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\ar-ploc-sa\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\ar-ploc-sa\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\bg-bg\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\bg-bg\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\ca-es\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\ca-es\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\cs-cz\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\cs-cz\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\da-dk\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\da-dk\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\de-at\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\de-at\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\de-de\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\de-de\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\de-ch\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\de-ch\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\el-gr\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\el-gr\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-001\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-001\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-145\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-145\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-au\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-au\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-ca\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-ca\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-gb\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-gb\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-id\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-id\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-ie\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-ie\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-in\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-in\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-my\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-my\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-nz\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-nz\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-ph\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-ph\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-sg\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-sg\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-us\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-us\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-za\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\en-za\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\es-001\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\es-001\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\es-419\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\es-419\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\es-ar\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\es-ar\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\es-cl\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\es-cl\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\es-es\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\es-es\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\es-mx\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\es-mx\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\es-us\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\es-us\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\et-ee\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\et-ee\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\eu-es\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\eu-es\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\fi-fi\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\fi-fi\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\fr-145\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\fr-145\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\fr-be\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\fr-be\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\fr-ca\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\fr-ca\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\fr-fr\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\fr-fr\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\fr-ch\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\fr-ch\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\hr-hr\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\hr-hr\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\hu-hu\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\hu-hu\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\id-id\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\id-id\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\it-it\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\it-it\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\ja-jp\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\ja-jp\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\ja-ploc-jp\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\ja-ploc-jp\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\ko-kr\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\ko-kr\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\lt-lt\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\lt-lt\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\lv-lv\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\lv-lv\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\ms-my\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\ms-my\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\nb-no\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\nb-no\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\nl-be\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\nl-be\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\nl-nl\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\nl-nl\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\pl-pl\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\pl-pl\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\pt-br\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\pt-br\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\pt-pt\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\pt-pt\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\ro-ro\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\ro-ro\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\ru-ru\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\ru-ru\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\sk-sk\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\sk-sk\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\sl-si\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\sl-si\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\sr-cyrl-cs\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\sr-cyrl-cs\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\sr-latn-cs\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\sr-latn-cs\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\sv-se\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\sv-se\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\th-th\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\th-th\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\tr-tr\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\tr-tr\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\uk-ua\appmanifest.xml
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\loc\uk-ua\settings.js
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\LocationDetection.dll
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\locationdetection.manifest
c:\program files\Microsoft\BingBar\apps\geoservice\7.0.850\locationdetectionComDll.manifest
c:\program files\Microsoft\BingBar\BBSvc.EXE
c:\program files\Microsoft\BingBar\BingApp.exe
c:\program files\Microsoft\BingBar\BingBar.exe
c:\program files\Microsoft\BingBar\BingExt.dll
c:\program files\Microsoft\BingBar\common.dll
c:\program files\Microsoft\BingBar\defaultCache.txt
c:\program files\Microsoft\BingBar\DefMgr.dll
c:\program files\Microsoft\BingBar\SeaNote.dll
c:\program files\Microsoft\BingBar\SeaPort.EXE
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_BBSvc
-------\Service_BBUpdate
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-07-21 do 2013-08-21 )))))))))))))))))))))))))))))))
.
.
2030-01-02 08:45 . 2012-05-05 19:39 -------- d-----w- C:\Boot
2013-08-21 09:51 . 2013-08-21 09:57 -------- d-----w- c:\users\Eva\AppData\Local\temp
2013-08-21 09:51 . 2013-08-21 09:51 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-08-20 10:29 . 2013-08-20 10:30 -------- d-----w- c:\users\Eva\AppData\Local\Adobe
2013-08-20 09:38 . 2013-08-20 09:38 -------- d-----w- c:\windows\ERUNT
2013-08-20 09:21 . 2013-08-20 10:43 60872 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{9E951911-9304-47D1-BA9E-5B52032B3D6C}\offreg.dll
2013-08-20 07:46 . 2013-08-20 07:46 -------- d-----w- c:\users\Eva\AppData\Roaming\Malwarebytes
2013-08-20 07:45 . 2013-08-20 07:45 -------- d-----w- c:\programdata\Malwarebytes
2013-08-20 07:45 . 2013-04-04 12:50 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-08-20 07:45 . 2013-08-20 07:45 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2013-08-20 07:45 . 2013-08-20 07:45 -------- d-----w- c:\users\Eva\AppData\Local\Programs
2013-08-19 21:54 . 2013-07-15 01:34 7143960 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{9E951911-9304-47D1-BA9E-5B52032B3D6C}\mpengine.dll
2013-08-19 21:25 . 2013-08-19 21:25 369584 ----a-w- c:\windows\system32\drivers\aswSP.sys
2013-08-19 21:25 . 2013-05-09 08:59 29816 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2013-08-19 21:24 . 2013-05-09 08:59 61680 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2013-08-19 21:24 . 2013-05-09 08:59 56080 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2013-08-19 21:24 . 2013-08-19 21:25 770344 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-08-19 21:24 . 2013-08-19 21:25 175176 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2013-08-19 21:24 . 2013-05-09 08:59 49376 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2013-08-19 21:24 . 2013-05-09 08:59 66336 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-08-19 21:24 . 2013-05-09 08:58 229648 ----a-w- c:\windows\system32\aswBoot.exe
2013-08-19 21:24 . 2013-05-09 08:58 41664 ----a-w- c:\windows\avastSS.scr
2013-08-19 20:40 . 2013-07-09 04:50 652800 ----a-w- c:\windows\system32\rpcrt4.dll
2013-08-19 20:40 . 2013-07-09 04:46 1166848 ----a-w- c:\windows\system32\crypt32.dll
2013-08-19 20:40 . 2013-07-09 04:52 175104 ----a-w- c:\windows\system32\wintrust.dll
2013-08-19 20:40 . 2013-07-09 04:46 140288 ----a-w- c:\windows\system32\cryptsvc.dll
2013-08-19 20:40 . 2013-07-09 04:46 103936 ----a-w- c:\windows\system32\cryptnet.dll
2013-08-19 20:39 . 2013-07-09 05:03 3913664 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-08-19 20:39 . 2013-07-09 05:03 3968960 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-08-19 20:39 . 2013-07-09 04:53 1289096 ----a-w- c:\windows\system32\ntdll.dll
2013-08-16 21:17 . 2013-07-25 08:57 1620992 ----a-w- c:\windows\system32\WMVDECOD.DLL
2013-08-16 21:16 . 2013-07-06 05:05 1293760 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-08-16 21:15 . 2013-07-19 01:41 2048 ----a-w- c:\windows\system32\tzres.dll
2013-08-16 21:14 . 2013-06-15 03:38 31232 ----a-w- c:\windows\system32\drivers\tssecsrv.sys
2013-07-25 13:18 . 2013-08-17 08:04 -------- d-----w- c:\windows\system32\MRT
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-06-16 07:00 . 2012-07-27 20:37 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2013-06-05 03:05 . 2013-07-17 20:28 2347520 ----a-w- c:\windows\system32\win32k.sys
2013-06-04 04:53 . 2013-07-17 20:28 509440 ----a-w- c:\windows\system32\qedit.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2013-05-09 08:58 121968 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\MountOverlayIcon]
@="{0F49CF41-FD97-4942-9F2A-35E8B489E7FB}"
[HKEY_CLASSES_ROOT\CLSID\{0F49CF41-FD97-4942-9F2A-35E8B489E7FB}]
2010-10-20 11:22 257024 ----a-w- c:\program files\WinMount\WinMTExt.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Eee Docking"="c:\program files\ASUS\Eee Docking\Eee Docking.exe" [2010-06-10 414384]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2010-04-27 9177632]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2009-11-19 1594664]
"ASUSPRP"="c:\program files\ASUS\APRP\APRP.EXE" [2010-12-22 2018032]
"SynAsusAcpi"="c:\program files\Synaptics\SynTP\SynAsusAcpi.exe" [2009-11-19 83240]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-04-19 142104]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-04-19 174360]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-04-19 150808]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-09-17 254896]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-05-09 4858968]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
AsusVibeLauncher.lnk - c:\program files\ASUS\AsusVibe\AsusVibeLauncher.exe /start [2011-11-16 549040]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"MIDI1"=vpnt.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2009-02-28 01:10 35696 ----a-w- c:\program files\Adobe\Reader 9.0\Reader\reader_sl.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CapsHook]
2010-09-08 02:45 34728 ----a-w- c:\windows\System32\AsusSender.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotkeyMon]
2010-09-08 02:45 34728 ----a-w- c:\windows\System32\AsusSender.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotkeyService]
2010-09-08 02:45 34728 ----a-w- c:\windows\System32\AsusSender.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LiveUpdate]
2010-09-08 02:45 34728 ----a-w- c:\windows\System32\AsusSender.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn GUI]
2011-01-11 17:04 63048 ----a-w- c:\program files\LogMeIn\x86\LogMeInSystray.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SuperHybridEngine]
2010-09-08 02:45 34728 ----a-w- c:\windows\System32\AsusSender.exe
.
R1 MpKsl39c8afa5;MpKsl39c8afa5;c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{FF593350-875E-4466-B015-3459668779BC}\MpKsl39c8afa5.sys [x]
R3 androidusb;SAMSUNG Android Composite ADB Interface Driver;c:\windows\system32\Drivers\ssadadb.sys [2011-05-13 30312]
R3 btusbflt;Bluetooth USB Filter;c:\windows\system32\drivers\btusbflt.sys [2009-07-01 43944]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\DRIVERS\btwl2cap.sys [x]
R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS\ew_hwusbdev.sys [2011-07-12 102784]
R3 ewusbnet;HUAWEI USB-NDIS miniport;c:\windows\system32\DRIVERS\ewusbnet.sys [2011-07-12 349184]
R3 hwusbfake;Huawei DataCard USB Fake;c:\windows\system32\DRIVERS\ewusbfake.sys [2009-07-23 100736]
R3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\DRIVERS\ssadbus.sys [2011-05-13 121064]
R3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\DRIVERS\ssadmdfl.sys [2011-05-13 12776]
R3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\DRIVERS\ssadmdm.sys [2011-05-13 136808]
R3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM);c:\windows\system32\DRIVERS\ssadserd.sys [2011-05-13 114280]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R4 AsusService;Asus Launcher Service;c:\windows\System32\AsusService.exe [2009-08-19 219136]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 51040]
S0 aswRvrt;aswRvrt; [x]
S0 aswVmm;aswVmm; [x]
S1 AsUpIO;AsUpIO;c:\windows\system32\drivers\AsUpIO.sys [2010-03-31 11520]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 WMDrive;WMDrive;c:\windows\system32\drivers\WMDrive.sys [2011-07-03 65856]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2013-05-09 66336]
S2 cvhsvc;Client Virtualization Handler;c:\program files\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2012-01-04 822624]
S2 LMIGuardianSvc;LMIGuardianSvc;c:\program files\LogMeIn\x86\LMIGuardianSvc.exe [2011-09-26 374152]
S2 LMIInfo;LogMeIn Kernel Information Provider;c:\program files\LogMeIn\x86\RaInfo.sys [2011-01-11 12856]
S2 sftlist;Application Virtualization Client;c:\program files\Microsoft Application Virtualization Client\sftlist.exe [2011-10-01 508776]
S2 TeamViewer4;TeamViewer 4;c:\program files\TeamViewer\Version4\TeamViewer_Service.exe [2009-05-06 185640]
S3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.sys [2011-07-12 73344]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x86.sys [2010-08-24 68208]
S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys [2011-10-01 579944]
S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys [2011-10-01 194408]
S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys [2011-10-01 21864]
S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys [2011-10-01 19304]
S3 sftvsa;Application Virtualization Service Agent;c:\program files\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-01 219496]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceAndNoImpersonation REG_MULTI_SZ SSDPSRV upnphost SCardSvr TBS fdrespub AppIDSvc QWAVE wcncsvc
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-07-31 15:48 1173456 ----a-w- c:\program files\Google\Chrome\Application\28.0.1500.95\Installer\chrmstp.exe
.
.
------- Doplňkový sken -------
.
uStart Page =
hxxp://www.google.cz/TCP: DhcpNameServer = 192.168.1.1
.
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'Explorer.exe'(1088)
c:\program files\WinMount\WinMTExt.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files\LogMeIn\x86\RaMaint.exe
c:\program files\LogMeIn\x86\LogMeIn.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\servicing\TrustedInstaller.exe
c:\windows\System32\WUDFHost.exe
c:\windows\system32\taskhost.exe
c:\program files\Google\Update\GoogleUpdate.exe
c:\windows\system32\conhost.exe
.
**************************************************************************
.
Celkový čas: 2013-08-21 12:05:46 - počítač byl restartován
ComboFix-quarantined-files.txt 2013-08-21 10:05
ComboFix2.txt 2013-08-20 11:05
.
Před spuštěním: Volných bajtů: 51 665 108 992
Po spuštění: Volných bajtů: 52 445 372 416
.
- - End Of File - - E511EB804FE63A607698A085710B52DC
A36C5E4F47E84449FF07ED3517B43A31