ComboFix 11-03-30.03 - Administrator 31.03.2011 17:55:49.3.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.2.1250.420.1033.18.1022.708 [GMT 2:00]
Spuštěný z: c:\documents and settings\Administrator\Desktop\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Administrator\Desktop\CFScript.txt
.
FILE ::
"c:\windows\Tasks\GoogleUpdateTaskMachineCore.job"
"c:\windows\Tasks\GoogleUpdateTaskMachineUA.job"
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
.
.
((((((((((((((((((((((((((((((((((((((( Ovladače/Služby )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_GEHWX
-------\Legacy_KOUQNV
-------\Legacy_NWTGMCW
-------\Legacy_OHQBXDYCP
-------\Service_gehwx
-------\Service_kouqnv
-------\Service_nwtgmcw
-------\Service_ohqbxdycp
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2011-02-28 do 2011-03-31 )))))))))))))))))))))))))))))))
.
.
2011-04-27 20:57 . 2011-04-27 20:57 -------- d-----w- c:\documents and settings\Administrator\Application Data\AVG10
2011-04-27 20:33 . 2011-04-27 20:33 -------- d--h--w- c:\documents and settings\All Users\Application Data\Common Files
2011-04-27 20:32 . 2011-03-31 15:50 -------- d-----w- c:\documents and settings\All Users\Application Data\AVG10
2011-04-27 20:12 . 2008-04-21 10:02 215552 ------w- c:\windows\system32\dllcache\wordpad.exe
2011-04-27 20:12 . 2008-06-13 13:10 272128 ------w- c:\windows\system32\drivers\bthport.sys
2011-04-27 20:12 . 2008-06-13 13:10 272128 ------w- c:\windows\system32\dllcache\bthport.sys
2011-04-27 20:10 . 2009-11-21 16:36 470528 ------w- c:\windows\system32\dllcache\aclayers.dll
2011-04-27 20:10 . 2010-06-14 14:30 743936 ------w- c:\windows\system32\dllcache\helpsvc.exe
2011-04-27 20:05 . 2008-05-01 14:30 331776 ------w- c:\windows\system32\dllcache\msadce.dll
2011-04-27 20:05 . 2010-02-12 10:03 293376 ------w- c:\windows\system32\browserchoice.exe
2011-04-27 20:03 . 2009-06-05 07:42 655872 ------w- c:\windows\system32\dllcache\mstscax.dll
2011-04-27 18:31 . 2011-04-27 18:31 -------- d-----w- c:\documents and settings\Administrator\Application Data\Malwarebytes
2011-04-27 18:31 . 2010-03-29 22:46 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-04-27 18:31 . 2011-04-27 18:31 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-04-27 18:31 . 2011-04-27 18:31 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2011-04-27 18:31 . 2010-03-29 22:45 20824 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-04-27 18:25 . 2011-04-27 18:25 388096 ----a-r- c:\documents and settings\Administrator\Application Data\Microsoft\Installer\{0761C9A8-8F3A-4216-B4A7-B7AFBF24A24A}\HiJackThis.exe
2011-04-27 18:15 . 2011-04-27 18:15 -------- d-----w- c:\documents and settings\Administrator\Application Data\SUPERAntiSpyware.com
2011-04-27 18:13 . 2011-04-27 18:13 -------- d-----w- c:\documents and settings\Administrator\Local Settings\Application Data\Mozilla
2011-04-27 17:17 . 2011-04-27 17:17 388096 ----a-r- c:\documents and settings\Ivča\Application Data\Microsoft\Installer\{0761C9A8-8F3A-4216-B4A7-B7AFBF24A24A}\HiJackThis.exe
2011-04-27 17:17 . 2011-04-27 17:17 -------- d-----w- c:\program files\TrendMicro
2011-04-27 17:14 . 2011-04-27 17:14 -------- d---a-w- c:\windows\system32\vcmgcd32.dll
2011-04-27 17:14 . 2011-04-27 17:14 -------- d---a-w- c:\windows\logo1_.exe
2011-04-27 17:06 . 2011-04-27 17:06 626688 ----a-w- c:\windows\system32\msvcr80.dll
2011-04-27 17:06 . 2011-04-27 17:06 548864 ----a-w- c:\windows\system32\msvcp80.dll
2011-04-27 17:06 . 2011-04-27 17:06 28672 ----a-w- c:\windows\system32\eEmpty.exe
2011-04-27 17:06 . 2004-08-10 14:00 146432 ----a-w- c:\windows\R.COM
2011-04-27 17:06 . 2004-08-10 14:00 135680 ----a-w- c:\windows\system32\T.COM
2011-04-27 17:06 . 2011-04-27 17:06 -------- d-----w- c:\documents and settings\All Users\Application Data\MicroWorld
2011-04-27 17:01 . 2011-04-27 17:01 -------- d-----w- c:\program files\CCleaner
2011-04-27 16:22 . 2011-04-27 20:32 -------- d-----w- c:\documents and settings\All Users\Application Data\MFAData
2011-04-27 16:22 . 2011-01-17 20:01 4622344 ----a-w- c:\temp\avg_free_stb_eu_2011_1191_free.exe
2011-04-27 16:11 . 2011-04-27 16:11 -------- d-----w- c:\documents and settings\Ivča\Application Data\SUPERAntiSpyware.com
2011-04-27 14:57 . 2011-04-27 14:57 -------- d-----w- c:\documents and settings\All Users\Application Data\SUPERAntiSpyware.com
2011-04-27 14:57 . 2011-04-27 14:57 -------- d-----w- c:\program files\SUPERAntiSpyware
2011-04-27 14:57 . 2011-04-27 14:57 -------- d-----w- c:\documents and settings\Bels\Application Data\SUPERAntiSpyware.com
2011-04-27 14:56 . 2011-04-27 14:56 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2011-04-15 20:41 . 2011-04-15 20:41 1409 ----a-w- c:\windows\QTFont.for
2011-03-31 15:42 . 2011-03-31 15:52 -------- d-----w- c:\windows\system32\CatRoot_bak
2011-03-30 21:03 . 2011-03-30 21:03 -------- d-----w- c:\windows\ServicePackFiles
2011-03-19 14:02 . 2011-03-19 14:02 -------- d-----w- c:\documents and settings\Bels\Application Data\skypePM
2011-03-10 08:07 . 2011-03-16 17:47 -------- d-----w- c:\documents and settings\Ivča\Application Data\skypePM
2011-03-10 08:05 . 2011-03-10 08:05 -------- d-----w- c:\program files\Common Files\Skype
2011-03-10 07:37 . 2011-03-10 07:37 -------- d-----w- c:\documents and settings\Ivča\Local Settings\Application Data\Temp
2011-03-07 10:03 . 2011-04-06 20:12 -------- d-----w- c:\documents and settings\Ivča\Local Settings\Application Data\Google
2011-03-07 09:52 . 2011-03-07 09:57 -------- d-----w- c:\documents and settings\Ivča\Application Data\PhotoScape
2011-03-06 14:28 . 2011-03-06 14:28 -------- d-----w- c:\documents and settings\NetworkService\Local Settings\Application Data\Google
2011-03-06 12:55 . 2011-03-06 12:56 -------- d-----w- c:\documents and settings\Bels\Application Data\PhotoScape
2011-03-06 12:32 . 2011-03-06 12:32 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Application Data\Google
2011-03-06 12:32 . 2011-03-06 12:34 -------- d-----w- c:\program files\Google
2011-03-06 12:32 . 2011-03-06 12:32 -------- d-----w- c:\program files\PhotoScape
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-02-04 15:48 . 2004-09-10 14:57 456192 ----a-w- c:\windows\system32\encdec.dll
2011-02-04 15:48 . 2004-09-10 14:57 291840 ----a-w- c:\windows\system32\sbe.dll
.
.
((((((((((((((((((((((((((((( SnapShot@2011-04-27_19.23.21 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-07-11 22:02 . 2009-07-11 22:02 51008 c:\windows\WinSxS\x86_Microsoft.VC90.OpenMP_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_f0ccd4aa\vcomp90.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 59728 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90rus.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 42832 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90kor.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 43344 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90jpn.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 61264 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90ita.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 36688 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90cht.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 35648 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90chs.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 62800 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90fra.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 61760 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90esp.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 61776 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90esn.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 53568 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90enu.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 63296 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_15fc9313\mfc90deu.dll
+ 2009-07-11 22:05 . 2009-07-11 22:05 59904 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfcm90u.dll
+ 2009-07-11 22:05 . 2009-07-11 22:05 59904 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfcm90.dll
+ 2009-08-06 17:24 . 2009-08-06 17:24 44768 c:\windows\system32\wups2.dll
+ 2004-09-10 15:34 . 2009-08-06 17:24 35552 c:\windows\system32\wups.dll
+ 2004-09-10 15:34 . 2009-08-06 17:24 53472 c:\windows\system32\wuauclt.exe
+ 2004-09-10 14:57 . 2009-06-25 08:17 59392 c:\windows\system32\wdigest.dll
+ 2011-04-27 20:05 . 2010-04-21 13:28 46080 c:\windows\system32\tzchange.exe
+ 2004-09-10 14:57 . 2009-06-12 11:50 80896 c:\windows\system32\tlntsess.exe
+ 2004-09-10 14:57 . 2009-06-12 11:50 76288 c:\windows\system32\telnet.exe
+ 2007-01-30 18:45 . 2008-07-09 07:38 26488 c:\windows\system32\spupdsvc.exe
+ 2007-01-30 18:51 . 2009-05-26 11:40 17272 c:\windows\system32\spmsg.dll
+ 2011-04-27 19:51 . 2009-08-06 17:24 35552 c:\windows\system32\SoftwareDistribution\Setup\ServiceStartup\wups.dll\7.4.7600.226\wups.dll
+ 2004-09-10 14:57 . 2009-06-25 08:17 56320 c:\windows\system32\secur32.dll
+ 2004-09-10 14:57 . 2009-02-06 09:54 35328 c:\windows\system32\sc.exe
- 2004-09-10 14:57 . 2004-08-10 14:00 69632 c:\windows\system32\raschap.dll
+ 2004-09-10 14:57 . 2009-10-12 13:54 69632 c:\windows\system32\raschap.dll
- 2004-09-10 14:57 . 2006-06-23 11:25 39424 c:\windows\system32\pngfilt.dll
+ 2004-09-10 14:57 . 2010-04-16 15:20 39424 c:\windows\system32\pngfilt.dll
+ 2004-09-10 14:57 . 2011-03-31 15:35 58654 c:\windows\system32\perfc009.dat
- 2004-09-10 14:57 . 2011-03-27 09:27 58654 c:\windows\system32\perfc009.dat
+ 2004-09-10 15:30 . 2008-06-12 14:16 91648 c:\windows\system32\mtxoci.dll
- 2004-09-10 14:57 . 2006-03-01 19:42 66560 c:\windows\system32\mtxclu.dll
+ 2004-09-10 14:57 . 2008-06-12 14:16 66560 c:\windows\system32\mtxclu.dll
+ 2004-09-10 14:57 . 2009-11-27 16:37 28672 c:\windows\system32\msvidc32.dll
- 2004-09-10 14:57 . 2004-08-10 14:00 11264 c:\windows\system32\msrle32.dll
+ 2004-09-10 14:57 . 2009-11-27 16:37 11264 c:\windows\system32\msrle32.dll
- 2004-09-10 15:30 . 2004-08-10 14:00 58880 c:\windows\system32\msdtclog.dll
+ 2004-09-10 15:30 . 2008-06-12 14:16 58880 c:\windows\system32\msdtclog.dll
+ 2004-09-10 14:57 . 2008-06-24 16:23 74240 c:\windows\system32\mscms.dll
- 2004-09-10 14:57 . 2005-06-29 01:46 74240 c:\windows\system32\mscms.dll
+ 2004-09-10 14:57 . 2009-09-04 20:45 58880 c:\windows\system32\msasn1.dll
- 2004-09-10 14:57 . 2004-08-10 14:00 48640 c:\windows\system32\mqupgrd.dll
+ 2004-09-10 14:57 . 2009-06-25 18:36 48640 c:\windows\system32\mqupgrd.dll
+ 2004-09-10 14:57 . 2009-06-25 18:36 95744 c:\windows\system32\mqsec.dll
- 2004-09-10 14:57 . 2004-08-10 14:00 95744 c:\windows\system32\mqsec.dll
- 2004-09-10 14:57 . 2004-08-10 14:00 16896 c:\windows\system32\mqise.dll
+ 2004-09-10 14:57 . 2009-06-25 18:36 16896 c:\windows\system32\mqise.dll
- 2004-09-10 14:57 . 2004-08-10 14:00 47104 c:\windows\system32\mqdscli.dll
+ 2004-09-10 14:57 . 2009-06-25 18:36 47104 c:\windows\system32\mqdscli.dll
- 2004-09-10 14:57 . 2004-08-10 14:00 19968 c:\windows\system32\mqbkup.exe
+ 2004-09-10 14:57 . 2009-06-22 11:49 19968 c:\windows\system32\mqbkup.exe
+ 2004-09-10 14:58 . 2008-06-11 00:47 96768 c:\windows\system32\logagent.exe
- 2004-09-10 14:58 . 2005-08-03 18:29 96768 c:\windows\system32\logagent.exe
+ 2004-09-10 14:57 . 2010-04-16 15:20 16384 c:\windows\system32\jsproxy.dll
+ 2004-08-04 00:56 . 2009-11-27 16:37 48128 c:\windows\system32\iyuv_32.dll
+ 2004-09-10 14:57 . 2010-04-16 15:20 96256 c:\windows\system32\inseng.dll
- 2004-09-10 14:57 . 2006-06-23 11:25 96256 c:\windows\system32\inseng.dll
+ 2004-09-10 14:57 . 2010-04-16 15:20 81920 c:\windows\system32\ieencode.dll
- 2004-09-10 14:57 . 2004-08-10 14:00 81920 c:\windows\system32\ieencode.dll
+ 2004-09-10 14:57 . 2009-10-15 17:21 82432 c:\windows\system32\fontsub.dll
- 2004-09-10 14:57 . 2006-06-23 11:25 55808 c:\windows\system32\extmgr.dll
+ 2004-09-10 14:57 . 2010-04-16 15:20 55808 c:\windows\system32\extmgr.dll
+ 2004-09-10 14:57 . 2009-06-22 11:48 91776 c:\windows\system32\drivers\mqac.sys
+ 2004-09-10 14:57 . 2009-06-22 11:35 92544 c:\windows\system32\drivers\ksecdd.sys
+ 2004-09-10 15:34 . 2009-08-06 17:24 35552 c:\windows\system32\dllcache\wups.dll
+ 2004-09-10 15:34 . 2009-08-06 17:24 53472 c:\windows\system32\dllcache\wuauclt.exe
+ 2009-06-25 08:44 . 2009-06-25 08:17 59392 c:\windows\system32\dllcache\wdigest.dll
+ 2009-06-12 11:50 . 2009-06-12 11:50 80896 c:\windows\system32\dllcache\tlntsess.exe
+ 2009-06-12 11:50 . 2009-06-12 11:50 76288 c:\windows\system32\dllcache\telnet.exe
+ 2009-06-25 08:44 . 2009-06-25 08:17 56320 c:\windows\system32\dllcache\secur32.dll
+ 2011-04-27 20:08 . 2009-02-06 09:54 35328 c:\windows\system32\dllcache\sc.exe
+ 2009-10-12 13:54 . 2009-10-12 13:54 69632 c:\windows\system32\dllcache\raschap.dll
- 2007-01-30 18:57 . 2006-06-23 11:25 39424 c:\windows\system32\dllcache\pngfilt.dll
+ 2007-01-30 18:57 . 2010-04-16 15:20 39424 c:\windows\system32\dllcache\pngfilt.dll
+ 2008-06-12 14:16 . 2008-06-12 14:16 91648 c:\windows\system32\dllcache\mtxoci.dll
+ 2008-06-12 14:16 . 2008-06-12 14:16 66560 c:\windows\system32\dllcache\mtxclu.dll
+ 2009-11-27 16:37 . 2009-11-27 16:37 28672 c:\windows\system32\dllcache\msvidc32.dll
+ 2009-11-27 16:37 . 2009-11-27 16:37 11264 c:\windows\system32\dllcache\msrle32.dll
+ 2008-06-12 14:16 . 2008-06-12 14:16 58880 c:\windows\system32\dllcache\msdtclog.dll
+ 2008-06-24 16:23 . 2008-06-24 16:23 74240 c:\windows\system32\dllcache\mscms.dll
+ 2009-09-04 20:45 . 2009-09-04 20:45 58880 c:\windows\system32\dllcache\msasn1.dll
+ 2009-06-25 18:36 . 2009-06-25 18:36 48640 c:\windows\system32\dllcache\mqupgrd.dll
+ 2009-06-25 18:36 . 2009-06-25 18:36 95744 c:\windows\system32\dllcache\mqsec.dll
+ 2009-06-25 18:36 . 2009-06-25 18:36 16896 c:\windows\system32\dllcache\mqise.dll
+ 2009-06-25 18:36 . 2009-06-25 18:36 47104 c:\windows\system32\dllcache\mqdscli.dll
+ 2009-06-22 11:49 . 2009-06-22 11:49 19968 c:\windows\system32\dllcache\mqbkup.exe
+ 2009-06-22 11:48 . 2009-06-22 11:48 91776 c:\windows\system32\dllcache\mqac.sys
- 2004-09-10 14:58 . 2005-08-03 18:29 96768 c:\windows\system32\dllcache\logagent.exe
+ 2004-09-10 14:58 . 2008-06-11 00:47 96768 c:\windows\system32\dllcache\logagent.exe
+ 2009-06-22 11:34 . 2009-06-22 11:35 92544 c:\windows\system32\dllcache\ksecdd.sys
+ 2007-01-30 18:57 . 2010-04-16 15:20 16384 c:\windows\system32\dllcache\jsproxy.dll
+ 2009-11-27 16:37 . 2009-11-27 16:37 48128 c:\windows\system32\dllcache\iyuv_32.dll
- 2007-01-30 18:57 . 2006-06-23 11:25 96256 c:\windows\system32\dllcache\inseng.dll
+ 2007-01-30 18:57 . 2010-04-16 15:20 96256 c:\windows\system32\dllcache\inseng.dll
+ 2010-04-16 15:20 . 2010-04-16 15:20 81920 c:\windows\system32\dllcache\ieencode.dll
- 2007-01-30 18:57 . 2006-06-23 08:48 18432 c:\windows\system32\dllcache\iedw.exe
+ 2007-01-30 18:57 . 2010-04-16 13:29 18432 c:\windows\system32\dllcache\iedw.exe
+ 2011-04-27 20:08 . 2009-10-15 17:21 82432 c:\windows\system32\dllcache\fontsub.dll
- 2007-01-30 18:57 . 2006-06-23 11:25 55808 c:\windows\system32\dllcache\extmgr.dll
+ 2007-01-30 18:57 . 2010-04-16 15:20 55808 c:\windows\system32\dllcache\extmgr.dll
+ 2009-12-14 07:35 . 2009-12-14 07:35 33280 c:\windows\system32\dllcache\csrsrv.dll
+ 2011-04-27 20:08 . 2005-07-26 04:20 60416 c:\windows\system32\dllcache\colbact.dll
+ 2004-09-10 14:56 . 2009-08-06 17:24 96480 c:\windows\system32\dllcache\cdm.dll
+ 2010-01-13 14:10 . 2010-01-13 14:10 85504 c:\windows\system32\dllcache\cabview.dll
+ 2009-11-27 16:37 . 2009-11-27 16:37 84992 c:\windows\system32\dllcache\avifil32.dll
+ 2009-07-17 18:55 . 2009-07-17 18:55 58880 c:\windows\system32\dllcache\atl.dll
+ 2010-03-05 14:57 . 2010-03-05 14:57 65536 c:\windows\system32\dllcache\asycfilt.dll
+ 2004-09-10 14:56 . 2009-12-14 07:35 33280 c:\windows\system32\csrsrv.dll
+ 2004-09-10 15:30 . 2005-07-26 04:20 60416 c:\windows\system32\colbact.dll
- 2004-09-10 15:30 . 2005-07-26 04:39 60416 c:\windows\system32\colbact.dll
+ 2004-09-10 14:56 . 2009-08-06 17:24 96480 c:\windows\system32\cdm.dll
+ 2004-09-10 14:56 . 2010-01-13 14:10 85504 c:\windows\system32\cabview.dll
+ 2004-09-10 14:56 . 2009-07-17 18:55 58880 c:\windows\system32\atl.dll
- 2004-09-10 14:56 . 2004-08-10 14:00 58880 c:\windows\system32\atl.dll
+ 2004-09-10 14:56 . 2010-03-05 14:57 65536 c:\windows\system32\asycfilt.dll
+ 2004-09-29 18:11 . 2009-06-24 10:56 86016 c:\windows\Microsoft.NET\Framework\v1.0.3705\ToGac.exe
+ 2004-09-10 15:31 . 2010-02-09 16:22 81920 c:\windows\Microsoft.NET\Framework\v1.0.3705\System.Security.dll
+ 2004-10-07 17:36 . 2009-06-24 10:56 73728 c:\windows\Microsoft.NET\Framework\v1.0.3705\SetRegNI.exe
+ 2004-09-29 18:11 . 2009-06-24 10:56 98304 c:\windows\Microsoft.NET\Framework\v1.0.3705\netfxupdate.exe
- 2004-09-10 15:31 . 2004-08-03 22:12 86016 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorld.dll
+ 2004-09-10 15:31 . 2009-06-23 20:01 86016 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorld.dll
+ 2004-09-10 15:31 . 2009-06-23 20:01 73728 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorie.dll
- 2004-09-10 15:31 . 2004-08-03 22:12 73728 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorie.dll
+ 2004-09-10 15:31 . 2009-06-23 20:12 32768 c:\windows\Microsoft.NET\Framework\v1.0.3705\aspnet_wp.exe
- 2004-09-10 15:31 . 2004-08-03 22:11 32768 c:\windows\Microsoft.NET\Framework\v1.0.3705\aspnet_wp.exe
- 2004-09-10 15:31 . 2002-06-21 17:31 32768 c:\windows\Microsoft.NET\Framework\v1.0.3705\aspnet_state.exe
+ 2004-09-10 15:31 . 2009-06-23 20:12 32768 c:\windows\Microsoft.NET\Framework\v1.0.3705\aspnet_state.exe
+ 2009-11-27 16:37 . 2009-11-27 16:37 48128 c:\windows\Driver Cache\i386\iyuv_32.dll
+ 2011-03-30 21:02 . 2011-03-30 21:02 90112 c:\windows\assembly\NativeImages1_v1.0.3705\System.Drawing.Design\1.0.3300.0__b03f5f7f11d50a3a_b17ce412\System.Drawing.Design.dll
+ 2011-03-30 21:01 . 2011-03-30 21:01 61440 c:\windows\assembly\NativeImages1_v1.0.3705\CustomMarshalers\1.0.3300.0__b03f5f7f11d50a3a_e4bb2c60\CustomMarshalers.dll
+ 2011-03-30 21:10 . 2011-03-30 21:10 81920 c:\windows\assembly\GAC\System.Security\1.0.3300.0__b03f5f7f11d50a3a\System.Security.dll
+ 2001-08-17 22:36 . 2009-11-27 16:37 8704 c:\windows\system32\tsbyuv.dll
+ 2004-09-10 14:57 . 2009-06-22 11:49 4608 c:\windows\system32\mqsvc.exe
- 2004-09-10 14:57 . 2004-08-10 14:00 4608 c:\windows\system32\mqsvc.exe
+ 2009-11-27 16:37 . 2009-11-27 16:37 8704 c:\windows\system32\dllcache\tsbyuv.dll
+ 2009-06-22 11:49 . 2009-06-22 11:49 4608 c:\windows\system32\dllcache\mqsvc.exe
+ 2004-09-10 15:31 . 2009-06-29 09:57 8192 c:\windows\Microsoft.NET\Framework\v1.0.3705\IEExec.exe
+ 2009-11-27 16:37 . 2009-11-27 16:37 8704 c:\windows\Driver Cache\i386\tsbyuv.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 653120 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcr90.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 569664 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcp90.dll
+ 2009-07-11 22:05 . 2009-07-11 22:05 225280 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcm90.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 159032 c:\windows\WinSxS\x86_Microsoft.VC90.ATL_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_353599c2\atl90.dll
+ 2007-01-30 18:45 . 2010-04-16 13:21 352768 c:\windows\system32\xpsp3res.dll
+ 2004-09-10 15:34 . 2009-08-06 17:24 209632 c:\windows\system32\wuweb.dll
+ 2004-09-10 15:34 . 2009-08-06 17:24 327896 c:\windows\system32\wucltui.dll
+ 2004-09-10 15:34 . 2009-08-06 17:23 575704 c:\windows\system32\wuapi.dll
+ 2004-09-10 14:58 . 2009-04-09 23:01 413544 c:\windows\system32\wmspdmod.dll
+ 2004-09-10 14:58 . 2009-07-13 08:08 286720 c:\windows\system32\wmpdxm.dll
+ 2004-09-10 14:58 . 2008-06-11 00:58 988672 c:\windows\system32\WMNetmgr.dll
- 2004-09-10 14:58 . 2005-08-03 18:29 988672 c:\windows\system32\wmnetmgr.dll
+ 2004-09-10 14:58 . 2007-10-27 15:39 228864 c:\windows\system32\wmasf.dll
- 2004-09-10 14:57 . 2004-08-10 14:00 132096 c:\windows\system32\wkssvc.dll
+ 2004-09-10 14:57 . 2009-06-10 06:32 132096 c:\windows\system32\wkssvc.dll
+ 2004-09-10 14:57 . 2009-12-24 07:05 177664 c:\windows\system32\wintrust.dll
+ 2004-09-10 14:57 . 2010-04-16 15:20 668672 c:\windows\system32\wininet.dll
+ 2004-09-10 14:57 . 2008-12-16 12:47 351232 c:\windows\system32\winhttp.dll
- 2004-09-10 14:57 . 2004-08-10 14:00 351232 c:\windows\system32\winhttp.dll
+ 2004-09-10 15:30 . 2009-02-06 09:41 227840 c:\windows\system32\wbem\wmiprvse.exe
+ 2004-09-10 15:30 . 2009-02-10 16:31 453120 c:\windows\system32\wbem\wmiprvsd.dll
+ 2004-09-10 15:30 . 2009-02-09 10:01 473088 c:\windows\system32\wbem\fastprox.dll
+ 2004-09-10 14:57 . 2010-03-10 08:02 417792 c:\windows\system32\vbscript.dll
- 2004-09-10 14:57 . 2004-08-10 14:00 417792 c:\windows\system32\vbscript.dll
+ 2004-09-10 14:57 . 2010-04-16 15:20 628224 c:\windows\system32\urlmon.dll
+ 2004-09-10 14:57 . 2009-10-15 20:51 119808 c:\windows\system32\t2embed.dll
+ 2004-09-10 14:58 . 2009-08-26 08:16 247326 c:\windows\system32\strmdll.dll
+ 2004-09-10 14:57 . 2009-06-25 08:17 168448 c:\windows\system32\schannel.dll
+ 2004-09-10 14:57 . 2010-04-16 15:20 474112 c:\windows\system32\shlwapi.dll
- 2004-09-10 14:57 . 2006-06-23 11:25 474112 c:\windows\system32\shlwapi.dll
+ 2004-09-10 14:57 . 2009-06-25 18:36 169472 c:\windows\system32\Setup\msmqocm.dll
+ 2004-09-10 14:57 . 2009-02-06 10:22 110592 c:\windows\system32\services.exe
+ 2004-09-10 14:57 . 2009-02-09 10:01 401408 c:\windows\system32\rpcss.dll
+ 2004-09-10 14:57 . 2009-04-15 15:11 584192 c:\windows\system32\rpcrt4.dll
- 2004-09-10 14:57 . 2004-08-10 14:00 112128 c:\windows\system32\rastls.dll
+ 2004-09-10 14:57 . 2009-10-12 13:54 112128 c:\windows\system32\rastls.dll
- 2004-09-10 14:57 . 2011-03-27 09:27 392736 c:\windows\system32\perfh009.dat
+ 2004-09-10 14:57 . 2011-03-31 15:35 392736 c:\windows\system32\perfh009.dat
+ 2004-09-10 14:57 . 2009-03-06 14:00 284160 c:\windows\system32\pdh.dll
+ 2004-09-10 14:57 . 2009-10-13 10:53 266752 c:\windows\system32\oakley.dll
- 2004-09-10 14:57 . 2004-08-10 14:00 266752 c:\windows\system32\oakley.dll
+ 2004-09-10 14:57 . 2009-02-09 10:01 715264 c:\windows\system32\ntdll.dll
+ 2004-09-10 14:57 . 2009-02-06 18:46 408064 c:\windows\system32\netlogon.dll
+ 2004-09-10 14:57 . 2008-10-15 16:57 332800 c:\windows\system32\netapi32.dll
- 2004-09-10 14:57 . 2004-08-10 14:00 245248 c:\windows\system32\mswsock.dll
+ 2004-09-10 14:57 . 2008-06-20 17:41 245248 c:\windows\system32\mswsock.dll
+ 2004-09-10 14:57 . 2009-08-05 09:11 204800 c:\windows\system32\mswebdvd.dll
+ 2004-09-10 14:57 . 2009-09-11 14:03 136192 c:\windows\system32\msv1_0.dll
+ 2004-09-10 15:30 . 2009-06-05 07:42 655872 c:\windows\system32\mstscax.dll
- 2004-09-10 14:57 . 2006-06-23 11:25 532480 c:\windows\system32\mstime.dll
+ 2004-09-10 14:57 . 2010-04-16 15:20 532480 c:\windows\system32\mstime.dll
+ 2004-09-10 14:57 . 2010-04-16 15:20 146432 c:\windows\system32\msrating.dll
- 2004-09-10 14:57 . 2006-06-23 11:25 146432 c:\windows\system32\msrating.dll
+ 2004-09-10 15:30 . 2009-12-16 12:58 343040 c:\windows\system32\mspaint.exe
- 2004-09-10 15:30 . 2004-08-10 14:00 343040 c:\windows\system32\mspaint.exe
+ 2004-09-10 14:57 . 2010-04-16 15:20 449024 c:\windows\system32\mshtmled.dll
+ 2004-09-10 15:30 . 2008-06-12 14:16 161792 c:\windows\system32\msdtcuiu.dll
+ 2004-09-10 15:30 . 2008-06-12 14:16 956928 c:\windows\system32\msdtctm.dll
+ 2004-09-10 15:30 . 2008-06-12 14:16 428032 c:\windows\system32\msdtcprx.dll
- 2004-09-10 14:57 . 2004-08-10 14:00 471552 c:\windows\system32\mqutil.dll
+ 2004-09-10 14:57 . 2009-06-25 18:36 471552 c:\windows\system32\mqutil.dll
+ 2004-09-10 14:57 . 2009-06-25 18:36 186880 c:\windows\system32\mqtrig.dll
- 2004-09-10 14:57 . 2004-08-10 14:00 186880 c:\windows\system32\mqtrig.dll
- 2004-09-10 14:57 . 2004-08-10 14:00 117248 c:\windows\system32\mqtgsvc.exe
+ 2004-09-10 14:57 . 2009-06-22 11:49 117248 c:\windows\system32\mqtgsvc.exe
+ 2004-09-10 14:57 . 2009-06-25 18:36 517120 c:\windows\system32\mqsnap.dll
+ 2004-09-10 14:57 . 2009-06-25 18:36 123392 c:\windows\system32\mqrtdep.dll
- 2004-09-10 14:57 . 2004-08-10 14:00 123392 c:\windows\system32\mqrtdep.dll
- 2004-09-10 14:57 . 2004-08-10 14:00 177152 c:\windows\system32\mqrt.dll
+ 2004-09-10 14:57 . 2009-06-25 18:36 177152 c:\windows\system32\mqrt.dll
+ 2004-09-10 14:57 . 2009-06-25 18:36 661504 c:\windows\system32\mqqm.dll
- 2004-09-10 14:57 . 2004-08-10 14:00 225280 c:\windows\system32\mqoa.dll
+ 2004-09-10 14:57 . 2009-06-25 18:36 225280 c:\windows\system32\mqoa.dll
+ 2004-09-10 14:57 . 2009-06-25 18:36 138240 c:\windows\system32\mqad.dll
- 2004-09-10 14:57 . 2004-08-10 14:00 138240 c:\windows\system32\mqad.dll
+ 2004-09-10 14:57 . 2009-06-25 08:17 729600 c:\windows\system32\lsasrv.dll
+ 2004-09-10 14:57 . 2009-05-07 15:44 344064 c:\windows\system32\localspl.dll
+ 2004-09-10 14:57 . 2009-03-21 14:18 986112 c:\windows\system32\kernel32.dll
+ 2004-09-10 14:57 . 2009-06-25 08:17 301568 c:\windows\system32\kerberos.dll
+ 2004-09-10 14:57 . 2009-08-21 09:46 450560 c:\windows\system32\jscript.dll
- 2004-09-10 14:57 . 2006-05-18 05:24 450560 c:\windows\system32\jscript.dll
+ 2004-09-10 15:34 . 2010-01-29 15:08 683520 c:\windows\system32\inetcomm.dll
+ 2004-09-10 14:57 . 2010-04-16 15:20 251904 c:\windows\system32\iepeers.dll
- 2004-09-10 14:57 . 2006-06-23 11:25 251904 c:\windows\system32\iepeers.dll
+ 2004-09-10 14:57 . 2008-10-23 13:01 283648 c:\windows\system32\gdi32.dll
- 2004-09-10 15:22 . 2010-11-08 16:13 157952 c:\windows\system32\FNTCACHE.DAT
+ 2004-09-10 15:22 . 2011-03-31 15:28 157952 c:\windows\system32\FNTCACHE.DAT
+ 2004-09-10 14:57 . 2008-07-07 20:32 253952 c:\windows\system32\es.dll
- 2004-09-10 14:57 . 2006-06-23 11:25 205312 c:\windows\system32\dxtrans.dll
+ 2004-09-10 14:57 . 2010-04-16 15:20 205312 c:\windows\system32\dxtrans.dll
- 2004-09-10 14:57 . 2006-06-23 11:25 357888 c:\windows\system32\dxtmsft.dll
+ 2004-09-10 14:57 . 2010-04-16 15:20 357888 c:\windows\system32\dxtmsft.dll
+ 2004-09-10 14:57 . 2010-02-11 12:01 226880 c:\windows\system32\drivers\tcpip6.sys
+ 2004-09-10 14:57 . 2008-06-20 10:45 360320 c:\windows\system32\drivers\tcpip.sys
+ 2004-09-10 14:57 . 2009-12-31 16:14 352640 c:\windows\system32\drivers\srv.sys
+ 2004-09-10 14:57 . 2008-05-08 12:28 202752 c:\windows\system32\drivers\rmcast.sys
+ 2004-09-10 14:57 . 2010-02-24 12:31 454016 c:\windows\system32\drivers\mrxsmb.sys
+ 2004-09-10 14:56 . 2008-08-14 09:51 138368 c:\windows\system32\drivers\afd.sys
+ 2004-09-10 14:56 . 2008-06-20 17:41 148992 c:\windows\system32\dnsapi.dll
+ 2004-09-10 15:34 . 2009-08-06 17:24 209632 c:\windows\system32\dllcache\wuweb.dll
+ 2004-09-10 15:34 . 2009-08-06 17:24 327896 c:\windows\system32\dllcache\wucltui.dll
+ 2004-09-10 15:34 . 2009-08-06 17:23 575704 c:\windows\system32\dllcache\wuapi.dll
+ 2004-09-10 14:58 . 2009-04-09 23:01 413544 c:\windows\system32\dllcache\wmspdmod.dll
+ 2009-07-13 08:08 . 2009-07-13 08:08 286720 c:\windows\system32\dllcache\wmpdxm.dll
- 2004-09-10 14:58 . 2005-08-03 18:29 988672 c:\windows\system32\dllcache\wmnetmgr.dll
+ 2004-09-10 14:58 . 2008-06-11 00:58 988672 c:\windows\system32\dllcache\WMNetmgr.dll
+ 2011-04-27 20:08 . 2009-02-06 09:41 227840 c:\windows\system32\dllcache\wmiprvse.exe
+ 2009-02-10 16:31 . 2009-02-10 16:31 453120 c:\windows\system32\dllcache\wmiprvsd.dll
+ 2004-09-10 14:58 . 2007-10-27 15:39 228864 c:\windows\system32\dllcache\wmasf.dll
+ 2009-06-10 06:32 . 2009-06-10 06:32 132096 c:\windows\system32\dllcache\wkssvc.dll
+ 2009-12-24 07:05 . 2009-12-24 07:05 177664 c:\windows\system32\dllcache\wintrust.dll
+ 2007-01-30 18:57 . 2010-04-16 15:20 668672 c:\windows\system32\dllcache\wininet.dll
+ 2008-12-16 12:47 . 2008-12-16 12:47 351232 c:\windows\system32\dllcache\winhttp.dll
+ 2007-12-18 14:40 . 2010-03-10 08:02 417792 c:\windows\system32\dllcache\vbscript.dll
+ 2007-01-30 18:57 . 2010-04-16 15:20 628224 c:\windows\system32\dllcache\urlmon.dll
+ 2011-04-27 20:08 . 2009-06-21 22:04 153088 c:\windows\system32\dllcache\triedit.dll
+ 2007-01-30 18:58 . 2010-02-11 12:01 226880 c:\windows\system32\dllcache\tcpip6.sys
+ 2007-01-30 18:57 . 2008-06-20 10:45 360320 c:\windows\system32\dllcache\tcpip.sys
+ 2009-10-15 20:51 . 2009-10-15 20:51 119808 c:\windows\system32\dllcache\t2embed.dll
+ 2009-08-26 08:16 . 2009-08-26 08:16 247326 c:\windows\system32\dllcache\strmdll.dll
+ 2007-01-30 18:56 . 2009-12-31 16:14 352640 c:\windows\system32\dllcache\srv.sys
+ 2009-06-25 08:44 . 2009-06-25 08:17 168448 c:\windows\system32\dllcache\schannel.dll
+ 2007-01-30 18:57 . 2010-04-16 15:20 474112 c:\windows\system32\dllcache\shlwapi.dll
- 2007-01-30 18:57 . 2006-06-23 11:25 474112 c:\windows\system32\dllcache\shlwapi.dll
+ 2011-04-27 20:08 . 2009-02-06 10:22 110592 c:\windows\system32\dllcache\services.exe
- 2005-08-05 14:01 . 2006-06-29 10:17 291840 c:\windows\system32\dllcache\sbe.dll
+ 2005-08-05 14:01 . 2011-02-04 15:48 291840 c:\windows\system32\dllcache\sbe.dll
+ 2011-04-27 20:08 . 2009-02-09 10:01 401408 c:\windows\system32\dllcache\rpcss.dll
+ 2009-04-15 15:11 . 2009-04-15 15:11 584192 c:\windows\system32\dllcache\rpcrt4.dll
+ 2007-01-30 18:57 . 2008-05-08 12:28 202752 c:\windows\system32\dllcache\rmcast.sys
+ 2009-10-12 13:54 . 2009-10-12 13:54 112128 c:\windows\system32\dllcache\rastls.dll
+ 2011-04-27 20:08 . 2009-03-06 14:00 284160 c:\windows\system32\dllcache\pdh.dll
+ 2009-10-13 10:53 . 2009-10-13 10:53 266752 c:\windows\system32\dllcache\oakley.dll
+ 2011-04-27 20:08 . 2009-02-09 10:01 715264 c:\windows\system32\dllcache\ntdll.dll
+ 2009-02-06 18:46 . 2009-02-06 18:46 408064 c:\windows\system32\dllcache\netlogon.dll
+ 2007-01-30 18:58 . 2008-10-15 16:57 332800 c:\windows\system32\dllcache\netapi32.dll
+ 2008-06-20 17:41 . 2008-06-20 17:41 245248 c:\windows\system32\dllcache\mswsock.dll
+ 2009-08-05 09:11 . 2009-08-05 09:11 204800 c:\windows\system32\dllcache\mswebdvd.dll
+ 2009-06-25 08:44 . 2009-09-11 14:03 136192 c:\windows\system32\dllcache\msv1_0.dll
+ 2007-01-30 18:57 . 2010-04-16 15:20 532480 c:\windows\system32\dllcache\mstime.dll
- 2007-01-30 18:57 . 2006-06-23 11:25 532480 c:\windows\system32\dllcache\mstime.dll
+ 2007-01-30 18:57 . 2010-04-16 15:20 146432 c:\windows\system32\dllcache\msrating.dll
- 2007-01-30 18:57 . 2006-06-23 11:25 146432 c:\windows\system32\dllcache\msrating.dll
+ 2009-12-16 12:58 . 2009-12-16 12:58 343040 c:\windows\system32\dllcache\mspaint.exe
+ 2009-06-25 18:36 . 2009-06-25 18:36 169472 c:\windows\system32\dllcache\msmqocm.dll
+ 2007-01-30 18:57 . 2010-04-16 15:20 449024 c:\windows\system32\dllcache\mshtmled.dll
+ 2008-06-12 14:16 . 2008-06-12 14:16 161792 c:\windows\system32\dllcache\msdtcuiu.dll
+ 2008-06-12 14:16 . 2008-06-12 14:16 956928 c:\windows\system32\dllcache\msdtctm.dll
+ 2008-06-12 14:16 . 2008-06-12 14:16 428032 c:\windows\system32\dllcache\msdtcprx.dll
+ 2007-01-30 18:56 . 2010-02-24 12:31 454016 c:\windows\system32\dllcache\mrxsmb.sys
+ 2009-06-25 18:36 . 2009-06-25 18:36 471552 c:\windows\system32\dllcache\mqutil.dll
+ 2009-06-25 18:36 . 2009-06-25 18:36 186880 c:\windows\system32\dllcache\mqtrig.dll
+ 2009-06-22 11:49 . 2009-06-22 11:49 117248 c:\windows\system32\dllcache\mqtgsvc.exe
+ 2009-06-25 18:36 . 2009-06-25 18:36 517120 c:\windows\system32\dllcache\mqsnap.dll
+ 2009-06-25 18:36 . 2009-06-25 18:36 123392 c:\windows\system32\dllcache\mqrtdep.dll
+ 2009-06-25 18:36 . 2009-06-25 18:36 177152 c:\windows\system32\dllcache\mqrt.dll
+ 2009-06-25 18:36 . 2009-06-25 18:36 661504 c:\windows\system32\dllcache\mqqm.dll
+ 2009-06-25 18:36 . 2009-06-25 18:36 225280 c:\windows\system32\dllcache\mqoa.dll
+ 2009-06-25 18:36 . 2009-06-25 18:36 138240 c:\windows\system32\dllcache\mqad.dll
+ 2009-06-25 08:44 . 2009-06-25 08:17 729600 c:\windows\system32\dllcache\lsasrv.dll
+ 2009-05-07 15:44 . 2009-05-07 15:44 344064 c:\windows\system32\dllcache\localspl.dll
+ 2007-01-30 18:56 . 2009-03-21 14:18 986112 c:\windows\system32\dllcache\kernel32.dll
+ 2009-06-25 08:44 . 2009-06-25 08:17 301568 c:\windows\system32\dllcache\kerberos.dll
- 2007-01-30 18:56 . 2006-05-18 05:24 450560 c:\windows\system32\dllcache\jscript.dll
+ 2007-01-30 18:56 . 2009-08-21 09:46 450560 c:\windows\system32\dllcache\jscript.dll
+ 2007-01-30 18:57 . 2010-01-29 15:08 683520 c:\windows\system32\dllcache\inetcomm.dll
- 2007-01-30 18:57 . 2006-06-23 11:25 251904 c:\windows\system32\dllcache\iepeers.dll
+ 2007-01-30 18:57 . 2010-04-16 15:20 251904 c:\windows\system32\dllcache\iepeers.dll
+ 2008-10-23 13:01 . 2008-10-23 13:01 283648 c:\windows\system32\dllcache\gdi32.dll
+ 2011-04-27 20:08 . 2009-02-09 10:01 473088 c:\windows\system32\dllcache\fastprox.dll
+ 2008-07-07 20:32 . 2008-07-07 20:32 253952 c:\windows\system32\dllcache\es.dll
- 2005-08-05 14:01 . 2006-06-29 10:17 456192 c:\windows\system32\dllcache\encdec.dll
+ 2005-08-05 14:01 . 2011-02-04 15:48 456192 c:\windows\system32\dllcache\encdec.dll
- 2007-01-30 18:57 . 2006-06-23 11:25 205312 c:\windows\system32\dllcache\dxtrans.dll
+ 2007-01-30 18:57 . 2010-04-16 15:20 205312 c:\windows\system32\dllcache\dxtrans.dll
- 2007-01-30 18:57 . 2006-06-23 11:25 357888 c:\windows\system32\dllcache\dxtmsft.dll
+ 2007-01-30 18:57 . 2010-04-16 15:20 357888 c:\windows\system32\dllcache\dxtmsft.dll
+ 2007-01-30 18:56 . 2008-06-20 17:41 148992 c:\windows\system32\dllcache\dnsapi.dll
+ 2004-09-10 14:56 . 2004-08-10 14:00 640000 c:\windows\system32\dllcache\dbghelp.dll
- 2007-01-30 18:57 . 2006-06-23 11:25 151040 c:\windows\system32\dllcache\cdfview.dll
+ 2007-01-30 18:57 . 2010-04-16 15:20 151040 c:\windows\system32\dllcache\cdfview.dll
+ 2010-04-20 05:51 . 2010-04-20 05:51 285696 c:\windows\system32\dllcache\atmfd.dll
+ 2008-06-20 10:44 . 2008-08-14 09:51 138368 c:\windows\system32\dllcache\afd.sys
+ 2011-04-27 20:08 . 2009-02-09 10:01 617984 c:\windows\system32\dllcache\advapi32.dll
+ 2007-01-30 18:58 . 2010-02-12 04:47 100864 c:\windows\system32\dllcache\6to4svc.dll
- 2004-09-10 14:56 . 2006-06-23 11:25 151040 c:\windows\system32\cdfview.dll
+ 2004-09-10 14:56 . 2010-04-16 15:20 151040 c:\windows\system32\cdfview.dll
+ 2004-09-10 14:56 . 2010-04-20 05:51 285696 c:\windows\system32\atmfd.dll
- 2004-09-10 14:56 . 2004-08-10 14:00 285696 c:\windows\system32\atmfd.dll
+ 2004-09-10 14:56 . 2009-02-09 10:01 617984 c:\windows\system32\advapi32.dll
+ 2004-09-10 14:56 . 2010-02-12 04:47 100864 c:\windows\system32\6to4svc.dll
- 2004-09-10 15:34 . 2004-08-10 14:00 743936 c:\windows\pchealth\helpctr\binaries\HelpSvc.exe
+ 2004-09-10 15:34 . 2010-06-14 14:30 743936 c:\windows\pchealth\helpctr\binaries\helpsvc.exe
+ 2004-09-10 15:31 . 2009-06-23 19:59 303104 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorjit.dll
- 2004-09-10 15:31 . 2004-07-19 18:54 303104 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorjit.dll
- 2004-09-10 15:31 . 2004-08-03 22:11 200704 c:\windows\Microsoft.NET\Framework\v1.0.3705\aspnet_isapi.dll
+ 2004-09-10 15:31 . 2009-06-23 20:12 200704 c:\windows\Microsoft.NET\Framework\v1.0.3705\aspnet_isapi.dll
+ 2011-04-27 20:31 . 2011-04-27 20:31 219648 c:\windows\Installer\1d21e5.msi
+ 2007-01-30 18:39 . 2009-08-18 08:55 179712 c:\windows\ehome\ehkeyctl.dll
+ 2007-01-30 18:52 . 2010-02-24 12:31 454016 c:\windows\Driver Cache\i386\mrxsmb.sys
+ 2011-04-27 20:12 . 2008-06-13 13:10 272128 c:\windows\Driver Cache\i386\bthport.sys
+ 2011-03-30 21:02 . 2011-03-30 21:02 847872 c:\windows\assembly\NativeImages1_v1.0.3705\System.Drawing\1.0.3300.0__b03f5f7f11d50a3a_31ffaf1f\System.Drawing.dll
+ 2004-09-10 14:56 . 2009-11-21 16:36 470528 c:\windows\AppPatch\aclayers.dll
+ 2011-04-27 20:11 . 2009-08-13 13:55 1748992 c:\windows\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6001.22319_x-ww_f0b4c2df\GdiPlus.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 3780424 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfc90u.dll
+ 2009-07-11 22:02 . 2009-07-11 22:02 3765048 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfc90.dll
+ 2004-09-10 15:34 . 2009-08-06 17:23 1929952 c:\windows\system32\wuaueng.dll
+ 2004-09-10 14:58 . 2010-04-03 02:27 2334720 c:\windows\system32\WMVCore.dll
+ 2004-09-10 14:58 . 2009-07-13 08:08 5537792 c:\windows\system32\wmp.dll
+ 2004-09-10 14:57 . 2010-05-02 05:56 1850880 c:\windows\system32\win32k.sys
+ 2004-09-10 14:57 . 2008-07-03 13:03 8460800 c:\windows\system32\shell32.dll
+ 2004-09-10 14:57 . 2010-04-16 15:20 1509888 c:\windows\system32\shdocvw.dll
- 2004-09-10 14:57 . 2006-06-22 05:06 1435648 c:\windows\system32\query.dll
+ 2004-09-10 14:57 . 2009-07-17 16:27 1435648 c:\windows\system32\query.dll
+ 2004-09-10 14:57 . 2010-02-05 18:14 1291776 c:\windows\system32\quartz.dll
+ 2004-09-10 14:57 . 2010-02-16 17:35 2143744 c:\windows\system32\ntoskrnl.exe
+ 2004-08-03 22:59 . 2010-02-16 16:57 2021888 c:\windows\system32\ntkrnlpa.exe
+ 2004-09-10 14:57 . 2009-07-31 04:57 1172480 c:\windows\system32\msxml3.dll
+ 2004-09-10 14:57 . 2010-04-16 15:20 3073024 c:\windows\system32\mshtml.dll
+ 2004-09-10 15:34 . 2009-08-06 17:23 1929952 c:\windows\system32\dllcache\wuaueng.dll
+ 2004-09-10 14:58 . 2010-04-03 02:27 2334720 c:\windows\system32\dllcache\WMVCore.dll
+ 2009-07-13 08:08 . 2009-07-13 08:08 5537792 c:\windows\system32\dllcache\wmp.dll
+ 2010-05-02 05:56 . 2010-05-02 05:56 1850880 c:\windows\system32\dllcache\win32k.sys
+ 2007-01-30 18:58 . 2008-07-03 13:03 8460800 c:\windows\system32\dllcache\shell32.dll
+ 2007-01-30 18:57 . 2010-04-16 15:20 1509888 c:\windows\system32\dllcache\shdocvw.dll
+ 2007-01-30 18:57 . 2009-07-17 16:27 1435648 c:\windows\system32\dllcache\query.dll
- 2007-01-30 18:57 . 2006-06-22 05:06 1435648 c:\windows\system32\dllcache\query.dll
+ 2010-02-05 18:14 . 2010-02-05 18:14 1291776 c:\windows\system32\dllcache\quartz.dll
+ 2011-04-27 20:08 . 2010-02-16 17:37 2186880 c:\windows\system32\dllcache\ntoskrnl.exe
+ 2011-04-27 20:08 . 2010-02-16 16:57 2021888 c:\windows\system32\dllcache\ntkrpamp.exe
+ 2011-04-27 20:08 . 2010-02-17 09:57 2063744 c:\windows\system32\dllcache\ntkrnlpa.exe
+ 2011-04-27 20:08 . 2010-02-16 17:35 2143744 c:\windows\system32\dllcache\ntkrnlmp.exe
+ 2007-01-30 18:58 . 2009-07-31 04:57 1172480 c:\windows\system32\dllcache\msxml3.dll
+ 2010-01-29 15:08 . 2010-01-29 15:08 1315840 c:\windows\system32\dllcache\msoe.dll
+ 2007-01-30 18:57 . 2010-04-16 15:20 3073024 c:\windows\system32\dllcache\mshtml.dll
+ 2011-04-27 20:08 . 2009-10-23 14:27 3555328 c:\windows\system32\dllcache\moviemk.exe
- 2007-01-30 18:57 . 2006-06-23 11:25 1054208 c:\windows\system32\dllcache\danim.dll
+ 2007-01-30 18:57 . 2010-04-16 15:20 1054208 c:\windows\system32\dllcache\danim.dll
+ 2007-01-30 18:57 . 2010-04-16 15:20 1024000 c:\windows\system32\dllcache\browseui.dll
- 2004-09-10 14:56 . 2006-06-23 11:25 1054208 c:\windows\system32\danim.dll
+ 2004-09-10 14:56 . 2010-04-16 15:20 1054208 c:\windows\system32\danim.dll
+ 2004-09-10 14:56 . 2010-04-16 15:20 1024000 c:\windows\system32\browseui.dll
- 2004-09-10 15:31 . 2004-10-07 13:28 1200128 c:\windows\Microsoft.NET\Framework\v1.0.3705\System.Web.dll
+ 2004-09-10 15:31 . 2009-06-29 09:58 1200128 c:\windows\Microsoft.NET\Framework\v1.0.3705\System.Web.dll
+ 2004-09-10 15:31 . 2009-06-23 20:00 2281472 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorwks.dll
+ 2004-09-10 15:31 . 2009-06-23 20:00 2273280 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorsvr.dll
- 2004-09-10 15:31 . 2004-07-19 18:54 1998848 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorlib.dll
+ 2004-09-10 15:31 . 2009-06-29 09:58 1998848 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscorlib.dll
+ 2011-04-27 20:33 . 2011-04-27 20:33 3272704 c:\windows\Installer\1d21ed.msi
+ 2011-04-27 20:32 . 2011-04-27 20:32 1611776 c:\windows\Installer\1d21e9.msi
+ 2004-09-10 15:50 . 2006-08-21 13:57 1077321 c:\windows\Help\SBSI\Training\orun32.exe
+ 2007-01-30 18:52 . 2010-02-16 17:37 2186880 c:\windows\Driver Cache\i386\ntoskrnl.exe
+ 2007-01-30 18:52 . 2010-02-16 16:57 2021888 c:\windows\Driver Cache\i386\ntkrpamp.exe
+ 2007-01-30 18:52 . 2010-02-17 09:57 2063744 c:\windows\Driver Cache\i386\ntkrnlpa.exe
+ 2007-01-30 18:52 . 2010-02-16 17:35 2143744 c:\windows\Driver Cache\i386\ntkrnlmp.exe
+ 2011-03-30 21:02 . 2011-03-30 21:02 1855488 c:\windows\assembly\NativeImages1_v1.0.3705\System\1.0.3300.0__b77a5c561934e089_cdd34a63\System.dll
+ 2011-03-30 21:02 . 2011-03-30 21:02 2027520 c:\windows\assembly\NativeImages1_v1.0.3705\System.Xml\1.0.3300.0__b77a5c561934e089_0410de4d\System.Xml.dll
+ 2011-03-30 21:02 . 2011-03-30 21:02 2953216 c:\windows\assembly\NativeImages1_v1.0.3705\System.Windows.Forms\1.0.3300.0__b77a5c561934e089_57905c38\System.Windows.Forms.dll
+ 2011-03-30 21:02 . 2011-03-30 21:02 1454080 c:\windows\assembly\NativeImages1_v1.0.3705\System.Design\1.0.3300.0__b03f5f7f11d50a3a_b7b5b0e5\System.Design.dll
+ 2011-03-30 21:02 . 2011-03-30 21:02 3301376 c:\windows\assembly\NativeImages1_v1.0.3705\mscorlib\1.0.3300.0__b77a5c561934e089_1ef50bbd\mscorlib.dll
+ 2011-03-30 21:01 . 2011-03-30 21:01 1200128 c:\windows\assembly\GAC\System.Web\1.0.3300.0__b03f5f7f11d50a3a\System.Web.dll
- 2007-01-30 18:52 . 2007-01-30 18:52 1200128 c:\windows\assembly\GAC\System.Web\1.0.3300.0__b03f5f7f11d50a3a\System.Web.dll
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2004-08-10 208952]
"PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-10 455168]
"PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-10 455168]
"ehTray"="c:\windows\ehome\ehtray.exe" [2005-08-05 64512]
"RTHDCPL"="RTHDCPL.EXE" [2006-05-18 16207872]
"SkyTel"="SkyTel.EXE" [2006-05-16 2879488]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-10-06 7700480]
"nwiz"="nwiz.exe" [2006-10-06 1617920]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2006-10-06 86016]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2004-08-10 15360]
.
c:\documents and settings\Bels\Start Menu\Programs\Startup\
Registration Driver Parallel Lines.LNK - c:\program files\Ubisoft\Driver Parallel Lines\Register\RegistrationReminder.exe [N/A]
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 12:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.dll
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Program Files\\ICQ7.2\\ICQ.exe"=
"c:\\Program Files\\ICQ7.2\\aolload.exe"=
"c:\\Documents and Settings\\Bels\\My Documents\\Stažené soubory\\P17535732.JPG-www.facebook.exe"= c:\\WINDOWS\\nvsvc32.exe
"c:\\APPS\\skype\\Plugin Manager\\skypePM.exe"=
"c:\\APPS\\SKYPE\\Phone\\Skype.exe"=
.
R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [17.2.2010 10:25 12872]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [17.2.2010 10:15 66632]
S2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [6.3.2011 14:32 135664]
S2 qqilye;Security Shell;c:\windows\system32\svchost.exe -k netsvcs [10.9.2004 16:57 14336]
S2 sjxdngg;Task Monitor;c:\windows\system32\svchost.exe -k netsvcs [10.9.2004 16:57 14336]
S2 xgmhnw;Manager Installer;c:\windows\system32\svchost.exe -k netsvcs [10.9.2004 16:57 14336]
S3 SASENUM;SASENUM;c:\program files\SUPERAntiSpyware\SASENUM.SYS [17.2.2010 10:15 12872]
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
sjxdngg
xgmhnw
qqilye
.
Obsah adresáře 'Naplánované úlohy'
.
2011-03-31 c:\windows\Tasks\Extended Warranty.job
- c:\apps\SMP\PBCARNOT.EXE [2005-11-09 12:55]
.
2011-03-31 c:\windows\Tasks\Master CD_DVD Creator.job
- c:\apps\SMP\MCDCHECK.EXE [2005-11-08 14:26]
.
2009-12-19 c:\windows\Tasks\Registration reminder 1.job
- c:\windows\system32\OOBE\oobebaln.exe [2004-09-10 14:00]
.
2009-12-19 c:\windows\Tasks\Registration reminder 2.job
- c:\windows\system32\OOBE\oobebaln.exe [2004-09-10 14:00]
.
2009-12-19 c:\windows\Tasks\Registration reminder 3.job
- c:\windows\system32\OOBE\oobebaln.exe [2004-09-10 14:00]
.
2011-04-27 c:\windows\Tasks\Setup My PC.job
- c:\apps\SMP\PCSETUP.EXE [2005-11-17 09:03]
.
.
------- Doplňkový sken -------
.
uStart Page =
hxxp://format.packardbell.com/cgi-bin/r ... ey=IESTARTuInternet Connection Wizard,ShellNext =
hxxp://www.avg.cz/cz.special-uninstalla ... =10.0.1204FF - ProfilePath - c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\cean2ps7.default\
FF - prefs.js: browser.startup.homepage -
hxxp://www.seznam.cz/FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2011-03-31 18:00
Windows 5.1.2600 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\qqilye]
"ServiceDll"="c:\windows\system32\rrsdnoem.dll"
--
.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sjxdngg]
"ServiceDll"="c:\windows\system32\rrsdnoem.dll"
--
.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\xgmhnw]
"ServiceDll"="c:\windows\system32\rrsdnoem.dll"
.
--------------------- Knihovny navázané na běžící procesy ---------------------
.
- - - - - - - > 'winlogon.exe'(636)
c:\program files\SUPERAntiSpyware\SASWINLO.dll
.
- - - - - - - > 'explorer.exe'(2816)
c:\windows\system32\msi.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\nvsvc32.exe
c:\program files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
c:\windows\system32\wdfmgr.exe
c:\program files\Sonic\DigitalMedia LE v7\MyDVD LE\USBDeviceService.exe
c:\windows\ehome\mcrdsvc.exe
c:\windows\system32\wscntfy.exe
c:\windows\RTHDCPL.EXE
c:\windows\system32\RUNDLL32.EXE
.
**************************************************************************
.
Celkový čas: 2011-03-31 18:02:37 - počítač byl restartován
ComboFix-quarantined-files.txt 2011-03-31 16:02
ComboFix2.txt 2011-04-27 20:03
ComboFix3.txt 2011-04-27 19:24
.
Před spuštěním: 224 470 581 248 bytes free
Po spuštění: Volných bajtů: 224 478 703 616
.
- - End Of File - - 5DA959C7F674B830C8C63BFAE31CEDA2