Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:07:07, on 12.5.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\savedump.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Microsoft Security Essentials\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Microsoft Security Essentials\msseces.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\dumprep.exe
C:\Program Files\Microsoft ActiveSync\Wcescomm.exe
C:\Program Files\PopTray\PopTray.exe
C:\PROGRA~1\MICROS~3\rapimgr.exe
C:\WINDOWS\system32\dwwin.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\totalcmd\TOTALCMD.EXE
c:\Documents and Settings\Jirka\Dokumenty\Stažené soubory\HiJackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [MSSE] "C:\Program Files\Microsoft Security Essentials\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe /installquiet
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\Wcescomm.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: PopTray.lnk = C:\Program Files\PopTray\PopTray.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 2894601875
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PEVSystemStart - Unknown owner - C:\ComboFix\PEV.cfxxe (file missing)
--
End of file - 4314 bytes
Prosím o kontrolu logu. Děkuji
Re: Prosím o kontrolu logu. Děkuji
Ahoj,
Ty jsi spouštěl combofix? Zlobí Tě počítač nějak?
Stahni Rsit http://images.malwareremoval.com/random/RSIT.exe
-spusť, klikni na tlačítko Continue
-po skenu na tebe vyběhne log.txt,obsah vlož zde
Ty jsi spouštěl combofix? Zlobí Tě počítač nějak?
Stahni Rsit http://images.malwareremoval.com/random/RSIT.exe
-spusť, klikni na tlačítko Continue
-po skenu na tebe vyběhne log.txt,obsah vlož zde
Re: Prosím o kontrolu logu. Děkuji
Ano, zlobí,sám se restartuje,na druhém disku jsem měl soubory co nešly odstranit,tak jsem zformátoval celý disk.Nejde nainstalovat update readeru a pod..Zde je výsledek:
Logfile of random's system information tool 1.07 (written by random/random)
Run by Jirka at 2010-05-12 21:15:48
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 12 GB (47%) free of 25 GB
Total RAM: 3070 MB (80% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:15:54, on 12.5.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Microsoft Security Essentials\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Microsoft Security Essentials\msseces.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Microsoft ActiveSync\Wcescomm.exe
C:\Program Files\PopTray\PopTray.exe
C:\PROGRA~1\MICROS~3\rapimgr.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Microsoft ActiveSync\WCESMgr.exe
C:\totalcmd\TOTALCMD.EXE
C:\Documents and Settings\Jirka\Dokumenty\Stažené soubory\RSIT.exe
C:\Program Files\trend micro\Jirka.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [MSSE] "C:\Program Files\Microsoft Security Essentials\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe /installquiet
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\Wcescomm.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: PopTray.lnk = C:\Program Files\PopTray\PopTray.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 2894601875
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PEVSystemStart - Unknown owner - C:\ComboFix\PEV.cfxxe (file missing)
--
End of file - 4193 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore1caef9b537a392e.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\MP Scheduled Scan.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-05-09 41760]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []
"MSSE"=C:\Program Files\Microsoft Security Essentials\msseces.exe [2010-02-21 1093208]
"nwiz"=C:\Program Files\NVIDIA Corporation\nView\nwiz.exe [2010-03-31 1657448]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2010-04-03 13670504]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-03-24 952768]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2007-04-12 16132608]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"H/PC Connection Agent"=C:\Program Files\Microsoft ActiveSync\Wcescomm.exe [2006-11-13 1289000]
C:\Documents and Settings\Jirka\Nabídka Start\Programy\Po spuštění
PopTray.lnk - C:\Program Files\PopTray\PopTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 239616]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Lavasoft Ad-Aware Service]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\totalcmd\TOTALCMD.EXE"="C:\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe"="C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe"="C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"
"C:\Program Files\Efficasoft Mobile Express\MobileExpress.exe"="C:\Program Files\Efficasoft Mobile Express\MobileExpress.exe:*:Enabled:Efficasoft Mobile Express"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe"="C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe"="C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"
======List of files/folders created in the last 1 months======
2010-05-12 21:15:48 ----D---- C:\rsit
2010-05-12 21:15:48 ----D---- C:\Program Files\trend micro
2010-05-12 18:10:48 ----D---- C:\32788R22FWJFW
2010-05-12 17:28:35 ----D---- C:\Qoobox
2010-05-12 17:01:03 ----D---- C:\Program Files\MSXML 4.0
2010-05-12 16:53:19 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2010-05-11 20:10:11 ----D---- C:\Program Files\Software602
2010-05-11 19:28:10 ----A---- C:\WINDOWS\CSTBox.INI
2010-05-11 19:01:39 ----D---- C:\Documents and Settings\Jirka\Data aplikací\Canon
2010-05-11 19:01:15 ----D---- C:\Program Files\Canon
2010-05-10 17:27:31 ----D---- C:\Program Files\Windows Live Safety Center
2010-05-10 16:54:11 ----D---- C:\Program Files\Alwil Software
2010-05-10 16:54:11 ----D---- C:\Documents and Settings\All Users\Data aplikací\Alwil Software
2010-05-09 21:32:40 ----D---- C:\WINDOWS\temp
2010-05-09 21:19:31 ----A---- C:\Boot.bak
2010-05-09 21:19:26 ----RASHD---- C:\cmdcons
2010-05-09 21:18:31 ----A---- C:\WINDOWS\zip.exe
2010-05-09 21:18:31 ----A---- C:\WINDOWS\SWXCACLS.exe
2010-05-09 21:18:31 ----A---- C:\WINDOWS\SWSC.exe
2010-05-09 21:18:31 ----A---- C:\WINDOWS\SWREG.exe
2010-05-09 21:18:31 ----A---- C:\WINDOWS\sed.exe
2010-05-09 21:18:31 ----A---- C:\WINDOWS\PEV.exe
2010-05-09 21:18:31 ----A---- C:\WINDOWS\NIRCMD.exe
2010-05-09 21:18:31 ----A---- C:\WINDOWS\MBR.exe
2010-05-09 21:18:31 ----A---- C:\WINDOWS\grep.exe
2010-05-09 21:16:36 ----D---- C:\WINDOWS\ERDNT
2010-05-09 21:16:33 ----A---- C:\WINDOWS\system32\CF6255.exe
2010-05-09 20:22:46 ----D---- C:\WINDOWS\Sun
2010-05-09 20:13:36 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sun
2010-05-09 20:13:35 ----D---- C:\Program Files\Common Files\Java
2010-05-09 20:13:20 ----A---- C:\WINDOWS\system32\deployJava1.dll
2010-05-09 20:13:19 ----A---- C:\WINDOWS\system32\javaws.exe
2010-05-09 20:13:19 ----A---- C:\WINDOWS\system32\javaw.exe
2010-05-09 20:13:19 ----A---- C:\WINDOWS\system32\java.exe
2010-05-09 20:12:46 ----D---- C:\Program Files\Java
2010-05-09 20:09:24 ----D---- C:\Documents and Settings\Jirka\Data aplikací\Sun
2010-05-09 19:26:23 ----SHD---- C:\WINDOWS\CSC
2010-05-09 19:15:29 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-05-09 19:11:39 ----D---- C:\Program Files\Google
2010-05-09 19:11:37 ----HDC---- C:\Documents and Settings\All Users\Data aplikací\{74D08EB8-01D1-4BAE-91E3-F30C1B031AC6}
2010-05-09 19:11:29 ----D---- C:\Program Files\Lavasoft
2010-05-09 19:11:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\Lavasoft
2010-05-09 17:41:57 ----A---- C:\WINDOWS\NeroDigital.ini
2010-05-09 16:05:20 ----N---- C:\WINDOWS\system32\TwnLib4.dll
2010-05-09 16:05:20 ----A---- C:\WINDOWS\system32\TwnLib20.dll
2010-05-09 16:05:19 ----N---- C:\WINDOWS\system32\ImagXRA7.dll
2010-05-09 16:05:19 ----N---- C:\WINDOWS\system32\ImagXR7.dll
2010-05-09 16:05:19 ----N---- C:\WINDOWS\system32\ImagXpr7.dll
2010-05-09 16:05:19 ----N---- C:\WINDOWS\system32\ImagX7.dll
2010-05-09 16:05:19 ----D---- C:\Program Files\Common Files\Ahead
2010-05-09 16:05:19 ----D---- C:\Program Files\Ahead
2010-05-09 16:05:19 ----A---- C:\WINDOWS\system32\NeroCheck.exe
2010-05-07 19:58:00 ----D---- C:\Program Files\ESET
2010-05-06 22:17:42 ----A---- C:\WINDOWS\ntbtlog.txt
2010-05-06 16:37:54 ----HDC---- C:\WINDOWS\$NtUninstallKB979402_WM9$
2010-05-06 16:37:49 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2010-05-06 16:37:40 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-05-06 16:37:15 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2010-05-05 22:44:05 ----D---- C:\Program Files\FSViewer42
2010-05-05 21:00:19 ----D---- C:\Program Files\Aplikace MB
2010-05-05 19:04:20 ----D---- C:\Program Files\Microsoft ActiveSync
2010-05-05 19:00:29 ----D---- C:\Program Files\Efficasoft Mobile Express
2010-05-05 16:31:35 ----D---- C:\WINDOWS\system32\Lang
2010-05-05 16:02:50 ----D---- C:\WINDOWS\Prefetch
2010-05-05 15:54:00 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2010-05-05 15:53:53 ----HDC---- C:\WINDOWS\$NtUninstallKB979683$
2010-05-05 15:53:49 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2010-05-05 15:53:45 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-05-05 15:53:41 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2010-05-05 15:53:38 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2010-05-05 15:45:33 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-05-05 15:45:29 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-05-05 15:45:24 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-05-05 15:45:21 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2010-05-05 15:45:16 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-05-05 15:45:13 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-05-05 15:45:09 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-05-05 15:45:05 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-05-05 15:45:01 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-05-05 15:44:57 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-05-05 15:44:53 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-05-05 15:44:49 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-05-05 15:44:45 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-05-05 15:44:41 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-05-05 15:44:37 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-05-05 15:44:33 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-05-05 15:44:29 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-05-05 15:44:26 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-05-05 15:40:22 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-05-05 15:40:18 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2010-05-05 15:40:14 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-05-05 15:40:10 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-05-05 15:40:07 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-05-05 15:40:03 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-05-05 15:39:58 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-05-05 15:39:52 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-05-05 15:39:49 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-05-05 15:39:45 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-05-05 15:39:41 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-05-05 15:39:37 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-05-05 15:39:33 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-05-05 15:39:29 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-05-05 15:39:26 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-05-05 15:25:40 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-05-05 15:25:35 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-05-05 15:25:16 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_1$
2010-05-05 15:25:11 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-05-05 15:25:07 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-05-05 15:23:06 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-05-05 15:23:00 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-05-05 15:22:55 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-05-05 15:22:48 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2010-05-05 15:22:43 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-05-05 15:22:39 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-05-05 15:22:33 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-05-05 15:22:26 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-05-05 15:20:37 ----D---- C:\WINDOWS\system32\cs
2010-05-05 15:20:37 ----D---- C:\WINDOWS\l2schemas
2010-05-05 15:20:36 ----D---- C:\WINDOWS\system32\bits
2010-05-05 15:16:08 ----D---- C:\WINDOWS\network diagnostic
2010-05-05 15:15:11 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-05-05 15:13:19 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-05-05 14:03:40 ----HDC---- C:\WINDOWS\$NtUninstallKB935448$
2010-05-05 14:03:34 ----HDC---- C:\WINDOWS\$NtUninstallKB970430_0$
2010-05-05 14:03:04 ----D---- C:\WINDOWS\ie8updates
2010-05-05 14:02:55 ----D---- C:\WINDOWS\WBEM
2010-05-05 14:02:04 ----HDC---- C:\WINDOWS\ie8
2010-05-05 14:02:04 ----D---- C:\WINDOWS\system32\cs-CZ
2010-05-05 14:00:41 ----HDC---- C:\WINDOWS\$NtUninstallKB975561_0$
2010-05-05 14:00:28 ----HDC---- C:\WINDOWS\$NtUninstallKB980182$
2010-05-05 14:00:16 ----HDC---- C:\WINDOWS\$NtUninstallKB967715_0$
2010-05-05 14:00:11 ----HDC---- C:\WINDOWS\$NtUninstallKB971737_0$
2010-05-05 14:00:06 ----HDC---- C:\WINDOWS\$NtUninstallKB956802_0$
2010-05-05 13:59:50 ----HDC---- C:\WINDOWS\$NtUninstallKB979306$
2010-05-05 13:57:21 ----D---- C:\Program Files\Autodesk
2010-05-05 13:52:06 ----N---- C:\WINDOWS\system32\wmphoto.dll
2010-05-05 13:52:05 ----N---- C:\WINDOWS\system32\wlanapi.dll
2010-05-05 13:52:05 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2010-05-05 13:52:05 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2010-05-05 13:52:04 ----N---- C:\WINDOWS\system32\verclsid.exe
2010-05-05 13:52:02 ----N---- C:\WINDOWS\system32\tspkg.dll
2010-05-05 13:52:02 ----N---- C:\WINDOWS\system32\tsgqec.dll
2010-05-05 13:51:58 ----N---- C:\WINDOWS\system32\spupdwxp.exe
2010-05-05 13:51:57 ----A---- C:\WINDOWS\system32\spdwnwxp.exe
2010-05-05 13:51:56 ----N---- C:\WINDOWS\system32\slserv.exe
2010-05-05 13:51:51 ----N---- C:\WINDOWS\system32\slrundll.exe
2010-05-05 13:51:51 ----N---- C:\WINDOWS\system32\slgen.dll
2010-05-05 13:51:51 ----N---- C:\WINDOWS\system32\slextspk.dll
2010-05-05 13:51:51 ----N---- C:\WINDOWS\system32\slcoinst.dll
2010-05-05 13:51:51 ----N---- C:\WINDOWS\system32\setupn.exe
2010-05-05 13:51:51 ----N---- C:\WINDOWS\slrundll.exe
2010-05-05 13:51:50 ----N---- C:\WINDOWS\system32\s3gnb.dll
2010-05-05 13:51:49 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2010-05-05 13:51:48 ----N---- C:\WINDOWS\system32\rasqec.dll
2010-05-05 13:51:48 ----N---- C:\WINDOWS\system32\qutil.dll
2010-05-05 13:51:48 ----N---- C:\WINDOWS\system32\qcliprov.dll
2010-05-05 13:51:48 ----N---- C:\WINDOWS\system32\qagentrt.dll
2010-05-05 13:51:48 ----N---- C:\WINDOWS\system32\qagent.dll
2010-05-05 13:51:47 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2010-05-05 13:51:45 ----N---- C:\WINDOWS\system32\onex.dll
2010-05-05 13:51:43 ----N---- C:\WINDOWS\system32\napstat.exe
2010-05-05 13:51:43 ----N---- C:\WINDOWS\system32\napmontr.dll
2010-05-05 13:51:42 ----N---- C:\WINDOWS\system32\napipsec.dll
2010-05-05 13:51:42 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2010-05-05 13:51:42 ----N---- C:\WINDOWS\system32\msxml6r.dll
2010-05-05 13:51:42 ----N---- C:\WINDOWS\system32\msxml6.dll
2010-05-05 13:51:41 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2010-05-05 13:51:41 ----N---- C:\WINDOWS\system32\mssha.dll
2010-05-05 13:51:35 ----N---- C:\WINDOWS\system32\mmcperf.exe
2010-05-05 13:51:35 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2010-05-05 13:51:35 ----N---- C:\WINDOWS\system32\mmcex.dll
2010-05-05 13:51:35 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2010-05-05 13:51:34 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2010-05-05 13:51:31 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2010-05-05 13:51:30 ----N---- C:\WINDOWS\system32\kmsvc.dll
2010-05-05 13:51:30 ----N---- C:\WINDOWS\system32\kbdpash.dll
2010-05-05 13:51:30 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2010-05-05 13:51:30 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2010-05-05 13:51:30 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2010-05-05 13:51:29 ----N---- C:\WINDOWS\system32\smtpapi.dll
2010-05-05 13:51:29 ----N---- C:\WINDOWS\system32\rwnh.dll
2010-05-05 13:51:28 ----N---- C:\WINDOWS\system32\comsdupd.exe
2010-05-05 13:51:27 ----N---- C:\WINDOWS\system32\ieencode.dll
2010-05-05 13:51:26 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2010-05-05 13:51:24 ----N---- C:\WINDOWS\system32\faxpatch.exe
2010-05-05 13:51:24 ----A---- C:\WINDOWS\002692_.tmp
2010-05-05 13:51:23 ----N---- C:\WINDOWS\system32\eapsvc.dll
2010-05-05 13:51:23 ----N---- C:\WINDOWS\system32\eapqec.dll
2010-05-05 13:51:23 ----N---- C:\WINDOWS\system32\eappprxy.dll
2010-05-05 13:51:23 ----N---- C:\WINDOWS\system32\eapphost.dll
2010-05-05 13:51:23 ----N---- C:\WINDOWS\system32\eappgnui.dll
2010-05-05 13:51:23 ----N---- C:\WINDOWS\system32\eappcfg.dll
2010-05-05 13:51:23 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2010-05-05 13:51:23 ----N---- C:\WINDOWS\system32\eapolqec.dll
2010-05-05 13:51:21 ----N---- C:\WINDOWS\system32\dot3ui.dll
2010-05-05 13:51:21 ----N---- C:\WINDOWS\system32\dot3svc.dll
2010-05-05 13:51:21 ----N---- C:\WINDOWS\system32\dot3msm.dll
2010-05-05 13:51:21 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2010-05-05 13:51:21 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2010-05-05 13:51:21 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2010-05-05 13:51:21 ----N---- C:\WINDOWS\system32\dot3api.dll
2010-05-05 13:51:20 ----N---- C:\WINDOWS\system32\dimsroam.dll
2010-05-05 13:51:20 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2010-05-05 13:51:20 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2010-05-05 13:51:19 ----N---- C:\WINDOWS\system32\credssp.dll
2010-05-05 13:51:17 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2010-05-05 13:51:17 ----N---- C:\WINDOWS\system32\azroles.dll
2010-05-05 13:51:16 ----N---- C:\WINDOWS\system32\ativvaxx.dll
2010-05-05 13:51:16 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2010-05-05 13:51:16 ----N---- C:\WINDOWS\system32\ati3duag.dll
2010-05-05 13:51:16 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2010-05-05 13:51:16 ----N---- C:\WINDOWS\system32\ati2dvag.dll
2010-05-05 13:51:16 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2010-05-05 13:51:16 ----N---- C:\WINDOWS\system32\ati2cqag.dll
2010-05-05 13:51:14 ----N---- C:\WINDOWS\system32\aaclient.dll
2010-05-05 13:45:22 ----N---- C:\WINDOWS\system32\tzchange.exe
2010-05-05 13:43:22 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2010-05-05 13:43:22 ----A---- C:\WINDOWS\system32\mucltui.dll
2010-05-05 11:01:28 ----N---- C:\WINDOWS\system32\SSRemove.Exe
2010-05-05 11:01:25 ----A---- C:\WINDOWS\system32\XRXS2LMK.DLL
2010-05-05 11:01:24 ----A---- C:\WINDOWS\system32\SSCoInst.exe
2010-05-05 11:01:24 ----A---- C:\WINDOWS\system32\SSCoInst.dll
2010-05-05 11:01:22 ----D---- C:\WINDOWS\Xerox
2010-05-03 21:49:37 ----D---- C:\Documents and Settings\Jirka\Data aplikací\Media Player Classic
2010-05-03 21:49:26 ----D---- C:\Program Files\MPC
2010-05-03 21:48:02 ----A---- C:\WINDOWS\system32\unrar.dll
2010-05-03 21:47:58 ----D---- C:\Program Files\K-Lite Codec Pack
2010-05-03 21:45:02 ----A---- C:\WINDOWS\system32\msvcr71.dll
2010-05-03 21:45:02 ----A---- C:\WINDOWS\system32\msvcp71.dll
2010-05-03 21:32:28 ----A---- C:\WINDOWS\PVAStrumento.ini
2010-05-03 20:38:24 ----D---- C:\Documents and Settings\Jirka\Data aplikací\CSAS
2010-05-03 19:31:46 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2010-05-03 17:41:13 ----D---- C:\Program Files\GIGABYTE
2010-05-03 17:41:07 ----A---- C:\WINDOWS\IsUninst.exe
2010-05-03 17:37:13 ----D---- C:\Documents and Settings\Jirka\Data aplikací\OpenOffice.org
2010-05-03 17:14:45 ----D---- C:\Program Files\PopTray
2010-05-03 17:08:07 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2010-05-03 17:06:25 ----RA---- C:\WINDOWS\SET29.tmp
2010-05-03 17:06:24 ----RA---- C:\WINDOWS\SET1D.tmp
2010-05-03 17:06:23 ----RA---- C:\WINDOWS\SET1A.tmp
2010-05-03 17:06:04 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-05-03 16:57:17 ----A---- C:\WINDOWS\system32\h323log.txt
2010-05-03 16:53:58 ----A---- C:\WINDOWS\system32\hidserv.dll
2010-05-03 16:53:51 ----A---- C:\WINDOWS\system32\ksuser.dll
2010-05-03 16:53:46 ----A---- C:\WINDOWS\system32\wshirda.dll
2010-05-03 16:53:46 ----A---- C:\WINDOWS\system32\irmon.dll
2010-05-03 16:53:46 ----A---- C:\WINDOWS\system32\irftp.exe
2010-05-03 16:52:23 ----A---- C:\WINDOWS\system32\usbui.dll
2010-05-03 16:52:22 ----A---- C:\WINDOWS\system32\SET106.tmp
2010-05-03 16:52:16 ----A---- C:\WINDOWS\system32\SET103.tmp
2010-05-03 16:52:16 ----A---- C:\WINDOWS\system32\SET102.tmp
2010-05-03 16:51:33 ----A---- C:\WINDOWS\imsins.BAK
2010-05-03 16:51:31 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-05-03 16:51:30 ----SHD---- C:\WINDOWS\Installer
2010-05-03 16:51:30 ----D---- C:\Program Files\Common Files\ODBC
2010-05-03 16:51:30 ----A---- C:\WINDOWS\ODBCINST.INI
2010-05-03 16:51:27 ----RD---- C:\Program Files
2010-05-03 16:51:27 ----D---- C:\Program Files\Common Files\SpeechEngines
2010-05-03 16:51:27 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-05-03 16:51:27 ----D---- C:\Program Files\Common Files
2010-05-03 16:51:24 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2010-05-03 16:51:24 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2010-05-03 16:51:24 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2010-05-03 16:51:22 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2010-05-03 16:51:22 ----RA---- C:\WINDOWS\system32\kbdur.dll
2010-05-03 16:51:22 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2010-05-03 16:51:22 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2010-05-03 16:51:22 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2010-05-03 16:51:22 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2010-05-03 16:51:22 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2010-05-03 16:51:22 ----D---- C:\Program Files\OpenOffice.org 3
2010-05-03 16:51:21 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2010-05-03 16:51:21 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2010-05-03 16:51:21 ----RA---- C:\WINDOWS\system32\kbdru.dll
2010-05-03 16:51:21 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2010-05-03 16:51:21 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2010-05-03 16:51:19 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2010-05-03 16:51:19 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2010-05-03 16:51:19 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2010-05-03 16:51:19 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2010-05-03 16:51:19 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2010-05-03 16:51:19 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2010-05-03 16:51:19 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2010-05-03 16:51:18 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2010-05-03 16:51:18 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2010-05-03 16:51:18 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2010-05-03 16:51:18 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2010-05-03 16:51:17 ----RA---- C:\WINDOWS\system32\kbdest.dll
2010-05-03 16:51:14 ----A---- C:\WINDOWS\system32\kbdycl.dll
2010-05-03 16:51:14 ----A---- C:\WINDOWS\system32\kbdsl1.dll
2010-05-03 16:51:14 ----A---- C:\WINDOWS\system32\kbdsl.dll
2010-05-03 16:51:14 ----A---- C:\WINDOWS\system32\kbdro.dll
2010-05-03 16:51:14 ----A---- C:\WINDOWS\system32\kbdpl1.dll
2010-05-03 16:51:14 ----A---- C:\WINDOWS\system32\kbdpl.dll
2010-05-03 16:51:14 ----A---- C:\WINDOWS\system32\kbdhu1.dll
2010-05-03 16:51:14 ----A---- C:\WINDOWS\system32\kbdhu.dll
2010-05-03 16:51:14 ----A---- C:\WINDOWS\system32\kbdcr.dll
2010-05-03 16:51:14 ----A---- C:\WINDOWS\system32\KBDAL.DLL
2010-05-03 16:51:13 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-05-03 16:51:13 ----A---- C:\WINDOWS\system32\irclass.dll
2010-05-03 16:51:13 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2010-05-03 16:51:13 ----A---- C:\WINDOWS\system32\dgsetup.dll
2010-05-03 16:51:13 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2010-05-03 16:51:10 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2010-05-03 16:51:10 ----A---- C:\WINDOWS\TASKMAN.EXE
2010-05-03 16:51:10 ----A---- C:\WINDOWS\system32\batt.dll
2010-05-03 16:51:09 ----A---- C:\WINDOWS\notepad.exe
2010-05-03 16:51:07 ----A---- C:\WINDOWS\system32\storprop.dll
2010-05-03 16:49:20 ----RA---- C:\WINDOWS\SET8.tmp
2010-05-03 16:49:18 ----RA---- C:\WINDOWS\SET4.tmp
2010-05-03 16:49:17 ----RA---- C:\WINDOWS\SET3.tmp
2010-05-03 16:49:13 ----D---- C:\WINDOWS\system32\CatRoot2
2010-05-03 16:49:13 ----D---- C:\WINDOWS\system32\CatRoot
2010-05-03 16:48:49 ----A---- C:\WINDOWS\setuplog.txt
2010-05-03 16:48:46 ----SHD---- C:\System Volume Information
2010-05-03 16:48:46 ----D---- C:\Documents and Settings
2010-05-03 16:48:07 ----RASH---- C:\boot.ini
2010-05-03 16:44:36 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-05-03 16:44:36 ----RSD---- C:\WINDOWS\Fonts
2010-05-03 16:44:36 ----RD---- C:\WINDOWS\Web
2010-05-03 16:44:36 ----HD---- C:\WINDOWS\inf
2010-05-03 16:44:36 ----D---- C:\WINDOWS\WinSxS
2010-05-03 16:44:36 ----D---- C:\WINDOWS\twain_32
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\wins
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\wbem
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\usmt
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\spool
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\ShellExt
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\Setup
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\ras
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\oobe
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\npp
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\mui
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\inetsrv
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\IME
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\icsxml
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\ias
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\export
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\drivers
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\dhcp
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\config
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\3com_dmi
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\3076
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\2052
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\1054
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\1042
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\1041
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\1037
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\1033
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\1031
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\1029
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\1028
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\1025
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system
2010-05-03 16:44:36 ----D---- C:\WINDOWS\security
2010-05-03 16:44:36 ----D---- C:\WINDOWS\Resources
2010-05-03 16:44:36 ----D---- C:\WINDOWS\repair
2010-05-03 16:44:36 ----D---- C:\WINDOWS\Provisioning
2010-05-03 16:44:36 ----D---- C:\WINDOWS\pchealth
2010-05-03 16:44:36 ----D---- C:\WINDOWS\PeerNet
2010-05-03 16:44:36 ----D---- C:\WINDOWS\mui
2010-05-03 16:44:36 ----D---- C:\WINDOWS\msapps
2010-05-03 16:44:36 ----D---- C:\WINDOWS\msagent
2010-05-03 16:44:36 ----D---- C:\WINDOWS\Media
2010-05-03 16:44:36 ----D---- C:\WINDOWS\java
2010-05-03 16:44:36 ----D---- C:\WINDOWS\ime
2010-05-03 16:44:36 ----D---- C:\WINDOWS\Help
2010-05-03 16:44:36 ----D---- C:\WINDOWS\ehome
2010-05-03 16:44:36 ----D---- C:\WINDOWS\Driver Cache
2010-05-03 16:44:36 ----D---- C:\WINDOWS\Debug
2010-05-03 16:44:36 ----D---- C:\WINDOWS\Cursors
2010-05-03 16:44:36 ----D---- C:\WINDOWS\Connection Wizard
2010-05-03 16:44:36 ----D---- C:\WINDOWS\Config
2010-05-03 16:44:36 ----D---- C:\WINDOWS\AppPatch
2010-05-03 16:44:36 ----D---- C:\WINDOWS\addins
2010-05-03 16:44:36 ----D---- C:\WINDOWS
2010-05-03 16:41:11 ----D---- C:\Documents and Settings\Jirka\Data aplikací\Thunderbird
2010-05-03 16:40:56 ----D---- C:\Program Files\Mozilla Thunderbird
2010-05-03 16:16:00 ----D---- C:\WINDOWS\OPTIONS
2010-05-03 16:15:56 ----A---- C:\WINDOWS\ALCWZRD.EXE
2010-05-03 16:15:56 ----A---- C:\WINDOWS\ALCMTR.EXE
2010-05-03 16:15:55 ----R---- C:\WINDOWS\system32\ChCfg.exe
2010-05-03 16:15:55 ----D---- C:\WINDOWS\system32\RTCOM
2010-05-03 16:15:55 ----D---- C:\Documents and Settings\Jirka\Data aplikací\InstallShield
2010-05-03 16:15:55 ----A---- C:\WINDOWS\SOUNDMAN.EXE
2010-05-03 16:15:55 ----A---- C:\WINDOWS\SkyTel.exe
2010-05-03 16:15:55 ----A---- C:\WINDOWS\RtlUpd.exe
2010-05-03 16:15:55 ----A---- C:\WINDOWS\RTLCPL.EXE
2010-05-03 16:15:55 ----A---- C:\WINDOWS\RTHDCPL.EXE
2010-05-03 16:15:55 ----A---- C:\WINDOWS\MicCal.exe
2010-05-03 16:15:44 ----HD---- C:\Program Files\InstallShield Installation Information
2010-05-03 16:15:44 ----D---- C:\Program Files\Realtek
2010-05-03 16:15:41 ----R---- C:\WINDOWS\RtlExUpd.dll
2010-05-03 16:15:41 ----A---- C:\WINDOWS\HideWin.exe
2010-05-03 16:15:37 ----D---- C:\Program Files\Common Files\InstallShield
2010-05-03 16:15:06 ----HDC---- C:\WINDOWS\$NtUninstallKB978601_0$
2010-05-03 16:15:02 ----HDC---- C:\WINDOWS\$NtUninstallKB979402_WM9L$
2010-05-03 16:10:28 ----HDC---- C:\WINDOWS\$NtUninstallKB979683_0$
2010-05-03 16:10:22 ----HDC---- C:\WINDOWS\$NtUninstallKB978338_0$
2010-05-03 16:10:18 ----HDC---- C:\WINDOWS\$NtUninstallKB979309_0$
2010-05-03 16:10:14 ----HDC---- C:\WINDOWS\$NtUninstallKB981350$
2010-05-03 16:10:10 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2010-05-03 16:10:06 ----HDC---- C:\WINDOWS\$NtUninstallKB980232_0$
2010-05-03 16:09:59 ----HDC---- C:\WINDOWS\$NtUninstallKB978706_0$
2010-05-03 16:09:55 ----HDC---- C:\WINDOWS\$NtUninstallKB971468_0$
2010-05-03 16:09:50 ----HDC---- C:\WINDOWS\$NtUninstallKB977914_0$
2010-05-03 16:09:45 ----HDC---- C:\WINDOWS\$NtUninstallKB978262$
2010-05-03 16:09:39 ----HDC---- C:\WINDOWS\$NtUninstallKB975560_0$
2010-05-03 16:09:33 ----HDC---- C:\WINDOWS\$NtUninstallKB978037_0$
2010-05-03 16:09:29 ----HDC---- C:\WINDOWS\$NtUninstallKB975713_0$
2010-05-03 16:09:25 ----HDC---- C:\WINDOWS\$NtUninstallKB972270_0$
2010-05-03 16:09:20 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-05-03 16:09:14 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-05-03 16:09:09 ----HDC---- C:\WINDOWS\$NtUninstallKB974392_0$
2010-05-03 16:09:05 ----HDC---- C:\WINDOWS\$NtUninstallKB974318_0$
2010-05-03 16:08:59 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-05-03 16:08:55 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_0$
2010-05-03 16:08:50 ----HDC---- C:\WINDOWS\$NtUninstallKB969947_0$
2010-05-03 16:08:46 ----HDC---- C:\WINDOWS\$NtUninstallKB975467_0$
2010-05-03 16:08:40 ----HDC---- C:\WINDOWS\$NtUninstallKB968389_0$
2010-05-03 16:08:35 ----HDC---- C:\WINDOWS\$NtUninstallKB969059_0$
2010-05-03 16:08:32 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-05-03 16:08:28 ----HDC---- C:\WINDOWS\$NtUninstallKB974112_0$
2010-05-03 16:08:24 ----HDC---- C:\WINDOWS\$NtUninstallKB974571_0$
2010-05-03 16:08:20 ----HDC---- C:\WINDOWS\$NtUninstallKB975025_0$
2010-05-03 16:08:16 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-05-03 16:08:13 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2010-05-03 16:08:09 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2010-05-03 16:08:04 ----HDC---- C:\WINDOWS\$NtUninstallKB956844_0$
2010-05-03 16:07:55 ----A---- C:\WINDOWS\system32\MRT.exe
2010-05-03 16:07:50 ----HDC---- C:\WINDOWS\$NtUninstallKB932823-v3$
2010-05-03 16:06:50 ----HDC---- C:\WINDOWS\$NtUninstallKB971657_0$
2010-05-03 16:06:46 ----HDC---- C:\WINDOWS\$NtUninstallKB973815_0$
2010-05-03 16:06:42 ----HDC---- C:\WINDOWS\$NtUninstallKB960859_0$
2010-05-03 16:06:38 ----HDC---- C:\WINDOWS\$NtUninstallKB973507_0$
2010-05-03 16:06:34 ----HDC---- C:\WINDOWS\$NtUninstallKB973354_0$
2010-05-03 16:06:28 ----D---- C:\WINDOWS\ServicePackFiles
2010-05-03 16:06:27 ----HDC---- C:\WINDOWS\$NtUninstallKB958470$
2010-05-03 16:06:20 ----HDC---- C:\WINDOWS\$NtUninstallKB973869_0$
2010-05-03 16:06:16 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9L$
2010-05-03 16:06:02 ----HDC---- C:\WINDOWS\$NtUninstallKB971032$
2010-05-03 16:05:54 ----HDC---- C:\WINDOWS\$NtUninstallKB970238_0$
2010-05-03 16:05:50 ----HDC---- C:\WINDOWS\$NtUninstallKB961501_0$
2010-05-03 16:05:45 ----HDC---- C:\WINDOWS\$NtUninstallKB959426_0$
2010-05-03 16:05:40 ----HDC---- C:\WINDOWS\$NtUninstallKB960803_0$
2010-05-03 16:05:34 ----HDC---- C:\WINDOWS\$NtUninstallKB952004_0$
2010-05-03 16:05:19 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-05-03 16:05:06 ----HDC---- C:\WINDOWS\$NtUninstallKB923561_0$
2010-05-03 16:04:56 ----HDC---- C:\WINDOWS\$NtUninstallKB960225_0$
2010-05-03 16:04:52 ----HDC---- C:\WINDOWS\$NtUninstallKB956803_0$
2010-05-03 16:04:48 ----HDC---- C:\WINDOWS\$NtUninstallKB955069_0$
2010-05-03 16:04:44 ----HDC---- C:\WINDOWS\$NtUninstallKB958644_0$
2010-05-03 16:04:40 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-05-03 16:04:35 ----HDC---- C:\WINDOWS\$NtUninstallKB950974_0$
2010-05-03 16:04:31 ----HDC---- C:\WINDOWS\$NtUninstallKB952954_0$
2010-05-03 16:04:28 ----HDC---- C:\WINDOWS\$NtUninstallKB946648_0$
2010-05-03 16:04:24 ----HDC---- C:\WINDOWS\$NtUninstallKB951066_0$
2010-05-03 16:04:19 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2010-05-03 16:04:14 ----HDC---- C:\WINDOWS\$NtUninstallKB951748_0$
2010-05-03 16:04:11 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2_0$
2010-05-03 16:04:05 ----HDC---- C:\WINDOWS\$NtUninstallKB950762_0$
2010-05-03 16:03:59 ----HDC---- C:\WINDOWS\$NtUninstallKB950760$
2010-05-03 16:03:59 ----D---- C:\Documents and Settings\Jirka\Data aplikací\ProfiCAD
2010-05-03 16:03:57 ----D---- C:\Program Files\ProfiCAD
2010-05-03 16:03:51 ----N---- C:\WINDOWS\system32\browserchoice.exe
2010-05-03 16:02:25 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2010-05-03 16:02:10 ----D---- C:\Program Files\Common Files\Adobe
2010-05-03 16:02:10 ----D---- C:\Program Files\Adobe
2010-05-03 15:59:51 ----D---- C:\Documents and Settings\Jirka\Data aplikací\Macromedia
2010-05-03 15:59:51 ----D---- C:\Documents and Settings\Jirka\Data aplikací\Adobe
2010-05-03 15:42:09 ----D---- C:\Documents and Settings\Jirka\Data aplikací\Mozilla
2010-05-03 15:42:03 ----D---- C:\totalcmd
2010-05-03 15:42:03 ----D---- C:\Documents and Settings\Jirka\Data aplikací\GHISLER
2010-05-03 15:41:39 ----D---- C:\Program Files\Mozilla Firefox
2010-05-03 15:37:52 ----D---- C:\Documents and Settings\All Users\Data aplikací\NVIDIA Corporation
2010-05-03 15:37:47 ----D---- C:\Program Files\NVIDIA Corporation
2010-05-03 15:35:56 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2010-05-03 15:34:22 ----D---- C:\WINDOWS\Minidump
2010-05-03 15:30:10 ----D---- C:\Program Files\Microsoft Security Essentials
2010-05-03 15:30:03 ----HDC---- C:\WINDOWS\$NtUninstallKB914882$
2010-05-03 15:29:50 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2010-05-03 15:28:47 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2010-05-03 15:28:37 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-05-03 15:28:37 ----D---- C:\WINDOWS\system32\PreInstall
2010-05-03 15:28:37 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2010-05-03 15:28:36 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2010-05-03 15:28:36 ----HD---- C:\WINDOWS\$hf_mig$
2010-05-03 15:25:29 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2010-05-03 15:18:30 ----D---- C:\Documents and Settings\Jirka\Data aplikací\Identities
2010-05-03 15:18:29 ----HD---- C:\Program Files\Uninstall Information
2010-05-03 15:18:13 ----ASH---- C:\Documents and Settings\Jirka\Data aplikací\desktop.ini
2010-05-03 15:18:12 ----SD---- C:\Documents and Settings\Jirka\Data aplikací\Microsoft
2010-05-03 15:17:33 ----D---- C:\WINDOWS\SoftwareDistribution
2010-05-03 15:17:31 ----SD---- C:\WINDOWS\system32\Microsoft
2010-05-03 15:17:31 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-05-03 15:13:07 ----D---- C:\WINDOWS\Registration
2010-05-03 15:05:06 ----D---- C:\WINDOWS\system32\xircom
2010-05-03 15:05:06 ----D---- C:\Program Files\xerox
2010-05-03 15:05:06 ----D---- C:\Program Files\microsoft frontpage
2010-05-03 15:04:49 ----A---- C:\WINDOWS\control.ini
2010-05-03 15:04:49 ----A---- C:\AUTOEXEC.BAT
2010-05-03 15:04:42 ----A---- C:\WINDOWS\OEWABLog.txt
2010-05-03 15:04:39 ----A---- C:\WINDOWS\system32\mapi32.dll
2010-05-03 15:03:58 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-05-03 15:03:58 ----RD---- C:\WINDOWS\Offline Web Pages
2010-05-03 15:03:57 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-05-03 15:03:53 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-05-03 15:03:49 ----HD---- C:\Program Files\WindowsUpdate
2010-05-03 15:03:46 ----D---- C:\Program Files\Online Services
2010-05-03 15:03:24 ----D---- C:\WINDOWS\system32\DirectX
2010-05-03 15:03:03 ----A---- C:\WINDOWS\system32\atrace.dll
2010-05-03 15:03:01 ----A---- C:\WINDOWS\system32\desktop.ini
2010-05-03 15:03:01 ----A---- C:\WINDOWS\desktop.ini
2010-05-03 15:02:53 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2010-05-03 15:02:52 ----A---- C:\WINDOWS\system32\acctres.dll
2010-05-03 15:02:51 ----D---- C:\Program Files\Common Files\Services
2010-05-03 15:02:49 ----SD---- C:\WINDOWS\Tasks
2010-05-03 15:02:49 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2010-05-03 15:02:48 ----D---- C:\Program Files\Common Files\MSSoap
2010-05-03 15:02:44 ----D---- C:\WINDOWS\srchasst
2010-05-03 15:02:43 ----D---- C:\WINDOWS\system32\Macromed
2010-05-03 15:02:41 ----A---- C:\WINDOWS\system32\wuweb.dll
2010-05-03 15:02:41 ----A---- C:\WINDOWS\system32\wucltui.dll
2010-05-03 15:02:41 ----A---- C:\WINDOWS\system32\wuauserv.dll
2010-05-03 15:02:41 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2010-05-03 15:02:40 ----A---- C:\WINDOWS\system32\wups.dll
2010-05-03 15:02:40 ----A---- C:\WINDOWS\system32\wuaueng.dll
2010-05-03 15:02:40 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2010-05-03 15:02:40 ----A---- C:\WINDOWS\system32\wuauclt.exe
2010-05-03 15:02:40 ----A---- C:\WINDOWS\system32\wuapi.dll
2010-05-03 15:02:40 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2010-05-03 15:02:40 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2010-05-03 15:02:39 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2010-05-03 15:02:39 ----A---- C:\WINDOWS\system32\qmgr.dll
2010-05-03 15:02:36 ----D---- C:\Program Files\Movie Maker
2010-05-03 15:02:32 ----A---- C:\WINDOWS\system32\safrslv.dll
2010-05-03 15:02:32 ----A---- C:\WINDOWS\system32\safrdm.dll
2010-05-03 15:02:32 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2010-05-03 15:02:32 ----A---- C:\WINDOWS\system32\racpldlg.dll
2010-05-03 15:02:29 ----D---- C:\WINDOWS\system32\Restore
2010-05-03 15:02:29 ----A---- C:\WINDOWS\system32\srrstr.dll
2010-05-03 15:02:29 ----A---- C:\WINDOWS\system32\fltmc.exe
2010-05-03 15:02:29 ----A---- C:\WINDOWS\system32\fltlib.dll
2010-05-03 15:02:28 ----A---- C:\WINDOWS\system32\srsvc.dll
2010-05-03 15:02:28 ----A---- C:\WINDOWS\system32\srclient.dll
2010-05-03 15:02:28 ----A---- C:\WINDOWS\system32\mnmdd.dll
2010-05-03 15:02:28 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2010-05-03 15:02:28 ----A---- C:\WINDOWS\system32\ils.dll
2010-05-03 15:02:27 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2010-05-03 15:02:27 ----A---- C:\WINDOWS\system32\msconf.dll
2010-05-03 15:02:27 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2010-05-03 15:02:24 ----D---- C:\Program Files\NetMeeting
2010-05-03 15:02:24 ----A---- C:\WINDOWS\system32\msoert2.dll
2010-05-03 15:02:24 ----A---- C:\WINDOWS\system32\msoeacct.dll
2010-05-03 15:02:23 ----A---- C:\WINDOWS\system32\inetres.dll
2010-05-03 15:02:23 ----A---- C:\WINDOWS\system32\inetcomm.dll
2010-05-03 15:02:21 ----D---- C:\Program Files\Outlook Express
2010-05-03 15:02:21 ----A---- C:\WINDOWS\system32\schedsvc.dll
2010-05-03 15:02:21 ----A---- C:\WINDOWS\system32\mstinit.exe
2010-05-03 15:02:21 ----A---- C:\WINDOWS\system32\mstask.dll
2010-05-03 15:02:21 ----A---- C:\WINDOWS\system32\icwphbk.dll
2010-05-03 15:02:21 ----A---- C:\WINDOWS\system32\icwdial.dll
2010-05-03 15:02:20 ----A---- C:\WINDOWS\system32\isign32.dll
2010-05-03 15:02:20 ----A---- C:\WINDOWS\system32\inetcfg.dll
2010-05-03 15:02:15 ----D---- C:\Program Files\Common Files\System
2010-05-03 15:02:14 ----D---- C:\Program Files\Internet Explorer
2010-05-03 15:01:49 ----D---- C:\Program Files\ComPlus Applications
2010-05-03 15:01:48 ----A---- C:\WINDOWS\vbaddin.ini
2010-05-03 15:01:48 ----A---- C:\WINDOWS\vb.ini
2010-05-03 15:01:39 ----D---- C:\Program Files\Windows Media Player
2010-05-03 15:01:34 ----D---- C:\Program Files\Messenger
2010-05-03 15:01:31 ----D---- C:\Program Files\MSN Gaming Zone
2010-05-03 15:01:31 ----A---- C:\WINDOWS\system32\write.exe
2010-05-03 15:01:21 ----A---- C:\WINDOWS\system32\sndvol32.exe
2010-05-03 15:01:21 ----A---- C:\WINDOWS\system32\hticons.dll
2010-05-03 15:01:20 ----A---- C:\WINDOWS\system32\winchat.exe
2010-05-03 15:01:20 ----A---- C:\WINDOWS\system32\avwav.dll
2010-05-03 15:01:20 ----A---- C:\WINDOWS\system32\avtapi.dll
2010-05-03 15:01:20 ----A---- C:\WINDOWS\system32\avmeter.dll
2010-05-03 15:01:12 ----A---- C:\WINDOWS\system32\charmap.exe
2010-05-03 15:01:12 ----A---- C:\WINDOWS\system32\getuname.dll
2010-05-03 15:01:12 ----A---- C:\WINDOWS\system32\calc.exe
2010-05-03 15:01:11 ----A---- C:\WINDOWS\system32\winmine.exe
2010-05-03 15:01:11 ----A---- C:\WINDOWS\system32\sol.exe
2010-05-03 15:01:11 ----A---- C:\WINDOWS\system32\mshearts.exe
2010-05-03 15:01:11 ----A---- C:\WINDOWS\system32\freecell.exe
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\tslabels.ini
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\tskill.exe
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\tscon.exe
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\shadow.exe
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\rwinsta.exe
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\reset.exe
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\regini.exe
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\qwinsta.exe
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\qappsrv.exe
2010-05-03 15:01:09 ----A---- C:\WINDOWS\system32\msg.exe
2010-05-03 15:01:09 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2010-05-03 15:01:09 ----A---- C:\WINDOWS\system32\logoff.exe
2010-05-03 15:01:09 ----A---- C:\WINDOWS\system32\cdmodem.dll
2010-05-03 15:01:08 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2010-05-03 15:01:08 ----A---- C:\WINDOWS\system32\mtxex.dll
2010-05-03 15:01:08 ----A---- C:\WINDOWS\system32\mtxdm.dll
2010-05-03 15:01:08 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2010-05-03 15:01:08 ----A---- C:\WINDOWS\system32\comrepl.dll
2010-05-03 15:01:08 ----A---- C:\WINDOWS\system32\comaddin.dll
2010-05-03 15:01:07 ----A---- C:\WINDOWS\system32\stclient.dll
2010-05-03 15:01:07 ----A---- C:\WINDOWS\system32\comsnap.dll
2010-05-03 15:01:02 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2010-05-03 15:01:01 ----A---- C:\WINDOWS\system32\sndrec32.exe
2010-05-03 15:01:01 ----A---- C:\WINDOWS\system32\mplay32.exe
2010-05-03 15:01:01 ----A---- C:\WINDOWS\system32\accwiz.exe
2010-05-03 15:01:00 ----D---- C:\Program Files\Windows NT
2010-05-03 15:01:00 ----A---- C:\WINDOWS\system32\mspaint.exe
2010-05-03 15:01:00 ----A---- C:\WINDOWS\system32\hypertrm.dll
2010-05-03 15:01:00 ----A---- C:\WINDOWS\system32\clipbrd.exe
2010-05-03 15:00:59 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2010-05-03 15:00:59 ----A---- C:\WINDOWS\system32\spider.exe
2010-05-03 15:00:59 ----A---- C:\WINDOWS\system32\mstscax.dll
2010-05-03 15:00:58 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2010-05-03 15:00:58 ----A---- C:\WINDOWS\system32\termsrv.dll
2010-05-03 15:00:58 ----A---- C:\WINDOWS\system32\sessmgr.exe
2010-05-03 15:00:58 ----A---- C:\WINDOWS\system32\remotepg.dll
2010-05-03 15:00:58 ----A---- C:\WINDOWS\system32\rdshost.exe
2010-05-03 15:00:58 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2010-05-03 15:00:58 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2010-05-03 15:00:58 ----A---- C:\WINDOWS\system32\rdchost.dll
2010-05-03 15:00:58 ----A---- C:\WINDOWS\system32\mstsc.exe
2010-05-03 15:00:57 ----D---- C:\WINDOWS\system32\MsDtc
2010-05-03 15:00:57 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2010-05-03 15:00:57 ----A---- C:\WINDOWS\system32\rdpclip.exe
2010-05-03 15:00:57 ----A---- C:\WINDOWS\system32\qprocess.exe
2010-05-03 15:00:57 ----A---- C:\WINDOWS\system32\mtxoci.dll
2010-05-03 15:00:57 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2010-05-03 15:00:57 ----A---- C:\WINDOWS\system32\icaapi.dll
2010-05-03 15:00:57 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2010-05-03 15:00:56 ----A---- C:\WINDOWS\system32\xolehlp.dll
2010-05-03 15:00:56 ----A---- C:\WINDOWS\system32\msdtctm.dll
2010-05-03 15:00:56 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2010-05-03 15:00:56 ----A---- C:\WINDOWS\system32\msdtclog.dll
2010-05-03 15:00:56 ----A---- C:\WINDOWS\system32\msdtc.exe
2010-05-03 15:00:55 ----D---- C:\WINDOWS\system32\Com
2010-05-03 15:00:55 ----A---- C:\WINDOWS\system32\colbact.dll
2010-05-03 15:00:55 ----A---- C:\WINDOWS\system32\clbcatex.dll
2010-05-03 15:00:55 ----A---- C:\WINDOWS\system32\catsrvut.dll
2010-05-03 15:00:55 ----A---- C:\WINDOWS\system32\catsrvps.dll
2010-05-03 15:00:55 ----A---- C:\WINDOWS\system32\catsrv.dll
2010-05-03 15:00:54 ----A---- C:\WINDOWS\system32\comuid.dll
2010-05-03 15:00:54 ----A---- C:\WINDOWS\system32\comsvcs.dll
2010-05-03 15:00:54 ----A---- C:\WINDOWS\system32\clbcatq.dll
2010-05-03 15:00:48 ----A---- C:\WINDOWS\system32\servdeps.dll
2010-05-03 15:00:48 ----A---- C:\WINDOWS\system32\mmfutil.dll
2010-05-03 15:00:48 ----A---- C:\WINDOWS\system32\licwmi.dll
2010-05-03 15:00:47 ----A---- C:\WINDOWS\system32\cmprops.dll
======List of files/folders modified in the last 1 months======
2010-05-12 17:35:24 ----A---- C:\WINDOWS\system.ini
2010-05-05 11:05:02 ----A---- C:\WINDOWS\win.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 MpFilter;Microsoft Malware Protection Driver; C:\WINDOWS\system32\DRIVERS\MpFilter.sys [2009-12-02 149040]
R2 DgiVecp;Team MFP Comm Driver; C:\WINDOWS\System32\Drivers\DgiVecp.sys [2003-07-29 40448]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-13 17024]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-13 101120]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-13 18944]
R3 GemCCID;GemCCID; C:\WINDOWS\System32\Drivers\GemCCID.sys [2009-08-10 89600]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-04-23 4402176]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2010-04-03 10232128]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-13 59136]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2007-03-01 90496]
R3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2004-08-04 59264]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Ovladač standardního rozbočovače USB; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104]
R3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S3 BTHPORT;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 272128]
S3 catchme;catchme; \??\C:\DOCUME~1\Jirka\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 GVCplDrv;GVCplDrv; C:\WINDOWS\system32\drivers\GVCplDrv.sys [2004-05-02 23040]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usb_rndisx;Adaptér USB RNDIS; C:\WINDOWS\system32\DRIVERS\usb8023x.sys [2008-04-13 12800]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-13 121984]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BthServ;Bluetooth Support Service; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-05-09 153376]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Essentials\MsMpEng.exe [2009-12-09 17904]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2010-04-03 154216]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-05-09 135664]
S2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service; C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe [2010-05-11 1291544]
S2 PEVSystemStart;PEVSystemStart; C:\ComboFix\PEV.cfxxe EXEC /i C:\ComboFix\REGT.cfxxe /S C:\ComboFix\CregB.dat []
-----------------EOF-----------------
Logfile of random's system information tool 1.07 (written by random/random)
Run by Jirka at 2010-05-12 21:15:48
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 12 GB (47%) free of 25 GB
Total RAM: 3070 MB (80% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:15:54, on 12.5.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Microsoft Security Essentials\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Microsoft Security Essentials\msseces.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Microsoft ActiveSync\Wcescomm.exe
C:\Program Files\PopTray\PopTray.exe
C:\PROGRA~1\MICROS~3\rapimgr.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Microsoft ActiveSync\WCESMgr.exe
C:\totalcmd\TOTALCMD.EXE
C:\Documents and Settings\Jirka\Dokumenty\Stažené soubory\RSIT.exe
C:\Program Files\trend micro\Jirka.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [MSSE] "C:\Program Files\Microsoft Security Essentials\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe /installquiet
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\Wcescomm.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: PopTray.lnk = C:\Program Files\PopTray\PopTray.exe
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 2894601875
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PEVSystemStart - Unknown owner - C:\ComboFix\PEV.cfxxe (file missing)
--
End of file - 4193 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore1caef9b537a392e.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\MP Scheduled Scan.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-05-09 41760]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []
"MSSE"=C:\Program Files\Microsoft Security Essentials\msseces.exe [2010-02-21 1093208]
"nwiz"=C:\Program Files\NVIDIA Corporation\nView\nwiz.exe [2010-03-31 1657448]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2010-04-03 13670504]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-03-24 952768]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2007-04-12 16132608]
"NeroFilterCheck"=C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"H/PC Connection Agent"=C:\Program Files\Microsoft ActiveSync\Wcescomm.exe [2006-11-13 1289000]
C:\Documents and Settings\Jirka\Nabídka Start\Programy\Po spuštění
PopTray.lnk - C:\Program Files\PopTray\PopTray.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-14 239616]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Lavasoft Ad-Aware Service]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\totalcmd\TOTALCMD.EXE"="C:\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe"="C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe"="C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"
"C:\Program Files\Efficasoft Mobile Express\MobileExpress.exe"="C:\Program Files\Efficasoft Mobile Express\MobileExpress.exe:*:Enabled:Efficasoft Mobile Express"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe"="C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe"="C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"
======List of files/folders created in the last 1 months======
2010-05-12 21:15:48 ----D---- C:\rsit
2010-05-12 21:15:48 ----D---- C:\Program Files\trend micro
2010-05-12 18:10:48 ----D---- C:\32788R22FWJFW
2010-05-12 17:28:35 ----D---- C:\Qoobox
2010-05-12 17:01:03 ----D---- C:\Program Files\MSXML 4.0
2010-05-12 16:53:19 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2010-05-11 20:10:11 ----D---- C:\Program Files\Software602
2010-05-11 19:28:10 ----A---- C:\WINDOWS\CSTBox.INI
2010-05-11 19:01:39 ----D---- C:\Documents and Settings\Jirka\Data aplikací\Canon
2010-05-11 19:01:15 ----D---- C:\Program Files\Canon
2010-05-10 17:27:31 ----D---- C:\Program Files\Windows Live Safety Center
2010-05-10 16:54:11 ----D---- C:\Program Files\Alwil Software
2010-05-10 16:54:11 ----D---- C:\Documents and Settings\All Users\Data aplikací\Alwil Software
2010-05-09 21:32:40 ----D---- C:\WINDOWS\temp
2010-05-09 21:19:31 ----A---- C:\Boot.bak
2010-05-09 21:19:26 ----RASHD---- C:\cmdcons
2010-05-09 21:18:31 ----A---- C:\WINDOWS\zip.exe
2010-05-09 21:18:31 ----A---- C:\WINDOWS\SWXCACLS.exe
2010-05-09 21:18:31 ----A---- C:\WINDOWS\SWSC.exe
2010-05-09 21:18:31 ----A---- C:\WINDOWS\SWREG.exe
2010-05-09 21:18:31 ----A---- C:\WINDOWS\sed.exe
2010-05-09 21:18:31 ----A---- C:\WINDOWS\PEV.exe
2010-05-09 21:18:31 ----A---- C:\WINDOWS\NIRCMD.exe
2010-05-09 21:18:31 ----A---- C:\WINDOWS\MBR.exe
2010-05-09 21:18:31 ----A---- C:\WINDOWS\grep.exe
2010-05-09 21:16:36 ----D---- C:\WINDOWS\ERDNT
2010-05-09 21:16:33 ----A---- C:\WINDOWS\system32\CF6255.exe
2010-05-09 20:22:46 ----D---- C:\WINDOWS\Sun
2010-05-09 20:13:36 ----D---- C:\Documents and Settings\All Users\Data aplikací\Sun
2010-05-09 20:13:35 ----D---- C:\Program Files\Common Files\Java
2010-05-09 20:13:20 ----A---- C:\WINDOWS\system32\deployJava1.dll
2010-05-09 20:13:19 ----A---- C:\WINDOWS\system32\javaws.exe
2010-05-09 20:13:19 ----A---- C:\WINDOWS\system32\javaw.exe
2010-05-09 20:13:19 ----A---- C:\WINDOWS\system32\java.exe
2010-05-09 20:12:46 ----D---- C:\Program Files\Java
2010-05-09 20:09:24 ----D---- C:\Documents and Settings\Jirka\Data aplikací\Sun
2010-05-09 19:26:23 ----SHD---- C:\WINDOWS\CSC
2010-05-09 19:15:29 ----DC---- C:\WINDOWS\system32\DRVSTORE
2010-05-09 19:11:39 ----D---- C:\Program Files\Google
2010-05-09 19:11:37 ----HDC---- C:\Documents and Settings\All Users\Data aplikací\{74D08EB8-01D1-4BAE-91E3-F30C1B031AC6}
2010-05-09 19:11:29 ----D---- C:\Program Files\Lavasoft
2010-05-09 19:11:29 ----D---- C:\Documents and Settings\All Users\Data aplikací\Lavasoft
2010-05-09 17:41:57 ----A---- C:\WINDOWS\NeroDigital.ini
2010-05-09 16:05:20 ----N---- C:\WINDOWS\system32\TwnLib4.dll
2010-05-09 16:05:20 ----A---- C:\WINDOWS\system32\TwnLib20.dll
2010-05-09 16:05:19 ----N---- C:\WINDOWS\system32\ImagXRA7.dll
2010-05-09 16:05:19 ----N---- C:\WINDOWS\system32\ImagXR7.dll
2010-05-09 16:05:19 ----N---- C:\WINDOWS\system32\ImagXpr7.dll
2010-05-09 16:05:19 ----N---- C:\WINDOWS\system32\ImagX7.dll
2010-05-09 16:05:19 ----D---- C:\Program Files\Common Files\Ahead
2010-05-09 16:05:19 ----D---- C:\Program Files\Ahead
2010-05-09 16:05:19 ----A---- C:\WINDOWS\system32\NeroCheck.exe
2010-05-07 19:58:00 ----D---- C:\Program Files\ESET
2010-05-06 22:17:42 ----A---- C:\WINDOWS\ntbtlog.txt
2010-05-06 16:37:54 ----HDC---- C:\WINDOWS\$NtUninstallKB979402_WM9$
2010-05-06 16:37:49 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2010-05-06 16:37:40 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-05-06 16:37:15 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2010-05-05 22:44:05 ----D---- C:\Program Files\FSViewer42
2010-05-05 21:00:19 ----D---- C:\Program Files\Aplikace MB
2010-05-05 19:04:20 ----D---- C:\Program Files\Microsoft ActiveSync
2010-05-05 19:00:29 ----D---- C:\Program Files\Efficasoft Mobile Express
2010-05-05 16:31:35 ----D---- C:\WINDOWS\system32\Lang
2010-05-05 16:02:50 ----D---- C:\WINDOWS\Prefetch
2010-05-05 15:54:00 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2010-05-05 15:53:53 ----HDC---- C:\WINDOWS\$NtUninstallKB979683$
2010-05-05 15:53:49 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2010-05-05 15:53:45 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-05-05 15:53:41 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2010-05-05 15:53:38 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2010-05-05 15:45:33 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-05-05 15:45:29 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-05-05 15:45:24 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-05-05 15:45:21 ----HDC---- C:\WINDOWS\$NtUninstallKB975561$
2010-05-05 15:45:16 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-05-05 15:45:13 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-05-05 15:45:09 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-05-05 15:45:05 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-05-05 15:45:01 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-05-05 15:44:57 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-05-05 15:44:53 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-05-05 15:44:49 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-05-05 15:44:45 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-05-05 15:44:41 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-05-05 15:44:37 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-05-05 15:44:33 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-05-05 15:44:29 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-05-05 15:44:26 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-05-05 15:40:22 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-05-05 15:40:18 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2010-05-05 15:40:14 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-05-05 15:40:10 ----HDC---- C:\WINDOWS\$NtUninstallKB970238$
2010-05-05 15:40:07 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-05-05 15:40:03 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-05-05 15:39:58 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-05-05 15:39:52 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-05-05 15:39:49 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-05-05 15:39:45 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-05-05 15:39:41 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-05-05 15:39:37 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
2010-05-05 15:39:33 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-05-05 15:39:29 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2010-05-05 15:39:26 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-05-05 15:25:40 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2010-05-05 15:25:35 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-05-05 15:25:16 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_1$
2010-05-05 15:25:11 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2010-05-05 15:25:07 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2010-05-05 15:23:06 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-05-05 15:23:00 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2010-05-05 15:22:55 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-05-05 15:22:48 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2010-05-05 15:22:43 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2010-05-05 15:22:39 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2010-05-05 15:22:33 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2010-05-05 15:22:26 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-05-05 15:20:37 ----D---- C:\WINDOWS\system32\cs
2010-05-05 15:20:37 ----D---- C:\WINDOWS\l2schemas
2010-05-05 15:20:36 ----D---- C:\WINDOWS\system32\bits
2010-05-05 15:16:08 ----D---- C:\WINDOWS\network diagnostic
2010-05-05 15:15:11 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-05-05 15:13:19 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-05-05 14:03:40 ----HDC---- C:\WINDOWS\$NtUninstallKB935448$
2010-05-05 14:03:34 ----HDC---- C:\WINDOWS\$NtUninstallKB970430_0$
2010-05-05 14:03:04 ----D---- C:\WINDOWS\ie8updates
2010-05-05 14:02:55 ----D---- C:\WINDOWS\WBEM
2010-05-05 14:02:04 ----HDC---- C:\WINDOWS\ie8
2010-05-05 14:02:04 ----D---- C:\WINDOWS\system32\cs-CZ
2010-05-05 14:00:41 ----HDC---- C:\WINDOWS\$NtUninstallKB975561_0$
2010-05-05 14:00:28 ----HDC---- C:\WINDOWS\$NtUninstallKB980182$
2010-05-05 14:00:16 ----HDC---- C:\WINDOWS\$NtUninstallKB967715_0$
2010-05-05 14:00:11 ----HDC---- C:\WINDOWS\$NtUninstallKB971737_0$
2010-05-05 14:00:06 ----HDC---- C:\WINDOWS\$NtUninstallKB956802_0$
2010-05-05 13:59:50 ----HDC---- C:\WINDOWS\$NtUninstallKB979306$
2010-05-05 13:57:21 ----D---- C:\Program Files\Autodesk
2010-05-05 13:52:06 ----N---- C:\WINDOWS\system32\wmphoto.dll
2010-05-05 13:52:05 ----N---- C:\WINDOWS\system32\wlanapi.dll
2010-05-05 13:52:05 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2010-05-05 13:52:05 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2010-05-05 13:52:04 ----N---- C:\WINDOWS\system32\verclsid.exe
2010-05-05 13:52:02 ----N---- C:\WINDOWS\system32\tspkg.dll
2010-05-05 13:52:02 ----N---- C:\WINDOWS\system32\tsgqec.dll
2010-05-05 13:51:58 ----N---- C:\WINDOWS\system32\spupdwxp.exe
2010-05-05 13:51:57 ----A---- C:\WINDOWS\system32\spdwnwxp.exe
2010-05-05 13:51:56 ----N---- C:\WINDOWS\system32\slserv.exe
2010-05-05 13:51:51 ----N---- C:\WINDOWS\system32\slrundll.exe
2010-05-05 13:51:51 ----N---- C:\WINDOWS\system32\slgen.dll
2010-05-05 13:51:51 ----N---- C:\WINDOWS\system32\slextspk.dll
2010-05-05 13:51:51 ----N---- C:\WINDOWS\system32\slcoinst.dll
2010-05-05 13:51:51 ----N---- C:\WINDOWS\system32\setupn.exe
2010-05-05 13:51:51 ----N---- C:\WINDOWS\slrundll.exe
2010-05-05 13:51:50 ----N---- C:\WINDOWS\system32\s3gnb.dll
2010-05-05 13:51:49 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2010-05-05 13:51:48 ----N---- C:\WINDOWS\system32\rasqec.dll
2010-05-05 13:51:48 ----N---- C:\WINDOWS\system32\qutil.dll
2010-05-05 13:51:48 ----N---- C:\WINDOWS\system32\qcliprov.dll
2010-05-05 13:51:48 ----N---- C:\WINDOWS\system32\qagentrt.dll
2010-05-05 13:51:48 ----N---- C:\WINDOWS\system32\qagent.dll
2010-05-05 13:51:47 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2010-05-05 13:51:45 ----N---- C:\WINDOWS\system32\onex.dll
2010-05-05 13:51:43 ----N---- C:\WINDOWS\system32\napstat.exe
2010-05-05 13:51:43 ----N---- C:\WINDOWS\system32\napmontr.dll
2010-05-05 13:51:42 ----N---- C:\WINDOWS\system32\napipsec.dll
2010-05-05 13:51:42 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2010-05-05 13:51:42 ----N---- C:\WINDOWS\system32\msxml6r.dll
2010-05-05 13:51:42 ----N---- C:\WINDOWS\system32\msxml6.dll
2010-05-05 13:51:41 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2010-05-05 13:51:41 ----N---- C:\WINDOWS\system32\mssha.dll
2010-05-05 13:51:35 ----N---- C:\WINDOWS\system32\mmcperf.exe
2010-05-05 13:51:35 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2010-05-05 13:51:35 ----N---- C:\WINDOWS\system32\mmcex.dll
2010-05-05 13:51:35 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2010-05-05 13:51:34 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2010-05-05 13:51:31 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2010-05-05 13:51:30 ----N---- C:\WINDOWS\system32\kmsvc.dll
2010-05-05 13:51:30 ----N---- C:\WINDOWS\system32\kbdpash.dll
2010-05-05 13:51:30 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2010-05-05 13:51:30 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2010-05-05 13:51:30 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2010-05-05 13:51:29 ----N---- C:\WINDOWS\system32\smtpapi.dll
2010-05-05 13:51:29 ----N---- C:\WINDOWS\system32\rwnh.dll
2010-05-05 13:51:28 ----N---- C:\WINDOWS\system32\comsdupd.exe
2010-05-05 13:51:27 ----N---- C:\WINDOWS\system32\ieencode.dll
2010-05-05 13:51:26 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2010-05-05 13:51:24 ----N---- C:\WINDOWS\system32\faxpatch.exe
2010-05-05 13:51:24 ----A---- C:\WINDOWS\002692_.tmp
2010-05-05 13:51:23 ----N---- C:\WINDOWS\system32\eapsvc.dll
2010-05-05 13:51:23 ----N---- C:\WINDOWS\system32\eapqec.dll
2010-05-05 13:51:23 ----N---- C:\WINDOWS\system32\eappprxy.dll
2010-05-05 13:51:23 ----N---- C:\WINDOWS\system32\eapphost.dll
2010-05-05 13:51:23 ----N---- C:\WINDOWS\system32\eappgnui.dll
2010-05-05 13:51:23 ----N---- C:\WINDOWS\system32\eappcfg.dll
2010-05-05 13:51:23 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2010-05-05 13:51:23 ----N---- C:\WINDOWS\system32\eapolqec.dll
2010-05-05 13:51:21 ----N---- C:\WINDOWS\system32\dot3ui.dll
2010-05-05 13:51:21 ----N---- C:\WINDOWS\system32\dot3svc.dll
2010-05-05 13:51:21 ----N---- C:\WINDOWS\system32\dot3msm.dll
2010-05-05 13:51:21 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2010-05-05 13:51:21 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2010-05-05 13:51:21 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2010-05-05 13:51:21 ----N---- C:\WINDOWS\system32\dot3api.dll
2010-05-05 13:51:20 ----N---- C:\WINDOWS\system32\dimsroam.dll
2010-05-05 13:51:20 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2010-05-05 13:51:20 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2010-05-05 13:51:19 ----N---- C:\WINDOWS\system32\credssp.dll
2010-05-05 13:51:17 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2010-05-05 13:51:17 ----N---- C:\WINDOWS\system32\azroles.dll
2010-05-05 13:51:16 ----N---- C:\WINDOWS\system32\ativvaxx.dll
2010-05-05 13:51:16 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2010-05-05 13:51:16 ----N---- C:\WINDOWS\system32\ati3duag.dll
2010-05-05 13:51:16 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2010-05-05 13:51:16 ----N---- C:\WINDOWS\system32\ati2dvag.dll
2010-05-05 13:51:16 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2010-05-05 13:51:16 ----N---- C:\WINDOWS\system32\ati2cqag.dll
2010-05-05 13:51:14 ----N---- C:\WINDOWS\system32\aaclient.dll
2010-05-05 13:45:22 ----N---- C:\WINDOWS\system32\tzchange.exe
2010-05-05 13:43:22 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2010-05-05 13:43:22 ----A---- C:\WINDOWS\system32\mucltui.dll
2010-05-05 11:01:28 ----N---- C:\WINDOWS\system32\SSRemove.Exe
2010-05-05 11:01:25 ----A---- C:\WINDOWS\system32\XRXS2LMK.DLL
2010-05-05 11:01:24 ----A---- C:\WINDOWS\system32\SSCoInst.exe
2010-05-05 11:01:24 ----A---- C:\WINDOWS\system32\SSCoInst.dll
2010-05-05 11:01:22 ----D---- C:\WINDOWS\Xerox
2010-05-03 21:49:37 ----D---- C:\Documents and Settings\Jirka\Data aplikací\Media Player Classic
2010-05-03 21:49:26 ----D---- C:\Program Files\MPC
2010-05-03 21:48:02 ----A---- C:\WINDOWS\system32\unrar.dll
2010-05-03 21:47:58 ----D---- C:\Program Files\K-Lite Codec Pack
2010-05-03 21:45:02 ----A---- C:\WINDOWS\system32\msvcr71.dll
2010-05-03 21:45:02 ----A---- C:\WINDOWS\system32\msvcp71.dll
2010-05-03 21:32:28 ----A---- C:\WINDOWS\PVAStrumento.ini
2010-05-03 20:38:24 ----D---- C:\Documents and Settings\Jirka\Data aplikací\CSAS
2010-05-03 19:31:46 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2010-05-03 17:41:13 ----D---- C:\Program Files\GIGABYTE
2010-05-03 17:41:07 ----A---- C:\WINDOWS\IsUninst.exe
2010-05-03 17:37:13 ----D---- C:\Documents and Settings\Jirka\Data aplikací\OpenOffice.org
2010-05-03 17:14:45 ----D---- C:\Program Files\PopTray
2010-05-03 17:08:07 ----ASH---- C:\Documents and Settings\All Users\Data aplikací\desktop.ini
2010-05-03 17:06:25 ----RA---- C:\WINDOWS\SET29.tmp
2010-05-03 17:06:24 ----RA---- C:\WINDOWS\SET1D.tmp
2010-05-03 17:06:23 ----RA---- C:\WINDOWS\SET1A.tmp
2010-05-03 17:06:04 ----SD---- C:\Documents and Settings\All Users\Data aplikací\Microsoft
2010-05-03 16:57:17 ----A---- C:\WINDOWS\system32\h323log.txt
2010-05-03 16:53:58 ----A---- C:\WINDOWS\system32\hidserv.dll
2010-05-03 16:53:51 ----A---- C:\WINDOWS\system32\ksuser.dll
2010-05-03 16:53:46 ----A---- C:\WINDOWS\system32\wshirda.dll
2010-05-03 16:53:46 ----A---- C:\WINDOWS\system32\irmon.dll
2010-05-03 16:53:46 ----A---- C:\WINDOWS\system32\irftp.exe
2010-05-03 16:52:23 ----A---- C:\WINDOWS\system32\usbui.dll
2010-05-03 16:52:22 ----A---- C:\WINDOWS\system32\SET106.tmp
2010-05-03 16:52:16 ----A---- C:\WINDOWS\system32\SET103.tmp
2010-05-03 16:52:16 ----A---- C:\WINDOWS\system32\SET102.tmp
2010-05-03 16:51:33 ----A---- C:\WINDOWS\imsins.BAK
2010-05-03 16:51:31 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-05-03 16:51:30 ----SHD---- C:\WINDOWS\Installer
2010-05-03 16:51:30 ----D---- C:\Program Files\Common Files\ODBC
2010-05-03 16:51:30 ----A---- C:\WINDOWS\ODBCINST.INI
2010-05-03 16:51:27 ----RD---- C:\Program Files
2010-05-03 16:51:27 ----D---- C:\Program Files\Common Files\SpeechEngines
2010-05-03 16:51:27 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-05-03 16:51:27 ----D---- C:\Program Files\Common Files
2010-05-03 16:51:24 ----RA---- C:\WINDOWS\system32\kbdtuq.dll
2010-05-03 16:51:24 ----RA---- C:\WINDOWS\system32\kbdtuf.dll
2010-05-03 16:51:24 ----RA---- C:\WINDOWS\system32\kbdazel.dll
2010-05-03 16:51:22 ----RA---- C:\WINDOWS\system32\kbduzb.dll
2010-05-03 16:51:22 ----RA---- C:\WINDOWS\system32\kbdur.dll
2010-05-03 16:51:22 ----RA---- C:\WINDOWS\system32\kbdtat.dll
2010-05-03 16:51:22 ----RA---- C:\WINDOWS\system32\kbdmon.dll
2010-05-03 16:51:22 ----RA---- C:\WINDOWS\system32\kbdkyr.dll
2010-05-03 16:51:22 ----RA---- C:\WINDOWS\system32\kbdkaz.dll
2010-05-03 16:51:22 ----RA---- C:\WINDOWS\system32\kbdaze.dll
2010-05-03 16:51:22 ----D---- C:\Program Files\OpenOffice.org 3
2010-05-03 16:51:21 ----RA---- C:\WINDOWS\system32\kbdycc.dll
2010-05-03 16:51:21 ----RA---- C:\WINDOWS\system32\kbdru1.dll
2010-05-03 16:51:21 ----RA---- C:\WINDOWS\system32\kbdru.dll
2010-05-03 16:51:21 ----RA---- C:\WINDOWS\system32\kbdbu.dll
2010-05-03 16:51:21 ----RA---- C:\WINDOWS\system32\kbdblr.dll
2010-05-03 16:51:19 ----RA---- C:\WINDOWS\system32\kbdhept.dll
2010-05-03 16:51:19 ----RA---- C:\WINDOWS\system32\kbdhela3.dll
2010-05-03 16:51:19 ----RA---- C:\WINDOWS\system32\kbdhela2.dll
2010-05-03 16:51:19 ----RA---- C:\WINDOWS\system32\kbdhe319.dll
2010-05-03 16:51:19 ----RA---- C:\WINDOWS\system32\kbdhe220.dll
2010-05-03 16:51:19 ----RA---- C:\WINDOWS\system32\kbdhe.dll
2010-05-03 16:51:19 ----RA---- C:\WINDOWS\system32\kbdgkl.dll
2010-05-03 16:51:18 ----RA---- C:\WINDOWS\system32\kbdlv1.dll
2010-05-03 16:51:18 ----RA---- C:\WINDOWS\system32\kbdlv.dll
2010-05-03 16:51:18 ----RA---- C:\WINDOWS\system32\kbdlt1.dll
2010-05-03 16:51:18 ----RA---- C:\WINDOWS\system32\kbdlt.dll
2010-05-03 16:51:17 ----RA---- C:\WINDOWS\system32\kbdest.dll
2010-05-03 16:51:14 ----A---- C:\WINDOWS\system32\kbdycl.dll
2010-05-03 16:51:14 ----A---- C:\WINDOWS\system32\kbdsl1.dll
2010-05-03 16:51:14 ----A---- C:\WINDOWS\system32\kbdsl.dll
2010-05-03 16:51:14 ----A---- C:\WINDOWS\system32\kbdro.dll
2010-05-03 16:51:14 ----A---- C:\WINDOWS\system32\kbdpl1.dll
2010-05-03 16:51:14 ----A---- C:\WINDOWS\system32\kbdpl.dll
2010-05-03 16:51:14 ----A---- C:\WINDOWS\system32\kbdhu1.dll
2010-05-03 16:51:14 ----A---- C:\WINDOWS\system32\kbdhu.dll
2010-05-03 16:51:14 ----A---- C:\WINDOWS\system32\kbdcr.dll
2010-05-03 16:51:14 ----A---- C:\WINDOWS\system32\KBDAL.DLL
2010-05-03 16:51:13 ----A---- C:\WINDOWS\system32\spxcoins.dll
2010-05-03 16:51:13 ----A---- C:\WINDOWS\system32\irclass.dll
2010-05-03 16:51:13 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2010-05-03 16:51:13 ----A---- C:\WINDOWS\system32\dgsetup.dll
2010-05-03 16:51:13 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2010-05-03 16:51:10 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2010-05-03 16:51:10 ----A---- C:\WINDOWS\TASKMAN.EXE
2010-05-03 16:51:10 ----A---- C:\WINDOWS\system32\batt.dll
2010-05-03 16:51:09 ----A---- C:\WINDOWS\notepad.exe
2010-05-03 16:51:07 ----A---- C:\WINDOWS\system32\storprop.dll
2010-05-03 16:49:20 ----RA---- C:\WINDOWS\SET8.tmp
2010-05-03 16:49:18 ----RA---- C:\WINDOWS\SET4.tmp
2010-05-03 16:49:17 ----RA---- C:\WINDOWS\SET3.tmp
2010-05-03 16:49:13 ----D---- C:\WINDOWS\system32\CatRoot2
2010-05-03 16:49:13 ----D---- C:\WINDOWS\system32\CatRoot
2010-05-03 16:48:49 ----A---- C:\WINDOWS\setuplog.txt
2010-05-03 16:48:46 ----SHD---- C:\System Volume Information
2010-05-03 16:48:46 ----D---- C:\Documents and Settings
2010-05-03 16:48:07 ----RASH---- C:\boot.ini
2010-05-03 16:44:36 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-05-03 16:44:36 ----RSD---- C:\WINDOWS\Fonts
2010-05-03 16:44:36 ----RD---- C:\WINDOWS\Web
2010-05-03 16:44:36 ----HD---- C:\WINDOWS\inf
2010-05-03 16:44:36 ----D---- C:\WINDOWS\WinSxS
2010-05-03 16:44:36 ----D---- C:\WINDOWS\twain_32
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\wins
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\wbem
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\usmt
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\spool
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\ShellExt
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\Setup
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\ras
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\oobe
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\npp
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\mui
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\inetsrv
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\IME
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\icsxml
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\ias
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\export
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\drivers
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\dhcp
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\config
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\3com_dmi
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\3076
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\2052
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\1054
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\1042
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\1041
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\1037
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\1033
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\1031
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\1029
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\1028
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32\1025
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system32
2010-05-03 16:44:36 ----D---- C:\WINDOWS\system
2010-05-03 16:44:36 ----D---- C:\WINDOWS\security
2010-05-03 16:44:36 ----D---- C:\WINDOWS\Resources
2010-05-03 16:44:36 ----D---- C:\WINDOWS\repair
2010-05-03 16:44:36 ----D---- C:\WINDOWS\Provisioning
2010-05-03 16:44:36 ----D---- C:\WINDOWS\pchealth
2010-05-03 16:44:36 ----D---- C:\WINDOWS\PeerNet
2010-05-03 16:44:36 ----D---- C:\WINDOWS\mui
2010-05-03 16:44:36 ----D---- C:\WINDOWS\msapps
2010-05-03 16:44:36 ----D---- C:\WINDOWS\msagent
2010-05-03 16:44:36 ----D---- C:\WINDOWS\Media
2010-05-03 16:44:36 ----D---- C:\WINDOWS\java
2010-05-03 16:44:36 ----D---- C:\WINDOWS\ime
2010-05-03 16:44:36 ----D---- C:\WINDOWS\Help
2010-05-03 16:44:36 ----D---- C:\WINDOWS\ehome
2010-05-03 16:44:36 ----D---- C:\WINDOWS\Driver Cache
2010-05-03 16:44:36 ----D---- C:\WINDOWS\Debug
2010-05-03 16:44:36 ----D---- C:\WINDOWS\Cursors
2010-05-03 16:44:36 ----D---- C:\WINDOWS\Connection Wizard
2010-05-03 16:44:36 ----D---- C:\WINDOWS\Config
2010-05-03 16:44:36 ----D---- C:\WINDOWS\AppPatch
2010-05-03 16:44:36 ----D---- C:\WINDOWS\addins
2010-05-03 16:44:36 ----D---- C:\WINDOWS
2010-05-03 16:41:11 ----D---- C:\Documents and Settings\Jirka\Data aplikací\Thunderbird
2010-05-03 16:40:56 ----D---- C:\Program Files\Mozilla Thunderbird
2010-05-03 16:16:00 ----D---- C:\WINDOWS\OPTIONS
2010-05-03 16:15:56 ----A---- C:\WINDOWS\ALCWZRD.EXE
2010-05-03 16:15:56 ----A---- C:\WINDOWS\ALCMTR.EXE
2010-05-03 16:15:55 ----R---- C:\WINDOWS\system32\ChCfg.exe
2010-05-03 16:15:55 ----D---- C:\WINDOWS\system32\RTCOM
2010-05-03 16:15:55 ----D---- C:\Documents and Settings\Jirka\Data aplikací\InstallShield
2010-05-03 16:15:55 ----A---- C:\WINDOWS\SOUNDMAN.EXE
2010-05-03 16:15:55 ----A---- C:\WINDOWS\SkyTel.exe
2010-05-03 16:15:55 ----A---- C:\WINDOWS\RtlUpd.exe
2010-05-03 16:15:55 ----A---- C:\WINDOWS\RTLCPL.EXE
2010-05-03 16:15:55 ----A---- C:\WINDOWS\RTHDCPL.EXE
2010-05-03 16:15:55 ----A---- C:\WINDOWS\MicCal.exe
2010-05-03 16:15:44 ----HD---- C:\Program Files\InstallShield Installation Information
2010-05-03 16:15:44 ----D---- C:\Program Files\Realtek
2010-05-03 16:15:41 ----R---- C:\WINDOWS\RtlExUpd.dll
2010-05-03 16:15:41 ----A---- C:\WINDOWS\HideWin.exe
2010-05-03 16:15:37 ----D---- C:\Program Files\Common Files\InstallShield
2010-05-03 16:15:06 ----HDC---- C:\WINDOWS\$NtUninstallKB978601_0$
2010-05-03 16:15:02 ----HDC---- C:\WINDOWS\$NtUninstallKB979402_WM9L$
2010-05-03 16:10:28 ----HDC---- C:\WINDOWS\$NtUninstallKB979683_0$
2010-05-03 16:10:22 ----HDC---- C:\WINDOWS\$NtUninstallKB978338_0$
2010-05-03 16:10:18 ----HDC---- C:\WINDOWS\$NtUninstallKB979309_0$
2010-05-03 16:10:14 ----HDC---- C:\WINDOWS\$NtUninstallKB981350$
2010-05-03 16:10:10 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2010-05-03 16:10:06 ----HDC---- C:\WINDOWS\$NtUninstallKB980232_0$
2010-05-03 16:09:59 ----HDC---- C:\WINDOWS\$NtUninstallKB978706_0$
2010-05-03 16:09:55 ----HDC---- C:\WINDOWS\$NtUninstallKB971468_0$
2010-05-03 16:09:50 ----HDC---- C:\WINDOWS\$NtUninstallKB977914_0$
2010-05-03 16:09:45 ----HDC---- C:\WINDOWS\$NtUninstallKB978262$
2010-05-03 16:09:39 ----HDC---- C:\WINDOWS\$NtUninstallKB975560_0$
2010-05-03 16:09:33 ----HDC---- C:\WINDOWS\$NtUninstallKB978037_0$
2010-05-03 16:09:29 ----HDC---- C:\WINDOWS\$NtUninstallKB975713_0$
2010-05-03 16:09:25 ----HDC---- C:\WINDOWS\$NtUninstallKB972270_0$
2010-05-03 16:09:20 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-05-03 16:09:14 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-05-03 16:09:09 ----HDC---- C:\WINDOWS\$NtUninstallKB974392_0$
2010-05-03 16:09:05 ----HDC---- C:\WINDOWS\$NtUninstallKB974318_0$
2010-05-03 16:08:59 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-05-03 16:08:55 ----HDC---- C:\WINDOWS\$NtUninstallKB973687_0$
2010-05-03 16:08:50 ----HDC---- C:\WINDOWS\$NtUninstallKB969947_0$
2010-05-03 16:08:46 ----HDC---- C:\WINDOWS\$NtUninstallKB975467_0$
2010-05-03 16:08:40 ----HDC---- C:\WINDOWS\$NtUninstallKB968389_0$
2010-05-03 16:08:35 ----HDC---- C:\WINDOWS\$NtUninstallKB969059_0$
2010-05-03 16:08:32 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-05-03 16:08:28 ----HDC---- C:\WINDOWS\$NtUninstallKB974112_0$
2010-05-03 16:08:24 ----HDC---- C:\WINDOWS\$NtUninstallKB974571_0$
2010-05-03 16:08:20 ----HDC---- C:\WINDOWS\$NtUninstallKB975025_0$
2010-05-03 16:08:16 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-05-03 16:08:13 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2010-05-03 16:08:09 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2010-05-03 16:08:04 ----HDC---- C:\WINDOWS\$NtUninstallKB956844_0$
2010-05-03 16:07:55 ----A---- C:\WINDOWS\system32\MRT.exe
2010-05-03 16:07:50 ----HDC---- C:\WINDOWS\$NtUninstallKB932823-v3$
2010-05-03 16:06:50 ----HDC---- C:\WINDOWS\$NtUninstallKB971657_0$
2010-05-03 16:06:46 ----HDC---- C:\WINDOWS\$NtUninstallKB973815_0$
2010-05-03 16:06:42 ----HDC---- C:\WINDOWS\$NtUninstallKB960859_0$
2010-05-03 16:06:38 ----HDC---- C:\WINDOWS\$NtUninstallKB973507_0$
2010-05-03 16:06:34 ----HDC---- C:\WINDOWS\$NtUninstallKB973354_0$
2010-05-03 16:06:28 ----D---- C:\WINDOWS\ServicePackFiles
2010-05-03 16:06:27 ----HDC---- C:\WINDOWS\$NtUninstallKB958470$
2010-05-03 16:06:20 ----HDC---- C:\WINDOWS\$NtUninstallKB973869_0$
2010-05-03 16:06:16 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9L$
2010-05-03 16:06:02 ----HDC---- C:\WINDOWS\$NtUninstallKB971032$
2010-05-03 16:05:54 ----HDC---- C:\WINDOWS\$NtUninstallKB970238_0$
2010-05-03 16:05:50 ----HDC---- C:\WINDOWS\$NtUninstallKB961501_0$
2010-05-03 16:05:45 ----HDC---- C:\WINDOWS\$NtUninstallKB959426_0$
2010-05-03 16:05:40 ----HDC---- C:\WINDOWS\$NtUninstallKB960803_0$
2010-05-03 16:05:34 ----HDC---- C:\WINDOWS\$NtUninstallKB952004_0$
2010-05-03 16:05:19 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-05-03 16:05:06 ----HDC---- C:\WINDOWS\$NtUninstallKB923561_0$
2010-05-03 16:04:56 ----HDC---- C:\WINDOWS\$NtUninstallKB960225_0$
2010-05-03 16:04:52 ----HDC---- C:\WINDOWS\$NtUninstallKB956803_0$
2010-05-03 16:04:48 ----HDC---- C:\WINDOWS\$NtUninstallKB955069_0$
2010-05-03 16:04:44 ----HDC---- C:\WINDOWS\$NtUninstallKB958644_0$
2010-05-03 16:04:40 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2010-05-03 16:04:35 ----HDC---- C:\WINDOWS\$NtUninstallKB950974_0$
2010-05-03 16:04:31 ----HDC---- C:\WINDOWS\$NtUninstallKB952954_0$
2010-05-03 16:04:28 ----HDC---- C:\WINDOWS\$NtUninstallKB946648_0$
2010-05-03 16:04:24 ----HDC---- C:\WINDOWS\$NtUninstallKB951066_0$
2010-05-03 16:04:19 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2010-05-03 16:04:14 ----HDC---- C:\WINDOWS\$NtUninstallKB951748_0$
2010-05-03 16:04:11 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2_0$
2010-05-03 16:04:05 ----HDC---- C:\WINDOWS\$NtUninstallKB950762_0$
2010-05-03 16:03:59 ----HDC---- C:\WINDOWS\$NtUninstallKB950760$
2010-05-03 16:03:59 ----D---- C:\Documents and Settings\Jirka\Data aplikací\ProfiCAD
2010-05-03 16:03:57 ----D---- C:\Program Files\ProfiCAD
2010-05-03 16:03:51 ----N---- C:\WINDOWS\system32\browserchoice.exe
2010-05-03 16:02:25 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2010-05-03 16:02:10 ----D---- C:\Program Files\Common Files\Adobe
2010-05-03 16:02:10 ----D---- C:\Program Files\Adobe
2010-05-03 15:59:51 ----D---- C:\Documents and Settings\Jirka\Data aplikací\Macromedia
2010-05-03 15:59:51 ----D---- C:\Documents and Settings\Jirka\Data aplikací\Adobe
2010-05-03 15:42:09 ----D---- C:\Documents and Settings\Jirka\Data aplikací\Mozilla
2010-05-03 15:42:03 ----D---- C:\totalcmd
2010-05-03 15:42:03 ----D---- C:\Documents and Settings\Jirka\Data aplikací\GHISLER
2010-05-03 15:41:39 ----D---- C:\Program Files\Mozilla Firefox
2010-05-03 15:37:52 ----D---- C:\Documents and Settings\All Users\Data aplikací\NVIDIA Corporation
2010-05-03 15:37:47 ----D---- C:\Program Files\NVIDIA Corporation
2010-05-03 15:35:56 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2010-05-03 15:34:22 ----D---- C:\WINDOWS\Minidump
2010-05-03 15:30:10 ----D---- C:\Program Files\Microsoft Security Essentials
2010-05-03 15:30:03 ----HDC---- C:\WINDOWS\$NtUninstallKB914882$
2010-05-03 15:29:50 ----D---- C:\Documents and Settings\All Users\Data aplikací\Windows Genuine Advantage
2010-05-03 15:28:47 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2010-05-03 15:28:37 ----N---- C:\WINDOWS\system32\spmsg.dll
2010-05-03 15:28:37 ----D---- C:\WINDOWS\system32\PreInstall
2010-05-03 15:28:37 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2010-05-03 15:28:36 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2010-05-03 15:28:36 ----HD---- C:\WINDOWS\$hf_mig$
2010-05-03 15:25:29 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2010-05-03 15:18:30 ----D---- C:\Documents and Settings\Jirka\Data aplikací\Identities
2010-05-03 15:18:29 ----HD---- C:\Program Files\Uninstall Information
2010-05-03 15:18:13 ----ASH---- C:\Documents and Settings\Jirka\Data aplikací\desktop.ini
2010-05-03 15:18:12 ----SD---- C:\Documents and Settings\Jirka\Data aplikací\Microsoft
2010-05-03 15:17:33 ----D---- C:\WINDOWS\SoftwareDistribution
2010-05-03 15:17:31 ----SD---- C:\WINDOWS\system32\Microsoft
2010-05-03 15:17:31 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-05-03 15:13:07 ----D---- C:\WINDOWS\Registration
2010-05-03 15:05:06 ----D---- C:\WINDOWS\system32\xircom
2010-05-03 15:05:06 ----D---- C:\Program Files\xerox
2010-05-03 15:05:06 ----D---- C:\Program Files\microsoft frontpage
2010-05-03 15:04:49 ----A---- C:\WINDOWS\control.ini
2010-05-03 15:04:49 ----A---- C:\AUTOEXEC.BAT
2010-05-03 15:04:42 ----A---- C:\WINDOWS\OEWABLog.txt
2010-05-03 15:04:39 ----A---- C:\WINDOWS\system32\mapi32.dll
2010-05-03 15:03:58 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-05-03 15:03:58 ----RD---- C:\WINDOWS\Offline Web Pages
2010-05-03 15:03:57 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2010-05-03 15:03:53 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2010-05-03 15:03:49 ----HD---- C:\Program Files\WindowsUpdate
2010-05-03 15:03:46 ----D---- C:\Program Files\Online Services
2010-05-03 15:03:24 ----D---- C:\WINDOWS\system32\DirectX
2010-05-03 15:03:03 ----A---- C:\WINDOWS\system32\atrace.dll
2010-05-03 15:03:01 ----A---- C:\WINDOWS\system32\desktop.ini
2010-05-03 15:03:01 ----A---- C:\WINDOWS\desktop.ini
2010-05-03 15:02:53 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2010-05-03 15:02:52 ----A---- C:\WINDOWS\system32\acctres.dll
2010-05-03 15:02:51 ----D---- C:\Program Files\Common Files\Services
2010-05-03 15:02:49 ----SD---- C:\WINDOWS\Tasks
2010-05-03 15:02:49 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2010-05-03 15:02:48 ----D---- C:\Program Files\Common Files\MSSoap
2010-05-03 15:02:44 ----D---- C:\WINDOWS\srchasst
2010-05-03 15:02:43 ----D---- C:\WINDOWS\system32\Macromed
2010-05-03 15:02:41 ----A---- C:\WINDOWS\system32\wuweb.dll
2010-05-03 15:02:41 ----A---- C:\WINDOWS\system32\wucltui.dll
2010-05-03 15:02:41 ----A---- C:\WINDOWS\system32\wuauserv.dll
2010-05-03 15:02:41 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2010-05-03 15:02:40 ----A---- C:\WINDOWS\system32\wups.dll
2010-05-03 15:02:40 ----A---- C:\WINDOWS\system32\wuaueng.dll
2010-05-03 15:02:40 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2010-05-03 15:02:40 ----A---- C:\WINDOWS\system32\wuauclt.exe
2010-05-03 15:02:40 ----A---- C:\WINDOWS\system32\wuapi.dll
2010-05-03 15:02:40 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2010-05-03 15:02:40 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2010-05-03 15:02:39 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2010-05-03 15:02:39 ----A---- C:\WINDOWS\system32\qmgr.dll
2010-05-03 15:02:36 ----D---- C:\Program Files\Movie Maker
2010-05-03 15:02:32 ----A---- C:\WINDOWS\system32\safrslv.dll
2010-05-03 15:02:32 ----A---- C:\WINDOWS\system32\safrdm.dll
2010-05-03 15:02:32 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2010-05-03 15:02:32 ----A---- C:\WINDOWS\system32\racpldlg.dll
2010-05-03 15:02:29 ----D---- C:\WINDOWS\system32\Restore
2010-05-03 15:02:29 ----A---- C:\WINDOWS\system32\srrstr.dll
2010-05-03 15:02:29 ----A---- C:\WINDOWS\system32\fltmc.exe
2010-05-03 15:02:29 ----A---- C:\WINDOWS\system32\fltlib.dll
2010-05-03 15:02:28 ----A---- C:\WINDOWS\system32\srsvc.dll
2010-05-03 15:02:28 ----A---- C:\WINDOWS\system32\srclient.dll
2010-05-03 15:02:28 ----A---- C:\WINDOWS\system32\mnmdd.dll
2010-05-03 15:02:28 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2010-05-03 15:02:28 ----A---- C:\WINDOWS\system32\ils.dll
2010-05-03 15:02:27 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2010-05-03 15:02:27 ----A---- C:\WINDOWS\system32\msconf.dll
2010-05-03 15:02:27 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2010-05-03 15:02:24 ----D---- C:\Program Files\NetMeeting
2010-05-03 15:02:24 ----A---- C:\WINDOWS\system32\msoert2.dll
2010-05-03 15:02:24 ----A---- C:\WINDOWS\system32\msoeacct.dll
2010-05-03 15:02:23 ----A---- C:\WINDOWS\system32\inetres.dll
2010-05-03 15:02:23 ----A---- C:\WINDOWS\system32\inetcomm.dll
2010-05-03 15:02:21 ----D---- C:\Program Files\Outlook Express
2010-05-03 15:02:21 ----A---- C:\WINDOWS\system32\schedsvc.dll
2010-05-03 15:02:21 ----A---- C:\WINDOWS\system32\mstinit.exe
2010-05-03 15:02:21 ----A---- C:\WINDOWS\system32\mstask.dll
2010-05-03 15:02:21 ----A---- C:\WINDOWS\system32\icwphbk.dll
2010-05-03 15:02:21 ----A---- C:\WINDOWS\system32\icwdial.dll
2010-05-03 15:02:20 ----A---- C:\WINDOWS\system32\isign32.dll
2010-05-03 15:02:20 ----A---- C:\WINDOWS\system32\inetcfg.dll
2010-05-03 15:02:15 ----D---- C:\Program Files\Common Files\System
2010-05-03 15:02:14 ----D---- C:\Program Files\Internet Explorer
2010-05-03 15:01:49 ----D---- C:\Program Files\ComPlus Applications
2010-05-03 15:01:48 ----A---- C:\WINDOWS\vbaddin.ini
2010-05-03 15:01:48 ----A---- C:\WINDOWS\vb.ini
2010-05-03 15:01:39 ----D---- C:\Program Files\Windows Media Player
2010-05-03 15:01:34 ----D---- C:\Program Files\Messenger
2010-05-03 15:01:31 ----D---- C:\Program Files\MSN Gaming Zone
2010-05-03 15:01:31 ----A---- C:\WINDOWS\system32\write.exe
2010-05-03 15:01:21 ----A---- C:\WINDOWS\system32\sndvol32.exe
2010-05-03 15:01:21 ----A---- C:\WINDOWS\system32\hticons.dll
2010-05-03 15:01:20 ----A---- C:\WINDOWS\system32\winchat.exe
2010-05-03 15:01:20 ----A---- C:\WINDOWS\system32\avwav.dll
2010-05-03 15:01:20 ----A---- C:\WINDOWS\system32\avtapi.dll
2010-05-03 15:01:20 ----A---- C:\WINDOWS\system32\avmeter.dll
2010-05-03 15:01:12 ----A---- C:\WINDOWS\system32\charmap.exe
2010-05-03 15:01:12 ----A---- C:\WINDOWS\system32\getuname.dll
2010-05-03 15:01:12 ----A---- C:\WINDOWS\system32\calc.exe
2010-05-03 15:01:11 ----A---- C:\WINDOWS\system32\winmine.exe
2010-05-03 15:01:11 ----A---- C:\WINDOWS\system32\sol.exe
2010-05-03 15:01:11 ----A---- C:\WINDOWS\system32\mshearts.exe
2010-05-03 15:01:11 ----A---- C:\WINDOWS\system32\freecell.exe
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\tslabels.ini
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\tskill.exe
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\tscon.exe
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\shadow.exe
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\rwinsta.exe
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\reset.exe
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\regini.exe
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\qwinsta.exe
2010-05-03 15:01:10 ----A---- C:\WINDOWS\system32\qappsrv.exe
2010-05-03 15:01:09 ----A---- C:\WINDOWS\system32\msg.exe
2010-05-03 15:01:09 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2010-05-03 15:01:09 ----A---- C:\WINDOWS\system32\logoff.exe
2010-05-03 15:01:09 ----A---- C:\WINDOWS\system32\cdmodem.dll
2010-05-03 15:01:08 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2010-05-03 15:01:08 ----A---- C:\WINDOWS\system32\mtxex.dll
2010-05-03 15:01:08 ----A---- C:\WINDOWS\system32\mtxdm.dll
2010-05-03 15:01:08 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2010-05-03 15:01:08 ----A---- C:\WINDOWS\system32\comrepl.dll
2010-05-03 15:01:08 ----A---- C:\WINDOWS\system32\comaddin.dll
2010-05-03 15:01:07 ----A---- C:\WINDOWS\system32\stclient.dll
2010-05-03 15:01:07 ----A---- C:\WINDOWS\system32\comsnap.dll
2010-05-03 15:01:02 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2010-05-03 15:01:01 ----A---- C:\WINDOWS\system32\sndrec32.exe
2010-05-03 15:01:01 ----A---- C:\WINDOWS\system32\mplay32.exe
2010-05-03 15:01:01 ----A---- C:\WINDOWS\system32\accwiz.exe
2010-05-03 15:01:00 ----D---- C:\Program Files\Windows NT
2010-05-03 15:01:00 ----A---- C:\WINDOWS\system32\mspaint.exe
2010-05-03 15:01:00 ----A---- C:\WINDOWS\system32\hypertrm.dll
2010-05-03 15:01:00 ----A---- C:\WINDOWS\system32\clipbrd.exe
2010-05-03 15:00:59 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2010-05-03 15:00:59 ----A---- C:\WINDOWS\system32\spider.exe
2010-05-03 15:00:59 ----A---- C:\WINDOWS\system32\mstscax.dll
2010-05-03 15:00:58 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2010-05-03 15:00:58 ----A---- C:\WINDOWS\system32\termsrv.dll
2010-05-03 15:00:58 ----A---- C:\WINDOWS\system32\sessmgr.exe
2010-05-03 15:00:58 ----A---- C:\WINDOWS\system32\remotepg.dll
2010-05-03 15:00:58 ----A---- C:\WINDOWS\system32\rdshost.exe
2010-05-03 15:00:58 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2010-05-03 15:00:58 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2010-05-03 15:00:58 ----A---- C:\WINDOWS\system32\rdchost.dll
2010-05-03 15:00:58 ----A---- C:\WINDOWS\system32\mstsc.exe
2010-05-03 15:00:57 ----D---- C:\WINDOWS\system32\MsDtc
2010-05-03 15:00:57 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2010-05-03 15:00:57 ----A---- C:\WINDOWS\system32\rdpclip.exe
2010-05-03 15:00:57 ----A---- C:\WINDOWS\system32\qprocess.exe
2010-05-03 15:00:57 ----A---- C:\WINDOWS\system32\mtxoci.dll
2010-05-03 15:00:57 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2010-05-03 15:00:57 ----A---- C:\WINDOWS\system32\icaapi.dll
2010-05-03 15:00:57 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2010-05-03 15:00:56 ----A---- C:\WINDOWS\system32\xolehlp.dll
2010-05-03 15:00:56 ----A---- C:\WINDOWS\system32\msdtctm.dll
2010-05-03 15:00:56 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2010-05-03 15:00:56 ----A---- C:\WINDOWS\system32\msdtclog.dll
2010-05-03 15:00:56 ----A---- C:\WINDOWS\system32\msdtc.exe
2010-05-03 15:00:55 ----D---- C:\WINDOWS\system32\Com
2010-05-03 15:00:55 ----A---- C:\WINDOWS\system32\colbact.dll
2010-05-03 15:00:55 ----A---- C:\WINDOWS\system32\clbcatex.dll
2010-05-03 15:00:55 ----A---- C:\WINDOWS\system32\catsrvut.dll
2010-05-03 15:00:55 ----A---- C:\WINDOWS\system32\catsrvps.dll
2010-05-03 15:00:55 ----A---- C:\WINDOWS\system32\catsrv.dll
2010-05-03 15:00:54 ----A---- C:\WINDOWS\system32\comuid.dll
2010-05-03 15:00:54 ----A---- C:\WINDOWS\system32\comsvcs.dll
2010-05-03 15:00:54 ----A---- C:\WINDOWS\system32\clbcatq.dll
2010-05-03 15:00:48 ----A---- C:\WINDOWS\system32\servdeps.dll
2010-05-03 15:00:48 ----A---- C:\WINDOWS\system32\mmfutil.dll
2010-05-03 15:00:48 ----A---- C:\WINDOWS\system32\licwmi.dll
2010-05-03 15:00:47 ----A---- C:\WINDOWS\system32\cmprops.dll
======List of files/folders modified in the last 1 months======
2010-05-12 17:35:24 ----A---- C:\WINDOWS\system.ini
2010-05-05 11:05:02 ----A---- C:\WINDOWS\win.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 intelppm;Řadič procesoru Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 MpFilter;Microsoft Malware Protection Driver; C:\WINDOWS\system32\DRIVERS\MpFilter.sys [2009-12-02 149040]
R2 DgiVecp;Team MFP Comm Driver; C:\WINDOWS\System32\Drivers\DgiVecp.sys [2003-07-29 40448]
R3 Arp1394;Protokol 1394 ARP Client; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-13 17024]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-13 101120]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-13 18944]
R3 GemCCID;GemCCID; C:\WINDOWS\System32\Drivers\GemCCID.sys [2009-08-10 89600]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Ovladač třídy standardu HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-04-23 4402176]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2010-04-03 10232128]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-13 59136]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2007-03-01 90496]
R3 usbaudio;Ovladač zvukové karty USB (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2004-08-04 59264]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Ovladač miniportu rozšířeného radiče hostitele Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Ovladač standardního rozbočovače USB; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbscan;Ovladač skeneru USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104]
R3 usbstor;Ovladač velkokapacitního paměťového zařízení USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S3 BTHPORT;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 272128]
S3 catchme;catchme; \??\C:\DOCUME~1\Jirka\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Dekodér Closed Caption; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 GVCplDrv;GVCplDrv; C:\WINDOWS\system32\drivers\GVCplDrv.sys [2004-05-02 23040]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usb_rndisx;Adaptér USB RNDIS; C:\WINDOWS\system32\DRIVERS\usb8023x.sys [2008-04-13 12800]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-13 121984]
S3 WSTCODEC;Dálnopisný kodek světového standardu; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BthServ;Bluetooth Support Service; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-05-09 153376]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Essentials\MsMpEng.exe [2009-12-09 17904]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2010-04-03 154216]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-05-09 135664]
S2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service; C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe [2010-05-11 1291544]
S2 PEVSystemStart;PEVSystemStart; C:\ComboFix\PEV.cfxxe EXEC /i C:\ComboFix\REGT.cfxxe /S C:\ComboFix\CregB.dat []
-----------------EOF-----------------
Re: Prosím o kontrolu logu. Děkuji
Nepamatuješ si, jaké soubory na tom druhém disku byly? Ten není systémový?
Jdi do nouzového režimu (po restartu mačkej F8), přejmenuj combofix třeba na abc.com a spusť.
Pokud by nešel, napiš.
Jdi do nouzového režimu (po restartu mačkej F8), přejmenuj combofix třeba na abc.com a spusť.
Pokud by nešel, napiš.
Re: Prosím o kontrolu logu. Děkuji
Nepamatuji.Bylo to více souborů, nešly odstranit ani v nouzovém režimu a ani když jsem nabootoval linux,nebo mini winxp z hirens boot cd.. Zkusím spustit ten combofik tedy v nouzáku.Díky
Re: Prosím o kontrolu logu. Děkuji
Pak sem vlož log.
Re: Prosím o kontrolu logu. Děkuji
Tak,tady to je:
ComboFix 10-05-11.06 - Administrator 12.05.2010 22:35:01.4.2 - x86 MINIMAL
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3070.2737 [GMT 2:00]
Spuštěný z: c:\documents and settings\Jirka\Dokumenty\Stažené soubory\abc.com.exe
AV: Microsoft Security Essentials *On-access scanning enabled* (Outdated) {BCF43643-A118-4432-AEDE-D861FCBCFCDF}
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-04-12 do 2010-05-12 )))))))))))))))))))))))))))))))
.
2010-05-12 20:26 . 2010-05-12 20:26 -------- d-----w- C:\found.000
2010-05-12 19:15 . 2010-05-12 19:15 -------- d-----w- C:\rsit
2010-05-12 19:15 . 2010-05-12 19:15 -------- d-----w- c:\program files\trend micro
2010-05-12 15:01 . 2010-05-12 15:01 -------- d-----w- c:\program files\MSXML 4.0
2010-05-11 18:10 . 2010-05-11 18:10 -------- d-----w- c:\program files\Software602
2010-05-11 17:01 . 2010-05-11 17:01 -------- d-----w- c:\program files\Canon
2010-05-10 15:27 . 2010-05-10 15:29 -------- d-----w- c:\program files\Windows Live Safety Center
2010-05-10 14:54 . 2010-05-10 14:54 -------- d-----w- c:\program files\Alwil Software
2010-05-09 19:16 . 2010-05-09 19:15 390144 ----a-w- c:\windows\system32\CF6255.exe
2010-05-09 18:22 . 2010-05-09 18:22 -------- d-----w- c:\windows\Sun
2010-05-09 18:13 . 2010-05-09 18:13 -------- d-----w- c:\program files\Common Files\Java
2010-05-09 18:13 . 2010-05-09 18:12 411368 ----a-w- c:\windows\system32\deployJava1.dll
2010-05-09 18:12 . 2010-05-09 18:12 -------- d-----w- c:\program files\Java
2010-05-09 17:15 . 2010-05-09 17:15 -------- dc----w- c:\windows\system32\DRVSTORE
2010-05-09 17:15 . 2010-05-09 17:15 95024 ----a-w- c:\windows\system32\drivers\SBREDrv.sys
2010-05-09 17:11 . 2010-05-09 17:12 -------- d-----w- c:\program files\Google
2010-05-09 17:11 . 2010-05-09 17:11 -------- d-----w- c:\program files\Lavasoft
2010-05-09 14:05 . 2005-09-01 09:03 5888 ------w- c:\windows\system32\drivers\imagedrv.sys
2010-05-09 14:05 . 2005-09-01 09:03 127488 ------w- c:\windows\system32\drivers\imagesrv.sys
2010-05-09 14:05 . 2004-07-09 06:43 364544 ------w- c:\windows\system32\TwnLib4.dll
2010-05-09 14:05 . 2000-06-26 08:45 106496 ----a-w- c:\windows\system32\TwnLib20.dll
2010-05-09 14:05 . 2010-05-09 14:05 -------- d-----w- c:\program files\Ahead
2010-05-09 14:05 . 2010-05-09 14:05 -------- d-----w- c:\program files\Common Files\Ahead
2010-05-09 14:05 . 2004-07-26 14:16 476320 ------w- c:\windows\system32\ImagXpr7.dll
2010-05-09 14:05 . 2004-07-26 14:16 471040 ------w- c:\windows\system32\ImagXRA7.dll
2010-05-09 14:05 . 2004-07-26 14:16 262144 ------w- c:\windows\system32\ImagXR7.dll
2010-05-09 14:05 . 2004-07-26 14:16 1568768 ------w- c:\windows\system32\ImagX7.dll
2010-05-09 14:05 . 2001-07-09 08:50 155648 ----a-w- c:\windows\system32\NeroCheck.exe
2010-05-07 17:58 . 2010-05-07 17:58 -------- d-----w- c:\program files\ESET
2010-05-05 20:44 . 2010-05-05 20:46 -------- d-----w- c:\program files\FSViewer42
2010-05-05 19:00 . 2010-05-05 19:00 -------- d-----w- c:\program files\Aplikace MB
2010-05-05 17:04 . 2010-05-05 17:04 -------- d-----w- c:\program files\Microsoft ActiveSync
2010-05-05 17:00 . 2010-05-05 17:01 -------- d-----w- c:\program files\Efficasoft Mobile Express
2010-05-05 14:31 . 2010-05-05 14:31 -------- d-----w- c:\windows\system32\Lang
2010-05-05 13:20 . 2010-05-05 13:20 -------- d-----w- c:\windows\system32\cs
2010-05-05 13:20 . 2010-05-05 13:20 -------- d-----w- c:\windows\l2schemas
2010-05-05 13:20 . 2010-05-05 13:20 -------- d-----w- c:\windows\system32\bits
2010-05-05 13:09 . 2010-05-05 13:09 -------- d-sh--w- c:\documents and settings\Jirka\IECompatCache
2010-05-05 13:08 . 2010-05-05 13:08 -------- d-sh--w- c:\documents and settings\Jirka\PrivacIE
2010-05-05 13:06 . 2010-05-05 13:06 -------- d-sh--w- c:\documents and settings\NetworkService\IETldCache
2010-05-05 13:03 . 2010-05-05 13:03 -------- d-sh--w- c:\documents and settings\Jirka\IETldCache
2010-05-05 12:03 . 2010-02-25 09:48 11070976 -c----w- c:\windows\system32\dllcache\ieframe.dll
2010-05-05 12:03 . 2010-02-25 06:18 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2010-05-05 12:03 . 2010-02-25 06:18 594432 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2010-05-05 12:03 . 2010-02-25 06:18 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2010-05-05 12:03 . 2010-02-25 06:18 1985536 -c----w- c:\windows\system32\dllcache\iertutil.dll
2010-05-05 12:03 . 2010-02-25 06:18 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2010-05-05 12:03 . 2010-05-05 12:03 -------- d-----w- c:\windows\ie8updates
2010-05-05 12:03 . 2010-02-16 04:50 64000 -c----w- c:\windows\system32\dllcache\iecompat.dll
2010-05-05 12:02 . 2010-05-05 13:20 -------- d-----w- c:\windows\system32\cs-CZ
2010-05-05 12:02 . 2010-05-05 12:02 -------- dc-h--w- c:\windows\ie8
2010-05-05 11:57 . 2010-05-05 11:57 -------- d-----w- c:\program files\Autodesk
2010-05-05 11:51 . 2008-04-14 03:22 20992 ------w- c:\windows\system32\spupdwxp.exe
2010-05-05 11:45 . 2009-10-23 15:28 3558912 -c----w- c:\windows\system32\dllcache\moviemk.exe
2010-05-05 11:43 . 2009-08-06 17:23 274288 ----a-w- c:\windows\system32\mucltui.dll
2010-05-05 09:01 . 2003-11-17 04:24 208896 ------w- c:\windows\system32\SSRemove.Exe
2010-05-05 09:01 . 2005-05-15 21:31 20622 ----a-w- c:\windows\system32\XRXS2LMK.DLL
2010-05-05 09:01 . 2005-05-15 21:31 57344 ----a-w- c:\windows\system32\SSCoInst.dll
2010-05-05 09:01 . 2005-05-15 21:31 151552 ----a-w- c:\windows\system32\SSCoInst.exe
2010-05-05 09:01 . 2010-05-05 09:01 -------- d-----w- c:\windows\Xerox
2010-05-05 09:01 . 2003-07-29 00:57 40448 ------w- c:\windows\system32\drivers\Dgivecp.Sys
2010-05-03 19:49 . 2010-05-03 19:49 -------- d-----w- c:\program files\MPC
2010-05-03 19:48 . 2010-03-15 09:31 165376 ----a-w- c:\windows\system32\unrar.dll
2010-05-03 19:47 . 2010-05-03 19:48 -------- d-----w- c:\program files\K-Lite Codec Pack
2010-05-03 19:45 . 2004-01-11 22:00 348160 ----a-w- c:\windows\system32\msvcr71.dll
2010-05-03 19:45 . 2003-03-19 03:14 499712 ----a-w- c:\windows\system32\msvcp71.dll
2010-05-03 18:18 . 2008-04-13 18:46 19200 ----a-w- c:\windows\system32\drivers\wstcodec.sys
2010-05-03 18:17 . 2008-04-13 18:46 85248 ----a-w- c:\windows\system32\drivers\nabtsfec.sys
2010-05-03 18:16 . 2008-04-13 18:46 11136 ----a-w- c:\windows\system32\drivers\slip.sys
2010-05-03 18:15 . 2008-04-13 18:39 5504 ----a-w- c:\windows\system32\drivers\mstee.sys
2010-05-03 18:15 . 2008-04-13 18:46 10880 ----a-w- c:\windows\system32\drivers\ndisip.sys
2010-05-03 18:15 . 2008-04-13 18:46 15232 ----a-w- c:\windows\system32\drivers\streamip.sys
2010-05-03 17:34 . 2008-04-13 18:46 17024 ----a-w- c:\windows\system32\drivers\ccdecode.sys
2010-05-03 17:31 . 2008-04-14 03:22 54272 ----a-w- c:\windows\system32\vfwwdm32.dll
2010-05-03 17:31 . 2008-04-13 18:46 121984 ----a-w- c:\windows\system32\drivers\usbvideo.sys
2010-05-03 15:41 . 2010-05-03 15:41 -------- d-----w- c:\program files\GIGABYTE
2010-05-03 15:41 . 1998-10-02 17:00 327168 ----a-w- c:\windows\IsUninst.exe
2010-05-03 15:14 . 2010-05-03 15:15 -------- d-----w- c:\program files\PopTray
2010-05-03 15:06 . 2010-05-09 18:13 -------- d--h--r- c:\documents and settings\All Users\Data aplikací
2010-05-03 15:06 . 2010-05-03 15:08 -------- d--h--r- c:\documents and settings\Default User\Data aplikací
2010-05-03 15:05 . 2010-05-05 14:03 -------- d--h--w- c:\documents and settings\Default User
2010-05-03 15:05 . 2010-05-03 13:14 -------- d-----w- c:\documents and settings\All Users
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-05-12 20:36 . 2001-10-25 12:00 59960 ----a-w- c:\windows\system32\perfc005.dat
2010-05-12 20:36 . 2001-10-25 12:00 350270 ----a-w- c:\windows\system32\perfh005.dat
2010-05-12 18:08 . 2010-05-03 14:40 -------- d-----w- c:\program files\Mozilla Thunderbird
2010-05-09 11:44 . 2010-05-03 13:04 2740 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2010-05-06 08:36 . 2010-05-03 13:35 221568 ------w- c:\windows\system32\MpSigStub.exe
2010-05-05 13:21 . 2010-05-03 13:04 8972 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2010-05-05 09:01 . 2010-05-03 14:15 -------- d-----w- c:\program files\Common Files\InstallShield
2010-05-03 19:28 . 2010-05-03 14:03 -------- d-----w- c:\program files\ProfiCAD
2010-05-03 15:27 . 2010-05-03 14:14 15600 ----a-w- c:\windows\gdrv.sys
2010-05-03 14:52 . 2010-05-03 14:52 0 ----a-w- c:\windows\system32\SET106.tmp
2010-05-03 14:52 . 2010-05-03 14:52 0 ----a-w- c:\windows\system32\SET103.tmp
2010-05-03 14:52 . 2010-05-03 14:52 0 ----a-w- c:\windows\system32\SET102.tmp
2010-05-03 14:51 . 2010-05-03 14:51 -------- d-----w- c:\program files\OpenOffice.org 3
2010-05-03 14:16 . 2010-05-03 14:15 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-05-03 14:15 . 2010-05-03 14:15 -------- d-----w- c:\program files\Realtek
2010-05-03 14:15 . 2010-05-03 14:15 315392 ----a-w- c:\windows\HideWin.exe
2010-05-03 14:02 . 2010-05-03 14:02 -------- d-----w- c:\program files\Common Files\Adobe
2010-05-03 13:42 . 2010-05-03 13:42 0 ----a-w- c:\windows\nsreg.dat
2010-05-03 13:38 . 2010-05-03 13:37 -------- d-----w- c:\program files\NVIDIA Corporation
2010-05-03 13:30 . 2010-05-03 13:30 -------- d-----w- c:\program files\Microsoft Security Essentials
2010-05-03 13:13 . 2010-05-03 13:01 21812 ----a-w- c:\windows\system32\emptyregdb.dat
2010-05-03 13:05 . 2010-05-03 13:05 -------- d-----w- c:\program files\microsoft frontpage
2010-05-03 13:04 . 2010-05-03 13:04 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-04-03 20:55 . 2010-04-03 20:55 6432128 ----a-w- c:\windows\system32\nv4_disp.dll
2010-04-03 20:55 . 2010-04-03 20:55 61440 ----a-w- c:\windows\system32\OpenCL.dll
2010-04-03 20:55 . 2010-04-03 20:55 4075520 ----a-w- c:\windows\system32\nvcuda.dll
2010-04-03 20:55 . 2010-04-03 20:55 2646632 ----a-w- c:\windows\system32\nvcuvenc.dll
2010-04-03 20:55 . 2010-04-03 20:55 227944 ----a-w- c:\windows\system32\nvcodins.dll
2010-04-03 20:55 . 2010-04-03 20:55 227944 ----a-w- c:\windows\system32\nvcod.dll
2010-04-03 20:55 . 2010-04-03 20:55 2183470 ----a-w- c:\windows\system32\nvdata.bin
2010-04-03 20:55 . 2010-04-03 20:55 2030184 ----a-w- c:\windows\system32\nvcuvid.dll
2010-04-03 20:55 . 2010-04-03 20:55 14757888 ----a-w- c:\windows\system32\nvoglnt.dll
2010-04-03 20:55 . 2010-04-03 20:55 11647592 ----a-w- c:\windows\system32\nvcompiler.dll
2010-04-03 20:55 . 2010-04-03 20:55 1097728 ----a-w- c:\windows\system32\nvapi.dll
2010-04-03 20:55 . 2010-04-03 20:55 10232128 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2010-04-03 17:23 . 2010-04-03 17:23 278120 ----a-w- c:\windows\system32\nvmccs.dll
2010-04-03 17:23 . 2010-04-03 17:23 154216 ----a-w- c:\windows\system32\nvsvc32.exe
2010-04-03 17:23 . 2010-04-03 17:23 145000 ----a-w- c:\windows\system32\nvcolor.exe
2010-04-03 17:23 . 2010-04-03 17:23 13670504 ----a-w- c:\windows\system32\nvcpl.dll
2010-04-03 17:23 . 2010-04-03 17:23 110696 ----a-w- c:\windows\system32\nvmctray.dll
2010-04-03 17:22 . 2010-04-03 17:22 81920 ----a-w- c:\windows\system32\nvwddi.dll
2010-03-10 06:17 . 2004-08-17 13:49 420352 ----a-w- c:\windows\system32\vbscript.dll
2010-02-25 06:18 . 2004-08-17 13:49 916480 ----a-w- c:\windows\system32\wininet.dll
2010-02-24 13:11 . 2004-08-03 21:15 455680 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2010-02-16 19:08 . 2004-08-17 15:45 2026496 ----a-w- c:\windows\system32\ntkrnlpa.exe
2010-02-16 19:08 . 2004-08-17 13:45 2148352 ----a-w- c:\windows\system32\ntoskrnl.exe
2010-02-12 10:03 . 2010-05-03 14:03 293376 ------w- c:\windows\system32\browserchoice.exe
2010-02-12 04:35 . 2004-08-17 13:49 100864 ----a-w- c:\windows\system32\6to4svc.dll
.
------- Sigcheck -------
[-] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\atapi.sys
[-] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\atapi.sys
[-] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys
[-] 2004-08-03 . CDFE4411A69C224BD1D11B2DA92DAC51 . 95360 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\atapi.sys
[-] 2008-04-13 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\asyncmac.sys
[-] 2008-04-13 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\asyncmac.sys
[-] 2008-04-13 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys
[-] 2004-08-03 . 02000ABF34AF4C218C35D257024807D6 . 14336 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\asyncmac.sys
[-] 2001-10-25 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\dllcache\beep.sys
[-] 2001-10-25 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys
[-] 2008-04-14 . 1B6162FE7F66B1A71A4B70F941C4AA9B . 24576 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\kbdclass.sys
[-] 2008-04-14 . 1B6162FE7F66B1A71A4B70F941C4AA9B . 24576 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\kbdclass.sys
[-] 2008-04-14 . 1B6162FE7F66B1A71A4B70F941C4AA9B . 24576 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys
[-] 2004-08-17 . 6F877BF8DC01A550CD666F3BEDB2213C . 24576 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\kbdclass.sys
[-] 2008-04-13 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ndis.sys
[-] 2008-04-13 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\ndis.sys
[-] 2008-04-13 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys
[-] 2004-08-03 . 558635D3AF1C7546D26067D5D9B6959E . 182912 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ndis.sys
[-] 2008-04-13 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ntfs.sys
[-] 2008-04-13 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\ntfs.sys
[-] 2008-04-13 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys
[-] 2004-08-03 . B78BE402C3F63DD55521F73876951CDD . 574592 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ntfs.sys
[-] 2001-10-25 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\dllcache\null.sys
[-] 2001-10-25 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys
[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp3qfe\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp3gdr\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
[-] 2008-06-20 . 2A5554FC5B1E04E131230E3CE035C3F9 . 360320 . . [5.1.2600.3394] . . c:\windows\$NtServicePackUninstall$\tcpip.sys
[-] 2008-06-20 . 2A5554FC5B1E04E131230E3CE035C3F9 . 360320 . . [5.1.2600.3394] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp2gdr\tcpip.sys
[-] 2008-06-20 . 744E57C99232201AE98C49168B918F48 . 360960 . . [5.1.2600.3394] . . c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip.sys
[-] 2008-06-20 . 744E57C99232201AE98C49168B918F48 . 360960 . . [5.1.2600.3394] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp2qfe\tcpip.sys
[-] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys
[-] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tcpip.sys
[-] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\tcpip.sys
[-] 2004-08-03 . 9F4B36614A0FC234525BA224957DE55C . 359040 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB951748_0$\tcpip.sys
[-] 2008-04-14 . 249276D3EF1E74B992299CB96099E4D7 . 77824 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\browser.dll
[-] 2008-04-14 . 249276D3EF1E74B992299CB96099E4D7 . 77824 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\browser.dll
[-] 2008-04-14 . 249276D3EF1E74B992299CB96099E4D7 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\browser.dll
[-] 2004-08-17 . F219E27E88107A50544153898DD8178E . 77312 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\browser.dll
[-] 2008-04-14 . ED0A176354487CEED65B80A7148AB739 . 13312 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\lsass.exe
[-] 2008-04-14 . ED0A176354487CEED65B80A7148AB739 . 13312 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\lsass.exe
[-] 2008-04-14 . ED0A176354487CEED65B80A7148AB739 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe
[-] 2004-08-17 . 82A362FE1D4980B71B588D9C10748511 . 13312 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\lsass.exe
[-] 2008-04-14 . 72E1E9E2977BE08BDEEDB6D8FD9D4D40 . 198144 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\netman.dll
[-] 2008-04-14 . 72E1E9E2977BE08BDEEDB6D8FD9D4D40 . 198144 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\netman.dll
[-] 2008-04-14 . 72E1E9E2977BE08BDEEDB6D8FD9D4D40 . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll
[-] 2004-08-17 . AF342D2781225A8769686E0D47E3123E . 198144 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\netman.dll
[-] 2008-04-14 . 19395D092FD85DDC2D9C7729CF5A2AC8 . 409088 . . [6.7.2600.5512] . . c:\windows\ServicePackFiles\i386\qmgr.dll
[-] 2008-04-14 . 19395D092FD85DDC2D9C7729CF5A2AC8 . 409088 . . [6.7.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\qmgr.dll
[-] 2008-04-14 . 19395D092FD85DDC2D9C7729CF5A2AC8 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll
[-] 2008-04-14 . 19395D092FD85DDC2D9C7729CF5A2AC8 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\bits\qmgr.dll
[-] 2004-08-17 . E774A26610EC92674273486612C11CFC . 382464 . . [6.6.2600.2180] . . c:\windows\$NtServicePackUninstall$\qmgr.dll
[-] 2008-04-14 . CB1090BCA0E7B40D0B5B4E4D66531809 . 57856 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\spoolsv.exe
[-] 2008-04-14 . CB1090BCA0E7B40D0B5B4E4D66531809 . 57856 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\spoolsv.exe
[-] 2008-04-14 . CB1090BCA0E7B40D0B5B4E4D66531809 . 57856 . . [5.1.2600.5512] . . c:\windows\system32\spoolsv.exe
[-] 2004-08-17 . 21B6FAA88044A41640E03EBB68BE93E8 . 57856 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\spoolsv.exe
[-] 2008-04-14 . CDDB1F8E1AEA356F3AD106F2CF9B7FEA . 507904 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\winlogon.exe
[-] 2008-04-14 . CDDB1F8E1AEA356F3AD106F2CF9B7FEA . 507904 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\winlogon.exe
[-] 2008-04-14 . CDDB1F8E1AEA356F3AD106F2CF9B7FEA . 507904 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe
[-] 2004-08-17 . 221C29AE1B4CC61D11D8B27DE78B2307 . 502272 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\winlogon.exe
[-] 2008-04-14 . 4F993463DC5F3F80D77A3D34D7BFBFED . 617472 . . [5.82] . . c:\windows\ServicePackFiles\i386\comctl32.dll
[-] 2008-04-14 . 4F993463DC5F3F80D77A3D34D7BFBFED . 617472 . . [5.82] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\comctl32.dll
[-] 2008-04-14 . 4F993463DC5F3F80D77A3D34D7BFBFED . 617472 . . [5.82] . . c:\windows\system32\comctl32.dll
[-] 2008-04-14 . D7B7AE36A2EBA312AC4B53862019B3F5 . 1054208 . . [6.0] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\asms\60\msft\windows\common\controls\comctl32.dll
[-] 2004-08-17 . 876C658C44F2BF4AF050E5534A9F066F . 611328 . . [5.82] . . c:\windows\$NtServicePackUninstall$\comctl32.dll
[-] 2008-04-14 . F3AB0933CBD166D271992F411C27CCAF . 62464 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\cryptsvc.dll
[-] 2008-04-14 . F3AB0933CBD166D271992F411C27CCAF . 62464 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\cryptsvc.dll
[-] 2008-04-14 . F3AB0933CBD166D271992F411C27CCAF . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll
[-] 2004-08-17 . 70D2A1756F4B2067658A186C963FCABD . 60416 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\cryptsvc.dll
[-] 2008-07-07 20:32 . 398314DF0B21338C4996B469101750D1 . 253952 . . [2001.12.4414.320] . . c:\windows\$NtServicePackUninstall$\es.dll
[-] 2008-07-07 20:32 . 398314DF0B21338C4996B469101750D1 . 253952 . . [2001.12.4414.320] . . c:\windows\SoftwareDistribution\Download\238cf948db525111b0a69f7144be46ee\sp2gdr\es.dll
[-] 2008-07-07 20:29 . A371F11EF07653591C8DE26AFB13CE7F . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3GDR\es.dll
[-] 2008-07-07 20:29 . A371F11EF07653591C8DE26AFB13CE7F . 253952 . . [2001.12.4414.706] . . c:\windows\SoftwareDistribution\Download\238cf948db525111b0a69f7144be46ee\sp3gdr\es.dll
[-] 2008-07-07 20:29 . A371F11EF07653591C8DE26AFB13CE7F . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll
[-] 2008-07-07 20:29 . A371F11EF07653591C8DE26AFB13CE7F . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll
[-] 2008-07-07 20:25 . BE68EA4457E2E5717231CF91BE5448E0 . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
[-] 2008-07-07 20:25 . BE68EA4457E2E5717231CF91BE5448E0 . 253952 . . [2001.12.4414.706] . . c:\windows\SoftwareDistribution\Download\238cf948db525111b0a69f7144be46ee\sp3qfe\es.dll
[-] 2008-07-07 20:19 . 3440C414044935B124B5821C0994B37F . 253952 . . [2001.12.4414.320] . . c:\windows\$hf_mig$\KB950974\SP2QFE\es.dll
[-] 2008-07-07 20:19 . 3440C414044935B124B5821C0994B37F . 253952 . . [2001.12.4414.320] . . c:\windows\SoftwareDistribution\Download\238cf948db525111b0a69f7144be46ee\sp2qfe\es.dll
[-] 2008-04-14 03:21 . 260C69FD67687B0DC062FC3D31655857 . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll
[-] 2008-04-14 03:21 . 260C69FD67687B0DC062FC3D31655857 . 246272 . . [2001.12.4414.701] . . c:\windows\ServicePackFiles\i386\es.dll
[-] 2008-04-14 03:21 . 260C69FD67687B0DC062FC3D31655857 . 246272 . . [2001.12.4414.701] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\es.dll
[-] 2004-08-17 13:49 . 972378B907070F64932A87C90A035487 . 243200 . . [2001.12.4414.258] . . c:\windows\$NtUninstallKB950974_0$\es.dll
[-] 2008-04-14 . 6C60CA8AC7470AC01CFD3D24C7283CD1 . 110080 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\imm32.dll
[-] 2008-04-14 . 6C60CA8AC7470AC01CFD3D24C7283CD1 . 110080 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\imm32.dll
[-] 2008-04-14 . 6C60CA8AC7470AC01CFD3D24C7283CD1 . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll
[-] 2004-08-17 . 2413635113361E54B62F0C40E4E4DAE6 . 110080 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\imm32.dll
[-] 2008-04-14 . 7FDE9FC15765E02B23E1756930165AD1 . 19968 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\linkinfo.dll
[-] 2008-04-14 . 7FDE9FC15765E02B23E1756930165AD1 . 19968 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\linkinfo.dll
[-] 2008-04-14 . 7FDE9FC15765E02B23E1756930165AD1 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll
[-] 2004-08-17 . EE1F842DB2AE412136643B0814D770A6 . 18944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\linkinfo.dll
[-] 2008-04-14 . C66BA7BD13C8FB8BEC4863B88641C763 . 22016 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\lpk.dll
[-] 2008-04-14 . C66BA7BD13C8FB8BEC4863B88641C763 . 22016 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\lpk.dll
[-] 2008-04-14 . C66BA7BD13C8FB8BEC4863B88641C763 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll
[-] 2004-08-17 . BFE8DC7AAE7CB1C86243D77B340DC304 . 22016 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\lpk.dll
[-] 2010-02-26 . 5705F728CDFC29147679F6DC68702397 . 3094016 . . [6.00.2900.3676] . . c:\windows\$hf_mig$\KB980182\SP2QFE\mshtml.dll
[-] 2010-02-26 . 5705F728CDFC29147679F6DC68702397 . 3094016 . . [6.00.2900.3676] . . c:\windows\SoftwareDistribution\Download\b1b4e46ec95abfe1dfdb832136d8e792\sp2qfe\mshtml.dll
[-] 2010-02-26 . 0559E242E71D9FAA60AD409A1CFF1811 . 3086336 . . [6.00.2900.3676] . . c:\windows\ie8\mshtml.dll
[-] 2010-02-26 . 0559E242E71D9FAA60AD409A1CFF1811 . 3086336 . . [6.00.2900.3676] . . c:\windows\SoftwareDistribution\Download\b1b4e46ec95abfe1dfdb832136d8e792\sp2gdr\mshtml.dll
[-] 2010-02-26 . 1125069D3487AF4D295F9B8B352C9E11 . 3094016 . . [6.00.2900.5945] . . c:\windows\$hf_mig$\KB980182\SP3GDR\mshtml.dll
[-] 2010-02-26 . 1125069D3487AF4D295F9B8B352C9E11 . 3094016 . . [6.00.2900.5945] . . c:\windows\SoftwareDistribution\Download\b1b4e46ec95abfe1dfdb832136d8e792\sp3gdr\mshtml.dll
[-] 2010-02-26 . 23CB63CC448E14C4069E9CE40483E987 . 3094528 . . [6.00.2900.5945] . . c:\windows\$hf_mig$\KB980182\SP3QFE\mshtml.dll
[-] 2010-02-26 . 23CB63CC448E14C4069E9CE40483E987 . 3094528 . . [6.00.2900.5945] . . c:\windows\SoftwareDistribution\Download\b1b4e46ec95abfe1dfdb832136d8e792\sp3qfe\mshtml.dll
[-] 2010-02-25 . F6B19C3520F8F33ED4E86B97E5FED45A . 5944832 . . [8.00.6001.18904] . . c:\windows\SoftwareDistribution\Download\5a7f103a71d22d2518560b8bdb5ca090\SP3GDR\mshtml.dll
[-] 2010-02-25 . F6B19C3520F8F33ED4E86B97E5FED45A . 5944832 . . [8.00.6001.18904] . . c:\windows\system32\mshtml.dll
[-] 2010-02-25 . F6B19C3520F8F33ED4E86B97E5FED45A . 5944832 . . [8.00.6001.18904] . . c:\windows\system32\dllcache\mshtml.dll
[-] 2010-02-25 . AC93856CC1D10E74986EA4E70D90748F . 5946880 . . [8.00.6001.22995] . . c:\windows\$hf_mig$\KB980182-IE8\SP3QFE\mshtml.dll
[-] 2010-02-25 . AC93856CC1D10E74986EA4E70D90748F . 5946880 . . [8.00.6001.22995] . . c:\windows\SoftwareDistribution\Download\5a7f103a71d22d2518560b8bdb5ca090\SP3QFE\mshtml.dll
[-] 2009-03-08 . F4B96DD7191F9876C5C4DE558F67B9A6 . 5937152 . . [8.00.6001.18702] . . c:\windows\ie8updates\KB980182-IE8\mshtml.dll
[-] 2008-04-14 . DAF9947DE2A6EA20AE524B7C50487E57 . 3066880 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\mshtml.dll
[-] 2008-04-14 . DAF9947DE2A6EA20AE524B7C50487E57 . 3066880 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\mshtml.dll
[-] 2004-08-17 . EF74351C9098210CC9C1A3679DB62041 . 3003392 . . [6.00.2900.2180] . . c:\windows\$NtUninstallKB980182$\mshtml.dll
[-] 2008-04-14 . D165DFCB4EA452510E53416F573018BB . 343040 . . [7.0.2600.5512] . . c:\windows\ServicePackFiles\i386\msvcrt.dll
[-] 2008-04-14 . D165DFCB4EA452510E53416F573018BB . 343040 . . [7.0.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\msvcrt.dll
[-] 2008-04-14 . D165DFCB4EA452510E53416F573018BB . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll
[-] 2008-04-14 . EC8D5E09C6CA5F52858A5EB71F308FDF . 343040 . . [7.0.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\asms\70\msft\windows\mswincrt\msvcrt.dll
[-] 2004-08-17 . 91CC3E4CCDBBF8E224182C76C87E454F . 343040 . . [7.0.2600.2180] . . c:\windows\$NtServicePackUninstall$\msvcrt.dll
[-] 2008-06-20 . 1289B7611CCD6CB27596AE92CBF03E35 . 247296 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3GDR\mswsock.dll
[-] 2008-06-20 . 1289B7611CCD6CB27596AE92CBF03E35 . 247296 . . [5.1.2600.5625] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp3gdr\mswsock.dll
[-] 2008-06-20 . 1289B7611CCD6CB27596AE92CBF03E35 . 247296 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll
[-] 2008-06-20 . 1289B7611CCD6CB27596AE92CBF03E35 . 247296 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll
[-] 2008-06-20 . B6CEC406351EA5EF131416D5F52D006F . 247296 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll
[-] 2008-06-20 . B6CEC406351EA5EF131416D5F52D006F . 247296 . . [5.1.2600.5625] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp3qfe\mswsock.dll
[-] 2008-06-20 . A6E79B60AC73241E5721AB6A573D2B24 . 247296 . . [5.1.2600.3394] . . c:\windows\$NtServicePackUninstall$\mswsock.dll
[-] 2008-06-20 . A6E79B60AC73241E5721AB6A573D2B24 . 247296 . . [5.1.2600.3394] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp2gdr\mswsock.dll
[-] 2008-06-20 . 37BABA5DBD9027837FDC27E5D6EF33E1 . 247296 . . [5.1.2600.3394] . . c:\windows\$hf_mig$\KB951748\SP2QFE\mswsock.dll
[-] 2008-06-20 . 37BABA5DBD9027837FDC27E5D6EF33E1 . 247296 . . [5.1.2600.3394] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp2qfe\mswsock.dll
[-] 2008-04-14 . AAC97DAB5F8A0573CF10E0EAC42A7724 . 247296 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\mswsock.dll
[-] 2008-04-14 . AAC97DAB5F8A0573CF10E0EAC42A7724 . 247296 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\mswsock.dll
[-] 2008-04-14 . AAC97DAB5F8A0573CF10E0EAC42A7724 . 247296 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\mswsock.dll
[-] 2004-08-17 . 64C078BD4EFD441C3F159EDC5EA4420A . 247296 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB951748_0$\mswsock.dll
[7] 2009-02-06 . 1F43B8C0F4C767FBED89711C30E704D9 . 408064 . . [5.1.2600.3520] . . c:\windows\$hf_mig$\KB968389\SP2QFE\netlogon.dll
[7] 2009-02-06 . 1F43B8C0F4C767FBED89711C30E704D9 . 408064 . . [5.1.2600.3520] . . c:\windows\$hf_mig$\KB975467\SP2QFE\netlogon.dll
[7] 2009-02-06 . 1F43B8C0F4C767FBED89711C30E704D9 . 408064 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\2c72bf78e3c24debcddfa92e9f03ffa3\sp2qfe\netlogon.dll
[7] 2009-02-06 . 1F43B8C0F4C767FBED89711C30E704D9 . 408064 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\9778f8cdabb029412b74f168c04bff53\sp2qfe\netlogon.dll
[-] 2008-04-14 . C2ED0E3408F50BBC149D4F0936E67832 . 407040 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\netlogon.dll
[-] 2008-04-14 . C2ED0E3408F50BBC149D4F0936E67832 . 407040 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\netlogon.dll
[-] 2008-04-14 . C2ED0E3408F50BBC149D4F0936E67832 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll
[-] 2004-08-17 . 2591CADAEF7D2242039255028E577688 . 407040 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\netlogon.dll
[-] 2008-04-14 . 9FA69781CAA7A1DA981A24F240A61A60 . 17408 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\powrprof.dll
[-] 2008-04-14 . 9FA69781CAA7A1DA981A24F240A61A60 . 17408 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\powrprof.dll
[-] 2008-04-14 . 9FA69781CAA7A1DA981A24F240A61A60 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll
[-] 2004-08-17 . 134B95A1D8FAFD74A68E4B2116DEFA7D . 17408 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\powrprof.dll
[-] 2008-04-14 . 830CE8951C71F361D7D2F38416CC8BC1 . 185856 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\scecli.dll
[-] 2008-04-14 . 830CE8951C71F361D7D2F38416CC8BC1 . 185856 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\scecli.dll
[-] 2008-04-14 . 830CE8951C71F361D7D2F38416CC8BC1 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll
[-] 2004-08-17 . 07119058D451CB7EA4317BCFDA8599A6 . 184832 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\scecli.dll
[-] 2008-04-14 . 5EE949255BABC0B17C09DDB2E59E3878 . 5120 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\sfc.dll
[-] 2008-04-14 . 5EE949255BABC0B17C09DDB2E59E3878 . 5120 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\sfc.dll
[-] 2008-04-14 . 5EE949255BABC0B17C09DDB2E59E3878 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll
[-] 2004-08-17 . 6CC2D21488333133AE0C9F44F6051CB7 . 5120 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\sfc.dll
[-] 2008-04-14 . BE4A520E29B6391F49E79CCC52044D93 . 14336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\svchost.exe
[-] 2008-04-14 . BE4A520E29B6391F49E79CCC52044D93 . 14336 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\svchost.exe
[-] 2008-04-14 . BE4A520E29B6391F49E79CCC52044D93 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe
[-] 2004-08-17 . DFBA2915B0BF58ABB288CD4C9318CB3F . 14336 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\svchost.exe
[-] 2008-04-14 . C2546CD7A398476F9DF5614B2AE160E8 . 249856 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tapisrv.dll
[-] 2008-04-14 . C2546CD7A398476F9DF5614B2AE160E8 . 249856 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\tapisrv.dll
[-] 2008-04-14 . C2546CD7A398476F9DF5614B2AE160E8 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll
[-] 2004-08-17 . 37162D29CD61519E6F5EA0DE99786FF6 . 246272 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\tapisrv.dll
[-] 2008-04-14 . E16E0990967374E76F3E40CACAFD3D53 . 578560 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\user32.dll
[-] 2008-04-14 . E16E0990967374E76F3E40CACAFD3D53 . 578560 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\user32.dll
[-] 2008-04-14 . E16E0990967374E76F3E40CACAFD3D53 . 578560 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll
[-] 2004-08-17 . 1B4CCC59980DA34E75F20E42B283B027 . 577024 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\user32.dll
[-] 2008-04-14 . 7DC1830F22E7D275B438127B68030239 . 26112 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\userinit.exe
[-] 2008-04-14 . 7DC1830F22E7D275B438127B68030239 . 26112 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\userinit.exe
[-] 2008-04-14 . 7DC1830F22E7D275B438127B68030239 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe
[-] 2004-08-17 . 836F7960362FF95C5D49E40B891F2CFC . 24576 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\userinit.exe
[-] 2010-02-26 . B1E82790D6EEA2ECC6FE75FF4AD61F3B . 663040 . . [6.00.2900.3676] . . c:\windows\ie8\wininet.dll
[-] 2010-02-26 . B1E82790D6EEA2ECC6FE75FF4AD61F3B . 663040 . . [6.00.2900.3676] . . c:\windows\SoftwareDistribution\Download\b1b4e46ec95abfe1dfdb832136d8e792\sp2gdr\wininet.dll
[-] 2010-02-26 . 4F1A0474DD6E965BD72F89633AFD24A2 . 669696 . . [6.00.2900.3676] . . c:\windows\$hf_mig$\KB980182\SP2QFE\wininet.dll
[-] 2010-02-26 . 4F1A0474DD6E965BD72F89633AFD24A2 . 669696 . . [6.00.2900.3676] . . c:\windows\SoftwareDistribution\Download\b1b4e46ec95abfe1dfdb832136d8e792\sp2qfe\wininet.dll
[-] 2010-02-26 . 6626FD55F67A8AE1335771D41A11EF13 . 668160 . . [6.00.2900.5945] . . c:\windows\$hf_mig$\KB980182\SP3GDR\wininet.dll
[-] 2010-02-26 . 6626FD55F67A8AE1335771D41A11EF13 . 668160 . . [6.00.2900.5945] . . c:\windows\SoftwareDistribution\Download\b1b4e46ec95abfe1dfdb832136d8e792\sp3gdr\wininet.dll
[-] 2010-02-26 . FD0F4E4BC28B18715BC1323ACD48E1A6 . 669696 . . [6.00.2900.5945] . . c:\windows\$hf_mig$\KB980182\SP3QFE\wininet.dll
[-] 2010-02-26 . FD0F4E4BC28B18715BC1323ACD48E1A6 . 669696 . . [6.00.2900.5945] . . c:\windows\SoftwareDistribution\Download\b1b4e46ec95abfe1dfdb832136d8e792\sp3qfe\wininet.dll
[-] 2010-02-25 . 4A4C190879347A0064731F39610F1F72 . 916480 . . [8.00.6001.18904] . . c:\windows\SoftwareDistribution\Download\5a7f103a71d22d2518560b8bdb5ca090\SP3GDR\wininet.dll
[-] 2010-02-25 . 4A4C190879347A0064731F39610F1F72 . 916480 . . [8.00.6001.18904] . . c:\windows\system32\wininet.dll
[-] 2010-02-25 . 4A4C190879347A0064731F39610F1F72 . 916480 . . [8.00.6001.18904] . . c:\windows\system32\dllcache\wininet.dll
[-] 2010-02-25 . 2E6504E28C7E0F753F68731861A94214 . 919040 . . [8.00.6001.22995] . . c:\windows\$hf_mig$\KB980182-IE8\SP3QFE\wininet.dll
[-] 2010-02-25 . 2E6504E28C7E0F753F68731861A94214 . 919040 . . [8.00.6001.22995] . . c:\windows\SoftwareDistribution\Download\5a7f103a71d22d2518560b8bdb5ca090\SP3QFE\wininet.dll
[-] 2009-03-08 . 6CE32F7778061CCC5814D5E0F282D369 . 914944 . . [8.00.6001.18702] . . c:\windows\ie8updates\KB980182-IE8\wininet.dll
[-] 2008-04-14 . 3FE5E65A7ED9EC98AEE9167CA07812D3 . 667136 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\wininet.dll
[-] 2008-04-14 . 3FE5E65A7ED9EC98AEE9167CA07812D3 . 667136 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\wininet.dll
[-] 2004-08-17 . 50D263E3454E8357D13BB598129185AD . 657408 . . [6.00.2900.2180] . . c:\windows\$NtUninstallKB980182$\wininet.dll
[-] 2008-04-14 . 951D473917C51F21496D914CF6E5DDD1 . 82432 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ws2_32.dll
[-] 2008-04-14 . 951D473917C51F21496D914CF6E5DDD1 . 82432 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\ws2_32.dll
[-] 2008-04-14 . 951D473917C51F21496D914CF6E5DDD1 . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll
[-] 2004-08-17 . 382E9B87F1282E697C67AF84E34E35E2 . 82944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ws2_32.dll
[-] 2008-04-14 . 27AFD587C462E280EE046B8CCA3C2CD1 . 1034240 . . [6.00.2900.5512] . . c:\windows\explorer.exe
[-] 2008-04-14 . D37B3FEE733382990D62C8C48EB6E2BB . 1034240 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\explorer.exe
[-] 2008-04-14 . 27AFD587C462E280EE046B8CCA3C2CD1 . 1034240 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\explorer.exe
[-] 2004-08-17 . 53114D57AB73A406AC7F602227781A99 . 1032704 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\explorer.exe
[-] 2008-04-14 . 35B91147124F64AC8081A2EDB9EA4DEE . 171008 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\srsvc.dll
[-] 2008-04-14 . 35B91147124F64AC8081A2EDB9EA4DEE . 171008 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\srsvc.dll
[-] 2008-04-14 . 35B91147124F64AC8081A2EDB9EA4DEE . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll
[-] 2004-08-17 . 3CD57F31A64D32FDB28918B16D1E6AAC . 170496 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\srsvc.dll
[-] 2008-04-14 . 278A14BEDEF58687EAF8BEC056A78D8B . 13824 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\wscntfy.exe
[-] 2008-04-14 . 278A14BEDEF58687EAF8BEC056A78D8B . 13824 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\wscntfy.exe
[-] 2008-04-14 . 278A14BEDEF58687EAF8BEC056A78D8B . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe
[-] 2004-08-17 . 93F75FF033BAA186D08115D73BFE3D32 . 13824 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\wscntfy.exe
[-] 2008-04-14 . EAA4BB9EDB3FB10CF8979FE65E63658F . 129024 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\xmlprov.dll
[-] 2008-04-14 . EAA4BB9EDB3FB10CF8979FE65E63658F . 129024 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\xmlprov.dll
[-] 2008-04-14 . EAA4BB9EDB3FB10CF8979FE65E63658F . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll
[-] 2004-08-17 . 9B835D4C64860B155A1701D5092EC9E4 . 129536 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\xmlprov.dll
[-] 2008-04-14 . 2EE99F67C930931EB404DADCE57E976E . 56320 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\eventlog.dll
[-] 2008-04-14 . 2EE99F67C930931EB404DADCE57E976E . 56320 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\eventlog.dll
[-] 2008-04-14 . 2EE99F67C930931EB404DADCE57E976E . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll
[-] 2004-08-17 . 6EB66066D5C0175320CFEA0A4C74C88F . 55808 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\eventlog.dll
[-] 2008-04-14 . 56A6034E7764E23D9114223EB3523925 . 1571840 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\sfcfiles.dll
[-] 2008-04-14 . 56A6034E7764E23D9114223EB3523925 . 1571840 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\sfcfiles.dll
[-] 2008-04-14 . 56A6034E7764E23D9114223EB3523925 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
[-] 2004-08-17 . 5CA2E2BA624D6F2C7A581C91E70394CB . 1548288 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\sfcfiles.dll
[-] 2008-04-14 . A756B8F0F7BAFBA6DFE39F7D169F2519 . 15360 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ctfmon.exe
[-] 2008-04-14 . A756B8F0F7BAFBA6DFE39F7D169F2519 . 15360 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\ctfmon.exe
[-] 2008-04-14 . A756B8F0F7BAFBA6DFE39F7D169F2519 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe
[-] 2004-08-17 . A5BAA91475167161DEA02BA3C4CA4F59 . 15360 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ctfmon.exe
[-] 2008-04-14 . B927443008910B412BEC72FC41C1BAD0 . 135168 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\shsvcs.dll
[-] 2008-04-14 . B927443008910B412BEC72FC41C1BAD0 . 135168 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\shsvcs.dll
[-] 2008-04-14 . B927443008910B412BEC72FC41C1BAD0 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\shsvcs.dll
[-] 2004-08-17 . 8BA76BD2A943F642F267A296A15776D2 . 134656 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\shsvcs.dll
[-] 2008-04-14 . 8F31505484A190D5B22274708799F4EC . 59904 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\regsvc.dll
[-] 2008-04-14 . 8F31505484A190D5B22274708799F4EC . 59904 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\regsvc.dll
[-] 2008-04-14 . 8F31505484A190D5B22274708799F4EC . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll
[-] 2004-08-17 . 5B21208FCF8970BB61FE98E19D828714 . 59904 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\regsvc.dll
[-] 2008-04-14 . 3FF232A7731621B8902D81D42418C93C . 192512 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\schedsvc.dll
[-] 2008-04-14 . 3FF232A7731621B8902D81D42418C93C . 192512 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\schedsvc.dll
[-] 2008-04-14 . 3FF232A7731621B8902D81D42418C93C . 192512 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll
[-] 2004-08-17 . 29AC93307C6182DBE336BCA314947F28 . 190976 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\schedsvc.dll
[-] 2008-04-14 . BECD5271DC4E3B7C3D035F790FCBC1E5 . 71680 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ssdpsrv.dll
[-] 2008-04-14 . BECD5271DC4E3B7C3D035F790FCBC1E5 . 71680 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\ssdpsrv.dll
[-] 2008-04-14 . BECD5271DC4E3B7C3D035F790FCBC1E5 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll
[-] 2004-08-17 . 88C28F53F53438DAFCD95E99C837C61E . 71680 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ssdpsrv.dll
[-] 2008-04-14 . A75DD6FC3DBEE4FFF5EBC9F2C28BB66E . 295936 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\termsrv.dll
[-] 2008-04-14 . A75DD6FC3DBEE4FFF5EBC9F2C28BB66E . 295936 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\termsrv.dll
[-] 2008-04-14 . A75DD6FC3DBEE4FFF5EBC9F2C28BB66E . 295936 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll
[-] 2004-08-17 . 2F5919F2F6EE7A845893D9C3AA2BC56A . 295936 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\termsrv.dll
[-] 2008-04-14 . 6B8E7A90E576D4FE308F97C69060A171 . 171008 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\appmgmts.dll
[-] 2008-04-14 . 6B8E7A90E576D4FE308F97C69060A171 . 171008 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\appmgmts.dll
[-] 2008-04-14 . 6B8E7A90E576D4FE308F97C69060A171 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\appmgmts.dll
[-] 2004-08-17 . 421184F91EAE5C6E78E653C6B32AAE84 . 171008 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\appmgmts.dll
[-] 2001-10-25 . AFDFF022A01F0B11C776F0860C3B282F . 11776 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys
[-] 2008-04-13 16:39 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\ServicePackFiles\i386\aec.sys
[-] 2008-04-13 16:39 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\aec.sys
[-] 2004-08-03 22:39 . 841F385C6CFAF66B58FBD898722BB4F0 . 142464 . . [5.1.2601.2078] . . c:\windows\system32\drivers\aec.sys
[-] 2008-04-13 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\agp440.sys
[-] 2008-04-13 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\agp440.sys
[-] 2008-04-13 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\system32\drivers\agp440.sys
[-] 2008-04-13 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ip6fw.sys
[-] 2008-04-13 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\ip6fw.sys
[-] 2008-04-13 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys
[-] 2004-08-03 . 4448006B6BC60E6C027932CFC38D6855 . 29056 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ip6fw.sys
[-] 2008-04-14 03:21 . 7C3351F60B759D5D917E68342AE3307C . 927504 . . [4.1.0.61] . . c:\windows\ServicePackFiles\i386\mfc40u.dll
[-] 2008-04-14 03:21 . 7C3351F60B759D5D917E68342AE3307C . 927504 . . [4.1.0.61] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\mfc40u.dll
[-] 2008-04-14 03:21 . 7C3351F60B759D5D917E68342AE3307C . 927504 . . [4.1.0.61] . . c:\windows\system32\mfc40u.dll
[-] 2001-10-25 12:00 . A9D81C87BEF253D4CE3A5F8CEE2526C4 . 924432 . . [4.1.6140] . . c:\windows\$NtServicePackUninstall$\mfc40u.dll
[-] 2008-04-14 . 221CD1C815B8A6B79389C3F5D1018DE8 . 33792 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\msgsvc.dll
[-] 2008-04-14 . 221CD1C815B8A6B79389C3F5D1018DE8 . 33792 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\msgsvc.dll
[-] 2008-04-14 . 221CD1C815B8A6B79389C3F5D1018DE8 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll
[-] 2004-08-17 . 8B2FCBD881879B55BE40B41F12FFC431 . 33792 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\msgsvc.dll
[-] 2008-04-14 03:21 . 6199B2AE3F9DB9CB6DB230471A1DC601 . 52224 . . [9.0.1.56] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\mspmsnsv.dll
[-] 2008-04-14 03:21 . 6199B2AE3F9DB9CB6DB230471A1DC601 . 52224 . . [9.0.1.56] . . c:\windows\system32\mspmsnsv.dll
[-] 2008-04-14 03:21 . 6199B2AE3F9DB9CB6DB230471A1DC601 . 52224 . . [9.0.1.56] . . c:\windows\system32\dllcache\mspmsnsv.dll
[-] 2004-08-17 13:49 . E02E913B3841717A890A644EE167B9A5 . 52224 . . [9.0.1.56] . . c:\windows\$NtServicePackUninstall$\mspmsnsv.dll
[-] 2008-04-14 03:21 . 023DD70573D644F3D9C8B1258A7BFD08 . 435712 . . [5.1.2400.5512] . . c:\windows\ServicePackFiles\i386\ntmssvc.dll
[-] 2008-04-14 03:21 . 023DD70573D644F3D9C8B1258A7BFD08 . 435712 . . [5.1.2400.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\ntmssvc.dll
[-] 2008-04-14 03:21 . 023DD70573D644F3D9C8B1258A7BFD08 . 435712 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll
[-] 2004-08-17 13:49 . D8D2B13BA93AE830B1A637DF571D1195 . 435712 . . [5.1.2400.2180] . . c:\windows\$NtServicePackUninstall$\ntmssvc.dll
[-] 2008-04-14 . 651BD90DCEE5B7BDC74A2EB7C9266F9E . 186368 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\upnphost.dll
[-] 2008-04-14 . 651BD90DCEE5B7BDC74A2EB7C9266F9E . 186368 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\upnphost.dll
[-] 2008-04-14 . 651BD90DCEE5B7BDC74A2EB7C9266F9E . 186368 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll
[-] 2004-08-17 . 984FC1518B0D5B31D76F0E63608E0500 . 185344 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\upnphost.dll
[-] 2008-04-14 . 8E009E7AC012823845D5F39A77F4A27F . 367616 . . [5.3.2600.5512] . . c:\windows\ServicePackFiles\i386\dsound.dll
[-] 2008-04-14 . 8E009E7AC012823845D5F39A77F4A27F . 367616 . . [5.3.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\dsound.dll
[-] 2008-04-14 . 8E009E7AC012823845D5F39A77F4A27F . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dsound.dll
[-] 2004-08-17 . 8ECC475F5BAD26DB85943F888D62E364 . 367616 . . [5.3.2600.2180] . . c:\windows\$NtServicePackUninstall$\dsound.dll
.
((((((((((((((((((((((((((((( SnapShot@2010-05-12_15.35.24 )))))))))))))))))))))))))))))))))))))))))
.
+ 2001-10-25 12:00 . 2010-05-12 20:36 51358 c:\windows\system32\perfc009.dat
+ 2010-05-03 13:17 . 2010-05-12 20:28 32768 c:\windows\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
- 2010-05-03 13:17 . 2010-05-12 14:49 32768 c:\windows\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
+ 2010-05-03 13:17 . 2010-05-12 20:28 32768 c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
- 2010-05-03 13:17 . 2010-05-12 14:49 32768 c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
- 2010-05-10 04:34 . 2010-05-12 14:49 16384 c:\windows\system32\config\systemprofile\Cookies\index.dat
+ 2010-05-12 15:42 . 2010-05-12 20:28 16384 c:\windows\system32\config\systemprofile\Cookies\index.dat
+ 2001-10-25 12:00 . 2010-05-12 20:36 351080 c:\windows\system32\perfh009.dat
- 2010-05-12 15:29 . 2010-05-12 13:33 55337872 c:\windows\SoftwareDistribution\Download\Install\mpam-fe.exe
+ 2010-04-04 06:54 . 2010-04-04 06:54 11850240 c:\windows\Installer\4de846.msp
+ 2010-04-04 06:54 . 2010-04-04 06:54 11850240 c:\windows\Installer\3fbb8d.msp
+ 2010-04-04 06:54 . 2010-04-04 06:54 11850240 c:\windows\Installer\1ebf1.msp
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2008-04-14 110592]
"MSSE"="c:\program files\Microsoft Security Essentials\msseces.exe" [2010-02-21 1093208]
"nwiz"="c:\program files\NVIDIA Corporation\nView\nwiz.exe" [2010-03-31 1657448]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-04-03 13670504]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-21 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-03-24 952768]
"RTHDCPL"="RTHDCPL.EXE" [2007-04-12 16132608]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\Jirka\Nabˇdka Start\Programy\Po spuçtŘnˇ\
PopTray.lnk - c:\program files\PopTray\PopTray.exe [2006-9-16 1666048]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\totalcmd\\TOTALCMD.EXE"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\program files\Microsoft ActiveSync\rapimgr.exe"= c:\program files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager
"c:\program files\Microsoft ActiveSync\wcescomm.exe"= c:\program files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager
"c:\program files\Microsoft ActiveSync\WCESMgr.exe"= c:\program files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application
"c:\\Program Files\\Efficasoft Mobile Express\\MobileExpress.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"26675:TCP"= 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service
S2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [9.5.2010 19:11 135664]
S2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [4.2.2010 17:52 1291544]
S3 GemCCID;GemCCID;c:\windows\system32\drivers\GemCCID.sys [10.8.2009 12:07 89600]
.
Obsah adresáře 'Naplánované úlohy'
2010-05-12 c:\windows\Tasks\GoogleUpdateTaskMachineCore1caef9b537a392e.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-05-09 17:11]
2010-05-12 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-05-09 17:11]
2010-05-12 c:\windows\Tasks\MP Scheduled Scan.job
- c:\program files\Microsoft Security Essentials\MpCmdRun.exe [2009-12-09 16:02]
.
.
------- Doplňkový sken -------
.
FF - ProfilePath -
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
.
**************************************************************************
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory:
**************************************************************************
.
Celkový čas: 2010-05-12 22:40:31
ComboFix-quarantined-files.txt 2010-05-12 20:40
ComboFix2.txt 2010-05-12 15:36
ComboFix3.txt 2010-05-09 19:49
Před spuštěním: Volných bajtů: 12 317 474 816
Po spuštění: Volných bajtů: 12 300 668 928
- - End Of File - - 5CDA5EA55D291603DBCECD9C565AB743
ComboFix 10-05-11.06 - Administrator 12.05.2010 22:35:01.4.2 - x86 MINIMAL
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3070.2737 [GMT 2:00]
Spuštěný z: c:\documents and settings\Jirka\Dokumenty\Stažené soubory\abc.com.exe
AV: Microsoft Security Essentials *On-access scanning enabled* (Outdated) {BCF43643-A118-4432-AEDE-D861FCBCFCDF}
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-04-12 do 2010-05-12 )))))))))))))))))))))))))))))))
.
2010-05-12 20:26 . 2010-05-12 20:26 -------- d-----w- C:\found.000
2010-05-12 19:15 . 2010-05-12 19:15 -------- d-----w- C:\rsit
2010-05-12 19:15 . 2010-05-12 19:15 -------- d-----w- c:\program files\trend micro
2010-05-12 15:01 . 2010-05-12 15:01 -------- d-----w- c:\program files\MSXML 4.0
2010-05-11 18:10 . 2010-05-11 18:10 -------- d-----w- c:\program files\Software602
2010-05-11 17:01 . 2010-05-11 17:01 -------- d-----w- c:\program files\Canon
2010-05-10 15:27 . 2010-05-10 15:29 -------- d-----w- c:\program files\Windows Live Safety Center
2010-05-10 14:54 . 2010-05-10 14:54 -------- d-----w- c:\program files\Alwil Software
2010-05-09 19:16 . 2010-05-09 19:15 390144 ----a-w- c:\windows\system32\CF6255.exe
2010-05-09 18:22 . 2010-05-09 18:22 -------- d-----w- c:\windows\Sun
2010-05-09 18:13 . 2010-05-09 18:13 -------- d-----w- c:\program files\Common Files\Java
2010-05-09 18:13 . 2010-05-09 18:12 411368 ----a-w- c:\windows\system32\deployJava1.dll
2010-05-09 18:12 . 2010-05-09 18:12 -------- d-----w- c:\program files\Java
2010-05-09 17:15 . 2010-05-09 17:15 -------- dc----w- c:\windows\system32\DRVSTORE
2010-05-09 17:15 . 2010-05-09 17:15 95024 ----a-w- c:\windows\system32\drivers\SBREDrv.sys
2010-05-09 17:11 . 2010-05-09 17:12 -------- d-----w- c:\program files\Google
2010-05-09 17:11 . 2010-05-09 17:11 -------- d-----w- c:\program files\Lavasoft
2010-05-09 14:05 . 2005-09-01 09:03 5888 ------w- c:\windows\system32\drivers\imagedrv.sys
2010-05-09 14:05 . 2005-09-01 09:03 127488 ------w- c:\windows\system32\drivers\imagesrv.sys
2010-05-09 14:05 . 2004-07-09 06:43 364544 ------w- c:\windows\system32\TwnLib4.dll
2010-05-09 14:05 . 2000-06-26 08:45 106496 ----a-w- c:\windows\system32\TwnLib20.dll
2010-05-09 14:05 . 2010-05-09 14:05 -------- d-----w- c:\program files\Ahead
2010-05-09 14:05 . 2010-05-09 14:05 -------- d-----w- c:\program files\Common Files\Ahead
2010-05-09 14:05 . 2004-07-26 14:16 476320 ------w- c:\windows\system32\ImagXpr7.dll
2010-05-09 14:05 . 2004-07-26 14:16 471040 ------w- c:\windows\system32\ImagXRA7.dll
2010-05-09 14:05 . 2004-07-26 14:16 262144 ------w- c:\windows\system32\ImagXR7.dll
2010-05-09 14:05 . 2004-07-26 14:16 1568768 ------w- c:\windows\system32\ImagX7.dll
2010-05-09 14:05 . 2001-07-09 08:50 155648 ----a-w- c:\windows\system32\NeroCheck.exe
2010-05-07 17:58 . 2010-05-07 17:58 -------- d-----w- c:\program files\ESET
2010-05-05 20:44 . 2010-05-05 20:46 -------- d-----w- c:\program files\FSViewer42
2010-05-05 19:00 . 2010-05-05 19:00 -------- d-----w- c:\program files\Aplikace MB
2010-05-05 17:04 . 2010-05-05 17:04 -------- d-----w- c:\program files\Microsoft ActiveSync
2010-05-05 17:00 . 2010-05-05 17:01 -------- d-----w- c:\program files\Efficasoft Mobile Express
2010-05-05 14:31 . 2010-05-05 14:31 -------- d-----w- c:\windows\system32\Lang
2010-05-05 13:20 . 2010-05-05 13:20 -------- d-----w- c:\windows\system32\cs
2010-05-05 13:20 . 2010-05-05 13:20 -------- d-----w- c:\windows\l2schemas
2010-05-05 13:20 . 2010-05-05 13:20 -------- d-----w- c:\windows\system32\bits
2010-05-05 13:09 . 2010-05-05 13:09 -------- d-sh--w- c:\documents and settings\Jirka\IECompatCache
2010-05-05 13:08 . 2010-05-05 13:08 -------- d-sh--w- c:\documents and settings\Jirka\PrivacIE
2010-05-05 13:06 . 2010-05-05 13:06 -------- d-sh--w- c:\documents and settings\NetworkService\IETldCache
2010-05-05 13:03 . 2010-05-05 13:03 -------- d-sh--w- c:\documents and settings\Jirka\IETldCache
2010-05-05 12:03 . 2010-02-25 09:48 11070976 -c----w- c:\windows\system32\dllcache\ieframe.dll
2010-05-05 12:03 . 2010-02-25 06:18 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2010-05-05 12:03 . 2010-02-25 06:18 594432 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2010-05-05 12:03 . 2010-02-25 06:18 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2010-05-05 12:03 . 2010-02-25 06:18 1985536 -c----w- c:\windows\system32\dllcache\iertutil.dll
2010-05-05 12:03 . 2010-02-25 06:18 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2010-05-05 12:03 . 2010-05-05 12:03 -------- d-----w- c:\windows\ie8updates
2010-05-05 12:03 . 2010-02-16 04:50 64000 -c----w- c:\windows\system32\dllcache\iecompat.dll
2010-05-05 12:02 . 2010-05-05 13:20 -------- d-----w- c:\windows\system32\cs-CZ
2010-05-05 12:02 . 2010-05-05 12:02 -------- dc-h--w- c:\windows\ie8
2010-05-05 11:57 . 2010-05-05 11:57 -------- d-----w- c:\program files\Autodesk
2010-05-05 11:51 . 2008-04-14 03:22 20992 ------w- c:\windows\system32\spupdwxp.exe
2010-05-05 11:45 . 2009-10-23 15:28 3558912 -c----w- c:\windows\system32\dllcache\moviemk.exe
2010-05-05 11:43 . 2009-08-06 17:23 274288 ----a-w- c:\windows\system32\mucltui.dll
2010-05-05 09:01 . 2003-11-17 04:24 208896 ------w- c:\windows\system32\SSRemove.Exe
2010-05-05 09:01 . 2005-05-15 21:31 20622 ----a-w- c:\windows\system32\XRXS2LMK.DLL
2010-05-05 09:01 . 2005-05-15 21:31 57344 ----a-w- c:\windows\system32\SSCoInst.dll
2010-05-05 09:01 . 2005-05-15 21:31 151552 ----a-w- c:\windows\system32\SSCoInst.exe
2010-05-05 09:01 . 2010-05-05 09:01 -------- d-----w- c:\windows\Xerox
2010-05-05 09:01 . 2003-07-29 00:57 40448 ------w- c:\windows\system32\drivers\Dgivecp.Sys
2010-05-03 19:49 . 2010-05-03 19:49 -------- d-----w- c:\program files\MPC
2010-05-03 19:48 . 2010-03-15 09:31 165376 ----a-w- c:\windows\system32\unrar.dll
2010-05-03 19:47 . 2010-05-03 19:48 -------- d-----w- c:\program files\K-Lite Codec Pack
2010-05-03 19:45 . 2004-01-11 22:00 348160 ----a-w- c:\windows\system32\msvcr71.dll
2010-05-03 19:45 . 2003-03-19 03:14 499712 ----a-w- c:\windows\system32\msvcp71.dll
2010-05-03 18:18 . 2008-04-13 18:46 19200 ----a-w- c:\windows\system32\drivers\wstcodec.sys
2010-05-03 18:17 . 2008-04-13 18:46 85248 ----a-w- c:\windows\system32\drivers\nabtsfec.sys
2010-05-03 18:16 . 2008-04-13 18:46 11136 ----a-w- c:\windows\system32\drivers\slip.sys
2010-05-03 18:15 . 2008-04-13 18:39 5504 ----a-w- c:\windows\system32\drivers\mstee.sys
2010-05-03 18:15 . 2008-04-13 18:46 10880 ----a-w- c:\windows\system32\drivers\ndisip.sys
2010-05-03 18:15 . 2008-04-13 18:46 15232 ----a-w- c:\windows\system32\drivers\streamip.sys
2010-05-03 17:34 . 2008-04-13 18:46 17024 ----a-w- c:\windows\system32\drivers\ccdecode.sys
2010-05-03 17:31 . 2008-04-14 03:22 54272 ----a-w- c:\windows\system32\vfwwdm32.dll
2010-05-03 17:31 . 2008-04-13 18:46 121984 ----a-w- c:\windows\system32\drivers\usbvideo.sys
2010-05-03 15:41 . 2010-05-03 15:41 -------- d-----w- c:\program files\GIGABYTE
2010-05-03 15:41 . 1998-10-02 17:00 327168 ----a-w- c:\windows\IsUninst.exe
2010-05-03 15:14 . 2010-05-03 15:15 -------- d-----w- c:\program files\PopTray
2010-05-03 15:06 . 2010-05-09 18:13 -------- d--h--r- c:\documents and settings\All Users\Data aplikací
2010-05-03 15:06 . 2010-05-03 15:08 -------- d--h--r- c:\documents and settings\Default User\Data aplikací
2010-05-03 15:05 . 2010-05-05 14:03 -------- d--h--w- c:\documents and settings\Default User
2010-05-03 15:05 . 2010-05-03 13:14 -------- d-----w- c:\documents and settings\All Users
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-05-12 20:36 . 2001-10-25 12:00 59960 ----a-w- c:\windows\system32\perfc005.dat
2010-05-12 20:36 . 2001-10-25 12:00 350270 ----a-w- c:\windows\system32\perfh005.dat
2010-05-12 18:08 . 2010-05-03 14:40 -------- d-----w- c:\program files\Mozilla Thunderbird
2010-05-09 11:44 . 2010-05-03 13:04 2740 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2010-05-06 08:36 . 2010-05-03 13:35 221568 ------w- c:\windows\system32\MpSigStub.exe
2010-05-05 13:21 . 2010-05-03 13:04 8972 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2010-05-05 09:01 . 2010-05-03 14:15 -------- d-----w- c:\program files\Common Files\InstallShield
2010-05-03 19:28 . 2010-05-03 14:03 -------- d-----w- c:\program files\ProfiCAD
2010-05-03 15:27 . 2010-05-03 14:14 15600 ----a-w- c:\windows\gdrv.sys
2010-05-03 14:52 . 2010-05-03 14:52 0 ----a-w- c:\windows\system32\SET106.tmp
2010-05-03 14:52 . 2010-05-03 14:52 0 ----a-w- c:\windows\system32\SET103.tmp
2010-05-03 14:52 . 2010-05-03 14:52 0 ----a-w- c:\windows\system32\SET102.tmp
2010-05-03 14:51 . 2010-05-03 14:51 -------- d-----w- c:\program files\OpenOffice.org 3
2010-05-03 14:16 . 2010-05-03 14:15 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-05-03 14:15 . 2010-05-03 14:15 -------- d-----w- c:\program files\Realtek
2010-05-03 14:15 . 2010-05-03 14:15 315392 ----a-w- c:\windows\HideWin.exe
2010-05-03 14:02 . 2010-05-03 14:02 -------- d-----w- c:\program files\Common Files\Adobe
2010-05-03 13:42 . 2010-05-03 13:42 0 ----a-w- c:\windows\nsreg.dat
2010-05-03 13:38 . 2010-05-03 13:37 -------- d-----w- c:\program files\NVIDIA Corporation
2010-05-03 13:30 . 2010-05-03 13:30 -------- d-----w- c:\program files\Microsoft Security Essentials
2010-05-03 13:13 . 2010-05-03 13:01 21812 ----a-w- c:\windows\system32\emptyregdb.dat
2010-05-03 13:05 . 2010-05-03 13:05 -------- d-----w- c:\program files\microsoft frontpage
2010-05-03 13:04 . 2010-05-03 13:04 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-04-03 20:55 . 2010-04-03 20:55 6432128 ----a-w- c:\windows\system32\nv4_disp.dll
2010-04-03 20:55 . 2010-04-03 20:55 61440 ----a-w- c:\windows\system32\OpenCL.dll
2010-04-03 20:55 . 2010-04-03 20:55 4075520 ----a-w- c:\windows\system32\nvcuda.dll
2010-04-03 20:55 . 2010-04-03 20:55 2646632 ----a-w- c:\windows\system32\nvcuvenc.dll
2010-04-03 20:55 . 2010-04-03 20:55 227944 ----a-w- c:\windows\system32\nvcodins.dll
2010-04-03 20:55 . 2010-04-03 20:55 227944 ----a-w- c:\windows\system32\nvcod.dll
2010-04-03 20:55 . 2010-04-03 20:55 2183470 ----a-w- c:\windows\system32\nvdata.bin
2010-04-03 20:55 . 2010-04-03 20:55 2030184 ----a-w- c:\windows\system32\nvcuvid.dll
2010-04-03 20:55 . 2010-04-03 20:55 14757888 ----a-w- c:\windows\system32\nvoglnt.dll
2010-04-03 20:55 . 2010-04-03 20:55 11647592 ----a-w- c:\windows\system32\nvcompiler.dll
2010-04-03 20:55 . 2010-04-03 20:55 1097728 ----a-w- c:\windows\system32\nvapi.dll
2010-04-03 20:55 . 2010-04-03 20:55 10232128 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2010-04-03 17:23 . 2010-04-03 17:23 278120 ----a-w- c:\windows\system32\nvmccs.dll
2010-04-03 17:23 . 2010-04-03 17:23 154216 ----a-w- c:\windows\system32\nvsvc32.exe
2010-04-03 17:23 . 2010-04-03 17:23 145000 ----a-w- c:\windows\system32\nvcolor.exe
2010-04-03 17:23 . 2010-04-03 17:23 13670504 ----a-w- c:\windows\system32\nvcpl.dll
2010-04-03 17:23 . 2010-04-03 17:23 110696 ----a-w- c:\windows\system32\nvmctray.dll
2010-04-03 17:22 . 2010-04-03 17:22 81920 ----a-w- c:\windows\system32\nvwddi.dll
2010-03-10 06:17 . 2004-08-17 13:49 420352 ----a-w- c:\windows\system32\vbscript.dll
2010-02-25 06:18 . 2004-08-17 13:49 916480 ----a-w- c:\windows\system32\wininet.dll
2010-02-24 13:11 . 2004-08-03 21:15 455680 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2010-02-16 19:08 . 2004-08-17 15:45 2026496 ----a-w- c:\windows\system32\ntkrnlpa.exe
2010-02-16 19:08 . 2004-08-17 13:45 2148352 ----a-w- c:\windows\system32\ntoskrnl.exe
2010-02-12 10:03 . 2010-05-03 14:03 293376 ------w- c:\windows\system32\browserchoice.exe
2010-02-12 04:35 . 2004-08-17 13:49 100864 ----a-w- c:\windows\system32\6to4svc.dll
.
------- Sigcheck -------
[-] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\atapi.sys
[-] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\atapi.sys
[-] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys
[-] 2004-08-03 . CDFE4411A69C224BD1D11B2DA92DAC51 . 95360 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\atapi.sys
[-] 2008-04-13 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\asyncmac.sys
[-] 2008-04-13 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\asyncmac.sys
[-] 2008-04-13 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys
[-] 2004-08-03 . 02000ABF34AF4C218C35D257024807D6 . 14336 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\asyncmac.sys
[-] 2001-10-25 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\dllcache\beep.sys
[-] 2001-10-25 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys
[-] 2008-04-14 . 1B6162FE7F66B1A71A4B70F941C4AA9B . 24576 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\kbdclass.sys
[-] 2008-04-14 . 1B6162FE7F66B1A71A4B70F941C4AA9B . 24576 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\kbdclass.sys
[-] 2008-04-14 . 1B6162FE7F66B1A71A4B70F941C4AA9B . 24576 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys
[-] 2004-08-17 . 6F877BF8DC01A550CD666F3BEDB2213C . 24576 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\kbdclass.sys
[-] 2008-04-13 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ndis.sys
[-] 2008-04-13 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\ndis.sys
[-] 2008-04-13 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys
[-] 2004-08-03 . 558635D3AF1C7546D26067D5D9B6959E . 182912 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ndis.sys
[-] 2008-04-13 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ntfs.sys
[-] 2008-04-13 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\ntfs.sys
[-] 2008-04-13 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys
[-] 2004-08-03 . B78BE402C3F63DD55521F73876951CDD . 574592 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ntfs.sys
[-] 2001-10-25 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\dllcache\null.sys
[-] 2001-10-25 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys
[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp3qfe\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp3gdr\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
[-] 2008-06-20 . 2A5554FC5B1E04E131230E3CE035C3F9 . 360320 . . [5.1.2600.3394] . . c:\windows\$NtServicePackUninstall$\tcpip.sys
[-] 2008-06-20 . 2A5554FC5B1E04E131230E3CE035C3F9 . 360320 . . [5.1.2600.3394] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp2gdr\tcpip.sys
[-] 2008-06-20 . 744E57C99232201AE98C49168B918F48 . 360960 . . [5.1.2600.3394] . . c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip.sys
[-] 2008-06-20 . 744E57C99232201AE98C49168B918F48 . 360960 . . [5.1.2600.3394] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp2qfe\tcpip.sys
[-] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys
[-] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tcpip.sys
[-] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\tcpip.sys
[-] 2004-08-03 . 9F4B36614A0FC234525BA224957DE55C . 359040 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB951748_0$\tcpip.sys
[-] 2008-04-14 . 249276D3EF1E74B992299CB96099E4D7 . 77824 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\browser.dll
[-] 2008-04-14 . 249276D3EF1E74B992299CB96099E4D7 . 77824 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\browser.dll
[-] 2008-04-14 . 249276D3EF1E74B992299CB96099E4D7 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\browser.dll
[-] 2004-08-17 . F219E27E88107A50544153898DD8178E . 77312 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\browser.dll
[-] 2008-04-14 . ED0A176354487CEED65B80A7148AB739 . 13312 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\lsass.exe
[-] 2008-04-14 . ED0A176354487CEED65B80A7148AB739 . 13312 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\lsass.exe
[-] 2008-04-14 . ED0A176354487CEED65B80A7148AB739 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe
[-] 2004-08-17 . 82A362FE1D4980B71B588D9C10748511 . 13312 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\lsass.exe
[-] 2008-04-14 . 72E1E9E2977BE08BDEEDB6D8FD9D4D40 . 198144 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\netman.dll
[-] 2008-04-14 . 72E1E9E2977BE08BDEEDB6D8FD9D4D40 . 198144 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\netman.dll
[-] 2008-04-14 . 72E1E9E2977BE08BDEEDB6D8FD9D4D40 . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll
[-] 2004-08-17 . AF342D2781225A8769686E0D47E3123E . 198144 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\netman.dll
[-] 2008-04-14 . 19395D092FD85DDC2D9C7729CF5A2AC8 . 409088 . . [6.7.2600.5512] . . c:\windows\ServicePackFiles\i386\qmgr.dll
[-] 2008-04-14 . 19395D092FD85DDC2D9C7729CF5A2AC8 . 409088 . . [6.7.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\qmgr.dll
[-] 2008-04-14 . 19395D092FD85DDC2D9C7729CF5A2AC8 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll
[-] 2008-04-14 . 19395D092FD85DDC2D9C7729CF5A2AC8 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\bits\qmgr.dll
[-] 2004-08-17 . E774A26610EC92674273486612C11CFC . 382464 . . [6.6.2600.2180] . . c:\windows\$NtServicePackUninstall$\qmgr.dll
[-] 2008-04-14 . CB1090BCA0E7B40D0B5B4E4D66531809 . 57856 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\spoolsv.exe
[-] 2008-04-14 . CB1090BCA0E7B40D0B5B4E4D66531809 . 57856 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\spoolsv.exe
[-] 2008-04-14 . CB1090BCA0E7B40D0B5B4E4D66531809 . 57856 . . [5.1.2600.5512] . . c:\windows\system32\spoolsv.exe
[-] 2004-08-17 . 21B6FAA88044A41640E03EBB68BE93E8 . 57856 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\spoolsv.exe
[-] 2008-04-14 . CDDB1F8E1AEA356F3AD106F2CF9B7FEA . 507904 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\winlogon.exe
[-] 2008-04-14 . CDDB1F8E1AEA356F3AD106F2CF9B7FEA . 507904 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\winlogon.exe
[-] 2008-04-14 . CDDB1F8E1AEA356F3AD106F2CF9B7FEA . 507904 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe
[-] 2004-08-17 . 221C29AE1B4CC61D11D8B27DE78B2307 . 502272 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\winlogon.exe
[-] 2008-04-14 . 4F993463DC5F3F80D77A3D34D7BFBFED . 617472 . . [5.82] . . c:\windows\ServicePackFiles\i386\comctl32.dll
[-] 2008-04-14 . 4F993463DC5F3F80D77A3D34D7BFBFED . 617472 . . [5.82] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\comctl32.dll
[-] 2008-04-14 . 4F993463DC5F3F80D77A3D34D7BFBFED . 617472 . . [5.82] . . c:\windows\system32\comctl32.dll
[-] 2008-04-14 . D7B7AE36A2EBA312AC4B53862019B3F5 . 1054208 . . [6.0] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\asms\60\msft\windows\common\controls\comctl32.dll
[-] 2004-08-17 . 876C658C44F2BF4AF050E5534A9F066F . 611328 . . [5.82] . . c:\windows\$NtServicePackUninstall$\comctl32.dll
[-] 2008-04-14 . F3AB0933CBD166D271992F411C27CCAF . 62464 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\cryptsvc.dll
[-] 2008-04-14 . F3AB0933CBD166D271992F411C27CCAF . 62464 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\cryptsvc.dll
[-] 2008-04-14 . F3AB0933CBD166D271992F411C27CCAF . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll
[-] 2004-08-17 . 70D2A1756F4B2067658A186C963FCABD . 60416 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\cryptsvc.dll
[-] 2008-07-07 20:32 . 398314DF0B21338C4996B469101750D1 . 253952 . . [2001.12.4414.320] . . c:\windows\$NtServicePackUninstall$\es.dll
[-] 2008-07-07 20:32 . 398314DF0B21338C4996B469101750D1 . 253952 . . [2001.12.4414.320] . . c:\windows\SoftwareDistribution\Download\238cf948db525111b0a69f7144be46ee\sp2gdr\es.dll
[-] 2008-07-07 20:29 . A371F11EF07653591C8DE26AFB13CE7F . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3GDR\es.dll
[-] 2008-07-07 20:29 . A371F11EF07653591C8DE26AFB13CE7F . 253952 . . [2001.12.4414.706] . . c:\windows\SoftwareDistribution\Download\238cf948db525111b0a69f7144be46ee\sp3gdr\es.dll
[-] 2008-07-07 20:29 . A371F11EF07653591C8DE26AFB13CE7F . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll
[-] 2008-07-07 20:29 . A371F11EF07653591C8DE26AFB13CE7F . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll
[-] 2008-07-07 20:25 . BE68EA4457E2E5717231CF91BE5448E0 . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
[-] 2008-07-07 20:25 . BE68EA4457E2E5717231CF91BE5448E0 . 253952 . . [2001.12.4414.706] . . c:\windows\SoftwareDistribution\Download\238cf948db525111b0a69f7144be46ee\sp3qfe\es.dll
[-] 2008-07-07 20:19 . 3440C414044935B124B5821C0994B37F . 253952 . . [2001.12.4414.320] . . c:\windows\$hf_mig$\KB950974\SP2QFE\es.dll
[-] 2008-07-07 20:19 . 3440C414044935B124B5821C0994B37F . 253952 . . [2001.12.4414.320] . . c:\windows\SoftwareDistribution\Download\238cf948db525111b0a69f7144be46ee\sp2qfe\es.dll
[-] 2008-04-14 03:21 . 260C69FD67687B0DC062FC3D31655857 . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll
[-] 2008-04-14 03:21 . 260C69FD67687B0DC062FC3D31655857 . 246272 . . [2001.12.4414.701] . . c:\windows\ServicePackFiles\i386\es.dll
[-] 2008-04-14 03:21 . 260C69FD67687B0DC062FC3D31655857 . 246272 . . [2001.12.4414.701] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\es.dll
[-] 2004-08-17 13:49 . 972378B907070F64932A87C90A035487 . 243200 . . [2001.12.4414.258] . . c:\windows\$NtUninstallKB950974_0$\es.dll
[-] 2008-04-14 . 6C60CA8AC7470AC01CFD3D24C7283CD1 . 110080 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\imm32.dll
[-] 2008-04-14 . 6C60CA8AC7470AC01CFD3D24C7283CD1 . 110080 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\imm32.dll
[-] 2008-04-14 . 6C60CA8AC7470AC01CFD3D24C7283CD1 . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll
[-] 2004-08-17 . 2413635113361E54B62F0C40E4E4DAE6 . 110080 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\imm32.dll
[-] 2008-04-14 . 7FDE9FC15765E02B23E1756930165AD1 . 19968 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\linkinfo.dll
[-] 2008-04-14 . 7FDE9FC15765E02B23E1756930165AD1 . 19968 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\linkinfo.dll
[-] 2008-04-14 . 7FDE9FC15765E02B23E1756930165AD1 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll
[-] 2004-08-17 . EE1F842DB2AE412136643B0814D770A6 . 18944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\linkinfo.dll
[-] 2008-04-14 . C66BA7BD13C8FB8BEC4863B88641C763 . 22016 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\lpk.dll
[-] 2008-04-14 . C66BA7BD13C8FB8BEC4863B88641C763 . 22016 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\lpk.dll
[-] 2008-04-14 . C66BA7BD13C8FB8BEC4863B88641C763 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll
[-] 2004-08-17 . BFE8DC7AAE7CB1C86243D77B340DC304 . 22016 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\lpk.dll
[-] 2010-02-26 . 5705F728CDFC29147679F6DC68702397 . 3094016 . . [6.00.2900.3676] . . c:\windows\$hf_mig$\KB980182\SP2QFE\mshtml.dll
[-] 2010-02-26 . 5705F728CDFC29147679F6DC68702397 . 3094016 . . [6.00.2900.3676] . . c:\windows\SoftwareDistribution\Download\b1b4e46ec95abfe1dfdb832136d8e792\sp2qfe\mshtml.dll
[-] 2010-02-26 . 0559E242E71D9FAA60AD409A1CFF1811 . 3086336 . . [6.00.2900.3676] . . c:\windows\ie8\mshtml.dll
[-] 2010-02-26 . 0559E242E71D9FAA60AD409A1CFF1811 . 3086336 . . [6.00.2900.3676] . . c:\windows\SoftwareDistribution\Download\b1b4e46ec95abfe1dfdb832136d8e792\sp2gdr\mshtml.dll
[-] 2010-02-26 . 1125069D3487AF4D295F9B8B352C9E11 . 3094016 . . [6.00.2900.5945] . . c:\windows\$hf_mig$\KB980182\SP3GDR\mshtml.dll
[-] 2010-02-26 . 1125069D3487AF4D295F9B8B352C9E11 . 3094016 . . [6.00.2900.5945] . . c:\windows\SoftwareDistribution\Download\b1b4e46ec95abfe1dfdb832136d8e792\sp3gdr\mshtml.dll
[-] 2010-02-26 . 23CB63CC448E14C4069E9CE40483E987 . 3094528 . . [6.00.2900.5945] . . c:\windows\$hf_mig$\KB980182\SP3QFE\mshtml.dll
[-] 2010-02-26 . 23CB63CC448E14C4069E9CE40483E987 . 3094528 . . [6.00.2900.5945] . . c:\windows\SoftwareDistribution\Download\b1b4e46ec95abfe1dfdb832136d8e792\sp3qfe\mshtml.dll
[-] 2010-02-25 . F6B19C3520F8F33ED4E86B97E5FED45A . 5944832 . . [8.00.6001.18904] . . c:\windows\SoftwareDistribution\Download\5a7f103a71d22d2518560b8bdb5ca090\SP3GDR\mshtml.dll
[-] 2010-02-25 . F6B19C3520F8F33ED4E86B97E5FED45A . 5944832 . . [8.00.6001.18904] . . c:\windows\system32\mshtml.dll
[-] 2010-02-25 . F6B19C3520F8F33ED4E86B97E5FED45A . 5944832 . . [8.00.6001.18904] . . c:\windows\system32\dllcache\mshtml.dll
[-] 2010-02-25 . AC93856CC1D10E74986EA4E70D90748F . 5946880 . . [8.00.6001.22995] . . c:\windows\$hf_mig$\KB980182-IE8\SP3QFE\mshtml.dll
[-] 2010-02-25 . AC93856CC1D10E74986EA4E70D90748F . 5946880 . . [8.00.6001.22995] . . c:\windows\SoftwareDistribution\Download\5a7f103a71d22d2518560b8bdb5ca090\SP3QFE\mshtml.dll
[-] 2009-03-08 . F4B96DD7191F9876C5C4DE558F67B9A6 . 5937152 . . [8.00.6001.18702] . . c:\windows\ie8updates\KB980182-IE8\mshtml.dll
[-] 2008-04-14 . DAF9947DE2A6EA20AE524B7C50487E57 . 3066880 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\mshtml.dll
[-] 2008-04-14 . DAF9947DE2A6EA20AE524B7C50487E57 . 3066880 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\mshtml.dll
[-] 2004-08-17 . EF74351C9098210CC9C1A3679DB62041 . 3003392 . . [6.00.2900.2180] . . c:\windows\$NtUninstallKB980182$\mshtml.dll
[-] 2008-04-14 . D165DFCB4EA452510E53416F573018BB . 343040 . . [7.0.2600.5512] . . c:\windows\ServicePackFiles\i386\msvcrt.dll
[-] 2008-04-14 . D165DFCB4EA452510E53416F573018BB . 343040 . . [7.0.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\msvcrt.dll
[-] 2008-04-14 . D165DFCB4EA452510E53416F573018BB . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll
[-] 2008-04-14 . EC8D5E09C6CA5F52858A5EB71F308FDF . 343040 . . [7.0.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\asms\70\msft\windows\mswincrt\msvcrt.dll
[-] 2004-08-17 . 91CC3E4CCDBBF8E224182C76C87E454F . 343040 . . [7.0.2600.2180] . . c:\windows\$NtServicePackUninstall$\msvcrt.dll
[-] 2008-06-20 . 1289B7611CCD6CB27596AE92CBF03E35 . 247296 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3GDR\mswsock.dll
[-] 2008-06-20 . 1289B7611CCD6CB27596AE92CBF03E35 . 247296 . . [5.1.2600.5625] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp3gdr\mswsock.dll
[-] 2008-06-20 . 1289B7611CCD6CB27596AE92CBF03E35 . 247296 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll
[-] 2008-06-20 . 1289B7611CCD6CB27596AE92CBF03E35 . 247296 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll
[-] 2008-06-20 . B6CEC406351EA5EF131416D5F52D006F . 247296 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll
[-] 2008-06-20 . B6CEC406351EA5EF131416D5F52D006F . 247296 . . [5.1.2600.5625] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp3qfe\mswsock.dll
[-] 2008-06-20 . A6E79B60AC73241E5721AB6A573D2B24 . 247296 . . [5.1.2600.3394] . . c:\windows\$NtServicePackUninstall$\mswsock.dll
[-] 2008-06-20 . A6E79B60AC73241E5721AB6A573D2B24 . 247296 . . [5.1.2600.3394] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp2gdr\mswsock.dll
[-] 2008-06-20 . 37BABA5DBD9027837FDC27E5D6EF33E1 . 247296 . . [5.1.2600.3394] . . c:\windows\$hf_mig$\KB951748\SP2QFE\mswsock.dll
[-] 2008-06-20 . 37BABA5DBD9027837FDC27E5D6EF33E1 . 247296 . . [5.1.2600.3394] . . c:\windows\SoftwareDistribution\Download\1d2803a1f84cfd41d61e509943d67213\sp2qfe\mswsock.dll
[-] 2008-04-14 . AAC97DAB5F8A0573CF10E0EAC42A7724 . 247296 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\mswsock.dll
[-] 2008-04-14 . AAC97DAB5F8A0573CF10E0EAC42A7724 . 247296 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\mswsock.dll
[-] 2008-04-14 . AAC97DAB5F8A0573CF10E0EAC42A7724 . 247296 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\mswsock.dll
[-] 2004-08-17 . 64C078BD4EFD441C3F159EDC5EA4420A . 247296 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB951748_0$\mswsock.dll
[7] 2009-02-06 . 1F43B8C0F4C767FBED89711C30E704D9 . 408064 . . [5.1.2600.3520] . . c:\windows\$hf_mig$\KB968389\SP2QFE\netlogon.dll
[7] 2009-02-06 . 1F43B8C0F4C767FBED89711C30E704D9 . 408064 . . [5.1.2600.3520] . . c:\windows\$hf_mig$\KB975467\SP2QFE\netlogon.dll
[7] 2009-02-06 . 1F43B8C0F4C767FBED89711C30E704D9 . 408064 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\2c72bf78e3c24debcddfa92e9f03ffa3\sp2qfe\netlogon.dll
[7] 2009-02-06 . 1F43B8C0F4C767FBED89711C30E704D9 . 408064 . . [5.1.2600.3520] . . c:\windows\SoftwareDistribution\Download\9778f8cdabb029412b74f168c04bff53\sp2qfe\netlogon.dll
[-] 2008-04-14 . C2ED0E3408F50BBC149D4F0936E67832 . 407040 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\netlogon.dll
[-] 2008-04-14 . C2ED0E3408F50BBC149D4F0936E67832 . 407040 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\netlogon.dll
[-] 2008-04-14 . C2ED0E3408F50BBC149D4F0936E67832 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll
[-] 2004-08-17 . 2591CADAEF7D2242039255028E577688 . 407040 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\netlogon.dll
[-] 2008-04-14 . 9FA69781CAA7A1DA981A24F240A61A60 . 17408 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\powrprof.dll
[-] 2008-04-14 . 9FA69781CAA7A1DA981A24F240A61A60 . 17408 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\powrprof.dll
[-] 2008-04-14 . 9FA69781CAA7A1DA981A24F240A61A60 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll
[-] 2004-08-17 . 134B95A1D8FAFD74A68E4B2116DEFA7D . 17408 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\powrprof.dll
[-] 2008-04-14 . 830CE8951C71F361D7D2F38416CC8BC1 . 185856 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\scecli.dll
[-] 2008-04-14 . 830CE8951C71F361D7D2F38416CC8BC1 . 185856 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\scecli.dll
[-] 2008-04-14 . 830CE8951C71F361D7D2F38416CC8BC1 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll
[-] 2004-08-17 . 07119058D451CB7EA4317BCFDA8599A6 . 184832 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\scecli.dll
[-] 2008-04-14 . 5EE949255BABC0B17C09DDB2E59E3878 . 5120 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\sfc.dll
[-] 2008-04-14 . 5EE949255BABC0B17C09DDB2E59E3878 . 5120 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\sfc.dll
[-] 2008-04-14 . 5EE949255BABC0B17C09DDB2E59E3878 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll
[-] 2004-08-17 . 6CC2D21488333133AE0C9F44F6051CB7 . 5120 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\sfc.dll
[-] 2008-04-14 . BE4A520E29B6391F49E79CCC52044D93 . 14336 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\svchost.exe
[-] 2008-04-14 . BE4A520E29B6391F49E79CCC52044D93 . 14336 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\svchost.exe
[-] 2008-04-14 . BE4A520E29B6391F49E79CCC52044D93 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe
[-] 2004-08-17 . DFBA2915B0BF58ABB288CD4C9318CB3F . 14336 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\svchost.exe
[-] 2008-04-14 . C2546CD7A398476F9DF5614B2AE160E8 . 249856 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tapisrv.dll
[-] 2008-04-14 . C2546CD7A398476F9DF5614B2AE160E8 . 249856 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\tapisrv.dll
[-] 2008-04-14 . C2546CD7A398476F9DF5614B2AE160E8 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll
[-] 2004-08-17 . 37162D29CD61519E6F5EA0DE99786FF6 . 246272 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\tapisrv.dll
[-] 2008-04-14 . E16E0990967374E76F3E40CACAFD3D53 . 578560 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\user32.dll
[-] 2008-04-14 . E16E0990967374E76F3E40CACAFD3D53 . 578560 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\user32.dll
[-] 2008-04-14 . E16E0990967374E76F3E40CACAFD3D53 . 578560 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll
[-] 2004-08-17 . 1B4CCC59980DA34E75F20E42B283B027 . 577024 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\user32.dll
[-] 2008-04-14 . 7DC1830F22E7D275B438127B68030239 . 26112 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\userinit.exe
[-] 2008-04-14 . 7DC1830F22E7D275B438127B68030239 . 26112 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\userinit.exe
[-] 2008-04-14 . 7DC1830F22E7D275B438127B68030239 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe
[-] 2004-08-17 . 836F7960362FF95C5D49E40B891F2CFC . 24576 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\userinit.exe
[-] 2010-02-26 . B1E82790D6EEA2ECC6FE75FF4AD61F3B . 663040 . . [6.00.2900.3676] . . c:\windows\ie8\wininet.dll
[-] 2010-02-26 . B1E82790D6EEA2ECC6FE75FF4AD61F3B . 663040 . . [6.00.2900.3676] . . c:\windows\SoftwareDistribution\Download\b1b4e46ec95abfe1dfdb832136d8e792\sp2gdr\wininet.dll
[-] 2010-02-26 . 4F1A0474DD6E965BD72F89633AFD24A2 . 669696 . . [6.00.2900.3676] . . c:\windows\$hf_mig$\KB980182\SP2QFE\wininet.dll
[-] 2010-02-26 . 4F1A0474DD6E965BD72F89633AFD24A2 . 669696 . . [6.00.2900.3676] . . c:\windows\SoftwareDistribution\Download\b1b4e46ec95abfe1dfdb832136d8e792\sp2qfe\wininet.dll
[-] 2010-02-26 . 6626FD55F67A8AE1335771D41A11EF13 . 668160 . . [6.00.2900.5945] . . c:\windows\$hf_mig$\KB980182\SP3GDR\wininet.dll
[-] 2010-02-26 . 6626FD55F67A8AE1335771D41A11EF13 . 668160 . . [6.00.2900.5945] . . c:\windows\SoftwareDistribution\Download\b1b4e46ec95abfe1dfdb832136d8e792\sp3gdr\wininet.dll
[-] 2010-02-26 . FD0F4E4BC28B18715BC1323ACD48E1A6 . 669696 . . [6.00.2900.5945] . . c:\windows\$hf_mig$\KB980182\SP3QFE\wininet.dll
[-] 2010-02-26 . FD0F4E4BC28B18715BC1323ACD48E1A6 . 669696 . . [6.00.2900.5945] . . c:\windows\SoftwareDistribution\Download\b1b4e46ec95abfe1dfdb832136d8e792\sp3qfe\wininet.dll
[-] 2010-02-25 . 4A4C190879347A0064731F39610F1F72 . 916480 . . [8.00.6001.18904] . . c:\windows\SoftwareDistribution\Download\5a7f103a71d22d2518560b8bdb5ca090\SP3GDR\wininet.dll
[-] 2010-02-25 . 4A4C190879347A0064731F39610F1F72 . 916480 . . [8.00.6001.18904] . . c:\windows\system32\wininet.dll
[-] 2010-02-25 . 4A4C190879347A0064731F39610F1F72 . 916480 . . [8.00.6001.18904] . . c:\windows\system32\dllcache\wininet.dll
[-] 2010-02-25 . 2E6504E28C7E0F753F68731861A94214 . 919040 . . [8.00.6001.22995] . . c:\windows\$hf_mig$\KB980182-IE8\SP3QFE\wininet.dll
[-] 2010-02-25 . 2E6504E28C7E0F753F68731861A94214 . 919040 . . [8.00.6001.22995] . . c:\windows\SoftwareDistribution\Download\5a7f103a71d22d2518560b8bdb5ca090\SP3QFE\wininet.dll
[-] 2009-03-08 . 6CE32F7778061CCC5814D5E0F282D369 . 914944 . . [8.00.6001.18702] . . c:\windows\ie8updates\KB980182-IE8\wininet.dll
[-] 2008-04-14 . 3FE5E65A7ED9EC98AEE9167CA07812D3 . 667136 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\wininet.dll
[-] 2008-04-14 . 3FE5E65A7ED9EC98AEE9167CA07812D3 . 667136 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\wininet.dll
[-] 2004-08-17 . 50D263E3454E8357D13BB598129185AD . 657408 . . [6.00.2900.2180] . . c:\windows\$NtUninstallKB980182$\wininet.dll
[-] 2008-04-14 . 951D473917C51F21496D914CF6E5DDD1 . 82432 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ws2_32.dll
[-] 2008-04-14 . 951D473917C51F21496D914CF6E5DDD1 . 82432 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\ws2_32.dll
[-] 2008-04-14 . 951D473917C51F21496D914CF6E5DDD1 . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll
[-] 2004-08-17 . 382E9B87F1282E697C67AF84E34E35E2 . 82944 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ws2_32.dll
[-] 2008-04-14 . 27AFD587C462E280EE046B8CCA3C2CD1 . 1034240 . . [6.00.2900.5512] . . c:\windows\explorer.exe
[-] 2008-04-14 . D37B3FEE733382990D62C8C48EB6E2BB . 1034240 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\explorer.exe
[-] 2008-04-14 . 27AFD587C462E280EE046B8CCA3C2CD1 . 1034240 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\explorer.exe
[-] 2004-08-17 . 53114D57AB73A406AC7F602227781A99 . 1032704 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\explorer.exe
[-] 2008-04-14 . 35B91147124F64AC8081A2EDB9EA4DEE . 171008 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\srsvc.dll
[-] 2008-04-14 . 35B91147124F64AC8081A2EDB9EA4DEE . 171008 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\srsvc.dll
[-] 2008-04-14 . 35B91147124F64AC8081A2EDB9EA4DEE . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll
[-] 2004-08-17 . 3CD57F31A64D32FDB28918B16D1E6AAC . 170496 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\srsvc.dll
[-] 2008-04-14 . 278A14BEDEF58687EAF8BEC056A78D8B . 13824 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\wscntfy.exe
[-] 2008-04-14 . 278A14BEDEF58687EAF8BEC056A78D8B . 13824 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\wscntfy.exe
[-] 2008-04-14 . 278A14BEDEF58687EAF8BEC056A78D8B . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe
[-] 2004-08-17 . 93F75FF033BAA186D08115D73BFE3D32 . 13824 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\wscntfy.exe
[-] 2008-04-14 . EAA4BB9EDB3FB10CF8979FE65E63658F . 129024 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\xmlprov.dll
[-] 2008-04-14 . EAA4BB9EDB3FB10CF8979FE65E63658F . 129024 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\xmlprov.dll
[-] 2008-04-14 . EAA4BB9EDB3FB10CF8979FE65E63658F . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll
[-] 2004-08-17 . 9B835D4C64860B155A1701D5092EC9E4 . 129536 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\xmlprov.dll
[-] 2008-04-14 . 2EE99F67C930931EB404DADCE57E976E . 56320 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\eventlog.dll
[-] 2008-04-14 . 2EE99F67C930931EB404DADCE57E976E . 56320 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\eventlog.dll
[-] 2008-04-14 . 2EE99F67C930931EB404DADCE57E976E . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll
[-] 2004-08-17 . 6EB66066D5C0175320CFEA0A4C74C88F . 55808 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\eventlog.dll
[-] 2008-04-14 . 56A6034E7764E23D9114223EB3523925 . 1571840 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\sfcfiles.dll
[-] 2008-04-14 . 56A6034E7764E23D9114223EB3523925 . 1571840 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\sfcfiles.dll
[-] 2008-04-14 . 56A6034E7764E23D9114223EB3523925 . 1571840 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
[-] 2004-08-17 . 5CA2E2BA624D6F2C7A581C91E70394CB . 1548288 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\sfcfiles.dll
[-] 2008-04-14 . A756B8F0F7BAFBA6DFE39F7D169F2519 . 15360 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ctfmon.exe
[-] 2008-04-14 . A756B8F0F7BAFBA6DFE39F7D169F2519 . 15360 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\ctfmon.exe
[-] 2008-04-14 . A756B8F0F7BAFBA6DFE39F7D169F2519 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe
[-] 2004-08-17 . A5BAA91475167161DEA02BA3C4CA4F59 . 15360 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ctfmon.exe
[-] 2008-04-14 . B927443008910B412BEC72FC41C1BAD0 . 135168 . . [6.00.2900.5512] . . c:\windows\ServicePackFiles\i386\shsvcs.dll
[-] 2008-04-14 . B927443008910B412BEC72FC41C1BAD0 . 135168 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\shsvcs.dll
[-] 2008-04-14 . B927443008910B412BEC72FC41C1BAD0 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\shsvcs.dll
[-] 2004-08-17 . 8BA76BD2A943F642F267A296A15776D2 . 134656 . . [6.00.2900.2180] . . c:\windows\$NtServicePackUninstall$\shsvcs.dll
[-] 2008-04-14 . 8F31505484A190D5B22274708799F4EC . 59904 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\regsvc.dll
[-] 2008-04-14 . 8F31505484A190D5B22274708799F4EC . 59904 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\regsvc.dll
[-] 2008-04-14 . 8F31505484A190D5B22274708799F4EC . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll
[-] 2004-08-17 . 5B21208FCF8970BB61FE98E19D828714 . 59904 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\regsvc.dll
[-] 2008-04-14 . 3FF232A7731621B8902D81D42418C93C . 192512 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\schedsvc.dll
[-] 2008-04-14 . 3FF232A7731621B8902D81D42418C93C . 192512 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\schedsvc.dll
[-] 2008-04-14 . 3FF232A7731621B8902D81D42418C93C . 192512 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll
[-] 2004-08-17 . 29AC93307C6182DBE336BCA314947F28 . 190976 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\schedsvc.dll
[-] 2008-04-14 . BECD5271DC4E3B7C3D035F790FCBC1E5 . 71680 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ssdpsrv.dll
[-] 2008-04-14 . BECD5271DC4E3B7C3D035F790FCBC1E5 . 71680 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\ssdpsrv.dll
[-] 2008-04-14 . BECD5271DC4E3B7C3D035F790FCBC1E5 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll
[-] 2004-08-17 . 88C28F53F53438DAFCD95E99C837C61E . 71680 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ssdpsrv.dll
[-] 2008-04-14 . A75DD6FC3DBEE4FFF5EBC9F2C28BB66E . 295936 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\termsrv.dll
[-] 2008-04-14 . A75DD6FC3DBEE4FFF5EBC9F2C28BB66E . 295936 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\termsrv.dll
[-] 2008-04-14 . A75DD6FC3DBEE4FFF5EBC9F2C28BB66E . 295936 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll
[-] 2004-08-17 . 2F5919F2F6EE7A845893D9C3AA2BC56A . 295936 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\termsrv.dll
[-] 2008-04-14 . 6B8E7A90E576D4FE308F97C69060A171 . 171008 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\appmgmts.dll
[-] 2008-04-14 . 6B8E7A90E576D4FE308F97C69060A171 . 171008 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\appmgmts.dll
[-] 2008-04-14 . 6B8E7A90E576D4FE308F97C69060A171 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\appmgmts.dll
[-] 2004-08-17 . 421184F91EAE5C6E78E653C6B32AAE84 . 171008 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\appmgmts.dll
[-] 2001-10-25 . AFDFF022A01F0B11C776F0860C3B282F . 11776 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys
[-] 2008-04-13 16:39 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\ServicePackFiles\i386\aec.sys
[-] 2008-04-13 16:39 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\aec.sys
[-] 2004-08-03 22:39 . 841F385C6CFAF66B58FBD898722BB4F0 . 142464 . . [5.1.2601.2078] . . c:\windows\system32\drivers\aec.sys
[-] 2008-04-13 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\agp440.sys
[-] 2008-04-13 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\agp440.sys
[-] 2008-04-13 . 08FD04AA961BDC77FB983F328334E3D7 . 42368 . . [5.1.2600.5512] . . c:\windows\system32\drivers\agp440.sys
[-] 2008-04-13 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\ip6fw.sys
[-] 2008-04-13 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\ip6fw.sys
[-] 2008-04-13 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys
[-] 2004-08-03 . 4448006B6BC60E6C027932CFC38D6855 . 29056 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\ip6fw.sys
[-] 2008-04-14 03:21 . 7C3351F60B759D5D917E68342AE3307C . 927504 . . [4.1.0.61] . . c:\windows\ServicePackFiles\i386\mfc40u.dll
[-] 2008-04-14 03:21 . 7C3351F60B759D5D917E68342AE3307C . 927504 . . [4.1.0.61] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\mfc40u.dll
[-] 2008-04-14 03:21 . 7C3351F60B759D5D917E68342AE3307C . 927504 . . [4.1.0.61] . . c:\windows\system32\mfc40u.dll
[-] 2001-10-25 12:00 . A9D81C87BEF253D4CE3A5F8CEE2526C4 . 924432 . . [4.1.6140] . . c:\windows\$NtServicePackUninstall$\mfc40u.dll
[-] 2008-04-14 . 221CD1C815B8A6B79389C3F5D1018DE8 . 33792 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\msgsvc.dll
[-] 2008-04-14 . 221CD1C815B8A6B79389C3F5D1018DE8 . 33792 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\msgsvc.dll
[-] 2008-04-14 . 221CD1C815B8A6B79389C3F5D1018DE8 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll
[-] 2004-08-17 . 8B2FCBD881879B55BE40B41F12FFC431 . 33792 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\msgsvc.dll
[-] 2008-04-14 03:21 . 6199B2AE3F9DB9CB6DB230471A1DC601 . 52224 . . [9.0.1.56] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\mspmsnsv.dll
[-] 2008-04-14 03:21 . 6199B2AE3F9DB9CB6DB230471A1DC601 . 52224 . . [9.0.1.56] . . c:\windows\system32\mspmsnsv.dll
[-] 2008-04-14 03:21 . 6199B2AE3F9DB9CB6DB230471A1DC601 . 52224 . . [9.0.1.56] . . c:\windows\system32\dllcache\mspmsnsv.dll
[-] 2004-08-17 13:49 . E02E913B3841717A890A644EE167B9A5 . 52224 . . [9.0.1.56] . . c:\windows\$NtServicePackUninstall$\mspmsnsv.dll
[-] 2008-04-14 03:21 . 023DD70573D644F3D9C8B1258A7BFD08 . 435712 . . [5.1.2400.5512] . . c:\windows\ServicePackFiles\i386\ntmssvc.dll
[-] 2008-04-14 03:21 . 023DD70573D644F3D9C8B1258A7BFD08 . 435712 . . [5.1.2400.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\ntmssvc.dll
[-] 2008-04-14 03:21 . 023DD70573D644F3D9C8B1258A7BFD08 . 435712 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll
[-] 2004-08-17 13:49 . D8D2B13BA93AE830B1A637DF571D1195 . 435712 . . [5.1.2400.2180] . . c:\windows\$NtServicePackUninstall$\ntmssvc.dll
[-] 2008-04-14 . 651BD90DCEE5B7BDC74A2EB7C9266F9E . 186368 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\upnphost.dll
[-] 2008-04-14 . 651BD90DCEE5B7BDC74A2EB7C9266F9E . 186368 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\upnphost.dll
[-] 2008-04-14 . 651BD90DCEE5B7BDC74A2EB7C9266F9E . 186368 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll
[-] 2004-08-17 . 984FC1518B0D5B31D76F0E63608E0500 . 185344 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\upnphost.dll
[-] 2008-04-14 . 8E009E7AC012823845D5F39A77F4A27F . 367616 . . [5.3.2600.5512] . . c:\windows\ServicePackFiles\i386\dsound.dll
[-] 2008-04-14 . 8E009E7AC012823845D5F39A77F4A27F . 367616 . . [5.3.2600.5512] . . c:\windows\SoftwareDistribution\Download\44c8256673ca0542cb198384f8131b68\dsound.dll
[-] 2008-04-14 . 8E009E7AC012823845D5F39A77F4A27F . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dsound.dll
[-] 2004-08-17 . 8ECC475F5BAD26DB85943F888D62E364 . 367616 . . [5.3.2600.2180] . . c:\windows\$NtServicePackUninstall$\dsound.dll
.
((((((((((((((((((((((((((((( SnapShot@2010-05-12_15.35.24 )))))))))))))))))))))))))))))))))))))))))
.
+ 2001-10-25 12:00 . 2010-05-12 20:36 51358 c:\windows\system32\perfc009.dat
+ 2010-05-03 13:17 . 2010-05-12 20:28 32768 c:\windows\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
- 2010-05-03 13:17 . 2010-05-12 14:49 32768 c:\windows\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
+ 2010-05-03 13:17 . 2010-05-12 20:28 32768 c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
- 2010-05-03 13:17 . 2010-05-12 14:49 32768 c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
- 2010-05-10 04:34 . 2010-05-12 14:49 16384 c:\windows\system32\config\systemprofile\Cookies\index.dat
+ 2010-05-12 15:42 . 2010-05-12 20:28 16384 c:\windows\system32\config\systemprofile\Cookies\index.dat
+ 2001-10-25 12:00 . 2010-05-12 20:36 351080 c:\windows\system32\perfh009.dat
- 2010-05-12 15:29 . 2010-05-12 13:33 55337872 c:\windows\SoftwareDistribution\Download\Install\mpam-fe.exe
+ 2010-04-04 06:54 . 2010-04-04 06:54 11850240 c:\windows\Installer\4de846.msp
+ 2010-04-04 06:54 . 2010-04-04 06:54 11850240 c:\windows\Installer\3fbb8d.msp
+ 2010-04-04 06:54 . 2010-04-04 06:54 11850240 c:\windows\Installer\1ebf1.msp
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2008-04-14 110592]
"MSSE"="c:\program files\Microsoft Security Essentials\msseces.exe" [2010-02-21 1093208]
"nwiz"="c:\program files\NVIDIA Corporation\nView\nwiz.exe" [2010-03-31 1657448]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-04-03 13670504]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-21 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-03-24 952768]
"RTHDCPL"="RTHDCPL.EXE" [2007-04-12 16132608]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
c:\documents and settings\Jirka\Nabˇdka Start\Programy\Po spuçtŘnˇ\
PopTray.lnk - c:\program files\PopTray\PopTray.exe [2006-9-16 1666048]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\totalcmd\\TOTALCMD.EXE"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\program files\Microsoft ActiveSync\rapimgr.exe"= c:\program files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager
"c:\program files\Microsoft ActiveSync\wcescomm.exe"= c:\program files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager
"c:\program files\Microsoft ActiveSync\WCESMgr.exe"= c:\program files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application
"c:\\Program Files\\Efficasoft Mobile Express\\MobileExpress.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"26675:TCP"= 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service
S2 gupdate;Služba Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [9.5.2010 19:11 135664]
S2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [4.2.2010 17:52 1291544]
S3 GemCCID;GemCCID;c:\windows\system32\drivers\GemCCID.sys [10.8.2009 12:07 89600]
.
Obsah adresáře 'Naplánované úlohy'
2010-05-12 c:\windows\Tasks\GoogleUpdateTaskMachineCore1caef9b537a392e.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-05-09 17:11]
2010-05-12 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-05-09 17:11]
2010-05-12 c:\windows\Tasks\MP Scheduled Scan.job
- c:\program files\Microsoft Security Essentials\MpCmdRun.exe [2009-12-09 16:02]
.
.
------- Doplňkový sken -------
.
FF - ProfilePath -
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
.
**************************************************************************
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory:
**************************************************************************
.
Celkový čas: 2010-05-12 22:40:31
ComboFix-quarantined-files.txt 2010-05-12 20:40
ComboFix2.txt 2010-05-12 15:36
ComboFix3.txt 2010-05-09 19:49
Před spuštěním: Volných bajtů: 12 317 474 816
Po spuštění: Volných bajtů: 12 300 668 928
- - End Of File - - 5CDA5EA55D291603DBCECD9C565AB743
Re: Prosím o kontrolu logu. Děkuji
Stahni Gmer http://www.gmer.net/gmer.zip
-rozbal ho a spusť
-po prvním rychlém skenu klikni na tlačítko Save, uloží se log, který mi sem zkopíruješ.
-v pravém sloupci označ všechny položky fajfkou ve čtverečku a klikni na tlačítko scan
-až se sken dokončí, opět tlačítkem Save ulož log, který sem vložíš.
-rozbal ho a spusť
-po prvním rychlém skenu klikni na tlačítko Save, uloží se log, který mi sem zkopíruješ.
-v pravém sloupci označ všechny položky fajfkou ve čtverečku a klikni na tlačítko scan
-až se sken dokončí, opět tlačítkem Save ulož log, který sem vložíš.
Re: Prosím o kontrolu logu. Děkuji
Tak při prvním spuštění mě pc provedl v průběhu scanu restart. Provedl jsem podruhé.První log má 0-vou velikost, druhý je zde:
GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-05-13 16:54:28
Windows 5.1.2600 Service Pack 3
Running: gmer.exe; Driver: C:\DOCUME~1\Jirka\LOCALS~1\Temp\fwxyapob.sys
---- Kernel code sections - GMER 1.0.15 ----
.text C:\WINDOWS\system32\DRIVERS\nv4_mini.sys section is writeable [0xB73E3380, 0x566445, 0xE8000020]
---- Devices - GMER 1.0.15 ----
Device \Driver\BTHUSB \Device\0000007b bthport.sys (Ovladač sběrnice Bluetooth/Microsoft Corporation)
Device \Driver\BTHUSB \Device\0000007b bthport.sys (Ovladač sběrnice Bluetooth/Microsoft Corporation)
Device \Driver\BTHUSB \Device\0000007d bthport.sys (Ovladač sběrnice Bluetooth/Microsoft Corporation)
Device \Driver\BTHUSB \Device\0000007d bthport.sys (Ovladač sběrnice Bluetooth/Microsoft Corporation)
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\0009dd500139
Reg HKLM\SYSTEM\ControlSet003\Services\BTHPORT\Parameters\Keys\0009dd500139 (not active ControlSet)
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@DeviceNotSelectedTimeout 15
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@GDIProcessHandleQuota 10000
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@Spooler yes
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@swapdisk
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@TransmissionRetryTimeout 90
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@USERProcessHandleQuota 10000
---- EOF - GMER 1.0.15 ----
Je to poze disk C.Dčko jsem neskenoval.
Díky
GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-05-13 16:54:28
Windows 5.1.2600 Service Pack 3
Running: gmer.exe; Driver: C:\DOCUME~1\Jirka\LOCALS~1\Temp\fwxyapob.sys
---- Kernel code sections - GMER 1.0.15 ----
.text C:\WINDOWS\system32\DRIVERS\nv4_mini.sys section is writeable [0xB73E3380, 0x566445, 0xE8000020]
---- Devices - GMER 1.0.15 ----
Device \Driver\BTHUSB \Device\0000007b bthport.sys (Ovladač sběrnice Bluetooth/Microsoft Corporation)
Device \Driver\BTHUSB \Device\0000007b bthport.sys (Ovladač sběrnice Bluetooth/Microsoft Corporation)
Device \Driver\BTHUSB \Device\0000007d bthport.sys (Ovladač sběrnice Bluetooth/Microsoft Corporation)
Device \Driver\BTHUSB \Device\0000007d bthport.sys (Ovladač sběrnice Bluetooth/Microsoft Corporation)
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\0009dd500139
Reg HKLM\SYSTEM\ControlSet003\Services\BTHPORT\Parameters\Keys\0009dd500139 (not active ControlSet)
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@DeviceNotSelectedTimeout 15
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@GDIProcessHandleQuota 10000
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@Spooler yes
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@swapdisk
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@TransmissionRetryTimeout 90
Reg HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows@USERProcessHandleQuota 10000
---- EOF - GMER 1.0.15 ----
Je to poze disk C.Dčko jsem neskenoval.
Díky
Re: Prosím o kontrolu logu. Děkuji
Otestuj na www.virustotal.com
c:\windows\system32\SSRemove.Exe
c:\windows\system32\XRXS2LMK.DLL
c:\windows\system32\SSCoInst.dll
c:\windows\gdrv.sys
c:\windows\system32\drivers\atapi.sys
-Do okénka zkopíruj cestu k souboru , pokud napíše, že soubor byl už testován, dej otestovat znovu.
-Sem vlož link s výsledky.
Změnilo se něco?
c:\windows\system32\SSRemove.Exe
c:\windows\system32\XRXS2LMK.DLL
c:\windows\system32\SSCoInst.dll
c:\windows\gdrv.sys
c:\windows\system32\drivers\atapi.sys
-Do okénka zkopíruj cestu k souboru , pokud napíše, že soubor byl už testován, dej otestovat znovu.
-Sem vlož link s výsledky.
Změnilo se něco?
Re: Prosím o kontrolu logu. Děkuji
Takže výsledky:
http://www.virustotal.com/cs/analisis/c ... 1273769455
http://www.virustotal.com/cs/analisis/6 ... 1271775539
http://www.virustotal.com/cs/analisis/a ... 1273769880
http://www.virustotal.com/cs/analisis/e ... 1273770140
http://www.virustotal.com/cs/analisis/b ... 1273770295
Je to pořád to samé.Na C se objevují soubory co tam nemají být.Mám pocit jestli něco není v MBR tabulce?
http://www.virustotal.com/cs/analisis/c ... 1273769455
http://www.virustotal.com/cs/analisis/6 ... 1271775539
http://www.virustotal.com/cs/analisis/a ... 1273769880
http://www.virustotal.com/cs/analisis/e ... 1273770140
http://www.virustotal.com/cs/analisis/b ... 1273770295
Je to pořád to samé.Na C se objevují soubory co tam nemají být.Mám pocit jestli něco není v MBR tabulce?
Re: Prosím o kontrolu logu. Děkuji
Prosím tě, jaké soubory se Ti objevují na C, můžeš jich pár otestovat na virustotalu?
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 84 hostů