4.cast logu:
+ 2004-08-17 13:48 . 2008-04-14 06:48 7680 c:\windows\system32\kbdsmsfi.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6656 c:\windows\system32\kbdsg.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\kbdsf.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\kbdpo.dll
+ 2004-08-17 13:48 . 2008-04-14 06:48 7168 c:\windows\system32\kbdno1.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\kbdno.dll
+ 2001-10-25 14:00 . 2008-04-14 06:48 7168 c:\windows\system32\kbdnec.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\kbdne.dll
+ 2004-08-17 13:48 . 2008-04-14 06:48 6144 c:\windows\system32\kbdmlt48.dll
+ 2004-08-17 13:48 . 2008-04-14 06:48 6144 c:\windows\system32\kbdmlt47.dll
+ 2004-08-17 13:48 . 2008-04-14 06:48 5632 c:\windows\system32\kbdmaori.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\kbdmac.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6656 c:\windows\system32\kbdla.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 5632 c:\windows\system32\kbdit142.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 5632 c:\windows\system32\kbdit.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 5632 c:\windows\system32\kbdir.dll
+ 2004-08-17 13:48 . 2008-04-14 06:48 6656 c:\windows\system32\kbdinmal.dll
+ 2004-08-17 13:48 . 2008-04-14 06:48 6144 c:\windows\system32\kbdinben.dll
+ 2004-08-17 13:48 . 2008-04-14 06:48 6144 c:\windows\system32\kbdinbe1.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\kbdic.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\kbdgr1.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\kbdgr.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 5632 c:\windows\system32\kbdgae.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\kbdfr.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\kbdfo.dll
+ 2004-08-17 13:48 . 2008-04-14 06:48 7168 c:\windows\system32\kbdfi1.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\kbdfi.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\kbdfc.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\kbdes.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 5120 c:\windows\system32\kbddv.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\kbdda.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6656 c:\windows\system32\kbdcz2.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6656 c:\windows\system32\kbdcz1.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 7168 c:\windows\system32\kbdcz.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 7680 c:\windows\system32\kbdcan.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\kbdca.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\kbdbr.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\kbdbene.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\kbdbe.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 4096 c:\windows\system32\iprtprio.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 3584 c:\windows\system32\iprop.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 9216 c:\windows\system32\iissuba.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 8192 c:\windows\system32\igmpagnt.dll
+ 2004-08-17 13:48 . 2008-04-14 06:46 3584 c:\windows\system32\icmp.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 7680 c:\windows\system32\chcp.com
+ 2001-10-25 14:00 . 2001-10-25 14:00 8192 c:\windows\system32\hostname.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 4880 c:\windows\system32\himem.sys
+ 2004-08-17 13:49 . 2008-04-14 06:51 7168 c:\windows\system32\hccoin.dll
+ 2004-08-17 13:48 . 2008-04-14 05:47 9728 c:\windows\system32\gpkrsrc.dll
+ 2004-08-17 13:48 . 2008-04-14 06:44 9344 c:\windows\system32\framebuf.dll
+ 2001-10-25 14:00 . 2008-04-14 06:52 7680 c:\windows\system32\forcedos.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 3072 c:\windows\system32\fixmapi.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 9728 c:\windows\system32\finger.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 9216 c:\windows\system32\find.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 8504 c:\windows\system32\exe2bin.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 9216 c:\windows\system32\eventvwr.exe
+ 2004-08-17 13:48 . 2008-04-14 06:03 4096 c:\windows\system32\dsprpres.dll
+ 2004-07-17 09:36 . 2004-07-17 09:36 4656 c:\windows\system32\ds16gt.dLL
+ 2001-10-25 14:00 . 2001-10-25 14:00 4352 c:\windows\system32\drivers\wmilib.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 4736 c:\windows\system32\drivers\usbd.sys
+ 2004-08-03 22:58 . 2008-04-13 22:09 4352 c:\windows\system32\drivers\swenum.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 5888 c:\windows\system32\drivers\rootmdm.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 4224 c:\windows\system32\drivers\rdpcdd.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 8832 c:\windows\system32\drivers\rasacd.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 3328 c:\windows\system32\drivers\pciide.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 6784 c:\windows\system32\drivers\ParVdm.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 3456 c:\windows\system32\drivers\oprghdlr.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 2944 c:\windows\system32\drivers\null.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 4224 c:\windows\system32\drivers\mnmdd.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 7680 c:\windows\system32\drivers\mcd.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 7936 c:\windows\system32\drivers\fs_rec.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 3328 c:\windows\system32\drivers\dxgthk.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 5888 c:\windows\system32\drivers\dmload.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 4224 c:\windows\system32\drivers\beep.sys
+ 2004-08-17 13:48 . 2008-04-14 06:41 3072 c:\windows\system32\dpnlobby.dll
+ 2004-08-17 13:48 . 2008-04-14 06:41 3072 c:\windows\system32\dpnaddr.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 4608 c:\windows\system32\dllhst3g.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 8261 c:\windows\system32\dllcache\zoneoc.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 7168 c:\windows\system32\dllcache\wshnetbs.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 9216 c:\windows\system32\dllcache\wshatm.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 2736 c:\windows\system32\dllcache\wowdeb.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 4352 c:\windows\system32\dllcache\wmilib.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 2112 c:\windows\system32\dllcache\winspool.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 2864 c:\windows\system32\dllcache\winsock.dll
+ 2004-08-03 20:51 . 2004-08-03 20:51 5120 c:\windows\system32\dllcache\winnls.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 8192 c:\windows\system32\dllcache\winhstb.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 9216 c:\windows\system32\dllcache\winfax.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 9216 c:\windows\system32\dllcache\wifeman.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 4608 c:\windows\system32\dllcache\vjoy.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 2176 c:\windows\system32\dllcache\vga.drv
+ 2001-10-25 14:00 . 2001-10-25 14:00 9344 c:\windows\system32\dllcache\vga.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 9291 c:\windows\system32\dllcache\ver.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 7680 c:\windows\system32\dllcache\vcdex.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 4096 c:\windows\system32\dllcache\unlodctr.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 4048 c:\windows\system32\dllcache\timer.drv
+ 2001-10-25 14:00 . 2001-10-25 14:00 5632 c:\windows\system32\dllcache\tapiperf.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 3072 c:\windows\system32\dllcache\systray.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 3360 c:\windows\system32\dllcache\system.drv
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\svcpack.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 9216 c:\windows\system32\dllcache\subst.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 4208 c:\windows\system32\dllcache\storage.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 9728 c:\windows\system32\dllcache\sprestrt.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 1744 c:\windows\system32\dllcache\sound.drv
+ 2001-10-25 14:00 . 2001-10-25 14:00 5632 c:\windows\system32\dllcache\softpub.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 5632 c:\windows\system32\dllcache\skdll.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 5120 c:\windows\system32\dllcache\shell.dll
+ 2004-08-02 12:20 . 2004-08-02 12:20 4569 c:\windows\system32\dllcache\secupd.dat
+ 2001-10-25 14:00 . 2001-10-25 14:00 9728 c:\windows\system32\dllcache\rsvpperf.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6656 c:\windows\system32\dllcache\routetab.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 5888 c:\windows\system32\dllcache\rootmdm.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 3072 c:\windows\system32\dllcache\rnr20.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 3584 c:\windows\system32\dllcache\riched32.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 4608 c:\windows\system32\dllcache\regwiz.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 3584 c:\windows\system32\dllcache\regedt32.exe
+ 2004-08-03 20:48 . 2004-08-03 20:48 3330 c:\windows\system32\dllcache\redir.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 7168 c:\windows\system32\dllcache\recover.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 4224 c:\windows\system32\dllcache\rdpcdd.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 8832 c:\windows\system32\dllcache\rasacd.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 8192 c:\windows\system32\dllcache\qosname.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 3761 c:\windows\system32\dllcache\pubprn.vbs
+ 2001-10-25 14:00 . 2001-10-25 14:00 8192 c:\windows\system32\dllcache\psnppagn.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 9216 c:\windows\system32\dllcache\print.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 5632 c:\windows\system32\dllcache\perfnw.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6784 c:\windows\system32\dllcache\parvdm.sys
+ 2001-10-11 11:30 . 2001-10-11 11:30 4463 c:\windows\system32\dllcache\oembios.dat
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\nwevent.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 3244 c:\windows\system32\dllcache\nw16.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 2944 c:\windows\system32\dllcache\null.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 7084 c:\windows\system32\dllcache\nlsfunc.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 7680 c:\windows\system32\dllcache\ncxpnt.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6656 c:\windows\system32\dllcache\msswchx.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 4608 c:\windows\system32\dllcache\mssip32.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 7168 c:\windows\system32\dllcache\msr2cenu.dll
+ 2004-08-17 13:48 . 2008-04-14 06:48 4126 c:\windows\system32\dllcache\msdxmlc.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 7168 c:\windows\system32\dllcache\mscat32.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 8192 c:\windows\system32\dllcache\mqperf.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 2032 c:\windows\system32\dllcache\mouse.drv
+ 2001-10-25 14:00 . 2001-10-25 14:00 8192 c:\windows\system32\dllcache\mountvol.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 4224 c:\windows\system32\dllcache\mnmdd.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 5632 c:\windows\system32\dllcache\mll_qic.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 7680 c:\windows\system32\dllcache\mll_mtf.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 3584 c:\windows\system32\dllcache\mll_hp.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 4608 c:\windows\system32\dllcache\mchgrcoi.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 7680 c:\windows\system32\dllcache\mciole32.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 8192 c:\windows\system32\dllcache\mciole16.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 7680 c:\windows\system32\dllcache\mcd.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 8192 c:\windows\system32\dllcache\mag_hook.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 9936 c:\windows\system32\dllcache\lzexpand.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 2560 c:\windows\system32\dllcache\lz32.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 9216 c:\windows\system32\dllcache\lprmonui.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 8704 c:\windows\system32\dllcache\lpr.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\lpq.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 5120 c:\windows\system32\dllcache\lodctr.exe
+ 2004-08-17 13:49 . 2008-04-14 06:51 6656 c:\windows\system32\dllcache\laprxy.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 9728 c:\windows\system32\dllcache\label.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 2000 c:\windows\system32\dllcache\keyboard.drv
+ 2001-10-25 14:00 . 2001-10-25 14:00 7040 c:\windows\system32\dllcache\kdcom.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdusx.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdusr.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdusl.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 5632 c:\windows\system32\dllcache\kbdus.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 5632 c:\windows\system32\dllcache\kbduk.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdsw.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdsp.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6656 c:\windows\system32\dllcache\kbdsg.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdsf.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdpo.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdno.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdne.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdmac.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6656 c:\windows\system32\dllcache\kbdla.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 5632 c:\windows\system32\dllcache\kbdit142.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 5632 c:\windows\system32\dllcache\kbdit.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 5632 c:\windows\system32\dllcache\kbdir.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdic.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdgr1.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdgr.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 5632 c:\windows\system32\dllcache\kbdgae.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdfr.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdfo.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdfi.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdfc.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdes.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 5120 c:\windows\system32\dllcache\kbddv.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdda.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6656 c:\windows\system32\dllcache\kbdcz2.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6656 c:\windows\system32\dllcache\kbdcz1.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 7168 c:\windows\system32\dllcache\kbdcz.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 7680 c:\windows\system32\dllcache\kbdcan.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdca.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdbr.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdbene.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\kbdbe.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 4096 c:\windows\system32\dllcache\iprtprio.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 3584 c:\windows\system32\dllcache\iprop.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 9216 c:\windows\system32\dllcache\iissuba.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 8192 c:\windows\system32\dllcache\hostname.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 4880 c:\windows\system32\dllcache\himem.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 6144 c:\windows\system32\dllcache\fsconins.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 7936 c:\windows\system32\dllcache\fs_rec.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 3072 c:\windows\system32\dllcache\fixmapi.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 9728 c:\windows\system32\dllcache\finger.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 9216 c:\windows\system32\dllcache\find.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 8504 c:\windows\system32\dllcache\exe2bin.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 9216 c:\windows\system32\dllcache\eventvwr.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 3328 c:\windows\system32\dllcache\dxgthk.sys
+ 2004-07-17 09:36 . 2004-07-17 09:36 4656 c:\windows\system32\dllcache\ds16gt.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 5888 c:\windows\system32\dllcache\dmload.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 4608 c:\windows\system32\dllcache\dllhst3g.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 8192 c:\windows\system32\dllcache\control.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 3584 c:\windows\system32\dllcache\comcat.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 7680 c:\windows\system32\dllcache\ckcnv.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 8192 c:\windows\system32\dllcache\cidaemon.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 5120 c:\windows\system32\dllcache\bootvrfy.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 4608 c:\windows\system32\dllcache\bootok.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 4224 c:\windows\system32\dllcache\beep.sys
+ 2004-08-17 13:48 . 2008-04-14 05:39 7680 c:\windows\system32\dllcache\asferror.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 9035 c:\windows\system32\dllcache\ansi.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 7168 c:\windows\system32\diskcopy.com
+ 2001-10-25 14:00 . 2001-10-25 14:00 9216 c:\windows\system32\diskcomp.com
+ 2004-08-17 13:49 . 2008-04-14 06:51 8704 c:\windows\system32\dciman32.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 8192 c:\windows\system32\d3d8thk.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 8192 c:\windows\system32\control.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 3584 c:\windows\system32\comcat.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 7680 c:\windows\system32\ckcnv.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 8192 c:\windows\system32\cidaemon.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 5120 c:\windows\system32\bootvrfy.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 4608 c:\windows\system32\bootok.exe
+ 2004-08-17 13:48 . 2008-04-14 05:39 7680 c:\windows\system32\asferror.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 9035 c:\windows\system32\ansi.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 256419 c:\windows\winhelp.exe
+ 2004-08-17 13:49 . 2008-04-14 06:52 338944 c:\windows\system32\zipfldr.dll
+ 2004-08-17 13:48 . 2008-04-13 22:05 188928 c:\windows\system32\xpsp1res.dll
+ 2004-08-17 13:48 . 2008-04-13 22:10 463360 c:\windows\system32\xpob2res.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 129024 c:\windows\system32\xmlprov.dll
+ 2004-07-17 09:39 . 2004-07-17 09:39 175224 c:\windows\system32\xenroll.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 383488 c:\windows\system32\wzcdlg.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 108032 c:\windows\system32\wshbth.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 608256 c:\windows\system32\wsecedit.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 264192 c:\windows\system32\wow32.dll
+ 2004-08-17 13:48 . 2008-04-14 05:49 173056 c:\windows\system32\wmerror.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 145408 c:\windows\system32\wiavusd.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 334336 c:\windows\system32\wiaservc.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 124416 c:\windows\system32\wiadss.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 462336 c:\windows\system32\wiadefui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 135680 c:\windows\system32\webvw.dll
+ 2004-08-17 13:49 . 2009-03-08 02:34 236544 c:\windows\system32\webcheck.dll
+ 2001-10-25 14:00 . 2008-04-14 06:52 215552 c:\windows\system32\wavemsp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 176640 c:\windows\system32\w32time.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 430592 c:\windows\system32\vssapi.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 100864 c:\windows\system32\verifier.exe
+ 2004-08-17 13:49 . 2010-03-10 06:17 420352 c:\windows\system32\vbscript.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 219648 c:\windows\system32\uxtheme.dll
+ 2001-10-24 12:25 . 2006-10-20 21:41 102457 c:\windows\system32\usrv42a.dll
+ 2001-10-24 12:25 . 2006-10-20 21:41 323641 c:\windows\system32\usrdtea.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 406016 c:\windows\system32\usp10.dll
+ 2004-08-17 13:49 . 2004-08-17 13:49 156160 c:\windows\system32\usmt\sysmod_a.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 193536 c:\windows\system32\usmt\sysmod.dll
+ 2004-08-17 13:49 . 2004-08-17 13:49 188928 c:\windows\system32\usmt\script_a.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 216576 c:\windows\system32\usmt\script.dll
+ 2004-08-17 13:49 . 2004-08-17 13:49 192512 c:\windows\system32\usmt\migism_a.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 274432 c:\windows\system32\usmt\migism.dll
+ 2004-08-17 13:49 . 2004-08-17 13:49 108544 c:\windows\system32\usmt\guitrn_a.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 133632 c:\windows\system32\usmt\guitrn.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 729600 c:\windows\system32\userenv.dll
+ 2004-08-17 13:49 . 2009-03-08 02:34 105984 c:\windows\system32\url.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 239616 c:\windows\system32\upnpui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 186368 c:\windows\system32\upnphost.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 133632 c:\windows\system32\upnp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 316416 c:\windows\system32\untfs.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 287232 c:\windows\system32\ulib.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 177856 c:\windows\system32\typelib.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 385536 c:\windows\system32\themeui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 358912 c:\windows\system32\termmgr.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 181760 c:\windows\system32\tapi32.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 858624 c:\windows\system32\tapi3.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 997376 c:\windows\system32\syssetup.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 190464 c:\windows\system32\syncui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 713728 c:\windows\system32\sxs.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 138752 c:\windows\system32\swprv.dll
+ 2004-08-17 13:49 . 2009-08-26 08:02 247326 c:\windows\system32\strmdll.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 122368 c:\windows\system32\stobject.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 136704 c:\windows\system32\sti_ci.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 180800 c:\windows\system32\sqlunirl.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 442368 c:\windows\system32\sqlsrv32.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 182272 c:\windows\system32\snmpsnap.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 365568 c:\windows\system32\smlogcfg.dll
+ 2004-08-03 20:31 . 2004-08-03 20:31 306176 c:\windows\system32\slbcsp.dll
+ 2004-08-17 13:49 . 2009-06-25 08:27 147456 c:\windows\system32\schannel.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 135168 c:\windows\system32\shsvcs.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 155136 c:\windows\system32\shmedia.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 439296 c:\windows\system32\shimgvw.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 435712 c:\windows\system32\shellstyle.dll
+ 2004-08-17 13:48 . 2008-04-14 05:53 556544 c:\windows\system32\shdoclc.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 140288 c:\windows\system32\sfc_os.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 414720 c:\windows\system32\setupdll.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 991744 c:\windows\system32\setupapi.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 131072 c:\windows\system32\Setup\tsoc.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 101888 c:\windows\system32\Setup\setupqry.dll
+ 2004-08-03 20:10 . 2004-08-03 20:10 126976 c:\windows\system32\Setup\netfxocm.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 169472 c:\windows\system32\Setup\msmqocm.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 124928 c:\windows\system32\Setup\imsinsnt.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 506880 c:\windows\system32\Setup\iis.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 132608 c:\windows\system32\Setup\fxsocm.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 274944 c:\windows\system32\Setup\comsetup.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 130048 c:\windows\system32\sdpblb.dll
+ 2004-08-17 13:49 . 2008-05-09 10:56 172032 c:\windows\system32\scrrun.dll
+ 2004-08-17 13:49 . 2008-05-09 10:56 180224 c:\windows\system32\scrobj.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 322560 c:\windows\system32\scesrv.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 185856 c:\windows\system32\scecli.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 170496 c:\windows\system32\sccsccp.dll
+ 2004-08-03 20:31 . 2004-08-03 20:31 169984 c:\windows\system32\sccbase.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 118784 c:\windows\system32\scardssp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 159232 c:\windows\system32\sbeio.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 270848 c:\windows\system32\sbe.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 423424 c:\windows\system32\samsrv.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 132608 c:\windows\system32\rsvp.exe
+ 2004-08-03 20:31 . 2008-04-13 21:07 208384 c:\windows\system32\rsaenh.dll
+ 2004-08-17 13:49 . 2009-04-15 14:54 585216 c:\windows\system32\rpcrt4.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 433664 c:\windows\system32\riched20.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 107520 c:\windows\system32\rend.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 398336 c:\windows\system32\regwizc.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 102400 c:\windows\system32\rcbdyctl.dll
+ 2004-08-17 13:49 . 2009-10-12 13:40 150016 c:\windows\system32\rastls.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 210944 c:\windows\system32\rasppp.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 143360 c:\windows\system32\rasmontr.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 662528 c:\windows\system32\rasdlg.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 237056 c:\windows\system32\rasapi32.dll
+ 2004-08-17 13:48 . 2008-04-13 20:51 733696 c:\windows\system32\qedwipes.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 563200 c:\windows\system32\qedit.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 386560 c:\windows\system32\qdvd.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 279040 c:\windows\system32\qdv.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 192512 c:\windows\system32\qcap.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 237568 c:\windows\system32\qasf.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 563200 c:\windows\system32\printui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 105472 c:\windows\system32\polstore.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 171008 c:\windows\system32\photowiz.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 272128 c:\windows\system32\perfi009.dat
+ 2001-10-25 14:00 . 2001-10-25 14:00 269162 c:\windows\system32\perfi005.dat
+ 2001-10-25 14:00 . 2010-07-25 06:56 392296 c:\windows\system32\perfh009.dat
+ 2004-08-17 13:49 . 2009-03-06 14:23 284160 c:\windows\system32\pdh.dll
+ 2001-10-24 12:25 . 2006-10-20 21:41 157696 c:\windows\system32\paqsp.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 167774 c:\windows\system32\pagefileconfig.vbs
+ 2004-08-17 13:49 . 2008-04-14 06:51 554496 c:\windows\system32\p2psvc.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 115712 c:\windows\system32\p2pnetsh.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 313856 c:\windows\system32\p2pgraph.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 105472 c:\windows\system32\p2pgasvc.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 153600 c:\windows\system32\p2p.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 713728 c:\windows\system32\opengl32.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 109056 c:\windows\system32\oleprn.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 122880 c:\windows\system32\oledlg.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 551936 c:\windows\system32\oleaut32.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 163328 c:\windows\system32\oleacc.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 153008 c:\windows\system32\ole2nls.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 169520 c:\windows\system32\ole2disp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 192000 c:\windows\system32\offfilt.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 147456 c:\windows\system32\odbctrac.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 278559 c:\windows\system32\odbcjt32.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 106496 c:\windows\system32\odbccp32.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 135168 c:\windows\system32\odbcconf.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 249856 c:\windows\system32\odbc32.dll
+ 2004-08-17 13:49 . 2010-05-06 10:35 206848 c:\windows\system32\occache.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 286208 c:\windows\system32\objsel.dll
+ 2004-08-17 13:49 . 2009-10-13 10:34 271360 c:\windows\system32\oakley.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 127488 c:\windows\system32\nwscript.exe
+ 2004-08-17 13:49 . 2008-04-14 06:51 141824 c:\windows\system32\nwprovau.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 143872 c:\windows\system32\ntshrui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 435712 c:\windows\system32\ntmssvc.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 488448 c:\windows\system32\ntmsmgr.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 180736 c:\windows\system32\ntmsdba.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 119808 c:\windows\system32\ntmarta.dll
+ 2004-08-17 13:48 . 2009-02-09 10:56 709632 c:\windows\system32\ntdll.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 248320 c:\windows\system32\newdev.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 308224 c:\windows\system32\netui2.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 245760 c:\windows\system32\netui1.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 876032 c:\windows\system32\netplwiz.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 171008 c:\windows\system32\netmsg.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 407040 c:\windows\system32\netlogon.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 138240 c:\windows\system32\netid.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 253952 c:\windows\system32\neth.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 215040 c:\windows\system32\netevent.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 625152 c:\windows\system32\netcfgx.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 108480 c:\windows\system32\netapi.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 701440 c:\windows\system32\msxml2.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 506368 c:\windows\system32\msxml.dll
+ 2004-08-17 13:49 . 2007-04-02 16:22 355104 c:\windows\system32\msxbde40.dll
+ 2004-08-17 13:49 . 2007-03-28 16:23 621344 c:\windows\system32\mswstr10.dll
+ 2004-08-17 13:49 . 2008-06-20 17:49 247296 c:\windows\system32\mswsock.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 245760 c:\windows\system32\mswmdm.dll
+ 2004-08-17 13:49 . 2009-08-05 09:01 205312 c:\windows\system32\mswebdvd.dll
+ 2004-08-17 13:49 . 2007-04-02 16:21 838432 c:\windows\system32\mswdat10.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 127024 c:\windows\system32\msvideo.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 121856 c:\windows\system32\msvfw32.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 253952 c:\windows\system32\msvcrt20.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 343040 c:\windows\system32\msvcrt.dll
+ 2003-02-21 02:42 . 2003-02-21 02:42 348160 c:\windows\system32\msvcr71.dll
+ 2002-01-05 01:37 . 2002-01-05 01:37 344064 c:\windows\system32\msvcr70.dll
+ 2003-03-18 18:14 . 2003-03-18 18:14 499712 c:\windows\system32\msvcp71.dll
+ 2002-01-05 01:40 . 2002-01-05 01:40 487424 c:\windows\system32\msvcp70.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 413696 c:\windows\system32\msvcp60.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 565760 c:\windows\system32\msvcp50.dll
Problem s viry - podezření na malware
Re: Problem s viry - podezření na malware
5.cast logu:
+ 2004-08-17 13:49 . 2009-09-11 14:19 136192 c:\windows\system32\msv1_0.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 194560 c:\windows\system32\msutb.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 116224 c:\windows\system32\mstlsapi.dll
+ 2004-08-17 13:49 . 2007-04-02 16:21 264992 c:\windows\system32\mstext40.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 134656 c:\windows\system32\mssap.dll
+ 2004-08-17 13:49 . 2007-04-02 16:21 559904 c:\windows\system32\msrepl40.dll
+ 2004-08-17 13:49 . 2007-04-02 16:20 322336 c:\windows\system32\msrd3x40.dll
+ 2004-08-17 13:49 . 2007-04-02 16:20 432928 c:\windows\system32\msrd2x40.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 201728 c:\windows\system32\mspmsp.dll
+ 2004-08-17 13:49 . 2007-04-02 16:20 355104 c:\windows\system32\mspbde40.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 143360 c:\windows\system32\msorcl32.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 290816 c:\windows\system32\msnsspc.dll
+ 2004-08-17 13:49 . 2007-04-02 16:19 219936 c:\windows\system32\msltus40.dll
+ 2001-10-25 14:00 . 2009-03-08 02:22 156160 c:\windows\system32\msls31.dll
+ 2004-08-17 13:49 . 2007-04-02 16:19 248608 c:\windows\system32\msjtes40.dll
+ 2004-08-17 13:49 . 2007-03-28 16:23 162592 c:\windows\system32\msjint40.dll
+ 2004-07-17 09:34 . 2007-04-02 16:19 355112 c:\windows\system32\msjetoledb40.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 159232 c:\windows\system32\msimtf.dll
+ 2004-08-17 13:48 . 2008-04-13 19:09 884736 c:\windows\system32\msimsg.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 271360 c:\windows\system32\msihnd.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 249856 c:\windows\system32\msieftp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 996864 c:\windows\system32\msgina.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 539136 c:\windows\system32\msftedit.dll
+ 2004-08-17 13:49 . 2007-04-02 16:17 518944 c:\windows\system32\msexch40.dll
+ 2004-08-17 13:49 . 2007-04-02 16:18 326432 c:\windows\system32\msexcl40.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 151552 c:\windows\system32\msdart.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 118784 c:\windows\system32\msdadiag.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 297984 c:\windows\system32\msctf.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 102912 c:\windows\system32\msaatext.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 489472 c:\windows\system32\mqutil.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 186880 c:\windows\system32\mqtrig.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 517120 c:\windows\system32\mqsnap.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 123392 c:\windows\system32\mqrtdep.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 177152 c:\windows\system32\mqrt.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 661504 c:\windows\system32\mqqm.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 225280 c:\windows\system32\mqoa.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 138240 c:\windows\system32\mqad.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 240640 c:\windows\system32\mpg4dmod.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 384512 c:\windows\system32\mp4sdmod.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 310272 c:\windows\system32\mp43dmod.dll
+ 2004-08-17 13:48 . 2008-04-13 20:15 216064 c:\windows\system32\moricons.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 144384 c:\windows\system32\modemui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 206848 c:\windows\system32\mobsync.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 119808 c:\windows\system32\mmutilse.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 164864 c:\windows\system32\mmcbase.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 586240 c:\windows\system32\mlang.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 673088 c:\windows\system32\mlang.dat
+ 2002-01-05 02:36 . 2002-01-05 02:36 964608 c:\windows\system32\mfc70u.dll
+ 2002-01-05 02:48 . 2002-01-05 02:48 974848 c:\windows\system32\mfc70.dll
+ 2004-08-17 13:49 . 2007-04-03 06:44 981760 c:\windows\system32\mfc42u.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 927504 c:\windows\system32\mfc40u.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 924432 c:\windows\system32\mfc40.dll
+ 2001-10-24 12:24 . 2006-10-20 21:41 147968 c:\windows\system32\mdwmdmsp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 117760 c:\windows\system32\mdminst.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 112128 c:\windows\system32\mapistub.dll
+ 2004-08-17 13:49 . 2009-05-07 15:33 346624 c:\windows\system32\localspl.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 221696 c:\windows\system32\localsec.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 399872 c:\windows\system32\lmrt.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 424448 c:\windows\system32\licdll.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 220883 c:\windows\system32\lanman.drv
+ 2004-08-17 13:49 . 2008-04-14 06:51 151552 c:\windows\system32\keymgr.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 362496 c:\windows\system32\jet500.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 191488 c:\windows\system32\iuengine.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 183808 c:\windows\system32\ir50_qcx.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 200192 c:\windows\system32\ir50_qc.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 755200 c:\windows\system32\ir50_32.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 338432 c:\windows\system32\ir41_qcx.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 120320 c:\windows\system32\ir41_qc.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 199168 c:\windows\system32\ir32_32.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 384512 c:\windows\system32\ipsmsnap.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 183808 c:\windows\system32\ipsecsvc.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 351232 c:\windows\system32\ipsecsnp.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 177152 c:\windows\system32\iprtrmgr.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 342528 c:\windows\system32\ippromon.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 329728 c:\windows\system32\ipnathlp.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 160256 c:\windows\system32\ipmontr.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 124416 c:\windows\system32\input.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 147456 c:\windows\system32\initpki.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 450560 c:\windows\system32\infosoft.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 116224 c:\windows\system32\inetcplc.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 110080 c:\windows\system32\imm32.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 144384 c:\windows\system32\imagehlp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 137216 c:\windows\system32\ifmon.dll
+ 2004-08-17 13:49 . 2010-05-06 10:35 387584 c:\windows\system32\iedkcs32.dll
+ 2001-10-25 14:00 . 2009-03-08 02:32 163840 c:\windows\system32\ieakui.dll
+ 2004-08-17 13:49 . 2009-03-08 02:33 229376 c:\windows\system32\ieaksie.dll
+ 2004-08-17 13:49 . 2009-03-08 02:33 125952 c:\windows\system32\ieakeng.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 120832 c:\windows\system32\idq.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 250368 c:\windows\system32\iassdo.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 141312 c:\windows\system32\iasrecst.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 119808 c:\windows\system32\iasrad.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 144384 c:\windows\system32\hotplug.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 330752 c:\windows\system32\hnetwiz.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 345088 c:\windows\system32\hnetcfg.dll
+ 2004-08-03 20:59 . 2008-04-13 22:01 134400 c:\windows\system32\HAL.DLL
+ 2004-08-17 13:49 . 2008-04-14 06:51 614912 c:\windows\system32\h323msp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 200192 c:\windows\system32\gptext.dll
+ 2004-08-03 20:31 . 2004-08-03 20:31 101888 c:\windows\system32\gpkcsp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 568320 c:\windows\system32\gpedit.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 123904 c:\windows\system32\glu32.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 285184 c:\windows\system32\glmf32.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 176128 c:\windows\system32\ftsrch.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 382976 c:\windows\system32\fontext.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 337920 c:\windows\system32\filemgmt.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 124416 c:\windows\system32\fde.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 125952 c:\windows\system32\exts.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 380445 c:\windows\system32\expsrv.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 186880 c:\windows\system32\encdec.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 185344 c:\windows\system32\els.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 499254 c:\windows\system32\dxmasf.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 618496 c:\windows\system32\dx7vb.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 304128 c:\windows\system32\duser.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 113152 c:\windows\system32\dsuiext.dll
+ 2004-08-03 20:31 . 2008-04-13 21:07 138752 c:\windows\system32\dssenh.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 218003 c:\windows\system32\dssec.dat
+ 2004-08-17 13:49 . 2008-04-14 06:51 239616 c:\windows\system32\dsquery.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 142848 c:\windows\system32\dsprop.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 367616 c:\windows\system32\dsound.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 157184 c:\windows\system32\dskquoui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 181248 c:\windows\system32\dsdmo.dll
+ 2004-08-03 21:08 . 2008-04-13 22:15 143872 c:\windows\system32\drivers\usbport.sys
+ 2004-08-17 13:43 . 2008-04-14 06:10 120064 c:\windows\system32\drivers\pcmcia.sys
+ 2004-08-03 21:02 . 2008-04-13 22:04 163584 c:\windows\system32\drivers\nwrdr.sys
+ 2004-08-03 21:15 . 2008-04-13 22:45 574976 c:\windows\system32\drivers\ntfs.sys
+ 2004-08-03 21:14 . 2008-04-13 22:51 162816 c:\windows\system32\drivers\netbt.sys
+ 2004-08-03 21:14 . 2008-04-13 22:50 182656 c:\windows\system32\drivers\ndis.sys
+ 2004-08-03 21:15 . 2008-04-13 22:47 105344 c:\windows\system32\drivers\mup.sys
+ 2004-08-03 21:00 . 2008-04-13 22:02 180608 c:\windows\system32\drivers\mrxdav.sys
+ 2004-08-03 23:15 . 2008-04-13 22:46 141056 c:\windows\system32\drivers\ks.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 125184 c:\windows\system32\drivers\ftdisk.sys
+ 2004-08-03 21:14 . 2008-04-13 22:44 143744 c:\windows\system32\drivers\fastfat.sys
+ 2004-08-17 13:45 . 2008-04-14 06:01 153856 c:\windows\system32\drivers\dmio.sys
+ 2004-08-17 13:45 . 2008-04-14 06:00 800000 c:\windows\system32\drivers\dmboot.sys
+ 2001-10-24 11:53 . 2006-10-20 21:41 262528 c:\windows\system32\drivers\cinemst2.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 352256 c:\windows\system32\drivers\atmuni.sys
+ 2004-08-03 21:14 . 2008-08-14 10:04 138496 c:\windows\system32\drivers\afd.sys
+ 2004-08-17 13:43 . 2008-04-14 05:35 188288 c:\windows\system32\drivers\acpi.sys
+ 2004-08-17 13:49 . 2008-04-14 06:51 116736 c:\windows\system32\dpvvox.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 212480 c:\windows\system32\dpvoice.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 375296 c:\windows\system32\dpnet.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 229888 c:\windows\system32\dplayx.dll
+ 2004-08-17 13:48 . 2008-04-14 06:49 102912 c:\windows\system32\dpcdll.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 104448 c:\windows\system32\dmusic.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 103424 c:\windows\system32\dmsynth.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 105984 c:\windows\system32\dmstyle.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 181248 c:\windows\system32\dmime.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 118784 c:\windows\system32\dmdskres.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 200704 c:\windows\system32\dmdskmgr.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 285184 c:\windows\system32\dmdlgs.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 330752 c:\windows\system32\dmconfig.dll
+ 2004-07-17 09:39 . 2004-07-17 09:39 175224 c:\windows\system32\dllcache\xenroll.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 809984 c:\windows\system32\dllcache\wmvdmod.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 303616 c:\windows\system32\dllcache\wmstream.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 897024 c:\windows\system32\dllcache\wmspdmoe.dll
+ 2004-08-17 13:49 . 2009-04-03 10:15 485376 c:\windows\system32\dllcache\wmspdmod.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 115200 c:\windows\system32\dllcache\wmsdmoe.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 759296 c:\windows\system32\dllcache\wmsdmod.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 102400 c:\windows\system32\dllcache\wmpshell.dll
+ 2004-08-17 13:49 . 2009-07-12 10:21 233472 c:\windows\system32\dllcache\wmpdxm.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 114688 c:\windows\system32\dllcache\wmpasf.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 151552 c:\windows\system32\dllcache\wmidx.dll
+ 2004-08-17 13:48 . 2008-04-14 05:49 173056 c:\windows\system32\dllcache\wmerror.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 230912 c:\windows\system32\dllcache\wmasf.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 670720 c:\windows\system32\dllcache\wmadmoe.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 408064 c:\windows\system32\dllcache\wmadmod.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 256419 c:\windows\system32\dllcache\winhelp.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 145408 c:\windows\system32\dllcache\wiavusd.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 100864 c:\windows\system32\dllcache\verifier.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 177856 c:\windows\system32\dllcache\typelib.dll
+ 2004-08-17 13:49 . 2004-08-17 13:49 156160 c:\windows\system32\dllcache\sysmod_a.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 138752 c:\windows\system32\dllcache\swprv.dll
+ 2004-08-17 13:49 . 2009-08-26 08:02 247326 c:\windows\system32\dllcache\strmdll.dll
+ 2004-08-03 20:31 . 2004-08-03 20:31 306176 c:\windows\system32\dllcache\slbcsp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 155136 c:\windows\system32\dllcache\shmedia.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 414720 c:\windows\system32\dllcache\setupdll.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 130048 c:\windows\system32\dllcache\sdpblb.dll
+ 2004-08-17 13:49 . 2004-08-17 13:49 188928 c:\windows\system32\dllcache\script_a.dll
+ 2004-08-03 20:31 . 2004-08-03 20:31 169984 c:\windows\system32\dllcache\sccbase.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 118784 c:\windows\system32\dllcache\scardssp.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 132608 c:\windows\system32\dllcache\rsvp.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 107520 c:\windows\system32\dllcache\rend.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 143360 c:\windows\system32\dllcache\rasmontr.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 167774 c:\windows\system32\dllcache\pagefile.vbs
+ 2001-10-25 14:00 . 2001-10-25 14:00 163328 c:\windows\system32\dllcache\oleacc.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 153008 c:\windows\system32\dllcache\ole2nls.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 169520 c:\windows\system32\dllcache\ole2disp.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 127488 c:\windows\system32\dllcache\nwscript.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 308224 c:\windows\system32\dllcache\netui2.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 171008 c:\windows\system32\dllcache\netmsg.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 253952 c:\windows\system32\dllcache\neth.dll
+ 2004-08-03 20:10 . 2004-08-03 20:10 126976 c:\windows\system32\dllcache\netfxocm.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 215040 c:\windows\system32\dllcache\netevent.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 108480 c:\windows\system32\dllcache\netapi.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 245760 c:\windows\system32\dllcache\mswmdm.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 127024 c:\windows\system32\dllcache\msvideo.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 253952 c:\windows\system32\dllcache\msvcrt20.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 565760 c:\windows\system32\dllcache\msvcp50.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 201728 c:\windows\system32\dllcache\mspmsp.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 169472 c:\windows\system32\dllcache\msmqocm.dll
+ 2001-10-25 14:00 . 2009-03-08 02:22 156160 c:\windows\system32\dllcache\msls31.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 102912 c:\windows\system32\dllcache\msaatext.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 489472 c:\windows\system32\dllcache\mqutil.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 186880 c:\windows\system32\dllcache\mqtrig.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 517120 c:\windows\system32\dllcache\mqsnap.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 123392 c:\windows\system32\dllcache\mqrtdep.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 177152 c:\windows\system32\dllcache\mqrt.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 661504 c:\windows\system32\dllcache\mqqm.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 225280 c:\windows\system32\dllcache\mqoa.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 138240 c:\windows\system32\dllcache\mqad.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 240640 c:\windows\system32\dllcache\mpg4dmod.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 384512 c:\windows\system32\dllcache\mp4sdmod.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 310272 c:\windows\system32\dllcache\mp43dmod.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 119808 c:\windows\system32\dllcache\mmutilse.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 673088 c:\windows\system32\dllcache\mlang.dat
+ 2004-08-17 13:49 . 2004-08-17 13:49 192512 c:\windows\system32\dllcache\migism_a.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 924432 c:\windows\system32\dllcache\mfc40.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 362496 c:\windows\system32\dllcache\metal_ss.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 362496 c:\windows\system32\dllcache\jet500.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 450560 c:\windows\system32\dllcache\infosoft.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 116224 c:\windows\system32\dllcache\inetcplc.dll
+ 2001-10-25 14:00 . 2009-03-08 02:32 163840 c:\windows\system32\dllcache\ieakui.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 250368 c:\windows\system32\dllcache\iassdo.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 141312 c:\windows\system32\dllcache\iasrecst.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 362496 c:\windows\system32\dllcache\home_ss.dll
+ 2004-08-17 13:49 . 2004-08-17 13:49 108544 c:\windows\system32\dllcache\guitrn_a.dll
+ 2004-08-03 20:31 . 2004-08-03 20:31 101888 c:\windows\system32\dllcache\gpkcsp.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 285184 c:\windows\system32\dllcache\glmf32.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 176128 c:\windows\system32\dllcache\ftsrch.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 499254 c:\windows\system32\dllcache\dxmasf.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 118784 c:\windows\system32\dllcache\dmdskres.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 330752 c:\windows\system32\dllcache\dmconfig.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 394752 c:\windows\system32\dllcache\diactfrm.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 847872 c:\windows\system32\dllcache\dbgeng.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 350208 c:\windows\system32\dllcache\d3drm.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 590336 c:\windows\system32\dllcache\d3dramp.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 436224 c:\windows\system32\dllcache\d3dim.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 149019 c:\windows\system32\dllcache\crtdll.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 435712 c:\windows\system32\dllcache\class_ss.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 164352 c:\windows\system32\dllcache\ciadmin.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 159232 c:\windows\system32\dllcache\cewmdm.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 359936 c:\windows\system32\dllcache\cards.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 152576 c:\windows\system32\dllcache\bnts.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 361472 c:\windows\system32\dllcache\blue_ss.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 286720 c:\windows\system32\dllcache\blackbox.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 109456 c:\windows\system32\dllcache\avifile.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 352256 c:\windows\system32\dllcache\atmuni.sys
+ 2004-08-17 13:48 . 2010-04-20 05:32 285696 c:\windows\system32\dllcache\atmfd.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 102912 c:\windows\system32\dllcache\apcups.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 162304 c:\windows\system32\dllcache\adsnds.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 129536 c:\windows\system32\dllcache\acledit.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 186880 c:\windows\system32\dinput8.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 163840 c:\windows\system32\dinput.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 394752 c:\windows\system32\diactfrm.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 390656 c:\windows\system32\dhcpmon.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 113664 c:\windows\system32\dgnet.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 124416 c:\windows\system32\dfrgui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 283648 c:\windows\system32\devmgr.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 279552 c:\windows\system32\ddraw.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 110592 c:\windows\system32\dbnetlib.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 640000 c:\windows\system32\dbghelp.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 847872 c:\windows\system32\dbgeng.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 165376 c:\windows\system32\datime.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 350208 c:\windows\system32\d3drm.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 590336 c:\windows\system32\d3dramp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 824320 c:\windows\system32\d3dim700.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 436224 c:\windows\system32\d3dim.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 328704 c:\windows\system32\cscui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 102400 c:\windows\system32\cscdll.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 515584 c:\windows\system32\cryptui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 602112 c:\windows\system32\crypt32.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 149019 c:\windows\system32\crtdll.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 163840 c:\windows\system32\credui.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 358400 c:\windows\system32\confmsp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 806912 c:\windows\system32\comres.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 229376 c:\windows\system32\compstui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 253440 c:\windows\system32\compatui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 279040 c:\windows\system32\comdlg32.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 346624 c:\windows\system32\cmdial32.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 148480 c:\windows\system32\cic.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 164352 c:\windows\system32\ciadmin.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 159232 c:\windows\system32\cewmdm.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 460800 c:\windows\system32\certmgr.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 196096 c:\windows\system32\certcli.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 359936 c:\windows\system32\cards.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 151040 c:\windows\system32\capesnpn.dll
+ 2001-10-25 14:00 . 2008-04-14 06:52 149504 c:\windows\system32\bootcfg.exe
+ 2004-08-17 13:49 . 2008-04-14 06:51 286720 c:\windows\system32\blackbox.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 109456 c:\windows\system32\avifile.dll
+ 2004-08-17 13:48 . 2010-04-20 05:32 285696 c:\windows\system32\atmfd.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 296448 c:\windows\system32\appmgr.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 171008 c:\windows\system32\appmgmts.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 125952 c:\windows\system32\apphelp.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 102912 c:\windows\system32\apcups.dll
+ 2004-08-17 13:49 . 2009-03-08 02:32 128512 c:\windows\system32\advpack.dll
+ 2004-08-17 13:49 . 2009-02-09 10:56 684032 c:\windows\system32\advapi32.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 123392 c:\windows\system32\adsnw.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 263680 c:\windows\system32\adsnt.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 162304 c:\windows\system32\adsnds.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 143360 c:\windows\system32\adsldpc.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 175616 c:\windows\system32\adsldp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 193536 c:\windows\system32\activeds.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 116224 c:\windows\system32\aclui.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 129536 c:\windows\system32\acledit.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 361472 c:\windows\Resources\Themes\Luna\Shell\NormalColor\shellstyle.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 362496 c:\windows\Resources\Themes\Luna\Shell\Metallic\shellstyle.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 362496 c:\windows\Resources\Themes\Luna\Shell\Homestead\shellstyle.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 110592 c:\windows\PeerNet\sqlse20.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 462848 c:\windows\PeerNet\sqlqp20.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 151552 c:\windows\PeerNet\sqldb20.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 214016 c:\windows\msagent\agentctl.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 272384 c:\windows\ime\sptip.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 130048 c:\windows\ime\softkbd.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 220160 c:\windows\ime\mscandui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 279040 c:\windows\Help\tshoot.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 152576 c:\windows\Help\bnts.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 116224 c:\windows\AppPatch\acxtrnal.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 245248 c:\windows\AppPatch\acspecfc.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 141312 c:\windows\AppPatch\aclua.dll
+ 2004-08-17 13:49 . 2009-11-21 16:03 471552 c:\windows\AppPatch\aclayers.dll
+ 2004-08-17 13:48 . 2008-04-13 22:06 2927616 c:\windows\system32\xpsp2res.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 1001472 c:\windows\system32\wmvdmoe2.dll
+ 2004-08-17 13:48 . 2008-04-14 05:55 2957312 c:\windows\system32\wmploc.dll
+ 2004-08-17 13:48 . 2008-04-14 06:50 1442816 c:\windows\system32\winntbbu.dll
+ 2004-08-17 13:48 . 2008-04-13 20:18 1647616 c:\windows\system32\winbrand.dll
+ 2004-07-17 09:35 . 2004-07-17 09:35 1356800 c:\windows\system32\webfldrs.msi
+ 2004-08-17 13:49 . 2008-04-14 06:51 1571840 c:\windows\system32\sfcfiles.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 1703424 c:\windows\system32\netshell.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 1430016 c:\windows\system32\msvidctl.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 1384479 c:\windows\system32\msvbvm60.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 1355776 c:\windows\system32\msvbvm50.dll
+ 2004-08-17 13:49 . 2007-10-22 13:00 1516568 c:\windows\system32\msjet40.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 2843136 c:\windows\system32\msi.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 1874944 c:\windows\system32\mmcndmgr.dll
+ 2003-03-18 19:12 . 2003-03-18 19:12 1047552 c:\windows\system32\mfc71u.dll
+ 2003-03-18 19:20 . 2003-03-18 19:20 1060864 c:\windows\system32\mfc71.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 1028096 c:\windows\system32\mfc42.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 1114896 c:\windows\system32\esent97.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 2113536 c:\windows\system32\dxdiagn.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 1227264 c:\windows\system32\dx8vb.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 1293824 c:\windows\system32\dsound3d.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 1001472 c:\windows\system32\dllcache\wmvdmoe2.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 1119744 c:\windows\system32\dllcache\wmsdmoe2.dll
+ 2004-08-17 13:48 . 2008-04-14 05:55 2957312 c:\windows\system32\dllcache\wmploc.dll
+ 2004-08-17 13:49 . 2010-03-19 16:05 4874240 c:\windows\system32\dllcache\wmp.dll
+ 2004-08-17 13:49 . 2008-06-10 04:11 1053696 c:\windows\system32\dllcache\WMNetmgr.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 3374640 c:\windows\system32\dllcache\tourW.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 1114896 c:\windows\system32\dllcache\esent97.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 1504768 c:\windows\system32\diskcopy.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 1689088 c:\windows\system32\d3d9.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 1179648 c:\windows\system32\d3d8.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 3374640 c:\windows\Help\Tours\mmTour\tour.exe
+ 2004-08-17 13:49 . 2008-04-14 06:51 1852928 c:\windows\AppPatch\acgenral.dll
+ 2001-10-11 11:30 . 2001-10-11 11:30 13107200 c:\windows\system32\oembios.bin
+ 2001-10-11 11:30 . 2001-10-11 11:30 13107200 c:\windows\system32\dllcache\oembios.bin
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 90112]
"PivotSoftware"="c:\program files\Portrait Displays\Pivot Software\wpctrl.exe" [2007-02-09 694008]
"DT ACR"="c:\program files\Common Files\Portrait Displays\Shared\DT_startup.exe" [2008-06-06 81920]
"ioCentre"="c:\genius\ioCentre\gTaskBar.exe" [2007-05-31 61440]
"avast5"="c:\progra~1\ALWILS~1\Avast5\avastUI.exe" [2010-06-28 2837864]
"Sony Ericsson PC Suite"="c:\program files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" [2005-10-26 159744]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2006-12-18 868352]
"ATICustomerCare"="c:\program files\ATI\ATICustomerCare\ATICustomerCare.exe" [2010-03-04 311296]
"IObit Security 360"="c:\program files\IObit\IObit Security 360\IS360tray.exe" [2010-06-11 1280344]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0aswBoot.exe /M:389902a3aac
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\ICQ7.2\\ICQ.exe"=
"c:\\Program Files\\ICQ7.2\\aolload.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\MotoGP2\\motogp2.exe"=
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [23.7.2010 20:29 165456]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [23.7.2010 20:29 17744]
R2 IS360service;IS360service;c:\program files\IObit\IObit Security 360\is360srv.exe [26.7.2010 13:04 312152]
R2 PdiService;Portrait Displays SDK Service;c:\program files\Common Files\Portrait Displays\Drivers\pdisrvc.exe [23.7.2010 20:16 90112]
R3 gHidPnp;USB Device Enhanced Function Driver;c:\windows\system32\drivers\gHidPnp.sys [23.7.2010 20:21 16384]
R3 gMouUsb;USB Mouse Device Drv;c:\windows\system32\drivers\gMouUsb.sys [23.7.2010 20:21 9856]
S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [26.7.2010 10:47 691696]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: {{72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - c:\program files\ICQ7.2\ICQ.exe
LSP: %SYSTEMROOT%\system32\nvappfilter.dll
FF - ProfilePath - c:\documents and settings\Martin\Data aplikací\Mozilla\Firefox\Profiles\ncuzf4hb.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.lu", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nu", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nz", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--p1ai", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbayh7gpa", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.tel", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.proxy.type", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.buffer.cache.count", 24);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.buffer.cache.size", 4096);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("dom.ipc.plugins.timeoutSecs", 45);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accelerometer.enabled", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.nptest.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npswf32.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npctrl.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npqtplugin.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-07-28 02:29
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(728)
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\atiadlxx.dll
- - - - - - - > 'lsass.exe'(784)
c:\windows\system32\nvappfilter.dll
- - - - - - - > 'explorer.exe'(692)
c:\windows\system32\webcheck.dll
.
Celkový čas: 2010-07-28 02:29:51
ComboFix-quarantined-files.txt 2010-07-28 00:29
ComboFix2.txt 2010-07-27 23:10
Před spuštěním: Volných bajtů: 301 425 311 744
Po spuštění: Volných bajtů: 301 417 402 368
- - End Of File - - FB401148850C0F5E8D96D3EAE217FBFD
+ 2004-08-17 13:49 . 2009-09-11 14:19 136192 c:\windows\system32\msv1_0.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 194560 c:\windows\system32\msutb.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 116224 c:\windows\system32\mstlsapi.dll
+ 2004-08-17 13:49 . 2007-04-02 16:21 264992 c:\windows\system32\mstext40.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 134656 c:\windows\system32\mssap.dll
+ 2004-08-17 13:49 . 2007-04-02 16:21 559904 c:\windows\system32\msrepl40.dll
+ 2004-08-17 13:49 . 2007-04-02 16:20 322336 c:\windows\system32\msrd3x40.dll
+ 2004-08-17 13:49 . 2007-04-02 16:20 432928 c:\windows\system32\msrd2x40.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 201728 c:\windows\system32\mspmsp.dll
+ 2004-08-17 13:49 . 2007-04-02 16:20 355104 c:\windows\system32\mspbde40.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 143360 c:\windows\system32\msorcl32.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 290816 c:\windows\system32\msnsspc.dll
+ 2004-08-17 13:49 . 2007-04-02 16:19 219936 c:\windows\system32\msltus40.dll
+ 2001-10-25 14:00 . 2009-03-08 02:22 156160 c:\windows\system32\msls31.dll
+ 2004-08-17 13:49 . 2007-04-02 16:19 248608 c:\windows\system32\msjtes40.dll
+ 2004-08-17 13:49 . 2007-03-28 16:23 162592 c:\windows\system32\msjint40.dll
+ 2004-07-17 09:34 . 2007-04-02 16:19 355112 c:\windows\system32\msjetoledb40.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 159232 c:\windows\system32\msimtf.dll
+ 2004-08-17 13:48 . 2008-04-13 19:09 884736 c:\windows\system32\msimsg.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 271360 c:\windows\system32\msihnd.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 249856 c:\windows\system32\msieftp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 996864 c:\windows\system32\msgina.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 539136 c:\windows\system32\msftedit.dll
+ 2004-08-17 13:49 . 2007-04-02 16:17 518944 c:\windows\system32\msexch40.dll
+ 2004-08-17 13:49 . 2007-04-02 16:18 326432 c:\windows\system32\msexcl40.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 151552 c:\windows\system32\msdart.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 118784 c:\windows\system32\msdadiag.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 297984 c:\windows\system32\msctf.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 102912 c:\windows\system32\msaatext.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 489472 c:\windows\system32\mqutil.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 186880 c:\windows\system32\mqtrig.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 517120 c:\windows\system32\mqsnap.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 123392 c:\windows\system32\mqrtdep.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 177152 c:\windows\system32\mqrt.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 661504 c:\windows\system32\mqqm.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 225280 c:\windows\system32\mqoa.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 138240 c:\windows\system32\mqad.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 240640 c:\windows\system32\mpg4dmod.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 384512 c:\windows\system32\mp4sdmod.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 310272 c:\windows\system32\mp43dmod.dll
+ 2004-08-17 13:48 . 2008-04-13 20:15 216064 c:\windows\system32\moricons.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 144384 c:\windows\system32\modemui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 206848 c:\windows\system32\mobsync.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 119808 c:\windows\system32\mmutilse.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 164864 c:\windows\system32\mmcbase.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 586240 c:\windows\system32\mlang.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 673088 c:\windows\system32\mlang.dat
+ 2002-01-05 02:36 . 2002-01-05 02:36 964608 c:\windows\system32\mfc70u.dll
+ 2002-01-05 02:48 . 2002-01-05 02:48 974848 c:\windows\system32\mfc70.dll
+ 2004-08-17 13:49 . 2007-04-03 06:44 981760 c:\windows\system32\mfc42u.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 927504 c:\windows\system32\mfc40u.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 924432 c:\windows\system32\mfc40.dll
+ 2001-10-24 12:24 . 2006-10-20 21:41 147968 c:\windows\system32\mdwmdmsp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 117760 c:\windows\system32\mdminst.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 112128 c:\windows\system32\mapistub.dll
+ 2004-08-17 13:49 . 2009-05-07 15:33 346624 c:\windows\system32\localspl.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 221696 c:\windows\system32\localsec.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 399872 c:\windows\system32\lmrt.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 424448 c:\windows\system32\licdll.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 220883 c:\windows\system32\lanman.drv
+ 2004-08-17 13:49 . 2008-04-14 06:51 151552 c:\windows\system32\keymgr.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 362496 c:\windows\system32\jet500.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 191488 c:\windows\system32\iuengine.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 183808 c:\windows\system32\ir50_qcx.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 200192 c:\windows\system32\ir50_qc.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 755200 c:\windows\system32\ir50_32.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 338432 c:\windows\system32\ir41_qcx.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 120320 c:\windows\system32\ir41_qc.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 199168 c:\windows\system32\ir32_32.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 384512 c:\windows\system32\ipsmsnap.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 183808 c:\windows\system32\ipsecsvc.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 351232 c:\windows\system32\ipsecsnp.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 177152 c:\windows\system32\iprtrmgr.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 342528 c:\windows\system32\ippromon.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 329728 c:\windows\system32\ipnathlp.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 160256 c:\windows\system32\ipmontr.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 124416 c:\windows\system32\input.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 147456 c:\windows\system32\initpki.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 450560 c:\windows\system32\infosoft.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 116224 c:\windows\system32\inetcplc.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 110080 c:\windows\system32\imm32.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 144384 c:\windows\system32\imagehlp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 137216 c:\windows\system32\ifmon.dll
+ 2004-08-17 13:49 . 2010-05-06 10:35 387584 c:\windows\system32\iedkcs32.dll
+ 2001-10-25 14:00 . 2009-03-08 02:32 163840 c:\windows\system32\ieakui.dll
+ 2004-08-17 13:49 . 2009-03-08 02:33 229376 c:\windows\system32\ieaksie.dll
+ 2004-08-17 13:49 . 2009-03-08 02:33 125952 c:\windows\system32\ieakeng.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 120832 c:\windows\system32\idq.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 250368 c:\windows\system32\iassdo.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 141312 c:\windows\system32\iasrecst.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 119808 c:\windows\system32\iasrad.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 144384 c:\windows\system32\hotplug.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 330752 c:\windows\system32\hnetwiz.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 345088 c:\windows\system32\hnetcfg.dll
+ 2004-08-03 20:59 . 2008-04-13 22:01 134400 c:\windows\system32\HAL.DLL
+ 2004-08-17 13:49 . 2008-04-14 06:51 614912 c:\windows\system32\h323msp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 200192 c:\windows\system32\gptext.dll
+ 2004-08-03 20:31 . 2004-08-03 20:31 101888 c:\windows\system32\gpkcsp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 568320 c:\windows\system32\gpedit.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 123904 c:\windows\system32\glu32.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 285184 c:\windows\system32\glmf32.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 176128 c:\windows\system32\ftsrch.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 382976 c:\windows\system32\fontext.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 337920 c:\windows\system32\filemgmt.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 124416 c:\windows\system32\fde.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 125952 c:\windows\system32\exts.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 380445 c:\windows\system32\expsrv.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 186880 c:\windows\system32\encdec.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 185344 c:\windows\system32\els.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 499254 c:\windows\system32\dxmasf.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 618496 c:\windows\system32\dx7vb.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 304128 c:\windows\system32\duser.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 113152 c:\windows\system32\dsuiext.dll
+ 2004-08-03 20:31 . 2008-04-13 21:07 138752 c:\windows\system32\dssenh.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 218003 c:\windows\system32\dssec.dat
+ 2004-08-17 13:49 . 2008-04-14 06:51 239616 c:\windows\system32\dsquery.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 142848 c:\windows\system32\dsprop.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 367616 c:\windows\system32\dsound.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 157184 c:\windows\system32\dskquoui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 181248 c:\windows\system32\dsdmo.dll
+ 2004-08-03 21:08 . 2008-04-13 22:15 143872 c:\windows\system32\drivers\usbport.sys
+ 2004-08-17 13:43 . 2008-04-14 06:10 120064 c:\windows\system32\drivers\pcmcia.sys
+ 2004-08-03 21:02 . 2008-04-13 22:04 163584 c:\windows\system32\drivers\nwrdr.sys
+ 2004-08-03 21:15 . 2008-04-13 22:45 574976 c:\windows\system32\drivers\ntfs.sys
+ 2004-08-03 21:14 . 2008-04-13 22:51 162816 c:\windows\system32\drivers\netbt.sys
+ 2004-08-03 21:14 . 2008-04-13 22:50 182656 c:\windows\system32\drivers\ndis.sys
+ 2004-08-03 21:15 . 2008-04-13 22:47 105344 c:\windows\system32\drivers\mup.sys
+ 2004-08-03 21:00 . 2008-04-13 22:02 180608 c:\windows\system32\drivers\mrxdav.sys
+ 2004-08-03 23:15 . 2008-04-13 22:46 141056 c:\windows\system32\drivers\ks.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 125184 c:\windows\system32\drivers\ftdisk.sys
+ 2004-08-03 21:14 . 2008-04-13 22:44 143744 c:\windows\system32\drivers\fastfat.sys
+ 2004-08-17 13:45 . 2008-04-14 06:01 153856 c:\windows\system32\drivers\dmio.sys
+ 2004-08-17 13:45 . 2008-04-14 06:00 800000 c:\windows\system32\drivers\dmboot.sys
+ 2001-10-24 11:53 . 2006-10-20 21:41 262528 c:\windows\system32\drivers\cinemst2.sys
+ 2001-10-25 14:00 . 2001-10-25 14:00 352256 c:\windows\system32\drivers\atmuni.sys
+ 2004-08-03 21:14 . 2008-08-14 10:04 138496 c:\windows\system32\drivers\afd.sys
+ 2004-08-17 13:43 . 2008-04-14 05:35 188288 c:\windows\system32\drivers\acpi.sys
+ 2004-08-17 13:49 . 2008-04-14 06:51 116736 c:\windows\system32\dpvvox.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 212480 c:\windows\system32\dpvoice.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 375296 c:\windows\system32\dpnet.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 229888 c:\windows\system32\dplayx.dll
+ 2004-08-17 13:48 . 2008-04-14 06:49 102912 c:\windows\system32\dpcdll.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 104448 c:\windows\system32\dmusic.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 103424 c:\windows\system32\dmsynth.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 105984 c:\windows\system32\dmstyle.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 181248 c:\windows\system32\dmime.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 118784 c:\windows\system32\dmdskres.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 200704 c:\windows\system32\dmdskmgr.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 285184 c:\windows\system32\dmdlgs.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 330752 c:\windows\system32\dmconfig.dll
+ 2004-07-17 09:39 . 2004-07-17 09:39 175224 c:\windows\system32\dllcache\xenroll.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 809984 c:\windows\system32\dllcache\wmvdmod.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 303616 c:\windows\system32\dllcache\wmstream.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 897024 c:\windows\system32\dllcache\wmspdmoe.dll
+ 2004-08-17 13:49 . 2009-04-03 10:15 485376 c:\windows\system32\dllcache\wmspdmod.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 115200 c:\windows\system32\dllcache\wmsdmoe.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 759296 c:\windows\system32\dllcache\wmsdmod.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 102400 c:\windows\system32\dllcache\wmpshell.dll
+ 2004-08-17 13:49 . 2009-07-12 10:21 233472 c:\windows\system32\dllcache\wmpdxm.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 114688 c:\windows\system32\dllcache\wmpasf.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 151552 c:\windows\system32\dllcache\wmidx.dll
+ 2004-08-17 13:48 . 2008-04-14 05:49 173056 c:\windows\system32\dllcache\wmerror.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 230912 c:\windows\system32\dllcache\wmasf.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 670720 c:\windows\system32\dllcache\wmadmoe.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 408064 c:\windows\system32\dllcache\wmadmod.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 256419 c:\windows\system32\dllcache\winhelp.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 145408 c:\windows\system32\dllcache\wiavusd.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 100864 c:\windows\system32\dllcache\verifier.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 177856 c:\windows\system32\dllcache\typelib.dll
+ 2004-08-17 13:49 . 2004-08-17 13:49 156160 c:\windows\system32\dllcache\sysmod_a.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 138752 c:\windows\system32\dllcache\swprv.dll
+ 2004-08-17 13:49 . 2009-08-26 08:02 247326 c:\windows\system32\dllcache\strmdll.dll
+ 2004-08-03 20:31 . 2004-08-03 20:31 306176 c:\windows\system32\dllcache\slbcsp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 155136 c:\windows\system32\dllcache\shmedia.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 414720 c:\windows\system32\dllcache\setupdll.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 130048 c:\windows\system32\dllcache\sdpblb.dll
+ 2004-08-17 13:49 . 2004-08-17 13:49 188928 c:\windows\system32\dllcache\script_a.dll
+ 2004-08-03 20:31 . 2004-08-03 20:31 169984 c:\windows\system32\dllcache\sccbase.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 118784 c:\windows\system32\dllcache\scardssp.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 132608 c:\windows\system32\dllcache\rsvp.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 107520 c:\windows\system32\dllcache\rend.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 143360 c:\windows\system32\dllcache\rasmontr.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 167774 c:\windows\system32\dllcache\pagefile.vbs
+ 2001-10-25 14:00 . 2001-10-25 14:00 163328 c:\windows\system32\dllcache\oleacc.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 153008 c:\windows\system32\dllcache\ole2nls.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 169520 c:\windows\system32\dllcache\ole2disp.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 127488 c:\windows\system32\dllcache\nwscript.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 308224 c:\windows\system32\dllcache\netui2.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 171008 c:\windows\system32\dllcache\netmsg.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 253952 c:\windows\system32\dllcache\neth.dll
+ 2004-08-03 20:10 . 2004-08-03 20:10 126976 c:\windows\system32\dllcache\netfxocm.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 215040 c:\windows\system32\dllcache\netevent.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 108480 c:\windows\system32\dllcache\netapi.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 245760 c:\windows\system32\dllcache\mswmdm.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 127024 c:\windows\system32\dllcache\msvideo.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 253952 c:\windows\system32\dllcache\msvcrt20.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 565760 c:\windows\system32\dllcache\msvcp50.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 201728 c:\windows\system32\dllcache\mspmsp.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 169472 c:\windows\system32\dllcache\msmqocm.dll
+ 2001-10-25 14:00 . 2009-03-08 02:22 156160 c:\windows\system32\dllcache\msls31.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 102912 c:\windows\system32\dllcache\msaatext.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 489472 c:\windows\system32\dllcache\mqutil.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 186880 c:\windows\system32\dllcache\mqtrig.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 517120 c:\windows\system32\dllcache\mqsnap.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 123392 c:\windows\system32\dllcache\mqrtdep.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 177152 c:\windows\system32\dllcache\mqrt.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 661504 c:\windows\system32\dllcache\mqqm.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 225280 c:\windows\system32\dllcache\mqoa.dll
+ 2004-08-17 13:49 . 2009-06-25 18:37 138240 c:\windows\system32\dllcache\mqad.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 240640 c:\windows\system32\dllcache\mpg4dmod.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 384512 c:\windows\system32\dllcache\mp4sdmod.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 310272 c:\windows\system32\dllcache\mp43dmod.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 119808 c:\windows\system32\dllcache\mmutilse.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 673088 c:\windows\system32\dllcache\mlang.dat
+ 2004-08-17 13:49 . 2004-08-17 13:49 192512 c:\windows\system32\dllcache\migism_a.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 924432 c:\windows\system32\dllcache\mfc40.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 362496 c:\windows\system32\dllcache\metal_ss.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 362496 c:\windows\system32\dllcache\jet500.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 450560 c:\windows\system32\dllcache\infosoft.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 116224 c:\windows\system32\dllcache\inetcplc.dll
+ 2001-10-25 14:00 . 2009-03-08 02:32 163840 c:\windows\system32\dllcache\ieakui.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 250368 c:\windows\system32\dllcache\iassdo.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 141312 c:\windows\system32\dllcache\iasrecst.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 362496 c:\windows\system32\dllcache\home_ss.dll
+ 2004-08-17 13:49 . 2004-08-17 13:49 108544 c:\windows\system32\dllcache\guitrn_a.dll
+ 2004-08-03 20:31 . 2004-08-03 20:31 101888 c:\windows\system32\dllcache\gpkcsp.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 285184 c:\windows\system32\dllcache\glmf32.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 176128 c:\windows\system32\dllcache\ftsrch.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 499254 c:\windows\system32\dllcache\dxmasf.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 118784 c:\windows\system32\dllcache\dmdskres.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 330752 c:\windows\system32\dllcache\dmconfig.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 394752 c:\windows\system32\dllcache\diactfrm.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 847872 c:\windows\system32\dllcache\dbgeng.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 350208 c:\windows\system32\dllcache\d3drm.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 590336 c:\windows\system32\dllcache\d3dramp.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 436224 c:\windows\system32\dllcache\d3dim.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 149019 c:\windows\system32\dllcache\crtdll.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 435712 c:\windows\system32\dllcache\class_ss.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 164352 c:\windows\system32\dllcache\ciadmin.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 159232 c:\windows\system32\dllcache\cewmdm.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 359936 c:\windows\system32\dllcache\cards.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 152576 c:\windows\system32\dllcache\bnts.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 361472 c:\windows\system32\dllcache\blue_ss.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 286720 c:\windows\system32\dllcache\blackbox.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 109456 c:\windows\system32\dllcache\avifile.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 352256 c:\windows\system32\dllcache\atmuni.sys
+ 2004-08-17 13:48 . 2010-04-20 05:32 285696 c:\windows\system32\dllcache\atmfd.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 102912 c:\windows\system32\dllcache\apcups.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 162304 c:\windows\system32\dllcache\adsnds.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 129536 c:\windows\system32\dllcache\acledit.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 186880 c:\windows\system32\dinput8.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 163840 c:\windows\system32\dinput.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 394752 c:\windows\system32\diactfrm.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 390656 c:\windows\system32\dhcpmon.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 113664 c:\windows\system32\dgnet.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 124416 c:\windows\system32\dfrgui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 283648 c:\windows\system32\devmgr.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 279552 c:\windows\system32\ddraw.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 110592 c:\windows\system32\dbnetlib.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 640000 c:\windows\system32\dbghelp.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 847872 c:\windows\system32\dbgeng.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 165376 c:\windows\system32\datime.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 350208 c:\windows\system32\d3drm.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 590336 c:\windows\system32\d3dramp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 824320 c:\windows\system32\d3dim700.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 436224 c:\windows\system32\d3dim.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 328704 c:\windows\system32\cscui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 102400 c:\windows\system32\cscdll.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 515584 c:\windows\system32\cryptui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 602112 c:\windows\system32\crypt32.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 149019 c:\windows\system32\crtdll.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 163840 c:\windows\system32\credui.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 358400 c:\windows\system32\confmsp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 806912 c:\windows\system32\comres.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 229376 c:\windows\system32\compstui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 253440 c:\windows\system32\compatui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 279040 c:\windows\system32\comdlg32.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 346624 c:\windows\system32\cmdial32.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 148480 c:\windows\system32\cic.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 164352 c:\windows\system32\ciadmin.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 159232 c:\windows\system32\cewmdm.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 460800 c:\windows\system32\certmgr.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 196096 c:\windows\system32\certcli.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 359936 c:\windows\system32\cards.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 151040 c:\windows\system32\capesnpn.dll
+ 2001-10-25 14:00 . 2008-04-14 06:52 149504 c:\windows\system32\bootcfg.exe
+ 2004-08-17 13:49 . 2008-04-14 06:51 286720 c:\windows\system32\blackbox.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 109456 c:\windows\system32\avifile.dll
+ 2004-08-17 13:48 . 2010-04-20 05:32 285696 c:\windows\system32\atmfd.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 296448 c:\windows\system32\appmgr.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 171008 c:\windows\system32\appmgmts.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 125952 c:\windows\system32\apphelp.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 102912 c:\windows\system32\apcups.dll
+ 2004-08-17 13:49 . 2009-03-08 02:32 128512 c:\windows\system32\advpack.dll
+ 2004-08-17 13:49 . 2009-02-09 10:56 684032 c:\windows\system32\advapi32.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 123392 c:\windows\system32\adsnw.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 263680 c:\windows\system32\adsnt.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 162304 c:\windows\system32\adsnds.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 143360 c:\windows\system32\adsldpc.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 175616 c:\windows\system32\adsldp.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 193536 c:\windows\system32\activeds.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 116224 c:\windows\system32\aclui.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 129536 c:\windows\system32\acledit.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 361472 c:\windows\Resources\Themes\Luna\Shell\NormalColor\shellstyle.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 362496 c:\windows\Resources\Themes\Luna\Shell\Metallic\shellstyle.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 362496 c:\windows\Resources\Themes\Luna\Shell\Homestead\shellstyle.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 110592 c:\windows\PeerNet\sqlse20.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 462848 c:\windows\PeerNet\sqlqp20.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 151552 c:\windows\PeerNet\sqldb20.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 214016 c:\windows\msagent\agentctl.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 272384 c:\windows\ime\sptip.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 130048 c:\windows\ime\softkbd.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 220160 c:\windows\ime\mscandui.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 279040 c:\windows\Help\tshoot.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 152576 c:\windows\Help\bnts.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 116224 c:\windows\AppPatch\acxtrnal.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 245248 c:\windows\AppPatch\acspecfc.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 141312 c:\windows\AppPatch\aclua.dll
+ 2004-08-17 13:49 . 2009-11-21 16:03 471552 c:\windows\AppPatch\aclayers.dll
+ 2004-08-17 13:48 . 2008-04-13 22:06 2927616 c:\windows\system32\xpsp2res.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 1001472 c:\windows\system32\wmvdmoe2.dll
+ 2004-08-17 13:48 . 2008-04-14 05:55 2957312 c:\windows\system32\wmploc.dll
+ 2004-08-17 13:48 . 2008-04-14 06:50 1442816 c:\windows\system32\winntbbu.dll
+ 2004-08-17 13:48 . 2008-04-13 20:18 1647616 c:\windows\system32\winbrand.dll
+ 2004-07-17 09:35 . 2004-07-17 09:35 1356800 c:\windows\system32\webfldrs.msi
+ 2004-08-17 13:49 . 2008-04-14 06:51 1571840 c:\windows\system32\sfcfiles.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 1703424 c:\windows\system32\netshell.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 1430016 c:\windows\system32\msvidctl.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 1384479 c:\windows\system32\msvbvm60.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 1355776 c:\windows\system32\msvbvm50.dll
+ 2004-08-17 13:49 . 2007-10-22 13:00 1516568 c:\windows\system32\msjet40.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 2843136 c:\windows\system32\msi.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 1874944 c:\windows\system32\mmcndmgr.dll
+ 2003-03-18 19:12 . 2003-03-18 19:12 1047552 c:\windows\system32\mfc71u.dll
+ 2003-03-18 19:20 . 2003-03-18 19:20 1060864 c:\windows\system32\mfc71.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 1028096 c:\windows\system32\mfc42.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 1114896 c:\windows\system32\esent97.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 2113536 c:\windows\system32\dxdiagn.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 1227264 c:\windows\system32\dx8vb.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 1293824 c:\windows\system32\dsound3d.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 1001472 c:\windows\system32\dllcache\wmvdmoe2.dll
+ 2004-08-17 13:49 . 2008-04-14 06:52 1119744 c:\windows\system32\dllcache\wmsdmoe2.dll
+ 2004-08-17 13:48 . 2008-04-14 05:55 2957312 c:\windows\system32\dllcache\wmploc.dll
+ 2004-08-17 13:49 . 2010-03-19 16:05 4874240 c:\windows\system32\dllcache\wmp.dll
+ 2004-08-17 13:49 . 2008-06-10 04:11 1053696 c:\windows\system32\dllcache\WMNetmgr.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 3374640 c:\windows\system32\dllcache\tourW.exe
+ 2001-10-25 14:00 . 2001-10-25 14:00 1114896 c:\windows\system32\dllcache\esent97.dll
+ 2001-10-25 14:00 . 2008-04-14 06:51 1504768 c:\windows\system32\diskcopy.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 1689088 c:\windows\system32\d3d9.dll
+ 2004-08-17 13:49 . 2008-04-14 06:51 1179648 c:\windows\system32\d3d8.dll
+ 2001-10-25 14:00 . 2001-10-25 14:00 3374640 c:\windows\Help\Tours\mmTour\tour.exe
+ 2004-08-17 13:49 . 2008-04-14 06:51 1852928 c:\windows\AppPatch\acgenral.dll
+ 2001-10-11 11:30 . 2001-10-11 11:30 13107200 c:\windows\system32\oembios.bin
+ 2001-10-11 11:30 . 2001-10-11 11:30 13107200 c:\windows\system32\dllcache\oembios.bin
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 90112]
"PivotSoftware"="c:\program files\Portrait Displays\Pivot Software\wpctrl.exe" [2007-02-09 694008]
"DT ACR"="c:\program files\Common Files\Portrait Displays\Shared\DT_startup.exe" [2008-06-06 81920]
"ioCentre"="c:\genius\ioCentre\gTaskBar.exe" [2007-05-31 61440]
"avast5"="c:\progra~1\ALWILS~1\Avast5\avastUI.exe" [2010-06-28 2837864]
"Sony Ericsson PC Suite"="c:\program files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" [2005-10-26 159744]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2006-12-18 868352]
"ATICustomerCare"="c:\program files\ATI\ATICustomerCare\ATICustomerCare.exe" [2010-03-04 311296]
"IObit Security 360"="c:\program files\IObit\IObit Security 360\IS360tray.exe" [2010-06-11 1280344]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0aswBoot.exe /M:389902a3aac
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\ICQ7.2\\ICQ.exe"=
"c:\\Program Files\\ICQ7.2\\aolload.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\MotoGP2\\motogp2.exe"=
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [23.7.2010 20:29 165456]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [23.7.2010 20:29 17744]
R2 IS360service;IS360service;c:\program files\IObit\IObit Security 360\is360srv.exe [26.7.2010 13:04 312152]
R2 PdiService;Portrait Displays SDK Service;c:\program files\Common Files\Portrait Displays\Drivers\pdisrvc.exe [23.7.2010 20:16 90112]
R3 gHidPnp;USB Device Enhanced Function Driver;c:\windows\system32\drivers\gHidPnp.sys [23.7.2010 20:21 16384]
R3 gMouUsb;USB Mouse Device Drv;c:\windows\system32\drivers\gMouUsb.sys [23.7.2010 20:21 9856]
S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [26.7.2010 10:47 691696]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: {{72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - c:\program files\ICQ7.2\ICQ.exe
LSP: %SYSTEMROOT%\system32\nvappfilter.dll
FF - ProfilePath - c:\documents and settings\Martin\Data aplikací\Mozilla\Firefox\Profiles\ncuzf4hb.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.lu", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nu", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nz", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--p1ai", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbayh7gpa", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.tel", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.proxy.type", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.buffer.cache.count", 24);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.buffer.cache.size", 4096);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("dom.ipc.plugins.timeoutSecs", 45);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accelerometer.enabled", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.nptest.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npswf32.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npctrl.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npqtplugin.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-07-28 02:29
Windows 5.1.2600 Service Pack 3 NTFS
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory: 0
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(728)
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\atiadlxx.dll
- - - - - - - > 'lsass.exe'(784)
c:\windows\system32\nvappfilter.dll
- - - - - - - > 'explorer.exe'(692)
c:\windows\system32\webcheck.dll
.
Celkový čas: 2010-07-28 02:29:51
ComboFix-quarantined-files.txt 2010-07-28 00:29
ComboFix2.txt 2010-07-27 23:10
Před spuštěním: Volných bajtů: 301 425 311 744
Po spuštění: Volných bajtů: 301 417 402 368
- - End Of File - - FB401148850C0F5E8D96D3EAE217FBFD
Re: Problem s viry - podezření na malware
Log z HJT:
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 2:43:25, on 28.7.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Portrait Displays\Pivot Software\wpctrl.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Common Files\Teleca Shared\CapabilityManager.exe
C:\Program Files\Portrait Displays\Pivot Software\floater.exe
C:\Program Files\Common Files\Portrait Displays\Shared\HookManager.exe
C:\Program Files\Common Files\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\Program Files\IObit\IObit Security 360\IS360srv.exe
C:\Program Files\Common Files\Portrait Displays\Drivers\pdisrvc.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Hijack\Trend Micro\HiJackThis\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O4 - HKLM\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Run: [PivotSoftware] "C:\Program Files\Portrait Displays\Pivot Software\wpctrl.exe"
O4 - HKLM\..\Run: [DT ACR] C:\Program Files\Common Files\Portrait Displays\Shared\DT_startup.exe -ACR
O4 - HKLM\..\Run: [ioCentre] C:\Genius\ioCentre\gTaskBar.exe
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [IObit Security 360] "C:\Program Files\IObit\IObit Security 360\IS360tray.exe" /autostart
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Unknown owner - C:\Program Files\Common Files\Portrait Displays\Shared\DTSRVC.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
O23 - Service: IS360service - IObit - C:\Program Files\IObit\IObit Security 360\IS360srv.exe
O23 - Service: ForceWare IP service (nSvcIp) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files\Common Files\Portrait Displays\Drivers\pdisrvc.exe
--
End of file - 5432 bytes
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 2:43:25, on 28.7.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Portrait Displays\Pivot Software\wpctrl.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Common Files\Teleca Shared\CapabilityManager.exe
C:\Program Files\Portrait Displays\Pivot Software\floater.exe
C:\Program Files\Common Files\Portrait Displays\Shared\HookManager.exe
C:\Program Files\Common Files\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\Program Files\IObit\IObit Security 360\IS360srv.exe
C:\Program Files\Common Files\Portrait Displays\Drivers\pdisrvc.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Hijack\Trend Micro\HiJackThis\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O4 - HKLM\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Run: [PivotSoftware] "C:\Program Files\Portrait Displays\Pivot Software\wpctrl.exe"
O4 - HKLM\..\Run: [DT ACR] C:\Program Files\Common Files\Portrait Displays\Shared\DT_startup.exe -ACR
O4 - HKLM\..\Run: [ioCentre] C:\Genius\ioCentre\gTaskBar.exe
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [IObit Security 360] "C:\Program Files\IObit\IObit Security 360\IS360tray.exe" /autostart
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files\ICQ7.2\ICQ.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Portrait Displays Display Tune Service (DTSRVC) - Unknown owner - C:\Program Files\Common Files\Portrait Displays\Shared\DTSRVC.exe
O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
O23 - Service: IS360service - IObit - C:\Program Files\IObit\IObit Security 360\IS360srv.exe
O23 - Service: ForceWare IP service (nSvcIp) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files\Common Files\Portrait Displays\Drivers\pdisrvc.exe
--
End of file - 5432 bytes
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43294
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Problem s viry - podezření na malware
To ale není ono , chtěl jsem provést CFScript, přečti ještě jednou můj předešlý příspěvek a proveď.Toto je jen cOMBOFIX...
Log z hJT už dávat nemusíš.
Log z hJT už dávat nemusíš.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Problem s viry - podezření na malware
No ale prave to pisu. Ten CFScript jsem udelal. Dokoncilo se to,probehl restart,ale kdyz obed nabehlo okynko combofixu,kde bylo napsany,ze se vytvari log, tak se zobrazilo to varovani, ze system musel program ukoncit. Po tomhle varovani sice zustalo okno CF otevreny,ale uz to nic nedelalo,takze se log neudelal. Ale jeste to budu zkouset...
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43294
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Problem s viry - podezření na malware
Zkus ještě jednou s tím scriptem, v záhlaví musí být napaáno CFScript a ne Combofix.exe...
nezapomeň zase vypnout rez. ochrany+ firewall.
nezapomeň zase vypnout rez. ochrany+ firewall.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Problem s viry - podezření na malware
Jo ja chapu,co po mne chete, uz jsem to kdysi delal. Ale nebyt te chyby a toho hlaseni tak uz to davno mam,ale proste system mi to porad blokuje ://
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43294
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Problem s viry - podezření na malware
Co to hlášení obsahuje?
teď budu nějaký čas mimo , tak až bude chvilka , tak se podívám.
teď budu nějaký čas mimo , tak až bude chvilka , tak se podívám.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Problem s viry - podezření na malware
Uz se mi to podarilo :))
Zde je ten log:
ComboFix 10-07-27.03 - Martin 28.07.2010 11:49:58.7.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3326.2798 [GMT 2:00]
Spuštěný z: c:\documents and settings\Martin\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Martin\Plocha\CFScript.txt
AV: avast! Antivirus *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
FILE ::
"c:\windows\ativpsrm.bin"
"c:\windows\system32\perfc005.dat"
"c:\windows\system32\perfh005.dat"
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\ativpsrm.bin
c:\windows\system32\1029 . . . . nemohl být smazán
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-06-28 do 2010-07-28 )))))))))))))))))))))))))))))))
.
2010-07-27 21:43 . 2010-04-29 13:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-07-27 21:43 . 2010-07-27 21:43 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-07-27 21:43 . 2010-04-29 13:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-07-27 14:41 . 2010-07-27 14:41 -------- d-----w- c:\program files\Hijack
2010-07-27 10:16 . 2010-07-27 10:16 -------- d-----w- c:\program files\EA SPORTS
2010-07-26 19:11 . 2010-07-26 19:11 -------- d-----w- c:\program files\Common Files\DirectX
2010-07-26 19:07 . 2010-07-26 20:46 -------- d-----w- c:\program files\MotoGP2
2010-07-26 17:49 . 2010-07-26 17:49 0 ----a-w- c:\windows\PowerReg.dat
2010-07-26 17:44 . 2010-07-26 17:47 -------- d-----w- c:\windows\UbiSoft
2010-07-26 13:49 . 2010-07-26 13:49 -------- d-----w- c:\program files\directx
2010-07-26 13:46 . 2010-07-26 13:46 -------- d-----w- c:\program files\Enlight
2010-07-26 10:06 . 2010-07-26 11:04 -------- d-----w- c:\program files\IObit
2010-07-26 09:14 . 2008-04-13 22:10 34688 -c--a-w- c:\windows\system32\dllcache\lbrtfdc.sys
2010-07-26 09:14 . 2008-04-13 22:10 34688 ----a-w- c:\windows\system32\drivers\lbrtfdc.sys
2010-07-26 09:14 . 2008-04-13 22:11 8576 -c--a-w- c:\windows\system32\dllcache\i2omgmt.sys
2010-07-26 09:14 . 2008-04-13 22:11 8576 ----a-w- c:\windows\system32\drivers\i2omgmt.sys
2010-07-26 09:14 . 2008-04-13 22:11 8192 -c--a-w- c:\windows\system32\dllcache\changer.sys
2010-07-26 09:14 . 2008-04-13 22:11 8192 ----a-w- c:\windows\system32\drivers\changer.sys
2010-07-26 08:52 . 2008-05-30 12:11 467984 ----a-w- c:\windows\system32\d3dx10_38.dll
2010-07-26 08:47 . 2010-07-26 08:47 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-07-26 08:46 . 2010-07-26 08:48 -------- d-----w- c:\program files\DAEMON Tools Lite
2010-07-24 23:11 . 2010-07-24 23:11 -------- d-----w- c:\program files\MSXML 4.0
2010-07-24 20:20 . 2008-04-13 22:15 32128 -c--a-w- c:\windows\system32\dllcache\usbccgp.sys
2010-07-24 20:20 . 2008-04-13 22:15 32128 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2010-07-24 16:59 . 2010-07-24 16:59 -------- d-sh--w- c:\documents and settings\NetworkService\IETldCache
2010-07-24 16:49 . 2010-07-27 09:48 -------- d-----w- c:\program files\uTorrent
2010-07-24 12:35 . 2010-07-24 12:35 -------- d-----w- c:\program files\Webteh
2010-07-24 12:23 . 2010-07-24 12:24 -------- d-----w- c:\program files\ICQ7.2
2010-07-24 12:20 . 2010-07-24 12:20 -------- d-sh--w- c:\documents and settings\Martin\IETldCache
2010-07-24 12:19 . 2010-05-06 10:35 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2010-07-24 12:19 . 2010-05-06 10:35 599040 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2010-07-24 12:19 . 2010-05-06 10:35 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2010-07-24 12:19 . 2010-05-06 10:35 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2010-07-24 12:19 . 2010-05-06 10:35 1985536 -c----w- c:\windows\system32\dllcache\iertutil.dll
2010-07-24 12:19 . 2010-05-06 10:35 11076096 -c----w- c:\windows\system32\dllcache\ieframe.dll
2010-07-24 12:19 . 2010-05-06 10:35 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2010-07-24 12:19 . 2010-07-24 23:12 -------- d-----w- c:\windows\ie8updates
2010-07-24 12:19 . 2010-04-16 11:43 41984 -c----w- c:\windows\system32\dllcache\iecompat.dll
2010-07-24 12:18 . 2010-07-24 12:19 -------- dc-h--w- c:\windows\ie8
2010-07-24 11:50 . 2008-04-14 06:51 15423 ------w- c:\windows\system32\drivers\ch7xxnt5.dll
2010-07-24 11:41 . 2010-07-24 11:41 -------- d-----w- c:\program files\Common Files\Adobe
2010-07-24 11:39 . 2010-07-24 11:39 -------- d-----w- c:\windows\system32\Adobe
2010-07-24 11:39 . 2010-07-24 11:39 -------- d-----w- c:\program files\Common Files\Adobe AIR
2010-07-24 06:17 . 2009-11-27 17:14 17920 -c----w- c:\windows\system32\dllcache\msyuv.dll
2010-07-24 03:16 . 2010-05-27 17:12 45056 ----a-w- c:\windows\system32\aticalrt.dll
2010-07-24 03:16 . 2010-05-27 17:12 45056 ----a-w- c:\windows\system32\aticalcl.dll
2010-07-24 03:16 . 2010-05-27 17:10 4071424 ----a-w- c:\windows\system32\aticaldd.dll
2010-07-24 03:16 . 2010-05-27 16:29 65536 ----a-w- c:\windows\system32\atimpc32.dll
2010-07-24 03:16 . 2010-05-27 16:29 65536 ----a-w- c:\windows\system32\amdpcom32.dll
2010-07-24 02:04 . 2010-07-24 02:04 97056 ----a-w- c:\windows\system32\drivers\W700mdm.sys
2010-07-24 02:04 . 2010-07-24 02:04 9264 ----a-w- c:\windows\system32\drivers\W700mdfl.sys
2010-07-24 02:04 . 2010-07-24 02:04 88560 ----a-w- c:\windows\system32\drivers\W700mgmt.sys
2010-07-24 02:04 . 2010-07-24 02:04 86368 ----a-w- c:\windows\system32\drivers\W700obex.sys
2010-07-24 02:04 . 2010-07-24 02:04 6208 ----a-w- c:\windows\system32\drivers\W700cmnt.sys
2010-07-24 02:04 . 2010-07-24 02:04 6208 ----a-w- c:\windows\system32\drivers\W700cm.sys
2010-07-24 02:04 . 2010-07-24 02:04 5840 ----a-w- c:\windows\system32\drivers\W700whnt.sys
2010-07-24 02:04 . 2010-07-24 02:04 5840 ----a-w- c:\windows\system32\drivers\W700wh.sys
2010-07-24 02:04 . 2010-07-24 02:04 -------- d-----w- c:\windows\Downloaded Installations
2010-07-24 00:59 . 2010-02-12 10:03 293376 ------w- c:\windows\system32\browserchoice.exe
2010-07-24 00:58 . 2008-10-15 16:38 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2010-07-24 00:58 . 2008-04-21 21:15 216576 -c----w- c:\windows\system32\dllcache\wordpad.exe
2010-07-24 00:58 . 2010-07-24 23:12 -------- d--h--w- c:\windows\$hf_mig$
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-07-26 13:49 . 2010-07-23 17:37 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-07-24 11:52 . 2010-07-23 17:25 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-07-24 11:52 . 2010-07-23 17:25 2740 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2010-07-24 11:52 . 2010-07-23 17:25 8972 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2010-07-24 03:19 . 2010-07-23 18:16 62009 ----a-w- c:\windows\system32\wpfb_ati2dvag.dll
2010-07-24 03:16 . 2010-07-24 03:15 -------- d-----w- c:\program files\ATI
2010-07-24 03:16 . 2010-07-23 18:03 -------- d-----w- c:\program files\ATI Technologies
2010-07-24 02:05 . 2010-07-24 02:05 -------- d-----w- c:\program files\Common Files\Teleca Shared
2010-07-24 02:05 . 2010-07-24 02:05 -------- d-----w- c:\program files\Sony Ericsson
2010-07-24 02:04 . 2010-07-24 02:04 61536 ----a-w- c:\windows\system32\drivers\w700bus.sys.bak
2010-07-24 01:00 . 2010-07-24 01:00 0 ----a-w- c:\windows\nsreg.dat
2010-06-14 14:31 . 2010-07-23 17:24 744448 ----a-w- c:\windows\pchealth\helpctr\binaries\helpsvc.exe
2010-05-27 17:37 . 2007-05-18 01:57 4830720 ----a-w- c:\windows\system32\drivers\ati2mtag.sys
2010-05-27 17:05 . 2007-05-18 01:19 15208448 ----a-w- c:\windows\system32\atioglxx.dll
2010-05-27 17:02 . 2010-07-23 18:04 311296 ----a-w- c:\windows\system32\atiiiexx.dll
2010-05-27 16:59 . 2010-07-23 18:04 446464 ----a-w- c:\windows\system32\ATIDEMGX.dll
2010-05-27 16:58 . 2007-05-18 01:57 299520 ----a-w- c:\windows\system32\ati2dvag.dll
2010-05-27 16:54 . 2007-05-18 01:41 3699936 ----a-w- c:\windows\system32\ati3duag.dll
2010-05-27 16:46 . 2007-05-18 01:51 208896 ----a-w- c:\windows\system32\atipdlxx.dll
2010-05-27 16:46 . 2007-03-23 20:23 155648 ----a-w- c:\windows\system32\Oemdspif.dll
2010-05-27 16:45 . 2007-05-18 01:50 26112 ----a-w- c:\windows\system32\Ati2mdxx.exe
2010-05-27 16:45 . 2007-05-18 01:50 43520 ----a-w- c:\windows\system32\ati2edxx.dll
2010-05-27 16:45 . 2007-05-18 01:50 159744 ----a-w- c:\windows\system32\ati2evxx.dll
2010-05-27 16:44 . 2007-05-18 01:49 602112 ----a-w- c:\windows\system32\ati2evxx.exe
2010-05-27 16:43 . 2007-05-18 01:48 53248 ----a-w- c:\windows\system32\ATIDDC.DLL
2010-05-27 16:42 . 2010-07-24 03:16 143360 ----a-w- c:\windows\system32\atiapfxx.exe
2010-05-27 16:41 . 2007-05-18 01:30 2256512 ----a-w- c:\windows\system32\ativvaxx.dll
2010-05-27 16:41 . 2010-07-23 18:04 887724 ----a-w- c:\windows\system32\ativva6x.dat
2010-05-27 16:41 . 2010-07-23 18:04 3 ----a-w- c:\windows\system32\ativva5x.dat
2010-05-27 16:39 . 2007-05-18 01:17 573440 ----a-w- c:\windows\system32\atikvmag.dll
2010-05-27 16:38 . 2010-07-24 03:16 184320 ----a-w- c:\windows\system32\atiadlxx.dll
2010-05-27 16:37 . 2007-05-18 01:16 17408 ----a-w- c:\windows\system32\atitvo32.dll
2010-05-27 16:35 . 2007-05-18 01:14 393216 ----a-w- c:\windows\system32\atiok3x2.dll
2010-05-27 16:33 . 2007-05-18 01:10 692224 ----a-w- c:\windows\system32\ati2cqag.dll
2010-05-27 16:28 . 2007-05-18 01:15 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2010-05-06 10:35 . 2006-10-20 21:33 916480 ----a-w- c:\windows\system32\wininet.dll
2010-05-02 08:09 . 2006-10-20 21:31 1851264 ----a-w- c:\windows\system32\win32k.sys
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 90112]
"PivotSoftware"="c:\program files\Portrait Displays\Pivot Software\wpctrl.exe" [2007-02-09 694008]
"DT ACR"="c:\program files\Common Files\Portrait Displays\Shared\DT_startup.exe" [2008-06-06 81920]
"ioCentre"="c:\genius\ioCentre\gTaskBar.exe" [2007-05-31 61440]
"avast5"="c:\progra~1\ALWILS~1\Avast5\avastUI.exe" [2010-06-28 2837864]
"Sony Ericsson PC Suite"="c:\program files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" [2005-10-26 159744]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2006-12-18 868352]
"ATICustomerCare"="c:\program files\ATI\ATICustomerCare\ATICustomerCare.exe" [2010-03-04 311296]
"IObit Security 360"="c:\program files\IObit\IObit Security 360\IS360tray.exe" [2010-06-11 1280344]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0aswBoot.exe /M:389902a3aac
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\ICQ7.2\\ICQ.exe"=
"c:\\Program Files\\ICQ7.2\\aolload.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\MotoGP2\\motogp2.exe"=
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [23.7.2010 20:29 165456]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [23.7.2010 20:29 17744]
R2 IS360service;IS360service;c:\program files\IObit\IObit Security 360\is360srv.exe [26.7.2010 13:04 312152]
R2 PdiService;Portrait Displays SDK Service;c:\program files\Common Files\Portrait Displays\Drivers\pdisrvc.exe [23.7.2010 20:16 90112]
R3 gHidPnp;USB Device Enhanced Function Driver;c:\windows\system32\drivers\gHidPnp.sys [23.7.2010 20:21 16384]
R3 gMouUsb;USB Mouse Device Drv;c:\windows\system32\drivers\gMouUsb.sys [23.7.2010 20:21 9856]
S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [26.7.2010 10:47 691696]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: {{72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - c:\program files\ICQ7.2\ICQ.exe
LSP: %SYSTEMROOT%\system32\nvappfilter.dll
FF - ProfilePath - c:\documents and settings\Martin\Data aplikací\Mozilla\Firefox\Profiles\ncuzf4hb.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.lu", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nu", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nz", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--p1ai", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbayh7gpa", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.tel", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.proxy.type", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.buffer.cache.count", 24);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.buffer.cache.size", 4096);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("dom.ipc.plugins.timeoutSecs", 45);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accelerometer.enabled", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.nptest.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npswf32.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npctrl.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npqtplugin.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
.
**************************************************************************
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory:
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(728)
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\atiadlxx.dll
- - - - - - - > 'lsass.exe'(784)
c:\windows\system32\nvappfilter.dll
- - - - - - - > 'Explorer.EXE'(2164)
c:\program files\Common Files\Portrait Displays\Shared\dthook.dll
c:\program files\Common Files\Portrait Displays\Shared\PresetsCOM.dll
c:\program files\IObit\IObit Security 360\IS360mon.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\program files\Alwil Software\Avast5\AvastSvc.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\Common Files\Portrait Displays\Shared\DTSRVC.exe
c:\program files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
c:\program files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
c:\windows\system32\wscntfy.exe
c:\program files\Portrait Displays\Pivot Software\floater.exe
c:\program files\Common Files\Teleca Shared\CapabilityManager.exe
c:\program files\Common Files\Portrait Displays\Shared\HookManager.exe
c:\program files\Common Files\Teleca Shared\Generic.exe
c:\program files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
c:\windows\system32\drwtsn32.exe
c:\windows\system32\drwtsn32.exe
.
**************************************************************************
.
Celkový čas: 2010-07-28 11:56:01 - počítač byl restartován
ComboFix-quarantined-files.txt 2010-07-28 09:55
ComboFix2.txt 2010-07-28 00:29
ComboFix3.txt 2010-07-27 23:10
Před spuštěním: Volných bajtů: 301 390 827 520
Po spuštění: Volných bajtů: 301 379 751 936
- - End Of File - - C928FA0687169AABDAF633508A29385A
Zde je ten log:
ComboFix 10-07-27.03 - Martin 28.07.2010 11:49:58.7.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.420.1029.18.3326.2798 [GMT 2:00]
Spuštěný z: c:\documents and settings\Martin\Plocha\ComboFix.exe
Použité ovládací přepínače :: c:\documents and settings\Martin\Plocha\CFScript.txt
AV: avast! Antivirus *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
FILE ::
"c:\windows\ativpsrm.bin"
"c:\windows\system32\perfc005.dat"
"c:\windows\system32\perfh005.dat"
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\ativpsrm.bin
c:\windows\system32\1029 . . . . nemohl být smazán
.
((((((((((((((((((((((((( Soubory vytvořené od 2010-06-28 do 2010-07-28 )))))))))))))))))))))))))))))))
.
2010-07-27 21:43 . 2010-04-29 13:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-07-27 21:43 . 2010-07-27 21:43 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-07-27 21:43 . 2010-04-29 13:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-07-27 14:41 . 2010-07-27 14:41 -------- d-----w- c:\program files\Hijack
2010-07-27 10:16 . 2010-07-27 10:16 -------- d-----w- c:\program files\EA SPORTS
2010-07-26 19:11 . 2010-07-26 19:11 -------- d-----w- c:\program files\Common Files\DirectX
2010-07-26 19:07 . 2010-07-26 20:46 -------- d-----w- c:\program files\MotoGP2
2010-07-26 17:49 . 2010-07-26 17:49 0 ----a-w- c:\windows\PowerReg.dat
2010-07-26 17:44 . 2010-07-26 17:47 -------- d-----w- c:\windows\UbiSoft
2010-07-26 13:49 . 2010-07-26 13:49 -------- d-----w- c:\program files\directx
2010-07-26 13:46 . 2010-07-26 13:46 -------- d-----w- c:\program files\Enlight
2010-07-26 10:06 . 2010-07-26 11:04 -------- d-----w- c:\program files\IObit
2010-07-26 09:14 . 2008-04-13 22:10 34688 -c--a-w- c:\windows\system32\dllcache\lbrtfdc.sys
2010-07-26 09:14 . 2008-04-13 22:10 34688 ----a-w- c:\windows\system32\drivers\lbrtfdc.sys
2010-07-26 09:14 . 2008-04-13 22:11 8576 -c--a-w- c:\windows\system32\dllcache\i2omgmt.sys
2010-07-26 09:14 . 2008-04-13 22:11 8576 ----a-w- c:\windows\system32\drivers\i2omgmt.sys
2010-07-26 09:14 . 2008-04-13 22:11 8192 -c--a-w- c:\windows\system32\dllcache\changer.sys
2010-07-26 09:14 . 2008-04-13 22:11 8192 ----a-w- c:\windows\system32\drivers\changer.sys
2010-07-26 08:52 . 2008-05-30 12:11 467984 ----a-w- c:\windows\system32\d3dx10_38.dll
2010-07-26 08:47 . 2010-07-26 08:47 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-07-26 08:46 . 2010-07-26 08:48 -------- d-----w- c:\program files\DAEMON Tools Lite
2010-07-24 23:11 . 2010-07-24 23:11 -------- d-----w- c:\program files\MSXML 4.0
2010-07-24 20:20 . 2008-04-13 22:15 32128 -c--a-w- c:\windows\system32\dllcache\usbccgp.sys
2010-07-24 20:20 . 2008-04-13 22:15 32128 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2010-07-24 16:59 . 2010-07-24 16:59 -------- d-sh--w- c:\documents and settings\NetworkService\IETldCache
2010-07-24 16:49 . 2010-07-27 09:48 -------- d-----w- c:\program files\uTorrent
2010-07-24 12:35 . 2010-07-24 12:35 -------- d-----w- c:\program files\Webteh
2010-07-24 12:23 . 2010-07-24 12:24 -------- d-----w- c:\program files\ICQ7.2
2010-07-24 12:20 . 2010-07-24 12:20 -------- d-sh--w- c:\documents and settings\Martin\IETldCache
2010-07-24 12:19 . 2010-05-06 10:35 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2010-07-24 12:19 . 2010-05-06 10:35 599040 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2010-07-24 12:19 . 2010-05-06 10:35 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2010-07-24 12:19 . 2010-05-06 10:35 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2010-07-24 12:19 . 2010-05-06 10:35 1985536 -c----w- c:\windows\system32\dllcache\iertutil.dll
2010-07-24 12:19 . 2010-05-06 10:35 11076096 -c----w- c:\windows\system32\dllcache\ieframe.dll
2010-07-24 12:19 . 2010-05-06 10:35 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2010-07-24 12:19 . 2010-07-24 23:12 -------- d-----w- c:\windows\ie8updates
2010-07-24 12:19 . 2010-04-16 11:43 41984 -c----w- c:\windows\system32\dllcache\iecompat.dll
2010-07-24 12:18 . 2010-07-24 12:19 -------- dc-h--w- c:\windows\ie8
2010-07-24 11:50 . 2008-04-14 06:51 15423 ------w- c:\windows\system32\drivers\ch7xxnt5.dll
2010-07-24 11:41 . 2010-07-24 11:41 -------- d-----w- c:\program files\Common Files\Adobe
2010-07-24 11:39 . 2010-07-24 11:39 -------- d-----w- c:\windows\system32\Adobe
2010-07-24 11:39 . 2010-07-24 11:39 -------- d-----w- c:\program files\Common Files\Adobe AIR
2010-07-24 06:17 . 2009-11-27 17:14 17920 -c----w- c:\windows\system32\dllcache\msyuv.dll
2010-07-24 03:16 . 2010-05-27 17:12 45056 ----a-w- c:\windows\system32\aticalrt.dll
2010-07-24 03:16 . 2010-05-27 17:12 45056 ----a-w- c:\windows\system32\aticalcl.dll
2010-07-24 03:16 . 2010-05-27 17:10 4071424 ----a-w- c:\windows\system32\aticaldd.dll
2010-07-24 03:16 . 2010-05-27 16:29 65536 ----a-w- c:\windows\system32\atimpc32.dll
2010-07-24 03:16 . 2010-05-27 16:29 65536 ----a-w- c:\windows\system32\amdpcom32.dll
2010-07-24 02:04 . 2010-07-24 02:04 97056 ----a-w- c:\windows\system32\drivers\W700mdm.sys
2010-07-24 02:04 . 2010-07-24 02:04 9264 ----a-w- c:\windows\system32\drivers\W700mdfl.sys
2010-07-24 02:04 . 2010-07-24 02:04 88560 ----a-w- c:\windows\system32\drivers\W700mgmt.sys
2010-07-24 02:04 . 2010-07-24 02:04 86368 ----a-w- c:\windows\system32\drivers\W700obex.sys
2010-07-24 02:04 . 2010-07-24 02:04 6208 ----a-w- c:\windows\system32\drivers\W700cmnt.sys
2010-07-24 02:04 . 2010-07-24 02:04 6208 ----a-w- c:\windows\system32\drivers\W700cm.sys
2010-07-24 02:04 . 2010-07-24 02:04 5840 ----a-w- c:\windows\system32\drivers\W700whnt.sys
2010-07-24 02:04 . 2010-07-24 02:04 5840 ----a-w- c:\windows\system32\drivers\W700wh.sys
2010-07-24 02:04 . 2010-07-24 02:04 -------- d-----w- c:\windows\Downloaded Installations
2010-07-24 00:59 . 2010-02-12 10:03 293376 ------w- c:\windows\system32\browserchoice.exe
2010-07-24 00:58 . 2008-10-15 16:38 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2010-07-24 00:58 . 2008-04-21 21:15 216576 -c----w- c:\windows\system32\dllcache\wordpad.exe
2010-07-24 00:58 . 2010-07-24 23:12 -------- d--h--w- c:\windows\$hf_mig$
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-07-26 13:49 . 2010-07-23 17:37 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-07-24 11:52 . 2010-07-23 17:25 86327 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-07-24 11:52 . 2010-07-23 17:25 2740 ----a-w- c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
2010-07-24 11:52 . 2010-07-23 17:25 8972 ----a-w- c:\windows\pchealth\helpctr\Config\Cntstore.bin
2010-07-24 03:19 . 2010-07-23 18:16 62009 ----a-w- c:\windows\system32\wpfb_ati2dvag.dll
2010-07-24 03:16 . 2010-07-24 03:15 -------- d-----w- c:\program files\ATI
2010-07-24 03:16 . 2010-07-23 18:03 -------- d-----w- c:\program files\ATI Technologies
2010-07-24 02:05 . 2010-07-24 02:05 -------- d-----w- c:\program files\Common Files\Teleca Shared
2010-07-24 02:05 . 2010-07-24 02:05 -------- d-----w- c:\program files\Sony Ericsson
2010-07-24 02:04 . 2010-07-24 02:04 61536 ----a-w- c:\windows\system32\drivers\w700bus.sys.bak
2010-07-24 01:00 . 2010-07-24 01:00 0 ----a-w- c:\windows\nsreg.dat
2010-06-14 14:31 . 2010-07-23 17:24 744448 ----a-w- c:\windows\pchealth\helpctr\binaries\helpsvc.exe
2010-05-27 17:37 . 2007-05-18 01:57 4830720 ----a-w- c:\windows\system32\drivers\ati2mtag.sys
2010-05-27 17:05 . 2007-05-18 01:19 15208448 ----a-w- c:\windows\system32\atioglxx.dll
2010-05-27 17:02 . 2010-07-23 18:04 311296 ----a-w- c:\windows\system32\atiiiexx.dll
2010-05-27 16:59 . 2010-07-23 18:04 446464 ----a-w- c:\windows\system32\ATIDEMGX.dll
2010-05-27 16:58 . 2007-05-18 01:57 299520 ----a-w- c:\windows\system32\ati2dvag.dll
2010-05-27 16:54 . 2007-05-18 01:41 3699936 ----a-w- c:\windows\system32\ati3duag.dll
2010-05-27 16:46 . 2007-05-18 01:51 208896 ----a-w- c:\windows\system32\atipdlxx.dll
2010-05-27 16:46 . 2007-03-23 20:23 155648 ----a-w- c:\windows\system32\Oemdspif.dll
2010-05-27 16:45 . 2007-05-18 01:50 26112 ----a-w- c:\windows\system32\Ati2mdxx.exe
2010-05-27 16:45 . 2007-05-18 01:50 43520 ----a-w- c:\windows\system32\ati2edxx.dll
2010-05-27 16:45 . 2007-05-18 01:50 159744 ----a-w- c:\windows\system32\ati2evxx.dll
2010-05-27 16:44 . 2007-05-18 01:49 602112 ----a-w- c:\windows\system32\ati2evxx.exe
2010-05-27 16:43 . 2007-05-18 01:48 53248 ----a-w- c:\windows\system32\ATIDDC.DLL
2010-05-27 16:42 . 2010-07-24 03:16 143360 ----a-w- c:\windows\system32\atiapfxx.exe
2010-05-27 16:41 . 2007-05-18 01:30 2256512 ----a-w- c:\windows\system32\ativvaxx.dll
2010-05-27 16:41 . 2010-07-23 18:04 887724 ----a-w- c:\windows\system32\ativva6x.dat
2010-05-27 16:41 . 2010-07-23 18:04 3 ----a-w- c:\windows\system32\ativva5x.dat
2010-05-27 16:39 . 2007-05-18 01:17 573440 ----a-w- c:\windows\system32\atikvmag.dll
2010-05-27 16:38 . 2010-07-24 03:16 184320 ----a-w- c:\windows\system32\atiadlxx.dll
2010-05-27 16:37 . 2007-05-18 01:16 17408 ----a-w- c:\windows\system32\atitvo32.dll
2010-05-27 16:35 . 2007-05-18 01:14 393216 ----a-w- c:\windows\system32\atiok3x2.dll
2010-05-27 16:33 . 2007-05-18 01:10 692224 ----a-w- c:\windows\system32\ati2cqag.dll
2010-05-27 16:28 . 2007-05-18 01:15 53248 ----a-w- c:\windows\system32\drivers\ati2erec.dll
2010-05-06 10:35 . 2006-10-20 21:33 916480 ----a-w- c:\windows\system32\wininet.dll
2010-05-02 08:09 . 2006-10-20 21:31 1851264 ----a-w- c:\windows\system32\win32k.sys
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 90112]
"PivotSoftware"="c:\program files\Portrait Displays\Pivot Software\wpctrl.exe" [2007-02-09 694008]
"DT ACR"="c:\program files\Common Files\Portrait Displays\Shared\DT_startup.exe" [2008-06-06 81920]
"ioCentre"="c:\genius\ioCentre\gTaskBar.exe" [2007-05-31 61440]
"avast5"="c:\progra~1\ALWILS~1\Avast5\avastUI.exe" [2010-06-28 2837864]
"Sony Ericsson PC Suite"="c:\program files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" [2005-10-26 159744]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2006-12-18 868352]
"ATICustomerCare"="c:\program files\ATI\ATICustomerCare\ATICustomerCare.exe" [2010-03-04 311296]
"IObit Security 360"="c:\program files\IObit\IObit Security 360\IS360tray.exe" [2010-06-11 1280344]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0aswBoot.exe /M:389902a3aac
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\ICQ7.2\\ICQ.exe"=
"c:\\Program Files\\ICQ7.2\\aolload.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\MotoGP2\\motogp2.exe"=
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [23.7.2010 20:29 165456]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [23.7.2010 20:29 17744]
R2 IS360service;IS360service;c:\program files\IObit\IObit Security 360\is360srv.exe [26.7.2010 13:04 312152]
R2 PdiService;Portrait Displays SDK Service;c:\program files\Common Files\Portrait Displays\Drivers\pdisrvc.exe [23.7.2010 20:16 90112]
R3 gHidPnp;USB Device Enhanced Function Driver;c:\windows\system32\drivers\gHidPnp.sys [23.7.2010 20:21 16384]
R3 gMouUsb;USB Mouse Device Drv;c:\windows\system32\drivers\gMouUsb.sys [23.7.2010 20:21 9856]
S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [26.7.2010 10:47 691696]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.seznam.cz/
IE: {{72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - c:\program files\ICQ7.2\ICQ.exe
LSP: %SYSTEMROOT%\system32\nvappfilter.dll
FF - ProfilePath - c:\documents and settings\Martin\Data aplikací\Mozilla\Firefox\Profiles\ncuzf4hb.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
---- NASTAVENÍ FIREFOXU ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.lu", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nu", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nz", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--p1ai", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbayh7gpa", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.tel", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.proxy.type", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.buffer.cache.count", 24);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.buffer.cache.size", 4096);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("dom.ipc.plugins.timeoutSecs", 45);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accelerometer.enabled", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.nptest.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npswf32.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npctrl.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npqtplugin.dll", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
.
**************************************************************************
skenování skrytých procesů ...
skenování skrytých položek 'Po spuštění' ...
skenování skrytých souborů ...
sken byl úspešně dokončen
skryté soubory:
**************************************************************************
.
--------------------- Knihovny navázané na běžící procesy ---------------------
- - - - - - - > 'winlogon.exe'(728)
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\atiadlxx.dll
- - - - - - - > 'lsass.exe'(784)
c:\windows\system32\nvappfilter.dll
- - - - - - - > 'Explorer.EXE'(2164)
c:\program files\Common Files\Portrait Displays\Shared\dthook.dll
c:\program files\Common Files\Portrait Displays\Shared\PresetsCOM.dll
c:\program files\IObit\IObit Security 360\IS360mon.dll
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\program files\Alwil Software\Avast5\AvastSvc.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\Common Files\Portrait Displays\Shared\DTSRVC.exe
c:\program files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe
c:\program files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe
c:\windows\system32\wscntfy.exe
c:\program files\Portrait Displays\Pivot Software\floater.exe
c:\program files\Common Files\Teleca Shared\CapabilityManager.exe
c:\program files\Common Files\Portrait Displays\Shared\HookManager.exe
c:\program files\Common Files\Teleca Shared\Generic.exe
c:\program files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
c:\windows\system32\drwtsn32.exe
c:\windows\system32\drwtsn32.exe
.
**************************************************************************
.
Celkový čas: 2010-07-28 11:56:01 - počítač byl restartován
ComboFix-quarantined-files.txt 2010-07-28 09:55
ComboFix2.txt 2010-07-28 00:29
ComboFix3.txt 2010-07-27 23:10
Před spuštěním: Volných bajtů: 301 390 827 520
Po spuštění: Volných bajtů: 301 379 751 936
- - End Of File - - C928FA0687169AABDAF633508A29385A
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43294
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Problem s viry - podezření na malware
Co ten soubor na VT? je tady:
c:\windows\system32\1029\dwintl.dll ??
Máš spuštěn dr.watson, píše Ti to nějaké hlášky?
Zkus pohledat v PC:
drwtsn32.log
jak se chová PC?
Budu až večer..
c:\windows\system32\1029\dwintl.dll ??
Máš spuštěn dr.watson, píše Ti to nějaké hlášky?
Zkus pohledat v PC:
drwtsn32.log
jak se chová PC?
Budu až večer..
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Problem s viry - podezření na malware
Tak ten soubor c:\windows\system32\1029\dwintl.dll psalo,ze to nejde smazat. Nevim proc. A kdyz spustim DRWATSON.exe,ta to napise,ze nebyly nalezeny zadne chyby.Soubor drwtsn32.log jsem hledal,ale nic to nenaslo.
Pocitac se chova porad stejne po restartu nebo zapnuti PC musim cekat asi 5-10 min. nez me to pusti pracovat s PC.
Pocitac se chova porad stejne po restartu nebo zapnuti PC musim cekat asi 5-10 min. nez me to pusti pracovat s PC.
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43294
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Problem s viry - podezření na malware
Stáhni Bootkit Remover
http://www.esagelab.com/files/bootkit_remover.rar
-ulož na plochu
-spusť
- pak klikni do černého okna a zkopíruj sem výsledek, případně dej screen
http://www.esagelab.com/files/bootkit_remover.rar
-ulož na plochu
-spusť
- pak klikni do černého okna a zkopíruj sem výsledek, případně dej screen
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Zpět na “Viry, antiviry, firewally…”
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 0 hostů