Potřebuji nějak zkontrolovat log protože AD AVARE hlasí viry a podle avastu tam nic není.Je to samý
Warezov TD,WP,RD,RQ, Je to prý na : Docume1/PC/locals1/temp/aawtpm/c3918828/237e71 je to asi 8 souborů
Logfile of HijackThis v1.99.1
Scan saved at 17:57:29, on 3.1.2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\System32\inetsrv\inetinfo.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Documents and Settings\PC\Dokumenty\hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: metaspinner media GmbH - {12FC9A49-CFE0-49AA-BE9E-8F4EEAFC9443} - C:\PROGRA~1\YETISP~1\IEBUTT~1.DLL
O3 - Toolbar: &S-Rank - {B71B15CF-3093-459C-B764-AEB2486F2273} - C:\Program Files\Seznam\Postak\SRank.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NVMixerTray] "C:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe"
O4 - HKLM\..\Run: [zzzCamInSuiteIII] E:\SETUP.EXE 24***
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O8 - Extra context menu item: &ICQ Toolbar Search - res://C:\Program Files\ICQToolbar\toolbaru.dll/SEARCH.HTML
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {50E43D86-A74D-11D0-98CE-004005249458} (AnimatedGif Control) - https://www.mojebanka.cz/jars/confwiz/MVSGif.cab
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://212.80.66.25/activex/AxisCamControl.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{611B2589-05E8-4B2A-AC83-146BA1A22C52}: NameServer = 85.255.114.74 85.255.112.61
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - AHEAD Software - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
Nevím jak se toho zbavit už jsem zkoušel ten navod podle avengeru a je to pořád stejný Díky Fredy
kontrola logu
- fredik
- člen Security týmu
-
Master Level 7
- Příspěvky: 4680
- Registrován: červenec 06
- Pohlaví:
- Stav:
Offline
V logu není vidět jeho přítomnost.
Toto je k nějaké kameře?, když tak to otestuj na VirusTotall a řekni jak to dopadlo.
E:\SETUP.EXE 24***
Pročisti Pc CCleaner a nainstaluj si firewall.
Použij Fixwareout návod najdeš tady: pak sem vlož log z Firewareoutu.
Můžeš to zkusit projet Mwav-em a uvidíme co najde.
Toto je k nějaké kameře?, když tak to otestuj na VirusTotall a řekni jak to dopadlo.
E:\SETUP.EXE 24***
Pročisti Pc CCleaner a nainstaluj si firewall.
Použij Fixwareout návod najdeš tady: pak sem vlož log z Firewareoutu.
Můžeš to zkusit projet Mwav-em a uvidíme co najde.
tak jsem to projel a ad vare stále hlásí viry Tady je log fixwareoutu
Fixwareout
Last edited 12/06/2006
Post this report in the forums please
...
Prerun check
[HKEY_LOCAL_MACHINE\\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"system"=""
...
...
Reg Entries that were deleted
...
Random Runs removed from HKLM
...
...
PLEASE NOTE, There WILL be LEGITIMATE FILES LISTED. IF YOU ARE UNSURE OF WHAT IT IS LEAVE THEM ALONE.
»»»»» Searching by size/names...
»»»»»
Search five digit cs, dm kd and jb files.
This WILL/CAN also list Legit Files, Submit them at Virustotal
Other suspects.
»»»»» Misc files.
»»»»» Checking for older varients covered by the Rem3 tool.
...
Postrun check
[HKEY_LOCAL_MACHINE\\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"system"=""
...
Fixwareout
Last edited 12/06/2006
Post this report in the forums please
...
Prerun check
...
...
Reg Entries that were deleted
...
Random Runs removed from HKLM
...
...
PLEASE NOTE, There WILL be LEGITIMATE FILES LISTED. IF YOU ARE UNSURE OF WHAT IT IS LEAVE THEM ALONE.
»»»»» Searching by size/names...
»»»»»
Search five digit cs, dm kd and jb files.
This WILL/CAN also list Legit Files, Submit them at Virustotal
Other suspects.
»»»»» Misc files.
»»»»» Checking for older varients covered by the Rem3 tool.
...
Postrun check
[HKEY_LOCAL_MACHINE\\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"system"=""
...
a ještě ten mwav
Wed Jan 03 20:52:28 2007 => **********************************************************
Wed Jan 03 20:52:28 2007 => MicroWorld Anti Virus & Spyware Toolkit Utility.
Wed Jan 03 20:52:28 2007 => Copyright © 2003-2006, MicroWorld Technologies Inc.
Wed Jan 03 20:52:28 2007 => **********************************************************
Wed Jan 03 20:52:28 2007 => Source: C:\DOCUME~1\PC\Plocha\mwav.exe
Wed Jan 03 20:52:28 2007 => Version 8.8.1 (C:\DOCUME~1\PC\LOCALS~1\Temp\mexe.com)
Wed Jan 03 20:52:28 2007 => Log File: C:\DOCUME~1\PC\LOCALS~1\Temp\MWAV.LOG
Wed Jan 03 20:52:28 2007 => MWAV Registered: FALSE.
Wed Jan 03 20:52:28 2007 => User Account: PC
Wed Jan 03 20:52:28 2007 => OS Type: Windows Workstation
Wed Jan 03 20:52:28 2007 => OS: Windows XP
Wed Jan 03 20:52:28 2007 => Ver: Service Pack 2 (Build 2600)
Wed Jan 03 20:52:28 2007 => Windows Root Folder: C:\WINDOWS
Wed Jan 03 20:52:28 2007 => Windows Sys32 Folder: C:\WINDOWS\system32
Wed Jan 03 20:52:28 2007 => Local Fixed Drives: c:\,d:\
Wed Jan 03 20:52:28 2007 => MWAV Mode: Only Scan files.
Wed Jan 03 20:52:28 2007 => Latest Date of files inside MWAV: 02 Jan 2007 13:55:4.
Wed Jan 03 20:52:32 2007 => AV Library Loaded...
Wed Jan 03 20:52:32 2007 => MWAV doing self scanning...
Wed Jan 03 20:52:32 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\Getvlist.exe
Wed Jan 03 20:52:32 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\main.avi
Wed Jan 03 20:52:32 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\virus.avi
Wed Jan 03 20:52:32 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\ScanningProcess.exe
Wed Jan 03 20:52:32 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\Kave.dll
Wed Jan 03 20:52:32 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\prloader.dll
Wed Jan 03 20:52:33 2007 => MWAV files are clean.
Wed Jan 03 20:53:05 2007 => Virus Database Date: 1/2/2007
Wed Jan 03 20:53:05 2007 => Virus Database Count: 255607
Wed Jan 03 20:54:07 2007 => Downloading AntiVirus and Anti-Spyware Databases...
Wed Jan 03 20:54:08 2007 => Downloads Not Successful!
Wed Jan 03 20:55:01 2007 => Downloading AntiVirus and Anti-Spyware Databases...
Wed Jan 03 20:55:07 2007 => Downloads Successful...
Wed Jan 03 20:55:12 2007 => Reload of AntiVirus Signatures successfully done.
Wed Jan 03 20:55:12 2007 => Virus Database Date: 1/2/2007
Wed Jan 03 20:55:12 2007 => Virus Database Count: 255581
Wed Jan 03 20:55:17 2007 => **********************************************************
Wed Jan 03 20:55:17 2007 => MicroWorld Anti Virus & Spyware Toolkit Utility.
Wed Jan 03 20:55:17 2007 => Copyright © 2003-2006, MicroWorld Technologies Inc.
Wed Jan 03 20:55:17 2007 =>
Wed Jan 03 20:55:17 2007 => Support: support@mwti.net
Wed Jan 03 20:55:17 2007 => Web: http://www.mwti.net
Wed Jan 03 20:55:17 2007 => **********************************************************
Wed Jan 03 20:55:17 2007 => Version 8.8.1 (C:\DOCUME~1\PC\LOCALS~1\Temp\mexe.com)
Wed Jan 03 20:55:17 2007 => Log File: C:\DOCUME~1\PC\LOCALS~1\Temp\MWAV.LOG
Wed Jan 03 20:55:17 2007 => User Account: PC
Wed Jan 03 20:55:17 2007 => Windows Root Folder: C:\WINDOWS
Wed Jan 03 20:55:17 2007 => Windows Sys32 Folder: C:\WINDOWS\system32
Wed Jan 03 20:55:17 2007 => OS: Windows XP
Wed Jan 03 20:55:17 2007 => Ver: Service Pack 2 (Build 2600)
Wed Jan 03 20:55:17 2007 => Latest Date of files inside MWAV: 02 Jan 2007 10:17:5.
Wed Jan 03 20:55:17 2007 => Options Selected by User:
Wed Jan 03 20:55:17 2007 => Memory Check: Enabled
Wed Jan 03 20:55:17 2007 => Registry Check: Enabled
Wed Jan 03 20:55:17 2007 => StartUp Folder Check: Enabled
Wed Jan 03 20:55:17 2007 => System Folder Check: Enabled
Wed Jan 03 20:55:17 2007 => System Area Check: Disabled
Wed Jan 03 20:55:17 2007 => Services Check: Enabled
Wed Jan 03 20:55:17 2007 => Drive Check Option Disabled
Wed Jan 03 20:55:17 2007 => Folder Check: Disabled
Wed Jan 03 20:55:20 2007 => ***** Scanning Memory Files *****
Wed Jan 03 20:55:20 2007 => Scanning File C:\WINDOWS\System32\smss.exe
Wed Jan 03 20:55:20 2007 => Scanning File C:\WINDOWS\system32\ntdll.dll
Wed Jan 03 20:55:20 2007 => Scanning File C:\WINDOWS\SYSTEM32\CSRSS.EXE
Wed Jan 03 20:55:20 2007 => Scanning File C:\WINDOWS\system32\CSRSRV.dll
Wed Jan 03 20:55:20 2007 => Scanning File C:\WINDOWS\system32\basesrv.dll
Wed Jan 03 20:55:20 2007 => Scanning File C:\WINDOWS\system32\winsrv.dll
Wed Jan 03 20:55:20 2007 => Scanning File C:\WINDOWS\system32\USER32.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\KERNEL32.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\GDI32.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\sxs.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\ADVAPI32.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\RPCRT4.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\SYSTEM32\WINLOGON.EXE
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\AUTHZ.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\msvcrt.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\CRYPT32.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\MSASN1.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\NDdeApi.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\PROFMAP.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\NETAPI32.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\USERENV.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\PSAPI.DLL
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\REGAPI.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\Secur32.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\SETUPAPI.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\VERSION.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\WINSTA.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\WINTRUST.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\IMAGEHLP.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\WS2_32.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\WS2HELP.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\MSGINA.dll
Wed Jan 03 20:55:23 2007 => Scanning File C:\WINDOWS\system32\SHELL32.dll
Wed Jan 03 20:55:23 2007 => Scanning File C:\WINDOWS\system32\SHLWAPI.dll
Wed Jan 03 20:55:23 2007 => Scanning File C:\WINDOWS\system32\COMCTL32.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\ODBC32.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\comdlg32.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\odbcint.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\SHSVCS.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\sfc.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\sfc_os.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\ole32.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\Apphelp.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\WINSCARD.DLL
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\WTSAPI32.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\uxtheme.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\WINMM.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\cscdll.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\WlNotify.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\WINSPOOL.DRV
Wed Jan 03 20:55:25 2007 => Scanning File C:\WINDOWS\system32\MPR.dll
Wed Jan 03 20:55:25 2007 => Scanning File C:\WINDOWS\system32\rsaenh.dll
Wed Jan 03 20:55:25 2007 => Scanning File C:\WINDOWS\system32\msv1_0.dll
Wed Jan 03 20:55:25 2007 => Scanning File C:\WINDOWS\system32\iphlpapi.dll
Wed Jan 03 20:55:25 2007 => Scanning File C:\WINDOWS\system32\SAMLIB.dll
Wed Jan 03 20:55:25 2007 => Scanning File C:\WINDOWS\system32\cscui.dll
Wed Jan 03 20:55:25 2007 => Scanning File C:\WINDOWS\system32\xpsp2res.dll
Wed Jan 03 20:55:25 2007 => Scanning File C:\WINDOWS\system32\NTMARTA.DLL
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\WLDAP32.dll
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\wdmaud.drv
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\msacm32.drv
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\MSACM32.dll
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\midimap.dll
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\COMRes.dll
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\OLEAUT32.dll
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\CLBCATQ.DLL
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\services.exe
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\SCESRV.dll
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\umpnpmgr.dll
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\NCObjAPI.DLL
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\MSVCP60.dll
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\ShimEng.dll
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\AppPatch\AcGenral.DLL
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\eventlog.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\lsass.exe
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\LSASRV.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\SAMSRV.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\cryptdll.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\DNSAPI.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\NTDSAPI.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\msprivs.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\kerberos.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\netlogon.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\w32time.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\schannel.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\wdigest.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\scecli.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\ipsecsvc.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\oakley.DLL
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\WINIPSEC.DLL
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\pstorsvc.dll
Wed Jan 03 20:55:28 2007 => Scanning File C:\WINDOWS\system32\mswsock.dll
Wed Jan 03 20:55:28 2007 => Scanning File C:\WINDOWS\system32\psbase.dll
Wed Jan 03 20:55:28 2007 => Scanning File C:\WINDOWS\system32\hnetcfg.dll
Wed Jan 03 20:55:28 2007 => Scanning File C:\WINDOWS\System32\wshtcpip.dll
Wed Jan 03 20:55:28 2007 => Scanning File C:\WINDOWS\system32\dssenh.dll
Wed Jan 03 20:55:28 2007 => Scanning File C:\WINDOWS\system32\svchost.exe
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\rpcss.dll
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\termsrv.dll
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\ICAAPI.dll
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\mstlsapi.dll
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\ACTIVEDS.dll
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\adsldpc.dll
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\ATL.DLL
Wed Jan 03 20:55:28 2007 => Scanning File C:\WINDOWS\System32\winrnr.dll
Wed Jan 03 20:55:28 2007 => Scanning File C:\WINDOWS\system32\rasadhlp.dll
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\dhcpcsvc.dll
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\wzcsvc.dll
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\rtutils.dll
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\WMI.dll
Wed Jan 03 20:55:29 2007 => Scanning File c:\windows\system32\ESENT.dll
Wed Jan 03 20:55:29 2007 => Scanning File C:\WINDOWS\System32\rastls.dll
Wed Jan 03 20:55:29 2007 => Scanning File C:\WINDOWS\system32\CRYPTUI.dll
Wed Jan 03 20:55:29 2007 => Scanning File C:\WINDOWS\system32\WININET.dll
Wed Jan 03 20:55:29 2007 => Scanning File C:\WINDOWS\System32\MPRAPI.dll
Wed Jan 03 20:55:29 2007 => Scanning File C:\WINDOWS\System32\RASAPI32.dll
Wed Jan 03 20:55:29 2007 => Scanning File C:\WINDOWS\System32\rasman.dll
Wed Jan 03 20:55:29 2007 => Scanning File C:\WINDOWS\System32\TAPI32.dll
Wed Jan 03 20:55:29 2007 => Scanning File C:\WINDOWS\System32\raschap.dll
Wed Jan 03 20:55:29 2007 => Scanning File c:\windows\system32\schedsvc.dll
Wed Jan 03 20:55:29 2007 => Scanning File C:\WINDOWS\System32\MSIDLE.DLL
Wed Jan 03 20:55:29 2007 => Scanning File c:\windows\system32\audiosrv.dll
Wed Jan 03 20:55:29 2007 => Scanning File c:\windows\system32\wkssvc.dll
Wed Jan 03 20:55:29 2007 => Scanning File c:\windows\system32\cryptsvc.dll
Wed Jan 03 20:55:29 2007 => Scanning File c:\windows\system32\certcli.dll
Wed Jan 03 20:55:29 2007 => Scanning File c:\windows\system32\hidserv.dll
Wed Jan 03 20:55:29 2007 => Scanning File c:\windows\system32\HID.DLL
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\pchealth\helpctr\binaries\pchsvc.dll
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\system32\es.dll
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\system32\ersvc.dll
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\system32\dmserver.dll
Wed Jan 03 20:55:30 2007 => Scanning File C:\WINDOWS\system32\comsvcs.dll
Wed Jan 03 20:55:30 2007 => Scanning File C:\WINDOWS\system32\MTXCLU.DLL
Wed Jan 03 20:55:30 2007 => Scanning File C:\WINDOWS\system32\WSOCK32.dll
Wed Jan 03 20:55:30 2007 => Scanning File C:\WINDOWS\system32\colbact.DLL
Wed Jan 03 20:55:30 2007 => Scanning File C:\WINDOWS\System32\CLUSAPI.DLL
Wed Jan 03 20:55:30 2007 => Scanning File C:\WINDOWS\System32\RESUTILS.DLL
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\system32\netman.dll
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\system32\netshell.dll
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\system32\credui.dll
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\system32\WZCSAPI.DLL
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\system32\srvsvc.dll
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\system32\wuauserv.dll
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\system32\wbem\wmisvc.dll
Wed Jan 03 20:55:31 2007 => Scanning File C:\WINDOWS\system32\VSSAPI.DLL
Wed Jan 03 20:55:31 2007 => Scanning File C:\WINDOWS\system32\wuaueng.dll
Wed Jan 03 20:55:31 2007 => Scanning File C:\WINDOWS\System32\ADVPACK.dll
Wed Jan 03 20:55:31 2007 => Scanning File C:\WINDOWS\System32\SHFOLDER.dll
Wed Jan 03 20:55:31 2007 => Scanning File C:\WINDOWS\System32\WINHTTP.dll
Wed Jan 03 20:55:31 2007 => Scanning File C:\WINDOWS\System32\Cabinet.dll
Wed Jan 03 20:55:31 2007 => Scanning File C:\WINDOWS\System32\mspatcha.dll
Wed Jan 03 20:55:31 2007 => Scanning File c:\windows\system32\trkwks.dll
Wed Jan 03 20:55:31 2007 => Scanning File c:\windows\system32\srsvc.dll
Wed Jan 03 20:55:31 2007 => Scanning File c:\windows\system32\POWRPROF.dll
Wed Jan 03 20:55:31 2007 => Scanning File c:\windows\system32\sens.dll
Wed Jan 03 20:55:31 2007 => Scanning File c:\windows\system32\seclogon.dll
Wed Jan 03 20:55:31 2007 => Scanning File c:\windows\system32\wscsvc.dll
Wed Jan 03 20:55:31 2007 => Scanning File c:\windows\system32\msi.dll
Wed Jan 03 20:55:32 2007 => Scanning File c:\windows\system32\ipnathlp.dll
Wed Jan 03 20:55:32 2007 => Scanning File c:\windows\system32\browser.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\System32\wbem\wbemcomn.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\system32\WBEM\wbemcore.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\system32\WBEM\esscli.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\system32\WBEM\FastProx.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\System32\wbem\wmiutils.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\System32\wbem\repdrvfs.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\System32\wbem\wmiprvsd.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\System32\wbem\wbemess.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\System32\wbem\ncprov.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\System32\rasmans.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\System32\netcfgx.dll
Wed Jan 03 20:55:33 2007 => Scanning File c:\windows\system32\tapisrv.dll
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\rastapi.dll
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\unimdm.tsp
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\uniplat.dll
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\kmddsp.tsp
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\ndptsp.tsp
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\ipconf.tsp
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\h323.tsp
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\hidphone.tsp
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\rasppp.dll
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\ntlsapi.dll
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\upnp.dll
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\SSDPAPI.dll
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\RASDLG.dll
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\wbem\wbemsvc.dll
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\wbem\wbemcons.dll
Wed Jan 03 20:55:33 2007 => Scanning File c:\windows\system32\dnsrslvr.dll
Wed Jan 03 20:55:33 2007 => Scanning File c:\windows\system32\lmhsvc.dll
Wed Jan 03 20:55:33 2007 => Scanning File c:\windows\system32\webclnt.dll
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\system32\urlmon.dll
Wed Jan 03 20:55:34 2007 => Scanning File c:\windows\system32\regsvc.dll
Wed Jan 03 20:55:34 2007 => Scanning File c:\windows\system32\ssdpsrv.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\spoolsv.exe
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\SPOOLSS.DLL
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\localspl.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\cnbjmon.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\hpzlnt03.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\mdimon.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\pjlmon.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\tcpmon.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\usbmon.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\System32\spool\PRTPROCS\W32X86\mdippr.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\win32spl.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\NETRAP.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\inetpp.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\Explorer.EXE
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\system32\BROWSEUI.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\system32\SHDOCVW.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\System32\themeui.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\System32\MSIMG32.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\system32\LINKINFO.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\system32\ntshrui.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\system32\MLANG.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\System32\stobject.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\System32\BatMeter.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\system32\MSCTF.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\system32\mslbui.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\System32\drprov.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\System32\ntlanman.dll
Wed Jan 03 20:55:36 2007 => Scanning File C:\WINDOWS\System32\NETUI0.dll
Wed Jan 03 20:55:36 2007 => Scanning File C:\WINDOWS\System32\NETUI1.dll
Wed Jan 03 20:55:36 2007 => Scanning File C:\WINDOWS\System32\davclnt.dll
Wed Jan 03 20:55:36 2007 => Scanning File C:\WINDOWS\system32\browselc.dll
Wed Jan 03 20:55:36 2007 => Scanning File C:\WINDOWS\system32\DUSER.dll
Wed Jan 03 20:55:36 2007 => Scanning File C:\WINDOWS\system32\shdoclc.dll
Wed Jan 03 20:55:36 2007 => Scanning File C:\WINDOWS\system32\wzcdlg.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\PROGRA~1\WinZip\WZSHLSTB.DLL
Wed Jan 03 20:55:37 2007 => Scanning File C:\WINDOWS\system32\cryptnet.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\WINDOWS\system32\SensApi.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswUpdSv.exe
Wed Jan 03 20:55:37 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswCmnS.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswCmnOS.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\WINDOWS\system32\MSVCP71.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\WINDOWS\system32\MSVCR71.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswCmnB.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashServ.exe
Wed Jan 03 20:55:37 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswAux.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswEngin.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswScan.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashBase.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashTask.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswInteg.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswIdle.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\Aavm4h.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\WINDOWS\system32\dbghelp.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\Czech\Base.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\UNACEV2.DLL
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\AhResMai.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ahResMes.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\AhResNS.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\AhResOut.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ahResP2P.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\AhResStd.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\AhResWS.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\WINDOWS\system32\perfos.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashSSqlt.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\WINDOWS\System32\inetsrv\inetinfo.exe
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\system32\IisRTL.DLL
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\rpcref.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\iisadmin.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\COADMIN.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\system32\ADMWPROX.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\metadata.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\nsepm.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\system32\IISMAP.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\wamreg.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\admexs.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\svcext.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\system32\Security.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\SMTPSVC.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\INFOCOMM.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\ISATQ.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\System32\inetsrv\IISFECNV.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\FCACHDLL.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\RWNH.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\exstrace.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\STAXMEM.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\System32\inetsrv\w3svc.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\System32\inetsrv\lonsint.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\System32\inetsrv\iscomlog.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\inetsrv\sspifilt.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\inetsrv\seo.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\inetsrv\compfilt.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\inetsrv\gzip.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\inetsrv\pwsdata.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\inetsrv\aqueue.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\inetsrv\md5filt.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\System32\inetsrv\httpext.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\inetsrv\ntfsdrv.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\System32\inetsrv\iislog.dll
Wed Jan 03 20:55:41 2007 => Scanning File C:\PROGRA~1\Ahead\InCD\InCDsrv.exe
Wed Jan 03 20:55:41 2007 => Scanning File C:\PROGRA~1\COMMON~1\Ahead\Lib\DRIVEL~1.DLL
Wed Jan 03 20:55:41 2007 => Scanning File C:\PROGRA~1\Ahead\InCD\incdshx.dll
Wed Jan 03 20:55:41 2007 => Scanning File C:\PROGRA~1\COMMON~1\MICROS~1\VS7DEBUG\MDM.EXE
Wed Jan 03 20:55:41 2007 => Scanning File C:\WINDOWS\system32\nvsvc32.exe
Wed Jan 03 20:55:41 2007 => Scanning File C:\WINDOWS\system32\nvapi.dll
Wed Jan 03 20:55:41 2007 => Scanning File C:\WINDOWS\System32\alg.exe
Wed Jan 03 20:55:41 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswCmnOS.dll
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashBase.dll
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswCmnB.dll
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswCmnS.dll
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashTask.dll
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswAux.dll
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\Aavm4h.dll
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\Czech\Lang.dll
Wed Jan 03 20:55:42 2007 => Scanning File C:\WINDOWS\system32\MFC71.DLL
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\AavmRpch.dll
Wed Jan 03 20:55:42 2007 => Scanning File c:\PROGRA~1\ALWILS~1\avast4\ahruimai.dll
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashUInt.dll
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\XT1922.dll
Wed Jan 03 20:55:43 2007 => Scanning File c:\PROGRA~1\ALWILS~1\avast4\ahruimes.dll
Wed Jan 03 20:55:43 2007 => Scanning File c:\PROGRA~1\ALWILS~1\avast4\ahruins.dll
Wed Jan 03 20:55:43 2007 => Scanning File c:\PROGRA~1\ALWILS~1\avast4\ahruiout.dll
Wed Jan 03 20:55:43 2007 => Scanning File C:\WINDOWS\system32\MAPI32.dll
Wed Jan 03 20:55:43 2007 => Scanning File c:\PROGRA~1\ALWILS~1\avast4\ahruip2p.dll
Wed Jan 03 20:55:43 2007 => Scanning File c:\PROGRA~1\ALWILS~1\avast4\ahruistd.dll
Wed Jan 03 20:55:43 2007 => Scanning File c:\PROGRA~1\ALWILS~1\avast4\ahruiws.dll
Wed Jan 03 20:55:43 2007 => Scanning File C:\WINDOWS\system32\RICHED20.DLL
Wed Jan 03 20:55:43 2007 => Scanning File C:\WINDOWS\system32\ctfmon.exe
Wed Jan 03 20:55:43 2007 => Scanning File C:\WINDOWS\system32\MSUTB.dll
Wed Jan 03 20:55:43 2007 => Scanning File C:\PROGRA~1\SAGEM\SAGEMF~1\dslmon.exe
Wed Jan 03 20:55:43 2007 => Scanning File C:\WINDOWS\system32\oledlg.dll
Wed Jan 03 20:55:43 2007 => Scanning File C:\WINDOWS\system32\OLEPRO32.DLL
Wed Jan 03 20:55:44 2007 => Scanning File C:\PROGRA~1\SAGEM\SAGEMF~1\LANGUA~1\English.dll
Wed Jan 03 20:55:44 2007 => Scanning File C:\PROGRA~1\INTERN~1\iexplore.exe
Wed Jan 03 20:55:44 2007 => Scanning File C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\yt.dll
Wed Jan 03 20:55:44 2007 => Scanning File C:\PROGRA~1\Adobe\ACROBA~1.0CE\Reader\ActiveX\ACROIE~1.DLL
Wed Jan 03 20:55:44 2007 => Scanning File C:\PROGRA~1\YETISP~1\IEBUTT~1.DLL
Wed Jan 03 20:55:44 2007 => Scanning File C:\PROGRA~1\YETISP~1\IEButtonYetiSportsEBay.dll
Wed Jan 03 20:55:44 2007 => Scanning File C:\WINDOWS\System32\mshtml.dll
Wed Jan 03 20:55:44 2007 => Scanning File C:\WINDOWS\System32\msls31.dll
Wed Jan 03 20:55:44 2007 => Scanning File C:\WINDOWS\System32\msxml3.dll
Wed Jan 03 20:55:44 2007 => Scanning File C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\pubmod.dll
Wed Jan 03 20:55:44 2007 => Scanning File C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\ypubc.dll
Wed Jan 03 20:55:44 2007 => Scanning File C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\YMEREM~1.DLL
Wed Jan 03 20:55:44 2007 => Scanning File C:\WINDOWS\System32\msimtf.dll
Wed Jan 03 20:55:45 2007 => Scanning File C:\PROGRA~1\MICROS~3\OFFICE11\msohev.dll
Wed Jan 03 20:55:45 2007 => Scanning File C:\WINDOWS\System32\jscript.dll
Wed Jan 03 20:55:45 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\mexe.com
Wed Jan 03 20:55:45 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\msvl64.dll
Wed Jan 03 20:55:45 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\kave.dll
Wed Jan 03 20:55:46 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\PSAPI.DLL
Wed Jan 03 20:55:46 2007 => Scanning File C:\WINDOWS\system32\RICHED32.DLL
Wed Jan 03 20:55:46 2007 => Scanning File C:\WINDOWS\system32\VDMDBG.DLL
Wed Jan 03 20:55:46 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\ScanningProcess.exe
Wed Jan 03 20:55:46 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\prloader.dll
Wed Jan 03 20:55:46 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\prkernel.ppl
Wed Jan 03 20:55:46 2007 => Scanning File c:\docume~1\pc\locals~1\temp\avpmgr.ppl
Wed Jan 03 20:55:46 2007 => Scanning File c:\docume~1\pc\locals~1\temp\wdiskio.ppl
Wed Jan 03 20:55:46 2007 => Scanning File c:\docume~1\pc\locals~1\temp\nfio.ppl
Wed Jan 03 20:55:46 2007 => Scanning File c:\docume~1\pc\locals~1\temp\avlib.ppl
Wed Jan 03 20:55:46 2007 => Scanning File c:\docume~1\pc\locals~1\temp\dtreg.ppl
Wed Jan 03 20:55:46 2007 => Scanning File c:\docume~1\pc\locals~1\temp\prutil.ppl
Wed Jan 03 20:55:46 2007 => Scanning File c:\docume~1\pc\locals~1\temp\avp1.ppl
Wed Jan 03 20:55:46 2007 => Scanning File c:\docume~1\pc\locals~1\temp\l_llio.ppl
Wed Jan 03 20:55:46 2007 => Scanning File c:\docume~1\pc\locals~1\temp\ichstrms.ppl
Wed Jan 03 20:55:46 2007 => Scanning File c:\docume~1\pc\locals~1\temp\hashcont.ppl
Wed Jan 03 20:55:47 2007 => Scanning File c:\docume~1\pc\locals~1\temp\hccmp.ppl
Wed Jan 03 20:55:47 2007 => Scanning File c:\docume~1\pc\locals~1\temp\iwgen.ppl
Wed Jan 03 20:55:47 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashMaiSv.exe
Wed Jan 03 20:55:47 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashUInt.dll
Wed Jan 03 20:55:47 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\XT1922.dll
Wed Jan 03 20:55:47 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\Czech\langmai.dll
Wed Jan 03 20:55:47 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashWebSv.exe
Wed Jan 03 20:55:47 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashWsFtr.dll
Wed Jan 03 20:55:47 2007 => Scanning File C:\WINDOWS\system32\OLEACC.dll
Wed Jan 03 20:55:47 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\AhResWs.dll
Wed Jan 03 20:55:47 2007 => ***** Scanning Registry Files *****
Wed Jan 03 20:55:47 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad
Wed Jan 03 20:55:47 2007 => *** File C:\WINDOWS\system32\SHELL32.dll having Size Restriction ***. Filesize 8191 kb > 3072 kb...
Wed Jan 03 20:55:47 2007 => Scanning File C:\WINDOWS\system32\SHELL32.dll [**]
Wed Jan 03 20:55:47 2007 => *** File C:\WINDOWS\system32\SHELL32.dll having Size Restriction ***. Filesize 8191 kb > 3072 kb...
Wed Jan 03 20:55:47 2007 => Scanning File C:\WINDOWS\system32\SHELL32.dll [**]
Wed Jan 03 20:55:47 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:47 2007 => Scanning File C:\WINDOWS\System32\stobject.dll
Wed Jan 03 20:55:47 2007 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad
Wed Jan 03 20:55:47 2007 => Scanning HKLM\SOFTWARE\Microsoft\Internet Explorer\Plugins\Extension
Wed Jan 03 20:55:47 2007 => Scanning HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar
Wed Jan 03 20:55:47 2007 => Scanning File C:\PROGRA~1\Seznam\Postak\SRank.dll
Wed Jan 03 20:55:48 2007 => Scanning File C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\yt.dll
Wed Jan 03 20:55:48 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects
Wed Jan 03 20:55:48 2007 => {02478D38-C3F9-4EFB-9B51-7695ECA05670} = C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
Wed Jan 03 20:55:48 2007 => Scanning File C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\yt.dll
Wed Jan 03 20:55:48 2007 => {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} = C:\Program Files\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll
Wed Jan 03 20:55:48 2007 => Scanning File C:\PROGRA~1\Adobe\ACROBA~1.0CE\Reader\ActiveX\ACROIE~1.DLL
Wed Jan 03 20:55:48 2007 => {12FC9A49-CFE0-49AA-BE9E-8F4EEAFC9443} = C:\PROGRA~1\YETISP~1\IEBUTT~1.DLL
Wed Jan 03 20:55:48 2007 => Scanning File C:\PROGRA~1\YETISP~1\IEBUTT~1.DLL
Wed Jan 03 20:55:48 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler
Wed Jan 03 20:55:48 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:48 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:48 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
Wed Jan 03 20:55:48 2007 => Scanning File C:\WINDOWS\System32\inetsrv\w3ext.dll
Wed Jan 03 20:55:48 2007 => Scanning File C:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL
Wed Jan 03 20:55:48 2007 => Scanning File C:\PROGRA~1\MICROS~3\OFFICE11\msohev.dll
Wed Jan 03 20:55:48 2007 => Scanning File C:\WINDOWS\system32\Audiodev.dll
Wed Jan 03 20:55:48 2007 => Scanning File C:\WINDOWS\system32\Audiodev.dll
Wed Jan 03 20:55:48 2007 => Scanning File C:\WINDOWS\system32\wmpshell.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\wmpshell.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\wmpshell.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\browseui.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\mmsys.cpl
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\icmui.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\rshx32.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\docprop.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\ntshrui.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\System32\themeui.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\deskadp.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\deskmon.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\dssec.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\SlayerXP.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\shscrap.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\diskcopy.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\ntlanui2.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\System32\icmui.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\icmui.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\printui.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\dskquoui.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\syncui.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\System32\hticons.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\fontext.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\icmui.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\rshx32.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\ntshrui.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\deskperf.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\cryptext.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\cryptext.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\NETSHELL.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\NETSHELL.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\wiashext.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\wiashext.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\wiashext.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\wiashext.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\wiashext.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\remotepg.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\wuaucpl.cpl
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\wshext.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\PROGRA~1\COMMON~1\System\OLEDB~1\oledb32.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\mstask.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\mstask.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\mstask.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\sendmail.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\sendmail.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\occache.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\appwiz.cpl
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\appwiz.cpl
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\appwiz.cpl
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\netplwiz.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\netplwiz.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\netplwiz.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\netplwiz.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\zipfldr.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\zipfldr.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\zipfldr.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\cdfview.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\cdfview.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\cdfview.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\cdfview.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\cdfview.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\msieftp.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\dsquery.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\dsquery.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\dsquery.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\dsquery.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\dsuiext.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\dsuiext.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\mydocs.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\mydocs.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\mydocs.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\cscui.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\cscui.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\cscui.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\msagent\agentpsh.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\dfsshlex.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\photowiz.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\mmcshext.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\system32\cabview.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\PROGRA~1\OUTLOO~1\wabfind.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\System32\twext.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\System32\twext.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\System32\extmgr.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\PROGRA~1\Real\REALPL~1\rpshell.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\PROGRA~1\Ahead\InCD\incdshx.dll
Wed Jan 03 20:55:54 2007 => *** File C:\WINDOWS\system32\nvcpl.dll having Size Restriction ***. Filesize 7520 kb > 3072 kb...
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\system32\nvcpl.dll [**]
Wed Jan 03 20:55:54 2007 => *** File C:\WINDOWS\system32\nvcpl.dll having Size Restriction ***. Filesize 7520 kb > 3072 kb...
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\system32\nvcpl.dll [**]
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\system32\nvshell.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\system32\nvshell.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\system32\nvshell.dll
Wed Jan 03 20:55:54 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows
Wed Jan 03 20:55:54 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\Explorer.exe
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\system32\userinit.exe
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\system32\gptext.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\system32\fdeploy.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\system32\dskquota.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\gptext.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\gptext.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\iedkcs32.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\scecli.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\iedkcs32.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\scecli.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\appmgmts.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\gptext.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\crypt32.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\cryptnet.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\cscdll.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\wlnotify.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\wlnotify.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\sclgntfy.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\WlNotify.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\wlnotify.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\wlnotify.dll
Wed Jan 03 20:55:55 2007 => Scanning HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
Wed Jan 03 20:55:55 2007 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System
Wed Jan 03 20:55:55 2007 => Scanning HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows
Wed Jan 03 20:55:55 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AEDEBUG
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\drwtsn32.exe
Wed Jan 03 20:55:55 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\ntsd.exe
Wed Jan 03 20:55:55 2007 => Scanning HKCU\Control Panel\Desktop
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\System32\MARINE~1.SCR
Wed Jan 03 20:55:56 2007 => Scanning HKLM\SYSTEM\CurrentControlSet\Control\WOW
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\ntvdm.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\ntvdm.exe
Wed Jan 03 20:55:56 2007 => Scanning HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\inf\unregmp2.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\shmgrate.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\RunDLL32.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\shmgrate.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\regsvr32.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\PROGRA~1\OUTLOO~1\setup50.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\rundll32.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\rundll32.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\rundll32.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\PROGRA~1\OUTLOO~1\setup50.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\regsvr32.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\ie4uinit.exe
Wed Jan 03 20:55:56 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
Wed Jan 03 20:55:56 2007 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
Wed Jan 03 20:55:56 2007 => Scanning HKLM\SOFTWARE\Microsoft\WindowsNT\CurrentVersion\Run
Wed Jan 03 20:55:56 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Run
Wed Jan 03 20:55:56 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Wed Jan 03 20:55:56 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\NeroCheck.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\RUNDLL32.EXE
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\nwiz.exe
Wed Jan 03 20:55:57 2007 => Scanning File C:\WINDOWS\system32\RUNDLL32.EXE
Wed Jan 03 20:55:57 2007 => ERROR!!! Invalid Entry zzzCamInSuiteIII = E:\SETUP.EXE 24*** (in key SOFTWARE\Microsoft\Windows\CurrentVersion\Run). No Action Taken.
Wed Jan 03 20:55:57 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce
Wed Jan 03 20:55:57 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx
Wed Jan 03 20:55:57 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices
Wed Jan 03 20:55:57 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce
Wed Jan 03 20:55:57 2007 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Wed Jan 03 20:55:57 2007 => Scanning File C:\WINDOWS\system32\ctfmon.exe
Wed Jan 03 20:55:57 2007 => *** File C:\PROGRA~1\Skype\Phone\Skype.exe having Size Restriction ***. Filesize 19588 kb > 3072 kb...
Wed Jan 03 20:55:57 2007 => Scanning File C:\PROGRA~1\Skype\Phone\Skype.exe [**]
Wed Jan 03 20:55:57 2007 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce
Wed Jan 03 20:55:57 2007 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx
Wed Jan 03 20:55:57 2007 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices
Wed Jan 03 20:55:57 2007 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce\Setup
Wed Jan 03 20:55:57 2007 => Scanning HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Wed Jan 03 20:55:57 2007 => Scanning File C:\WINDOWS\System32\CTFMON.EXE
Wed Jan 03 20:55:57 2007 => Scanning HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce
Wed Jan 03 20:55:57 2007 => Scanning HKCR\txtfile\shell\open\command
Wed Jan 03 20:55:57 2007 => Scanning HKCR\comfile\shell\open\command
Wed Jan 03 20:55:57 2007 => Scanning HKCR\exefile\shell\open\command
Wed Jan 03 20:55:57 2007 => Scanning HKCR\dllfile\shell\open\command
Wed Jan 03 20:55:57 2007 => Scanning HKCR\batfile\shell\open\command
Wed Jan 03 20:55:57 2007 => Scanning HKCR\piffile\shell\open\command
Wed Jan 03 20:55:57 2007 => Scanning HKCR\scrfile\shell\open\command
Wed Jan 03 20:55:57 2007 => Scanning HKCR\scrfile\shell\config\command
Wed Jan 03 20:55:57 2007 => Scanning HKCR\regfile\shell\open\command
Wed Jan 03 20:55:58 2007 => Scanning HKCR\htmlfile\shell\open\command
Wed Jan 03 20:55:58 2007 => Scanning File C:\PROGRA~1\INTERN~1\iexplore.exe
Wed Jan 03 20:55:58 2007 => Scanning HKCR\htafile\shell\open\command
Wed Jan 03 20:55:58 2007 => Scanning File C:\WINDOWS\System32\mshta.exe
Wed Jan 03 20:55:58 2007 => Scanning HKCR\jsfile\shell\open\command
Wed Jan 03 20:55:58 2007 => Scanning File C:\WINDOWS\System32\WScript.exe
Wed Jan 03 20:55:58 2007 => Scanning HKCR\jsefile\shell\open\command
Wed Jan 03 20:55:58 2007 => Scanning File C:\WINDOWS\System32\WScript.exe
Wed Jan 03 20:55:58 2007 => Scanning HKCR\vbsfile\shell\open\command
Wed Jan 03 20:55:58 2007 => Scanning File C:\WINDOWS\System32\WScript.exe
Wed Jan 03 20:55:58 2007 => Scanning HKCR\vbefile\shell\open\command
Wed Jan 03 20:55:58 2007 => Scanning File C:\WINDOWS\System32\WScript.exe
Wed Jan 03 20:55:58 2007 => Scanning HKCR\wshfile\shell\open\command
Wed Jan 03 20:55:58 2007 => Scanning File C:\WINDOWS\System32\WScript.exe
Wed Jan 03 20:55:58 2007 => Scanning HKCR\wsffile\shell\open\command
Wed Jan 03 20:55:58 2007 => Scanning File C:\WINDOWS\System32\WScript.exe
Wed Jan 03 20:55:58 2007 => ***** Scanning StartUp Folders *****
Wed Jan 03 20:55:58 2007 => ***** Scanning C:\Documents and Settings\PC\Nabídka Start\Programy\Po spuštění Folder *****
Wed Jan 03 20:55:58 2007 => Scanning Folder: C:\Documents and Settings\PC\Nabídka Start\Programy\Po spuštění\*.*
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Nabídka Start\Programy\Po spuštění\desktop.ini [**]
Wed Jan 03 20:55:58 2007 => ***** Scanning C:\Documents and Settings\PC\Plocha Folder *****
Wed Jan 03 20:55:58 2007 => Scanning Folder: C:\Documents and Settings\PC\Plocha\*.*
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\CAM-IN SUITE III.lnk
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\CCleaner.lnk
Wed Jan 03 20:55:58 2007 => *** File C:\Documents and Settings\PC\Plocha\Fixwareout.exe having Size Restriction ***. Filesize 3143 kb > 3072 kb...
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\Fixwareout.exe [**]
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\HDD C.lnk
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\Kazaa Lite Resurrection.lnk
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\Marine Aquarium 2.lnk
Wed Jan 03 20:55:58 2007 => *** File C:\Documents and Settings\PC\Plocha\mwav.exe having Size Restriction ***. Filesize 13331 kb > 3072 kb...
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\mwav.exe [**]
Wed Jan 03 20:55:58 2007 => Scanning Folder: C:\Documents and Settings\PC\Plocha\Nepoužívané odkazy plochy\*.*
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\Nepoužívané odkazy plochy\pomocník tiskárny 845c.lnk
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\Nepoužívané odkazy plochy\WinASO Registry Optimizer.lnk
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\WINAMP.COM Music Radio (2).url [**]
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\YETISPORTS Pingu Throw D.C..lnk
Wed Jan 03 20:55:58 2007 => ***** Scanning C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění Folder *****
Wed Jan 03 20:55:58 2007 => Scanning Folder: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\*.*
Wed Jan 03 20:55:59 2007 => Scanning File C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\desktop.ini [**]
Wed Jan 03 20:55:59 2007 => Scanning File C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\DSLMON.lnk
Wed Jan 03 20:55:59 2007 => ***** Scanning Service Files *****
Wed Jan 03 20:55:59 2007 => Scanning HKLM\SYSTEM\CurrentControlSet\Services
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\system32\DRIVERS\ACPI.sys
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\system32\Drivers\adildr.sys
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\system32\DRIVERS\adiusbaw.sys
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\system32\drivers\aec.sys
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\System32\drivers\afd.sys
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\System32\svchost.exe
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\System32\alg.exe
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\system32\svchost.exe
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\system32\DRIVERS\arp1394.sys
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\SYSTEM32\DRIVERS\ASWRDR.SYS
Wed Jan 03 20:55:59 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswUpdSv.exe
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\system32\DRIVERS\asyncmac.sys
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\system32\DRIVERS\atapi.sys
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\system32\DRIVERS\atmarpc.sys
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\System32\svchost.exe
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\system32\DRIVERS\audstub.sys
Wed Jan 03 20:55:59 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashServ.exe
Wed Jan 03 20:56:00 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashMaiSv.exe
Wed Jan 03 20:56:00 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashWebSv.exe
Wed Jan 03 20:56:00 2007 =>
Fixwareout
Last edited 12/06/2006
Post this report in the forums please
...
Prerun check
[HKEY_LOCAL_MACHINE\\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"system"=""
...
...
Reg Entries that were deleted
...
Random Runs removed from HKLM
...
...
PLEASE NOTE, There WILL be LEGITIMATE FILES LISTED. IF YOU ARE UNSURE OF WHAT IT IS LEAVE THEM ALONE.
»»»»» Searching by size/names...
»»»»»
Search five digit cs, dm kd and jb files.
This WILL/CAN also list Legit Files, Submit them at Virustotal
Other suspects.
»»»»» Misc files.
»»»»» Checking for older varients covered by the Rem3 tool.
...
Postrun check
[HKEY_LOCAL_MACHINE\\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"system"=""
...
Fixwareout
Last edited 12/06/2006
Post this report in the forums please
...
Prerun check
...
...
Reg Entries that were deleted
...
Random Runs removed from HKLM
...
...
PLEASE NOTE, There WILL be LEGITIMATE FILES LISTED. IF YOU ARE UNSURE OF WHAT IT IS LEAVE THEM ALONE.
»»»»» Searching by size/names...
»»»»»
Search five digit cs, dm kd and jb files.
This WILL/CAN also list Legit Files, Submit them at Virustotal
Other suspects.
»»»»» Misc files.
»»»»» Checking for older varients covered by the Rem3 tool.
...
Postrun check
[HKEY_LOCAL_MACHINE\\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"system"=""
...
a ještě ten mwav
Wed Jan 03 20:52:28 2007 => **********************************************************
Wed Jan 03 20:52:28 2007 => MicroWorld Anti Virus & Spyware Toolkit Utility.
Wed Jan 03 20:52:28 2007 => Copyright © 2003-2006, MicroWorld Technologies Inc.
Wed Jan 03 20:52:28 2007 => **********************************************************
Wed Jan 03 20:52:28 2007 => Source: C:\DOCUME~1\PC\Plocha\mwav.exe
Wed Jan 03 20:52:28 2007 => Version 8.8.1 (C:\DOCUME~1\PC\LOCALS~1\Temp\mexe.com)
Wed Jan 03 20:52:28 2007 => Log File: C:\DOCUME~1\PC\LOCALS~1\Temp\MWAV.LOG
Wed Jan 03 20:52:28 2007 => MWAV Registered: FALSE.
Wed Jan 03 20:52:28 2007 => User Account: PC
Wed Jan 03 20:52:28 2007 => OS Type: Windows Workstation
Wed Jan 03 20:52:28 2007 => OS: Windows XP
Wed Jan 03 20:52:28 2007 => Ver: Service Pack 2 (Build 2600)
Wed Jan 03 20:52:28 2007 => Windows Root Folder: C:\WINDOWS
Wed Jan 03 20:52:28 2007 => Windows Sys32 Folder: C:\WINDOWS\system32
Wed Jan 03 20:52:28 2007 => Local Fixed Drives: c:\,d:\
Wed Jan 03 20:52:28 2007 => MWAV Mode: Only Scan files.
Wed Jan 03 20:52:28 2007 => Latest Date of files inside MWAV: 02 Jan 2007 13:55:4.
Wed Jan 03 20:52:32 2007 => AV Library Loaded...
Wed Jan 03 20:52:32 2007 => MWAV doing self scanning...
Wed Jan 03 20:52:32 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\Getvlist.exe
Wed Jan 03 20:52:32 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\main.avi
Wed Jan 03 20:52:32 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\virus.avi
Wed Jan 03 20:52:32 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\ScanningProcess.exe
Wed Jan 03 20:52:32 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\Kave.dll
Wed Jan 03 20:52:32 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\prloader.dll
Wed Jan 03 20:52:33 2007 => MWAV files are clean.
Wed Jan 03 20:53:05 2007 => Virus Database Date: 1/2/2007
Wed Jan 03 20:53:05 2007 => Virus Database Count: 255607
Wed Jan 03 20:54:07 2007 => Downloading AntiVirus and Anti-Spyware Databases...
Wed Jan 03 20:54:08 2007 => Downloads Not Successful!
Wed Jan 03 20:55:01 2007 => Downloading AntiVirus and Anti-Spyware Databases...
Wed Jan 03 20:55:07 2007 => Downloads Successful...
Wed Jan 03 20:55:12 2007 => Reload of AntiVirus Signatures successfully done.
Wed Jan 03 20:55:12 2007 => Virus Database Date: 1/2/2007
Wed Jan 03 20:55:12 2007 => Virus Database Count: 255581
Wed Jan 03 20:55:17 2007 => **********************************************************
Wed Jan 03 20:55:17 2007 => MicroWorld Anti Virus & Spyware Toolkit Utility.
Wed Jan 03 20:55:17 2007 => Copyright © 2003-2006, MicroWorld Technologies Inc.
Wed Jan 03 20:55:17 2007 =>
Wed Jan 03 20:55:17 2007 => Support: support@mwti.net
Wed Jan 03 20:55:17 2007 => Web: http://www.mwti.net
Wed Jan 03 20:55:17 2007 => **********************************************************
Wed Jan 03 20:55:17 2007 => Version 8.8.1 (C:\DOCUME~1\PC\LOCALS~1\Temp\mexe.com)
Wed Jan 03 20:55:17 2007 => Log File: C:\DOCUME~1\PC\LOCALS~1\Temp\MWAV.LOG
Wed Jan 03 20:55:17 2007 => User Account: PC
Wed Jan 03 20:55:17 2007 => Windows Root Folder: C:\WINDOWS
Wed Jan 03 20:55:17 2007 => Windows Sys32 Folder: C:\WINDOWS\system32
Wed Jan 03 20:55:17 2007 => OS: Windows XP
Wed Jan 03 20:55:17 2007 => Ver: Service Pack 2 (Build 2600)
Wed Jan 03 20:55:17 2007 => Latest Date of files inside MWAV: 02 Jan 2007 10:17:5.
Wed Jan 03 20:55:17 2007 => Options Selected by User:
Wed Jan 03 20:55:17 2007 => Memory Check: Enabled
Wed Jan 03 20:55:17 2007 => Registry Check: Enabled
Wed Jan 03 20:55:17 2007 => StartUp Folder Check: Enabled
Wed Jan 03 20:55:17 2007 => System Folder Check: Enabled
Wed Jan 03 20:55:17 2007 => System Area Check: Disabled
Wed Jan 03 20:55:17 2007 => Services Check: Enabled
Wed Jan 03 20:55:17 2007 => Drive Check Option Disabled
Wed Jan 03 20:55:17 2007 => Folder Check: Disabled
Wed Jan 03 20:55:20 2007 => ***** Scanning Memory Files *****
Wed Jan 03 20:55:20 2007 => Scanning File C:\WINDOWS\System32\smss.exe
Wed Jan 03 20:55:20 2007 => Scanning File C:\WINDOWS\system32\ntdll.dll
Wed Jan 03 20:55:20 2007 => Scanning File C:\WINDOWS\SYSTEM32\CSRSS.EXE
Wed Jan 03 20:55:20 2007 => Scanning File C:\WINDOWS\system32\CSRSRV.dll
Wed Jan 03 20:55:20 2007 => Scanning File C:\WINDOWS\system32\basesrv.dll
Wed Jan 03 20:55:20 2007 => Scanning File C:\WINDOWS\system32\winsrv.dll
Wed Jan 03 20:55:20 2007 => Scanning File C:\WINDOWS\system32\USER32.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\KERNEL32.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\GDI32.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\sxs.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\ADVAPI32.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\RPCRT4.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\SYSTEM32\WINLOGON.EXE
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\AUTHZ.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\msvcrt.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\CRYPT32.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\MSASN1.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\NDdeApi.dll
Wed Jan 03 20:55:21 2007 => Scanning File C:\WINDOWS\system32\PROFMAP.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\NETAPI32.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\USERENV.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\PSAPI.DLL
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\REGAPI.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\Secur32.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\SETUPAPI.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\VERSION.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\WINSTA.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\WINTRUST.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\IMAGEHLP.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\WS2_32.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\WS2HELP.dll
Wed Jan 03 20:55:22 2007 => Scanning File C:\WINDOWS\system32\MSGINA.dll
Wed Jan 03 20:55:23 2007 => Scanning File C:\WINDOWS\system32\SHELL32.dll
Wed Jan 03 20:55:23 2007 => Scanning File C:\WINDOWS\system32\SHLWAPI.dll
Wed Jan 03 20:55:23 2007 => Scanning File C:\WINDOWS\system32\COMCTL32.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\ODBC32.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\comdlg32.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\odbcint.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\SHSVCS.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\sfc.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\sfc_os.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\ole32.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\Apphelp.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\WINSCARD.DLL
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\WTSAPI32.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\uxtheme.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\WINMM.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\cscdll.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\WlNotify.dll
Wed Jan 03 20:55:24 2007 => Scanning File C:\WINDOWS\system32\WINSPOOL.DRV
Wed Jan 03 20:55:25 2007 => Scanning File C:\WINDOWS\system32\MPR.dll
Wed Jan 03 20:55:25 2007 => Scanning File C:\WINDOWS\system32\rsaenh.dll
Wed Jan 03 20:55:25 2007 => Scanning File C:\WINDOWS\system32\msv1_0.dll
Wed Jan 03 20:55:25 2007 => Scanning File C:\WINDOWS\system32\iphlpapi.dll
Wed Jan 03 20:55:25 2007 => Scanning File C:\WINDOWS\system32\SAMLIB.dll
Wed Jan 03 20:55:25 2007 => Scanning File C:\WINDOWS\system32\cscui.dll
Wed Jan 03 20:55:25 2007 => Scanning File C:\WINDOWS\system32\xpsp2res.dll
Wed Jan 03 20:55:25 2007 => Scanning File C:\WINDOWS\system32\NTMARTA.DLL
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\WLDAP32.dll
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\wdmaud.drv
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\msacm32.drv
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\MSACM32.dll
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\midimap.dll
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\COMRes.dll
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\OLEAUT32.dll
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\CLBCATQ.DLL
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\services.exe
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\SCESRV.dll
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\umpnpmgr.dll
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\NCObjAPI.DLL
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\MSVCP60.dll
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\system32\ShimEng.dll
Wed Jan 03 20:55:26 2007 => Scanning File C:\WINDOWS\AppPatch\AcGenral.DLL
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\eventlog.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\lsass.exe
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\LSASRV.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\SAMSRV.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\cryptdll.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\DNSAPI.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\NTDSAPI.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\msprivs.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\kerberos.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\netlogon.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\w32time.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\schannel.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\wdigest.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\scecli.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\ipsecsvc.dll
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\oakley.DLL
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\WINIPSEC.DLL
Wed Jan 03 20:55:27 2007 => Scanning File C:\WINDOWS\system32\pstorsvc.dll
Wed Jan 03 20:55:28 2007 => Scanning File C:\WINDOWS\system32\mswsock.dll
Wed Jan 03 20:55:28 2007 => Scanning File C:\WINDOWS\system32\psbase.dll
Wed Jan 03 20:55:28 2007 => Scanning File C:\WINDOWS\system32\hnetcfg.dll
Wed Jan 03 20:55:28 2007 => Scanning File C:\WINDOWS\System32\wshtcpip.dll
Wed Jan 03 20:55:28 2007 => Scanning File C:\WINDOWS\system32\dssenh.dll
Wed Jan 03 20:55:28 2007 => Scanning File C:\WINDOWS\system32\svchost.exe
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\rpcss.dll
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\termsrv.dll
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\ICAAPI.dll
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\mstlsapi.dll
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\ACTIVEDS.dll
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\adsldpc.dll
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\ATL.DLL
Wed Jan 03 20:55:28 2007 => Scanning File C:\WINDOWS\System32\winrnr.dll
Wed Jan 03 20:55:28 2007 => Scanning File C:\WINDOWS\system32\rasadhlp.dll
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\dhcpcsvc.dll
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\wzcsvc.dll
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\rtutils.dll
Wed Jan 03 20:55:28 2007 => Scanning File c:\windows\system32\WMI.dll
Wed Jan 03 20:55:29 2007 => Scanning File c:\windows\system32\ESENT.dll
Wed Jan 03 20:55:29 2007 => Scanning File C:\WINDOWS\System32\rastls.dll
Wed Jan 03 20:55:29 2007 => Scanning File C:\WINDOWS\system32\CRYPTUI.dll
Wed Jan 03 20:55:29 2007 => Scanning File C:\WINDOWS\system32\WININET.dll
Wed Jan 03 20:55:29 2007 => Scanning File C:\WINDOWS\System32\MPRAPI.dll
Wed Jan 03 20:55:29 2007 => Scanning File C:\WINDOWS\System32\RASAPI32.dll
Wed Jan 03 20:55:29 2007 => Scanning File C:\WINDOWS\System32\rasman.dll
Wed Jan 03 20:55:29 2007 => Scanning File C:\WINDOWS\System32\TAPI32.dll
Wed Jan 03 20:55:29 2007 => Scanning File C:\WINDOWS\System32\raschap.dll
Wed Jan 03 20:55:29 2007 => Scanning File c:\windows\system32\schedsvc.dll
Wed Jan 03 20:55:29 2007 => Scanning File C:\WINDOWS\System32\MSIDLE.DLL
Wed Jan 03 20:55:29 2007 => Scanning File c:\windows\system32\audiosrv.dll
Wed Jan 03 20:55:29 2007 => Scanning File c:\windows\system32\wkssvc.dll
Wed Jan 03 20:55:29 2007 => Scanning File c:\windows\system32\cryptsvc.dll
Wed Jan 03 20:55:29 2007 => Scanning File c:\windows\system32\certcli.dll
Wed Jan 03 20:55:29 2007 => Scanning File c:\windows\system32\hidserv.dll
Wed Jan 03 20:55:29 2007 => Scanning File c:\windows\system32\HID.DLL
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\pchealth\helpctr\binaries\pchsvc.dll
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\system32\es.dll
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\system32\ersvc.dll
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\system32\dmserver.dll
Wed Jan 03 20:55:30 2007 => Scanning File C:\WINDOWS\system32\comsvcs.dll
Wed Jan 03 20:55:30 2007 => Scanning File C:\WINDOWS\system32\MTXCLU.DLL
Wed Jan 03 20:55:30 2007 => Scanning File C:\WINDOWS\system32\WSOCK32.dll
Wed Jan 03 20:55:30 2007 => Scanning File C:\WINDOWS\system32\colbact.DLL
Wed Jan 03 20:55:30 2007 => Scanning File C:\WINDOWS\System32\CLUSAPI.DLL
Wed Jan 03 20:55:30 2007 => Scanning File C:\WINDOWS\System32\RESUTILS.DLL
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\system32\netman.dll
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\system32\netshell.dll
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\system32\credui.dll
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\system32\WZCSAPI.DLL
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\system32\srvsvc.dll
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\system32\wuauserv.dll
Wed Jan 03 20:55:30 2007 => Scanning File c:\windows\system32\wbem\wmisvc.dll
Wed Jan 03 20:55:31 2007 => Scanning File C:\WINDOWS\system32\VSSAPI.DLL
Wed Jan 03 20:55:31 2007 => Scanning File C:\WINDOWS\system32\wuaueng.dll
Wed Jan 03 20:55:31 2007 => Scanning File C:\WINDOWS\System32\ADVPACK.dll
Wed Jan 03 20:55:31 2007 => Scanning File C:\WINDOWS\System32\SHFOLDER.dll
Wed Jan 03 20:55:31 2007 => Scanning File C:\WINDOWS\System32\WINHTTP.dll
Wed Jan 03 20:55:31 2007 => Scanning File C:\WINDOWS\System32\Cabinet.dll
Wed Jan 03 20:55:31 2007 => Scanning File C:\WINDOWS\System32\mspatcha.dll
Wed Jan 03 20:55:31 2007 => Scanning File c:\windows\system32\trkwks.dll
Wed Jan 03 20:55:31 2007 => Scanning File c:\windows\system32\srsvc.dll
Wed Jan 03 20:55:31 2007 => Scanning File c:\windows\system32\POWRPROF.dll
Wed Jan 03 20:55:31 2007 => Scanning File c:\windows\system32\sens.dll
Wed Jan 03 20:55:31 2007 => Scanning File c:\windows\system32\seclogon.dll
Wed Jan 03 20:55:31 2007 => Scanning File c:\windows\system32\wscsvc.dll
Wed Jan 03 20:55:31 2007 => Scanning File c:\windows\system32\msi.dll
Wed Jan 03 20:55:32 2007 => Scanning File c:\windows\system32\ipnathlp.dll
Wed Jan 03 20:55:32 2007 => Scanning File c:\windows\system32\browser.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\System32\wbem\wbemcomn.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\system32\WBEM\wbemcore.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\system32\WBEM\esscli.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\system32\WBEM\FastProx.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\System32\wbem\wmiutils.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\System32\wbem\repdrvfs.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\System32\wbem\wmiprvsd.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\System32\wbem\wbemess.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\System32\wbem\ncprov.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\System32\rasmans.dll
Wed Jan 03 20:55:32 2007 => Scanning File C:\WINDOWS\System32\netcfgx.dll
Wed Jan 03 20:55:33 2007 => Scanning File c:\windows\system32\tapisrv.dll
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\rastapi.dll
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\unimdm.tsp
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\uniplat.dll
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\kmddsp.tsp
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\ndptsp.tsp
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\ipconf.tsp
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\h323.tsp
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\hidphone.tsp
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\rasppp.dll
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\ntlsapi.dll
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\upnp.dll
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\SSDPAPI.dll
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\RASDLG.dll
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\wbem\wbemsvc.dll
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\System32\wbem\wbemcons.dll
Wed Jan 03 20:55:33 2007 => Scanning File c:\windows\system32\dnsrslvr.dll
Wed Jan 03 20:55:33 2007 => Scanning File c:\windows\system32\lmhsvc.dll
Wed Jan 03 20:55:33 2007 => Scanning File c:\windows\system32\webclnt.dll
Wed Jan 03 20:55:33 2007 => Scanning File C:\WINDOWS\system32\urlmon.dll
Wed Jan 03 20:55:34 2007 => Scanning File c:\windows\system32\regsvc.dll
Wed Jan 03 20:55:34 2007 => Scanning File c:\windows\system32\ssdpsrv.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\spoolsv.exe
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\SPOOLSS.DLL
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\localspl.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\cnbjmon.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\hpzlnt03.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\mdimon.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\pjlmon.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\tcpmon.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\usbmon.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\System32\spool\PRTPROCS\W32X86\mdippr.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\win32spl.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\NETRAP.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\system32\inetpp.dll
Wed Jan 03 20:55:34 2007 => Scanning File C:\WINDOWS\Explorer.EXE
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\system32\BROWSEUI.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\system32\SHDOCVW.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\System32\themeui.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\System32\MSIMG32.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\system32\LINKINFO.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\system32\ntshrui.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\system32\MLANG.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\System32\stobject.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\System32\BatMeter.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\system32\MSCTF.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\system32\mslbui.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\System32\drprov.dll
Wed Jan 03 20:55:35 2007 => Scanning File C:\WINDOWS\System32\ntlanman.dll
Wed Jan 03 20:55:36 2007 => Scanning File C:\WINDOWS\System32\NETUI0.dll
Wed Jan 03 20:55:36 2007 => Scanning File C:\WINDOWS\System32\NETUI1.dll
Wed Jan 03 20:55:36 2007 => Scanning File C:\WINDOWS\System32\davclnt.dll
Wed Jan 03 20:55:36 2007 => Scanning File C:\WINDOWS\system32\browselc.dll
Wed Jan 03 20:55:36 2007 => Scanning File C:\WINDOWS\system32\DUSER.dll
Wed Jan 03 20:55:36 2007 => Scanning File C:\WINDOWS\system32\shdoclc.dll
Wed Jan 03 20:55:36 2007 => Scanning File C:\WINDOWS\system32\wzcdlg.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\PROGRA~1\WinZip\WZSHLSTB.DLL
Wed Jan 03 20:55:37 2007 => Scanning File C:\WINDOWS\system32\cryptnet.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\WINDOWS\system32\SensApi.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswUpdSv.exe
Wed Jan 03 20:55:37 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswCmnS.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswCmnOS.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\WINDOWS\system32\MSVCP71.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\WINDOWS\system32\MSVCR71.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswCmnB.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashServ.exe
Wed Jan 03 20:55:37 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswAux.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswEngin.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswScan.dll
Wed Jan 03 20:55:37 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashBase.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashTask.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswInteg.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswIdle.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\Aavm4h.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\WINDOWS\system32\dbghelp.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\Czech\Base.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\UNACEV2.DLL
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\AhResMai.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ahResMes.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\AhResNS.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\AhResOut.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ahResP2P.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\AhResStd.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\AhResWS.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\WINDOWS\system32\perfos.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashSSqlt.dll
Wed Jan 03 20:55:38 2007 => Scanning File C:\WINDOWS\System32\inetsrv\inetinfo.exe
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\system32\IisRTL.DLL
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\rpcref.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\iisadmin.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\COADMIN.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\system32\ADMWPROX.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\metadata.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\nsepm.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\system32\IISMAP.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\wamreg.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\admexs.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\svcext.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\system32\Security.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\SMTPSVC.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\INFOCOMM.dll
Wed Jan 03 20:55:39 2007 => Scanning File C:\WINDOWS\System32\inetsrv\ISATQ.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\System32\inetsrv\IISFECNV.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\FCACHDLL.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\RWNH.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\exstrace.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\STAXMEM.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\System32\inetsrv\w3svc.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\System32\inetsrv\lonsint.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\System32\inetsrv\iscomlog.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\inetsrv\sspifilt.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\inetsrv\seo.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\inetsrv\compfilt.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\inetsrv\gzip.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\inetsrv\pwsdata.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\inetsrv\aqueue.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\inetsrv\md5filt.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\System32\inetsrv\httpext.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\system32\inetsrv\ntfsdrv.dll
Wed Jan 03 20:55:40 2007 => Scanning File C:\WINDOWS\System32\inetsrv\iislog.dll
Wed Jan 03 20:55:41 2007 => Scanning File C:\PROGRA~1\Ahead\InCD\InCDsrv.exe
Wed Jan 03 20:55:41 2007 => Scanning File C:\PROGRA~1\COMMON~1\Ahead\Lib\DRIVEL~1.DLL
Wed Jan 03 20:55:41 2007 => Scanning File C:\PROGRA~1\Ahead\InCD\incdshx.dll
Wed Jan 03 20:55:41 2007 => Scanning File C:\PROGRA~1\COMMON~1\MICROS~1\VS7DEBUG\MDM.EXE
Wed Jan 03 20:55:41 2007 => Scanning File C:\WINDOWS\system32\nvsvc32.exe
Wed Jan 03 20:55:41 2007 => Scanning File C:\WINDOWS\system32\nvapi.dll
Wed Jan 03 20:55:41 2007 => Scanning File C:\WINDOWS\System32\alg.exe
Wed Jan 03 20:55:41 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswCmnOS.dll
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashBase.dll
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswCmnB.dll
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswCmnS.dll
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashTask.dll
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswAux.dll
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\Aavm4h.dll
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\Czech\Lang.dll
Wed Jan 03 20:55:42 2007 => Scanning File C:\WINDOWS\system32\MFC71.DLL
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\AavmRpch.dll
Wed Jan 03 20:55:42 2007 => Scanning File c:\PROGRA~1\ALWILS~1\avast4\ahruimai.dll
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashUInt.dll
Wed Jan 03 20:55:42 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\XT1922.dll
Wed Jan 03 20:55:43 2007 => Scanning File c:\PROGRA~1\ALWILS~1\avast4\ahruimes.dll
Wed Jan 03 20:55:43 2007 => Scanning File c:\PROGRA~1\ALWILS~1\avast4\ahruins.dll
Wed Jan 03 20:55:43 2007 => Scanning File c:\PROGRA~1\ALWILS~1\avast4\ahruiout.dll
Wed Jan 03 20:55:43 2007 => Scanning File C:\WINDOWS\system32\MAPI32.dll
Wed Jan 03 20:55:43 2007 => Scanning File c:\PROGRA~1\ALWILS~1\avast4\ahruip2p.dll
Wed Jan 03 20:55:43 2007 => Scanning File c:\PROGRA~1\ALWILS~1\avast4\ahruistd.dll
Wed Jan 03 20:55:43 2007 => Scanning File c:\PROGRA~1\ALWILS~1\avast4\ahruiws.dll
Wed Jan 03 20:55:43 2007 => Scanning File C:\WINDOWS\system32\RICHED20.DLL
Wed Jan 03 20:55:43 2007 => Scanning File C:\WINDOWS\system32\ctfmon.exe
Wed Jan 03 20:55:43 2007 => Scanning File C:\WINDOWS\system32\MSUTB.dll
Wed Jan 03 20:55:43 2007 => Scanning File C:\PROGRA~1\SAGEM\SAGEMF~1\dslmon.exe
Wed Jan 03 20:55:43 2007 => Scanning File C:\WINDOWS\system32\oledlg.dll
Wed Jan 03 20:55:43 2007 => Scanning File C:\WINDOWS\system32\OLEPRO32.DLL
Wed Jan 03 20:55:44 2007 => Scanning File C:\PROGRA~1\SAGEM\SAGEMF~1\LANGUA~1\English.dll
Wed Jan 03 20:55:44 2007 => Scanning File C:\PROGRA~1\INTERN~1\iexplore.exe
Wed Jan 03 20:55:44 2007 => Scanning File C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\yt.dll
Wed Jan 03 20:55:44 2007 => Scanning File C:\PROGRA~1\Adobe\ACROBA~1.0CE\Reader\ActiveX\ACROIE~1.DLL
Wed Jan 03 20:55:44 2007 => Scanning File C:\PROGRA~1\YETISP~1\IEBUTT~1.DLL
Wed Jan 03 20:55:44 2007 => Scanning File C:\PROGRA~1\YETISP~1\IEButtonYetiSportsEBay.dll
Wed Jan 03 20:55:44 2007 => Scanning File C:\WINDOWS\System32\mshtml.dll
Wed Jan 03 20:55:44 2007 => Scanning File C:\WINDOWS\System32\msls31.dll
Wed Jan 03 20:55:44 2007 => Scanning File C:\WINDOWS\System32\msxml3.dll
Wed Jan 03 20:55:44 2007 => Scanning File C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\pubmod.dll
Wed Jan 03 20:55:44 2007 => Scanning File C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\ypubc.dll
Wed Jan 03 20:55:44 2007 => Scanning File C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\YMEREM~1.DLL
Wed Jan 03 20:55:44 2007 => Scanning File C:\WINDOWS\System32\msimtf.dll
Wed Jan 03 20:55:45 2007 => Scanning File C:\PROGRA~1\MICROS~3\OFFICE11\msohev.dll
Wed Jan 03 20:55:45 2007 => Scanning File C:\WINDOWS\System32\jscript.dll
Wed Jan 03 20:55:45 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\mexe.com
Wed Jan 03 20:55:45 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\msvl64.dll
Wed Jan 03 20:55:45 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\kave.dll
Wed Jan 03 20:55:46 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\PSAPI.DLL
Wed Jan 03 20:55:46 2007 => Scanning File C:\WINDOWS\system32\RICHED32.DLL
Wed Jan 03 20:55:46 2007 => Scanning File C:\WINDOWS\system32\VDMDBG.DLL
Wed Jan 03 20:55:46 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\ScanningProcess.exe
Wed Jan 03 20:55:46 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\prloader.dll
Wed Jan 03 20:55:46 2007 => Scanning File C:\DOCUME~1\PC\LOCALS~1\Temp\prkernel.ppl
Wed Jan 03 20:55:46 2007 => Scanning File c:\docume~1\pc\locals~1\temp\avpmgr.ppl
Wed Jan 03 20:55:46 2007 => Scanning File c:\docume~1\pc\locals~1\temp\wdiskio.ppl
Wed Jan 03 20:55:46 2007 => Scanning File c:\docume~1\pc\locals~1\temp\nfio.ppl
Wed Jan 03 20:55:46 2007 => Scanning File c:\docume~1\pc\locals~1\temp\avlib.ppl
Wed Jan 03 20:55:46 2007 => Scanning File c:\docume~1\pc\locals~1\temp\dtreg.ppl
Wed Jan 03 20:55:46 2007 => Scanning File c:\docume~1\pc\locals~1\temp\prutil.ppl
Wed Jan 03 20:55:46 2007 => Scanning File c:\docume~1\pc\locals~1\temp\avp1.ppl
Wed Jan 03 20:55:46 2007 => Scanning File c:\docume~1\pc\locals~1\temp\l_llio.ppl
Wed Jan 03 20:55:46 2007 => Scanning File c:\docume~1\pc\locals~1\temp\ichstrms.ppl
Wed Jan 03 20:55:46 2007 => Scanning File c:\docume~1\pc\locals~1\temp\hashcont.ppl
Wed Jan 03 20:55:47 2007 => Scanning File c:\docume~1\pc\locals~1\temp\hccmp.ppl
Wed Jan 03 20:55:47 2007 => Scanning File c:\docume~1\pc\locals~1\temp\iwgen.ppl
Wed Jan 03 20:55:47 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashMaiSv.exe
Wed Jan 03 20:55:47 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashUInt.dll
Wed Jan 03 20:55:47 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\XT1922.dll
Wed Jan 03 20:55:47 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\Czech\langmai.dll
Wed Jan 03 20:55:47 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashWebSv.exe
Wed Jan 03 20:55:47 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashWsFtr.dll
Wed Jan 03 20:55:47 2007 => Scanning File C:\WINDOWS\system32\OLEACC.dll
Wed Jan 03 20:55:47 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\AhResWs.dll
Wed Jan 03 20:55:47 2007 => ***** Scanning Registry Files *****
Wed Jan 03 20:55:47 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad
Wed Jan 03 20:55:47 2007 => *** File C:\WINDOWS\system32\SHELL32.dll having Size Restriction ***. Filesize 8191 kb > 3072 kb...
Wed Jan 03 20:55:47 2007 => Scanning File C:\WINDOWS\system32\SHELL32.dll [**]
Wed Jan 03 20:55:47 2007 => *** File C:\WINDOWS\system32\SHELL32.dll having Size Restriction ***. Filesize 8191 kb > 3072 kb...
Wed Jan 03 20:55:47 2007 => Scanning File C:\WINDOWS\system32\SHELL32.dll [**]
Wed Jan 03 20:55:47 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:47 2007 => Scanning File C:\WINDOWS\System32\stobject.dll
Wed Jan 03 20:55:47 2007 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad
Wed Jan 03 20:55:47 2007 => Scanning HKLM\SOFTWARE\Microsoft\Internet Explorer\Plugins\Extension
Wed Jan 03 20:55:47 2007 => Scanning HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar
Wed Jan 03 20:55:47 2007 => Scanning File C:\PROGRA~1\Seznam\Postak\SRank.dll
Wed Jan 03 20:55:48 2007 => Scanning File C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\yt.dll
Wed Jan 03 20:55:48 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects
Wed Jan 03 20:55:48 2007 => {02478D38-C3F9-4EFB-9B51-7695ECA05670} = C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
Wed Jan 03 20:55:48 2007 => Scanning File C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\yt.dll
Wed Jan 03 20:55:48 2007 => {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} = C:\Program Files\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll
Wed Jan 03 20:55:48 2007 => Scanning File C:\PROGRA~1\Adobe\ACROBA~1.0CE\Reader\ActiveX\ACROIE~1.DLL
Wed Jan 03 20:55:48 2007 => {12FC9A49-CFE0-49AA-BE9E-8F4EEAFC9443} = C:\PROGRA~1\YETISP~1\IEBUTT~1.DLL
Wed Jan 03 20:55:48 2007 => Scanning File C:\PROGRA~1\YETISP~1\IEBUTT~1.DLL
Wed Jan 03 20:55:48 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler
Wed Jan 03 20:55:48 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:48 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:48 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
Wed Jan 03 20:55:48 2007 => Scanning File C:\WINDOWS\System32\inetsrv\w3ext.dll
Wed Jan 03 20:55:48 2007 => Scanning File C:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL
Wed Jan 03 20:55:48 2007 => Scanning File C:\PROGRA~1\MICROS~3\OFFICE11\msohev.dll
Wed Jan 03 20:55:48 2007 => Scanning File C:\WINDOWS\system32\Audiodev.dll
Wed Jan 03 20:55:48 2007 => Scanning File C:\WINDOWS\system32\Audiodev.dll
Wed Jan 03 20:55:48 2007 => Scanning File C:\WINDOWS\system32\wmpshell.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\wmpshell.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\wmpshell.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\browseui.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\mmsys.cpl
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\icmui.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\rshx32.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\docprop.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\ntshrui.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\System32\themeui.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\deskadp.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\deskmon.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\dssec.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\SlayerXP.dll
Wed Jan 03 20:55:49 2007 => Scanning File C:\WINDOWS\system32\shscrap.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\diskcopy.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\ntlanui2.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\System32\icmui.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\icmui.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\printui.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\dskquoui.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\syncui.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\System32\hticons.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\fontext.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\icmui.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\rshx32.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\ntshrui.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\deskperf.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\cryptext.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\cryptext.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\NETSHELL.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\NETSHELL.dll
Wed Jan 03 20:55:50 2007 => Scanning File C:\WINDOWS\system32\wiashext.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\wiashext.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\wiashext.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\wiashext.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\wiashext.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\remotepg.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\wuaucpl.cpl
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\wshext.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\PROGRA~1\COMMON~1\System\OLEDB~1\oledb32.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\mstask.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\mstask.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\mstask.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\shmedia.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:51 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\browseui.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\sendmail.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\sendmail.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\occache.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\webcheck.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\appwiz.cpl
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\appwiz.cpl
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\appwiz.cpl
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\shimgvw.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\netplwiz.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\netplwiz.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\netplwiz.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\netplwiz.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\zipfldr.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\zipfldr.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\zipfldr.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\cdfview.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\cdfview.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\cdfview.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\cdfview.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\cdfview.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\msieftp.dll
Wed Jan 03 20:55:52 2007 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\docprop2.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\dsquery.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\dsquery.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\dsquery.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\dsquery.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\dsuiext.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\dsuiext.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\mydocs.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\mydocs.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\mydocs.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\cscui.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\cscui.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\cscui.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\msagent\agentpsh.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\dfsshlex.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\photowiz.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\System32\mmcshext.dll
Wed Jan 03 20:55:53 2007 => Scanning File C:\WINDOWS\system32\cabview.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\PROGRA~1\OUTLOO~1\wabfind.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\system32\shdocvw.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\System32\twext.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\System32\twext.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\System32\extmgr.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\PROGRA~1\Real\REALPL~1\rpshell.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\PROGRA~1\Ahead\InCD\incdshx.dll
Wed Jan 03 20:55:54 2007 => *** File C:\WINDOWS\system32\nvcpl.dll having Size Restriction ***. Filesize 7520 kb > 3072 kb...
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\system32\nvcpl.dll [**]
Wed Jan 03 20:55:54 2007 => *** File C:\WINDOWS\system32\nvcpl.dll having Size Restriction ***. Filesize 7520 kb > 3072 kb...
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\system32\nvcpl.dll [**]
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\system32\nvshell.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\system32\nvshell.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\system32\nvshell.dll
Wed Jan 03 20:55:54 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows
Wed Jan 03 20:55:54 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\Explorer.exe
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\system32\userinit.exe
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\system32\gptext.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\system32\fdeploy.dll
Wed Jan 03 20:55:54 2007 => Scanning File C:\WINDOWS\system32\dskquota.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\gptext.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\gptext.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\iedkcs32.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\scecli.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\iedkcs32.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\scecli.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\appmgmts.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\gptext.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\crypt32.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\cryptnet.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\cscdll.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\wlnotify.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\wlnotify.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\sclgntfy.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\WlNotify.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\wlnotify.dll
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\wlnotify.dll
Wed Jan 03 20:55:55 2007 => Scanning HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
Wed Jan 03 20:55:55 2007 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System
Wed Jan 03 20:55:55 2007 => Scanning HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows
Wed Jan 03 20:55:55 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AEDEBUG
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\drwtsn32.exe
Wed Jan 03 20:55:55 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\system32\ntsd.exe
Wed Jan 03 20:55:55 2007 => Scanning HKCU\Control Panel\Desktop
Wed Jan 03 20:55:55 2007 => Scanning File C:\WINDOWS\System32\MARINE~1.SCR
Wed Jan 03 20:55:56 2007 => Scanning HKLM\SYSTEM\CurrentControlSet\Control\WOW
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\ntvdm.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\ntvdm.exe
Wed Jan 03 20:55:56 2007 => Scanning HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\inf\unregmp2.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\shmgrate.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\RunDLL32.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\shmgrate.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\regsvr32.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\PROGRA~1\OUTLOO~1\setup50.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\rundll32.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\rundll32.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\rundll32.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\PROGRA~1\OUTLOO~1\setup50.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\regsvr32.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\ie4uinit.exe
Wed Jan 03 20:55:56 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
Wed Jan 03 20:55:56 2007 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
Wed Jan 03 20:55:56 2007 => Scanning HKLM\SOFTWARE\Microsoft\WindowsNT\CurrentVersion\Run
Wed Jan 03 20:55:56 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Run
Wed Jan 03 20:55:56 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Wed Jan 03 20:55:56 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\NeroCheck.exe
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\RUNDLL32.EXE
Wed Jan 03 20:55:56 2007 => Scanning File C:\WINDOWS\system32\nwiz.exe
Wed Jan 03 20:55:57 2007 => Scanning File C:\WINDOWS\system32\RUNDLL32.EXE
Wed Jan 03 20:55:57 2007 => ERROR!!! Invalid Entry zzzCamInSuiteIII = E:\SETUP.EXE 24*** (in key SOFTWARE\Microsoft\Windows\CurrentVersion\Run). No Action Taken.
Wed Jan 03 20:55:57 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce
Wed Jan 03 20:55:57 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx
Wed Jan 03 20:55:57 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices
Wed Jan 03 20:55:57 2007 => Scanning HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce
Wed Jan 03 20:55:57 2007 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Wed Jan 03 20:55:57 2007 => Scanning File C:\WINDOWS\system32\ctfmon.exe
Wed Jan 03 20:55:57 2007 => *** File C:\PROGRA~1\Skype\Phone\Skype.exe having Size Restriction ***. Filesize 19588 kb > 3072 kb...
Wed Jan 03 20:55:57 2007 => Scanning File C:\PROGRA~1\Skype\Phone\Skype.exe [**]
Wed Jan 03 20:55:57 2007 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce
Wed Jan 03 20:55:57 2007 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx
Wed Jan 03 20:55:57 2007 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices
Wed Jan 03 20:55:57 2007 => Scanning HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce\Setup
Wed Jan 03 20:55:57 2007 => Scanning HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Wed Jan 03 20:55:57 2007 => Scanning File C:\WINDOWS\System32\CTFMON.EXE
Wed Jan 03 20:55:57 2007 => Scanning HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce
Wed Jan 03 20:55:57 2007 => Scanning HKCR\txtfile\shell\open\command
Wed Jan 03 20:55:57 2007 => Scanning HKCR\comfile\shell\open\command
Wed Jan 03 20:55:57 2007 => Scanning HKCR\exefile\shell\open\command
Wed Jan 03 20:55:57 2007 => Scanning HKCR\dllfile\shell\open\command
Wed Jan 03 20:55:57 2007 => Scanning HKCR\batfile\shell\open\command
Wed Jan 03 20:55:57 2007 => Scanning HKCR\piffile\shell\open\command
Wed Jan 03 20:55:57 2007 => Scanning HKCR\scrfile\shell\open\command
Wed Jan 03 20:55:57 2007 => Scanning HKCR\scrfile\shell\config\command
Wed Jan 03 20:55:57 2007 => Scanning HKCR\regfile\shell\open\command
Wed Jan 03 20:55:58 2007 => Scanning HKCR\htmlfile\shell\open\command
Wed Jan 03 20:55:58 2007 => Scanning File C:\PROGRA~1\INTERN~1\iexplore.exe
Wed Jan 03 20:55:58 2007 => Scanning HKCR\htafile\shell\open\command
Wed Jan 03 20:55:58 2007 => Scanning File C:\WINDOWS\System32\mshta.exe
Wed Jan 03 20:55:58 2007 => Scanning HKCR\jsfile\shell\open\command
Wed Jan 03 20:55:58 2007 => Scanning File C:\WINDOWS\System32\WScript.exe
Wed Jan 03 20:55:58 2007 => Scanning HKCR\jsefile\shell\open\command
Wed Jan 03 20:55:58 2007 => Scanning File C:\WINDOWS\System32\WScript.exe
Wed Jan 03 20:55:58 2007 => Scanning HKCR\vbsfile\shell\open\command
Wed Jan 03 20:55:58 2007 => Scanning File C:\WINDOWS\System32\WScript.exe
Wed Jan 03 20:55:58 2007 => Scanning HKCR\vbefile\shell\open\command
Wed Jan 03 20:55:58 2007 => Scanning File C:\WINDOWS\System32\WScript.exe
Wed Jan 03 20:55:58 2007 => Scanning HKCR\wshfile\shell\open\command
Wed Jan 03 20:55:58 2007 => Scanning File C:\WINDOWS\System32\WScript.exe
Wed Jan 03 20:55:58 2007 => Scanning HKCR\wsffile\shell\open\command
Wed Jan 03 20:55:58 2007 => Scanning File C:\WINDOWS\System32\WScript.exe
Wed Jan 03 20:55:58 2007 => ***** Scanning StartUp Folders *****
Wed Jan 03 20:55:58 2007 => ***** Scanning C:\Documents and Settings\PC\Nabídka Start\Programy\Po spuštění Folder *****
Wed Jan 03 20:55:58 2007 => Scanning Folder: C:\Documents and Settings\PC\Nabídka Start\Programy\Po spuštění\*.*
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Nabídka Start\Programy\Po spuštění\desktop.ini [**]
Wed Jan 03 20:55:58 2007 => ***** Scanning C:\Documents and Settings\PC\Plocha Folder *****
Wed Jan 03 20:55:58 2007 => Scanning Folder: C:\Documents and Settings\PC\Plocha\*.*
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\CAM-IN SUITE III.lnk
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\CCleaner.lnk
Wed Jan 03 20:55:58 2007 => *** File C:\Documents and Settings\PC\Plocha\Fixwareout.exe having Size Restriction ***. Filesize 3143 kb > 3072 kb...
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\Fixwareout.exe [**]
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\HDD C.lnk
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\Kazaa Lite Resurrection.lnk
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\Marine Aquarium 2.lnk
Wed Jan 03 20:55:58 2007 => *** File C:\Documents and Settings\PC\Plocha\mwav.exe having Size Restriction ***. Filesize 13331 kb > 3072 kb...
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\mwav.exe [**]
Wed Jan 03 20:55:58 2007 => Scanning Folder: C:\Documents and Settings\PC\Plocha\Nepoužívané odkazy plochy\*.*
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\Nepoužívané odkazy plochy\pomocník tiskárny 845c.lnk
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\Nepoužívané odkazy plochy\WinASO Registry Optimizer.lnk
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\WINAMP.COM Music Radio (2).url [**]
Wed Jan 03 20:55:58 2007 => Scanning File C:\Documents and Settings\PC\Plocha\YETISPORTS Pingu Throw D.C..lnk
Wed Jan 03 20:55:58 2007 => ***** Scanning C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění Folder *****
Wed Jan 03 20:55:58 2007 => Scanning Folder: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\*.*
Wed Jan 03 20:55:59 2007 => Scanning File C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\desktop.ini [**]
Wed Jan 03 20:55:59 2007 => Scanning File C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\DSLMON.lnk
Wed Jan 03 20:55:59 2007 => ***** Scanning Service Files *****
Wed Jan 03 20:55:59 2007 => Scanning HKLM\SYSTEM\CurrentControlSet\Services
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\system32\DRIVERS\ACPI.sys
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\system32\Drivers\adildr.sys
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\system32\DRIVERS\adiusbaw.sys
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\system32\drivers\aec.sys
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\System32\drivers\afd.sys
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\System32\svchost.exe
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\System32\alg.exe
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\system32\svchost.exe
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\system32\DRIVERS\arp1394.sys
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\SYSTEM32\DRIVERS\ASWRDR.SYS
Wed Jan 03 20:55:59 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\aswUpdSv.exe
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\system32\DRIVERS\asyncmac.sys
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\system32\DRIVERS\atapi.sys
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\system32\DRIVERS\atmarpc.sys
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\System32\svchost.exe
Wed Jan 03 20:55:59 2007 => Scanning File C:\WINDOWS\system32\DRIVERS\audstub.sys
Wed Jan 03 20:55:59 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashServ.exe
Wed Jan 03 20:56:00 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashMaiSv.exe
Wed Jan 03 20:56:00 2007 => Scanning File C:\PROGRA~1\ALWILS~1\Avast4\ashWebSv.exe
Wed Jan 03 20:56:00 2007 =>
- fredik
- člen Security týmu
-
Master Level 7
- Příspěvky: 4680
- Registrován: červenec 06
- Pohlaví:
- Stav:
Offline
Otestoval jsi ten soubor?
Fixni v HJT toto:
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
O17 - HKLM\System\CCS\Services\Tcpip\..\{611B2589-05E8-4B2A-AC83-146BA1A22C52}: NameServer = 85.255.114.74 85.255.112.61
To co jsi sem vlož není přesně to co je potřeba, hodil by se upravený log + závěrečná tabulka co bylo zmíněno v návodu. Pokud nevíš jak na něj tak řekni.
Fixni v HJT toto:
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
O17 - HKLM\System\CCS\Services\Tcpip\..\{611B2589-05E8-4B2A-AC83-146BA1A22C52}: NameServer = 85.255.114.74 85.255.112.61
To co jsi sem vlož není přesně to co je potřeba, hodil by se upravený log + závěrečná tabulka co bylo zmíněno v návodu. Pokud nevíš jak na něj tak řekni.
Na E/exe. nemam nic to je mechanika.Posílém nový log
Logfile of HijackThis v1.99.1
Scan saved at 10:47:47, on 4.1.2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\inetsrv\inetinfo.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Documents and Settings\PC\Dokumenty\hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll
O3 - Toolbar: &S-Rank - {B71B15CF-3093-459C-B764-AEB2486F2273} - C:\Program Files\Seznam\Postak\SRank.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [zzzCamInSuiteIII] E:\SETUP.EXE 24***
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O8 - Extra context menu item: &ICQ Toolbar Search - res://C:\Program Files\ICQToolbar\toolbaru.dll/SEARCH.HTML
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {50E43D86-A74D-11D0-98CE-004005249458} (AnimatedGif Control) - https://www.mojebanka.cz/jars/confwiz/MVSGif.cab
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://212.80.66.25/activex/AxisCamControl.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - AHEAD Software - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
a tady jsou ty chyby co ukézal MWAV
Object "kazaa Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "UnSpyPC adware" found in File System! Action Taken: No Action Taken.
Object "grokster Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "conducent flexpak Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "imesh Spyware/Adware" found in File System! Action Taken: No Action Taken.
Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object "OpenWithList". Action Taken: No Action Taken.
a tady jsem to vyhledal ale nevim zda to je takto dobře
hu Jan 04 09:43:18 2007 => Offending Key found: HKLM\Software\kazaa !!!
Thu Jan 04 09:44:27 2007 => Object "kazaa Spyware/Adware" found in File System! Action Taken: No Action Taken.
Thu Jan 04 09:44:28 2007 => Offending Key found: HKCU\Software\kazaa !!!
Thu Jan 04 09:44:28 2007 => Object "kazaa Spyware/Adware" found in File System! Action Taken:
hu Jan 04 09:44:29 2007 => Poisoned DNS Server Entry 85.255.112.61 (85.255.112.*) found!!!
Thu Jan 04 09:44:29 2007 => Poisoned DNS Server Entry 85.255.114.74 (85.255.114.*) found!!!
Thu Jan 04 09:44:29 2007 => Object "UnSpyPC adware" found in File System! Action Taken: No Action Taken.
hu Jan 04 09:44:29 2007 => Offending Key found: HKCU\\magnet !!!
Thu Jan 04 09:44:29 2007 => Object "grokster Spyware/Adware" found in File System! Action Taken: No Action Taken.
Thu Jan 04 09:44:51 2007 => Checking CLSID Reference Entries...
Thu Jan 04 09:44:57 2007 => Checking Module Usage Entries...
Thu Jan 04 09:44:57 2007 => Checking User Trusted External App Entries...
Thu Jan 04 09:44:57 2007 => Checking Shared DLL Entries...
Thu Jan 04 09:45:00 2007 => Checking Installer Entries...
Thu Jan 04 09:45:01 2007 => Checking Shared Tools Entries...
Thu Jan 04 09:45:01 2007 => Checking File Extension Entries...
Thu Jan 04 09:45:02 2007 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object "OpenWithList". Action Taken: No Action Taken.
Thu Jan 04 09:44:31 2007 => Offending file found: C:\WINDOWS\gpinstall.exe
Thu Jan 04 09:44:31 2007 => System found infected with conducent flexpak Spyware/Adware (gpinstall.exe)! Action taken: No Action Taken.
hu Jan 04 09:44:32 2007 => Offending file found: C:\WINDOWS\system32\hsenj.ocx
Thu Jan 04 09:44:32 2007 => System found infected with imesh Spyware/Adware (hsenj.ocx)! Action taken: No Action Taken.
Logfile of HijackThis v1.99.1
Scan saved at 10:47:47, on 4.1.2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\inetsrv\inetinfo.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Documents and Settings\PC\Dokumenty\hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll
O3 - Toolbar: &S-Rank - {B71B15CF-3093-459C-B764-AEB2486F2273} - C:\Program Files\Seznam\Postak\SRank.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [zzzCamInSuiteIII] E:\SETUP.EXE 24***
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O8 - Extra context menu item: &ICQ Toolbar Search - res://C:\Program Files\ICQToolbar\toolbaru.dll/SEARCH.HTML
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {50E43D86-A74D-11D0-98CE-004005249458} (AnimatedGif Control) - https://www.mojebanka.cz/jars/confwiz/MVSGif.cab
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://212.80.66.25/activex/AxisCamControl.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - AHEAD Software - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
a tady jsou ty chyby co ukézal MWAV
Object "kazaa Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "UnSpyPC adware" found in File System! Action Taken: No Action Taken.
Object "grokster Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "conducent flexpak Spyware/Adware" found in File System! Action Taken: No Action Taken.
Object "imesh Spyware/Adware" found in File System! Action Taken: No Action Taken.
Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object "OpenWithList". Action Taken: No Action Taken.
a tady jsem to vyhledal ale nevim zda to je takto dobře
hu Jan 04 09:43:18 2007 => Offending Key found: HKLM\Software\kazaa !!!
Thu Jan 04 09:44:27 2007 => Object "kazaa Spyware/Adware" found in File System! Action Taken: No Action Taken.
Thu Jan 04 09:44:28 2007 => Offending Key found: HKCU\Software\kazaa !!!
Thu Jan 04 09:44:28 2007 => Object "kazaa Spyware/Adware" found in File System! Action Taken:
hu Jan 04 09:44:29 2007 => Poisoned DNS Server Entry 85.255.112.61 (85.255.112.*) found!!!
Thu Jan 04 09:44:29 2007 => Poisoned DNS Server Entry 85.255.114.74 (85.255.114.*) found!!!
Thu Jan 04 09:44:29 2007 => Object "UnSpyPC adware" found in File System! Action Taken: No Action Taken.
hu Jan 04 09:44:29 2007 => Offending Key found: HKCU\\magnet !!!
Thu Jan 04 09:44:29 2007 => Object "grokster Spyware/Adware" found in File System! Action Taken: No Action Taken.
Thu Jan 04 09:44:51 2007 => Checking CLSID Reference Entries...
Thu Jan 04 09:44:57 2007 => Checking Module Usage Entries...
Thu Jan 04 09:44:57 2007 => Checking User Trusted External App Entries...
Thu Jan 04 09:44:57 2007 => Checking Shared DLL Entries...
Thu Jan 04 09:45:00 2007 => Checking Installer Entries...
Thu Jan 04 09:45:01 2007 => Checking Shared Tools Entries...
Thu Jan 04 09:45:01 2007 => Checking File Extension Entries...
Thu Jan 04 09:45:02 2007 => Entry "HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts" refers to invalid object "OpenWithList". Action Taken: No Action Taken.
Thu Jan 04 09:44:31 2007 => Offending file found: C:\WINDOWS\gpinstall.exe
Thu Jan 04 09:44:31 2007 => System found infected with conducent flexpak Spyware/Adware (gpinstall.exe)! Action taken: No Action Taken.
hu Jan 04 09:44:32 2007 => Offending file found: C:\WINDOWS\system32\hsenj.ocx
Thu Jan 04 09:44:32 2007 => System found infected with imesh Spyware/Adware (hsenj.ocx)! Action taken: No Action Taken.
- fredik
- člen Security týmu
-
Master Level 7
- Příspěvky: 4680
- Registrován: červenec 06
- Pohlaví:
- Stav:
Offline
Zapni si zobrazení skrytých a systémových souboru a červeně označené soubory smaž:
C:\WINDOWS\gpinstall.exe
C:\WINDOWS\system32\hsenj.ocx
Klikni na Start -> Spustit... ->otevře se ti okno napiš regedit -> a dej OK
vyhledej pak červeně označenou položku a smaž.
HKEY_LOCAL_MACHINE\Software\kazaa
fixni drobnosti v HJT.
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
Mwav nenašel nic co by se týkalo Warezov/Stration. Pokud nemáš tak vymaž v Ad-aware karanténu. Zkus najít podle té cesty adresář ve kterém ti hlásí ty viry a smaž ho uvidíme jestli se znovu vytvoří. Zkus také provést upadte Ad-aware. Byla tam provedena úprava v detekci tak nevím jestli máš aktuální databázi. Případně zkus zkontrolovat tu složku také Mwav-em ale nejdřív proveď update jeho vir. definic. Mě přijde že ta položka co jsi uvedl si vytváří sám ad-aware a v ní si pak pracuje ale to nevím přesně.
Pokud zase Ad-aware něco najde tak sem zkus vložit jeho log.
C:\WINDOWS\gpinstall.exe
C:\WINDOWS\system32\hsenj.ocx
Klikni na Start -> Spustit... ->otevře se ti okno napiš regedit -> a dej OK
vyhledej pak červeně označenou položku a smaž.
HKEY_LOCAL_MACHINE\Software\kazaa
fixni drobnosti v HJT.
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
Mwav nenašel nic co by se týkalo Warezov/Stration. Pokud nemáš tak vymaž v Ad-aware karanténu. Zkus najít podle té cesty adresář ve kterém ti hlásí ty viry a smaž ho uvidíme jestli se znovu vytvoří. Zkus také provést upadte Ad-aware. Byla tam provedena úprava v detekci tak nevím jestli máš aktuální databázi. Případně zkus zkontrolovat tu složku také Mwav-em ale nejdřív proveď update jeho vir. definic. Mě přijde že ta položka co jsi uvedl si vytváří sám ad-aware a v ní si pak pracuje ale to nevím přesně.
Pokud zase Ad-aware něco najde tak sem zkus vložit jeho log.
Tak to zase ukazovalo ty viry /18 souborů/ a vedlo to do složky avenger na C: byly tam samý zazipovaný soubory tak sem tu celou složku vyhodil a zatím bez závad.Doufám že nebude něčemu scházet.To víš já už zůstanu věčný laik.Ještě bych chtěl poradit nějaký ten firewall aby nebyl moc složitý.já mám jen tu bránu od win. Díky moc Fredy
- fredik
- člen Security týmu
-
Master Level 7
- Příspěvky: 4680
- Registrován: červenec 06
- Pohlaví:
- Stav:
Offline
Avast - můžeš povolit jestli máš nastavené v něm automatické aktualizace tak by se tě po každé kdyby program pokoušel podívat (v určitých časových intervalech) jestli je k dispozici nová aktualizace ptal.
Jen se zeptám když jsi instaloval Kerio zvolil kterou možnost si zvolil. Myslím že tam je simple nebo ten druhý.
Jen se zeptám když jsi instaloval Kerio zvolil kterou možnost si zvolil. Myslím že tam je simple nebo ten druhý.
Kdo je online
Uživatelé prohlížející si toto fórum: Karrex a 105 hostů