Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:40:52, on 26.3.2012
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files (x86)\DAEMON Tools Pro\DTProAgent.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\System Control Manager\MGSysCtrl.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\reader_sl.exe
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
C:\Users\Michal\Desktop\HiJackThis.exe
C:\windows\SysWOW64\DllHost.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://msi.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [MGSysCtrl] C:\Program Files (x86)\System Control Manager\MGSysCtrl.exe
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "C:\Program Files (x86)\DAEMON Tools Pro\DTProAgent.exe" -autorun
O4 - HKCU\..\Run: [PCSpeedUp] C:\Program Files (x86)\Zrychleni Pocitace\PCSpeedUp.lnk
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} (SysInfo Class) - http://content.systemrequirementslab.co ... 4.24.0.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Autodesk Content Service - Unknown owner - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\windows\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Micro Star SCM - Micro-Star International Co., Ltd. - C:\Program Files (x86)\System Control Manager\MSIService.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: PC Speed Up Service (PCSUService) - Unknown owner - C:\Program Files (x86)\Zrychleni Pocitace\PCSUService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11779 bytes
rovnou bych si dovolil touto cestou požádat o doporučení co smazat, protože Win7 používám pouze na Autocad a Excell
délka zapnutí systému trvá cca 5-10 minut, vypínání je ještě o něco delší...
Extrémně dlouhý start a ukončení windows
- Žbeky
- Moderátor
-
Guru Level 13
- Příspěvky: 22288
- Registrován: květen 08
- Bydliště: Vsetín - Pardubice
- Pohlaví:
- Stav:
Offline
Re: Extrémně dlouhý start a ukončení windows
Fixni:
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
- Pokud používáš Firefox, klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Chrome, nic dalšího nevybírej a dej Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(ZATÍM SÁM NIC NEMAŽ!).
Vlož sem pak obsah toho logu.
Kód: Vybrat vše
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://msi.msn.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKCU\..\Run: [PCSpeedUp] C:\Program Files (x86)\Zrychleni Pocitace\PCSpeedUp.lnk
O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} (SysInfo Class) - http://content.systemrequirementslab.co ... 4.24.0.cab
Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
- Pokud používáš Firefox, klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected.
- Pokud používáš Chrome, nic dalšího nevybírej a dej Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
Stáhni si Malwarebytes' Anti-Malware
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Update Malwarebytes' Anti-Malware (Aktualizace Malwarebytes' Anti-Malware) a Launch Malwarebytes' Anti-Malware (Spustit aplikaci Malwarebytes' Anti-Malware), pokud jo tak klikni na tlačítko Finish
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a nech vybranou možnost Perform Quick Scan (Provést rychlý sken) a klikni na tlačítko Scan (Skenovat)
- po proběhnutí programu se ti objeví hláška tak klikni na OK a pak na tlačítko Show Results
- pak zvol možnost Save Logfile a ulož si log na plochu
- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(ZATÍM SÁM NIC NEMAŽ!).
Vlož sem pak obsah toho logu.
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
Re: Extrémně dlouhý start a ukončení windows
MBAM:
Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware) 1.60.1.1000
www.malwarebytes.org
Verze databáze: v2012.03.26.04
Windows 7 x64 NTFS
Internet Explorer 9.0.8112.16421
Michal :: STRAMBM-NTB [administrátor]
Ochrana: Povolena
27.3.2012 9:00:47
mbam-log-2012-03-27 (09-00-47).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 198040
Uplynulý čas: 6 minut, 12 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)
(konec)
Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware) 1.60.1.1000
www.malwarebytes.org
Verze databáze: v2012.03.26.04
Windows 7 x64 NTFS
Internet Explorer 9.0.8112.16421
Michal :: STRAMBM-NTB [administrátor]
Ochrana: Povolena
27.3.2012 9:00:47
mbam-log-2012-03-27 (09-00-47).txt
Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 198040
Uplynulý čas: 6 minut, 12 sekund
Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)
Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)
(konec)
- Žbeky
- Moderátor
-
Guru Level 13
- Příspěvky: 22288
- Registrován: květen 08
- Bydliště: Vsetín - Pardubice
- Pohlaví:
- Stav:
Offline
Re: Extrémně dlouhý start a ukončení windows
Vypni rezidentní štít antiviru a antispywaru
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je označen pro odstranění, stačí restartovat počítač.
Stáhni si ComboFix (by sUBs)
a ulož si ho na plochu.
Ukonči všechna aktivní okna a spusť ho.
- Po spuštění se zobrazí podmínky užití, potvrď je stiskem tlačítka Ano
- Dále postupuj dle pokynů, během aplikování ComboFixu neklikej do zobrazujícího se okna
- Po dokončení skenování by měl program vytvořit log - C:\ComboFix.txt - zkopíruj sem prosím celý jeho obsah
Pokud bude po kontrole problém spustit aplikace nebo bude vyskakovat hláška o pokusu použít neplatnou operaci na klíč registru, který je označen pro odstranění, stačí restartovat počítač.
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
Re: Extrémně dlouhý start a ukončení windows
ComboFix 12-03-27.01 - Michal 27.03.2012 12:30:24.1.4 - x64
Microsoft Windows 7 Home Premium 6.1.7600.0.1250.420.1029.18.3886.2128 [GMT 2:00]
Spuštěný z: c:\users\Michal\Downloads\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-02-27 do 2012-03-27 )))))))))))))))))))))))))))))))
.
.
2012-03-27 10:38 . 2012-03-27 10:38 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-03-27 06:57 . 2012-03-14 03:27 8669240 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{1A3528B0-E3E8-4E42-84E6-8BA8E4922A48}\mpengine.dll
2012-03-26 10:10 . 2012-03-26 10:12 -------- d-----w- c:\program files (x86)\Zrychleni Pocitace
2012-03-26 10:10 . 2012-03-26 10:10 -------- d-----w- c:\users\Michal\AppData\Roaming\pdfforge
2012-03-26 10:10 . 2012-03-14 15:23 65024 ----a-w- c:\windows\system32\pdfcmon.dll
2012-03-26 10:10 . 2004-03-08 22:00 662288 ----a-w- c:\windows\SysWow64\MSCOMCT2.OCX
2012-03-26 10:10 . 1998-06-23 22:00 137000 ----a-w- c:\windows\SysWow64\MSMAPI32.OCX
2012-03-26 10:10 . 2012-03-26 10:10 -------- d-----w- c:\program files (x86)\PDFCreator
2012-03-26 10:10 . 2012-03-26 10:10 -------- d-----w- c:\users\Michal\AppData\Roaming\OpenCandy
2012-03-26 10:10 . 1998-07-05 22:00 23552 ----a-w- c:\windows\SysWow64\MSMPIDE.DLL
2012-03-26 07:58 . 2012-03-26 07:58 -------- d-----w- C:\614d7f8c6d872be111ee
2012-03-25 22:26 . 2012-03-25 22:26 -------- d-----w- c:\users\Michal\AppData\Roaming\Malwarebytes
2012-03-25 22:26 . 2012-03-25 22:26 -------- d-----w- c:\programdata\Malwarebytes
2012-03-25 22:26 . 2011-12-10 13:24 23152 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-03-25 22:26 . 2012-03-25 22:26 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-03-25 22:18 . 2012-03-25 22:28 -------- d-----w- c:\program files (x86)\Google
2012-03-25 22:14 . 2012-03-06 23:02 53080 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2012-03-25 22:05 . 2012-03-25 22:05 -------- d-----w- c:\program files\CCleaner
2012-03-25 19:16 . 2012-03-26 15:47 -------- d-----w- c:\users\Michal\AppData\Local\cache
2012-03-25 19:16 . 2012-03-25 19:16 -------- d-----w- c:\programdata\FLEXnet
2012-03-25 19:12 . 2012-03-25 19:12 -------- d-----w- c:\program files\Common Files\Macrovision Shared
2012-03-25 19:09 . 2012-03-25 19:13 -------- d-----w- c:\program files\Common Files\Autodesk Shared
2012-03-25 19:09 . 2012-03-25 19:09 -------- d-----w- c:\users\Michal\AppData\Local\Autodesk
2012-03-25 19:09 . 2012-03-25 19:09 -------- d-----w- c:\program files\Autodesk
2012-03-25 19:09 . 2012-03-25 19:09 -------- d-----w- c:\program files (x86)\Autodesk
2012-03-25 19:00 . 2012-03-25 21:22 -------- d-----w- c:\users\Michal\AppData\Roaming\Autodesk
2012-03-25 19:00 . 2012-03-25 21:22 -------- d-----w- c:\programdata\Autodesk
2012-03-25 18:55 . 2012-03-25 18:55 -------- d-----w- C:\Autodesk
2012-03-25 18:04 . 2012-03-25 18:04 7056 ----a-w- c:\windows\CDILLA16.EXE
2012-03-25 18:04 . 2012-03-25 18:04 63344 ----a-w- c:\windows\CDILLA05.DLL
2012-03-25 18:04 . 2012-03-25 18:04 60416 ----a-w- c:\windows\CDILLA64.EXE
2012-03-25 18:04 . 2012-03-25 18:04 58160 ----a-w- c:\windows\SysWow64\drivers\CDANT.SYS
2012-03-25 18:04 . 2012-03-25 18:04 55376 ----a-w- c:\windows\CDILLA40.DLL
2012-03-25 18:04 . 2012-03-25 18:04 46080 ----a-w- c:\windows\SysWow64\drivers\CDANTSRV.EXE
2012-03-25 18:04 . 2012-03-25 18:04 44544 ----a-w- c:\windows\CDILLA13.DLL
2012-03-25 18:04 . 2012-03-25 18:04 260608 ----a-w- c:\windows\CDILLA32.DLL
2012-03-25 18:04 . 2012-03-25 18:04 23856 ----a-w- c:\windows\CDILLA10.EXE
2012-03-25 17:47 . 2012-03-25 17:47 -------- d-----w- c:\program files (x86)\Common Files\Wextech Shared
2012-03-25 17:44 . 2012-03-25 19:11 -------- d-----w- c:\program files (x86)\Common Files\Autodesk Shared
2012-03-25 14:03 . 2012-03-25 14:03 -------- d-----w- C:\C_DILLA
2012-03-25 14:03 . 2012-02-15 06:27 1031680 ----a-w- c:\windows\system32\rdpcore.dll
2012-03-25 14:03 . 2012-02-15 05:44 826368 ----a-w- c:\windows\SysWow64\rdpcore.dll
2012-03-25 14:03 . 2012-02-15 04:47 204800 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2012-03-25 14:03 . 2012-02-15 04:46 23552 ----a-w- c:\windows\system32\drivers\tdtcp.sys
2012-03-25 14:03 . 2012-01-25 06:20 9216 ----a-w- c:\windows\system32\rdrmemptylst.exe
2012-03-25 14:03 . 2012-01-25 06:27 76288 ----a-w- c:\windows\system32\rdpwsx.dll
2012-03-25 14:03 . 2012-01-25 06:27 149504 ----a-w- c:\windows\system32\rdpcorekmts.dll
2012-03-25 14:01 . 2012-03-25 17:42 -------- d-----w- c:\program files (x86)\AutoCAD 2002 Cz
2012-03-25 13:34 . 2011-11-19 18:30 5504880 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-03-25 13:34 . 2011-11-19 14:25 3957616 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe
2012-03-25 13:34 . 2011-11-19 14:25 3902320 ----a-w- c:\windows\SysWow64\ntoskrnl.exe
2012-03-25 13:23 . 2012-03-25 13:23 834544 ----a-w- c:\windows\system32\drivers\sptd.sys
2012-03-25 13:22 . 2012-03-25 13:22 -------- d-----w- c:\program files (x86)\DAEMON Tools Pro
2012-03-25 13:12 . 2012-03-25 13:12 162664 ----a-w- c:\programdata\Microsoft\Windows\Sqm\Manifest\Sqm10140.bin
2012-03-25 13:05 . 2012-02-03 04:16 3143168 ----a-w- c:\windows\system32\win32k.sys
2012-03-25 13:05 . 2012-02-10 06:18 1541120 ----a-w- c:\windows\system32\DWrite.dll
2012-03-25 13:05 . 2012-02-10 05:41 1074176 ----a-w- c:\windows\SysWow64\DWrite.dll
2012-03-25 13:05 . 2012-02-10 06:17 320512 ----a-w- c:\windows\system32\d3d10_1core.dll
2012-03-25 13:05 . 2012-02-10 06:17 1837568 ----a-w- c:\windows\system32\d3d10warp.dll
2012-03-25 13:05 . 2012-02-10 05:41 218624 ----a-w- c:\windows\SysWow64\d3d10_1core.dll
2012-03-25 13:05 . 2012-02-10 05:41 1170944 ----a-w- c:\windows\SysWow64\d3d10warp.dll
2012-03-25 13:05 . 2012-02-10 06:17 902656 ----a-w- c:\windows\system32\d2d1.dll
2012-03-25 13:05 . 2012-02-10 06:17 197120 ----a-w- c:\windows\system32\d3d10_1.dll
2012-03-25 13:05 . 2012-02-10 05:41 161792 ----a-w- c:\windows\SysWow64\d3d10_1.dll
2012-03-25 13:05 . 2012-02-10 05:41 739840 ----a-w- c:\windows\SysWow64\d2d1.dll
2012-02-29 22:13 . 2012-02-29 22:13 -------- d-----w- c:\program files (x86)\LogMeIn Hamachi
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-03-06 23:15 . 2011-09-04 08:34 41184 ----a-w- c:\windows\avastSS.scr
2012-03-06 23:15 . 2011-09-04 08:34 201352 ----a-w- c:\windows\SysWow64\aswBoot.exe
2012-03-06 23:15 . 2011-09-04 08:35 258520 ----a-w- c:\windows\system32\aswBoot.exe
2012-03-06 23:04 . 2011-09-04 08:35 819032 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-03-06 23:04 . 2011-09-04 08:35 337240 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-03-06 23:01 . 2011-09-04 08:35 59224 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-03-06 23:01 . 2011-09-04 08:35 69976 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2012-03-06 23:01 . 2011-09-04 08:35 24408 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-02-23 07:18 . 2011-09-03 10:44 279656 ------w- c:\windows\system32\MpSigStub.exe
2012-02-21 08:34 . 2011-09-03 10:43 414368 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-01-04 09:58 . 2012-02-19 09:01 509952 ----a-w- c:\windows\system32\ntshrui.dll
2012-01-04 09:03 . 2012-02-19 09:01 442880 ----a-w- c:\windows\SysWow64\ntshrui.dll
2012-01-03 06:24 . 2012-02-19 09:01 515584 ----a-w- c:\windows\system32\timedate.cpl
2012-01-03 05:44 . 2012-02-19 09:01 478208 ----a-w- c:\windows\SysWow64\timedate.cpl
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-05-16 153136]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2011-10-13 17351304]
"DAEMON Tools Pro Agent"="c:\program files (x86)\DAEMON Tools Pro\DTProAgent.exe" [2009-12-16 312640]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2010-03-04 284696]
"MGSysCtrl"="c:\program files (x86)\System Control Manager\MGSysCtrl.exe" [2010-02-05 2408448]
"ArcSoft Connection Service"="c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe" [2010-10-27 207424]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-03-06 4241512]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-01-03 37296]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-02 843712]
"LogMeIn Hamachi Ui"="c:\program files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" [2012-02-28 1987976]
"Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-01-13 460872]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
R3 1394hub;1394 Enabled Hub;c:\windows\System32\svchost.exe [2009-07-14 27136]
R3 EUCR;EUCR;c:\windows\system32\DRIVERS\EUCR6SK.SYS [x]
R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;c:\program files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2012-03-25 1431888]
R3 GGSAFERDriver;GGSAFER Driver;c:\program files (x86)\Garena Classic\safedrv.sys [x]
R3 MGHwCtrl;MGHwCtrl;c:\program files\msi\msi Software Install\MGHwCtrl.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 Autodesk Content Service;Autodesk Content Service;c:\program files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2011-02-02 18656]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [2012-02-28 2343816]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-04 13336]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-01-13 652360]
S2 Micro Star SCM;Micro Star SCM;c:\program files (x86)\System Control Manager\MSIService.exe [2009-07-09 160768]
S2 PCSUService;PC Speed Up Service;c:\program files (x86)\Zrychleni Pocitace\PCSUService.exe [2011-11-07 235232]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-10-01 2320920]
S3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect;c:\windows\system32\DRIVERS\ArcSoftKsUFilter.sys [x]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [x]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-03-06 23:15 135408 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2009-07-02 7938080]
"Skytel"="c:\program files\Realtek\Audio\HDA\Skytel.exe" [2009-07-02 1833504]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-04-10 167256]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-04-10 391512]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-04-10 415064]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.cz/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\eedetg9o.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.cz/
FF - prefs.js: network.proxy.type - 0
.
.
------- Asociace souborů -------
.
.scr=AutoCADScriptFile
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
Toolbar-Locked - (no file)
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
AddRemove-Adobe Shockwave Player - c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\windows\\system32\\Macromed\\Flash\\FlashUtil10d.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32]
@="c:\\windows\\SysWow64\\Macromed\\Flash\\FlashUtil10d.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}]
@Denied: (A 2) (Everyone)
@="IFlashBroker3"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
c:\windows\SysWOW64\DRIVERS\CDANTSRV.EXE
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
c:\program files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\program files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
c:\program files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
.
**************************************************************************
.
Celkový čas: 2012-03-27 12:47:43 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-03-27 10:47
.
Před spuštěním: Volných bajtů: 220 004 614 144
Po spuštění: Volných bajtů: 219 498 930 176
.
- - End Of File - - 28506686D6852D963212DDB6A2FC508B
Microsoft Windows 7 Home Premium 6.1.7600.0.1250.420.1029.18.3886.2128 [GMT 2:00]
Spuštěný z: c:\users\Michal\Downloads\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-02-27 do 2012-03-27 )))))))))))))))))))))))))))))))
.
.
2012-03-27 10:38 . 2012-03-27 10:38 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-03-27 06:57 . 2012-03-14 03:27 8669240 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{1A3528B0-E3E8-4E42-84E6-8BA8E4922A48}\mpengine.dll
2012-03-26 10:10 . 2012-03-26 10:12 -------- d-----w- c:\program files (x86)\Zrychleni Pocitace
2012-03-26 10:10 . 2012-03-26 10:10 -------- d-----w- c:\users\Michal\AppData\Roaming\pdfforge
2012-03-26 10:10 . 2012-03-14 15:23 65024 ----a-w- c:\windows\system32\pdfcmon.dll
2012-03-26 10:10 . 2004-03-08 22:00 662288 ----a-w- c:\windows\SysWow64\MSCOMCT2.OCX
2012-03-26 10:10 . 1998-06-23 22:00 137000 ----a-w- c:\windows\SysWow64\MSMAPI32.OCX
2012-03-26 10:10 . 2012-03-26 10:10 -------- d-----w- c:\program files (x86)\PDFCreator
2012-03-26 10:10 . 2012-03-26 10:10 -------- d-----w- c:\users\Michal\AppData\Roaming\OpenCandy
2012-03-26 10:10 . 1998-07-05 22:00 23552 ----a-w- c:\windows\SysWow64\MSMPIDE.DLL
2012-03-26 07:58 . 2012-03-26 07:58 -------- d-----w- C:\614d7f8c6d872be111ee
2012-03-25 22:26 . 2012-03-25 22:26 -------- d-----w- c:\users\Michal\AppData\Roaming\Malwarebytes
2012-03-25 22:26 . 2012-03-25 22:26 -------- d-----w- c:\programdata\Malwarebytes
2012-03-25 22:26 . 2011-12-10 13:24 23152 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-03-25 22:26 . 2012-03-25 22:26 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-03-25 22:18 . 2012-03-25 22:28 -------- d-----w- c:\program files (x86)\Google
2012-03-25 22:14 . 2012-03-06 23:02 53080 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2012-03-25 22:05 . 2012-03-25 22:05 -------- d-----w- c:\program files\CCleaner
2012-03-25 19:16 . 2012-03-26 15:47 -------- d-----w- c:\users\Michal\AppData\Local\cache
2012-03-25 19:16 . 2012-03-25 19:16 -------- d-----w- c:\programdata\FLEXnet
2012-03-25 19:12 . 2012-03-25 19:12 -------- d-----w- c:\program files\Common Files\Macrovision Shared
2012-03-25 19:09 . 2012-03-25 19:13 -------- d-----w- c:\program files\Common Files\Autodesk Shared
2012-03-25 19:09 . 2012-03-25 19:09 -------- d-----w- c:\users\Michal\AppData\Local\Autodesk
2012-03-25 19:09 . 2012-03-25 19:09 -------- d-----w- c:\program files\Autodesk
2012-03-25 19:09 . 2012-03-25 19:09 -------- d-----w- c:\program files (x86)\Autodesk
2012-03-25 19:00 . 2012-03-25 21:22 -------- d-----w- c:\users\Michal\AppData\Roaming\Autodesk
2012-03-25 19:00 . 2012-03-25 21:22 -------- d-----w- c:\programdata\Autodesk
2012-03-25 18:55 . 2012-03-25 18:55 -------- d-----w- C:\Autodesk
2012-03-25 18:04 . 2012-03-25 18:04 7056 ----a-w- c:\windows\CDILLA16.EXE
2012-03-25 18:04 . 2012-03-25 18:04 63344 ----a-w- c:\windows\CDILLA05.DLL
2012-03-25 18:04 . 2012-03-25 18:04 60416 ----a-w- c:\windows\CDILLA64.EXE
2012-03-25 18:04 . 2012-03-25 18:04 58160 ----a-w- c:\windows\SysWow64\drivers\CDANT.SYS
2012-03-25 18:04 . 2012-03-25 18:04 55376 ----a-w- c:\windows\CDILLA40.DLL
2012-03-25 18:04 . 2012-03-25 18:04 46080 ----a-w- c:\windows\SysWow64\drivers\CDANTSRV.EXE
2012-03-25 18:04 . 2012-03-25 18:04 44544 ----a-w- c:\windows\CDILLA13.DLL
2012-03-25 18:04 . 2012-03-25 18:04 260608 ----a-w- c:\windows\CDILLA32.DLL
2012-03-25 18:04 . 2012-03-25 18:04 23856 ----a-w- c:\windows\CDILLA10.EXE
2012-03-25 17:47 . 2012-03-25 17:47 -------- d-----w- c:\program files (x86)\Common Files\Wextech Shared
2012-03-25 17:44 . 2012-03-25 19:11 -------- d-----w- c:\program files (x86)\Common Files\Autodesk Shared
2012-03-25 14:03 . 2012-03-25 14:03 -------- d-----w- C:\C_DILLA
2012-03-25 14:03 . 2012-02-15 06:27 1031680 ----a-w- c:\windows\system32\rdpcore.dll
2012-03-25 14:03 . 2012-02-15 05:44 826368 ----a-w- c:\windows\SysWow64\rdpcore.dll
2012-03-25 14:03 . 2012-02-15 04:47 204800 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2012-03-25 14:03 . 2012-02-15 04:46 23552 ----a-w- c:\windows\system32\drivers\tdtcp.sys
2012-03-25 14:03 . 2012-01-25 06:20 9216 ----a-w- c:\windows\system32\rdrmemptylst.exe
2012-03-25 14:03 . 2012-01-25 06:27 76288 ----a-w- c:\windows\system32\rdpwsx.dll
2012-03-25 14:03 . 2012-01-25 06:27 149504 ----a-w- c:\windows\system32\rdpcorekmts.dll
2012-03-25 14:01 . 2012-03-25 17:42 -------- d-----w- c:\program files (x86)\AutoCAD 2002 Cz
2012-03-25 13:34 . 2011-11-19 18:30 5504880 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-03-25 13:34 . 2011-11-19 14:25 3957616 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe
2012-03-25 13:34 . 2011-11-19 14:25 3902320 ----a-w- c:\windows\SysWow64\ntoskrnl.exe
2012-03-25 13:23 . 2012-03-25 13:23 834544 ----a-w- c:\windows\system32\drivers\sptd.sys
2012-03-25 13:22 . 2012-03-25 13:22 -------- d-----w- c:\program files (x86)\DAEMON Tools Pro
2012-03-25 13:12 . 2012-03-25 13:12 162664 ----a-w- c:\programdata\Microsoft\Windows\Sqm\Manifest\Sqm10140.bin
2012-03-25 13:05 . 2012-02-03 04:16 3143168 ----a-w- c:\windows\system32\win32k.sys
2012-03-25 13:05 . 2012-02-10 06:18 1541120 ----a-w- c:\windows\system32\DWrite.dll
2012-03-25 13:05 . 2012-02-10 05:41 1074176 ----a-w- c:\windows\SysWow64\DWrite.dll
2012-03-25 13:05 . 2012-02-10 06:17 320512 ----a-w- c:\windows\system32\d3d10_1core.dll
2012-03-25 13:05 . 2012-02-10 06:17 1837568 ----a-w- c:\windows\system32\d3d10warp.dll
2012-03-25 13:05 . 2012-02-10 05:41 218624 ----a-w- c:\windows\SysWow64\d3d10_1core.dll
2012-03-25 13:05 . 2012-02-10 05:41 1170944 ----a-w- c:\windows\SysWow64\d3d10warp.dll
2012-03-25 13:05 . 2012-02-10 06:17 902656 ----a-w- c:\windows\system32\d2d1.dll
2012-03-25 13:05 . 2012-02-10 06:17 197120 ----a-w- c:\windows\system32\d3d10_1.dll
2012-03-25 13:05 . 2012-02-10 05:41 161792 ----a-w- c:\windows\SysWow64\d3d10_1.dll
2012-03-25 13:05 . 2012-02-10 05:41 739840 ----a-w- c:\windows\SysWow64\d2d1.dll
2012-02-29 22:13 . 2012-02-29 22:13 -------- d-----w- c:\program files (x86)\LogMeIn Hamachi
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-03-06 23:15 . 2011-09-04 08:34 41184 ----a-w- c:\windows\avastSS.scr
2012-03-06 23:15 . 2011-09-04 08:34 201352 ----a-w- c:\windows\SysWow64\aswBoot.exe
2012-03-06 23:15 . 2011-09-04 08:35 258520 ----a-w- c:\windows\system32\aswBoot.exe
2012-03-06 23:04 . 2011-09-04 08:35 819032 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-03-06 23:04 . 2011-09-04 08:35 337240 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-03-06 23:01 . 2011-09-04 08:35 59224 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-03-06 23:01 . 2011-09-04 08:35 69976 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2012-03-06 23:01 . 2011-09-04 08:35 24408 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-02-23 07:18 . 2011-09-03 10:44 279656 ------w- c:\windows\system32\MpSigStub.exe
2012-02-21 08:34 . 2011-09-03 10:43 414368 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-01-04 09:58 . 2012-02-19 09:01 509952 ----a-w- c:\windows\system32\ntshrui.dll
2012-01-04 09:03 . 2012-02-19 09:01 442880 ----a-w- c:\windows\SysWow64\ntshrui.dll
2012-01-03 06:24 . 2012-02-19 09:01 515584 ----a-w- c:\windows\system32\timedate.cpl
2012-01-03 05:44 . 2012-02-19 09:01 478208 ----a-w- c:\windows\SysWow64\timedate.cpl
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-05-16 153136]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2011-10-13 17351304]
"DAEMON Tools Pro Agent"="c:\program files (x86)\DAEMON Tools Pro\DTProAgent.exe" [2009-12-16 312640]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2010-03-04 284696]
"MGSysCtrl"="c:\program files (x86)\System Control Manager\MGSysCtrl.exe" [2010-02-05 2408448]
"ArcSoft Connection Service"="c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe" [2010-10-27 207424]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-03-06 4241512]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-01-03 37296]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-02 843712]
"LogMeIn Hamachi Ui"="c:\program files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" [2012-02-28 1987976]
"Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-01-13 460872]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
R3 1394hub;1394 Enabled Hub;c:\windows\System32\svchost.exe [2009-07-14 27136]
R3 EUCR;EUCR;c:\windows\system32\DRIVERS\EUCR6SK.SYS [x]
R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;c:\program files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2012-03-25 1431888]
R3 GGSAFERDriver;GGSAFER Driver;c:\program files (x86)\Garena Classic\safedrv.sys [x]
R3 MGHwCtrl;MGHwCtrl;c:\program files\msi\msi Software Install\MGHwCtrl.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 Autodesk Content Service;Autodesk Content Service;c:\program files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2011-02-02 18656]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [2012-02-28 2343816]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-04 13336]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-01-13 652360]
S2 Micro Star SCM;Micro Star SCM;c:\program files (x86)\System Control Manager\MSIService.exe [2009-07-09 160768]
S2 PCSUService;PC Speed Up Service;c:\program files (x86)\Zrychleni Pocitace\PCSUService.exe [2011-11-07 235232]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-10-01 2320920]
S3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect;c:\windows\system32\DRIVERS\ArcSoftKsUFilter.sys [x]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [x]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [x]
.
.
--- Ostatní služby/ovladače v paměti ---
.
*NewlyCreated* - WS2IFSL
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-03-06 23:15 135408 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2009-07-02 7938080]
"Skytel"="c:\program files\Realtek\Audio\HDA\Skytel.exe" [2009-07-02 1833504]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-04-10 167256]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-04-10 391512]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-04-10 415064]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=0x0
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.cz/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\eedetg9o.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.cz/
FF - prefs.js: network.proxy.type - 0
.
.
------- Asociace souborů -------
.
.scr=AutoCADScriptFile
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
Toolbar-Locked - (no file)
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
AddRemove-Adobe Shockwave Player - c:\windows\system32\Adobe\Shockwave 11\uninstaller.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\windows\\system32\\Macromed\\Flash\\FlashUtil10d.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32]
@="c:\\windows\\SysWow64\\Macromed\\Flash\\FlashUtil10d.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}]
@Denied: (A 2) (Everyone)
@="IFlashBroker3"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
c:\windows\SysWOW64\DRIVERS\CDANTSRV.EXE
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
c:\program files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\program files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
c:\program files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
.
**************************************************************************
.
Celkový čas: 2012-03-27 12:47:43 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-03-27 10:47
.
Před spuštěním: Volných bajtů: 220 004 614 144
Po spuštění: Volných bajtů: 219 498 930 176
.
- - End Of File - - 28506686D6852D963212DDB6A2FC508B
- Žbeky
- Moderátor
-
Guru Level 13
- Příspěvky: 22288
- Registrován: květen 08
- Bydliště: Vsetín - Pardubice
- Pohlaví:
- Stav:
Offline
Re: Extrémně dlouhý start a ukončení windows
Otevři si Poznámkový blok (Start -> Spustit... a napiš do okna Notepad a dej Ok.
Zkopíruj do něj následující celý text označený zeleně:
Poznámka: Nepoužij k označení skriptu funkci VYBRAT VŠE
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu
Zkopíruj do něj následující celý text označený zeleně:
Poznámka: Nepoužij k označení skriptu funkci VYBRAT VŠE
Kód: Vybrat vše
KillAll::
DirLook::
C:\614d7f8c6d872be111ee
Registry::
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"LoadAppInit_DLLs"=-
RegLock::
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
Zvol možnost Soubor -> Uložit jako... a nastav tyto parametry:
Název souboru: zde napiš: CFScript.txt
Uložit jako typ: tak tam vyber Všechny soubory
Ulož soubor na plochu.
Ukonči všechna aktivní okna.
Uchop myší vytvořený skript CFScript.txt, přemísti ho nad stažený program ComboFix.exe a když se oba soubory překryjí, skript upusť.
- Automaticky se spustí ComboFix
- Vlož sem log, který vyběhne v závěru čistícího procesu
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
Re: Extrémně dlouhý start a ukončení windows
ComboFix 12-03-27.01 - Michal 27.03.2012 13:26:20.2.4 - x64
Microsoft Windows 7 Home Premium 6.1.7600.0.1250.420.1029.18.3886.2287 [GMT 2:00]
Spuštěný z: c:\users\Michal\Downloads\ComboFix.exe
Použité ovládací přepínače :: c:\users\Michal\Desktop\CFScript.txt.txt
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-02-27 do 2012-03-27 )))))))))))))))))))))))))))))))
.
.
2012-03-27 11:40 . 2012-03-27 11:40 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-03-27 06:57 . 2012-03-14 03:27 8669240 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{1A3528B0-E3E8-4E42-84E6-8BA8E4922A48}\mpengine.dll
2012-03-26 10:10 . 2012-03-26 10:12 -------- d-----w- c:\program files (x86)\Zrychleni Pocitace
2012-03-26 10:10 . 2012-03-26 10:10 -------- d-----w- c:\users\Michal\AppData\Roaming\pdfforge
2012-03-26 10:10 . 2012-03-14 15:23 65024 ----a-w- c:\windows\system32\pdfcmon.dll
2012-03-26 10:10 . 2004-03-08 22:00 662288 ----a-w- c:\windows\SysWow64\MSCOMCT2.OCX
2012-03-26 10:10 . 1998-06-23 22:00 137000 ----a-w- c:\windows\SysWow64\MSMAPI32.OCX
2012-03-26 10:10 . 2012-03-26 10:10 -------- d-----w- c:\program files (x86)\PDFCreator
2012-03-26 10:10 . 2012-03-26 10:10 -------- d-----w- c:\users\Michal\AppData\Roaming\OpenCandy
2012-03-26 10:10 . 1998-07-05 22:00 23552 ----a-w- c:\windows\SysWow64\MSMPIDE.DLL
2012-03-26 07:58 . 2012-03-26 07:58 -------- d-----w- C:\614d7f8c6d872be111ee
2012-03-25 22:26 . 2012-03-25 22:26 -------- d-----w- c:\users\Michal\AppData\Roaming\Malwarebytes
2012-03-25 22:26 . 2012-03-25 22:26 -------- d-----w- c:\programdata\Malwarebytes
2012-03-25 22:26 . 2011-12-10 13:24 23152 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-03-25 22:26 . 2012-03-25 22:26 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-03-25 22:18 . 2012-03-25 22:28 -------- d-----w- c:\program files (x86)\Google
2012-03-25 22:14 . 2012-03-06 23:02 53080 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2012-03-25 22:05 . 2012-03-25 22:05 -------- d-----w- c:\program files\CCleaner
2012-03-25 19:16 . 2012-03-26 15:47 -------- d-----w- c:\users\Michal\AppData\Local\cache
2012-03-25 19:16 . 2012-03-25 19:16 -------- d-----w- c:\programdata\FLEXnet
2012-03-25 19:12 . 2012-03-25 19:12 -------- d-----w- c:\program files\Common Files\Macrovision Shared
2012-03-25 19:09 . 2012-03-25 19:13 -------- d-----w- c:\program files\Common Files\Autodesk Shared
2012-03-25 19:09 . 2012-03-25 19:09 -------- d-----w- c:\users\Michal\AppData\Local\Autodesk
2012-03-25 19:09 . 2012-03-25 19:09 -------- d-----w- c:\program files\Autodesk
2012-03-25 19:09 . 2012-03-25 19:09 -------- d-----w- c:\program files (x86)\Autodesk
2012-03-25 19:00 . 2012-03-25 21:22 -------- d-----w- c:\users\Michal\AppData\Roaming\Autodesk
2012-03-25 19:00 . 2012-03-25 21:22 -------- d-----w- c:\programdata\Autodesk
2012-03-25 18:55 . 2012-03-25 18:55 -------- d-----w- C:\Autodesk
2012-03-25 18:04 . 2012-03-25 18:04 7056 ----a-w- c:\windows\CDILLA16.EXE
2012-03-25 18:04 . 2012-03-25 18:04 63344 ----a-w- c:\windows\CDILLA05.DLL
2012-03-25 18:04 . 2012-03-25 18:04 60416 ----a-w- c:\windows\CDILLA64.EXE
2012-03-25 18:04 . 2012-03-25 18:04 58160 ----a-w- c:\windows\SysWow64\drivers\CDANT.SYS
2012-03-25 18:04 . 2012-03-25 18:04 55376 ----a-w- c:\windows\CDILLA40.DLL
2012-03-25 18:04 . 2012-03-25 18:04 46080 ----a-w- c:\windows\SysWow64\drivers\CDANTSRV.EXE
2012-03-25 18:04 . 2012-03-25 18:04 44544 ----a-w- c:\windows\CDILLA13.DLL
2012-03-25 18:04 . 2012-03-25 18:04 260608 ----a-w- c:\windows\CDILLA32.DLL
2012-03-25 18:04 . 2012-03-25 18:04 23856 ----a-w- c:\windows\CDILLA10.EXE
2012-03-25 17:47 . 2012-03-25 17:47 -------- d-----w- c:\program files (x86)\Common Files\Wextech Shared
2012-03-25 17:44 . 2012-03-25 19:11 -------- d-----w- c:\program files (x86)\Common Files\Autodesk Shared
2012-03-25 14:03 . 2012-03-25 14:03 -------- d-----w- C:\C_DILLA
2012-03-25 14:03 . 2012-02-15 06:27 1031680 ----a-w- c:\windows\system32\rdpcore.dll
2012-03-25 14:03 . 2012-02-15 05:44 826368 ----a-w- c:\windows\SysWow64\rdpcore.dll
2012-03-25 14:03 . 2012-02-15 04:47 204800 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2012-03-25 14:03 . 2012-02-15 04:46 23552 ----a-w- c:\windows\system32\drivers\tdtcp.sys
2012-03-25 14:03 . 2012-01-25 06:20 9216 ----a-w- c:\windows\system32\rdrmemptylst.exe
2012-03-25 14:03 . 2012-01-25 06:27 76288 ----a-w- c:\windows\system32\rdpwsx.dll
2012-03-25 14:03 . 2012-01-25 06:27 149504 ----a-w- c:\windows\system32\rdpcorekmts.dll
2012-03-25 14:01 . 2012-03-25 17:42 -------- d-----w- c:\program files (x86)\AutoCAD 2002 Cz
2012-03-25 13:34 . 2011-11-19 18:30 5504880 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-03-25 13:34 . 2011-11-19 14:25 3957616 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe
2012-03-25 13:34 . 2011-11-19 14:25 3902320 ----a-w- c:\windows\SysWow64\ntoskrnl.exe
2012-03-25 13:23 . 2012-03-25 13:23 834544 ----a-w- c:\windows\system32\drivers\sptd.sys
2012-03-25 13:22 . 2012-03-25 13:22 -------- d-----w- c:\program files (x86)\DAEMON Tools Pro
2012-03-25 13:12 . 2012-03-25 13:12 162664 ----a-w- c:\programdata\Microsoft\Windows\Sqm\Manifest\Sqm10140.bin
2012-03-25 13:05 . 2012-02-03 04:16 3143168 ----a-w- c:\windows\system32\win32k.sys
2012-03-25 13:05 . 2012-02-10 06:18 1541120 ----a-w- c:\windows\system32\DWrite.dll
2012-03-25 13:05 . 2012-02-10 05:41 1074176 ----a-w- c:\windows\SysWow64\DWrite.dll
2012-03-25 13:05 . 2012-02-10 06:17 320512 ----a-w- c:\windows\system32\d3d10_1core.dll
2012-03-25 13:05 . 2012-02-10 06:17 1837568 ----a-w- c:\windows\system32\d3d10warp.dll
2012-03-25 13:05 . 2012-02-10 05:41 218624 ----a-w- c:\windows\SysWow64\d3d10_1core.dll
2012-03-25 13:05 . 2012-02-10 05:41 1170944 ----a-w- c:\windows\SysWow64\d3d10warp.dll
2012-03-25 13:05 . 2012-02-10 06:17 902656 ----a-w- c:\windows\system32\d2d1.dll
2012-03-25 13:05 . 2012-02-10 06:17 197120 ----a-w- c:\windows\system32\d3d10_1.dll
2012-03-25 13:05 . 2012-02-10 05:41 161792 ----a-w- c:\windows\SysWow64\d3d10_1.dll
2012-03-25 13:05 . 2012-02-10 05:41 739840 ----a-w- c:\windows\SysWow64\d2d1.dll
2012-02-29 22:13 . 2012-02-29 22:13 -------- d-----w- c:\program files (x86)\LogMeIn Hamachi
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-03-06 23:15 . 2011-09-04 08:34 41184 ----a-w- c:\windows\avastSS.scr
2012-03-06 23:15 . 2011-09-04 08:34 201352 ----a-w- c:\windows\SysWow64\aswBoot.exe
2012-03-06 23:15 . 2011-09-04 08:35 258520 ----a-w- c:\windows\system32\aswBoot.exe
2012-03-06 23:04 . 2011-09-04 08:35 819032 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-03-06 23:04 . 2011-09-04 08:35 337240 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-03-06 23:01 . 2011-09-04 08:35 59224 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-03-06 23:01 . 2011-09-04 08:35 69976 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2012-03-06 23:01 . 2011-09-04 08:35 24408 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-02-23 07:18 . 2011-09-03 10:44 279656 ------w- c:\windows\system32\MpSigStub.exe
2012-02-21 08:34 . 2011-09-03 10:43 414368 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-01-04 09:58 . 2012-02-19 09:01 509952 ----a-w- c:\windows\system32\ntshrui.dll
2012-01-04 09:03 . 2012-02-19 09:01 442880 ----a-w- c:\windows\SysWow64\ntshrui.dll
2012-01-03 06:24 . 2012-02-19 09:01 515584 ----a-w- c:\windows\system32\timedate.cpl
2012-01-03 05:44 . 2012-02-19 09:01 478208 ----a-w- c:\windows\SysWow64\timedate.cpl
.
.
(((((((((((((((((((((((((((((((((((((((((((( Look )))))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
---- Directory of C:\614d7f8c6d872be111ee ----
.
2011-11-21 22:49 . 2011-11-21 22:49 29210 ----a-w- c:\614d7f8c6d872be111ee\ParameterInfo.xml
2011-11-21 22:42 . 2011-11-21 22:42 33189888 ----a-w- c:\614d7f8c6d872be111ee\NDP40-KB2600217.msp
2011-11-21 21:13 . 2011-11-21 21:13 3628 ----a-w- c:\614d7f8c6d872be111ee\header.bmp
2011-11-21 21:13 . 2011-11-21 21:13 196662 ----a-w- c:\614d7f8c6d872be111ee\SplashScreen.bmp
2011-11-21 21:13 . 2011-11-21 21:13 13606 ----a-w- c:\614d7f8c6d872be111ee\Strings.xml
2011-11-21 21:13 . 2011-11-21 21:13 36180 ----a-w- c:\614d7f8c6d872be111ee\UiInfo.xml
2011-11-21 21:13 . 2011-11-21 21:13 104072 ----a-w- c:\614d7f8c6d872be111ee\watermark.bmp
2011-11-21 19:20 . 2011-11-21 19:20 296712 ----a-w- c:\614d7f8c6d872be111ee\SetupUi.dll
2011-11-21 19:20 . 2011-11-21 19:20 17688 ----a-w- c:\614d7f8c6d872be111ee\1025\SetupResources.dll
2011-11-21 19:20 . 2011-11-21 19:20 810256 ----a-w- c:\614d7f8c6d872be111ee\SetupEngine.dll
2011-11-21 19:19 . 2011-11-21 19:19 79112 ----a-w- c:\614d7f8c6d872be111ee\Setup.exe
2011-11-21 19:02 . 2011-11-21 19:02 16118 ----a-w- c:\614d7f8c6d872be111ee\DHtmlHeader.html
2011-11-21 19:02 . 2011-11-21 19:02 30120 ----a-w- c:\614d7f8c6d872be111ee\SetupUi.xsd
2011-11-21 19:02 . 2011-11-21 19:02 196416 ----a-w- c:\614d7f8c6d872be111ee\sqmapi.dll
2011-11-21 12:41 . 2011-11-21 12:41 97048 ----a-w- c:\614d7f8c6d872be111ee\SetupUtility.exe
.
.
((((((((((((((((((((((((((((( SnapShot@2012-03-27_10.41.02 )))))))))))))))))))))))))))))))))))))))))
.
- 2009-07-14 04:54 . 2012-03-27 10:40 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2012-03-27 11:43 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2012-03-27 10:40 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-03-27 11:43 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2012-03-27 10:40 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-07-14 04:54 . 2012-03-27 11:43 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-07-14 05:10 . 2012-03-27 11:44 42064 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2011-09-01 15:24 . 2012-03-27 11:44 11058 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-69090556-3312005029-2845111831-1000_UserData.bin
+ 2012-03-27 10:45 . 2012-03-27 10:45 47616 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLiveWriter\eb7b71398321047e40646406b1a86741\WindowsLiveWriter.ni.exe
- 2012-02-21 08:42 . 2012-02-21 08:42 47616 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLiveWriter\eb7b71398321047e40646406b1a86741\WindowsLiveWriter.ni.exe
+ 2012-03-27 10:46 . 2012-03-27 10:46 99840 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\40ce7736522d0cc5511756cc1b5b30e6\WindowsLive.Writer.Api.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 99840 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\40ce7736522d0cc5511756cc1b5b30e6\WindowsLive.Writer.Api.ni.dll
- 2011-11-06 16:11 . 2011-11-06 16:11 60928 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\fccf285ecdd9091a3f8d5e73d79c3300\UIAutomationProvider.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 60928 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\fccf285ecdd9091a3f8d5e73d79c3300\UIAutomationProvider.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 94208 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ComponentMod#\60d88a8af5cdd8999b44bb7a05a411ee\System.ComponentModel.DataAnnotations.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 94208 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ComponentMod#\60d88a8af5cdd8999b44bb7a05a411ee\System.ComponentModel.DataAnnotations.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 82944 c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn.Contra#\49c0850ff20d17128d372aec3efddba2\System.AddIn.Contract.ni.dll
- 2011-11-06 19:39 . 2011-11-06 19:39 82944 c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn.Contra#\49c0850ff20d17128d372aec3efddba2\System.AddIn.Contract.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 44032 c:\windows\assembly\NativeImages_v2.0.50727_32\stdole\a1884b052daaffbf1e67b525fa089cdc\stdole.ni.dll
- 2011-11-06 19:38 . 2011-11-06 19:38 44032 c:\windows\assembly\NativeImages_v2.0.50727_32\stdole\a1884b052daaffbf1e67b525fa089cdc\stdole.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 47104 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\b9becc8d608b41214c1e302bf83b70ce\PresentationFontCache.ni.exe
- 2012-02-21 08:46 . 2012-02-21 08:46 47104 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\b9becc8d608b41214c1e302bf83b70ce\PresentationFontCache.ni.exe
- 2012-02-21 08:35 . 2012-02-21 08:35 39424 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\b669ed26c27a26dbe32110e21034faa7\PresentationCFFRasterizer.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 39424 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\b669ed26c27a26dbe32110e21034faa7\PresentationCFFRasterizer.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 79872 c:\windows\assembly\NativeImages_v2.0.50727_32\napcrypt\4564de62ceb9621599e5518edde9136d\napcrypt.ni.dll
- 2011-11-06 19:39 . 2011-11-06 19:39 79872 c:\windows\assembly\NativeImages_v2.0.50727_32\napcrypt\4564de62ceb9621599e5518edde9136d\napcrypt.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 17920 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.WSMan.Run#\754eef9c651d1a06b45bc6d77e3e97d8\Microsoft.WSMan.Runtime.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 17920 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.WSMan.Run#\754eef9c651d1a06b45bc6d77e3e97d8\Microsoft.WSMan.Runtime.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 32256 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\ef1b11a0b882b8c203daf03b78975706\Microsoft.Windows.Diagnosis.SDHost.ni.dll
- 2011-11-06 19:39 . 2011-11-06 19:39 32256 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\ef1b11a0b882b8c203daf03b78975706\Microsoft.Windows.Diagnosis.SDHost.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 23040 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\e09e4e73414cd51143ae71a81b58a00e\Microsoft.Windows.Diagnosis.Commands.UpdateDiagRootcause.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 23040 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\e09e4e73414cd51143ae71a81b58a00e\Microsoft.Windows.Diagnosis.Commands.UpdateDiagRootcause.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 19968 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\dc17472b33ff221824e6eb83a6c1808f\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 19968 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\dc17472b33ff221824e6eb83a6c1808f\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 25088 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\c88fea1db58bb41c35c10d72773717fb\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 25088 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\c88fea1db58bb41c35c10d72773717fb\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 86016 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\c46d36fb6cd9f690f4dae90183c414f8\Microsoft.Windows.Diagnosis.TroubleshootingPack.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 86016 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\c46d36fb6cd9f690f4dae90183c414f8\Microsoft.Windows.Diagnosis.TroubleshootingPack.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 21504 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\b39a7302b1422ace86306c75e8f887ea\Microsoft.Windows.Diagnosis.SDEngine.ni.dll
- 2011-11-06 19:39 . 2011-11-06 19:39 21504 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\b39a7302b1422ace86306c75e8f887ea\Microsoft.Windows.Diagnosis.SDEngine.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 27136 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\514cd9895cb848643af450b42406bcc5\Microsoft.Windows.Diagnosis.Commands.UpdateDiagReport.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 27136 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\514cd9895cb848643af450b42406bcc5\Microsoft.Windows.Diagnosis.Commands.UpdateDiagReport.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 55296 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Vsa\7966d0ae949f0d97d94970256b9bf455\Microsoft.Vsa.ni.dll
- 2012-02-21 08:42 . 2012-02-21 08:42 55296 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Vsa\7966d0ae949f0d97d94970256b9bf455\Microsoft.Vsa.ni.dll
- 2011-11-06 19:39 . 2011-11-06 19:39 65024 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\c60683cf7fbf944620b248a5b3fb2847\Microsoft.Build.Framework.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 65024 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\c60683cf7fbf944620b248a5b3fb2847\Microsoft.Build.Framework.ni.dll
- 2011-11-06 19:39 . 2011-11-06 19:39 74752 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\36d1bfcdc1632fa8fdc0a1e72e763a0f\Microsoft.Build.Framework.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 74752 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\36d1bfcdc1632fa8fdc0a1e72e763a0f\Microsoft.Build.Framework.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 60416 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiUserXp\00c50dd89debd099ed76d2be3c461967\ehiUserXp.ni.dll
- 2011-11-06 19:38 . 2011-11-06 19:38 60416 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiUserXp\00c50dd89debd099ed76d2be3c461967\ehiUserXp.ni.dll
- 2011-11-06 19:38 . 2011-11-06 19:38 14336 c:\windows\assembly\NativeImages_v2.0.50727_32\dfsvc\07b33a62990232f9df1cbe7078430571\dfsvc.ni.exe
+ 2012-03-27 11:30 . 2012-03-27 11:30 14336 c:\windows\assembly\NativeImages_v2.0.50727_32\dfsvc\07b33a62990232f9df1cbe7078430571\dfsvc.ni.exe
+ 2012-03-27 11:42 . 2012-03-27 11:42 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2012-03-27 10:39 . 2012-03-27 10:39 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2012-03-27 11:42 . 2012-03-27 11:42 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2012-03-27 10:39 . 2012-03-27 10:39 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2011-09-03 10:08 . 2012-03-27 10:39 262144 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
+ 2011-09-03 10:08 . 2012-03-27 11:42 262144 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
+ 2011-09-01 16:52 . 2012-03-27 11:38 257268 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin
+ 2009-07-14 05:01 . 2012-03-27 11:40 442380 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
- 2009-07-14 05:01 . 2012-03-27 10:38 442380 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2012-03-27 10:46 . 2012-03-27 10:46 633856 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLiveLocal.Wr#\6821dd32ab5af443894ece849ddfde3e\WindowsLiveLocal.WriterPlugin.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 633856 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLiveLocal.Wr#\6821dd32ab5af443894ece849ddfde3e\WindowsLiveLocal.WriterPlugin.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 319488 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\c6e5b906b55c14320c5ed0579e753bb0\WindowsLive.Writer.Interop.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 319488 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\c6e5b906b55c14320c5ed0579e753bb0\WindowsLive.Writer.Interop.ni.dll
- 2011-11-06 19:38 . 2011-11-06 19:38 313856 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\9cb75a37472b1b49cc82fddb7ab73313\WindowsLive.Writer.Interop.SHDocVw.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 313856 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\9cb75a37472b1b49cc82fddb7ab73313\WindowsLive.Writer.Interop.SHDocVw.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 258560 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\928dd94a23dbf34868a3d54b0b672457\WindowsLive.Writer.Mshtml.ni.dll
+ 2012-03-27 10:46 . 2012-03-27 10:46 258560 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\928dd94a23dbf34868a3d54b0b672457\WindowsLive.Writer.Mshtml.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 118784 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\8ff4541ba7e879b2770ba46b8e95992d\WindowsLive.Writer.Extensibility.ni.dll
+ 2012-03-27 10:46 . 2012-03-27 10:46 118784 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\8ff4541ba7e879b2770ba46b8e95992d\WindowsLive.Writer.Extensibility.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 843776 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\7c7dd299d92ea1ffb58622418703ad4f\WindowsLive.Writer.Controls.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 843776 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\7c7dd299d92ea1ffb58622418703ad4f\WindowsLive.Writer.Controls.ni.dll
+ 2012-03-27 10:46 . 2012-03-27 10:46 321536 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\5b7154846cba46868d0f1f0af477504f\WindowsLive.Writer.SpellChecker.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 321536 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\5b7154846cba46868d0f1f0af477504f\WindowsLive.Writer.SpellChecker.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 594944 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\50602fee3b3dea48c423e796f2e98601\WindowsLive.Writer.HtmlEditor.ni.dll
+ 2012-03-27 10:46 . 2012-03-27 10:46 594944 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\50602fee3b3dea48c423e796f2e98601\WindowsLive.Writer.HtmlEditor.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 174080 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\4fa3a96522ac00391c8fe9890f80b546\WindowsLive.Writer.BrowserControl.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 174080 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\4fa3a96522ac00391c8fe9890f80b546\WindowsLive.Writer.BrowserControl.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 334848 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\4b40a21037f8de7f9324e34a4f4fa710\WindowsLive.Writer.Interop.Mshtml.ni.dll
- 2011-11-06 19:38 . 2011-11-06 19:38 334848 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\4b40a21037f8de7f9324e34a4f4fa710\WindowsLive.Writer.Interop.Mshtml.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 428032 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\49b4852ecf295de8f73c6eade1c595c7\WindowsLive.Writer.Localization.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 428032 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\49b4852ecf295de8f73c6eade1c595c7\WindowsLive.Writer.Localization.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 108544 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\34c3f8e1e31dede829d7cbfcb9a05b3d\WindowsLive.Writer.Passport.ni.dll
+ 2012-03-27 10:46 . 2012-03-27 10:46 108544 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\34c3f8e1e31dede829d7cbfcb9a05b3d\WindowsLive.Writer.Passport.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 851968 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\30a275a018c813e4d91967cd0c84d44d\WindowsLive.Writer.BlogClient.ni.dll
+ 2012-03-27 10:46 . 2012-03-27 10:46 851968 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\30a275a018c813e4d91967cd0c84d44d\WindowsLive.Writer.BlogClient.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 119296 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\15724aa17ffae89dc775a4c1299c1057\WindowsLive.Writer.FileDestinations.ni.dll
+ 2012-03-27 10:46 . 2012-03-27 10:46 119296 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\15724aa17ffae89dc775a4c1299c1057\WindowsLive.Writer.FileDestinations.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 152064 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\148ffbdbaf8c8671ccd0488158e9a439\WindowsLive.Writer.HtmlParser.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 152064 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\148ffbdbaf8c8671ccd0488158e9a439\WindowsLive.Writer.HtmlParser.ni.dll
+ 2012-03-27 10:46 . 2012-03-27 10:46 117760 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\05f6da74dcbfb6b9445cd74e532bafef\WindowsLive.Writer.Instrumentation.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 117760 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\05f6da74dcbfb6b9445cd74e532bafef\WindowsLive.Writer.Instrumentation.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 145920 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Client\174f99f3feda0165422af287ca9826a4\WindowsLive.Client.ni.dll
+ 2012-03-27 10:46 . 2012-03-27 10:46 145920 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Client\174f99f3feda0165422af287ca9826a4\WindowsLive.Client.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 185344 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\a3f989a61ab0468876629134c49514b2\UIAutomationTypes.ni.dll
- 2011-11-06 16:11 . 2011-11-06 16:11 185344 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\a3f989a61ab0468876629134c49514b2\UIAutomationTypes.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 452096 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\ba4e07d92829d993edf510cc0930b005\UIAutomationClient.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 452096 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\ba4e07d92829d993edf510cc0930b005\UIAutomationClient.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 401408 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq\37d2f9198ad4e605f216bee3d1f58691\System.Xml.Linq.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 401408 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq\37d2f9198ad4e605f216bee3d1f58691\System.Xml.Linq.ni.dll
- 2012-02-21 08:36 . 2012-02-21 08:36 202240 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#\3235b159c025406d8b626db1aa09fad3\System.Web.RegularExpressions.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 202240 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#\3235b159c025406d8b626db1aa09fad3\System.Web.RegularExpressions.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 141312 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Abstract#\cbb814a6e75310a62c6bf57d0220fa0b\System.Web.Abstractions.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 141312 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Abstract#\cbb814a6e75310a62c6bf57d0220fa0b\System.Web.Abstractions.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 624128 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Net\e62d625a59508410f047266f3377a447\System.Net.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 624128 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Net\e62d625a59508410f047266f3377a447\System.Net.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 593408 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Messaging\184feff3d7c15c27ec0345d27c954cab\System.Messaging.ni.dll
+ 2012-03-27 11:30 . 2012-03-27 11:30 593408 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Messaging\184feff3d7c15c27ec0345d27c954cab\System.Messaging.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 997888 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management\0794d7af09099432ebfb51af1d7f15ae\System.Management.ni.dll
- 2012-02-21 08:42 . 2012-02-21 08:42 997888 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management\0794d7af09099432ebfb51af1d7f15ae\System.Management.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 330240 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management.I#\5487c4ce39dfd1712c6acbe72d74da8f\System.Management.Instrumentation.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 330240 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management.I#\5487c4ce39dfd1712c6acbe72d74da8f\System.Management.Instrumentation.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 381440 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IO.Log\603780605b24668dfd6e85d01b301459\System.IO.Log.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 381440 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IO.Log\603780605b24668dfd6e85d01b301459\System.IO.Log.ni.dll
+ 2012-03-27 11:30 . 2012-03-27 11:30 212992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityMode#\e5a4bc827a371428406fbc0a743bdbfe\System.IdentityModel.Selectors.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 212992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityMode#\e5a4bc827a371428406fbc0a743bdbfe\System.IdentityModel.Selectors.ni.dll
- 2012-02-21 08:36 . 2012-02-21 08:36 208384 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\1585bd27d37caf0c4becb2a94107c5e9\System.Drawing.Design.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 208384 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\1585bd27d37caf0c4becb2a94107c5e9\System.Drawing.Design.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 887808 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\a3ae72a9ded7bcee59d30e816554f410\System.DirectoryServices.AccountManagement.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 887808 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\a3ae72a9ded7bcee59d30e816554f410\System.DirectoryServices.AccountManagement.ni.dll
- 2012-02-21 08:36 . 2012-02-21 08:36 455680 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\798a88768617a3dc4436b1194a05c694\System.DirectoryServices.Protocols.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 455680 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\798a88768617a3dc4436b1194a05c694\System.DirectoryServices.Protocols.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 946176 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\d2629270057a355635f4c31c00aaf07a\System.Data.Services.Client.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 946176 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\d2629270057a355635f4c31c00aaf07a\System.Data.Services.Client.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 356864 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\1beb76511b6a67e342d65f42ff0815bd\System.Data.Services.Design.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 356864 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\1beb76511b6a67e342d65f42ff0815bd\System.Data.Services.Design.ni.dll
- 2012-02-21 08:47 . 2012-02-21 08:47 762880 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity.#\ec27ef869e1af9a4352594708b7cd7fb\System.Data.Entity.Design.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 762880 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity.#\ec27ef869e1af9a4352594708b7cd7fb\System.Data.Entity.Design.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 135680 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.DataSet#\5c88e22009cc6ffa451cb1ccd4a4b47e\System.Data.DataSetExtensions.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 135680 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.DataSet#\5c88e22009cc6ffa451cb1ccd4a4b47e\System.Data.DataSetExtensions.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 633344 c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn\64b7e2fa8a11164f2ae27b40e964907c\System.AddIn.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 633344 c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn\64b7e2fa8a11164f2ae27b40e964907c\System.AddIn.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 366080 c:\windows\assembly\NativeImages_v2.0.50727_32\SMSvcHost\d071f953feda1b725369da479830eb88\SMSvcHost.ni.exe
- 2012-02-21 08:46 . 2012-02-21 08:46 366080 c:\windows\assembly\NativeImages_v2.0.50727_32\SMSvcHost\d071f953feda1b725369da479830eb88\SMSvcHost.ni.exe
- 2012-02-21 08:44 . 2012-02-21 08:44 256000 c:\windows\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\eb46ff3a7098925dd3f0552901668735\SMDiagnostics.ni.dll
+ 2012-03-27 11:30 . 2012-03-27 11:30 256000 c:\windows\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\eb46ff3a7098925dd3f0552901668735\SMDiagnostics.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 224768 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\bcb224eff8a955d6e50c4c101a101c4a\PresentationFramework.Classic.ni.dll
- 2012-02-21 08:36 . 2012-02-21 08:36 224768 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\bcb224eff8a955d6e50c4c101a101c4a\PresentationFramework.Classic.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 368128 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\6954c7f14ea634672cdacf2cd793497e\PresentationFramework.Aero.ni.dll
- 2012-02-21 08:36 . 2012-02-21 08:36 368128 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\6954c7f14ea634672cdacf2cd793497e\PresentationFramework.Aero.ni.dll
- 2012-02-21 08:36 . 2012-02-21 08:36 258048 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\46e0bdf49703779e61f23d3654733369\PresentationFramework.Royale.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 258048 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\46e0bdf49703779e61f23d3654733369\PresentationFramework.Royale.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 539648 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\1450308c4daa43ac886a5daffda0fbf8\PresentationFramework.Luna.ni.dll
- 2012-02-21 08:36 . 2012-02-21 08:36 539648 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\1450308c4daa43ac886a5daffda0fbf8\PresentationFramework.Luna.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 723456 c:\windows\assembly\NativeImages_v2.0.50727_32\napsnap\ced701a3a48f6fca9e9fb48dbaff2ca9\napsnap.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 723456 c:\windows\assembly\NativeImages_v2.0.50727_32\napsnap\ced701a3a48f6fca9e9fb48dbaff2ca9\napsnap.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 117760 c:\windows\assembly\NativeImages_v2.0.50727_32\napinit\5f5e10bc18ec53327b8541d461be01d3\napinit.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 117760 c:\windows\assembly\NativeImages_v2.0.50727_32\napinit\5f5e10bc18ec53327b8541d461be01d3\napinit.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 114176 c:\windows\assembly\NativeImages_v2.0.50727_32\naphlpr\d82c431d8f0463c0dd5b143ebb0b7fcc\naphlpr.ni.dll
- 2011-11-06 19:39 . 2011-11-06 19:39 114176 c:\windows\assembly\NativeImages_v2.0.50727_32\naphlpr\d82c431d8f0463c0dd5b143ebb0b7fcc\naphlpr.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 133632 c:\windows\assembly\NativeImages_v2.0.50727_32\MSBuild\570958f58a7b129cd0144f68a729affe\MSBuild.ni.exe
- 2012-02-21 08:46 . 2012-02-21 08:46 133632 c:\windows\assembly\NativeImages_v2.0.50727_32\MSBuild\570958f58a7b129cd0144f68a729affe\MSBuild.ni.exe
+ 2012-03-27 11:31 . 2012-03-27 11:31 287232 c:\windows\assembly\NativeImages_v2.0.50727_32\MMCFxCommon\921c5ac836dabe56ffcaaed760b641f7\MMCFxCommon.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 287232 c:\windows\assembly\NativeImages_v2.0.50727_32\MMCFxCommon\921c5ac836dabe56ffcaaed760b641f7\MMCFxCommon.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 531456 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.WSMan.Man#\5c36d28013ebf02deffc516dbac752ce\Microsoft.WSMan.Management.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 531456 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.WSMan.Man#\5c36d28013ebf02deffc516dbac752ce\Microsoft.WSMan.Management.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 386560 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\4c35f544bfe27946fa0813c2334799ff\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 386560 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\4c35f544bfe27946fa0813c2334799ff\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 729088 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\ce2d651576a77738d881834836f9caf0\Microsoft.PowerShell.GraphicalHost.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 729088 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#
Microsoft Windows 7 Home Premium 6.1.7600.0.1250.420.1029.18.3886.2287 [GMT 2:00]
Spuštěný z: c:\users\Michal\Downloads\ComboFix.exe
Použité ovládací přepínače :: c:\users\Michal\Desktop\CFScript.txt.txt
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-02-27 do 2012-03-27 )))))))))))))))))))))))))))))))
.
.
2012-03-27 11:40 . 2012-03-27 11:40 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-03-27 06:57 . 2012-03-14 03:27 8669240 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{1A3528B0-E3E8-4E42-84E6-8BA8E4922A48}\mpengine.dll
2012-03-26 10:10 . 2012-03-26 10:12 -------- d-----w- c:\program files (x86)\Zrychleni Pocitace
2012-03-26 10:10 . 2012-03-26 10:10 -------- d-----w- c:\users\Michal\AppData\Roaming\pdfforge
2012-03-26 10:10 . 2012-03-14 15:23 65024 ----a-w- c:\windows\system32\pdfcmon.dll
2012-03-26 10:10 . 2004-03-08 22:00 662288 ----a-w- c:\windows\SysWow64\MSCOMCT2.OCX
2012-03-26 10:10 . 1998-06-23 22:00 137000 ----a-w- c:\windows\SysWow64\MSMAPI32.OCX
2012-03-26 10:10 . 2012-03-26 10:10 -------- d-----w- c:\program files (x86)\PDFCreator
2012-03-26 10:10 . 2012-03-26 10:10 -------- d-----w- c:\users\Michal\AppData\Roaming\OpenCandy
2012-03-26 10:10 . 1998-07-05 22:00 23552 ----a-w- c:\windows\SysWow64\MSMPIDE.DLL
2012-03-26 07:58 . 2012-03-26 07:58 -------- d-----w- C:\614d7f8c6d872be111ee
2012-03-25 22:26 . 2012-03-25 22:26 -------- d-----w- c:\users\Michal\AppData\Roaming\Malwarebytes
2012-03-25 22:26 . 2012-03-25 22:26 -------- d-----w- c:\programdata\Malwarebytes
2012-03-25 22:26 . 2011-12-10 13:24 23152 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-03-25 22:26 . 2012-03-25 22:26 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2012-03-25 22:18 . 2012-03-25 22:28 -------- d-----w- c:\program files (x86)\Google
2012-03-25 22:14 . 2012-03-06 23:02 53080 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2012-03-25 22:05 . 2012-03-25 22:05 -------- d-----w- c:\program files\CCleaner
2012-03-25 19:16 . 2012-03-26 15:47 -------- d-----w- c:\users\Michal\AppData\Local\cache
2012-03-25 19:16 . 2012-03-25 19:16 -------- d-----w- c:\programdata\FLEXnet
2012-03-25 19:12 . 2012-03-25 19:12 -------- d-----w- c:\program files\Common Files\Macrovision Shared
2012-03-25 19:09 . 2012-03-25 19:13 -------- d-----w- c:\program files\Common Files\Autodesk Shared
2012-03-25 19:09 . 2012-03-25 19:09 -------- d-----w- c:\users\Michal\AppData\Local\Autodesk
2012-03-25 19:09 . 2012-03-25 19:09 -------- d-----w- c:\program files\Autodesk
2012-03-25 19:09 . 2012-03-25 19:09 -------- d-----w- c:\program files (x86)\Autodesk
2012-03-25 19:00 . 2012-03-25 21:22 -------- d-----w- c:\users\Michal\AppData\Roaming\Autodesk
2012-03-25 19:00 . 2012-03-25 21:22 -------- d-----w- c:\programdata\Autodesk
2012-03-25 18:55 . 2012-03-25 18:55 -------- d-----w- C:\Autodesk
2012-03-25 18:04 . 2012-03-25 18:04 7056 ----a-w- c:\windows\CDILLA16.EXE
2012-03-25 18:04 . 2012-03-25 18:04 63344 ----a-w- c:\windows\CDILLA05.DLL
2012-03-25 18:04 . 2012-03-25 18:04 60416 ----a-w- c:\windows\CDILLA64.EXE
2012-03-25 18:04 . 2012-03-25 18:04 58160 ----a-w- c:\windows\SysWow64\drivers\CDANT.SYS
2012-03-25 18:04 . 2012-03-25 18:04 55376 ----a-w- c:\windows\CDILLA40.DLL
2012-03-25 18:04 . 2012-03-25 18:04 46080 ----a-w- c:\windows\SysWow64\drivers\CDANTSRV.EXE
2012-03-25 18:04 . 2012-03-25 18:04 44544 ----a-w- c:\windows\CDILLA13.DLL
2012-03-25 18:04 . 2012-03-25 18:04 260608 ----a-w- c:\windows\CDILLA32.DLL
2012-03-25 18:04 . 2012-03-25 18:04 23856 ----a-w- c:\windows\CDILLA10.EXE
2012-03-25 17:47 . 2012-03-25 17:47 -------- d-----w- c:\program files (x86)\Common Files\Wextech Shared
2012-03-25 17:44 . 2012-03-25 19:11 -------- d-----w- c:\program files (x86)\Common Files\Autodesk Shared
2012-03-25 14:03 . 2012-03-25 14:03 -------- d-----w- C:\C_DILLA
2012-03-25 14:03 . 2012-02-15 06:27 1031680 ----a-w- c:\windows\system32\rdpcore.dll
2012-03-25 14:03 . 2012-02-15 05:44 826368 ----a-w- c:\windows\SysWow64\rdpcore.dll
2012-03-25 14:03 . 2012-02-15 04:47 204800 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2012-03-25 14:03 . 2012-02-15 04:46 23552 ----a-w- c:\windows\system32\drivers\tdtcp.sys
2012-03-25 14:03 . 2012-01-25 06:20 9216 ----a-w- c:\windows\system32\rdrmemptylst.exe
2012-03-25 14:03 . 2012-01-25 06:27 76288 ----a-w- c:\windows\system32\rdpwsx.dll
2012-03-25 14:03 . 2012-01-25 06:27 149504 ----a-w- c:\windows\system32\rdpcorekmts.dll
2012-03-25 14:01 . 2012-03-25 17:42 -------- d-----w- c:\program files (x86)\AutoCAD 2002 Cz
2012-03-25 13:34 . 2011-11-19 18:30 5504880 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-03-25 13:34 . 2011-11-19 14:25 3957616 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe
2012-03-25 13:34 . 2011-11-19 14:25 3902320 ----a-w- c:\windows\SysWow64\ntoskrnl.exe
2012-03-25 13:23 . 2012-03-25 13:23 834544 ----a-w- c:\windows\system32\drivers\sptd.sys
2012-03-25 13:22 . 2012-03-25 13:22 -------- d-----w- c:\program files (x86)\DAEMON Tools Pro
2012-03-25 13:12 . 2012-03-25 13:12 162664 ----a-w- c:\programdata\Microsoft\Windows\Sqm\Manifest\Sqm10140.bin
2012-03-25 13:05 . 2012-02-03 04:16 3143168 ----a-w- c:\windows\system32\win32k.sys
2012-03-25 13:05 . 2012-02-10 06:18 1541120 ----a-w- c:\windows\system32\DWrite.dll
2012-03-25 13:05 . 2012-02-10 05:41 1074176 ----a-w- c:\windows\SysWow64\DWrite.dll
2012-03-25 13:05 . 2012-02-10 06:17 320512 ----a-w- c:\windows\system32\d3d10_1core.dll
2012-03-25 13:05 . 2012-02-10 06:17 1837568 ----a-w- c:\windows\system32\d3d10warp.dll
2012-03-25 13:05 . 2012-02-10 05:41 218624 ----a-w- c:\windows\SysWow64\d3d10_1core.dll
2012-03-25 13:05 . 2012-02-10 05:41 1170944 ----a-w- c:\windows\SysWow64\d3d10warp.dll
2012-03-25 13:05 . 2012-02-10 06:17 902656 ----a-w- c:\windows\system32\d2d1.dll
2012-03-25 13:05 . 2012-02-10 06:17 197120 ----a-w- c:\windows\system32\d3d10_1.dll
2012-03-25 13:05 . 2012-02-10 05:41 161792 ----a-w- c:\windows\SysWow64\d3d10_1.dll
2012-03-25 13:05 . 2012-02-10 05:41 739840 ----a-w- c:\windows\SysWow64\d2d1.dll
2012-02-29 22:13 . 2012-02-29 22:13 -------- d-----w- c:\program files (x86)\LogMeIn Hamachi
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-03-06 23:15 . 2011-09-04 08:34 41184 ----a-w- c:\windows\avastSS.scr
2012-03-06 23:15 . 2011-09-04 08:34 201352 ----a-w- c:\windows\SysWow64\aswBoot.exe
2012-03-06 23:15 . 2011-09-04 08:35 258520 ----a-w- c:\windows\system32\aswBoot.exe
2012-03-06 23:04 . 2011-09-04 08:35 819032 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-03-06 23:04 . 2011-09-04 08:35 337240 ----a-w- c:\windows\system32\drivers\aswSP.sys
2012-03-06 23:01 . 2011-09-04 08:35 59224 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2012-03-06 23:01 . 2011-09-04 08:35 69976 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2012-03-06 23:01 . 2011-09-04 08:35 24408 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2012-02-23 07:18 . 2011-09-03 10:44 279656 ------w- c:\windows\system32\MpSigStub.exe
2012-02-21 08:34 . 2011-09-03 10:43 414368 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-01-04 09:58 . 2012-02-19 09:01 509952 ----a-w- c:\windows\system32\ntshrui.dll
2012-01-04 09:03 . 2012-02-19 09:01 442880 ----a-w- c:\windows\SysWow64\ntshrui.dll
2012-01-03 06:24 . 2012-02-19 09:01 515584 ----a-w- c:\windows\system32\timedate.cpl
2012-01-03 05:44 . 2012-02-19 09:01 478208 ----a-w- c:\windows\SysWow64\timedate.cpl
.
.
(((((((((((((((((((((((((((((((((((((((((((( Look )))))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
---- Directory of C:\614d7f8c6d872be111ee ----
.
2011-11-21 22:49 . 2011-11-21 22:49 29210 ----a-w- c:\614d7f8c6d872be111ee\ParameterInfo.xml
2011-11-21 22:42 . 2011-11-21 22:42 33189888 ----a-w- c:\614d7f8c6d872be111ee\NDP40-KB2600217.msp
2011-11-21 21:13 . 2011-11-21 21:13 3628 ----a-w- c:\614d7f8c6d872be111ee\header.bmp
2011-11-21 21:13 . 2011-11-21 21:13 196662 ----a-w- c:\614d7f8c6d872be111ee\SplashScreen.bmp
2011-11-21 21:13 . 2011-11-21 21:13 13606 ----a-w- c:\614d7f8c6d872be111ee\Strings.xml
2011-11-21 21:13 . 2011-11-21 21:13 36180 ----a-w- c:\614d7f8c6d872be111ee\UiInfo.xml
2011-11-21 21:13 . 2011-11-21 21:13 104072 ----a-w- c:\614d7f8c6d872be111ee\watermark.bmp
2011-11-21 19:20 . 2011-11-21 19:20 296712 ----a-w- c:\614d7f8c6d872be111ee\SetupUi.dll
2011-11-21 19:20 . 2011-11-21 19:20 17688 ----a-w- c:\614d7f8c6d872be111ee\1025\SetupResources.dll
2011-11-21 19:20 . 2011-11-21 19:20 810256 ----a-w- c:\614d7f8c6d872be111ee\SetupEngine.dll
2011-11-21 19:19 . 2011-11-21 19:19 79112 ----a-w- c:\614d7f8c6d872be111ee\Setup.exe
2011-11-21 19:02 . 2011-11-21 19:02 16118 ----a-w- c:\614d7f8c6d872be111ee\DHtmlHeader.html
2011-11-21 19:02 . 2011-11-21 19:02 30120 ----a-w- c:\614d7f8c6d872be111ee\SetupUi.xsd
2011-11-21 19:02 . 2011-11-21 19:02 196416 ----a-w- c:\614d7f8c6d872be111ee\sqmapi.dll
2011-11-21 12:41 . 2011-11-21 12:41 97048 ----a-w- c:\614d7f8c6d872be111ee\SetupUtility.exe
.
.
((((((((((((((((((((((((((((( SnapShot@2012-03-27_10.41.02 )))))))))))))))))))))))))))))))))))))))))
.
- 2009-07-14 04:54 . 2012-03-27 10:40 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2012-03-27 11:43 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2009-07-14 04:54 . 2012-03-27 10:40 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-03-27 11:43 32768 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2012-03-27 10:40 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-07-14 04:54 . 2012-03-27 11:43 16384 c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2009-07-14 05:10 . 2012-03-27 11:44 42064 c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2011-09-01 15:24 . 2012-03-27 11:44 11058 c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-69090556-3312005029-2845111831-1000_UserData.bin
+ 2012-03-27 10:45 . 2012-03-27 10:45 47616 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLiveWriter\eb7b71398321047e40646406b1a86741\WindowsLiveWriter.ni.exe
- 2012-02-21 08:42 . 2012-02-21 08:42 47616 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLiveWriter\eb7b71398321047e40646406b1a86741\WindowsLiveWriter.ni.exe
+ 2012-03-27 10:46 . 2012-03-27 10:46 99840 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\40ce7736522d0cc5511756cc1b5b30e6\WindowsLive.Writer.Api.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 99840 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\40ce7736522d0cc5511756cc1b5b30e6\WindowsLive.Writer.Api.ni.dll
- 2011-11-06 16:11 . 2011-11-06 16:11 60928 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\fccf285ecdd9091a3f8d5e73d79c3300\UIAutomationProvider.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 60928 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\fccf285ecdd9091a3f8d5e73d79c3300\UIAutomationProvider.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 94208 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ComponentMod#\60d88a8af5cdd8999b44bb7a05a411ee\System.ComponentModel.DataAnnotations.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 94208 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ComponentMod#\60d88a8af5cdd8999b44bb7a05a411ee\System.ComponentModel.DataAnnotations.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 82944 c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn.Contra#\49c0850ff20d17128d372aec3efddba2\System.AddIn.Contract.ni.dll
- 2011-11-06 19:39 . 2011-11-06 19:39 82944 c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn.Contra#\49c0850ff20d17128d372aec3efddba2\System.AddIn.Contract.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 44032 c:\windows\assembly\NativeImages_v2.0.50727_32\stdole\a1884b052daaffbf1e67b525fa089cdc\stdole.ni.dll
- 2011-11-06 19:38 . 2011-11-06 19:38 44032 c:\windows\assembly\NativeImages_v2.0.50727_32\stdole\a1884b052daaffbf1e67b525fa089cdc\stdole.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 47104 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\b9becc8d608b41214c1e302bf83b70ce\PresentationFontCache.ni.exe
- 2012-02-21 08:46 . 2012-02-21 08:46 47104 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\b9becc8d608b41214c1e302bf83b70ce\PresentationFontCache.ni.exe
- 2012-02-21 08:35 . 2012-02-21 08:35 39424 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\b669ed26c27a26dbe32110e21034faa7\PresentationCFFRasterizer.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 39424 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\b669ed26c27a26dbe32110e21034faa7\PresentationCFFRasterizer.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 79872 c:\windows\assembly\NativeImages_v2.0.50727_32\napcrypt\4564de62ceb9621599e5518edde9136d\napcrypt.ni.dll
- 2011-11-06 19:39 . 2011-11-06 19:39 79872 c:\windows\assembly\NativeImages_v2.0.50727_32\napcrypt\4564de62ceb9621599e5518edde9136d\napcrypt.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 17920 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.WSMan.Run#\754eef9c651d1a06b45bc6d77e3e97d8\Microsoft.WSMan.Runtime.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 17920 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.WSMan.Run#\754eef9c651d1a06b45bc6d77e3e97d8\Microsoft.WSMan.Runtime.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 32256 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\ef1b11a0b882b8c203daf03b78975706\Microsoft.Windows.Diagnosis.SDHost.ni.dll
- 2011-11-06 19:39 . 2011-11-06 19:39 32256 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\ef1b11a0b882b8c203daf03b78975706\Microsoft.Windows.Diagnosis.SDHost.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 23040 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\e09e4e73414cd51143ae71a81b58a00e\Microsoft.Windows.Diagnosis.Commands.UpdateDiagRootcause.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 23040 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\e09e4e73414cd51143ae71a81b58a00e\Microsoft.Windows.Diagnosis.Commands.UpdateDiagRootcause.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 19968 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\dc17472b33ff221824e6eb83a6c1808f\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 19968 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\dc17472b33ff221824e6eb83a6c1808f\Microsoft.Windows.Diagnosis.Commands.WriteDiagProgress.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 25088 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\c88fea1db58bb41c35c10d72773717fb\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 25088 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\c88fea1db58bb41c35c10d72773717fb\Microsoft.Windows.Diagnosis.Commands.GetDiagInput.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 86016 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\c46d36fb6cd9f690f4dae90183c414f8\Microsoft.Windows.Diagnosis.TroubleshootingPack.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 86016 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\c46d36fb6cd9f690f4dae90183c414f8\Microsoft.Windows.Diagnosis.TroubleshootingPack.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 21504 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\b39a7302b1422ace86306c75e8f887ea\Microsoft.Windows.Diagnosis.SDEngine.ni.dll
- 2011-11-06 19:39 . 2011-11-06 19:39 21504 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\b39a7302b1422ace86306c75e8f887ea\Microsoft.Windows.Diagnosis.SDEngine.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 27136 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\514cd9895cb848643af450b42406bcc5\Microsoft.Windows.Diagnosis.Commands.UpdateDiagReport.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 27136 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Windows.D#\514cd9895cb848643af450b42406bcc5\Microsoft.Windows.Diagnosis.Commands.UpdateDiagReport.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 55296 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Vsa\7966d0ae949f0d97d94970256b9bf455\Microsoft.Vsa.ni.dll
- 2012-02-21 08:42 . 2012-02-21 08:42 55296 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Vsa\7966d0ae949f0d97d94970256b9bf455\Microsoft.Vsa.ni.dll
- 2011-11-06 19:39 . 2011-11-06 19:39 65024 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\c60683cf7fbf944620b248a5b3fb2847\Microsoft.Build.Framework.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 65024 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\c60683cf7fbf944620b248a5b3fb2847\Microsoft.Build.Framework.ni.dll
- 2011-11-06 19:39 . 2011-11-06 19:39 74752 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\36d1bfcdc1632fa8fdc0a1e72e763a0f\Microsoft.Build.Framework.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 74752 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\36d1bfcdc1632fa8fdc0a1e72e763a0f\Microsoft.Build.Framework.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 60416 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiUserXp\00c50dd89debd099ed76d2be3c461967\ehiUserXp.ni.dll
- 2011-11-06 19:38 . 2011-11-06 19:38 60416 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiUserXp\00c50dd89debd099ed76d2be3c461967\ehiUserXp.ni.dll
- 2011-11-06 19:38 . 2011-11-06 19:38 14336 c:\windows\assembly\NativeImages_v2.0.50727_32\dfsvc\07b33a62990232f9df1cbe7078430571\dfsvc.ni.exe
+ 2012-03-27 11:30 . 2012-03-27 11:30 14336 c:\windows\assembly\NativeImages_v2.0.50727_32\dfsvc\07b33a62990232f9df1cbe7078430571\dfsvc.ni.exe
+ 2012-03-27 11:42 . 2012-03-27 11:42 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
- 2012-03-27 10:39 . 2012-03-27 10:39 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
+ 2012-03-27 11:42 . 2012-03-27 11:42 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2012-03-27 10:39 . 2012-03-27 10:39 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
- 2011-09-03 10:08 . 2012-03-27 10:39 262144 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
+ 2011-09-03 10:08 . 2012-03-27 11:42 262144 c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\IETldCache\index.dat
+ 2011-09-01 16:52 . 2012-03-27 11:38 257268 c:\windows\system32\wdi\SuspendPerformanceDiagnostics_SystemData_S3.bin
+ 2009-07-14 05:01 . 2012-03-27 11:40 442380 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
- 2009-07-14 05:01 . 2012-03-27 10:38 442380 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat
+ 2012-03-27 10:46 . 2012-03-27 10:46 633856 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLiveLocal.Wr#\6821dd32ab5af443894ece849ddfde3e\WindowsLiveLocal.WriterPlugin.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 633856 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLiveLocal.Wr#\6821dd32ab5af443894ece849ddfde3e\WindowsLiveLocal.WriterPlugin.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 319488 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\c6e5b906b55c14320c5ed0579e753bb0\WindowsLive.Writer.Interop.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 319488 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\c6e5b906b55c14320c5ed0579e753bb0\WindowsLive.Writer.Interop.ni.dll
- 2011-11-06 19:38 . 2011-11-06 19:38 313856 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\9cb75a37472b1b49cc82fddb7ab73313\WindowsLive.Writer.Interop.SHDocVw.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 313856 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\9cb75a37472b1b49cc82fddb7ab73313\WindowsLive.Writer.Interop.SHDocVw.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 258560 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\928dd94a23dbf34868a3d54b0b672457\WindowsLive.Writer.Mshtml.ni.dll
+ 2012-03-27 10:46 . 2012-03-27 10:46 258560 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\928dd94a23dbf34868a3d54b0b672457\WindowsLive.Writer.Mshtml.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 118784 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\8ff4541ba7e879b2770ba46b8e95992d\WindowsLive.Writer.Extensibility.ni.dll
+ 2012-03-27 10:46 . 2012-03-27 10:46 118784 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\8ff4541ba7e879b2770ba46b8e95992d\WindowsLive.Writer.Extensibility.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 843776 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\7c7dd299d92ea1ffb58622418703ad4f\WindowsLive.Writer.Controls.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 843776 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\7c7dd299d92ea1ffb58622418703ad4f\WindowsLive.Writer.Controls.ni.dll
+ 2012-03-27 10:46 . 2012-03-27 10:46 321536 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\5b7154846cba46868d0f1f0af477504f\WindowsLive.Writer.SpellChecker.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 321536 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\5b7154846cba46868d0f1f0af477504f\WindowsLive.Writer.SpellChecker.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 594944 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\50602fee3b3dea48c423e796f2e98601\WindowsLive.Writer.HtmlEditor.ni.dll
+ 2012-03-27 10:46 . 2012-03-27 10:46 594944 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\50602fee3b3dea48c423e796f2e98601\WindowsLive.Writer.HtmlEditor.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 174080 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\4fa3a96522ac00391c8fe9890f80b546\WindowsLive.Writer.BrowserControl.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 174080 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\4fa3a96522ac00391c8fe9890f80b546\WindowsLive.Writer.BrowserControl.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 334848 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\4b40a21037f8de7f9324e34a4f4fa710\WindowsLive.Writer.Interop.Mshtml.ni.dll
- 2011-11-06 19:38 . 2011-11-06 19:38 334848 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\4b40a21037f8de7f9324e34a4f4fa710\WindowsLive.Writer.Interop.Mshtml.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 428032 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\49b4852ecf295de8f73c6eade1c595c7\WindowsLive.Writer.Localization.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 428032 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\49b4852ecf295de8f73c6eade1c595c7\WindowsLive.Writer.Localization.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 108544 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\34c3f8e1e31dede829d7cbfcb9a05b3d\WindowsLive.Writer.Passport.ni.dll
+ 2012-03-27 10:46 . 2012-03-27 10:46 108544 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\34c3f8e1e31dede829d7cbfcb9a05b3d\WindowsLive.Writer.Passport.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 851968 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\30a275a018c813e4d91967cd0c84d44d\WindowsLive.Writer.BlogClient.ni.dll
+ 2012-03-27 10:46 . 2012-03-27 10:46 851968 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\30a275a018c813e4d91967cd0c84d44d\WindowsLive.Writer.BlogClient.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 119296 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\15724aa17ffae89dc775a4c1299c1057\WindowsLive.Writer.FileDestinations.ni.dll
+ 2012-03-27 10:46 . 2012-03-27 10:46 119296 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\15724aa17ffae89dc775a4c1299c1057\WindowsLive.Writer.FileDestinations.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 152064 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\148ffbdbaf8c8671ccd0488158e9a439\WindowsLive.Writer.HtmlParser.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 152064 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\148ffbdbaf8c8671ccd0488158e9a439\WindowsLive.Writer.HtmlParser.ni.dll
+ 2012-03-27 10:46 . 2012-03-27 10:46 117760 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\05f6da74dcbfb6b9445cd74e532bafef\WindowsLive.Writer.Instrumentation.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 117760 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\05f6da74dcbfb6b9445cd74e532bafef\WindowsLive.Writer.Instrumentation.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 145920 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Client\174f99f3feda0165422af287ca9826a4\WindowsLive.Client.ni.dll
+ 2012-03-27 10:46 . 2012-03-27 10:46 145920 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Client\174f99f3feda0165422af287ca9826a4\WindowsLive.Client.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 185344 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\a3f989a61ab0468876629134c49514b2\UIAutomationTypes.ni.dll
- 2011-11-06 16:11 . 2011-11-06 16:11 185344 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\a3f989a61ab0468876629134c49514b2\UIAutomationTypes.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 452096 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\ba4e07d92829d993edf510cc0930b005\UIAutomationClient.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 452096 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\ba4e07d92829d993edf510cc0930b005\UIAutomationClient.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 401408 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq\37d2f9198ad4e605f216bee3d1f58691\System.Xml.Linq.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 401408 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq\37d2f9198ad4e605f216bee3d1f58691\System.Xml.Linq.ni.dll
- 2012-02-21 08:36 . 2012-02-21 08:36 202240 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#\3235b159c025406d8b626db1aa09fad3\System.Web.RegularExpressions.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 202240 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#\3235b159c025406d8b626db1aa09fad3\System.Web.RegularExpressions.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 141312 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Abstract#\cbb814a6e75310a62c6bf57d0220fa0b\System.Web.Abstractions.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 141312 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Abstract#\cbb814a6e75310a62c6bf57d0220fa0b\System.Web.Abstractions.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 624128 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Net\e62d625a59508410f047266f3377a447\System.Net.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 624128 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Net\e62d625a59508410f047266f3377a447\System.Net.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 593408 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Messaging\184feff3d7c15c27ec0345d27c954cab\System.Messaging.ni.dll
+ 2012-03-27 11:30 . 2012-03-27 11:30 593408 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Messaging\184feff3d7c15c27ec0345d27c954cab\System.Messaging.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 997888 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management\0794d7af09099432ebfb51af1d7f15ae\System.Management.ni.dll
- 2012-02-21 08:42 . 2012-02-21 08:42 997888 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management\0794d7af09099432ebfb51af1d7f15ae\System.Management.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 330240 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management.I#\5487c4ce39dfd1712c6acbe72d74da8f\System.Management.Instrumentation.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 330240 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management.I#\5487c4ce39dfd1712c6acbe72d74da8f\System.Management.Instrumentation.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 381440 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IO.Log\603780605b24668dfd6e85d01b301459\System.IO.Log.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 381440 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IO.Log\603780605b24668dfd6e85d01b301459\System.IO.Log.ni.dll
+ 2012-03-27 11:30 . 2012-03-27 11:30 212992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityMode#\e5a4bc827a371428406fbc0a743bdbfe\System.IdentityModel.Selectors.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 212992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityMode#\e5a4bc827a371428406fbc0a743bdbfe\System.IdentityModel.Selectors.ni.dll
- 2012-02-21 08:36 . 2012-02-21 08:36 208384 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\1585bd27d37caf0c4becb2a94107c5e9\System.Drawing.Design.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 208384 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\1585bd27d37caf0c4becb2a94107c5e9\System.Drawing.Design.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 887808 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\a3ae72a9ded7bcee59d30e816554f410\System.DirectoryServices.AccountManagement.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 887808 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\a3ae72a9ded7bcee59d30e816554f410\System.DirectoryServices.AccountManagement.ni.dll
- 2012-02-21 08:36 . 2012-02-21 08:36 455680 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\798a88768617a3dc4436b1194a05c694\System.DirectoryServices.Protocols.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 455680 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\798a88768617a3dc4436b1194a05c694\System.DirectoryServices.Protocols.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 946176 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\d2629270057a355635f4c31c00aaf07a\System.Data.Services.Client.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 946176 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\d2629270057a355635f4c31c00aaf07a\System.Data.Services.Client.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 356864 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\1beb76511b6a67e342d65f42ff0815bd\System.Data.Services.Design.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 356864 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\1beb76511b6a67e342d65f42ff0815bd\System.Data.Services.Design.ni.dll
- 2012-02-21 08:47 . 2012-02-21 08:47 762880 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity.#\ec27ef869e1af9a4352594708b7cd7fb\System.Data.Entity.Design.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 762880 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity.#\ec27ef869e1af9a4352594708b7cd7fb\System.Data.Entity.Design.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 135680 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.DataSet#\5c88e22009cc6ffa451cb1ccd4a4b47e\System.Data.DataSetExtensions.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 135680 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.DataSet#\5c88e22009cc6ffa451cb1ccd4a4b47e\System.Data.DataSetExtensions.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 633344 c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn\64b7e2fa8a11164f2ae27b40e964907c\System.AddIn.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 633344 c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn\64b7e2fa8a11164f2ae27b40e964907c\System.AddIn.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 366080 c:\windows\assembly\NativeImages_v2.0.50727_32\SMSvcHost\d071f953feda1b725369da479830eb88\SMSvcHost.ni.exe
- 2012-02-21 08:46 . 2012-02-21 08:46 366080 c:\windows\assembly\NativeImages_v2.0.50727_32\SMSvcHost\d071f953feda1b725369da479830eb88\SMSvcHost.ni.exe
- 2012-02-21 08:44 . 2012-02-21 08:44 256000 c:\windows\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\eb46ff3a7098925dd3f0552901668735\SMDiagnostics.ni.dll
+ 2012-03-27 11:30 . 2012-03-27 11:30 256000 c:\windows\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\eb46ff3a7098925dd3f0552901668735\SMDiagnostics.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 224768 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\bcb224eff8a955d6e50c4c101a101c4a\PresentationFramework.Classic.ni.dll
- 2012-02-21 08:36 . 2012-02-21 08:36 224768 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\bcb224eff8a955d6e50c4c101a101c4a\PresentationFramework.Classic.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 368128 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\6954c7f14ea634672cdacf2cd793497e\PresentationFramework.Aero.ni.dll
- 2012-02-21 08:36 . 2012-02-21 08:36 368128 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\6954c7f14ea634672cdacf2cd793497e\PresentationFramework.Aero.ni.dll
- 2012-02-21 08:36 . 2012-02-21 08:36 258048 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\46e0bdf49703779e61f23d3654733369\PresentationFramework.Royale.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 258048 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\46e0bdf49703779e61f23d3654733369\PresentationFramework.Royale.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 539648 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\1450308c4daa43ac886a5daffda0fbf8\PresentationFramework.Luna.ni.dll
- 2012-02-21 08:36 . 2012-02-21 08:36 539648 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\1450308c4daa43ac886a5daffda0fbf8\PresentationFramework.Luna.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 723456 c:\windows\assembly\NativeImages_v2.0.50727_32\napsnap\ced701a3a48f6fca9e9fb48dbaff2ca9\napsnap.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 723456 c:\windows\assembly\NativeImages_v2.0.50727_32\napsnap\ced701a3a48f6fca9e9fb48dbaff2ca9\napsnap.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 117760 c:\windows\assembly\NativeImages_v2.0.50727_32\napinit\5f5e10bc18ec53327b8541d461be01d3\napinit.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 117760 c:\windows\assembly\NativeImages_v2.0.50727_32\napinit\5f5e10bc18ec53327b8541d461be01d3\napinit.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 114176 c:\windows\assembly\NativeImages_v2.0.50727_32\naphlpr\d82c431d8f0463c0dd5b143ebb0b7fcc\naphlpr.ni.dll
- 2011-11-06 19:39 . 2011-11-06 19:39 114176 c:\windows\assembly\NativeImages_v2.0.50727_32\naphlpr\d82c431d8f0463c0dd5b143ebb0b7fcc\naphlpr.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 133632 c:\windows\assembly\NativeImages_v2.0.50727_32\MSBuild\570958f58a7b129cd0144f68a729affe\MSBuild.ni.exe
- 2012-02-21 08:46 . 2012-02-21 08:46 133632 c:\windows\assembly\NativeImages_v2.0.50727_32\MSBuild\570958f58a7b129cd0144f68a729affe\MSBuild.ni.exe
+ 2012-03-27 11:31 . 2012-03-27 11:31 287232 c:\windows\assembly\NativeImages_v2.0.50727_32\MMCFxCommon\921c5ac836dabe56ffcaaed760b641f7\MMCFxCommon.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 287232 c:\windows\assembly\NativeImages_v2.0.50727_32\MMCFxCommon\921c5ac836dabe56ffcaaed760b641f7\MMCFxCommon.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 531456 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.WSMan.Man#\5c36d28013ebf02deffc516dbac752ce\Microsoft.WSMan.Management.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 531456 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.WSMan.Man#\5c36d28013ebf02deffc516dbac752ce\Microsoft.WSMan.Management.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 386560 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\4c35f544bfe27946fa0813c2334799ff\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 386560 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\4c35f544bfe27946fa0813c2334799ff\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 729088 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\ce2d651576a77738d881834836f9caf0\Microsoft.PowerShell.GraphicalHost.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 729088 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#
Re: Extrémně dlouhý start a ukončení windows
\ce2d651576a77738d881834836f9caf0\Microsoft.PowerShell.GraphicalHost.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 291328 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\aa066d912933afa738b7f35a1833f212\Microsoft.PowerShell.Commands.Diagnostics.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 291328 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\aa066d912933afa738b7f35a1833f212\Microsoft.PowerShell.Commands.Diagnostics.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 515584 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\53587eeda1839a02cbe0843aab741c3c\Microsoft.PowerShell.ConsoleHost.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 515584 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\53587eeda1839a02cbe0843aab741c3c\Microsoft.PowerShell.ConsoleHost.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 785920 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\30182b7642e5de6fe66d65768c20ee41\Microsoft.PowerShell.Commands.Management.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 785920 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\30182b7642e5de6fe66d65768c20ee41\Microsoft.PowerShell.Commands.Management.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 167424 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\18bcd4040b8e664cf9d8e5a7b8bd91ba\Microsoft.PowerShell.Security.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 167424 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\18bcd4040b8e664cf9d8e5a7b8bd91ba\Microsoft.PowerShell.Security.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 561664 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Managemen#\19f3e4fa2162474ccd21e4cae5349a0a\Microsoft.ManagementConsole.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 561664 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Managemen#\19f3e4fa2162474ccd21e4cae5349a0a\Microsoft.ManagementConsole.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 144384 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\f83d51fbc59eb8cbf1c9cd8046ce105a\Microsoft.Build.Utilities.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 144384 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\f83d51fbc59eb8cbf1c9cd8046ce105a\Microsoft.Build.Utilities.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 175104 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\7dcdedb09ce98ee880a1b4c5cc394b9f\Microsoft.Build.Utilities.v3.5.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 175104 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\7dcdedb09ce98ee880a1b4c5cc394b9f\Microsoft.Build.Utilities.v3.5.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 839680 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\895f4724a7b8c51c57262b9ee6ada525\Microsoft.Build.Engine.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 839680 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\895f4724a7b8c51c57262b9ee6ada525\Microsoft.Build.Engine.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 222720 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Con#\aa4ad0c8b50f5ae1304223cc464e335f\Microsoft.Build.Conversion.v3.5.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 222720 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Con#\aa4ad0c8b50f5ae1304223cc464e335f\Microsoft.Build.Conversion.v3.5.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 364032 c:\windows\assembly\NativeImages_v2.0.50727_32\mcstoredb\2aa4e27292ee3bb5eb469162491ca79c\mcstoredb.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 364032 c:\windows\assembly\NativeImages_v2.0.50727_32\mcstoredb\2aa4e27292ee3bb5eb469162491ca79c\mcstoredb.ni.dll
- 2012-02-21 08:42 . 2012-02-21 08:42 170496 c:\windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\39b4375aedece5f1a7fd2dc7792ea7a0\IsdiInterop.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 170496 c:\windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\39b4375aedece5f1a7fd2dc7792ea7a0\IsdiInterop.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 553472 c:\windows\assembly\NativeImages_v2.0.50727_32\EventViewer\b9e704d4f0a24ceffd38f7c3da8c154e\EventViewer.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 553472 c:\windows\assembly\NativeImages_v2.0.50727_32\EventViewer\b9e704d4f0a24ceffd38f7c3da8c154e\EventViewer.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 693248 c:\windows\assembly\NativeImages_v2.0.50727_32\ehRecObj\ce6bbabce153f04b967e48974dce3e46\ehRecObj.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 693248 c:\windows\assembly\NativeImages_v2.0.50727_32\ehRecObj\ce6bbabce153f04b967e48974dce3e46\ehRecObj.ni.dll
- 2011-11-06 19:38 . 2011-11-06 19:38 875520 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiVidCtl\834a40a7a64af82574eb4a08ad8c888f\ehiVidCtl.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 875520 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiVidCtl\834a40a7a64af82574eb4a08ad8c888f\ehiVidCtl.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 442880 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiProxy\d7cb05bc1b3ae306de88a42c372abb60\ehiProxy.ni.dll
- 2011-11-06 19:38 . 2011-11-06 19:38 442880 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiProxy\d7cb05bc1b3ae306de88a42c372abb60\ehiProxy.ni.dll
- 2011-11-06 19:38 . 2011-11-06 19:38 161280 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiExtens\d0744480733b33f48db1e8b2c0a4a6a3\ehiExtens.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 161280 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiExtens\d0744480733b33f48db1e8b2c0a4a6a3\ehiExtens.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 254464 c:\windows\assembly\NativeImages_v2.0.50727_32\ehExtHost32\4e67fa064c2e0480e78a0bfd0d64be4a\ehExtHost32.ni.exe
+ 2012-03-27 11:30 . 2012-03-27 11:30 254464 c:\windows\assembly\NativeImages_v2.0.50727_32\ehExtHost32\4e67fa064c2e0480e78a0bfd0d64be4a\ehExtHost32.ni.exe
- 2011-11-06 19:38 . 2011-11-06 19:38 220672 c:\windows\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\545f2e1ca544c2a8a39cbf8565e1c709\CustomMarshalers.ni.dll
+ 2012-03-27 11:30 . 2012-03-27 11:30 220672 c:\windows\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\545f2e1ca544c2a8a39cbf8565e1c709\CustomMarshalers.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 410112 c:\windows\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\3700bd4fd9d1acf376ed8ac435b49b68\ComSvcConfig.ni.exe
+ 2012-03-27 10:46 . 2012-03-27 10:46 410112 c:\windows\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\3700bd4fd9d1acf376ed8ac435b49b68\ComSvcConfig.ni.exe
+ 2012-03-27 10:45 . 2012-03-27 10:45 6392832 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\ba917f139b65f36c511a405ea452664b\WindowsLive.Writer.PostEditor.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 6392832 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\ba917f139b65f36c511a405ea452664b\WindowsLive.Writer.PostEditor.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 2002432 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\b8cf747f5cf284655141ab94b0e8ed0a\WindowsLive.Writer.CoreServices.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 2002432 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\b8cf747f5cf284655141ab94b0e8ed0a\WindowsLive.Writer.CoreServices.ni.dll
+ 2012-03-27 10:46 . 2012-03-27 10:46 1105408 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\28e22f8be49abe03972007d393788159\WindowsLive.Writer.ApplicationFramework.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 1105408 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\28e22f8be49abe03972007d393788159\WindowsLive.Writer.ApplicationFramework.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 2403840 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\295c56a93b0e0870aebea1e1ff6c8a1c\System.Web.Extensions.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 2403840 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\295c56a93b0e0870aebea1e1ff6c8a1c\System.Web.Extensions.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 1705984 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\dbe077c5cdcef7f2165db3d73265272c\System.ServiceModel.Web.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 1705984 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\dbe077c5cdcef7f2165db3d73265272c\System.ServiceModel.Web.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 2347008 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\a221123a83601a4a964218b3bd3f4fa6\System.Runtime.Serialization.ni.dll
+ 2012-03-27 11:30 . 2012-03-27 11:30 2347008 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\a221123a83601a4a964218b3bd3f4fa6\System.Runtime.Serialization.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 1035776 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Printing\378d6092f62088bb4c6df0c3b08738b8\System.Printing.ni.dll
- 2012-02-21 08:35 . 2012-02-21 08:35 1035776 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Printing\378d6092f62088bb4c6df0c3b08738b8\System.Printing.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 8871936 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management.A#\8fcf38adbfd33eef8396282da128b0e8\System.Management.Automation.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 8871936 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management.A#\8fcf38adbfd33eef8396282da128b0e8\System.Management.Automation.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 1072128 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\44d15a5bcd3143d53fd67b871c728616\System.IdentityModel.ni.dll
+ 2012-03-27 11:30 . 2012-03-27 11:30 1072128 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\44d15a5bcd3143d53fd67b871c728616\System.IdentityModel.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 1328640 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Services\dce37eabe9bb4bd40a8393179071d3b5\System.Data.Services.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 1328640 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Services\dce37eabe9bb4bd40a8393179071d3b5\System.Data.Services.ni.dll
- 2012-02-21 08:36 . 2012-02-21 08:36 1116672 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.OracleC#\d2dff86b5456eccada29a351a227ba44\System.Data.OracleClient.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 1116672 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.OracleC#\d2dff86b5456eccada29a351a227ba44\System.Data.OracleClient.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 2516992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Linq\dfb2b5f2ce8da373b076adcf6fc39f47\System.Data.Linq.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 2516992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Linq\dfb2b5f2ce8da373b076adcf6fc39f47\System.Data.Linq.ni.dll
- 2012-02-21 08:47 . 2012-02-21 08:47 9921024 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity\433bb06af0bef1a0b4c275c5c126eb04\System.Data.Entity.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 9921024 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity\433bb06af0bef1a0b4c275c5c126eb04\System.Data.Entity.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 2295296 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Core\a25e06e527720656434230d3ee420427\System.Core.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 2295296 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Core\a25e06e527720656434230d3ee420427\System.Core.ni.dll
- 2012-02-21 08:35 . 2012-02-21 08:35 2147328 c:\windows\assembly\NativeImages_v2.0.50727_32\ReachFramework\98f8b2daee55f5bfbd8dbb0b54e4d9a6\ReachFramework.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 2147328 c:\windows\assembly\NativeImages_v2.0.50727_32\ReachFramework\98f8b2daee55f5bfbd8dbb0b54e4d9a6\ReachFramework.ni.dll
- 2012-02-21 08:35 . 2012-02-21 08:35 1658368 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\bb6c78075c09c3687df6d5de89e4dfad\PresentationUI.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 1658368 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\bb6c78075c09c3687df6d5de89e4dfad\PresentationUI.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 1449984 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationBuildTa#\ce4a36b917a8cd24d1424e179ce7f36f\PresentationBuildTasks.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 1449984 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationBuildTa#\ce4a36b917a8cd24d1424e179ce7f36f\PresentationBuildTasks.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 2623488 c:\windows\assembly\NativeImages_v2.0.50727_32\Narrator\66f20ce02a8f1e7a694573367a7eddb9\Narrator.ni.exe
- 2012-02-21 08:46 . 2012-02-21 08:46 2623488 c:\windows\assembly\NativeImages_v2.0.50727_32\Narrator\66f20ce02a8f1e7a694573367a7eddb9\Narrator.ni.exe
- 2012-02-21 08:46 . 2012-02-21 08:46 1545216 c:\windows\assembly\NativeImages_v2.0.50727_32\MMCEx\a51531417c51271078f842827a26c99c\MMCEx.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 1545216 c:\windows\assembly\NativeImages_v2.0.50727_32\MMCEx\a51531417c51271078f842827a26c99c\MMCEx.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 6434304 c:\windows\assembly\NativeImages_v2.0.50727_32\MIGUIControls\acdc9c9f34623e58e9acca16034b0512\MIGUIControls.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 6434304 c:\windows\assembly\NativeImages_v2.0.50727_32\MIGUIControls\acdc9c9f34623e58e9acca16034b0512\MIGUIControls.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 1670144 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\4745cd79cd87ef98af5163b152088e28\Microsoft.VisualBasic.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 1670144 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\4745cd79cd87ef98af5163b152088e28\Microsoft.VisualBasic.ni.dll
+ 2012-03-27 11:30 . 2012-03-27 11:30 1092608 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\c614532b38e34d7f4b952819f8bfa7c8\Microsoft.Transactions.Bridge.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 1092608 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\c614532b38e34d7f4b952819f8bfa7c8\Microsoft.Transactions.Bridge.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 1705472 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\d3f39090f2a2686fd971970183e3ae49\Microsoft.PowerShell.GPowerShell.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 1705472 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\d3f39090f2a2686fd971970183e3ae49\Microsoft.PowerShell.GPowerShell.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 1681920 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\8ec0afbea5cbd2ce072ced4b778e50b9\Microsoft.PowerShell.Commands.Utility.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 1681920 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\8ec0afbea5cbd2ce072ced4b778e50b9\Microsoft.PowerShell.Commands.Utility.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 3724288 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\2ca257d49d5bdd6d04c45cb086f22d4b\Microsoft.PowerShell.Editor.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 3724288 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\2ca257d49d5bdd6d04c45cb086f22d4b\Microsoft.PowerShell.Editor.ni.dll
+ 2012-03-27 11:30 . 2012-03-27 11:30 1009664 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.MediaCent#\db9d6e283344291ab71cb94015294a39\Microsoft.MediaCenter.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 1009664 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.MediaCent#\db9d6e283344291ab71cb94015294a39\Microsoft.MediaCenter.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 6499840 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.MediaCent#\a9d9608aba73e52c1163523848a54e9b\Microsoft.MediaCenter.UI.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 6499840 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.MediaCent#\a9d9608aba73e52c1163523848a54e9b\Microsoft.MediaCenter.UI.ni.dll
- 2012-02-21 08:42 . 2012-02-21 08:42 2332672 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.JScript\dd8c9dad457c919a28c818d5f6f2d457\Microsoft.JScript.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 2332672 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.JScript\dd8c9dad457c919a28c818d5f6f2d457\Microsoft.JScript.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 1361408 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Ink\fc50bce0e1ed23371ece4d8863086c25\Microsoft.Ink.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 1361408 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Ink\fc50bce0e1ed23371ece4d8863086c25\Microsoft.Ink.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 1620992 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\c70384fb53daf2c28d8a641f76c06d0e\Microsoft.Build.Tasks.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 1620992 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\c70384fb53daf2c28d8a641f76c06d0e\Microsoft.Build.Tasks.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 1966080 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\9bea316c60079f4ac7ce0353f312874f\Microsoft.Build.Tasks.v3.5.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 1966080 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\9bea316c60079f4ac7ce0353f312874f\Microsoft.Build.Tasks.v3.5.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 1888768 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\154f4214ffb1488ed7fadf6381100569\Microsoft.Build.Engine.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 1888768 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\154f4214ffb1488ed7fadf6381100569\Microsoft.Build.Engine.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 2035712 c:\windows\assembly\NativeImages_v2.0.50727_32\mcstore\c76b5554d3df1691a29c8916ca722104\mcstore.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 2035712 c:\windows\assembly\NativeImages_v2.0.50727_32\mcstore\c76b5554d3df1691a29c8916ca722104\mcstore.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 3025920 c:\windows\assembly\NativeImages_v2.0.50727_32\mcepg\2e569d0399135f239df7fd3f4d51c956\mcepg.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 3025920 c:\windows\assembly\NativeImages_v2.0.50727_32\mcepg\2e569d0399135f239df7fd3f4d51c956\mcepg.ni.dll
+ 2009-07-14 02:34 . 2012-03-27 10:54 10485760 c:\windows\system32\SMI\Store\Machine\SCHEMA.DAT
- 2009-07-14 02:34 . 2012-03-27 10:34 10485760 c:\windows\system32\SMI\Store\Machine\SCHEMA.DAT
+ 2011-09-03 17:12 . 2012-03-27 11:40 13132844 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-69090556-3312005029-2845111831-1000-8192.dat
+ 2012-03-27 11:30 . 2012-03-27 11:30 17400320 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\3623247db0c19cd14589e6f4d6cfb290\System.ServiceModel.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 17400320 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\3623247db0c19cd14589e6f4d6cfb290\System.ServiceModel.ni.dll
- 2012-02-21 08:36 . 2012-02-21 08:36 10578432 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Design\2de1178a4e6c8d13ae1994dc67ba657a\System.Design.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 10578432 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Design\2de1178a4e6c8d13ae1994dc67ba657a\System.Design.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 14322688 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\8435718626a24beaeefc98d45ae77127\PresentationFramework.ni.dll
- 2012-02-21 08:35 . 2012-02-21 08:35 14322688 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\8435718626a24beaeefc98d45ae77127\PresentationFramework.ni.dll
- 2012-02-21 08:34 . 2012-02-21 08:34 12216320 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\c0508b05f5c28e37711f447a66368e75\PresentationCore.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 12216320 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\c0508b05f5c28e37711f447a66368e75\PresentationCore.ni.dll
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-05-16 153136]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2011-10-13 17351304]
"DAEMON Tools Pro Agent"="c:\program files (x86)\DAEMON Tools Pro\DTProAgent.exe" [2009-12-16 312640]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2010-03-04 284696]
"MGSysCtrl"="c:\program files (x86)\System Control Manager\MGSysCtrl.exe" [2010-02-05 2408448]
"ArcSoft Connection Service"="c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe" [2010-10-27 207424]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-03-06 4241512]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-01-03 37296]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-02 843712]
"LogMeIn Hamachi Ui"="c:\program files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" [2012-02-28 1987976]
"Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-01-13 460872]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
R2 Autodesk Content Service;Autodesk Content Service;c:\program files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2011-02-02 18656]
R3 1394hub;1394 Enabled Hub;c:\windows\System32\svchost.exe [2009-07-14 27136]
R3 EUCR;EUCR;c:\windows\system32\DRIVERS\EUCR6SK.SYS [x]
R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;c:\program files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2012-03-25 1431888]
R3 GGSAFERDriver;GGSAFER Driver;c:\program files (x86)\Garena Classic\safedrv.sys [x]
R3 MGHwCtrl;MGHwCtrl;c:\program files\msi\msi Software Install\MGHwCtrl.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S0 sptd;sptd;c:\windows\System32\[list=]Drivers\sptd.sys [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [2012-02-28 2343816]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-04 13336]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-01-13 652360]
S2 Micro Star SCM;Micro Star SCM;c:\program files (x86)\System Control Manager\MSIService.exe [2009-07-09 160768]
S2 PCSUService;PC Speed Up Service;c:\program files (x86)\Zrychleni Pocitace\PCSUService.exe [2011-11-07 235232]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-10-01 2320920]
S3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect;c:\windows\system32\DRIVERS\ArcSoftKsUFilter.sys [x]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [x]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [x]
.
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-03-06 23:15 135408 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2009-07-02 7938080]
"Skytel"="c:\program files\Realtek\Audio\HDA\Skytel.exe" [2009-07-02 1833504]
"SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [BU]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-04-10 167256]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-04-10 391512]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-04-10 415064]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.cz/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\eedetg9o.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.cz/
FF - prefs.js: network.proxy.type - 0
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
.
.
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
c:\windows\SysWOW64\DRIVERS\CDANTSRV.EXE
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
c:\program files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\program files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
c:\program files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
c:\program files (x86)\Mozilla Firefox\firefox.exe
.
**************************************************************************
.
Celkový čas: 2012-03-27 14:01:05 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-03-27 12:00
ComboFix2.txt 2012-03-27 10:47
.
Před spuštěním: Volných bajtů: 219 614 515 200
Po spuštění: Volných bajtů: 219 233 521 664
.
- - End Of File - - ABAAAE31595888A40B8B51273D737858[/list]
- 2012-02-21 08:45 . 2012-02-21 08:45 291328 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\aa066d912933afa738b7f35a1833f212\Microsoft.PowerShell.Commands.Diagnostics.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 291328 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\aa066d912933afa738b7f35a1833f212\Microsoft.PowerShell.Commands.Diagnostics.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 515584 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\53587eeda1839a02cbe0843aab741c3c\Microsoft.PowerShell.ConsoleHost.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 515584 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\53587eeda1839a02cbe0843aab741c3c\Microsoft.PowerShell.ConsoleHost.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 785920 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\30182b7642e5de6fe66d65768c20ee41\Microsoft.PowerShell.Commands.Management.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 785920 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\30182b7642e5de6fe66d65768c20ee41\Microsoft.PowerShell.Commands.Management.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 167424 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\18bcd4040b8e664cf9d8e5a7b8bd91ba\Microsoft.PowerShell.Security.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 167424 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\18bcd4040b8e664cf9d8e5a7b8bd91ba\Microsoft.PowerShell.Security.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 561664 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Managemen#\19f3e4fa2162474ccd21e4cae5349a0a\Microsoft.ManagementConsole.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 561664 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Managemen#\19f3e4fa2162474ccd21e4cae5349a0a\Microsoft.ManagementConsole.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 144384 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\f83d51fbc59eb8cbf1c9cd8046ce105a\Microsoft.Build.Utilities.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 144384 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\f83d51fbc59eb8cbf1c9cd8046ce105a\Microsoft.Build.Utilities.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 175104 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\7dcdedb09ce98ee880a1b4c5cc394b9f\Microsoft.Build.Utilities.v3.5.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 175104 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\7dcdedb09ce98ee880a1b4c5cc394b9f\Microsoft.Build.Utilities.v3.5.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 839680 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\895f4724a7b8c51c57262b9ee6ada525\Microsoft.Build.Engine.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 839680 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\895f4724a7b8c51c57262b9ee6ada525\Microsoft.Build.Engine.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 222720 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Con#\aa4ad0c8b50f5ae1304223cc464e335f\Microsoft.Build.Conversion.v3.5.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 222720 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Con#\aa4ad0c8b50f5ae1304223cc464e335f\Microsoft.Build.Conversion.v3.5.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 364032 c:\windows\assembly\NativeImages_v2.0.50727_32\mcstoredb\2aa4e27292ee3bb5eb469162491ca79c\mcstoredb.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 364032 c:\windows\assembly\NativeImages_v2.0.50727_32\mcstoredb\2aa4e27292ee3bb5eb469162491ca79c\mcstoredb.ni.dll
- 2012-02-21 08:42 . 2012-02-21 08:42 170496 c:\windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\39b4375aedece5f1a7fd2dc7792ea7a0\IsdiInterop.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 170496 c:\windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\39b4375aedece5f1a7fd2dc7792ea7a0\IsdiInterop.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 553472 c:\windows\assembly\NativeImages_v2.0.50727_32\EventViewer\b9e704d4f0a24ceffd38f7c3da8c154e\EventViewer.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 553472 c:\windows\assembly\NativeImages_v2.0.50727_32\EventViewer\b9e704d4f0a24ceffd38f7c3da8c154e\EventViewer.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 693248 c:\windows\assembly\NativeImages_v2.0.50727_32\ehRecObj\ce6bbabce153f04b967e48974dce3e46\ehRecObj.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 693248 c:\windows\assembly\NativeImages_v2.0.50727_32\ehRecObj\ce6bbabce153f04b967e48974dce3e46\ehRecObj.ni.dll
- 2011-11-06 19:38 . 2011-11-06 19:38 875520 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiVidCtl\834a40a7a64af82574eb4a08ad8c888f\ehiVidCtl.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 875520 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiVidCtl\834a40a7a64af82574eb4a08ad8c888f\ehiVidCtl.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 442880 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiProxy\d7cb05bc1b3ae306de88a42c372abb60\ehiProxy.ni.dll
- 2011-11-06 19:38 . 2011-11-06 19:38 442880 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiProxy\d7cb05bc1b3ae306de88a42c372abb60\ehiProxy.ni.dll
- 2011-11-06 19:38 . 2011-11-06 19:38 161280 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiExtens\d0744480733b33f48db1e8b2c0a4a6a3\ehiExtens.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 161280 c:\windows\assembly\NativeImages_v2.0.50727_32\ehiExtens\d0744480733b33f48db1e8b2c0a4a6a3\ehiExtens.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 254464 c:\windows\assembly\NativeImages_v2.0.50727_32\ehExtHost32\4e67fa064c2e0480e78a0bfd0d64be4a\ehExtHost32.ni.exe
+ 2012-03-27 11:30 . 2012-03-27 11:30 254464 c:\windows\assembly\NativeImages_v2.0.50727_32\ehExtHost32\4e67fa064c2e0480e78a0bfd0d64be4a\ehExtHost32.ni.exe
- 2011-11-06 19:38 . 2011-11-06 19:38 220672 c:\windows\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\545f2e1ca544c2a8a39cbf8565e1c709\CustomMarshalers.ni.dll
+ 2012-03-27 11:30 . 2012-03-27 11:30 220672 c:\windows\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\545f2e1ca544c2a8a39cbf8565e1c709\CustomMarshalers.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 410112 c:\windows\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\3700bd4fd9d1acf376ed8ac435b49b68\ComSvcConfig.ni.exe
+ 2012-03-27 10:46 . 2012-03-27 10:46 410112 c:\windows\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\3700bd4fd9d1acf376ed8ac435b49b68\ComSvcConfig.ni.exe
+ 2012-03-27 10:45 . 2012-03-27 10:45 6392832 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\ba917f139b65f36c511a405ea452664b\WindowsLive.Writer.PostEditor.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 6392832 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\ba917f139b65f36c511a405ea452664b\WindowsLive.Writer.PostEditor.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 2002432 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\b8cf747f5cf284655141ab94b0e8ed0a\WindowsLive.Writer.CoreServices.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 2002432 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\b8cf747f5cf284655141ab94b0e8ed0a\WindowsLive.Writer.CoreServices.ni.dll
+ 2012-03-27 10:46 . 2012-03-27 10:46 1105408 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\28e22f8be49abe03972007d393788159\WindowsLive.Writer.ApplicationFramework.ni.dll
- 2012-02-21 08:43 . 2012-02-21 08:43 1105408 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsLive.Writer.#\28e22f8be49abe03972007d393788159\WindowsLive.Writer.ApplicationFramework.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 2403840 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\295c56a93b0e0870aebea1e1ff6c8a1c\System.Web.Extensions.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 2403840 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\295c56a93b0e0870aebea1e1ff6c8a1c\System.Web.Extensions.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 1705984 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\dbe077c5cdcef7f2165db3d73265272c\System.ServiceModel.Web.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 1705984 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\dbe077c5cdcef7f2165db3d73265272c\System.ServiceModel.Web.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 2347008 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\a221123a83601a4a964218b3bd3f4fa6\System.Runtime.Serialization.ni.dll
+ 2012-03-27 11:30 . 2012-03-27 11:30 2347008 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\a221123a83601a4a964218b3bd3f4fa6\System.Runtime.Serialization.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 1035776 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Printing\378d6092f62088bb4c6df0c3b08738b8\System.Printing.ni.dll
- 2012-02-21 08:35 . 2012-02-21 08:35 1035776 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Printing\378d6092f62088bb4c6df0c3b08738b8\System.Printing.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 8871936 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management.A#\8fcf38adbfd33eef8396282da128b0e8\System.Management.Automation.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 8871936 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management.A#\8fcf38adbfd33eef8396282da128b0e8\System.Management.Automation.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 1072128 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\44d15a5bcd3143d53fd67b871c728616\System.IdentityModel.ni.dll
+ 2012-03-27 11:30 . 2012-03-27 11:30 1072128 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\44d15a5bcd3143d53fd67b871c728616\System.IdentityModel.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 1328640 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Services\dce37eabe9bb4bd40a8393179071d3b5\System.Data.Services.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 1328640 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Services\dce37eabe9bb4bd40a8393179071d3b5\System.Data.Services.ni.dll
- 2012-02-21 08:36 . 2012-02-21 08:36 1116672 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.OracleC#\d2dff86b5456eccada29a351a227ba44\System.Data.OracleClient.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 1116672 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.OracleC#\d2dff86b5456eccada29a351a227ba44\System.Data.OracleClient.ni.dll
- 2012-02-21 08:48 . 2012-02-21 08:48 2516992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Linq\dfb2b5f2ce8da373b076adcf6fc39f47\System.Data.Linq.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 2516992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Linq\dfb2b5f2ce8da373b076adcf6fc39f47\System.Data.Linq.ni.dll
- 2012-02-21 08:47 . 2012-02-21 08:47 9921024 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity\433bb06af0bef1a0b4c275c5c126eb04\System.Data.Entity.ni.dll
+ 2012-03-27 11:34 . 2012-03-27 11:34 9921024 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity\433bb06af0bef1a0b4c275c5c126eb04\System.Data.Entity.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 2295296 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Core\a25e06e527720656434230d3ee420427\System.Core.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 2295296 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Core\a25e06e527720656434230d3ee420427\System.Core.ni.dll
- 2012-02-21 08:35 . 2012-02-21 08:35 2147328 c:\windows\assembly\NativeImages_v2.0.50727_32\ReachFramework\98f8b2daee55f5bfbd8dbb0b54e4d9a6\ReachFramework.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 2147328 c:\windows\assembly\NativeImages_v2.0.50727_32\ReachFramework\98f8b2daee55f5bfbd8dbb0b54e4d9a6\ReachFramework.ni.dll
- 2012-02-21 08:35 . 2012-02-21 08:35 1658368 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\bb6c78075c09c3687df6d5de89e4dfad\PresentationUI.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 1658368 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\bb6c78075c09c3687df6d5de89e4dfad\PresentationUI.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 1449984 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationBuildTa#\ce4a36b917a8cd24d1424e179ce7f36f\PresentationBuildTasks.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 1449984 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationBuildTa#\ce4a36b917a8cd24d1424e179ce7f36f\PresentationBuildTasks.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 2623488 c:\windows\assembly\NativeImages_v2.0.50727_32\Narrator\66f20ce02a8f1e7a694573367a7eddb9\Narrator.ni.exe
- 2012-02-21 08:46 . 2012-02-21 08:46 2623488 c:\windows\assembly\NativeImages_v2.0.50727_32\Narrator\66f20ce02a8f1e7a694573367a7eddb9\Narrator.ni.exe
- 2012-02-21 08:46 . 2012-02-21 08:46 1545216 c:\windows\assembly\NativeImages_v2.0.50727_32\MMCEx\a51531417c51271078f842827a26c99c\MMCEx.ni.dll
+ 2012-03-27 11:33 . 2012-03-27 11:33 1545216 c:\windows\assembly\NativeImages_v2.0.50727_32\MMCEx\a51531417c51271078f842827a26c99c\MMCEx.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 6434304 c:\windows\assembly\NativeImages_v2.0.50727_32\MIGUIControls\acdc9c9f34623e58e9acca16034b0512\MIGUIControls.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 6434304 c:\windows\assembly\NativeImages_v2.0.50727_32\MIGUIControls\acdc9c9f34623e58e9acca16034b0512\MIGUIControls.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 1670144 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\4745cd79cd87ef98af5163b152088e28\Microsoft.VisualBasic.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 1670144 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\4745cd79cd87ef98af5163b152088e28\Microsoft.VisualBasic.ni.dll
+ 2012-03-27 11:30 . 2012-03-27 11:30 1092608 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\c614532b38e34d7f4b952819f8bfa7c8\Microsoft.Transactions.Bridge.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 1092608 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\c614532b38e34d7f4b952819f8bfa7c8\Microsoft.Transactions.Bridge.ni.dll
- 2012-02-21 08:46 . 2012-02-21 08:46 1705472 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\d3f39090f2a2686fd971970183e3ae49\Microsoft.PowerShell.GPowerShell.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 1705472 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\d3f39090f2a2686fd971970183e3ae49\Microsoft.PowerShell.GPowerShell.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 1681920 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\8ec0afbea5cbd2ce072ced4b778e50b9\Microsoft.PowerShell.Commands.Utility.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 1681920 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\8ec0afbea5cbd2ce072ced4b778e50b9\Microsoft.PowerShell.Commands.Utility.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 3724288 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\2ca257d49d5bdd6d04c45cb086f22d4b\Microsoft.PowerShell.Editor.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 3724288 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.PowerShel#\2ca257d49d5bdd6d04c45cb086f22d4b\Microsoft.PowerShell.Editor.ni.dll
+ 2012-03-27 11:30 . 2012-03-27 11:30 1009664 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.MediaCent#\db9d6e283344291ab71cb94015294a39\Microsoft.MediaCenter.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 1009664 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.MediaCent#\db9d6e283344291ab71cb94015294a39\Microsoft.MediaCenter.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 6499840 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.MediaCent#\a9d9608aba73e52c1163523848a54e9b\Microsoft.MediaCenter.UI.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 6499840 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.MediaCent#\a9d9608aba73e52c1163523848a54e9b\Microsoft.MediaCenter.UI.ni.dll
- 2012-02-21 08:42 . 2012-02-21 08:42 2332672 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.JScript\dd8c9dad457c919a28c818d5f6f2d457\Microsoft.JScript.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 2332672 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.JScript\dd8c9dad457c919a28c818d5f6f2d457\Microsoft.JScript.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 1361408 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Ink\fc50bce0e1ed23371ece4d8863086c25\Microsoft.Ink.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 1361408 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Ink\fc50bce0e1ed23371ece4d8863086c25\Microsoft.Ink.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 1620992 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\c70384fb53daf2c28d8a641f76c06d0e\Microsoft.Build.Tasks.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 1620992 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\c70384fb53daf2c28d8a641f76c06d0e\Microsoft.Build.Tasks.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 1966080 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\9bea316c60079f4ac7ce0353f312874f\Microsoft.Build.Tasks.v3.5.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 1966080 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\9bea316c60079f4ac7ce0353f312874f\Microsoft.Build.Tasks.v3.5.ni.dll
- 2012-02-21 08:45 . 2012-02-21 08:45 1888768 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\154f4214ffb1488ed7fadf6381100569\Microsoft.Build.Engine.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 1888768 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\154f4214ffb1488ed7fadf6381100569\Microsoft.Build.Engine.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 2035712 c:\windows\assembly\NativeImages_v2.0.50727_32\mcstore\c76b5554d3df1691a29c8916ca722104\mcstore.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 2035712 c:\windows\assembly\NativeImages_v2.0.50727_32\mcstore\c76b5554d3df1691a29c8916ca722104\mcstore.ni.dll
+ 2012-03-27 11:31 . 2012-03-27 11:31 3025920 c:\windows\assembly\NativeImages_v2.0.50727_32\mcepg\2e569d0399135f239df7fd3f4d51c956\mcepg.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 3025920 c:\windows\assembly\NativeImages_v2.0.50727_32\mcepg\2e569d0399135f239df7fd3f4d51c956\mcepg.ni.dll
+ 2009-07-14 02:34 . 2012-03-27 10:54 10485760 c:\windows\system32\SMI\Store\Machine\SCHEMA.DAT
- 2009-07-14 02:34 . 2012-03-27 10:34 10485760 c:\windows\system32\SMI\Store\Machine\SCHEMA.DAT
+ 2011-09-03 17:12 . 2012-03-27 11:40 13132844 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-S-1-5-21-69090556-3312005029-2845111831-1000-8192.dat
+ 2012-03-27 11:30 . 2012-03-27 11:30 17400320 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\3623247db0c19cd14589e6f4d6cfb290\System.ServiceModel.ni.dll
- 2012-02-21 08:44 . 2012-02-21 08:44 17400320 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\3623247db0c19cd14589e6f4d6cfb290\System.ServiceModel.ni.dll
- 2012-02-21 08:36 . 2012-02-21 08:36 10578432 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Design\2de1178a4e6c8d13ae1994dc67ba657a\System.Design.ni.dll
+ 2012-03-27 10:45 . 2012-03-27 10:45 10578432 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Design\2de1178a4e6c8d13ae1994dc67ba657a\System.Design.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 14322688 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\8435718626a24beaeefc98d45ae77127\PresentationFramework.ni.dll
- 2012-02-21 08:35 . 2012-02-21 08:35 14322688 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\8435718626a24beaeefc98d45ae77127\PresentationFramework.ni.dll
- 2012-02-21 08:34 . 2012-02-21 08:34 12216320 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\c0508b05f5c28e37711f447a66368e75\PresentationCore.ni.dll
+ 2012-03-27 11:32 . 2012-03-27 11:32 12216320 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\c0508b05f5c28e37711f447a66368e75\PresentationCore.ni.dll
.
-- Snímek resetován k současnému datu --
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="c:\program files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-05-16 153136]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2011-10-13 17351304]
"DAEMON Tools Pro Agent"="c:\program files (x86)\DAEMON Tools Pro\DTProAgent.exe" [2009-12-16 312640]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2010-03-04 284696]
"MGSysCtrl"="c:\program files (x86)\System Control Manager\MGSysCtrl.exe" [2010-02-05 2408448]
"ArcSoft Connection Service"="c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe" [2010-10-27 207424]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2012-03-06 4241512]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-01-03 37296]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-02 843712]
"LogMeIn Hamachi Ui"="c:\program files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" [2012-02-28 1987976]
"Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-01-13 460872]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
R2 Autodesk Content Service;Autodesk Content Service;c:\program files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2011-02-02 18656]
R3 1394hub;1394 Enabled Hub;c:\windows\System32\svchost.exe [2009-07-14 27136]
R3 EUCR;EUCR;c:\windows\system32\DRIVERS\EUCR6SK.SYS [x]
R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;c:\program files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2012-03-25 1431888]
R3 GGSAFERDriver;GGSAFER Driver;c:\program files (x86)\Garena Classic\safedrv.sys [x]
R3 MGHwCtrl;MGHwCtrl;c:\program files\msi\msi Software Install\MGHwCtrl.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe [x]
S0 sptd;sptd;c:\windows\System32\[list=]Drivers\sptd.sys [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [x]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [2012-02-28 2343816]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-04 13336]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-01-13 652360]
S2 Micro Star SCM;Micro Star SCM;c:\program files (x86)\System Control Manager\MSIService.exe [2009-07-09 160768]
S2 PCSUService;PC Speed Up Service;c:\program files (x86)\Zrychleni Pocitace\PCSUService.exe [2011-11-07 235232]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2009-10-01 2320920]
S3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect;c:\windows\system32\DRIVERS\ArcSoftKsUFilter.sys [x]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys [x]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys [x]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [x]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\DRIVERS\vwifimp.sys [x]
.
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2012-03-06 23:15 135408 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2009-07-02 7938080]
"Skytel"="c:\program files\Realtek\Audio\HDA\Skytel.exe" [2009-07-02 1833504]
"SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [BU]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-04-10 167256]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-04-10 391512]
"Persistence"="c:\windows\system32\igfxpers.exe" [2011-04-10 415064]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.cz/
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\eedetg9o.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.cz/
FF - prefs.js: network.proxy.type - 0
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Toolbar-Locked - (no file)
.
.
.
------------------------ Jiné spuštené procesy ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
c:\windows\SysWOW64\DRIVERS\CDANTSRV.EXE
c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
c:\program files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\program files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
c:\program files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
c:\program files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
c:\program files (x86)\Mozilla Firefox\firefox.exe
.
**************************************************************************
.
Celkový čas: 2012-03-27 14:01:05 - počítač byl restartován
ComboFix-quarantined-files.txt 2012-03-27 12:00
ComboFix2.txt 2012-03-27 10:47
.
Před spuštěním: Volných bajtů: 219 614 515 200
Po spuštění: Volných bajtů: 219 233 521 664
.
- - End Of File - - ABAAAE31595888A40B8B51273D737858[/list]
- Žbeky
- Moderátor
-
Guru Level 13
- Příspěvky: 22288
- Registrován: květen 08
- Bydliště: Vsetín - Pardubice
- Pohlaví:
- Stav:
Offline
Re: Extrémně dlouhý start a ukončení windows
c:\614d7f8c6d872be111ee znáš?
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
Re: Extrémně dlouhý start a ukončení windows
nic mi to nerika
je to nejaka slozka kde je nekolik xhtml scriptu a asi 5 knihoven.
je to nejaka slozka kde je nekolik xhtml scriptu a asi 5 knihoven.
- Žbeky
- Moderátor
-
Guru Level 13
- Příspěvky: 22288
- Registrován: květen 08
- Bydliště: Vsetín - Pardubice
- Pohlaví:
- Stav:
Offline
Re: Extrémně dlouhý start a ukončení windows
Vím co tam je. Ale taky mi to nic neříká. Zararuj ji pro zálohu a smaž ji
ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall
vyčisti systém CCleanerem
a použij i T-Cleaner
smaže vše po Combu,MWAVu atd.-stáhneš>spustíš
pozn. před stažením T-Cleaneru a po dobu čištění deaktivuj AVG , Avast,Avira či Microsoft Security Essentials následně T-Cleaner smaž a zapni si AVG , Avast, Avira či Microsoft Security Essentials
+ Nový log z HJT
Jak se chová PC?
ComboFix se odinstaluje takto:
Start-Spustit a zadej ComboFix /Uninstall
vyčisti systém CCleanerem
a použij i T-Cleaner
smaže vše po Combu,MWAVu atd.-stáhneš>spustíš
pozn. před stažením T-Cleaneru a po dobu čištění deaktivuj AVG , Avast,Avira či Microsoft Security Essentials následně T-Cleaner smaž a zapni si AVG , Avast, Avira či Microsoft Security Essentials
+ Nový log z HJT
Jak se chová PC?
V SZ řeším jen záležitosti týkající se fóra. Na prosby a žádosti o technickou podporu nereaguji. Díky za pochopení.
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
HiJackThis + návod - HW Monitor - Jak označit příspěvek za vyřešený - Pravidla fóra
Re: Extrémně dlouhý start a ukončení windows
HJT:
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:11:06, on 1.4.2012
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files (x86)\DAEMON Tools Pro\DTProAgent.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\System Control Manager\MGSysCtrl.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Users\Michal\Desktop\HiJackThis.exe
C:\windows\SysWOW64\DllHost.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [MGSysCtrl] C:\Program Files (x86)\System Control Manager\MGSysCtrl.exe
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "C:\Program Files (x86)\DAEMON Tools Pro\DTProAgent.exe" -autorun
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} (SysInfo Class) - http://content.systemrequirementslab.co ... 4.24.0.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Autodesk Content Service - Unknown owner - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\windows\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Micro Star SCM - Micro-Star International Co., Ltd. - C:\Program Files (x86)\System Control Manager\MSIService.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: PC Speed Up Service (PCSUService) - Unknown owner - C:\Program Files (x86)\Zrychleni Pocitace\PCSUService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11176 bytes
dale jsem narazil na komplikaci s 614d7f8c6d872be111ee, kde mi hlásí systém, že nemám dostatečné oprávnění abych s tou složkou něco dělal.
rychlost zapínání systému je teď cca od Grubu do widlí cca 3 min. takže to kleslo cca o 5 minut
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:11:06, on 1.4.2012
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files (x86)\DAEMON Tools Pro\DTProAgent.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\System Control Manager\MGSysCtrl.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Users\Michal\Desktop\HiJackThis.exe
C:\windows\SysWOW64\DllHost.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [MGSysCtrl] C:\Program Files (x86)\System Control Manager\MGSysCtrl.exe
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "C:\Program Files (x86)\DAEMON Tools Pro\DTProAgent.exe" -autorun
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} (SysInfo Class) - http://content.systemrequirementslab.co ... 4.24.0.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Autodesk Content Service - Unknown owner - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\windows\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Micro Star SCM - Micro-Star International Co., Ltd. - C:\Program Files (x86)\System Control Manager\MSIService.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: PC Speed Up Service (PCSUService) - Unknown owner - C:\Program Files (x86)\Zrychleni Pocitace\PCSUService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11176 bytes
dale jsem narazil na komplikaci s 614d7f8c6d872be111ee, kde mi hlásí systém, že nemám dostatečné oprávnění abych s tou složkou něco dělal.
rychlost zapínání systému je teď cca od Grubu do widlí cca 3 min. takže to kleslo cca o 5 minut
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 115 hostů