pitimir píše:
To je sice pekne a mozne, ale pokial mi nemienis davat logy podla instrukcii, tak ti poradit neviem a nemozem.
prepac, myslel som ze ten scrypt to mal urobit. tu je log
ComboFix 09-10-08.04 - tatko 12.10.2009 19:11.2.2 - NTFSx86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.421.1033.18.1023.680 [GMT 2:00]
Running from: c:\documents and settings\tatko\Desktop\ComboFix.exe
Command switches used :: c:\documents and settings\tatko\Desktop\CFScript.txt.txt
AV: ESET Smart Security 4.0 *On-access scanning enabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: ESET personal firewall *enabled* {E5E70D32-0101-4340-86A3-A7B0F1C8FFE0}
* Resident AV is active
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((( Files Created from 2009-09-12 to 2009-10-12 )))))))))))))))))))))))))))))))
.
2009-10-12 17:11 . 2009-10-12 17:11 -------- d-----w- c:\documents and settings\tatko\Local Settings\Application Data\ESET
2009-10-11 16:56 . 2009-10-11 16:56 -------- d-----w- c:\program files\IPACS
2009-10-11 15:58 . 2009-10-12 17:08 -------- d-----w- C:\a
2009-10-11 10:41 . 2009-10-11 10:41 -------- d-----w- c:\windows\system32\URTTEMP
2009-10-10 18:09 . 2009-10-10 18:09 -------- d-----w- c:\documents and settings\Administrator\Local Settings\Application Data\Mozilla
2009-10-10 18:06 . 2009-10-10 18:06 -------- d-----w- c:\documents and settings\Administrator\Local Settings\Application Data\ESET
2009-10-10 17:58 . 2009-10-10 17:58 -------- d-----w- c:\documents and settings\Administrator\Local Settings\Application Data\GHISLER
2009-10-10 17:57 . 2009-10-10 17:57 -------- d-sh--w- c:\documents and settings\Administrator\PrivacIE
2009-10-10 17:56 . 2009-10-10 17:56 -------- d-sh--w- c:\documents and settings\Administrator\IETldCache
2009-10-10 17:38 . 2009-10-10 17:38 -------- d-----w- c:\program files\SystemRequirementsLab
2009-10-10 12:29 . 2009-10-10 12:29 -------- d-----w- c:\windows\system32\CatRoot_bak
2009-10-10 11:31 . 2009-10-10 11:35 -------- d-----w- c:\windows\NV31483524.TMP
2009-10-08 17:59 . 2009-10-08 17:59 -------- d-----w- C:\rsit
2009-10-08 17:11 . 2009-10-08 17:11 -------- d-----w- c:\documents and settings\tatko\Application Data\Malwarebytes
2009-10-08 17:11 . 2009-09-10 12:54 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-10-08 17:11 . 2009-10-08 17:11 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2009-10-08 17:11 . 2009-09-10 12:53 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-10-08 17:11 . 2009-10-08 17:11 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-10-04 13:49 . 2009-10-04 13:49 -------- d-----w- c:\program files\HD Tune
2009-09-29 16:16 . 2009-09-29 16:16 -------- d-sh--w- c:\documents and settings\indian\PrivacIE
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-10-12 16:39 . 2009-01-14 16:20 -------- d-----w- c:\documents and settings\indian\Application Data\Skype
2009-10-12 15:39 . 2009-01-29 07:54 -------- d-----w- c:\documents and settings\indian\Application Data\skypePM
2009-10-11 16:56 . 2007-07-16 18:05 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-10-11 16:36 . 2009-03-12 19:24 -------- d-----w- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2009-10-11 16:26 . 2009-03-12 18:37 -------- d-----w- c:\program files\Spybot - Search & Destroy
2009-10-10 17:59 . 2007-08-13 12:26 -------- d-----w- c:\documents and settings\tatko\Application Data\Zoner
2009-10-09 16:32 . 2009-03-30 16:36 -------- d-----w- c:\documents and settings\TINA\Application Data\Skype
2009-10-09 16:32 . 2009-03-30 16:39 -------- d-----w- c:\documents and settings\TINA\Application Data\skypePM
2009-09-13 18:44 . 2009-01-28 19:23 -------- d-----w- c:\documents and settings\tatko\Application Data\Skype
2009-09-13 18:01 . 2009-01-28 19:25 -------- d-----w- c:\documents and settings\tatko\Application Data\skypePM
2009-08-06 17:24 . 2007-07-16 17:50 327896 ----a-w- c:\windows\system32\wucltui.dll
2009-08-06 17:24 . 2007-07-16 17:50 209632 ----a-w- c:\windows\system32\wuweb.dll
2009-08-06 17:24 . 2008-10-16 13:09 44768 ----a-w- c:\windows\system32\wups2.dll
2009-08-06 17:24 . 2007-07-16 17:50 35552 ----a-w- c:\windows\system32\wups.dll
2009-08-06 17:24 . 2007-07-16 17:50 53472 ------w- c:\windows\system32\wuauclt.exe
2009-08-06 17:24 . 2004-08-04 01:07 96480 ----a-w- c:\windows\system32\cdm.dll
2009-08-06 17:23 . 2007-07-16 17:50 575704 ----a-w- c:\windows\system32\wuapi.dll
2009-08-06 17:23 . 2007-07-16 17:50 1929952 ----a-w- c:\windows\system32\wuaueng.dll
2009-07-28 06:55 . 2007-07-16 18:08 143360 ----a-w- c:\windows\system32\drivers\Rtenicxp.sys
.
((((((((((((((((((((((((((((( SnapShot@2009-10-09_16.39.54 )))))))))))))))))))))))))))))))))))))))))
.
+ 2003-02-21 03:16 . 2003-02-21 03:16 49152 c:\windows\system32\URTTEMP\regtlib.exe
+ 2009-07-08 02:05 . 2009-07-08 02:05 73728 c:\windows\system32\RtNicProp32.dll
+ 2009-10-11 10:42 . 2006-07-27 01:49 83712 c:\windows\system32\ReinstallBackups\0024\DriverFiles\Rtenicxp.sys
+ 2009-10-10 11:30 . 2006-10-22 10:22 81920 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvwddi.dll
+ 2009-10-10 11:30 . 2006-10-22 04:22 86016 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvmctray.dll
+ 2009-10-10 11:30 . 2006-10-22 10:22 35840 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvcod.dll
+ 2004-08-04 01:07 . 2009-10-11 10:41 62422 c:\windows\system32\perfc009.dat
+ 2006-10-22 04:22 . 2008-09-17 21:55 81920 c:\windows\system32\nvwddi.dll
- 2006-10-22 04:22 . 2006-10-22 10:22 81920 c:\windows\system32\nvwddi.dll
- 2006-10-22 04:22 . 2006-10-22 04:22 86016 c:\windows\system32\nvmctray.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 86016 c:\windows\system32\nvmctray.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 45056 c:\windows\system32\nvmccsrs.dll
- 2006-10-22 04:22 . 2006-10-22 10:22 45056 c:\windows\system32\nvmccsrs.dll
+ 2003-02-20 18:10 . 2003-02-20 18:10 31744 c:\windows\Microsoft.NET\Framework\v1.1.4322\WMINet_Utils.dll
+ 2003-02-21 05:24 . 2003-02-21 05:24 57344 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.RegularExpressions.dll
+ 2003-02-21 05:26 . 2003-02-21 05:26 77824 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Security.dll
+ 2003-02-20 17:09 . 2003-02-20 17:09 64000 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.Thunk.dll
+ 2003-02-21 05:26 . 2003-02-21 05:26 65536 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Drawing.Design.dll
+ 2003-02-21 05:26 . 2003-02-21 05:26 86016 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.DirectoryServices.dll
+ 2003-02-21 05:26 . 2003-02-21 05:26 77824 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Configuration.Install.dll
+ 2003-02-21 05:25 . 2003-02-21 05:25 12288 c:\windows\Microsoft.NET\Framework\v1.1.4322\RegSvcs.exe
+ 2003-02-21 05:26 . 2003-02-21 05:26 32768 c:\windows\Microsoft.NET\Framework\v1.1.4322\RegCode.dll
+ 2003-02-21 05:25 . 2003-02-21 05:25 28672 c:\windows\Microsoft.NET\Framework\v1.1.4322\RegAsm.exe
+ 2003-02-20 17:09 . 2003-02-20 17:09 90112 c:\windows\Microsoft.NET\Framework\v1.1.4322\PerfCounter.dll
+ 2003-02-20 17:09 . 2003-02-20 17:09 73728 c:\windows\Microsoft.NET\Framework\v1.1.4322\ngen.exe
+ 2003-02-20 16:43 . 2003-02-20 16:43 22528 c:\windows\Microsoft.NET\Framework\v1.1.4322\MUI\0409\mscorsecr.dll
+ 2003-02-20 17:18 . 2003-02-20 17:18 20480 c:\windows\Microsoft.NET\Framework\v1.1.4322\mtxoci8.dll
+ 2003-02-20 17:09 . 2003-02-20 17:09 77824 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
+ 2003-02-20 17:09 . 2003-02-20 17:09 81920 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsec.dll
+ 2003-02-20 17:06 . 2003-02-20 17:06 65536 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorpe.dll
+ 2003-02-20 17:09 . 2003-02-20 17:09 98304 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorld.dll
+ 2003-02-20 17:09 . 2003-02-20 17:09 86016 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorie.dll
+ 2003-02-20 17:09 . 2003-02-20 17:09 77824 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscordbc.dll
+ 2003-02-21 05:25 . 2003-02-21 05:25 49152 c:\windows\Microsoft.NET\Framework\v1.1.4322\MigPolWin.exe
+ 2003-02-21 05:25 . 2003-02-21 05:25 49152 c:\windows\Microsoft.NET\Framework\v1.1.4322\MigPol.exe
+ 2003-02-21 05:25 . 2003-02-21 05:25 11264 c:\windows\Microsoft.NET\Framework\v1.1.4322\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2003-02-21 05:24 . 2003-02-21 05:24 32768 c:\windows\Microsoft.NET\Framework\v1.1.4322\Microsoft.Vsa.dll
+ 2003-02-21 05:24 . 2003-02-21 05:24 28672 c:\windows\Microsoft.NET\Framework\v1.1.4322\Microsoft.VisualBasic.Vsa.dll
+ 2003-02-21 05:24 . 2003-02-21 05:24 40960 c:\windows\Microsoft.NET\Framework\v1.1.4322\jsc.exe
+ 2003-02-21 05:24 . 2003-02-21 05:24 26112 c:\windows\Microsoft.NET\Framework\v1.1.4322\ISymWrapper.dll
+ 2003-02-20 17:22 . 2003-02-20 17:22 40960 c:\windows\Microsoft.NET\Framework\v1.1.4322\InstallUtilLib.dll
+ 2003-02-21 05:24 . 2003-02-21 05:24 15872 c:\windows\Microsoft.NET\Framework\v1.1.4322\InstallUtil.exe
+ 2003-02-21 05:24 . 2003-02-21 05:24 32768 c:\windows\Microsoft.NET\Framework\v1.1.4322\IEHost.dll
+ 2003-02-21 02:12 . 2003-02-21 02:12 28672 c:\windows\Microsoft.NET\Framework\v1.1.4322\cvtres.exe
+ 2003-02-21 05:24 . 2003-02-21 05:24 33792 c:\windows\Microsoft.NET\Framework\v1.1.4322\CustomMarshalers.dll
+ 2003-02-21 05:24 . 2003-02-21 05:24 12288 c:\windows\Microsoft.NET\Framework\v1.1.4322\cscompmgd.dll
+ 2003-02-21 08:20 . 2003-02-21 08:20 49152 c:\windows\Microsoft.NET\Framework\v1.1.4322\csc.exe
+ 2003-02-20 17:09 . 2003-02-20 17:09 77824 c:\windows\Microsoft.NET\Framework\v1.1.4322\CORPerfMonExt.dll
+ 2003-02-21 05:24 . 2003-02-21 05:24 49152 c:\windows\Microsoft.NET\Framework\v1.1.4322\ConfigWizards.exe
+ 2003-02-21 05:24 . 2003-02-21 05:24 94208 c:\windows\Microsoft.NET\Framework\v1.1.4322\CasPol.exe
+ 2003-02-20 17:19 . 2003-02-20 17:19 32768 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_wp.exe
+ 2003-02-20 17:19 . 2003-02-20 17:19 32768 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe
+ 2003-02-20 17:19 . 2003-02-20 17:19 20480 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_regiis.exe
+ 2003-02-20 17:19 . 2003-02-20 17:19 40960 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_rc.dll
+ 2003-02-20 17:19 . 2003-02-20 17:19 24576 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_filter.dll
+ 2003-02-21 03:00 . 2003-02-21 03:00 98304 c:\windows\Microsoft.NET\Framework\v1.1.4322\alink.dll
+ 2003-02-21 01:55 . 2003-02-21 01:55 94208 c:\windows\Microsoft.NET\Framework\v1.1.4322\1033\cscompui.dll
+ 2003-02-21 00:59 . 2003-02-21 00:59 16896 c:\windows\Microsoft.NET\Framework\v1.1.4322\1033\alinkui.dll
+ 2009-10-11 10:42 . 2009-10-11 10:42 90112 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_78816e1e\System.Drawing.Design.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 61440 c:\windows\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_e4b0427e\CustomMarshalers.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 57344 c:\windows\assembly\GAC\System.Web.RegularExpressions\1.0.5000.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 77824 c:\windows\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 64000 c:\windows\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.Thunk.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 65536 c:\windows\assembly\GAC\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 86016 c:\windows\assembly\GAC\System.DirectoryServices\1.0.5000.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 77824 c:\windows\assembly\GAC\System.Configuration.Install\1.0.5000.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 32768 c:\windows\assembly\GAC\Regcode\1.0.5000.0__b03f5f7f11d50a3a\RegCode.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 32768 c:\windows\assembly\GAC\Microsoft.Vsa\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 11264 c:\windows\assembly\GAC\Microsoft.Vsa.Vb.CodeDOMProcessor\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 28672 c:\windows\assembly\GAC\Microsoft.VisualBasic.Vsa\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 26112 c:\windows\assembly\GAC\ISymWrapper\1.0.5000.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 32768 c:\windows\assembly\GAC\IEHost\1.0.5000.0__b03f5f7f11d50a3a\IEHost.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 33792 c:\windows\assembly\GAC\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 12288 c:\windows\assembly\GAC\cscompmgd\7.0.5000.0__b03f5f7f11d50a3a\cscompmgd.dll
+ 2003-02-20 16:43 . 2003-02-20 16:43 4096 c:\windows\system32\mui\0409\mscoreer.dll
+ 2003-02-20 17:09 . 2003-02-20 17:09 9216 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscortim.dll
+ 2003-02-21 05:25 . 2003-02-21 05:25 6656 c:\windows\Microsoft.NET\Framework\v1.1.4322\Microsoft_VsaVb.dll
+ 2003-02-21 05:25 . 2003-02-21 05:25 6144 c:\windows\Microsoft.NET\Framework\v1.1.4322\Microsoft.VisualC.Dll
+ 2003-02-21 05:24 . 2003-02-21 05:24 4608 c:\windows\Microsoft.NET\Framework\v1.1.4322\IIEHost.dll
+ 2003-02-21 05:24 . 2003-02-21 05:24 7168 c:\windows\Microsoft.NET\Framework\v1.1.4322\IEExecRemote.dll
+ 2003-02-21 05:24 . 2003-02-21 05:24 7680 c:\windows\Microsoft.NET\Framework\v1.1.4322\IEExec.exe
+ 2003-02-21 05:24 . 2003-02-21 05:24 7680 c:\windows\Microsoft.NET\Framework\v1.1.4322\Accessibility.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 6656 c:\windows\assembly\GAC\Microsoft_VsaVb\7.0.5000.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 6144 c:\windows\assembly\GAC\Microsoft.VisualC\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.VisualC.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 4608 c:\windows\assembly\GAC\IIEHost\1.0.5000.0__b03f5f7f11d50a3a\IIEHost.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 7168 c:\windows\assembly\GAC\IEExecRemote\1.0.5000.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 7680 c:\windows\assembly\GAC\Accessibility\1.0.5000.0__b03f5f7f11d50a3a\Accessibility.dll
+ 2009-10-10 11:30 . 2006-10-22 04:22 159810 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvsvc32.exe
+ 2009-10-10 11:30 . 2006-10-22 10:22 286720 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvnt4cpl.dll
+ 2009-10-10 11:30 . 2006-10-22 10:22 888832 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvmobls.dll
+ 2009-10-10 11:30 . 2006-10-22 10:22 458752 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvmccssr.dll
+ 2009-10-10 11:30 . 2006-10-22 10:22 188416 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvmccss.dll
+ 2009-10-10 11:30 . 2006-10-22 10:22 229376 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvmccs.dll
+ 2009-10-10 11:30 . 2006-10-22 10:22 581632 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvhwvid.dll
+ 2009-10-10 11:30 . 2006-10-22 04:22 212992 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvapi.dll
+ 2004-08-04 01:07 . 2009-10-11 10:41 400760 c:\windows\system32\perfh009.dat
+ 2006-10-22 10:22 . 2008-09-17 21:55 167936 c:\windows\system32\nvwrszht.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 167936 c:\windows\system32\nvwrszht.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 163840 c:\windows\system32\nvwrszhc.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 163840 c:\windows\system32\nvwrszhc.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 303104 c:\windows\system32\nvwrstr.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 303104 c:\windows\system32\nvwrstr.dll
+ 2008-09-17 21:55 . 2008-09-17 21:55 290816 c:\windows\system32\nvwrsth.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 294912 c:\windows\system32\nvwrssv.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 294912 c:\windows\system32\nvwrssv.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 303104 c:\windows\system32\nvwrssl.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 303104 c:\windows\system32\nvwrssl.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 299008 c:\windows\system32\nvwrssk.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 299008 c:\windows\system32\nvwrssk.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 315392 c:\windows\system32\nvwrsru.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 315392 c:\windows\system32\nvwrsru.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 319488 c:\windows\system32\nvwrsptb.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 319488 c:\windows\system32\nvwrsptb.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 323584 c:\windows\system32\nvwrspt.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 323584 c:\windows\system32\nvwrspt.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 294912 c:\windows\system32\nvwrspl.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 294912 c:\windows\system32\nvwrspl.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 299008 c:\windows\system32\nvwrsno.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 299008 c:\windows\system32\nvwrsno.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 319488 c:\windows\system32\nvwrsnl.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 319488 c:\windows\system32\nvwrsnl.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 196608 c:\windows\system32\nvwrsko.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 196608 c:\windows\system32\nvwrsko.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 212992 c:\windows\system32\nvwrsja.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 212992 c:\windows\system32\nvwrsja.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 323584 c:\windows\system32\nvwrsit.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 323584 c:\windows\system32\nvwrsit.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 315392 c:\windows\system32\nvwrshu.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 315392 c:\windows\system32\nvwrshu.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 278528 c:\windows\system32\nvwrshe.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 278528 c:\windows\system32\nvwrshe.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 327680 c:\windows\system32\nvwrsfr.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 327680 c:\windows\system32\nvwrsfr.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 303104 c:\windows\system32\nvwrsfi.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 303104 c:\windows\system32\nvwrsfi.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 327680 c:\windows\system32\nvwrsesm.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 327680 c:\windows\system32\nvwrsesm.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 335872 c:\windows\system32\nvwrses.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 335872 c:\windows\system32\nvwrses.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 286720 c:\windows\system32\nvwrseng.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 286720 c:\windows\system32\nvwrseng.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 335872 c:\windows\system32\nvwrsel.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 335872 c:\windows\system32\nvwrsel.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 311296 c:\windows\system32\nvwrsde.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 311296 c:\windows\system32\nvwrsde.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 294912 c:\windows\system32\nvwrsda.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 294912 c:\windows\system32\nvwrsda.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 286720 c:\windows\system32\nvwrscs.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 286720 c:\windows\system32\nvwrscs.dll
- 2006-10-22 10:22 . 2006-10-22 10:22 282624 c:\windows\system32\nvwrsar.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 282624 c:\windows\system32\nvwrsar.dll
+ 2007-07-17 19:45 . 2008-09-17 21:55 453152 c:\windows\system32\NVUNINST.EXE
+ 2007-07-17 19:45 . 2008-09-17 21:55 453152 c:\windows\system32\nvudisp.exe
+ 2006-10-22 04:22 . 2008-09-17 21:55 163908 c:\windows\system32\nvsvc32.exe
+ 2006-10-22 04:22 . 2008-09-17 21:55 466944 c:\windows\system32\nvshell.dll
- 2006-10-22 04:22 . 2006-10-22 10:22 466944 c:\windows\system32\nvshell.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 122880 c:\windows\system32\nvrszht.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 225280 c:\windows\system32\nvrszhc.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 253952 c:\windows\system32\nvrstr.dll
+ 2008-09-17 21:55 . 2008-09-17 21:55 253952 c:\windows\system32\nvrsth.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 253952 c:\windows\system32\nvrssv.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 258048 c:\windows\system32\nvrssl.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 258048 c:\windows\system32\nvrssk.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 266240 c:\windows\system32\nvrsru.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 266240 c:\windows\system32\nvrsptb.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 270336 c:\windows\system32\nvrspt.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 253952 c:\windows\system32\nvrspl.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 253952 c:\windows\system32\nvrsno.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 274432 c:\windows\system32\nvrsnl.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 262144 c:\windows\system32\nvrsko.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 270336 c:\windows\system32\nvrsja.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 278528 c:\windows\system32\nvrsit.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 258048 c:\windows\system32\nvrshu.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 331776 c:\windows\system32\nvrshe.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 282624 c:\windows\system32\nvrsfr.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 249856 c:\windows\system32\nvrsfi.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 274432 c:\windows\system32\nvrsesm.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 282624 c:\windows\system32\nvrses.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 245760 c:\windows\system32\nvrseng.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 282624 c:\windows\system32\nvrsel.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 278528 c:\windows\system32\nvrsde.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 253952 c:\windows\system32\nvrsda.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 245760 c:\windows\system32\nvrscs.dll
+ 2006-10-22 10:22 . 2008-09-17 21:55 331776 c:\windows\system32\nvrsar.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 286720 c:\windows\system32\nvnt4cpl.dll
- 2006-10-22 04:22 . 2006-10-22 10:22 286720 c:\windows\system32\nvnt4cpl.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 458752 c:\windows\system32\nvmccssr.dll
- 2006-10-22 04:22 . 2006-10-22 10:22 458752 c:\windows\system32\nvmccssr.dll
- 2006-10-22 04:22 . 2006-10-22 10:22 188416 c:\windows\system32\nvmccss.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 188416 c:\windows\system32\nvmccss.dll
- 2006-10-22 04:22 . 2006-10-22 10:22 229376 c:\windows\system32\nvmccs.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 229376 c:\windows\system32\nvmccs.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 797216 c:\windows\system32\nvcplui.exe
+ 2006-10-22 04:22 . 2008-09-17 21:55 143360 c:\windows\system32\nvcolor.exe
+ 2006-10-22 04:22 . 2008-09-17 21:55 122880 c:\windows\system32\nvcodins.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 122880 c:\windows\system32\nvcod.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 449056 c:\windows\system32\nvappbar.exe
+ 2006-10-22 04:22 . 2008-09-17 21:55 475136 c:\windows\system32\nvapi.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 436768 c:\windows\system32\keystone.exe
+ 2003-02-21 08:20 . 2003-02-21 08:20 737280 c:\windows\Microsoft.NET\Framework\v1.1.4322\vbc.exe
+ 2003-02-21 05:27 . 2003-02-21 05:27 569344 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.Services.dll
+ 2003-02-21 05:27 . 2003-02-21 05:27 819200 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.Mobile.dll
+ 2003-02-21 05:27 . 2003-02-21 05:27 126976 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.ServiceProcess.dll
+ 2003-02-21 05:26 . 2003-02-21 05:26 131072 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Serialization.Formatters.Soap.dll
+ 2003-02-21 05:26 . 2003-02-21 05:26 323584 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Runtime.Remoting.dll
+ 2003-02-21 05:26 . 2003-02-21 05:26 241664 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Messaging.dll
+ 2003-02-21 05:26 . 2003-02-21 05:26 368640 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Management.dll
+ 2003-02-21 05:26 . 2003-02-21 05:26 241664 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.EnterpriseServices.dll
+ 2003-02-21 05:26 . 2003-02-21 05:26 466944 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Drawing.dll
+ 2003-02-21 05:25 . 2003-02-21 05:25 299008 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Data.OracleClient.dll
+ 2003-02-20 17:09 . 2003-02-20 17:09 319488 c:\windows\Microsoft.NET\Framework\v1.1.4322\SOS.dll
+ 2003-02-20 17:09 . 2003-02-20 17:09 122880 c:\windows\Microsoft.NET\Framework\v1.1.4322\shfusres.dll
+ 2003-02-20 17:09 . 2003-02-20 17:09 253952 c:\windows\Microsoft.NET\Framework\v1.1.4322\shfusion.dll
+ 2003-02-21 02:42 . 2003-02-21 02:42 348160 c:\windows\Microsoft.NET\Framework\v1.1.4322\msvcr71.dll
+ 2003-02-20 17:09 . 2003-02-20 17:09 143360 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorrc.dll
+ 2003-02-20 16:43 . 2003-02-20 16:43 131072 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscormmc.dll
+ 2003-02-20 17:06 . 2003-02-20 17:06 311296 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorjit.dll
+ 2003-02-20 17:09 . 2003-02-20 17:09 233472 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscordbi.dll
+ 2003-02-21 05:26 . 2003-02-21 05:26 299008 c:\windows\Microsoft.NET\Framework\v1.1.4322\Microsoft.VisualBasic.dll
+ 2003-02-21 05:26 . 2003-02-21 05:26 716800 c:\windows\Microsoft.NET\Framework\v1.1.4322\Microsoft.JScript.dll
+ 2003-02-20 17:09 . 2003-02-20 17:09 196608 c:\windows\Microsoft.NET\Framework\v1.1.4322\ilasm.exe
+ 2003-02-20 17:06 . 2003-02-20 17:06 282624 c:\windows\Microsoft.NET\Framework\v1.1.4322\fusion.dll
+ 2003-02-20 17:16 . 2003-02-20 17:16 798720 c:\windows\Microsoft.NET\Framework\v1.1.4322\EventLogMessages.dll
+ 2003-02-21 08:21 . 2003-02-21 08:21 524288 c:\windows\Microsoft.NET\Framework\v1.1.4322\diasymreader.dll
+ 2003-02-21 08:21 . 2003-02-21 08:21 626688 c:\windows\Microsoft.NET\Framework\v1.1.4322\cscomp.dll
+ 2002-07-29 09:11 . 2002-07-29 09:11 219136 c:\windows\Microsoft.NET\Framework\v1.1.4322\c_g18030.dll
+ 2003-02-20 17:19 . 2003-02-20 17:19 253952 c:\windows\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
+ 2003-02-21 03:04 . 2003-02-21 03:04 155648 c:\windows\Microsoft.NET\Framework\v1.1.4322\1033\Vsavb7rtUI.dll
+ 2003-02-21 01:02 . 2003-02-21 01:02 131072 c:\windows\Microsoft.NET\Framework\v1.1.4322\1033\vbc7ui.dll
+ 2009-04-03 08:26 . 2009-04-03 08:26 354608 c:\windows\Downloaded Program Files\sysreqlab_nvd.dll
+ 2009-10-11 10:42 . 2009-10-11 10:42 835584 c:\windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_fcaf83c0\System.Drawing.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 569344 c:\windows\assembly\GAC\System.Web.Services\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 819200 c:\windows\assembly\GAC\System.Web.Mobile\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 126976 c:\windows\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 131072 c:\windows\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 323584 c:\windows\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 241664 c:\windows\assembly\GAC\System.Messaging\1.0.5000.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 368640 c:\windows\assembly\GAC\System.Management\1.0.5000.0__b03f5f7f11d50a3a\System.Management.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 241664 c:\windows\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 466944 c:\windows\assembly\GAC\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 299008 c:\windows\assembly\GAC\System.Data.OracleClient\1.0.5000.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 299008 c:\windows\assembly\GAC\Microsoft.VisualBasic\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 716800 c:\windows\assembly\GAC\Microsoft.JScript\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
+ 2009-10-10 11:30 . 2006-10-22 10:22 1732608 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvwssr.dll
+ 2009-10-10 11:30 . 2006-10-22 10:22 1236992 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvwss.dll
+ 2009-10-10 11:30 . 2006-10-22 10:22 2973696 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvvitvsr.dll
+ 2009-10-10 11:30 . 2006-10-22 10:22 2924544 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvvitvs.dll
+ 2009-10-10 11:30 . 2006-10-22 10:22 5644288 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvoglnt.dll
+ 2009-10-10 11:30 . 2006-10-22 10:22 2859008 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvmoblsr.dll
+ 2009-10-10 11:30 . 2006-10-22 10:22 3203072 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvgamesr.dll
+ 2009-10-10 11:30 . 2006-10-22 10:22 3047424 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvgames.dll
+ 2009-10-10 11:30 . 2006-10-22 10:22 5255168 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvdispsr.dll
+ 2009-10-10 11:30 . 2006-10-22 10:22 5619712 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvdisps.dll
+ 2009-10-10 11:30 . 2006-10-22 04:22 7700480 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nvcpl.dll
+ 2009-10-10 11:30 . 2006-10-22 10:22 3994624 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nv4_mini.sys
+ 2009-10-10 11:30 . 2006-10-22 04:22 4527488 c:\windows\system32\ReinstallBackups\0023\DriverFiles\nv4_disp.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 1657376 c:\windows\system32\nwiz.exe
+ 2006-10-22 04:22 . 2008-09-17 21:55 2981888 c:\windows\system32\nvwssr.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 2686976 c:\windows\system32\nvwss.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 1101824 c:\windows\system32\nvwimg.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 1724416 c:\windows\system32\nvwdmcpl.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 4149248 c:\windows\system32\nvvitvsr.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 3764224 c:\windows\system32\nvvitvs.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 8826880 c:\windows\system32\nvoglnt.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 2854912 c:\windows\system32\nvmoblsr.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 1257472 c:\windows\system32\nvmobls.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 1503232 c:\windows\system32\nview.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 3457024 c:\windows\system32\nvgamesr.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 3444736 c:\windows\system32\nvgames.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 1346080 c:\windows\system32\nvdspsch.exe
+ 2006-10-22 04:22 . 2008-09-17 21:55 5799936 c:\windows\system32\nvdispsr.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 3989504 c:\windows\system32\nvdisps.dll
+ 2008-09-17 21:55 . 2008-09-17 21:55 1368064 c:\windows\system32\nvcuda.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 1108512 c:\windows\system32\nvcpluir.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 6057472 c:\windows\system32\nv4_disp.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 6132576 c:\windows\system32\drivers\nv4_mini.sys
+ 2006-10-22 04:22 . 2008-09-17 21:55 6132576 c:\windows\system32\dllcache\nv4_mini.sys
+ 2003-02-21 03:04 . 2003-02-21 03:04 1032192 c:\windows\Microsoft.NET\Framework\v1.1.4322\VsaVb7rt.dll
+ 2003-02-21 05:27 . 2003-02-21 05:27 1335296 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.XML.dll
+ 2003-02-21 05:27 . 2003-02-21 05:27 2039808 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Windows.Forms.dll
+ 2003-02-21 05:27 . 2003-02-21 05:27 1245184 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Web.dll
+ 2003-02-21 05:26 . 2003-02-21 05:26 1216512 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.dll
+ 2003-02-21 05:26 . 2003-02-21 05:26 1699840 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Design.dll
+ 2003-02-21 05:26 . 2003-02-21 05:26 1290240 c:\windows\Microsoft.NET\Framework\v1.1.4322\System.Data.dll
+ 2003-02-20 17:08 . 2003-02-20 17:08 2482176 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
+ 2003-02-20 17:07 . 2003-02-20 17:07 2494464 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorsvr.dll
+ 2003-02-21 05:26 . 2003-02-21 05:26 2088960 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorlib.dll
+ 2003-02-21 05:25 . 2003-02-21 05:25 1564672 c:\windows\Microsoft.NET\Framework\v1.1.4322\mscorcfg.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 3443712 c:\windows\Installer\4a82fc.msi
+ 2009-10-11 10:42 . 2009-10-11 10:42 1929216 c:\windows\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_7ae2adee\System.dll
+ 2009-10-11 10:42 . 2009-10-11 10:42 2076672 c:\windows\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_c51b7261\System.Xml.dll
+ 2009-10-11 10:42 . 2009-10-11 10:42 2994176 c:\windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_f2d93506\System.Windows.Forms.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 1462272 c:\windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_9758f3df\System.Design.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 3289088 c:\windows\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_1a33c136\mscorlib.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 1216512 c:\windows\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 1335296 c:\windows\assembly\GAC\System.Xml\1.0.5000.0__b77a5c561934e089\System.Xml.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 2039808 c:\windows\assembly\GAC\System.Windows.Forms\1.0.5000.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 1245184 c:\windows\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 1699840 c:\windows\assembly\GAC\System.Design\1.0.5000.0__b03f5f7f11d50a3a\System.Design.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 1290240 c:\windows\assembly\GAC\System.Data\1.0.5000.0__b77a5c561934e089\System.Data.dll
+ 2009-10-11 10:41 . 2009-10-11 10:41 1564672 c:\windows\assembly\GAC\mscorcfg\1.0.5000.0__b03f5f7f11d50a3a\mscorcfg.dll
+ 2006-10-22 04:22 . 2008-09-17 21:55 13574144 c:\windows\system32\nvcpl.dll
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2006-12-18 868352]
"AsusServiceProvider"="c:\program files\ASUS\AASP\1.00.23\aaCenter.exe" [2007-01-05 597504]
"AsusStartupHelp"="c:\program files\ASUS\AASP\1.00.23\AsRunHelp.exe" [2006-12-29 363008]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-09-17 13574144]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2009-02-06 2021400]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-09-17 86016]
"nwiz"="nwiz.exe" - c:\windows\system32\nwiz.exe [2008-09-17 1657376]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-02-12 15360]
c:\documents and settings\All Users\Start Menu\Programs\Startup\
AVerQuick.lnk - c:\program files\Common Files\AVerMedia\AVerQuick\AVerQuick.exe [2009-5-10 618496]
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^QuickTV.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\QuickTV.lnk
backup=c:\windows\pss\QuickTV.lnkCommon Startup
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Nero\\Nero 7\\Nero ShowTime\\ShowTime.exe"=
"d:\\hry\\Program Files\\EA GAMES\\Need for Speed Underground 2\\speed2.exe"=
"d:\\hry\\Microsoft Games\\Rise of Nations\\rise.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"d:\\hry\\Ubisoft\\Demo\\Tom Clancy's H.A.W.X\\HAWX.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [6.2.2009 15:23 106208]
R2 CardBusService;CardBusService;c:\program files\Mozilla Firefox\MCS\AP\Components\SERVICE\CardBusService.exe [10.5.2009 20:05 188416]
R2 CX88XBAR;AVerMedia, AVerTV Crossbar (88x);c:\windows\system32\drivers\cx88xbar.sys [17.11.2008 19:46 9312]
R2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\ekrn.exe [6.2.2009 15:23 727720]
S2 gupdate1c989d0c3614c8c;Google Update Service (gupdate1c989d0c3614c8c);c:\program files\Google\Update\GoogleUpdate.exe [8.2.2009 11:36 133104]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
"c:\windows\system32\rundll32.exe" "c:\windows\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
.
Contents of the 'Scheduled Tasks' folder
2009-10-12 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-02-08 09:36]
2009-10-12 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-02-08 09:36]
.
.
------- Supplementary Scan -------
.
uStart Page =
hxxp://www.google.sk/
IE: E&xportovať do programu Microsoft Excel - d:\progra~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
TCP: {9CD456BD-7E0B-4ECD-9194-EEAC93A3DAA6} = 192.168.100.1
DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} -
hxxp://www.nvidia.com/content/DriverDow ... ab_nvd.cab
FF - ProfilePath - c:\documents and settings\tatko\Application Data\Mozilla\Firefox\Profiles\l8ikrd6v.default\
FF - prefs.js: browser.startup.homepage -
hxxp://google.sk
FF - plugin: c:\program files\Google\Update\1.2.183.7\npGoogleOneClick8.dll
---- FIREFOX POLICIES ----
c:\program files\Mozilla Firefox\defaults\pref\firefox-l10n.js - pref("browser.fixup.alternate.suffix", ".cz");
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2009-10-12 19:15
Windows 5.1.2600 Service Pack 3, v.5657 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'explorer.exe'(1880)
c:\windows\system32\WININET.dll
c:\windows\system32\msi.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\nvsvc32.exe
c:\windows\system32\wdfmgr.exe
c:\windows\system32\rundll32.exe
.
**************************************************************************
.
Completion time: 2009-10-12 19:17 - machine was rebooted
ComboFix-quarantined-files.txt 2009-10-12 17:17
ComboFix2.txt 2009-10-09 16:40
Pre-Run: 39 307 038 720 bytes free
Post-Run: 10 adresárov, 39 276 589 056 voľných bajtov
449