Cookies nu sunt virusi. Du-te la start, run si scrie sfc /scannow. S-ar putea sa iti cearca cd-ul cu windows deoarece unele fisiere corupte sunt refacute.
Download WinPFind!
Extrage WinPFind.zip intr-un folder, de exemplu c:\WinPFind.
Reboot in Safe Mode
Deschide c:\WinPFind si double-click pe WinPFind.exe.
Cand programul s-a deschis, click pe Start Scan pentru a porni scanarea.
Asteapta pana termina. Cand a terminat de scanat va apare un log si iti va spune ca a terminat de scanat.
Reboot inapoi in normal mode si posteaza continutul c:\WinPFind\WinPFind.txt
WARNING: not all files found by this scanner are bad. Consult with a knowledgable person before proceeding.
If you see a message in the titlebar saying "Not responding..." you can ignore it. Windows somethimes displays this message due to the high volume of disk I/O. As long as the hard disk light is flashing, the program is still working properly.
»»»»»»»»»»»»»»»»» Windows OS and Versions »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Product Name: Windows 7 Ultimate Current Build: Service Pack 1 Current Build Number: 7601
Internet Explorer Version: 9.0. 8112.16421
»»»»»»»»»»»»»»»»» Checking Selected Standard Folders »»»»»»»»»»»»»»»»»»»»
Checking %SystemDrive% folder...
Checking %ProgramFilesDir% folder...
Checking %WinDir% folder...
aspack 10/01/2012 10:50:12 237013948 C:\Windows\MEMORY.DMP
PTech 10/01/2012 10:50:12 237013948 C:\Windows\MEMORY.DMP
Checking %System% folder...
aspack 18/03/2005 18:19:58 2337488 C:\Windows\SYSTEM32\d3dx9_25.dll
aspack 26/05/2005 16:34:52 2297552 C:\Windows\SYSTEM32\d3dx9_26.dll
aspack 22/07/2005 20:59:04 2319568 C:\Windows\SYSTEM32\d3dx9_27.dll
aspack 05/12/2005 19:09:18 2323664 C:\Windows\SYSTEM32\d3dx9_28.dll
aspack 03/02/2006 09:43:16 2332368 C:\Windows\SYSTEM32\d3dx9_29.dll
aspack 31/03/2006 13:40:58 2388176 C:\Windows\SYSTEM32\d3dx9_30.dll
aspack 28/09/2006 17:05:20 2414360 C:\Windows\SYSTEM32\d3dx9_31.dll
aspack 29/11/2006 14:06:18 3426072 C:\Windows\SYSTEM32\d3dx9_32.dll
aspack 12/03/2007 17:42:30 3495784 C:\Windows\SYSTEM32\d3dx9_33.dll
aspack 16/05/2007 17:45:16 3497832 C:\Windows\SYSTEM32\d3dx9_34.dll
aspack 19/07/2007 19:14:42 3727720 C:\Windows\SYSTEM32\d3dx9_35.dll
aspack 12/10/2007 16:14:00 3734536 C:\Windows\SYSTEM32\d3dx9_36.dll
aspack 05/03/2008 16:56:58 3786760 C:\Windows\SYSTEM32\D3DX9_37.dll
aspack 30/05/2008 15:11:46 3850760 C:\Windows\SYSTEM32\D3DX9_38.dll
aspack 12/07/2008 08:18:52 3851784 C:\Windows\SYSTEM32\D3DX9_39.dll
aspack 15/10/2008 07:22:52 4379984 C:\Windows\SYSTEM32\D3DX9_40.dll
aspack 09/03/2009 16:27:22 4178264 C:\Windows\SYSTEM32\D3DX9_41.dll
aspack 04/09/2009 18:29:30 1892184 C:\Windows\SYSTEM32\D3DX9_42.dll
aspack 26/05/2010 12:41:02 1998168 C:\Windows\SYSTEM32\D3DX9_43.dll
PECompact2 15/06/2012 03:03:10 56731752 C:\Windows\SYSTEM32\MRT.exe
aspack 15/06/2012 03:03:10 56731752 C:\Windows\SYSTEM32\MRT.exe
aspack 17/11/2011 08:38:40 1288472 C:\Windows\SYSTEM32\ntdll.dll
UPX! 07/04/2012 11:40:50 669184 C:\Windows\SYSTEM32\pbsvc.exe
winsync 21/11/2010 00:29:14 183296 C:\Windows\SYSTEM32\PortableDeviceSyncProvider.dll
Umonitor 14/07/2009 04:16:14 772608 C:\Windows\SYSTEM32\rasdlg.dll
WinShutDown 14/07/2009 04:16:14 152064 C:\Windows\SYSTEM32\RstrtMgr.dll
winsync 14/07/2009 04:14:42 38912 C:\Windows\SYSTEM32\SyncHost.exe
winsync 14/07/2009 04:16:18 58880 C:\Windows\SYSTEM32\WABSyncProvider.dll
winsync 14/07/2009 04:16:20 296960 C:\Windows\SYSTEM32\WinSync.dll
winsync 14/07/2009 04:16:20 173056 C:\Windows\SYSTEM32\WinSyncMetastore.dll
winsync 14/07/2009 04:16:20 116736 C:\Windows\SYSTEM32\WinSyncProviders.dll
PEC2 21/11/2010 00:29:42 12625408 C:\Windows\SYSTEM32\wmploc.DLL
Checking %System%\Drivers folder and sub-folders...
Items found in C:\Windows\SYSTEM32\drivers\etc\hosts
Checking the Windows folder and sub-folders for system and hidden files within the last 60 days...
23/06/2012 22:03:32 S 67584 C:\Windows\bootstat.dat
23/06/2012 16:46:10 S 19170 C:\Windows\AppCompat\Programs\RecentFileCache.bcf
15/06/2012 03:29:28 RH 0 C:\Windows\assembly\NativeImages_v2.0.50727_32\index619.dat
15/06/2012 03:29:28 RH 0 C:\Windows\assembly\NativeImages_v2.0.50727_32\index61a.dat
15/06/2012 03:07:08 RH 0 C:\Windows\assembly\NativeImages_v4.0.30319_32\index1f8.dat
15/06/2012 03:07:10 RH 0 C:\Windows\assembly\NativeImages_v4.0.30319_32\index1f9.dat
23/06/2012 22:01:50 HS 25600 C:\Windows\pss\boot.backup.LOG
27/05/2012 12:15:50 HS 0 C:\Windows\pss\boot.backup.LOG1
27/05/2012 12:15:50 HS 0 C:\Windows\pss\boot.backup.LOG2
23/06/2012 22:02:50 HS 262144 C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT
23/06/2012 22:02:50 H 226304 C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT. LOG1
09/06/2012 07:46:22 HS 65536 C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT{0860ffc2-b1ee-11e1-9598-50e549654d5d}.TM.blf
09/06/2012 07:46:22 HS 524288 C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT{0860ffc2-b1ee-11e1-9598-50e549654d5d}.TMContainer00000000000000000001.regtrans-ms
09/06/2012 07:46:22 HS 524288 C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT{0860ffc2-b1ee-11e1-9598-50e549654d5d}.TMContainer00000000000000000002.regtrans-ms
28/04/2012 20:25:08 HS 65536 C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT{e883e4eb-9121-11e1-9654-50e549654d5d}.TM.blf
28/04/2012 20:25:08 HS 524288 C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT{e883e4eb-9121-11e1-9654-50e549654d5d}.TMContainer00000000000000000001.regtrans-ms
28/04/2012 20:25:08 HS 524288 C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT{e883e4eb-9121-11e1-9654-50e549654d5d}.TMContainer00000000000000000002.regtrans-ms
07/05/2012 11:31:08 HS 65536 C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT{f8772375-9807-11e1-b90f-50e549654d5d}.TM.blf
07/05/2012 11:31:08 HS 524288 C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT{f8772375-9807-11e1-b90f-50e549654d5d}.TMContainer00000000000000000001.regtrans-ms
07/05/2012 11:31:08 HS 524288 C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT{f8772375-9807-11e1-b90f-50e549654d5d}.TMContainer00000000000000000002.regtrans-ms
23/06/2012 22:03:32 HS 0 C:\Windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat
23/06/2012 22:03:32 HS 0 C:\Windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat
16/06/2012 10:06:54 S 5679 C:\Windows\ServiceProfiles\LocalService\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\57C8EDB95DF3F0AD4EE2DC2B8CFD4157
04/06/2012 06:29:48 S 813 C:\Windows\ServiceProfiles\LocalService\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\696F3DE637E6DE85B458996D49D759AD
19/06/2012 08:18:08 S 554 C:\Windows\ServiceProfiles\LocalService\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7396C420A8E1BC1DA97F1AF0D10BAD21
16/06/2012 08:45:02 S 0 C:\Windows\ServiceProfiles\LocalService\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\77EC63BDA74BD0D0E0426DC8F8008506
15/05/2012 07:44:56 S 552 C:\Windows\ServiceProfiles\LocalService\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B2238AACCEDC3F1FFE8E7EB5F575EC9
07/06/2012 09:43:04 S 561 C:\Windows\ServiceProfiles\LocalService\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B8CC409ACDBF2A2FE04C56F2875B1FD6
23/06/2012 08:19:10 S 338 C:\Windows\ServiceProfiles\LocalService\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157
23/06/2012 21:39:20 S 282 C:\Windows\ServiceProfiles\LocalService\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\696F3DE637E6DE85B458996D49D759AD
23/06/2012 21:39:26 S 296 C:\Windows\ServiceProfiles\LocalService\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7396C420A8E1BC1DA97F1AF0D10BAD21
23/06/2012 21:38:44 S 290 C:\Windows\ServiceProfiles\LocalService\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506
23/06/2012 21:39:30 S 258 C:\Windows\ServiceProfiles\LocalService\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B2238AACCEDC3F1FFE8E7EB5F575EC9
23/06/2012 21:39:36 S 262 C:\Windows\ServiceProfiles\LocalService\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B8CC409ACDBF2A2FE04C56F2875B1FD6
23/06/2012 22:01:12 S 2241 C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-19\7e22207fe9846926e18c29d3e675240e_114da635-b6de-4243-aeeb-f676fa8e6777
23/06/2012 22:02:50 HS 262144 C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT
23/06/2012 22:02:50 H 226304 C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT. LOG1
28/04/2012 20:25:08 HS 65536 C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT{e883e4e7-9121-11e1-9654-806e6f6e6963}.TM.blf
28/04/2012 20:25:08 HS 524288 C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT{e883e4e7-9121-11e1-9654-806e6f6e6963}.TMContainer00000000000000000001.regtrans-ms
28/04/2012 20:25:08 HS 524288 C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT{e883e4e7-9121-11e1-9654-806e6f6e6963}.TMContainer00000000000000000002.regtrans-ms
07/05/2012 11:31:08 HS 65536 C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT{f8772371-9807-11e1-b90f-806e6f6e6963}.TM.blf
07/05/2012 11:31:08 HS 524288 C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT{f8772371-9807-11e1-b90f-806e6f6e6963}.TMContainer00000000000000000001.regtrans-ms
07/05/2012 11:31:08 HS 524288 C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT{f8772371-9807-11e1-b90f-806e6f6e6963}.TMContainer00000000000000000002.regtrans-ms
23/06/2012 14:51:54 H 50716968 C:\Windows\SoftwareDistribution\Download\601d4669a27bc4b5050b41a3d97b1635\BIT628.tmp
23/06/2012 22:02:44 H 20832 C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
23/06/2012 22:02:44 H 20832 C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
25/04/2012 07:50:54 S 9456 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1_for_KB2656373~31bf3856ad364e35~x86~~6.1.2.0.cat
27/04/2012 01:51:40 S 10648 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1_for_KB2667402~31bf3856ad364e35~x86~~6.1.2.0.cat
28/04/2012 15:05:16 S 9456 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1_for_KB2685939~31bf3856ad364e35~x86~~6.1.1.2.cat
01/06/2012 11:06:56 S 37872 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1_for_KB2699779~31bf3856ad364e35~x86~~6.1.2.0.cat
18/05/2012 08:36:00 S 9170 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1_for_KB2699988~31bf3856ad364e35~x86~~9.4.1.0.cat
03/05/2012 13:34:30 S 11212 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1_for_KB2709630~31bf3856ad364e35~x86~~6.1.1.0.cat
01/06/2012 03:57:12 S 9456 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_1_for_KB2709981~31bf3856ad364e35~x86~~6.1.2.0.cat
28/04/2012 15:05:16 S 10648 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB2685939~31bf3856ad364e35~x86~~6.1.1.2.cat
18/05/2012 08:36:00 S 353566 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB2699988~31bf3856ad364e35~x86~~9.4.1.0.cat
15/05/2012 15:50:30 S 9456 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_2_for_KB2709162~31bf3856ad364e35~x86~~6.1.1.2.cat
25/04/2012 17:55:32 S 27081 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_37_for_KB2677070~31bf3856ad364e35~x86~~6.1.1.2.cat
25/04/2012 07:51:00 S 8860 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2656373~31bf3856ad364e35~x86~~6.1.2.0.cat
27/04/2012 01:51:40 S 8860 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_3_for_KB2667402~31bf3856ad364e35~x86~~6.1.2.0.cat
25/04/2012 17:55:34 S 9456 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_44_for_KB2677070~31bf3856ad364e35~x86~~6.1.1.2.cat
28/04/2012 15:05:16 S 10648 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_4_for_KB2685939~31bf3856ad364e35~x86~~6.1.1.2.cat
25/04/2012 17:55:36 S 9456 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_62_for_KB2677070~31bf3856ad364e35~x86~~6.1.1.2.cat
27/04/2012 01:51:36 S 8860 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_7_for_KB2667402~31bf3856ad364e35~x86~~6.1.2.0.cat
25/04/2012 07:51:10 S 7700 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2656373_SP1~31bf3856ad364e35~x86~~6.1.2.0.cat
25/04/2012 07:51:10 S 7700 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2656373~31bf3856ad364e35~x86~~6.1.2.0.cat
27/04/2012 01:51:36 S 7700 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2667402_RTM~31bf3856ad364e35~x86~~6.1.2.0.cat
27/04/2012 01:51:36 S 7700 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2667402_SP1~31bf3856ad364e35~x86~~6.1.2.0.cat
27/04/2012 01:51:36 S 7700 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2667402~31bf3856ad364e35~x86~~6.1.2.0.cat
25/04/2012 17:55:50 S 7700 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2677070_SP1~31bf3856ad364e35~x86~~6.1.1.2.cat
25/04/2012 17:55:50 S 7700 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2677070~31bf3856ad364e35~x86~~6.1.1.2.cat
28/04/2012 15:05:16 S 7700 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2685939_SP1~31bf3856ad364e35~x86~~6.1.1.2.cat
28/04/2012 15:05:16 S 7700 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2685939~31bf3856ad364e35~x86~~6.1.1.2.cat
01/06/2012 11:06:56 S 7700 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2699779_SP1~31bf3856ad364e35~x86~~6.1.2.0.cat
01/06/2012 11:06:56 S 7700 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2699779~31bf3856ad364e35~x86~~6.1.2.0.cat
18/05/2012 08:36:00 S 7414 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2699988_RTM~31bf3856ad364e35~x86~~9.4.1.0.cat
18/05/2012 08:36:04 S 7414 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2699988~31bf3856ad364e35~x86~~9.4.1.0.cat
15/05/2012 15:50:30 S 7700 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2709162_SP1~31bf3856ad364e35~x86~~6.1.1.2.cat
15/05/2012 15:50:30 S 7700 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2709162~31bf3856ad364e35~x86~~6.1.1.2.cat
03/05/2012 13:34:30 S 7700 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2709630_SP1~31bf3856ad364e35~x86~~6.1.1.0.cat
03/05/2012 13:34:30 S 7700 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2709630~31bf3856ad364e35~x86~~6.1.1.0.cat
01/06/2012 03:57:12 S 7700 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2709981_SP1~31bf3856ad364e35~x86~~6.1.2.0.cat
01/06/2012 03:57:12 S 7700 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Package_for_KB2709981~31bf3856ad364e35~x86~~6.1.2.0.cat
02/06/2012 15:42:40 S 8562 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\WUClient-SelfUpdate-ActiveX~31bf3856ad364e35~x86~~7.6.7600.256.cat
03/06/2012 02:26:14 S 8264 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\WUClient-SelfUpdate-Aux-AuxComp~31bf3856ad364e35~x86~en-US~7.6.7600.256.cat
03/06/2012 02:26:48 S 8860 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\WUClient-SelfUpdate-Aux-AuxComp~31bf3856ad364e35~x86~~7.6.7600.256.cat
03/06/2012 02:26:12 S 7386 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\WUClient-SelfUpdate-Aux-MiniLP~31bf3856ad364e35~x86~en-US~7.6.7600.256.cat
03/06/2012 02:26:46 S 7386 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\WUClient-SelfUpdate-Aux-TopLevel~31bf3856ad364e35~x86~~7.6.7600.256.cat
03/06/2012 02:26:56 S 7386 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\WUClient-SelfUpdate-Aux~31bf3856ad364e35~x86~en-US~7.6.7600.256.cat
03/06/2012 02:26:14 S 7386 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\WUClient-SelfUpdate-Aux~31bf3856ad364e35~x86~~7.6.7600.256.cat
03/06/2012 02:49:30 S 8256 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\WUClient-SelfUpdate-Core-AdmComp~31bf3856ad364e35~x86~en-US~7.6.7600.256.cat
03/06/2012 02:49:30 S 8256 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\WUClient-SelfUpdate-Core-AdmComp~31bf3856ad364e35~x86~~7.6.7600.256.cat
03/06/2012 02:50:16 S 8264 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\WUClient-SelfUpdate-Core-CoreComp~31bf3856ad364e35~x86~en-US~7.6.7600.256.cat
03/06/2012 02:50:20 S 8860 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\WUClient-SelfUpdate-Core-CoreComp~31bf3856ad364e35~x86~~7.6.7600.256.cat
03/06/2012 02:49:34 S 7386 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\WUClient-SelfUpdate-Core-MiniLP~31bf3856ad364e35~x86~en-US~7.6.7600.256.cat
03/06/2012 02:49:30 S 7386 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\WUClient-SelfUpdate-Core-TopLevel~31bf3856ad364e35~x86~~7.6.7600.256.cat
03/06/2012 02:50:26 S 8264 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\WUClient-SelfUpdate-Core-UIComp~31bf3856ad364e35~x86~en-US~7.6.7600.256.cat
03/06/2012 02:49:40 S 8264 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\WUClient-SelfUpdate-Core-UIComp~31bf3856ad364e35~x86~~7.6.7600.256.cat
03/06/2012 02:49:40 S 7386 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\WUClient-SelfUpdate-Core~31bf3856ad364e35~x86~en-US~7.6.7600.256.cat
03/06/2012 02:50:28 S 7386 C:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\WUClient-SelfUpdate-Core~31bf3856ad364e35~x86~~7.6.7600.256.cat
23/06/2012 20:02:38 H 262144 C:\Windows\System32\config\COMPONENTS.LOG1
23/06/2012 20:02:38 HS 65536 C:\Windows\System32\config\COMPONENTS{0860ffd7-b1ee-11e1-9598-50e549654d5d}.TM.blf
23/06/2012 20:02:38 HS 524288 C:\Windows\System32\config\COMPONENTS{0860ffd7-b1ee-11e1-9598-50e549654d5d}.TMContainer00000000000000000001.regtrans-ms
09/06/2012 13:06:52 HS 524288 C:\Windows\System32\config\COMPONENTS{0860ffd7-b1ee-11e1-9598-50e549654d5d}.TMContainer00000000000000000002.regtrans-ms
08/06/2012 18:33:22 HS 65536 C:\Windows\System32\config\COMPONENTS{255a3b8c-06ae-11e1-93e3-50e549654d5d}.TM.blf
08/06/2012 18:33:22 HS 524288 C:\Windows\System32\config\COMPONENTS{255a3b8c-06ae-11e1-93e3-50e549654d5d}.TMContainer00000000000000000001.regtrans-ms
26/05/2012 12:45:52 HS 524288 C:\Windows\System32\config\COMPONENTS{255a3b8c-06ae-11e1-93e3-50e549654d5d}.TMContainer00000000000000000002.regtrans-ms
23/06/2012 22:02:50 H 262144 C:\Windows\System32\config\DEFAULT.LOG1
23/06/2012 22:03:36 H 58368 C:\Windows\System32\config\SAM.LOG1
23/06/2012 22:02:50 H 21504 C:\Windows\System32\config\SECURITY.LOG1
23/06/2012 22:02:50 H 262144 C:\Windows\System32\config\SOFTWARE.LOG1
23/06/2012 22:02:48 H 262144 C:\Windows\System32\config\SYSTEM.LOG1
23/06/2012 12:51:54 S 105312 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\12236C41CDDF9E40BA5606CDF086B821
23/06/2012 12:51:50 S 1213 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1F39B5CFACECFDE48DB25BCA2231FAC6_0365F7E87FB959D2F05C9600FD0AF8BB
23/06/2012 12:50:34 S 618 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\207B9FD92391B9B2A60A89B4C965D5DF
26/05/2012 12:38:42 S 1693 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3C3948BE6E525B8A8CEE9FAC91C9E392_365264FA335801F6BCE1E72F69CFF8F1
26/05/2012 12:35:28 S 1693 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3C3948BE6E525B8A8CEE9FAC91C9E392_9D0CBDFC5B37C9618B2ECF728EC44380
23/06/2012 12:50:22 S 1715 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4DD39726D4B55AC3B4119B35A893323C_31C8EBEBA4CB25E48A4740F40A7C121F
23/06/2012 12:51:30 S 1715 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4DD39726D4B55AC3B4119B35A893323C_444B6E77630BBA6EBC50366166C23D3D
23/06/2012 12:50:54 S 1715 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4DD39726D4B55AC3B4119B35A893323C_46CCCFB940A93F39A734F69EFCDD76E9
23/06/2012 12:51:12 S 1715 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4DD39726D4B55AC3B4119B35A893323C_5500765E9EE674EEB570BC8CAF6E5F61
23/06/2012 12:51:22 S 1715 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4DD39726D4B55AC3B4119B35A893323C_814A2C6481BA41C6E58B9E3156D0C06C
23/06/2012 12:52:02 S 1715 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4DD39726D4B55AC3B4119B35A893323C_8D9F08808C11FCC6158CE8C653BEC3BC
23/06/2012 12:51:06 S 1715 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4DD39726D4B55AC3B4119B35A893323C_A9B3C02F7B9530626DE3F17EB56B42FE
23/06/2012 12:50:38 S 1715 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4DD39726D4B55AC3B4119B35A893323C_B6014B84C5F066035B2DB7FD9D938B36
23/06/2012 12:52:10 S 1715 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4DD39726D4B55AC3B4119B35A893323C_B746426C8F9C3EFCBF2D496F7BF9E8F8
23/06/2012 12:52:16 S 573 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\570FB14ABC805C46708F32F92F10C3B4
15/06/2012 03:28:24 S 0 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\57C8EDB95DF3F0AD4EE2DC2B8CFD4157
23/06/2012 12:48:26 S 813 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\696F3DE637E6DE85B458996D49D759AD
23/06/2012 12:51:56 S 554 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7396C420A8E1BC1DA97F1AF0D10BAD21
23/06/2012 12:51:38 S 66243 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\74BFD122C0875EC75DBE5C6DB4C59019
15/06/2012 03:28:24 S 0 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\77EC63BDA74BD0D0E0426DC8F8008506
15/06/2012 03:06:20 S 552 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B2238AACCEDC3F1FFE8E7EB5F575EC9
23/06/2012 12:51:16 S 1587 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_4069BD6CA0A97DCB6D4110B1A16AB213
23/06/2012 15:05:40 S 1587 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_9F9BFC8B6A2458C04895FE7734305B2F
23/06/2012 12:50:50 S 1587 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_AF9214E07963CAEE811F20A63C6FEE6E
23/06/2012 12:51:00 S 1587 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B8944BA8AD0EFDF0E01A43EF62BECD0_DB4BFB76C5B90F73150068C0B961EF10
23/06/2012 12:50:44 S 1866 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7D266D9E1E69FA1EEFB9699B009B34C8_0A9BFDD75B598C2110CBF610C078E6E6
23/06/2012 19:09:44 S 48483 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\94308059B57B3142E455B38A6EB92015
23/06/2012 12:51:44 S 1557 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\955CAB6FF6A24D5820D50B5BA1CF79C7_AD9E7615297A3A83320AACE5801A04F9
23/06/2012 12:48:26 S 561 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B8CC409ACDBF2A2FE04C56F2875B1FD6
23/06/2012 12:50:28 S 603 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D41693DAFE5DEF0C36959FF1FCEF5C96
23/06/2012 15:06:04 S 262 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\12236C41CDDF9E40BA5606CDF086B821
23/06/2012 12:51:50 S 412 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1F39B5CFACECFDE48DB25BCA2231FAC6_0365F7E87FB959D2F05C9600FD0AF8BB
23/06/2012 21:43:24 S 302 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\207B9FD92391B9B2A60A89B4C965D5DF
26/05/2012 12:38:42 S 412 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3C3948BE6E525B8A8CEE9FAC91C9E392_365264FA335801F6BCE1E72F69CFF8F1
23/06/2012 12:48:56 S 412 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3C3948BE6E525B8A8CEE9FAC91C9E392_9D0CBDFC5B37C9618B2ECF728EC44380
23/06/2012 12:50:46 S 404 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4DD39726D4B55AC3B4119B35A893323C_31C8EBEBA4CB25E48A4740F40A7C121F
23/06/2012 12:48:56 S 404 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4DD39726D4B55AC3B4119B35A893323C_39EB47E961F7C591D1C40D2EED77BBC8
23/06/2012 15:06:04 S 404 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4DD39726D4B55AC3B4119B35A893323C_444B6E77630BBA6EBC50366166C23D3D
23/06/2012 15:06:04 S 404 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4DD39726D4B55AC3B4119B35A893323C_46CCCFB940A93F39A734F69EFCDD76E9
23/06/2012 15:06:04 S 400 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4DD39726D4B55AC3B4119B35A893323C_5500765E9EE674EEB570BC8CAF6E5F61
23/06/2012 15:06:04 S 400 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4DD39726D4B55AC3B4119B35A893323C_814A2C6481BA41C6E58B9E3156D0C06C
23/06/2012 15:06:04 S 412 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4DD39726D4B55AC3B4119B35A893323C_8D9F08808C11FCC6158CE8C653BEC3BC
23/06/2012 15:06:04 S 404 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4DD39726D4B55AC3B4119B35A893323C_A9B3C02F7B9530626DE3F17EB56B42FE
23/06/2012 12:50:46 S 400 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4DD39726D4B55AC3B4119B35A893323C_B6014B84C5F066035B2DB7FD9D938B36
23/06/2012 15:06:04 S 400 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4DD39726D4B55AC3B4119B35A893323C_B746426C8F9C3EFCBF2D496F7BF9E8F8
23/06/2012 12:52:16 S 300 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\570FB14ABC805C46708F32F92F10C3B4
23/06/2012 12:48:26 S 302 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157
23/06/2012 12:48:56 S 226 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\60E31627FDA0A46932B0E5948949F2A5
23/06/2012 21:43:30 S 282 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\696F3DE637E6DE85B458996D49D759AD
23/06/2012 21:43:34 S 296 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7396C420A8E1BC1DA97F1AF0D10BAD21
23/06/2012 15:06:04 S 270 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\74BFD122C0875EC75DBE5C6DB4C59019
23/06/2012 19:54:44 S 290 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506
23/06/2012 21:43:40 S 258 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B2238AACCEDC3F1FFE8E7EB5F575EC9
23/06/2012 15:06:04 S 404 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_4069BD6CA0A97DCB6D4110B1A16AB213
23/06/2012 15:06:04 S 412 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_9F9BFC8B6A2458C04895FE7734305B2F
23/06/2012 15:06:04 S 408 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_AF9214E07963CAEE811F20A63C6FEE6E
23/06/2012 15:06:04 S 404 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B8944BA8AD0EFDF0E01A43EF62BECD0_DB4BFB76C5B90F73150068C0B961EF10
23/06/2012 12:50:46 S 404 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7D266D9E1E69FA1EEFB9699B009B34C8_0A9BFDD75B598C2110CBF610C078E6E6
23/06/2012 19:09:44 S 344 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\94308059B57B3142E455B38A6EB92015
23/06/2012 15:06:04 S 404 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\955CAB6FF6A24D5820D50B5BA1CF79C7_AD9E7615297A3A83320AACE5801A04F9
23/06/2012 21:43:44 S 262 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B8CC409ACDBF2A2FE04C56F2875B1FD6
23/06/2012 21:43:50 S 292 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D41693DAFE5DEF0C36959FF1FCEF5C96
23/06/2012 12:48:56 S 404 C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D47DBD2F9E3365FBBE008D71FB06716F_4DD1053BCC726DA41115FFF4C7D6E9CC
05/05/2012 20:44:26 HS 5242880 C:\Windows\System32\config\TxR\{6cced300-6e01-11de-8bed-001e0bcd1824}.TxR.0.regtrans-ms
23/06/2012 19:37:52 HS 5242880 C:\Windows\System32\config\TxR\{6cced300-6e01-11de-8bed-001e0bcd1824}.TxR.1.regtrans-ms
23/06/2012 22:02:50 HS 5242880 C:\Windows\System32\config\TxR\{6cced300-6e01-11de-8bed-001e0bcd1824}.TxR.2.regtrans-ms
23/06/2012 22:02:50 HS 65536 C:\Windows\System32\config\TxR\{6cced300-6e01-11de-8bed-001e0bcd1824}.TxR.blf
23/06/2012 22:02:48 HS 65536 C:\Windows\System32\config\TxR\{6cced301-6e01-11de-8bed-001e0bcd1824}.TM.blf
11/05/2012 16:49:14 HS 524288 C:\Windows\System32\config\TxR\{6cced301-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000008.regtrans-ms
27/05/2012 08:32:18 HS 524288 C:\Windows\System32\config\TxR\{6cced301-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000009.regtrans-ms
23/06/2012 22:02:48 HS 524288 C:\Windows\System32\config\TxR\{6cced301-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000010.regtrans-ms
23/06/2012 12:48:42 H 0 C:\Windows\System32\drivers\Msft_Kernel_avchv_01009.Wdf
27/05/2012 13:31:04 HS 5120 C:\Windows\System32\Microsoft\Protect\Recovery\Recovery.dat.LOG1
17/05/2012 08:37:54 HS 468 C:\Windows\System32\Microsoft\Protect\S-1-5-18\54b4b078-86e9-4cf2-bace-a62d6c225191
17/05/2012 08:37:54 HS 24 C:\Windows\System32\Microsoft\Protect\S-1-5-18\Preferred
17/05/2012 08:38:22 HS 468 C:\Windows\System32\Microsoft\Protect\S-1-5-19\17c4c098-039a-47d0-b529-97c680ae039a
17/05/2012 08:38:22 HS 24 C:\Windows\System32\Microsoft\Protect\S-1-5-19\Preferred
23/06/2012 20:02:38 H 262144 C:\Windows\System32\SMI\Store\Machine\SCHEMA.DAT.LOG1
26/05/2012 16:29:54 HS 65536 C:\Windows\System32\SMI\Store\Machine\SCHEMA.DAT{51fc4fbe-a735-11e1-9064-50e549654d5d}.TM.blf
26/05/2012 16:29:54 HS 524288 C:\Windows\System32\SMI\Store\Machine\SCHEMA.DAT{51fc4fbe-a735-11e1-9064-50e549654d5d}.TMContainer00000000000000000001.regtrans-ms
26/05/2012 16:29:54 HS 524288 C:\Windows\System32\SMI\Store\Machine\SCHEMA.DAT{51fc4fbe-a735-11e1-9064-50e549654d5d}.TMContainer00000000000000000002.regtrans-ms
11/05/2012 15:07:44 HS 65536 C:\Windows\System32\SMI\Store\Machine\SCHEMA.DAT{5f05bdb4-8461-11e1-95c9-50e549654d5d}.TM.blf
11/05/2012 15:07:44 HS 524288 C:\Windows\System32\SMI\Store\Machine\SCHEMA.DAT{5f05bdb4-8461-11e1-95c9-50e549654d5d}.TMContainer00000000000000000001.regtrans-ms
21/06/2012 08:31:36 HS 65536 C:\Windows\System32\SMI\Store\Machine\SCHEMA.DAT{af25afb3-b5e1-11e1-a87a-50e549654d5d}.TM.blf
21/06/2012 08:31:36 HS 524288 C:\Windows\System32\SMI\Store\Machine\SCHEMA.DAT{af25afb3-b5e1-11e1-a87a-50e549654d5d}.TMContainer00000000000000000001.regtrans-ms
14/06/2012 09:53:32 HS 524288 C:\Windows\System32\SMI\Store\Machine\SCHEMA.DAT{af25afb3-b5e1-11e1-a87a-50e549654d5d}.TMContainer00000000000000000002.regtrans-ms
23/06/2012 20:02:38 HS 65536 C:\Windows\System32\SMI\Store\Machine\SCHEMA.DAT{d6959484-bd51-11e1-b5d5-50e549654d5d}.TM.blf
23/06/2012 20:02:38 HS 524288 C:\Windows\System32\SMI\Store\Machine\SCHEMA.DAT{d6959484-bd51-11e1-b5d5-50e549654d5d}.TMContainer00000000000000000001.regtrans-ms
23/06/2012 20:02:38 HS 524288 C:\Windows\System32\SMI\Store\Machine\SCHEMA.DAT{d6959484-bd51-11e1-b5d5-50e549654d5d}.TMContainer00000000000000000002.regtrans-ms
23/06/2012 19:38:54 H 6 C:\Windows\Tasks\SA.DAT
21/06/2012 20:51:56 HS 16384 C:\Windows\Temp\Cookies\index.dat
21/06/2012 20:51:56 HS 16384 C:\Windows\Temp\History\History.IE5\index.dat
21/06/2012 20:51:56 HS 49152 C:\Windows\Temp\Temporary Internet Files\Content.IE5\index.dat
Checking for CPL files...
Microsoft Corporation 21/11/2010 00:29:14 649216 C:\Windows\SYSTEM32\appwiz.cpl
Microsoft Corporation 21/11/2010 00:29:26 692736 C:\Windows\SYSTEM32\bthprops.cpl
Microsoft Corporation 14/07/2009 04:14:10 83968 C:\Windows\SYSTEM32\collab.cpl
Microsoft Corporation 21/11/2010 00:29:14 128000 C:\Windows\SYSTEM32\desk.cpl
Microsoft Corporation 14/07/2009 04:14:10 4608 C:\Windows\SYSTEM32\Firewall.cpl
Adobe Systems Incorporated 20/08/2011 04:39:12 404640 C:\Windows\SYSTEM32\FlashPlayerCPLApp.cpl
Microsoft Corporation 14/07/2009 04:14:10 234496 C:\Windows\SYSTEM32\hdwwiz.cpl
Microsoft Corporation 18/05/2012 01:35:40 1427968 C:\Windows\SYSTEM32\inetcpl.cpl
Microsoft Corporation 11/06/2009 00:14:10 34120 C:\Windows\SYSTEM32\infocardcpl.cpl
Microsoft Corporation 21/11/2010 00:29:14 345088 C:\Windows\SYSTEM32\intl.cpl
Microsoft Corporation 14/07/2009 04:14:10 418816 C:\Windows\SYSTEM32\irprops.cpl
Microsoft Corporation 14/07/2009 04:14:10 138240 C:\Windows\SYSTEM32\joy.cpl
Microsoft Corporation 21/11/2010 00:29:14 516096 C:\Windows\SYSTEM32\main.cpl
Microsoft Corporation 21/11/2010 00:29:08 905216 C:\Windows\SYSTEM32\mmsys.cpl
Microsoft Corporation 14/07/2009 04:14:10 100352 C:\Windows\SYSTEM32\ncpa.cpl
Microsoft Corporation 21/11/2010 00:29:22 142336 C:\Windows\SYSTEM32\powercfg.cpl
Microsoft Corporation 21/11/2010 00:29:22 326656 C:\Windows\SYSTEM32\sysdm.cpl
Microsoft Corporation 21/11/2010 00:29:26 600576 C:\Windows\SYSTEM32\TabletPC.cpl
Microsoft Corporation 14/07/2009 04:14:10 106496 C:\Windows\SYSTEM32\telephon.cpl
Microsoft Corporation 30/12/2011 08:27:58 478720 C:\Windows\SYSTEM32\timedate.cpl
Microsoft Corporation 14/07/2009 04:14:10 1140736 C:\Windows\SYSTEM32\wscui.cpl
Microsoft Corporation 14/07/2009 04:14:10 229376 C:\Windows\SYSTEM32\Speech\SpeechUX\sapi.cpl
»»»»»»»»»»»»»»»»» Checking Selected Startup Folders »»»»»»»»»»»»»»»»»»»»»
Checking files in %ALLUSERSPROFILE%\Startup folder...
14/07/2009 07:41:58 HS 174 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
Checking files in %ALLUSERSPROFILE%\Application Data folder...
20/08/2011 04:22:46 262144 C:\ProgramData\NTUser.dat
20/08/2011 05:10:58 HS 5120 C:\ProgramData\NTUser.dat. LOG1
20/08/2011 04:22:46 HS 0 C:\ProgramData\NTUser.dat. LOG2
20/08/2011 04:22:46 HS 65536 C:\ProgramData\NTUser.dat{676917de-caca-11e0-aeb5-ba67fd14299b}.TM.blf
20/08/2011 04:22:46 HS 524288 C:\ProgramData\NTUser.dat{676917de-caca-11e0-aeb5-ba67fd14299b}.TMContainer00000000000000000001.regtrans-ms
20/08/2011 04:22:46 HS 524288 C:\ProgramData\NTUser.dat{676917de-caca-11e0-aeb5-ba67fd14299b}.TMContainer00000000000000000002.regtrans-ms
20/08/2011 05:04:38 HS 65536 C:\ProgramData\NTUser.dat{b071fc86-cacf-11e0-b257-50e549654d5d}.TM.blf
20/08/2011 05:04:38 HS 524288 C:\ProgramData\NTUser.dat{b071fc86-cacf-11e0-b257-50e549654d5d}.TMContainer00000000000000000001.regtrans-ms
20/08/2011 05:04:38 HS 524288 C:\ProgramData\NTUser.dat{b071fc86-cacf-11e0-b257-50e549654d5d}.TMContainer00000000000000000002.regtrans-ms
Checking files in %USERPROFILE%\Startup folder...
16/02/2012 09:27:26 HS 174 C:\Users\Andrey\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini
Checking files in %USERPROFILE%\Application Data folder...
26/05/2012 12:35:34 138056 C:\Users\Andrey\AppData\Roaming\PnkBstrK.sys
»»»»»»»»»»»»»»»»» Checking Selected Registry Keys »»»»»»»»»»»»»»»»»»»»»»»
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform]
BTRS123644 =
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
{00C6D95F-329C-409a-81D7-C46C66EA7F33} =
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
[HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers]
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\BriefcaseMenu
{85BBD920-42A0-1069-A2E4-08002B30309D} =
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Open With
{09799AFB-AD67-11d1-ABCD-00C04FC30936} =
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Open With EncryptionMenu
{A470F8CF-A1E8-4f65-8335-227475AA5C46} =
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Sharing
{f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} =
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\WinRAR
{B41DB860-8EE4-11D2-9906-E49FADC173CA} = C:\Program Files\WinRAR\rarext.dll
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\{90AA3A4E-1CBA-4233-B8BB-535773D48449}
Taskband Pin =
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\{a2a9545d-a0c2-42b4-9708-a0b2badd77c8}
Start Menu Pin =
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\{D653647D-D607-4df6-A5B8-48D2BA195F7B}
= C:\Program Files\Bitdefender\Bitdefender 2012\bdshellext.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers]
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\BriefcaseMenu
{85BBD920-42A0-1069-A2E4-08002B30309D} =
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\Library Location
{3dad6c5d-2167-4cae-9914-f99e41c12cfa} =
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\Offline Files
{474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\PowerISO
{967B2D40-8B7D-4127-9049-61EA0C2C6DCE} =
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\WinRAR
{B41DB860-8EE4-11D2-9906-E49FADC173CA} = C:\Program Files\WinRAR\rarext.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\{D653647D-D607-4df6-A5B8-48D2BA195F7B}
= C:\Program Files\Bitdefender\Bitdefender 2012\bdshellext.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers]
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\EncryptionMenu
{A470F8CF-A1E8-4f65-8335-227475AA5C46} =
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\Offline Files
{474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\PowerISO
{967B2D40-8B7D-4127-9049-61EA0C2C6DCE} =
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\Sharing
{f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} =
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\WinRAR
{B41DB860-8EE4-11D2-9906-E49FADC173CA} = C:\Program Files\WinRAR\rarext.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\{596AB062-B4D2-4215-9F74-E9109B0A8153}
=
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\{D653647D-D607-4df6-A5B8-48D2BA195F7B}
= C:\Program Files\Bitdefender\Bitdefender 2012\bdshellext.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers]
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\{F9DB5320-233E-11D1-9F84-707F02C10627}
= C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}
&Yahoo! Toolbar Helper = C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E5680D1-BF44-4929-94AF-FD30D784AD1D}
Splashtop Connect VisualBookmark = C:\Program Files\Splashtop\Splashtop Connect IE\STC.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}
Adobe PDF Link Helper = C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Skype Browser Helper = C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}
SingleInstance Class = C:\PROGRA~1\Yahoo!\Companion\Installs\cpn1\YTSingleInstance.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} = Yahoo! Toolbar : C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
MenuText = :
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{92780B25-18CC-41C8-B9BE-3C9C571A8263}
MenuText = :
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar]
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\QuickComplete
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser
{17DC9DDA-EB60-4975-B369-67E2D10C6056} = :
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
STCAgent "C:\Program Files\Splashtop\Splashtop Connect IE\STCAgent.exe"
ZyngaGamesAgent "C:\Program Files\Splashtop\Splashtop Connect\ZyngaGamesAgent.exe"
HDAudDeck C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe -r
Adobe ARM "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
WinampAgent "C:\Program Files\Winamp\winampa.exe"
csrss C:\Users\Andrey\AppData\Roaming\Microsoft\csrss.exe
BDAgent "C:\Program Files\Bitdefender\Bitdefender 2012\bdagent.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents]
IMAIL Installed = 1
MAPI Installed = 1
MSFS Installed = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
DAEMON Tools Lite "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
Messenger (Yahoo!) "C:\PROGRA~1\Yahoo!\Messenger\YahooMessenger.exe" -quiet
Google Update "C:\Users\Andrey\AppData\Local\Google\Update\GoogleUpdate.exe" /c
csrss C:\Users\Andrey\AppData\Roaming\Microsoft\csrss.exe
Windows Defender C:\Users\Andrey\AppData\Local\Temp\tpdxo.exe
explorer.exe C:\Users\Andrey\Downloads\update.exe
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\load]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\run]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\services
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\state
bootini 2
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Attachments
ScanWithAntiVirus 3
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run
csrss C:\Users\Andrey\AppData\Roaming\Microsoft\csrss.exe
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum
{BDEADF00-C265-11D0-BCED-00A0C90AB50F} = C:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL
{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} =
{0DF44EAA-FF21-4412-828E-260A8728E7F1} =
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System
ConsentPromptBehaviorAdmin 5
ConsentPromptBehaviorUser 3
EnableInstallerDetection 1
EnableLUA 1
EnableSecureUIAPaths 1
EnableUIADesktopToggle 0
EnableVirtualization 1
PromptOnSecureDesktop 1
ValidateAdminCodeSignatures 0
dontdisplaylastusername 0
legalnoticecaption
legalnoticetext
scforceoption 0
shutdownwithoutlogon 1
undockwithoutlogon 1
FilterAdministratorToken 0
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies]
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run
csrss C:\Users\Andrey\AppData\Roaming\Microsoft\csrss.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck {E6FB5E20-DE35-11CF-9C87-00AA005127ED} =
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
UserInit = C:\Windows\system32\userinit.exe,C:\Users\Andrey\AppData\Roaming\Microsoft\csrss.exe
Shell = explorer.exe
System =
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options]
No problems found in Image File Execution Options section
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
AppInit_DLLs
»»»»»»»»»»»»»»»»»»»»»»»» Scan Complete »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
WinPFind v1.4.1 - Log file written to "WinPFind.Txt" in the WinPFind folder.
Scan completed on 23/06/2012 22:09:42
Asta e in fisierul ala.
E ceva grav?
As vrea sa te mai intreb, daca stii...pot avea virusi in pc? Aveam antivirus eset nod32 smart security 5 ii dadeam scan si imi aparea ca sistemul e curat.Dar am auzit de bitdefender ca e mai bun si l-am luat.El mi-a gasit vreo 59 de chestii d-astea si mi le-a sters..acm daca dau o scanare completa la fiecare 10-30min imi gaseste vreo 2-3 virusi mi sterge si tot dau asa si tot imi gaseste niste virusi..in special unu numit cookie double clik.Calculatorul meu nu merge incet..merge normal..nu imi apar po-upuri sau cv de genu sau alte chestii d-astea ce am citit pe net.Totusi nu stiu e posibil sa am un virus periculos? Si ce ar trebui sa fac?
Pai dau sfc si nu se intampla nimic.
Cookies nu sunt virusi. Du-te la start, run si scrie sfc /scannow. S-ar putea sa iti cearca cd-ul cu windows deoarece unele fisiere corupte sunt refacute.
Deci...stie cineva ce sa fac sa nu mai apara eroarea aia? Am vazut pe net dupa ce am cautat ca exista un program DLLSuite care repara erorile asta? Ce credeti? Sa il iau pe ala si sa-l incerc?