Dnes po nejakej dobe som daval pc do poriadku registre skeny virusov a tak podobne rozhodol som sa ze ak RSIT tom to preveril tu je log dufam že je všetko v pohodke vopred dakujem za Váš čas.
Logfile of random's system information tool 1.09 (written by random/random)
Run by Luky at 2011-12-18 14:23:21
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 22 GB (34%) free of 65 GB
Total RAM: 4093 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:23:27, on 18. 12. 2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\ccSvcHst.exe
C:\Program Files (x86)\Free Download Manager\fdm.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files (x86)\AIMP3\AIMP3.exe
C:\Program Files\trend micro\Luky.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Vuze Remote Toolbar - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files (x86)\Vuze_Remote\prxtbVuze.dll
R3 - URLSearchHook: PC Tools Browser Guard - {472734EA-242A-422b-ADF8-83D1E48CC825} - C:\Program Files (x86)\PC Tools Security\BDT\PCTBrowserDefender.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Browser Defender BHO - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\Program Files (x86)\PC Tools Security\BDT\PCTBrowserDefender.dll
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\IPS\IPSBHO.DLL
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Windows Live ID Sign-in Helper - {7F9471C4-52B8-41AE-5678-4166102C1A9E} - C:\Windows\SysWOW64\jsproxyy.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Vuze Remote - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files (x86)\Vuze_Remote\prxtbVuze.dll
O2 - BHO: Free Download Manager - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files (x86)\Free Download Manager\iefdm2.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Vuze Remote Toolbar - {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files (x86)\Vuze_Remote\prxtbVuze.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\coIEPlg.dll
O3 - Toolbar: PC Tools Browser Guard - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files (x86)\PC Tools Security\BDT\PCTBrowserDefender.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files (x86)\Free Download Manager\fdm.exe -autorun
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&oslať do programu OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Previesť cieľ odkazu do formátu Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Previesť do Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Prevziať pomocou FDM - file://C:\Program Files (x86)\Free Download Manager\dllink.htm
O8 - Extra context menu item: Prevziať video pomocou FDM - file://C:\Program Files (x86)\Free Download Manager\dlfvideo.htm
O8 - Extra context menu item: Prevziať vybrané pomocou FDM - file://C:\Program Files (x86)\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Prevziať všetko pomocou FDM - file://C:\Program Files (x86)\Free Download Manager\dlall.htm
O8 - Extra context menu item: Pridať cieľ odkazu do existujúceho súboru PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Pridať do existujúceho súboru PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: &Prepojené poznámky programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: &Prepojené poznámky programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} (Creative Software AutoUpdate Support Package 2) - http://ccfiles.creative.com/Web/softwar ... PIDPDE.cab
O16 - DPF: {E705A591-DA3C-4228-B0D5-A356DBA42FBF} (Creative Software AutoUpdate 2) - http://ccfiles.creative.com/Web/softwar ... TSUEng.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwar ... /CTPID.cab
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Browser Defender Update Service - Unknown owner - C:\Program Files (x86)\PC Tools Security\BDT\BDTUpdateService.exe
O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
O23 - Service: Creative Audio Service (CTAudSvcService) - Creative Technology Ltd - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\ccSvcHst.exe
O23 - Service: O&O Defrag (OODefragAgent) - O&O Software GmbH - C:\Program Files\OO Software\Defrag\oodag.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files (x86)\PC Tools Security\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files (x86)\PC Tools Security\pctsSvc.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 11077 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
"C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe"
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
atieclxx
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\PC Tools Security\BDT\BDTUpdateService.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\ccSvcHst.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\diMaster.dll" /prefetch:1
"C:\Program Files\OO Software\Defrag\oodag.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\ccSvcHst.exe" /c /a /s UserSession2
"C:\Program Files\OO Software\Defrag\oodtray.exe"
"C:\Program Files (x86)\Free Download Manager\fdm.exe" -autorun
"C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesApp64.exe" /TUStart /pid:2268
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=3524.77373e0.1915051378 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll" Mozilla.Firefox.8.0 -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.jar" 3524 "\\.\pipe\gecko-crash-server-pipe.3524" plugin
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe"
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\AIMP3\AIMP3.exe"
"C:\Users\Luky\Desktop\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Scheduled tasks folder======
C:\Windows\tasks\At1.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Luky\AppData\Roaming\Mozilla\Firefox\Profiles\w5p03w8b.default
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files (x86)\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
dunaj-sk.xml
eBay.xml
google.xml
slovnik-sk.xml
wikipedia-sk.xml
zoznam-sk.xml
C:\Users\Luky\AppData\Roaming\Mozilla\Firefox\Profiles\w5p03w8b.default\extensions\
{37fa1426-b82d-11db-8314-0800200c9a66}
{ba14329e-9550-4989-b3f2-9732e92d17cc}
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-02-28 688528]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-11-01 49440]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A0F3D1B-0909-4FF4-B272-609CCE6054E7}]
PC Tools Browser Guard BHO - C:\Program Files (x86)\PC Tools Security\BDT\PCTBrowserDefender.dll [2011-04-27 1144784]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\coIEPlg.dll [2011-11-02 492984]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\IPS\IPSBHO.DLL [2011-07-26 210872]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7F9471C4-52B8-41AE-5678-4166102C1A9E}]
Windows Live ID Sign-in Helper - C:\Windows\SysWOW64\jsproxyy.dll [2011-11-03 69632]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ba14329e-9550-4989-b3f2-9732e92d17cc}]
Vuze Remote Toolbar - C:\Program Files (x86)\Vuze_Remote\prxtbVuze.dll [2011-01-17 175912]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
Free Download Manager - C:\Program Files (x86)\Free Download Manager\iefdm2.dll [2011-08-20 381952]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2008-06-11 345480]
{ba14329e-9550-4989-b3f2-9732e92d17cc} - Vuze Remote Toolbar - C:\Program Files (x86)\Vuze_Remote\prxtbVuze.dll [2011-01-17 175912]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\coIEPlg.dll [2011-11-02 492984]
{472734EA-242A-422B-ADF8-83D1E48CC825} - PC Tools Browser Guard - C:\Program Files (x86)\PC Tools Security\BDT\PCTBrowserDefender.dll [2011-04-27 1144784]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"OODefragTray"=C:\Program Files\OO Software\Defrag\oodtray.exe [2011-06-29 3992904]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Free Download Manager"=C:\Program Files (x86)\Free Download Manager\fdm.exe [2011-08-25 4197376]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OODefragTray]
C:\Program Files\OO Software\Defrag\oodtray.exe [2011-06-29 3992904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCTools FGuard]
C:\Program Files (x86)\PC Tools Security\BDT\FGuard.exe [2011-04-27 247760]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-11-09 343168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\71407679.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\71407679.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\backitup.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cdspeed.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\coverdes.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\drivespeed.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\excel.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\groove.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\infopath.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\infotool.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\misc.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msaccess.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msoxmled.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mspub.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mstore.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nero.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\neroburnrights.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nerohome.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\neromediahome.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\neroscoutoptions.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nerostartsmart.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nerovision.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\onenote.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\outlook.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\photosnap.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\photosnapviewer.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\powerpnt.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\recode.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\setupneromobile.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\setupx.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\showtime.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\soundtrax.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\waveedit.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\winword.exe]
"Debugger=""C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2011-12-18 14:23:21 ----D---- C:\rsit
2011-12-18 13:43:12 ----D---- C:\TDSSKiller_Quarantine
2011-12-17 18:20:32 ----A---- C:\Windows\system32\TURegOpt.exe
2011-12-17 18:20:31 ----A---- C:\Windows\SYSWOW64\authuitu.dll
2011-12-17 18:20:31 ----A---- C:\Windows\system32\authuitu.dll
2011-12-17 18:20:20 ----D---- C:\Program Files (x86)\TuneUp Utilities 2012
2011-12-17 18:18:42 ----D---- C:\Windows\SYSWOW64\3013
2011-12-16 22:26:17 ----D---- C:\ProgramData\ATI
2011-12-16 22:26:15 ----D---- C:\Program Files (x86)\AMD APP
2011-12-13 23:12:03 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2011-12-13 23:12:03 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2011-12-13 23:12:03 ----A---- C:\Windows\system32\mshtmled.dll
2011-12-13 23:12:03 ----A---- C:\Windows\system32\iertutil.dll
2011-12-13 23:12:02 ----A---- C:\Windows\SYSWOW64\wininet.dll
2011-12-13 23:12:02 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2011-12-13 23:12:02 ----A---- C:\Windows\SYSWOW64\url.dll
2011-12-13 23:12:02 ----A---- C:\Windows\SYSWOW64\ieui.dll
2011-12-13 23:12:02 ----A---- C:\Windows\system32\wininet.dll
2011-12-13 23:12:02 ----A---- C:\Windows\system32\urlmon.dll
2011-12-13 23:12:02 ----A---- C:\Windows\system32\url.dll
2011-12-13 23:12:02 ----A---- C:\Windows\system32\jsproxy.dll
2011-12-13 23:12:02 ----A---- C:\Windows\system32\ieui.dll
2011-12-13 23:12:01 ----A---- C:\Windows\SYSWOW64\jsproxyy.dll
2011-12-13 23:12:01 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2011-12-13 23:12:01 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2011-12-13 23:12:01 ----A---- C:\Windows\SYSWOW64\jscript.dll
2011-12-13 23:12:01 ----A---- C:\Windows\system32\jscript9.dll
2011-12-13 23:12:01 ----A---- C:\Windows\system32\jscript.dll
2011-12-13 23:12:00 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2011-12-13 23:11:59 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2011-12-13 23:11:59 ----A---- C:\Windows\system32\mshtml.dll
2011-12-13 23:11:58 ----A---- C:\Windows\system32\ieframe.dll
2011-12-13 23:10:13 ----A---- C:\Windows\SYSWOW64\tzres.dll
2011-12-13 23:10:13 ----A---- C:\Windows\system32\tzres.dll
2011-12-13 23:10:05 ----A---- C:\Windows\system32\win32k.sys
2011-12-13 23:10:04 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2011-12-13 23:10:04 ----A---- C:\Windows\system32\EncDec.dll
2011-12-13 23:10:04 ----A---- C:\Windows\system32\csrsrv.dll
2011-12-10 23:51:06 ----A---- C:\Windows\system32\drivers\usbfilter.sys
2011-12-10 23:15:50 ----D---- C:\Users\Luky\AppData\Roaming\AIMP3
2011-12-10 23:15:48 ----D---- C:\Program Files (x86)\AIMP3
2011-12-10 17:11:50 ----SHD---- C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2011-12-10 16:51:42 ----D---- C:\Program Files (x86)\Square Enix
2011-11-24 20:45:26 ----D---- C:\ProgramData\Electronic Arts
2011-11-24 20:45:26 ----D---- C:\ProgramData\EA Core
2011-11-24 20:03:37 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2011-11-24 20:03:37 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2011-11-24 20:03:37 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2011-11-24 20:03:37 ----A---- C:\Windows\system32\XAudio2_7.dll
2011-11-24 20:03:37 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2011-11-24 20:03:37 ----A---- C:\Windows\system32\xactengine3_7.dll
2011-11-24 20:03:36 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2011-11-24 20:03:36 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2011-11-24 20:03:36 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2011-11-24 20:03:36 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2011-11-24 20:03:36 ----A---- C:\Windows\system32\d3dx11_43.dll
2011-11-24 20:03:36 ----A---- C:\Windows\system32\d3dx10_43.dll
2011-11-24 20:03:36 ----A---- C:\Windows\system32\d3dcsx_43.dll
2011-11-24 20:03:36 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2011-11-24 20:03:35 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2011-11-24 20:03:35 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2011-11-24 20:03:35 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2011-11-24 20:03:35 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2011-11-24 20:03:35 ----A---- C:\Windows\system32\XAudio2_6.dll
2011-11-24 20:03:35 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2011-11-24 20:03:35 ----A---- C:\Windows\system32\xactengine3_6.dll
2011-11-24 20:03:35 ----A---- C:\Windows\system32\D3DX9_43.dll
2011-11-24 20:03:34 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2011-11-24 20:03:34 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2011-11-24 20:03:34 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2011-11-24 20:03:34 ----A---- C:\Windows\system32\XAudio2_5.dll
2011-11-24 20:03:34 ----A---- C:\Windows\system32\xactengine3_5.dll
2011-11-24 20:03:34 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2011-11-24 20:03:33 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2011-11-24 20:03:33 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2011-11-24 20:03:33 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2011-11-24 20:03:33 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2011-11-24 20:03:33 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2011-11-24 20:03:33 ----A---- C:\Windows\system32\D3DX9_42.dll
2011-11-24 20:03:33 ----A---- C:\Windows\system32\d3dx11_42.dll
2011-11-24 20:03:33 ----A---- C:\Windows\system32\d3dx10_42.dll
2011-11-24 20:03:33 ----A---- C:\Windows\system32\d3dcsx_42.dll
2011-11-24 20:03:33 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2011-11-24 20:03:32 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2011-11-24 20:03:32 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2011-11-24 20:03:32 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2011-11-24 20:03:32 ----A---- C:\Windows\system32\D3DX9_41.dll
2011-11-24 20:03:32 ----A---- C:\Windows\system32\d3dx10_41.dll
2011-11-24 20:03:32 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2011-11-24 20:03:31 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2011-11-24 20:03:31 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2011-11-24 20:03:31 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2011-11-24 20:03:31 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2011-11-24 20:03:31 ----A---- C:\Windows\system32\XAudio2_4.dll
2011-11-24 20:03:31 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2011-11-24 20:03:31 ----A---- C:\Windows\system32\xactengine3_4.dll
2011-11-24 20:03:31 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2011-11-24 20:03:30 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2011-11-24 20:03:30 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2011-11-24 20:03:30 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2011-11-24 20:03:30 ----A---- C:\Windows\system32\D3DX9_40.dll
2011-11-24 20:03:30 ----A---- C:\Windows\system32\d3dx10_40.dll
2011-11-24 20:03:30 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2011-11-24 20:03:29 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2011-11-24 20:03:29 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2011-11-24 20:03:29 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2011-11-24 20:03:29 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2011-11-24 20:03:29 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2011-11-24 20:03:29 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2011-11-24 20:03:29 ----A---- C:\Windows\system32\XAudio2_3.dll
2011-11-24 20:03:29 ----A---- C:\Windows\system32\XAudio2_2.dll
2011-11-24 20:03:29 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2011-11-24 20:03:29 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2011-11-24 20:03:29 ----A---- C:\Windows\system32\xactengine3_3.dll
2011-11-24 20:03:29 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2011-11-24 20:03:28 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2011-11-24 20:03:28 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2011-11-24 20:03:28 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2011-11-24 20:03:28 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2011-11-24 20:03:28 ----A---- C:\Windows\system32\xactengine3_2.dll
2011-11-24 20:03:28 ----A---- C:\Windows\system32\D3DX9_39.dll
2011-11-24 20:03:28 ----A---- C:\Windows\system32\d3dx10_39.dll
2011-11-24 20:03:28 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2011-11-24 20:03:27 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2011-11-24 20:03:27 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2011-11-24 20:03:27 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2011-11-24 20:03:27 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2011-11-24 20:03:27 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2011-11-24 20:03:27 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2011-11-24 20:03:27 ----A---- C:\Windows\system32\XAudio2_1.dll
2011-11-24 20:03:27 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2011-11-24 20:03:27 ----A---- C:\Windows\system32\xactengine3_1.dll
2011-11-24 20:03:27 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2011-11-24 20:03:27 ----A---- C:\Windows\system32\d3dx10_38.dll
2011-11-24 20:03:27 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2011-11-24 20:03:26 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2011-11-24 20:03:26 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2011-11-24 20:03:26 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2011-11-24 20:03:26 ----A---- C:\Windows\system32\XAudio2_0.dll
2011-11-24 20:03:26 ----A---- C:\Windows\system32\xactengine3_0.dll
2011-11-24 20:03:26 ----A---- C:\Windows\system32\D3DX9_38.dll
2011-11-24 20:03:25 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2011-11-24 20:03:25 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2011-11-24 20:03:25 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2011-11-24 20:03:25 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2011-11-24 20:03:25 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2011-11-24 20:03:25 ----A---- C:\Windows\system32\xactengine2_10.dll
2011-11-24 20:03:25 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2011-11-24 20:03:25 ----A---- C:\Windows\system32\D3DX9_37.dll
2011-11-24 20:03:25 ----A---- C:\Windows\system32\d3dx10_37.dll
2011-11-24 20:03:25 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2011-11-24 20:03:24 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2011-11-24 20:03:24 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2011-11-24 20:03:24 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2011-11-24 20:03:24 ----A---- C:\Windows\system32\d3dx9_36.dll
2011-11-24 20:03:24 ----A---- C:\Windows\system32\d3dx10_36.dll
2011-11-24 20:03:24 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2011-11-24 20:03:23 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2011-11-24 20:03:23 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2011-11-24 20:03:23 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2011-11-24 20:03:23 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2011-11-24 20:03:23 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2011-11-24 20:03:23 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2011-11-24 20:03:23 ----A---- C:\Windows\system32\xactengine2_9.dll
2011-11-24 20:03:23 ----A---- C:\Windows\system32\xactengine2_8.dll
2011-11-24 20:03:23 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2011-11-24 20:03:23 ----A---- C:\Windows\system32\d3dx9_35.dll
2011-11-24 20:03:23 ----A---- C:\Windows\system32\d3dx10_35.dll
2011-11-24 20:03:23 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2011-11-24 20:03:22 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2011-11-24 20:03:22 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2011-11-24 20:03:22 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2011-11-24 20:03:22 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2011-11-24 20:03:22 ----A---- C:\Windows\system32\xinput1_3.dll
2011-11-24 20:03:22 ----A---- C:\Windows\system32\d3dx9_34.dll
2011-11-24 20:03:22 ----A---- C:\Windows\system32\d3dx10_34.dll
2011-11-24 20:03:22 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2011-11-24 20:03:21 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2011-11-24 20:03:21 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2011-11-24 20:03:21 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2011-11-24 20:03:21 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2011-11-24 20:03:21 ----A---- C:\Windows\system32\xactengine2_7.dll
2011-11-24 20:03:21 ----A---- C:\Windows\system32\d3dx9_33.dll
2011-11-24 20:03:21 ----A---- C:\Windows\system32\d3dx10_33.dll
2011-11-24 20:03:21 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2011-11-24 20:03:20 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2011-11-24 20:03:20 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2011-11-24 20:03:20 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2011-11-24 20:03:20 ----A---- C:\Windows\system32\xactengine2_6.dll
2011-11-24 20:03:20 ----A---- C:\Windows\system32\xactengine2_5.dll
2011-11-24 20:03:20 ----A---- C:\Windows\system32\d3dx10.dll
2011-11-24 20:03:19 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2011-11-24 20:03:19 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2011-11-24 20:03:19 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2011-11-24 20:03:19 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2011-11-24 20:03:19 ----A---- C:\Windows\system32\xactengine2_4.dll
2011-11-24 20:03:19 ----A---- C:\Windows\system32\x3daudio1_1.dll
2011-11-24 20:03:19 ----A---- C:\Windows\system32\d3dx9_32.dll
2011-11-24 20:03:19 ----A---- C:\Windows\system32\d3dx9_31.dll
2011-11-24 20:03:18 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2011-11-24 20:03:18 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2011-11-24 20:03:18 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2011-11-24 20:03:18 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2011-11-24 20:03:18 ----A---- C:\Windows\system32\xinput1_2.dll
2011-11-24 20:03:18 ----A---- C:\Windows\system32\xinput1_1.dll
2011-11-24 20:03:18 ----A---- C:\Windows\system32\xactengine2_3.dll
2011-11-24 20:03:18 ----A---- C:\Windows\system32\xactengine2_2.dll
2011-11-24 20:03:17 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2011-11-24 20:03:17 ----A---- C:\Windows\system32\xactengine2_1.dll
2011-11-24 20:03:15 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2011-11-24 20:03:15 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2011-11-24 20:03:15 ----A---- C:\Windows\system32\xactengine2_0.dll
2011-11-24 20:03:15 ----A---- C:\Windows\system32\x3daudio1_0.dll
2011-11-24 20:03:15 ----A---- C:\Windows\system32\d3dx9_30.dll
2011-11-24 20:03:14 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2011-11-24 20:03:14 ----A---- C:\Windows\system32\d3dx9_29.dll
2011-11-24 20:03:14 ----A---- C:\Windows\system32\d3dx9_28.dll
2011-11-24 20:03:13 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2011-11-24 20:03:13 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2011-11-24 20:03:13 ----A---- C:\Windows\system32\d3dx9_27.dll
2011-11-24 20:03:13 ----A---- C:\Windows\system32\d3dx9_26.dll
2011-11-24 20:03:12 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2011-11-24 20:03:12 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2011-11-24 20:03:12 ----A---- C:\Windows\system32\d3dx9_25.dll
2011-11-24 20:03:12 ----A---- C:\Windows\system32\d3dx9_24.dll
2011-11-24 19:38:27 ----D---- C:\Program Files (x86)\DAEMON Tools Pro
2011-11-24 19:38:00 ----D---- C:\Users\Luky\AppData\Roaming\DAEMON Tools Pro
2011-11-24 19:38:00 ----D---- C:\ProgramData\DAEMON Tools Pro
======List of files/folders modified in the last 1 month======
2011-12-18 14:23:27 ----D---- C:\Windows\Prefetch
2011-12-18 14:23:26 ----D---- C:\Program Files\trend micro
2011-12-18 14:23:17 ----D---- C:\Windows\temp
2011-12-18 14:22:41 ----D---- C:\Users\Luky\AppData\Roaming\Free Download Manager
2011-12-18 13:58:31 ----D---- C:\Windows\system32\config
2011-12-18 13:55:56 ----SHD---- C:\System Volume Information
2011-12-18 13:55:32 ----AD---- C:\ProgramData\TEMP
2011-12-18 13:55:31 ----D---- C:\Windows
2011-12-18 13:49:19 ----SHD---- C:\Windows\Installer
2011-12-18 13:44:55 ----D---- C:\Windows\system32\drivers
2011-12-18 13:27:58 ----D---- C:\Program Files (x86)\PC Tools Security
2011-12-18 13:20:13 ----D---- C:\Windows\system32\Tasks
2011-12-18 13:11:16 ----RD---- C:\Program Files
2011-12-18 13:05:13 ----RD---- C:\Program Files (x86)
2011-12-18 12:38:51 ----D---- C:\Windows\SysWOW64
2011-12-18 11:55:32 ----D---- C:\Windows\system32\NDF
2011-12-18 11:38:42 ----D---- C:\Windows\System32
2011-12-17 18:18:43 ----D---- C:\Windows\Tasks
2011-12-17 18:17:05 ----D---- C:\Users\Luky\AppData\Roaming\Azureus
2011-12-16 22:36:33 ----D---- C:\Windows\system32\catroot
2011-12-16 22:33:17 ----D---- C:\Windows\system32\DriverStore
2011-12-16 22:33:17 ----D---- C:\Windows\inf
2011-12-16 22:26:17 ----D---- C:\ProgramData
2011-12-16 22:26:01 ----D---- C:\Program Files\ATI Technologies
2011-12-16 22:26:00 ----D---- C:\ProgramData\AMD
2011-12-16 22:25:44 ----SHD---- C:\$RECYCLE.BIN
2011-12-16 22:24:44 ----D---- C:\Windows\system32\catroot2
2011-12-16 22:17:42 ----D---- C:\Windows\Downloaded Program Files
2011-12-16 22:13:51 ----D---- C:\Program Files (x86)\AIMP2
2011-12-14 11:22:08 ----D---- C:\Windows\winsxs
2011-12-14 02:34:46 ----D---- C:\Windows\SYSWOW64\migration
2011-12-14 02:34:46 ----D---- C:\Windows\system32\migration
2011-12-14 02:34:46 ----D---- C:\Program Files\Internet Explorer
2011-12-14 02:34:46 ----D---- C:\Program Files (x86)\Internet Explorer
2011-12-14 00:42:45 ----D---- C:\Windows\rescache
2011-12-13 23:12:30 ----D---- C:\Windows\debug
2011-12-13 23:12:28 ----A---- C:\Windows\system32\MRT.exe
2011-12-13 23:11:51 ----D---- C:\Windows\SYSWOW64\sk-SK
2011-12-13 23:11:51 ----D---- C:\Windows\SYSWOW64\en-US
2011-12-13 23:11:51 ----D---- C:\Windows\SYSWOW64\cs-CZ
2011-12-13 23:11:51 ----D---- C:\Windows\system32\sk-SK
2011-12-13 23:11:51 ----D---- C:\Windows\system32\en-US
2011-12-13 23:11:51 ----D---- C:\Windows\system32\cs-CZ
2011-12-13 00:48:13 ----D---- C:\Users\Luky\AppData\Roaming\AIMP
2011-12-10 23:51:06 ----DC---- C:\Windows\system32\DRVSTORE
2011-12-10 17:33:13 ----D---- C:\Windows\Minidump
2011-12-10 17:30:21 ----D---- C:\Users\Luky\AppData\Roaming\TuneUp Software
2011-12-10 17:13:13 ----D---- C:\ProgramData\TuneUp Software
2011-12-10 16:59:28 ----D---- C:\Downloads
2011-11-30 23:00:57 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-11-26 14:05:40 ----D---- C:\Windows\system32\wdi
2011-11-26 13:36:38 ----D---- C:\Windows\Logs
2011-11-24 20:03:51 ----D---- C:\Program Files (x86)\Common Files
2011-11-24 20:03:17 ----RSD---- C:\Windows\assembly
2011-11-24 20:03:16 ----D---- C:\Windows\Microsoft.NET
2011-11-22 23:00:03 ----D---- C:\Users\Luky\AppData\Roaming\Ahead
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 amd_sata;amd_sata; C:\Windows\system32\DRIVERS\amd_sata.sys [2011-10-04 80000]
R0 amd_xata;amd_xata; C:\Windows\system32\DRIVERS\amd_xata.sys [2011-10-04 40576]
R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie64.sys [2010-06-17 16440]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 PCTCore;PCTools KDS; C:\Windows\system32\drivers\PCTCore64.sys [2011-03-10 282440]
R0 pctDS;PC Tools Data Store; C:\Windows\system32\drivers\pctDS64.sys [2010-06-29 452872]
R0 pctEFA;PC Tools Extended File Attributes; C:\Windows\system32\drivers\pctEFA64.sys [2010-07-16 816016]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NISx64\1302000.00A\SYMDS64.SYS [2011-05-16 451192]
R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NISx64\1302000.00A\SYMEFA64.SYS [2011-09-27 1084024]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 BHDrvx64;BHDrvx64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.0.0.128\Definitions\BASHDefs\20111210.003\BHDrvx64.sys [2011-11-14 1156216]
R1 ccSet_NIS;Norton Internet Security Settings Manager; C:\Windows\system32\drivers\NISx64\1302000.00A\ccSetx64.sys [2011-08-09 167048]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2011-11-09 482936]
R1 IDSVia64;IDSVia64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.0.0.128\Definitions\IPSDefs\20111216.001\IDSvia64.sys [2011-11-04 488568]
R1 PCTSD;PC Tools Spyware Doctor Driver; C:\Windows\System32\Drivers\PCTSD64.sys [2011-03-10 279344]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\Windows\system32\drivers\NISx64\1302000.00A\SRTSPX64.SYS [2011-08-03 37496]
R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NISx64\1302000.00A\Ironx64.SYS [2011-07-26 189560]
R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\System32\Drivers\NISx64\1302000.00A\SYMNETS.SYS [2011-07-26 401016]
R2 AODDriver4.01;AODDriver4.01; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2011-06-24 55424]
R3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-11-10 10567680]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-11-10 325632]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2011-10-17 93712]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2011-11-17 138360]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2010-11-29 24152]
R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.0.0.128\Definitions\VirusDefs\20111217.009\ENG64.SYS [2011-12-18 117880]
R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.0.0.128\Definitions\VirusDefs\20111217.009\EX64.SYS [2011-12-18 2048632]
R3 P17;SB Audigy; C:\Windows\system32\drivers\P17.sys [2009-04-21 1288192]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-03-01 187392]
R3 SRTSP;Symantec Real Time Storage Protection x64; C:\Windows\System32\Drivers\NISx64\1302000.00A\SRTSP64.SYS [2011-08-03 729720]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [2011-11-05 174200]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys [2011-12-12 11856]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2011-08-17 53376]
S0 SMR210;Symantec SMR Utility Service 2.1.0; C:\Windows\System32\drivers\SMR210.SYS []
S3 atikmdag;atikmdag; C:\Windows\system32\drivers\atikmdag.sys [2011-11-10 10567680]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 20992]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-11-10 204288]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-11-09 361984]
R2 Browser Defender Update Service;Browser Defender Update Service; C:\Program Files (x86)\PC Tools Security\BDT\BDTUpdateService.exe [2011-04-27 337872]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 CTAudSvcService;Creative Audio Service; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [2008-11-18 307200]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2010-11-29 363344]
R2 NIS;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\19.2.0.10\ccSvcHst.exe [2011-08-10 138760]
R2 OODefragAgent;O&O Defrag; C:\Program Files\OO Software\Defrag\oodag.exe [2011-06-29 3246920]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe [2011-12-14 2123584]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2011-11-01 79360]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2011-11-01 651720]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 sdAuxService;PC Tools Auxiliary Service; C:\Program Files (x86)\PC Tools Security\pctsAuxs.exe [2011-02-18 371472]
S3 sdCoreService;PC Tools Security Service; C:\Program Files (x86)\PC Tools Security\pctsSvc.exe [2011-04-06 1117144]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S4 NBService;NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [2008-04-08 800040]
S4 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [2008-01-22 275752]
S4 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\SysWOW64\IoctlSvc.exe [2006-12-19 81920]
-----------------EOF-----------------

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Tiež by som poprosil o kontrolu Logu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
- Rudy
- Site Admin
- Příspěvky: 119506
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Tiež by som poprosil o kontrolu Logu
Log vypadá čistý.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.