
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosim o kontrolu logu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: Prosim o kontrolu logu
Logfile of random's system information tool 1.06 (written by random/random)
Run by Daniel at 2010-05-03 20:48:45
Microsoft® Windows Vista™ Home Premium Service Pack 1
System drive C: has 43 GB (48%) free of 89 GB
Total RAM: 2046 MB (42% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:49:13, on 03/05/2010
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\CheckPoint\ZAForceField\ForceField.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\RtHDVCpl.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\ASUS\ATK Media\DMedia.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.Exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\ICQ6.5\ICQ.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\totalcmd\TOTALCMD.EXE
C:\Program Files\Microsoft Office\Office10\EXCEL.EXE
C:\Users\Daniel\Downloads\RSIT.exe
C:\Program Files\trend micro\Daniel.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ÿþ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: ZoneAlarm Toolbar Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: ZoneAlarm Toolbar - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMEDIA.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [ISW] "C:\Program Files\CheckPoint\ZAForceField\ForceField.exe" /icon="hidden"
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [ICQ] "C:\PROGRA~1\ICQ6.5\ICQ.exe" silent
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [SpywareTerminatorUpdate] "C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O16 - DPF: {A4735C9C-6626-4386-9B93-2D9B79047AB8} (MediaPlugin Control) - http://www.joj.sk/fileadmin/joj_player/ ... Player.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: ADSM Service (ADSMService) - Unknown owner - C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Crypkey License - CrypKey (Canada) Ltd. - C:\Windows\SYSTEM32\crypserv.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: ZoneAlarm Toolbar IswSvc (IswSvc) - Check Point Software Technologies - C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\Windows\System32\ZoneLabs\vsmon.exe
O23 - Service: wampapache - Apache Software Foundation - c:\wamp\bin\apache\apache2.2.11\bin\httpd.exe
O23 - Service: wampmysqld - Unknown owner - c:\wamp\bin\mysql\mysql5.1.36\bin\mysqld.exe
--
End of file - 8027 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3}]
ZoneAlarm Toolbar Registrar - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2009-10-14 578928]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-04-12 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - ZoneAlarm Toolbar - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2009-10-14 578928]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-03-01 857648]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-02-15 4390912]
"NvSvc"=C:\Windows\system32\nvsvc.dll [2007-04-04 86016]
"NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2007-04-04 81920]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2007-02-12 174872]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2007-04-04 8429568]
"ATKMEDIA"=C:\Program Files\ASUS\ATK Media\DMEDIA.EXE [2006-11-02 61440]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"SpywareTerminator"=C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2010-05-03 2176512]
"ZoneAlarm Client"=C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe [2009-11-22 1037192]
"ISW"=C:\Program Files\CheckPoint\ZAForceField\ForceField.exe [2009-10-14 730480]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-04-14 2790472]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]
"ICQ"=C:\PROGRA~1\ICQ6.5\ICQ.exe [2009-11-16 172792]
"Skype"=C:\Program Files\Skype\\Phone\Skype.exe [2010-04-06 26102056]
"SpywareTerminatorUpdate"=C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2010-05-03 3037696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
C:\Windows\ASScrProlog.exe [2008-02-13 37232]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\ASScrPro.exe [2008-02-13 33136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PowerForPhone]
C:\Program Files\PowerForPhone\PowerForPhone.exe [2007-01-16 778240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\qttask.exe [2008-05-26 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SMSERIAL]
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2006-11-22 630784]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe]
C:\Program Files\TomTom HOME\TomTomHOME.exe [2007-03-14 3770024]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
C:\PROGRA~1\Adobe\ACROBA~1.0\Reader\READER~1.EXE []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office.lnk]
C:\PROGRA~1\MICROS~2\Office10\OSA.EXE [2001-02-13 83360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Daniel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^MagicDisc.lnk]
C:\PROGRA~1\MAGICD~1\MAGICD~1.EXE [2007-09-05 557568]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll [2009-09-03 548352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - open - "C:\Program Files\Adobe\Adobe Dreamweaver CS3\Dreamweaver.exe","%1"
======List of files/folders created in the last 1 months======
2010-05-03 19:15:39 ----D---- C:\_OTL
2010-05-03 17:33:57 ----A---- C:\Windows\system32\javaws.exe
2010-05-03 17:33:57 ----A---- C:\Windows\system32\javaw.exe
2010-05-03 17:33:57 ----A---- C:\Windows\system32\java.exe
2010-05-03 17:33:57 ----A---- C:\Windows\system32\deployJava1.dll
2010-05-03 16:46:32 ----A---- C:\Windows\system32\aswBoot.exe
2010-05-03 16:46:08 ----D---- C:\ProgramData\Alwil Software
2010-05-03 16:46:08 ----D---- C:\Program Files\Alwil Software
2010-05-03 16:32:49 ----A---- C:\Windows\system32\netiougc.exe
2010-05-03 16:32:48 ----A---- C:\Windows\system32\tcpipcfg.dll
2010-05-03 16:32:29 ----D---- C:\Users\Daniel\AppData\Roaming\CheckPoint
2010-05-03 16:32:05 ----D---- C:\Program Files\CheckPoint
2010-05-03 16:31:50 ----A---- C:\Windows\system32\vsregexp.dll
2010-05-03 16:31:35 ----A---- C:\Windows\system32\zlcommdb.dll
2010-05-03 16:31:35 ----A---- C:\Windows\system32\zlcomm.dll
2010-05-03 16:31:12 ----A---- C:\Windows\system32\vswmi.dll
2010-05-03 16:31:06 ----A---- C:\Windows\system32\zpeng25.dll
2010-05-03 16:31:04 ----A---- C:\Windows\system32\vsxml.dll
2010-05-03 16:31:01 ----A---- C:\Windows\system32\vspubapi.dll
2010-05-03 16:31:00 ----A---- C:\Windows\system32\vsmonapi.dll
2010-05-03 16:30:50 ----A---- C:\Windows\system32\vsdata.dll
2010-05-03 16:30:17 ----D---- C:\Windows\system32\ZoneLabs
2010-05-03 16:30:11 ----D---- C:\Program Files\Zone Labs
2010-05-03 16:29:41 ----D---- C:\ProgramData\CheckPoint
2010-05-03 16:29:35 ----D---- C:\Windows\Internet Logs
2010-05-03 16:29:23 ----A---- C:\Windows\system32\vsutil.dll
2010-05-03 16:29:23 ----A---- C:\Windows\system32\vsinit.dll
2010-05-03 15:30:46 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2010-05-03 15:29:10 ----D---- C:\Users\Daniel\AppData\Roaming\SUPERAntiSpyware.com
2010-05-03 15:29:10 ----D---- C:\Program Files\SUPERAntiSpyware
2010-05-03 15:27:31 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2010-05-03 15:13:44 ----D---- C:\Program Files\trend micro
2010-05-03 15:13:40 ----D---- C:\rsit
2010-05-03 14:44:12 ----D---- C:\Program Files\Crawler
2010-05-03 14:44:05 ----D---- C:\Users\Daniel\AppData\Roaming\Spyware Terminator
2010-05-03 14:44:02 ----D---- C:\ProgramData\Spyware Terminator
2010-05-03 14:43:56 ----D---- C:\Program Files\Spyware Terminator
2010-05-03 13:08:38 ----D---- C:\Program Files\HIJACK
2010-05-03 12:33:37 ----D---- C:\ProgramData\Lavasoft
2010-05-01 20:56:49 ----D---- C:\Program Files\GeekTools
2010-04-24 12:03:40 ----D---- C:\Program Files\EVC
2010-04-24 11:36:11 ----D---- C:\Program Files\EOBD2 1260
2010-04-04 08:42:25 ----D---- C:\ProgramData\Sun
======List of files/folders modified in the last 1 months======
2010-05-03 20:49:00 ----D---- C:\Windows\Temp
2010-05-03 19:27:19 ----D---- C:\Windows\System32
2010-05-03 19:27:19 ----D---- C:\Windows\inf
2010-05-03 19:27:19 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-05-03 19:23:00 ----A---- C:\Windows\win.ini
2010-05-03 19:21:05 ----D---- C:\Windows\system32\drivers
2010-05-03 19:20:29 ----A---- C:\Windows\system32\acovcnt.exe
2010-05-03 19:15:46 ----D---- C:\Windows\ConfigSetRoot
2010-05-03 19:15:44 ----D---- C:\Program Files\WinRAR
2010-05-03 19:15:44 ----D---- C:\Program Files\VAG-COM1
2010-05-03 19:15:44 ----D---- C:\Program Files\Spybot - Search & Destroy
2010-05-03 19:15:40 ----D---- C:\Users\Daniel\AppData\Roaming\Skype
2010-05-03 19:11:13 ----D---- C:\Users\Daniel\AppData\Roaming\uTorrent
2010-05-03 18:44:09 ----D---- C:\Users\Daniel\AppData\Roaming\ICQ
2010-05-03 17:54:02 ----SHD---- C:\System Volume Information
2010-05-03 17:48:18 ----D---- C:\Windows
2010-05-03 17:34:21 ----SHD---- C:\Windows\Installer
2010-05-03 17:33:52 ----D---- C:\Program Files\Java
2010-05-03 17:30:20 ----D---- C:\Windows\system32\LogFiles
2010-05-03 17:16:25 ----D---- C:\Users\Daniel\AppData\Roaming\skypePM
2010-05-03 16:49:23 ----D---- C:\Windows\winsxs
2010-05-03 16:46:08 ----RD---- C:\Program Files
2010-05-03 16:46:08 ----HD---- C:\ProgramData
2010-05-03 16:39:59 ----D---- C:\ProgramData\Spybot - Search & Destroy
2010-05-03 16:37:02 ----D---- C:\Windows\system32\migration
2010-05-03 16:33:09 ----D---- C:\Windows\system32\catroot
2010-05-03 16:31:42 ----D---- C:\Windows\SoftwareDistribution
2010-05-03 15:39:35 ----D---- C:\Windows\system32\catroot2
2010-05-03 15:27:41 ----D---- C:\Windows\Prefetch
2010-05-03 15:27:31 ----D---- C:\Program Files\Common Files
2010-05-03 14:35:11 ----DC---- C:\Windows\system32\DRVSTORE
2010-05-03 14:29:53 ----D---- C:\Windows\system32\Tasks
2010-05-02 19:55:51 ----D---- C:\Windows\Minidump
2010-04-25 13:16:30 ----A---- C:\Windows\system32\sleep.vbs
2010-04-18 07:43:47 ----RD---- C:\Program Files\Skype
2010-04-16 16:11:11 ----SD---- C:\Users\Daniel\AppData\Roaming\Microsoft
2010-04-04 08:42:22 ----D---- C:\Program Files\Common Files\Java
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2010-04-14 23376]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2010-04-14 162768]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2010-04-14 46672]
R1 NetworkX;NetworkX; C:\Windows\system32\ckldrv.sys [2006-01-10 31846]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [2010-02-17 12872]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [2010-04-27 61440]
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\Windows\system32\drivers\sp_rsdrv2.sys [2010-05-03 142592]
R1 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys [2009-11-22 446664]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-02-05 11632]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2010-04-14 19024]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2010-04-14 51792]
R2 ghaio;ghaio; \??\C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys [2006-12-28 18688]
R2 Hardlock;Hardlock; \??\C:\Windows\system32\drivers\hardlock.sys [2005-07-28 685056]
R2 ISWKL;ZoneAlarm Toolbar ISWKL; \??\C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys [2009-10-14 25208]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-01-23 42496]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-03-21 37376]
R3 AtcL001;NDIS Miniport Driver for Attansic L1 Gigabit Ethernet Controller; C:\Windows\system32\DRIVERS\atl01v32.sys [2007-03-15 48128]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-19 14208]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-02-14 1740904]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2007-01-24 5632]
R3 mcdbus;Driver for MagicISO SCSI Host Controller; C:\Windows\system32\DRIVERS\mcdbus.sys [2007-09-05 92544]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\Windows\system32\drivers\MODEMCSA.sys [2008-01-19 18432]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2006-12-14 7680]
R3 NETw4v32;Intel(R) Wireless WiFi Link Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw4v32.sys [2007-09-26 2251776]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2007-04-04 7493856]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2008-04-23 47360]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-19 88576]
R3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-22 982272]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-03-01 182456]
R3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-19 134016]
S1 Uim_IM;UIM Drive Backup Image Plugin; C:\Windows\System32\Drivers\Uim_IM.sys [2010-01-15 385544]
S1 UimBus;Universal Image Mounter Controller; C:\Windows\system32\DRIVERS\UimBus.sys [2010-01-15 34392]
S3 Bcim;Bandwidth Controller kernel component; C:\Windows\system32\DRIVERS\bcim.sys []
S3 BthAvrcp;Bluetooth AVRCP Profile; C:\Windows\system32\DRIVERS\BthAvrcp.sys [2008-11-03 12800]
S3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2008-01-19 19456]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-19 92160]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2008-04-29 220160]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2008-04-29 29184]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2009-02-17 57672]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2009-02-17 72520]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2006-10-19 1380864]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 NETw3v32;Intel(R) PRO/Wireless 3945ABG Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw3v32.sys [2006-11-02 1781760]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2008-01-19 49664]
S3 RTL8023xp;Realtek 10/100 NIC Family NDIS x86 Driver; C:\Windows\system32\DRIVERS\Rtnicxp.sys [2006-11-02 47104]
S3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-03-06 1737984]
S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\sscdbus.sys [2005-08-17 58352]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
S3 vsdatant7;vsdatant7; C:\Windows\System32\drivers\vsdatant.win7.sys []
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2006-11-02 128104]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-19 39936]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ADSMService;ADSM Service; C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [2007-02-17 69632]
R2 ASLDRService;ASLDR Service; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [2007-02-06 94208]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-03-10 94208]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-04-14 40384]
R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 Crypkey License;Crypkey License; C:\Windows\system32\crypserv.exe [2006-09-22 69632]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [2007-02-21 643072]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2007-02-12 355096]
R2 IswSvc;ZoneAlarm Toolbar IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [2009-10-14 476528]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-10-19 61440]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [2007-02-21 327680]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2010-05-03 488960]
R2 spmgr;spmgr; C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [2006-12-29 123248]
R2 vsmon;TrueVector Internet Monitor; C:\Windows\System32\ZoneLabs\vsmon.exe [2009-11-22 2384240]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-04-14 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-04-14 40384]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2008-04-16 654848]
S3 getPlusHelper;@C:\Program Files\NOS\bin\getPlus_Helper.dll,-101; C:\Windows\System32\svchost.exe [2008-01-19 21504]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2006-12-23 262144]
S3 wampapache;wampapache; c:\wamp\bin\apache\apache2.2.11\bin\httpd.exe [2008-12-10 24636]
S3 wampmysqld;wampmysqld; c:\wamp\bin\mysql\mysql5.1.36\bin\mysqld.exe [2009-06-17 6582912]
-----------------EOF-----------------
Run by Daniel at 2010-05-03 20:48:45
Microsoft® Windows Vista™ Home Premium Service Pack 1
System drive C: has 43 GB (48%) free of 89 GB
Total RAM: 2046 MB (42% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:49:13, on 03/05/2010
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\CheckPoint\ZAForceField\ForceField.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\RtHDVCpl.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\ASUS\ATK Media\DMedia.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.Exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\ICQ6.5\ICQ.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\totalcmd\TOTALCMD.EXE
C:\Program Files\Microsoft Office\Office10\EXCEL.EXE
C:\Users\Daniel\Downloads\RSIT.exe
C:\Program Files\trend micro\Daniel.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ÿþ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: ZoneAlarm Toolbar Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: ZoneAlarm Toolbar - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMEDIA.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [ISW] "C:\Program Files\CheckPoint\ZAForceField\ForceField.exe" /icon="hidden"
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [ICQ] "C:\PROGRA~1\ICQ6.5\ICQ.exe" silent
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [SpywareTerminatorUpdate] "C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O16 - DPF: {A4735C9C-6626-4386-9B93-2D9B79047AB8} (MediaPlugin Control) - http://www.joj.sk/fileadmin/joj_player/ ... Player.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: ADSM Service (ADSMService) - Unknown owner - C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Crypkey License - CrypKey (Canada) Ltd. - C:\Windows\SYSTEM32\crypserv.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: ZoneAlarm Toolbar IswSvc (IswSvc) - Check Point Software Technologies - C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\Windows\System32\ZoneLabs\vsmon.exe
O23 - Service: wampapache - Apache Software Foundation - c:\wamp\bin\apache\apache2.2.11\bin\httpd.exe
O23 - Service: wampmysqld - Unknown owner - c:\wamp\bin\mysql\mysql5.1.36\bin\mysqld.exe
--
End of file - 8027 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3}]
ZoneAlarm Toolbar Registrar - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2009-10-14 578928]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-04-12 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - ZoneAlarm Toolbar - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2009-10-14 578928]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-03-01 857648]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-02-15 4390912]
"NvSvc"=C:\Windows\system32\nvsvc.dll [2007-04-04 86016]
"NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2007-04-04 81920]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2007-02-12 174872]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2007-04-04 8429568]
"ATKMEDIA"=C:\Program Files\ASUS\ATK Media\DMEDIA.EXE [2006-11-02 61440]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"SpywareTerminator"=C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2010-05-03 2176512]
"ZoneAlarm Client"=C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe [2009-11-22 1037192]
"ISW"=C:\Program Files\CheckPoint\ZAForceField\ForceField.exe [2009-10-14 730480]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-04-14 2790472]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]
"ICQ"=C:\PROGRA~1\ICQ6.5\ICQ.exe [2009-11-16 172792]
"Skype"=C:\Program Files\Skype\\Phone\Skype.exe [2010-04-06 26102056]
"SpywareTerminatorUpdate"=C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2010-05-03 3037696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
C:\Windows\ASScrProlog.exe [2008-02-13 37232]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\ASScrPro.exe [2008-02-13 33136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PowerForPhone]
C:\Program Files\PowerForPhone\PowerForPhone.exe [2007-01-16 778240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\qttask.exe [2008-05-26 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SMSERIAL]
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2006-11-22 630784]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe]
C:\Program Files\TomTom HOME\TomTomHOME.exe [2007-03-14 3770024]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
C:\PROGRA~1\Adobe\ACROBA~1.0\Reader\READER~1.EXE []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office.lnk]
C:\PROGRA~1\MICROS~2\Office10\OSA.EXE [2001-02-13 83360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Daniel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^MagicDisc.lnk]
C:\PROGRA~1\MAGICD~1\MAGICD~1.EXE [2007-09-05 557568]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll [2009-09-03 548352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - open - "C:\Program Files\Adobe\Adobe Dreamweaver CS3\Dreamweaver.exe","%1"
======List of files/folders created in the last 1 months======
2010-05-03 19:15:39 ----D---- C:\_OTL
2010-05-03 17:33:57 ----A---- C:\Windows\system32\javaws.exe
2010-05-03 17:33:57 ----A---- C:\Windows\system32\javaw.exe
2010-05-03 17:33:57 ----A---- C:\Windows\system32\java.exe
2010-05-03 17:33:57 ----A---- C:\Windows\system32\deployJava1.dll
2010-05-03 16:46:32 ----A---- C:\Windows\system32\aswBoot.exe
2010-05-03 16:46:08 ----D---- C:\ProgramData\Alwil Software
2010-05-03 16:46:08 ----D---- C:\Program Files\Alwil Software
2010-05-03 16:32:49 ----A---- C:\Windows\system32\netiougc.exe
2010-05-03 16:32:48 ----A---- C:\Windows\system32\tcpipcfg.dll
2010-05-03 16:32:29 ----D---- C:\Users\Daniel\AppData\Roaming\CheckPoint
2010-05-03 16:32:05 ----D---- C:\Program Files\CheckPoint
2010-05-03 16:31:50 ----A---- C:\Windows\system32\vsregexp.dll
2010-05-03 16:31:35 ----A---- C:\Windows\system32\zlcommdb.dll
2010-05-03 16:31:35 ----A---- C:\Windows\system32\zlcomm.dll
2010-05-03 16:31:12 ----A---- C:\Windows\system32\vswmi.dll
2010-05-03 16:31:06 ----A---- C:\Windows\system32\zpeng25.dll
2010-05-03 16:31:04 ----A---- C:\Windows\system32\vsxml.dll
2010-05-03 16:31:01 ----A---- C:\Windows\system32\vspubapi.dll
2010-05-03 16:31:00 ----A---- C:\Windows\system32\vsmonapi.dll
2010-05-03 16:30:50 ----A---- C:\Windows\system32\vsdata.dll
2010-05-03 16:30:17 ----D---- C:\Windows\system32\ZoneLabs
2010-05-03 16:30:11 ----D---- C:\Program Files\Zone Labs
2010-05-03 16:29:41 ----D---- C:\ProgramData\CheckPoint
2010-05-03 16:29:35 ----D---- C:\Windows\Internet Logs
2010-05-03 16:29:23 ----A---- C:\Windows\system32\vsutil.dll
2010-05-03 16:29:23 ----A---- C:\Windows\system32\vsinit.dll
2010-05-03 15:30:46 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2010-05-03 15:29:10 ----D---- C:\Users\Daniel\AppData\Roaming\SUPERAntiSpyware.com
2010-05-03 15:29:10 ----D---- C:\Program Files\SUPERAntiSpyware
2010-05-03 15:27:31 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2010-05-03 15:13:44 ----D---- C:\Program Files\trend micro
2010-05-03 15:13:40 ----D---- C:\rsit
2010-05-03 14:44:12 ----D---- C:\Program Files\Crawler
2010-05-03 14:44:05 ----D---- C:\Users\Daniel\AppData\Roaming\Spyware Terminator
2010-05-03 14:44:02 ----D---- C:\ProgramData\Spyware Terminator
2010-05-03 14:43:56 ----D---- C:\Program Files\Spyware Terminator
2010-05-03 13:08:38 ----D---- C:\Program Files\HIJACK
2010-05-03 12:33:37 ----D---- C:\ProgramData\Lavasoft
2010-05-01 20:56:49 ----D---- C:\Program Files\GeekTools
2010-04-24 12:03:40 ----D---- C:\Program Files\EVC
2010-04-24 11:36:11 ----D---- C:\Program Files\EOBD2 1260
2010-04-04 08:42:25 ----D---- C:\ProgramData\Sun
======List of files/folders modified in the last 1 months======
2010-05-03 20:49:00 ----D---- C:\Windows\Temp
2010-05-03 19:27:19 ----D---- C:\Windows\System32
2010-05-03 19:27:19 ----D---- C:\Windows\inf
2010-05-03 19:27:19 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-05-03 19:23:00 ----A---- C:\Windows\win.ini
2010-05-03 19:21:05 ----D---- C:\Windows\system32\drivers
2010-05-03 19:20:29 ----A---- C:\Windows\system32\acovcnt.exe
2010-05-03 19:15:46 ----D---- C:\Windows\ConfigSetRoot
2010-05-03 19:15:44 ----D---- C:\Program Files\WinRAR
2010-05-03 19:15:44 ----D---- C:\Program Files\VAG-COM1
2010-05-03 19:15:44 ----D---- C:\Program Files\Spybot - Search & Destroy
2010-05-03 19:15:40 ----D---- C:\Users\Daniel\AppData\Roaming\Skype
2010-05-03 19:11:13 ----D---- C:\Users\Daniel\AppData\Roaming\uTorrent
2010-05-03 18:44:09 ----D---- C:\Users\Daniel\AppData\Roaming\ICQ
2010-05-03 17:54:02 ----SHD---- C:\System Volume Information
2010-05-03 17:48:18 ----D---- C:\Windows
2010-05-03 17:34:21 ----SHD---- C:\Windows\Installer
2010-05-03 17:33:52 ----D---- C:\Program Files\Java
2010-05-03 17:30:20 ----D---- C:\Windows\system32\LogFiles
2010-05-03 17:16:25 ----D---- C:\Users\Daniel\AppData\Roaming\skypePM
2010-05-03 16:49:23 ----D---- C:\Windows\winsxs
2010-05-03 16:46:08 ----RD---- C:\Program Files
2010-05-03 16:46:08 ----HD---- C:\ProgramData
2010-05-03 16:39:59 ----D---- C:\ProgramData\Spybot - Search & Destroy
2010-05-03 16:37:02 ----D---- C:\Windows\system32\migration
2010-05-03 16:33:09 ----D---- C:\Windows\system32\catroot
2010-05-03 16:31:42 ----D---- C:\Windows\SoftwareDistribution
2010-05-03 15:39:35 ----D---- C:\Windows\system32\catroot2
2010-05-03 15:27:41 ----D---- C:\Windows\Prefetch
2010-05-03 15:27:31 ----D---- C:\Program Files\Common Files
2010-05-03 14:35:11 ----DC---- C:\Windows\system32\DRVSTORE
2010-05-03 14:29:53 ----D---- C:\Windows\system32\Tasks
2010-05-02 19:55:51 ----D---- C:\Windows\Minidump
2010-04-25 13:16:30 ----A---- C:\Windows\system32\sleep.vbs
2010-04-18 07:43:47 ----RD---- C:\Program Files\Skype
2010-04-16 16:11:11 ----SD---- C:\Users\Daniel\AppData\Roaming\Microsoft
2010-04-04 08:42:22 ----D---- C:\Program Files\Common Files\Java
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2010-04-14 23376]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2010-04-14 162768]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2010-04-14 46672]
R1 NetworkX;NetworkX; C:\Windows\system32\ckldrv.sys [2006-01-10 31846]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [2010-02-17 12872]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [2010-04-27 61440]
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\Windows\system32\drivers\sp_rsdrv2.sys [2010-05-03 142592]
R1 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys [2009-11-22 446664]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-02-05 11632]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2010-04-14 19024]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2010-04-14 51792]
R2 ghaio;ghaio; \??\C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys [2006-12-28 18688]
R2 Hardlock;Hardlock; \??\C:\Windows\system32\drivers\hardlock.sys [2005-07-28 685056]
R2 ISWKL;ZoneAlarm Toolbar ISWKL; \??\C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys [2009-10-14 25208]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-01-23 42496]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-03-21 37376]
R3 AtcL001;NDIS Miniport Driver for Attansic L1 Gigabit Ethernet Controller; C:\Windows\system32\DRIVERS\atl01v32.sys [2007-03-15 48128]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-19 14208]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-02-14 1740904]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2007-01-24 5632]
R3 mcdbus;Driver for MagicISO SCSI Host Controller; C:\Windows\system32\DRIVERS\mcdbus.sys [2007-09-05 92544]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\Windows\system32\drivers\MODEMCSA.sys [2008-01-19 18432]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2006-12-14 7680]
R3 NETw4v32;Intel(R) Wireless WiFi Link Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw4v32.sys [2007-09-26 2251776]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2007-04-04 7493856]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2008-04-23 47360]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-19 88576]
R3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-22 982272]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-03-01 182456]
R3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-19 134016]
S1 Uim_IM;UIM Drive Backup Image Plugin; C:\Windows\System32\Drivers\Uim_IM.sys [2010-01-15 385544]
S1 UimBus;Universal Image Mounter Controller; C:\Windows\system32\DRIVERS\UimBus.sys [2010-01-15 34392]
S3 Bcim;Bandwidth Controller kernel component; C:\Windows\system32\DRIVERS\bcim.sys []
S3 BthAvrcp;Bluetooth AVRCP Profile; C:\Windows\system32\DRIVERS\BthAvrcp.sys [2008-11-03 12800]
S3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2008-01-19 19456]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-19 92160]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2008-04-29 220160]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2008-04-29 29184]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2009-02-17 57672]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2009-02-17 72520]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2006-10-19 1380864]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 NETw3v32;Intel(R) PRO/Wireless 3945ABG Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw3v32.sys [2006-11-02 1781760]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2008-01-19 49664]
S3 RTL8023xp;Realtek 10/100 NIC Family NDIS x86 Driver; C:\Windows\system32\DRIVERS\Rtnicxp.sys [2006-11-02 47104]
S3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-03-06 1737984]
S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\sscdbus.sys [2005-08-17 58352]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
S3 vsdatant7;vsdatant7; C:\Windows\System32\drivers\vsdatant.win7.sys []
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2006-11-02 128104]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-19 39936]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ADSMService;ADSM Service; C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [2007-02-17 69632]
R2 ASLDRService;ASLDR Service; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [2007-02-06 94208]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-03-10 94208]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-04-14 40384]
R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 Crypkey License;Crypkey License; C:\Windows\system32\crypserv.exe [2006-09-22 69632]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [2007-02-21 643072]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2007-02-12 355096]
R2 IswSvc;ZoneAlarm Toolbar IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [2009-10-14 476528]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-10-19 61440]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [2007-02-21 327680]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2010-05-03 488960]
R2 spmgr;spmgr; C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [2006-12-29 123248]
R2 vsmon;TrueVector Internet Monitor; C:\Windows\System32\ZoneLabs\vsmon.exe [2009-11-22 2384240]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-04-14 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-04-14 40384]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2008-04-16 654848]
S3 getPlusHelper;@C:\Program Files\NOS\bin\getPlus_Helper.dll,-101; C:\Windows\System32\svchost.exe [2008-01-19 21504]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2006-12-23 262144]
S3 wampapache;wampapache; c:\wamp\bin\apache\apache2.2.11\bin\httpd.exe [2008-12-10 24636]
S3 wampmysqld;wampmysqld; c:\wamp\bin\mysql\mysql5.1.36\bin\mysqld.exe [2009-06-17 6582912]
-----------------EOF-----------------
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Prosim o kontrolu logu

- Spusťte.
- Klikněte na "Start". Potvrďte hlášku kliknutím na "Ok" (Bude následovat restart)

- Spusťte.
- Klikněte na "CleanUp!". Potvrďte hlášky kliknutím na "Yes" (Bude následovat restart)

- Nainstalujte a v průběhu instalace odškrtněte, že chcete instalovat yahoo toolbar.
Záložka Čistič
- Dejte analyzovat, po dokončení dejte Spustit Ccleaner.
Záložka Registry
- Klikněte na Hledej problémy, po dokončení klikněte na Opravit problémy, zálohu dělat nemusíte, potom dejte Opravit všechny problémy.
OK
Zavřít


Re: Prosim o kontrolu logu
Spravil som vsetky pozadovane kroky, zistil som ze mi nefunguje automaticka aktualizacia preto som nemal ani SP2!
Velmi pekne dakujem za rady a pomoc....
Daniel
Velmi pekne dakujem za rady a pomoc....

Daniel
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Prosim o kontrolu logu
Takze znovu mam nejaky problem, Firefox po asi 10 min prestane otvarat stranky. Ked ho vypnem a chcem znovu zapnut tak mi vyhodi hlasku ze stale bezi....potom vobec nemzem nastartovat Firefox. Skusal som IE 7 - to iste, neotvara stranky.
Vcera bolo vsetko v poriadku, nic som nestahoval, neinstaloval....
Nejaky napad?
Vcera bolo vsetko v poriadku, nic som nestahoval, neinstaloval....
Nejaky napad?
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Prosim o kontrolu logu
Tu je novy log:
PS: poslal som vam platbu cez paypal - doslo vam to v poriadku?
Logfile of random's system information tool 1.07 (written by random/random)
Run by Daniel at 2010-05-07 19:16:06
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 53 GB (60%) free of 89 GB
Total RAM: 2046 MB (46% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:16:30, on 07/05/2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v7.00 (7.00.6002.18005)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\CheckPoint\ZAForceField\ForceField.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\RtHDVCpl.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\ASUS\ATK Media\DMedia.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.Exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\ICQ6.5\ICQ.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Daniel\Downloads\RSIT.exe
C:\Program Files\trend micro\Daniel.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ÿþ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: ZoneAlarm Toolbar Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: ZoneAlarm Toolbar - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMEDIA.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [ISW] "C:\Program Files\CheckPoint\ZAForceField\ForceField.exe" /icon="hidden"
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [ICQ] "C:\PROGRA~1\ICQ6.5\ICQ.exe" silent
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [SpywareTerminatorUpdate] "C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O16 - DPF: {A4735C9C-6626-4386-9B93-2D9B79047AB8} (MediaPlugin Control) - http://www.joj.sk/fileadmin/joj_player/ ... Player.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: ADSM Service (ADSMService) - Unknown owner - C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Crypkey License - CrypKey (Canada) Ltd. - C:\Windows\SYSTEM32\crypserv.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: ZoneAlarm Toolbar IswSvc (IswSvc) - Check Point Software Technologies - C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\Windows\System32\ZoneLabs\vsmon.exe
O23 - Service: wampapache - Apache Software Foundation - c:\wamp\bin\apache\apache2.2.11\bin\httpd.exe
O23 - Service: wampmysqld - Unknown owner - c:\wamp\bin\mysql\mysql5.1.36\bin\mysqld.exe
--
End of file - 8315 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3}]
ZoneAlarm Toolbar Registrar - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2009-10-14 578928]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-04-12 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - ZoneAlarm Toolbar - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2009-10-14 578928]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-03-01 857648]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-02-15 4390912]
"NvSvc"=C:\Windows\system32\nvsvc.dll [2007-04-04 86016]
"NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2007-04-04 81920]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2007-02-12 174872]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2007-04-04 8429568]
"ATKMEDIA"=C:\Program Files\ASUS\ATK Media\DMEDIA.EXE [2006-11-02 61440]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"SpywareTerminator"=C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2010-05-03 2176512]
"ZoneAlarm Client"=C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe [2009-11-22 1037192]
"ISW"=C:\Program Files\CheckPoint\ZAForceField\ForceField.exe [2009-10-14 730480]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-04-14 2790472]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]
"ICQ"=C:\PROGRA~1\ICQ6.5\ICQ.exe [2009-11-16 172792]
"Skype"=C:\Program Files\Skype\\Phone\Skype.exe [2010-04-06 26102056]
"SpywareTerminatorUpdate"=C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2010-05-03 3037696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
C:\Windows\ASScrProlog.exe [2008-02-13 37232]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\ASScrPro.exe [2008-02-13 33136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PowerForPhone]
C:\Program Files\PowerForPhone\PowerForPhone.exe [2007-01-16 778240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\qttask.exe [2008-05-26 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SMSERIAL]
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2006-11-22 630784]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe]
C:\Program Files\TomTom HOME\TomTomHOME.exe [2007-03-14 3770024]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
C:\PROGRA~1\Adobe\ACROBA~1.0\Reader\READER~1.EXE []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office.lnk]
C:\PROGRA~1\MICROS~2\Office10\OSA.EXE [2001-02-13 83360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Daniel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^MagicDisc.lnk]
C:\PROGRA~1\MAGICD~1\MAGICD~1.EXE [2007-09-05 557568]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll [2009-09-03 548352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - open - "C:\Program Files\Adobe\Adobe Dreamweaver CS3\Dreamweaver.exe","%1"
======List of files/folders created in the last 1 months======
2010-05-07 19:16:06 ----D---- C:\rsit
2010-05-04 20:16:59 ----D---- C:\ProgramData\WindowsSearch
2010-05-04 19:02:18 ----D---- C:\Windows\system32\vi-VN
2010-05-04 19:02:18 ----D---- C:\Windows\system32\eu-ES
2010-05-04 19:02:18 ----D---- C:\Windows\system32\ca-ES
2010-05-04 18:57:14 ----D---- C:\Windows\system32\SPReview
2010-05-04 18:40:56 ----A---- C:\Windows\system32\scavenge.dll
2010-05-04 18:40:13 ----A---- C:\Windows\system32\compcln.exe
2010-05-04 18:26:34 ----A---- C:\Windows\system32\secur32.dll
2010-05-04 18:26:34 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-05-04 18:26:33 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-05-04 18:26:33 ----A---- C:\Windows\system32\secproc_isv.dll
2010-05-04 18:26:33 ----A---- C:\Windows\system32\secproc.dll
2010-05-04 18:26:32 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2010-05-04 18:26:32 ----A---- C:\Windows\system32\SearchIndexer.exe
2010-05-04 18:26:32 ----A---- C:\Windows\system32\SearchFilterHost.exe
2010-05-04 18:26:32 ----A---- C:\Windows\system32\sdohlp.dll
2010-05-04 18:26:31 ----A---- C:\Windows\system32\sdclt.exe
2010-05-04 18:26:30 ----A---- C:\Windows\system32\rsaenh.dll
2010-05-04 18:26:29 ----A---- C:\Windows\system32\rtffilt.dll
2010-05-04 18:26:29 ----A---- C:\Windows\system32\rrinstaller.exe
2010-05-04 18:26:28 ----A---- C:\Windows\system32\samlib.dll
2010-05-04 18:26:28 ----A---- C:\Windows\system32\rtutils.dll
2010-05-04 18:26:28 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-05-04 18:26:28 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-05-04 18:26:28 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-05-04 18:26:27 ----A---- C:\Windows\system32\RMActivate.exe
2010-05-04 18:26:27 ----A---- C:\Windows\system32\riched20.dll
2010-05-04 18:26:26 ----A---- C:\Windows\system32\rpcss.dll
2010-05-04 18:26:26 ----A---- C:\Windows\system32\rpcrt4.dll
2010-05-04 18:26:26 ----A---- C:\Windows\system32\rpchttp.dll
2010-05-04 18:26:25 ----A---- C:\Windows\system32\scrrun.dll
2010-05-04 18:26:23 ----A---- C:\Windows\system32\SCardSvr.dll
2010-05-04 18:26:23 ----A---- C:\Windows\system32\scansetting.dll
2010-05-04 18:26:22 ----A---- C:\Windows\system32\samsrv.dll
2010-05-04 18:26:21 ----A---- C:\Windows\system32\scksp.dll
2010-05-04 18:26:21 ----A---- C:\Windows\system32\schedsvc.dll
2010-05-04 18:26:20 ----A---- C:\Windows\system32\scrobj.dll
2010-05-04 18:26:20 ----A---- C:\Windows\system32\scecli.dll
2010-05-04 18:26:18 ----A---- C:\Windows\system32\schannel.dll
2010-05-04 18:26:18 ----A---- C:\Windows\system32\scesrv.dll
2010-05-04 18:26:12 ----A---- C:\Windows\system32\pdh.dll
2010-05-04 18:26:11 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2010-05-04 18:26:10 ----A---- C:\Windows\system32\perfdisk.dll
2010-05-04 18:26:10 ----A---- C:\Windows\system32\pcaui.dll
2010-05-04 18:26:10 ----A---- C:\Windows\system32\p2psvc.dll
2010-05-04 18:26:10 ----A---- C:\Windows\system32\P2PGraph.dll
2010-05-04 18:26:09 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2010-05-04 18:26:09 ----A---- C:\Windows\system32\PNPXAssoc.dll
2010-05-04 18:26:09 ----A---- C:\Windows\system32\PnPutil.exe
2010-05-04 18:26:09 ----A---- C:\Windows\system32\PnPUnattend.exe
2010-05-04 18:26:09 ----A---- C:\Windows\system32\pnpui.dll
2010-05-04 18:26:09 ----A---- C:\Windows\system32\pnpsetup.dll
2010-05-04 18:26:09 ----A---- C:\Windows\system32\pnidui.dll
2010-05-04 18:26:08 ----A---- C:\Windows\system32\powercpl.dll
2010-05-04 18:26:08 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2010-05-04 18:26:08 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2010-05-04 18:26:08 ----A---- C:\Windows\system32\pidgenx.dll
2010-05-04 18:26:08 ----A---- C:\Windows\system32\photowiz.dll
2010-05-04 18:26:07 ----A---- C:\Windows\system32\PkgMgr.exe
2010-05-04 18:26:07 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2010-05-04 18:26:06 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-05-04 18:26:06 ----A---- C:\Windows\system32\ntdll.dll
2010-05-04 18:26:06 ----A---- C:\Windows\system32\nslookup.exe
2010-05-04 18:26:04 ----A---- C:\Windows\system32\offfilt.dll
2010-05-04 18:26:04 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2010-05-04 18:26:04 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2010-05-04 18:26:04 ----A---- C:\Windows\system32\nlhtml.dll
2010-05-04 18:26:03 ----A---- C:\Windows\system32\oleaut32.dll
2010-05-04 18:26:03 ----A---- C:\Windows\system32\ole32.dll
2010-05-04 18:26:03 ----A---- C:\Windows\system32\odbc32.dll
2010-05-04 18:26:02 ----A---- C:\Windows\system32\osk.exe
2010-05-04 18:26:02 ----A---- C:\Windows\system32\onex.dll
2010-05-04 18:26:02 ----A---- C:\Windows\system32\odbccp32.dll
2010-05-04 18:26:02 ----A---- C:\Windows\system32\odbcconf.dll
2010-05-04 18:26:01 ----A---- C:\Windows\system32\oobefldr.dll
2010-05-04 18:26:01 ----A---- C:\Windows\system32\olepro32.dll
2010-05-04 18:26:01 ----A---- C:\Windows\system32\oleprn.dll
2010-05-04 18:26:01 ----A---- C:\Windows\system32\ocsetup.exe
2010-05-04 18:26:00 ----A---- C:\Windows\system32\rasgcw.dll
2010-05-04 18:26:00 ----A---- C:\Windows\system32\rasdlg.dll
2010-05-04 18:26:00 ----A---- C:\Windows\system32\occache.dll
2010-05-04 18:26:00 ----A---- C:\Windows\system32\ntprint.dll
2010-05-04 18:26:00 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-05-04 18:26:00 ----A---- C:\Windows\system32\ntmarta.dll
2010-05-04 18:25:59 ----A---- C:\Windows\system32\rastls.dll
2010-05-04 18:25:59 ----A---- C:\Windows\system32\rastapi.dll
2010-05-04 18:25:59 ----A---- C:\Windows\system32\rasppp.dll
2010-05-04 18:25:59 ----A---- C:\Windows\system32\rasplap.dll
2010-05-04 18:25:59 ----A---- C:\Windows\system32\rasmontr.dll
2010-05-04 18:25:59 ----A---- C:\Windows\system32\rasmans.dll
2010-05-04 18:25:59 ----A---- C:\Windows\system32\rasdial.exe
2010-05-04 18:25:59 ----A---- C:\Windows\system32\rasdiag.dll
2010-05-04 18:25:59 ----A---- C:\Windows\system32\raschap.dll
2010-05-04 18:25:59 ----A---- C:\Windows\system32\rasapi32.dll
2010-05-04 18:25:58 ----A---- C:\Windows\system32\RacEngn.dll
2010-05-04 18:25:58 ----A---- C:\Windows\system32\Query.dll
2010-05-04 18:25:58 ----A---- C:\Windows\system32\quartz.dll
2010-05-04 18:25:58 ----A---- C:\Windows\system32\qmgr.dll
2010-05-04 18:25:58 ----A---- C:\Windows\system32\qedit.dll
2010-05-04 18:25:57 ----A---- C:\Windows\system32\RelMon.dll
2010-05-04 18:25:57 ----A---- C:\Windows\system32\rekeywiz.exe
2010-05-04 18:25:57 ----A---- C:\Windows\system32\regsvc.dll
2010-05-04 18:25:56 ----A---- C:\Windows\system32\reg.exe
2010-05-04 18:25:56 ----A---- C:\Windows\system32\rdpencom.dll
2010-05-04 18:25:55 ----A---- C:\Windows\system32\regapi.dll
2010-05-04 18:25:55 ----A---- C:\Windows\system32\rdpwsx.dll
2010-05-04 18:25:54 ----A---- C:\Windows\system32\printui.dll
2010-05-04 18:25:54 ----A---- C:\Windows\system32\PresentationSettings.exe
2010-05-04 18:25:54 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2010-05-04 18:25:54 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-05-04 18:25:54 ----A---- C:\Windows\system32\PresentationHost.exe
2010-05-04 18:25:53 ----A---- C:\Windows\system32\prnntfy.dll
2010-05-04 18:25:53 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2010-05-04 18:25:53 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2010-05-04 18:25:53 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2010-05-04 18:25:53 ----A---- C:\Windows\system32\powrprof.dll
2010-05-04 18:25:51 ----A---- C:\Windows\system32\qdvd.dll
2010-05-04 18:25:51 ----A---- C:\Windows\system32\QAGENTRT.DLL
2010-05-04 18:25:51 ----A---- C:\Windows\system32\puiapi.dll
2010-05-04 18:25:50 ----A---- C:\Windows\system32\psisdecd.dll
2010-05-04 18:25:50 ----A---- C:\Windows\system32\PSHED.DLL
2010-05-04 18:25:50 ----A---- C:\Windows\system32\propsys.dll
2010-05-04 18:25:50 ----A---- C:\Windows\system32\propdefs.dll
2010-05-04 18:25:50 ----A---- C:\Windows\system32\profsvc.dll
2010-05-04 18:25:44 ----A---- C:\Windows\system32\sendmail.dll
2010-05-04 18:25:42 ----A---- C:\Windows\system32\shell32.dll
2010-05-04 18:25:41 ----A---- C:\Windows\system32\shlwapi.dll
2010-05-04 18:25:41 ----A---- C:\Windows\system32\shdocvw.dll
2010-05-04 18:25:40 ----A---- C:\Windows\system32\sethc.exe
2010-05-04 18:25:40 ----A---- C:\Windows\system32\services.exe
2010-05-04 18:25:39 ----A---- C:\Windows\system32\setupapi.dll
2010-05-04 18:25:29 ----A---- C:\Windows\system32\eapphost.dll
2010-05-04 18:25:29 ----A---- C:\Windows\system32\eappgnui.dll
2010-05-04 18:25:28 ----A---- C:\Windows\system32\EhStorAPI.dll
2010-05-04 18:25:28 ----A---- C:\Windows\system32\eappcfg.dll
2010-05-04 18:25:28 ----A---- C:\Windows\system32\eapp3hst.dll
2010-05-04 18:25:27 ----A---- C:\Windows\system32\dsprop.dll
2010-05-04 18:25:26 ----A---- C:\Windows\system32\evr.dll
2010-05-04 18:25:26 ----A---- C:\Windows\system32\eudcedit.exe
2010-05-04 18:25:26 ----A---- C:\Windows\system32\dxmasf.dll
2010-05-04 18:25:26 ----A---- C:\Windows\system32\dwm.exe
2010-05-04 18:25:26 ----A---- C:\Windows\system32\dsound.dll
2010-05-04 18:25:25 ----A---- C:\Windows\system32\f3ahvoas.dll
2010-05-04 18:25:25 ----A---- C:\Windows\system32\extmgr.dll
2010-05-04 18:25:25 ----A---- C:\Windows\system32\ExplorerFrame.dll
2010-05-04 18:25:25 ----A---- C:\Windows\system32\esent.dll
2010-05-04 18:25:25 ----A---- C:\Windows\explorer.exe
2010-05-04 18:25:24 ----A---- C:\Windows\system32\EncDec.dll
2010-05-04 18:25:24 ----A---- C:\Windows\system32\emdmgmt.dll
2010-05-04 18:25:24 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2010-05-04 18:25:24 ----A---- C:\Windows\system32\EhStorAuthn.dll
2010-05-04 18:25:23 ----A---- C:\Windows\system32\es.dll
2010-05-04 18:25:23 ----A---- C:\Windows\system32\EhStorShell.dll
2010-05-04 18:25:23 ----A---- C:\Windows\system32\diagperf.dll
2010-05-04 18:25:22 ----A---- C:\Windows\system32\dimsroam.dll
2010-05-04 18:25:22 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2010-05-04 18:25:21 ----A---- C:\Windows\system32\diskraid.exe
2010-05-04 18:25:21 ----A---- C:\Windows\system32\diskpart.exe
2010-05-04 18:25:20 ----A---- C:\Windows\system32\dfsr.exe
2010-05-04 18:25:20 ----A---- C:\Windows\system32\dfshim.dll
2010-05-04 18:25:20 ----A---- C:\Windows\system32\devmgr.dll
2010-05-04 18:25:18 ----A---- C:\Windows\system32\dhcpcsvc.dll
2010-05-04 18:25:17 ----A---- C:\Windows\system32\drvstore.dll
2010-05-04 18:25:17 ----A---- C:\Windows\system32\dpapimig.exe
2010-05-04 18:25:17 ----A---- C:\Windows\system32\dot3svc.dll
2010-05-04 18:25:17 ----A---- C:\Windows\system32\dot3msm.dll
2010-05-04 18:25:17 ----A---- C:\Windows\system32\dot3cfg.dll
2010-05-04 18:25:16 ----A---- C:\Windows\system32\drmmgrtn.dll
2010-05-04 18:25:15 ----A---- C:\Windows\system32\drvinst.exe
2010-05-04 18:25:15 ----A---- C:\Windows\system32\drmv2clt.dll
2010-05-04 18:25:14 ----A---- C:\Windows\system32\dnsrslvr.dll
2010-05-04 18:25:14 ----A---- C:\Windows\system32\dnsapi.dll
2010-05-04 18:25:14 ----A---- C:\Windows\system32\dmusic.dll
2010-05-04 18:25:14 ----A---- C:\Windows\system32\dmsynth.dll
2010-05-04 18:25:13 ----A---- C:\Windows\system32\hbaapi.dll
2010-05-04 18:25:11 ----A---- C:\Windows\system32\gpresult.exe
2010-05-04 18:25:09 ----A---- C:\Windows\system32\iasads.dll
2010-05-04 18:25:09 ----A---- C:\Windows\system32\gpupdate.exe
2010-05-04 18:25:09 ----A---- C:\Windows\system32\gpsvc.dll
2010-05-04 18:25:08 ----A---- C:\Windows\system32\iashlpr.dll
2010-05-04 18:25:08 ----A---- C:\Windows\system32\iasdatastore.dll
2010-05-04 18:25:08 ----A---- C:\Windows\system32\iasacct.dll
2010-05-04 18:25:06 ----A---- C:\Windows\system32\iasnap.dll
2010-05-04 18:25:06 ----A---- C:\Windows\system32\IasMigReader.exe
2010-05-04 18:25:06 ----A---- C:\Windows\system32\IasMigPlugin.dll
2010-05-04 18:25:05 ----A---- C:\Windows\system32\hidserv.dll
2010-05-04 18:25:05 ----A---- C:\Windows\system32\hdwwiz.exe
2010-05-04 18:25:04 ----A---- C:\Windows\system32\fontext.dll
2010-05-04 18:25:04 ----A---- C:\Windows\system32\findstr.exe
2010-05-04 18:25:04 ----A---- C:\Windows\system32\Faultrep.dll
2010-05-04 18:25:03 ----A---- C:\Windows\system32\fc.exe
2010-05-04 18:25:02 ----A---- C:\Windows\system32\feclient.dll
2010-05-04 18:25:02 ----A---- C:\Windows\system32\fdWSD.dll
2010-05-04 18:25:02 ----A---- C:\Windows\system32\fdWCN.dll
2010-05-04 18:25:02 ----A---- C:\Windows\system32\fdSSDP.dll
2010-05-04 18:25:01 ----A---- C:\Windows\system32\fdProxy.dll
2010-05-04 18:25:01 ----A---- C:\Windows\system32\fdeploy.dll
2010-05-04 18:25:01 ----A---- C:\Windows\system32\fdBthProxy.dll
2010-05-04 18:25:01 ----A---- C:\Windows\system32\fdBth.dll
2010-05-04 18:25:00 ----A---- C:\Windows\system32\gpapi.dll
2010-05-04 18:25:00 ----A---- C:\Windows\system32\gdi32.dll
2010-05-04 18:24:59 ----A---- C:\Windows\system32\gpedit.dll
2010-05-04 18:24:58 ----A---- C:\Windows\system32\fundisc.dll
2010-05-04 18:24:57 ----A---- C:\Windows\system32\ftp.exe
2010-05-04 18:24:57 ----A---- C:\Windows\system32\fsquirt.exe
2010-05-04 18:24:56 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2010-05-04 18:24:56 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2010-05-04 18:24:55 ----A---- C:\Windows\system32\gameux.dll
2010-05-04 18:24:55 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2010-05-04 18:24:54 ----A---- C:\Windows\system32\authui.dll
2010-05-04 18:24:54 ----A---- C:\Windows\system32\audiosrv.dll
2010-05-04 18:24:54 ----A---- C:\Windows\system32\AudioSes.dll
2010-05-04 18:24:53 ----A---- C:\Windows\system32\autochk.exe
2010-05-04 18:24:53 ----A---- C:\Windows\system32\authz.dll
2010-05-04 18:24:53 ----A---- C:\Windows\system32\audiodg.exe
2010-05-04 18:24:53 ----A---- C:\Windows\system32\atmfd.dll
2010-05-04 18:24:52 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2010-05-04 18:24:52 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2010-05-04 18:24:52 ----A---- C:\Windows\system32\atmlib.dll
2010-05-04 18:24:51 ----A---- C:\Windows\system32\autofmt.exe
2010-05-04 18:24:51 ----A---- C:\Windows\system32\autoconv.exe
2010-05-04 18:24:50 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2010-05-04 18:24:50 ----A---- C:\Windows\system32\autoplay.dll
2010-05-04 18:24:46 ----A---- C:\Windows\system32\brcpl.dll
2010-05-04 18:24:44 ----A---- C:\Windows\system32\bthci.dll
2010-05-04 18:24:44 ----A---- C:\Windows\system32\browseui.dll
2010-05-04 18:24:42 ----A---- C:\Windows\system32\basecsp.dll
2010-05-04 18:24:41 ----A---- C:\Windows\system32\azroles.dll
2010-05-04 18:24:40 ----A---- C:\Windows\system32\blackbox.dll
2010-05-04 18:24:40 ----A---- C:\Windows\system32\bitsigd.dll
2010-05-04 18:24:40 ----A---- C:\Windows\system32\bcrypt.dll
2010-05-04 18:24:39 ----A---- C:\Windows\system32\BFE.DLL
2010-05-04 18:24:36 ----A---- C:\Windows\system32\accessibilitycpl.dll
2010-05-04 18:24:34 ----A---- C:\Windows\system32\aaclient.dll
2010-05-04 18:24:33 ----A---- C:\Windows\system32\apphelp.dll
2010-05-04 18:24:32 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-05-04 18:24:31 ----A---- C:\Windows\system32\apds.dll
2010-05-04 18:24:30 ----A---- C:\Windows\system32\adsmsext.dll
2010-05-04 18:24:30 ----A---- C:\Windows\system32\adsldpc.dll
2010-05-04 18:24:29 ----A---- C:\Windows\system32\adtschema.dll
2010-05-04 18:24:28 ----A---- C:\Windows\system32\conime.exe
2010-05-04 18:24:28 ----A---- C:\Windows\system32\comuid.dll
2010-05-04 18:24:28 ----A---- C:\Windows\system32\comsvcs.dll
2010-05-04 18:24:28 ----A---- C:\Windows\system32\advapi32.dll
2010-05-04 18:24:27 ----A---- C:\Windows\system32\crypt32.dll
2010-05-04 18:24:27 ----A---- C:\Windows\system32\credui.dll
2010-05-04 18:24:26 ----A---- C:\Windows\system32\connect.dll
2010-05-04 18:24:26 ----A---- C:\Windows\system32\cmdial32.dll
2010-05-04 18:24:25 ----A---- C:\Windows\system32\comdlg32.dll
2010-05-04 18:24:24 ----A---- C:\Windows\system32\dbgeng.dll
2010-05-04 18:24:24 ----A---- C:\Windows\system32\cmmon32.exe
2010-05-04 18:24:23 ----A---- C:\Windows\system32\davclnt.dll
2010-05-04 18:24:23 ----A---- C:\Windows\system32\dataclen.dll
2010-05-04 18:24:23 ----A---- C:\Windows\system32\d3d9.dll
2010-05-04 18:24:22 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2010-05-04 18:24:22 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2010-05-04 18:24:22 ----A---- C:\Windows\system32\DevicePairing.dll
2010-05-04 18:24:22 ----A---- C:\Windows\system32\DeviceEject.exe
2010-05-04 18:24:21 ----A---- C:\Windows\system32\cscdll.dll
2010-05-04 18:24:21 ----A---- C:\Windows\system32\cscapi.dll
2010-05-04 18:24:21 ----A---- C:\Windows\system32\cryptui.dll
2010-05-04 18:24:21 ----A---- C:\Windows\system32\cryptsvc.dll
2010-05-04 18:24:20 ----A---- C:\Windows\system32\csrstub.exe
2010-05-04 18:24:20 ----A---- C:\Windows\system32\cscript.exe
2010-05-04 18:24:19 ----A---- C:\Windows\system32\cdd.dll
2010-05-04 18:24:18 ----A---- C:\Windows\system32\certmgr.dll
2010-05-04 18:24:18 ----A---- C:\Windows\system32\certcli.dll
2010-05-04 18:24:17 ----A---- C:\Windows\system32\CertEnrollUI.dll
2010-05-04 18:24:17 ----A---- C:\Windows\system32\CertEnroll.dll
2010-05-04 18:24:17 ----A---- C:\Windows\system32\bthudtask.exe
2010-05-04 18:24:17 ----A---- C:\Windows\system32\bthserv.dll
2010-05-04 18:24:16 ----A---- C:\Windows\system32\cbsra.exe
2010-05-04 18:24:15 ----A---- C:\Windows\system32\cipher.exe
2010-05-04 18:24:15 ----A---- C:\Windows\system32\ci.dll
2010-05-04 18:24:14 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2010-05-04 18:24:14 ----A---- C:\Windows\system32\chtbrkr.dll
2010-05-04 18:24:14 ----A---- C:\Windows\system32\chsbrkr.dll
2010-05-04 18:24:13 ----A---- C:\Windows\system32\certreq.exe
2010-05-04 18:24:13 ----A---- C:\Windows\system32\certprop.dll
2010-05-04 18:24:12 ----A---- C:\Windows\system32\msftedit.dll
2010-05-04 18:24:12 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-05-04 18:24:12 ----A---- C:\Windows\system32\msfeeds.dll
2010-05-04 18:24:12 ----A---- C:\Windows\system32\certutil.exe
2010-05-04 18:24:11 ----A---- C:\Windows\system32\msihnd.dll
2010-05-04 18:24:11 ----A---- C:\Windows\system32\msiexec.exe
2010-05-04 18:24:11 ----A---- C:\Windows\system32\msexcl40.dll
2010-05-04 18:24:11 ----A---- C:\Windows\system32\msexch40.dll
2010-05-04 18:24:11 ----A---- C:\Windows\system32\msdtctm.dll
2010-05-04 18:24:10 ----A---- C:\Windows\system32\mshtml.dll
2010-05-04 18:24:09 ----A---- C:\Windows\system32\msi.dll
2010-05-04 18:24:09 ----A---- C:\Windows\system32\mshtmled.dll
2010-05-04 18:24:07 ----A---- C:\Windows\system32\msdrm.dll
2010-05-04 18:24:06 ----A---- C:\Windows\system32\msdtcprx.dll
2010-05-04 18:24:06 ----A---- C:\Windows\system32\msctfui.dll
2010-05-04 18:24:06 ----A---- C:\Windows\system32\msctfp.dll
2010-05-04 18:24:06 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2010-05-04 18:24:06 ----A---- C:\Windows\system32\msctf.dll
2010-05-04 18:24:04 ----A---- C:\Windows\system32\msimsg.dll
2010-05-04 18:24:03 ----A---- C:\Windows\system32\MPSSVC.dll
2010-05-04 18:24:02 ----A---- C:\Windows\system32\mprapi.dll
2010-05-04 18:24:02 ----A---- C:\Windows\system32\mpr.dll
2010-05-04 18:24:00 ----A---- C:\Windows\system32\modemui.dll
2010-05-04 18:24:00 ----A---- C:\Windows\system32\MMDevAPI.dll
2010-05-04 18:23:58 ----A---- C:\Windows\system32\mscandui.dll
2010-05-04 18:23:57 ----A---- C:\Windows\system32\mscms.dll
2010-05-04 18:23:56 ----A---- C:\Windows\system32\mscories.dll
2010-05-04 18:23:56 ----A---- C:\Windows\system32\mscorier.dll
2010-05-04 18:23:55 ----A---- C:\Windows\system32\mscoree.dll
2010-05-04 18:23:54 ----A---- C:\Windows\system32\netapi32.dll
2010-05-04 18:23:53 ----A---- C:\Windows\system32\netplwiz.dll
2010-05-04 18:23:53 ----A---- C:\Windows\system32\netcenter.dll
2010-05-04 18:23:53 ----A---- C:\Windows\system32\ncryptui.dll
2010-05-04 18:23:53 ----A---- C:\Windows\system32\ncrypt.dll
2010-05-04 18:23:52 ----A---- C:\Windows\system32\NetProjW.dll
2010-05-04 18:23:51 ----A---- C:\Windows\system32\netlogon.dll
2010-05-04 18:23:51 ----A---- C:\Windows\system32\netiohlp.dll
2010-05-04 18:23:51 ----A---- C:\Windows\system32\mtxclu.dll
2010-05-04 18:23:48 ----A---- C:\Windows\system32\msxml6.dll
2010-05-04 18:23:47 ----A---- C:\Windows\system32\NcdProp.dll
2010-05-04 18:23:47 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2010-05-04 18:23:47 ----A---- C:\Windows\system32\msxml3.dll
2010-05-04 18:23:44 ----A---- C:\Windows\system32\newdev.exe
2010-05-04 18:23:44 ----A---- C:\Windows\system32\newdev.dll
2010-05-04 18:23:44 ----A---- C:\Windows\system32\netshell.dll
2010-05-04 18:23:43 ----A---- C:\Windows\system32\networkmap.dll
2010-05-04 18:23:43 ----A---- C:\Windows\system32\networkitemfactory.dll
2010-05-04 18:23:43 ----A---- C:\Windows\system32\networkexplorer.dll
2010-05-04 18:23:42 ----A---- C:\Windows\system32\msnetobj.dll
2010-05-04 18:23:42 ----A---- C:\Windows\system32\msltus40.dll
2010-05-04 18:23:41 ----A---- C:\Windows\system32\msscntrs.dll
2010-05-04 18:23:41 ----A---- C:\Windows\system32\msscb.dll
2010-05-04 18:23:41 ----A---- C:\Windows\system32\msrepl40.dll
2010-05-04 18:23:41 ----A---- C:\Windows\system32\msrd3x40.dll
2010-05-04 18:23:41 ----A---- C:\Windows\system32\msrating.dll
2010-05-04 18:23:41 ----A---- C:\Windows\system32\mspbde40.dll
2010-05-04 18:23:41 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2010-05-04 18:23:40 ----A---- C:\Windows\system32\msrd2x40.dll
2010-05-04 18:23:40 ----A---- C:\Windows\system32\msinfo32.exe
2010-05-04 18:23:40 ----A---- C:\Windows\system32\msimtf.dll
2010-05-04 18:23:39 ----A---- C:\Windows\system32\msjtes40.dll
2010-05-04 18:23:39 ----A---- C:\Windows\system32\msjter40.dll
2010-05-04 18:23:39 ----A---- C:\Windows\system32\msjint40.dll
2010-05-04 18:23:39 ----A---- C:\Windows\system32\msjetoledb40.dll
2010-05-04 18:23:39 ----A---- C:\Windows\system32\msjet40.dll
2010-05-04 18:23:39 ----A---- C:\Windows\system32\msisip.dll
2010-05-04 18:23:38 ----A---- C:\Windows\system32\msvcp60.dll
2010-05-04 18:23:38 ----A---- C:\Windows\system32\msv1_0.dll
2010-05-04 18:23:38 ----A---- C:\Windows\system32\msutb.dll
2010-05-04 18:23:38 ----A---- C:\Windows\system32\mstscax.dll
2010-05-04 18:23:37 ----A---- C:\Windows\system32\msxbde40.dll
2010-05-04 18:23:37 ----A---- C:\Windows\system32\mswstr10.dll
2010-05-04 18:23:37 ----A---- C:\Windows\system32\mswsock.dll
2010-05-04 18:23:37 ----A---- C:\Windows\system32\mswdat10.dll
2010-05-04 18:23:37 ----A---- C:\Windows\system32\msvcrt.dll
2010-05-04 18:23:36 ----A---- C:\Windows\system32\MSVidCtl.dll
2010-05-04 18:23:36 ----A---- C:\Windows\system32\mssphtb.dll
2010-05-04 18:23:36 ----A---- C:\Windows\system32\mssph.dll
2010-05-04 18:23:35 ----A---- C:\Windows\system32\mssrch.dll
2010-05-04 18:23:35 ----A---- C:\Windows\system32\mssprxy.dll
2010-05-04 18:23:35 ----A---- C:\Windows\system32\mssitlb.dll
2010-05-04 18:23:35 ----A---- C:\Windows\system32\msshooks.dll
2010-05-04 18:23:35 ----A---- C:\Windows\system32\msscp.dll
2010-05-04 18:23:34 ----A---- C:\Windows\system32\mstsc.exe
2010-05-04 18:23:34 ----A---- C:\Windows\system32\mstlsapi.dll
2010-05-04 18:23:34 ----A---- C:\Windows\system32\mstime.dll
2010-05-04 18:23:34 ----A---- C:\Windows\system32\mstext40.dll
2010-05-04 18:23:34 ----A---- C:\Windows\system32\mssvp.dll
2010-05-04 18:23:34 ----A---- C:\Windows\system32\msstrc.dll
2010-05-04 18:23:34 ----A---- C:\Windows\system32\msshsq.dll
2010-05-04 18:23:34 ----A---- C:\Windows\system32\inetcomm.dll
2010-05-04 18:23:32 ----A---- C:\Windows\system32\InkEd.dll
2010-05-04 18:23:31 ----A---- C:\Windows\system32\infocardapi.dll
2010-05-04 18:23:31 ----A---- C:\Windows\system32\inetppui.dll
2010-05-04 18:23:31 ----A---- C:\Windows\system32\inetpp.dll
2010-05-04 18:23:28 ----A---- C:\Windows\system32\imm32.dll
2010-05-04 18:23:27 ----A---- C:\Windows\system32\iscsilog.dll
2010-05-04 18:23:27 ----A---- C:\Windows\system32\IPSECSVC.DLL
2010-05-04 18:23:26 ----A---- C:\Windows\system32\jscript.dll
2010-05-04 18:23:26 ----A---- C:\Windows\system32\ipsmsnap.dll
2010-05-04 18:23:25 ----A---- C:\Windows\system32\jsproxy.dll
2010-05-04 18:23:25 ----A---- C:\Windows\system32\input.dll
2010-05-04 18:23:24 ----A---- C:\Windows\system32\ipsecsnp.dll
2010-05-04 18:23:23 ----A---- C:\Windows\system32\iphlpsvc.dll
2010-05-04 18:23:23 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2010-05-04 18:23:23 ----A---- C:\Windows\system32\ipconfig.exe
2010-05-04 18:23:23 ----A---- C:\Windows\system32\iertutil.dll
2010-05-04 18:23:22 ----A---- C:\Windows\system32\iepeers.dll
2010-05-04 18:23:22 ----A---- C:\Windows\system32\ieframe.dll
2010-05-04 18:23:21 ----A---- C:\Windows\system32\ifmon.dll
2010-05-04 18:23:21 ----A---- C:\Windows\system32\iassvcs.dll
2010-05-04 18:23:20 ----A---- C:\Windows\system32\icardres.dll
2010-05-04 18:23:20 ----A---- C:\Windows\system32\icardagt.exe
2010-05-04 18:23:20 ----A---- C:\Windows\system32\iassdo.dll
2010-05-04 18:23:20 ----A---- C:\Windows\system32\iasrad.dll
2010-05-04 18:23:20 ----A---- C:\Windows\system32\iaspolcy.dll
2010-05-04 18:23:19 ----A---- C:\Windows\system32\iedkcs32.dll
2010-05-04 18:23:19 ----A---- C:\Windows\system32\ieapfltr.dll
2010-05-04 18:23:19 ----A---- C:\Windows\system32\iassam.dll
2010-05-04 18:23:19 ----A---- C:\Windows\system32\iasrecst.dll
2010-05-04 18:23:18 ----A---- C:\Windows\system32\ieaksie.dll
2010-05-04 18:23:17 ----A---- C:\Windows\system32\IMJP10K.DLL
2010-05-04 18:23:16 ----A---- C:\Windows\system32\imapi.dll
2010-05-04 18:23:15 ----A---- C:\Windows\system32\imapi2fs.dll
2010-05-04 18:23:15 ----A---- C:\Windows\system32\imapi2.dll
2010-05-04 18:23:15 ----A---- C:\Windows\system32\IKEEXT.DLL
2010-05-04 18:23:11 ----A---- C:\Windows\system32\mfps.dll
2010-05-04 18:23:11 ----A---- C:\Windows\system32\mfpmp.exe
2010-05-04 18:23:11 ----A---- C:\Windows\system32\mfplat.dll
2010-05-04 18:23:11 ----A---- C:\Windows\system32\mferror.dll
2010-05-04 18:23:11 ----A---- C:\Windows\system32\mfc42.dll
2010-05-04 18:23:10 ----A---- C:\Windows\system32\mfc42u.dll
2010-05-04 18:23:10 ----A---- C:\Windows\system32\mf.dll
2010-05-04 18:23:08 ----A---- C:\Windows\system32\milcore.dll
2010-05-04 18:23:06 ----A---- C:\Windows\system32\mimefilt.dll
2010-05-04 18:23:05 ----A---- C:\Windows\system32\mmcico.dll
2010-05-04 18:23:05 ----A---- C:\Windows\system32\mmci.dll
2010-05-04 18:23:05 ----A---- C:\Windows\system32\midimap.dll
2010-05-04 18:23:04 ----A---- C:\Windows\system32\mmcndmgr.dll
2010-05-04 18:23:04 ----A---- C:\Windows\system32\mmc.exe
2010-05-04 18:23:01 ----A---- C:\Windows\system32\korwbrkr.dll
2010-05-04 18:22:59 ----A---- C:\Windows\system32\l2nacp.dll
2010-05-04 18:22:59 ----A---- C:\Windows\system32\kernel32.dll
2010-05-04 18:22:59 ----A---- C:\Windows\system32\kerberos.dll
2010-05-04 18:22:59 ----A---- C:\Windows\system32\kd1394.dll
2010-05-04 18:22:58 ----A---- C:\Windows\system32\kdusb.dll
2010-05-04 18:22:58 ----A---- C:\Windows\system32\kdcom.dll
2010-05-04 18:22:57 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2010-05-04 18:22:57 ----A---- C:\Windows\system32\mcmde.dll
2010-05-04 18:22:57 ----A---- C:\Windows\system32\mblctr.exe
2010-05-04 18:22:56 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2010-05-04 18:22:56 ----A---- C:\Windows\system32\logman.exe
2010-05-04 18:22:56 ----A---- C:\Windows\system32\logagent.exe
2010-05-04 18:22:56 ----A---- C:\Windows\system32\localspl.dll
2010-05-04 18:22:55 ----A---- C:\Windows\system32\Magnify.exe
2010-05-04 18:22:54 ----A---- C:\Windows\system32\WebClnt.dll
2010-05-04 18:22:54 ----A---- C:\Windows\system32\shsetup.dll
2010-05-04 18:22:54 ----A---- C:\Windows\system32\lsasrv.dll
2010-05-04 18:22:53 ----A---- C:\Windows\system32\wercon.exe
2010-05-04 18:22:53 ----A---- C:\Windows\system32\wer.dll
2010-05-04 18:22:53 ----A---- C:\Windows\system32\webcheck.dll
2010-05-04 18:22:53 ----A---- C:\Windows\system32\wdscore.dll
2010-05-04 18:22:52 ----A---- C:\Windows\system32\wdc.dll
2010-05-04 18:22:51 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2010-05-04 18:22:51 ----A---- C:\Windows\system32\WindowsCodecs.dll
2010-05-04 18:22:50 ----A---- C:\Windows\system32\wininet.dll
2010-05-04 18:22:50 ----A---- C:\Windows\system32\winhttp.dll
2010-05-04 18:22:50 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2010-05-04 18:22:50 ----A---- C:\Windows\system32\wevtutil.exe
2010-05-04 18:22:49 ----A---- C:\Windows\system32\whealogr.dll
2010-05-04 18:22:49 ----A---- C:\Windows\system32\wevtsvc.dll
2010-05-04 18:22:49 ----A---- C:\Windows\system32\wevtapi.dll
2010-05-04 18:22:49 ----A---- C:\Windows\system32\wersvc.dll
2010-05-04 18:22:49 ----A---- C:\Windows\system32\WerFaultSecure.exe
2010-05-04 18:22:49 ----A---- C:\Windows\system32\WerFault.exe
2010-05-04 18:22:48 ----A---- C:\Windows\system32\win32spl.dll
2010-05-04 18:22:48 ----A---- C:\Windows\system32\wiaservc.dll
2010-05-04 18:22:48 ----A---- C:\Windows\system32\wiaaut.dll
2010-05-04 18:22:47 ----A---- C:\Windows\system32\version.dll
2010-05-04 18:22:47 ----A---- C:\Windows\system32\vdsutil.dll
2010-05-04 18:22:47 ----A---- C:\Windows\system32\vdsdyn.dll
2010-05-04 18:22:47 ----A---- C:\Windows\system32\vds.exe
2010-05-04 18:22:47 ----A---- C:\Windows\system32\vdmdbg.dll
2010-05-04 18:22:47 ----A---- C:\Windows\system32\vbscript.dll
2010-05-04 18:22:46 ----A---- C:\Windows\system32\user32.dll
2010-05-04 18:22:45 ----A---- C:\Windows\system32\uxsms.dll
2010-05-04 18:22:45 ----A---- C:\Windows\system32\Utilman.exe
2010-05-04 18:22:45 ----A---- C:\Windows\system32\usp10.dll
2010-05-04 18:22:45 ----A---- C:\Windows\system32\userenv.dll
2010-05-04 18:22:45 ----A---- C:\Windows\system32\usercpl.dll
2010-05-04 18:22:44 ----A---- C:\Windows\system32\wcnwiz2.dll
2010-05-04 18:22:44 ----A---- C:\Windows\system32\wcnwiz.dll
2010-05-04 18:22:44 ----A---- C:\Windows\system32\WcnNetsh.dll
2010-05-04 18:22:44 ----A---- C:\Windows\system32\wcncsvc.dll
2010-05-04 18:22:42 ----A---- C:\Windows\system32\w32time.dll
2010-05-04 18:22:42 ----A---- C:\Windows\system32\VSSVC.exe
2010-05-04 18:22:41 ----A---- C:\Windows\system32\WscEapPr.dll
2010-05-04 18:22:41 ----A---- C:\Windows\system32\wscapi.dll
2010-05-04 18:22:41 ----A---- C:\Windows\system32\vssapi.dll
2010-05-04 18:22:40 ----A---- C:\Windows\system32\wsdchngr.dll
2010-05-04 18:22:40 ----A---- C:\Windows\system32\wscisvif.dll
2010-05-04 18:22:39 ----A---- C:\Windows\system32\WSDMon.dll
2010-05-04 18:22:39 ----A---- C:\Windows\system32\WSDApi.dll
2010-05-04 18:22:39 ----A---- C:\Windows\system32\wscript.exe
2010-05-04 18:22:39 ----A---- C:\Windows\system32\wscntfy.dll
2010-05-04 18:22:38 ----A---- C:\Windows\system32\wscsvc.dll
2010-05-04 18:22:37 ----A---- C:\Windows\system32\wow32.dll
2010-05-04 18:22:37 ----A---- C:\Windows\system32\WMVXENCD.DLL
2010-05-04 18:22:37 ----A---- C:\Windows\system32\WMVSDECD.DLL
2010-05-04 18:22:37 ----A---- C:\Windows\system32\WMVENCOD.DLL
2010-05-04 18:22:36 ----A---- C:\Windows\system32\WMVCORE.DLL
2010-05-04 18:22:34 ----A---- C:\Windows\system32\wusa.exe
2010-05-04 18:22:34 ----A---- C:\Windows\system32\wpcsvc.dll
2010-05-04 18:22:34 ----A---- C:\Windows\system32\wpccpl.dll
2010-05-04 18:22:34 ----A---- C:\Windows\system32\wpcao.dll
2010-05-04 18:22:32 ----A---- C:\Windows\system32\xmlfilter.dll
2010-05-04 18:22:29 ----A---- C:\Windows\system32\wshext.dll
2010-05-04 18:22:29 ----A---- C:\Windows\system32\wshbth.dll
2010-05-04 18:22:29 ----A---- C:\Windows\system32\wsepno.dll
2010-05-04 18:22:28 ----A---- C:\Windows\system32\WsmSvc.dll
2010-05-04 18:22:27 ----A---- C:\Windows\system32\wsnmp32.dll
2010-05-04 18:22:27 ----A---- C:\Windows\system32\wlanui.dll
2010-05-04 18:22:27 ----A---- C:\Windows\system32\wlansvc.dll
2010-05-04 18:22:27 ----A---- C:\Windows\system32\wlanpref.dll
2010-05-04 18:22:27 ----A---- C:\Windows\system32\wlanmsm.dll
2010-05-04 18:22:27 ----A---- C:\Windows\system32\wlanhlp.dll
2010-05-04 18:22:26 ----A---- C:\Windows\system32\wlgpclnt.dll
2010-05-04 18:22:26 ----A---- C:\Windows\system32\Wldap32.dll
2010-05-04 18:22:26 ----A---- C:\Windows\system32\wlangpui.dll
2010-05-04 18:22:26 ----A---- C:\Windows\system32\wisptis.exe
2010-05-04 18:22:25 ----A---- C:\Windows\system32\WinSCard.dll
2010-05-04 18:22:25 ----A---- C:\Windows\system32\winrnr.dll
2010-05-04 18:22:25 ----A---- C:\Windows\system32\winresume.exe
2010-05-04 18:22:24 ----A---- C:\Windows\system32\WinSAT.exe
2010-05-04 18:22:24 ----A---- C:\Windows\system32\winmm.dll
2010-05-04 18:22:24 ----A---- C:\Windows\system32\winlogon.exe
2010-05-04 18:22:24 ----A---- C:\Windows\system32\winload.exe
2010-05-04 18:22:23 ----A---- C:\Windows\system32\winsrv.dll
2010-05-04 18:22:22 ----A---- C:\Windows\system32\WMPhoto.dll
2010-05-04 18:22:22 ----A---- C:\Windows\system32\WMNetMgr.dll
2010-05-04 18:22:21 ----A---- C:\Windows\system32\wmpmde.dll
2010-05-04 18:22:21 ----A---- C:\Windows\system32\wmpeffects.dll
2010-05-04 18:22:20 ----A---- C:\Windows\system32\wmploc.DLL
2010-05-04 18:22:18 ----A---- C:\Windows\system32\wmp.dll
2010-05-04 18:22:17 ----A---- C:\Windows\system32\wmdrmsdk.dll
2010-05-04 18:22:16 ----A---- C:\Windows\system32\wmicmiplugin.dll
2010-05-04 18:22:15 ----A---- C:\Windows\system32\Storprop.dll
2010-05-04 18:22:15 ----A---- C:\Windows\system32\stobject.dll
2010-05-04 18:22:14 ----A---- C:\Windows\system32\sud.dll
2010-05-04 18:22:12 ----A---- C:\Windows\system32\srcore.dll
2010-05-04 18:22:12 ----A---- C:\Windows\system32\srchadmin.dll
2010-05-04 18:22:11 ----A---- C:\Windows\system32\srvsvc.dll
2010-05-04 18:22:06 ----A---- C:\Windows\system32\sysmain.dll
2010-05-04 18:22:06 ----A---- C:\Windows\system32\swprv.dll
2010-05-04 18:22:05 ----A---- C:\Windows\system32\sysclass.dll
2010-05-04 18:22:05 ----A---- C:\Windows\system32\SyncCenter.dll
2010-05-04 18:22:02 ----A---- C:\Windows\system32\SMBHelperClass.dll
2010-05-04 18:22:02 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2010-05-04 18:22:02 ----A---- C:\Windows\system32\slwmi.dll
2010-05-04 18:22:01 ----A---- C:\Windows\system32\smss.exe
2010-05-04 18:22:00 ----A---- C:\Windows\system32\SmiEngine.dll
2010-05-04 18:21:59 ----A---- C:\Windows\system32\slcc.dll
2010-05-04 18:21:59 ----A---- C:\Windows\system32\SLC.dll
2010-05-04 18:21:59 ----A---- C:\Windows\system32\shwebsvc.dll
2010-05-04 18:21:59 ----A---- C:\Windows\system32\shsvcs.dll
2010-05-04 18:21:58 ----A---- C:\Windows\system32\SLsvc.exe
2010-05-04 18:21:57 ----A---- C:\Windows\system32\slwga.dll
2010-05-04 18:21:57 ----A---- C:\Windows\system32\SLUINotify.dll
2010-05-04 18:21:57 ----A---- C:\Windows\system32\SLUI.exe
2010-05-04 18:21:57 ----A---- C:\Windows\system32\slmgr.vbs
2010-05-04 18:21:57 ----A---- C:\Windows\system32\slcinst.dll
2010-05-04 18:21:56 ----A---- C:\Windows\system32\SLLUA.exe
2010-05-04 18:21:56 ----A---- C:\Windows\system32\SLCExt.dll
2010-05-04 18:21:55 ----A---- C:\Windows\system32\spp.dll
2010-05-04 18:21:55 ----A---- C:\Windows\system32\spoolsv.exe
2010-05-04 18:21:55 ----A---- C:\Windows\system32\spoolss.dll
2010-05-04 18:21:55 ----A---- C:\Windows\system32\spinstall.exe
2010-05-04 18:21:55 ----A---- C:\Windows\system32\SLCommDlg.dll
2010-05-04 18:21:54 ----A---- C:\Windows\system32\spcmsg.dll
2010-05-04 18:21:52 ----A---- C:\Windows\system32\spwmp.dll
2010-05-04 18:21:52 ----A---- C:\Windows\system32\spwizui.dll
2010-05-04 18:21:52 ----A---- C:\Windows\system32\sperror.dll
2010-05-04 18:21:51 ----A---- C:\Windows\system32\sqlsrv32.dll
2010-05-04 18:21:51 ----A---- C:\Windows\system32\spwinsat.dll
2010-05-04 18:21:50 ----A---- C:\Windows\system32\spreview.exe
2010-05-04 18:21:48 ----A---- C:\Windows\system32\softkbd.dll
2010-05-04 18:21:48 ----A---- C:\Windows\system32\SnippingTool.exe
2010-05-04 18:21:48 ----A---- C:\Windows\system32\SndVol.exe
2010-05-04 18:21:46 ----A---- C:\Windows\system32\TSTheme.exe
2010-05-04 18:21:45 ----A---- C:\Windows\system32\TsWpfWrp.exe
2010-05-04 18:21:41 ----A---- C:\Windows\system32\tsgqec.dll
2010-05-04 18:21:40 ----A---- C:\Windows\system32\tscupgrd.exe
2010-05-04 18:21:35 ----A---- C:\Windows\system32\zipfldr.dll
2010-05-04 18:21:35 ----A---- C:\Windows\system32\untfs.dll
2010-05-04 18:21:34 ----A---- C:\Windows\system32\urlmon.dll
2010-05-04 18:21:30 ----A---- C:\Windows\system32\uDWM.dll
2010-05-04 18:21:28 ----A---- C:\Windows\system32\ulib.dll
2010-05-04 18:21:27 ----A---- C:\Windows\system32\umpnpmgr.dll
2010-05-04 18:21:26 ----A---- C:\Windows\system32\systemcpl.dll
2010-05-04 18:21:06 ----A---- C:\Windows\system32\tsbyuv.dll
2010-05-04 18:21:03 ----A---- C:\Windows\system32\tquery.dll
2010-05-04 18:21:01 ----A---- C:\Windows\system32\tcpipcfg.dll
2010-05-04 18:21:00 ----A---- C:\Windows\system32\tcpmon.dll
2010-05-04 18:20:59 ----A---- C:\Windows\system32\tapisrv.dll
2010-05-04 18:20:58 ----A---- C:\Windows\system32\taskeng.exe
2010-05-04 18:20:58 ----A---- C:\Windows\system32\taskcomp.dll
2010-05-04 18:20:57 ----A---- C:\Windows\system32\thawbrkr.dll
2010-05-04 18:20:57 ----A---- C:\Windows\system32\termsrv.dll
2010-05-04 18:20:56 ----A---- C:\Windows\system32\themeui.dll
2010-05-04 18:20:55 ----A---- C:\Windows\system32\themecpl.dll
2010-05-04 18:12:33 ----D---- C:\Windows\SoftwareDistribution
2010-05-04 18:05:54 ----D---- C:\Windows\system32\EventProviders
2010-05-04 18:00:28 ----SHD---- C:\Config.Msi
2010-05-03 17:33:57 ----A---- C:\Windows\system32\javaws.exe
2010-05-03 17:33:57 ----A---- C:\Windows\system32\javaw.exe
2010-05-03 17:33:57 ----A---- C:\Windows\system32\java.exe
2010-05-03 17:33:57 ----A---- C:\Windows\system32\deployJava1.dll
2010-05-03 16:46:32 ----A---- C:\Windows\system32\aswBoot.exe
2010-05-03 16:46:08 ----D---- C:\ProgramData\Alwil Software
2010-05-03 16:46:08 ----D---- C:\Program Files\Alwil Software
2010-05-03 16:32:29 ----D---- C:\Users\Daniel\AppData\Roaming\CheckPoint
2010-05-03 16:32:05 ----D---- C:\Program Files\CheckPoint
2010-05-03 16:31:50 ----A---- C:\Windows\system32\vsregexp.dll
2010-05-03 16:31:35 ----A---- C:\Windows\system32\zlcommdb.dll
2010-05-03 16:31:35 ----A---- C:\Windows\system32\zlcomm.dll
2010-05-03 16:31:12 ----A---- C:\Windows\system32\vswmi.dll
2010-05-03 16:31:06 ----A---- C:\Windows\system32\zpeng25.dll
2010-05-03 16:31:04 ----A---- C:\Windows\system32\vsxml.dll
2010-05-03 16:31:01 ----A---- C:\Windows\system32\vspubapi.dll
2010-05-03 16:31:00 ----A---- C:\Windows\system32\vsmonapi.dll
2010-05-03 16:30:50 ----A---- C:\Windows\system32\vsdata.dll
2010-05-03 16:30:17 ----D---- C:\Windows\system32\ZoneLabs
2010-05-03 16:30:11 ----D---- C:\Program Files\Zone Labs
2010-05-03 16:29:41 ----D---- C:\ProgramData\CheckPoint
2010-05-03 16:29:35 ----D---- C:\Windows\Internet Logs
2010-05-03 16:29:23 ----A---- C:\Windows\system32\vsutil.dll
2010-05-03 16:29:23 ----A---- C:\Windows\system32\vsinit.dll
2010-05-03 15:30:46 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2010-05-03 15:29:10 ----D---- C:\Users\Daniel\AppData\Roaming\SUPERAntiSpyware.com
2010-05-03 15:29:10 ----D---- C:\Program Files\SUPERAntiSpyware
2010-05-03 15:27:31 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2010-05-03 15:13:44 ----D---- C:\Program Files\trend micro
2010-05-03 14:44:12 ----D---- C:\Program Files\Crawler
2010-05-03 14:44:05 ----D---- C:\Users\Daniel\AppData\Roaming\Spyware Terminator
2010-05-03 14:44:02 ----D---- C:\ProgramData\Spyware Terminator
2010-05-03 14:43:56 ----D---- C:\Program Files\Spyware Terminator
2010-05-03 13:08:38 ----D---- C:\Program Files\HIJACK
2010-05-03 12:33:37 ----D---- C:\ProgramData\Lavasoft
2010-05-01 20:56:49 ----D---- C:\Program Files\GeekTools
2010-04-24 12:03:40 ----D---- C:\Program Files\EVC
2010-04-24 11:36:11 ----D---- C:\Program Files\EOBD2 1260
PS: poslal som vam platbu cez paypal - doslo vam to v poriadku?
Logfile of random's system information tool 1.07 (written by random/random)
Run by Daniel at 2010-05-07 19:16:06
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 53 GB (60%) free of 89 GB
Total RAM: 2046 MB (46% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:16:30, on 07/05/2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v7.00 (7.00.6002.18005)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\CheckPoint\ZAForceField\ForceField.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\RtHDVCpl.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\ASUS\ATK Media\DMedia.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.Exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\ICQ6.5\ICQ.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Daniel\Downloads\RSIT.exe
C:\Program Files\trend micro\Daniel.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ÿþ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: ZoneAlarm Toolbar Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: ZoneAlarm Toolbar - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMEDIA.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [ISW] "C:\Program Files\CheckPoint\ZAForceField\ForceField.exe" /icon="hidden"
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [ICQ] "C:\PROGRA~1\ICQ6.5\ICQ.exe" silent
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [SpywareTerminatorUpdate] "C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O16 - DPF: {A4735C9C-6626-4386-9B93-2D9B79047AB8} (MediaPlugin Control) - http://www.joj.sk/fileadmin/joj_player/ ... Player.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: ADSM Service (ADSMService) - Unknown owner - C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Crypkey License - CrypKey (Canada) Ltd. - C:\Windows\SYSTEM32\crypserv.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: ZoneAlarm Toolbar IswSvc (IswSvc) - Check Point Software Technologies - C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\Windows\System32\ZoneLabs\vsmon.exe
O23 - Service: wampapache - Apache Software Foundation - c:\wamp\bin\apache\apache2.2.11\bin\httpd.exe
O23 - Service: wampmysqld - Unknown owner - c:\wamp\bin\mysql\mysql5.1.36\bin\mysqld.exe
--
End of file - 8315 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3}]
ZoneAlarm Toolbar Registrar - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2009-10-14 578928]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-04-12 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - ZoneAlarm Toolbar - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2009-10-14 578928]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-03-01 857648]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-02-15 4390912]
"NvSvc"=C:\Windows\system32\nvsvc.dll [2007-04-04 86016]
"NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2007-04-04 81920]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2007-02-12 174872]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2007-04-04 8429568]
"ATKMEDIA"=C:\Program Files\ASUS\ATK Media\DMEDIA.EXE [2006-11-02 61440]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"SpywareTerminator"=C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2010-05-03 2176512]
"ZoneAlarm Client"=C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe [2009-11-22 1037192]
"ISW"=C:\Program Files\CheckPoint\ZAForceField\ForceField.exe [2009-10-14 730480]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-04-14 2790472]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]
"ICQ"=C:\PROGRA~1\ICQ6.5\ICQ.exe [2009-11-16 172792]
"Skype"=C:\Program Files\Skype\\Phone\Skype.exe [2010-04-06 26102056]
"SpywareTerminatorUpdate"=C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2010-05-03 3037696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
C:\Windows\ASScrProlog.exe [2008-02-13 37232]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\ASScrPro.exe [2008-02-13 33136]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [2006-01-12 155648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PowerForPhone]
C:\Program Files\PowerForPhone\PowerForPhone.exe [2007-01-16 778240]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\qttask.exe [2008-05-26 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SMSERIAL]
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2006-11-22 630784]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe]
C:\Program Files\TomTom HOME\TomTomHOME.exe [2007-03-14 3770024]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
C:\PROGRA~1\Adobe\ACROBA~1.0\Reader\READER~1.EXE []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office.lnk]
C:\PROGRA~1\MICROS~2\Office10\OSA.EXE [2001-02-13 83360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Daniel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^MagicDisc.lnk]
C:\PROGRA~1\MAGICD~1\MAGICD~1.EXE [2007-09-05 557568]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll [2009-09-03 548352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - open - "C:\Program Files\Adobe\Adobe Dreamweaver CS3\Dreamweaver.exe","%1"
======List of files/folders created in the last 1 months======
2010-05-07 19:16:06 ----D---- C:\rsit
2010-05-04 20:16:59 ----D---- C:\ProgramData\WindowsSearch
2010-05-04 19:02:18 ----D---- C:\Windows\system32\vi-VN
2010-05-04 19:02:18 ----D---- C:\Windows\system32\eu-ES
2010-05-04 19:02:18 ----D---- C:\Windows\system32\ca-ES
2010-05-04 18:57:14 ----D---- C:\Windows\system32\SPReview
2010-05-04 18:40:56 ----A---- C:\Windows\system32\scavenge.dll
2010-05-04 18:40:13 ----A---- C:\Windows\system32\compcln.exe
2010-05-04 18:26:34 ----A---- C:\Windows\system32\secur32.dll
2010-05-04 18:26:34 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-05-04 18:26:33 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-05-04 18:26:33 ----A---- C:\Windows\system32\secproc_isv.dll
2010-05-04 18:26:33 ----A---- C:\Windows\system32\secproc.dll
2010-05-04 18:26:32 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2010-05-04 18:26:32 ----A---- C:\Windows\system32\SearchIndexer.exe
2010-05-04 18:26:32 ----A---- C:\Windows\system32\SearchFilterHost.exe
2010-05-04 18:26:32 ----A---- C:\Windows\system32\sdohlp.dll
2010-05-04 18:26:31 ----A---- C:\Windows\system32\sdclt.exe
2010-05-04 18:26:30 ----A---- C:\Windows\system32\rsaenh.dll
2010-05-04 18:26:29 ----A---- C:\Windows\system32\rtffilt.dll
2010-05-04 18:26:29 ----A---- C:\Windows\system32\rrinstaller.exe
2010-05-04 18:26:28 ----A---- C:\Windows\system32\samlib.dll
2010-05-04 18:26:28 ----A---- C:\Windows\system32\rtutils.dll
2010-05-04 18:26:28 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-05-04 18:26:28 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-05-04 18:26:28 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-05-04 18:26:27 ----A---- C:\Windows\system32\RMActivate.exe
2010-05-04 18:26:27 ----A---- C:\Windows\system32\riched20.dll
2010-05-04 18:26:26 ----A---- C:\Windows\system32\rpcss.dll
2010-05-04 18:26:26 ----A---- C:\Windows\system32\rpcrt4.dll
2010-05-04 18:26:26 ----A---- C:\Windows\system32\rpchttp.dll
2010-05-04 18:26:25 ----A---- C:\Windows\system32\scrrun.dll
2010-05-04 18:26:23 ----A---- C:\Windows\system32\SCardSvr.dll
2010-05-04 18:26:23 ----A---- C:\Windows\system32\scansetting.dll
2010-05-04 18:26:22 ----A---- C:\Windows\system32\samsrv.dll
2010-05-04 18:26:21 ----A---- C:\Windows\system32\scksp.dll
2010-05-04 18:26:21 ----A---- C:\Windows\system32\schedsvc.dll
2010-05-04 18:26:20 ----A---- C:\Windows\system32\scrobj.dll
2010-05-04 18:26:20 ----A---- C:\Windows\system32\scecli.dll
2010-05-04 18:26:18 ----A---- C:\Windows\system32\schannel.dll
2010-05-04 18:26:18 ----A---- C:\Windows\system32\scesrv.dll
2010-05-04 18:26:12 ----A---- C:\Windows\system32\pdh.dll
2010-05-04 18:26:11 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2010-05-04 18:26:10 ----A---- C:\Windows\system32\perfdisk.dll
2010-05-04 18:26:10 ----A---- C:\Windows\system32\pcaui.dll
2010-05-04 18:26:10 ----A---- C:\Windows\system32\p2psvc.dll
2010-05-04 18:26:10 ----A---- C:\Windows\system32\P2PGraph.dll
2010-05-04 18:26:09 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2010-05-04 18:26:09 ----A---- C:\Windows\system32\PNPXAssoc.dll
2010-05-04 18:26:09 ----A---- C:\Windows\system32\PnPutil.exe
2010-05-04 18:26:09 ----A---- C:\Windows\system32\PnPUnattend.exe
2010-05-04 18:26:09 ----A---- C:\Windows\system32\pnpui.dll
2010-05-04 18:26:09 ----A---- C:\Windows\system32\pnpsetup.dll
2010-05-04 18:26:09 ----A---- C:\Windows\system32\pnidui.dll
2010-05-04 18:26:08 ----A---- C:\Windows\system32\powercpl.dll
2010-05-04 18:26:08 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2010-05-04 18:26:08 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2010-05-04 18:26:08 ----A---- C:\Windows\system32\pidgenx.dll
2010-05-04 18:26:08 ----A---- C:\Windows\system32\photowiz.dll
2010-05-04 18:26:07 ----A---- C:\Windows\system32\PkgMgr.exe
2010-05-04 18:26:07 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2010-05-04 18:26:06 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-05-04 18:26:06 ----A---- C:\Windows\system32\ntdll.dll
2010-05-04 18:26:06 ----A---- C:\Windows\system32\nslookup.exe
2010-05-04 18:26:04 ----A---- C:\Windows\system32\offfilt.dll
2010-05-04 18:26:04 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2010-05-04 18:26:04 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2010-05-04 18:26:04 ----A---- C:\Windows\system32\nlhtml.dll
2010-05-04 18:26:03 ----A---- C:\Windows\system32\oleaut32.dll
2010-05-04 18:26:03 ----A---- C:\Windows\system32\ole32.dll
2010-05-04 18:26:03 ----A---- C:\Windows\system32\odbc32.dll
2010-05-04 18:26:02 ----A---- C:\Windows\system32\osk.exe
2010-05-04 18:26:02 ----A---- C:\Windows\system32\onex.dll
2010-05-04 18:26:02 ----A---- C:\Windows\system32\odbccp32.dll
2010-05-04 18:26:02 ----A---- C:\Windows\system32\odbcconf.dll
2010-05-04 18:26:01 ----A---- C:\Windows\system32\oobefldr.dll
2010-05-04 18:26:01 ----A---- C:\Windows\system32\olepro32.dll
2010-05-04 18:26:01 ----A---- C:\Windows\system32\oleprn.dll
2010-05-04 18:26:01 ----A---- C:\Windows\system32\ocsetup.exe
2010-05-04 18:26:00 ----A---- C:\Windows\system32\rasgcw.dll
2010-05-04 18:26:00 ----A---- C:\Windows\system32\rasdlg.dll
2010-05-04 18:26:00 ----A---- C:\Windows\system32\occache.dll
2010-05-04 18:26:00 ----A---- C:\Windows\system32\ntprint.dll
2010-05-04 18:26:00 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-05-04 18:26:00 ----A---- C:\Windows\system32\ntmarta.dll
2010-05-04 18:25:59 ----A---- C:\Windows\system32\rastls.dll
2010-05-04 18:25:59 ----A---- C:\Windows\system32\rastapi.dll
2010-05-04 18:25:59 ----A---- C:\Windows\system32\rasppp.dll
2010-05-04 18:25:59 ----A---- C:\Windows\system32\rasplap.dll
2010-05-04 18:25:59 ----A---- C:\Windows\system32\rasmontr.dll
2010-05-04 18:25:59 ----A---- C:\Windows\system32\rasmans.dll
2010-05-04 18:25:59 ----A---- C:\Windows\system32\rasdial.exe
2010-05-04 18:25:59 ----A---- C:\Windows\system32\rasdiag.dll
2010-05-04 18:25:59 ----A---- C:\Windows\system32\raschap.dll
2010-05-04 18:25:59 ----A---- C:\Windows\system32\rasapi32.dll
2010-05-04 18:25:58 ----A---- C:\Windows\system32\RacEngn.dll
2010-05-04 18:25:58 ----A---- C:\Windows\system32\Query.dll
2010-05-04 18:25:58 ----A---- C:\Windows\system32\quartz.dll
2010-05-04 18:25:58 ----A---- C:\Windows\system32\qmgr.dll
2010-05-04 18:25:58 ----A---- C:\Windows\system32\qedit.dll
2010-05-04 18:25:57 ----A---- C:\Windows\system32\RelMon.dll
2010-05-04 18:25:57 ----A---- C:\Windows\system32\rekeywiz.exe
2010-05-04 18:25:57 ----A---- C:\Windows\system32\regsvc.dll
2010-05-04 18:25:56 ----A---- C:\Windows\system32\reg.exe
2010-05-04 18:25:56 ----A---- C:\Windows\system32\rdpencom.dll
2010-05-04 18:25:55 ----A---- C:\Windows\system32\regapi.dll
2010-05-04 18:25:55 ----A---- C:\Windows\system32\rdpwsx.dll
2010-05-04 18:25:54 ----A---- C:\Windows\system32\printui.dll
2010-05-04 18:25:54 ----A---- C:\Windows\system32\PresentationSettings.exe
2010-05-04 18:25:54 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2010-05-04 18:25:54 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-05-04 18:25:54 ----A---- C:\Windows\system32\PresentationHost.exe
2010-05-04 18:25:53 ----A---- C:\Windows\system32\prnntfy.dll
2010-05-04 18:25:53 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2010-05-04 18:25:53 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2010-05-04 18:25:53 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2010-05-04 18:25:53 ----A---- C:\Windows\system32\powrprof.dll
2010-05-04 18:25:51 ----A---- C:\Windows\system32\qdvd.dll
2010-05-04 18:25:51 ----A---- C:\Windows\system32\QAGENTRT.DLL
2010-05-04 18:25:51 ----A---- C:\Windows\system32\puiapi.dll
2010-05-04 18:25:50 ----A---- C:\Windows\system32\psisdecd.dll
2010-05-04 18:25:50 ----A---- C:\Windows\system32\PSHED.DLL
2010-05-04 18:25:50 ----A---- C:\Windows\system32\propsys.dll
2010-05-04 18:25:50 ----A---- C:\Windows\system32\propdefs.dll
2010-05-04 18:25:50 ----A---- C:\Windows\system32\profsvc.dll
2010-05-04 18:25:44 ----A---- C:\Windows\system32\sendmail.dll
2010-05-04 18:25:42 ----A---- C:\Windows\system32\shell32.dll
2010-05-04 18:25:41 ----A---- C:\Windows\system32\shlwapi.dll
2010-05-04 18:25:41 ----A---- C:\Windows\system32\shdocvw.dll
2010-05-04 18:25:40 ----A---- C:\Windows\system32\sethc.exe
2010-05-04 18:25:40 ----A---- C:\Windows\system32\services.exe
2010-05-04 18:25:39 ----A---- C:\Windows\system32\setupapi.dll
2010-05-04 18:25:29 ----A---- C:\Windows\system32\eapphost.dll
2010-05-04 18:25:29 ----A---- C:\Windows\system32\eappgnui.dll
2010-05-04 18:25:28 ----A---- C:\Windows\system32\EhStorAPI.dll
2010-05-04 18:25:28 ----A---- C:\Windows\system32\eappcfg.dll
2010-05-04 18:25:28 ----A---- C:\Windows\system32\eapp3hst.dll
2010-05-04 18:25:27 ----A---- C:\Windows\system32\dsprop.dll
2010-05-04 18:25:26 ----A---- C:\Windows\system32\evr.dll
2010-05-04 18:25:26 ----A---- C:\Windows\system32\eudcedit.exe
2010-05-04 18:25:26 ----A---- C:\Windows\system32\dxmasf.dll
2010-05-04 18:25:26 ----A---- C:\Windows\system32\dwm.exe
2010-05-04 18:25:26 ----A---- C:\Windows\system32\dsound.dll
2010-05-04 18:25:25 ----A---- C:\Windows\system32\f3ahvoas.dll
2010-05-04 18:25:25 ----A---- C:\Windows\system32\extmgr.dll
2010-05-04 18:25:25 ----A---- C:\Windows\system32\ExplorerFrame.dll
2010-05-04 18:25:25 ----A---- C:\Windows\system32\esent.dll
2010-05-04 18:25:25 ----A---- C:\Windows\explorer.exe
2010-05-04 18:25:24 ----A---- C:\Windows\system32\EncDec.dll
2010-05-04 18:25:24 ----A---- C:\Windows\system32\emdmgmt.dll
2010-05-04 18:25:24 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2010-05-04 18:25:24 ----A---- C:\Windows\system32\EhStorAuthn.dll
2010-05-04 18:25:23 ----A---- C:\Windows\system32\es.dll
2010-05-04 18:25:23 ----A---- C:\Windows\system32\EhStorShell.dll
2010-05-04 18:25:23 ----A---- C:\Windows\system32\diagperf.dll
2010-05-04 18:25:22 ----A---- C:\Windows\system32\dimsroam.dll
2010-05-04 18:25:22 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2010-05-04 18:25:21 ----A---- C:\Windows\system32\diskraid.exe
2010-05-04 18:25:21 ----A---- C:\Windows\system32\diskpart.exe
2010-05-04 18:25:20 ----A---- C:\Windows\system32\dfsr.exe
2010-05-04 18:25:20 ----A---- C:\Windows\system32\dfshim.dll
2010-05-04 18:25:20 ----A---- C:\Windows\system32\devmgr.dll
2010-05-04 18:25:18 ----A---- C:\Windows\system32\dhcpcsvc.dll
2010-05-04 18:25:17 ----A---- C:\Windows\system32\drvstore.dll
2010-05-04 18:25:17 ----A---- C:\Windows\system32\dpapimig.exe
2010-05-04 18:25:17 ----A---- C:\Windows\system32\dot3svc.dll
2010-05-04 18:25:17 ----A---- C:\Windows\system32\dot3msm.dll
2010-05-04 18:25:17 ----A---- C:\Windows\system32\dot3cfg.dll
2010-05-04 18:25:16 ----A---- C:\Windows\system32\drmmgrtn.dll
2010-05-04 18:25:15 ----A---- C:\Windows\system32\drvinst.exe
2010-05-04 18:25:15 ----A---- C:\Windows\system32\drmv2clt.dll
2010-05-04 18:25:14 ----A---- C:\Windows\system32\dnsrslvr.dll
2010-05-04 18:25:14 ----A---- C:\Windows\system32\dnsapi.dll
2010-05-04 18:25:14 ----A---- C:\Windows\system32\dmusic.dll
2010-05-04 18:25:14 ----A---- C:\Windows\system32\dmsynth.dll
2010-05-04 18:25:13 ----A---- C:\Windows\system32\hbaapi.dll
2010-05-04 18:25:11 ----A---- C:\Windows\system32\gpresult.exe
2010-05-04 18:25:09 ----A---- C:\Windows\system32\iasads.dll
2010-05-04 18:25:09 ----A---- C:\Windows\system32\gpupdate.exe
2010-05-04 18:25:09 ----A---- C:\Windows\system32\gpsvc.dll
2010-05-04 18:25:08 ----A---- C:\Windows\system32\iashlpr.dll
2010-05-04 18:25:08 ----A---- C:\Windows\system32\iasdatastore.dll
2010-05-04 18:25:08 ----A---- C:\Windows\system32\iasacct.dll
2010-05-04 18:25:06 ----A---- C:\Windows\system32\iasnap.dll
2010-05-04 18:25:06 ----A---- C:\Windows\system32\IasMigReader.exe
2010-05-04 18:25:06 ----A---- C:\Windows\system32\IasMigPlugin.dll
2010-05-04 18:25:05 ----A---- C:\Windows\system32\hidserv.dll
2010-05-04 18:25:05 ----A---- C:\Windows\system32\hdwwiz.exe
2010-05-04 18:25:04 ----A---- C:\Windows\system32\fontext.dll
2010-05-04 18:25:04 ----A---- C:\Windows\system32\findstr.exe
2010-05-04 18:25:04 ----A---- C:\Windows\system32\Faultrep.dll
2010-05-04 18:25:03 ----A---- C:\Windows\system32\fc.exe
2010-05-04 18:25:02 ----A---- C:\Windows\system32\feclient.dll
2010-05-04 18:25:02 ----A---- C:\Windows\system32\fdWSD.dll
2010-05-04 18:25:02 ----A---- C:\Windows\system32\fdWCN.dll
2010-05-04 18:25:02 ----A---- C:\Windows\system32\fdSSDP.dll
2010-05-04 18:25:01 ----A---- C:\Windows\system32\fdProxy.dll
2010-05-04 18:25:01 ----A---- C:\Windows\system32\fdeploy.dll
2010-05-04 18:25:01 ----A---- C:\Windows\system32\fdBthProxy.dll
2010-05-04 18:25:01 ----A---- C:\Windows\system32\fdBth.dll
2010-05-04 18:25:00 ----A---- C:\Windows\system32\gpapi.dll
2010-05-04 18:25:00 ----A---- C:\Windows\system32\gdi32.dll
2010-05-04 18:24:59 ----A---- C:\Windows\system32\gpedit.dll
2010-05-04 18:24:58 ----A---- C:\Windows\system32\fundisc.dll
2010-05-04 18:24:57 ----A---- C:\Windows\system32\ftp.exe
2010-05-04 18:24:57 ----A---- C:\Windows\system32\fsquirt.exe
2010-05-04 18:24:56 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2010-05-04 18:24:56 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2010-05-04 18:24:55 ----A---- C:\Windows\system32\gameux.dll
2010-05-04 18:24:55 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2010-05-04 18:24:54 ----A---- C:\Windows\system32\authui.dll
2010-05-04 18:24:54 ----A---- C:\Windows\system32\audiosrv.dll
2010-05-04 18:24:54 ----A---- C:\Windows\system32\AudioSes.dll
2010-05-04 18:24:53 ----A---- C:\Windows\system32\autochk.exe
2010-05-04 18:24:53 ----A---- C:\Windows\system32\authz.dll
2010-05-04 18:24:53 ----A---- C:\Windows\system32\audiodg.exe
2010-05-04 18:24:53 ----A---- C:\Windows\system32\atmfd.dll
2010-05-04 18:24:52 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2010-05-04 18:24:52 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2010-05-04 18:24:52 ----A---- C:\Windows\system32\atmlib.dll
2010-05-04 18:24:51 ----A---- C:\Windows\system32\autofmt.exe
2010-05-04 18:24:51 ----A---- C:\Windows\system32\autoconv.exe
2010-05-04 18:24:50 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2010-05-04 18:24:50 ----A---- C:\Windows\system32\autoplay.dll
2010-05-04 18:24:46 ----A---- C:\Windows\system32\brcpl.dll
2010-05-04 18:24:44 ----A---- C:\Windows\system32\bthci.dll
2010-05-04 18:24:44 ----A---- C:\Windows\system32\browseui.dll
2010-05-04 18:24:42 ----A---- C:\Windows\system32\basecsp.dll
2010-05-04 18:24:41 ----A---- C:\Windows\system32\azroles.dll
2010-05-04 18:24:40 ----A---- C:\Windows\system32\blackbox.dll
2010-05-04 18:24:40 ----A---- C:\Windows\system32\bitsigd.dll
2010-05-04 18:24:40 ----A---- C:\Windows\system32\bcrypt.dll
2010-05-04 18:24:39 ----A---- C:\Windows\system32\BFE.DLL
2010-05-04 18:24:36 ----A---- C:\Windows\system32\accessibilitycpl.dll
2010-05-04 18:24:34 ----A---- C:\Windows\system32\aaclient.dll
2010-05-04 18:24:33 ----A---- C:\Windows\system32\apphelp.dll
2010-05-04 18:24:32 ----A---- C:\Windows\system32\Apphlpdm.dll
2010-05-04 18:24:31 ----A---- C:\Windows\system32\apds.dll
2010-05-04 18:24:30 ----A---- C:\Windows\system32\adsmsext.dll
2010-05-04 18:24:30 ----A---- C:\Windows\system32\adsldpc.dll
2010-05-04 18:24:29 ----A---- C:\Windows\system32\adtschema.dll
2010-05-04 18:24:28 ----A---- C:\Windows\system32\conime.exe
2010-05-04 18:24:28 ----A---- C:\Windows\system32\comuid.dll
2010-05-04 18:24:28 ----A---- C:\Windows\system32\comsvcs.dll
2010-05-04 18:24:28 ----A---- C:\Windows\system32\advapi32.dll
2010-05-04 18:24:27 ----A---- C:\Windows\system32\crypt32.dll
2010-05-04 18:24:27 ----A---- C:\Windows\system32\credui.dll
2010-05-04 18:24:26 ----A---- C:\Windows\system32\connect.dll
2010-05-04 18:24:26 ----A---- C:\Windows\system32\cmdial32.dll
2010-05-04 18:24:25 ----A---- C:\Windows\system32\comdlg32.dll
2010-05-04 18:24:24 ----A---- C:\Windows\system32\dbgeng.dll
2010-05-04 18:24:24 ----A---- C:\Windows\system32\cmmon32.exe
2010-05-04 18:24:23 ----A---- C:\Windows\system32\davclnt.dll
2010-05-04 18:24:23 ----A---- C:\Windows\system32\dataclen.dll
2010-05-04 18:24:23 ----A---- C:\Windows\system32\d3d9.dll
2010-05-04 18:24:22 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2010-05-04 18:24:22 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2010-05-04 18:24:22 ----A---- C:\Windows\system32\DevicePairing.dll
2010-05-04 18:24:22 ----A---- C:\Windows\system32\DeviceEject.exe
2010-05-04 18:24:21 ----A---- C:\Windows\system32\cscdll.dll
2010-05-04 18:24:21 ----A---- C:\Windows\system32\cscapi.dll
2010-05-04 18:24:21 ----A---- C:\Windows\system32\cryptui.dll
2010-05-04 18:24:21 ----A---- C:\Windows\system32\cryptsvc.dll
2010-05-04 18:24:20 ----A---- C:\Windows\system32\csrstub.exe
2010-05-04 18:24:20 ----A---- C:\Windows\system32\cscript.exe
2010-05-04 18:24:19 ----A---- C:\Windows\system32\cdd.dll
2010-05-04 18:24:18 ----A---- C:\Windows\system32\certmgr.dll
2010-05-04 18:24:18 ----A---- C:\Windows\system32\certcli.dll
2010-05-04 18:24:17 ----A---- C:\Windows\system32\CertEnrollUI.dll
2010-05-04 18:24:17 ----A---- C:\Windows\system32\CertEnroll.dll
2010-05-04 18:24:17 ----A---- C:\Windows\system32\bthudtask.exe
2010-05-04 18:24:17 ----A---- C:\Windows\system32\bthserv.dll
2010-05-04 18:24:16 ----A---- C:\Windows\system32\cbsra.exe
2010-05-04 18:24:15 ----A---- C:\Windows\system32\cipher.exe
2010-05-04 18:24:15 ----A---- C:\Windows\system32\ci.dll
2010-05-04 18:24:14 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2010-05-04 18:24:14 ----A---- C:\Windows\system32\chtbrkr.dll
2010-05-04 18:24:14 ----A---- C:\Windows\system32\chsbrkr.dll
2010-05-04 18:24:13 ----A---- C:\Windows\system32\certreq.exe
2010-05-04 18:24:13 ----A---- C:\Windows\system32\certprop.dll
2010-05-04 18:24:12 ----A---- C:\Windows\system32\msftedit.dll
2010-05-04 18:24:12 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-05-04 18:24:12 ----A---- C:\Windows\system32\msfeeds.dll
2010-05-04 18:24:12 ----A---- C:\Windows\system32\certutil.exe
2010-05-04 18:24:11 ----A---- C:\Windows\system32\msihnd.dll
2010-05-04 18:24:11 ----A---- C:\Windows\system32\msiexec.exe
2010-05-04 18:24:11 ----A---- C:\Windows\system32\msexcl40.dll
2010-05-04 18:24:11 ----A---- C:\Windows\system32\msexch40.dll
2010-05-04 18:24:11 ----A---- C:\Windows\system32\msdtctm.dll
2010-05-04 18:24:10 ----A---- C:\Windows\system32\mshtml.dll
2010-05-04 18:24:09 ----A---- C:\Windows\system32\msi.dll
2010-05-04 18:24:09 ----A---- C:\Windows\system32\mshtmled.dll
2010-05-04 18:24:07 ----A---- C:\Windows\system32\msdrm.dll
2010-05-04 18:24:06 ----A---- C:\Windows\system32\msdtcprx.dll
2010-05-04 18:24:06 ----A---- C:\Windows\system32\msctfui.dll
2010-05-04 18:24:06 ----A---- C:\Windows\system32\msctfp.dll
2010-05-04 18:24:06 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2010-05-04 18:24:06 ----A---- C:\Windows\system32\msctf.dll
2010-05-04 18:24:04 ----A---- C:\Windows\system32\msimsg.dll
2010-05-04 18:24:03 ----A---- C:\Windows\system32\MPSSVC.dll
2010-05-04 18:24:02 ----A---- C:\Windows\system32\mprapi.dll
2010-05-04 18:24:02 ----A---- C:\Windows\system32\mpr.dll
2010-05-04 18:24:00 ----A---- C:\Windows\system32\modemui.dll
2010-05-04 18:24:00 ----A---- C:\Windows\system32\MMDevAPI.dll
2010-05-04 18:23:58 ----A---- C:\Windows\system32\mscandui.dll
2010-05-04 18:23:57 ----A---- C:\Windows\system32\mscms.dll
2010-05-04 18:23:56 ----A---- C:\Windows\system32\mscories.dll
2010-05-04 18:23:56 ----A---- C:\Windows\system32\mscorier.dll
2010-05-04 18:23:55 ----A---- C:\Windows\system32\mscoree.dll
2010-05-04 18:23:54 ----A---- C:\Windows\system32\netapi32.dll
2010-05-04 18:23:53 ----A---- C:\Windows\system32\netplwiz.dll
2010-05-04 18:23:53 ----A---- C:\Windows\system32\netcenter.dll
2010-05-04 18:23:53 ----A---- C:\Windows\system32\ncryptui.dll
2010-05-04 18:23:53 ----A---- C:\Windows\system32\ncrypt.dll
2010-05-04 18:23:52 ----A---- C:\Windows\system32\NetProjW.dll
2010-05-04 18:23:51 ----A---- C:\Windows\system32\netlogon.dll
2010-05-04 18:23:51 ----A---- C:\Windows\system32\netiohlp.dll
2010-05-04 18:23:51 ----A---- C:\Windows\system32\mtxclu.dll
2010-05-04 18:23:48 ----A---- C:\Windows\system32\msxml6.dll
2010-05-04 18:23:47 ----A---- C:\Windows\system32\NcdProp.dll
2010-05-04 18:23:47 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2010-05-04 18:23:47 ----A---- C:\Windows\system32\msxml3.dll
2010-05-04 18:23:44 ----A---- C:\Windows\system32\newdev.exe
2010-05-04 18:23:44 ----A---- C:\Windows\system32\newdev.dll
2010-05-04 18:23:44 ----A---- C:\Windows\system32\netshell.dll
2010-05-04 18:23:43 ----A---- C:\Windows\system32\networkmap.dll
2010-05-04 18:23:43 ----A---- C:\Windows\system32\networkitemfactory.dll
2010-05-04 18:23:43 ----A---- C:\Windows\system32\networkexplorer.dll
2010-05-04 18:23:42 ----A---- C:\Windows\system32\msnetobj.dll
2010-05-04 18:23:42 ----A---- C:\Windows\system32\msltus40.dll
2010-05-04 18:23:41 ----A---- C:\Windows\system32\msscntrs.dll
2010-05-04 18:23:41 ----A---- C:\Windows\system32\msscb.dll
2010-05-04 18:23:41 ----A---- C:\Windows\system32\msrepl40.dll
2010-05-04 18:23:41 ----A---- C:\Windows\system32\msrd3x40.dll
2010-05-04 18:23:41 ----A---- C:\Windows\system32\msrating.dll
2010-05-04 18:23:41 ----A---- C:\Windows\system32\mspbde40.dll
2010-05-04 18:23:41 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2010-05-04 18:23:40 ----A---- C:\Windows\system32\msrd2x40.dll
2010-05-04 18:23:40 ----A---- C:\Windows\system32\msinfo32.exe
2010-05-04 18:23:40 ----A---- C:\Windows\system32\msimtf.dll
2010-05-04 18:23:39 ----A---- C:\Windows\system32\msjtes40.dll
2010-05-04 18:23:39 ----A---- C:\Windows\system32\msjter40.dll
2010-05-04 18:23:39 ----A---- C:\Windows\system32\msjint40.dll
2010-05-04 18:23:39 ----A---- C:\Windows\system32\msjetoledb40.dll
2010-05-04 18:23:39 ----A---- C:\Windows\system32\msjet40.dll
2010-05-04 18:23:39 ----A---- C:\Windows\system32\msisip.dll
2010-05-04 18:23:38 ----A---- C:\Windows\system32\msvcp60.dll
2010-05-04 18:23:38 ----A---- C:\Windows\system32\msv1_0.dll
2010-05-04 18:23:38 ----A---- C:\Windows\system32\msutb.dll
2010-05-04 18:23:38 ----A---- C:\Windows\system32\mstscax.dll
2010-05-04 18:23:37 ----A---- C:\Windows\system32\msxbde40.dll
2010-05-04 18:23:37 ----A---- C:\Windows\system32\mswstr10.dll
2010-05-04 18:23:37 ----A---- C:\Windows\system32\mswsock.dll
2010-05-04 18:23:37 ----A---- C:\Windows\system32\mswdat10.dll
2010-05-04 18:23:37 ----A---- C:\Windows\system32\msvcrt.dll
2010-05-04 18:23:36 ----A---- C:\Windows\system32\MSVidCtl.dll
2010-05-04 18:23:36 ----A---- C:\Windows\system32\mssphtb.dll
2010-05-04 18:23:36 ----A---- C:\Windows\system32\mssph.dll
2010-05-04 18:23:35 ----A---- C:\Windows\system32\mssrch.dll
2010-05-04 18:23:35 ----A---- C:\Windows\system32\mssprxy.dll
2010-05-04 18:23:35 ----A---- C:\Windows\system32\mssitlb.dll
2010-05-04 18:23:35 ----A---- C:\Windows\system32\msshooks.dll
2010-05-04 18:23:35 ----A---- C:\Windows\system32\msscp.dll
2010-05-04 18:23:34 ----A---- C:\Windows\system32\mstsc.exe
2010-05-04 18:23:34 ----A---- C:\Windows\system32\mstlsapi.dll
2010-05-04 18:23:34 ----A---- C:\Windows\system32\mstime.dll
2010-05-04 18:23:34 ----A---- C:\Windows\system32\mstext40.dll
2010-05-04 18:23:34 ----A---- C:\Windows\system32\mssvp.dll
2010-05-04 18:23:34 ----A---- C:\Windows\system32\msstrc.dll
2010-05-04 18:23:34 ----A---- C:\Windows\system32\msshsq.dll
2010-05-04 18:23:34 ----A---- C:\Windows\system32\inetcomm.dll
2010-05-04 18:23:32 ----A---- C:\Windows\system32\InkEd.dll
2010-05-04 18:23:31 ----A---- C:\Windows\system32\infocardapi.dll
2010-05-04 18:23:31 ----A---- C:\Windows\system32\inetppui.dll
2010-05-04 18:23:31 ----A---- C:\Windows\system32\inetpp.dll
2010-05-04 18:23:28 ----A---- C:\Windows\system32\imm32.dll
2010-05-04 18:23:27 ----A---- C:\Windows\system32\iscsilog.dll
2010-05-04 18:23:27 ----A---- C:\Windows\system32\IPSECSVC.DLL
2010-05-04 18:23:26 ----A---- C:\Windows\system32\jscript.dll
2010-05-04 18:23:26 ----A---- C:\Windows\system32\ipsmsnap.dll
2010-05-04 18:23:25 ----A---- C:\Windows\system32\jsproxy.dll
2010-05-04 18:23:25 ----A---- C:\Windows\system32\input.dll
2010-05-04 18:23:24 ----A---- C:\Windows\system32\ipsecsnp.dll
2010-05-04 18:23:23 ----A---- C:\Windows\system32\iphlpsvc.dll
2010-05-04 18:23:23 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2010-05-04 18:23:23 ----A---- C:\Windows\system32\ipconfig.exe
2010-05-04 18:23:23 ----A---- C:\Windows\system32\iertutil.dll
2010-05-04 18:23:22 ----A---- C:\Windows\system32\iepeers.dll
2010-05-04 18:23:22 ----A---- C:\Windows\system32\ieframe.dll
2010-05-04 18:23:21 ----A---- C:\Windows\system32\ifmon.dll
2010-05-04 18:23:21 ----A---- C:\Windows\system32\iassvcs.dll
2010-05-04 18:23:20 ----A---- C:\Windows\system32\icardres.dll
2010-05-04 18:23:20 ----A---- C:\Windows\system32\icardagt.exe
2010-05-04 18:23:20 ----A---- C:\Windows\system32\iassdo.dll
2010-05-04 18:23:20 ----A---- C:\Windows\system32\iasrad.dll
2010-05-04 18:23:20 ----A---- C:\Windows\system32\iaspolcy.dll
2010-05-04 18:23:19 ----A---- C:\Windows\system32\iedkcs32.dll
2010-05-04 18:23:19 ----A---- C:\Windows\system32\ieapfltr.dll
2010-05-04 18:23:19 ----A---- C:\Windows\system32\iassam.dll
2010-05-04 18:23:19 ----A---- C:\Windows\system32\iasrecst.dll
2010-05-04 18:23:18 ----A---- C:\Windows\system32\ieaksie.dll
2010-05-04 18:23:17 ----A---- C:\Windows\system32\IMJP10K.DLL
2010-05-04 18:23:16 ----A---- C:\Windows\system32\imapi.dll
2010-05-04 18:23:15 ----A---- C:\Windows\system32\imapi2fs.dll
2010-05-04 18:23:15 ----A---- C:\Windows\system32\imapi2.dll
2010-05-04 18:23:15 ----A---- C:\Windows\system32\IKEEXT.DLL
2010-05-04 18:23:11 ----A---- C:\Windows\system32\mfps.dll
2010-05-04 18:23:11 ----A---- C:\Windows\system32\mfpmp.exe
2010-05-04 18:23:11 ----A---- C:\Windows\system32\mfplat.dll
2010-05-04 18:23:11 ----A---- C:\Windows\system32\mferror.dll
2010-05-04 18:23:11 ----A---- C:\Windows\system32\mfc42.dll
2010-05-04 18:23:10 ----A---- C:\Windows\system32\mfc42u.dll
2010-05-04 18:23:10 ----A---- C:\Windows\system32\mf.dll
2010-05-04 18:23:08 ----A---- C:\Windows\system32\milcore.dll
2010-05-04 18:23:06 ----A---- C:\Windows\system32\mimefilt.dll
2010-05-04 18:23:05 ----A---- C:\Windows\system32\mmcico.dll
2010-05-04 18:23:05 ----A---- C:\Windows\system32\mmci.dll
2010-05-04 18:23:05 ----A---- C:\Windows\system32\midimap.dll
2010-05-04 18:23:04 ----A---- C:\Windows\system32\mmcndmgr.dll
2010-05-04 18:23:04 ----A---- C:\Windows\system32\mmc.exe
2010-05-04 18:23:01 ----A---- C:\Windows\system32\korwbrkr.dll
2010-05-04 18:22:59 ----A---- C:\Windows\system32\l2nacp.dll
2010-05-04 18:22:59 ----A---- C:\Windows\system32\kernel32.dll
2010-05-04 18:22:59 ----A---- C:\Windows\system32\kerberos.dll
2010-05-04 18:22:59 ----A---- C:\Windows\system32\kd1394.dll
2010-05-04 18:22:58 ----A---- C:\Windows\system32\kdusb.dll
2010-05-04 18:22:58 ----A---- C:\Windows\system32\kdcom.dll
2010-05-04 18:22:57 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2010-05-04 18:22:57 ----A---- C:\Windows\system32\mcmde.dll
2010-05-04 18:22:57 ----A---- C:\Windows\system32\mblctr.exe
2010-05-04 18:22:56 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2010-05-04 18:22:56 ----A---- C:\Windows\system32\logman.exe
2010-05-04 18:22:56 ----A---- C:\Windows\system32\logagent.exe
2010-05-04 18:22:56 ----A---- C:\Windows\system32\localspl.dll
2010-05-04 18:22:55 ----A---- C:\Windows\system32\Magnify.exe
2010-05-04 18:22:54 ----A---- C:\Windows\system32\WebClnt.dll
2010-05-04 18:22:54 ----A---- C:\Windows\system32\shsetup.dll
2010-05-04 18:22:54 ----A---- C:\Windows\system32\lsasrv.dll
2010-05-04 18:22:53 ----A---- C:\Windows\system32\wercon.exe
2010-05-04 18:22:53 ----A---- C:\Windows\system32\wer.dll
2010-05-04 18:22:53 ----A---- C:\Windows\system32\webcheck.dll
2010-05-04 18:22:53 ----A---- C:\Windows\system32\wdscore.dll
2010-05-04 18:22:52 ----A---- C:\Windows\system32\wdc.dll
2010-05-04 18:22:51 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2010-05-04 18:22:51 ----A---- C:\Windows\system32\WindowsCodecs.dll
2010-05-04 18:22:50 ----A---- C:\Windows\system32\wininet.dll
2010-05-04 18:22:50 ----A---- C:\Windows\system32\winhttp.dll
2010-05-04 18:22:50 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2010-05-04 18:22:50 ----A---- C:\Windows\system32\wevtutil.exe
2010-05-04 18:22:49 ----A---- C:\Windows\system32\whealogr.dll
2010-05-04 18:22:49 ----A---- C:\Windows\system32\wevtsvc.dll
2010-05-04 18:22:49 ----A---- C:\Windows\system32\wevtapi.dll
2010-05-04 18:22:49 ----A---- C:\Windows\system32\wersvc.dll
2010-05-04 18:22:49 ----A---- C:\Windows\system32\WerFaultSecure.exe
2010-05-04 18:22:49 ----A---- C:\Windows\system32\WerFault.exe
2010-05-04 18:22:48 ----A---- C:\Windows\system32\win32spl.dll
2010-05-04 18:22:48 ----A---- C:\Windows\system32\wiaservc.dll
2010-05-04 18:22:48 ----A---- C:\Windows\system32\wiaaut.dll
2010-05-04 18:22:47 ----A---- C:\Windows\system32\version.dll
2010-05-04 18:22:47 ----A---- C:\Windows\system32\vdsutil.dll
2010-05-04 18:22:47 ----A---- C:\Windows\system32\vdsdyn.dll
2010-05-04 18:22:47 ----A---- C:\Windows\system32\vds.exe
2010-05-04 18:22:47 ----A---- C:\Windows\system32\vdmdbg.dll
2010-05-04 18:22:47 ----A---- C:\Windows\system32\vbscript.dll
2010-05-04 18:22:46 ----A---- C:\Windows\system32\user32.dll
2010-05-04 18:22:45 ----A---- C:\Windows\system32\uxsms.dll
2010-05-04 18:22:45 ----A---- C:\Windows\system32\Utilman.exe
2010-05-04 18:22:45 ----A---- C:\Windows\system32\usp10.dll
2010-05-04 18:22:45 ----A---- C:\Windows\system32\userenv.dll
2010-05-04 18:22:45 ----A---- C:\Windows\system32\usercpl.dll
2010-05-04 18:22:44 ----A---- C:\Windows\system32\wcnwiz2.dll
2010-05-04 18:22:44 ----A---- C:\Windows\system32\wcnwiz.dll
2010-05-04 18:22:44 ----A---- C:\Windows\system32\WcnNetsh.dll
2010-05-04 18:22:44 ----A---- C:\Windows\system32\wcncsvc.dll
2010-05-04 18:22:42 ----A---- C:\Windows\system32\w32time.dll
2010-05-04 18:22:42 ----A---- C:\Windows\system32\VSSVC.exe
2010-05-04 18:22:41 ----A---- C:\Windows\system32\WscEapPr.dll
2010-05-04 18:22:41 ----A---- C:\Windows\system32\wscapi.dll
2010-05-04 18:22:41 ----A---- C:\Windows\system32\vssapi.dll
2010-05-04 18:22:40 ----A---- C:\Windows\system32\wsdchngr.dll
2010-05-04 18:22:40 ----A---- C:\Windows\system32\wscisvif.dll
2010-05-04 18:22:39 ----A---- C:\Windows\system32\WSDMon.dll
2010-05-04 18:22:39 ----A---- C:\Windows\system32\WSDApi.dll
2010-05-04 18:22:39 ----A---- C:\Windows\system32\wscript.exe
2010-05-04 18:22:39 ----A---- C:\Windows\system32\wscntfy.dll
2010-05-04 18:22:38 ----A---- C:\Windows\system32\wscsvc.dll
2010-05-04 18:22:37 ----A---- C:\Windows\system32\wow32.dll
2010-05-04 18:22:37 ----A---- C:\Windows\system32\WMVXENCD.DLL
2010-05-04 18:22:37 ----A---- C:\Windows\system32\WMVSDECD.DLL
2010-05-04 18:22:37 ----A---- C:\Windows\system32\WMVENCOD.DLL
2010-05-04 18:22:36 ----A---- C:\Windows\system32\WMVCORE.DLL
2010-05-04 18:22:34 ----A---- C:\Windows\system32\wusa.exe
2010-05-04 18:22:34 ----A---- C:\Windows\system32\wpcsvc.dll
2010-05-04 18:22:34 ----A---- C:\Windows\system32\wpccpl.dll
2010-05-04 18:22:34 ----A---- C:\Windows\system32\wpcao.dll
2010-05-04 18:22:32 ----A---- C:\Windows\system32\xmlfilter.dll
2010-05-04 18:22:29 ----A---- C:\Windows\system32\wshext.dll
2010-05-04 18:22:29 ----A---- C:\Windows\system32\wshbth.dll
2010-05-04 18:22:29 ----A---- C:\Windows\system32\wsepno.dll
2010-05-04 18:22:28 ----A---- C:\Windows\system32\WsmSvc.dll
2010-05-04 18:22:27 ----A---- C:\Windows\system32\wsnmp32.dll
2010-05-04 18:22:27 ----A---- C:\Windows\system32\wlanui.dll
2010-05-04 18:22:27 ----A---- C:\Windows\system32\wlansvc.dll
2010-05-04 18:22:27 ----A---- C:\Windows\system32\wlanpref.dll
2010-05-04 18:22:27 ----A---- C:\Windows\system32\wlanmsm.dll
2010-05-04 18:22:27 ----A---- C:\Windows\system32\wlanhlp.dll
2010-05-04 18:22:26 ----A---- C:\Windows\system32\wlgpclnt.dll
2010-05-04 18:22:26 ----A---- C:\Windows\system32\Wldap32.dll
2010-05-04 18:22:26 ----A---- C:\Windows\system32\wlangpui.dll
2010-05-04 18:22:26 ----A---- C:\Windows\system32\wisptis.exe
2010-05-04 18:22:25 ----A---- C:\Windows\system32\WinSCard.dll
2010-05-04 18:22:25 ----A---- C:\Windows\system32\winrnr.dll
2010-05-04 18:22:25 ----A---- C:\Windows\system32\winresume.exe
2010-05-04 18:22:24 ----A---- C:\Windows\system32\WinSAT.exe
2010-05-04 18:22:24 ----A---- C:\Windows\system32\winmm.dll
2010-05-04 18:22:24 ----A---- C:\Windows\system32\winlogon.exe
2010-05-04 18:22:24 ----A---- C:\Windows\system32\winload.exe
2010-05-04 18:22:23 ----A---- C:\Windows\system32\winsrv.dll
2010-05-04 18:22:22 ----A---- C:\Windows\system32\WMPhoto.dll
2010-05-04 18:22:22 ----A---- C:\Windows\system32\WMNetMgr.dll
2010-05-04 18:22:21 ----A---- C:\Windows\system32\wmpmde.dll
2010-05-04 18:22:21 ----A---- C:\Windows\system32\wmpeffects.dll
2010-05-04 18:22:20 ----A---- C:\Windows\system32\wmploc.DLL
2010-05-04 18:22:18 ----A---- C:\Windows\system32\wmp.dll
2010-05-04 18:22:17 ----A---- C:\Windows\system32\wmdrmsdk.dll
2010-05-04 18:22:16 ----A---- C:\Windows\system32\wmicmiplugin.dll
2010-05-04 18:22:15 ----A---- C:\Windows\system32\Storprop.dll
2010-05-04 18:22:15 ----A---- C:\Windows\system32\stobject.dll
2010-05-04 18:22:14 ----A---- C:\Windows\system32\sud.dll
2010-05-04 18:22:12 ----A---- C:\Windows\system32\srcore.dll
2010-05-04 18:22:12 ----A---- C:\Windows\system32\srchadmin.dll
2010-05-04 18:22:11 ----A---- C:\Windows\system32\srvsvc.dll
2010-05-04 18:22:06 ----A---- C:\Windows\system32\sysmain.dll
2010-05-04 18:22:06 ----A---- C:\Windows\system32\swprv.dll
2010-05-04 18:22:05 ----A---- C:\Windows\system32\sysclass.dll
2010-05-04 18:22:05 ----A---- C:\Windows\system32\SyncCenter.dll
2010-05-04 18:22:02 ----A---- C:\Windows\system32\SMBHelperClass.dll
2010-05-04 18:22:02 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2010-05-04 18:22:02 ----A---- C:\Windows\system32\slwmi.dll
2010-05-04 18:22:01 ----A---- C:\Windows\system32\smss.exe
2010-05-04 18:22:00 ----A---- C:\Windows\system32\SmiEngine.dll
2010-05-04 18:21:59 ----A---- C:\Windows\system32\slcc.dll
2010-05-04 18:21:59 ----A---- C:\Windows\system32\SLC.dll
2010-05-04 18:21:59 ----A---- C:\Windows\system32\shwebsvc.dll
2010-05-04 18:21:59 ----A---- C:\Windows\system32\shsvcs.dll
2010-05-04 18:21:58 ----A---- C:\Windows\system32\SLsvc.exe
2010-05-04 18:21:57 ----A---- C:\Windows\system32\slwga.dll
2010-05-04 18:21:57 ----A---- C:\Windows\system32\SLUINotify.dll
2010-05-04 18:21:57 ----A---- C:\Windows\system32\SLUI.exe
2010-05-04 18:21:57 ----A---- C:\Windows\system32\slmgr.vbs
2010-05-04 18:21:57 ----A---- C:\Windows\system32\slcinst.dll
2010-05-04 18:21:56 ----A---- C:\Windows\system32\SLLUA.exe
2010-05-04 18:21:56 ----A---- C:\Windows\system32\SLCExt.dll
2010-05-04 18:21:55 ----A---- C:\Windows\system32\spp.dll
2010-05-04 18:21:55 ----A---- C:\Windows\system32\spoolsv.exe
2010-05-04 18:21:55 ----A---- C:\Windows\system32\spoolss.dll
2010-05-04 18:21:55 ----A---- C:\Windows\system32\spinstall.exe
2010-05-04 18:21:55 ----A---- C:\Windows\system32\SLCommDlg.dll
2010-05-04 18:21:54 ----A---- C:\Windows\system32\spcmsg.dll
2010-05-04 18:21:52 ----A---- C:\Windows\system32\spwmp.dll
2010-05-04 18:21:52 ----A---- C:\Windows\system32\spwizui.dll
2010-05-04 18:21:52 ----A---- C:\Windows\system32\sperror.dll
2010-05-04 18:21:51 ----A---- C:\Windows\system32\sqlsrv32.dll
2010-05-04 18:21:51 ----A---- C:\Windows\system32\spwinsat.dll
2010-05-04 18:21:50 ----A---- C:\Windows\system32\spreview.exe
2010-05-04 18:21:48 ----A---- C:\Windows\system32\softkbd.dll
2010-05-04 18:21:48 ----A---- C:\Windows\system32\SnippingTool.exe
2010-05-04 18:21:48 ----A---- C:\Windows\system32\SndVol.exe
2010-05-04 18:21:46 ----A---- C:\Windows\system32\TSTheme.exe
2010-05-04 18:21:45 ----A---- C:\Windows\system32\TsWpfWrp.exe
2010-05-04 18:21:41 ----A---- C:\Windows\system32\tsgqec.dll
2010-05-04 18:21:40 ----A---- C:\Windows\system32\tscupgrd.exe
2010-05-04 18:21:35 ----A---- C:\Windows\system32\zipfldr.dll
2010-05-04 18:21:35 ----A---- C:\Windows\system32\untfs.dll
2010-05-04 18:21:34 ----A---- C:\Windows\system32\urlmon.dll
2010-05-04 18:21:30 ----A---- C:\Windows\system32\uDWM.dll
2010-05-04 18:21:28 ----A---- C:\Windows\system32\ulib.dll
2010-05-04 18:21:27 ----A---- C:\Windows\system32\umpnpmgr.dll
2010-05-04 18:21:26 ----A---- C:\Windows\system32\systemcpl.dll
2010-05-04 18:21:06 ----A---- C:\Windows\system32\tsbyuv.dll
2010-05-04 18:21:03 ----A---- C:\Windows\system32\tquery.dll
2010-05-04 18:21:01 ----A---- C:\Windows\system32\tcpipcfg.dll
2010-05-04 18:21:00 ----A---- C:\Windows\system32\tcpmon.dll
2010-05-04 18:20:59 ----A---- C:\Windows\system32\tapisrv.dll
2010-05-04 18:20:58 ----A---- C:\Windows\system32\taskeng.exe
2010-05-04 18:20:58 ----A---- C:\Windows\system32\taskcomp.dll
2010-05-04 18:20:57 ----A---- C:\Windows\system32\thawbrkr.dll
2010-05-04 18:20:57 ----A---- C:\Windows\system32\termsrv.dll
2010-05-04 18:20:56 ----A---- C:\Windows\system32\themeui.dll
2010-05-04 18:20:55 ----A---- C:\Windows\system32\themecpl.dll
2010-05-04 18:12:33 ----D---- C:\Windows\SoftwareDistribution
2010-05-04 18:05:54 ----D---- C:\Windows\system32\EventProviders
2010-05-04 18:00:28 ----SHD---- C:\Config.Msi
2010-05-03 17:33:57 ----A---- C:\Windows\system32\javaws.exe
2010-05-03 17:33:57 ----A---- C:\Windows\system32\javaw.exe
2010-05-03 17:33:57 ----A---- C:\Windows\system32\java.exe
2010-05-03 17:33:57 ----A---- C:\Windows\system32\deployJava1.dll
2010-05-03 16:46:32 ----A---- C:\Windows\system32\aswBoot.exe
2010-05-03 16:46:08 ----D---- C:\ProgramData\Alwil Software
2010-05-03 16:46:08 ----D---- C:\Program Files\Alwil Software
2010-05-03 16:32:29 ----D---- C:\Users\Daniel\AppData\Roaming\CheckPoint
2010-05-03 16:32:05 ----D---- C:\Program Files\CheckPoint
2010-05-03 16:31:50 ----A---- C:\Windows\system32\vsregexp.dll
2010-05-03 16:31:35 ----A---- C:\Windows\system32\zlcommdb.dll
2010-05-03 16:31:35 ----A---- C:\Windows\system32\zlcomm.dll
2010-05-03 16:31:12 ----A---- C:\Windows\system32\vswmi.dll
2010-05-03 16:31:06 ----A---- C:\Windows\system32\zpeng25.dll
2010-05-03 16:31:04 ----A---- C:\Windows\system32\vsxml.dll
2010-05-03 16:31:01 ----A---- C:\Windows\system32\vspubapi.dll
2010-05-03 16:31:00 ----A---- C:\Windows\system32\vsmonapi.dll
2010-05-03 16:30:50 ----A---- C:\Windows\system32\vsdata.dll
2010-05-03 16:30:17 ----D---- C:\Windows\system32\ZoneLabs
2010-05-03 16:30:11 ----D---- C:\Program Files\Zone Labs
2010-05-03 16:29:41 ----D---- C:\ProgramData\CheckPoint
2010-05-03 16:29:35 ----D---- C:\Windows\Internet Logs
2010-05-03 16:29:23 ----A---- C:\Windows\system32\vsutil.dll
2010-05-03 16:29:23 ----A---- C:\Windows\system32\vsinit.dll
2010-05-03 15:30:46 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2010-05-03 15:29:10 ----D---- C:\Users\Daniel\AppData\Roaming\SUPERAntiSpyware.com
2010-05-03 15:29:10 ----D---- C:\Program Files\SUPERAntiSpyware
2010-05-03 15:27:31 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2010-05-03 15:13:44 ----D---- C:\Program Files\trend micro
2010-05-03 14:44:12 ----D---- C:\Program Files\Crawler
2010-05-03 14:44:05 ----D---- C:\Users\Daniel\AppData\Roaming\Spyware Terminator
2010-05-03 14:44:02 ----D---- C:\ProgramData\Spyware Terminator
2010-05-03 14:43:56 ----D---- C:\Program Files\Spyware Terminator
2010-05-03 13:08:38 ----D---- C:\Program Files\HIJACK
2010-05-03 12:33:37 ----D---- C:\ProgramData\Lavasoft
2010-05-01 20:56:49 ----D---- C:\Program Files\GeekTools
2010-04-24 12:03:40 ----D---- C:\Program Files\EVC
2010-04-24 11:36:11 ----D---- C:\Program Files\EOBD2 1260
Re: Prosim o kontrolu logu
======List of files/folders modified in the last 1 months======
2010-05-07 19:16:04 ----D---- C:\Windows\Temp
2010-05-06 21:22:31 ----D---- C:\Windows\System32
2010-05-06 21:22:31 ----D---- C:\Windows\inf
2010-05-06 21:22:31 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-05-06 21:20:11 ----A---- C:\Windows\win.ini
2010-05-06 21:18:28 ----D---- C:\Users\Daniel\AppData\Roaming\ICQ
2010-05-06 21:18:16 ----D---- C:\Windows\system32\drivers
2010-05-06 21:17:40 ----A---- C:\Windows\system32\acovcnt.exe
2010-05-06 21:15:43 ----D---- C:\Users\Daniel\AppData\Roaming\Skype
2010-05-06 20:31:52 ----D---- C:\Users\Daniel\AppData\Roaming\skypePM
2010-05-06 20:25:12 ----D---- C:\Windows\system32\catroot2
2010-05-06 20:22:14 ----D---- C:\Windows\Microsoft.NET
2010-05-06 20:22:13 ----RSD---- C:\Windows\assembly
2010-05-04 20:28:14 ----D---- C:\Windows\rescache
2010-05-04 20:16:59 ----HD---- C:\ProgramData
2010-05-04 19:10:30 ----D---- C:\Windows
2010-05-04 19:10:25 ----SHD---- C:\Boot
2010-05-04 19:10:20 ----D---- C:\Windows\system32\catroot
2010-05-04 19:08:19 ----D---- C:\Windows\Prefetch
2010-05-04 19:02:45 ----D---- C:\Program Files\Windows Sidebar
2010-05-04 19:02:45 ----D---- C:\Program Files\Windows Mail
2010-05-04 19:02:45 ----D---- C:\Program Files\Windows Calendar
2010-05-04 19:02:45 ----D---- C:\Program Files\Movie Maker
2010-05-04 19:02:45 ----D---- C:\Program Files\Internet Explorer
2010-05-04 19:02:44 ----D---- C:\Windows\servicing
2010-05-04 19:02:44 ----D---- C:\Windows\ehome
2010-05-04 19:02:44 ----D---- C:\Program Files\Windows Photo Gallery
2010-05-04 19:02:44 ----D---- C:\Program Files\Windows Media Player
2010-05-04 19:02:44 ----D---- C:\Program Files\Windows Journal
2010-05-04 19:02:44 ----D---- C:\Program Files\Windows Defender
2010-05-04 19:02:44 ----D---- C:\Program Files\Windows Collaboration
2010-05-04 19:02:44 ----D---- C:\Program Files\Common Files\System
2010-05-04 19:02:42 ----D---- C:\Windows\IME
2010-05-04 19:02:37 ----D---- C:\Windows\system32\XPSViewer
2010-05-04 19:02:37 ----D---- C:\Windows\system32\sk-SK
2010-05-04 19:02:37 ----D---- C:\Windows\system32\lv-LV
2010-05-04 19:02:37 ----D---- C:\Windows\system32\ko-KR
2010-05-04 19:02:37 ----D---- C:\Windows\system32\hr-HR
2010-05-04 19:02:37 ----D---- C:\Windows\system32\et-EE
2010-05-04 19:02:37 ----D---- C:\Windows\system32\da-DK
2010-05-04 19:02:35 ----D---- C:\Windows\system32\en-US
2010-05-04 19:02:34 ----D---- C:\Windows\system32\oobe
2010-05-04 19:02:34 ----D---- C:\Windows\system32\migration
2010-05-04 19:02:34 ----D---- C:\Windows\system32\it-IT
2010-05-04 19:02:34 ----D---- C:\Windows\system32\el-GR
2010-05-04 19:02:34 ----D---- C:\Windows\system32\de-DE
2010-05-04 19:02:33 ----D---- C:\Windows\system32\zh-TW
2010-05-04 19:02:33 ----D---- C:\Windows\system32\zh-CN
2010-05-04 19:02:33 ----D---- C:\Windows\system32\uk-UA
2010-05-04 19:02:33 ----D---- C:\Windows\system32\tr-TR
2010-05-04 19:02:33 ----D---- C:\Windows\system32\th-TH
2010-05-04 19:02:33 ----D---- C:\Windows\system32\sv-SE
2010-05-04 19:02:33 ----D---- C:\Windows\system32\sr-Latn-CS
2010-05-04 19:02:33 ----D---- C:\Windows\system32\SLUI
2010-05-04 19:02:33 ----D---- C:\Windows\system32\sl-SI
2010-05-04 19:02:33 ----D---- C:\Windows\system32\setup
2010-05-04 19:02:33 ----D---- C:\Windows\system32\ru-RU
2010-05-04 19:02:33 ----D---- C:\Windows\system32\ro-RO
2010-05-04 19:02:33 ----D---- C:\Windows\system32\pt-PT
2010-05-04 19:02:33 ----D---- C:\Windows\system32\pl-PL
2010-05-04 19:02:33 ----D---- C:\Windows\system32\manifeststore
2010-05-04 19:02:33 ----D---- C:\Windows\system32\ja-JP
2010-05-04 19:02:33 ----D---- C:\Windows\system32\hu-HU
2010-05-04 19:02:33 ----D---- C:\Windows\system32\he-IL
2010-05-04 19:02:33 ----D---- C:\Windows\system32\fr-FR
2010-05-04 19:02:33 ----D---- C:\Windows\system32\fi-FI
2010-05-04 19:02:33 ----D---- C:\Windows\system32\es-ES
2010-05-04 19:02:33 ----D---- C:\Windows\system32\en
2010-05-04 19:02:33 ----D---- C:\Windows\system32\cs-CZ
2010-05-04 19:02:33 ----D---- C:\Windows\system32\bg-BG
2010-05-04 19:02:33 ----D---- C:\Windows\system32\AdvancedInstallers
2010-05-04 19:02:32 ----D---- C:\Windows\system32\wbem
2010-05-04 19:02:32 ----D---- C:\Windows\system32\pt-BR
2010-05-04 19:02:32 ----D---- C:\Windows\system32\nl-NL
2010-05-04 19:02:32 ----D---- C:\Windows\system32\nb-NO
2010-05-04 19:02:32 ----D---- C:\Windows\system32\migwiz
2010-05-04 19:02:32 ----D---- C:\Windows\system32\lt-LT
2010-05-04 19:02:32 ----D---- C:\Windows\system32\ar-SA
2010-05-04 19:02:24 ----RSD---- C:\Windows\Fonts
2010-05-04 19:02:24 ----D---- C:\Windows\AppPatch
2010-05-04 19:02:18 ----D---- C:\Windows\system32\Boot
2010-05-04 19:00:59 ----D---- C:\Windows\system32\RTCOM
2010-05-04 18:53:46 ----D---- C:\Windows\winsxs
2010-05-04 18:15:20 ----SHD---- C:\System Volume Information
2010-05-04 18:14:00 ----D---- C:\Windows\system32\LogFiles
2010-05-04 18:04:01 ----SHD---- C:\Windows\Installer
2010-05-04 18:03:55 ----D---- C:\ProgramData\Adobe
2010-05-04 18:02:43 ----D---- C:\Program Files\Common Files\Adobe
2010-05-04 18:01:23 ----D---- C:\Program Files\Adobe
2010-05-04 07:26:38 ----D---- C:\Windows\Tasks
2010-05-03 19:15:46 ----D---- C:\Windows\ConfigSetRoot
2010-05-03 19:15:44 ----D---- C:\Program Files\WinRAR
2010-05-03 19:15:44 ----D---- C:\Program Files\VAG-COM1
2010-05-03 19:15:44 ----D---- C:\Program Files\Spybot - Search & Destroy
2010-05-03 19:11:13 ----D---- C:\Users\Daniel\AppData\Roaming\uTorrent
2010-05-03 17:33:52 ----D---- C:\Program Files\Java
2010-05-03 16:46:08 ----RD---- C:\Program Files
2010-05-03 16:39:59 ----D---- C:\ProgramData\Spybot - Search & Destroy
2010-05-03 16:31:42 ----D---- C:\Windows\Type SoftwareDistribution.old
2010-05-03 15:27:31 ----D---- C:\Program Files\Common Files
2010-05-03 14:35:11 ----DC---- C:\Windows\system32\DRVSTORE
2010-05-03 14:29:53 ----D---- C:\Windows\system32\Tasks
2010-05-02 19:55:51 ----D---- C:\Windows\Minidump
2010-04-25 13:16:30 ----A---- C:\Windows\system32\sleep.vbs
2010-04-18 07:43:47 ----RD---- C:\Program Files\Skype
2010-04-16 16:11:11 ----SD---- C:\Users\Daniel\AppData\Roaming\Microsoft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2010-04-14 23376]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2010-04-14 162768]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2010-04-14 46672]
R1 NetworkX;NetworkX; C:\Windows\system32\ckldrv.sys [2006-01-10 31846]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [2010-02-17 12872]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [2010-04-27 61440]
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\Windows\system32\drivers\sp_rsdrv2.sys [2010-05-03 142592]
R1 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys [2009-11-22 446664]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-02-05 11632]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2010-04-14 19024]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2010-04-14 51792]
R2 ghaio;ghaio; \??\C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys [2006-12-28 18688]
R2 Hardlock;Hardlock; \??\C:\Windows\system32\drivers\hardlock.sys [2005-07-28 685056]
R2 ISWKL;ZoneAlarm Toolbar ISWKL; \??\C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys [2009-10-14 25208]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-01-23 42496]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-03-21 37376]
R3 AtcL001;NDIS Miniport Driver for Attansic L1 Gigabit Ethernet Controller; C:\Windows\system32\DRIVERS\atl01v32.sys [2007-03-15 48128]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-19 14208]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-02-14 1740904]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2007-01-24 5632]
R3 mcdbus;Driver for MagicISO SCSI Host Controller; C:\Windows\system32\DRIVERS\mcdbus.sys [2007-09-05 92544]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\Windows\system32\drivers\MODEMCSA.sys [2008-01-19 18432]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2006-12-14 7680]
R3 NETw4v32;Intel(R) Wireless WiFi Link Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw4v32.sys [2007-09-26 2251776]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2007-04-04 7493856]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2008-04-23 47360]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-10 89088]
R3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-22 982272]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-03-01 182456]
R3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-19 134016]
S1 Uim_IM;UIM Drive Backup Image Plugin; C:\Windows\System32\Drivers\Uim_IM.sys [2010-01-15 385544]
S1 UimBus;Universal Image Mounter Controller; C:\Windows\system32\DRIVERS\UimBus.sys [2010-01-15 34392]
S3 Bcim;Bandwidth Controller kernel component; C:\Windows\system32\DRIVERS\bcim.sys []
S3 BthAvrcp;Bluetooth AVRCP Profile; C:\Windows\system32\DRIVERS\BthAvrcp.sys [2008-11-03 12800]
S3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-10 22528]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-19 92160]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-04-10 507904]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-10 29696]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2009-02-17 57672]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2009-02-17 72520]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2006-10-19 1380864]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 NETw3v32;Intel(R) PRO/Wireless 3945ABG Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw3v32.sys [2006-11-02 1781760]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-10 148992]
S3 RTL8023xp;Realtek 10/100 NIC Family NDIS x86 Driver; C:\Windows\system32\DRIVERS\Rtnicxp.sys [2006-11-02 47104]
S3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-03-06 1737984]
S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\sscdbus.sys [2005-08-17 58352]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
S3 vsdatant7;vsdatant7; C:\Windows\System32\drivers\vsdatant.win7.sys []
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2006-11-02 128104]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-19 39936]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ADSMService;ADSM Service; C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [2007-02-17 69632]
R2 ASLDRService;ASLDR Service; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [2007-02-06 94208]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-03-10 94208]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-04-14 40384]
R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 Crypkey License;Crypkey License; C:\Windows\system32\crypserv.exe [2006-09-22 69632]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [2007-02-21 643072]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2007-02-12 355096]
R2 IswSvc;ZoneAlarm Toolbar IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [2009-10-14 476528]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-10-19 61440]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [2007-02-21 327680]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2010-05-03 488960]
R2 spmgr;spmgr; C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [2006-12-29 123248]
R2 vsmon;TrueVector Internet Monitor; C:\Windows\System32\ZoneLabs\vsmon.exe [2009-11-22 2384240]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-04-14 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-04-14 40384]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2008-04-16 654848]
S3 getPlusHelper;@C:\Program Files\NOS\bin\getPlus_Helper.dll,-101; C:\Windows\System32\svchost.exe [2008-01-19 21504]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2006-12-23 262144]
S3 wampapache;wampapache; c:\wamp\bin\apache\apache2.2.11\bin\httpd.exe [2008-12-10 24636]
S3 wampmysqld;wampmysqld; c:\wamp\bin\mysql\mysql5.1.36\bin\mysqld.exe [2009-06-17 6582912]
-----------------EOF-----------------
2010-05-07 19:16:04 ----D---- C:\Windows\Temp
2010-05-06 21:22:31 ----D---- C:\Windows\System32
2010-05-06 21:22:31 ----D---- C:\Windows\inf
2010-05-06 21:22:31 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-05-06 21:20:11 ----A---- C:\Windows\win.ini
2010-05-06 21:18:28 ----D---- C:\Users\Daniel\AppData\Roaming\ICQ
2010-05-06 21:18:16 ----D---- C:\Windows\system32\drivers
2010-05-06 21:17:40 ----A---- C:\Windows\system32\acovcnt.exe
2010-05-06 21:15:43 ----D---- C:\Users\Daniel\AppData\Roaming\Skype
2010-05-06 20:31:52 ----D---- C:\Users\Daniel\AppData\Roaming\skypePM
2010-05-06 20:25:12 ----D---- C:\Windows\system32\catroot2
2010-05-06 20:22:14 ----D---- C:\Windows\Microsoft.NET
2010-05-06 20:22:13 ----RSD---- C:\Windows\assembly
2010-05-04 20:28:14 ----D---- C:\Windows\rescache
2010-05-04 20:16:59 ----HD---- C:\ProgramData
2010-05-04 19:10:30 ----D---- C:\Windows
2010-05-04 19:10:25 ----SHD---- C:\Boot
2010-05-04 19:10:20 ----D---- C:\Windows\system32\catroot
2010-05-04 19:08:19 ----D---- C:\Windows\Prefetch
2010-05-04 19:02:45 ----D---- C:\Program Files\Windows Sidebar
2010-05-04 19:02:45 ----D---- C:\Program Files\Windows Mail
2010-05-04 19:02:45 ----D---- C:\Program Files\Windows Calendar
2010-05-04 19:02:45 ----D---- C:\Program Files\Movie Maker
2010-05-04 19:02:45 ----D---- C:\Program Files\Internet Explorer
2010-05-04 19:02:44 ----D---- C:\Windows\servicing
2010-05-04 19:02:44 ----D---- C:\Windows\ehome
2010-05-04 19:02:44 ----D---- C:\Program Files\Windows Photo Gallery
2010-05-04 19:02:44 ----D---- C:\Program Files\Windows Media Player
2010-05-04 19:02:44 ----D---- C:\Program Files\Windows Journal
2010-05-04 19:02:44 ----D---- C:\Program Files\Windows Defender
2010-05-04 19:02:44 ----D---- C:\Program Files\Windows Collaboration
2010-05-04 19:02:44 ----D---- C:\Program Files\Common Files\System
2010-05-04 19:02:42 ----D---- C:\Windows\IME
2010-05-04 19:02:37 ----D---- C:\Windows\system32\XPSViewer
2010-05-04 19:02:37 ----D---- C:\Windows\system32\sk-SK
2010-05-04 19:02:37 ----D---- C:\Windows\system32\lv-LV
2010-05-04 19:02:37 ----D---- C:\Windows\system32\ko-KR
2010-05-04 19:02:37 ----D---- C:\Windows\system32\hr-HR
2010-05-04 19:02:37 ----D---- C:\Windows\system32\et-EE
2010-05-04 19:02:37 ----D---- C:\Windows\system32\da-DK
2010-05-04 19:02:35 ----D---- C:\Windows\system32\en-US
2010-05-04 19:02:34 ----D---- C:\Windows\system32\oobe
2010-05-04 19:02:34 ----D---- C:\Windows\system32\migration
2010-05-04 19:02:34 ----D---- C:\Windows\system32\it-IT
2010-05-04 19:02:34 ----D---- C:\Windows\system32\el-GR
2010-05-04 19:02:34 ----D---- C:\Windows\system32\de-DE
2010-05-04 19:02:33 ----D---- C:\Windows\system32\zh-TW
2010-05-04 19:02:33 ----D---- C:\Windows\system32\zh-CN
2010-05-04 19:02:33 ----D---- C:\Windows\system32\uk-UA
2010-05-04 19:02:33 ----D---- C:\Windows\system32\tr-TR
2010-05-04 19:02:33 ----D---- C:\Windows\system32\th-TH
2010-05-04 19:02:33 ----D---- C:\Windows\system32\sv-SE
2010-05-04 19:02:33 ----D---- C:\Windows\system32\sr-Latn-CS
2010-05-04 19:02:33 ----D---- C:\Windows\system32\SLUI
2010-05-04 19:02:33 ----D---- C:\Windows\system32\sl-SI
2010-05-04 19:02:33 ----D---- C:\Windows\system32\setup
2010-05-04 19:02:33 ----D---- C:\Windows\system32\ru-RU
2010-05-04 19:02:33 ----D---- C:\Windows\system32\ro-RO
2010-05-04 19:02:33 ----D---- C:\Windows\system32\pt-PT
2010-05-04 19:02:33 ----D---- C:\Windows\system32\pl-PL
2010-05-04 19:02:33 ----D---- C:\Windows\system32\manifeststore
2010-05-04 19:02:33 ----D---- C:\Windows\system32\ja-JP
2010-05-04 19:02:33 ----D---- C:\Windows\system32\hu-HU
2010-05-04 19:02:33 ----D---- C:\Windows\system32\he-IL
2010-05-04 19:02:33 ----D---- C:\Windows\system32\fr-FR
2010-05-04 19:02:33 ----D---- C:\Windows\system32\fi-FI
2010-05-04 19:02:33 ----D---- C:\Windows\system32\es-ES
2010-05-04 19:02:33 ----D---- C:\Windows\system32\en
2010-05-04 19:02:33 ----D---- C:\Windows\system32\cs-CZ
2010-05-04 19:02:33 ----D---- C:\Windows\system32\bg-BG
2010-05-04 19:02:33 ----D---- C:\Windows\system32\AdvancedInstallers
2010-05-04 19:02:32 ----D---- C:\Windows\system32\wbem
2010-05-04 19:02:32 ----D---- C:\Windows\system32\pt-BR
2010-05-04 19:02:32 ----D---- C:\Windows\system32\nl-NL
2010-05-04 19:02:32 ----D---- C:\Windows\system32\nb-NO
2010-05-04 19:02:32 ----D---- C:\Windows\system32\migwiz
2010-05-04 19:02:32 ----D---- C:\Windows\system32\lt-LT
2010-05-04 19:02:32 ----D---- C:\Windows\system32\ar-SA
2010-05-04 19:02:24 ----RSD---- C:\Windows\Fonts
2010-05-04 19:02:24 ----D---- C:\Windows\AppPatch
2010-05-04 19:02:18 ----D---- C:\Windows\system32\Boot
2010-05-04 19:00:59 ----D---- C:\Windows\system32\RTCOM
2010-05-04 18:53:46 ----D---- C:\Windows\winsxs
2010-05-04 18:15:20 ----SHD---- C:\System Volume Information
2010-05-04 18:14:00 ----D---- C:\Windows\system32\LogFiles
2010-05-04 18:04:01 ----SHD---- C:\Windows\Installer
2010-05-04 18:03:55 ----D---- C:\ProgramData\Adobe
2010-05-04 18:02:43 ----D---- C:\Program Files\Common Files\Adobe
2010-05-04 18:01:23 ----D---- C:\Program Files\Adobe
2010-05-04 07:26:38 ----D---- C:\Windows\Tasks
2010-05-03 19:15:46 ----D---- C:\Windows\ConfigSetRoot
2010-05-03 19:15:44 ----D---- C:\Program Files\WinRAR
2010-05-03 19:15:44 ----D---- C:\Program Files\VAG-COM1
2010-05-03 19:15:44 ----D---- C:\Program Files\Spybot - Search & Destroy
2010-05-03 19:11:13 ----D---- C:\Users\Daniel\AppData\Roaming\uTorrent
2010-05-03 17:33:52 ----D---- C:\Program Files\Java
2010-05-03 16:46:08 ----RD---- C:\Program Files
2010-05-03 16:39:59 ----D---- C:\ProgramData\Spybot - Search & Destroy
2010-05-03 16:31:42 ----D---- C:\Windows\Type SoftwareDistribution.old
2010-05-03 15:27:31 ----D---- C:\Program Files\Common Files
2010-05-03 14:35:11 ----DC---- C:\Windows\system32\DRVSTORE
2010-05-03 14:29:53 ----D---- C:\Windows\system32\Tasks
2010-05-02 19:55:51 ----D---- C:\Windows\Minidump
2010-04-25 13:16:30 ----A---- C:\Windows\system32\sleep.vbs
2010-04-18 07:43:47 ----RD---- C:\Program Files\Skype
2010-04-16 16:11:11 ----SD---- C:\Users\Daniel\AppData\Roaming\Microsoft
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2010-04-14 23376]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2010-04-14 162768]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2010-04-14 46672]
R1 NetworkX;NetworkX; C:\Windows\system32\ckldrv.sys [2006-01-10 31846]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [2010-02-17 12872]
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [2010-04-27 61440]
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\Windows\system32\drivers\sp_rsdrv2.sys [2010-05-03 142592]
R1 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys [2009-11-22 446664]
R2 ASMMAP;ASMMAP; \??\C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-02-05 11632]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2010-04-14 19024]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2010-04-14 51792]
R2 ghaio;ghaio; \??\C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys [2006-12-28 18688]
R2 Hardlock;Hardlock; \??\C:\Windows\system32\drivers\hardlock.sys [2005-07-28 685056]
R2 ISWKL;ZoneAlarm Toolbar ISWKL; \??\C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys [2009-10-14 25208]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-01-23 42496]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-03-21 37376]
R3 AtcL001;NDIS Miniport Driver for Attansic L1 Gigabit Ethernet Controller; C:\Windows\system32\DRIVERS\atl01v32.sys [2007-03-15 48128]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-19 14208]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-02-14 1740904]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2007-01-24 5632]
R3 mcdbus;Driver for MagicISO SCSI Host Controller; C:\Windows\system32\DRIVERS\mcdbus.sys [2007-09-05 92544]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\Windows\system32\drivers\MODEMCSA.sys [2008-01-19 18432]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2006-12-14 7680]
R3 NETw4v32;Intel(R) Wireless WiFi Link Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw4v32.sys [2007-09-26 2251776]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2007-04-04 7493856]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2008-04-23 47360]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-10 89088]
R3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-11-22 982272]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-03-01 182456]
R3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-19 134016]
S1 Uim_IM;UIM Drive Backup Image Plugin; C:\Windows\System32\Drivers\Uim_IM.sys [2010-01-15 385544]
S1 UimBus;Universal Image Mounter Controller; C:\Windows\system32\DRIVERS\UimBus.sys [2010-01-15 34392]
S3 Bcim;Bandwidth Controller kernel component; C:\Windows\system32\DRIVERS\bcim.sys []
S3 BthAvrcp;Bluetooth AVRCP Profile; C:\Windows\system32\DRIVERS\BthAvrcp.sys [2008-11-03 12800]
S3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-10 22528]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-19 92160]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-04-10 507904]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-10 29696]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2009-02-17 57672]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2009-02-17 72520]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2006-10-19 1380864]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 NETw3v32;Intel(R) PRO/Wireless 3945ABG Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw3v32.sys [2006-11-02 1781760]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-10 148992]
S3 RTL8023xp;Realtek 10/100 NIC Family NDIS x86 Driver; C:\Windows\system32\DRIVERS\Rtnicxp.sys [2006-11-02 47104]
S3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-03-06 1737984]
S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\sscdbus.sys [2005-08-17 58352]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
S3 vsdatant7;vsdatant7; C:\Windows\System32\drivers\vsdatant.win7.sys []
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2006-11-02 128104]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-19 39936]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ADSMService;ADSM Service; C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe [2007-02-17 69632]
R2 ASLDRService;ASLDR Service; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [2007-02-06 94208]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-03-10 94208]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-04-14 40384]
R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 Crypkey License;Crypkey License; C:\Windows\system32\crypserv.exe [2006-09-22 69632]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [2007-02-21 643072]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2007-02-12 355096]
R2 IswSvc;ZoneAlarm Toolbar IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [2009-10-14 476528]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-10-19 61440]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [2007-02-21 327680]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2010-05-03 488960]
R2 spmgr;spmgr; C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [2006-12-29 123248]
R2 vsmon;TrueVector Internet Monitor; C:\Windows\System32\ZoneLabs\vsmon.exe [2009-11-22 2384240]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-04-14 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-04-14 40384]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2008-04-16 654848]
S3 getPlusHelper;@C:\Program Files\NOS\bin\getPlus_Helper.dll,-101; C:\Windows\System32\svchost.exe [2008-01-19 21504]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2006-12-23 262144]
S3 wampapache;wampapache; c:\wamp\bin\apache\apache2.2.11\bin\httpd.exe [2008-12-10 24636]
S3 wampmysqld;wampmysqld; c:\wamp\bin\mysql\mysql5.1.36\bin\mysqld.exe [2009-06-17 6582912]
-----------------EOF-----------------
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Prosim o kontrolu logu
Platba došla v pořádku. Děkuji za podporu.
Stáhněte a uložte, nejlépe na plochu http://download.bleepingcomputer.com/sUBs/ComboFix.exe


- Vypněte všechny rezidentní bezpečnostní programy - firewally, antiviry, antispywary
- Spusťte aplikaci pod účtem s oprávněním Administrátora (Správce), ihned po startu se zobrazí stránka s licenčními podmínkami, pokračujte stisknutím tlačítka "Ano"
- Dále postupujte dle pokynů, během scanu nespouštějte jiné aplikace a neklikejte do zobrazujícího se okna
- Scan by měl trvat okolo 5 - 10 minut, po dokončení Combofix zobrazí log C:\ComboFix.txt , který sem vložte.
- Během skenování může být počítač restartován.
Re: Prosim o kontrolu logu
Mal som zapnuty Windows Firewall aj Zone Alarm, teraz som vypol Windows Firewall- takze bezi iba Zone - je to takto spravne?
Tu je log:
ComboFix 10-05-06.05 - Daniel 07/05/2010 20:09:50.2.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.44.1033.18.2046.887 [GMT 1:00]
Running from: c:\users\Daniel\Downloads\ComboFix.exe
SP: Spyware Terminator *disabled* (Updated) {55EE49A8-16BE-4601-BBE6-607B7F7317DE}
SP: SUPERAntiSpyware *disabled* (Updated) {222A897C-5018-402e-943F-7E7AC8560DA7}
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.
((((((((((((((((((((((((( Files Created from 2010-04-07 to 2010-05-07 )))))))))))))))))))))))))))))))
.
2010-05-07 19:16 . 2010-05-07 19:16 -------- d-----w- c:\users\Public\AppData\Local\temp
2010-05-07 19:16 . 2010-05-07 19:16 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-05-07 18:16 . 2010-05-07 18:16 -------- d-----w- C:\rsit
2010-05-04 19:16 . 2010-05-04 19:16 -------- d-----w- c:\programdata\WindowsSearch
2010-05-04 18:02 . 2010-05-04 18:02 -------- d-----w- c:\windows\system32\ca-ES
2010-05-04 18:02 . 2010-05-04 18:02 -------- d-----w- c:\windows\system32\vi-VN
2010-05-04 18:02 . 2010-05-04 18:02 -------- d-----w- c:\windows\system32\eu-ES
2010-05-04 17:57 . 2010-05-04 17:57 -------- d-----w- c:\windows\system32\SPReview
2010-05-04 17:40 . 2009-04-10 22:28 928768 ----a-w- c:\windows\system32\scavenge.dll
2010-05-04 17:40 . 2009-04-10 22:27 57856 ----a-w- c:\windows\system32\compcln.exe
2010-05-04 17:25 . 2009-04-10 22:28 69632 ----a-w- c:\windows\system32\rastapi.dll
2010-05-04 17:24 . 2009-04-10 22:28 950784 ----a-w- c:\windows\system32\gpedit.dll
2010-05-04 17:23 . 2009-04-10 22:28 218624 ----a-w- c:\windows\system32\mscandui.dll
2010-05-04 17:22 . 2009-04-10 22:32 17896 ----a-w- c:\windows\system32\kd1394.dll
2010-05-04 17:21 . 2009-04-10 22:28 777216 ----a-w- c:\windows\system32\slcc.dll
2010-05-04 17:20 . 2009-04-10 22:28 242688 ----a-w- c:\windows\system32\tapisrv.dll
2010-05-04 17:20 . 2009-04-10 22:28 270336 ----a-w- c:\windows\system32\taskcomp.dll
2010-05-04 17:20 . 2009-04-10 22:28 169984 ----a-w- c:\windows\system32\taskeng.exe
2010-05-04 17:20 . 2009-04-10 22:28 449024 ----a-w- c:\windows\system32\termsrv.dll
2010-05-04 17:20 . 2009-04-10 22:28 313344 ----a-w- c:\windows\system32\thawbrkr.dll
2010-05-04 17:20 . 2009-04-10 22:28 615424 ----a-w- c:\windows\system32\themeui.dll
2010-05-04 17:20 . 2009-04-10 22:32 53224 ----a-w- c:\windows\system32\drivers\termdd.sys
2010-05-04 17:20 . 2009-04-10 22:28 1152000 ----a-w- c:\windows\system32\themecpl.dll
2010-05-04 17:20 . 2009-04-10 20:45 72192 ----a-w- c:\windows\system32\drivers\tdx.sys
2010-05-04 17:05 . 2010-05-04 17:05 -------- d-----w- c:\windows\system32\EventProviders
2010-05-03 16:33 . 2010-04-12 16:29 411368 ----a-w- c:\windows\system32\deployJava1.dll
2010-05-03 15:50 . 2010-04-14 16:35 162768 ----a-w- c:\windows\system32\drivers\aswSP.sys
2010-05-03 15:50 . 2010-04-14 16:31 19024 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2010-05-03 15:49 . 2010-04-14 16:35 46672 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2010-05-03 15:49 . 2010-04-14 16:31 23376 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2010-05-03 15:49 . 2010-04-14 16:31 51792 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2010-05-03 15:46 . 2010-04-14 16:47 38848 ----a-w- c:\windows\system32\avastSS.scr
2010-05-03 15:46 . 2010-04-14 16:47 153184 ----a-w- c:\windows\system32\aswBoot.exe
2010-05-03 15:46 . 2010-05-03 15:46 -------- d-----w- c:\programdata\Alwil Software
2010-05-03 15:46 . 2010-05-03 15:46 -------- d-----w- c:\program files\Alwil Software
2010-05-03 15:32 . 2010-05-03 15:32 -------- d-----w- c:\users\Daniel\AppData\Roaming\CheckPoint
2010-05-03 15:32 . 2010-05-03 15:32 -------- d-----w- c:\program files\CheckPoint
2010-05-03 15:31 . 2009-11-22 14:42 69000 ----a-w- c:\windows\system32\zlcomm.dll
2010-05-03 15:31 . 2009-11-22 14:42 103816 ----a-w- c:\windows\system32\zlcommdb.dll
2010-05-03 15:31 . 2009-11-22 14:42 1238408 ----a-w- c:\windows\system32\zpeng25.dll
2010-05-03 15:30 . 2010-05-03 15:31 -------- d-----w- c:\windows\system32\ZoneLabs
2010-05-03 15:30 . 2009-11-22 14:44 446664 ----a-w- c:\windows\system32\drivers\vsdatant.sys
2010-05-03 15:30 . 2010-05-03 15:30 -------- d-----w- c:\program files\Zone Labs
2010-05-03 15:29 . 2010-05-03 15:29 -------- d-----w- c:\programdata\CheckPoint
2010-05-03 15:29 . 2010-05-07 18:34 -------- d-----w- c:\windows\Internet Logs
2010-05-03 14:31 . 2010-05-03 14:31 52224 ----a-w- c:\users\Daniel\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll
2010-05-03 14:31 . 2010-05-03 14:31 117760 ----a-w- c:\users\Daniel\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
2010-05-03 14:30 . 2010-05-03 14:30 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2010-05-03 14:29 . 2010-05-03 14:29 -------- d-----w- c:\program files\SUPERAntiSpyware
2010-05-03 14:29 . 2010-05-03 14:29 -------- d-----w- c:\users\Daniel\AppData\Roaming\SUPERAntiSpyware.com
2010-05-03 14:27 . 2010-05-03 14:27 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-05-03 14:13 . 2010-05-07 18:16 -------- d-----w- c:\program files\trend micro
2010-05-03 13:44 . 2010-05-03 16:15 -------- d-----w- c:\program files\Crawler
2010-05-03 13:44 . 2010-05-03 13:44 6144 ----a-w- c:\programdata\Spyware Terminator\sp_rsdel.exe
2010-05-03 13:44 . 2010-05-03 13:44 5632 ----a-w- c:\programdata\Spyware Terminator\fileobjinfo.sys
2010-05-03 13:44 . 2010-05-03 13:44 142592 ----a-w- c:\windows\system32\drivers\sp_rsdrv2.sys
2010-05-03 13:44 . 2010-05-07 18:41 -------- d-----w- c:\users\Daniel\AppData\Roaming\Spyware Terminator
2010-05-03 13:44 . 2010-05-06 18:17 -------- d-----w- c:\programdata\Spyware Terminator
2010-05-03 13:43 . 2010-05-04 19:49 -------- d-----w- c:\program files\Spyware Terminator
2010-05-03 12:08 . 2010-05-03 12:08 388096 ----a-r- c:\users\Daniel\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2010-05-03 12:08 . 2010-05-03 12:08 -------- d-----w- c:\program files\HIJACK
2010-05-03 11:37 . 2010-05-03 11:37 95024 ----a-w- c:\windows\system32\drivers\SBREDrv.sys
2010-05-03 11:33 . 2010-05-03 13:35 -------- d-----w- c:\programdata\Lavasoft
2010-05-01 19:56 . 2010-05-01 19:59 -------- d-----w- c:\program files\GeekTools
2010-04-24 11:03 . 2010-04-24 11:03 -------- d-----w- c:\program files\EVC
2010-04-24 10:36 . 2010-04-24 10:36 -------- d-----w- c:\program files\EOBD2 1260
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-05-07 19:06 . 2008-02-13 07:29 56616 ----a-w- c:\users\Daniel\AppData\Local\GDIPFONTCACHEV1.DAT
2010-05-07 17:31 . 2008-03-31 18:48 680 ----a-w- c:\users\Daniel\AppData\Local\d3d9caps.dat
2010-05-06 20:18 . 2008-02-13 19:21 -------- d-----w- c:\users\Daniel\AppData\Roaming\ICQ
2010-05-06 20:17 . 2008-02-13 07:27 45056 ----a-w- c:\windows\system32\acovcnt.exe
2010-05-06 20:17 . 2010-05-03 15:58 3264407 ----a-w- c:\windows\Internet Logs\tvDebug.Zip
2010-05-06 20:16 . 2007-01-10 19:43 12 ----a-w- c:\windows\bthservsdp.dat
2010-05-06 20:15 . 2008-02-13 20:52 -------- d-----w- c:\users\Daniel\AppData\Roaming\Skype
2010-05-06 19:31 . 2008-02-13 20:53 -------- d-----w- c:\users\Daniel\AppData\Roaming\skypePM
2010-05-04 18:02 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Sidebar
2010-05-04 18:02 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Calendar
2010-05-04 18:02 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2010-05-04 18:02 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Photo Gallery
2010-05-04 18:02 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Journal
2010-05-04 18:02 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Defender
2010-05-04 18:02 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Collaboration
2010-05-04 18:02 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat
2010-05-04 17:02 . 2008-04-15 23:38 -------- d-----w- c:\program files\Common Files\Adobe
2010-05-03 18:15 . 2009-05-08 15:59 -------- d-----w- c:\program files\VAG-COM1
2010-05-03 18:15 . 2008-02-16 19:51 -------- d-----w- c:\program files\Spybot - Search & Destroy
2010-05-03 18:11 . 2008-06-25 22:30 -------- d-----w- c:\users\Daniel\AppData\Roaming\uTorrent
2010-05-03 16:33 . 2008-02-23 19:20 -------- d-----w- c:\program files\Java
2010-05-03 15:39 . 2008-02-16 19:51 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2010-05-03 15:33 . 2010-05-03 15:30 422437 ---ha-w- c:\windows\system32\drivers\vsconfig.xml
2010-04-26 16:32 . 2008-02-13 19:05 13072 ----a-w- c:\users\Daniel\AppData\Roaming\nvModes.dat
2010-04-25 12:16 . 2009-05-08 16:06 20 ----a-w- c:\windows\system32\sleep.vbs
2010-04-18 06:43 . 2009-03-29 20:12 -------- d-----r- c:\program files\Skype
2010-04-04 07:42 . 2008-02-23 19:19 -------- d-----w- c:\program files\Common Files\Java
2010-03-21 20:39 . 2010-03-21 20:39 -------- d-----w- c:\program files\Common Files\Skype
2010-03-08 19:21 . 2008-04-15 21:29 -------- d-----w- c:\program files\MSECACHE
2009-02-24 19:34 . 2009-02-24 19:34 1044480 ----a-w- c:\program files\mozilla firefox\plugins\libdivx.dll
2009-02-24 19:34 . 2009-02-24 19:34 200704 ----a-w- c:\program files\mozilla firefox\plugins\ssldivx.dll
1999-05-06 06:22 . 2007-01-10 19:12 224150 --sha-r- c:\windows\ConfigSetRoot\IO.SYS
1999-05-06 06:22 . 2007-01-10 19:12 1026 --sha-r- c:\windows\ConfigSetRoot\MSDOS.SYS
2000-06-21 20:22 . 2007-01-10 19:12 0 --sha-w- c:\windows\ConfigSetRoot\DOS\EBD.SYS
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-19 202240]
"ICQ"="c:\progra~1\ICQ6.5\ICQ.exe" [2009-11-16 172792]
"Skype"="c:\program files\Skype\\Phone\Skype.exe" [2010-04-06 26102056]
"SpywareTerminatorUpdate"="c:\program files\Spyware Terminator\SpywareTerminatorUpdate.exe" [2010-05-03 3037696]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-19 1008184]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-03-01 857648]
"RtHDVCpl"="RtHDVCpl.exe" [2007-02-15 4390912]
"NvSvc"="c:\windows\system32\nvsvc.dll" [2007-04-04 86016]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2007-04-04 81920]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" [2007-02-12 174872]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2007-04-04 8429568]
"ATKMEDIA"="c:\program files\ASUS\ATK Media\DMEDIA.EXE" [2006-11-02 61440]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
"SpywareTerminator"="c:\program files\Spyware Terminator\SpywareTerminatorShield.exe" [2010-05-03 2176512]
"ZoneAlarm Client"="c:\program files\Zone Labs\ZoneAlarm\zlclient.exe" [2009-11-22 1037192]
"ISW"="c:\program files\CheckPoint\ZAForceField\ForceField.exe" [2009-10-14 730480]
"avast5"="c:\progra~1\ALWILS~1\Avast5\avastUI.exe" [2010-04-14 2790472]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-12-11 948672]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 14:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk
backup=c:\windows\pss\Adobe Reader Speed Launch.lnk.CommonStartup
backupExtension=.CommonStartup
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk
backup=c:\windows\pss\Microsoft Office.lnk.CommonStartup
backupExtension=.CommonStartup
[HKLM\~\startupfolder\C:^Users^Daniel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^MagicDisc.lnk]
path=c:\users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MagicDisc.lnk
backup=c:\windows\pss\MagicDisc.lnk.Startup
backupExtension=.Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
2008-02-13 07:29 37232 ----a-w- c:\windows\ASScrProlog.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
2008-02-13 07:29 33136 ----a-w- c:\windows\ASScrPro.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2006-01-12 15:40 155648 ----a-w- c:\program files\Common Files\Ahead\Lib\NeroCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PowerForPhone]
2007-01-15 23:17 778240 ----a-w- c:\program files\PowerForPhone\PowerForPhone.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2008-05-26 15:46 77824 ----a-w- c:\program files\QuickTime\qttask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SMSERIAL]
2006-11-22 09:31 630784 ----a-w- c:\program files\Motorola\SMSERIAL\sm56hlpr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe]
2007-03-14 15:52 3770024 ----a-w- c:\program files\TomTom HOME\TomTomHOME.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"AntiVirusOverride"=dword:00000001
"AntiSpywareOverride"=dword:00000001
"VistaSp2"=hex(b):3c,cf,3c,05,b5,eb,ca,01
R3 BthAvrcp;Bluetooth AVRCP Profile;c:\windows\system32\DRIVERS\BthAvrcp.sys [2008-11-03 12800]
R3 vsdatant7;vsdatant7;c:\windows\system32\drivers\vsdatant.win7.sys [x]
S1 aswSP;aswSP; [x]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [2010-02-17 12872]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [2010-04-27 61440]
S1 sp_rsdrv2;Spyware Terminator Driver 2;c:\windows\system32\drivers\sp_rsdrv2.sys [2010-05-03 142592]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2010-04-14 51792]
S2 ISWKL;ZoneAlarm Toolbar ISWKL;c:\program files\CheckPoint\ZAForceField\ISWKL.sys [2009-10-14 25208]
S2 IswSvc;ZoneAlarm Toolbar IswSvc;c:\program files\CheckPoint\ZAForceField\IswSvc.exe [2009-10-14 476528]
S3 AtcL001;NDIS Miniport Driver for Attansic L1 Gigabit Ethernet Controller;c:\windows\system32\DRIVERS\atl01v32.sys [2007-03-15 48128]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
getPlusHelper REG_MULTI_SZ getPlusHelper
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.co.uk/
uInternet Settings,ProxyOverride = *.local
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office10\EXCEL.EXE/3000
DPF: {A4735C9C-6626-4386-9B93-2D9B79047AB8} - hxxp://www.joj.sk/fileadmin/joj_player/JOJ_Explorer_Player.cab
FF - ProfilePath - c:\users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\g2umwmlj.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://uk.mg2.mail.yahoo.com/dc/launch?.gx=1&.rand=ebcbbv04buut1&retry=1
FF - component: c:\program files\CheckPoint\ZAForceField\TrustChecker\components\TrustCheckerMozillaPlugin.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npdeployJava1.dll
FF - plugin: c:\program files\TV JOJ Media Player\npplugin_netscape.dll
FF - plugin: c:\users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\g2umwmlj.default\extensions\{E2883E8F-472F-4fb0-9522-AC9BF37916A7}\plugins\np_gp.dll
---- FIREFOX POLICIES ----
FF - user.js: capability.policy.policynames - allowclipboard
FF - user.js: capability.policy.allowclipboard.sites - hxxp://mail08.centrum.sk/~~cook~mireska/?
FF - user.js: capability.policy.allowclipboard.Clipboard.cutcopy - allAccess
FF - user.js: capability.policy.allowclipboard.Clipboard.paste - allAccessc:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-05-07 20:16
Windows 6.0.6002 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.032\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.032"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ani\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.ani"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bay\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.bay"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.bmp"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bw\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.bw"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cr2\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.cr2"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.crw\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.crw"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cs1\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.cs1"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cur\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.cur"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcr\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.dcr"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcx\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.dcx"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dib\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.dib"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djv\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.djv"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djvu\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.djvu"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dng\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.dng"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.emf\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.emf"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eps\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.eps"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.erf\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.erf"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fff\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.fff"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fpx\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.fpx"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gif\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.gif"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icl\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.icl"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icn\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.icn"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ico\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.ico"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iff\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.iff"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ilbm\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.ilbm"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.int\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.int"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.inta\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.inta"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iw4\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.iw4"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2c\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.j2c"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2k\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.j2k"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jfif\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jfif"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jif\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jif"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jp2\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jp2"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpc\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jpc"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpe\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jpe"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpeg\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jpeg"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpg\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jpg"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpk\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jpk"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpx\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jpx"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.lbm\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.lbm"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mos\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.mos"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mrw\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.mrw"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nef\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.nef"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.orf\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.orf"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbm\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pbm"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcd\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pcd"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pct\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pct"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcx\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pcx"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pef\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pef"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pgm\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pgm"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pic\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pic"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pict\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pict"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pix\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pix"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.png\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.png"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ppm\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.ppm"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psd\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.psd"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psp\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.psp"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raf\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.raf"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ras\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.ras"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raw\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.raw"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgb\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.rgb"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgba\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.rgba"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rle\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.rle"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rsb\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.rsb"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sgi\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.sgi"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sr2\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.sr2"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.srf\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.srf"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tga\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.tga"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.thm\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.thm"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tif\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.tif"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tiff\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.tiff"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttc\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.ttc"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttf\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.ttf"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbm\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.wbm"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbmp\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.wbmp"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmf\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.wmf"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xbm\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.xbm"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xif\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.xif"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xpm\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.xpm"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:f8,04,b8,33,61,b1,9f,0e,60,d9,a2,c7,96,25,3e,a6,db,a9,5c,57,1a,b1,b3,
2a,d8,69,83,ae,d0,3f,19,a8,08,be,b2,98,d1,50,a2,ee,42,97,02,04,79,1a,0f,9f,\
"??"=hex:56,89,38,c4,0b,65,fc,b7,b2,29,c2,6c,bb,d9,91,a2
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'lsass.exe'(736)
c:\program files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll
- - - - - - - > 'Explorer.exe'(2700)
c:\program files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll
c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt.dll
.
Completion time: 2010-05-07 20:19:46
ComboFix-quarantined-files.txt 2010-05-07 19:19
ComboFix2.txt 2010-05-07 19:02
Pre-Run: 55,106,842,624 bytes free
Post-Run: 54,857,375,744 bytes free
Current=1 Default=1 Failed=0 LastKnownGood=5 Sets=1,2,3,4,5
- - End Of File - - 77ADF23602F4AA840576F21B9AE4FB25
Tu je log:
ComboFix 10-05-06.05 - Daniel 07/05/2010 20:09:50.2.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.44.1033.18.2046.887 [GMT 1:00]
Running from: c:\users\Daniel\Downloads\ComboFix.exe
SP: Spyware Terminator *disabled* (Updated) {55EE49A8-16BE-4601-BBE6-607B7F7317DE}
SP: SUPERAntiSpyware *disabled* (Updated) {222A897C-5018-402e-943F-7E7AC8560DA7}
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.
((((((((((((((((((((((((( Files Created from 2010-04-07 to 2010-05-07 )))))))))))))))))))))))))))))))
.
2010-05-07 19:16 . 2010-05-07 19:16 -------- d-----w- c:\users\Public\AppData\Local\temp
2010-05-07 19:16 . 2010-05-07 19:16 -------- d-----w- c:\users\Default\AppData\Local\temp
2010-05-07 18:16 . 2010-05-07 18:16 -------- d-----w- C:\rsit
2010-05-04 19:16 . 2010-05-04 19:16 -------- d-----w- c:\programdata\WindowsSearch
2010-05-04 18:02 . 2010-05-04 18:02 -------- d-----w- c:\windows\system32\ca-ES
2010-05-04 18:02 . 2010-05-04 18:02 -------- d-----w- c:\windows\system32\vi-VN
2010-05-04 18:02 . 2010-05-04 18:02 -------- d-----w- c:\windows\system32\eu-ES
2010-05-04 17:57 . 2010-05-04 17:57 -------- d-----w- c:\windows\system32\SPReview
2010-05-04 17:40 . 2009-04-10 22:28 928768 ----a-w- c:\windows\system32\scavenge.dll
2010-05-04 17:40 . 2009-04-10 22:27 57856 ----a-w- c:\windows\system32\compcln.exe
2010-05-04 17:25 . 2009-04-10 22:28 69632 ----a-w- c:\windows\system32\rastapi.dll
2010-05-04 17:24 . 2009-04-10 22:28 950784 ----a-w- c:\windows\system32\gpedit.dll
2010-05-04 17:23 . 2009-04-10 22:28 218624 ----a-w- c:\windows\system32\mscandui.dll
2010-05-04 17:22 . 2009-04-10 22:32 17896 ----a-w- c:\windows\system32\kd1394.dll
2010-05-04 17:21 . 2009-04-10 22:28 777216 ----a-w- c:\windows\system32\slcc.dll
2010-05-04 17:20 . 2009-04-10 22:28 242688 ----a-w- c:\windows\system32\tapisrv.dll
2010-05-04 17:20 . 2009-04-10 22:28 270336 ----a-w- c:\windows\system32\taskcomp.dll
2010-05-04 17:20 . 2009-04-10 22:28 169984 ----a-w- c:\windows\system32\taskeng.exe
2010-05-04 17:20 . 2009-04-10 22:28 449024 ----a-w- c:\windows\system32\termsrv.dll
2010-05-04 17:20 . 2009-04-10 22:28 313344 ----a-w- c:\windows\system32\thawbrkr.dll
2010-05-04 17:20 . 2009-04-10 22:28 615424 ----a-w- c:\windows\system32\themeui.dll
2010-05-04 17:20 . 2009-04-10 22:32 53224 ----a-w- c:\windows\system32\drivers\termdd.sys
2010-05-04 17:20 . 2009-04-10 22:28 1152000 ----a-w- c:\windows\system32\themecpl.dll
2010-05-04 17:20 . 2009-04-10 20:45 72192 ----a-w- c:\windows\system32\drivers\tdx.sys
2010-05-04 17:05 . 2010-05-04 17:05 -------- d-----w- c:\windows\system32\EventProviders
2010-05-03 16:33 . 2010-04-12 16:29 411368 ----a-w- c:\windows\system32\deployJava1.dll
2010-05-03 15:50 . 2010-04-14 16:35 162768 ----a-w- c:\windows\system32\drivers\aswSP.sys
2010-05-03 15:50 . 2010-04-14 16:31 19024 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2010-05-03 15:49 . 2010-04-14 16:35 46672 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2010-05-03 15:49 . 2010-04-14 16:31 23376 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2010-05-03 15:49 . 2010-04-14 16:31 51792 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2010-05-03 15:46 . 2010-04-14 16:47 38848 ----a-w- c:\windows\system32\avastSS.scr
2010-05-03 15:46 . 2010-04-14 16:47 153184 ----a-w- c:\windows\system32\aswBoot.exe
2010-05-03 15:46 . 2010-05-03 15:46 -------- d-----w- c:\programdata\Alwil Software
2010-05-03 15:46 . 2010-05-03 15:46 -------- d-----w- c:\program files\Alwil Software
2010-05-03 15:32 . 2010-05-03 15:32 -------- d-----w- c:\users\Daniel\AppData\Roaming\CheckPoint
2010-05-03 15:32 . 2010-05-03 15:32 -------- d-----w- c:\program files\CheckPoint
2010-05-03 15:31 . 2009-11-22 14:42 69000 ----a-w- c:\windows\system32\zlcomm.dll
2010-05-03 15:31 . 2009-11-22 14:42 103816 ----a-w- c:\windows\system32\zlcommdb.dll
2010-05-03 15:31 . 2009-11-22 14:42 1238408 ----a-w- c:\windows\system32\zpeng25.dll
2010-05-03 15:30 . 2010-05-03 15:31 -------- d-----w- c:\windows\system32\ZoneLabs
2010-05-03 15:30 . 2009-11-22 14:44 446664 ----a-w- c:\windows\system32\drivers\vsdatant.sys
2010-05-03 15:30 . 2010-05-03 15:30 -------- d-----w- c:\program files\Zone Labs
2010-05-03 15:29 . 2010-05-03 15:29 -------- d-----w- c:\programdata\CheckPoint
2010-05-03 15:29 . 2010-05-07 18:34 -------- d-----w- c:\windows\Internet Logs
2010-05-03 14:31 . 2010-05-03 14:31 52224 ----a-w- c:\users\Daniel\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll
2010-05-03 14:31 . 2010-05-03 14:31 117760 ----a-w- c:\users\Daniel\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
2010-05-03 14:30 . 2010-05-03 14:30 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2010-05-03 14:29 . 2010-05-03 14:29 -------- d-----w- c:\program files\SUPERAntiSpyware
2010-05-03 14:29 . 2010-05-03 14:29 -------- d-----w- c:\users\Daniel\AppData\Roaming\SUPERAntiSpyware.com
2010-05-03 14:27 . 2010-05-03 14:27 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2010-05-03 14:13 . 2010-05-07 18:16 -------- d-----w- c:\program files\trend micro
2010-05-03 13:44 . 2010-05-03 16:15 -------- d-----w- c:\program files\Crawler
2010-05-03 13:44 . 2010-05-03 13:44 6144 ----a-w- c:\programdata\Spyware Terminator\sp_rsdel.exe
2010-05-03 13:44 . 2010-05-03 13:44 5632 ----a-w- c:\programdata\Spyware Terminator\fileobjinfo.sys
2010-05-03 13:44 . 2010-05-03 13:44 142592 ----a-w- c:\windows\system32\drivers\sp_rsdrv2.sys
2010-05-03 13:44 . 2010-05-07 18:41 -------- d-----w- c:\users\Daniel\AppData\Roaming\Spyware Terminator
2010-05-03 13:44 . 2010-05-06 18:17 -------- d-----w- c:\programdata\Spyware Terminator
2010-05-03 13:43 . 2010-05-04 19:49 -------- d-----w- c:\program files\Spyware Terminator
2010-05-03 12:08 . 2010-05-03 12:08 388096 ----a-r- c:\users\Daniel\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2010-05-03 12:08 . 2010-05-03 12:08 -------- d-----w- c:\program files\HIJACK
2010-05-03 11:37 . 2010-05-03 11:37 95024 ----a-w- c:\windows\system32\drivers\SBREDrv.sys
2010-05-03 11:33 . 2010-05-03 13:35 -------- d-----w- c:\programdata\Lavasoft
2010-05-01 19:56 . 2010-05-01 19:59 -------- d-----w- c:\program files\GeekTools
2010-04-24 11:03 . 2010-04-24 11:03 -------- d-----w- c:\program files\EVC
2010-04-24 10:36 . 2010-04-24 10:36 -------- d-----w- c:\program files\EOBD2 1260
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-05-07 19:06 . 2008-02-13 07:29 56616 ----a-w- c:\users\Daniel\AppData\Local\GDIPFONTCACHEV1.DAT
2010-05-07 17:31 . 2008-03-31 18:48 680 ----a-w- c:\users\Daniel\AppData\Local\d3d9caps.dat
2010-05-06 20:18 . 2008-02-13 19:21 -------- d-----w- c:\users\Daniel\AppData\Roaming\ICQ
2010-05-06 20:17 . 2008-02-13 07:27 45056 ----a-w- c:\windows\system32\acovcnt.exe
2010-05-06 20:17 . 2010-05-03 15:58 3264407 ----a-w- c:\windows\Internet Logs\tvDebug.Zip
2010-05-06 20:16 . 2007-01-10 19:43 12 ----a-w- c:\windows\bthservsdp.dat
2010-05-06 20:15 . 2008-02-13 20:52 -------- d-----w- c:\users\Daniel\AppData\Roaming\Skype
2010-05-06 19:31 . 2008-02-13 20:53 -------- d-----w- c:\users\Daniel\AppData\Roaming\skypePM
2010-05-04 18:02 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Sidebar
2010-05-04 18:02 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Calendar
2010-05-04 18:02 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2010-05-04 18:02 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Photo Gallery
2010-05-04 18:02 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Journal
2010-05-04 18:02 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Defender
2010-05-04 18:02 . 2006-11-02 12:37 -------- d-----w- c:\program files\Windows Collaboration
2010-05-04 18:02 . 2006-11-02 10:25 665600 ----a-w- c:\windows\inf\drvindex.dat
2010-05-04 17:02 . 2008-04-15 23:38 -------- d-----w- c:\program files\Common Files\Adobe
2010-05-03 18:15 . 2009-05-08 15:59 -------- d-----w- c:\program files\VAG-COM1
2010-05-03 18:15 . 2008-02-16 19:51 -------- d-----w- c:\program files\Spybot - Search & Destroy
2010-05-03 18:11 . 2008-06-25 22:30 -------- d-----w- c:\users\Daniel\AppData\Roaming\uTorrent
2010-05-03 16:33 . 2008-02-23 19:20 -------- d-----w- c:\program files\Java
2010-05-03 15:39 . 2008-02-16 19:51 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2010-05-03 15:33 . 2010-05-03 15:30 422437 ---ha-w- c:\windows\system32\drivers\vsconfig.xml
2010-04-26 16:32 . 2008-02-13 19:05 13072 ----a-w- c:\users\Daniel\AppData\Roaming\nvModes.dat
2010-04-25 12:16 . 2009-05-08 16:06 20 ----a-w- c:\windows\system32\sleep.vbs
2010-04-18 06:43 . 2009-03-29 20:12 -------- d-----r- c:\program files\Skype
2010-04-04 07:42 . 2008-02-23 19:19 -------- d-----w- c:\program files\Common Files\Java
2010-03-21 20:39 . 2010-03-21 20:39 -------- d-----w- c:\program files\Common Files\Skype
2010-03-08 19:21 . 2008-04-15 21:29 -------- d-----w- c:\program files\MSECACHE
2009-02-24 19:34 . 2009-02-24 19:34 1044480 ----a-w- c:\program files\mozilla firefox\plugins\libdivx.dll
2009-02-24 19:34 . 2009-02-24 19:34 200704 ----a-w- c:\program files\mozilla firefox\plugins\ssldivx.dll
1999-05-06 06:22 . 2007-01-10 19:12 224150 --sha-r- c:\windows\ConfigSetRoot\IO.SYS
1999-05-06 06:22 . 2007-01-10 19:12 1026 --sha-r- c:\windows\ConfigSetRoot\MSDOS.SYS
2000-06-21 20:22 . 2007-01-10 19:12 0 --sha-w- c:\windows\ConfigSetRoot\DOS\EBD.SYS
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-19 202240]
"ICQ"="c:\progra~1\ICQ6.5\ICQ.exe" [2009-11-16 172792]
"Skype"="c:\program files\Skype\\Phone\Skype.exe" [2010-04-06 26102056]
"SpywareTerminatorUpdate"="c:\program files\Spyware Terminator\SpywareTerminatorUpdate.exe" [2010-05-03 3037696]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-19 1008184]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-03-01 857648]
"RtHDVCpl"="RtHDVCpl.exe" [2007-02-15 4390912]
"NvSvc"="c:\windows\system32\nvsvc.dll" [2007-04-04 86016]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2007-04-04 81920]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" [2007-02-12 174872]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2007-04-04 8429568]
"ATKMEDIA"="c:\program files\ASUS\ATK Media\DMEDIA.EXE" [2006-11-02 61440]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-02-18 248040]
"SpywareTerminator"="c:\program files\Spyware Terminator\SpywareTerminatorShield.exe" [2010-05-03 2176512]
"ZoneAlarm Client"="c:\program files\Zone Labs\ZoneAlarm\zlclient.exe" [2009-11-22 1037192]
"ISW"="c:\program files\CheckPoint\ZAForceField\ForceField.exe" [2009-10-14 730480]
"avast5"="c:\progra~1\ALWILS~1\Avast5\avastUI.exe" [2010-04-14 2790472]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-12-22 35760]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-12-11 948672]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 14:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk
backup=c:\windows\pss\Adobe Reader Speed Launch.lnk.CommonStartup
backupExtension=.CommonStartup
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft Office.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk
backup=c:\windows\pss\Microsoft Office.lnk.CommonStartup
backupExtension=.CommonStartup
[HKLM\~\startupfolder\C:^Users^Daniel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^MagicDisc.lnk]
path=c:\users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MagicDisc.lnk
backup=c:\windows\pss\MagicDisc.lnk.Startup
backupExtension=.Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Camera ScreenSaver]
2008-02-13 07:29 37232 ----a-w- c:\windows\ASScrProlog.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
2008-02-13 07:29 33136 ----a-w- c:\windows\ASScrPro.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
2006-01-12 15:40 155648 ----a-w- c:\program files\Common Files\Ahead\Lib\NeroCheck.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PowerForPhone]
2007-01-15 23:17 778240 ----a-w- c:\program files\PowerForPhone\PowerForPhone.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2008-05-26 15:46 77824 ----a-w- c:\program files\QuickTime\qttask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SMSERIAL]
2006-11-22 09:31 630784 ----a-w- c:\program files\Motorola\SMSERIAL\sm56hlpr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe]
2007-03-14 15:52 3770024 ----a-w- c:\program files\TomTom HOME\TomTomHOME.exe
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"AntiVirusOverride"=dword:00000001
"AntiSpywareOverride"=dword:00000001
"VistaSp2"=hex(b):3c,cf,3c,05,b5,eb,ca,01
R3 BthAvrcp;Bluetooth AVRCP Profile;c:\windows\system32\DRIVERS\BthAvrcp.sys [2008-11-03 12800]
R3 vsdatant7;vsdatant7;c:\windows\system32\drivers\vsdatant.win7.sys [x]
S1 aswSP;aswSP; [x]
S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [2010-02-17 12872]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [2010-04-27 61440]
S1 sp_rsdrv2;Spyware Terminator Driver 2;c:\windows\system32\drivers\sp_rsdrv2.sys [2010-05-03 142592]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2010-04-14 51792]
S2 ISWKL;ZoneAlarm Toolbar ISWKL;c:\program files\CheckPoint\ZAForceField\ISWKL.sys [2009-10-14 25208]
S2 IswSvc;ZoneAlarm Toolbar IswSvc;c:\program files\CheckPoint\ZAForceField\IswSvc.exe [2009-10-14 476528]
S3 AtcL001;NDIS Miniport Driver for Attansic L1 Gigabit Ethernet Controller;c:\windows\system32\DRIVERS\atl01v32.sys [2007-03-15 48128]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
getPlusHelper REG_MULTI_SZ getPlusHelper
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.co.uk/
uInternet Settings,ProxyOverride = *.local
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~2\Office10\EXCEL.EXE/3000
DPF: {A4735C9C-6626-4386-9B93-2D9B79047AB8} - hxxp://www.joj.sk/fileadmin/joj_player/JOJ_Explorer_Player.cab
FF - ProfilePath - c:\users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\g2umwmlj.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://uk.mg2.mail.yahoo.com/dc/launch?.gx=1&.rand=ebcbbv04buut1&retry=1
FF - component: c:\program files\CheckPoint\ZAForceField\TrustChecker\components\TrustCheckerMozillaPlugin.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npdeployJava1.dll
FF - plugin: c:\program files\TV JOJ Media Player\npplugin_netscape.dll
FF - plugin: c:\users\Daniel\AppData\Roaming\Mozilla\Firefox\Profiles\g2umwmlj.default\extensions\{E2883E8F-472F-4fb0-9522-AC9BF37916A7}\plugins\np_gp.dll
---- FIREFOX POLICIES ----
FF - user.js: capability.policy.policynames - allowclipboard
FF - user.js: capability.policy.allowclipboard.sites - hxxp://mail08.centrum.sk/~~cook~mireska/?
FF - user.js: capability.policy.allowclipboard.Clipboard.cutcopy - allAccess
FF - user.js: capability.policy.allowclipboard.Clipboard.paste - allAccessc:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-05-07 20:16
Windows 6.0.6002 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.032\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.032"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ani\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.ani"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bay\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.bay"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bmp\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.bmp"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bw\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.bw"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cr2\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.cr2"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.crw\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.crw"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cs1\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.cs1"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cur\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.cur"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcr\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.dcr"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dcx\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.dcx"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dib\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.dib"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djv\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.djv"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.djvu\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.djvu"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dng\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.dng"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.emf\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.emf"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eps\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.eps"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.erf\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.erf"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fff\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.fff"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.fpx\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.fpx"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.gif\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.gif"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icl\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.icl"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.icn\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.icn"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ico\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.ico"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iff\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.iff"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ilbm\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.ilbm"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.int\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.int"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.inta\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.inta"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.iw4\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.iw4"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2c\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.j2c"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.j2k\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.j2k"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jfif\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jfif"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jif\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jif"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jp2\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jp2"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpc\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jpc"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpe\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jpe"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpeg\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jpeg"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpg\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jpg"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpk\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jpk"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jpx\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.jpx"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.lbm\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.lbm"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mos\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.mos"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mrw\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.mrw"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nef\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.nef"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.orf\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.orf"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pbm\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pbm"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcd\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pcd"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pct\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pct"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pcx\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pcx"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pef\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pef"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pgm\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pgm"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pic\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pic"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pict\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pict"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.pix\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.pix"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.png\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.png"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ppm\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.ppm"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psd\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.psd"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.psp\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.psp"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raf\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.raf"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ras\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.ras"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.raw\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.raw"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgb\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.rgb"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rgba\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.rgba"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rle\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.rle"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rsb\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.rsb"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sgi\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.sgi"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.sr2\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.sr2"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.srf\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.srf"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tga\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.tga"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.thm\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.thm"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tif\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.tif"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tiff\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.tiff"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttc\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.ttc"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ttf\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.ttf"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbm\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.wbm"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wbmp\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.wbmp"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmf\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.wmf"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xbm\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.xbm"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xif\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.xif"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xpm\UserChoice]
@Denied: (2) (S-1-5-21-2842040166-3072354204-2998516445-1000)
@Denied: (2) (LocalSystem)
"Progid"="ACDSee 9.0.xpm"
[HKEY_USERS\S-1-5-21-2842040166-3072354204-2998516445-1000\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:f8,04,b8,33,61,b1,9f,0e,60,d9,a2,c7,96,25,3e,a6,db,a9,5c,57,1a,b1,b3,
2a,d8,69,83,ae,d0,3f,19,a8,08,be,b2,98,d1,50,a2,ee,42,97,02,04,79,1a,0f,9f,\
"??"=hex:56,89,38,c4,0b,65,fc,b7,b2,29,c2,6c,bb,d9,91,a2
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'lsass.exe'(736)
c:\program files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll
- - - - - - - > 'Explorer.exe'(2700)
c:\program files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll
c:\program files\ASUS\ASUS Data Security Manager\OverlayIconShlExt.dll
.
Completion time: 2010-05-07 20:19:46
ComboFix-quarantined-files.txt 2010-05-07 19:19
ComboFix2.txt 2010-05-07 19:02
Pre-Run: 55,106,842,624 bytes free
Post-Run: 54,857,375,744 bytes free
Current=1 Default=1 Failed=0 LastKnownGood=5 Sets=1,2,3,4,5
- - End Of File - - 77ADF23602F4AA840576F21B9AE4FB25
- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Prosim o kontrolu logu
Zatial bez problemov....zaujimalo by ma ci ten combofix nasiel nieco?Caroprd111 píše:S firewallem je to v pořádku. Jak to vypadá s PC
Re: Prosim o kontrolu logu
Takze problem stale trva - napr. ked zadam do googlu nejake klucove slovo a chcem otvorit nejaky link tak Firefox zacne pracovat ale nieje ziaden priebeh - trva to cca 30 sek - potom sa stranka nacita.
Re: Prosim o kontrolu logu
Tak by som povedal ze 90% stranok otvare dobre-rychlo, zbytnych 10% - 30-60 sekund- napr. tearz mam v lavom dolnom rohu hlasenie - waiting for ajax.googleapis.com - trva to uz viac ako 2 minuty a nic sa nedeje 

- Caroprd111
- VIP
- Příspěvky: 13492
- Registrován: 22 bře 2009 20:48
- Bydliště: Třebíč
- Kontaktovat uživatele:
Re: Prosim o kontrolu logu



c:\windows\system32\drivers\vsdatant.win7.sys
(Soubor nehledejte, jenom vložíte tučně označenou cestu, v případě hlášky "Soubor již byl testován" dejte otestovat znovu. Výsledek analýzy sem v podobě odkazu vložte.)