
Logfile of random's system information tool 1.07 (written by random/random)
Run by JM at 2010-05-23 11:02:56
Microsoft Windows 7 Home Premium Service Pack 3
System drive C: has 183 GB (63%) free of 291 GB
Total RAM: 3950 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:02:58, on 23.5.2010
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\SONY\ISB Utility\ISBMgr.exe
C:\Program Files (x86)\SONY\PMB\PMBVolumeWatcher.exe
C:\Program Files (x86)\SONY\Marketing Tools\MarketingTools.exe
C:\Program Files (x86)\AVG\AVG9\avgtray.exe
C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Sony\VAIO Care\listener.exe
C:\Program Files (x86)\QIP\qip.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\totalcmd\TOTALCMD.EXE
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe
C:\Users\JM\Desktop\RSIT.exe
C:\Program Files (x86)\trend micro\JM.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = Root: HKCU; Subkey: Software\Microsoft\Internet Explorer\SearchUrl; ValueType: string; ValueName: '; ValueData: '; Flags: createvalueifdoesntexist noerror; Tasks: AddSearchQip
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG9\avgssie.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: QIPBHO - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\JM\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [ISBMgr.exe] "C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe
O4 - HKLM\..\Run: [MarketingTools] C:\Program Files (x86)\Sony\Marketing Tools\MarketingTools.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~2\AVG\AVG9\avgtray.exe
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files (x86)\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office10\EXCEL.EXE/3000
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Send To Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Send to &Bluetooth Device... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Add to Evernote - {E0B8C461-F8FB-49b4-8373-FE32E92528A6} - C:\Program Files (x86)\Evernote\Evernote3.5\enbar.dll
O9 - Extra 'Tools' menuitem: Add to Evernote - {E0B8C461-F8FB-49b4-8373-FE32E92528A6} - C:\Program Files (x86)\Evernote\Evernote3.5\enbar.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG9\avgpp.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~2\Google\GOOGLE~1\GO36F4~1.DLL
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AVG Free E-mail Scanner (avg9emc) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG9\avgemc.exe
O23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG9\avgwdsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Desktop Manager 5.9.911.3589 (GoogleDesktopManager-110309-193829) - Google - C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PMBDeviceInfoProvider - Sony Corporation - C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Roxio UPnP Renderer 10 - Sonic Solutions - C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe
O23 - Service: Roxio Upnp Server 10 - Sonic Solutions - C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Intel(R) Sample Collector (SampleCollector) - Intel Corporation - C:\Program Files\Sony\VAIO Care\collsvc.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: VAIO Media plus Content Importer (SOHCImp) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe
O23 - Service: VAIO Media plus Database Manager (SOHDBSvr) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe
O23 - Service: VAIO Media plus Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: VAIO Media plus Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: VAIO Media plus Playlist Manager (SOHPlMgr) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: CamMonitor (uCamMonitor) - ArcSoft, Inc. - C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe
O23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files (x86)\SONY\VAIO Event Service\VESMgr.exe
O23 - Service: VAIO Power Management - Sony Corporation - C:\Program Files\Sony\VAIO Power Management\SPMService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: VAIO Content Folder Watcher (VCFw) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
O23 - Service: VAIO Content Metadata Intelligent Analyzing Manager (VcmIAlzMgr) - Sony Corporation - C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
O23 - Service: VAIO Content Metadata Intelligent Network Service Manager (VcmINSMgr) - Sony Corporation - C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe
O23 - Service: VAIO Content Metadata XML Interface (VcmXmlIfHelper) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VSNService - Sony Corporation - C:\Program Files\Sony\VAIO Smart Network\VSNService.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: VUAgent - Sony Corporation - C:\Program Files\Sony\VAIO Update 5\VUAgent.exe
O23 - Service: VAIO Entertainment Database Service (VzCdbSvc) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 14482 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-04-04 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files (x86)\AVG\AVG9\avgssie.dll [2010-05-12 1615200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}]
QIPBHO Class - C:\Users\JM\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll [2009-07-14 150768]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08 804136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2010-04-12 41760]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2009-11-21 284696]
"ISBMgr.exe"=C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [2009-08-26 320880]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-01-14 98304]
"PMBVolumeWatcher"=C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe [2009-10-24 597792]
"MarketingTools"=C:\Program Files (x86)\Sony\Marketing Tools\MarketingTools.exe [2010-02-19 26624]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"AVG9_TRAY"=C:\PROGRA~2\AVG\AVG9\avgtray.exe [2010-05-12 2064736]
"Google Desktop Search"=C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktop.exe [2010-05-12 30192]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-04-04 36272]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-03-24 952768]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2010-05-07 26211624]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files (x86)\WIDCOMM\Bluetooth Software\BTTray.exe
Microsoft Office.lnk - C:\Program Files (x86)\Microsoft Office\Office10\OSA.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="C:\PROGRA~2\Google\GOOGLE~1\GO36F4~1.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\VESWinlogon]
C:\Windows\system32\VESWinlogon.dll [2009-12-02 98304]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MpfService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=
"NoActiveDesktopChanges"=
"ForceActiveDesktopOn"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{86190fbc-60c1-11df-9a63-5442490997b7}]
shell\AutoRun\command - G:\Launcher.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{c39d653f-610f-11df-a4df-5442490997b7}]
shell\AutoRun\command - G:\Launcher.exe
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-05-23 10:58:49 ----D---- C:\rsit
2010-05-23 10:58:49 ----D---- C:\Program Files (x86)\trend micro
2010-05-22 16:57:38 ----D---- C:\Windows\SysWOW64\AGEIA
2010-05-22 16:57:38 ----D---- C:\Program Files (x86)\AGEIA Technologies
2010-05-22 16:57:26 ----D---- C:\Program Files (x86)\Common Files\Wise Installation Wizard
2010-05-22 16:57:13 ----D---- C:\Users\JM\AppData\Roaming\InstallShield Installation Information
2010-05-15 10:59:01 ----D---- C:\Users\JM\AppData\Roaming\TweakNow RegCleaner
2010-05-15 10:59:01 ----D---- C:\Program Files (x86)\TweakNow RegCleaner
2010-05-15 10:56:36 ----D---- C:\Program Files (x86)\RegCleaner
2010-05-14 17:51:03 ----A---- C:\ProgramData\ra3.ini
2010-05-14 17:47:18 ----D---- C:\ProgramData\Electronic Arts
2010-05-14 17:47:10 ----RHD---- C:\Users\JM\AppData\Roaming\SecuROM
2010-05-14 14:38:30 ----D---- C:\Program Files (x86)\Lavalys
2010-05-14 14:28:28 ----D---- C:\Program Files (x86)\Common Files\Adobe
2010-05-14 14:28:28 ----D---- C:\Program Files (x86)\Adobe
2010-05-14 14:18:21 ----D---- C:\Users\JM\AppData\Roaming\Command & Conquer 3 Tiberium Wars
2010-05-13 21:01:21 ----D---- C:\ProgramData\Win7codecs
2010-05-13 15:11:56 ----D---- C:\Users\JM\AppData\Roaming\InstallShield
2010-05-13 14:56:47 ----D---- C:\Update
2010-05-13 14:37:47 ----D---- C:\ProgramData\ArcSoft
2010-05-13 14:37:43 ----D---- C:\Users\JM\AppData\Roaming\ArcSoft
2010-05-13 13:19:47 ----D---- C:\Users\JM\AppData\Roaming\Red Alert 3
2010-05-12 20:04:40 ----D---- C:\Users\JM\AppData\Roaming\Ubisoft
2010-05-12 18:50:03 ----D---- C:\Program Files (x86)\MSXML 4.0
2010-05-12 18:41:01 ----HD---- C:\$AVG
2010-05-12 18:03:59 ----D---- C:\Program Files (x86)\Winamp Detect
2010-05-12 18:03:42 ----D---- C:\Users\JM\AppData\Roaming\Winamp
2010-05-12 18:03:42 ----D---- C:\Program Files (x86)\Winamp
2010-05-12 17:29:59 ----A---- C:\Windows\SysWOW64\wintrust.dll
2010-05-12 17:29:59 ----A---- C:\Windows\SysWOW64\cabview.dll
2010-05-12 17:08:29 ----D---- C:\Users\JM\AppData\Roaming\BSplayer Pro
2010-05-12 17:08:29 ----D---- C:\Users\JM\AppData\Roaming\BSplayer
2010-05-12 17:08:29 ----D---- C:\Program Files (x86)\Webteh
2010-05-12 17:02:19 ----D---- C:\Program Files (x86)\CCleaner
2010-05-12 16:46:51 ----D---- C:\Program Files (x86)\7-Zip
2010-05-12 16:46:03 ----D---- C:\Users\JM\AppData\Roaming\WinRAR
2010-05-12 16:45:36 ----D---- C:\Program Files (x86)\winrar
2010-05-12 16:43:42 ----A---- C:\Windows\SysWOW64\vbscript.dll
2010-05-12 16:43:40 ----A---- C:\Windows\SysWOW64\secproc_isv.dll
2010-05-12 16:43:40 ----A---- C:\Windows\SysWOW64\secproc.dll
2010-05-12 16:43:39 ----A---- C:\Windows\SysWOW64\secproc_ssp_isv.dll
2010-05-12 16:43:39 ----A---- C:\Windows\SysWOW64\secproc_ssp.dll
2010-05-12 16:43:39 ----A---- C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2010-05-12 16:43:39 ----A---- C:\Windows\SysWOW64\RMActivate_ssp.exe
2010-05-12 16:43:39 ----A---- C:\Windows\SysWOW64\RMActivate_isv.exe
2010-05-12 16:43:39 ----A---- C:\Windows\SysWOW64\RMActivate.exe
2010-05-12 16:43:38 ----A---- C:\Windows\SysWOW64\inetcomm.dll
2010-05-12 16:43:38 ----A---- C:\Windows\SysWOW64\explorer.exe
2010-05-12 16:43:38 ----A---- C:\Windows\explorer.exe
2010-05-12 16:43:37 ----A---- C:\Windows\SysWOW64\wow32.dll
2010-05-12 16:43:37 ----A---- C:\Windows\SysWOW64\user.exe
2010-05-12 16:43:37 ----A---- C:\Windows\SysWOW64\setup16.exe
2010-05-12 16:43:37 ----A---- C:\Windows\SysWOW64\ntvdm64.dll
2010-05-12 16:43:37 ----A---- C:\Windows\SysWOW64\instnm.exe
2010-05-12 16:43:35 ----A---- C:\Windows\SysWOW64\mshtml.dll
2010-05-12 16:43:34 ----A---- C:\Windows\SysWOW64\ieframe.dll
2010-05-12 16:43:33 ----A---- C:\Windows\SysWOW64\wininet.dll
2010-05-12 16:43:33 ----A---- C:\Windows\SysWOW64\urlmon.dll
2010-05-12 16:43:33 ----A---- C:\Windows\SysWOW64\mstime.dll
2010-05-12 16:43:33 ----A---- C:\Windows\SysWOW64\msfeedsbs.dll
2010-05-12 16:43:33 ----A---- C:\Windows\SysWOW64\iedkcs32.dll
2010-05-12 16:43:27 ----A---- C:\Windows\SysWOW64\tzres.dll
2010-05-12 16:43:25 ----A---- C:\Windows\SysWOW64\tsbyuv.dll
2010-05-12 16:43:25 ----A---- C:\Windows\SysWOW64\quartz.dll
2010-05-12 16:43:25 ----A---- C:\Windows\SysWOW64\msyuv.dll
2010-05-12 16:43:25 ----A---- C:\Windows\SysWOW64\msvidc32.dll
2010-05-12 16:43:25 ----A---- C:\Windows\SysWOW64\msrle32.dll
2010-05-12 16:43:25 ----A---- C:\Windows\SysWOW64\mciavi32.dll
2010-05-12 16:43:25 ----A---- C:\Windows\SysWOW64\iyuv_32.dll
2010-05-12 16:43:25 ----A---- C:\Windows\SysWOW64\avifil32.dll
2010-05-12 16:43:23 ----A---- C:\Windows\SysWOW64\ntoskrnl.exe
2010-05-12 16:43:23 ----A---- C:\Windows\SysWOW64\ntkrnlpa.exe
2010-05-12 16:43:23 ----A---- C:\Windows\SysWOW64\jscript.dll
2010-05-12 16:43:22 ----D---- C:\Users\JM\AppData\Roaming\skypePM
2010-05-12 16:43:21 ----A---- C:\Windows\SysWOW64\shell32.dll
2010-05-12 16:43:20 ----A---- C:\Windows\SysWOW64\sspicli.dll
2010-05-12 16:43:20 ----A---- C:\Windows\SysWOW64\secur32.dll
2010-05-12 16:43:18 ----A---- C:\Windows\SysWOW64\CPFilters.dll
2010-05-12 16:43:17 ----A---- C:\Windows\SysWOW64\psisdecd.dll
2010-05-12 16:42:01 ----D---- C:\Users\JM\AppData\Roaming\Skype
2010-05-12 16:41:44 ----D---- C:\Program Files (x86)\Common Files\Skype
2010-05-12 16:41:43 ----RD---- C:\Program Files (x86)\Skype
2010-05-12 16:41:37 ----D---- C:\ProgramData\Skype
2010-05-11 20:34:23 ----D---- C:\ProgramData\TmForever
2010-05-11 20:34:12 ----A---- C:\Windows\SysWOW64\XAudio2_5.dll
2010-05-11 20:34:12 ----A---- C:\Windows\SysWOW64\xactengine3_5.dll
2010-05-11 20:34:11 ----A---- C:\Windows\SysWOW64\d3dcsx_42.dll
2010-05-11 20:34:11 ----A---- C:\Windows\SysWOW64\D3DCompiler_42.dll
2010-05-11 20:34:10 ----A---- C:\Windows\SysWOW64\d3dx11_42.dll
2010-05-11 20:34:09 ----A---- C:\Windows\SysWOW64\D3DX9_42.dll
2010-05-11 20:34:09 ----A---- C:\Windows\SysWOW64\d3dx10_42.dll
2010-05-11 20:34:05 ----A---- C:\Windows\SysWOW64\XAudio2_4.dll
2010-05-11 20:34:05 ----A---- C:\Windows\SysWOW64\XAPOFX1_3.dll
2010-05-11 20:34:05 ----A---- C:\Windows\SysWOW64\xactengine3_4.dll
2010-05-11 20:34:05 ----A---- C:\Windows\SysWOW64\X3DAudio1_6.dll
2010-05-11 20:34:05 ----A---- C:\Windows\SysWOW64\d3dx10_40.dll
2010-05-11 20:34:05 ----A---- C:\Windows\SysWOW64\D3DCompiler_40.dll
2010-05-11 20:34:04 ----A---- C:\Windows\SysWOW64\D3DX9_40.dll
2010-05-11 20:34:03 ----A---- C:\Windows\SysWOW64\XAudio2_3.dll
2010-05-11 20:34:03 ----A---- C:\Windows\SysWOW64\XAPOFX1_2.dll
2010-05-11 20:34:03 ----A---- C:\Windows\SysWOW64\xactengine3_3.dll
2010-05-11 20:34:03 ----A---- C:\Windows\SysWOW64\X3DAudio1_5.dll
2010-05-11 20:34:02 ----A---- C:\Windows\SysWOW64\XAudio2_2.dll
2010-05-11 20:34:02 ----A---- C:\Windows\SysWOW64\XAPOFX1_1.dll
2010-05-11 20:34:02 ----A---- C:\Windows\SysWOW64\xactengine3_2.dll
2010-05-11 20:34:01 ----A---- C:\Windows\SysWOW64\D3DX9_39.dll
2010-05-11 20:34:01 ----A---- C:\Windows\SysWOW64\d3dx10_39.dll
2010-05-11 20:34:01 ----A---- C:\Windows\SysWOW64\D3DCompiler_39.dll
2010-05-11 20:34:00 ----A---- C:\Windows\SysWOW64\XAudio2_1.dll
2010-05-11 20:34:00 ----A---- C:\Windows\SysWOW64\XAPOFX1_0.dll
2010-05-11 20:34:00 ----A---- C:\Windows\SysWOW64\xactengine3_1.dll
2010-05-11 20:33:59 ----A---- C:\Windows\SysWOW64\X3DAudio1_4.dll
2010-05-11 20:33:59 ----A---- C:\Windows\SysWOW64\d3dx10_38.dll
2010-05-11 20:33:59 ----A---- C:\Windows\SysWOW64\D3DCompiler_38.dll
2010-05-11 20:33:58 ----A---- C:\Windows\SysWOW64\XAudio2_0.dll
2010-05-11 20:33:58 ----A---- C:\Windows\SysWOW64\D3DX9_38.dll
2010-05-11 20:33:57 ----A---- C:\Windows\SysWOW64\xactengine3_0.dll
2010-05-11 20:33:57 ----A---- C:\Windows\SysWOW64\X3DAudio1_3.dll
2010-05-11 20:33:56 ----A---- C:\Windows\SysWOW64\D3DX9_37.dll
2010-05-11 20:33:56 ----A---- C:\Windows\SysWOW64\d3dx10_37.dll
2010-05-11 20:33:56 ----A---- C:\Windows\SysWOW64\D3DCompiler_37.dll
2010-05-11 20:33:55 ----A---- C:\Windows\SysWOW64\xactengine2_10.dll
2010-05-11 20:33:54 ----A---- C:\Windows\SysWOW64\d3dx9_36.dll
2010-05-11 20:33:54 ----A---- C:\Windows\SysWOW64\d3dx10_36.dll
2010-05-11 20:33:54 ----A---- C:\Windows\SysWOW64\D3DCompiler_36.dll
2010-05-11 20:33:53 ----A---- C:\Windows\SysWOW64\xactengine2_9.dll
2010-05-11 20:33:53 ----A---- C:\Windows\SysWOW64\d3dx10_35.dll
2010-05-11 20:33:53 ----A---- C:\Windows\SysWOW64\D3DCompiler_35.dll
2010-05-11 20:33:51 ----A---- C:\Windows\SysWOW64\xactengine2_8.dll
2010-05-11 20:33:51 ----A---- C:\Windows\SysWOW64\X3DAudio1_2.dll
2010-05-11 20:33:51 ----A---- C:\Windows\SysWOW64\d3dx10_34.dll
2010-05-11 20:33:51 ----A---- C:\Windows\SysWOW64\D3DCompiler_34.dll
2010-05-11 20:33:50 ----A---- C:\Windows\SysWOW64\xinput1_3.dll
2010-05-11 20:33:50 ----A---- C:\Windows\SysWOW64\d3dx9_34.dll
2010-05-11 20:33:49 ----A---- C:\Windows\SysWOW64\xactengine2_7.dll
2010-05-11 20:33:49 ----A---- C:\Windows\SysWOW64\d3dx9_33.dll
2010-05-11 20:33:49 ----A---- C:\Windows\SysWOW64\d3dx10_33.dll
2010-05-11 20:33:49 ----A---- C:\Windows\SysWOW64\D3DCompiler_33.dll
2010-05-11 20:33:48 ----A---- C:\Windows\SysWOW64\xactengine2_6.dll
2010-05-11 20:33:48 ----A---- C:\Windows\SysWOW64\xactengine2_5.dll
2010-05-11 20:33:47 ----A---- C:\Windows\SysWOW64\d3dx10.dll
2010-05-11 20:33:45 ----A---- C:\Windows\SysWOW64\xactengine2_4.dll
2010-05-11 20:33:45 ----A---- C:\Windows\SysWOW64\x3daudio1_1.dll
2010-05-11 20:33:45 ----A---- C:\Windows\SysWOW64\d3dx9_31.dll
2010-05-11 20:33:44 ----A---- C:\Windows\SysWOW64\xinput1_2.dll
2010-05-11 20:33:44 ----A---- C:\Windows\SysWOW64\xactengine2_3.dll
2010-05-11 20:33:43 ----A---- C:\Windows\SysWOW64\xinput1_1.dll
2010-05-11 20:33:43 ----A---- C:\Windows\SysWOW64\xactengine2_2.dll
2010-05-11 20:33:43 ----A---- C:\Windows\SysWOW64\xactengine2_1.dll
2010-05-11 20:33:39 ----A---- C:\Windows\SysWOW64\d3dx9_30.dll
2010-05-11 20:33:38 ----A---- C:\Windows\SysWOW64\xactengine2_0.dll
2010-05-11 20:33:38 ----A---- C:\Windows\SysWOW64\x3daudio1_0.dll
2010-05-11 20:33:38 ----A---- C:\Windows\SysWOW64\d3dx9_29.dll
2010-05-11 20:33:37 ----A---- C:\Windows\SysWOW64\d3dx9_28.dll
2010-05-11 20:33:37 ----A---- C:\Windows\SysWOW64\d3dx9_27.dll
2010-05-11 20:33:36 ----A---- C:\Windows\SysWOW64\d3dx9_26.dll
2010-05-11 20:33:36 ----A---- C:\Windows\SysWOW64\d3dx9_25.dll
2010-05-11 20:20:38 ----A---- C:\Windows\SysWOW64\d3dx9_24.dll
2010-05-11 19:27:44 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2010-05-11 19:27:17 ----D---- C:\Users\JM\AppData\Roaming\DAEMON Tools Lite
2010-05-11 19:27:14 ----D---- C:\ProgramData\DAEMON Tools Lite
2010-05-11 18:37:57 ----D---- C:\Users\JM\AppData\Roaming\Mozilla
2010-05-11 18:37:50 ----D---- C:\Program Files (x86)\Mozilla Firefox
2010-05-11 18:36:29 ----D---- C:\Users\JM\AppData\Roaming\Macromedia
2010-05-11 18:28:49 ----D---- C:\Program Files (x86)\QIP
2010-05-11 18:27:32 ----D---- C:\Jirik
2010-05-11 18:15:23 ----D---- C:\Program Files (x86)\MSECache
2010-05-11 17:49:38 ----A---- C:\Windows\ODBC.INI
2010-05-11 17:48:03 ----D---- C:\Program Files (x86)\Common Files\Designer
2010-05-11 17:47:41 ----D---- C:\Windows\Msagent
2010-05-11 17:36:37 ----D---- C:\Program Files (x86)\AVG
2010-05-11 17:36:36 ----D---- C:\ProgramData\avg9
2010-05-11 17:30:12 ----D---- C:\Users\JM\AppData\Roaming\GHISLER
2010-05-11 17:30:12 ----D---- C:\totalcmd
2010-05-11 17:17:38 ----D---- C:\ProgramData\Sun
2010-05-11 17:17:38 ----D---- C:\Program Files (x86)\Common Files\Java
2010-05-11 17:16:45 ----A---- C:\Windows\SysWOW64\javaws.exe
2010-05-11 17:16:45 ----A---- C:\Windows\SysWOW64\javaw.exe
2010-05-11 17:16:45 ----A---- C:\Windows\SysWOW64\java.exe
2010-05-11 17:16:45 ----A---- C:\Windows\SysWOW64\deployJava1.dll
2010-05-11 16:20:45 ----D---- C:\Users\JM\AppData\Roaming\Adobe
2010-05-11 16:19:28 ----D---- C:\Users\JM\AppData\Roaming\Google
2010-05-11 16:07:41 ----D---- C:\Users\JM\AppData\Roaming\Intel Corporation
2010-05-11 16:07:37 ----D---- C:\Users\JM\AppData\Roaming\ATI
2010-05-11 16:06:25 ----D---- C:\Users\JM\AppData\Roaming\Identities
2010-05-11 16:05:50 ----HD---- C:\Windows\msdownld.tmp
2010-05-11 16:04:31 ----D---- C:\Users\JM\AppData\Roaming\Sony Corporation
2010-05-11 16:04:25 ----SD---- C:\Users\JM\AppData\Roaming\Microsoft
2010-05-11 16:04:25 ----D---- C:\Users\JM\AppData\Roaming\Media Center Programs
2010-05-11 16:02:39 ----D---- C:\Windows\SoftwareDistribution
======List of files/folders modified in the last 1 months======
2010-05-23 11:02:54 ----D---- C:\Windows\Prefetch
2010-05-23 10:58:49 ----RD---- C:\Program Files (x86)
2010-05-23 10:16:11 ----D---- C:\Windows\Temp
2010-05-23 10:11:03 ----A---- C:\Windows\SysWOW64\log.txt
2010-05-22 17:18:20 ----D---- C:\Windows
2010-05-22 16:57:44 ----SHD---- C:\Windows\Installer
2010-05-22 16:57:42 ----D---- C:\Windows\inf
2010-05-22 16:57:38 ----D---- C:\Windows\SysWOW64
2010-05-22 16:57:26 ----D---- C:\Program Files (x86)\Common Files
2010-05-22 16:51:03 ----SHD---- C:\System Volume Information
2010-05-22 10:38:19 ----D---- C:\Program Files (x86)\Common Files\microsoft shared
2010-05-16 19:34:55 ----D---- C:\Windows\ModemLogs
2010-05-16 19:22:58 ----RD---- C:\Program Files
2010-05-16 11:14:55 ----SD---- C:\ProgramData\Microsoft
2010-05-15 13:28:43 ----D---- C:\Windows\winsxs
2010-05-15 12:51:23 ----D---- C:\Windows\rescache
2010-05-15 12:48:46 ----D---- C:\Windows\System32
2010-05-15 12:48:33 ----D---- C:\Program Files (x86)\Windows Sidebar
2010-05-15 12:48:33 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2010-05-15 12:48:33 ----D---- C:\Program Files (x86)\Windows Media Player
2010-05-15 12:48:33 ----D---- C:\Program Files (x86)\Windows Mail
2010-05-15 12:48:33 ----D---- C:\Program Files (x86)\Internet Explorer
2010-05-15 12:48:32 ----D---- C:\Windows\servicing
2010-05-15 12:48:32 ----D---- C:\Program Files (x86)\Windows Defender
2010-05-15 12:48:32 ----D---- C:\Program Files (x86)\Common Files\System
2010-05-15 12:48:31 ----D---- C:\Windows\SysWOW64\winrm
2010-05-15 12:48:31 ----D---- C:\Windows\SysWOW64\tr-TR
2010-05-15 12:48:31 ----D---- C:\Windows\SysWOW64\migwiz
2010-05-15 12:48:31 ----D---- C:\Windows\ehome
2010-05-15 12:48:25 ----D---- C:\Windows\SysWOW64\XPSViewer
2010-05-15 12:48:25 ----D---- C:\Windows\SysWOW64\WCN
2010-05-15 12:48:25 ----D---- C:\Windows\SysWOW64\wbem
2010-05-15 12:48:25 ----D---- C:\Windows\SysWOW64\slmgr
2010-05-15 12:48:25 ----D---- C:\Windows\SysWOW64\Printing_Admin_Scripts
2010-05-15 12:48:25 ----D---- C:\Windows\SysWOW64\MUI
2010-05-15 12:48:25 ----D---- C:\Windows\SysWOW64\migration
2010-05-15 12:48:25 ----D---- C:\Windows\SysWOW64\DriverStore
2010-05-15 12:48:25 ----D---- C:\Windows\SysWOW64\drivers
2010-05-15 12:48:25 ----D---- C:\Windows\SysWOW64\Dism
2010-05-15 12:48:25 ----D---- C:\Windows\SysWOW64\com
2010-05-15 12:48:25 ----D---- C:\Windows\IME
2010-05-15 12:48:14 ----D---- C:\Windows\PolicyDefinitions
2010-05-15 12:48:14 ----D---- C:\Windows\AppPatch
2010-05-15 12:46:21 ----D---- C:\Windows\SysWOW64\sv-SE
2010-05-14 17:51:03 ----HD---- C:\ProgramData
2010-05-14 14:28:31 ----D---- C:\ProgramData\Adobe
2010-05-13 21:14:53 ----D---- C:\Windows\SysWOW64\sk-SK
2010-05-13 21:14:53 ----D---- C:\Windows\SysWOW64\en
2010-05-13 21:14:47 ----D---- C:\Windows\SysWOW64\en-US
2010-05-13 21:14:44 ----D---- C:\Windows\en-US
2010-05-13 21:14:17 ----D---- C:\Windows\SysWOW64\el-GR
2010-05-13 21:13:43 ----D---- C:\Windows\SysWOW64\ro-RO
2010-05-13 21:13:17 ----D---- C:\Windows\SysWOW64\pt-PT
2010-05-13 21:12:33 ----D---- C:\Windows\SysWOW64\pl-PL
2010-05-13 21:11:41 ----D---- C:\Windows\SysWOW64\hu-HU
2010-05-13 21:10:49 ----D---- C:\Windows\SysWOW64\fi-FI
2010-05-13 21:09:50 ----D---- C:\Windows\SysWOW64\da-DK
2010-05-13 21:08:52 ----D---- C:\Windows\SysWOW64\bg-BG
2010-05-13 21:07:41 ----D---- C:\Windows\Speech
2010-05-13 20:41:45 ----D---- C:\Windows\Logs
2010-05-13 15:24:58 ----D---- C:\Program Files (x86)\SONY
2010-05-13 15:24:56 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2010-05-13 15:11:12 ----D---- C:\Program Files (x86)\Common Files\Sony Shared
2010-05-12 22:39:29 ----D---- C:\Windows\debug
2010-05-12 20:01:13 ----RSD---- C:\Windows\assembly
2010-05-12 19:09:01 ----D---- C:\Windows\Microsoft.NET
2010-05-12 19:01:43 ----D---- C:\Windows\SysWOW64\cs-CZ
2010-05-12 16:52:48 ----D---- C:\Program Files (x86)\Google
2010-05-12 14:49:47 ----D---- C:\ProgramData\Sony Corporation
2010-05-11 19:37:08 ----D---- C:\Program Files (x86)\Common Files\InstallShield
2010-05-11 19:21:09 ----HD---- C:\SPLASH.000
2010-05-11 19:20:54 ----HD---- C:\SPLASH.SYS
2010-05-11 17:48:07 ----D---- C:\Windows\ShellNew
2010-05-11 17:47:48 ----D---- C:\Program Files (x86)\Microsoft Office
2010-05-11 17:47:41 ----D---- C:\Windows\Help
2010-05-11 17:41:59 ----D---- C:\Windows\system
2010-05-11 17:16:40 ----D---- C:\Program Files (x86)\Java
2010-05-11 16:58:52 ----D---- C:\ProgramData\McAfee
2010-05-11 16:57:02 ----D---- C:\Windows\Tasks
2010-05-11 16:55:04 ----D---- C:\Program Files (x86)\Microsoft
2010-05-11 16:52:26 ----D---- C:\ProgramData\Microsoft Help
2010-05-11 16:51:54 ----RSD---- C:\Windows\Fonts
2010-05-11 16:37:28 ----D---- C:\ProgramData\Partner
2010-05-11 16:06:22 ----SHD---- C:\$Recycle.Bin
2010-05-11 16:05:56 ----D---- C:\Program Files (x86)\Intel
2010-05-11 16:04:25 ----RD---- C:\Users
2010-05-11 16:02:53 ----D---- C:\Windows\Panther