Nene nepadá.
http://www.virustotal.com/file-scan/rep ... 1298642541
Log -> Logfile of random's system information tool 1.08 (written by random/random)
Run by Milda at 2011-02-25 15:02:53
Microsoft Windows 7 Home Premium
System drive C: has 193 GB (64%) free of 300 GB
Total RAM: 2047 MB (53% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:03:06, on 25.2.2011
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16722)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\snuvcdsm.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtProc.exe
C:\Users\Milda\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Milda\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Milda\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Milda\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\taskeng.exe
C:\Users\Milda\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Users\Milda\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Milda\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Milda\Downloads\RSIT.exe
C:\Program Files\trend micro\Milda.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://start.icq.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [PLFSetL] C:\Windows\PLFSetL.exe
O4 - HKLM\..\Run: [SNUVCDSM] C:\Windows\snuvcdsm.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [ATICustomerCare] "c:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - Global Startup: Bluetooth Manager.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files\Windows Live\Companion\companioncore.dll
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: AMD Reservation Manager - Advanced Micro Devices - C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
--
End of file - 8389 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2151644013-1763909219-2186456422-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2151644013-1763909219-2186456422-1001UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [2010-08-10 341600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll [2009-01-26 1879896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9FDDE16B-836F-4806-AB1F-1455CBEFF289}]
Windows Live Messenger Companion Helper - C:\Program Files\Windows Live\Companion\companioncore.dll [2010-09-23 393600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-12-19 41760]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"PLFSetL"=C:\Windows\PLFSetL.exe [2008-07-03 94208]
"SNUVCDSM"=C:\Windows\snuvcdsm.exe [2009-08-10 27184]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2009-12-10 8120864]
"TkBellExe"=C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2010-08-10 202256]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"SwitchBoard"=C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-07-22 402432]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-01-31 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]
"ATICustomerCare"=c:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe [2010-05-04 311296]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2010-11-29 421888]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-01-26 336384]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
"uTorrent"=C:\Program Files\uTorrent\uTorrent.exe [2011-02-22 396152]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth Manager.lnk - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2009-07-14 229376]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2011-02-24 22:07:54 ----D---- C:\Program Files\HD Tune
2011-02-24 19:55:39 ----SHD---- C:\found.000
2011-02-24 18:21:36 ----D---- C:\Windows\system32\EventProviders
2011-02-24 18:01:15 ----D---- C:\Program Files\ZÁLOHA
2011-02-24 17:51:38 ----D---- C:\ProgramData\Windows Genuine Advantage
2011-02-24 17:02:24 ----D---- C:\Program Files\CrystalDiskInfo
2011-02-24 07:54:03 ----A---- C:\Windows\system32\wcncsvc.dll
2011-02-23 20:44:49 ----A---- C:\ComboFix.txt
2011-02-23 20:38:46 ----D---- C:\$RECYCLE.BIN
2011-02-23 20:17:38 ----A---- C:\Windows\MBR.exe
2011-02-23 20:17:37 ----A---- C:\Windows\NIRCMD.exe
2011-02-23 20:17:32 ----A---- C:\Windows\PEV.exe
2011-02-23 20:17:31 ----A---- C:\Windows\zip.exe
2011-02-23 20:17:31 ----A---- C:\Windows\SWREG.exe
2011-02-23 20:17:31 ----A---- C:\Windows\sed.exe
2011-02-23 20:17:31 ----A---- C:\Windows\grep.exe
2011-02-23 20:17:30 ----A---- C:\Windows\SWSC.exe
2011-02-23 20:17:13 ----D---- C:\Windows\ERDNT
2011-02-23 20:16:23 ----D---- C:\Qoobox
2011-02-23 20:15:38 ----A---- C:\Windows\SWXCACLS.exe
2011-02-23 19:08:38 ----D---- C:\Users\Milda\AppData\Roaming\Malwarebytes
2011-02-23 19:08:09 ----A---- C:\Windows\system32\drivers\mbamswissarmy.sys
2011-02-23 19:08:08 ----D---- C:\ProgramData\Malwarebytes
2011-02-23 19:08:04 ----A---- C:\Windows\system32\drivers\mbam.sys
2011-02-23 19:08:03 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-02-23 10:40:32 ----D---- C:\rsit
2011-02-23 10:40:32 ----D---- C:\Program Files\trend micro
2011-02-23 09:00:43 ----D---- C:\Users\Milda\AppData\Roaming\ATI
2011-02-23 09:00:43 ----D---- C:\ProgramData\ATI
2011-02-23 09:00:35 ----D---- C:\Program Files\Common Files\ATI Technologies
2011-02-23 09:00:25 ----D---- C:\Program Files\ATI Stream
2011-02-23 08:59:36 ----D---- C:\ProgramData\AMD
2011-02-23 08:59:22 ----A---- C:\Windows\system32\drivers\amdiox86.sys
2011-02-23 08:55:34 ----D---- C:\ATI
2011-02-23 08:51:52 ----D---- C:\AMD
2011-02-23 07:39:35 ----A---- C:\Windows\system32\XpsPrint.dll
2011-02-23 07:39:34 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2011-02-22 18:44:49 ----D---- C:\Program Files\ESET
2011-02-22 17:03:36 ----D---- C:\Users\Milda\AppData\Roaming\uTorrent
2011-02-19 10:38:53 ----D---- C:\Users\Milda\AppData\Roaming\Apple Computer
2011-02-12 12:31:01 ----D---- C:\Program Files\QuickTime
2011-02-12 12:31:00 ----D---- C:\ProgramData\Apple Computer
2011-02-09 12:24:43 ----A---- C:\Windows\system32\win32k.sys
2011-02-09 12:24:40 ----A---- C:\Windows\system32\kerberos.dll
2011-02-09 12:24:37 ----A---- C:\Windows\system32\jscript.dll
2011-02-09 12:24:36 ----A---- C:\Windows\system32\vbscript.dll
2011-02-09 12:24:31 ----A---- C:\Windows\system32\mshtml.dll
2011-02-09 12:24:06 ----A---- C:\Windows\system32\msfeeds.dll
2011-02-09 12:24:03 ----A---- C:\Windows\system32\mstime.dll
2011-02-09 12:24:03 ----A---- C:\Windows\system32\iedkcs32.dll
2011-02-09 12:24:01 ----A---- C:\Windows\system32\mshtmled.dll
2011-02-09 12:24:01 ----A---- C:\Windows\system32\msfeedsbs.dll
2011-02-09 12:24:01 ----A---- C:\Windows\system32\licmgr10.dll
2011-02-09 12:24:01 ----A---- C:\Windows\system32\iertutil.dll
2011-02-09 12:24:01 ----A---- C:\Windows\system32\iepeers.dll
2011-02-09 12:24:00 ----A---- C:\Windows\system32\msfeedssync.exe
2011-02-09 12:23:54 ----A---- C:\Windows\system32\atmlib.dll
2011-02-09 12:23:54 ----A---- C:\Windows\system32\atmfd.dll
2011-02-09 12:23:50 ----A---- C:\Windows\system32\ntdll.dll
2011-02-09 12:23:47 ----A---- C:\Windows\system32\ntoskrnl.exe
2011-02-09 12:23:45 ----A---- C:\Windows\system32\ntkrnlpa.exe
2011-02-09 12:23:38 ----A---- C:\Windows\system32\upnp.dll
2011-02-09 12:23:33 ----A---- C:\Windows\system32\urlmon.dll
2011-02-09 12:23:31 ----A---- C:\Windows\system32\msxml6.dll
2011-02-09 12:23:30 ----A---- C:\Windows\system32\wininet.dll
2011-02-09 12:23:28 ----A---- C:\Windows\system32\msxml3.dll
2011-02-09 12:23:24 ----A---- C:\Windows\system32\ieframe.dll
2011-02-09 12:23:23 ----A---- C:\Windows\system32\WebClnt.dll
2011-02-09 12:23:23 ----A---- C:\Windows\system32\davclnt.dll
2011-02-09 12:23:22 ----A---- C:\Windows\system32\wscapi.dll
2011-02-09 12:23:22 ----A---- C:\Windows\system32\winhttp.dll
2011-02-09 12:23:22 ----A---- C:\Windows\system32\slwga.dll
2011-02-09 12:23:21 ----A---- C:\Windows\system32\wscsvc.dll
2011-02-09 12:23:18 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2011-02-03 15:26:01 ----D---- C:\ProgramData\Spybot - Search & Destroy
2011-02-03 15:26:01 ----D---- C:\Program Files\Spybot - Search & Destroy
2011-02-03 14:21:36 ----AD---- C:\Windows\VDLL.DLL
2011-02-03 14:21:36 ----AD---- C:\Windows\rundll16.exe
2011-02-03 14:21:36 ----AD---- C:\Windows\RUNDL132.EXE
2011-02-03 14:21:36 ----AD---- C:\Windows\logo1_.exe
2011-02-03 14:21:36 ----AD---- C:\Windows\logo_1.exe
2011-02-03 14:21:35 ----AD---- C:\Windows\system32\runouce.exe
2011-01-27 00:36:14 ----A---- C:\Windows\system32\drivers\atikmdag.sys
2011-01-27 00:00:44 ----A---- C:\Windows\system32\atiapfxx.exe
2011-01-27 00:00:30 ----A---- C:\Windows\system32\aticfx32.dll
2011-01-26 23:59:46 ----A---- C:\Windows\system32\atioglxx.dll
2011-01-26 23:56:30 ----A---- C:\Windows\system32\ATIDEMGX.dll
2011-01-26 23:55:54 ----A---- C:\Windows\system32\atieclxx.exe
2011-01-26 23:55:24 ----A---- C:\Windows\system32\atiesrxx.exe
2011-01-26 23:54:10 ----A---- C:\Windows\system32\atitmmxx.dll
2011-01-26 23:53:54 ----A---- C:\Windows\system32\atipdlxx.dll
2011-01-26 23:53:42 ----A---- C:\Windows\system32\Oemdspif.dll
2011-01-26 23:53:34 ----A---- C:\Windows\system32\atimuixx.dll
2011-01-26 23:53:26 ----A---- C:\Windows\system32\ati2edxx.dll
2011-01-26 23:32:12 ----A---- C:\Windows\system32\atiumdmv.dll
2011-01-26 23:28:52 ----A---- C:\Windows\system32\atiumdag.dll
2011-01-26 23:27:50 ----A---- C:\Windows\system32\aticalrt.dll
2011-01-26 23:27:40 ----A---- C:\Windows\system32\aticalcl.dll
2011-01-26 23:25:50 ----A---- C:\Windows\system32\aticaldd.dll
2011-01-26 23:24:18 ----A---- C:\Windows\system32\atiumdva.dll
2011-01-26 23:20:44 ----A---- C:\Windows\system32\coinst.dll
2011-01-26 23:14:06 ----A---- C:\Windows\system32\atiadlxx.dll
2011-01-26 23:13:52 ----A---- C:\Windows\system32\atiglpxx.dll
2011-01-26 23:13:42 ----A---- C:\Windows\system32\atigktxx.dll
2011-01-26 23:13:10 ----A---- C:\Windows\system32\drivers\atikmpag.sys
2011-01-26 23:12:40 ----A---- C:\Windows\system32\atiuxpag.dll
2011-01-26 23:12:24 ----A---- C:\Windows\system32\atiu9pag.dll
2011-01-26 23:11:46 ----A---- C:\Windows\system32\drivers\ati2erec.dll
2011-01-26 23:08:40 ----A---- C:\Windows\system32\atimpc32.dll
2011-01-26 23:08:40 ----A---- C:\Windows\system32\amdpcom32.dll
======List of files/folders modified in the last 1 months======
2011-02-25 15:03:07 ----D---- C:\Windows\Prefetch
2011-02-25 15:02:57 ----D---- C:\Windows\Temp
2011-02-25 14:59:45 ----D---- C:\Windows\tracing
2011-02-25 07:42:26 ----D---- C:\Windows\system32\config
2011-02-25 07:31:39 ----SHD---- C:\System Volume Information
2011-02-25 07:30:12 ----SHD---- C:\Windows\Installer
2011-02-25 07:29:01 ----D---- C:\Program Files\Microsoft Silverlight
2011-02-24 22:07:54 ----RD---- C:\Program Files
2011-02-24 22:02:22 ----D---- C:\Windows\system32\Tasks
2011-02-24 22:01:11 ----D---- C:\Windows
2011-02-24 19:50:10 ----D---- C:\Windows\Downloaded Program Files
2011-02-24 18:21:36 ----D---- C:\Windows\System32
2011-02-24 18:06:35 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-02-24 18:06:34 ----D---- C:\Windows\inf
2011-02-24 17:51:38 ----D---- C:\ProgramData
2011-02-24 17:00:31 ----D---- C:\Windows\system32\drivers
2011-02-24 07:55:24 ----D---- C:\Windows\winsxs
2011-02-24 07:54:33 ----D---- C:\Windows\system32\catroot
2011-02-23 21:36:01 ----D---- C:\Windows\debug
2011-02-23 21:15:48 ----D---- C:\ProgramData\TrackMania
2011-02-23 20:39:41 ----A---- C:\Windows\system.ini
2011-02-23 20:38:33 ----D---- C:\Windows\system32\drivers\etc
2011-02-23 20:28:13 ----D---- C:\Windows\AppPatch
2011-02-23 20:28:09 ----D---- C:\Program Files\Common Files
2011-02-23 19:23:50 ----D---- C:\Users\Milda\AppData\Roaming\Adobe
2011-02-23 11:38:35 ----D---- C:\Windows\system32\NDF
2011-02-23 08:59:56 ----D---- C:\Program Files\ATI Technologies
2011-02-23 08:59:25 ----D---- C:\Windows\system32\DriverStore
2011-02-23 07:38:56 ----D---- C:\Windows\system32\catroot2
2011-02-22 17:04:11 ----D---- C:\Program Files\uTorrent
2011-02-19 10:21:00 ----D---- C:\Program Files\Microsoft Games
2011-02-18 21:05:26 ----D---- C:\Program Files\QIP 2010
2011-02-17 17:31:10 ----D---- C:\Users\Milda\AppData\Roaming\Skype
2011-02-17 16:00:18 ----D---- C:\Users\Milda\AppData\Roaming\skypePM
2011-02-10 17:24:46 ----D---- C:\Program Files\Internet Explorer
2011-02-09 19:29:44 ----A---- C:\Windows\system32\MRT.exe
2011-02-09 19:28:21 ----D---- C:\ProgramData\Microsoft Help
2011-02-02 17:11:20 ----N---- C:\Windows\system32\MpSigStub.exe
2011-01-26 23:49:44 ----A---- C:\Windows\system32\atidxx32.dll
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648]
R1 Tosrfcom;Bluetooth RFCOMM; C:\Windows\System32\Drivers\tosrfcom.sys [2009-07-28 69480]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2006-11-14 37376]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\AGRSM.sys [2009-07-13 1035776]
R3 amdiox86;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox86.sys [2010-02-18 37944]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-01-27 7566848]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2011-01-26 238592]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-10-05 1221632]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW73.sys [2010-10-29 101904]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2009-12-10 2975904]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2009-07-14 8192]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2009-12-19 249888]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-07-14 84992]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2009-09-10 1761280]
R3 tosporte;Bluetooth COM Port; C:\Windows\system32\DRIVERS\tosporte.sys [2009-06-17 46984]
R3 Tosrfbd;Bluetooth RFBUS; C:\Windows\system32\DRIVERS\tosrfbd.sys [2009-09-24 169320]
R3 Tosrfhid;Bluetooth RFHID; C:\Windows\system32\DRIVERS\Tosrfhid.sys [2009-06-19 79872]
R3 Tosrfusb;Bluetooth USB Controller; C:\Windows\system32\DRIVERS\tosrfusb.sys [2009-09-14 49400]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336]
S0 prohlp02;StarForce Protection Helper Driver v2; C:\Windows\System32\drivers\prohlp02.sys [2004-08-09 114016]
S0 prosync1;StarForce Protection Synchronization Driver v1; C:\Windows\System32\drivers\prosync1.sys [2004-07-19 7040]
S0 sfhlp01;StarForce Protection Helper Driver; C:\Windows\System32\drivers\sfhlp01.sys [2003-12-01 4832]
S0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys []
S1 prodrv06;StarForce Protection Environment Driver v6; C:\Windows\System32\drivers\prodrv06.sys [2004-08-09 53920]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2011-01-27 7566848]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 BthAvrcp;Bluetooth AVRCP Profile; C:\Windows\system32\DRIVERS\BthAvrcp.sys [2008-07-10 15872]
S3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2009-07-14 392704]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-07-14 58880]
S3 catchme;catchme; \??\C:\Users\Milda\AppData\Local\Temp\catchme.sys []
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2010-09-23 39272]
S3 iaStor;iaStor; C:\Windows\system32\DRIVERS\iaStor.sys [2009-06-04 330264]
S3 nmwcd;Nokia USB Phone Parent; C:\Windows\system32\drivers\ccdcmb.sys [2010-02-26 18176]
S3 nmwcdc;Nokia USB Generic; C:\Windows\system32\drivers\ccdcmbo.sys [2010-02-26 22528]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 tosrfbnp;Bluetooth RFBNEP; C:\Windows\System32\Drivers\tosrfbnp.sys [2009-06-19 42472]
S3 tosrfnds;Bluetooth Personal Area Network; C:\Windows\system32\DRIVERS\tosrfnds.sys [2009-07-24 21608]
S3 TosRfSnd;Bluetooth Audio; C:\Windows\system32\drivers\tosrfsnd.sys [2009-08-05 61168]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2010-02-26 8192]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2009-07-14 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2010-02-26 8192]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 34944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2011-01-26 176128]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-01-26 284672]
R2 AMD Reservation Manager;AMD Reservation Manager; C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe [2010-06-17 140224]
R2 MSSQL$SONY_MEDIAMGR;MSSQL$SONY_MEDIAMGR; C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [2002-12-17 7520337]
R2 SBSDWSCService;SBSD Security Center Service; C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 1710464]
R3 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2009-10-21 148848]
S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-02-09 135664]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-22 136120]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 MSSQLServerADHelper;MSSQLServerADHelper; C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe [2002-12-17 66112]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2010-06-14 615936]
S3 SQLAgent$SONY_MEDIAMGR;SQLAgent$SONY_MEDIAMGR; C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE [2002-12-17 311872]
S3 SwitchBoard;SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-05-22 1343400]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-22 51040]
-----------------EOF-----------------