Logfile of random's system information tool 1.09 (written by random/random)
Run by jan at 2012-07-30 23:28:13
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 42 GB (27%) free of 153 GB
Total RAM: 2039 MB (57% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 23:31:13, on 30.7.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16447)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Guard-ICQ\GuardICQ.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Program Files\Opera\opera.exe
C:\Users\jan\AppData\Local\Opera\Opera\temporary_downloads\RSIT.exe
C:\Program Files\trend micro\jan.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Guard.Mail.ru.gui] "C:\Program Files\Guard-ICQ\GuardICQ.exe" /gui
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ7M\ICQ.exe" silent loginmode=4
O9 - Extra button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - C:\Program Files\ICQ7M\ICQ.exe
O9 - Extra button: Click to call with Skype - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Click to call with Skype - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\Dell Games\Dell Game Console\GameConsoleService.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
--
End of file - 4224 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06 63912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-08-16 3942048]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2006-11-15 815104]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-06-06 937920]
"Guard.Mail.ru.gui"=C:\Program Files\Guard-ICQ\GuardICQ.exe [2012-07-21 1564368]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2012-03-07 3117344]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2012-06-05 17344176]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
"uTorrent"=C:\Program Files\uTorrent\uTorrent.exe [2012-06-17 1020816]
"ICQ"=C:\Program Files\ICQ7M\ICQ.exe [2012-07-21 127040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\Windows\system32\webcheck.dll [2012-06-18 203776]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"msacm.l3pacm"=l3codecp.acm
"msacm.aacacm"=AACACM.acm
"msacm.lameacm"=lameACM.acm
"msacm.ac3acm"=ac3acm.acm
"VIDC.LAGS"=lagarith.dll
"VIDC.FFDS"=ff_vfw.dll
"VIDC.X264"=x264vfw.dll
"msacm.ac3filter"=ac3filter.acm
"VIDC.MLCY"=mlc.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2012-07-30 23:28:13 ----D---- C:\rsit
2012-07-26 07:10:03 ----D---- C:\Program Files\FinalWire
2012-07-25 07:20:49 ----SD---- C:\ComboFix
2012-07-24 07:28:19 ----A---- C:\ComboFix.txt
2012-07-24 07:27:07 ----SHD---- C:\$RECYCLE.BIN
2012-07-23 19:42:01 ----D---- C:\Program Files\ESET
2012-07-23 17:47:59 ----D---- C:\Windows\temp
2012-07-23 16:33:38 ----A---- C:\Windows\NIRCMD.exe
2012-07-23 16:27:53 ----D---- C:\Windows\erdnt
2012-07-22 08:06:27 ----D---- C:\Users\jan\AppData\Roaming\Malwarebytes
2012-07-22 08:06:07 ----D---- C:\ProgramData\Malwarebytes
2012-07-22 06:26:40 ----A---- C:\Windows\system32\perfi00D.dat
2012-07-22 06:26:36 ----A---- C:\Windows\system32\perfh00D.dat
2012-07-22 06:26:36 ----A---- C:\Windows\system32\perfd00D.dat
2012-07-22 06:26:36 ----A---- C:\Windows\system32\perfc00D.dat
2012-07-22 06:24:32 ----D---- C:\Windows\system32\he
2012-07-22 06:24:30 ----D---- C:\Windows\system32\drivers\he-IL
2012-07-22 06:23:54 ----D---- C:\Windows\he-IL
2012-07-22 05:27:38 ----A---- C:\Windows\system32\perfi014.dat
2012-07-22 05:27:35 ----A---- C:\Windows\system32\perfh014.dat
2012-07-22 05:27:35 ----A---- C:\Windows\system32\perfd014.dat
2012-07-22 05:27:35 ----A---- C:\Windows\system32\perfc014.dat
2012-07-22 05:25:38 ----D---- C:\Windows\nb-NO
2012-07-22 05:25:35 ----D---- C:\Windows\system32\no
2012-07-22 05:25:02 ----D---- C:\Windows\system32\drivers\nb-NO
2012-07-22 04:14:09 ----A---- C:\Windows\system32\perfi008.dat
2012-07-22 04:14:06 ----A---- C:\Windows\system32\perfh008.dat
2012-07-22 04:14:06 ----A---- C:\Windows\system32\perfd008.dat
2012-07-22 04:14:06 ----A---- C:\Windows\system32\perfc008.dat
2012-07-22 04:10:28 ----D---- C:\Windows\el-GR
2012-07-22 04:09:37 ----D---- C:\Windows\system32\el
2012-07-22 04:09:33 ----D---- C:\Windows\system32\drivers\el-GR
2012-07-22 03:24:11 ----D---- C:\Windows\lt-LT
2012-07-22 03:23:51 ----D---- C:\Windows\system32\drivers\lt-LT
2012-07-22 02:44:58 ----D---- C:\Program Files\CONEXANT
2012-07-22 02:41:43 ----A---- C:\Windows\system32\perfi010.dat
2012-07-22 02:41:32 ----A---- C:\Windows\system32\perfh010.dat
2012-07-22 02:41:32 ----A---- C:\Windows\system32\perfd010.dat
2012-07-22 02:41:32 ----A---- C:\Windows\system32\perfc010.dat
2012-07-22 02:37:07 ----D---- C:\Windows\it-IT
2012-07-22 02:35:21 ----D---- C:\Windows\system32\drivers\it-IT
2012-07-22 02:35:20 ----D---- C:\Windows\system32\0410
2012-07-22 02:34:48 ----D---- C:\Windows\system32\it
2012-07-22 01:34:25 ----A---- C:\Windows\system32\perfi001.dat
2012-07-22 01:34:17 ----A---- C:\Windows\system32\perfh001.dat
2012-07-22 01:34:17 ----A---- C:\Windows\system32\perfd001.dat
2012-07-22 01:34:17 ----A---- C:\Windows\system32\perfc001.dat
2012-07-22 01:29:11 ----D---- C:\Windows\ar-SA
2012-07-22 01:29:07 ----D---- C:\Windows\system32\ar
2012-07-22 01:29:00 ----D---- C:\Windows\system32\drivers\ar-SA
2012-07-22 00:37:16 ----A---- C:\Windows\system32\perfi00C.dat
2012-07-22 00:37:09 ----A---- C:\Windows\system32\perfh00C.dat
2012-07-22 00:37:09 ----A---- C:\Windows\system32\perfd00C.dat
2012-07-22 00:37:09 ----A---- C:\Windows\system32\perfc00C.dat
2012-07-22 00:32:33 ----D---- C:\Windows\fr-FR
2012-07-22 00:31:35 ----D---- C:\Windows\system32\040C
2012-07-22 00:31:32 ----D---- C:\Windows\system32\fr
2012-07-22 00:31:32 ----D---- C:\Windows\system32\drivers\fr-FR
2012-07-21 23:41:13 ----A---- C:\Windows\system32\prfi0816.dat
2012-07-21 23:41:03 ----A---- C:\Windows\system32\prfh0816.dat
2012-07-21 23:41:03 ----A---- C:\Windows\system32\prfd0816.dat
2012-07-21 23:41:03 ----A---- C:\Windows\system32\prfc0816.dat
2012-07-21 23:30:40 ----D---- C:\Windows\pt-PT
2012-07-21 23:28:53 ----D---- C:\Windows\system32\drivers\pt-PT
2012-07-21 22:53:40 ----A---- C:\Windows\system32\perfi006.dat
2012-07-21 22:53:34 ----A---- C:\Windows\system32\perfh006.dat
2012-07-21 22:53:34 ----A---- C:\Windows\system32\perfd006.dat
2012-07-21 22:53:34 ----A---- C:\Windows\system32\perfc006.dat
2012-07-21 22:50:35 ----D---- C:\Windows\da-DK
2012-07-21 22:50:23 ----D---- C:\Windows\system32\drivers\da-DK
2012-07-21 22:48:46 ----D---- C:\Windows\system32\da
2012-07-21 21:49:05 ----A---- C:\Windows\system32\perfi00A.dat
2012-07-21 21:48:59 ----A---- C:\Windows\system32\perfh00A.dat
2012-07-21 21:48:59 ----A---- C:\Windows\system32\perfd00A.dat
2012-07-21 21:48:59 ----A---- C:\Windows\system32\perfc00A.dat
2012-07-21 21:46:22 ----D---- C:\Windows\system32\es
2012-07-21 21:46:21 ----D---- C:\Windows\system32\0C0A
2012-07-21 21:46:15 ----D---- C:\Windows\system32\drivers\es-ES
2012-07-21 21:44:36 ----D---- C:\Windows\es-ES
2012-07-21 20:36:28 ----A---- C:\Windows\system32\prfi0404.dat
2012-07-21 20:36:23 ----A---- C:\Windows\system32\prfh0404.dat
2012-07-21 20:36:23 ----A---- C:\Windows\system32\prfd0404.dat
2012-07-21 20:36:23 ----A---- C:\Windows\system32\prfc0404.dat
2012-07-21 20:34:47 ----D---- C:\Windows\zh-TW
2012-07-21 20:34:43 ----D---- C:\Windows\system32\zh-CHT
2012-07-21 20:33:49 ----D---- C:\Windows\system32\drivers\zh-TW
2012-07-21 20:33:49 ----D---- C:\Windows\system32\drivers\zh-HK
2012-07-21 19:59:36 ----A---- C:\Windows\system32\perfi015.dat
2012-07-21 19:59:30 ----A---- C:\Windows\system32\perfh015.dat
2012-07-21 19:59:30 ----A---- C:\Windows\system32\perfd015.dat
2012-07-21 19:59:30 ----A---- C:\Windows\system32\perfc015.dat
2012-07-21 19:56:02 ----D---- C:\Windows\pl-PL
2012-07-21 19:55:53 ----D---- C:\Windows\system32\drivers\pl-PL
2012-07-21 19:54:18 ----D---- C:\Windows\system32\pl
2012-07-21 19:28:29 ----A---- C:\Windows\system32\perfi019.dat
2012-07-21 19:28:17 ----A---- C:\Windows\system32\perfh019.dat
2012-07-21 19:28:17 ----A---- C:\Windows\system32\perfd019.dat
2012-07-21 19:28:17 ----A---- C:\Windows\system32\perfc019.dat
2012-07-21 19:24:56 ----D---- C:\Windows\system32\drivers\ru-RU
2012-07-21 19:24:43 ----D---- C:\Windows\system32\ru
2012-07-21 19:23:19 ----D---- C:\Windows\ru-RU
2012-07-21 18:04:29 ----A---- C:\Windows\system32\prfi0416.dat
2012-07-21 18:04:23 ----A---- C:\Windows\system32\prfh0416.dat
2012-07-21 18:04:23 ----A---- C:\Windows\system32\prfd0416.dat
2012-07-21 18:04:23 ----A---- C:\Windows\system32\prfc0416.dat
2012-07-21 18:02:46 ----D---- C:\Windows\pt-BR
2012-07-21 18:01:29 ----D---- C:\Windows\system32\drivers\pt-BR
2012-07-21 16:20:44 ----D---- C:\Windows\ro-RO
2012-07-21 16:20:15 ----D---- C:\Windows\system32\drivers\ro-RO
2012-07-21 15:35:33 ----A---- C:\Windows\system32\perfi007.dat
2012-07-21 15:35:09 ----A---- C:\Windows\system32\perfh007.dat
2012-07-21 15:35:09 ----A---- C:\Windows\system32\perfd007.dat
2012-07-21 15:35:09 ----A---- C:\Windows\system32\perfc007.dat
2012-07-21 15:25:20 ----D---- C:\Windows\de-DE
2012-07-21 15:22:57 ----D---- C:\Windows\system32\0407
2012-07-21 15:22:50 ----D---- C:\Windows\system32\drivers\de-DE
2012-07-21 15:22:37 ----D---- C:\Windows\system32\de
2012-07-21 13:57:00 ----D---- C:\Windows\bg-BG
2012-07-21 13:56:58 ----D---- C:\Windows\system32\drivers\bg-BG
2012-07-21 13:39:05 ----A---- C:\Windows\system32\perfi01F.dat
2012-07-21 13:39:01 ----A---- C:\Windows\system32\perfh01F.dat
2012-07-21 13:39:01 ----A---- C:\Windows\system32\perfd01F.dat
2012-07-21 13:39:01 ----A---- C:\Windows\system32\perfc01F.dat
2012-07-21 13:37:49 ----D---- C:\Windows\system32\tr
2012-07-21 13:37:49 ----D---- C:\Windows\system32\drivers\tr-TR
2012-07-21 13:37:21 ----D---- C:\Windows\tr-TR
2012-07-21 13:18:44 ----D---- C:\Windows\system32\drivers\th-TH
2012-07-21 13:17:35 ----D---- C:\Windows\th-TH
2012-07-21 12:18:09 ----D---- C:\Users\jan\AppData\Roaming\ICQ Search
2012-07-21 12:18:09 ----D---- C:\Program Files\ICQ6Toolbar
2012-07-21 12:17:57 ----D---- C:\Program Files\Guard-ICQ
2012-07-21 12:17:55 ----D---- C:\Users\jan\AppData\Roaming\Mozilla
2012-07-21 12:17:55 ----D---- C:\ProgramData\ICQ
2012-07-21 12:17:37 ----D---- C:\Users\jan\AppData\Roaming\ICQ
2012-07-21 12:17:22 ----D---- C:\Program Files\ICQ7M
2012-07-21 11:46:53 ----A---- C:\Windows\system32\NVUNINST.EXE
2012-07-21 11:46:44 ----D---- C:\NVIDIA
2012-07-18 15:40:39 ----D---- C:\Intel
2012-07-13 21:42:32 ----D---- C:\Users\jan\AppData\Roaming\vlc
2012-07-13 21:41:44 ----D---- C:\Program Files\VideoLAN
2012-07-12 21:09:20 ----D---- C:\Program Files\Common Files\Adobe
2012-07-12 20:55:25 ----D---- C:\Users\jan\AppData\Roaming\AdobeUM
2012-07-12 20:51:03 ----D---- C:\ProgramData\Adobe
2012-07-12 20:48:55 ----D---- C:\Program Files\Adobe
2012-07-12 16:32:24 ----A---- C:\Windows\system32\mshtmled.dll
2012-07-12 16:32:24 ----A---- C:\Windows\system32\iertutil.dll
2012-07-12 16:32:23 ----A---- C:\Windows\system32\ieui.dll
2012-07-12 16:32:22 ----A---- C:\Windows\system32\wininet.dll
2012-07-12 16:32:22 ----A---- C:\Windows\system32\jsproxy.dll
2012-07-12 16:32:22 ----A---- C:\Windows\system32\ieUnatt.exe
2012-07-12 16:32:21 ----A---- C:\Windows\system32\jscript9.dll
2012-07-12 16:32:21 ----A---- C:\Windows\system32\jscript.dll
2012-07-12 16:32:20 ----A---- C:\Windows\system32\url.dll
2012-07-12 16:32:19 ----A---- C:\Windows\system32\urlmon.dll
2012-07-12 16:32:18 ----A---- C:\Windows\system32\mshtml.dll
2012-07-12 16:32:17 ----A---- C:\Windows\system32\ieframe.dll
2012-07-12 16:28:34 ----A---- C:\Windows\system32\win32k.sys
2012-07-12 15:52:37 ----A---- C:\Windows\system32\msxml6.dll
2012-07-12 15:52:37 ----A---- C:\Windows\system32\msxml3r.dll
2012-07-12 15:52:37 ----A---- C:\Windows\system32\msxml3.dll
2012-07-12 15:52:36 ----A---- C:\Windows\system32\ncrypt.dll
2012-07-12 15:52:36 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2012-07-12 15:52:36 ----A---- C:\Windows\system32\drivers\cng.sys
2012-07-12 15:52:35 ----A---- C:\Windows\system32\schannel.dll
2012-07-12 15:52:35 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2012-07-12 15:52:34 ----A---- C:\Windows\system32\cdosys.dll
2012-07-12 15:52:30 ----A---- C:\Windows\system32\shell32.dll
2012-07-12 15:34:24 ----D---- C:\ProgramData\TmForever
2012-07-07 18:18:08 ----HD---- C:\Program Files\InstallShield Installation Information
2012-07-07 18:17:47 ----D---- C:\Program Files\Common Files\InstallShield
2012-07-06 11:00:07 ----A---- C:\Windows\IsUninst.exe
2012-07-06 10:59:56 ----RASH---- C:\MSDOS.SYS
2012-07-06 10:59:56 ----RASH---- C:\IO.SYS
2012-07-04 20:58:06 ----D---- C:\Users\jan\AppData\Roaming\dvdcss
2012-07-04 18:48:01 ----D---- C:\Users\jan\AppData\Roaming\XMedia Recode
2012-07-04 18:45:24 ----A---- C:\Windows\system32\pncrt.dll
2012-07-04 18:44:50 ----D---- C:\Program Files\FreeTime
2012-07-04 18:43:52 ----D---- C:\Program Files\Makayama Interactive
======List of files/folders modified in the last 1 month======
2012-07-30 23:28:27 ----D---- C:\Windows\Prefetch
2012-07-30 23:28:18 ----D---- C:\Program Files\trend micro
2012-07-30 23:27:54 ----D---- C:\Users\jan\AppData\Roaming\uTorrent
2012-07-30 23:26:49 ----D---- C:\Users\jan\AppData\Roaming\Skype
2012-07-30 23:25:59 ----D---- C:\Windows\system32\config
2012-07-30 23:25:45 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2012-07-30 23:19:50 ----D---- C:\Windows\system32\NDF
2012-07-30 12:06:53 ----AD---- C:\Windows\System32
2012-07-30 11:28:40 ----SHD---- C:\System Volume Information
2012-07-28 10:43:08 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-07-28 10:43:06 ----D---- C:\Windows\inf
2012-07-26 07:10:03 ----RD---- C:\Program Files
2012-07-25 07:20:57 ----D---- C:\Windows
2012-07-24 14:11:31 ----D---- C:\Windows\rescache
2012-07-24 07:23:08 ----A---- C:\Windows\system.ini
2012-07-24 07:16:28 ----D---- C:\Windows\system32\drivers
2012-07-24 07:16:28 ----D---- C:\Windows\AppPatch
2012-07-24 07:16:26 ----D---- C:\Program Files\Common Files
2012-07-24 07:02:14 ----SD---- C:\Users\jan\AppData\Roaming\Microsoft
2012-07-23 19:45:41 ----SHD---- C:\Windows\Installer
2012-07-23 19:44:31 ----D---- C:\Windows\system32\DriverStore
2012-07-23 19:44:31 ----D---- C:\Windows\system32\catroot2
2012-07-23 19:44:31 ----D---- C:\Windows\system32\catroot
2012-07-23 18:28:08 ----D---- C:\ProgramData\Norton
2012-07-23 18:27:20 ----D---- C:\Windows\system32\Tasks
2012-07-23 17:34:28 ----D---- C:\Windows\system32\drivers\etc
2012-07-22 16:28:08 ----D---- C:\Windows\winsxs
2012-07-22 16:28:04 ----D---- C:\Windows\system32\it-IT
2012-07-22 16:28:03 ----D---- C:\Windows\system32\lt-LT
2012-07-22 16:28:03 ----D---- C:\Windows\system32\el-GR
2012-07-22 16:28:02 ----D---- C:\Windows\system32\nb-NO
2012-07-22 16:28:02 ----D---- C:\Windows\system32\he-IL
2012-07-22 16:28:02 ----D---- C:\Windows\system32\ar-SA
2012-07-22 16:25:29 ----D---- C:\Windows\system32\fr-FR
2012-07-22 08:06:07 ----D---- C:\ProgramData
2012-07-22 07:54:40 ----D---- C:\Windows\system32\tr-TR
2012-07-22 07:54:40 ----D---- C:\Windows\system32\de-DE
2012-07-22 07:54:39 ----D---- C:\Windows\system32\zh-TW
2012-07-22 07:54:39 ----D---- C:\Windows\system32\pt-PT
2012-07-22 07:54:39 ----D---- C:\Windows\system32\pt-BR
2012-07-22 07:54:38 ----D---- C:\Windows\system32\pl-PL
2012-07-22 07:54:38 ----D---- C:\Windows\system32\es-ES
2012-07-22 07:54:38 ----D---- C:\Windows\system32\en-US
2012-07-22 07:54:38 ----D---- C:\Windows\system32\da-DK
2012-07-22 07:54:37 ----D---- C:\Windows\system32\ru-RU
2012-07-22 07:53:55 ----D---- C:\Windows\system32\ro-RO
2012-07-22 07:53:55 ----D---- C:\Windows\system32\bg-BG
2012-07-22 07:53:42 ----D---- C:\Windows\system32\th-TH
2012-07-22 07:19:21 ----D---- C:\Windows\SoftwareDistribution
2012-07-22 06:24:44 ----D---- C:\Program Files\Windows Sidebar
2012-07-22 06:24:44 ----D---- C:\Program Files\Windows Mail
2012-07-22 06:24:43 ----D---- C:\Program Files\Windows Media Player
2012-07-22 06:24:43 ----D---- C:\Program Files\Windows Journal
2012-07-22 06:24:43 ----D---- C:\Program Files\DVD Maker
2012-07-22 06:24:42 ----D---- C:\Program Files\Common Files\System
2012-07-22 06:24:41 ----D---- C:\Windows\servicing
2012-07-22 06:24:41 ----D---- C:\Program Files\Windows Photo Viewer
2012-07-22 06:24:41 ----D---- C:\Program Files\Windows Defender
2012-07-22 06:24:37 ----D---- C:\Windows\ehome
2012-07-22 06:24:36 ----D---- C:\Windows\IME
2012-07-22 06:24:33 ----D---- C:\Windows\system32\winrm
2012-07-22 06:24:33 ----D---- C:\Windows\PolicyDefinitions
2012-07-22 06:24:32 ----D---- C:\Windows\system32\XPSViewer
2012-07-22 06:24:32 ----D---- C:\Windows\system32\sysprep
2012-07-22 06:24:32 ----D---- C:\Windows\system32\oobe
2012-07-22 06:24:32 ----D---- C:\Windows\system32\migwiz
2012-07-22 06:24:32 ----D---- C:\Windows\system32\migration
2012-07-22 06:24:32 ----D---- C:\Windows\system32\inetsrv
2012-07-22 06:24:32 ----D---- C:\Windows\system32\drivers\UMDF
2012-07-22 06:24:30 ----D---- C:\Windows\system32\WCN
2012-07-22 06:24:30 ----D---- C:\Windows\system32\MUI
2012-07-22 06:24:30 ----D---- C:\Windows\system32\Dism
2012-07-22 06:24:24 ----D---- C:\Windows\system32\wbem
2012-07-22 05:25:35 ----D---- C:\Windows\system32\slmgr
2012-07-22 05:25:35 ----D---- C:\Windows\system32\Boot
2012-07-22 05:24:58 ----D---- C:\Windows\system32\Printing_Admin_Scripts
2012-07-22 05:24:55 ----D---- C:\Windows\system32\com
2012-07-22 02:37:22 ----D---- C:\Program Files\Internet Explorer
2012-07-22 02:37:07 ----D---- C:\Windows\DigitalLocker
2012-07-22 02:35:28 ----D---- C:\Windows\system32\WinBioPlugIns
2012-07-22 02:35:28 ----D---- C:\Windows\system32\Setup
2012-07-21 20:33:30 ----D---- C:\Windows\system32\zh-HK
2012-07-21 17:59:58 ----RSD---- C:\Windows\assembly
2012-07-21 16:53:44 ----D---- C:\Windows\en-US
2012-07-21 16:53:42 ----D---- C:\Windows\system32\drivers\en-US
2012-07-21 15:22:04 ----D---- C:\Windows\Speech
2012-07-21 13:18:48 ----D---- C:\Windows\system32\en
2012-07-21 12:38:05 ----D---- C:\Program Files\Opera
2012-07-18 15:41:08 ----D---- C:\Program Files\Intel
2012-07-15 11:47:11 ----D---- C:\Windows\Logs
2012-07-15 11:47:11 ----D---- C:\Windows\debug
2012-07-15 11:43:37 ----D---- C:\Windows\Tasks
2012-07-12 20:53:17 ----D---- C:\Users\jan\AppData\Roaming\Adobe
2012-07-12 20:42:02 ----D---- C:\Users\jan\AppData\Roaming\WildTangent
2012-07-12 16:28:58 ----A---- C:\Windows\system32\MRT.exe
2012-07-12 16:04:00 ----D---- C:\Windows\Microsoft.NET
2012-07-06 18:23:50 ----D---- C:\Windows\system32\wdi
2012-07-04 10:58:00 ----D---- C:\Windows\system32\appmgmt
2012-07-04 10:57:07 ----RSD---- C:\Windows\Fonts
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2012-03-14 50624]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2012-06-18 691696]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 388096]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2012-03-14 169080]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2012-03-14 120152]
R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2012-03-14 33656]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2012-03-14 148504]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2005-10-05 12544]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2009-07-08 2506232]
R3 bcm4sbxp;Broadcom 440x 10/100 Integrated Controller XP Driver; C:\Windows\system32\DRIVERS\bcm4sbxp.sys [2009-07-14 46080]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2005-12-01 936960]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2005-12-01 192512]
R3 NWADI;NWADI Bus Enumerator; C:\Windows\system32\DRIVERS\NWADIenum.sys [2006-11-03 158720]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2006-11-15 179256]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2005-12-01 669696]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 acmk6be3;acmk6be3; C:\Windows\system32\drivers\acmk6be3.sys []
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 AIDA64Driver;FinalWire AIDA64 Kernel Driver; \??\C:\Program Files\FinalWire\AIDA64 Extreme Edition\kerneld.x32 [2012-05-30 29336]
S3 amdagp;Ovladač filtru AMD portu AGP; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 78336]
S3 catchme;catchme; \??\C:\Users\jan\AppData\Local\Temp\catchme.sys []
S3 EagleXNt;EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys []
S3 k750bus;Sony Ericsson 750 driver (WDM); C:\Windows\system32\DRIVERS\k750bus.sys [2005-02-11 55216]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 15872]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;Filtr SIS sběrnice AGP; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2009-07-14 207360]
S3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV3.SYS [2009-07-14 980992]
S3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT3.SYS [2009-07-14 661504]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 viaagp;Filtr VIA sběrnice AGP; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2012-03-07 913144]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [2007-02-21 643072]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [2007-02-21 327680]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-06-05 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-07-30 250056]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 GameConsoleService;GameConsoleService; C:\Program Files\Dell Games\Dell Game Console\GameConsoleService.exe [2010-09-30 246520]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-06-18 1343400]
S4 Guard.Mail.ru;Guard.Mail.ru; C:\Program Files\Guard-ICQ\GuardICQ.exe [2012-07-21 1564368]
-----------------EOF-----------------