Prosim o kontrolu
Napsal: 06 srp 2010 16:29
mam podozrenie ze mam v pc keylogera
Za zkontrolovanie Dakujem predom
Logfile of random's system information tool 1.08 (written by random/random)
Run by Erd at 2010-08-06 16:50:02
Microsoft Windows 7 Ultimate
System drive C: has 9 GB (4%) free of 238 GB
Total RAM: 3071 MB (36% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:50:49, on 6. 8. 2010
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Uniblue\RegistryBooster\rbmonitor.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe
C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE
C:\Program Files\AVG\AVG8\avgtray.exe
C:\Windows\PixArt\PAP7501\GUCI_AVS.exe
C:\Windows\PixArt\PAP7501\PACTray.exe
C:\Program Files\YouTube Downloader Toolbar\SearchSettings.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe
C:\Program Files\Steam\Steam.exe
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe
C:\Program Files\Uniblue\RegistryBooster\registrybooster.exe
C:\Program Files\Samsung\Samsung PC Studio 7\PCSuite.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Common Files\Nokia\NoA\nokiaaserver.exe
C:\Program Files\Adobe\Adobe Photoshop Lightroom 3\lightroom.exe
C:\Users\Erd\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\SYSTEM32\WISPTIS.EXE
C:\Users\Erd\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Erd\Downloads\RSIT.exe
C:\Program Files\trend micro\Erd.exe
C:\Program Files\Windows Media Player\wmplayer.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eu.ask.com?o=15430&l=dis
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: QIPBHO Class - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\Erd\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\bar\1.bin\MWSSRCAS.DLL
R3 - URLSearchHook: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\YouTube Downloader Toolbar\SearchSettings.dll
O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\bar\1.bin\MWSSRCAS.DLL
O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\ProgramData\LangSoft\WebIE.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: QIPBHO - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\Erd\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\YouTube Downloader Toolbar\SearchSettings.dll
O2 - BHO: YouTube Downloader Toolbar - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files\YouTube Downloader Toolbar\IE\1.0\youtubedownloaderToolbarIE.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\ProgramData\LangSoft\WebIE.dll
O3 - Toolbar: My Web Search - {07B18EA9-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: YouTube Downloader Toolbar - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files\YouTube Downloader Toolbar\IE\1.0\youtubedownloaderToolbarIE.dll
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [NokiaMServer] C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
O4 - HKLM\..\Run: [My Web Search Bar Search Scope Monitor] "C:\PROGRA~1\MYWEBS~1\bar\1.bin\m3SrchMn.exe" /m=2 /w /h
O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [GUCI_AVS] C:\Windows\PixArt\PAP7501\GUCI_AVS.exe
O4 - HKLM\..\Run: [PACTray] C:\Windows\PixArt\PAP7501\PACTray.exe
O4 - HKLM\..\Run: [SearchSettings] "C:\Program Files\YouTube Downloader Toolbar\SearchSettings.exe"
O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKCU\..\Run: [Google Update] "C:\Users\Erd\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKCU\..\Run: [NokiaOviSuite2] C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe -tray
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Halo2] rundll32.exe C:\Windows\system32\sshnas21.dll,GetMainWnd
O4 - HKCU\..\Run: [EWABQAF7KL] C:\Users\Erd\AppData\Local\Temp\Ewd.exe
O4 - HKCU\..\Run: [WebcamMaxAutoRun] "C:\Program Files\WebcamMax\WebcamMax.exe" -a
O4 - HKCU\..\Run: [AutoStartNPSAgent] C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe
O4 - HKCU\..\Run: [RegistryBooster] "C:\Program Files\Uniblue\RegistryBooster\launcher.exe" delay 20000
O4 - HKCU\..\Run: [Uniblue Registry Booster] C:\Program Files\Uniblue\Registry Booster\RegistryBooster.exe /S
O4 - HKCU\..\Run: [S60 PC Suite Tray] "C:\Program Files\Samsung\Samsung PC Studio 7\PCSuite.exe" -onlytray
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [Samsung.PCSync] "C:\Program Files\Samsung\Samsung PC Studio 7\PcSync2.exe" /NoDialog (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Samsung.PCSync] "C:\Program Files\Samsung\Samsung PC Studio 7\PcSync2.exe" /NoDialog (User 'Default user')
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredi ... 2010032204
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/v ... .2.5.0.cab
O16 - DPF: {784797A8-342D-4072-9486-03C8D0F2F0A1} (Battlefield Heroes Updater) - https://www.battlefieldheroes.com/stati ... 0.53.0.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: Adobe Active File Monitor V8 (AdobeActiveFileMonitor8.0) - Adobe Systems Incorporated - C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe
O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files\Application Updater\ApplicationUpdater.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FsUsbExService - Teruten - C:\Windows\system32\FsUsbExService.Exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: My Web Search Service (MyWebSearchService) - MyWebSearch.com - C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwssvc.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TwonkyMedia - PacketVideo - C:\Program Files\Nokia\Nokia Home Media Server\Media Server\TwonkyMedia.exe
--
End of file - 15039 bytes
======Scheduled tasks folder======
C:\Windows\tasks\AdobeAAMUpdater-1.0-Erd-PC-Erd.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3986417567-2549403839-1746117987-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3986417567-2549403839-1746117987-1001UA.job
C:\Windows\tasks\RegistryBooster.job
C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
C:\Windows\tasks\{8C3FDD81-7AE0-4605-A46A-2488B179F2A3}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00A6FAF1-072E-44cf-8957-5838F569A31D}]
MyWebSearch Search Assistant BHO - C:\Program Files\MyWebSearch\bar\1.bin\MWSSRCAS.DLL [2010-03-22 54680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{07B18EA1-A523-4961-B6BB-170DE4475CCA}]
mwsBar BHO - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL [2010-03-22 759288]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2010-01-03 520192]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll [2010-05-02 1111320]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}]
QIPBHO Class - C:\Users\Erd\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll [2010-03-22 149968]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-05-26 1385864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-12-23 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}]
C:\Program Files\YouTube Downloader Toolbar\SearchSettings.dll [2010-02-19 1109504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F3FEE66E-E034-436a-86E4-9690573BEE8A}]
YouTube Downloader Toolbar - C:\Program Files\YouTube Downloader Toolbar\IE\1.0\youtubedownloaderToolbarIE.dll [2010-02-19 700416]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2009-11-24 953800]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2009-08-16 962808]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\ProgramData\LangSoft\WebIE.dll [2010-01-03 520192]
{07B18EA9-A523-4961-B6BB-170DE4475CCA} - My Web Search - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL [2010-03-22 759288]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-05-26 1385864]
{F3FEE66E-E034-436a-86E4-9690573BEE8A} - YouTube Downloader Toolbar - C:\Program Files\YouTube Downloader Toolbar\IE\1.0\youtubedownloaderToolbarIE.dll [2010-02-19 700416]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"NBKeyScan"=C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2008-06-08 2221352]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-12-23 149280]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe []
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-09-09 6281760]
"NokiaMServer"=C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup []
"My Web Search Bar Search Scope Monitor"=C:\PROGRA~1\MYWEBS~1\bar\1.bin\m3SrchMn.exe [2010-03-22 28783]
"MyWebSearch Email Plugin"=C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe [2010-03-22 32849]
"AVG8_TRAY"=C:\PROGRA~1\AVG\AVG8\avgtray.exe [2010-07-12 2048352]
"WinampAgent"=C:\Program Files\Winamp\winampa.exe []
"GUCI_AVS"=C:\Windows\PixArt\PAP7501\GUCI_AVS.exe [2007-12-10 323584]
"PACTray"=C:\Windows\PixArt\PAP7501\PACTray.exe [2009-06-09 319488]
"NPSStartup"= []
"SearchSettings"=C:\Program Files\YouTube Downloader Toolbar\SearchSettings.exe [2010-02-19 974848]
"AdobeCS4ServiceManager"=C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2008-08-14 611712]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"SwitchBoard"=C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Erd\AppData\Local\Google\Update\GoogleUpdate.exe [2009-12-23 135664]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\daemon.exe [2009-04-23 691656]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2008-06-24 1840424]
"OEXPRESS"= []
""= []
"NokiaOviSuite2"=C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe [2009-12-10 401728]
"Steam"=c:\program files\steam\steam.exe [2010-05-07 1238352]
"PC Suite Tray"=C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe [2009-11-11 1451520]
"MyWebSearch Email Plugin"=C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe [2010-03-22 32849]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1173504]
"Halo2"=C:\Windows\system32\sshnas21.dll,GetMainWnd []
"EWABQAF7KL"=C:\Users\Erd\AppData\Local\Temp\Ewd.exe []
"WebcamMaxAutoRun"=C:\Program Files\WebcamMax\WebcamMax.exe [2010-01-08 1561232]
"AutoStartNPSAgent"=C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe [2010-07-04 95576]
"RegistryBooster"=C:\Program Files\Uniblue\RegistryBooster\launcher.exe [2010-07-27 67448]
"Uniblue Registry Booster"=C:\Program Files\Uniblue\Registry Booster\RegistryBooster.exe [2007-01-12 1740800]
"S60 PC Suite Tray"=C:\Program Files\Samsung\Samsung PC Studio 7\PCSuite.exe [2008-12-06 699392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="avgrsstx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - "C:\Program Files\Adobe\Dreamweaver CS4\Dreamweaver.exe","%1"
======List of files/folders created in the last 2 months======
2010-08-06 16:50:02 ----D---- C:\rsit
2010-08-06 16:23:02 ----D---- C:\Program Files\Trend Micro
2010-08-05 21:08:05 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2010-08-05 09:21:52 ----D---- C:\Users\Erd\AppData\Roaming\Uniblue
2010-08-05 09:21:48 ----D---- C:\Program Files\Uniblue
2010-08-04 22:11:18 ----D---- C:\Program Files\Adobe Media Player
2010-08-03 08:49:38 ----A---- C:\Windows\system32\shell32.dll
2010-07-31 11:31:53 ----D---- C:\Program Files\7-Zip
2010-07-29 14:24:44 ----D---- C:\ProgramData\DivX
2010-07-28 11:42:59 ----D---- C:\Program Files\Application Updater
2010-07-28 11:42:57 ----D---- C:\Program Files\YouTube Downloader Toolbar
2010-07-28 11:42:43 ----D---- C:\Program Files\YouTube Downloader
2010-07-24 18:39:10 ----A---- C:\Windows\system32\drivers\ss_bwhnt.sys
2010-07-24 18:39:10 ----A---- C:\Windows\system32\drivers\ss_bwh.sys
2010-07-24 18:39:10 ----A---- C:\Windows\system32\drivers\ss_bmdm.sys
2010-07-24 18:39:10 ----A---- C:\Windows\system32\drivers\ss_bmdfl.sys
2010-07-24 18:39:10 ----A---- C:\Windows\system32\drivers\ss_bcmnt.sys
2010-07-24 18:39:10 ----A---- C:\Windows\system32\drivers\ss_bcm.sys
2010-07-24 18:39:10 ----A---- C:\Windows\system32\drivers\ss_bbus.sys
2010-07-24 18:38:22 ----D---- C:\ProgramData\Samsung
2010-07-24 18:37:44 ----A---- C:\Windows\system32\FsUsbExService.Exe
2010-07-24 18:37:44 ----A---- C:\Windows\system32\FsUsbExDisk.Sys
2010-07-24 18:37:44 ----A---- C:\Windows\system32\FsUsbExDevice.Dll
2010-07-24 18:36:58 ----D---- C:\Program Files\MarkAny
2010-07-24 18:26:18 ----D---- C:\Windows\system32\Samsung_USB_Drivers
2010-07-24 18:26:01 ----A---- C:\Windows\system32\drivers\StarOpen.sys
2010-07-23 12:14:07 ----D---- C:\ProgramData\Apple Computer
2010-07-23 12:02:33 ----D---- C:\ProgramData\NVIDIA Corporation
2010-07-23 12:01:33 ----A---- C:\Windows\system32\OpenCL.dll
2010-07-23 12:01:33 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2010-07-23 12:01:31 ----A---- C:\Windows\system32\nvoglv32.dll
2010-07-23 12:01:31 ----A---- C:\Windows\system32\nvdecodemft.dll
2010-07-23 12:01:31 ----A---- C:\Windows\system32\nvcuvid.dll
2010-07-23 12:01:31 ----A---- C:\Windows\system32\nvcuvenc.dll
2010-07-23 12:01:31 ----A---- C:\Windows\system32\nvcuda.dll
2010-07-23 12:01:29 ----A---- C:\Windows\system32\nvcompiler.dll
2010-07-23 12:01:29 ----A---- C:\Windows\system32\nvcod1922.dll
2010-07-23 12:01:29 ----A---- C:\Windows\system32\nvcod.dll
2010-07-23 11:31:39 ----D---- C:\Program Files\Rockstar Games
2010-07-22 10:04:16 ----D---- C:\Program Files\The KMPlayer
2010-07-21 12:04:42 ----D---- C:\Users\Erd\AppData\Roaming\Samsung
2010-07-21 12:03:11 ----D---- C:\Program Files\Samsung
2010-07-21 11:48:54 ----D---- C:\ProgramData\PC Drivers HeadQuarters Inc
2010-07-21 11:47:26 ----D---- C:\Program Files\PC Drivers HeadQuarters
2010-07-21 11:42:50 ----D---- C:\Users\Erd\AppData\Roaming\GetRightToGo
2010-07-20 19:37:18 ----D---- C:\Temp
2010-07-20 19:36:41 ----D---- C:\Program Files\QuickTime
2010-07-20 19:36:41 ----D---- C:\Program Files\ImTOO
2010-07-18 18:45:02 ----A---- C:\Windows\BlendSettings.ini
2010-07-18 17:15:44 ----D---- C:\Program Files\Bethesda Softworks
2010-07-17 14:21:38 ----D---- C:\Program Files\Creative
2010-07-17 14:21:38 ----A---- C:\Windows\system32\eax.dll
2010-07-17 13:58:34 ----D---- C:\Program Files\Mafia
2010-07-16 08:53:03 ----D---- C:\Users\Erd\AppData\Roaming\3G Studios
2010-07-11 12:39:32 ----A---- C:\Windows\system32\GUCI_AVS.ini
2010-07-11 12:39:32 ----A---- C:\Windows\system32\drivers\GUCI_AVS.sys
2010-07-11 12:39:31 ----D---- C:\Windows\PixArt
2010-07-11 12:39:31 ----D---- C:\Program Files\Common Files\PAP7501
2010-07-11 12:39:31 ----A---- C:\Windows\system32\GUCI_AVS.dll
2010-07-11 12:07:39 ----A---- C:\Windows\system32\COINST_080603.dll
2010-07-10 21:10:21 ----A---- C:\Windows\game.ini
2010-07-09 21:19:32 ----A---- C:\Windows\system32\pbsvc_apb.exe
2010-07-09 18:35:23 ----D---- C:\Program Files\Realtime Worlds
2010-07-09 16:37:10 ----A---- C:\Windows\system32\nvvsvc.exe
2010-07-09 16:37:10 ----A---- C:\Windows\system32\nvsvc.dll
2010-07-09 16:37:10 ----A---- C:\Windows\system32\nvmctray.dll
2010-07-09 16:37:10 ----A---- C:\Windows\system32\nvcpl.dll
2010-07-06 16:55:34 ----D---- C:\Program Files\Ask.com
2010-07-06 16:54:09 ----D---- C:\Users\Erd\AppData\Roaming\WebcamMax
2010-07-06 16:54:09 ----D---- C:\ProgramData\WebcamMax
2010-07-06 16:53:41 ----D---- C:\Program Files\WebcamMax
2010-07-06 15:55:31 ----AD---- C:\ProgramData\TEMP
2010-07-05 22:15:36 ----D---- C:\Users\Erd\AppData\Roaming\skypePM
2010-07-05 22:14:10 ----D---- C:\Program Files\Common Files\Skype
2010-07-05 18:57:02 ----D---- C:\Program Files\eos_movrec
2010-07-05 18:46:02 ----A---- C:\Windows\system32\drivers\ExtraWebcam_x32_640.sys
2010-07-05 18:46:02 ----A---- C:\Windows\system32\drivers\ExtraWebcam_x32_320.sys
2010-07-05 18:46:02 ----A---- C:\Windows\system32\drivers\ExtraWebcam_x32_1024.sys
2010-07-05 18:46:01 ----D---- C:\Program Files\ExtraWebcam
2010-07-05 18:42:37 ----A---- C:\Windows\system32\PW6ContextMenu.dll
2010-07-05 18:42:37 ----A---- C:\Windows\system32\glut32.dll
2010-07-05 18:42:37 ----A---- C:\Windows\system32\glut.dll
2010-07-05 18:42:17 ----D---- C:\Program Files\Easypano
2010-07-01 12:43:38 ----D---- C:\Program Files\PDFCreator
2010-07-01 12:43:38 ----A---- C:\Windows\system32\MSMPIDE.DLL
2010-06-26 12:16:34 ----D---- C:\Program Files\PhotomatixPro3
2010-06-26 11:55:24 ----D---- C:\Program Files\BSP Multimedia
2010-06-26 11:55:24 ----A---- C:\Windows\system32\WING32.DLL
2010-06-23 23:56:33 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-06-23 23:56:33 ----A---- C:\Windows\system32\PresentationHost.exe
2010-06-23 23:56:33 ----A---- C:\Windows\system32\netfxperf.dll
2010-06-23 23:56:33 ----A---- C:\Windows\system32\mscoree.dll
2010-06-23 23:56:32 ----A---- C:\Windows\system32\dfshim.dll
2010-06-23 07:30:44 ----A---- C:\Windows\system32\ntdll.dll
2010-06-23 07:30:43 ----A---- C:\Windows\system32\msdri.dll
2010-06-23 07:30:43 ----A---- C:\Windows\system32\CPFilters.dll
2010-06-22 20:03:39 ----D---- C:\Program Files\Common Files\NSV
2010-06-22 20:01:21 ----D---- C:\Program Files\Winamp
2010-06-22 08:40:12 ----D---- C:\Users\Erd\AppData\Roaming\DAEMON Tools Pro
2010-06-17 22:24:47 ----D---- C:\Program Files\Portal
2010-06-15 09:32:36 ----A---- C:\Windows\posteriza.INI
2010-06-12 16:12:48 ----D---- C:\Program Files\PESEdit
2010-06-10 18:14:00 ----D---- C:\ProgramData\Frag Games
2010-06-10 18:13:52 ----D---- C:\Remote Programs
2010-06-10 18:13:48 ----D---- C:\Program Files\Frag Games
2010-06-09 07:55:40 ----A---- C:\Windows\system32\win32k.sys
2010-06-09 07:55:38 ----A---- C:\Windows\system32\mshtml.dll
2010-06-09 07:55:38 ----A---- C:\Windows\system32\asycfilt.dll
2010-06-09 07:55:37 ----A---- C:\Windows\system32\mstime.dll
2010-06-09 07:55:37 ----A---- C:\Windows\system32\ieframe.dll
2010-06-09 07:55:36 ----A---- C:\Windows\system32\wininet.dll
2010-06-09 07:55:36 ----A---- C:\Windows\system32\urlmon.dll
2010-06-09 07:55:36 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-06-09 07:55:36 ----A---- C:\Windows\system32\jsproxy.dll
2010-06-09 07:55:36 ----A---- C:\Windows\system32\iedkcs32.dll
2010-06-09 07:55:33 ----A---- C:\Windows\system32\atmlib.dll
2010-06-09 07:55:33 ----A---- C:\Windows\system32\atmfd.dll
2010-06-08 21:16:29 ----D---- C:\Program Files\Common Files\Akamai
2010-06-08 09:27:59 ----D---- C:\Users\Erd\AppData\Roaming\SEGA Corporation
2010-06-08 09:27:54 ----D---- C:\ProgramData\SEGA Corporation
2010-06-08 08:58:35 ----D---- C:\ProgramData\InstallShield
======List of files/folders modified in the last 2 months======
2010-08-06 16:50:51 ----D---- C:\Windows\Temp
2010-08-06 16:50:26 ----D---- C:\Windows\Prefetch
2010-08-06 16:23:02 ----RD---- C:\Program Files
2010-08-06 15:20:58 ----SHD---- C:\Windows\Installer
2010-08-06 15:20:53 ----D---- C:\Program Files\Common Files\Topaz Labs
2010-08-06 15:20:52 ----D---- C:\Program Files\Topaz Labs
2010-08-06 15:20:29 ----SHD---- C:\System Volume Information
2010-08-06 15:12:42 ----D---- C:\Windows\system32\Tasks
2010-08-06 15:12:41 ----D---- C:\Windows\Tasks
2010-08-06 10:59:20 ----D---- C:\Windows
2010-08-06 10:16:24 ----D---- C:\Windows\system32\config
2010-08-06 10:14:50 ----D---- C:\Program Files\Steam
2010-08-06 09:59:31 ----D---- C:\ProgramData\NVIDIA
2010-08-05 22:32:59 ----RSD---- C:\Windows\Fonts
2010-08-05 22:25:16 ----D---- C:\Windows\System32
2010-08-05 22:18:54 ----D---- C:\Program Files\Adobe
2010-08-05 22:18:14 ----D---- C:\Program Files\Common Files\Adobe
2010-08-05 22:14:34 ----D---- C:\ProgramData\Adobe
2010-08-05 21:08:05 ----AHD---- C:\ProgramData
2010-08-05 21:07:48 ----D---- C:\Users\Erd\AppData\Roaming\Adobe
2010-08-05 21:02:10 ----D---- C:\Windows\winsxs
2010-08-05 18:48:52 ----D---- C:\Windows\system32\drivers\Avg
2010-08-05 12:30:43 ----A---- C:\Windows\NeroDigital.ini
2010-08-05 09:14:49 ----D---- C:\Windows\system32\NDF
2010-08-04 22:35:19 ----D---- C:\Windows\system32\drivers
2010-08-04 21:52:14 ----HD---- C:\$AVG8.VAULT$
2010-08-04 20:37:43 ----D---- C:\Program Files\Common Files
2010-08-04 20:31:26 ----D---- C:\Windows\system32\catroot2
2010-08-03 19:41:36 ----D---- C:\Users\Erd\AppData\Roaming\Skype
2010-08-03 08:48:26 ----D---- C:\Windows\system32\catroot
2010-08-01 17:38:12 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-08-01 17:38:11 ----D---- C:\Windows\inf
2010-07-30 23:47:17 ----D---- C:\Program Files\ICQ6.5
2010-07-30 21:13:16 ----D---- C:\Users\Erd\AppData\Roaming\Vso
2010-07-30 18:34:52 ----D---- C:\Program Files\Mozilla Firefox
2010-07-30 17:45:17 ----A---- C:\Windows\win.ini
2010-07-28 10:54:35 ----D---- C:\Program Files\OpenAL
2010-07-28 10:54:35 ----A---- C:\Windows\system32\OpenAL32.dll
2010-07-28 10:54:17 ----RSD---- C:\Windows\assembly
2010-07-25 16:41:40 ----D---- C:\Users\Erd\AppData\Roaming\vlc
2010-07-25 16:40:30 ----D---- C:\Users\Erd\AppData\Roaming\dvdcss
2010-07-24 20:02:33 ----HD---- C:\Program Files\InstallShield Installation Information
2010-07-24 18:39:54 ----D---- C:\Windows\system32\DriverStore
2010-07-24 18:37:27 ----D---- C:\Windows\SoftwareDistribution
2010-07-23 12:51:59 ----SD---- C:\Users\Erd\AppData\Roaming\Microsoft
2010-07-23 12:03:35 ----D---- C:\Program Files\NVIDIA Corporation
2010-07-23 12:02:59 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2010-07-23 11:24:57 ----D---- C:\Program Files\Ubisoft
2010-07-21 12:04:24 ----D---- C:\Program Files\Common Files\PCSuite
2010-07-21 12:02:42 ----D---- C:\ProgramData\Installations
2010-07-20 09:12:05 ----A---- C:\Windows\system32\PnkBstrB.exe
2010-07-19 16:29:27 ----A---- C:\Windows\system32\pbsvc.exe
2010-07-18 13:32:58 ----D---- C:\Program Files\Google
2010-07-15 09:12:57 ----D---- C:\Windows\debug
2010-07-14 23:33:39 ----D---- C:\ProgramData\Microsoft Help
2010-07-12 08:51:54 ----A---- C:\Windows\system32\PnkBstrA.exe
2010-07-11 12:39:31 ----D---- C:\Windows\twain_32
2010-07-11 10:21:56 ----D---- C:\Users\Erd\AppData\Roaming\ICQ
2010-07-10 00:37:00 ----A---- C:\Windows\system32\nvwgf2um.dll
2010-07-10 00:37:00 ----A---- C:\Windows\system32\nvd3dum.dll
2010-07-10 00:37:00 ----A---- C:\Windows\system32\nvapi.dll
2010-07-09 20:50:15 ----D---- C:\Program Files\rajce
2010-07-09 12:36:23 ----D---- C:\ProgramData\Norton
2010-07-08 14:16:20 ----D---- C:\Windows\system32\Macromed
2010-07-08 13:12:55 ----D---- C:\Program Files\Total Video Converter
2010-07-08 07:24:33 ----D---- C:\ProgramData\avg8
2010-07-06 18:00:09 ----D---- C:\Program Files\Electronic Arts
2010-07-05 22:14:09 ----RD---- C:\Program Files\Skype
2010-07-05 18:00:47 ----D---- C:\Program Files\Sony
2010-07-05 18:00:45 ----D---- C:\ProgramData\Sony
2010-07-05 17:59:53 ----D---- C:\Program Files\Zoner
2010-07-05 17:59:15 ----D---- C:\ProgramData\Electronic Arts
2010-07-05 17:57:18 ----D---- C:\Program Files\Common Files\InstallShield
2010-07-02 21:39:05 ----A---- C:\Windows\system32\MRT.exe
2010-06-30 09:33:04 ----D---- C:\Users\Erd\AppData\Roaming\Zoner
2010-06-29 01:27:29 ----D---- C:\Windows\system32\wfp
2010-06-29 01:27:24 ----D---- C:\Windows\system32\wbem
2010-06-29 01:27:23 ----D---- C:\Windows\registration
2010-06-27 08:52:16 ----D---- C:\Windows\Microsoft.NET
2010-06-26 23:56:31 ----D---- C:\Windows\system32\en-US
2010-06-26 23:56:30 ----D---- C:\Program Files\Microsoft.NET
2010-06-26 12:17:46 ----D---- C:\Windows\system
2010-06-25 09:40:41 ----D---- C:\Program Files\City Interactive
2010-06-23 23:56:26 ----D---- C:\Windows\ehome
2010-06-23 23:56:13 ----D---- C:\Windows\AppPatch
2010-06-17 11:16:20 ----D---- C:\Program Files\Common Files\PX Storage Engine
2010-06-12 21:54:21 ----A---- C:\Windows\PhotoBee.INI
2010-06-12 09:20:19 ----D---- C:\Windows\system32\wdi
2010-06-10 09:00:42 ----D---- C:\Windows\system32\migration
2010-06-10 09:00:42 ----D---- C:\Program Files\Internet Explorer
2010-06-08 08:34:31 ----D---- C:\Windows\Downloaded Program Files
2010-06-07 21:07:42 ----D---- C:\Program Files\Atari
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AvgRkx86;avgrkx86.sys; C:\Windows\System32\Drivers\avgrkx86.sys [2010-05-02 12552]
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2009-04-17 44944]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-05-10 691696]
R1 AvgLdx86;AVG AVI Loader Driver x86; C:\Windows\System32\Drivers\avgldx86.sys [2010-05-02 335240]
R1 AvgMfx86;AVG On-access Scanner Minifilter Driver x86; C:\Windows\System32\Drivers\avgmfx86.sys [2010-05-02 27784]
R1 AvgTdiX;AVG8 Network Redirector; C:\Windows\System32\Drivers\avgtdix.sys [2010-05-02 108552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584]
R1 StarOpen;StarOpen; C:\Windows\system32\drivers\StarOpen.sys [2006-07-24 5632]
R2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys [2008-08-14 74720]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2010-03-18 281760]
R2 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2006-04-22 8064]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2010-03-18 25888]
R3 ElbyDelay;ElbyDelay; C:\Windows\System32\Drivers\ElbyDelay.sys [2005-04-12 4608]
R3 FsUsbExDisk;FsUsbExDisk; \??\C:\Windows\system32\FsUsbExDisk.SYS [2010-06-14 36608]
R3 GUCI_AVS;USB2.0 VGA Video Device; C:\Windows\system32\DRIVERS\GUCI_AVS.sys [2009-07-15 595712]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-09-09 2167128]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-14 347264]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2009-12-23 47360]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aawjyw5q;aawjyw5q; C:\Windows\system32\drivers\aawjyw5q.sys []
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 cpuz132;cpuz132; \??\C:\Users\Erd\AppData\Local\Temp\cpuz132\cpuz132_x32.sys []
S3 ENTECH;ENTECH; \??\C:\Windows\system32\DRIVERS\ENTECH.sys [2004-10-25 21664]
S3 EWC321024;ExtraWebcam 1024x768; C:\Windows\system32\DRIVERS\ExtraWebcam_x32_1024.sys [2010-04-12 22912]
S3 EWC32320;ExtraWebcam 320x240; C:\Windows\system32\DRIVERS\ExtraWebcam_x32_320.sys [2010-04-12 22912]
S3 EWC32640;ExtraWebcam 640x480; C:\Windows\system32\DRIVERS\ExtraWebcam_x32_640.sys [2010-04-12 22912]
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2010-01-08 16608]
S3 nmwcd;Nokia USB Phone Parent; C:\Windows\system32\drivers\ccdcmb.sys [2009-10-06 17664]
S3 nmwcdc;Nokia USB Generic; C:\Windows\system32\drivers\ccdcmbo.sys [2009-10-06 22016]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsu.sys [2009-10-06 136704]
S3 nmwcdnsuc;Nokia USB Flashing Generic; C:\Windows\system32\drivers\nmwcdnsuc.sys [2009-10-06 8320]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 133120]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632]
S3 Ser2pl;Prolific Serial port driver; C:\Windows\system32\DRIVERS\ser2pl.sys [2007-12-12 78848]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\Windows\system32\DRIVERS\ss_bbus.sys [2010-04-27 98432]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:\Windows\system32\DRIVERS\ss_bmdfl.sys [2010-04-27 14848]
S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:\Windows\system32\DRIVERS\ss_bmdm.sys [2010-04-27 123648]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2009-10-06 7936]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2009-10-06 7936]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 34944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeActiveFileMonitor8.0;Adobe Active File Monitor V8; C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [2009-10-09 169312]
R2 Akamai;Akamai NetSession Interface; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 Application Updater;Application Updater; C:\Program Files\Application Updater\ApplicationUpdater.exe [2010-02-19 380928]
R2 avg8wd;AVG8 WatchDog; C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2010-05-02 297752]
R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 FsUsbExService;FsUsbExService; C:\Windows\system32\FsUsbExService.Exe [2010-07-04 238952]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2009-08-16 222968]
R2 MyWebSearchService;My Web Search Service; C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwssvc.exe [2010-03-22 28762]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-06-08 877864]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2010-07-09 129640]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\system32\IoctlSvc.exe [2006-12-19 81920]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2010-07-12 75064]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2010-07-09 248936]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-06-24 537896]
R3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2009-10-27 657408]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-01-10 135664]
S2 TwonkyMedia;TwonkyMedia; C:\Program Files\Nokia\Nokia Home Media Server\Media Server\TwonkyMedia.exe [2008-10-20 102400]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-02-03 867080]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 MSSQL$SONY_MEDIAMGR;MSSQL$SONY_MEDIAMGR; C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [2002-12-17 7520337]
S3 MSSQLServerADHelper;MSSQLServerADHelper; C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe [2002-12-17 66112]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 SQLAgent$SONY_MEDIAMGR;SQLAgent$SONY_MEDIAMGR; C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE [2002-12-17 311872]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2010-03-04 332720]
S3 SwitchBoard;SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-05-24 1343400]
-----------------EOF-----------------
Za zkontrolovanie Dakujem predom
Logfile of random's system information tool 1.08 (written by random/random)
Run by Erd at 2010-08-06 16:50:02
Microsoft Windows 7 Ultimate
System drive C: has 9 GB (4%) free of 238 GB
Total RAM: 3071 MB (36% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:50:49, on 6. 8. 2010
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Uniblue\RegistryBooster\rbmonitor.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe
C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE
C:\Program Files\AVG\AVG8\avgtray.exe
C:\Windows\PixArt\PAP7501\GUCI_AVS.exe
C:\Windows\PixArt\PAP7501\PACTray.exe
C:\Program Files\YouTube Downloader Toolbar\SearchSettings.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe
C:\Program Files\Steam\Steam.exe
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe
C:\Program Files\Uniblue\RegistryBooster\registrybooster.exe
C:\Program Files\Samsung\Samsung PC Studio 7\PCSuite.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Common Files\Nokia\NoA\nokiaaserver.exe
C:\Program Files\Adobe\Adobe Photoshop Lightroom 3\lightroom.exe
C:\Users\Erd\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\SYSTEM32\WISPTIS.EXE
C:\Users\Erd\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Erd\Downloads\RSIT.exe
C:\Program Files\trend micro\Erd.exe
C:\Program Files\Windows Media Player\wmplayer.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eu.ask.com?o=15430&l=dis
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: QIPBHO Class - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\Erd\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll
R3 - URLSearchHook: (no name) - - (no file)
R3 - URLSearchHook: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\bar\1.bin\MWSSRCAS.DLL
R3 - URLSearchHook: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\YouTube Downloader Toolbar\SearchSettings.dll
O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\bar\1.bin\MWSSRCAS.DLL
O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WebTransBHO Class - {2DB66063-BB98-466A-AA0D-3E7ACF5ED853} - C:\ProgramData\LangSoft\WebIE.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: QIPBHO - {A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE} - C:\Users\Erd\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\YouTube Downloader Toolbar\SearchSettings.dll
O2 - BHO: YouTube Downloader Toolbar - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files\YouTube Downloader Toolbar\IE\1.0\youtubedownloaderToolbarIE.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: ICQToolBar - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll
O3 - Toolbar: WebTranslator - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - C:\ProgramData\LangSoft\WebIE.dll
O3 - Toolbar: My Web Search - {07B18EA9-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: YouTube Downloader Toolbar - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Files\YouTube Downloader Toolbar\IE\1.0\youtubedownloaderToolbarIE.dll
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [NokiaMServer] C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
O4 - HKLM\..\Run: [My Web Search Bar Search Scope Monitor] "C:\PROGRA~1\MYWEBS~1\bar\1.bin\m3SrchMn.exe" /m=2 /w /h
O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [GUCI_AVS] C:\Windows\PixArt\PAP7501\GUCI_AVS.exe
O4 - HKLM\..\Run: [PACTray] C:\Windows\PixArt\PAP7501\PACTray.exe
O4 - HKLM\..\Run: [SearchSettings] "C:\Program Files\YouTube Downloader Toolbar\SearchSettings.exe"
O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKCU\..\Run: [Google Update] "C:\Users\Erd\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKCU\..\Run: [NokiaOviSuite2] C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe -tray
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Halo2] rundll32.exe C:\Windows\system32\sshnas21.dll,GetMainWnd
O4 - HKCU\..\Run: [EWABQAF7KL] C:\Users\Erd\AppData\Local\Temp\Ewd.exe
O4 - HKCU\..\Run: [WebcamMaxAutoRun] "C:\Program Files\WebcamMax\WebcamMax.exe" -a
O4 - HKCU\..\Run: [AutoStartNPSAgent] C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe
O4 - HKCU\..\Run: [RegistryBooster] "C:\Program Files\Uniblue\RegistryBooster\launcher.exe" delay 20000
O4 - HKCU\..\Run: [Uniblue Registry Booster] C:\Program Files\Uniblue\Registry Booster\RegistryBooster.exe /S
O4 - HKCU\..\Run: [S60 PC Suite Tray] "C:\Program Files\Samsung\Samsung PC Studio 7\PCSuite.exe" -onlytray
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [Samsung.PCSync] "C:\Program Files\Samsung\Samsung PC Studio 7\PcSync2.exe" /NoDialog (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Samsung.PCSync] "C:\Program Files\Samsung\Samsung PC Studio 7\PcSync2.exe" /NoDialog (User 'Default user')
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredi ... 2010032204
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: WebTran - {7E6A20FB-153F-402c-A84B-1A64E1955D3D} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {BFC32E1D-EE75-4A48-BC60-104E11EE2431} - (no file)
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Nastavit překladač - {CC963627-B1DC-40E0-B52A-CF21EE748449} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: &Slovník - {CC963627-B1DC-40E0-B52A-CF21EE748450} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &označený text - {CC963627-B1DC-40E0-B52A-CF21EE748451} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: (no name) - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra 'Tools' menuitem: Přeložit &stránku - {CC963627-B1DC-40E0-B52A-CF21EE748452} - C:\ProgramData\LangSoft\WebIE.dll
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/v ... .2.5.0.cab
O16 - DPF: {784797A8-342D-4072-9486-03C8D0F2F0A1} (Battlefield Heroes Updater) - https://www.battlefieldheroes.com/stati ... 0.53.0.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: Adobe Active File Monitor V8 (AdobeActiveFileMonitor8.0) - Adobe Systems Incorporated - C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe
O23 - Service: Application Updater - Spigot, Inc. - C:\Program Files\Application Updater\ApplicationUpdater.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FsUsbExService - Teruten - C:\Windows\system32\FsUsbExService.Exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: My Web Search Service (MyWebSearchService) - MyWebSearch.com - C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwssvc.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TwonkyMedia - PacketVideo - C:\Program Files\Nokia\Nokia Home Media Server\Media Server\TwonkyMedia.exe
--
End of file - 15039 bytes
======Scheduled tasks folder======
C:\Windows\tasks\AdobeAAMUpdater-1.0-Erd-PC-Erd.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3986417567-2549403839-1746117987-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3986417567-2549403839-1746117987-1001UA.job
C:\Windows\tasks\RegistryBooster.job
C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job
C:\Windows\tasks\{8C3FDD81-7AE0-4605-A46A-2488B179F2A3}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00A6FAF1-072E-44cf-8957-5838F569A31D}]
MyWebSearch Search Assistant BHO - C:\Program Files\MyWebSearch\bar\1.bin\MWSSRCAS.DLL [2010-03-22 54680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{07B18EA1-A523-4961-B6BB-170DE4475CCA}]
mwsBar BHO - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL [2010-03-22 759288]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2DB66063-BB98-466A-AA0D-3E7ACF5ED853}]
WebTransBHO Class - C:\ProgramData\LangSoft\WebIE.dll [2010-01-03 520192]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll [2010-05-02 1111320]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A55F9C95-2BB1-4EA2-BC77-DFAAB78832CE}]
QIPBHO Class - C:\Users\Erd\AppData\Roaming\Microsoft\Internet Explorer\qipsearchbar.dll [2010-03-22 149968]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-05-26 1385864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-12-23 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E312764E-7706-43F1-8DAB-FCDD2B1E416D}]
C:\Program Files\YouTube Downloader Toolbar\SearchSettings.dll [2010-02-19 1109504]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F3FEE66E-E034-436a-86E4-9690573BEE8A}]
YouTube Downloader Toolbar - C:\Program Files\YouTube Downloader Toolbar\IE\1.0\youtubedownloaderToolbarIE.dll [2010-02-19 700416]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2009-11-24 953800]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2009-08-16 962808]
{BFC32E1D-EE75-4A48-BC60-104E11EE2431} - WebTranslator - C:\ProgramData\LangSoft\WebIE.dll [2010-01-03 520192]
{07B18EA9-A523-4961-B6BB-170DE4475CCA} - My Web Search - C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL [2010-03-22 759288]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-05-26 1385864]
{F3FEE66E-E034-436a-86E4-9690573BEE8A} - YouTube Downloader Toolbar - C:\Program Files\YouTube Downloader Toolbar\IE\1.0\youtubedownloaderToolbarIE.dll [2010-02-19 700416]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"NBKeyScan"=C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2008-06-08 2221352]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-12-23 149280]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe []
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-09-09 6281760]
"NokiaMServer"=C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup []
"My Web Search Bar Search Scope Monitor"=C:\PROGRA~1\MYWEBS~1\bar\1.bin\m3SrchMn.exe [2010-03-22 28783]
"MyWebSearch Email Plugin"=C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe [2010-03-22 32849]
"AVG8_TRAY"=C:\PROGRA~1\AVG\AVG8\avgtray.exe [2010-07-12 2048352]
"WinampAgent"=C:\Program Files\Winamp\winampa.exe []
"GUCI_AVS"=C:\Windows\PixArt\PAP7501\GUCI_AVS.exe [2007-12-10 323584]
"PACTray"=C:\Windows\PixArt\PAP7501\PACTray.exe [2009-06-09 319488]
"NPSStartup"= []
"SearchSettings"=C:\Program Files\YouTube Downloader Toolbar\SearchSettings.exe [2010-02-19 974848]
"AdobeCS4ServiceManager"=C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2008-08-14 611712]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"SwitchBoard"=C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Erd\AppData\Local\Google\Update\GoogleUpdate.exe [2009-12-23 135664]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\daemon.exe [2009-04-23 691656]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2008-06-24 1840424]
"OEXPRESS"= []
""= []
"NokiaOviSuite2"=C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe [2009-12-10 401728]
"Steam"=c:\program files\steam\steam.exe [2010-05-07 1238352]
"PC Suite Tray"=C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe [2009-11-11 1451520]
"MyWebSearch Email Plugin"=C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe [2010-03-22 32849]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1173504]
"Halo2"=C:\Windows\system32\sshnas21.dll,GetMainWnd []
"EWABQAF7KL"=C:\Users\Erd\AppData\Local\Temp\Ewd.exe []
"WebcamMaxAutoRun"=C:\Program Files\WebcamMax\WebcamMax.exe [2010-01-08 1561232]
"AutoStartNPSAgent"=C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe [2010-07-04 95576]
"RegistryBooster"=C:\Program Files\Uniblue\RegistryBooster\launcher.exe [2010-07-27 67448]
"Uniblue Registry Booster"=C:\Program Files\Uniblue\Registry Booster\RegistryBooster.exe [2007-01-12 1740800]
"S60 PC Suite Tray"=C:\Program Files\Samsung\Samsung PC Studio 7\PCSuite.exe [2008-12-06 699392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="avgrsstx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - "C:\Program Files\Adobe\Dreamweaver CS4\Dreamweaver.exe","%1"
======List of files/folders created in the last 2 months======
2010-08-06 16:50:02 ----D---- C:\rsit
2010-08-06 16:23:02 ----D---- C:\Program Files\Trend Micro
2010-08-05 21:08:05 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2010-08-05 09:21:52 ----D---- C:\Users\Erd\AppData\Roaming\Uniblue
2010-08-05 09:21:48 ----D---- C:\Program Files\Uniblue
2010-08-04 22:11:18 ----D---- C:\Program Files\Adobe Media Player
2010-08-03 08:49:38 ----A---- C:\Windows\system32\shell32.dll
2010-07-31 11:31:53 ----D---- C:\Program Files\7-Zip
2010-07-29 14:24:44 ----D---- C:\ProgramData\DivX
2010-07-28 11:42:59 ----D---- C:\Program Files\Application Updater
2010-07-28 11:42:57 ----D---- C:\Program Files\YouTube Downloader Toolbar
2010-07-28 11:42:43 ----D---- C:\Program Files\YouTube Downloader
2010-07-24 18:39:10 ----A---- C:\Windows\system32\drivers\ss_bwhnt.sys
2010-07-24 18:39:10 ----A---- C:\Windows\system32\drivers\ss_bwh.sys
2010-07-24 18:39:10 ----A---- C:\Windows\system32\drivers\ss_bmdm.sys
2010-07-24 18:39:10 ----A---- C:\Windows\system32\drivers\ss_bmdfl.sys
2010-07-24 18:39:10 ----A---- C:\Windows\system32\drivers\ss_bcmnt.sys
2010-07-24 18:39:10 ----A---- C:\Windows\system32\drivers\ss_bcm.sys
2010-07-24 18:39:10 ----A---- C:\Windows\system32\drivers\ss_bbus.sys
2010-07-24 18:38:22 ----D---- C:\ProgramData\Samsung
2010-07-24 18:37:44 ----A---- C:\Windows\system32\FsUsbExService.Exe
2010-07-24 18:37:44 ----A---- C:\Windows\system32\FsUsbExDisk.Sys
2010-07-24 18:37:44 ----A---- C:\Windows\system32\FsUsbExDevice.Dll
2010-07-24 18:36:58 ----D---- C:\Program Files\MarkAny
2010-07-24 18:26:18 ----D---- C:\Windows\system32\Samsung_USB_Drivers
2010-07-24 18:26:01 ----A---- C:\Windows\system32\drivers\StarOpen.sys
2010-07-23 12:14:07 ----D---- C:\ProgramData\Apple Computer
2010-07-23 12:02:33 ----D---- C:\ProgramData\NVIDIA Corporation
2010-07-23 12:01:33 ----A---- C:\Windows\system32\OpenCL.dll
2010-07-23 12:01:33 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2010-07-23 12:01:31 ----A---- C:\Windows\system32\nvoglv32.dll
2010-07-23 12:01:31 ----A---- C:\Windows\system32\nvdecodemft.dll
2010-07-23 12:01:31 ----A---- C:\Windows\system32\nvcuvid.dll
2010-07-23 12:01:31 ----A---- C:\Windows\system32\nvcuvenc.dll
2010-07-23 12:01:31 ----A---- C:\Windows\system32\nvcuda.dll
2010-07-23 12:01:29 ----A---- C:\Windows\system32\nvcompiler.dll
2010-07-23 12:01:29 ----A---- C:\Windows\system32\nvcod1922.dll
2010-07-23 12:01:29 ----A---- C:\Windows\system32\nvcod.dll
2010-07-23 11:31:39 ----D---- C:\Program Files\Rockstar Games
2010-07-22 10:04:16 ----D---- C:\Program Files\The KMPlayer
2010-07-21 12:04:42 ----D---- C:\Users\Erd\AppData\Roaming\Samsung
2010-07-21 12:03:11 ----D---- C:\Program Files\Samsung
2010-07-21 11:48:54 ----D---- C:\ProgramData\PC Drivers HeadQuarters Inc
2010-07-21 11:47:26 ----D---- C:\Program Files\PC Drivers HeadQuarters
2010-07-21 11:42:50 ----D---- C:\Users\Erd\AppData\Roaming\GetRightToGo
2010-07-20 19:37:18 ----D---- C:\Temp
2010-07-20 19:36:41 ----D---- C:\Program Files\QuickTime
2010-07-20 19:36:41 ----D---- C:\Program Files\ImTOO
2010-07-18 18:45:02 ----A---- C:\Windows\BlendSettings.ini
2010-07-18 17:15:44 ----D---- C:\Program Files\Bethesda Softworks
2010-07-17 14:21:38 ----D---- C:\Program Files\Creative
2010-07-17 14:21:38 ----A---- C:\Windows\system32\eax.dll
2010-07-17 13:58:34 ----D---- C:\Program Files\Mafia
2010-07-16 08:53:03 ----D---- C:\Users\Erd\AppData\Roaming\3G Studios
2010-07-11 12:39:32 ----A---- C:\Windows\system32\GUCI_AVS.ini
2010-07-11 12:39:32 ----A---- C:\Windows\system32\drivers\GUCI_AVS.sys
2010-07-11 12:39:31 ----D---- C:\Windows\PixArt
2010-07-11 12:39:31 ----D---- C:\Program Files\Common Files\PAP7501
2010-07-11 12:39:31 ----A---- C:\Windows\system32\GUCI_AVS.dll
2010-07-11 12:07:39 ----A---- C:\Windows\system32\COINST_080603.dll
2010-07-10 21:10:21 ----A---- C:\Windows\game.ini
2010-07-09 21:19:32 ----A---- C:\Windows\system32\pbsvc_apb.exe
2010-07-09 18:35:23 ----D---- C:\Program Files\Realtime Worlds
2010-07-09 16:37:10 ----A---- C:\Windows\system32\nvvsvc.exe
2010-07-09 16:37:10 ----A---- C:\Windows\system32\nvsvc.dll
2010-07-09 16:37:10 ----A---- C:\Windows\system32\nvmctray.dll
2010-07-09 16:37:10 ----A---- C:\Windows\system32\nvcpl.dll
2010-07-06 16:55:34 ----D---- C:\Program Files\Ask.com
2010-07-06 16:54:09 ----D---- C:\Users\Erd\AppData\Roaming\WebcamMax
2010-07-06 16:54:09 ----D---- C:\ProgramData\WebcamMax
2010-07-06 16:53:41 ----D---- C:\Program Files\WebcamMax
2010-07-06 15:55:31 ----AD---- C:\ProgramData\TEMP
2010-07-05 22:15:36 ----D---- C:\Users\Erd\AppData\Roaming\skypePM
2010-07-05 22:14:10 ----D---- C:\Program Files\Common Files\Skype
2010-07-05 18:57:02 ----D---- C:\Program Files\eos_movrec
2010-07-05 18:46:02 ----A---- C:\Windows\system32\drivers\ExtraWebcam_x32_640.sys
2010-07-05 18:46:02 ----A---- C:\Windows\system32\drivers\ExtraWebcam_x32_320.sys
2010-07-05 18:46:02 ----A---- C:\Windows\system32\drivers\ExtraWebcam_x32_1024.sys
2010-07-05 18:46:01 ----D---- C:\Program Files\ExtraWebcam
2010-07-05 18:42:37 ----A---- C:\Windows\system32\PW6ContextMenu.dll
2010-07-05 18:42:37 ----A---- C:\Windows\system32\glut32.dll
2010-07-05 18:42:37 ----A---- C:\Windows\system32\glut.dll
2010-07-05 18:42:17 ----D---- C:\Program Files\Easypano
2010-07-01 12:43:38 ----D---- C:\Program Files\PDFCreator
2010-07-01 12:43:38 ----A---- C:\Windows\system32\MSMPIDE.DLL
2010-06-26 12:16:34 ----D---- C:\Program Files\PhotomatixPro3
2010-06-26 11:55:24 ----D---- C:\Program Files\BSP Multimedia
2010-06-26 11:55:24 ----A---- C:\Windows\system32\WING32.DLL
2010-06-23 23:56:33 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-06-23 23:56:33 ----A---- C:\Windows\system32\PresentationHost.exe
2010-06-23 23:56:33 ----A---- C:\Windows\system32\netfxperf.dll
2010-06-23 23:56:33 ----A---- C:\Windows\system32\mscoree.dll
2010-06-23 23:56:32 ----A---- C:\Windows\system32\dfshim.dll
2010-06-23 07:30:44 ----A---- C:\Windows\system32\ntdll.dll
2010-06-23 07:30:43 ----A---- C:\Windows\system32\msdri.dll
2010-06-23 07:30:43 ----A---- C:\Windows\system32\CPFilters.dll
2010-06-22 20:03:39 ----D---- C:\Program Files\Common Files\NSV
2010-06-22 20:01:21 ----D---- C:\Program Files\Winamp
2010-06-22 08:40:12 ----D---- C:\Users\Erd\AppData\Roaming\DAEMON Tools Pro
2010-06-17 22:24:47 ----D---- C:\Program Files\Portal
2010-06-15 09:32:36 ----A---- C:\Windows\posteriza.INI
2010-06-12 16:12:48 ----D---- C:\Program Files\PESEdit
2010-06-10 18:14:00 ----D---- C:\ProgramData\Frag Games
2010-06-10 18:13:52 ----D---- C:\Remote Programs
2010-06-10 18:13:48 ----D---- C:\Program Files\Frag Games
2010-06-09 07:55:40 ----A---- C:\Windows\system32\win32k.sys
2010-06-09 07:55:38 ----A---- C:\Windows\system32\mshtml.dll
2010-06-09 07:55:38 ----A---- C:\Windows\system32\asycfilt.dll
2010-06-09 07:55:37 ----A---- C:\Windows\system32\mstime.dll
2010-06-09 07:55:37 ----A---- C:\Windows\system32\ieframe.dll
2010-06-09 07:55:36 ----A---- C:\Windows\system32\wininet.dll
2010-06-09 07:55:36 ----A---- C:\Windows\system32\urlmon.dll
2010-06-09 07:55:36 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-06-09 07:55:36 ----A---- C:\Windows\system32\jsproxy.dll
2010-06-09 07:55:36 ----A---- C:\Windows\system32\iedkcs32.dll
2010-06-09 07:55:33 ----A---- C:\Windows\system32\atmlib.dll
2010-06-09 07:55:33 ----A---- C:\Windows\system32\atmfd.dll
2010-06-08 21:16:29 ----D---- C:\Program Files\Common Files\Akamai
2010-06-08 09:27:59 ----D---- C:\Users\Erd\AppData\Roaming\SEGA Corporation
2010-06-08 09:27:54 ----D---- C:\ProgramData\SEGA Corporation
2010-06-08 08:58:35 ----D---- C:\ProgramData\InstallShield
======List of files/folders modified in the last 2 months======
2010-08-06 16:50:51 ----D---- C:\Windows\Temp
2010-08-06 16:50:26 ----D---- C:\Windows\Prefetch
2010-08-06 16:23:02 ----RD---- C:\Program Files
2010-08-06 15:20:58 ----SHD---- C:\Windows\Installer
2010-08-06 15:20:53 ----D---- C:\Program Files\Common Files\Topaz Labs
2010-08-06 15:20:52 ----D---- C:\Program Files\Topaz Labs
2010-08-06 15:20:29 ----SHD---- C:\System Volume Information
2010-08-06 15:12:42 ----D---- C:\Windows\system32\Tasks
2010-08-06 15:12:41 ----D---- C:\Windows\Tasks
2010-08-06 10:59:20 ----D---- C:\Windows
2010-08-06 10:16:24 ----D---- C:\Windows\system32\config
2010-08-06 10:14:50 ----D---- C:\Program Files\Steam
2010-08-06 09:59:31 ----D---- C:\ProgramData\NVIDIA
2010-08-05 22:32:59 ----RSD---- C:\Windows\Fonts
2010-08-05 22:25:16 ----D---- C:\Windows\System32
2010-08-05 22:18:54 ----D---- C:\Program Files\Adobe
2010-08-05 22:18:14 ----D---- C:\Program Files\Common Files\Adobe
2010-08-05 22:14:34 ----D---- C:\ProgramData\Adobe
2010-08-05 21:08:05 ----AHD---- C:\ProgramData
2010-08-05 21:07:48 ----D---- C:\Users\Erd\AppData\Roaming\Adobe
2010-08-05 21:02:10 ----D---- C:\Windows\winsxs
2010-08-05 18:48:52 ----D---- C:\Windows\system32\drivers\Avg
2010-08-05 12:30:43 ----A---- C:\Windows\NeroDigital.ini
2010-08-05 09:14:49 ----D---- C:\Windows\system32\NDF
2010-08-04 22:35:19 ----D---- C:\Windows\system32\drivers
2010-08-04 21:52:14 ----HD---- C:\$AVG8.VAULT$
2010-08-04 20:37:43 ----D---- C:\Program Files\Common Files
2010-08-04 20:31:26 ----D---- C:\Windows\system32\catroot2
2010-08-03 19:41:36 ----D---- C:\Users\Erd\AppData\Roaming\Skype
2010-08-03 08:48:26 ----D---- C:\Windows\system32\catroot
2010-08-01 17:38:12 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-08-01 17:38:11 ----D---- C:\Windows\inf
2010-07-30 23:47:17 ----D---- C:\Program Files\ICQ6.5
2010-07-30 21:13:16 ----D---- C:\Users\Erd\AppData\Roaming\Vso
2010-07-30 18:34:52 ----D---- C:\Program Files\Mozilla Firefox
2010-07-30 17:45:17 ----A---- C:\Windows\win.ini
2010-07-28 10:54:35 ----D---- C:\Program Files\OpenAL
2010-07-28 10:54:35 ----A---- C:\Windows\system32\OpenAL32.dll
2010-07-28 10:54:17 ----RSD---- C:\Windows\assembly
2010-07-25 16:41:40 ----D---- C:\Users\Erd\AppData\Roaming\vlc
2010-07-25 16:40:30 ----D---- C:\Users\Erd\AppData\Roaming\dvdcss
2010-07-24 20:02:33 ----HD---- C:\Program Files\InstallShield Installation Information
2010-07-24 18:39:54 ----D---- C:\Windows\system32\DriverStore
2010-07-24 18:37:27 ----D---- C:\Windows\SoftwareDistribution
2010-07-23 12:51:59 ----SD---- C:\Users\Erd\AppData\Roaming\Microsoft
2010-07-23 12:03:35 ----D---- C:\Program Files\NVIDIA Corporation
2010-07-23 12:02:59 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2010-07-23 11:24:57 ----D---- C:\Program Files\Ubisoft
2010-07-21 12:04:24 ----D---- C:\Program Files\Common Files\PCSuite
2010-07-21 12:02:42 ----D---- C:\ProgramData\Installations
2010-07-20 09:12:05 ----A---- C:\Windows\system32\PnkBstrB.exe
2010-07-19 16:29:27 ----A---- C:\Windows\system32\pbsvc.exe
2010-07-18 13:32:58 ----D---- C:\Program Files\Google
2010-07-15 09:12:57 ----D---- C:\Windows\debug
2010-07-14 23:33:39 ----D---- C:\ProgramData\Microsoft Help
2010-07-12 08:51:54 ----A---- C:\Windows\system32\PnkBstrA.exe
2010-07-11 12:39:31 ----D---- C:\Windows\twain_32
2010-07-11 10:21:56 ----D---- C:\Users\Erd\AppData\Roaming\ICQ
2010-07-10 00:37:00 ----A---- C:\Windows\system32\nvwgf2um.dll
2010-07-10 00:37:00 ----A---- C:\Windows\system32\nvd3dum.dll
2010-07-10 00:37:00 ----A---- C:\Windows\system32\nvapi.dll
2010-07-09 20:50:15 ----D---- C:\Program Files\rajce
2010-07-09 12:36:23 ----D---- C:\ProgramData\Norton
2010-07-08 14:16:20 ----D---- C:\Windows\system32\Macromed
2010-07-08 13:12:55 ----D---- C:\Program Files\Total Video Converter
2010-07-08 07:24:33 ----D---- C:\ProgramData\avg8
2010-07-06 18:00:09 ----D---- C:\Program Files\Electronic Arts
2010-07-05 22:14:09 ----RD---- C:\Program Files\Skype
2010-07-05 18:00:47 ----D---- C:\Program Files\Sony
2010-07-05 18:00:45 ----D---- C:\ProgramData\Sony
2010-07-05 17:59:53 ----D---- C:\Program Files\Zoner
2010-07-05 17:59:15 ----D---- C:\ProgramData\Electronic Arts
2010-07-05 17:57:18 ----D---- C:\Program Files\Common Files\InstallShield
2010-07-02 21:39:05 ----A---- C:\Windows\system32\MRT.exe
2010-06-30 09:33:04 ----D---- C:\Users\Erd\AppData\Roaming\Zoner
2010-06-29 01:27:29 ----D---- C:\Windows\system32\wfp
2010-06-29 01:27:24 ----D---- C:\Windows\system32\wbem
2010-06-29 01:27:23 ----D---- C:\Windows\registration
2010-06-27 08:52:16 ----D---- C:\Windows\Microsoft.NET
2010-06-26 23:56:31 ----D---- C:\Windows\system32\en-US
2010-06-26 23:56:30 ----D---- C:\Program Files\Microsoft.NET
2010-06-26 12:17:46 ----D---- C:\Windows\system
2010-06-25 09:40:41 ----D---- C:\Program Files\City Interactive
2010-06-23 23:56:26 ----D---- C:\Windows\ehome
2010-06-23 23:56:13 ----D---- C:\Windows\AppPatch
2010-06-17 11:16:20 ----D---- C:\Program Files\Common Files\PX Storage Engine
2010-06-12 21:54:21 ----A---- C:\Windows\PhotoBee.INI
2010-06-12 09:20:19 ----D---- C:\Windows\system32\wdi
2010-06-10 09:00:42 ----D---- C:\Windows\system32\migration
2010-06-10 09:00:42 ----D---- C:\Program Files\Internet Explorer
2010-06-08 08:34:31 ----D---- C:\Windows\Downloaded Program Files
2010-06-07 21:07:42 ----D---- C:\Program Files\Atari
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AvgRkx86;avgrkx86.sys; C:\Windows\System32\Drivers\avgrkx86.sys [2010-05-02 12552]
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2009-04-17 44944]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-05-10 691696]
R1 AvgLdx86;AVG AVI Loader Driver x86; C:\Windows\System32\Drivers\avgldx86.sys [2010-05-02 335240]
R1 AvgMfx86;AVG On-access Scanner Minifilter Driver x86; C:\Windows\System32\Drivers\avgmfx86.sys [2010-05-02 27784]
R1 AvgTdiX;AVG8 Network Redirector; C:\Windows\System32\Drivers\avgtdix.sys [2010-05-02 108552]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584]
R1 StarOpen;StarOpen; C:\Windows\system32\drivers\StarOpen.sys [2006-07-24 5632]
R2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys [2008-08-14 74720]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2010-03-18 281760]
R2 ElbyCDIO;ElbyCDIO Driver; C:\Windows\System32\Drivers\ElbyCDIO.sys [2006-04-22 8064]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2010-03-18 25888]
R3 ElbyDelay;ElbyDelay; C:\Windows\System32\Drivers\ElbyDelay.sys [2005-04-12 4608]
R3 FsUsbExDisk;FsUsbExDisk; \??\C:\Windows\system32\FsUsbExDisk.SYS [2010-06-14 36608]
R3 GUCI_AVS;USB2.0 VGA Video Device; C:\Windows\system32\DRIVERS\GUCI_AVS.sys [2009-07-15 595712]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2008-09-09 2167128]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-14 347264]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2009-12-23 47360]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aawjyw5q;aawjyw5q; C:\Windows\system32\drivers\aawjyw5q.sys []
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 cpuz132;cpuz132; \??\C:\Users\Erd\AppData\Local\Temp\cpuz132\cpuz132_x32.sys []
S3 ENTECH;ENTECH; \??\C:\Windows\system32\DRIVERS\ENTECH.sys [2004-10-25 21664]
S3 EWC321024;ExtraWebcam 1024x768; C:\Windows\system32\DRIVERS\ExtraWebcam_x32_1024.sys [2010-04-12 22912]
S3 EWC32320;ExtraWebcam 320x240; C:\Windows\system32\DRIVERS\ExtraWebcam_x32_320.sys [2010-04-12 22912]
S3 EWC32640;ExtraWebcam 640x480; C:\Windows\system32\DRIVERS\ExtraWebcam_x32_640.sys [2010-04-12 22912]
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2010-01-08 16608]
S3 nmwcd;Nokia USB Phone Parent; C:\Windows\system32\drivers\ccdcmb.sys [2009-10-06 17664]
S3 nmwcdc;Nokia USB Generic; C:\Windows\system32\drivers\ccdcmbo.sys [2009-10-06 22016]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsu.sys [2009-10-06 136704]
S3 nmwcdnsuc;Nokia USB Flashing Generic; C:\Windows\system32\drivers\nmwcdnsuc.sys [2009-10-06 8320]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 133120]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632]
S3 Ser2pl;Prolific Serial port driver; C:\Windows\system32\DRIVERS\ser2pl.sys [2007-12-12 78848]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\Windows\system32\DRIVERS\ss_bbus.sys [2010-04-27 98432]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:\Windows\system32\DRIVERS\ss_bmdfl.sys [2010-04-27 14848]
S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:\Windows\system32\DRIVERS\ss_bmdm.sys [2010-04-27 123648]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2009-10-06 7936]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2009-10-06 7936]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 34944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeActiveFileMonitor8.0;Adobe Active File Monitor V8; C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [2009-10-09 169312]
R2 Akamai;Akamai NetSession Interface; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 Application Updater;Application Updater; C:\Program Files\Application Updater\ApplicationUpdater.exe [2010-02-19 380928]
R2 avg8wd;AVG8 WatchDog; C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2010-05-02 297752]
R2 Bonjour Service;##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762##; C:\Program Files\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 FsUsbExService;FsUsbExService; C:\Windows\system32\FsUsbExService.Exe [2010-07-04 238952]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2009-08-16 222968]
R2 MyWebSearchService;My Web Search Service; C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwssvc.exe [2010-03-22 28762]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-06-08 877864]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2010-07-09 129640]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\system32\IoctlSvc.exe [2006-12-19 81920]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2010-07-12 75064]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2010-07-09 248936]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-06-24 537896]
R3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2009-10-27 657408]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-01-10 135664]
S2 TwonkyMedia;TwonkyMedia; C:\Program Files\Nokia\Nokia Home Media Server\Media Server\TwonkyMedia.exe [2008-10-20 102400]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-02-03 867080]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 MSSQL$SONY_MEDIAMGR;MSSQL$SONY_MEDIAMGR; C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [2002-12-17 7520337]
S3 MSSQLServerADHelper;MSSQLServerADHelper; C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe [2002-12-17 66112]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 SQLAgent$SONY_MEDIAMGR;SQLAgent$SONY_MEDIAMGR; C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE [2002-12-17 311872]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2010-03-04 332720]
S3 SwitchBoard;SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2010-05-24 1343400]
-----------------EOF-----------------