Zpomalil se mi start PC
Napsal: 21 zář 2010 12:19
Dobrý den
přikládám log svého PC, který se mi při vypínání i startu neuvěřitelně zpomalil - každá akce cca 5min.
Děkuji předem.
LOG 1
Logfile of random's system information tool 1.08 (written by random/random)
Run by Bobek at 2010-09-21 13:05:10
Microsoft Windows 7 Ultimate
System drive C: has 380 GB (65%) free of 583 GB
Total RAM: 6133 MB (59% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:05:24, on 21.9.2010
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v9.00 (9.00.7930.16406)
Boot mode: Normal
Running processes:
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Bobek.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://extranet.cpas.cz/CookieAuth.dll ... &formdir=3
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: QuickStores-Toolbar - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - mscoree.dll (file missing)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O2 - BHO: Kwyshell MidpX BHO - {EBE9E2B5-B526-48BC-AD46-687263EDCB0E} - C:\Program Files (x86)\Kwyshell\MidpX\JadInvoker\MidpInvoker.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: Softonic English FF Toolbar - {ffa0793e-3980-4be4-8234-048fa665f700} - C:\Program Files (x86)\Softonic_English_FF\tbSoft.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Softonic English FF Toolbar - {ffa0793e-3980-4be4-8234-048fa665f700} - C:\Program Files (x86)\Softonic_English_FF\tbSoft.dll
O3 - Toolbar: QuickStores-Toolbar - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - mscoree.dll (file missing)
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O3 - Toolbar: Kwyshell MidpX - {EBE9E2B5-B526-48BC-AD46-687263EDCB0E} - C:\Program Files (x86)\Kwyshell\MidpX\JadInvoker\MidpInvoker.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files (x86)\Trojan Remover\Trjscan.exe /boot
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: Append Link Target to Existing PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Append to Existing PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert Link Target to Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Link to &MidpX - C:\Program Files (x86)\Kwyshell\MidpX\JadInvoker\Extent\jad_wrap.htm
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_2D06158FAC79A790.dll/cmsidewiki.html
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: ICQ7.1 - {71BFC818-0CED-42D6-9C87-5142918957EE} - C:\Program Files (x86)\ICQ7.1\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.1 - {71BFC818-0CED-42D6-9C87-5142918957EE} - C:\Program Files (x86)\ICQ7.1\ICQ.exe
O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {1663ed61-23eb-11d2-b92f-008048fdd814} (MeadCo ScriptX Advanced) - https://kdp.cpas.cz/EXT_FA/modules/smsx.cab
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.exe.imgfarm.com/images/nocach ... .0.1.1.cab
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - http://www.nvidia.com/content/DriverDow ... ab_nvd.cab
O16 - DPF: {29E333D2-AD69-41A7-82B3-25606ACF97FA} (KDP600.CsSysInfo Class) - https://kdp.cpas.cz/EXT_FA/modules/modules.cab
O16 - DPF: {6480028B-090D-40B2-92ED-A97015AA98BB} (KDP400.CsXML XStgPath Class) - https://kdp.cpas.cz/EXT_FA/modules/modules.cab
O16 - DPF: {6D484870-65FC-4AD5-8788-2C8F28A79416} (KDP400.CsXML CsSign Class) - https://kdp.cpas.cz/EXT_FA/modules/modules.cab
O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} (NVIDIA Smart Scan) - http://www.nvidia.com/content/DriverDow ... rtScan.cab
O16 - DPF: {BCCDF398-8835-4A2C-978A-31148A6CC3BE} (KDP400.CsXML XRtData Class) - https://kdp.cpas.cz/EXT_FA/modules/modules.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O16 - DPF: {F5176AF4-CC0D-408B-92CD-AF482DCA83A0} (KDP400.CsXML CsXML Class) - https://kdp.cpas.cz/EXT_FA/modules/modules.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwar ... /CTPID.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ABBYY FineReader 9.0 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.9.0) - ABBYY (BIT Software) - C:\Program Files (x86)\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe
O23 - Service: Služba Acronis Scheduler2 (AcrSch2Svc) - Unknown owner - C:\Program Files (x86)\Common Files\Acronis\Plán2\schedul2.exe
O23 - Service: Acronis Nonstop Backup service (afcdpsrv) - Acronis - C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASO3DiskOptimizer - Systweak Inc. - C:\Program Files (x86)\Advanced System Optimizer 3\ASO3DefragSrv64.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\Alwil Software\Avast5\afwServ.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: @%systemroot%\system32\CISVC.EXE,-1 (CISVC) - Unknown owner - C:\Windows\system32\CISVC.EXE (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Firebird Guardian - DefaultInstance (FirebirdGuardianDefaultInstance) - The Firebird Project - C:\Program Files (x86)\Firebird\Firebird_1_5\bin\fbguard.exe
O23 - Service: Firebird Server - DefaultInstance (FirebirdServerDefaultInstance) - The Firebird Project - C:\Program Files (x86)\Firebird\Firebird_1_5\bin\fbserver.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FLEXnet Licensing Service 64 - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Virtual Disk Service Manager (MSR Service) - Unknown owner - C:\Program Files (x86)\Clarus\Samsung SecretZone\MSSvc.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\SysWOW64\IoctlSvc.exe
O23 - Service: Prime95 Service - Unknown owner - C:\Program Files (x86)\Prime95\prime95.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Aktivátor Správce výběru OS Acronis (Správce výběru OS) - Unknown owner - C:\Program Files (x86)\Acronis\DiskDirector\OSS\reinstall_svc.exe
O23 - Service: @C:\Program Files (x86)\TuneUp Utilities 2010\TuneUpDefragService.exe,-1 (TuneUp.Defrag) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2010\TuneUpDefragService.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2010\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 18202 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\Alwil Software\Avast5\AvastSvc.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files\Alwil Software\Avast5\afwServ.exe"
"C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
taskeng.exe {ACE5C85B-DDFD-4C6D-8585-368586C92EBE}
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe" -service
"taskhost.exe"
"C:\Program Files (x86)\Common Files\Acronis\Plán2\schedul2.exe"
"C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe"
C:\Windows\AutoKMS.exe
"C:\Program Files (x86)\Advanced System Optimizer 3\ASO3DefragSrv64.exe"
C:\Windows\system32\CISVC.EXE
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Firebird\Firebird_1_5\bin\fbguard.exe" -s
C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt
"C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE"
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\Clarus\Samsung SecretZone\MSSvc.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
cmd /c ""C:\ProgramData\AutoKMS\AutoKMS.cmd" "
\??\C:\Windows\system32\conhost.exe
cscript //nologo "C:\ProgramData\AutoKMS\Resources\LicenseManagement\OSPP.VBS" /sethst:127.0.0.1
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\SysWOW64\IoctlSvc.exe
C:\Windows\System32\svchost.exe -k HPZ12
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
C:\Windows\System32\tcpsvcs.exe
"C:\Program Files (x86)\TuneUp Utilities 2010\TuneUpUtilitiesService64.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Acronis\DiskDirector\OSS\reinstall_svc.exe"
"C:\Program Files (x86)\TuneUp Utilities 2010\TuneUpUtilitiesApp64.exe" /TUStart /pid:3592
WLIDSvcM.exe 3652
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Firebird\Firebird_1_5\bin\fbserver.exe" -s
C:\Windows\system32\svchost.exe -k HPService
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-17d1dc0b-9573-47f5-a217-0a15a643bc8b -SystemEventPortName:HostProcess-cc6961f7-10fb-472e-92c5-ff0a36ddb8fd -IoCancelEventPortName:HostProcess-4727e3bd-8099-4e40-98e6-7ad6740acfda -NonStateChangingEventPortName:HostProcess-760b4db2-79a8-4d11-9227-00db232abc16 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:6d76f061-58bf-448e-aef0-4bc5ab9d220e
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files\Alwil Software\Avast5\AvastUI.exe" /nogui
"C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=DnsImpact/_max_500ms_queue_prefetch/GlobalSdch/_global_enable_sdch/SocketLateBinding/_enable_late_binding/ --channel=5616.95c1c0.1414925303
"C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=DnsImpact/_max_500ms_queue_prefetch/GlobalSdch/_global_enable_sdch/SocketLateBinding/_enable_late_binding/ --channel=5616.94f460.1360611063
"C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=DnsImpact/_max_500ms_queue_prefetch/GlobalSdch/_global_enable_sdch/SocketLateBinding/_enable_late_binding/ --channel=5616.94f540.1316724099
"C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=DnsImpact/_max_500ms_queue_prefetch/GlobalSdch/_global_enable_sdch/SocketLateBinding/_enable_late_binding/ --channel=5616.95cd20.1723311360
"C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe" --lang=cs --plugin-data-dir="C:\Users\Bobek\AppData\Local\Google\Chrome\User Data\Default" --type=plugin --channel=5616.6ac3c60.581474542 --plugin-path=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
C:\Windows\system32\sppsvc.exe
C:\Windows\servicing\TrustedInstaller.exe
taskhost.exe $(Arg0)
"C:\Users\Bobek\Desktop\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
======Scheduled tasks folder======
C:\Windows\tasks\Ad-Aware Update (Daily 1).job
C:\Windows\tasks\Ad-Aware Update (Daily 2).job
C:\Windows\tasks\Ad-Aware Update (Daily 3).job
C:\Windows\tasks\Ad-Aware Update (Daily 4).job
C:\Windows\tasks\Ad-Aware Update (Weekly).job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2009-08-06 132448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2010-09-17 391344]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-23 328248]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10EDB994-47F8-43F7-AE96-F2EA63E9F90F}]
QuickStores-Toolbar - C:\Windows\system32\mscoree.dll [2009-11-25 444752]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2009-11-25 202080]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2010-09-17 292528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2010-06-19 349640]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08 804136]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2010-08-04 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EBE9E2B5-B526-48BC-AD46-687263EDCB0E}]
Kwyshell MidpX - C:\Program Files (x86)\Kwyshell\MidpX\JadInvoker\MidpInvoker.dll [2004-12-03 100864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2010-06-19 349640]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ffa0793e-3980-4be4-8234-048fa665f700}]
Softonic English FF Toolbar - C:\Program Files (x86)\Softonic_English_FF\tbSoft.dll [2009-11-09 2331672]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-23 509496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2010-09-17 391344]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2010-06-19 349640]
{ffa0793e-3980-4be4-8234-048fa665f700} - Softonic English FF Toolbar - C:\Program Files (x86)\Softonic_English_FF\tbSoft.dll [2009-11-09 2331672]
{10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - QuickStores-Toolbar - C:\Windows\system32\mscoree.dll [2009-11-25 444752]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2009-11-25 1496408]
{EBE9E2B5-B526-48BC-AD46-687263EDCB0E} - Kwyshell MidpX - C:\Program Files (x86)\Kwyshell\MidpX\JadInvoker\MidpInvoker.dll [2004-12-03 100864]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2010-09-17 292528]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Skytel"=C:\Program Files\Realtek\Audio\HDA\Skytel.exe [2009-07-06 1833504]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1475072]
""= []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 8.0]
C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe [2010-06-19 640440]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Photo Downloader]
C:\Program Files (x86)\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe [2007-03-09 63712]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AppleSyncNotifier]
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [2010-09-08 47904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\bluebirds]
C:\Users\Bobek\Bluebirds\BlueBirds.exe [2009-04-29 270336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer]
C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaOviSuite2]
C:\Program Files (x86)\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe [2010-02-24 385928]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [2010-05-14 1479680]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PWRISOVM.EXE]
C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [2009-11-09 180224]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime\QTTask.exe [2010-09-08 421888]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SearchSettings]
C:\Program Files (x86)\pdfforge Toolbar\SearchSettings.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender User Interface]
C:\Program Files\Windows Defender\MSASCui.exe [2009-07-14 961024]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Bobek^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Samsung Auto Backup Guage.lnk]
C:\PROGRA~2\Clarus\SAMSUN~1\ISFGuage.exe [2009-05-15 888832]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2010-09-07 2838912]
"AppleSyncNotifier"=C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [2010-09-08 47904]
""= []
"TrojanScanner"=C:\Program Files (x86)\Trojan Remover\Trjscan.exe [2009-08-04 1068424]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Lavasoft Ad-Aware Service]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoInstrumentation"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -
======List of files/folders created in the last 1 months======
2010-09-21 13:05:10 ----D---- C:\rsit
2010-09-21 13:05:10 ----D---- C:\Program Files\trend micro
2010-09-21 12:38:40 ----A---- C:\Windows\SYSWOW64\ztvunrar36.dll
2010-09-21 12:38:40 ----A---- C:\Windows\SYSWOW64\ztvunace26.dll
2010-09-21 12:38:40 ----A---- C:\Windows\SYSWOW64\ztvcabinet.dll
2010-09-21 12:38:40 ----A---- C:\Windows\SYSWOW64\UNRAR3.dll
2010-09-21 12:38:40 ----A---- C:\Windows\SYSWOW64\unacev2.dll
2010-09-21 12:38:39 ----D---- C:\Users\Bobek\AppData\Roaming\Simply Super Software
2010-09-21 12:38:39 ----D---- C:\ProgramData\Simply Super Software
2010-09-21 12:38:39 ----D---- C:\Program Files (x86)\Trojan Remover
2010-09-21 08:38:10 ----D---- C:\Program Files (x86)\QuickTime
2010-09-20 23:57:18 ----D---- C:\Program Files\Yamicsoft
2010-09-20 19:47:13 ----RA---- C:\Windows\system32\AdobePDFUI.dll
2010-09-19 06:57:25 ----D---- C:\Users\Bobek\AppData\Roaming\Smart PC Solutions
2010-09-19 06:55:36 ----D---- C:\Program Files (x86)\Smart PC Solutions
2010-09-17 20:59:42 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2010-09-17 20:59:42 ----A---- C:\Windows\SYSWOW64\inseng.dll
2010-09-17 20:59:42 ----A---- C:\Windows\system32\jscript9.dll
2010-09-17 20:59:42 ----A---- C:\Windows\system32\jscript.dll
2010-09-17 20:59:42 ----A---- C:\Windows\system32\inseng.dll
2010-09-17 20:59:41 ----A---- C:\Windows\SYSWOW64\jscript.dll
2010-09-17 20:59:41 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2010-09-17 20:59:41 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2010-09-17 20:59:41 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2010-09-17 20:59:41 ----A---- C:\Windows\SYSWOW64\ieui.dll
2010-09-17 20:59:41 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2010-09-17 20:59:41 ----A---- C:\Windows\system32\imgutil.dll
2010-09-17 20:59:41 ----A---- C:\Windows\system32\iexpress.exe
2010-09-17 20:59:41 ----A---- C:\Windows\system32\ieUnatt.exe
2010-09-17 20:59:41 ----A---- C:\Windows\system32\ieui.dll
2010-09-17 20:59:41 ----A---- C:\Windows\system32\iesysprep.dll
2010-09-17 20:59:39 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2010-09-17 20:59:39 ----A---- C:\Windows\SYSWOW64\mshta.exe
2010-09-17 20:59:39 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2010-09-17 20:59:39 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2010-09-17 20:59:39 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2010-09-17 20:59:39 ----A---- C:\Windows\system32\mshtml.dll
2010-09-17 20:59:39 ----A---- C:\Windows\system32\mshta.exe
2010-09-17 20:59:39 ----A---- C:\Windows\system32\msfeedssync.exe
2010-09-17 20:59:39 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-09-17 20:59:39 ----A---- C:\Windows\system32\msfeeds.dll
2010-09-17 20:59:38 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2010-09-17 20:59:38 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2010-09-17 20:59:38 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2010-09-17 20:59:38 ----A---- C:\Windows\system32\licmgr10.dll
2010-09-17 20:59:38 ----A---- C:\Windows\system32\jsproxy.dll
2010-09-17 20:59:38 ----A---- C:\Windows\system32\IEAdvpack.dll
2010-09-17 20:59:38 ----A---- C:\Windows\system32\ie4uinit.exe
2010-09-17 20:59:37 ----A---- C:\Windows\SYSWOW64\ieakui.dll
2010-09-17 20:59:37 ----A---- C:\Windows\SYSWOW64\ieakeng.dll
2010-09-17 20:59:37 ----A---- C:\Windows\SYSWOW64\ie4uinit.exe
2010-09-17 20:59:37 ----A---- C:\Windows\system32\ieakui.dll
2010-09-17 20:59:36 ----A---- C:\Windows\SYSWOW64\ieaksie.dll
2010-09-17 20:59:36 ----A---- C:\Windows\SYSWOW64\icardie.dll
2010-09-17 20:59:36 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2010-09-17 20:59:36 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2010-09-17 20:59:36 ----A---- C:\Windows\SYSWOW64\admparse.dll
2010-09-17 20:59:36 ----A---- C:\Windows\system32\ieaksie.dll
2010-09-17 20:59:36 ----A---- C:\Windows\system32\ieakeng.dll
2010-09-17 20:59:36 ----A---- C:\Windows\system32\icardie.dll
2010-09-17 20:59:36 ----A---- C:\Windows\system32\dxtrans.dll
2010-09-17 20:59:36 ----A---- C:\Windows\system32\dxtmsft.dll
2010-09-17 20:59:36 ----A---- C:\Windows\system32\admparse.dll
2010-09-17 20:59:34 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2010-09-17 20:59:34 ----A---- C:\Windows\system32\iepeers.dll
2010-09-17 20:59:31 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2010-09-17 20:59:31 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2010-09-17 20:59:31 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2010-09-17 20:59:31 ----A---- C:\Windows\system32\iesetup.dll
2010-09-17 20:59:31 ----A---- C:\Windows\system32\iertutil.dll
2010-09-17 20:59:31 ----A---- C:\Windows\system32\iernonce.dll
2010-09-17 20:59:27 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2010-09-17 20:59:27 ----A---- C:\Windows\system32\iedkcs32.dll
2010-09-17 20:59:27 ----A---- C:\Windows\system32\ieapfltr.dll
2010-09-17 20:59:26 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2010-09-17 20:59:26 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2010-09-17 20:59:26 ----A---- C:\Windows\system32\ieframe.dll
2010-09-17 20:59:25 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2010-09-17 20:59:25 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2010-09-17 20:59:25 ----A---- C:\Windows\SYSWOW64\url.dll
2010-09-17 20:59:25 ----A---- C:\Windows\system32\vbscript.dll
2010-09-17 20:59:25 ----A---- C:\Windows\system32\urlmon.dll
2010-09-17 20:59:25 ----A---- C:\Windows\system32\url.dll
2010-09-17 20:59:24 ----A---- C:\Windows\SYSWOW64\wininet.dll
2010-09-17 20:59:24 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2010-09-17 20:59:24 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2010-09-17 20:59:24 ----A---- C:\Windows\system32\wininet.dll
2010-09-17 20:59:24 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2010-09-17 20:59:24 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2010-09-17 20:59:23 ----A---- C:\Windows\SYSWOW64\wextract.exe
2010-09-17 20:59:23 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2010-09-17 20:59:23 ----A---- C:\Windows\SYSWOW64\occache.dll
2010-09-17 20:59:23 ----A---- C:\Windows\SYSWOW64\msrating.dll
2010-09-17 20:59:23 ----A---- C:\Windows\SYSWOW64\msls31.dll
2010-09-17 20:59:23 ----A---- C:\Windows\system32\wextract.exe
2010-09-17 20:59:23 ----A---- C:\Windows\system32\webcheck.dll
2010-09-17 20:59:23 ----A---- C:\Windows\system32\occache.dll
2010-09-17 20:59:23 ----A---- C:\Windows\system32\msrating.dll
2010-09-17 20:59:23 ----A---- C:\Windows\system32\mshtmled.dll
2010-09-17 20:59:22 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2010-09-17 20:59:22 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2010-09-17 20:59:22 ----A---- C:\Windows\system32\msls31.dll
2010-09-17 20:59:22 ----A---- C:\Windows\system32\mshtmler.dll
2010-09-17 20:59:21 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2010-09-17 20:59:21 ----A---- C:\Windows\system32\pngfilt.dll
2010-09-17 20:57:58 ----A---- C:\Windows\system32\mfps.dll
2010-09-17 20:57:57 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2010-09-17 20:57:57 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2010-09-17 20:57:57 ----A---- C:\Windows\system32\WMVDECOD.DLL
2010-09-17 20:57:57 ----A---- C:\Windows\system32\mfreadwrite.dll
2010-09-17 20:57:56 ----A---- C:\Windows\system32\mf.dll
2010-09-17 20:57:55 ----A---- C:\Windows\SYSWOW64\mf.dll
2010-09-17 20:56:35 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2010-09-17 20:56:35 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2010-09-17 20:56:35 ----A---- C:\Windows\system32\d2d1.dll
2010-09-17 20:56:34 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2010-09-17 20:56:34 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2010-09-17 20:56:34 ----A---- C:\Windows\system32\FntCache.dll
2010-09-17 20:56:34 ----A---- C:\Windows\system32\DWrite.dll
2010-09-17 20:56:34 ----A---- C:\Windows\system32\d3d10warp.dll
2010-09-17 20:56:34 ----A---- C:\Windows\system32\d3d10_1core.dll
2010-09-17 20:55:14 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2010-09-17 20:55:14 ----A---- C:\Windows\system32\XpsRasterService.dll
2010-09-17 20:55:14 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2010-09-17 20:55:13 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2010-09-17 20:53:38 ----A---- C:\Windows\system32\ExplorerFrame.dll
2010-09-17 20:53:37 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2010-09-17 20:51:18 ----D---- C:\Program Files (x86)\Feedback Tool
2010-09-17 14:42:24 ----A---- C:\Windows\SYSWOW64\uxtuneup.dll
2010-09-17 14:42:24 ----A---- C:\Windows\SYSWOW64\authuitu.dll
2010-09-17 14:42:24 ----A---- C:\Windows\system32\uxtuneup.dll
2010-09-17 14:42:24 ----A---- C:\Windows\system32\authuitu.dll
2010-09-17 00:44:23 ----D---- C:\ProgramData\Elaborate Bytes
2010-09-17 00:43:28 ----D---- C:\Program Files (x86)\Elaborate Bytes
2010-09-17 00:11:36 ----A---- C:\Windows\SYSWOW64\systeminfo3.dll
2010-09-15 20:15:08 ----D---- C:\Program Files (x86)\Photosynth
2010-09-15 20:00:47 ----D---- C:\Program Files (x86)\MSECache
2010-09-14 22:06:28 ----A---- C:\Windows\system32\spoolsv.exe
2010-09-14 21:49:23 ----D---- C:\Program Files (x86)\Microsoft Works
2010-09-14 21:48:46 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2010-09-14 21:48:20 ----D---- C:\Windows\PCHEALTH
2010-09-14 21:46:34 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2010-09-14 21:46:00 ----D---- C:\Program Files (x86)\Microsoft Office
2010-09-14 21:45:02 ----RHD---- C:\MSOCache
2010-09-14 21:04:42 ----A---- C:\Windows\AutoKMS.exe
2010-09-14 20:55:24 ----D---- C:\ProgramData\AutoKMS
2010-09-14 18:25:40 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2010-09-14 18:25:39 ----A---- C:\Windows\system32\drivers\aswSP.sys
2010-09-14 18:25:37 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2010-09-14 18:25:35 ----A---- C:\Windows\system32\drivers\aswFW.sys
2010-09-14 18:25:13 ----A---- C:\Windows\system32\drivers\aswRdr.sys
2010-09-14 18:25:13 ----A---- C:\Windows\system32\drivers\aswNdis2.sys
2010-09-14 18:25:11 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2010-09-14 18:25:09 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2010-09-14 18:24:54 ----A---- C:\Windows\system32\drivers\aswNdis.sys
2010-09-14 18:24:50 ----A---- C:\Windows\SYSWOW64\aswBoot.exe
2010-09-14 07:35:22 ----D---- C:\Program Files (x86)\WinAVI Video Converter
2010-09-07 08:57:49 ----D---- C:\Program Files\iTunes
2010-09-07 08:57:49 ----D---- C:\Program Files\iPod
2010-09-07 08:57:49 ----D---- C:\Program Files (x86)\iTunes
2010-09-06 14:30:34 ----D---- C:\Users\Bobek\AppData\Roaming\Leadertech
2010-09-02 21:26:36 ----D---- C:\Windows\SYSWOW64\drivers\uk-UA
2010-09-02 21:26:28 ----D---- C:\Windows\uk-UA
2010-09-02 21:26:27 ----D---- C:\Windows\system32\drivers\uk-UA
2010-09-02 21:19:31 ----D---- C:\Windows\lv-LV
2010-09-02 21:19:23 ----D---- C:\Windows\SYSWOW64\drivers\lv-LV
2010-09-02 21:19:14 ----D---- C:\Windows\system32\drivers\lv-LV
2010-09-02 21:12:30 ----D---- C:\Windows\SYSWOW64\zh-CHT
2010-09-02 21:12:13 ----D---- C:\Windows\SYSWOW64\drivers\zh-TW
2010-09-02 21:12:07 ----D---- C:\Windows\zh-TW
2010-09-02 21:12:04 ----D---- C:\Windows\system32\zh-CHT
2010-09-02 21:11:46 ----D---- C:\Windows\system32\drivers\zh-TW
2010-09-02 21:11:46 ----D---- C:\Windows\system32\drivers\zh-HK
2010-09-02 21:00:49 ----D---- C:\Windows\SYSWOW64\es
2010-09-02 21:00:49 ----D---- C:\Windows\SYSWOW64\drivers\es-ES
2010-09-02 21:00:49 ----D---- C:\Windows\SYSWOW64\0C0A
2010-09-02 21:00:22 ----D---- C:\Windows\system32\es
2010-09-02 21:00:22 ----D---- C:\Windows\system32\0C0A
2010-09-02 21:00:20 ----D---- C:\Windows\system32\drivers\es-ES
2010-09-02 20:59:48 ----D---- C:\Windows\es-ES
2010-09-02 20:48:45 ----D---- C:\Windows\SYSWOW64\he
2010-09-02 20:48:45 ----D---- C:\Windows\SYSWOW64\drivers\he-IL
2010-09-02 20:48:28 ----D---- C:\Windows\system32\he
2010-09-02 20:48:27 ----D---- C:\Windows\system32\drivers\he-IL
2010-09-02 20:48:04 ----D---- C:\Windows\he-IL
2010-09-02 20:39:45 ----D---- C:\Windows\tr-TR
2010-09-02 20:39:21 ----D---- C:\Windows\SYSWOW64\tr
2010-09-02 20:39:21 ----D---- C:\Windows\SYSWOW64\drivers\tr-TR
2010-09-02 20:38:52 ----D---- C:\Windows\system32\tr
2010-09-02 20:38:52 ----D---- C:\Windows\system32\drivers\tr-TR
2010-09-02 20:30:30 ----D---- C:\Windows\SYSWOW64\drivers\ko-KR
2010-09-02 20:30:11 ----D---- C:\Windows\SYSWOW64\ko
2010-09-02 20:30:07 ----D---- C:\Windows\ko-KR
2010-09-02 20:30:03 ----D---- C:\Windows\system32\drivers\ko-KR
2010-09-02 20:29:40 ----D---- C:\Windows\system32\ko
2010-09-02 20:20:59 ----D---- C:\Windows\SYSWOW64\drivers\da-DK
2010-09-02 20:20:41 ----D---- C:\Windows\SYSWOW64\da
2010-09-02 20:20:39 ----D---- C:\Windows\da-DK
2010-09-02 20:20:35 ----D---- C:\Windows\system32\drivers\da-DK
2010-09-02 20:20:04 ----D---- C:\Windows\system32\da
2010-09-02 20:12:24 ----D---- C:\Windows\pt-PT
2010-09-02 20:12:02 ----D---- C:\Windows\SYSWOW64\drivers\pt-PT
2010-09-02 20:12:01 ----D---- C:\Windows\SYSWOW64\pt
2010-09-02 20:11:38 ----D---- C:\Windows\system32\drivers\pt-PT
2010-09-02 20:11:32 ----D---- C:\Windows\system32\pt
2010-09-02 20:04:50 ----D---- C:\Windows\SYSWOW64\drivers\et-EE
2010-09-02 20:04:42 ----D---- C:\Windows\system32\drivers\et-EE
2010-09-02 20:04:25 ----D---- C:\Windows\et-EE
2010-09-02 19:58:59 ----D---- C:\Windows\SYSWOW64\drivers\bg-BG
2010-09-02 19:58:52 ----D---- C:\Windows\system32\drivers\bg-BG
2010-09-02 19:58:52 ----D---- C:\Windows\bg-BG
2010-09-02 19:52:36 ----D---- C:\Windows\SYSWOW64\zh-CHS
2010-09-02 19:52:36 ----D---- C:\Windows\SYSWOW64\drivers\zh-CN
2010-09-02 19:52:06 ----D---- C:\Windows\system32\zh-CHS
2010-09-02 19:52:04 ----D---- C:\Windows\system32\drivers\zh-CN
2010-09-02 19:51:30 ----D---- C:\Windows\zh-CN
2010-09-02 19:42:33 ----D---- C:\Windows\SYSWOW64\nl
2010-09-02 19:42:33 ----D---- C:\Windows\SYSWOW64\0413
2010-09-02 19:42:33 ----D---- C:\Windows\nl-NL
2010-09-02 19:42:14 ----D---- C:\Windows\SYSWOW64\drivers\nl-NL
2010-09-02 19:42:07 ----D---- C:\Windows\system32\nl
2010-09-02 19:42:07 ----D---- C:\Windows\system32\0413
2010-09-02 19:41:46 ----D---- C:\Windows\system32\drivers\nl-NL
2010-09-02 19:34:13 ----D---- C:\Windows\SYSWOW64\sv
2010-09-02 19:34:13 ----D---- C:\Windows\SYSWOW64\drivers\sv-SE
2010-09-02 19:33:47 ----D---- C:\Windows\system32\sv
2010-09-02 19:33:46 ----D---- C:\Windows\system32\drivers\sv-SE
2010-09-02 19:33:22 ----D---- C:\Windows\sv-SE
2010-09-02 19:26:20 ----D---- C:\Windows\de-DE
2010-09-02 19:26:01 ----D---- C:\Windows\SYSWOW64\0407
2010-09-02 19:26:00 ----D---- C:\Windows\SYSWOW64\drivers\de-DE
2010-09-02 19:26:00 ----D---- C:\Windows\SYSWOW64\de
2010-09-02 19:25:33 ----D---- C:\Windows\system32\0407
2010-09-02 19:25:31 ----D---- C:\Windows\system32\drivers\de-DE
2010-09-02 19:25:27 ----D---- C:\Windows\system32\de
2010-09-02 19:16:37 ----D---- C:\Windows\lt-LT
2010-09-02 19:16:29 ----D---- C:\Windows\SYSWOW64\drivers\lt-LT
2010-09-02 19:16:21 ----D---- C:\Windows\system32\drivers\lt-LT
2010-09-02 19:11:27 ----D---- C:\Windows\SYSWOW64\drivers\hr-HR
2010-09-02 19:11:20 ----D---- C:\Windows\system32\drivers\hr-HR
2010-09-02 19:11:20 ----D---- C:\Windows\hr-HR
2010-09-02 19:05:22 ----D---- C:\Windows\SYSWOW64\ru
2010-09-02 19:05:22 ----D---- C:\Windows\SYSWOW64\drivers\ru-RU
2010-09-02 19:04:52 ----D---- C:\Windows\system32\drivers\ru-RU
2010-09-02 19:04:44 ----D---- C:\Windows\system32\ru
2010-09-02 19:04:26 ----D---- C:\Windows\ru-RU
2010-09-02 18:58:02 ----D---- C:\Windows\it-IT
2010-09-02 18:57:43 ----D---- C:\Windows\SYSWOW64\drivers\it-IT
2010-09-02 18:57:43 ----D---- C:\Windows\SYSWOW64\0410
2010-09-02 18:57:40 ----D---- C:\Windows\SYSWOW64\it
2010-09-02 18:57:14 ----D---- C:\Windows\system32\drivers\it-IT
2010-09-02 18:57:14 ----D---- C:\Windows\system32\0410
2010-09-02 18:57:04 ----D---- C:\Windows\system32\it
2010-09-02 18:50:27 ----D---- C:\Windows\ja-JP
2010-09-02 18:49:58 ----D---- C:\Windows\SYSWOW64\ja
2010-09-02 18:49:58 ----D---- C:\Windows\SYSWOW64\drivers\ja-JP
2010-09-02 18:49:58 ----D---- C:\Windows\SYSWOW64\0411
2010-09-02 18:49:26 ----D---- C:\Windows\system32\ja
2010-09-02 18:49:26 ----D---- C:\Windows\system32\0411
2010-09-02 18:49:25 ----D---- C:\Windows\system32\drivers\ja-JP
2010-09-02 18:44:31 ----A---- C:\Windows\SYSWOW64\lzhfldr2.dll
2010-09-02 18:44:10 ----A---- C:\Windows\system32\lzhfldr2.dll
2010-09-02 18:42:29 ----D---- C:\Windows\SYSWOW64\no
2010-09-02 18:42:29 ----D---- C:\Windows\SYSWOW64\drivers\nb-NO
2010-09-02 18:42:10 ----D---- C:\Windows\nb-NO
2010-09-02 18:42:08 ----D---- C:\Windows\system32\no
2010-09-02 18:42:06 ----D---- C:\Windows\system32\drivers\nb-NO
2010-09-02 18:36:42 ----D---- C:\Windows\SYSWOW64\drivers\sl-SI
2010-09-02 18:36:31 ----D---- C:\Windows\sl-SI
2010-09-02 18:36:30 ----D---- C:\Windows\system32\drivers\sl-SI
2010-09-02 18:31:53 ----D---- C:\Windows\el-GR
2010-09-02 18:31:30 ----D---- C:\Windows\SYSWOW64\el
2010-09-02 18:31:30 ----D---- C:\Windows\SYSWOW64\drivers\el-GR
2010-09-02 18:31:08 ----D---- C:\Windows\system32\el
2010-09-02 18:31:07 ----D---- C:\Windows\system32\drivers\el-GR
2010-09-02 18:25:01 ----D---- C:\Windows\pt-BR
2010-09-02 18:24:43 ----D---- C:\Windows\SYSWOW64\drivers\pt-BR
2010-09-02 18:24:15 ----D---- C:\Windows\system32\drivers\pt-BR
2010-09-02 18:19:01 ----D---- C:\Windows\SYSWOW64\drivers\ro-RO
2010-09-02 18:19:01 ----D---- C:\Windows\ro-RO
2010-09-02 18:18:53 ----D---- C:\Windows\system32\drivers\ro-RO
2010-09-02 18:14:26 ----D---- C:\Windows\SYSWOW64\drivers\pl-PL
2010-09-02 18:14:07 ----D---- C:\Windows\SYSWOW64\pl
2010-09-02 18:14:05 ----D---- C:\Windows\pl-PL
2010-09-02 18:14:02 ----D---- C:\Windows\system32\drivers\pl-PL
2010-09-02 18:13:36 ----D---- C:\Windows\system32\pl
2010-09-02 18:03:04 ----D---- C:\Windows\fr-FR
2010-09-02 18:02:50 ----D---- C:\Windows\SYSWOW64\drivers\fr-FR
2010-09-02 18:02:50 ----D---- C:\Windows\SYSWOW64\040C
2010-09-02 18:02:49 ----D---- C:\Windows\SYSWOW64\fr
2010-09-02 18:02:49 ----D---- C:\Windows\SYSWOW64\drivers\ar-SA
2010-09-02 18:02:49 ----D---- C:\Windows\SYSWOW64\ar
2010-09-02 18:02:22 ----D---- C:\Windows\ar-SA
2010-09-02 18:02:13 ----D---- C:\Windows\system32\drivers\fr-FR
2010-09-02 18:02:13 ----D---- C:\Windows\system32\ar
2010-09-02 18:02:13 ----D---- C:\Windows\system32\040C
2010-09-02 18:02:11 ----D---- C:\Windows\system32\fr
2010-09-02 18:02:11 ----D---- C:\Windows\system32\drivers\ar-SA
2010-09-02 17:56:02 ----D---- C:\Windows\SYSWOW64\hu
2010-09-02 17:56:02 ----D---- C:\Windows\SYSWOW64\drivers\hu-HU
2010-09-02 17:55:40 ----D---- C:\Windows\system32\hu
2010-09-02 17:55:39 ----D---- C:\Windows\system32\drivers\hu-HU
2010-09-02 17:55:06 ----D---- C:\Windows\hu-HU
2010-09-02 17:50:41 ----D---- C:\Windows\SYSWOW64\drivers\sr-Latn-CS
2010-09-02 17:50:41 ----D---- C:\Windows\sr-Latn-CS
2010-09-02 17:50:33 ----D---- C:\Windows\system32\drivers\sr-Latn-CS
2010-09-02 17:47:15 ----D---- C:\Windows\SYSWOW64\drivers\sk-SK
2010-09-02 17:47:14 ----D---- C:\Windows\sk-SK
2010-09-02 17:47:07 ----D---- C:\Windows\system32\drivers\sk-SK
2010-09-02 17:43:47 ----D---- C:\Windows\SYSWOW64\drivers\th-TH
2010-09-02 17:43:38 ----D---- C:\Windows\system32\drivers\th-TH
2010-09-02 17:43:20 ----D---- C:\Windows\th-TH
2010-09-02 17:39:13 ----D---- C:\Windows\fi-FI
2010-09-02 17:38:48 ----D---- C:\Windows\SYSWOW64\fi
2010-09-02 17:38:48 ----D---- C:\Windows\SYSWOW64\drivers\fi-FI
2010-09-02 17:38:16 ----D---- C:\Windows\system32\fi
2010-09-02 17:38:16 ----D---- C:\Windows\system32\drivers\fi-FI
2010-08-29 17:15:34 ----D---- C:\Program Files (x86)\Prime95
2010-08-28 15:34:13 ----A---- C:\Windows\game.ini
2010-08-27 16:25:00 ----D---- C:\Program Files (x86)\Lavalys
2010-08-26 12:25:50 ----D---- C:\Program Files (x86)\Final Doomsday - Plutonia
2010-08-25 10:37:14 ----D---- C:\Program Files (x86)\Doomsday-Doom2
2010-08-25 07:21:10 ----D---- C:\Program Files (x86)\WinZip
2010-08-25 06:33:57 ----D---- C:\ProgramData\NVIDIA Corporation
2010-08-25 06:13:57 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2010-08-25 06:13:57 ----A---- C:\Windows\system32\oleaut32.dll
2010-08-24 23:30:03 ----A---- C:\Windows\doom3.ini
2010-08-24 23:25:57 ----D---- C:\Program Files (x86)\DOOM 3
2010-08-23 14:43:13 ----D---- C:\Program Files (x86)\Plane Arcade
2010-08-23 13:59:50 ----A---- C:\Windows\SYSWOW64\javaws.exe
2010-08-23 13:59:50 ----A---- C:\Windows\SYSWOW64\javaw.exe
2010-08-23 13:59:50 ----A---- C:\Windows\SYSWOW64\java.exe
přikládám log svého PC, který se mi při vypínání i startu neuvěřitelně zpomalil - každá akce cca 5min.
Děkuji předem.
LOG 1
Logfile of random's system information tool 1.08 (written by random/random)
Run by Bobek at 2010-09-21 13:05:10
Microsoft Windows 7 Ultimate
System drive C: has 380 GB (65%) free of 583 GB
Total RAM: 6133 MB (59% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:05:24, on 21.9.2010
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v9.00 (9.00.7930.16406)
Boot mode: Normal
Running processes:
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Bobek.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://extranet.cpas.cz/CookieAuth.dll ... &formdir=3
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: QuickStores-Toolbar - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - mscoree.dll (file missing)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Pomocná služba pro přihlášení ke službě Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O2 - BHO: Kwyshell MidpX BHO - {EBE9E2B5-B526-48BC-AD46-687263EDCB0E} - C:\Program Files (x86)\Kwyshell\MidpX\JadInvoker\MidpInvoker.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: Softonic English FF Toolbar - {ffa0793e-3980-4be4-8234-048fa665f700} - C:\Program Files (x86)\Softonic_English_FF\tbSoft.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Softonic English FF Toolbar - {ffa0793e-3980-4be4-8234-048fa665f700} - C:\Program Files (x86)\Softonic_English_FF\tbSoft.dll
O3 - Toolbar: QuickStores-Toolbar - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - mscoree.dll (file missing)
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O3 - Toolbar: Kwyshell MidpX - {EBE9E2B5-B526-48BC-AD46-687263EDCB0E} - C:\Program Files (x86)\Kwyshell\MidpX\JadInvoker\MidpInvoker.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files (x86)\Trojan Remover\Trjscan.exe /boot
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: Append Link Target to Existing PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Append to Existing PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert Link Target to Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Link to &MidpX - C:\Program Files (x86)\Kwyshell\MidpX\JadInvoker\Extent\jad_wrap.htm
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_2D06158FAC79A790.dll/cmsidewiki.html
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: ICQ7.1 - {71BFC818-0CED-42D6-9C87-5142918957EE} - C:\Program Files (x86)\ICQ7.1\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.1 - {71BFC818-0CED-42D6-9C87-5142918957EE} - C:\Program Files (x86)\ICQ7.1\ICQ.exe
O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Zobrazit nebo skrýt HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {1663ed61-23eb-11d2-b92f-008048fdd814} (MeadCo ScriptX Advanced) - https://kdp.cpas.cz/EXT_FA/modules/smsx.cab
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.exe.imgfarm.com/images/nocach ... .0.1.1.cab
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - http://www.nvidia.com/content/DriverDow ... ab_nvd.cab
O16 - DPF: {29E333D2-AD69-41A7-82B3-25606ACF97FA} (KDP600.CsSysInfo Class) - https://kdp.cpas.cz/EXT_FA/modules/modules.cab
O16 - DPF: {6480028B-090D-40B2-92ED-A97015AA98BB} (KDP400.CsXML XStgPath Class) - https://kdp.cpas.cz/EXT_FA/modules/modules.cab
O16 - DPF: {6D484870-65FC-4AD5-8788-2C8F28A79416} (KDP400.CsXML CsSign Class) - https://kdp.cpas.cz/EXT_FA/modules/modules.cab
O16 - DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} (NVIDIA Smart Scan) - http://www.nvidia.com/content/DriverDow ... rtScan.cab
O16 - DPF: {BCCDF398-8835-4A2C-978A-31148A6CC3BE} (KDP400.CsXML XRtData Class) - https://kdp.cpas.cz/EXT_FA/modules/modules.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} (get_atlcom Class) - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O16 - DPF: {F5176AF4-CC0D-408B-92CD-AF482DCA83A0} (KDP400.CsXML CsXML Class) - https://kdp.cpas.cz/EXT_FA/modules/modules.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://ccfiles.creative.com/Web/softwar ... /CTPID.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ABBYY FineReader 9.0 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.9.0) - ABBYY (BIT Software) - C:\Program Files (x86)\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe
O23 - Service: Služba Acronis Scheduler2 (AcrSch2Svc) - Unknown owner - C:\Program Files (x86)\Common Files\Acronis\Plán2\schedul2.exe
O23 - Service: Acronis Nonstop Backup service (afcdpsrv) - Acronis - C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: ASO3DiskOptimizer - Systweak Inc. - C:\Program Files (x86)\Advanced System Optimizer 3\ASO3DefragSrv64.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\Alwil Software\Avast5\afwServ.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: @%systemroot%\system32\CISVC.EXE,-1 (CISVC) - Unknown owner - C:\Windows\system32\CISVC.EXE (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Firebird Guardian - DefaultInstance (FirebirdGuardianDefaultInstance) - The Firebird Project - C:\Program Files (x86)\Firebird\Firebird_1_5\bin\fbguard.exe
O23 - Service: Firebird Server - DefaultInstance (FirebirdServerDefaultInstance) - The Firebird Project - C:\Program Files (x86)\Firebird\Firebird_1_5\bin\fbserver.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: FLEXnet Licensing Service 64 - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Virtual Disk Service Manager (MSR Service) - Unknown owner - C:\Program Files (x86)\Clarus\Samsung SecretZone\MSSvc.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\SysWOW64\IoctlSvc.exe
O23 - Service: Prime95 Service - Unknown owner - C:\Program Files (x86)\Prime95\prime95.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Aktivátor Správce výběru OS Acronis (Správce výběru OS) - Unknown owner - C:\Program Files (x86)\Acronis\DiskDirector\OSS\reinstall_svc.exe
O23 - Service: @C:\Program Files (x86)\TuneUp Utilities 2010\TuneUpDefragService.exe,-1 (TuneUp.Defrag) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2010\TuneUpDefragService.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2010\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 18202 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\Alwil Software\Avast5\AvastSvc.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files\Alwil Software\Avast5\afwServ.exe"
"C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
taskeng.exe {ACE5C85B-DDFD-4C6D-8585-368586C92EBE}
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe" -service
"taskhost.exe"
"C:\Program Files (x86)\Common Files\Acronis\Plán2\schedul2.exe"
"C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe"
C:\Windows\AutoKMS.exe
"C:\Program Files (x86)\Advanced System Optimizer 3\ASO3DefragSrv64.exe"
C:\Windows\system32\CISVC.EXE
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Firebird\Firebird_1_5\bin\fbguard.exe" -s
C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt
"C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE"
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\Clarus\Samsung SecretZone\MSSvc.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe"
cmd /c ""C:\ProgramData\AutoKMS\AutoKMS.cmd" "
\??\C:\Windows\system32\conhost.exe
cscript //nologo "C:\ProgramData\AutoKMS\Resources\LicenseManagement\OSPP.VBS" /sethst:127.0.0.1
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\SysWOW64\IoctlSvc.exe
C:\Windows\System32\svchost.exe -k HPZ12
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
C:\Windows\System32\tcpsvcs.exe
"C:\Program Files (x86)\TuneUp Utilities 2010\TuneUpUtilitiesService64.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\Acronis\DiskDirector\OSS\reinstall_svc.exe"
"C:\Program Files (x86)\TuneUp Utilities 2010\TuneUpUtilitiesApp64.exe" /TUStart /pid:3592
WLIDSvcM.exe 3652
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Firebird\Firebird_1_5\bin\fbserver.exe" -s
C:\Windows\system32\svchost.exe -k HPService
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-17d1dc0b-9573-47f5-a217-0a15a643bc8b -SystemEventPortName:HostProcess-cc6961f7-10fb-472e-92c5-ff0a36ddb8fd -IoCancelEventPortName:HostProcess-4727e3bd-8099-4e40-98e6-7ad6740acfda -NonStateChangingEventPortName:HostProcess-760b4db2-79a8-4d11-9227-00db232abc16 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:6d76f061-58bf-448e-aef0-4bc5ab9d220e
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files\Alwil Software\Avast5\AvastUI.exe" /nogui
"C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe"
"C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=DnsImpact/_max_500ms_queue_prefetch/GlobalSdch/_global_enable_sdch/SocketLateBinding/_enable_late_binding/ --channel=5616.95c1c0.1414925303
"C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=DnsImpact/_max_500ms_queue_prefetch/GlobalSdch/_global_enable_sdch/SocketLateBinding/_enable_late_binding/ --channel=5616.94f460.1360611063
"C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=DnsImpact/_max_500ms_queue_prefetch/GlobalSdch/_global_enable_sdch/SocketLateBinding/_enable_late_binding/ --channel=5616.94f540.1316724099
"C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtest=DnsImpact/_max_500ms_queue_prefetch/GlobalSdch/_global_enable_sdch/SocketLateBinding/_enable_late_binding/ --channel=5616.95cd20.1723311360
"C:\Users\Bobek\AppData\Local\Google\Chrome\Application\chrome.exe" --lang=cs --plugin-data-dir="C:\Users\Bobek\AppData\Local\Google\Chrome\User Data\Default" --type=plugin --channel=5616.6ac3c60.581474542 --plugin-path=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
C:\Windows\system32\sppsvc.exe
C:\Windows\servicing\TrustedInstaller.exe
taskhost.exe $(Arg0)
"C:\Users\Bobek\Desktop\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
======Scheduled tasks folder======
C:\Windows\tasks\Ad-Aware Update (Daily 1).job
C:\Windows\tasks\Ad-Aware Update (Daily 2).job
C:\Windows\tasks\Ad-Aware Update (Daily 3).job
C:\Windows\tasks\Ad-Aware Update (Daily 4).job
C:\Windows\tasks\Ad-Aware Update (Weekly).job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2009-08-06 132448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 532336]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2010-09-17 391344]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-23 328248]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10EDB994-47F8-43F7-AE96-F2EA63E9F90F}]
QuickStores-Toolbar - C:\Windows\system32\mscoree.dll [2009-11-25 444752]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}]
Canon Easy-WebPrint EX BHO - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2009-11-25 202080]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocná služba pro přihlášení ke službě Windows Live ID - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2010-09-17 292528]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2010-06-19 349640]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08 804136]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2010-08-04 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EBE9E2B5-B526-48BC-AD46-687263EDCB0E}]
Kwyshell MidpX - C:\Program Files (x86)\Kwyshell\MidpX\JadInvoker\MidpInvoker.dll [2004-12-03 100864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2010-06-19 349640]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ffa0793e-3980-4be4-8234-048fa665f700}]
Softonic English FF Toolbar - C:\Program Files (x86)\Softonic_English_FF\tbSoft.dll [2009-11-09 2331672]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-23 509496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2010-09-17 391344]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2010-06-19 349640]
{ffa0793e-3980-4be4-8234-048fa665f700} - Softonic English FF Toolbar - C:\Program Files (x86)\Softonic_English_FF\tbSoft.dll [2009-11-09 2331672]
{10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - QuickStores-Toolbar - C:\Windows\system32\mscoree.dll [2009-11-25 444752]
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - Canon Easy-WebPrint EX - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2009-11-25 1496408]
{EBE9E2B5-B526-48BC-AD46-687263EDCB0E} - Kwyshell MidpX - C:\Program Files (x86)\Kwyshell\MidpX\JadInvoker\MidpInvoker.dll [2004-12-03 100864]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2010-09-17 292528]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Skytel"=C:\Program Files\Realtek\Audio\HDA\Skytel.exe [2009-07-06 1833504]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1475072]
""= []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acrobat Assistant 8.0]
C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe [2010-06-19 640440]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Photo Downloader]
C:\Program Files (x86)\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe [2007-03-09 63712]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AppleSyncNotifier]
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [2010-09-08 47904]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\bluebirds]
C:\Users\Bobek\Bluebirds\BlueBirds.exe [2009-04-29 270336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer]
C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaOviSuite2]
C:\Program Files (x86)\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe [2010-02-24 385928]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [2010-05-14 1479680]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PWRISOVM.EXE]
C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [2009-11-09 180224]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files (x86)\QuickTime\QTTask.exe [2010-09-08 421888]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SearchSettings]
C:\Program Files (x86)\pdfforge Toolbar\SearchSettings.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender User Interface]
C:\Program Files\Windows Defender\MSASCui.exe [2009-07-14 961024]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Bobek^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Samsung Auto Backup Guage.lnk]
C:\PROGRA~2\Clarus\SAMSUN~1\ISFGuage.exe [2009-05-15 888832]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"avast5"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2010-09-07 2838912]
"AppleSyncNotifier"=C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [2010-09-08 47904]
""= []
"TrojanScanner"=C:\Program Files (x86)\Trojan Remover\Trjscan.exe [2009-08-04 1068424]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Lavasoft Ad-Aware Service]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoInstrumentation"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\Windows\system32\notepad.exe "%1"
.scr - install -
.scr - config -
======List of files/folders created in the last 1 months======
2010-09-21 13:05:10 ----D---- C:\rsit
2010-09-21 13:05:10 ----D---- C:\Program Files\trend micro
2010-09-21 12:38:40 ----A---- C:\Windows\SYSWOW64\ztvunrar36.dll
2010-09-21 12:38:40 ----A---- C:\Windows\SYSWOW64\ztvunace26.dll
2010-09-21 12:38:40 ----A---- C:\Windows\SYSWOW64\ztvcabinet.dll
2010-09-21 12:38:40 ----A---- C:\Windows\SYSWOW64\UNRAR3.dll
2010-09-21 12:38:40 ----A---- C:\Windows\SYSWOW64\unacev2.dll
2010-09-21 12:38:39 ----D---- C:\Users\Bobek\AppData\Roaming\Simply Super Software
2010-09-21 12:38:39 ----D---- C:\ProgramData\Simply Super Software
2010-09-21 12:38:39 ----D---- C:\Program Files (x86)\Trojan Remover
2010-09-21 08:38:10 ----D---- C:\Program Files (x86)\QuickTime
2010-09-20 23:57:18 ----D---- C:\Program Files\Yamicsoft
2010-09-20 19:47:13 ----RA---- C:\Windows\system32\AdobePDFUI.dll
2010-09-19 06:57:25 ----D---- C:\Users\Bobek\AppData\Roaming\Smart PC Solutions
2010-09-19 06:55:36 ----D---- C:\Program Files (x86)\Smart PC Solutions
2010-09-17 20:59:42 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2010-09-17 20:59:42 ----A---- C:\Windows\SYSWOW64\inseng.dll
2010-09-17 20:59:42 ----A---- C:\Windows\system32\jscript9.dll
2010-09-17 20:59:42 ----A---- C:\Windows\system32\jscript.dll
2010-09-17 20:59:42 ----A---- C:\Windows\system32\inseng.dll
2010-09-17 20:59:41 ----A---- C:\Windows\SYSWOW64\jscript.dll
2010-09-17 20:59:41 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2010-09-17 20:59:41 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2010-09-17 20:59:41 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2010-09-17 20:59:41 ----A---- C:\Windows\SYSWOW64\ieui.dll
2010-09-17 20:59:41 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2010-09-17 20:59:41 ----A---- C:\Windows\system32\imgutil.dll
2010-09-17 20:59:41 ----A---- C:\Windows\system32\iexpress.exe
2010-09-17 20:59:41 ----A---- C:\Windows\system32\ieUnatt.exe
2010-09-17 20:59:41 ----A---- C:\Windows\system32\ieui.dll
2010-09-17 20:59:41 ----A---- C:\Windows\system32\iesysprep.dll
2010-09-17 20:59:39 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2010-09-17 20:59:39 ----A---- C:\Windows\SYSWOW64\mshta.exe
2010-09-17 20:59:39 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2010-09-17 20:59:39 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2010-09-17 20:59:39 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2010-09-17 20:59:39 ----A---- C:\Windows\system32\mshtml.dll
2010-09-17 20:59:39 ----A---- C:\Windows\system32\mshta.exe
2010-09-17 20:59:39 ----A---- C:\Windows\system32\msfeedssync.exe
2010-09-17 20:59:39 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-09-17 20:59:39 ----A---- C:\Windows\system32\msfeeds.dll
2010-09-17 20:59:38 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2010-09-17 20:59:38 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2010-09-17 20:59:38 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2010-09-17 20:59:38 ----A---- C:\Windows\system32\licmgr10.dll
2010-09-17 20:59:38 ----A---- C:\Windows\system32\jsproxy.dll
2010-09-17 20:59:38 ----A---- C:\Windows\system32\IEAdvpack.dll
2010-09-17 20:59:38 ----A---- C:\Windows\system32\ie4uinit.exe
2010-09-17 20:59:37 ----A---- C:\Windows\SYSWOW64\ieakui.dll
2010-09-17 20:59:37 ----A---- C:\Windows\SYSWOW64\ieakeng.dll
2010-09-17 20:59:37 ----A---- C:\Windows\SYSWOW64\ie4uinit.exe
2010-09-17 20:59:37 ----A---- C:\Windows\system32\ieakui.dll
2010-09-17 20:59:36 ----A---- C:\Windows\SYSWOW64\ieaksie.dll
2010-09-17 20:59:36 ----A---- C:\Windows\SYSWOW64\icardie.dll
2010-09-17 20:59:36 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2010-09-17 20:59:36 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2010-09-17 20:59:36 ----A---- C:\Windows\SYSWOW64\admparse.dll
2010-09-17 20:59:36 ----A---- C:\Windows\system32\ieaksie.dll
2010-09-17 20:59:36 ----A---- C:\Windows\system32\ieakeng.dll
2010-09-17 20:59:36 ----A---- C:\Windows\system32\icardie.dll
2010-09-17 20:59:36 ----A---- C:\Windows\system32\dxtrans.dll
2010-09-17 20:59:36 ----A---- C:\Windows\system32\dxtmsft.dll
2010-09-17 20:59:36 ----A---- C:\Windows\system32\admparse.dll
2010-09-17 20:59:34 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2010-09-17 20:59:34 ----A---- C:\Windows\system32\iepeers.dll
2010-09-17 20:59:31 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2010-09-17 20:59:31 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2010-09-17 20:59:31 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2010-09-17 20:59:31 ----A---- C:\Windows\system32\iesetup.dll
2010-09-17 20:59:31 ----A---- C:\Windows\system32\iertutil.dll
2010-09-17 20:59:31 ----A---- C:\Windows\system32\iernonce.dll
2010-09-17 20:59:27 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2010-09-17 20:59:27 ----A---- C:\Windows\system32\iedkcs32.dll
2010-09-17 20:59:27 ----A---- C:\Windows\system32\ieapfltr.dll
2010-09-17 20:59:26 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2010-09-17 20:59:26 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2010-09-17 20:59:26 ----A---- C:\Windows\system32\ieframe.dll
2010-09-17 20:59:25 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2010-09-17 20:59:25 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2010-09-17 20:59:25 ----A---- C:\Windows\SYSWOW64\url.dll
2010-09-17 20:59:25 ----A---- C:\Windows\system32\vbscript.dll
2010-09-17 20:59:25 ----A---- C:\Windows\system32\urlmon.dll
2010-09-17 20:59:25 ----A---- C:\Windows\system32\url.dll
2010-09-17 20:59:24 ----A---- C:\Windows\SYSWOW64\wininet.dll
2010-09-17 20:59:24 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2010-09-17 20:59:24 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2010-09-17 20:59:24 ----A---- C:\Windows\system32\wininet.dll
2010-09-17 20:59:24 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2010-09-17 20:59:24 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2010-09-17 20:59:23 ----A---- C:\Windows\SYSWOW64\wextract.exe
2010-09-17 20:59:23 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2010-09-17 20:59:23 ----A---- C:\Windows\SYSWOW64\occache.dll
2010-09-17 20:59:23 ----A---- C:\Windows\SYSWOW64\msrating.dll
2010-09-17 20:59:23 ----A---- C:\Windows\SYSWOW64\msls31.dll
2010-09-17 20:59:23 ----A---- C:\Windows\system32\wextract.exe
2010-09-17 20:59:23 ----A---- C:\Windows\system32\webcheck.dll
2010-09-17 20:59:23 ----A---- C:\Windows\system32\occache.dll
2010-09-17 20:59:23 ----A---- C:\Windows\system32\msrating.dll
2010-09-17 20:59:23 ----A---- C:\Windows\system32\mshtmled.dll
2010-09-17 20:59:22 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2010-09-17 20:59:22 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2010-09-17 20:59:22 ----A---- C:\Windows\system32\msls31.dll
2010-09-17 20:59:22 ----A---- C:\Windows\system32\mshtmler.dll
2010-09-17 20:59:21 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2010-09-17 20:59:21 ----A---- C:\Windows\system32\pngfilt.dll
2010-09-17 20:57:58 ----A---- C:\Windows\system32\mfps.dll
2010-09-17 20:57:57 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2010-09-17 20:57:57 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2010-09-17 20:57:57 ----A---- C:\Windows\system32\WMVDECOD.DLL
2010-09-17 20:57:57 ----A---- C:\Windows\system32\mfreadwrite.dll
2010-09-17 20:57:56 ----A---- C:\Windows\system32\mf.dll
2010-09-17 20:57:55 ----A---- C:\Windows\SYSWOW64\mf.dll
2010-09-17 20:56:35 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2010-09-17 20:56:35 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2010-09-17 20:56:35 ----A---- C:\Windows\system32\d2d1.dll
2010-09-17 20:56:34 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2010-09-17 20:56:34 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2010-09-17 20:56:34 ----A---- C:\Windows\system32\FntCache.dll
2010-09-17 20:56:34 ----A---- C:\Windows\system32\DWrite.dll
2010-09-17 20:56:34 ----A---- C:\Windows\system32\d3d10warp.dll
2010-09-17 20:56:34 ----A---- C:\Windows\system32\d3d10_1core.dll
2010-09-17 20:55:14 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2010-09-17 20:55:14 ----A---- C:\Windows\system32\XpsRasterService.dll
2010-09-17 20:55:14 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2010-09-17 20:55:13 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2010-09-17 20:53:38 ----A---- C:\Windows\system32\ExplorerFrame.dll
2010-09-17 20:53:37 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2010-09-17 20:51:18 ----D---- C:\Program Files (x86)\Feedback Tool
2010-09-17 14:42:24 ----A---- C:\Windows\SYSWOW64\uxtuneup.dll
2010-09-17 14:42:24 ----A---- C:\Windows\SYSWOW64\authuitu.dll
2010-09-17 14:42:24 ----A---- C:\Windows\system32\uxtuneup.dll
2010-09-17 14:42:24 ----A---- C:\Windows\system32\authuitu.dll
2010-09-17 00:44:23 ----D---- C:\ProgramData\Elaborate Bytes
2010-09-17 00:43:28 ----D---- C:\Program Files (x86)\Elaborate Bytes
2010-09-17 00:11:36 ----A---- C:\Windows\SYSWOW64\systeminfo3.dll
2010-09-15 20:15:08 ----D---- C:\Program Files (x86)\Photosynth
2010-09-15 20:00:47 ----D---- C:\Program Files (x86)\MSECache
2010-09-14 22:06:28 ----A---- C:\Windows\system32\spoolsv.exe
2010-09-14 21:49:23 ----D---- C:\Program Files (x86)\Microsoft Works
2010-09-14 21:48:46 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2010-09-14 21:48:20 ----D---- C:\Windows\PCHEALTH
2010-09-14 21:46:34 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2010-09-14 21:46:00 ----D---- C:\Program Files (x86)\Microsoft Office
2010-09-14 21:45:02 ----RHD---- C:\MSOCache
2010-09-14 21:04:42 ----A---- C:\Windows\AutoKMS.exe
2010-09-14 20:55:24 ----D---- C:\ProgramData\AutoKMS
2010-09-14 18:25:40 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2010-09-14 18:25:39 ----A---- C:\Windows\system32\drivers\aswSP.sys
2010-09-14 18:25:37 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2010-09-14 18:25:35 ----A---- C:\Windows\system32\drivers\aswFW.sys
2010-09-14 18:25:13 ----A---- C:\Windows\system32\drivers\aswRdr.sys
2010-09-14 18:25:13 ----A---- C:\Windows\system32\drivers\aswNdis2.sys
2010-09-14 18:25:11 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2010-09-14 18:25:09 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2010-09-14 18:24:54 ----A---- C:\Windows\system32\drivers\aswNdis.sys
2010-09-14 18:24:50 ----A---- C:\Windows\SYSWOW64\aswBoot.exe
2010-09-14 07:35:22 ----D---- C:\Program Files (x86)\WinAVI Video Converter
2010-09-07 08:57:49 ----D---- C:\Program Files\iTunes
2010-09-07 08:57:49 ----D---- C:\Program Files\iPod
2010-09-07 08:57:49 ----D---- C:\Program Files (x86)\iTunes
2010-09-06 14:30:34 ----D---- C:\Users\Bobek\AppData\Roaming\Leadertech
2010-09-02 21:26:36 ----D---- C:\Windows\SYSWOW64\drivers\uk-UA
2010-09-02 21:26:28 ----D---- C:\Windows\uk-UA
2010-09-02 21:26:27 ----D---- C:\Windows\system32\drivers\uk-UA
2010-09-02 21:19:31 ----D---- C:\Windows\lv-LV
2010-09-02 21:19:23 ----D---- C:\Windows\SYSWOW64\drivers\lv-LV
2010-09-02 21:19:14 ----D---- C:\Windows\system32\drivers\lv-LV
2010-09-02 21:12:30 ----D---- C:\Windows\SYSWOW64\zh-CHT
2010-09-02 21:12:13 ----D---- C:\Windows\SYSWOW64\drivers\zh-TW
2010-09-02 21:12:07 ----D---- C:\Windows\zh-TW
2010-09-02 21:12:04 ----D---- C:\Windows\system32\zh-CHT
2010-09-02 21:11:46 ----D---- C:\Windows\system32\drivers\zh-TW
2010-09-02 21:11:46 ----D---- C:\Windows\system32\drivers\zh-HK
2010-09-02 21:00:49 ----D---- C:\Windows\SYSWOW64\es
2010-09-02 21:00:49 ----D---- C:\Windows\SYSWOW64\drivers\es-ES
2010-09-02 21:00:49 ----D---- C:\Windows\SYSWOW64\0C0A
2010-09-02 21:00:22 ----D---- C:\Windows\system32\es
2010-09-02 21:00:22 ----D---- C:\Windows\system32\0C0A
2010-09-02 21:00:20 ----D---- C:\Windows\system32\drivers\es-ES
2010-09-02 20:59:48 ----D---- C:\Windows\es-ES
2010-09-02 20:48:45 ----D---- C:\Windows\SYSWOW64\he
2010-09-02 20:48:45 ----D---- C:\Windows\SYSWOW64\drivers\he-IL
2010-09-02 20:48:28 ----D---- C:\Windows\system32\he
2010-09-02 20:48:27 ----D---- C:\Windows\system32\drivers\he-IL
2010-09-02 20:48:04 ----D---- C:\Windows\he-IL
2010-09-02 20:39:45 ----D---- C:\Windows\tr-TR
2010-09-02 20:39:21 ----D---- C:\Windows\SYSWOW64\tr
2010-09-02 20:39:21 ----D---- C:\Windows\SYSWOW64\drivers\tr-TR
2010-09-02 20:38:52 ----D---- C:\Windows\system32\tr
2010-09-02 20:38:52 ----D---- C:\Windows\system32\drivers\tr-TR
2010-09-02 20:30:30 ----D---- C:\Windows\SYSWOW64\drivers\ko-KR
2010-09-02 20:30:11 ----D---- C:\Windows\SYSWOW64\ko
2010-09-02 20:30:07 ----D---- C:\Windows\ko-KR
2010-09-02 20:30:03 ----D---- C:\Windows\system32\drivers\ko-KR
2010-09-02 20:29:40 ----D---- C:\Windows\system32\ko
2010-09-02 20:20:59 ----D---- C:\Windows\SYSWOW64\drivers\da-DK
2010-09-02 20:20:41 ----D---- C:\Windows\SYSWOW64\da
2010-09-02 20:20:39 ----D---- C:\Windows\da-DK
2010-09-02 20:20:35 ----D---- C:\Windows\system32\drivers\da-DK
2010-09-02 20:20:04 ----D---- C:\Windows\system32\da
2010-09-02 20:12:24 ----D---- C:\Windows\pt-PT
2010-09-02 20:12:02 ----D---- C:\Windows\SYSWOW64\drivers\pt-PT
2010-09-02 20:12:01 ----D---- C:\Windows\SYSWOW64\pt
2010-09-02 20:11:38 ----D---- C:\Windows\system32\drivers\pt-PT
2010-09-02 20:11:32 ----D---- C:\Windows\system32\pt
2010-09-02 20:04:50 ----D---- C:\Windows\SYSWOW64\drivers\et-EE
2010-09-02 20:04:42 ----D---- C:\Windows\system32\drivers\et-EE
2010-09-02 20:04:25 ----D---- C:\Windows\et-EE
2010-09-02 19:58:59 ----D---- C:\Windows\SYSWOW64\drivers\bg-BG
2010-09-02 19:58:52 ----D---- C:\Windows\system32\drivers\bg-BG
2010-09-02 19:58:52 ----D---- C:\Windows\bg-BG
2010-09-02 19:52:36 ----D---- C:\Windows\SYSWOW64\zh-CHS
2010-09-02 19:52:36 ----D---- C:\Windows\SYSWOW64\drivers\zh-CN
2010-09-02 19:52:06 ----D---- C:\Windows\system32\zh-CHS
2010-09-02 19:52:04 ----D---- C:\Windows\system32\drivers\zh-CN
2010-09-02 19:51:30 ----D---- C:\Windows\zh-CN
2010-09-02 19:42:33 ----D---- C:\Windows\SYSWOW64\nl
2010-09-02 19:42:33 ----D---- C:\Windows\SYSWOW64\0413
2010-09-02 19:42:33 ----D---- C:\Windows\nl-NL
2010-09-02 19:42:14 ----D---- C:\Windows\SYSWOW64\drivers\nl-NL
2010-09-02 19:42:07 ----D---- C:\Windows\system32\nl
2010-09-02 19:42:07 ----D---- C:\Windows\system32\0413
2010-09-02 19:41:46 ----D---- C:\Windows\system32\drivers\nl-NL
2010-09-02 19:34:13 ----D---- C:\Windows\SYSWOW64\sv
2010-09-02 19:34:13 ----D---- C:\Windows\SYSWOW64\drivers\sv-SE
2010-09-02 19:33:47 ----D---- C:\Windows\system32\sv
2010-09-02 19:33:46 ----D---- C:\Windows\system32\drivers\sv-SE
2010-09-02 19:33:22 ----D---- C:\Windows\sv-SE
2010-09-02 19:26:20 ----D---- C:\Windows\de-DE
2010-09-02 19:26:01 ----D---- C:\Windows\SYSWOW64\0407
2010-09-02 19:26:00 ----D---- C:\Windows\SYSWOW64\drivers\de-DE
2010-09-02 19:26:00 ----D---- C:\Windows\SYSWOW64\de
2010-09-02 19:25:33 ----D---- C:\Windows\system32\0407
2010-09-02 19:25:31 ----D---- C:\Windows\system32\drivers\de-DE
2010-09-02 19:25:27 ----D---- C:\Windows\system32\de
2010-09-02 19:16:37 ----D---- C:\Windows\lt-LT
2010-09-02 19:16:29 ----D---- C:\Windows\SYSWOW64\drivers\lt-LT
2010-09-02 19:16:21 ----D---- C:\Windows\system32\drivers\lt-LT
2010-09-02 19:11:27 ----D---- C:\Windows\SYSWOW64\drivers\hr-HR
2010-09-02 19:11:20 ----D---- C:\Windows\system32\drivers\hr-HR
2010-09-02 19:11:20 ----D---- C:\Windows\hr-HR
2010-09-02 19:05:22 ----D---- C:\Windows\SYSWOW64\ru
2010-09-02 19:05:22 ----D---- C:\Windows\SYSWOW64\drivers\ru-RU
2010-09-02 19:04:52 ----D---- C:\Windows\system32\drivers\ru-RU
2010-09-02 19:04:44 ----D---- C:\Windows\system32\ru
2010-09-02 19:04:26 ----D---- C:\Windows\ru-RU
2010-09-02 18:58:02 ----D---- C:\Windows\it-IT
2010-09-02 18:57:43 ----D---- C:\Windows\SYSWOW64\drivers\it-IT
2010-09-02 18:57:43 ----D---- C:\Windows\SYSWOW64\0410
2010-09-02 18:57:40 ----D---- C:\Windows\SYSWOW64\it
2010-09-02 18:57:14 ----D---- C:\Windows\system32\drivers\it-IT
2010-09-02 18:57:14 ----D---- C:\Windows\system32\0410
2010-09-02 18:57:04 ----D---- C:\Windows\system32\it
2010-09-02 18:50:27 ----D---- C:\Windows\ja-JP
2010-09-02 18:49:58 ----D---- C:\Windows\SYSWOW64\ja
2010-09-02 18:49:58 ----D---- C:\Windows\SYSWOW64\drivers\ja-JP
2010-09-02 18:49:58 ----D---- C:\Windows\SYSWOW64\0411
2010-09-02 18:49:26 ----D---- C:\Windows\system32\ja
2010-09-02 18:49:26 ----D---- C:\Windows\system32\0411
2010-09-02 18:49:25 ----D---- C:\Windows\system32\drivers\ja-JP
2010-09-02 18:44:31 ----A---- C:\Windows\SYSWOW64\lzhfldr2.dll
2010-09-02 18:44:10 ----A---- C:\Windows\system32\lzhfldr2.dll
2010-09-02 18:42:29 ----D---- C:\Windows\SYSWOW64\no
2010-09-02 18:42:29 ----D---- C:\Windows\SYSWOW64\drivers\nb-NO
2010-09-02 18:42:10 ----D---- C:\Windows\nb-NO
2010-09-02 18:42:08 ----D---- C:\Windows\system32\no
2010-09-02 18:42:06 ----D---- C:\Windows\system32\drivers\nb-NO
2010-09-02 18:36:42 ----D---- C:\Windows\SYSWOW64\drivers\sl-SI
2010-09-02 18:36:31 ----D---- C:\Windows\sl-SI
2010-09-02 18:36:30 ----D---- C:\Windows\system32\drivers\sl-SI
2010-09-02 18:31:53 ----D---- C:\Windows\el-GR
2010-09-02 18:31:30 ----D---- C:\Windows\SYSWOW64\el
2010-09-02 18:31:30 ----D---- C:\Windows\SYSWOW64\drivers\el-GR
2010-09-02 18:31:08 ----D---- C:\Windows\system32\el
2010-09-02 18:31:07 ----D---- C:\Windows\system32\drivers\el-GR
2010-09-02 18:25:01 ----D---- C:\Windows\pt-BR
2010-09-02 18:24:43 ----D---- C:\Windows\SYSWOW64\drivers\pt-BR
2010-09-02 18:24:15 ----D---- C:\Windows\system32\drivers\pt-BR
2010-09-02 18:19:01 ----D---- C:\Windows\SYSWOW64\drivers\ro-RO
2010-09-02 18:19:01 ----D---- C:\Windows\ro-RO
2010-09-02 18:18:53 ----D---- C:\Windows\system32\drivers\ro-RO
2010-09-02 18:14:26 ----D---- C:\Windows\SYSWOW64\drivers\pl-PL
2010-09-02 18:14:07 ----D---- C:\Windows\SYSWOW64\pl
2010-09-02 18:14:05 ----D---- C:\Windows\pl-PL
2010-09-02 18:14:02 ----D---- C:\Windows\system32\drivers\pl-PL
2010-09-02 18:13:36 ----D---- C:\Windows\system32\pl
2010-09-02 18:03:04 ----D---- C:\Windows\fr-FR
2010-09-02 18:02:50 ----D---- C:\Windows\SYSWOW64\drivers\fr-FR
2010-09-02 18:02:50 ----D---- C:\Windows\SYSWOW64\040C
2010-09-02 18:02:49 ----D---- C:\Windows\SYSWOW64\fr
2010-09-02 18:02:49 ----D---- C:\Windows\SYSWOW64\drivers\ar-SA
2010-09-02 18:02:49 ----D---- C:\Windows\SYSWOW64\ar
2010-09-02 18:02:22 ----D---- C:\Windows\ar-SA
2010-09-02 18:02:13 ----D---- C:\Windows\system32\drivers\fr-FR
2010-09-02 18:02:13 ----D---- C:\Windows\system32\ar
2010-09-02 18:02:13 ----D---- C:\Windows\system32\040C
2010-09-02 18:02:11 ----D---- C:\Windows\system32\fr
2010-09-02 18:02:11 ----D---- C:\Windows\system32\drivers\ar-SA
2010-09-02 17:56:02 ----D---- C:\Windows\SYSWOW64\hu
2010-09-02 17:56:02 ----D---- C:\Windows\SYSWOW64\drivers\hu-HU
2010-09-02 17:55:40 ----D---- C:\Windows\system32\hu
2010-09-02 17:55:39 ----D---- C:\Windows\system32\drivers\hu-HU
2010-09-02 17:55:06 ----D---- C:\Windows\hu-HU
2010-09-02 17:50:41 ----D---- C:\Windows\SYSWOW64\drivers\sr-Latn-CS
2010-09-02 17:50:41 ----D---- C:\Windows\sr-Latn-CS
2010-09-02 17:50:33 ----D---- C:\Windows\system32\drivers\sr-Latn-CS
2010-09-02 17:47:15 ----D---- C:\Windows\SYSWOW64\drivers\sk-SK
2010-09-02 17:47:14 ----D---- C:\Windows\sk-SK
2010-09-02 17:47:07 ----D---- C:\Windows\system32\drivers\sk-SK
2010-09-02 17:43:47 ----D---- C:\Windows\SYSWOW64\drivers\th-TH
2010-09-02 17:43:38 ----D---- C:\Windows\system32\drivers\th-TH
2010-09-02 17:43:20 ----D---- C:\Windows\th-TH
2010-09-02 17:39:13 ----D---- C:\Windows\fi-FI
2010-09-02 17:38:48 ----D---- C:\Windows\SYSWOW64\fi
2010-09-02 17:38:48 ----D---- C:\Windows\SYSWOW64\drivers\fi-FI
2010-09-02 17:38:16 ----D---- C:\Windows\system32\fi
2010-09-02 17:38:16 ----D---- C:\Windows\system32\drivers\fi-FI
2010-08-29 17:15:34 ----D---- C:\Program Files (x86)\Prime95
2010-08-28 15:34:13 ----A---- C:\Windows\game.ini
2010-08-27 16:25:00 ----D---- C:\Program Files (x86)\Lavalys
2010-08-26 12:25:50 ----D---- C:\Program Files (x86)\Final Doomsday - Plutonia
2010-08-25 10:37:14 ----D---- C:\Program Files (x86)\Doomsday-Doom2
2010-08-25 07:21:10 ----D---- C:\Program Files (x86)\WinZip
2010-08-25 06:33:57 ----D---- C:\ProgramData\NVIDIA Corporation
2010-08-25 06:13:57 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2010-08-25 06:13:57 ----A---- C:\Windows\system32\oleaut32.dll
2010-08-24 23:30:03 ----A---- C:\Windows\doom3.ini
2010-08-24 23:25:57 ----D---- C:\Program Files (x86)\DOOM 3
2010-08-23 14:43:13 ----D---- C:\Program Files (x86)\Plane Arcade
2010-08-23 13:59:50 ----A---- C:\Windows\SYSWOW64\javaws.exe
2010-08-23 13:59:50 ----A---- C:\Windows\SYSWOW64\javaw.exe
2010-08-23 13:59:50 ----A---- C:\Windows\SYSWOW64\java.exe