problem poprosim kontrolu
Napsal: 11 říj 2010 22:56
pri starte mrzne widnows... ide iba v nudzovom rezime
Logfile of random's system information tool 1.08 (written by random/random)
Run by ROBO at 2010-10-11 22:00:45
Microsoft Windows 7 Ultimate
System drive C: has 6 GB (9%) free of 70 GB
Total RAM: 4095 MB (80% free)
HijackThis download failed
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2019103975-157181902-2782926551-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2019103975-157181902-2782926551-1000UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}]
AskBar BHO - C:\Program Files (x86)\AskBarDis\bar\bin\askBar.dll [2009-04-02 333192]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2010-02-01 35840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{3041d03e-fd4b-44e0-b742-2d9b88305f98} - Ask Toolbar - C:\Program Files (x86)\AskBarDis\bar\bin\askBar.dll [2009-04-02 333192]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll [2010-03-28 1017592]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"JMB36X IDE Setup"=C:\Windows\RaidTool\xInsIDE.exe [2007-03-20 36864]
"avast!"=E:\Program files\Avast\ashDisp.exe [2009-11-25 81000]
"ZoneAlarm Client"=E:\Program Files (x86)\Zone Labs\ZoneAlarm\zlclient.exe [2009-11-22 1037192]
"QuickTime Task"=E:\Program Files (x86)\QuickTime\QTTask.exe [2009-11-11 417792]
"RemoteControl"=E:\Program Files (x86)\CyberLink\PowerDVD\PDVDServ.exe [2005-01-12 32768]
"NeroFilterCheck"=C:\Windows\system32\NeroCheck.exe [2001-07-09 155648]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]
"SunJavaUpdateSched"=C:\Program Files (x86)\Java\jre6\bin\jusched.exe [2010-02-01 148888]
"amd_dc_opt"=E:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [2006-11-17 77824]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-03-02 98304]
"WTClient"=C:\Windows\system32\WTClient.exe [2007-04-12 40960]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2009-11-12 141600]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
"RGSC"=E:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe [2008-12-12 306088]
"Google Update"=C:\Users\ROBO\AppData\Local\Google\Update\GoogleUpdate.exe [2010-02-06 133104]
"WinUpdate"=C:\Users\ROBO\AppData\Local\Windows Update\svchost.exe []
"Raptr"=C:\PROGRA~2\Raptr\raptrstub.exe [2010-08-13 52136]
"Steam"=C:\Program Files (x86)\Steam\Steam.exe [2010-08-24 1242448]
"ICQ"=C:\Program Files (x86)\ICQ7.2\ICQ.exe [2010-08-22 133432]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.reg - open - "regedit.exe" "%1"
======List of files/folders created in the last 1 months======
2010-10-11 22:00:45 ----D---- C:\rsit
2010-10-11 22:00:45 ----D---- C:\Program Files (x86)\trend micro
2010-10-11 16:00:32 ----A---- C:\Windows\ntbtlog.txt
2010-10-11 15:35:24 ----D---- C:\Program Files (x86)\ICQ7.2
2010-10-10 22:04:08 ----SH---- C:\Trainer.dll
2010-10-05 20:22:45 ----A---- C:\Windows\SysWOW64\XAudio2_7.dll
2010-10-05 20:22:45 ----A---- C:\Windows\SysWOW64\XAPOFX1_5.dll
2010-10-05 20:22:44 ----A---- C:\Windows\SysWOW64\xactengine3_7.dll
2010-10-05 20:22:43 ----A---- C:\Windows\SysWOW64\d3dcsx_43.dll
2010-10-05 20:22:43 ----A---- C:\Windows\SysWOW64\D3DCompiler_43.dll
2010-10-05 20:22:41 ----A---- C:\Windows\SysWOW64\d3dx11_43.dll
2010-10-05 20:22:41 ----A---- C:\Windows\SysWOW64\d3dx10_43.dll
2010-10-05 20:22:40 ----A---- C:\Windows\SysWOW64\D3DX9_43.dll
2010-10-05 20:04:36 ----D---- C:\Program Files (x86)\THQ
2010-09-27 07:26:30 ----ASH---- C:\pagefile.sys
2010-09-25 13:19:03 ----D---- C:\Program Files (x86)\LG Electronics
2010-09-13 12:04:48 ----D---- C:\Windows\Adobe Illustrator CS
======List of files/folders modified in the last 1 months======
2010-10-11 22:00:45 ----RD---- C:\Program Files (x86)
2010-10-11 22:00:45 ----D---- C:\Windows\Temp
2010-10-11 21:54:23 ----D---- C:\Windows\Internet Logs
2010-10-11 21:49:51 ----D---- C:\Program Files (x86)\Steam
2010-10-11 20:56:00 ----D---- C:\Windows\System32
2010-10-11 20:36:39 ----SHD---- C:\Windows\Installer
2010-10-11 20:36:36 ----SHD---- C:\System Volume Information
2010-10-11 20:32:01 ----HD---- C:\Config.Msi
2010-10-11 20:28:27 ----D---- C:\Users\ROBO\AppData\Roaming\ICQ
2010-10-11 18:10:06 ----D---- C:\Users\ROBO\AppData\Roaming\Skype
2010-10-11 17:42:40 ----D---- C:\Program Files (x86)\ICQ6Toolbar
2010-10-11 17:42:24 ----D---- C:\ProgramData\ICQ
2010-10-11 16:02:08 ----D---- C:\Program Files (x86)\Ve stínu havrana
2010-10-11 16:00:32 ----D---- C:\Windows
2010-10-11 15:15:24 ----D---- C:\Windows\Minidump
2010-10-11 12:14:28 ----D---- C:\Users\ROBO\AppData\Roaming\vlc
2010-10-11 07:58:34 ----D---- C:\Users\ROBO\AppData\Roaming\Raptr
2010-10-08 22:20:34 ----D---- C:\Windows\Prefetch
2010-10-07 08:45:35 ----D---- C:\Program Files (x86)\Common Files\Steam
2010-10-06 20:28:58 ----D---- C:\ProgramData\WinZip
2010-10-06 20:21:32 ----D---- C:\Program Files (x86)\Google
2010-10-05 21:28:30 ----D---- C:\Windows\SysWOW64\directx
2010-10-05 20:22:45 ----D---- C:\Windows\SysWOW64
2010-10-02 02:55:39 ----D---- C:\Users\ROBO\AppData\Roaming\dvdcss
2010-09-28 22:39:54 ----D---- C:\Users\ROBO\AppData\Roaming\Azureus
2010-09-25 13:19:25 ----D---- C:\Windows\inf
2010-09-24 14:40:04 ----RSD---- C:\Windows\assembly
2010-09-14 15:04:51 ----D---- C:\Users\ROBO\AppData\Roaming\Mozilla
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 JRAID;JRAID; C:\Windows\system32\DRIVERS\jraid.sys []
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys []
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys []
R0 snapman;Acronis Snapshots Manager; C:\Windows\system32\DRIVERS\snapman.sys []
R0 Tpkd;Tpkd; C:\Windows\SysWOW64\drivers\Tpkd.sys []
R1 aswRdr;aswRdr; C:\Windows\SysWOW64\drivers\aswRdr.sys []
R1 aswTdi;avast! Network Shield Support; C:\Windows\SysWOW64\drivers\aswTdi.sys []
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys []
R1 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys []
R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1E62x64.sys []
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys []
R3 PTSimBus;PenTablet Bus Enumerator; C:\Windows\system32\DRIVERS\PTSimBus.sys []
S0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys []
S1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2007-12-17 14392]
S1 aswSP;avast! Self Protection; C:\Windows\SysWOW64\drivers\aswSP.sys []
S2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys []
S2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys []
S3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atipmdag.sys []
S3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys []
S3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys []
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys []
S3 ENTECH64;ENTECH64; \??\C:\Windows\system32\DRIVERS\ENTECH64.sys []
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys []
S3 PAC7302;2.0 USB PC CAMERA P228; C:\Windows\system32\DRIVERS\PAC7302.SYS [2007-08-09 461696]
S3 PTSimHid;PenTablet Simulated HID MiniDriver; C:\Windows\system32\DRIVERS\PTSimHid.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys []
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys []
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys []
S3 Tablet2k;Serial Tablet Port Driver; C:\Windows\System32\Drivers\Tablet2k.sys []
S3 TClass2k;Tablet Class Driver; C:\Windows\system32\DRIVERS\TClass2k.sys []
S3 UCTblHid;HID Tablet Port Driver; C:\Windows\system32\DRIVERS\UCTblHid.sys []
S3 usbbus;LGE Mobile Composite USB Device; C:\Windows\system32\DRIVERS\lgx64bus.sys []
S3 UsbDiag;LGE Mobile USB Serial Port; C:\Windows\system32\DRIVERS\lgx64diag.sys []
S3 USBModem;LGE Mobile USB Modem; C:\Windows\system32\DRIVERS\lgx64modem.sys []
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys []
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys []
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys []
S3 WPRO_40_1340;WinPcap Packet Driver (WPRO_40_1340); C:\Windows\system32\drivers\WPRO_40_1340.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 vsmon;TrueVector Internet Monitor; C:\Windows\SysWOW64\ZoneLabs\vsmon.exe [2009-11-22 2384240]
S2 AcronisOSSReinstallSvc;Acronis OS Selector Reinstall Service; C:\Program Files (x86)\Common Files\Acronis\Acronis Disk Director\oss_reinstall_svc.exe [2007-03-15 2233400]
S2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe []
S2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-08-28 144672]
S2 aswUpdSv;avast! iAVS4 Control Service; E:\Program files\Avast\aswUpdSv.exe [2009-11-25 18752]
S2 avast! Antivirus;avast! Antivirus; E:\Program files\Avast\ashServ.exe [2009-11-25 138680]
S2 Bonjour Service;Bonjour Service; C:\Program Files (x86)\Bonjour\mDNSResponder.exe [2008-12-12 238888]
S2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S2 ICQ Service;ICQ Service; C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe [2010-03-28 246520]
S2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2010-07-15 66872]
S2 ProtexisLicensing;ProtexisLicensing; C:\Windows\SysWOW64\PSIService.exe [2006-11-02 174656]
S2 PSI_SVC_2;Protexis Licensing V2; C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
S2 WinTabService;WinTab Service; C:\Windows\System32\Drivers\WTSRV.EXE []
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe []
S3 avast! Mail Scanner;avast! Mail Scanner; E:\Program files\Avast\ashMaiSv.exe [2009-11-25 254040]
S3 avast! Web Scanner;avast! Web Scanner; E:\Program files\Avast\ashWebSv.exe [2009-11-25 352920]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-02-07 867080]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 iPod Service;iPod Service; C:\Program Files (x86)\iPod\bin\iPodService.exe [2009-11-12 545568]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2010-10-06 411432]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
-----------------EOF-----------------
Logfile of random's system information tool 1.08 (written by random/random)
Run by ROBO at 2010-10-11 22:00:45
Microsoft Windows 7 Ultimate
System drive C: has 6 GB (9%) free of 70 GB
Total RAM: 4095 MB (80% free)
HijackThis download failed
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2019103975-157181902-2782926551-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2019103975-157181902-2782926551-1000UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}]
AskBar BHO - C:\Program Files (x86)\AskBarDis\bar\bin\askBar.dll [2009-04-02 333192]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2010-02-01 35840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{3041d03e-fd4b-44e0-b742-2d9b88305f98} - Ask Toolbar - C:\Program Files (x86)\AskBarDis\bar\bin\askBar.dll [2009-04-02 333192]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll [2010-03-28 1017592]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"JMB36X IDE Setup"=C:\Windows\RaidTool\xInsIDE.exe [2007-03-20 36864]
"avast!"=E:\Program files\Avast\ashDisp.exe [2009-11-25 81000]
"ZoneAlarm Client"=E:\Program Files (x86)\Zone Labs\ZoneAlarm\zlclient.exe [2009-11-22 1037192]
"QuickTime Task"=E:\Program Files (x86)\QuickTime\QTTask.exe [2009-11-11 417792]
"RemoteControl"=E:\Program Files (x86)\CyberLink\PowerDVD\PDVDServ.exe [2005-01-12 32768]
"NeroFilterCheck"=C:\Windows\system32\NeroCheck.exe [2001-07-09 155648]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]
"SunJavaUpdateSched"=C:\Program Files (x86)\Java\jre6\bin\jusched.exe [2010-02-01 148888]
"amd_dc_opt"=E:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [2006-11-17 77824]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-03-02 98304]
"WTClient"=C:\Windows\system32\WTClient.exe [2007-04-12 40960]
"iTunesHelper"=C:\Program Files (x86)\iTunes\iTunesHelper.exe [2009-11-12 141600]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
"RGSC"=E:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe [2008-12-12 306088]
"Google Update"=C:\Users\ROBO\AppData\Local\Google\Update\GoogleUpdate.exe [2010-02-06 133104]
"WinUpdate"=C:\Users\ROBO\AppData\Local\Windows Update\svchost.exe []
"Raptr"=C:\PROGRA~2\Raptr\raptrstub.exe [2010-08-13 52136]
"Steam"=C:\Program Files (x86)\Steam\Steam.exe [2010-08-24 1242448]
"ICQ"=C:\Program Files (x86)\ICQ7.2\ICQ.exe [2010-08-22 133432]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.reg - open - "regedit.exe" "%1"
======List of files/folders created in the last 1 months======
2010-10-11 22:00:45 ----D---- C:\rsit
2010-10-11 22:00:45 ----D---- C:\Program Files (x86)\trend micro
2010-10-11 16:00:32 ----A---- C:\Windows\ntbtlog.txt
2010-10-11 15:35:24 ----D---- C:\Program Files (x86)\ICQ7.2
2010-10-10 22:04:08 ----SH---- C:\Trainer.dll
2010-10-05 20:22:45 ----A---- C:\Windows\SysWOW64\XAudio2_7.dll
2010-10-05 20:22:45 ----A---- C:\Windows\SysWOW64\XAPOFX1_5.dll
2010-10-05 20:22:44 ----A---- C:\Windows\SysWOW64\xactengine3_7.dll
2010-10-05 20:22:43 ----A---- C:\Windows\SysWOW64\d3dcsx_43.dll
2010-10-05 20:22:43 ----A---- C:\Windows\SysWOW64\D3DCompiler_43.dll
2010-10-05 20:22:41 ----A---- C:\Windows\SysWOW64\d3dx11_43.dll
2010-10-05 20:22:41 ----A---- C:\Windows\SysWOW64\d3dx10_43.dll
2010-10-05 20:22:40 ----A---- C:\Windows\SysWOW64\D3DX9_43.dll
2010-10-05 20:04:36 ----D---- C:\Program Files (x86)\THQ
2010-09-27 07:26:30 ----ASH---- C:\pagefile.sys
2010-09-25 13:19:03 ----D---- C:\Program Files (x86)\LG Electronics
2010-09-13 12:04:48 ----D---- C:\Windows\Adobe Illustrator CS
======List of files/folders modified in the last 1 months======
2010-10-11 22:00:45 ----RD---- C:\Program Files (x86)
2010-10-11 22:00:45 ----D---- C:\Windows\Temp
2010-10-11 21:54:23 ----D---- C:\Windows\Internet Logs
2010-10-11 21:49:51 ----D---- C:\Program Files (x86)\Steam
2010-10-11 20:56:00 ----D---- C:\Windows\System32
2010-10-11 20:36:39 ----SHD---- C:\Windows\Installer
2010-10-11 20:36:36 ----SHD---- C:\System Volume Information
2010-10-11 20:32:01 ----HD---- C:\Config.Msi
2010-10-11 20:28:27 ----D---- C:\Users\ROBO\AppData\Roaming\ICQ
2010-10-11 18:10:06 ----D---- C:\Users\ROBO\AppData\Roaming\Skype
2010-10-11 17:42:40 ----D---- C:\Program Files (x86)\ICQ6Toolbar
2010-10-11 17:42:24 ----D---- C:\ProgramData\ICQ
2010-10-11 16:02:08 ----D---- C:\Program Files (x86)\Ve stínu havrana
2010-10-11 16:00:32 ----D---- C:\Windows
2010-10-11 15:15:24 ----D---- C:\Windows\Minidump
2010-10-11 12:14:28 ----D---- C:\Users\ROBO\AppData\Roaming\vlc
2010-10-11 07:58:34 ----D---- C:\Users\ROBO\AppData\Roaming\Raptr
2010-10-08 22:20:34 ----D---- C:\Windows\Prefetch
2010-10-07 08:45:35 ----D---- C:\Program Files (x86)\Common Files\Steam
2010-10-06 20:28:58 ----D---- C:\ProgramData\WinZip
2010-10-06 20:21:32 ----D---- C:\Program Files (x86)\Google
2010-10-05 21:28:30 ----D---- C:\Windows\SysWOW64\directx
2010-10-05 20:22:45 ----D---- C:\Windows\SysWOW64
2010-10-02 02:55:39 ----D---- C:\Users\ROBO\AppData\Roaming\dvdcss
2010-09-28 22:39:54 ----D---- C:\Users\ROBO\AppData\Roaming\Azureus
2010-09-25 13:19:25 ----D---- C:\Windows\inf
2010-09-24 14:40:04 ----RSD---- C:\Windows\assembly
2010-09-14 15:04:51 ----D---- C:\Users\ROBO\AppData\Roaming\Mozilla
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 JRAID;JRAID; C:\Windows\system32\DRIVERS\jraid.sys []
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys []
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys []
R0 snapman;Acronis Snapshots Manager; C:\Windows\system32\DRIVERS\snapman.sys []
R0 Tpkd;Tpkd; C:\Windows\SysWOW64\drivers\Tpkd.sys []
R1 aswRdr;aswRdr; C:\Windows\SysWOW64\drivers\aswRdr.sys []
R1 aswTdi;avast! Network Shield Support; C:\Windows\SysWOW64\drivers\aswTdi.sys []
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys []
R1 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys []
R3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1E62x64.sys []
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys []
R3 PTSimBus;PenTablet Bus Enumerator; C:\Windows\system32\DRIVERS\PTSimBus.sys []
S0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys []
S1 AsIO;AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [2007-12-17 14392]
S1 aswSP;avast! Self Protection; C:\Windows\SysWOW64\drivers\aswSP.sys []
S2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys []
S2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys []
S3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atipmdag.sys []
S3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys []
S3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys []
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys []
S3 ENTECH64;ENTECH64; \??\C:\Windows\system32\DRIVERS\ENTECH64.sys []
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys []
S3 PAC7302;2.0 USB PC CAMERA P228; C:\Windows\system32\DRIVERS\PAC7302.SYS [2007-08-09 461696]
S3 PTSimHid;PenTablet Simulated HID MiniDriver; C:\Windows\system32\DRIVERS\PTSimHid.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys []
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys []
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys []
S3 Tablet2k;Serial Tablet Port Driver; C:\Windows\System32\Drivers\Tablet2k.sys []
S3 TClass2k;Tablet Class Driver; C:\Windows\system32\DRIVERS\TClass2k.sys []
S3 UCTblHid;HID Tablet Port Driver; C:\Windows\system32\DRIVERS\UCTblHid.sys []
S3 usbbus;LGE Mobile Composite USB Device; C:\Windows\system32\DRIVERS\lgx64bus.sys []
S3 UsbDiag;LGE Mobile USB Serial Port; C:\Windows\system32\DRIVERS\lgx64diag.sys []
S3 USBModem;LGE Mobile USB Modem; C:\Windows\system32\DRIVERS\lgx64modem.sys []
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys []
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys []
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys []
S3 WPRO_40_1340;WinPcap Packet Driver (WPRO_40_1340); C:\Windows\system32\drivers\WPRO_40_1340.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 vsmon;TrueVector Internet Monitor; C:\Windows\SysWOW64\ZoneLabs\vsmon.exe [2009-11-22 2384240]
S2 AcronisOSSReinstallSvc;Acronis OS Selector Reinstall Service; C:\Program Files (x86)\Common Files\Acronis\Acronis Disk Director\oss_reinstall_svc.exe [2007-03-15 2233400]
S2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe []
S2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-08-28 144672]
S2 aswUpdSv;avast! iAVS4 Control Service; E:\Program files\Avast\aswUpdSv.exe [2009-11-25 18752]
S2 avast! Antivirus;avast! Antivirus; E:\Program files\Avast\ashServ.exe [2009-11-25 138680]
S2 Bonjour Service;Bonjour Service; C:\Program Files (x86)\Bonjour\mDNSResponder.exe [2008-12-12 238888]
S2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S2 ICQ Service;ICQ Service; C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe [2010-03-28 246520]
S2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2010-07-15 66872]
S2 ProtexisLicensing;ProtexisLicensing; C:\Windows\SysWOW64\PSIService.exe [2006-11-02 174656]
S2 PSI_SVC_2;Protexis Licensing V2; C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [2007-07-24 185632]
S2 WinTabService;WinTab Service; C:\Windows\System32\Drivers\WTSRV.EXE []
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe []
S3 avast! Mail Scanner;avast! Mail Scanner; E:\Program files\Avast\ashMaiSv.exe [2009-11-25 254040]
S3 avast! Web Scanner;avast! Web Scanner; E:\Program files\Avast\ashWebSv.exe [2009-11-25 352920]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-02-07 867080]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 iPod Service;iPod Service; C:\Program Files (x86)\iPod\bin\iPodService.exe [2009-11-12 545568]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2010-10-06 411432]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
-----------------EOF-----------------