preventivni kontrola logu - BSOD :(
Napsal: 26 lis 2010 10:32
Logfile of random's system information tool 1.08 (written by random/random)
Run by choros at 2010-11-26 10:31:16
Rockers International Team® Windows Vista Eternity™ 2009 x64 Service Pack 1
System drive C: has 16 GB (16%) free of 100 GB
Total RAM: 6131 MB (74% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:31:25, on 26.11.2010
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\RocketDock\RocketDock.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Windows\SysWOW64\WTClient.exe
C:\PROGRA~2\FLOCK\FLOCK.EXE
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\Shell.exe
C:\Program Files (x86)\totalcmd\TOTALCMD.EXE
C:\Program Files\trend micro\choros.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [SwitchBoard] "C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe"
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [WTClient] WTClient.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: RocketDock.lnk = C:\Program Files\RocketDock\RocketDock.exe
O4 - Global Startup: Start 3DxWare.lnk = C:\Program Files\3Dconnexion\3Dconnexion 3DxSoftware\3DxWare64\3dxsrv.exe
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - Unknown owner - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: mental ray 3.8 Satellite for Autodesk 3ds Max 2011 64-bit 64-bit (mi-raysat_3dsmax2011_64) - Unknown owner - C:\Program Files\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64server.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WinTab Service (WinTabService) - Unknown owner - C:\Windows\System32\Drivers\WTSRV.EXE (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 7185 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
C:\Windows\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
wininit.exe
C:\Windows\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-1330cede-9df5-468b-a16d-bb3010858c7d -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-78eb6211-2d8e-4fd5-9138-9499884f996b -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-4ea0f0d1-5a01-494f-8703-44c104441c05 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:c7bc717c-83a5-47b3-b8e7-c2d67f153700
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\Explorer.EXE
"C:\Windows\system32\Dwm.exe"
"C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe"
"C:\Program Files\Alwil Software\Avast4\ashServ.exe"
taskeng.exe {18CFF3A0-3E3C-4E1F-BDCD-E9B10BD23B0D}
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
taskeng.exe {4BDF6F06-1323-4B3A-8021-7EB9BE4A5DA5}
"C:\Program Files (x86)\Bonjour\mDNSResponder.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
"C:\Program Files\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64server.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
"C:\Windows\System32\Drivers\WTSRV.EXE"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe"
"C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service
"C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service
"C:\Program Files\Windows Defender\MSASCui.exe" -hide
"C:\Windows\RAVCpl64.exe"
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe"
"C:\Windows\System32\rundll32.exe" C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
"C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"C:\Program Files (x86)\RocketDock\RocketDock.exe"
"C:\PROGRAM FILES\3DCONNEXION\3DCONNEXION 3DXSOFTWARE\3DXWARE64\3DXSRV.EXE"
"C:\Program Files\Alwil Software\Avast4\ashDisp.exe"
"C:\Windows\System32\WTClient.exe"
rundll32 NVSVC64.DLL,nvsvcInitialize
"C:\PROGRA~2\FLOCK\FLOCK.EXE" -requestPending -osint -url "http://go.microsoft.com/fwlink/?linkid= ... cid=0x0409"
C:\Windows\System32\mobsync.exe -Embedding
"C:\Windows\system32\wuauclt.exe"
"C:\Windows\system32\mmc.exe" "C:\Windows\System32\devmgmt.msc" /S
taskeng.exe {70E47ECD-0EB7-4131-A636-721DD666C84F}
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\Shell.exe"
"C:\Program Files (x86)\totalcmd\TOTALCMD.EXE"
"C:\Users\choros\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll [2010-03-25 1548096]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll [2010-03-25 968000]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-10-24 1584184]
"RtHDVCpl"=C:\Windows\RAVCpl64.exe [2008-07-24 6452256]
"Skytel"=C:\Windows\Skytel.exe [2008-07-24 1833504]
"IAAnotif"=C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [2008-08-06 182808]
"NvSvc"=C:\Windows\system32\nvsvc64.dll [2007-07-21 88064]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2007-07-21 10682880]
"NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2007-07-21 74752]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2010-11-25 8904952]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2008-11-26 81000]
"WTClient"=C:\Windows\system32\WTClient.exe [2007-04-11 40960]
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2010-03-18 421888]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
RocketDock.lnk - C:\Program Files (x86)\RocketDock\RocketDock.exe
Start 3DxWare.lnk - C:\Program Files\3Dconnexion\3Dconnexion 3DxSoftware\3DxWare64\3dxsrv.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler]
Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll [2008-10-24 275360]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=0
"EnableLUA"=0
"dontdisplaylastusername"=0
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
"LegalNoticeText"=
"LegalNoticeCaption"=
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======List of files/folders created in the last 1 months======
2010-11-26 10:31:16 ----D---- C:\rsit
2010-11-26 10:31:16 ----D---- C:\Program Files\trend micro
2010-11-26 10:06:58 ----D---- C:\Users\choros\AppData\Roaming\Apple Computer
2010-11-26 08:42:52 ----D---- C:\Users\choros\AppData\Roaming\Unigraphics Solutions
2010-11-26 08:39:58 ----D---- C:\Users\choros\AppData\Roaming\Bentley
2010-11-26 08:39:58 ----D---- C:\ProgramData\Bentley
2010-11-26 08:14:57 ----D---- C:\Program Files (x86)\WinSCP
2010-11-26 08:12:23 ----D---- C:\ProgramData\Bentley Multi-Install
2010-11-26 08:12:23 ----D---- C:\Program Files (x86)\Bentley Multi-Install
2010-11-26 08:08:21 ----D---- C:\ProgramData\FLEXnet
2010-11-26 08:07:03 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2010-11-26 07:59:26 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2010-11-26 07:59:26 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2010-11-26 07:59:26 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2010-11-26 07:59:26 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2010-11-26 07:59:26 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-11-26 07:59:26 ----A---- C:\Windows\system32\PresentationHost.exe
2010-11-26 07:59:26 ----A---- C:\Windows\system32\mscoree.dll
2010-11-26 07:59:26 ----A---- C:\Windows\system32\dfshim.dll
2010-11-26 07:53:27 ----D---- C:\Windows\Minidump
2010-11-26 01:46:07 ----D---- C:\Windows\Debug
2010-11-26 01:33:27 ----D---- C:\Windows\SoftwareDistribution
2010-11-26 01:30:59 ----D---- C:\Windows\CSC
2010-11-26 01:20:24 ----D---- C:\Windows\Panther
2010-11-26 01:19:43 ----D---- C:\Windows\system32\OEM
2010-11-26 00:56:06 ----D---- C:\Windows.old.000
2010-11-25 23:59:33 ----D---- C:\Program Files (x86)\ZyXEL
2010-11-25 23:59:33 ----A---- C:\Windows\system32\drivers\WlanUZG.sys
2010-11-25 23:52:11 ----D---- C:\Program Files\Common Files\Macrovision Shared
2010-11-25 23:49:38 ----D---- C:\Program Files\Common Files\Autodesk Shared
2010-11-25 23:49:38 ----D---- C:\Program Files\Autodesk
2010-11-25 23:49:11 ----D---- C:\Users\choros\AppData\Roaming\Mozilla
2010-11-25 23:49:11 ----D---- C:\Users\choros\AppData\Roaming\Flock
2010-11-25 23:46:36 ----D---- C:\Program Files (x86)\Autodesk
2010-11-25 23:46:33 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2010-11-25 23:46:33 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2010-11-25 23:46:33 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2010-11-25 23:46:33 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-11-25 23:46:33 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-11-25 23:46:33 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-11-25 23:46:32 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2010-11-25 23:46:32 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2010-11-25 23:46:32 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-11-25 23:46:32 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-11-25 23:46:31 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2010-11-25 23:46:31 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2010-11-25 23:46:31 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-11-25 23:46:31 ----A---- C:\Windows\system32\d3dx10_34.dll
2010-11-25 23:46:30 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2010-11-25 23:46:30 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2010-11-25 23:46:30 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2010-11-25 23:46:30 ----A---- C:\Windows\system32\d3dx9_34.dll
2010-11-25 23:46:30 ----A---- C:\Windows\system32\d3dx10.dll
2010-11-25 23:46:30 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2010-11-25 23:46:29 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2010-11-25 23:46:29 ----A---- C:\Windows\system32\d3dx9_32.dll
2010-11-25 23:46:28 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2010-11-25 23:46:28 ----A---- C:\Windows\system32\d3dx9_31.dll
2010-11-25 23:43:12 ----A---- C:\Windows\SYSWOW64\icardres.dll
2010-11-25 23:43:12 ----A---- C:\Windows\system32\icardres.dll
2010-11-25 23:43:11 ----A---- C:\Windows\SYSWOW64\PresentationNative_v0300.dll
2010-11-25 23:43:11 ----A---- C:\Windows\SYSWOW64\infocardapi.dll
2010-11-25 23:43:11 ----A---- C:\Windows\SYSWOW64\icardagt.exe
2010-11-25 23:43:11 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2010-11-25 23:43:11 ----A---- C:\Windows\system32\infocardapi.dll
2010-11-25 23:43:11 ----A---- C:\Windows\system32\icardagt.exe
2010-11-25 23:43:06 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2010-11-25 23:43:06 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2010-11-25 23:39:47 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2010-11-25 23:39:47 ----A---- C:\Windows\system32\netfxperf.dll
2010-11-25 23:39:30 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2010-11-25 23:39:30 ----A---- C:\Windows\system32\mscorier.dll
2010-11-25 23:39:28 ----A---- C:\Windows\system32\mscories.dll
2010-11-25 23:39:27 ----A---- C:\Windows\SYSWOW64\mscories.dll
2010-11-25 23:37:26 ----D---- C:\Users\choros\AppData\Roaming\Autodesk
2010-11-25 23:37:26 ----D---- C:\ProgramData\Autodesk
2010-11-25 23:35:37 ----D---- C:\Users\choros\AppData\Roaming\3Dconnexion
2010-11-25 23:33:16 ----D---- C:\Program Files (x86)\The KMPlayer
2010-11-25 23:32:29 ----D---- C:\Users\choros\AppData\Roaming\Shark007
2010-11-25 23:32:29 ----D---- C:\ProgramData\Shark007
2010-11-25 23:32:29 ----A---- C:\Windows\system32\xvidvfw.dll
2010-11-25 23:32:29 ----A---- C:\Windows\system32\xvidcore.dll
2010-11-25 23:32:29 ----A---- C:\Windows\system32\VSFilter.dll
2010-11-25 23:32:29 ----A---- C:\Windows\system32\unrar.dll
2010-11-25 23:32:29 ----A---- C:\Windows\system32\pthreadGC2.dll
2010-11-25 23:32:29 ----A---- C:\Windows\system32\ff_vfw.dll
2010-11-25 23:32:29 ----A---- C:\Windows\AviSplitter.INI
2010-11-25 23:32:28 ----D---- C:\Program Files\Shark007
2010-11-25 23:31:51 ----D---- C:\Program Files (x86)\Flock
2010-11-25 23:31:25 ----D---- C:\Program Files (x86)\Safari
2010-11-25 23:31:03 ----D---- C:\ProgramData\Apple Computer
2010-11-25 23:31:03 ----D---- C:\Program Files (x86)\QuickTime
2010-11-25 23:30:56 ----D---- C:\Program Files (x86)\Bonjour
2010-11-25 23:30:55 ----D---- C:\Program Files\Bonjour
2010-11-25 23:30:46 ----D---- C:\ProgramData\Apple
2010-11-25 23:30:46 ----D---- C:\Program Files (x86)\Apple Software Update
2010-11-25 23:30:31 ----D---- C:\Program Files (x86)\Mozilla Firefox
2010-11-25 23:29:53 ----D---- C:\Program Files (x86)\3Dconnexion
2010-11-25 23:29:52 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2010-11-25 23:29:17 ----D---- C:\Program Files\3Dconnexion
2010-11-25 23:24:15 ----D---- C:\Program Files (x86)\Solid Edge ST2
2010-11-25 23:21:01 ----D---- C:\Users\choros\AppData\Roaming\IrfanView
2010-11-25 23:21:01 ----D---- C:\Program Files (x86)\IrfanView
2010-11-25 23:19:47 ----D---- C:\Program Files (x86)\PENSKETCH SERIES
2010-11-25 23:14:33 ----D---- C:\ProgramData\comodo
2010-11-25 23:14:33 ----D---- C:\Program Files\COMODO
2010-11-25 23:14:33 ----A---- C:\Windows\SYSWOW64\guard32.dll
2010-11-25 23:14:33 ----A---- C:\Windows\system32\guard64.dll
2010-11-25 23:14:33 ----A---- C:\Windows\system32\drivers\inspect.sys
2010-11-25 23:14:33 ----A---- C:\Windows\system32\drivers\cmdhlp.sys
2010-11-25 23:14:33 ----A---- C:\Windows\system32\drivers\cmdguard.sys
2010-11-25 23:13:28 ----D---- C:\Program Files (x86)\DAEMON Tools Toolbar
2010-11-25 23:13:23 ----A---- C:\Windows\system32\drivers\sptd.sys
2010-11-25 23:13:17 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2010-11-25 23:12:52 ----D---- C:\Users\choros\AppData\Roaming\DAEMON Tools Lite
2010-11-25 23:12:50 ----D---- C:\ProgramData\DAEMON Tools Lite
2010-11-25 23:12:27 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2010-11-25 23:12:27 ----A---- C:\Windows\system32\drivers\aswRdr.sys
2010-11-25 23:12:26 ----A---- C:\Windows\system32\drivers\aswSP.sys
2010-11-25 23:12:26 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2010-11-25 23:12:26 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2010-11-25 23:12:18 ----A---- C:\Windows\SYSWOW64\MSVCR71.dll
2010-11-25 23:12:18 ----A---- C:\Windows\SYSWOW64\MSVCP71.dll
2010-11-25 23:12:18 ----A---- C:\Windows\SYSWOW64\MFC71.dll
2010-11-25 23:12:18 ----A---- C:\Windows\SYSWOW64\aswBoot.exe
2010-11-25 23:12:17 ----D---- C:\Program Files\Alwil Software
2010-11-25 22:48:51 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2010-11-25 22:48:28 ----D---- C:\Program Files\Adobe
2010-11-25 22:47:35 ----D---- C:\Program Files\Common Files\Adobe
2010-11-25 22:46:53 ----D---- C:\Program Files (x86)\Adobe Media Player
2010-11-25 22:45:38 ----D---- C:\Program Files (x86)\Adobe
2010-11-25 22:44:07 ----D---- C:\Users\choros\AppData\Roaming\Macromedia
2010-11-25 22:44:07 ----D---- C:\ProgramData\Adobe
2010-11-25 22:44:03 ----D---- C:\Users\choros\AppData\Roaming\Adobe
2010-11-25 22:43:23 ----D---- C:\Users\choros\AppData\Roaming\GHISLER
2010-11-25 22:43:23 ----D---- C:\Program Files (x86)\totalcmd
2010-11-25 22:43:23 ----A---- C:\Windows\UC.PIF
2010-11-25 22:43:23 ----A---- C:\Windows\RAR.PIF
2010-11-25 22:43:23 ----A---- C:\Windows\PKZIP.PIF
2010-11-25 22:43:23 ----A---- C:\Windows\PKUNZIP.PIF
2010-11-25 22:43:23 ----A---- C:\Windows\NOCLOSE.PIF
2010-11-25 22:43:23 ----A---- C:\Windows\LHA.PIF
2010-11-25 22:43:23 ----A---- C:\Windows\ARJ.PIF
2010-11-25 21:43:14 ----D---- C:\ProgramData\NVIDIA
2010-11-25 21:35:40 ----A---- C:\Windows\system32\nvexpbar.dll
2010-11-25 21:35:40 ----A---- C:\Windows\system32\nvcpluir.dll
2010-11-25 21:35:40 ----A---- C:\Windows\system32\nvcplui.exe
2010-11-25 21:34:15 ----A---- C:\Windows\system32\nvudisp.exe
2010-11-25 21:33:31 ----A---- C:\Windows\system32\NVUNINST.EXE
2010-11-25 17:27:15 ----A---- C:\Windows\SYSWOW64\difxapi.dll
2010-11-25 17:27:08 ----A---- C:\Windows\system32\drivers\iaStor.sys
2010-11-25 17:26:53 ----D---- C:\Windows\SYSWOW64\RTCOM
2010-11-25 17:26:53 ----D---- C:\Users\choros\AppData\Roaming\InstallShield
2010-11-25 17:26:16 ----D---- C:\Program Files\Intel
2010-11-25 17:25:54 ----RA---- C:\Windows\system32\PROUnstl.exe
2010-11-25 17:25:01 ----A---- C:\Windows\DIFxAPI.dll
2010-11-25 17:24:59 ----A---- C:\Windows\system32\SRSWOW64.dll
2010-11-25 17:24:59 ----A---- C:\Windows\system32\SRSTSX64.dll
2010-11-25 17:24:59 ----A---- C:\Windows\system32\SRSTSH64.dll
2010-11-25 17:24:59 ----A---- C:\Windows\system32\SRSHP64.dll
2010-11-25 17:24:59 ----A---- C:\Windows\SkyTel.exe
2010-11-25 17:24:58 ----A---- C:\Windows\system32\RtPgEx64.dll
2010-11-25 17:24:58 ----A---- C:\Windows\system32\RtkAPO64.dll
2010-11-25 17:24:58 ----A---- C:\Windows\system32\RtkApi64.dll
2010-11-25 17:24:58 ----A---- C:\Windows\system32\RTCOM64.dll
2010-11-25 17:24:58 ----A---- C:\Windows\system32\RCoInst64.dll
2010-11-25 17:24:58 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2010-11-25 17:24:58 ----A---- C:\Windows\RtlUpd64.exe
2010-11-25 17:24:56 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2010-11-25 17:24:56 ----D---- C:\Program Files (x86)\Realtek
2010-11-25 17:24:56 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2010-11-25 17:24:56 ----A---- C:\Windows\system32\FMAPO64.dll
2010-11-25 17:24:56 ----A---- C:\Windows\RAVCpl64.exe
2010-11-25 17:24:54 ----R---- C:\Windows\RtlExUpd.dll
2010-11-25 17:24:54 ----A---- C:\Windows\HideWin.exe
2010-11-25 17:19:39 ----A---- C:\Windows\system32\NicInstQ.dll
2010-11-25 17:19:39 ----A---- C:\Windows\system32\NicCo26.dll
2010-11-25 17:19:39 ----A---- C:\Windows\system32\e1000msg.dll
2010-11-25 17:19:39 ----A---- C:\Windows\system32\drivers\e1y60x64.sys
2010-11-25 17:00:18 ----D---- C:\Program Files (x86)\Intel
2010-11-25 17:00:18 ----A---- C:\Windows\SYSWOW64\CSVer.dll
2010-11-25 16:58:33 ----D---- C:\Program Files (x86)\MSXML 4.0
2010-11-25 16:58:29 ----SHD---- C:\Windows\Installer
2010-11-25 16:56:28 ----D---- C:\Users\choros\AppData\Roaming\Identities
2010-11-25 16:56:02 ----D---- C:\Windows\SYSWOW64\Macromed
2010-11-25 16:55:50 ----SD---- C:\Users\choros\AppData\Roaming\Microsoft
2010-11-25 16:55:50 ----D---- C:\Users\choros\AppData\Roaming\Media Center Programs
2010-11-23 10:53:07 ----D---- C:\temp
2010-11-22 16:40:47 ----RAS---- C:\BOOTSECT.BAK
2010-11-22 16:40:45 ----SHD---- C:\Boot
2010-11-22 16:39:12 ----RHD---- C:\MSOCache
2010-11-22 14:24:12 ----D---- C:\Windows.old
2010-11-22 14:05:00 ----SHD---- C:\Config.Msi
2010-11-22 13:26:28 ----HD---- C:\VritualRoot
2010-11-22 12:14:29 ----SHD---- C:\Recovery
2010-11-22 12:00:47 ----ASH---- C:\hiberfil.sys
2010-11-22 08:09:42 ----D---- C:\Intel
2010-11-22 08:09:02 ----D---- C:\TempEI4
2010-11-22 07:43:42 ----ASH---- C:\pagefile.sys
2010-11-22 07:43:41 ----SHD---- C:\System Volume Information
2010-10-29 09:57:49 ----A---- C:\Windows\SYSWOW64\WTClient.exe
2010-10-29 09:57:49 ----A---- C:\Windows\SYSWOW64\WinTab32.dll
2010-10-29 09:57:49 ----A---- C:\Windows\SYSWOW64\tabcfg.exe
2010-10-29 09:57:49 ----A---- C:\Windows\system32\WTClient.exe
2010-10-29 09:57:49 ----A---- C:\Windows\system32\WinTab32.dll
2010-10-29 09:57:49 ----A---- C:\Windows\system32\UCMfg.exe
2010-10-29 09:57:49 ----A---- C:\Windows\system32\ucinst32.dll
2010-10-29 09:57:48 ----A---- C:\Windows\system32\drivers\WTSrv.exe
2010-10-29 09:57:48 ----A---- C:\Windows\system32\drivers\UCTblHid.sys
2010-10-29 09:57:48 ----A---- C:\Windows\system32\drivers\TClass2k.sys
2010-10-29 09:57:48 ----A---- C:\Windows\system32\drivers\Tablet2k.sys
2010-10-29 09:57:48 ----A---- C:\Windows\system32\drivers\PTSimHid.sys
2010-10-29 09:57:48 ----A---- C:\Windows\system32\drivers\PTSimBus.sys
2010-10-29 09:57:48 ----A---- C:\Windows\SetupX32.EXE
2010-10-29 09:57:47 ----A---- C:\Windows\SYSWOW64\lhtool.exe
======List of files/folders modified in the last 1 months======
2010-11-26 10:31:22 ----D---- C:\Windows\Temp
2010-11-26 10:31:16 ----RD---- C:\Program Files
2010-11-26 10:18:36 ----D---- C:\Windows\System32
2010-11-26 10:18:36 ----D---- C:\Windows\inf
2010-11-26 10:18:36 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-11-26 10:13:13 ----D---- C:\Windows\SYSWOW64\drivers
2010-11-26 10:13:04 ----D---- C:\Windows\SysWOW64
2010-11-26 10:10:23 ----D---- C:\Windows
2010-11-26 09:24:04 ----D---- C:\Windows\Microsoft.NET
2010-11-26 09:24:00 ----RSD---- C:\Windows\assembly
2010-11-26 08:41:43 ----SD---- C:\ProgramData\Microsoft
2010-11-26 08:39:58 ----HD---- C:\ProgramData
2010-11-26 08:14:57 ----RD---- C:\Program Files (x86)
2010-11-26 08:12:23 ----D---- C:\Program Files (x86)\Common Files
2010-11-26 07:59:32 ----D---- C:\Windows\winsxs
2010-11-26 07:59:30 ----D---- C:\Windows\system32\catroot
2010-11-26 07:57:54 ----D---- C:\Windows\SYSWOW64\XPSViewer
2010-11-26 07:57:54 ----D---- C:\Windows\SYSWOW64\cs-CZ
2010-11-26 07:57:53 ----D---- C:\Windows\system32\cs-CZ
2010-11-26 07:57:48 ----D---- C:\Windows\system32\catroot2
2010-11-26 07:57:12 ----D---- C:\Windows\SYSWOW64\MUI
2010-11-26 07:57:12 ----D---- C:\Windows\system32\MUI
2010-11-26 01:39:42 ----ASH---- C:\Program Files\desktop.ini
2010-11-26 01:39:42 ----ASH---- C:\Program Files (x86)\desktop.ini
2010-11-26 01:37:18 ----D---- C:\Windows\system32\drivers\UMDF
2010-11-26 01:22:33 ----D---- C:\Windows\system32\config
2010-11-26 00:00:37 ----D---- C:\Windows\SYSWOW64\wbem
2010-11-26 00:00:37 ----D---- C:\Windows\SYSWOW64\en-US
2010-11-26 00:00:37 ----D---- C:\Windows\system32\wbem
2010-11-26 00:00:37 ----D---- C:\Windows\system32\en-US
2010-11-25 23:59:47 ----D---- C:\Windows\system32\drivers
2010-11-25 23:52:11 ----D---- C:\Program Files\Common Files
2010-11-25 23:46:09 ----D---- C:\Windows\Logs
2010-11-25 23:32:39 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-11-25 23:31:14 ----D---- C:\Program Files (x86)\Internet Explorer
2010-11-25 23:30:47 ----D---- C:\Windows\system32\Tasks
2010-11-25 23:25:44 ----RSD---- C:\Windows\Fonts
2010-11-25 22:43:58 ----D---- C:\Windows\Prefetch
2010-11-25 21:39:34 ----D---- C:\Windows\system32\WDI
2010-11-25 21:35:37 ----D---- C:\Windows\Help
2010-11-25 16:58:38 ----D---- C:\Windows\system32\restore
2010-11-25 16:56:55 ----SHD---- C:\$Recycle.Bin
2010-11-25 16:55:45 ----RD---- C:\Users
2010-11-25 16:48:26 ----D---- C:\Windows\rescache
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 fvevol;BitLocker Drive Encryption Filter Driver; C:\Windows\System32\DRIVERS\fvevol.sys [2008-10-24 161848]
R0 iaStor;Intel RAID Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2008-07-20 402456]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-11-25 834544]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2009-11-25 27216]
R1 aswSP;avast! Self Protection; C:\Windows\system32\drivers\aswSP.sys [2009-11-25 89680]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2009-11-25 53840]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\System32\DRIVERS\cmdguard.sys [2010-11-25 90640]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2010-11-25 27152]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys [2009-11-25 22096]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys [2009-11-25 65616]
R3 e1yexpress;Intel(R) Gigabit Network Connections Driver; C:\Windows\system32\DRIVERS\e1y60x64.sys [2008-06-13 316544]
R3 Inspect;Comodo Firewall Network Driver; C:\Windows\system32\DRIVERS\inspect.sys [2010-11-25 82960]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2008-07-24 1488032]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2007-07-21 9594272]
R3 PTSimBus;PenTablet Bus Enumerator; C:\Windows\system32\DRIVERS\PTSimBus.sys [2007-06-08 28672]
R3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-10-24 46080]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-10-24 108544]
R3 ZY202_VS;ZyXEL 802.11g XG202 1211 Vista Driver; C:\Windows\system32\DRIVERS\WlanUZG.sys [2007-04-03 559104]
S3 adxqer0p;adxqer0p; C:\Windows\system32\drivers\adxqer0p.sys []
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-10-24 6144]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 273920]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-10-24 11008]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2006-11-02 7040]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2006-11-02 6656]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-10-24 7936]
S3 NAL;Nal Service ; \??\C:\Windows\system32\Drivers\iqvw64e.sys [2008-05-23 33888]
S3 PTSimHid;PenTablet Simulated HID MiniDriver; C:\Windows\System32\Drivers\PTSimHid.sys [2007-04-23 14336]
S3 Tablet2k;Serial Tablet Port Driver; C:\Windows\System32\Drivers\Tablet2k.sys [2007-04-16 26112]
S3 TClass2k;Tablet Class Driver; C:\Windows\System32\Drivers\TClass2k.sys [2007-04-16 28160]
S3 UCTblHid;HID Tablet Port Driver; C:\Windows\System32\Drivers\UCTblHid.sys [2007-06-01 18432]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-10-24 8704]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-10-24 438328]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2008-11-26 18752]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2008-11-26 155160]
R2 Bonjour Service;Bonjour Service; C:\Program Files (x86)\Bonjour\mDNSResponder.exe [2010-05-18 345376]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2010-11-25 889080]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2008-08-06 354840]
R2 mi-raysat_3dsmax2011_64;mental ray 3.8 Satellite for Autodesk 3ds Max 2011 64-bit 64-bit; C:\Program Files\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64server.exe [2010-03-10 86016]
R2 WinTabService;WinTab Service; C:\Windows\System32\Drivers\WTSRV.EXE [2007-05-31 53248]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2008-11-26 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2008-11-26 352920]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.20506\aspnet_state.exe [2009-05-06 43336]
S3 clr_optimization_v4.0.20506_32;.NET Runtime Optimization Service v4.0.20506_X86; C:\Windows\Microsoft.NET\Framework\v4.0.20506\mscorsvw.exe [2009-05-06 104272]
S3 clr_optimization_v4.0.20506_64;.NET Runtime Optimization Service v4.0.20506_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.20506\mscorsvw.exe [2009-05-06 122192]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2010-11-25 1436424]
S3 PerfHost;@%systemroot%\sysWow64\perfhost.exe,-2; C:\Windows\SysWow64\perfhost.exe [2008-10-24 19968]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
-----------------EOF-----------------
Run by choros at 2010-11-26 10:31:16
Rockers International Team® Windows Vista Eternity™ 2009 x64 Service Pack 1
System drive C: has 16 GB (16%) free of 100 GB
Total RAM: 6131 MB (74% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:31:25, on 26.11.2010
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\RocketDock\RocketDock.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Windows\SysWOW64\WTClient.exe
C:\PROGRA~2\FLOCK\FLOCK.EXE
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\Shell.exe
C:\Program Files (x86)\totalcmd\TOTALCMD.EXE
C:\Program Files\trend micro\choros.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll
O4 - HKLM\..\Run: [SwitchBoard] "C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe"
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [WTClient] WTClient.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: RocketDock.lnk = C:\Program Files\RocketDock\RocketDock.exe
O4 - Global Startup: Start 3DxWare.lnk = C:\Program Files\3Dconnexion\3Dconnexion 3DxSoftware\3DxWare64\3dxsrv.exe
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - Unknown owner - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: mental ray 3.8 Satellite for Autodesk 3ds Max 2011 64-bit 64-bit (mi-raysat_3dsmax2011_64) - Unknown owner - C:\Program Files\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64server.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WinTab Service (WinTabService) - Unknown owner - C:\Windows\System32\Drivers\WTSRV.EXE (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 7185 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
C:\Windows\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
wininit.exe
C:\Windows\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-1330cede-9df5-468b-a16d-bb3010858c7d -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-78eb6211-2d8e-4fd5-9138-9499884f996b -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-4ea0f0d1-5a01-494f-8703-44c104441c05 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:c7bc717c-83a5-47b3-b8e7-c2d67f153700
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\Explorer.EXE
"C:\Windows\system32\Dwm.exe"
"C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe"
"C:\Program Files\Alwil Software\Avast4\ashServ.exe"
taskeng.exe {18CFF3A0-3E3C-4E1F-BDCD-E9B10BD23B0D}
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
taskeng.exe {4BDF6F06-1323-4B3A-8021-7EB9BE4A5DA5}
"C:\Program Files (x86)\Bonjour\mDNSResponder.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
"C:\Program Files\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64server.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
"C:\Windows\System32\Drivers\WTSRV.EXE"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe"
"C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service
"C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service
"C:\Program Files\Windows Defender\MSASCui.exe" -hide
"C:\Windows\RAVCpl64.exe"
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe"
"C:\Windows\System32\rundll32.exe" C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
"C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"C:\Program Files (x86)\RocketDock\RocketDock.exe"
"C:\PROGRAM FILES\3DCONNEXION\3DCONNEXION 3DXSOFTWARE\3DXWARE64\3DXSRV.EXE"
"C:\Program Files\Alwil Software\Avast4\ashDisp.exe"
"C:\Windows\System32\WTClient.exe"
rundll32 NVSVC64.DLL,nvsvcInitialize
"C:\PROGRA~2\FLOCK\FLOCK.EXE" -requestPending -osint -url "http://go.microsoft.com/fwlink/?linkid= ... cid=0x0409"
C:\Windows\System32\mobsync.exe -Embedding
"C:\Windows\system32\wuauclt.exe"
"C:\Windows\system32\mmc.exe" "C:\Windows\System32\devmgmt.msc" /S
taskeng.exe {70E47ECD-0EB7-4131-A636-721DD666C84F}
"C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\Shell.exe"
"C:\Program Files (x86)\totalcmd\TOTALCMD.EXE"
"C:\Users\choros\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll [2010-03-25 1548096]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll [2010-03-25 968000]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-10-24 1584184]
"RtHDVCpl"=C:\Windows\RAVCpl64.exe [2008-07-24 6452256]
"Skytel"=C:\Windows\Skytel.exe [2008-07-24 1833504]
"IAAnotif"=C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [2008-08-06 182808]
"NvSvc"=C:\Windows\system32\nvsvc64.dll [2007-07-21 88064]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2007-07-21 10682880]
"NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2007-07-21 74752]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2010-11-25 8904952]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
"avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2008-11-26 81000]
"WTClient"=C:\Windows\system32\WTClient.exe [2007-04-11 40960]
"QuickTime Task"=C:\Program Files (x86)\QuickTime\QTTask.exe [2010-03-18 421888]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
RocketDock.lnk - C:\Program Files (x86)\RocketDock\RocketDock.exe
Start 3DxWare.lnk - C:\Program Files\3Dconnexion\3Dconnexion 3DxSoftware\3DxWare64\3dxsrv.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler]
Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll [2008-10-24 275360]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=0
"EnableLUA"=0
"dontdisplaylastusername"=0
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
"LegalNoticeText"=
"LegalNoticeCaption"=
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======List of files/folders created in the last 1 months======
2010-11-26 10:31:16 ----D---- C:\rsit
2010-11-26 10:31:16 ----D---- C:\Program Files\trend micro
2010-11-26 10:06:58 ----D---- C:\Users\choros\AppData\Roaming\Apple Computer
2010-11-26 08:42:52 ----D---- C:\Users\choros\AppData\Roaming\Unigraphics Solutions
2010-11-26 08:39:58 ----D---- C:\Users\choros\AppData\Roaming\Bentley
2010-11-26 08:39:58 ----D---- C:\ProgramData\Bentley
2010-11-26 08:14:57 ----D---- C:\Program Files (x86)\WinSCP
2010-11-26 08:12:23 ----D---- C:\ProgramData\Bentley Multi-Install
2010-11-26 08:12:23 ----D---- C:\Program Files (x86)\Bentley Multi-Install
2010-11-26 08:08:21 ----D---- C:\ProgramData\FLEXnet
2010-11-26 08:07:03 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2010-11-26 07:59:26 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2010-11-26 07:59:26 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2010-11-26 07:59:26 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2010-11-26 07:59:26 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2010-11-26 07:59:26 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2010-11-26 07:59:26 ----A---- C:\Windows\system32\PresentationHost.exe
2010-11-26 07:59:26 ----A---- C:\Windows\system32\mscoree.dll
2010-11-26 07:59:26 ----A---- C:\Windows\system32\dfshim.dll
2010-11-26 07:53:27 ----D---- C:\Windows\Minidump
2010-11-26 01:46:07 ----D---- C:\Windows\Debug
2010-11-26 01:33:27 ----D---- C:\Windows\SoftwareDistribution
2010-11-26 01:30:59 ----D---- C:\Windows\CSC
2010-11-26 01:20:24 ----D---- C:\Windows\Panther
2010-11-26 01:19:43 ----D---- C:\Windows\system32\OEM
2010-11-26 00:56:06 ----D---- C:\Windows.old.000
2010-11-25 23:59:33 ----D---- C:\Program Files (x86)\ZyXEL
2010-11-25 23:59:33 ----A---- C:\Windows\system32\drivers\WlanUZG.sys
2010-11-25 23:52:11 ----D---- C:\Program Files\Common Files\Macrovision Shared
2010-11-25 23:49:38 ----D---- C:\Program Files\Common Files\Autodesk Shared
2010-11-25 23:49:38 ----D---- C:\Program Files\Autodesk
2010-11-25 23:49:11 ----D---- C:\Users\choros\AppData\Roaming\Mozilla
2010-11-25 23:49:11 ----D---- C:\Users\choros\AppData\Roaming\Flock
2010-11-25 23:46:36 ----D---- C:\Program Files (x86)\Autodesk
2010-11-25 23:46:33 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2010-11-25 23:46:33 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2010-11-25 23:46:33 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2010-11-25 23:46:33 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-11-25 23:46:33 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-11-25 23:46:33 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-11-25 23:46:32 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2010-11-25 23:46:32 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2010-11-25 23:46:32 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-11-25 23:46:32 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-11-25 23:46:31 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2010-11-25 23:46:31 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2010-11-25 23:46:31 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-11-25 23:46:31 ----A---- C:\Windows\system32\d3dx10_34.dll
2010-11-25 23:46:30 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2010-11-25 23:46:30 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2010-11-25 23:46:30 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2010-11-25 23:46:30 ----A---- C:\Windows\system32\d3dx9_34.dll
2010-11-25 23:46:30 ----A---- C:\Windows\system32\d3dx10.dll
2010-11-25 23:46:30 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2010-11-25 23:46:29 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2010-11-25 23:46:29 ----A---- C:\Windows\system32\d3dx9_32.dll
2010-11-25 23:46:28 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2010-11-25 23:46:28 ----A---- C:\Windows\system32\d3dx9_31.dll
2010-11-25 23:43:12 ----A---- C:\Windows\SYSWOW64\icardres.dll
2010-11-25 23:43:12 ----A---- C:\Windows\system32\icardres.dll
2010-11-25 23:43:11 ----A---- C:\Windows\SYSWOW64\PresentationNative_v0300.dll
2010-11-25 23:43:11 ----A---- C:\Windows\SYSWOW64\infocardapi.dll
2010-11-25 23:43:11 ----A---- C:\Windows\SYSWOW64\icardagt.exe
2010-11-25 23:43:11 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2010-11-25 23:43:11 ----A---- C:\Windows\system32\infocardapi.dll
2010-11-25 23:43:11 ----A---- C:\Windows\system32\icardagt.exe
2010-11-25 23:43:06 ----A---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2010-11-25 23:43:06 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2010-11-25 23:39:47 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2010-11-25 23:39:47 ----A---- C:\Windows\system32\netfxperf.dll
2010-11-25 23:39:30 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2010-11-25 23:39:30 ----A---- C:\Windows\system32\mscorier.dll
2010-11-25 23:39:28 ----A---- C:\Windows\system32\mscories.dll
2010-11-25 23:39:27 ----A---- C:\Windows\SYSWOW64\mscories.dll
2010-11-25 23:37:26 ----D---- C:\Users\choros\AppData\Roaming\Autodesk
2010-11-25 23:37:26 ----D---- C:\ProgramData\Autodesk
2010-11-25 23:35:37 ----D---- C:\Users\choros\AppData\Roaming\3Dconnexion
2010-11-25 23:33:16 ----D---- C:\Program Files (x86)\The KMPlayer
2010-11-25 23:32:29 ----D---- C:\Users\choros\AppData\Roaming\Shark007
2010-11-25 23:32:29 ----D---- C:\ProgramData\Shark007
2010-11-25 23:32:29 ----A---- C:\Windows\system32\xvidvfw.dll
2010-11-25 23:32:29 ----A---- C:\Windows\system32\xvidcore.dll
2010-11-25 23:32:29 ----A---- C:\Windows\system32\VSFilter.dll
2010-11-25 23:32:29 ----A---- C:\Windows\system32\unrar.dll
2010-11-25 23:32:29 ----A---- C:\Windows\system32\pthreadGC2.dll
2010-11-25 23:32:29 ----A---- C:\Windows\system32\ff_vfw.dll
2010-11-25 23:32:29 ----A---- C:\Windows\AviSplitter.INI
2010-11-25 23:32:28 ----D---- C:\Program Files\Shark007
2010-11-25 23:31:51 ----D---- C:\Program Files (x86)\Flock
2010-11-25 23:31:25 ----D---- C:\Program Files (x86)\Safari
2010-11-25 23:31:03 ----D---- C:\ProgramData\Apple Computer
2010-11-25 23:31:03 ----D---- C:\Program Files (x86)\QuickTime
2010-11-25 23:30:56 ----D---- C:\Program Files (x86)\Bonjour
2010-11-25 23:30:55 ----D---- C:\Program Files\Bonjour
2010-11-25 23:30:46 ----D---- C:\ProgramData\Apple
2010-11-25 23:30:46 ----D---- C:\Program Files (x86)\Apple Software Update
2010-11-25 23:30:31 ----D---- C:\Program Files (x86)\Mozilla Firefox
2010-11-25 23:29:53 ----D---- C:\Program Files (x86)\3Dconnexion
2010-11-25 23:29:52 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2010-11-25 23:29:17 ----D---- C:\Program Files\3Dconnexion
2010-11-25 23:24:15 ----D---- C:\Program Files (x86)\Solid Edge ST2
2010-11-25 23:21:01 ----D---- C:\Users\choros\AppData\Roaming\IrfanView
2010-11-25 23:21:01 ----D---- C:\Program Files (x86)\IrfanView
2010-11-25 23:19:47 ----D---- C:\Program Files (x86)\PENSKETCH SERIES
2010-11-25 23:14:33 ----D---- C:\ProgramData\comodo
2010-11-25 23:14:33 ----D---- C:\Program Files\COMODO
2010-11-25 23:14:33 ----A---- C:\Windows\SYSWOW64\guard32.dll
2010-11-25 23:14:33 ----A---- C:\Windows\system32\guard64.dll
2010-11-25 23:14:33 ----A---- C:\Windows\system32\drivers\inspect.sys
2010-11-25 23:14:33 ----A---- C:\Windows\system32\drivers\cmdhlp.sys
2010-11-25 23:14:33 ----A---- C:\Windows\system32\drivers\cmdguard.sys
2010-11-25 23:13:28 ----D---- C:\Program Files (x86)\DAEMON Tools Toolbar
2010-11-25 23:13:23 ----A---- C:\Windows\system32\drivers\sptd.sys
2010-11-25 23:13:17 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2010-11-25 23:12:52 ----D---- C:\Users\choros\AppData\Roaming\DAEMON Tools Lite
2010-11-25 23:12:50 ----D---- C:\ProgramData\DAEMON Tools Lite
2010-11-25 23:12:27 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2010-11-25 23:12:27 ----A---- C:\Windows\system32\drivers\aswRdr.sys
2010-11-25 23:12:26 ----A---- C:\Windows\system32\drivers\aswSP.sys
2010-11-25 23:12:26 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2010-11-25 23:12:26 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2010-11-25 23:12:18 ----A---- C:\Windows\SYSWOW64\MSVCR71.dll
2010-11-25 23:12:18 ----A---- C:\Windows\SYSWOW64\MSVCP71.dll
2010-11-25 23:12:18 ----A---- C:\Windows\SYSWOW64\MFC71.dll
2010-11-25 23:12:18 ----A---- C:\Windows\SYSWOW64\aswBoot.exe
2010-11-25 23:12:17 ----D---- C:\Program Files\Alwil Software
2010-11-25 22:48:51 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2010-11-25 22:48:28 ----D---- C:\Program Files\Adobe
2010-11-25 22:47:35 ----D---- C:\Program Files\Common Files\Adobe
2010-11-25 22:46:53 ----D---- C:\Program Files (x86)\Adobe Media Player
2010-11-25 22:45:38 ----D---- C:\Program Files (x86)\Adobe
2010-11-25 22:44:07 ----D---- C:\Users\choros\AppData\Roaming\Macromedia
2010-11-25 22:44:07 ----D---- C:\ProgramData\Adobe
2010-11-25 22:44:03 ----D---- C:\Users\choros\AppData\Roaming\Adobe
2010-11-25 22:43:23 ----D---- C:\Users\choros\AppData\Roaming\GHISLER
2010-11-25 22:43:23 ----D---- C:\Program Files (x86)\totalcmd
2010-11-25 22:43:23 ----A---- C:\Windows\UC.PIF
2010-11-25 22:43:23 ----A---- C:\Windows\RAR.PIF
2010-11-25 22:43:23 ----A---- C:\Windows\PKZIP.PIF
2010-11-25 22:43:23 ----A---- C:\Windows\PKUNZIP.PIF
2010-11-25 22:43:23 ----A---- C:\Windows\NOCLOSE.PIF
2010-11-25 22:43:23 ----A---- C:\Windows\LHA.PIF
2010-11-25 22:43:23 ----A---- C:\Windows\ARJ.PIF
2010-11-25 21:43:14 ----D---- C:\ProgramData\NVIDIA
2010-11-25 21:35:40 ----A---- C:\Windows\system32\nvexpbar.dll
2010-11-25 21:35:40 ----A---- C:\Windows\system32\nvcpluir.dll
2010-11-25 21:35:40 ----A---- C:\Windows\system32\nvcplui.exe
2010-11-25 21:34:15 ----A---- C:\Windows\system32\nvudisp.exe
2010-11-25 21:33:31 ----A---- C:\Windows\system32\NVUNINST.EXE
2010-11-25 17:27:15 ----A---- C:\Windows\SYSWOW64\difxapi.dll
2010-11-25 17:27:08 ----A---- C:\Windows\system32\drivers\iaStor.sys
2010-11-25 17:26:53 ----D---- C:\Windows\SYSWOW64\RTCOM
2010-11-25 17:26:53 ----D---- C:\Users\choros\AppData\Roaming\InstallShield
2010-11-25 17:26:16 ----D---- C:\Program Files\Intel
2010-11-25 17:25:54 ----RA---- C:\Windows\system32\PROUnstl.exe
2010-11-25 17:25:01 ----A---- C:\Windows\DIFxAPI.dll
2010-11-25 17:24:59 ----A---- C:\Windows\system32\SRSWOW64.dll
2010-11-25 17:24:59 ----A---- C:\Windows\system32\SRSTSX64.dll
2010-11-25 17:24:59 ----A---- C:\Windows\system32\SRSTSH64.dll
2010-11-25 17:24:59 ----A---- C:\Windows\system32\SRSHP64.dll
2010-11-25 17:24:59 ----A---- C:\Windows\SkyTel.exe
2010-11-25 17:24:58 ----A---- C:\Windows\system32\RtPgEx64.dll
2010-11-25 17:24:58 ----A---- C:\Windows\system32\RtkAPO64.dll
2010-11-25 17:24:58 ----A---- C:\Windows\system32\RtkApi64.dll
2010-11-25 17:24:58 ----A---- C:\Windows\system32\RTCOM64.dll
2010-11-25 17:24:58 ----A---- C:\Windows\system32\RCoInst64.dll
2010-11-25 17:24:58 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2010-11-25 17:24:58 ----A---- C:\Windows\RtlUpd64.exe
2010-11-25 17:24:56 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2010-11-25 17:24:56 ----D---- C:\Program Files (x86)\Realtek
2010-11-25 17:24:56 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2010-11-25 17:24:56 ----A---- C:\Windows\system32\FMAPO64.dll
2010-11-25 17:24:56 ----A---- C:\Windows\RAVCpl64.exe
2010-11-25 17:24:54 ----R---- C:\Windows\RtlExUpd.dll
2010-11-25 17:24:54 ----A---- C:\Windows\HideWin.exe
2010-11-25 17:19:39 ----A---- C:\Windows\system32\NicInstQ.dll
2010-11-25 17:19:39 ----A---- C:\Windows\system32\NicCo26.dll
2010-11-25 17:19:39 ----A---- C:\Windows\system32\e1000msg.dll
2010-11-25 17:19:39 ----A---- C:\Windows\system32\drivers\e1y60x64.sys
2010-11-25 17:00:18 ----D---- C:\Program Files (x86)\Intel
2010-11-25 17:00:18 ----A---- C:\Windows\SYSWOW64\CSVer.dll
2010-11-25 16:58:33 ----D---- C:\Program Files (x86)\MSXML 4.0
2010-11-25 16:58:29 ----SHD---- C:\Windows\Installer
2010-11-25 16:56:28 ----D---- C:\Users\choros\AppData\Roaming\Identities
2010-11-25 16:56:02 ----D---- C:\Windows\SYSWOW64\Macromed
2010-11-25 16:55:50 ----SD---- C:\Users\choros\AppData\Roaming\Microsoft
2010-11-25 16:55:50 ----D---- C:\Users\choros\AppData\Roaming\Media Center Programs
2010-11-23 10:53:07 ----D---- C:\temp
2010-11-22 16:40:47 ----RAS---- C:\BOOTSECT.BAK
2010-11-22 16:40:45 ----SHD---- C:\Boot
2010-11-22 16:39:12 ----RHD---- C:\MSOCache
2010-11-22 14:24:12 ----D---- C:\Windows.old
2010-11-22 14:05:00 ----SHD---- C:\Config.Msi
2010-11-22 13:26:28 ----HD---- C:\VritualRoot
2010-11-22 12:14:29 ----SHD---- C:\Recovery
2010-11-22 12:00:47 ----ASH---- C:\hiberfil.sys
2010-11-22 08:09:42 ----D---- C:\Intel
2010-11-22 08:09:02 ----D---- C:\TempEI4
2010-11-22 07:43:42 ----ASH---- C:\pagefile.sys
2010-11-22 07:43:41 ----SHD---- C:\System Volume Information
2010-10-29 09:57:49 ----A---- C:\Windows\SYSWOW64\WTClient.exe
2010-10-29 09:57:49 ----A---- C:\Windows\SYSWOW64\WinTab32.dll
2010-10-29 09:57:49 ----A---- C:\Windows\SYSWOW64\tabcfg.exe
2010-10-29 09:57:49 ----A---- C:\Windows\system32\WTClient.exe
2010-10-29 09:57:49 ----A---- C:\Windows\system32\WinTab32.dll
2010-10-29 09:57:49 ----A---- C:\Windows\system32\UCMfg.exe
2010-10-29 09:57:49 ----A---- C:\Windows\system32\ucinst32.dll
2010-10-29 09:57:48 ----A---- C:\Windows\system32\drivers\WTSrv.exe
2010-10-29 09:57:48 ----A---- C:\Windows\system32\drivers\UCTblHid.sys
2010-10-29 09:57:48 ----A---- C:\Windows\system32\drivers\TClass2k.sys
2010-10-29 09:57:48 ----A---- C:\Windows\system32\drivers\Tablet2k.sys
2010-10-29 09:57:48 ----A---- C:\Windows\system32\drivers\PTSimHid.sys
2010-10-29 09:57:48 ----A---- C:\Windows\system32\drivers\PTSimBus.sys
2010-10-29 09:57:48 ----A---- C:\Windows\SetupX32.EXE
2010-10-29 09:57:47 ----A---- C:\Windows\SYSWOW64\lhtool.exe
======List of files/folders modified in the last 1 months======
2010-11-26 10:31:22 ----D---- C:\Windows\Temp
2010-11-26 10:31:16 ----RD---- C:\Program Files
2010-11-26 10:18:36 ----D---- C:\Windows\System32
2010-11-26 10:18:36 ----D---- C:\Windows\inf
2010-11-26 10:18:36 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-11-26 10:13:13 ----D---- C:\Windows\SYSWOW64\drivers
2010-11-26 10:13:04 ----D---- C:\Windows\SysWOW64
2010-11-26 10:10:23 ----D---- C:\Windows
2010-11-26 09:24:04 ----D---- C:\Windows\Microsoft.NET
2010-11-26 09:24:00 ----RSD---- C:\Windows\assembly
2010-11-26 08:41:43 ----SD---- C:\ProgramData\Microsoft
2010-11-26 08:39:58 ----HD---- C:\ProgramData
2010-11-26 08:14:57 ----RD---- C:\Program Files (x86)
2010-11-26 08:12:23 ----D---- C:\Program Files (x86)\Common Files
2010-11-26 07:59:32 ----D---- C:\Windows\winsxs
2010-11-26 07:59:30 ----D---- C:\Windows\system32\catroot
2010-11-26 07:57:54 ----D---- C:\Windows\SYSWOW64\XPSViewer
2010-11-26 07:57:54 ----D---- C:\Windows\SYSWOW64\cs-CZ
2010-11-26 07:57:53 ----D---- C:\Windows\system32\cs-CZ
2010-11-26 07:57:48 ----D---- C:\Windows\system32\catroot2
2010-11-26 07:57:12 ----D---- C:\Windows\SYSWOW64\MUI
2010-11-26 07:57:12 ----D---- C:\Windows\system32\MUI
2010-11-26 01:39:42 ----ASH---- C:\Program Files\desktop.ini
2010-11-26 01:39:42 ----ASH---- C:\Program Files (x86)\desktop.ini
2010-11-26 01:37:18 ----D---- C:\Windows\system32\drivers\UMDF
2010-11-26 01:22:33 ----D---- C:\Windows\system32\config
2010-11-26 00:00:37 ----D---- C:\Windows\SYSWOW64\wbem
2010-11-26 00:00:37 ----D---- C:\Windows\SYSWOW64\en-US
2010-11-26 00:00:37 ----D---- C:\Windows\system32\wbem
2010-11-26 00:00:37 ----D---- C:\Windows\system32\en-US
2010-11-25 23:59:47 ----D---- C:\Windows\system32\drivers
2010-11-25 23:52:11 ----D---- C:\Program Files\Common Files
2010-11-25 23:46:09 ----D---- C:\Windows\Logs
2010-11-25 23:32:39 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-11-25 23:31:14 ----D---- C:\Program Files (x86)\Internet Explorer
2010-11-25 23:30:47 ----D---- C:\Windows\system32\Tasks
2010-11-25 23:25:44 ----RSD---- C:\Windows\Fonts
2010-11-25 22:43:58 ----D---- C:\Windows\Prefetch
2010-11-25 21:39:34 ----D---- C:\Windows\system32\WDI
2010-11-25 21:35:37 ----D---- C:\Windows\Help
2010-11-25 16:58:38 ----D---- C:\Windows\system32\restore
2010-11-25 16:56:55 ----SHD---- C:\$Recycle.Bin
2010-11-25 16:55:45 ----RD---- C:\Users
2010-11-25 16:48:26 ----D---- C:\Windows\rescache
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 fvevol;BitLocker Drive Encryption Filter Driver; C:\Windows\System32\DRIVERS\fvevol.sys [2008-10-24 161848]
R0 iaStor;Intel RAID Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2008-07-20 402456]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-11-25 834544]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2009-11-25 27216]
R1 aswSP;avast! Self Protection; C:\Windows\system32\drivers\aswSP.sys [2009-11-25 89680]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2009-11-25 53840]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\System32\DRIVERS\cmdguard.sys [2010-11-25 90640]
R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2010-11-25 27152]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys [2009-11-25 22096]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys [2009-11-25 65616]
R3 e1yexpress;Intel(R) Gigabit Network Connections Driver; C:\Windows\system32\DRIVERS\e1y60x64.sys [2008-06-13 316544]
R3 Inspect;Comodo Firewall Network Driver; C:\Windows\system32\DRIVERS\inspect.sys [2010-11-25 82960]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2008-07-24 1488032]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2007-07-21 9594272]
R3 PTSimBus;PenTablet Bus Enumerator; C:\Windows\system32\DRIVERS\PTSimBus.sys [2007-06-08 28672]
R3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-10-24 46080]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-10-24 108544]
R3 ZY202_VS;ZyXEL 802.11g XG202 1211 Vista Driver; C:\Windows\system32\DRIVERS\WlanUZG.sys [2007-04-03 559104]
S3 adxqer0p;adxqer0p; C:\Windows\system32\drivers\adxqer0p.sys []
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-10-24 6144]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 273920]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-10-24 11008]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2006-11-02 7040]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2006-11-02 6656]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-10-24 7936]
S3 NAL;Nal Service ; \??\C:\Windows\system32\Drivers\iqvw64e.sys [2008-05-23 33888]
S3 PTSimHid;PenTablet Simulated HID MiniDriver; C:\Windows\System32\Drivers\PTSimHid.sys [2007-04-23 14336]
S3 Tablet2k;Serial Tablet Port Driver; C:\Windows\System32\Drivers\Tablet2k.sys [2007-04-16 26112]
S3 TClass2k;Tablet Class Driver; C:\Windows\System32\Drivers\TClass2k.sys [2007-04-16 28160]
S3 UCTblHid;HID Tablet Port Driver; C:\Windows\System32\Drivers\UCTblHid.sys [2007-06-01 18432]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-10-24 8704]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-10-24 438328]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2008-11-26 18752]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2008-11-26 155160]
R2 Bonjour Service;Bonjour Service; C:\Program Files (x86)\Bonjour\mDNSResponder.exe [2010-05-18 345376]
R2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2010-11-25 889080]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe [2008-08-06 354840]
R2 mi-raysat_3dsmax2011_64;mental ray 3.8 Satellite for Autodesk 3ds Max 2011 64-bit 64-bit; C:\Program Files\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64server.exe [2010-03-10 86016]
R2 WinTabService;WinTab Service; C:\Windows\System32\Drivers\WTSRV.EXE [2007-05-31 53248]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2008-11-26 254040]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2008-11-26 352920]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.20506\aspnet_state.exe [2009-05-06 43336]
S3 clr_optimization_v4.0.20506_32;.NET Runtime Optimization Service v4.0.20506_X86; C:\Windows\Microsoft.NET\Framework\v4.0.20506\mscorsvw.exe [2009-05-06 104272]
S3 clr_optimization_v4.0.20506_64;.NET Runtime Optimization Service v4.0.20506_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.20506\mscorsvw.exe [2009-05-06 122192]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2010-11-25 1436424]
S3 PerfHost;@%systemroot%\sysWow64\perfhost.exe,-2; C:\Windows\SysWow64\perfhost.exe [2008-10-24 19968]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
-----------------EOF-----------------