Pomaly PC, vypadavanie netu po 5min...
Napsal: 06 led 2011 14:02
Dobry den,
mam mensi problem, cely NB je strasne pomaly hlavne pri starte a internet nanom vypada konstantne asi 5min po starte, za akukolvek radu dakzjem.
Logfile of random's system information tool 1.08 (written by random/random)
Run by Administrator at 2010-12-06 14:03:01
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 46 GB (30%) free of 153 GB
Total RAM: 2047 MB (60% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:03:04, on 6.12.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.21295)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\Program Files\ATKOSD2\ATKOSD2.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ASUS\ATK Media\DMEDIA.EXE
C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe
C:\Program Files\ASUS\Splendid\ACMON.exe
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\WINDOWS\system32\ACEngSvr.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
C:\Program Files\ASUS\Asus MultiFrame\MultiFrame.exe
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\WINDOWS\system32\ASUSTPE.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\IoctlSvc.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\StkCSrv.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
C:\Program Files\ATK Hotkey\ATKOSD.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
C:\Program Files\ATK Hotkey\KBFiltr.exe
C:\Program Files\ATK Hotkey\WDC.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Administrator\Desktop\RSIT.exe
C:\Program Files\trend micro\Administrator.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
O4 - HKLM\..\Run: [ATKHOTKEY] "C:\Program Files\ATK Hotkey\Hcontrol.exe"
O4 - HKLM\..\Run: [ATKOSD2] "C:\Program Files\ATKOSD2\ATKOSD2.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [Wireless Console 2] "C:\Program Files\Wireless Console 2\wcourier.exe"
O4 - HKLM\..\Run: [ACU] "C:\Program Files\Atheros\ACU.exe" -nogui
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMEDIA.EXE
O4 - HKLM\..\Run: [Power_Gear] C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1
O4 - HKLM\..\Run: [PowerForPhone] C:\Program Files\PowerForPhone\PowerForPhone.exe
O4 - HKLM\..\Run: [ACMON] "C:\Program Files\ASUS\Splendid\ACMON.exe"
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKCU\..\Run: [MultiFrame] C:\Program Files\ASUS\Asus MultiFrame\MultiFrame.exe
O4 - HKCU\..\Run: [ASUSTPE] C:\WINDOWS\system32\ASUSTPE.exe
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'Default user')
O4 - Startup: CCC.lnk = ?
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\Fujitech\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\Bluetooth\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: Zdroje informácií - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/microsoftup ... 1584950859
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 1584934531
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://icq.oberon-media.com/Gameshell/G ... meHost.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Atheros Configuration Service (ACS) - Atheros - C:\WINDOWS\system32\acs.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: Syntek AVStream USB2.0 WebCam Service (StkSSrv) - Syntek America Inc. - C:\WINDOWS\System32\StkCSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
--
End of file - 8387 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ATKHOTKEY"=C:\Program Files\ATK Hotkey\Hcontrol.exe [2007-06-29 225280]
"ATKOSD2"=C:\Program Files\ATKOSD2\ATKOSD2.exe [2007-07-03 7708672]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-11-14 16270848]
"SkyTel"=C:\WINDOWS\SkyTel.EXE [2006-05-16 2879488]
"SMSERIAL"=C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2006-11-22 630784]
"Wireless Console 2"=C:\Program Files\Wireless Console 2\wcourier.exe [2007-07-05 1040384]
"ACU"=C:\Program Files\Atheros\ACU.exe [2007-05-03 376921]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2006-05-25 786521]
"ATKMEDIA"=C:\Program Files\ASUS\ATK Media\DMEDIA.EXE [2006-11-02 61440]
"Power_Gear"=C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe [2006-07-26 90112]
"PowerForPhone"=C:\Program Files\PowerForPhone\PowerForPhone.exe [2007-01-15 778240]
"ACMON"=C:\Program Files\ASUS\Splendid\ACMON.exe [2007-07-10 851968]
"RemoteControl"=C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2007-03-14 71216]
"LanguageShortcut"=C:\Program Files\CyberLink\PowerDVD\Language\Language.exe [2007-03-14 54832]
"DAEMON Tools"=C:\Program Files\DAEMON Tools\daemon.exe [2006-11-12 157592]
"NeroFilterCheck"=C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe [2008-02-28 570664]
"NBKeyScan"=C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2008-02-18 2221352]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-09-23 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2010-11-04 2219184]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2006-11-10 90112]
"MultiFrame"=C:\Program Files\ASUS\Asus MultiFrame\MultiFrame.exe [2007-06-21 999792]
"ASUSTPE"=C:\WINDOWS\system32\ASUSTPE.exe [2006-10-14 69632]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2008-02-28 1828136]
C:\Documents and Settings\Administrator\Start Menu\Programs\Startup
CCC.lnk - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2007-03-06 110592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2008-03-30 200064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll [2007-06-24 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Kpt51.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\scoqzrvg]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Kpt51.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\scoqzrvg]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDrives"=0
"NoDriveAutoRun"=67108863
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\CyberLink\PowerDVD\PowerDVD.exe"="C:\Program Files\CyberLink\PowerDVD\PowerDVD.exe:*:Enabled:CyberLink PowerDVD"
"C:\WINDOWS\system32\sessmgr.exe"="C:\WINDOWS\system32\sessmgr.exe:*:Enabled:@xpsp2res.dll,-22019"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Documents and Settings\Administrator\temp\TeamViewer3\TeamViewer.exe"="C:\Documents and Settings\Administrator\temp\TeamViewer3\TeamViewer.exe:*:Enabled:TeamViewer Remote Control Application"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\Program Files\totalcmd\TOTALCMD.EXE"="C:\Program Files\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit international version, file manager replacement for Windows"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\SopCast\adv\SopAdver.exe"="C:\Program Files\SopCast\adv\SopAdver.exe:*:Enabled:SopCast Adver"
"C:\Program Files\SopCast\SopCast.exe"="C:\Program Files\SopCast\SopCast.exe:*:Enabled:SopCast Main Application"
"C:\Program Files\Valve\hl.exe"="C:\Program Files\Valve\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\EA GAMES\Battlefield 1942\BF1942.exe"="C:\Program Files\EA GAMES\Battlefield 1942\BF1942.exe:*:Enabled:BF1942"
"C:\Documents and Settings\Administrator\temp\TeamViewer\Version4\TeamViewer.exe"="C:\Documents and Settings\Administrator\temp\TeamViewer\Version4\TeamViewer.exe:*:Enabled:TeamViewer Remote Control Application"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Ubisoft\Gearbox Software\Brothers in Arms - Hell's Highway\Binaries\biahh.exe"="C:\Program Files\Ubisoft\Gearbox Software\Brothers in Arms - Hell's Highway\Binaries\biahh.exe:*:Disabled:biahh"
"C:\Program Files\Valve\hlds.exe"="C:\Program Files\Valve\hlds.exe:*:Disabled:HLDS Launcher"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2010-12-06 13:57:10 ----D---- C:\rsit
2010-12-06 13:57:10 ----D---- C:\Program Files\trend micro
2010-12-06 13:51:59 ----D---- C:\WINDOWS\temp
2010-12-06 13:51:57 ----A---- C:\ComboFix.txt
2010-12-06 13:41:14 ----D---- C:\Config.Msi
2010-12-06 13:33:59 ----A---- C:\WINDOWS\system32\antiwpa.dll
2010-12-06 13:31:52 ----D---- C:\Documents and Settings\All Users\Application Data\PC Drivers HeadQuarters
2010-12-06 13:28:07 ----D---- C:\WINDOWS\LastGood
2010-12-06 13:13:19 ----D---- C:\WINDOWS\system32\XPSViewer
2010-12-06 13:13:14 ----D---- C:\Program Files\MSBuild
2010-12-06 13:13:03 ----D---- C:\Program Files\Reference Assemblies
2010-12-06 13:12:24 ----N---- C:\WINDOWS\system32\prntvpt.dll
2010-12-06 13:12:23 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2010-12-06 13:12:23 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2010-12-06 13:12:23 ----D---- C:\43913b14f6117f08ae8437f8
2010-12-06 13:11:55 ----D---- C:\WINDOWS\SxsCaPendDel
2010-12-06 12:12:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2296199$
2010-12-06 12:12:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2010-12-06 12:12:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2436673$
2010-12-06 12:12:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2010-12-06 12:12:09 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2010-12-06 12:11:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$
2010-12-06 12:11:35 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2010-12-06 12:11:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2010-12-06 12:11:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2121546$
2010-12-06 12:11:00 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2010-12-06 12:10:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2141007$
2010-12-06 12:10:35 ----HDC---- C:\WINDOWS\$NtUninstallKB980436$
2010-12-06 12:10:24 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2010-12-06 12:10:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2010-12-06 12:09:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2286198$
2010-12-06 12:09:44 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2010-12-06 12:09:29 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2010-12-06 12:09:13 ----HDC---- C:\WINDOWS\$NtUninstallKB981349$
2010-12-06 12:08:58 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2010-12-06 12:08:46 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2010-12-06 12:08:38 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-12-06 12:08:15 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-12-06 12:08:01 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-12-06 12:07:41 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-12-06 12:07:30 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-12-06 12:07:21 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-12-06 12:07:07 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-12-06 12:06:59 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-12-06 12:06:45 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-12-06 12:06:32 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-12-06 12:06:23 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-12-06 12:06:11 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-12-06 12:06:02 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-12-06 12:05:52 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-12-06 12:05:39 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-12-06 12:05:27 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-12-06 12:05:18 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-12-06 12:05:05 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-12-06 12:04:55 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-12-06 12:04:29 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-12-06 12:04:24 ----D---- C:\WINDOWS\system32\KB905474
2010-12-06 12:04:00 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-12-06 12:03:46 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-12-06 02:02:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2010-12-06 02:00:33 ----HDC---- C:\WINDOWS\$NtUninstallKB982214$
2010-12-06 01:59:45 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-12-06 01:57:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2259922$
2010-12-06 01:57:25 ----HDC---- C:\WINDOWS\$NtUninstallKB980195$
2010-12-06 01:57:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2010-12-06 01:56:34 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2010-12-06 01:56:08 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2010-12-06 01:55:42 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-12-06 01:55:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2010-12-06 01:52:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2010-12-06 01:48:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2010-12-06 01:47:53 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-12-06 01:47:29 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-12-06 01:45:47 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-12-06 01:45:13 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-12-06 01:44:42 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-12-06 01:44:03 ----HDC---- C:\WINDOWS\$NtUninstallKB981852$
2010-12-06 01:43:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2443685$
2010-12-06 01:41:38 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-12-06 01:41:07 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-12-06 01:40:37 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2010-12-06 01:38:31 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-12-06 01:33:32 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2010-12-06 01:30:33 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-12-06 01:26:56 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2010-12-06 01:25:36 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-12-06 01:25:09 ----HDC---- C:\WINDOWS\$NtUninstallKB975562$
2010-12-06 01:19:48 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-12-06 01:19:07 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-12-06 01:05:05 ----N---- C:\WINDOWS\system32\browserchoice.exe
2010-12-06 00:55:13 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2010-12-06 00:55:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2467659$
2010-12-06 00:55:01 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2010-12-06 00:53:36 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-12-06 00:53:30 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2010-12-06 00:53:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2010-12-06 00:53:18 ----A---- C:\WINDOWS\imsins.BAK
2010-12-06 00:53:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2010-12-05 23:17:39 ----A---- C:\WINDOWS\system32\xpsp4res.dll
2010-12-05 22:50:15 ----A---- C:\WINDOWS\system32\acovcnt.exe
2010-12-05 22:36:56 ----A---- C:\WINDOWS\system32\wuapi.dll.mui
2010-12-05 22:34:42 ----D---- C:\Documents and Settings\All Users\Application Data\ESET
2010-12-05 22:17:53 ----D---- C:\Program Files\Defraggler
2010-12-05 22:08:22 ----D---- C:\WINDOWS\pss
2010-12-05 21:54:03 ----A---- C:\WINDOWS\PEV.exe
2010-12-05 21:54:03 ----A---- C:\WINDOWS\MBR.exe
2010-12-05 21:48:37 ----A---- C:\WINDOWS\ntbtlog.txt
======List of files/folders modified in the last 1 months======
2010-12-08 21:34:08 ----A---- C:\WINDOWS\system32\MRT.exe
2010-12-06 13:59:22 ----RD---- C:\Program Files
2010-12-06 13:59:21 ----SHD---- C:\WINDOWS\Installer
2010-12-06 13:51:59 ----D---- C:\WINDOWS
2010-12-06 13:51:58 ----D---- C:\QooBox
2010-12-06 13:50:16 ----D---- C:\WINDOWS\Microsoft.NET
2010-12-06 13:50:06 ----RSD---- C:\WINDOWS\assembly
2010-12-06 13:48:22 ----A---- C:\WINDOWS\system.ini
2010-12-06 13:47:49 ----D---- C:\WINDOWS\system32\drivers\etc
2010-12-06 13:45:36 ----D---- C:\WINDOWS\system32\drivers
2010-12-06 13:45:36 ----D---- C:\WINDOWS\system32
2010-12-06 13:45:36 ----D---- C:\WINDOWS\AppPatch
2010-12-06 13:45:32 ----D---- C:\Program Files\Common Files
2010-12-06 13:41:28 ----A---- C:\WINDOWS\wincmd.ini
2010-12-06 13:39:09 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-12-06 13:38:59 ----D---- C:\WINDOWS\system32\CatRoot2
2010-12-06 13:38:23 ----A---- C:\WINDOWS\ModemLog_Motorola SM56 Speakerphone Modem.txt
2010-12-06 13:38:06 ----D---- C:\WINDOWS\Prefetch
2010-12-06 13:37:57 ----SD---- C:\Documents and Settings\Administrator\Application Data\Microsoft
2010-12-06 13:30:53 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-12-06 13:30:35 ----SD---- C:\WINDOWS\Tasks
2010-12-06 13:29:56 ----D---- C:\WINDOWS\system32\CatRoot
2010-12-06 13:29:51 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-12-06 13:29:38 ----D---- C:\WINDOWS\system32\config
2010-12-06 13:28:23 ----HD---- C:\WINDOWS\inf
2010-12-06 13:26:01 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-12-06 13:17:01 ----D---- C:\WINDOWS\WinSxS
2010-12-06 13:13:11 ----D---- C:\WINDOWS\system32\en-us
2010-12-06 13:13:09 ----RSD---- C:\WINDOWS\Fonts
2010-12-06 13:12:41 ----D---- C:\WINDOWS\system32\spool
2010-12-06 13:09:40 ----D---- C:\WINDOWS\system32\mui
2010-12-06 13:05:08 ----A---- C:\WINDOWS\NeroDigital.ini
2010-12-06 12:12:56 ----HD---- C:\WINDOWS\$hf_mig$
2010-12-06 12:09:35 ----D---- C:\Program Files\Outlook Express
2010-12-06 08:46:03 ----D---- C:\WINDOWS\system32\wbem
2010-12-06 02:04:54 ----A---- C:\WINDOWS\win.ini
2010-12-06 01:51:21 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-12-06 01:26:58 ----D---- C:\Program Files\Movie Maker
2010-12-06 01:24:42 ----D---- C:\Program Files\Internet Explorer
2010-12-05 22:43:24 ----D---- C:\Program Files\ASUS
2010-12-05 22:40:34 ----SH---- C:\boot.ini
2010-12-05 22:38:12 ----D---- C:\WINDOWS\SoftwareDistribution
2010-12-05 22:37:25 ----D---- C:\WINDOWS\Help
2010-12-05 22:34:42 ----D---- C:\Program Files\ESET
2010-12-05 22:11:24 ----D---- C:\Program Files\CCleaner
2010-12-05 22:06:29 ----D---- C:\WINDOWS\erdnt
2010-12-05 21:59:24 ----D---- C:\Program Files\ICQ6.5
2010-12-05 21:46:55 ----D---- C:\WINDOWS\Debug
2010-12-05 21:46:53 ----D---- C:\WINDOWS\Minidump
2010-12-05 21:40:18 ----D---- C:\Documents and Settings\All Users\Application Data\Norton
2010-12-05 21:38:01 ----D---- C:\Documents and Settings\Administrator\Application Data\My Battle for Middle-earth(tm) II Files
2010-12-05 21:37:35 ----HD---- C:\Program Files\InstallShield Installation Information
2010-12-05 21:29:54 ----D---- C:\Documents and Settings\Administrator\Application Data\Skype
2010-12-05 21:28:50 ----D---- C:\Documents and Settings\Administrator\Application Data\skypePM
2010-11-18 19:12:44 ----A---- C:\WINDOWS\system32\isign32.dll
2010-11-12 09:07:38 ----D---- C:\Program Files\Mozilla Firefox
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2008-03-31 639224]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2007-06-24 77568]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2010-07-29 115008]
R1 epfwtdir;epfwtdir; C:\WINDOWS\system32\DRIVERS\epfwtdir.sys [2010-08-03 95896]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-13 36352]
R2 {95808DC4-FA4A-4C74-92FE-5B863F82066B};{95808DC4-FA4A-4C74-92FE-5B863F82066B}; \??\C:\Program Files\CyberLink\PowerDVD\000.fcl []
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2010-08-04 140752]
R2 rspndr;Link-Layer Topology Discovery Responder; C:\WINDOWS\system32\DRIVERS\rspndr.sys [2007-06-24 62336]
R3 AR5211;Atheros Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\ar5211.sys [2007-05-02 546976]
R3 ASNDIS5;ASNDIS5 Protocol Driver; \??\C:\PROGRA~1\ATKHOT~1\ASNDIS5.SYS []
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2007-03-06 1972736]
R3 catchme;catchme; \??\C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\catchme.sys []
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-11-15 4225920]
R3 kbfiltr;Keyboard Filter; C:\WINDOWS\system32\DRIVERS\kbfiltr.sys [2007-01-24 5632]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\WINDOWS\system32\drivers\MODEMCSA.sys [2001-08-17 16128]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ATKACPI.sys [2006-12-14 7680]
R3 RTL8023xp;Realtek 10/100/1000 PCI NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2006-06-16 83968]
R3 RTSTOR;USB Mass Stroage Device; C:\WINDOWS\system32\drivers\RTSTOR.SYS [2007-01-15 34816]
R3 smserial;smserial; C:\WINDOWS\system32\DRIVERS\smserial.sys [2006-11-22 982272]
R3 StkCMini;Syntek AVStream USB2.0 1.3M WebCam; C:\WINDOWS\System32\Drivers\StkCMini.sys [2007-06-06 1260672]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2006-05-25 193088]
R3 usbstor;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 WSIMD;wsimd Service; C:\WINDOWS\system32\DRIVERS\wsimd.sys [2007-03-28 57024]
S1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-13 14592]
S2 scoqzrvg;scoqzrvg; C:\WINDOWS\system32\drivers\scoqzrvg.sys [2010-10-18 82944]
S3 a016bus;Sony Ericsson Device A016 driver (WDM); C:\WINDOWS\system32\DRIVERS\a016bus.sys [2008-01-18 83880]
S3 a016mdfl;Sony Ericsson Device A016 USB WMC Modeme Filter; C:\WINDOWS\system32\DRIVERS\a016mdfl.sys [2008-01-18 15016]
S3 a016mdm;Sony Ericsson Device A016 USB WMC Modem Driver; C:\WINDOWS\system32\DRIVERS\a016mdm.sys [2008-01-18 110504]
S3 a016mgmt;Sony Ericsson Device A016 USB WMC Device Management Drivers (WDM); C:\WINDOWS\system32\DRIVERS\a016mgmt.sys [2008-01-18 104488]
S3 a016obex;Sony Ericsson Device A016 USB WMC OBEX Interface; C:\WINDOWS\system32\DRIVERS\a016obex.sys [2008-01-18 100648]
S3 a7a3e3i9;a7a3e3i9; C:\WINDOWS\system32\drivers\a7a3e3i9.sys []
S3 amqzrwxk;amqzrwxk; \??\C:\WINDOWS\System32\Drivers\amqzrwxk.sys []
S3 btaudio;Bluetooth Audio Device; C:\WINDOWS\system32\drivers\btaudio.sys []
S3 BTDriver;Bluetooth Virtual Communications Driver; C:\WINDOWS\system32\DRIVERS\btport.sys []
S3 BTWDNDIS;Bluetooth LAN Access Server; C:\WINDOWS\system32\DRIVERS\btwdndis.sys []
S3 btwhid;btwhid; C:\WINDOWS\system32\DRIVERS\btwhid.sys []
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys []
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 diqosvhs;diqosvhs; \??\C:\WINDOWS\System32\Drivers\diqosvhs.sys []
S3 fcevsmrt;fcevsmrt; \??\C:\WINDOWS\System32\Drivers\fcevsmrt.sys []
S3 hsitivou;hsitivou; \??\C:\WINDOWS\System32\Drivers\hsitivou.sys []
S3 iextaoxg;iextaoxg; \??\C:\WINDOWS\System32\Drivers\iextaoxg.sys []
S3 iqofgpnb;iqofgpnb; \??\C:\WINDOWS\System32\Drivers\iqofgpnb.sys []
S3 jhhcewhb;jhhcewhb; \??\C:\WINDOWS\System32\Drivers\jhhcewhb.sys []
S3 Kpt51;Kpt51; \??\C:\WINDOWS\System32\drivers\Kpt51.sys []
S3 mbr;mbr; \??\C:\ComboFix\mbr.sys []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 mwgnzccl;mwgnzccl; \??\C:\WINDOWS\System32\Drivers\mwgnzccl.sys []
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 ncnhpprp;ncnhpprp; \??\C:\WINDOWS\System32\Drivers\ncnhpprp.sys []
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 odtqkqix;odtqkqix; \??\C:\WINDOWS\System32\Drivers\odtqkqix.sys []
S3 pomkhjmx;pomkhjmx; \??\C:\WINDOWS\System32\Drivers\pomkhjmx.sys []
S3 qiefgyih;qiefgyih; \??\C:\WINDOWS\System32\Drivers\qiefgyih.sys []
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
S3 rtxhexiv;rtxhexiv; \??\C:\WINDOWS\System32\Drivers\rtxhexiv.sys []
S3 s3017bus;Sony Ericsson Device 3017 driver (WDM); C:\WINDOWS\system32\DRIVERS\s3017bus.sys [2007-12-10 83880]
S3 s3017mdfl;Sony Ericsson Device 3017 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\s3017mdfl.sys [2007-12-10 15016]
S3 s3017mdm;Sony Ericsson Device 3017 USB WMC Modem Driver; C:\WINDOWS\system32\DRIVERS\s3017mdm.sys [2007-12-10 110632]
S3 s3017mgmt;Sony Ericsson Device 3017 USB WMC Device Management Drivers (WDM); C:\WINDOWS\system32\DRIVERS\s3017mgmt.sys [2007-12-10 104616]
S3 s3017nd5;Sony Ericsson Device 3017 USB Ethernet Emulation SEMC3017 (NDIS); C:\WINDOWS\system32\DRIVERS\s3017nd5.sys [2007-12-10 25512]
S3 s3017obex;Sony Ericsson Device 3017 USB WMC OBEX Interface; C:\WINDOWS\system32\DRIVERS\s3017obex.sys [2007-12-10 100648]
S3 s3017unic;Sony Ericsson Device 3017 USB Ethernet Emulation SEMC3017 (WDM); C:\WINDOWS\system32\DRIVERS\s3017unic.sys [2007-12-10 110120]
S3 s616bus;Sony Ericsson Device 616 driver (WDM); C:\WINDOWS\system32\DRIVERS\s616bus.sys [2007-04-03 83208]
S3 s616mdfl;Sony Ericsson Device 616 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\s616mdfl.sys [2007-04-03 15112]
S3 s616mdm;Sony Ericsson Device 616 USB WMC Modem Driver; C:\WINDOWS\system32\DRIVERS\s616mdm.sys [2007-04-03 108680]
S3 s616mgmt;Sony Ericsson Device 616 USB WMC Device Management Drivers (WDM); C:\WINDOWS\system32\DRIVERS\s616mgmt.sys [2007-04-03 100360]
S3 s616nd5;Sony Ericsson Device 616 USB Ethernet Emulation SEMC616 (NDIS); C:\WINDOWS\system32\DRIVERS\s616nd5.sys [2007-04-03 23176]
S3 s616obex;Sony Ericsson Device 616 USB WMC OBEX Interface; C:\WINDOWS\system32\DRIVERS\s616obex.sys [2007-04-03 98568]
S3 s616unic;Sony Ericsson Device 616 USB Ethernet Emulation SEMC616 (WDM); C:\WINDOWS\system32\DRIVERS\s616unic.sys [2007-04-03 99080]
S3 sdgvcrxq;sdgvcrxq; \??\C:\WINDOWS\System32\Drivers\sdgvcrxq.sys []
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 sscipkfe;sscipkfe; \??\C:\WINDOWS\System32\Drivers\sscipkfe.sys []
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 tfxveqlt;tfxveqlt; \??\C:\WINDOWS\System32\Drivers\tfxveqlt.sys []
S3 Tosrfcom;Tosrfcom; C:\WINDOWS\system32\drivers\Tosrfcom.sys []
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 vtaehvpw;vtaehvpw; \??\C:\WINDOWS\System32\Drivers\vtaehvpw.sys []
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2007-06-24 38528]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2007-06-24 82944]
S3 xmhwfibj;xmhwfibj; \??\C:\WINDOWS\System32\Drivers\xmhwfibj.sys []
S3 ysqferpx;ysqferpx; \??\C:\WINDOWS\System32\Drivers\ysqferpx.sys []
S3 zljdrbkm;zljdrbkm; \??\C:\WINDOWS\System32\Drivers\zljdrbkm.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ACS;Atheros Configuration Service; C:\WINDOWS\system32\acs.exe [2007-05-03 364629]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2007-03-06 446464]
R2 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2010-11-04 810144]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-02-18 877864]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\WINDOWS\system32\IoctlSvc.exe [2006-12-19 81920]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo.exe [2007-05-14 272024]
R2 StkSSrv;Syntek AVStream USB2.0 WebCam Service; C:\WINDOWS\System32\StkCSrv.exe [2007-04-18 24576]
R2 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2006-10-31 77824]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-02-28 529704]
S2 spupdsvc;Windows Service Pack Installer update service; C:\WINDOWS\system32\spupdsvc.exe [2007-11-30 26488]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2010-11-04 33584]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-18 913408]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
mam mensi problem, cely NB je strasne pomaly hlavne pri starte a internet nanom vypada konstantne asi 5min po starte, za akukolvek radu dakzjem.
Logfile of random's system information tool 1.08 (written by random/random)
Run by Administrator at 2010-12-06 14:03:01
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 46 GB (30%) free of 153 GB
Total RAM: 2047 MB (60% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:03:04, on 6.12.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.21295)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\Program Files\ATKOSD2\ATKOSD2.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ASUS\ATK Media\DMEDIA.EXE
C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe
C:\Program Files\ASUS\Splendid\ACMON.exe
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\WINDOWS\system32\ACEngSvr.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
C:\Program Files\ASUS\Asus MultiFrame\MultiFrame.exe
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\WINDOWS\system32\ASUSTPE.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\IoctlSvc.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\StkCSrv.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
C:\Program Files\ATK Hotkey\ATKOSD.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
C:\Program Files\ATK Hotkey\KBFiltr.exe
C:\Program Files\ATK Hotkey\WDC.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Administrator\Desktop\RSIT.exe
C:\Program Files\trend micro\Administrator.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
O4 - HKLM\..\Run: [ATKHOTKEY] "C:\Program Files\ATK Hotkey\Hcontrol.exe"
O4 - HKLM\..\Run: [ATKOSD2] "C:\Program Files\ATKOSD2\ATKOSD2.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [Wireless Console 2] "C:\Program Files\Wireless Console 2\wcourier.exe"
O4 - HKLM\..\Run: [ACU] "C:\Program Files\Atheros\ACU.exe" -nogui
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMEDIA.EXE
O4 - HKLM\..\Run: [Power_Gear] C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1
O4 - HKLM\..\Run: [PowerForPhone] C:\Program Files\PowerForPhone\PowerForPhone.exe
O4 - HKLM\..\Run: [ACMON] "C:\Program Files\ASUS\Splendid\ACMON.exe"
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKCU\..\Run: [MultiFrame] C:\Program Files\ASUS\Asus MultiFrame\MultiFrame.exe
O4 - HKCU\..\Run: [ASUSTPE] C:\WINDOWS\system32\ASUSTPE.exe
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 (User 'Default user')
O4 - Startup: CCC.lnk = ?
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\Fujitech\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\Bluetooth\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: Zdroje informácií - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/microsoftup ... 1584950859
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 1584934531
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://icq.oberon-media.com/Gameshell/G ... meHost.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Atheros Configuration Service (ACS) - Atheros - C:\WINDOWS\system32\acs.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: Syntek AVStream USB2.0 WebCam Service (StkSSrv) - Syntek America Inc. - C:\WINDOWS\System32\StkCSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
--
End of file - 8387 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ATKHOTKEY"=C:\Program Files\ATK Hotkey\Hcontrol.exe [2007-06-29 225280]
"ATKOSD2"=C:\Program Files\ATKOSD2\ATKOSD2.exe [2007-07-03 7708672]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-11-14 16270848]
"SkyTel"=C:\WINDOWS\SkyTel.EXE [2006-05-16 2879488]
"SMSERIAL"=C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2006-11-22 630784]
"Wireless Console 2"=C:\Program Files\Wireless Console 2\wcourier.exe [2007-07-05 1040384]
"ACU"=C:\Program Files\Atheros\ACU.exe [2007-05-03 376921]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2006-05-25 786521]
"ATKMEDIA"=C:\Program Files\ASUS\ATK Media\DMEDIA.EXE [2006-11-02 61440]
"Power_Gear"=C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe [2006-07-26 90112]
"PowerForPhone"=C:\Program Files\PowerForPhone\PowerForPhone.exe [2007-01-15 778240]
"ACMON"=C:\Program Files\ASUS\Splendid\ACMON.exe [2007-07-10 851968]
"RemoteControl"=C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2007-03-14 71216]
"LanguageShortcut"=C:\Program Files\CyberLink\PowerDVD\Language\Language.exe [2007-03-14 54832]
"DAEMON Tools"=C:\Program Files\DAEMON Tools\daemon.exe [2006-11-12 157592]
"NeroFilterCheck"=C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe [2008-02-28 570664]
"NBKeyScan"=C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2008-02-18 2221352]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-09-23 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2010-11-04 2219184]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2006-11-10 90112]
"MultiFrame"=C:\Program Files\ASUS\Asus MultiFrame\MultiFrame.exe [2007-06-21 999792]
"ASUSTPE"=C:\WINDOWS\system32\ASUSTPE.exe [2006-10-14 69632]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2008-02-28 1828136]
C:\Documents and Settings\Administrator\Start Menu\Programs\Startup
CCC.lnk - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2007-03-06 110592]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2008-03-30 200064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll [2007-06-24 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Kpt51.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\scoqzrvg]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Kpt51.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\scoqzrvg]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDrives"=0
"NoDriveAutoRun"=67108863
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\CyberLink\PowerDVD\PowerDVD.exe"="C:\Program Files\CyberLink\PowerDVD\PowerDVD.exe:*:Enabled:CyberLink PowerDVD"
"C:\WINDOWS\system32\sessmgr.exe"="C:\WINDOWS\system32\sessmgr.exe:*:Enabled:@xpsp2res.dll,-22019"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Documents and Settings\Administrator\temp\TeamViewer3\TeamViewer.exe"="C:\Documents and Settings\Administrator\temp\TeamViewer3\TeamViewer.exe:*:Enabled:TeamViewer Remote Control Application"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\Program Files\totalcmd\TOTALCMD.EXE"="C:\Program Files\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit international version, file manager replacement for Windows"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\SopCast\adv\SopAdver.exe"="C:\Program Files\SopCast\adv\SopAdver.exe:*:Enabled:SopCast Adver"
"C:\Program Files\SopCast\SopCast.exe"="C:\Program Files\SopCast\SopCast.exe:*:Enabled:SopCast Main Application"
"C:\Program Files\Valve\hl.exe"="C:\Program Files\Valve\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\EA GAMES\Battlefield 1942\BF1942.exe"="C:\Program Files\EA GAMES\Battlefield 1942\BF1942.exe:*:Enabled:BF1942"
"C:\Documents and Settings\Administrator\temp\TeamViewer\Version4\TeamViewer.exe"="C:\Documents and Settings\Administrator\temp\TeamViewer\Version4\TeamViewer.exe:*:Enabled:TeamViewer Remote Control Application"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Ubisoft\Gearbox Software\Brothers in Arms - Hell's Highway\Binaries\biahh.exe"="C:\Program Files\Ubisoft\Gearbox Software\Brothers in Arms - Hell's Highway\Binaries\biahh.exe:*:Disabled:biahh"
"C:\Program Files\Valve\hlds.exe"="C:\Program Files\Valve\hlds.exe:*:Disabled:HLDS Launcher"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
======List of files/folders created in the last 1 months======
2010-12-06 13:57:10 ----D---- C:\rsit
2010-12-06 13:57:10 ----D---- C:\Program Files\trend micro
2010-12-06 13:51:59 ----D---- C:\WINDOWS\temp
2010-12-06 13:51:57 ----A---- C:\ComboFix.txt
2010-12-06 13:41:14 ----D---- C:\Config.Msi
2010-12-06 13:33:59 ----A---- C:\WINDOWS\system32\antiwpa.dll
2010-12-06 13:31:52 ----D---- C:\Documents and Settings\All Users\Application Data\PC Drivers HeadQuarters
2010-12-06 13:28:07 ----D---- C:\WINDOWS\LastGood
2010-12-06 13:13:19 ----D---- C:\WINDOWS\system32\XPSViewer
2010-12-06 13:13:14 ----D---- C:\Program Files\MSBuild
2010-12-06 13:13:03 ----D---- C:\Program Files\Reference Assemblies
2010-12-06 13:12:24 ----N---- C:\WINDOWS\system32\prntvpt.dll
2010-12-06 13:12:23 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2010-12-06 13:12:23 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2010-12-06 13:12:23 ----D---- C:\43913b14f6117f08ae8437f8
2010-12-06 13:11:55 ----D---- C:\WINDOWS\SxsCaPendDel
2010-12-06 12:12:57 ----HDC---- C:\WINDOWS\$NtUninstallKB2296199$
2010-12-06 12:12:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2010-12-06 12:12:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2436673$
2010-12-06 12:12:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2079403$
2010-12-06 12:12:09 ----HDC---- C:\WINDOWS\$NtUninstallKB982132$
2010-12-06 12:11:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2345886$
2010-12-06 12:11:35 ----HDC---- C:\WINDOWS\$NtUninstallKB979687$
2010-12-06 12:11:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2347290$
2010-12-06 12:11:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2121546$
2010-12-06 12:11:00 ----HDC---- C:\WINDOWS\$NtUninstallKB981322$
2010-12-06 12:10:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2141007$
2010-12-06 12:10:35 ----HDC---- C:\WINDOWS\$NtUninstallKB980436$
2010-12-06 12:10:24 ----HDC---- C:\WINDOWS\$NtUninstallKB982665$
2010-12-06 12:10:13 ----HDC---- C:\WINDOWS\$NtUninstallKB2115168$
2010-12-06 12:09:54 ----HDC---- C:\WINDOWS\$NtUninstallKB2286198$
2010-12-06 12:09:44 ----HDC---- C:\WINDOWS\$NtUninstallKB979482$
2010-12-06 12:09:29 ----HDC---- C:\WINDOWS\$NtUninstallKB978542$
2010-12-06 12:09:13 ----HDC---- C:\WINDOWS\$NtUninstallKB981349$
2010-12-06 12:08:58 ----HDC---- C:\WINDOWS\$NtUninstallKB978338$
2010-12-06 12:08:46 ----HDC---- C:\WINDOWS\$NtUninstallKB977816$
2010-12-06 12:08:38 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-12-06 12:08:15 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-12-06 12:08:01 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-12-06 12:07:41 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-12-06 12:07:30 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-12-06 12:07:21 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-12-06 12:07:07 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-12-06 12:06:59 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-12-06 12:06:45 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-12-06 12:06:32 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-12-06 12:06:23 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-12-06 12:06:11 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-12-06 12:06:02 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-12-06 12:05:52 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-12-06 12:05:39 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-12-06 12:05:27 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-12-06 12:05:18 ----HDC---- C:\WINDOWS\$NtUninstallKB961501$
2010-12-06 12:05:05 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
2010-12-06 12:04:55 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
2010-12-06 12:04:29 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
2010-12-06 12:04:24 ----D---- C:\WINDOWS\system32\KB905474
2010-12-06 12:04:00 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
2010-12-06 12:03:46 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2010-12-06 02:02:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2387149$
2010-12-06 02:00:33 ----HDC---- C:\WINDOWS\$NtUninstallKB982214$
2010-12-06 01:59:45 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-12-06 01:57:51 ----HDC---- C:\WINDOWS\$NtUninstallKB2259922$
2010-12-06 01:57:25 ----HDC---- C:\WINDOWS\$NtUninstallKB980195$
2010-12-06 01:57:00 ----HDC---- C:\WINDOWS\$NtUninstallKB2296011$
2010-12-06 01:56:34 ----HDC---- C:\WINDOWS\$NtUninstallKB980232$
2010-12-06 01:56:08 ----HDC---- C:\WINDOWS\$NtUninstallKB975558_WM8$
2010-12-06 01:55:42 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-12-06 01:55:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2378111_WM9$
2010-12-06 01:52:04 ----HDC---- C:\WINDOWS\$NtUninstallKB2229593$
2010-12-06 01:48:17 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2010-12-06 01:47:53 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-12-06 01:47:29 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-12-06 01:45:47 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-12-06 01:45:13 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
2010-12-06 01:44:42 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-12-06 01:44:03 ----HDC---- C:\WINDOWS\$NtUninstallKB981852$
2010-12-06 01:43:25 ----HDC---- C:\WINDOWS\$NtUninstallKB2443685$
2010-12-06 01:41:38 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-12-06 01:41:07 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-12-06 01:40:37 ----HDC---- C:\WINDOWS\$NtUninstallKB978695_WM9$
2010-12-06 01:38:31 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-12-06 01:33:32 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2010-12-06 01:30:33 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-12-06 01:26:56 ----HDC---- C:\WINDOWS\$NtUninstallKB981997$
2010-12-06 01:25:36 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-12-06 01:25:09 ----HDC---- C:\WINDOWS\$NtUninstallKB975562$
2010-12-06 01:19:48 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-12-06 01:19:07 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-12-06 01:05:05 ----N---- C:\WINDOWS\system32\browserchoice.exe
2010-12-06 00:55:13 ----HDC---- C:\WINDOWS\$NtUninstallKB978601$
2010-12-06 00:55:08 ----HDC---- C:\WINDOWS\$NtUninstallKB2467659$
2010-12-06 00:55:01 ----HDC---- C:\WINDOWS\$NtUninstallKB979309$
2010-12-06 00:53:36 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
2010-12-06 00:53:30 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2010-12-06 00:53:23 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2010-12-06 00:53:18 ----A---- C:\WINDOWS\imsins.BAK
2010-12-06 00:53:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2360937$
2010-12-05 23:17:39 ----A---- C:\WINDOWS\system32\xpsp4res.dll
2010-12-05 22:50:15 ----A---- C:\WINDOWS\system32\acovcnt.exe
2010-12-05 22:36:56 ----A---- C:\WINDOWS\system32\wuapi.dll.mui
2010-12-05 22:34:42 ----D---- C:\Documents and Settings\All Users\Application Data\ESET
2010-12-05 22:17:53 ----D---- C:\Program Files\Defraggler
2010-12-05 22:08:22 ----D---- C:\WINDOWS\pss
2010-12-05 21:54:03 ----A---- C:\WINDOWS\PEV.exe
2010-12-05 21:54:03 ----A---- C:\WINDOWS\MBR.exe
2010-12-05 21:48:37 ----A---- C:\WINDOWS\ntbtlog.txt
======List of files/folders modified in the last 1 months======
2010-12-08 21:34:08 ----A---- C:\WINDOWS\system32\MRT.exe
2010-12-06 13:59:22 ----RD---- C:\Program Files
2010-12-06 13:59:21 ----SHD---- C:\WINDOWS\Installer
2010-12-06 13:51:59 ----D---- C:\WINDOWS
2010-12-06 13:51:58 ----D---- C:\QooBox
2010-12-06 13:50:16 ----D---- C:\WINDOWS\Microsoft.NET
2010-12-06 13:50:06 ----RSD---- C:\WINDOWS\assembly
2010-12-06 13:48:22 ----A---- C:\WINDOWS\system.ini
2010-12-06 13:47:49 ----D---- C:\WINDOWS\system32\drivers\etc
2010-12-06 13:45:36 ----D---- C:\WINDOWS\system32\drivers
2010-12-06 13:45:36 ----D---- C:\WINDOWS\system32
2010-12-06 13:45:36 ----D---- C:\WINDOWS\AppPatch
2010-12-06 13:45:32 ----D---- C:\Program Files\Common Files
2010-12-06 13:41:28 ----A---- C:\WINDOWS\wincmd.ini
2010-12-06 13:39:09 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-12-06 13:38:59 ----D---- C:\WINDOWS\system32\CatRoot2
2010-12-06 13:38:23 ----A---- C:\WINDOWS\ModemLog_Motorola SM56 Speakerphone Modem.txt
2010-12-06 13:38:06 ----D---- C:\WINDOWS\Prefetch
2010-12-06 13:37:57 ----SD---- C:\Documents and Settings\Administrator\Application Data\Microsoft
2010-12-06 13:30:53 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-12-06 13:30:35 ----SD---- C:\WINDOWS\Tasks
2010-12-06 13:29:56 ----D---- C:\WINDOWS\system32\CatRoot
2010-12-06 13:29:51 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-12-06 13:29:38 ----D---- C:\WINDOWS\system32\config
2010-12-06 13:28:23 ----HD---- C:\WINDOWS\inf
2010-12-06 13:26:01 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-12-06 13:17:01 ----D---- C:\WINDOWS\WinSxS
2010-12-06 13:13:11 ----D---- C:\WINDOWS\system32\en-us
2010-12-06 13:13:09 ----RSD---- C:\WINDOWS\Fonts
2010-12-06 13:12:41 ----D---- C:\WINDOWS\system32\spool
2010-12-06 13:09:40 ----D---- C:\WINDOWS\system32\mui
2010-12-06 13:05:08 ----A---- C:\WINDOWS\NeroDigital.ini
2010-12-06 12:12:56 ----HD---- C:\WINDOWS\$hf_mig$
2010-12-06 12:09:35 ----D---- C:\Program Files\Outlook Express
2010-12-06 08:46:03 ----D---- C:\WINDOWS\system32\wbem
2010-12-06 02:04:54 ----A---- C:\WINDOWS\win.ini
2010-12-06 01:51:21 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-12-06 01:26:58 ----D---- C:\Program Files\Movie Maker
2010-12-06 01:24:42 ----D---- C:\Program Files\Internet Explorer
2010-12-05 22:43:24 ----D---- C:\Program Files\ASUS
2010-12-05 22:40:34 ----SH---- C:\boot.ini
2010-12-05 22:38:12 ----D---- C:\WINDOWS\SoftwareDistribution
2010-12-05 22:37:25 ----D---- C:\WINDOWS\Help
2010-12-05 22:34:42 ----D---- C:\Program Files\ESET
2010-12-05 22:11:24 ----D---- C:\Program Files\CCleaner
2010-12-05 22:06:29 ----D---- C:\WINDOWS\erdnt
2010-12-05 21:59:24 ----D---- C:\Program Files\ICQ6.5
2010-12-05 21:46:55 ----D---- C:\WINDOWS\Debug
2010-12-05 21:46:53 ----D---- C:\WINDOWS\Minidump
2010-12-05 21:40:18 ----D---- C:\Documents and Settings\All Users\Application Data\Norton
2010-12-05 21:38:01 ----D---- C:\Documents and Settings\Administrator\Application Data\My Battle for Middle-earth(tm) II Files
2010-12-05 21:37:35 ----HD---- C:\Program Files\InstallShield Installation Information
2010-12-05 21:29:54 ----D---- C:\Documents and Settings\Administrator\Application Data\Skype
2010-12-05 21:28:50 ----D---- C:\Documents and Settings\Administrator\Application Data\skypePM
2010-11-18 19:12:44 ----A---- C:\WINDOWS\system32\isign32.dll
2010-11-12 09:07:38 ----D---- C:\Program Files\Mozilla Firefox
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2008-03-31 639224]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2007-06-24 77568]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2010-07-29 115008]
R1 epfwtdir;epfwtdir; C:\WINDOWS\system32\DRIVERS\epfwtdir.sys [2010-08-03 95896]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-13 36352]
R2 {95808DC4-FA4A-4C74-92FE-5B863F82066B};{95808DC4-FA4A-4C74-92FE-5B863F82066B}; \??\C:\Program Files\CyberLink\PowerDVD\000.fcl []
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2010-08-04 140752]
R2 rspndr;Link-Layer Topology Discovery Responder; C:\WINDOWS\system32\DRIVERS\rspndr.sys [2007-06-24 62336]
R3 AR5211;Atheros Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\ar5211.sys [2007-05-02 546976]
R3 ASNDIS5;ASNDIS5 Protocol Driver; \??\C:\PROGRA~1\ATKHOT~1\ASNDIS5.SYS []
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2007-03-06 1972736]
R3 catchme;catchme; \??\C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\catchme.sys []
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-11-15 4225920]
R3 kbfiltr;Keyboard Filter; C:\WINDOWS\system32\DRIVERS\kbfiltr.sys [2007-01-24 5632]
R3 MODEMCSA;Unimodem Streaming Filter Device; C:\WINDOWS\system32\drivers\MODEMCSA.sys [2001-08-17 16128]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ATKACPI.sys [2006-12-14 7680]
R3 RTL8023xp;Realtek 10/100/1000 PCI NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2006-06-16 83968]
R3 RTSTOR;USB Mass Stroage Device; C:\WINDOWS\system32\drivers\RTSTOR.SYS [2007-01-15 34816]
R3 smserial;smserial; C:\WINDOWS\system32\DRIVERS\smserial.sys [2006-11-22 982272]
R3 StkCMini;Syntek AVStream USB2.0 1.3M WebCam; C:\WINDOWS\System32\Drivers\StkCMini.sys [2007-06-06 1260672]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2006-05-25 193088]
R3 usbstor;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 WSIMD;wsimd Service; C:\WINDOWS\system32\DRIVERS\wsimd.sys [2007-03-28 57024]
S1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-13 14592]
S2 scoqzrvg;scoqzrvg; C:\WINDOWS\system32\drivers\scoqzrvg.sys [2010-10-18 82944]
S3 a016bus;Sony Ericsson Device A016 driver (WDM); C:\WINDOWS\system32\DRIVERS\a016bus.sys [2008-01-18 83880]
S3 a016mdfl;Sony Ericsson Device A016 USB WMC Modeme Filter; C:\WINDOWS\system32\DRIVERS\a016mdfl.sys [2008-01-18 15016]
S3 a016mdm;Sony Ericsson Device A016 USB WMC Modem Driver; C:\WINDOWS\system32\DRIVERS\a016mdm.sys [2008-01-18 110504]
S3 a016mgmt;Sony Ericsson Device A016 USB WMC Device Management Drivers (WDM); C:\WINDOWS\system32\DRIVERS\a016mgmt.sys [2008-01-18 104488]
S3 a016obex;Sony Ericsson Device A016 USB WMC OBEX Interface; C:\WINDOWS\system32\DRIVERS\a016obex.sys [2008-01-18 100648]
S3 a7a3e3i9;a7a3e3i9; C:\WINDOWS\system32\drivers\a7a3e3i9.sys []
S3 amqzrwxk;amqzrwxk; \??\C:\WINDOWS\System32\Drivers\amqzrwxk.sys []
S3 btaudio;Bluetooth Audio Device; C:\WINDOWS\system32\drivers\btaudio.sys []
S3 BTDriver;Bluetooth Virtual Communications Driver; C:\WINDOWS\system32\DRIVERS\btport.sys []
S3 BTWDNDIS;Bluetooth LAN Access Server; C:\WINDOWS\system32\DRIVERS\btwdndis.sys []
S3 btwhid;btwhid; C:\WINDOWS\system32\DRIVERS\btwhid.sys []
S3 BTWUSB;WIDCOMM USB Bluetooth Driver; C:\WINDOWS\System32\Drivers\btwusb.sys []
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 diqosvhs;diqosvhs; \??\C:\WINDOWS\System32\Drivers\diqosvhs.sys []
S3 fcevsmrt;fcevsmrt; \??\C:\WINDOWS\System32\Drivers\fcevsmrt.sys []
S3 hsitivou;hsitivou; \??\C:\WINDOWS\System32\Drivers\hsitivou.sys []
S3 iextaoxg;iextaoxg; \??\C:\WINDOWS\System32\Drivers\iextaoxg.sys []
S3 iqofgpnb;iqofgpnb; \??\C:\WINDOWS\System32\Drivers\iqofgpnb.sys []
S3 jhhcewhb;jhhcewhb; \??\C:\WINDOWS\System32\Drivers\jhhcewhb.sys []
S3 Kpt51;Kpt51; \??\C:\WINDOWS\System32\drivers\Kpt51.sys []
S3 mbr;mbr; \??\C:\ComboFix\mbr.sys []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 mwgnzccl;mwgnzccl; \??\C:\WINDOWS\System32\Drivers\mwgnzccl.sys []
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 ncnhpprp;ncnhpprp; \??\C:\WINDOWS\System32\Drivers\ncnhpprp.sys []
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 odtqkqix;odtqkqix; \??\C:\WINDOWS\System32\Drivers\odtqkqix.sys []
S3 pomkhjmx;pomkhjmx; \??\C:\WINDOWS\System32\Drivers\pomkhjmx.sys []
S3 qiefgyih;qiefgyih; \??\C:\WINDOWS\System32\Drivers\qiefgyih.sys []
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
S3 rtxhexiv;rtxhexiv; \??\C:\WINDOWS\System32\Drivers\rtxhexiv.sys []
S3 s3017bus;Sony Ericsson Device 3017 driver (WDM); C:\WINDOWS\system32\DRIVERS\s3017bus.sys [2007-12-10 83880]
S3 s3017mdfl;Sony Ericsson Device 3017 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\s3017mdfl.sys [2007-12-10 15016]
S3 s3017mdm;Sony Ericsson Device 3017 USB WMC Modem Driver; C:\WINDOWS\system32\DRIVERS\s3017mdm.sys [2007-12-10 110632]
S3 s3017mgmt;Sony Ericsson Device 3017 USB WMC Device Management Drivers (WDM); C:\WINDOWS\system32\DRIVERS\s3017mgmt.sys [2007-12-10 104616]
S3 s3017nd5;Sony Ericsson Device 3017 USB Ethernet Emulation SEMC3017 (NDIS); C:\WINDOWS\system32\DRIVERS\s3017nd5.sys [2007-12-10 25512]
S3 s3017obex;Sony Ericsson Device 3017 USB WMC OBEX Interface; C:\WINDOWS\system32\DRIVERS\s3017obex.sys [2007-12-10 100648]
S3 s3017unic;Sony Ericsson Device 3017 USB Ethernet Emulation SEMC3017 (WDM); C:\WINDOWS\system32\DRIVERS\s3017unic.sys [2007-12-10 110120]
S3 s616bus;Sony Ericsson Device 616 driver (WDM); C:\WINDOWS\system32\DRIVERS\s616bus.sys [2007-04-03 83208]
S3 s616mdfl;Sony Ericsson Device 616 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\s616mdfl.sys [2007-04-03 15112]
S3 s616mdm;Sony Ericsson Device 616 USB WMC Modem Driver; C:\WINDOWS\system32\DRIVERS\s616mdm.sys [2007-04-03 108680]
S3 s616mgmt;Sony Ericsson Device 616 USB WMC Device Management Drivers (WDM); C:\WINDOWS\system32\DRIVERS\s616mgmt.sys [2007-04-03 100360]
S3 s616nd5;Sony Ericsson Device 616 USB Ethernet Emulation SEMC616 (NDIS); C:\WINDOWS\system32\DRIVERS\s616nd5.sys [2007-04-03 23176]
S3 s616obex;Sony Ericsson Device 616 USB WMC OBEX Interface; C:\WINDOWS\system32\DRIVERS\s616obex.sys [2007-04-03 98568]
S3 s616unic;Sony Ericsson Device 616 USB Ethernet Emulation SEMC616 (WDM); C:\WINDOWS\system32\DRIVERS\s616unic.sys [2007-04-03 99080]
S3 sdgvcrxq;sdgvcrxq; \??\C:\WINDOWS\System32\Drivers\sdgvcrxq.sys []
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 sscipkfe;sscipkfe; \??\C:\WINDOWS\System32\Drivers\sscipkfe.sys []
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 tfxveqlt;tfxveqlt; \??\C:\WINDOWS\System32\Drivers\tfxveqlt.sys []
S3 Tosrfcom;Tosrfcom; C:\WINDOWS\system32\drivers\Tosrfcom.sys []
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 vtaehvpw;vtaehvpw; \??\C:\WINDOWS\System32\Drivers\vtaehvpw.sys []
S3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2007-06-24 38528]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2007-06-24 82944]
S3 xmhwfibj;xmhwfibj; \??\C:\WINDOWS\System32\Drivers\xmhwfibj.sys []
S3 ysqferpx;ysqferpx; \??\C:\WINDOWS\System32\Drivers\ysqferpx.sys []
S3 zljdrbkm;zljdrbkm; \??\C:\WINDOWS\System32\Drivers\zljdrbkm.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ACS;Atheros Configuration Service; C:\WINDOWS\system32\acs.exe [2007-05-03 364629]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2007-03-06 446464]
R2 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2010-11-04 810144]
R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-02-18 877864]
R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\WINDOWS\system32\IoctlSvc.exe [2006-12-19 81920]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo.exe [2007-05-14 272024]
R2 StkSSrv;Syntek AVStream USB2.0 WebCam Service; C:\WINDOWS\System32\StkCSrv.exe [2007-04-18 24576]
R2 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service; C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2006-10-31 77824]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-02-28 529704]
S2 spupdsvc;Windows Service Pack Installer update service; C:\WINDOWS\system32\spupdsvc.exe [2007-11-30 26488]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2010-11-04 33584]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-18 913408]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------