prosba o pomoc - pomale pripojenie na internet
Napsal: 08 led 2011 17:26
Prosim o pomoc s pomalym internetom - router je v poriadku, po kabli rychle pripojenie, ine notebooky cez wifi rychle pripojenie, moj notebook cez wifi - internet mi ide velmi pomaly napr. 1kBps DL, dlho nacitava stranky. Ked si dam volbu manualne sa prihlasit do domacej siete, po restarte je volba prepnuta na automaticke prihlasenie do domacej siete. Niekedy po kliknuti wireless network connection vypisuje, ze windows nemoze konfigurovat nastavenie wifi sieti. Vdaka za pomoc.
vypis z RSIT:
Logfile of random's system information tool 1.08 (written by random/random)
Run by Administrator2 at 2011-01-08 17:18:29
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 52 GB (73%) free of 71 GB
Total RAM: 1526 MB (54% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:19:55, on 8.1.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe
C:\WINDOWS\system32\agrsmsvc.exe
C:\WINDOWS\system32\PMSveH.exe
C:\Program Files\Soluto\SolutoService.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe
C:\Program Files\ThinkPad\ConnectUtilities\SvcGuiHlpr.exe
C:\Program Files\Soluto\soluto.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\NetWorx\networx.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe
C:\Program Files\Lenovo\HOTKEY\TPHKMGR.exe
C:\WINDOWS\system32\WLTRAY.exe
C:\Program Files\Lenovo\HOTKEY\TpWAudAp.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Mozilla Firefox\firefox.exe
G:\mbam-setup.exe
C:\DOCUME~1\ADMINI~2\LOCALS~1\Temp\is-QEUVJ.tmp\mbam-setup.tmp
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Documents and Settings\Administrator2\My Documents\RSIT.exe
C:\Program Files\trend micro\Administrator2.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\Program Files\Soluto\soluto.exe /userinit
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: &NetWorx Desk Band - {FEEA54B4-D80F-41C7-87B9-DC08E6D3255F} - C:\PROGRA~1\NetWorx\deskband.dll
O3 - Toolbar: Foxit Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [NetWorx] "C:\Program Files\NetWorx\networx.exe" /auto
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [ACWLIcon] C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe
O4 - HKLM\..\Run: [TPHOTKEY] C:\Program Files\Lenovo\HOTKEY\TPHKMGR.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe
O4 - HKLM\..\Run: [TPWAUDAP] C:\Program Files\Lenovo\HOTKEY\TpWAudAp.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [PMHandler] C:\WINDOWS\system32\PMHandler.exe
O4 - HKLM\..\Run: [DiskeeperSystray] "C:\Program Files\Diskeeper Corporation\Diskeeper\DkIcon.exe"
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\IBM\Java142\jre\bin\NPJPI142.dll
O9 - Extra 'Tools' menuitem: IBM Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\IBM\Java142\jre\bin\NPJPI142.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [JAVA_IBM] Java (IBM)
O14 - IERESET.INF: START_PAGE_URL=http://www.lenovo.com/us/en/
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 0115897359
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: ACNotify - ACNotify.dll (file missing)
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ac Profile Manager Service (AcPrfMgrSvc) - Lenovo - C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe
O23 - Service: Access Connections Main Service (AcSvc) - Lenovo - C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\WINDOWS\system32\agrsmsvc.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Diskeeper - Diskeeper Corporation - C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: PMSveH - Lenovo - C:\WINDOWS\system32\PMSveH.exe
O23 - Service: IBM PSA Access Driver Control (PsaSrv) - Unknown owner - C:\WINDOWS\system32\PsaSrv.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Soluto PCGenome Core Service (SolutoService) - Soluto - C:\Program Files\Soluto\SolutoService.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: TVT Backup Service - Unknown owner - C:\Program Files\IBM ThinkVantage\Rescue and Recovery\rrservice.exe
O23 - Service: TVT Scheduler - Unknown owner - C:\Program Files\IBM ThinkVantage\Common\Scheduler\tvtsched.exe
O23 - Service: ThinkVantage System Update (UCLauncherService) - Unknown owner - C:\Program Files\ThinkVantage\SystemUpdate\UCLauncherService.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE
--
End of file - 9728 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Plug-In - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-09-27 1250696]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Foxit Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-09-28 1400712]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{FEEA54B4-D80F-41C7-87B9-DC08E6D3255F} - &NetWorx Desk Band - C:\PROGRA~1\NetWorx\deskband.dll [2010-10-21 950784]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Foxit Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-09-28 1400712]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-11-04 118784]
"ZoneAlarm Client"=C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe [2010-05-26 1043968]
"NetWorx"=C:\Program Files\NetWorx\networx.exe [2010-10-21 2984448]
"SpywareTerminator"=C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2010-11-18 2216960]
"BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []
"ACWLIcon"=C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe [2010-09-17 176128]
"TPHOTKEY"=C:\Program Files\Lenovo\HOTKEY\TPHKMGR.exe [2005-12-21 94208]
"Broadcom Wireless Manager UI"=C:\WINDOWS\system32\WLTRAY.exe [2005-12-15 1236992]
"TPWAUDAP"=C:\Program Files\Lenovo\HOTKEY\TpWAudAp.exe [2005-12-10 24064]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"High Definition Audio Property Page Shortcut"=C:\WINDOWS\system32\HDAShCut.exe [2005-01-08 61952]
"PMHandler"=C:\WINDOWS\system32\PMHandler.exe [2006-05-20 24576]
"DiskeeperSystray"=C:\Program Files\Diskeeper Corporation\Diskeeper\DkIcon.exe [2005-11-29 196696]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes' Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2009-04-06 401040]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"avast! Web Scanner"=3
"avast! Mail Scanner"=3
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ACNotify]
C:\Program Files\ThinkPad\ConnectUtilities\ACNotify.dll [2010-09-17 32768]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-11-04 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tphotkey]
C:\WINDOWS\system32\tphklock.dll [2005-12-21 24576]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
ACGina
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SolutoService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MSIServer]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SolutoService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ThinkVantage\SystemUpdate\jre\bin\javaw.exe"="C:\Program Files\ThinkVantage\SystemUpdate\jre\bin\javaw.exe:*:Enabled:ThinkVantage System Update"
"C:\WINDOWS\system32\ZoneLabs\vsmon.exe"="C:\WINDOWS\system32\ZoneLabs\vsmon.exe:*:Enabled:vsmon"
"C:\Program Files\Soluto\Soluto.exe"="C:\Program Files\Soluto\Soluto.exe:*:Enabled:Soluto Tray"
"C:\Program Files\Soluto\SolutoService.exe"="C:\Program Files\Soluto\SolutoService.exe:*:Enabled:Soluto Service"
"C:\Program Files\Soluto\SolutoConsole.exe"="C:\Program Files\Soluto\SolutoConsole.exe:*:Enabled:Soluto Console"
"C:\Program Files\Soluto\SolutoUpdateService.exe"="C:\Program Files\Soluto\SolutoUpdateService.exe:*:Enabled:Soluto Update Service"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ThinkVantage\SystemUpdate\jre\bin\javaw.exe"="C:\Program Files\ThinkVantage\SystemUpdate\jre\bin\javaw.exe:*:Enabled:ThinkVantage System Update"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2011-01-08 17:18:31 ----D---- C:\Program Files\trend micro
2011-01-08 17:18:29 ----D---- C:\rsit
2011-01-08 17:11:12 ----D---- C:\Documents and Settings\Administrator2\Application Data\Malwarebytes
2011-01-08 17:11:02 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2011-01-08 17:10:59 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2011-01-08 17:10:57 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-01-08 17:10:57 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2011-01-08 17:07:58 ----SD---- C:\ComboFix
2011-01-08 16:57:30 ----D---- C:\WINDOWS\IBM
2011-01-01 19:49:38 ----D---- C:\Documents and Settings\Administrator2\Application Data\Avaya
2011-01-01 19:30:05 ----ASH---- C:\hiberfil.sys
2011-01-01 16:13:17 ----A---- C:\SVKSettings.txt
2010-12-31 20:03:10 ----D---- C:\Program Files\Microsoft Games
2010-12-26 21:16:52 ----D---- C:\Program Files\Electronic Arts
2010-12-26 21:16:45 ----A---- C:\WINDOWS\uninst.exe
2010-12-26 21:16:29 ----RASH---- C:\MSDOS.SYS
2010-12-26 15:12:57 ----A---- C:\WINDOWS\system32\XAudio2_7.dll
2010-12-26 15:12:57 ----A---- C:\WINDOWS\system32\XAPOFX1_5.dll
2010-12-26 15:12:56 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2010-12-26 15:12:55 ----A---- C:\WINDOWS\system32\D3DCompiler_43.dll
2010-12-26 15:12:54 ----A---- C:\WINDOWS\system32\d3dx11_43.dll
2010-12-26 15:12:54 ----A---- C:\WINDOWS\system32\d3dcsx_43.dll
2010-12-26 15:12:53 ----A---- C:\WINDOWS\system32\d3dx10_43.dll
2010-12-26 15:12:52 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2010-12-26 15:12:51 ----A---- C:\WINDOWS\system32\XAudio2_6.dll
2010-12-26 15:12:51 ----A---- C:\WINDOWS\system32\XAPOFX1_4.dll
2010-12-26 15:12:50 ----A---- C:\WINDOWS\system32\xactengine3_6.dll
2010-12-26 15:12:50 ----A---- C:\WINDOWS\system32\X3DAudio1_7.dll
2010-12-26 15:12:49 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2010-12-26 15:12:48 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2010-12-26 15:12:47 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2010-12-26 15:12:41 ----A---- C:\WINDOWS\system32\d3dcsx_42.dll
2010-12-26 15:12:40 ----A---- C:\WINDOWS\system32\d3dx11_42.dll
2010-12-26 15:12:39 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2010-12-26 15:12:39 ----A---- C:\WINDOWS\system32\d3dx10_42.dll
2010-12-26 15:12:37 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2010-12-26 15:12:37 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2010-12-26 15:12:36 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2010-12-26 15:12:35 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2010-12-26 15:12:35 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2010-12-26 15:12:34 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2010-12-26 15:12:34 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2010-12-26 15:12:32 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2010-12-26 15:12:32 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2010-12-26 15:12:31 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2010-12-26 15:12:30 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2010-12-26 15:12:30 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2010-12-26 15:12:29 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2010-12-26 15:12:26 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2010-12-26 15:12:25 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2010-12-26 15:12:25 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2010-12-26 15:12:23 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2010-12-26 15:12:22 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2010-12-26 15:12:22 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2010-12-26 15:12:21 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2010-12-26 15:12:19 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2010-12-26 15:12:19 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2010-12-26 15:12:18 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2010-12-26 15:12:17 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2010-12-26 15:12:16 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2010-12-26 15:12:16 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2010-12-26 15:12:15 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2010-12-26 15:12:13 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2010-12-26 15:12:12 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2010-12-26 15:12:11 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2010-12-26 15:12:10 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2010-12-26 15:12:10 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2010-12-26 15:12:09 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2010-12-26 15:12:08 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2010-12-26 15:12:04 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2010-12-26 15:12:04 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2010-12-26 15:12:02 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2010-12-26 15:12:01 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2010-12-26 15:11:59 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2010-12-26 15:11:59 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2010-12-26 15:11:58 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2010-12-26 15:11:57 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2010-12-26 15:11:57 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2010-12-26 15:11:56 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2010-12-26 15:11:56 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2010-12-26 15:11:53 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2010-12-26 15:11:52 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2010-12-26 15:11:50 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2010-12-26 15:11:44 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2010-12-26 15:11:44 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2010-12-26 15:11:40 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2010-12-26 15:11:39 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2010-12-26 15:11:39 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2010-12-26 15:11:38 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2010-12-26 15:11:38 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2010-12-26 15:11:38 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2010-12-26 15:11:37 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2010-12-26 15:11:37 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2010-12-26 15:11:36 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2010-12-26 15:11:35 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2010-12-26 15:11:34 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2010-12-26 15:11:34 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2010-12-26 15:11:28 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2010-12-26 15:11:27 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2010-12-26 15:11:27 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2010-12-26 15:11:26 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2010-12-26 15:11:26 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2010-12-26 15:11:25 ----A---- C:\WINDOWS\system32\xinput9_1_0.dll
2010-12-26 15:11:25 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2010-12-26 15:11:24 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2010-12-26 15:11:24 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2010-12-26 15:11:22 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2010-12-26 15:08:50 ----HD---- C:\WINDOWS\msdownld.tmp
2010-12-26 15:08:40 ----D---- C:\WINDOWS\Logs
2010-12-26 14:59:16 ----D---- C:\WINDOWS\system32\winrm
2010-12-26 14:59:16 ----D---- C:\WINDOWS\system32\WindowsPowerShell
2010-12-26 14:59:16 ----D---- C:\WINDOWS\system32\GroupPolicy
2010-12-26 14:59:09 ----HDC---- C:\WINDOWS\$968930Uinstall_KB968930$
2010-12-26 14:58:44 ----D---- C:\WINDOWS\$NtUninstallKB968930$
2010-12-26 14:57:56 ----HDC---- C:\WINDOWS\$NtUninstallKB971513$
2010-12-26 14:45:30 ----D---- C:\Program Files\ANU
2010-12-23 23:18:42 ----D---- C:\Discrete Acoustics Lab
2010-12-15 21:44:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2296199$
2010-12-15 21:43:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2010-12-15 21:43:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2010-12-15 21:43:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2443685$
2010-12-15 21:43:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2436673$
2010-12-15 21:42:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2467659$
2010-12-15 21:41:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2416400$
2010-12-15 21:34:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
======List of files/folders modified in the last 1 months======
2011-01-08 17:19:49 ----D---- C:\WINDOWS\Prefetch
2011-01-08 17:18:44 ----D---- C:\WINDOWS\Internet Logs
2011-01-08 17:18:31 ----RD---- C:\Program Files
2011-01-08 17:11:02 ----D---- C:\WINDOWS\system32\drivers
2011-01-08 17:08:15 ----D---- C:\Qoobox
2011-01-08 16:57:30 ----AD---- C:\WINDOWS
2011-01-08 16:56:05 ----D---- C:\WINDOWS\Temp
2011-01-08 16:40:58 ----D---- C:\WINDOWS\system32\CatRoot2
2011-01-07 22:12:08 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-01-07 20:20:18 ----A---- C:\WINDOWS\system32\sun_debug.txt
2011-01-07 20:20:17 ----A---- C:\WINDOWS\system32\sun_debug1.txt
2011-01-05 22:29:16 ----RSHD---- C:\WINDOWS\system32\dllcache
2011-01-05 22:29:16 ----HD---- C:\WINDOWS\inf
2011-01-05 22:29:16 ----AD---- C:\WINDOWS\system32
2011-01-05 22:29:15 ----D---- C:\WINDOWS\system32\CatRoot
2011-01-04 23:27:29 ----D---- C:\Documents and Settings\Administrator2\Application Data\Spyware Terminator
2011-01-03 19:26:36 ----A---- C:\WINDOWS\WDICT32.INI
2011-01-01 19:41:44 ----D---- C:\DRIVERS
2011-01-01 19:09:58 ----RSHD---- C:\RRbackups
2011-01-01 16:27:17 ----D---- C:\Program Files\McAfee Security Scan
2011-01-01 16:14:14 ----D---- C:\IBMSHARE
2011-01-01 16:10:10 ----SD---- C:\Documents and Settings\Administrator2\Application Data\Microsoft
2011-01-01 15:54:31 ----D---- C:\Documents and Settings
2010-12-31 20:03:21 ----RSD---- C:\WINDOWS\Fonts
2010-12-29 22:38:15 ----SHD---- C:\WINDOWS\Installer
2010-12-29 20:23:25 ----D---- C:\Documents and Settings\Administrator2\Application Data\ICQ
2010-12-28 14:06:07 ----D---- C:\Documents and Settings\Administrator2\Application Data\Skype
2010-12-28 13:58:23 ----D---- C:\Documents and Settings\Administrator2\Application Data\skypePM
2010-12-26 15:12:59 ----D---- C:\WINDOWS\system32\DirectX
2010-12-26 15:11:34 ----RSD---- C:\WINDOWS\assembly
2010-12-26 15:11:08 ----D---- C:\WINDOWS\Microsoft.NET
2010-12-26 15:02:42 ----D---- C:\WINDOWS\system32\config
2010-12-26 15:01:58 ----D---- C:\WINDOWS\security
2010-12-26 14:59:25 ----D---- C:\WINDOWS\Help
2010-12-26 14:59:16 ----D---- C:\WINDOWS\system32\wbem
2010-12-26 14:55:57 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-12-26 14:49:45 ----D---- C:\WINDOWS\Debug
2010-12-25 23:28:32 ----D---- C:\Program Files\Spyware Terminator
2010-12-23 23:11:53 ----D---- C:\Documents and Settings\All Users\Application Data\Spyware Terminator
2010-12-19 14:21:35 ----SHD---- C:\RECYCLER
2010-12-17 17:20:12 ----RASH---- C:\BOOT.INI
2010-12-17 17:20:12 ----A---- C:\WINDOWS\win.ini
2010-12-17 17:20:12 ----A---- C:\WINDOWS\system.ini
2010-12-15 21:44:31 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2010-12-15 21:43:39 ----HD---- C:\WINDOWS\$hf_mig$
2010-12-15 21:35:27 ----A---- C:\WINDOWS\system32\MRT.exe
2010-12-15 21:34:57 ----D---- C:\Program Files\Outlook Express
2010-12-14 19:34:12 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-12-10 18:52:05 ----D---- C:\Program Files\Mozilla Firefox
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 ohci1394;OHCI Compliant IEEE 1394 Host Controller; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 PCGenFAM;PCGenFAM; C:\WINDOWS\system32\DRIVERS\PCGenFAM.sys [2010-11-01 181704]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2005-10-26 20640]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2010-09-07 28880]
R1 ANC;ANC; C:\WINDOWS\System32\drivers\ANC.SYS [2005-09-28 11520]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2010-09-07 165584]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2010-09-07 46672]
R1 IBMTPCHK;IBMTPCHK; \??\C:\WINDOWS\system32\Drivers\IBMBLDID.sys []
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-13 36352]
R1 PMHler;PMHler; C:\WINDOWS\system32\drivers\PMHler.sys [2005-12-21 10240]
R1 PSSDK42;PSSDK42; \??\C:\WINDOWS\system32\Drivers\pssdk42.sys []
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\WINDOWS\system32\drivers\sp_rsdrv2.sys []
R1 TPHKDRV;TPHKDRV; C:\WINDOWS\system32\drivers\TPHKDRV.sys [2005-12-08 18101]
R1 TSMAPIP;TSMAPIP; C:\WINDOWS\System32\drivers\TSMAPIP.SYS [2006-01-11 7168]
R1 vsdatant;vsdatant; C:\WINDOWS\System32\vsdatant.sys [2010-05-13 532224]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2010-09-07 17744]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2010-09-07 100176]
R2 EGATHDRV;IBM eGatherer; \??\C:\WINDOWS\SYSTEM32\EGATHDRV.SYS []
R2 ibmfilter;ibmfilter; \??\C:\WINDOWS\system32\drivers\ibmfilter.sys []
R2 PMEM;PMEM; \??\C:\WINDOWS\system32\drivers\PMEMNT.SYS []
R2 smi2;smi2; \??\C:\Program Files\SMI2\smi2.sys []
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2005-08-19 138752]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2006-11-28 1161888]
R3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2010-09-07 23376]
R3 ATSWPDRV;AuthenTec TruePrint USB Driver (AES2500); C:\WINDOWS\System32\Drivers\ATSwpDrv.sys [2005-03-30 116594]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\WINDOWS\system32\DRIVERS\bcmwl5.sys [2005-12-15 425216]
R3 BthEnum;Bluetooth Enumerator Service; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-13 17024]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-13 101120]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-13 18944]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-11-04 1353820]
R3 Iviaspi;IVI ASPI Shell; C:\WINDOWS\system32\drivers\iviaspi.sys [2003-09-11 21060]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 n558;N558 Bluetooth USB Filter Driver; C:\WINDOWS\System32\Drivers\n558.sys [2007-08-15 9600]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-13 59136]
R3 rimmptsk;rimmptsk; C:\WINDOWS\system32\DRIVERS\rimmptsk.sys [2005-11-17 28928]
R3 rimsptsk;rimsptsk; C:\WINDOWS\system32\DRIVERS\rimsptsk.sys [2005-11-02 51584]
R3 rismxdp;Ricoh xD-Picture Card Driver; C:\WINDOWS\system32\DRIVERS\rixdptsk.sys [2005-11-02 308992]
R3 RTL8023xp;Realtek 10/100/1000 PCI NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2008-02-25 105088]
R3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-13 79232]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2005-10-29 191936]
R3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S0 ANCSQ;ANCSQ; C:\WINDOWS\System32\drivers\ANCSQ.sys []
S3 BTHPORT;Bluetooth Port Driver; C:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-13 272128]
S3 catchme;catchme; \??\C:\DOCUME~1\ADMINI~2\LOCALS~1\Temp\catchme.sys []
S3 E100B;Intel(R) PRO Adapter Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2001-08-17 117760]
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\HdAudio.sys [2005-01-08 145920]
S3 nmwcd;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\ccdcmb.sys [2010-02-26 18176]
S3 nmwcdc;Nokia USB Generic; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2010-02-26 22528]
S3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-04 1897408]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 psadd;IBM PSA Access Driver; \??\C:\WINDOWS\system32\Drivers\psadd.sys []
S3 PSI;PSI; C:\WINDOWS\system32\DRIVERS\psi_mf.sys [2009-06-17 12648]
S3 sffdisk;SFF Storage Class Driver; C:\WINDOWS\system32\DRIVERS\sffdisk.sys [2008-04-13 11904]
S3 sffp_sd;SFF Storage Protocol Driver for SDBus; C:\WINDOWS\system32\DRIVERS\sffp_sd.sys [2008-04-13 11008]
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2010-02-26 8192]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2008-04-13 26112]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2010-02-26 8192]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S4 agp440;Intel AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-13 42368]
S4 agpCPQ;Compaq AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agpCPQ.sys [2008-04-13 44928]
S4 alim1541;ALI AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\alim1541.sys [2008-04-13 42752]
S4 amdagp;AMD AGP Bus Filter Driver; C:\WINDOWS\system32\DRIVERS\amdagp.sys [2008-04-13 43008]
S4 cbidf;cbidf; C:\WINDOWS\system32\DRIVERS\cbidf2k.sys [2001-08-17 13952]
S4 sisagp;SIS AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\sisagp.sys [2008-04-13 40960]
S4 viaagp;VIA AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\viaagp.sys [2008-04-13 42240]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AcPrfMgrSvc;Ac Profile Manager Service; C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe [2010-09-17 98304]
R2 AcSvc;Access Connections Main Service; C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe [2010-09-17 237568]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\WINDOWS\system32\agrsmsvc.exe [2006-10-05 9216]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R2 BthServ;Bluetooth Support Service; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
R2 PMSveH;PMSveH; C:\WINDOWS\system32\PMSveH.exe [2006-05-19 57344]
R2 SolutoService;Soluto PCGenome Core Service; C:\Program Files\Soluto\SolutoService.exe [2010-11-01 331296]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2010-11-18 496128]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2004-08-11 38912]
R2 vsmon;TrueVector Internet Monitor; C:\WINDOWS\system32\ZoneLabs\vsmon.exe [2010-05-26 2437176]
R2 wltrysvc;Broadcom Wireless LAN Tray Service; C:\WINDOWS\System32\WLTRYSVC.EXE [2005-12-15 18944]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 Diskeeper;Diskeeper; C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe [2005-12-14 622700]
S3 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-11-19 136176]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PsaSrv;IBM PSA Access Driver Control; C:\WINDOWS\system32\PsaSrv.exe []
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2010-06-14 615936]
S3 TVT Backup Service;TVT Backup Service; C:\Program Files\IBM ThinkVantage\Rescue and Recovery\rrservice.exe [2005-12-22 1384448]
S3 TVT Scheduler;TVT Scheduler; C:\Program Files\IBM ThinkVantage\Common\Scheduler\tvtsched.exe [2005-12-22 77824]
S3 UCLauncherService;ThinkVantage System Update; C:\Program Files\ThinkVantage\SystemUpdate\UCLauncherService.exe [2005-08-02 40960]
S3 WinRM;Windows Remote Management (WS-Management); C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 WmcCds;Windows Media Connect (WMC); c:\program files\windows media connect\mswmccds.exe [2004-08-11 483328]
S3 WmcCdsLs;Windows Media Connect (WMC) Helper; C:\Program Files\Windows Media Connect\mswmcls.exe [2004-08-11 28160]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------
vypis z RSIT:
Logfile of random's system information tool 1.08 (written by random/random)
Run by Administrator2 at 2011-01-08 17:18:29
Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 52 GB (73%) free of 71 GB
Total RAM: 1526 MB (54% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:19:55, on 8.1.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe
C:\WINDOWS\system32\agrsmsvc.exe
C:\WINDOWS\system32\PMSveH.exe
C:\Program Files\Soluto\SolutoService.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe
C:\Program Files\ThinkPad\ConnectUtilities\SvcGuiHlpr.exe
C:\Program Files\Soluto\soluto.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\NetWorx\networx.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe
C:\Program Files\Lenovo\HOTKEY\TPHKMGR.exe
C:\WINDOWS\system32\WLTRAY.exe
C:\Program Files\Lenovo\HOTKEY\TpWAudAp.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Mozilla Firefox\firefox.exe
G:\mbam-setup.exe
C:\DOCUME~1\ADMINI~2\LOCALS~1\Temp\is-QEUVJ.tmp\mbam-setup.tmp
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Documents and Settings\Administrator2\My Documents\RSIT.exe
C:\Program Files\trend micro\Administrator2.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_custo ... TbId=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\Program Files\Soluto\soluto.exe /userinit
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: &NetWorx Desk Band - {FEEA54B4-D80F-41C7-87B9-DC08E6D3255F} - C:\PROGRA~1\NetWorx\deskband.dll
O3 - Toolbar: Foxit Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [NetWorx] "C:\Program Files\NetWorx\networx.exe" /auto
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [ACWLIcon] C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe
O4 - HKLM\..\Run: [TPHOTKEY] C:\Program Files\Lenovo\HOTKEY\TPHKMGR.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe
O4 - HKLM\..\Run: [TPWAUDAP] C:\Program Files\Lenovo\HOTKEY\TpWAudAp.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [PMHandler] C:\WINDOWS\system32\PMHandler.exe
O4 - HKLM\..\Run: [DiskeeperSystray] "C:\Program Files\Diskeeper Corporation\Diskeeper\DkIcon.exe"
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\IBM\Java142\jre\bin\NPJPI142.dll
O9 - Extra 'Tools' menuitem: IBM Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\IBM\Java142\jre\bin\NPJPI142.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6.5\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [JAVA_IBM] Java (IBM)
O14 - IERESET.INF: START_PAGE_URL=http://www.lenovo.com/us/en/
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 0115897359
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: ACNotify - ACNotify.dll (file missing)
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ac Profile Manager Service (AcPrfMgrSvc) - Lenovo - C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe
O23 - Service: Access Connections Main Service (AcSvc) - Lenovo - C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\WINDOWS\system32\agrsmsvc.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Diskeeper - Diskeeper Corporation - C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: PMSveH - Lenovo - C:\WINDOWS\system32\PMSveH.exe
O23 - Service: IBM PSA Access Driver Control (PsaSrv) - Unknown owner - C:\WINDOWS\system32\PsaSrv.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Soluto PCGenome Core Service (SolutoService) - Soluto - C:\Program Files\Soluto\SolutoService.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: TVT Backup Service - Unknown owner - C:\Program Files\IBM ThinkVantage\Rescue and Recovery\rrservice.exe
O23 - Service: TVT Scheduler - Unknown owner - C:\Program Files\IBM ThinkVantage\Common\Scheduler\tvtsched.exe
O23 - Service: ThinkVantage System Update (UCLauncherService) - Unknown owner - C:\Program Files\ThinkVantage\SystemUpdate\UCLauncherService.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE
--
End of file - 9728 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Plug-In - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-09-27 1250696]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Foxit Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-09-28 1400712]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{FEEA54B4-D80F-41C7-87B9-DC08E6D3255F} - &NetWorx Desk Band - C:\PROGRA~1\NetWorx\deskband.dll [2010-10-21 950784]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Foxit Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-09-28 1400712]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-11-04 118784]
"ZoneAlarm Client"=C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe [2010-05-26 1043968]
"NetWorx"=C:\Program Files\NetWorx\networx.exe [2010-10-21 2984448]
"SpywareTerminator"=C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2010-11-18 2216960]
"BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []
"ACWLIcon"=C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe [2010-09-17 176128]
"TPHOTKEY"=C:\Program Files\Lenovo\HOTKEY\TPHKMGR.exe [2005-12-21 94208]
"Broadcom Wireless Manager UI"=C:\WINDOWS\system32\WLTRAY.exe [2005-12-15 1236992]
"TPWAUDAP"=C:\Program Files\Lenovo\HOTKEY\TpWAudAp.exe [2005-12-10 24064]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"High Definition Audio Property Page Shortcut"=C:\WINDOWS\system32\HDAShCut.exe [2005-01-08 61952]
"PMHandler"=C:\WINDOWS\system32\PMHandler.exe [2006-05-20 24576]
"DiskeeperSystray"=C:\Program Files\Diskeeper Corporation\Diskeeper\DkIcon.exe [2005-11-29 196696]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes' Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2009-04-06 401040]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"avast! Web Scanner"=3
"avast! Mail Scanner"=3
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ACNotify]
C:\Program Files\ThinkPad\ConnectUtilities\ACNotify.dll [2010-09-17 32768]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-11-04 135168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tphotkey]
C:\WINDOWS\system32\tphklock.dll [2005-12-21 24576]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
ACGina
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SolutoService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MSIServer]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SolutoService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ThinkVantage\SystemUpdate\jre\bin\javaw.exe"="C:\Program Files\ThinkVantage\SystemUpdate\jre\bin\javaw.exe:*:Enabled:ThinkVantage System Update"
"C:\WINDOWS\system32\ZoneLabs\vsmon.exe"="C:\WINDOWS\system32\ZoneLabs\vsmon.exe:*:Enabled:vsmon"
"C:\Program Files\Soluto\Soluto.exe"="C:\Program Files\Soluto\Soluto.exe:*:Enabled:Soluto Tray"
"C:\Program Files\Soluto\SolutoService.exe"="C:\Program Files\Soluto\SolutoService.exe:*:Enabled:Soluto Service"
"C:\Program Files\Soluto\SolutoConsole.exe"="C:\Program Files\Soluto\SolutoConsole.exe:*:Enabled:Soluto Console"
"C:\Program Files\Soluto\SolutoUpdateService.exe"="C:\Program Files\Soluto\SolutoUpdateService.exe:*:Enabled:Soluto Update Service"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\ThinkVantage\SystemUpdate\jre\bin\javaw.exe"="C:\Program Files\ThinkVantage\SystemUpdate\jre\bin\javaw.exe:*:Enabled:ThinkVantage System Update"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
======List of files/folders created in the last 1 months======
2011-01-08 17:18:31 ----D---- C:\Program Files\trend micro
2011-01-08 17:18:29 ----D---- C:\rsit
2011-01-08 17:11:12 ----D---- C:\Documents and Settings\Administrator2\Application Data\Malwarebytes
2011-01-08 17:11:02 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2011-01-08 17:10:59 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2011-01-08 17:10:57 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-01-08 17:10:57 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2011-01-08 17:07:58 ----SD---- C:\ComboFix
2011-01-08 16:57:30 ----D---- C:\WINDOWS\IBM
2011-01-01 19:49:38 ----D---- C:\Documents and Settings\Administrator2\Application Data\Avaya
2011-01-01 19:30:05 ----ASH---- C:\hiberfil.sys
2011-01-01 16:13:17 ----A---- C:\SVKSettings.txt
2010-12-31 20:03:10 ----D---- C:\Program Files\Microsoft Games
2010-12-26 21:16:52 ----D---- C:\Program Files\Electronic Arts
2010-12-26 21:16:45 ----A---- C:\WINDOWS\uninst.exe
2010-12-26 21:16:29 ----RASH---- C:\MSDOS.SYS
2010-12-26 15:12:57 ----A---- C:\WINDOWS\system32\XAudio2_7.dll
2010-12-26 15:12:57 ----A---- C:\WINDOWS\system32\XAPOFX1_5.dll
2010-12-26 15:12:56 ----A---- C:\WINDOWS\system32\xactengine3_7.dll
2010-12-26 15:12:55 ----A---- C:\WINDOWS\system32\D3DCompiler_43.dll
2010-12-26 15:12:54 ----A---- C:\WINDOWS\system32\d3dx11_43.dll
2010-12-26 15:12:54 ----A---- C:\WINDOWS\system32\d3dcsx_43.dll
2010-12-26 15:12:53 ----A---- C:\WINDOWS\system32\d3dx10_43.dll
2010-12-26 15:12:52 ----A---- C:\WINDOWS\system32\D3DX9_43.dll
2010-12-26 15:12:51 ----A---- C:\WINDOWS\system32\XAudio2_6.dll
2010-12-26 15:12:51 ----A---- C:\WINDOWS\system32\XAPOFX1_4.dll
2010-12-26 15:12:50 ----A---- C:\WINDOWS\system32\xactengine3_6.dll
2010-12-26 15:12:50 ----A---- C:\WINDOWS\system32\X3DAudio1_7.dll
2010-12-26 15:12:49 ----A---- C:\WINDOWS\system32\XAudio2_5.dll
2010-12-26 15:12:48 ----A---- C:\WINDOWS\system32\xactengine3_5.dll
2010-12-26 15:12:47 ----A---- C:\WINDOWS\system32\D3DCompiler_42.dll
2010-12-26 15:12:41 ----A---- C:\WINDOWS\system32\d3dcsx_42.dll
2010-12-26 15:12:40 ----A---- C:\WINDOWS\system32\d3dx11_42.dll
2010-12-26 15:12:39 ----A---- C:\WINDOWS\system32\D3DX9_42.dll
2010-12-26 15:12:39 ----A---- C:\WINDOWS\system32\d3dx10_42.dll
2010-12-26 15:12:37 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2010-12-26 15:12:37 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2010-12-26 15:12:36 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2010-12-26 15:12:35 ----A---- C:\WINDOWS\system32\XAudio2_4.dll
2010-12-26 15:12:35 ----A---- C:\WINDOWS\system32\XAPOFX1_3.dll
2010-12-26 15:12:34 ----A---- C:\WINDOWS\system32\xactengine3_4.dll
2010-12-26 15:12:34 ----A---- C:\WINDOWS\system32\X3DAudio1_6.dll
2010-12-26 15:12:32 ----A---- C:\WINDOWS\system32\d3dx10_40.dll
2010-12-26 15:12:32 ----A---- C:\WINDOWS\system32\D3DCompiler_40.dll
2010-12-26 15:12:31 ----A---- C:\WINDOWS\system32\D3DX9_40.dll
2010-12-26 15:12:30 ----A---- C:\WINDOWS\system32\XAudio2_3.dll
2010-12-26 15:12:30 ----A---- C:\WINDOWS\system32\XAPOFX1_2.dll
2010-12-26 15:12:29 ----A---- C:\WINDOWS\system32\xactengine3_3.dll
2010-12-26 15:12:26 ----A---- C:\WINDOWS\system32\X3DAudio1_5.dll
2010-12-26 15:12:25 ----A---- C:\WINDOWS\system32\XAudio2_2.dll
2010-12-26 15:12:25 ----A---- C:\WINDOWS\system32\XAPOFX1_1.dll
2010-12-26 15:12:23 ----A---- C:\WINDOWS\system32\xactengine3_2.dll
2010-12-26 15:12:22 ----A---- C:\WINDOWS\system32\d3dx10_39.dll
2010-12-26 15:12:22 ----A---- C:\WINDOWS\system32\D3DCompiler_39.dll
2010-12-26 15:12:21 ----A---- C:\WINDOWS\system32\D3DX9_39.dll
2010-12-26 15:12:19 ----A---- C:\WINDOWS\system32\XAudio2_1.dll
2010-12-26 15:12:19 ----A---- C:\WINDOWS\system32\XAPOFX1_0.dll
2010-12-26 15:12:18 ----A---- C:\WINDOWS\system32\xactengine3_1.dll
2010-12-26 15:12:17 ----A---- C:\WINDOWS\system32\X3DAudio1_4.dll
2010-12-26 15:12:16 ----A---- C:\WINDOWS\system32\d3dx10_38.dll
2010-12-26 15:12:16 ----A---- C:\WINDOWS\system32\D3DCompiler_38.dll
2010-12-26 15:12:15 ----A---- C:\WINDOWS\system32\D3DX9_38.dll
2010-12-26 15:12:13 ----A---- C:\WINDOWS\system32\XAudio2_0.dll
2010-12-26 15:12:12 ----A---- C:\WINDOWS\system32\xactengine3_0.dll
2010-12-26 15:12:11 ----A---- C:\WINDOWS\system32\X3DAudio1_3.dll
2010-12-26 15:12:10 ----A---- C:\WINDOWS\system32\d3dx10_37.dll
2010-12-26 15:12:10 ----A---- C:\WINDOWS\system32\D3DCompiler_37.dll
2010-12-26 15:12:09 ----A---- C:\WINDOWS\system32\D3DX9_37.dll
2010-12-26 15:12:08 ----A---- C:\WINDOWS\system32\xactengine2_10.dll
2010-12-26 15:12:04 ----A---- C:\WINDOWS\system32\d3dx10_36.dll
2010-12-26 15:12:04 ----A---- C:\WINDOWS\system32\D3DCompiler_36.dll
2010-12-26 15:12:02 ----A---- C:\WINDOWS\system32\d3dx9_36.dll
2010-12-26 15:12:01 ----A---- C:\WINDOWS\system32\xactengine2_9.dll
2010-12-26 15:11:59 ----A---- C:\WINDOWS\system32\d3dx10_35.dll
2010-12-26 15:11:59 ----A---- C:\WINDOWS\system32\D3DCompiler_35.dll
2010-12-26 15:11:58 ----A---- C:\WINDOWS\system32\d3dx9_35.dll
2010-12-26 15:11:57 ----A---- C:\WINDOWS\system32\xactengine2_8.dll
2010-12-26 15:11:57 ----A---- C:\WINDOWS\system32\X3DAudio1_2.dll
2010-12-26 15:11:56 ----A---- C:\WINDOWS\system32\d3dx10_34.dll
2010-12-26 15:11:56 ----A---- C:\WINDOWS\system32\D3DCompiler_34.dll
2010-12-26 15:11:53 ----A---- C:\WINDOWS\system32\d3dx9_34.dll
2010-12-26 15:11:52 ----A---- C:\WINDOWS\system32\xinput1_3.dll
2010-12-26 15:11:50 ----A---- C:\WINDOWS\system32\xactengine2_7.dll
2010-12-26 15:11:44 ----A---- C:\WINDOWS\system32\d3dx10_33.dll
2010-12-26 15:11:44 ----A---- C:\WINDOWS\system32\D3DCompiler_33.dll
2010-12-26 15:11:40 ----A---- C:\WINDOWS\system32\d3dx9_33.dll
2010-12-26 15:11:39 ----A---- C:\WINDOWS\system32\xactengine2_6.dll
2010-12-26 15:11:39 ----A---- C:\WINDOWS\system32\xactengine2_5.dll
2010-12-26 15:11:38 ----A---- C:\WINDOWS\system32\xactengine2_4.dll
2010-12-26 15:11:38 ----A---- C:\WINDOWS\system32\x3daudio1_1.dll
2010-12-26 15:11:38 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2010-12-26 15:11:37 ----A---- C:\WINDOWS\system32\xactengine2_3.dll
2010-12-26 15:11:37 ----A---- C:\WINDOWS\system32\d3dx9_31.dll
2010-12-26 15:11:36 ----A---- C:\WINDOWS\system32\xinput1_2.dll
2010-12-26 15:11:35 ----A---- C:\WINDOWS\system32\xactengine2_2.dll
2010-12-26 15:11:34 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2010-12-26 15:11:34 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2010-12-26 15:11:28 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2010-12-26 15:11:27 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2010-12-26 15:11:27 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2010-12-26 15:11:26 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2010-12-26 15:11:26 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2010-12-26 15:11:25 ----A---- C:\WINDOWS\system32\xinput9_1_0.dll
2010-12-26 15:11:25 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2010-12-26 15:11:24 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2010-12-26 15:11:24 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2010-12-26 15:11:22 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2010-12-26 15:08:50 ----HD---- C:\WINDOWS\msdownld.tmp
2010-12-26 15:08:40 ----D---- C:\WINDOWS\Logs
2010-12-26 14:59:16 ----D---- C:\WINDOWS\system32\winrm
2010-12-26 14:59:16 ----D---- C:\WINDOWS\system32\WindowsPowerShell
2010-12-26 14:59:16 ----D---- C:\WINDOWS\system32\GroupPolicy
2010-12-26 14:59:09 ----HDC---- C:\WINDOWS\$968930Uinstall_KB968930$
2010-12-26 14:58:44 ----D---- C:\WINDOWS\$NtUninstallKB968930$
2010-12-26 14:57:56 ----HDC---- C:\WINDOWS\$NtUninstallKB971513$
2010-12-26 14:45:30 ----D---- C:\Program Files\ANU
2010-12-23 23:18:42 ----D---- C:\Discrete Acoustics Lab
2010-12-15 21:44:39 ----HDC---- C:\WINDOWS\$NtUninstallKB2296199$
2010-12-15 21:43:53 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2010-12-15 21:43:43 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2010-12-15 21:43:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2443685$
2010-12-15 21:43:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2436673$
2010-12-15 21:42:07 ----HDC---- C:\WINDOWS\$NtUninstallKB2467659$
2010-12-15 21:41:50 ----HDC---- C:\WINDOWS\$NtUninstallKB2416400$
2010-12-15 21:34:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
======List of files/folders modified in the last 1 months======
2011-01-08 17:19:49 ----D---- C:\WINDOWS\Prefetch
2011-01-08 17:18:44 ----D---- C:\WINDOWS\Internet Logs
2011-01-08 17:18:31 ----RD---- C:\Program Files
2011-01-08 17:11:02 ----D---- C:\WINDOWS\system32\drivers
2011-01-08 17:08:15 ----D---- C:\Qoobox
2011-01-08 16:57:30 ----AD---- C:\WINDOWS
2011-01-08 16:56:05 ----D---- C:\WINDOWS\Temp
2011-01-08 16:40:58 ----D---- C:\WINDOWS\system32\CatRoot2
2011-01-07 22:12:08 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-01-07 20:20:18 ----A---- C:\WINDOWS\system32\sun_debug.txt
2011-01-07 20:20:17 ----A---- C:\WINDOWS\system32\sun_debug1.txt
2011-01-05 22:29:16 ----RSHD---- C:\WINDOWS\system32\dllcache
2011-01-05 22:29:16 ----HD---- C:\WINDOWS\inf
2011-01-05 22:29:16 ----AD---- C:\WINDOWS\system32
2011-01-05 22:29:15 ----D---- C:\WINDOWS\system32\CatRoot
2011-01-04 23:27:29 ----D---- C:\Documents and Settings\Administrator2\Application Data\Spyware Terminator
2011-01-03 19:26:36 ----A---- C:\WINDOWS\WDICT32.INI
2011-01-01 19:41:44 ----D---- C:\DRIVERS
2011-01-01 19:09:58 ----RSHD---- C:\RRbackups
2011-01-01 16:27:17 ----D---- C:\Program Files\McAfee Security Scan
2011-01-01 16:14:14 ----D---- C:\IBMSHARE
2011-01-01 16:10:10 ----SD---- C:\Documents and Settings\Administrator2\Application Data\Microsoft
2011-01-01 15:54:31 ----D---- C:\Documents and Settings
2010-12-31 20:03:21 ----RSD---- C:\WINDOWS\Fonts
2010-12-29 22:38:15 ----SHD---- C:\WINDOWS\Installer
2010-12-29 20:23:25 ----D---- C:\Documents and Settings\Administrator2\Application Data\ICQ
2010-12-28 14:06:07 ----D---- C:\Documents and Settings\Administrator2\Application Data\Skype
2010-12-28 13:58:23 ----D---- C:\Documents and Settings\Administrator2\Application Data\skypePM
2010-12-26 15:12:59 ----D---- C:\WINDOWS\system32\DirectX
2010-12-26 15:11:34 ----RSD---- C:\WINDOWS\assembly
2010-12-26 15:11:08 ----D---- C:\WINDOWS\Microsoft.NET
2010-12-26 15:02:42 ----D---- C:\WINDOWS\system32\config
2010-12-26 15:01:58 ----D---- C:\WINDOWS\security
2010-12-26 14:59:25 ----D---- C:\WINDOWS\Help
2010-12-26 14:59:16 ----D---- C:\WINDOWS\system32\wbem
2010-12-26 14:55:57 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-12-26 14:49:45 ----D---- C:\WINDOWS\Debug
2010-12-25 23:28:32 ----D---- C:\Program Files\Spyware Terminator
2010-12-23 23:11:53 ----D---- C:\Documents and Settings\All Users\Application Data\Spyware Terminator
2010-12-19 14:21:35 ----SHD---- C:\RECYCLER
2010-12-17 17:20:12 ----RASH---- C:\BOOT.INI
2010-12-17 17:20:12 ----A---- C:\WINDOWS\win.ini
2010-12-17 17:20:12 ----A---- C:\WINDOWS\system.ini
2010-12-15 21:44:31 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2010-12-15 21:43:39 ----HD---- C:\WINDOWS\$hf_mig$
2010-12-15 21:35:27 ----A---- C:\WINDOWS\system32\MRT.exe
2010-12-15 21:34:57 ----D---- C:\Program Files\Outlook Express
2010-12-14 19:34:12 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-12-10 18:52:05 ----D---- C:\Program Files\Mozilla Firefox
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 ohci1394;OHCI Compliant IEEE 1394 Host Controller; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 PCGenFAM;PCGenFAM; C:\WINDOWS\system32\DRIVERS\PCGenFAM.sys [2010-11-01 181704]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2005-10-26 20640]
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2010-09-07 28880]
R1 ANC;ANC; C:\WINDOWS\System32\drivers\ANC.SYS [2005-09-28 11520]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2010-09-07 165584]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2010-09-07 46672]
R1 IBMTPCHK;IBMTPCHK; \??\C:\WINDOWS\system32\Drivers\IBMBLDID.sys []
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-13 36352]
R1 PMHler;PMHler; C:\WINDOWS\system32\drivers\PMHler.sys [2005-12-21 10240]
R1 PSSDK42;PSSDK42; \??\C:\WINDOWS\system32\Drivers\pssdk42.sys []
R1 sp_rsdrv2;Spyware Terminator Driver 2; \??\C:\WINDOWS\system32\drivers\sp_rsdrv2.sys []
R1 TPHKDRV;TPHKDRV; C:\WINDOWS\system32\drivers\TPHKDRV.sys [2005-12-08 18101]
R1 TSMAPIP;TSMAPIP; C:\WINDOWS\System32\drivers\TSMAPIP.SYS [2006-01-11 7168]
R1 vsdatant;vsdatant; C:\WINDOWS\System32\vsdatant.sys [2010-05-13 532224]
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2010-09-07 17744]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2010-09-07 100176]
R2 EGATHDRV;IBM eGatherer; \??\C:\WINDOWS\SYSTEM32\EGATHDRV.SYS []
R2 ibmfilter;ibmfilter; \??\C:\WINDOWS\system32\drivers\ibmfilter.sys []
R2 PMEM;PMEM; \??\C:\WINDOWS\system32\drivers\PMEMNT.SYS []
R2 smi2;smi2; \??\C:\Program Files\SMI2\smi2.sys []
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2005-08-19 138752]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2006-11-28 1161888]
R3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2010-09-07 23376]
R3 ATSWPDRV;AuthenTec TruePrint USB Driver (AES2500); C:\WINDOWS\System32\Drivers\ATSwpDrv.sys [2005-03-30 116594]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\WINDOWS\system32\DRIVERS\bcmwl5.sys [2005-12-15 425216]
R3 BthEnum;Bluetooth Enumerator Service; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-13 17024]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-13 101120]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-13 18944]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-11-04 1353820]
R3 Iviaspi;IVI ASPI Shell; C:\WINDOWS\system32\drivers\iviaspi.sys [2003-09-11 21060]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 n558;N558 Bluetooth USB Filter Driver; C:\WINDOWS\System32\Drivers\n558.sys [2007-08-15 9600]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-13 59136]
R3 rimmptsk;rimmptsk; C:\WINDOWS\system32\DRIVERS\rimmptsk.sys [2005-11-17 28928]
R3 rimsptsk;rimsptsk; C:\WINDOWS\system32\DRIVERS\rimsptsk.sys [2005-11-02 51584]
R3 rismxdp;Ricoh xD-Picture Card Driver; C:\WINDOWS\system32\DRIVERS\rixdptsk.sys [2005-11-02 308992]
R3 RTL8023xp;Realtek 10/100/1000 PCI NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2008-02-25 105088]
R3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2008-04-13 79232]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2005-10-29 191936]
R3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S0 ANCSQ;ANCSQ; C:\WINDOWS\System32\drivers\ANCSQ.sys []
S3 BTHPORT;Bluetooth Port Driver; C:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-13 272128]
S3 catchme;catchme; \??\C:\DOCUME~1\ADMINI~2\LOCALS~1\Temp\catchme.sys []
S3 E100B;Intel(R) PRO Adapter Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2001-08-17 117760]
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\HdAudio.sys [2005-01-08 145920]
S3 nmwcd;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\ccdcmb.sys [2010-02-26 18176]
S3 nmwcdc;Nokia USB Generic; C:\WINDOWS\system32\drivers\ccdcmbo.sys [2010-02-26 22528]
S3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-04 1897408]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 psadd;IBM PSA Access Driver; \??\C:\WINDOWS\system32\Drivers\psadd.sys []
S3 PSI;PSI; C:\WINDOWS\system32\DRIVERS\psi_mf.sys [2009-06-17 12648]
S3 sffdisk;SFF Storage Class Driver; C:\WINDOWS\system32\DRIVERS\sffdisk.sys [2008-04-13 11904]
S3 sffp_sd;SFF Storage Protocol Driver for SDBus; C:\WINDOWS\system32\DRIVERS\sffp_sd.sys [2008-04-13 11008]
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2010-02-26 8192]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2008-04-13 26112]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2010-02-26 8192]
S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2009-07-14 444136]
S4 agp440;Intel AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-13 42368]
S4 agpCPQ;Compaq AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agpCPQ.sys [2008-04-13 44928]
S4 alim1541;ALI AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\alim1541.sys [2008-04-13 42752]
S4 amdagp;AMD AGP Bus Filter Driver; C:\WINDOWS\system32\DRIVERS\amdagp.sys [2008-04-13 43008]
S4 cbidf;cbidf; C:\WINDOWS\system32\DRIVERS\cbidf2k.sys [2001-08-17 13952]
S4 sisagp;SIS AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\sisagp.sys [2008-04-13 40960]
S4 viaagp;VIA AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\viaagp.sys [2008-04-13 42240]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AcPrfMgrSvc;Ac Profile Manager Service; C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe [2010-09-17 98304]
R2 AcSvc;Access Connections Main Service; C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe [2010-09-17 237568]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\WINDOWS\system32\agrsmsvc.exe [2006-10-05 9216]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R2 BthServ;Bluetooth Support Service; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
R2 PMSveH;PMSveH; C:\WINDOWS\system32\PMSveH.exe [2006-05-19 57344]
R2 SolutoService;Soluto PCGenome Core Service; C:\Program Files\Soluto\SolutoService.exe [2010-11-01 331296]
R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2010-11-18 496128]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2004-08-11 38912]
R2 vsmon;TrueVector Internet Monitor; C:\WINDOWS\system32\ZoneLabs\vsmon.exe [2010-05-26 2437176]
R2 wltrysvc;Broadcom Wireless LAN Tray Service; C:\WINDOWS\System32\WLTRYSVC.EXE [2005-12-15 18944]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-09-07 40384]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 Diskeeper;Diskeeper; C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe [2005-12-14 622700]
S3 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-11-19 136176]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PsaSrv;IBM PSA Access Driver Control; C:\WINDOWS\system32\PsaSrv.exe []
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2010-06-14 615936]
S3 TVT Backup Service;TVT Backup Service; C:\Program Files\IBM ThinkVantage\Rescue and Recovery\rrservice.exe [2005-12-22 1384448]
S3 TVT Scheduler;TVT Scheduler; C:\Program Files\IBM ThinkVantage\Common\Scheduler\tvtsched.exe [2005-12-22 77824]
S3 UCLauncherService;ThinkVantage System Update; C:\Program Files\ThinkVantage\SystemUpdate\UCLauncherService.exe [2005-08-02 40960]
S3 WinRM;Windows Remote Management (WS-Management); C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 WmcCds;Windows Media Connect (WMC); c:\program files\windows media connect\mswmccds.exe [2004-08-11 483328]
S3 WmcCdsLs;Windows Media Connect (WMC) Helper; C:\Program Files\Windows Media Connect\mswmcls.exe [2004-08-11 28160]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------