no, takze spravil som Hijack fix, restart a hned mi vyskocili 4 okna - 3x system conhost.exe prestal pracovať a 1x system C927 prestal pracovať. prikladam log (stále mi vyhadzuje okná system conhost.exe prestal pracovať)
Logfile of random's system information tool 1.08 (written by random/random)
Run by Martin at 2011-03-11 10:53:27
Microsoft Windows 7 Ultimate
System drive C: has 70 GB (31%) free of 228 GB
Total RAM: 1790 MB (65% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:53:36, on 11. 3. 2011
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Users\Martin\AppData\Roaming\dwm.exe
C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\Windows\WindowsMobile\wmdc.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Users\Martin\AppData\Local\Temp\csrss.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\HP\Digital Imaging\smart web printing\hpswp_clipbook.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Martin\Downloads\RSIT.exe
C:\Program Files\trend micro\Martin.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:51212
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F3 - REG:win.ini: load=C:\Users\Martin\AppData\Local\Temp\csrss.exe
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: Use the DivX Plus Web Player to watch web videos with less interruptions and smoother playback on supported sites - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [avast!] "C:\Program Files\Alwil Software\Avast4\ashDisp.exe"
O4 - HKLM\..\Run: [NBAgent] "C:\Program Files\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Show or hide HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @C:\Program Files\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files\Nero\Update\NASvc.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
--
End of file - 7064 bytes
======Scheduled tasks folder======
C:\Windows\tasks\At1.job
C:\Windows\tasks\At2.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-20 328248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{326E768D-4182-46FD-9C16-1449A49795F4}]
DivX Plus Web Player HTML5 <video> - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2011-02-08 3118976]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{593DDEC6-7468-4cdd-90E1-42DADAA222E9}]
DivX HiQ - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll [2011-02-08 3118976]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-02-18 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856}]
HP Smart BHO Class - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-20 509496]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2010-11-29 421888]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2011-01-25 421160]
"avast!"=C:\Program Files\Alwil Software\Avast4\ashDisp.exe [2009-02-05 81000]
"NBAgent"=C:\Program Files\Nero\Nero 10\Nero BackItUp\NBAgent.exe [2010-03-26 1234216]
"AdobeAAMUpdater-1.0"=C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]
"SwitchBoard"=C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"hpqSRMon"=C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe [2008-07-22 150528]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-10-29 249064]
"DivXUpdate"=C:\Program Files\DivX\DivX Update\DivXUpdate.exe [2011-02-15 1230704]
"Windows Mobile Device Center"=C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 648072]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2011-03-11 10:23:48 ----D---- C:\Users\Martin\AppData\Roaming\Malwarebytes
2011-03-11 10:23:41 ----D---- C:\ProgramData\Malwarebytes
2011-03-11 10:23:38 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-03-11 09:45:17 ----D---- C:\Program Files\trend micro
2011-03-11 09:45:16 ----D---- C:\rsit
2011-03-11 09:34:21 ----D---- C:\Program Files\CCleaner
2011-03-09 22:43:02 ----D---- C:\Program Files\EA GAMES
2011-03-09 15:15:39 ----D---- C:\Program Files\Common Files\EasyInfo
2011-03-09 15:03:55 ----A---- C:\Windows\system32\d3dx9_26.dll
2011-03-09 10:41:44 ----D---- C:\Program Files\PowerISO
2011-03-07 12:43:11 ----D---- C:\Windows\WindowsMobile
2011-02-28 22:38:09 ----D---- C:\Program Files\Common Files\DivX Shared
2011-02-28 22:37:05 ----D---- C:\Program Files\DivX
2011-02-28 22:36:11 ----D---- C:\ProgramData\DivX
2011-02-22 18:01:37 ----D---- C:\Users\Martin\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2011-02-21 18:26:45 ----D---- C:\Users\Martin\AppData\Roaming\GHISLER
2011-02-21 18:26:45 ----D---- C:\Program Files\totalcmd
2011-02-21 18:26:45 ----A---- C:\Windows\UC.PIF
2011-02-21 18:26:45 ----A---- C:\Windows\RAR.PIF
2011-02-21 18:26:45 ----A---- C:\Windows\PKZIP.PIF
2011-02-21 18:26:45 ----A---- C:\Windows\PKUNZIP.PIF
2011-02-21 18:26:45 ----A---- C:\Windows\NOCLOSE.PIF
2011-02-21 18:26:45 ----A---- C:\Windows\LHA.PIF
2011-02-21 18:26:45 ----A---- C:\Windows\ARJ.PIF
2011-02-21 16:37:06 ----D---- C:\Users\Martin\AppData\Roaming\HDRsoft
2011-02-18 12:48:23 ----D---- C:\ProgramData\Sun
2011-02-18 12:48:22 ----D---- C:\Program Files\Common Files\Java
2011-02-18 12:47:11 ----A---- C:\Windows\system32\javaws.exe
2011-02-18 12:47:11 ----A---- C:\Windows\system32\javaw.exe
2011-02-18 12:47:11 ----A---- C:\Windows\system32\java.exe
2011-02-18 12:47:11 ----A---- C:\Windows\system32\deployJava1.dll
2011-02-18 12:46:58 ----D---- C:\Program Files\Java
2011-02-18 12:24:42 ----D---- C:\Program Files\Common Files\Adobe Systems Shared
2011-02-18 00:01:57 ----D---- C:\Windows\system32\MpEngineStore
2011-02-16 08:30:55 ----D---- C:\Program Files\PhotomatixPro3
2011-02-15 13:25:00 ----D---- C:\ProgramData\WEBREG
2011-02-15 13:24:29 ----D---- C:\Users\Martin\AppData\Roaming\HP
2011-02-15 13:21:13 ----D---- C:\ProgramData\HP Product Assistant
2011-02-15 13:19:21 ----D---- C:\Program Files\Common Files\Hewlett-Packard
2011-02-15 13:18:50 ----D---- C:\Program Files\Common Files\HP
2011-02-15 13:16:17 ----D---- C:\Program Files\HP
2011-02-15 13:15:10 ----A---- C:\Windows\system32\hpzids01.dll
2011-02-15 13:09:41 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2011-02-15 12:58:05 ----D---- C:\Program Files\Adobe Media Player
2011-02-15 12:55:47 ----D---- C:\Program Files\Common Files\Adobe AIR
2011-02-15 09:49:33 ----D---- C:\Users\Martin\AppData\Roaming\Nero
2011-02-15 01:34:44 ----D---- C:\Users\Martin\AppData\Roaming\Media Player Classic
2011-02-14 23:48:53 ----A---- C:\Users\Martin\AppData\Roaming\dwm.exe
2011-02-14 23:42:18 ----D---- C:\ProgramData\Nero
2011-02-14 23:40:33 ----D---- C:\Program Files\Common Files\Nero
2011-02-14 23:40:13 ----D---- C:\Program Files\Nero
2011-02-14 23:37:07 ----D---- C:\Windows\Minidump
2011-02-14 22:38:31 ----D---- C:\ProgramData\Hewlett-Packard
2011-02-14 22:37:54 ----D---- C:\ProgramData\HP
2011-02-14 22:34:43 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2011-02-14 22:34:15 ----A---- C:\Windows\system32\D3DX9_42.dll
2011-02-14 22:33:48 ----A---- C:\Windows\system32\D3DX9_40.dll
2011-02-14 22:33:19 ----A---- C:\Windows\system32\d3dx9_35.dll
2011-02-14 22:32:50 ----A---- C:\Windows\system32\d3dx9_34.dll
2011-02-14 22:32:19 ----A---- C:\Windows\system32\d3dx9_30.dll
2011-02-14 22:11:41 ----D---- C:\Users\Martin\AppData\Roaming\BitTorrent
2011-02-14 22:11:33 ----D---- C:\Program Files\BitTorrent
2011-02-14 22:05:32 ----A---- C:\Windows\ODBC.INI
2011-02-14 22:05:25 ----A---- C:\Windows\system32\mdimon.dll
2011-02-14 22:03:08 ----D---- C:\Program Files\Common Files\DESIGNER
2011-02-14 22:02:35 ----D---- C:\Windows\PCHEALTH
2011-02-14 22:02:35 ----D---- C:\Program Files\Microsoft.NET
2011-02-14 22:02:34 ----D---- C:\Program Files\Microsoft Office
2011-02-14 21:56:13 ----A---- C:\Windows\system32\MFC71.dll
2011-02-14 21:56:13 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2011-02-14 21:56:13 ----A---- C:\Windows\system32\aswBoot.exe
2011-02-14 21:52:41 ----D---- C:\Program Files\mplayerc
2011-02-14 21:52:37 ----D---- C:\Users\Martin\AppData\Roaming\Apple Computer
2011-02-14 21:52:20 ----A---- C:\Windows\system32\GEARAspi.dll
2011-02-14 21:52:20 ----A---- C:\Windows\system32\drivers\GEARAspiWDM.sys
2011-02-14 21:52:19 ----DC---- C:\Windows\system32\DRVSTORE
2011-02-14 21:51:01 ----D---- C:\Program Files\iPod
2011-02-14 21:51:00 ----D---- C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
2011-02-14 21:51:00 ----D---- C:\Program Files\iTunes
2011-02-14 21:48:12 ----D---- C:\ProgramData\Apple Computer
2011-02-14 21:48:12 ----D---- C:\Program Files\QuickTime
2011-02-14 21:47:13 ----D---- C:\Program Files\Apple Software Update
2011-02-14 21:45:31 ----D---- C:\Program Files\Bonjour
2011-02-14 21:44:43 ----D---- C:\ProgramData\Apple
2011-02-14 21:44:43 ----D---- C:\Program Files\Common Files\Apple
2011-02-14 21:38:41 ----D---- C:\ProgramData\Alwil Software
2011-02-14 21:38:41 ----D---- C:\Program Files\Alwil Software
2011-02-14 21:34:49 ----D---- C:\Program Files\Garena
2011-02-14 21:17:52 ----D---- C:\ProgramData\HPSSUPPLY
2011-02-14 21:12:17 ----A---- C:\Windows\system32\ff_vfw.dll.manifest
2011-02-14 21:12:16 ----A---- C:\Windows\system32\pthreadGC2.dll
2011-02-14 21:12:16 ----A---- C:\Windows\system32\ff_vfw.dll
2011-02-14 21:12:15 ----D---- C:\Program Files\ffdshow
2011-02-14 21:12:15 ----A---- C:\Windows\system32\msvcr71.dll
2011-02-14 21:12:15 ----A---- C:\Windows\system32\msvcp71.dll
2011-02-14 21:10:48 ----D---- C:\Program Files\WinRAR
2011-02-14 21:08:59 ----D---- C:\Users\Martin\AppData\Roaming\WinRAR
2011-02-14 21:04:05 ----D---- C:\Windows\system32\Macromed
2011-02-14 21:03:53 ----N---- C:\Windows\system32\MpSigStub.exe
2011-02-14 21:03:07 ----D---- C:\Users\Martin\AppData\Roaming\Macromedia
2011-02-14 21:03:07 ----D---- C:\Users\Martin\AppData\Roaming\Adobe
2011-02-14 21:02:04 ----D---- C:\ProgramData\Adobe
2011-02-14 21:01:59 ----D---- C:\Program Files\Common Files\Adobe
2011-02-14 21:01:59 ----D---- C:\Program Files\Adobe
2011-02-14 21:01:18 ----SHD---- C:\Windows\Installer
2011-02-14 21:00:19 ----D---- C:\Users\Martin\AppData\Roaming\Mozilla
2011-02-14 20:59:17 ----D---- C:\Program Files\Mozilla Firefox
2011-02-14 20:50:31 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-02-14 20:45:52 ----D---- C:\Users\Martin\AppData\Roaming\Identities
2011-02-14 20:44:48 ----D---- C:\Users\Martin\AppData\Roaming\Media Center Programs
2011-02-14 20:44:47 ----SD---- C:\Users\Martin\AppData\Roaming\Microsoft
2011-02-14 20:42:15 ----SHD---- C:\Recovery
2011-02-14 20:19:46 ----D---- C:\Windows\SoftwareDistribution
2011-02-14 20:16:36 ----D---- C:\Windows\Prefetch
2011-02-14 20:14:49 ----D---- C:\Windows\Panther
2011-02-14 20:14:37 ----RASH---- C:\BOOTSECT.BAK
======List of files/folders modified in the last 1 months======
2011-03-11 10:53:29 ----D---- C:\Windows\Temp
2011-03-11 10:46:24 ----D---- C:\Windows\System32
2011-03-11 10:46:24 ----D---- C:\Windows\inf
2011-03-11 10:41:48 ----D---- C:\Windows\Tasks
2011-03-11 10:41:48 ----D---- C:\Windows\system32\wfp
2011-03-11 10:41:44 ----D---- C:\Windows
2011-03-11 10:41:43 ----D---- C:\Windows\system32\wbem
2011-03-11 10:40:51 ----D---- C:\Windows\system32\config
2011-03-11 10:40:39 ----D---- C:\Windows\system32\DriverStore
2011-03-11 10:40:39 ----D---- C:\Windows\system32\drivers\etc
2011-03-11 10:40:39 ----D---- C:\Windows\system32\drivers
2011-03-11 10:40:39 ----D---- C:\Windows\system32\catroot2
2011-03-11 10:40:33 ----D---- C:\Windows\system32\drivers\UMDF
2011-03-11 10:40:33 ----D---- C:\Windows\system32\CodeIntegrity
2011-03-11 10:40:33 ----D---- C:\Windows\Microsoft.NET
2011-03-11 10:40:33 ----D---- C:\Windows\AppCompat
2011-03-11 10:40:16 ----D---- C:\Program Files\Warcraft III
2011-03-11 10:40:07 ----D---- C:\Windows\registration
2011-03-11 10:39:37 ----D---- C:\Windows\system32\catroot
2011-03-11 10:39:16 ----RSD---- C:\Windows\assembly
2011-03-11 10:37:19 ----RD---- C:\Program Files
2011-03-11 10:37:19 ----HD---- C:\ProgramData
2011-03-11 10:37:19 ----D---- C:\Program Files\QIP Infium
2011-03-11 09:41:26 ----D---- C:\Windows\debug
2011-03-10 22:30:39 ----SHD---- C:\System Volume Information
2011-03-09 15:15:39 ----D---- C:\Program Files\Common Files
2011-03-07 12:44:17 ----HD---- C:\Config.Msi
2011-03-07 12:44:16 ----D---- C:\Windows\system32\LogFiles
2011-02-28 10:00:24 ----D---- C:\Windows\system32\Tasks
2011-02-22 11:37:38 ----D---- C:\Windows\system32\wdi
2011-02-18 00:13:36 ----D---- C:\Windows\system32\NDF
2011-02-15 14:13:20 ----D---- C:\Windows\Logs
2011-02-15 13:24:19 ----A---- C:\Windows\win.ini
2011-02-15 13:23:04 ----D---- C:\Windows\winsxs
2011-02-15 13:21:20 ----RSD---- C:\Windows\Fonts
2011-02-15 13:19:25 ----D---- C:\Windows\twain_32
2011-02-15 01:27:51 ----D---- C:\Programs
2011-02-14 22:38:50 ----SD---- C:\ProgramData\Microsoft
2011-02-14 22:04:22 ----D---- C:\Program Files\Common Files\microsoft shared
2011-02-14 22:04:05 ----D---- C:\Windows\ShellNew
2011-02-14 22:02:40 ----D---- C:\Program Files\Common Files\System
2011-02-14 22:00:59 ----D---- C:\Windows\system
2011-02-14 21:49:18 ----D---- C:\Program Files\Internet Explorer
2011-02-14 21:07:45 ----D---- C:\Program Files\Guitar Pro 5
2011-02-14 21:01:32 ----D---- C:\Windows\system32\restore
2011-02-14 20:45:27 ----SHD---- C:\$Recycle.Bin
2011-02-14 20:44:46 ----RD---- C:\Users
2011-02-14 20:42:13 ----D---- C:\Windows\rescache
2011-02-14 20:21:28 ----D---- C:\Windows\system32\sysprep
2011-02-14 20:17:27 ----D---- C:\Windows\CSC
2011-02-14 20:14:34 ----SHD---- C:\Boot
2011-02-14 20:14:10 ----D---- C:\Windows\Setup
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584]
R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [2010-04-12 59388]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2009-07-13 1096704]
R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-13 4194816]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 26600]
R3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60x.sys [2009-07-13 229888]
R3 SrvHsfHDA;SrvHsfHDA; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2009-07-13 207360]
R3 SrvHsfV92;SrvHsfV92; C:\Windows\system32\DRIVERS\VSTDPV3.SYS [2009-07-13 980992]
R3 SrvHsfWinac;SrvHsfWinac; C:\Windows\system32\DRIVERS\VSTCNXT3.SYS [2009-07-13 661504]
S1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys []
S1 aswSP;avast! Self Protection; C:\Windows\system32\drivers\aswSP.sys []
S1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys []
S2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys []
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 BthEnum;Bluetooth Enumerator Service; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-07-14 392704]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-07-14 58880]
S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 131072]
S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2009-07-14 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 36864]
S3 GGSAFERDriver;GGSAFER Driver; \??\C:\Program Files\Garena\safedrv.sys []
S3 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 133120]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2009-07-14 15872]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 14336]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 34944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2011-01-05 37664]
R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-02-05 18752]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2010-10-07 345376]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 hpqddsvc;HP CUE DeviceDiscovery Service; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 HPSLPSVC;HP Network Devices Support; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 NAUpdate;@C:\Program Files\Nero\Update\NASvc.exe,-200; C:\Program Files\Nero\Update\NASvc.exe [2010-03-25 490280]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 20992]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 20992]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2011-01-25 820008]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2011-02-18 72704]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-02-05 254040]
S3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-02-05 352920]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 SwitchBoard;SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
-----------------EOF-----------------