Prosím o kontrolu
Napsal: 21 črc 2011 10:00
Ďakujem
Logfile of random's system information tool 1.09 (written by random/random)
Run by adeam at 2011-07-21 10:58:41
Microsoft Windows XP Home Edition Service Pack 3
System drive E: has 11 GB (28%) free of 40 GB
Total RAM: 1526 MB (45% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:58:48, on 21. 7. 2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
E:\WINDOWS\System32\smss.exe
E:\WINDOWS\system32\winlogon.exe
E:\WINDOWS\system32\services.exe
E:\WINDOWS\system32\lsass.exe
E:\WINDOWS\system32\nvsvc32.exe
E:\WINDOWS\system32\svchost.exe
E:\WINDOWS\System32\svchost.exe
E:\WINDOWS\system32\spoolsv.exe
e:\docume~1\adeam\locals~1\temp\drp\dp_sound_sigmatel_wnt5_x86-32_1102\drp\d\s\i10\STacSV.exe
E:\WINDOWS\Explorer.EXE
E:\Program Files\Razer\Reclusa\razerhid.exe
E:\Program Files\ROCCAT\Kone[+] Mouse\Kone[+]Monitor.EXE
E:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
E:\Program Files\Common Files\Java\Java Update\jusched.exe
E:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
E:\Program Files\IDT\WDM\sttray.exe
E:\WINDOWS\system32\RUNDLL32.EXE
E:\WINDOWS\system32\ctfmon.exe
F:\Steam\steam.exe
E:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
E:\Program Files\DAEMON Tools Lite\DTLite.exe
E:\Program Files\ICQ7.5\ICQ.exe
E:\WINDOWS\system32\IProsetMonitor.exe
E:\Program Files\Java\jre6\bin\jqs.exe
E:\Program Files\GIGABYTE\Gamer HUD Lite\HUD.exe
E:\Program Files\Razer\Reclusa\razertra.exe
E:\Program Files\Mozilla Firefox\firefox.exe
E:\Program Files\Mozilla Firefox\plugin-container.exe
E:\Documents and Settings\adeam\My Documents\Preberanie\RSIT.exe
E:\Program Files\trend micro\adeam.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - E:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - E:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - E:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - E:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [IntelAudioStudio] "E:\Program Files\Intel Audio Studio\IntelAudioStudio.exe" BOOT
O4 - HKLM\..\Run: [Reclusa] E:\Program Files\Razer\Reclusa\razerhid.exe
O4 - HKLM\..\Run: [RoccatKone+] "E:\Program Files\ROCCAT\Kone[+] Mouse\Kone[+]Monitor.EXE"
O4 - HKLM\..\Run: [egui] "E:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [SunJavaUpdateSched] "E:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "E:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "E:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE E:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE E:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [BCSSync] "E:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "E:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [SwitchBoard] E:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5.5ServiceManager] "E:\Program Files\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
O4 - HKCU\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Steam] "F:\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "E:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [ICQ] "E:\Program Files\ICQ7.5\ICQ.exe" silent loginmode=4
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: GIGABYTE Gamer HUD Lite.lnk = E:\Program Files\GIGABYTE\Gamer HUD Lite\HUD.exe
O9 - Extra button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - E:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - E:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - E:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - E:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - E:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - E:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - E:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - E:\WINDOWS\system32\browseui.dll
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - E:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - E:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Intel Corporation - E:\WINDOWS\system32\IProsetMonitor.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - E:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - E:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - e:\docume~1\adeam\locals~1\temp\drp\dp_sound_sigmatel_wnt5_x86-32_1102\drp\d\s\i10\STacSV.exe
O23 - Service: Steam Client Service - Valve Corporation - E:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - E:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
--
End of file - 6882 bytes
======Scheduled tasks folder======
E:\WINDOWS\tasks\AdobeAAMUpdater-1.0-ADEAM-adeam.job
E:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-842925246-1303643608-725345543-1004Core.job
E:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-842925246-1303643608-725345543-1004UA.job
=========Mozilla firefox=========
ProfilePath - E:\Documents and Settings\adeam\Application Data\Mozilla\Firefox\Profiles\qe61d7kf.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "keyword.URL" - "http://search.conduit.com/ResultsExt.as ... 2832595&q="
"jqs@sun.com"=E:\Program Files\Java\jre6\lib\deploy\jqs\ff
"{20a82645-c095-46ed-80e3-08825760534b}"=E:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=E:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=E:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=E:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=E:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=E:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=E:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=E:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll
E:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}
E:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
E:\Program Files\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
dunaj-sk.xml
eBay.xml
google.xml
slovnik-sk.xml
wikipedia-sk.xml
zoznam-sk.xml
E:\Documents and Settings\adeam\Application Data\Mozilla\Firefox\Profiles\qe61d7kf.default\extensions\
{942cd1d4-9cc1-4d31-876a-ea8f489f7a59}
{D46E8522-6E86-44b1-A622-58C0668AD78E}
E:\Documents and Settings\adeam\Application Data\Mozilla\Firefox\Profiles\qe61d7kf.default\searchplugins\
conduit.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - E:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-01-30 62376]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - E:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-05-16 1164680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - E:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - E:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-05-27 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - E:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-05-27 79648]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IntelAudioStudio"=E:\Program Files\Intel Audio Studio\IntelAudioStudio.exe [2006-08-03 9134080]
"Reclusa"=E:\Program Files\Razer\Reclusa\razerhid.exe [2007-06-19 167936]
"RoccatKone+"=E:\Program Files\ROCCAT\Kone[+] Mouse\Kone[+]Monitor.EXE [2011-04-04 556072]
"egui"=E:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2011-01-13 2219184]
"SunJavaUpdateSched"=E:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-01-07 253672]
"Adobe Reader Speed Launcher"=E:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe [2011-01-30 35736]
"Adobe ARM"=E:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-03-30 937920]
"SysTrayApp"=E:\Program Files\IDT\WDM\sttray.exe [2009-03-12 483422]
"NvMediaCenter"=E:\WINDOWS\system32\NvMcTray.dll [2011-01-08 111208]
"NvCplDaemon"=E:\WINDOWS\system32\NvCpl.dll [2011-01-08 13880424]
"BCSSync"=E:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"nwiz"=nwiz.exe /install []
"AdobeAAMUpdater-1.0"=E:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2011-03-16 499608]
"SwitchBoard"=E:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5.5ServiceManager"=E:\Program Files\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe [2011-01-12 1523360]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=E:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Steam"=F:\Steam\steam.exe [2011-05-25 1242448]
"DAEMON Tools Lite"=E:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-01-20 1305408]
"AdobeBridge"= []
"ICQ"=E:\Program Files\ICQ7.5\ICQ.exe [2011-06-29 124216]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ESL Wire]
E:\Program Files\EslWire\wire.exe [2011-06-07 2761216]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
E:\Documents and Settings\adeam\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-05-25 136176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
E:\Program Files\ICQ7.5\ICQ.exe [2011-06-29 124216]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
E:\Program Files\Skype\Phone\Skype.exe [2011-06-15 15141768]
E:\Documents and Settings\adeam\Start Menu\Programs\Startup
GIGABYTE Gamer HUD Lite.lnk - E:\Program Files\GIGABYTE\Gamer HUD Lite\HUD.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - E:\WINDOWS\system32\WPDShServiceObj.dll [2009-01-31 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"E:\Program Files\uTorrent\uTorrent.exe"="E:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"E:\Program Files\Pando Networks\Media Booster\PMB.exe"="E:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"F:\Steam\Steam.exe"="F:\Steam\Steam.exe:*:Enabled:Steam"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"E:\Program Files\HLSW\hlsw.exe"="E:\Program Files\HLSW\hlsw.exe:*:Enabled:HLSW Application"
"F:\Steam\steamapps\common\alien swarm\swarm.exe"="F:\Steam\steamapps\common\alien swarm\swarm.exe:*:Enabled:Alien Swarm"
"F:\Steam\steamapps\common\alien swarm\srcds.exe"="F:\Steam\steamapps\common\alien swarm\srcds.exe:*:Enabled:Alien Swarm Dedicated Server"
"E:\Program Files\EslWire\wire.exe"="E:\Program Files\EslWire\wire.exe:*:Enabled:ESL Wire Client"
"C:\totalcmd\TOTALCMD.EXE"="C:\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit international version, file manager replacement for Windows"
"F:\mIRC\mirc.exe"="F:\mIRC\mirc.exe:*:Enabled:mIRC"
"E:\Program Files\ICQ7.5\ICQ.exe"="E:\Program Files\ICQ7.5\ICQ.exe:*:Enabled:ICQ7.5"
"E:\Program Files\Skype\Phone\Skype.exe"="E:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"F:\Steam\steamapps\common\left 4 dead 2\left4dead2.exe"="F:\Steam\steamapps\common\left 4 dead 2\left4dead2.exe:*:Enabled:Left 4 Dead 2"
"F:\Steam\steamapps\common\left 4 dead\left4dead.exe"="F:\Steam\steamapps\common\left 4 dead\left4dead.exe:*:Enabled:Left 4 Dead"
"F:\Steam\steamapps\adeaminator\counter-strike\hl.exe"="F:\Steam\steamapps\adeaminator\counter-strike\hl.exe:*:Enabled:Counter-Strike"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"E:\Program Files\Pando Networks\Media Booster\PMB.exe"="E:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"E:\Program Files\ICQ7.5\ICQ.exe"="E:\Program Files\ICQ7.5\ICQ.exe:*:Enabled:ICQ7.5"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=E:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=E:\WINDOWS\system32\l3codeca.acm
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"VIDC.FPS1"=frapsvid.dll
"VIDC.CFHD"=cfhd.dll
======List of files/folders created in the last 1 month======
2011-07-21 10:58:42 ----D---- E:\Program Files\trend micro
2011-07-21 10:58:41 ----D---- E:\rsit
2011-07-14 06:51:55 ----HDC---- E:\WINDOWS\$NtUninstallKB2507938$
2011-07-14 06:48:26 ----HDC---- E:\WINDOWS\$NtUninstallKB2555917$
2011-07-13 20:52:43 ----D---- E:\Documents and Settings\All Users\Application Data\DFX
2011-07-13 20:52:36 ----D---- E:\Program Files\Common Files\DFX
2011-07-13 20:52:35 ----D---- E:\Program Files\DFX
2011-07-08 15:00:18 ----D---- E:\Documents and Settings\adeam\Application Data\ts3overlay
2011-07-08 14:59:52 ----D---- E:\Documents and Settings\adeam\Application Data\TS3Client
2011-07-08 14:38:06 ----D---- E:\Program Files\TeamSpeak 3 Client
2011-07-06 21:29:14 ----HDC---- E:\WINDOWS\$NtUninstallKB2541763$
2011-06-24 19:26:14 ----AH---- E:\WINDOWS\system32\mlfcache.dat
======List of files/folders modified in the last 1 month======
2011-07-21 10:58:49 ----D---- E:\WINDOWS\Prefetch
2011-07-21 10:58:42 ----RD---- E:\Program Files
2011-07-21 10:58:42 ----D---- E:\WINDOWS\Temp
2011-07-21 10:35:31 ----D---- E:\WINDOWS\system32
2011-07-21 10:35:30 ----A---- E:\WINDOWS\system32\PerfStringBackup.INI
2011-07-21 10:33:59 ----D---- E:\WINDOWS\system32\CatRoot2
2011-07-21 02:16:39 ----A---- E:\WINDOWS\SchedLgU.Txt
2011-07-21 02:16:10 ----D---- E:\Documents and Settings\adeam\Application Data\uTorrent
2011-07-21 00:44:00 ----D---- E:\Documents and Settings\All Users\Application Data\PMB Files
2011-07-20 20:08:01 ----D---- E:\Documents and Settings\adeam\Application Data\HLSW
2011-07-20 18:38:14 ----D---- E:\Documents and Settings\adeam\Application Data\ICQ
2011-07-20 18:33:16 ----A---- E:\WINDOWS\wincmd.ini
2011-07-20 18:25:37 ----A---- E:\WINDOWS\wcx_ftp.ini
2011-07-19 22:28:26 ----D---- E:\Documents and Settings\adeam\Application Data\SendSpace Wizard
2011-07-19 18:58:50 ----D---- E:\Documents and Settings\adeam\Application Data\Mumble
2011-07-14 23:27:38 ----D---- E:\Documents and Settings\adeam\Application Data\Skype
2011-07-14 17:06:54 ----D---- E:\Program Files\Common Files\Steam
2011-07-14 10:06:12 ----D---- E:\WINDOWS
2011-07-14 06:52:02 ----HD---- E:\WINDOWS\inf
2011-07-14 06:51:58 ----RSHDC---- E:\WINDOWS\system32\dllcache
2011-07-14 06:48:39 ----A---- E:\WINDOWS\system32\MRT.exe
2011-07-14 06:48:34 ----A---- E:\WINDOWS\imsins.BAK
2011-07-13 20:52:36 ----D---- E:\Program Files\Common Files
2011-07-13 17:19:57 ----HD---- E:\WINDOWS\$hf_mig$
2011-07-09 17:32:20 ----D---- E:\Program Files\Mozilla Firefox
2011-07-07 10:08:26 ----RSD---- E:\WINDOWS\assembly
2011-07-07 10:08:26 ----D---- E:\WINDOWS\Microsoft.NET
2011-07-07 09:48:33 ----SHD---- E:\WINDOWS\Installer
2011-07-07 09:48:10 ----D---- E:\WINDOWS\WinSxS
2011-07-06 21:31:54 ----D---- E:\Program Files\ICQ7.5
2011-06-24 16:42:33 ----SD---- E:\Documents and Settings\All Users\Application Data\Microsoft
2011-06-22 19:57:26 ----A---- E:\WINDOWS\win.ini
2011-06-22 19:57:26 ----A---- E:\WINDOWS\system.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 mv61xx;mv61xx; E:\WINDOWS\system32\DRIVERS\mv61xx.sys [2010-10-26 159024]
R0 ohci1394;Texas Instruments OHCI Compliant IEEE 1394 Host Controller; E:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; E:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2011-05-31 218688]
R1 ehdrv;ehdrv; E:\WINDOWS\system32\DRIVERS\ehdrv.sys [2010-12-22 115008]
R1 epfwtdir;epfwtdir; E:\WINDOWS\system32\DRIVERS\epfwtdir.sys [2010-12-21 94872]
R1 intelppm;Intel Processor Driver; E:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 36352]
R1 kbdhid;Keyboard HID Driver; E:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R2 eamon;eamon; E:\WINDOWS\system32\DRIVERS\eamon.sys [2010-12-22 141264]
R2 ESLWireAC;ESLWireAC; \??\E:\WINDOWS\system32\drivers\ESLWireACD.sys []
R3 Arp1394;1394 ARP Client Protocol; E:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; E:\WINDOWS\system32\DRIVERS\e1e5132.sys [2010-03-26 243928]
R3 ESLvnic1;ESLvnic Virtual Network 32 Bit; E:\WINDOWS\system32\DRIVERS\ESLvnic.sys [2011-04-18 24504]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; E:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 HECI;Intel(R) Management Engine Interface; E:\WINDOWS\system32\DRIVERS\HECI.sys [2007-07-09 44416]
R3 hidusb;HID Class Driver; E:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 mouhid;Mouse HID Driver; E:\WINDOWS\system32\DRIVERS\mouhid.sys [2006-02-28 12160]
R3 NIC1394;1394 Net Driver; E:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 nv;nv; E:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2011-01-08 9888672]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; E:\WINDOWS\system32\drivers\nvhda32.sys [2010-11-12 100456]
R3 RecFltr;Reclusa Keyboard; E:\WINDOWS\System32\Drivers\RecFltr.sys [2007-01-18 41984]
R3 STHDA;IDT High Definition Audio CODEC; E:\WINDOWS\system32\drivers\sthda.sys [2009-03-12 1550613]
R3 usbccgp;Microsoft USB Generic Parent Driver; E:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; E:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 BCM43XX;ASUS 802.11 - ovládač sieťového adaptéru; E:\WINDOWS\system32\DRIVERS\bcmwl5.sys [2006-10-13 604928]
S3 nm;Network Monitor Driver; E:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-14 40320]
S3 sfng32;Sonic Focus Plugin for Sigmatel HDA; E:\WINDOWS\system32\drivers\sfng32.sys [2005-12-02 41728]
S3 usbprint;Microsoft USB PRINTER Class; E:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 USBSTOR;USB Mass Storage Driver; E:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; E:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-29 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; E:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-29 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ekrn;ESET Service; E:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2011-01-13 810144]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; E:\WINDOWS\system32\IProsetMonitor.exe [2011-02-28 109728]
R2 JavaQuickStarterService;Java Quick Starter; E:\Program Files\Java\jre6\bin\jqs.exe [2011-05-27 153376]
R2 nvsvc;NVIDIA Display Driver Service; E:\WINDOWS\system32\nvsvc32.exe [2011-01-08 156776]
R2 STacSV;Audio Service; e:\docume~1\adeam\locals~1\temp\drp\dp_sound_sigmatel_wnt5_x86-32_1102\drp\d\s\i10\STacSV.exe [2009-03-12 254036]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 aspnet_state;ASP.NET State Service; E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; E:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;ESET HTTP Server; E:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2011-01-13 33584]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; E:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-30 46104]
S3 idsvc;Windows CardSpace; E:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-30 881664]
S3 MSSQL$SONY_MEDIAMGR;MSSQL$SONY_MEDIAMGR; F:\Sony Vegas 7\shared-components\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [2002-12-18 7520337]
S3 MSSQLServerADHelper;MSSQLServerADHelper; E:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe [2002-12-18 66112]
S3 ose;Office Source Engine; E:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-10 149352]
S3 osppsvc;Office Software Protection Platform; E:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-10 4640000]
S3 SQLAgent$SONY_MEDIAMGR;SQLAgent$SONY_MEDIAMGR; F:\Sony Vegas 7\shared-components\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE [2002-12-18 311872]
S3 Steam Client Service;Steam Client Service; E:\Program Files\Common Files\Steam\SteamService.exe [2011-07-13 411432]
S3 SwitchBoard;SwitchBoard; E:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; E:\Program Files\Windows Media Player\WMPNetwk.exe [2009-01-31 913408]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; E:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by adeam at 2011-07-21 10:58:41
Microsoft Windows XP Home Edition Service Pack 3
System drive E: has 11 GB (28%) free of 40 GB
Total RAM: 1526 MB (45% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:58:48, on 21. 7. 2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal
Running processes:
E:\WINDOWS\System32\smss.exe
E:\WINDOWS\system32\winlogon.exe
E:\WINDOWS\system32\services.exe
E:\WINDOWS\system32\lsass.exe
E:\WINDOWS\system32\nvsvc32.exe
E:\WINDOWS\system32\svchost.exe
E:\WINDOWS\System32\svchost.exe
E:\WINDOWS\system32\spoolsv.exe
e:\docume~1\adeam\locals~1\temp\drp\dp_sound_sigmatel_wnt5_x86-32_1102\drp\d\s\i10\STacSV.exe
E:\WINDOWS\Explorer.EXE
E:\Program Files\Razer\Reclusa\razerhid.exe
E:\Program Files\ROCCAT\Kone[+] Mouse\Kone[+]Monitor.EXE
E:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
E:\Program Files\Common Files\Java\Java Update\jusched.exe
E:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
E:\Program Files\IDT\WDM\sttray.exe
E:\WINDOWS\system32\RUNDLL32.EXE
E:\WINDOWS\system32\ctfmon.exe
F:\Steam\steam.exe
E:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
E:\Program Files\DAEMON Tools Lite\DTLite.exe
E:\Program Files\ICQ7.5\ICQ.exe
E:\WINDOWS\system32\IProsetMonitor.exe
E:\Program Files\Java\jre6\bin\jqs.exe
E:\Program Files\GIGABYTE\Gamer HUD Lite\HUD.exe
E:\Program Files\Razer\Reclusa\razertra.exe
E:\Program Files\Mozilla Firefox\firefox.exe
E:\Program Files\Mozilla Firefox\plugin-container.exe
E:\Documents and Settings\adeam\My Documents\Preberanie\RSIT.exe
E:\Program Files\trend micro\adeam.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - E:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - E:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - E:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - E:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [IntelAudioStudio] "E:\Program Files\Intel Audio Studio\IntelAudioStudio.exe" BOOT
O4 - HKLM\..\Run: [Reclusa] E:\Program Files\Razer\Reclusa\razerhid.exe
O4 - HKLM\..\Run: [RoccatKone+] "E:\Program Files\ROCCAT\Kone[+] Mouse\Kone[+]Monitor.EXE"
O4 - HKLM\..\Run: [egui] "E:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [SunJavaUpdateSched] "E:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "E:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "E:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE E:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE E:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [BCSSync] "E:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] "E:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
O4 - HKLM\..\Run: [SwitchBoard] E:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5.5ServiceManager] "E:\Program Files\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
O4 - HKCU\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Steam] "F:\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [DAEMON Tools Lite] "E:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [ICQ] "E:\Program Files\ICQ7.5\ICQ.exe" silent loginmode=4
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: GIGABYTE Gamer HUD Lite.lnk = E:\Program Files\GIGABYTE\Gamer HUD Lite\HUD.exe
O9 - Extra button: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - E:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.5 - {7578ADEA-D65F-4C89-A249-B1C88B6FFC20} - E:\Program Files\ICQ7.5\ICQ.exe
O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - E:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - E:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - E:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - E:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - E:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - E:\WINDOWS\system32\browseui.dll
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - E:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - E:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Intel Corporation - E:\WINDOWS\system32\IProsetMonitor.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - E:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - E:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - e:\docume~1\adeam\locals~1\temp\drp\dp_sound_sigmatel_wnt5_x86-32_1102\drp\d\s\i10\STacSV.exe
O23 - Service: Steam Client Service - Valve Corporation - E:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - E:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
--
End of file - 6882 bytes
======Scheduled tasks folder======
E:\WINDOWS\tasks\AdobeAAMUpdater-1.0-ADEAM-adeam.job
E:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-842925246-1303643608-725345543-1004Core.job
E:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-842925246-1303643608-725345543-1004UA.job
=========Mozilla firefox=========
ProfilePath - E:\Documents and Settings\adeam\Application Data\Mozilla\Firefox\Profiles\qe61d7kf.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "keyword.URL" - "http://search.conduit.com/ResultsExt.as ... 2832595&q="
"jqs@sun.com"=E:\Program Files\Java\jre6\lib\deploy\jqs\ff
"{20a82645-c095-46ed-80e3-08825760534b}"=E:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=E:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=E:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=E:\Program Files\Microsoft Silverlight\4.0.60310.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=E:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=E:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=E:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=E:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll
E:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}
E:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
E:\Program Files\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
dunaj-sk.xml
eBay.xml
google.xml
slovnik-sk.xml
wikipedia-sk.xml
zoznam-sk.xml
E:\Documents and Settings\adeam\Application Data\Mozilla\Firefox\Profiles\qe61d7kf.default\extensions\
{942cd1d4-9cc1-4d31-876a-ea8f489f7a59}
{D46E8522-6E86-44b1-A622-58C0668AD78E}
E:\Documents and Settings\adeam\Application Data\Mozilla\Firefox\Profiles\qe61d7kf.default\searchplugins\
conduit.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - E:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-01-30 62376]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - E:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2011-05-16 1164680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - E:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-02-28 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - E:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-05-27 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - E:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-05-27 79648]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IntelAudioStudio"=E:\Program Files\Intel Audio Studio\IntelAudioStudio.exe [2006-08-03 9134080]
"Reclusa"=E:\Program Files\Razer\Reclusa\razerhid.exe [2007-06-19 167936]
"RoccatKone+"=E:\Program Files\ROCCAT\Kone[+] Mouse\Kone[+]Monitor.EXE [2011-04-04 556072]
"egui"=E:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2011-01-13 2219184]
"SunJavaUpdateSched"=E:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-01-07 253672]
"Adobe Reader Speed Launcher"=E:\Program Files\Adobe\Reader 10.0\Reader\Reader_sl.exe [2011-01-30 35736]
"Adobe ARM"=E:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-03-30 937920]
"SysTrayApp"=E:\Program Files\IDT\WDM\sttray.exe [2009-03-12 483422]
"NvMediaCenter"=E:\WINDOWS\system32\NvMcTray.dll [2011-01-08 111208]
"NvCplDaemon"=E:\WINDOWS\system32\NvCpl.dll [2011-01-08 13880424]
"BCSSync"=E:\Program Files\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"nwiz"=nwiz.exe /install []
"AdobeAAMUpdater-1.0"=E:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2011-03-16 499608]
"SwitchBoard"=E:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5.5ServiceManager"=E:\Program Files\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe [2011-01-12 1523360]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=E:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"Steam"=F:\Steam\steam.exe [2011-05-25 1242448]
"DAEMON Tools Lite"=E:\Program Files\DAEMON Tools Lite\DTLite.exe [2011-01-20 1305408]
"AdobeBridge"= []
"ICQ"=E:\Program Files\ICQ7.5\ICQ.exe [2011-06-29 124216]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ESL Wire]
E:\Program Files\EslWire\wire.exe [2011-06-07 2761216]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
E:\Documents and Settings\adeam\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-05-25 136176]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ICQ]
E:\Program Files\ICQ7.5\ICQ.exe [2011-06-29 124216]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
E:\Program Files\Skype\Phone\Skype.exe [2011-06-15 15141768]
E:\Documents and Settings\adeam\Start Menu\Programs\Startup
GIGABYTE Gamer HUD Lite.lnk - E:\Program Files\GIGABYTE\Gamer HUD Lite\HUD.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - E:\WINDOWS\system32\WPDShServiceObj.dll [2009-01-31 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"E:\Program Files\uTorrent\uTorrent.exe"="E:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"E:\Program Files\Pando Networks\Media Booster\PMB.exe"="E:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"F:\Steam\Steam.exe"="F:\Steam\Steam.exe:*:Enabled:Steam"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"E:\Program Files\HLSW\hlsw.exe"="E:\Program Files\HLSW\hlsw.exe:*:Enabled:HLSW Application"
"F:\Steam\steamapps\common\alien swarm\swarm.exe"="F:\Steam\steamapps\common\alien swarm\swarm.exe:*:Enabled:Alien Swarm"
"F:\Steam\steamapps\common\alien swarm\srcds.exe"="F:\Steam\steamapps\common\alien swarm\srcds.exe:*:Enabled:Alien Swarm Dedicated Server"
"E:\Program Files\EslWire\wire.exe"="E:\Program Files\EslWire\wire.exe:*:Enabled:ESL Wire Client"
"C:\totalcmd\TOTALCMD.EXE"="C:\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit international version, file manager replacement for Windows"
"F:\mIRC\mirc.exe"="F:\mIRC\mirc.exe:*:Enabled:mIRC"
"E:\Program Files\ICQ7.5\ICQ.exe"="E:\Program Files\ICQ7.5\ICQ.exe:*:Enabled:ICQ7.5"
"E:\Program Files\Skype\Phone\Skype.exe"="E:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"F:\Steam\steamapps\common\left 4 dead 2\left4dead2.exe"="F:\Steam\steamapps\common\left 4 dead 2\left4dead2.exe:*:Enabled:Left 4 Dead 2"
"F:\Steam\steamapps\common\left 4 dead\left4dead.exe"="F:\Steam\steamapps\common\left 4 dead\left4dead.exe:*:Enabled:Left 4 Dead"
"F:\Steam\steamapps\adeaminator\counter-strike\hl.exe"="F:\Steam\steamapps\adeaminator\counter-strike\hl.exe:*:Enabled:Counter-Strike"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"E:\Program Files\Pando Networks\Media Booster\PMB.exe"="E:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"E:\Program Files\ICQ7.5\ICQ.exe"="E:\Program Files\ICQ7.5\ICQ.exe:*:Enabled:ICQ7.5"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=E:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=E:\WINDOWS\system32\l3codeca.acm
"VIDC.XVID"=xvidvfw.dll
"VIDC.YV12"=yv12vfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.lameacm"=lameACM.acm
"VIDC.FFDS"=ff_vfw.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"VIDC.FPS1"=frapsvid.dll
"VIDC.CFHD"=cfhd.dll
======List of files/folders created in the last 1 month======
2011-07-21 10:58:42 ----D---- E:\Program Files\trend micro
2011-07-21 10:58:41 ----D---- E:\rsit
2011-07-14 06:51:55 ----HDC---- E:\WINDOWS\$NtUninstallKB2507938$
2011-07-14 06:48:26 ----HDC---- E:\WINDOWS\$NtUninstallKB2555917$
2011-07-13 20:52:43 ----D---- E:\Documents and Settings\All Users\Application Data\DFX
2011-07-13 20:52:36 ----D---- E:\Program Files\Common Files\DFX
2011-07-13 20:52:35 ----D---- E:\Program Files\DFX
2011-07-08 15:00:18 ----D---- E:\Documents and Settings\adeam\Application Data\ts3overlay
2011-07-08 14:59:52 ----D---- E:\Documents and Settings\adeam\Application Data\TS3Client
2011-07-08 14:38:06 ----D---- E:\Program Files\TeamSpeak 3 Client
2011-07-06 21:29:14 ----HDC---- E:\WINDOWS\$NtUninstallKB2541763$
2011-06-24 19:26:14 ----AH---- E:\WINDOWS\system32\mlfcache.dat
======List of files/folders modified in the last 1 month======
2011-07-21 10:58:49 ----D---- E:\WINDOWS\Prefetch
2011-07-21 10:58:42 ----RD---- E:\Program Files
2011-07-21 10:58:42 ----D---- E:\WINDOWS\Temp
2011-07-21 10:35:31 ----D---- E:\WINDOWS\system32
2011-07-21 10:35:30 ----A---- E:\WINDOWS\system32\PerfStringBackup.INI
2011-07-21 10:33:59 ----D---- E:\WINDOWS\system32\CatRoot2
2011-07-21 02:16:39 ----A---- E:\WINDOWS\SchedLgU.Txt
2011-07-21 02:16:10 ----D---- E:\Documents and Settings\adeam\Application Data\uTorrent
2011-07-21 00:44:00 ----D---- E:\Documents and Settings\All Users\Application Data\PMB Files
2011-07-20 20:08:01 ----D---- E:\Documents and Settings\adeam\Application Data\HLSW
2011-07-20 18:38:14 ----D---- E:\Documents and Settings\adeam\Application Data\ICQ
2011-07-20 18:33:16 ----A---- E:\WINDOWS\wincmd.ini
2011-07-20 18:25:37 ----A---- E:\WINDOWS\wcx_ftp.ini
2011-07-19 22:28:26 ----D---- E:\Documents and Settings\adeam\Application Data\SendSpace Wizard
2011-07-19 18:58:50 ----D---- E:\Documents and Settings\adeam\Application Data\Mumble
2011-07-14 23:27:38 ----D---- E:\Documents and Settings\adeam\Application Data\Skype
2011-07-14 17:06:54 ----D---- E:\Program Files\Common Files\Steam
2011-07-14 10:06:12 ----D---- E:\WINDOWS
2011-07-14 06:52:02 ----HD---- E:\WINDOWS\inf
2011-07-14 06:51:58 ----RSHDC---- E:\WINDOWS\system32\dllcache
2011-07-14 06:48:39 ----A---- E:\WINDOWS\system32\MRT.exe
2011-07-14 06:48:34 ----A---- E:\WINDOWS\imsins.BAK
2011-07-13 20:52:36 ----D---- E:\Program Files\Common Files
2011-07-13 17:19:57 ----HD---- E:\WINDOWS\$hf_mig$
2011-07-09 17:32:20 ----D---- E:\Program Files\Mozilla Firefox
2011-07-07 10:08:26 ----RSD---- E:\WINDOWS\assembly
2011-07-07 10:08:26 ----D---- E:\WINDOWS\Microsoft.NET
2011-07-07 09:48:33 ----SHD---- E:\WINDOWS\Installer
2011-07-07 09:48:10 ----D---- E:\WINDOWS\WinSxS
2011-07-06 21:31:54 ----D---- E:\Program Files\ICQ7.5
2011-06-24 16:42:33 ----SD---- E:\Documents and Settings\All Users\Application Data\Microsoft
2011-06-22 19:57:26 ----A---- E:\WINDOWS\win.ini
2011-06-22 19:57:26 ----A---- E:\WINDOWS\system.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 mv61xx;mv61xx; E:\WINDOWS\system32\DRIVERS\mv61xx.sys [2010-10-26 159024]
R0 ohci1394;Texas Instruments OHCI Compliant IEEE 1394 Host Controller; E:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; E:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys [2011-05-31 218688]
R1 ehdrv;ehdrv; E:\WINDOWS\system32\DRIVERS\ehdrv.sys [2010-12-22 115008]
R1 epfwtdir;epfwtdir; E:\WINDOWS\system32\DRIVERS\epfwtdir.sys [2010-12-21 94872]
R1 intelppm;Intel Processor Driver; E:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 36352]
R1 kbdhid;Keyboard HID Driver; E:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R2 eamon;eamon; E:\WINDOWS\system32\DRIVERS\eamon.sys [2010-12-22 141264]
R2 ESLWireAC;ESLWireAC; \??\E:\WINDOWS\system32\drivers\ESLWireACD.sys []
R3 Arp1394;1394 ARP Client Protocol; E:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; E:\WINDOWS\system32\DRIVERS\e1e5132.sys [2010-03-26 243928]
R3 ESLvnic1;ESLvnic Virtual Network 32 Bit; E:\WINDOWS\system32\DRIVERS\ESLvnic.sys [2011-04-18 24504]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; E:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 HECI;Intel(R) Management Engine Interface; E:\WINDOWS\system32\DRIVERS\HECI.sys [2007-07-09 44416]
R3 hidusb;HID Class Driver; E:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 mouhid;Mouse HID Driver; E:\WINDOWS\system32\DRIVERS\mouhid.sys [2006-02-28 12160]
R3 NIC1394;1394 Net Driver; E:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
R3 nv;nv; E:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2011-01-08 9888672]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; E:\WINDOWS\system32\drivers\nvhda32.sys [2010-11-12 100456]
R3 RecFltr;Reclusa Keyboard; E:\WINDOWS\System32\Drivers\RecFltr.sys [2007-01-18 41984]
R3 STHDA;IDT High Definition Audio CODEC; E:\WINDOWS\system32\drivers\sthda.sys [2009-03-12 1550613]
R3 usbccgp;Microsoft USB Generic Parent Driver; E:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; E:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608]
S3 BCM43XX;ASUS 802.11 - ovládač sieťového adaptéru; E:\WINDOWS\system32\DRIVERS\bcmwl5.sys [2006-10-13 604928]
S3 nm;Network Monitor Driver; E:\WINDOWS\system32\DRIVERS\NMnt.sys [2008-04-14 40320]
S3 sfng32;Sonic Focus Plugin for Sigmatel HDA; E:\WINDOWS\system32\drivers\sfng32.sys [2005-12-02 41728]
S3 usbprint;Microsoft USB PRINTER Class; E:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 USBSTOR;USB Mass Storage Driver; E:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; E:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-29 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; E:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-29 82944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 ekrn;ESET Service; E:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2011-01-13 810144]
R2 Intel(R) PROSet Monitoring Service;Intel(R) PROSet Monitoring Service; E:\WINDOWS\system32\IProsetMonitor.exe [2011-02-28 109728]
R2 JavaQuickStarterService;Java Quick Starter; E:\Program Files\Java\jre6\bin\jqs.exe [2011-05-27 153376]
R2 nvsvc;NVIDIA Display Driver Service; E:\WINDOWS\system32\nvsvc32.exe [2011-01-08 156776]
R2 STacSV;Audio Service; e:\docume~1\adeam\locals~1\temp\drp\dp_sound_sigmatel_wnt5_x86-32_1102\drp\d\s\i10\STacSV.exe [2009-03-12 254036]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 aspnet_state;ASP.NET State Service; E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; E:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;ESET HTTP Server; E:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2011-01-13 33584]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; E:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-30 46104]
S3 idsvc;Windows CardSpace; E:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-30 881664]
S3 MSSQL$SONY_MEDIAMGR;MSSQL$SONY_MEDIAMGR; F:\Sony Vegas 7\shared-components\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe [2002-12-18 7520337]
S3 MSSQLServerADHelper;MSSQLServerADHelper; E:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe [2002-12-18 66112]
S3 ose;Office Source Engine; E:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-10 149352]
S3 osppsvc;Office Software Protection Platform; E:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-10 4640000]
S3 SQLAgent$SONY_MEDIAMGR;SQLAgent$SONY_MEDIAMGR; F:\Sony Vegas 7\shared-components\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE [2002-12-18 311872]
S3 Steam Client Service;Steam Client Service; E:\Program Files\Common Files\Steam\SteamService.exe [2011-07-13 411432]
S3 SwitchBoard;SwitchBoard; E:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; E:\Program Files\Windows Media Player\WMPNetwk.exe [2009-01-31 913408]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S3 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; E:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; E:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------