prosba o kontrolu logu z RSIT
Napsal: 27 črc 2011 13:18
Zdravim, prosim o kontrolu logu z rsit. PC je nestabilne, na net sa takmer nepripoji, po instalacii antiviru ho nieco znefunkcni, blokuje ccleaner a podobne utility. PC nabieha pomaly a vypina sa tiez len s tazkostami. Vdaka!
Logfile of random's system information tool 1.09 (written by random/random)
Run by hp at 2011-07-27 14:13:12
Systém Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 5 GB (27%) free of 20 GB
Total RAM: 1022 MB (32% free)
HijackThis download failed
======Scheduled tasks folder======
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-790525478-602162358-1801674531-1004Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-790525478-602162358-1801674531-1004UA.job
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{672FC5B8-05CB-4071-9E1F-E5F2F7917A6D}.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\hp\Application Data\Mozilla\Firefox\Profiles\3v50y3u9.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://search.conduit.com/?ctid=CT22337 ... hSource=13"
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:6.0.11, {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21, dvscontextmenuy@dvdvideosoft.com:1.0, engine@conduit.com:3.3.3.2, fdm_ffext@freedownloadmanager.org:1.3.4, {1392b8d2-5c05-419f-a8f6-b9f15a596612}:3.3.3.2, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, jqs@sun.com:1.0, 1vffxtbr@SmileyCentral_1v.com:1.2, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.17"
prefs.js - "keyword.URL" - "http://www.google.com/search?ie=UTF-8&o ... &gfns=1&q="
"Seekmo@Seekmo.com"=C:\Program Files\Seekmo\bin\10.3.85.0\firefox\extensions
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"1vffxtbr@SmileyCentral_1v.com"=C:\Program Files\SmileyCentral_1v\bar\2.bin
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@SmileyCentral_1v.com/Plugin]
"Description"=SmileyCentral Plugin
"Path"=C:\Program Files\SmileyCentral_1v\bar\2.bin\NP1vStub.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=D:\Programy\Reader\AIR\nppdf32.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
C:\Program Files\Mozilla Firefox\components\
AskHPRFF.js
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
npclntax.xpt
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsIQTScriptablePlugin.xpt
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js
C:\Program Files\Mozilla Firefox\plugins\
npclntax_SeekmoSA.dll
npdeployJava1.dll
npnul32.dll
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
QuickTimePlugin.class
C:\Program Files\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
dunaj-sk.xml
eBay.xml
google.xml
slovnik-sk.xml
wikipedia-sk.xml
zoznam-sk.xml
C:\Documents and Settings\hp\Application Data\Mozilla\Firefox\Profiles\3v50y3u9.default\extensions\
engine@conduit.com
toolbar@ask.com
{1392b8d2-5c05-419f-a8f6-b9f15a596612}
{20a82645-c095-46ed-80e3-08825760534b}
C:\Documents and Settings\hp\Application Data\Mozilla\Firefox\Profiles\3v50y3u9.default\searchplugins\
askcom.xml
conduit.xml
SmileyCentral_1v.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1392b8d2-5c05-419f-a8f6-b9f15a596612}]
Freecorder Toolbar - C:\Program Files\Freecorder\prxtbFre0.dll [2011-01-17 175912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{258C9770-1713-4021-8D7E-1F184A2BD754}]
ShoppingReport2 - C:\Program Files\ShoppingReport2\Bin\2.7.27\ShoppingReport.dll [2010-11-08 1142576]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{25CEE8EC-5730-41bc-8B58-22DDC8AB8C20}]
Winamp Toolbar Loader - C:\Program Files\Winamp Toolbar\winamptb.dll [2009-02-19 1262888]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - C:\Program Files\ConduitEngine\prxConduitEngine.dll [2011-01-17 175912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B}]
Seekmo - C:\Program Files\Seekmo\bin\10.3.85.0\HostIE.dll [2009-05-27 554256]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-07-03 305328]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08 804136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll [2011-06-07 1007160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch - C:\Program Files\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
FDMIECookiesBHO Class - C:\Program Files\Free Download Manager\iefdm2.dll [2008-12-30 98304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2011-05-17 1490312]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-06-14 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-06-14 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - Winamp Toolbar - C:\Program Files\Winamp Toolbar\winamptb.dll [2009-02-19 1262888]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2008-12-09 958200]
{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} - Seekmo - C:\Program Files\Seekmo\bin\10.3.85.0\HostIE.dll [2009-05-27 554256]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2011-05-17 1490312]
{1392b8d2-5c05-419f-a8f6-b9f15a596612} - Freecorder Toolbar - C:\Program Files\Freecorder\prxtbFre0.dll [2011-01-17 175912]
{30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - C:\Program Files\ConduitEngine\prxConduitEngine.dll [2011-01-17 175912]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-07-03 305328]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2006-11-16 577536]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2006-08-11 7630848]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2006-08-11 86016]
"PAC7302_Monitor"=C:\WINDOWS\PixArt\PAC7302\Monitor.exe [2006-11-03 319488]
"AVG8_TRAY"=C:\PROGRA~1\AVG\AVG8\avgtray.exe []
"WinampAgent"=C:\Program Files\Winamp\winampa.exe [2009-03-09 37888]
"SeekmoOE"=C:\Program Files\Seekmo\bin\10.3.85.0\OEAddOn.exe [2009-05-27 91408]
"SeekmoSA"=C:\Program Files\Seekmo\bin\10.3.85.0\SeekmoSA.exe [2009-05-27 782096]
"MP10_EnsureFileVer"=C:\WINDOWS\inf\unregmp2.exe [2008-04-14 208896]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2008-03-28 413696]
"OM2_Monitor"=C:\Program Files\OLYMPUS\OLYMPUS Master 2\FirstStart.exe [2009-04-17 54576]
"Adobe Reader Speed Launcher"=D:\Programy\Reader\Reader_sl.exe [2011-06-08 37296]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-03-30 937920]
"Freecorder FLV Service"=C:\Program Files\Freecorder\FLVSrvc.exe [2010-06-26 167936]
"BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []
"TaskTray"= []
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-04-08 254696]
""= []
"ApnUpdater"=C:\Program Files\Ask.com\Updater\Updater.exe [2011-05-17 395144]
"wxpdrv"=C:\WINDOWS\services32.exe [2011-07-21 1178112]
"tray_ico"= []
"tray_ico0"=C:\WINDOWS\update.tray-12-0\svchost.exe [2011-07-21 1178112]
"tray_ico1"= []
"tray_ico2"= []
"tray_ico3"= []
"tray_ico4"= []
"2628647.exe"=C:\DOCUME~1\hp\LOCALS~1\Temp\2628647.exe [2011-07-21 232960]
"sysdriver32.exe"=C:\WINDOWS\sysdriver32.exe [2011-07-26 261632]
"sysdriver32_.exe"=C:\WINDOWS\sysdriver32_.exe [2011-07-26 256000]
"9329877.exe"=C:\WINDOWS\TEMP\9329877.exe [2011-07-21 232960]
"systemup"=C:\WINDOWS\systemup.exe [2011-07-21 118784]
"l1rezerv.exe"=C:\WINDOWS\l1rezerv.exe [2011-07-26 235520]
"37434676-loader2.exe"=C:\WINDOWS\TEMP\37434676-loader2.exe [2011-07-21 245760]
"5981184.exe"=C:\WINDOWS\TEMP\5981184.exe [2011-07-26 256000]
"4046655.exe"=C:\WINDOWS\TEMP\4046655.exe [2011-07-26 495616]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"ares"=C:\Program Files\Ares\Ares.exe [2009-02-03 1004544]
"Software Informer"=C:\Program Files\Software Informer\softinfo.exe [2009-09-17 1933381]
"LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-06-09 2363392]
"Google Update"=C:\Documents and Settings\hp\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-06-07 136176]
"fsm"= []
"OM2_Monitor"=C:\Program Files\OLYMPUS\OLYMPUS Master 2\MMonitor.exe [2009-04-17 95536]
"NBCore"=C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBCore.exe [2008-09-24 1561896]
"MediaGet2"=C:\Documents and Settings\hp\Local Settings\Application Data\MediaGet2\mediaget.exe [2011-07-18 8040680]
"TomTomHOME.exe"=C:\Documents and Settings\hp\Desktop\tomtom GPS\TomTom HOME 2\TomTomHOMERunner.exe [2011-03-09 247728]
C:\Documents and Settings\hp\Start Menu\Programs\Startup
LimeWire On Startup.lnk - C:\Program Files\LimeWire\LimeWire.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgrsstarter]
C:\WINDOWS\system32\avgrsstx.dll [2009-08-17 11952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\wxpdrivers]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
"EnableSecureUIAPaths"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\AVG\AVG8\avgemc.exe"="C:\Program Files\AVG\AVG8\avgemc.exe:*:Enabled:avgemc.exe"
"C:\Program Files\AVG\AVG8\avgupd.exe"="C:\Program Files\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe"
"C:\Program Files\AVG\AVG8\avgnsx.exe"="C:\Program Files\AVG\AVG8\avgnsx.exe:*:Enabled:avgnsx.exe"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox"
"C:\Program Files\LimeWire\LimeWire.exe"="C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire"
"C:\Program Files\Free Download Manager\fdmwi.exe"="C:\Program Files\Free Download Manager\fdmwi.exe:*:Enabled:fdmwi"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\WINDOWS\system32\mmc.exe"="C:\WINDOWS\system32\mmc.exe:*:Disabled:Microsoft Management Console"
"C:\Program Files\Google\Google Earth\client\googleearth.exe"="C:\Program Files\Google\Google Earth\client\googleearth.exe:*:Enabled:Google Earth"
"C:\Program Files\Sony Ericsson\Sony Ericsson Media Manager\MediaManager.exe"="C:\Program Files\Sony Ericsson\Sony Ericsson Media Manager\MediaManager.exe:*:Enabled:Sony Ericsson Media Manager 1.2"
"C:\Documents and Settings\hp\Local Settings\Application Data\MediaGet2\mediaget.exe"="C:\Documents and Settings\hp\Local Settings\Application Data\MediaGet2\mediaget.exe:*:Enabled:MediaGet torrent client"
"C:\Program Files\Ares\Ares.exe"="C:\Program Files\Ares\Ares.exe:*:Enabled:Ares p2p for windows"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Documents and Settings\hp\My Documents\Downloads\Flash-Player.exe"="C:\Documents and Settings\hp\My Documents\Downloads\Flash-Player.exe:*:Enabled:C:\Documents and Settings\hp\My Documents\Downloads\Flash-Player.exe"
"C:\WINDOWS\update.1\svchost.exe"="C:\WINDOWS\update.1\svchost.exe:*:Enabled:C:\WINDOWS\update.1\svchost.exe"
"C:\WINDOWS\services32.exe"="C:\WINDOWS\services32.exe:*:Enabled:C:\WINDOWS\services32.exe"
"C:\WINDOWS\update.tray-12-0\svchost.exe"="C:\WINDOWS\update.tray-12-0\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-12-0\svchost.exe"
"C:\WINDOWS\update.2\svchost.exe"="C:\WINDOWS\update.2\svchost.exe:*:Enabled:C:\WINDOWS\update.2\svchost.exe"
"C:\WINDOWS\update.2\4041.exe"="C:\WINDOWS\update.2\4041.exe:*:Enabled:C:\WINDOWS\update.2\4041.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv
======List of files/folders created in the last 1 month======
2011-07-27 14:13:12 ----D---- C:\rsit
2011-07-27 14:13:12 ----D---- C:\Program Files\trend micro
2011-07-27 13:26:55 ----D---- C:\Program Files\AVAST Software
2011-07-27 13:26:55 ----D---- C:\Documents and Settings\All Users\Application Data\AVAST Software
2011-07-27 13:25:43 ----D---- C:\nahaved
2011-07-27 13:08:10 ----A---- C:\WINDOWS\system32\drivers\kbdhid.sys
2011-07-26 14:30:33 ----D---- C:\Documents and Settings\hp\Application Data\ShoppingReport2
2011-07-26 14:30:32 ----D---- C:\Program Files\ShoppingReport2
2011-07-21 18:04:32 ----A---- C:\WINDOWS\ddh_iplist.txt
2011-07-21 18:04:07 ----A---- C:\WINDOWS\l1rezerv.exe
2011-07-21 18:04:02 ----A---- C:\WINDOWS\iecheck_iplist.txt
2011-07-21 18:03:58 ----A---- C:\WINDOWS\systemup.exe
2011-07-21 18:03:37 ----HD---- C:\WINDOWS\update.2
2011-07-21 18:02:49 ----D---- C:\WINDOWS\ufa
2011-07-21 18:02:49 ----D---- C:\WINDOWS\rpcminer
2011-07-21 18:02:49 ----D---- C:\WINDOWS\phoenix
2011-07-21 18:02:31 ----A---- C:\WINDOWS\unrar.exe
2011-07-21 18:02:00 ----A---- C:\WINDOWS\btc_client_iplist.txt
2011-07-21 18:01:32 ----HD---- C:\WINDOWS\update.5.0
2011-07-21 10:14:31 ----A---- C:\WINDOWS\iplist.txt
2011-07-21 10:14:05 ----A---- C:\WINDOWS\sysdriver32_.exe
2011-07-21 10:13:50 ----A---- C:\WINDOWS\sysdriver32.exe
2011-07-21 10:13:19 ----A---- C:\WINDOWS\front_ip_list.txt
2011-07-21 10:13:09 ----D---- C:\WINDOWS\av_ico
2011-07-21 10:11:29 ----HD---- C:\WINDOWS\update.1
2011-07-21 10:10:47 ----HD---- C:\WINDOWS\update.tray-12-0-lnk
2011-07-21 10:10:47 ----HD---- C:\WINDOWS\update.tray-12-0
2011-07-21 09:59:36 ----A---- C:\WINDOWS\winlog-ids.txt
2011-07-21 09:59:36 ----A---- C:\WINDOWS\winlog-dirs.txt
2011-07-21 09:59:32 ----A---- C:\WINDOWS\services32.exe
2011-07-14 09:28:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2011-07-14 09:23:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2555917$
2011-06-29 21:58:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2541763$
======List of files/folders modified in the last 1 month======
2011-07-27 14:13:12 ----RD---- C:\Program Files
2011-07-27 14:09:47 ----D---- C:\Documents and Settings\hp\Application Data\Winamp
2011-07-27 14:09:45 ----D---- C:\Documents and Settings\hp\Application Data\Free Download Manager
2011-07-27 14:09:41 ----D---- C:\WINDOWS\Temp
2011-07-27 14:09:41 ----D---- C:\WINDOWS\Debug
2011-07-27 14:09:41 ----D---- C:\WINDOWS
2011-07-27 14:09:40 ----D---- C:\WINDOWS\Prefetch
2011-07-27 14:07:03 ----D---- C:\WINDOWS\system32\drivers
2011-07-27 14:07:03 ----D---- C:\WINDOWS\system32
2011-07-27 14:05:44 ----D---- C:\Documents and Settings\hp\Application Data\LimeWire
2011-07-27 14:03:41 ----N---- C:\WINDOWS\SchedLgU.Txt
2011-07-27 14:02:12 ----D---- C:\Documents and Settings\hp\Application Data\Software Informer
2011-07-27 13:35:08 ----D---- C:\WINDOWS\system32\CatRoot2
2011-07-27 13:30:05 ----D---- C:\Program Files\CCleaner
2011-07-27 13:27:17 ----SHD---- C:\WINDOWS\Installer
2011-07-27 13:27:17 ----SHD---- C:\Config.Msi
2011-07-27 13:27:16 ----D---- C:\WINDOWS\WinSxS
2011-07-27 13:08:16 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-07-27 13:07:35 ----HD---- C:\WINDOWS\inf
2011-07-26 18:20:55 ----D---- C:\Documents and Settings\All Users\Application Data\SeekmoSA
2011-07-26 14:30:24 ----D---- C:\Documents and Settings\hp\Application Data\PriceGong
2011-07-26 14:30:22 ----D---- C:\Documents and Settings\hp\Application Data\ShoppingReport
2011-07-25 22:18:24 ----D---- C:\Program Files\LimeWire
2011-07-21 18:53:08 ----SHD---- C:\System Volume Information
2011-07-21 18:53:08 ----D---- C:\WINDOWS\system32\Restore
2011-07-21 18:13:19 ----RSD---- C:\WINDOWS\assembly
2011-07-21 18:04:03 ----D---- C:\WINDOWS\system32\drivers\etc
2011-07-21 10:12:28 ----D---- C:\WINDOWS\system32\drivers\Avg
2011-07-21 10:11:40 ----A---- C:\boot.ini
2011-07-14 09:23:43 ----A---- C:\WINDOWS\system32\MRT.exe
2011-07-13 12:39:31 ----HD---- C:\WINDOWS\$hf_mig$
2011-07-12 16:15:51 ----D---- C:\Documents and Settings\hp\Application Data\Skype
2011-07-09 13:22:10 ----HD---- C:\$AVG8.VAULT$
2011-07-04 13:01:21 ----D---- C:\Program Files\Ask.com
2011-07-04 13:01:19 ----SD---- C:\WINDOWS\Tasks
Logfile of random's system information tool 1.09 (written by random/random)
Run by hp at 2011-07-27 14:13:12
Systém Microsoft Windows XP Home Edition Service Pack 3
System drive C: has 5 GB (27%) free of 20 GB
Total RAM: 1022 MB (32% free)
HijackThis download failed
======Scheduled tasks folder======
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-790525478-602162358-1801674531-1004Core.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-790525478-602162358-1801674531-1004UA.job
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{672FC5B8-05CB-4071-9E1F-E5F2F7917A6D}.job
=========Mozilla firefox=========
ProfilePath - C:\Documents and Settings\hp\Application Data\Mozilla\Firefox\Profiles\3v50y3u9.default
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "http://search.conduit.com/?ctid=CT22337 ... hSource=13"
prefs.js - "extensions.enabledItems" - "{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}:6.0.11, {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21, dvscontextmenuy@dvdvideosoft.com:1.0, engine@conduit.com:3.3.3.2, fdm_ffext@freedownloadmanager.org:1.3.4, {1392b8d2-5c05-419f-a8f6-b9f15a596612}:3.3.3.2, {20a82645-c095-46ed-80e3-08825760534b}:1.2.1, jqs@sun.com:1.0, 1vffxtbr@SmileyCentral_1v.com:1.2, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.17"
prefs.js - "keyword.URL" - "http://www.google.com/search?ie=UTF-8&o ... &gfns=1&q="
"Seekmo@Seekmo.com"=C:\Program Files\Seekmo\bin\10.3.85.0\firefox\extensions
"{20a82645-c095-46ed-80e3-08825760534b}"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"1vffxtbr@SmileyCentral_1v.com"=C:\Program Files\SmileyCentral_1v\bar\2.bin
"jqs@sun.com"=C:\Program Files\Java\jre6\lib\deploy\jqs\ff
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Google.com/GoogleEarthPlugin]
"Description"=Google Earth in your browser
"Path"=C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@SmileyCentral_1v.com/Plugin]
"Description"=SmileyCentral Plugin
"Path"=C:\Program Files\SmileyCentral_1v\bar\2.bin\NP1vStub.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=D:\Programy\Reader\AIR\nppdf32.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
C:\Program Files\Mozilla Firefox\components\
AskHPRFF.js
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
npclntax.xpt
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsIQTScriptablePlugin.xpt
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js
C:\Program Files\Mozilla Firefox\plugins\
npclntax_SeekmoSA.dll
npdeployJava1.dll
npnul32.dll
nppdf32.dll
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
QuickTimePlugin.class
C:\Program Files\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
dunaj-sk.xml
eBay.xml
google.xml
slovnik-sk.xml
wikipedia-sk.xml
zoznam-sk.xml
C:\Documents and Settings\hp\Application Data\Mozilla\Firefox\Profiles\3v50y3u9.default\extensions\
engine@conduit.com
toolbar@ask.com
{1392b8d2-5c05-419f-a8f6-b9f15a596612}
{20a82645-c095-46ed-80e3-08825760534b}
C:\Documents and Settings\hp\Application Data\Mozilla\Firefox\Profiles\3v50y3u9.default\searchplugins\
askcom.xml
conduit.xml
SmileyCentral_1v.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1392b8d2-5c05-419f-a8f6-b9f15a596612}]
Freecorder Toolbar - C:\Program Files\Freecorder\prxtbFre0.dll [2011-01-17 175912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{258C9770-1713-4021-8D7E-1F184A2BD754}]
ShoppingReport2 - C:\Program Files\ShoppingReport2\Bin\2.7.27\ShoppingReport.dll [2010-11-08 1142576]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{25CEE8EC-5730-41bc-8B58-22DDC8AB8C20}]
Winamp Toolbar Loader - C:\Program Files\Winamp Toolbar\winamptb.dll [2009-02-19 1262888]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - C:\Program Files\ConduitEngine\prxConduitEngine.dll [2011-01-17 175912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B}]
Seekmo - C:\Program Files\Seekmo\bin\10.3.85.0\HostIE.dll [2009-05-27 554256]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-07-03 305328]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08 804136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll [2011-06-07 1007160]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch - C:\Program Files\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
FDMIECookiesBHO Class - C:\Program Files\Free Download Manager\iefdm2.dll [2008-12-30 98304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2011-05-17 1490312]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-06-14 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-06-14 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - Winamp Toolbar - C:\Program Files\Winamp Toolbar\winamptb.dll [2009-02-19 1262888]
{855F3B16-6D32-4fe6-8A56-BBB695989046} - ICQToolBar - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll [2008-12-09 958200]
{90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} - Seekmo - C:\Program Files\Seekmo\bin\10.3.85.0\HostIE.dll [2009-05-27 554256]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2011-05-17 1490312]
{1392b8d2-5c05-419f-a8f6-b9f15a596612} - Freecorder Toolbar - C:\Program Files\Freecorder\prxtbFre0.dll [2011-01-17 175912]
{30F9B915-B755-4826-820B-08FBA6BD249D} - Conduit Engine - C:\Program Files\ConduitEngine\prxConduitEngine.dll [2011-01-17 175912]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2011-07-03 305328]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2006-11-16 577536]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2006-08-11 7630848]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2006-08-11 86016]
"PAC7302_Monitor"=C:\WINDOWS\PixArt\PAC7302\Monitor.exe [2006-11-03 319488]
"AVG8_TRAY"=C:\PROGRA~1\AVG\AVG8\avgtray.exe []
"WinampAgent"=C:\Program Files\Winamp\winampa.exe [2009-03-09 37888]
"SeekmoOE"=C:\Program Files\Seekmo\bin\10.3.85.0\OEAddOn.exe [2009-05-27 91408]
"SeekmoSA"=C:\Program Files\Seekmo\bin\10.3.85.0\SeekmoSA.exe [2009-05-27 782096]
"MP10_EnsureFileVer"=C:\WINDOWS\inf\unregmp2.exe [2008-04-14 208896]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2008-03-28 413696]
"OM2_Monitor"=C:\Program Files\OLYMPUS\OLYMPUS Master 2\FirstStart.exe [2009-04-17 54576]
"Adobe Reader Speed Launcher"=D:\Programy\Reader\Reader_sl.exe [2011-06-08 37296]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2011-03-30 937920]
"Freecorder FLV Service"=C:\Program Files\Freecorder\FLVSrvc.exe [2010-06-26 167936]
"BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent []
"TaskTray"= []
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-04-08 254696]
""= []
"ApnUpdater"=C:\Program Files\Ask.com\Updater\Updater.exe [2011-05-17 395144]
"wxpdrv"=C:\WINDOWS\services32.exe [2011-07-21 1178112]
"tray_ico"= []
"tray_ico0"=C:\WINDOWS\update.tray-12-0\svchost.exe [2011-07-21 1178112]
"tray_ico1"= []
"tray_ico2"= []
"tray_ico3"= []
"tray_ico4"= []
"2628647.exe"=C:\DOCUME~1\hp\LOCALS~1\Temp\2628647.exe [2011-07-21 232960]
"sysdriver32.exe"=C:\WINDOWS\sysdriver32.exe [2011-07-26 261632]
"sysdriver32_.exe"=C:\WINDOWS\sysdriver32_.exe [2011-07-26 256000]
"9329877.exe"=C:\WINDOWS\TEMP\9329877.exe [2011-07-21 232960]
"systemup"=C:\WINDOWS\systemup.exe [2011-07-21 118784]
"l1rezerv.exe"=C:\WINDOWS\l1rezerv.exe [2011-07-26 235520]
"37434676-loader2.exe"=C:\WINDOWS\TEMP\37434676-loader2.exe [2011-07-21 245760]
"5981184.exe"=C:\WINDOWS\TEMP\5981184.exe [2011-07-26 256000]
"4046655.exe"=C:\WINDOWS\TEMP\4046655.exe [2011-07-26 495616]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"ares"=C:\Program Files\Ares\Ares.exe [2009-02-03 1004544]
"Software Informer"=C:\Program Files\Software Informer\softinfo.exe [2009-09-17 1933381]
"LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2008-06-09 2363392]
"Google Update"=C:\Documents and Settings\hp\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-06-07 136176]
"fsm"= []
"OM2_Monitor"=C:\Program Files\OLYMPUS\OLYMPUS Master 2\MMonitor.exe [2009-04-17 95536]
"NBCore"=C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBCore.exe [2008-09-24 1561896]
"MediaGet2"=C:\Documents and Settings\hp\Local Settings\Application Data\MediaGet2\mediaget.exe [2011-07-18 8040680]
"TomTomHOME.exe"=C:\Documents and Settings\hp\Desktop\tomtom GPS\TomTom HOME 2\TomTomHOMERunner.exe [2011-03-09 247728]
C:\Documents and Settings\hp\Start Menu\Programs\Startup
LimeWire On Startup.lnk - C:\Program Files\LimeWire\LimeWire.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\avgrsstarter]
C:\WINDOWS\system32\avgrsstx.dll [2009-08-17 11952]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\wxpdrivers]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0
"EnableSecureUIAPaths"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\AVG\AVG8\avgemc.exe"="C:\Program Files\AVG\AVG8\avgemc.exe:*:Enabled:avgemc.exe"
"C:\Program Files\AVG\AVG8\avgupd.exe"="C:\Program Files\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe"
"C:\Program Files\AVG\AVG8\avgnsx.exe"="C:\Program Files\AVG\AVG8\avgnsx.exe:*:Enabled:avgnsx.exe"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox"
"C:\Program Files\LimeWire\LimeWire.exe"="C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire"
"C:\Program Files\Free Download Manager\fdmwi.exe"="C:\Program Files\Free Download Manager\fdmwi.exe:*:Enabled:fdmwi"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\WINDOWS\system32\mmc.exe"="C:\WINDOWS\system32\mmc.exe:*:Disabled:Microsoft Management Console"
"C:\Program Files\Google\Google Earth\client\googleearth.exe"="C:\Program Files\Google\Google Earth\client\googleearth.exe:*:Enabled:Google Earth"
"C:\Program Files\Sony Ericsson\Sony Ericsson Media Manager\MediaManager.exe"="C:\Program Files\Sony Ericsson\Sony Ericsson Media Manager\MediaManager.exe:*:Enabled:Sony Ericsson Media Manager 1.2"
"C:\Documents and Settings\hp\Local Settings\Application Data\MediaGet2\mediaget.exe"="C:\Documents and Settings\hp\Local Settings\Application Data\MediaGet2\mediaget.exe:*:Enabled:MediaGet torrent client"
"C:\Program Files\Ares\Ares.exe"="C:\Program Files\Ares\Ares.exe:*:Enabled:Ares p2p for windows"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Documents and Settings\hp\My Documents\Downloads\Flash-Player.exe"="C:\Documents and Settings\hp\My Documents\Downloads\Flash-Player.exe:*:Enabled:C:\Documents and Settings\hp\My Documents\Downloads\Flash-Player.exe"
"C:\WINDOWS\update.1\svchost.exe"="C:\WINDOWS\update.1\svchost.exe:*:Enabled:C:\WINDOWS\update.1\svchost.exe"
"C:\WINDOWS\services32.exe"="C:\WINDOWS\services32.exe:*:Enabled:C:\WINDOWS\services32.exe"
"C:\WINDOWS\update.tray-12-0\svchost.exe"="C:\WINDOWS\update.tray-12-0\svchost.exe:*:Enabled:C:\WINDOWS\update.tray-12-0\svchost.exe"
"C:\WINDOWS\update.2\svchost.exe"="C:\WINDOWS\update.2\svchost.exe:*:Enabled:C:\WINDOWS\update.2\svchost.exe"
"C:\WINDOWS\update.2\4041.exe"="C:\WINDOWS\update.2\4041.exe:*:Enabled:C:\WINDOWS\update.2\4041.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"VIDC.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iv41"=ir41_32.ax
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"VIDC.YVYU"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.iac2"=C:\WINDOWS\system32\iac25_32.ax
"vidc.iv50"=ir50_32.dll
"msacm.l3acm"=C:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux1"=wdmaud.drv
======List of files/folders created in the last 1 month======
2011-07-27 14:13:12 ----D---- C:\rsit
2011-07-27 14:13:12 ----D---- C:\Program Files\trend micro
2011-07-27 13:26:55 ----D---- C:\Program Files\AVAST Software
2011-07-27 13:26:55 ----D---- C:\Documents and Settings\All Users\Application Data\AVAST Software
2011-07-27 13:25:43 ----D---- C:\nahaved
2011-07-27 13:08:10 ----A---- C:\WINDOWS\system32\drivers\kbdhid.sys
2011-07-26 14:30:33 ----D---- C:\Documents and Settings\hp\Application Data\ShoppingReport2
2011-07-26 14:30:32 ----D---- C:\Program Files\ShoppingReport2
2011-07-21 18:04:32 ----A---- C:\WINDOWS\ddh_iplist.txt
2011-07-21 18:04:07 ----A---- C:\WINDOWS\l1rezerv.exe
2011-07-21 18:04:02 ----A---- C:\WINDOWS\iecheck_iplist.txt
2011-07-21 18:03:58 ----A---- C:\WINDOWS\systemup.exe
2011-07-21 18:03:37 ----HD---- C:\WINDOWS\update.2
2011-07-21 18:02:49 ----D---- C:\WINDOWS\ufa
2011-07-21 18:02:49 ----D---- C:\WINDOWS\rpcminer
2011-07-21 18:02:49 ----D---- C:\WINDOWS\phoenix
2011-07-21 18:02:31 ----A---- C:\WINDOWS\unrar.exe
2011-07-21 18:02:00 ----A---- C:\WINDOWS\btc_client_iplist.txt
2011-07-21 18:01:32 ----HD---- C:\WINDOWS\update.5.0
2011-07-21 10:14:31 ----A---- C:\WINDOWS\iplist.txt
2011-07-21 10:14:05 ----A---- C:\WINDOWS\sysdriver32_.exe
2011-07-21 10:13:50 ----A---- C:\WINDOWS\sysdriver32.exe
2011-07-21 10:13:19 ----A---- C:\WINDOWS\front_ip_list.txt
2011-07-21 10:13:09 ----D---- C:\WINDOWS\av_ico
2011-07-21 10:11:29 ----HD---- C:\WINDOWS\update.1
2011-07-21 10:10:47 ----HD---- C:\WINDOWS\update.tray-12-0-lnk
2011-07-21 10:10:47 ----HD---- C:\WINDOWS\update.tray-12-0
2011-07-21 09:59:36 ----A---- C:\WINDOWS\winlog-ids.txt
2011-07-21 09:59:36 ----A---- C:\WINDOWS\winlog-dirs.txt
2011-07-21 09:59:32 ----A---- C:\WINDOWS\services32.exe
2011-07-14 09:28:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2507938$
2011-07-14 09:23:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2555917$
2011-06-29 21:58:15 ----HDC---- C:\WINDOWS\$NtUninstallKB2541763$
======List of files/folders modified in the last 1 month======
2011-07-27 14:13:12 ----RD---- C:\Program Files
2011-07-27 14:09:47 ----D---- C:\Documents and Settings\hp\Application Data\Winamp
2011-07-27 14:09:45 ----D---- C:\Documents and Settings\hp\Application Data\Free Download Manager
2011-07-27 14:09:41 ----D---- C:\WINDOWS\Temp
2011-07-27 14:09:41 ----D---- C:\WINDOWS\Debug
2011-07-27 14:09:41 ----D---- C:\WINDOWS
2011-07-27 14:09:40 ----D---- C:\WINDOWS\Prefetch
2011-07-27 14:07:03 ----D---- C:\WINDOWS\system32\drivers
2011-07-27 14:07:03 ----D---- C:\WINDOWS\system32
2011-07-27 14:05:44 ----D---- C:\Documents and Settings\hp\Application Data\LimeWire
2011-07-27 14:03:41 ----N---- C:\WINDOWS\SchedLgU.Txt
2011-07-27 14:02:12 ----D---- C:\Documents and Settings\hp\Application Data\Software Informer
2011-07-27 13:35:08 ----D---- C:\WINDOWS\system32\CatRoot2
2011-07-27 13:30:05 ----D---- C:\Program Files\CCleaner
2011-07-27 13:27:17 ----SHD---- C:\WINDOWS\Installer
2011-07-27 13:27:17 ----SHD---- C:\Config.Msi
2011-07-27 13:27:16 ----D---- C:\WINDOWS\WinSxS
2011-07-27 13:08:16 ----RSHDC---- C:\WINDOWS\system32\dllcache
2011-07-27 13:07:35 ----HD---- C:\WINDOWS\inf
2011-07-26 18:20:55 ----D---- C:\Documents and Settings\All Users\Application Data\SeekmoSA
2011-07-26 14:30:24 ----D---- C:\Documents and Settings\hp\Application Data\PriceGong
2011-07-26 14:30:22 ----D---- C:\Documents and Settings\hp\Application Data\ShoppingReport
2011-07-25 22:18:24 ----D---- C:\Program Files\LimeWire
2011-07-21 18:53:08 ----SHD---- C:\System Volume Information
2011-07-21 18:53:08 ----D---- C:\WINDOWS\system32\Restore
2011-07-21 18:13:19 ----RSD---- C:\WINDOWS\assembly
2011-07-21 18:04:03 ----D---- C:\WINDOWS\system32\drivers\etc
2011-07-21 10:12:28 ----D---- C:\WINDOWS\system32\drivers\Avg
2011-07-21 10:11:40 ----A---- C:\boot.ini
2011-07-14 09:23:43 ----A---- C:\WINDOWS\system32\MRT.exe
2011-07-13 12:39:31 ----HD---- C:\WINDOWS\$hf_mig$
2011-07-12 16:15:51 ----D---- C:\Documents and Settings\hp\Application Data\Skype
2011-07-09 13:22:10 ----HD---- C:\$AVG8.VAULT$
2011-07-04 13:01:21 ----D---- C:\Program Files\Ask.com
2011-07-04 13:01:19 ----SD---- C:\WINDOWS\Tasks