Pomalý PC, sem tam sekání
Napsal: 19 srp 2011 16:03
Dobrý den, seká se mi netbook, je hrozně pomalý, tak přikládám log, jestli tam není problém.
Logfile of random's system information tool 1.09 (written by random/random)
Run by vendulka at 2011-08-19 15:56:20
Microsoft Windows 7 Starter Service Pack 1
System drive C: has 111 GB (80%) free of 139 GB
Total RAM: 1013 MB (42% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:57:07, on 19/08/2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Launch Manager\LManager.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe
C:\Program Files\PackardBellXSync\Deployment\Functions\{AA58F999-6D97-42c2-A69F-8CC04D18D944}\OMEA.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Video Web Camera\VideoWebCamera.exe
C:\Program Files\Launch Manager\LMworker.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Windows\system32\igfxext.exe
C:\Users\vendulka\Desktop\RSIT.exe
C:\Program Files\trend micro\vendulka.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://packardbell.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://packardbell.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://packardbell.msn.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - (no file)
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [LManager] C:\Program Files\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Acer ePower Management] C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe
O4 - HKLM\..\Run: [OMEA] "C:\Program Files\PackardBellXSync\Deployment\Functions\{AA58F999-6D97-42c2-A69F-8CC04D18D944}\OMEA.exe"
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: VideoWebCamera.exe.lnk = C:\Program Files\Video Web Camera\VideoWebCamera.exe
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files\Launch Manager\dsiwmis.exe
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: GREGService - Acer Incorporated - C:\Program Files\Packard Bell\Registration\GREGsvc.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Updater Service - Acer Group - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
--
End of file - 6075 bytes
=========Mozilla firefox=========
ProfilePath - C:\Users\vendulka\AppData\Roaming\Mozilla\Firefox\Profiles\k5pw0rz2.default
prefs.js - "browser.search.suggest.enabled" - false
prefs.js - "browser.startup.homepage" - "http://seznam.cz"
prefs.js - "extensions.enabledItems" - "engine@conduit.com:3.2.5.2, {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}:3.2.5.2, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.18"
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsIQTScriptablePlugin.xpt
C:\Program Files\Mozilla Firefox\plugins\
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
QuickTimePlugin.class
C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Users\vendulka\AppData\Roaming\Mozilla\Firefox\Profiles\k5pw0rz2.default\extensions\
engine@conduit.com
{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
C:\Users\vendulka\AppData\Roaming\Mozilla\Firefox\Profiles\k5pw0rz2.default\searchplugins\
conduit.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"LManager"=C:\Program Files\Launch Manager\LManager.exe [2010-08-10 975952]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-06-08 284696]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2010-08-03 9398888]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-02-28 35696]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2010-06-16 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2010-06-16 173592]
"Persistence"=C:\Windows\system32\igfxpers.exe [2010-06-16 150552]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-02-05 1692968]
"Acer ePower Management"=C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe [2010-06-11 715296]
"OMEA"=C:\Program Files\PackardBellXSync\Deployment\Functions\{AA58F999-6D97-42c2-A69F-8CC04D18D944}\OMEA.exe [2009-06-04 184320]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2011-06-15 997920]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2010-11-29 421888]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2011-01-25 421160]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2009-10-09 25623336]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
VideoWebCamera.exe.lnk - C:\Program Files\Video Web Camera\VideoWebCamera.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2010-04-19 218112]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.siren"=sirenacm.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2011-08-19 15:56:21 ----D---- C:\Program Files\trend micro
2011-08-19 15:56:20 ----D---- C:\rsit
2011-08-19 15:19:08 ----D---- C:\Users\vendulka\AppData\Roaming\Yahoo!
2011-08-19 15:18:52 ----D---- C:\Program Files\Yahoo!
2011-08-19 15:18:32 ----D---- C:\Program Files\CCleaner
2011-08-12 09:21:04 ----D---- C:\Windows\system32\SPReview
2011-08-12 09:18:47 ----D---- C:\Windows\system32\EventProviders
2011-08-12 09:11:52 ----A---- C:\Windows\system32\MRT.exe
2011-08-09 19:22:25 ----A---- C:\Windows\system32\xmllite.dll
2011-08-09 19:22:21 ----A---- C:\Windows\system32\ntoskrnl.exe
2011-08-09 19:22:19 ----A---- C:\Windows\system32\ntkrnlpa.exe
2011-08-09 19:22:16 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2011-08-09 19:22:14 ----A---- C:\Windows\system32\drivers\tcpip.sys
2011-08-09 19:22:09 ----A---- C:\Windows\system32\iertutil.dll
2011-08-09 19:21:58 ----A---- C:\Windows\system32\mshtml.dll
2011-08-09 19:21:57 ----A---- C:\Windows\system32\wininet.dll
2011-08-09 19:21:56 ----A---- C:\Windows\system32\urlmon.dll
2011-08-09 19:21:54 ----A---- C:\Windows\system32\ieframe.dll
2011-08-09 19:21:52 ----A---- C:\Windows\system32\msfeeds.dll
2011-08-09 19:21:48 ----A---- C:\Windows\system32\mshtmled.dll
2011-08-09 19:21:47 ----A---- C:\Windows\system32\url.dll
2011-08-09 19:21:47 ----A---- C:\Windows\system32\ieui.dll
2011-08-09 19:21:46 ----A---- C:\Windows\system32\jsproxy.dll
2011-08-09 19:21:39 ----A---- C:\Windows\system32\kernel32.dll
2011-08-09 19:21:38 ----A---- C:\Windows\system32\winsrv.dll
2011-08-09 19:21:38 ----A---- C:\Windows\system32\conhost.exe
2011-08-09 19:21:37 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2011-08-09 19:21:37 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2011-08-09 19:21:37 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2011-08-09 19:21:37 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2011-08-09 19:21:37 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2011-08-09 19:21:37 ----A---- C:\Windows\system32\KernelBase.dll
2011-08-09 19:21:36 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2011-08-09 19:21:36 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-08-09 19:21:36 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2011-08-09 19:21:36 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2011-08-09 19:21:35 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2011-08-09 19:21:35 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2011-08-09 19:21:35 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2011-08-09 19:21:34 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2011-08-09 19:21:34 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2011-08-09 19:21:34 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2011-08-09 19:21:34 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2011-08-09 19:21:34 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2011-08-09 19:21:33 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2011-08-09 19:21:33 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2011-08-09 19:21:33 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2011-08-09 19:21:33 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2011-08-09 19:21:32 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2011-08-09 19:21:32 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2011-08-09 19:21:32 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2011-08-09 19:21:32 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2011-08-09 19:21:31 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2011-08-09 19:21:31 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2011-08-09 19:21:31 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2011-08-09 19:21:27 ----A---- C:\Windows\system32\odbcjt32.dll
2011-08-09 19:21:26 ----A---- C:\Windows\system32\odbccp32.dll
2011-08-09 19:21:25 ----A---- C:\Windows\system32\odbccr32.dll
2011-08-09 19:21:24 ----A---- C:\Windows\system32\odbccu32.dll
2011-08-09 19:21:22 ----A---- C:\Windows\system32\odbctrac.dll
======List of files/folders modified in the last 1 month======
2011-08-19 15:56:21 ----D---- C:\Program Files
2011-08-19 15:49:37 ----D---- C:\Users\vendulka\AppData\Roaming\uTorrent
2011-08-19 15:47:27 ----D---- C:\Windows\Temp
2011-08-19 15:47:27 ----D---- C:\Windows
2011-08-19 15:46:09 ----D---- C:\Program Files\Mozilla Firefox
2011-08-19 15:30:27 ----D---- C:\Users\vendulka\AppData\Roaming\Skype
2011-08-19 15:28:48 ----HD---- C:\ProgramData
2011-08-19 15:26:04 ----D---- C:\Windows\debug
2011-08-19 15:17:42 ----D---- C:\Windows\System32
2011-08-19 15:17:42 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-08-19 15:17:41 ----D---- C:\Windows\inf
2011-08-19 11:42:15 ----D---- C:\Windows\system32\config
2011-08-18 09:35:26 ----SHD---- C:\System Volume Information
2011-08-14 17:26:38 ----D---- C:\Windows\Microsoft.NET
2011-08-14 09:22:52 ----RSD---- C:\Windows\assembly
2011-08-14 08:42:04 ----D---- C:\Windows\winsxs
2011-08-13 10:03:51 ----D---- C:\Windows\system32\catroot
2011-08-13 09:38:12 ----D---- C:\Windows\system32\catroot2
2011-08-12 19:25:42 ----D---- C:\Windows\system32\LogFiles
2011-08-12 11:02:00 ----D---- C:\Windows\system32\DriverStore
2011-08-12 10:51:52 ----D---- C:\Program Files\Windows Sidebar
2011-08-12 10:51:52 ----D---- C:\Program Files\Windows Portable Devices
2011-08-12 10:51:52 ----D---- C:\Program Files\Windows Media Player
2011-08-12 10:51:52 ----D---- C:\Program Files\Windows Mail
2011-08-12 10:51:52 ----D---- C:\Program Files\Internet Explorer
2011-08-12 10:51:52 ----D---- C:\Program Files\DVD Maker
2011-08-12 10:51:51 ----D---- C:\Program Files\Windows Photo Viewer
2011-08-12 10:51:45 ----D---- C:\Windows\servicing
2011-08-12 10:51:45 ----D---- C:\Program Files\Windows Defender
2011-08-12 10:51:39 ----D---- C:\Windows\system32\da-DK
2011-08-12 10:51:39 ----D---- C:\Windows\PolicyDefinitions
2011-08-12 10:51:38 ----D---- C:\Windows\system32\en-US
2011-08-12 10:51:35 ----D---- C:\Windows\system32\oobe
2011-08-12 10:51:34 ----D---- C:\Windows\system32\sysprep
2011-08-12 10:51:34 ----D---- C:\Windows\system32\sppui
2011-08-12 10:51:34 ----D---- C:\Windows\system32\Setup
2011-08-12 10:51:34 ----D---- C:\Windows\system32\migration
2011-08-12 10:51:34 ----D---- C:\Windows\system32\manifeststore
2011-08-12 10:51:34 ----D---- C:\Windows\system32\es-ES
2011-08-12 10:51:34 ----D---- C:\Windows\system32\en
2011-08-12 10:51:34 ----D---- C:\Windows\system32\cs-CZ
2011-08-12 10:51:34 ----D---- C:\Windows\system32\AdvancedInstallers
2011-08-12 10:51:33 ----D---- C:\Windows\system32\drivers\en-US
2011-08-12 10:51:33 ----D---- C:\Windows\system32\drivers
2011-08-12 10:51:30 ----D---- C:\Windows\system32\wbem
2011-08-12 10:51:29 ----D---- C:\Windows\system32\migwiz
2011-08-12 10:51:29 ----D---- C:\Windows\system32\Dism
2011-08-12 10:51:05 ----RSD---- C:\Windows\Fonts
2011-08-12 10:51:04 ----D---- C:\Windows\AppPatch
2011-08-12 10:36:25 ----D---- C:\Windows\system32\Boot
2011-08-12 10:27:15 ----D---- C:\Program Files\Microsoft Security Client
2011-08-12 09:54:56 ----A---- C:\Windows\system32\msclmd.dll
2011-08-12 09:18:19 ----SHD---- C:\Windows\Installer
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-06-08 435736]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2011-04-18 165648]
R1 MpKsl5af61f55;MpKsl5af61f55; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{9F733E06-DCF3-46B0-A7E7-882BBAF4187F}\MpKsl5af61f55.sys [2011-08-19 28752]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2010-07-15 1906024]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2010-04-19 4806144]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2010-08-03 3158120]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x86.sys [2010-08-24 68208]
R3 MpNWMon;Microsoft Malware Protection Network Driver; C:\Windows\system32\DRIVERS\MpNWMon.sys [2011-04-18 43392]
R3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2011-04-27 65024]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-02-05 242992]
S1 MpKsl0c5f4d12;MpKsl0c5f4d12; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{EF3504F0-1A40-420F-AAE0-79705F59A700}\MpKsl0c5f4d12.sys []
S1 MpKsl0ec69b14;MpKsl0ec69b14; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7D34D40F-5912-405A-A816-012BA88E76B1}\MpKsl0ec69b14.sys []
S1 MpKsl1547b09e;MpKsl1547b09e; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{75719830-D147-4E05-920F-02FD7B561710}\MpKsl1547b09e.sys []
S1 MpKsl2677bed1;MpKsl2677bed1; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AF581842-FFDD-4497-B126-9EFEFEFBA5FA}\MpKsl2677bed1.sys []
S1 MpKsl2a3c507d;MpKsl2a3c507d; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{08658C33-5F0F-43EC-B388-10AF3A331EC0}\MpKsl2a3c507d.sys []
S1 MpKsl2ed92e3e;MpKsl2ed92e3e; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{BC982855-F010-47B4-9C8F-28F7B587C9DD}\MpKsl2ed92e3e.sys []
S1 MpKsl2ef4866f;MpKsl2ef4866f; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C2B3C56C-3AFF-43ED-89A6-EB6D96D435DD}\MpKsl2ef4866f.sys []
S1 MpKsl2f674885;MpKsl2f674885; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D68FCFB4-501E-4C14-9D4E-8E5E2E3B84FA}\MpKsl2f674885.sys []
S1 MpKsl31eac845;MpKsl31eac845; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{CBFF6B4C-5D32-42B2-85D2-DBE20C4530A5}\MpKsl31eac845.sys []
S1 MpKsl392f4dbd;MpKsl392f4dbd; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7C2C5443-C104-4282-AA29-FFD5BC50305B}\MpKsl392f4dbd.sys []
S1 MpKsl3a6349b0;MpKsl3a6349b0; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{3378F3C4-3DE6-4549-8309-3EC2C00DF889}\MpKsl3a6349b0.sys []
S1 MpKsl4c510ebc;MpKsl4c510ebc; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AF581842-FFDD-4497-B126-9EFEFEFBA5FA}\MpKsl4c510ebc.sys []
S1 MpKsl4f74400c;MpKsl4f74400c; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A7E268E1-9666-450A-865E-8C99FF33FAFC}\MpKsl4f74400c.sys []
S1 MpKsl55d5cb12;MpKsl55d5cb12; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{274A2654-5D60-44D6-A543-530AE8CCBB94}\MpKsl55d5cb12.sys []
S1 MpKsl64dad268;MpKsl64dad268; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{EF3504F0-1A40-420F-AAE0-79705F59A700}\MpKsl64dad268.sys []
S1 MpKsl6ba3225a;MpKsl6ba3225a; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C09B9570-BF86-4105-9AB6-A78E9559EB35}\MpKsl6ba3225a.sys []
S1 MpKsl6c0aee07;MpKsl6c0aee07; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{18734FCF-E80D-4B19-8E1B-6B729A3DA386}\MpKsl6c0aee07.sys []
S1 MpKsl6e460d9a;MpKsl6e460d9a; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{43F1C39B-F558-4696-A3E0-78E89D703E56}\MpKsl6e460d9a.sys []
S1 MpKsl72d37da7;MpKsl72d37da7; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{16869722-BA9A-4667-BD86-D29A17B88F45}\MpKsl72d37da7.sys []
S1 MpKsl77697e73;MpKsl77697e73; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D311609B-0954-4F94-90C3-5E820B7A1F9F}\MpKsl77697e73.sys []
S1 MpKsl7d0b2036;MpKsl7d0b2036; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{101C9CE0-F3C9-4C41-A146-7CDB82CA4E5F}\MpKsl7d0b2036.sys []
S1 MpKsl7d8d6fe2;MpKsl7d8d6fe2; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{97712319-4019-43E1-BAD6-AD81793E3EBD}\MpKsl7d8d6fe2.sys []
S1 MpKsl874b3610;MpKsl874b3610; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8F851B60-8FA2-4BED-B9C8-14D9BA7C07E7}\MpKsl874b3610.sys []
S1 MpKsl89d427af;MpKsl89d427af; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{6EB013F5-9BB4-4288-B13B-EA713EC9351A}\MpKsl89d427af.sys []
S1 MpKsl8fec53a6;MpKsl8fec53a6; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7BB3C8EB-8A8F-4839-876A-B950804B9691}\MpKsl8fec53a6.sys []
S1 MpKsl90948e70;MpKsl90948e70; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{274A2654-5D60-44D6-A543-530AE8CCBB94}\MpKsl90948e70.sys []
S1 MpKsl92c76b0e;MpKsl92c76b0e; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D68FCFB4-501E-4C14-9D4E-8E5E2E3B84FA}\MpKsl92c76b0e.sys []
S1 MpKsl93db73bb;MpKsl93db73bb; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{EDD9F6C8-2A65-44B3-A02C-9519A925E57C}\MpKsl93db73bb.sys []
S1 MpKsl9be36b1f;MpKsl9be36b1f; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D9630682-5961-4A3A-95F1-B3EB2A0BD7EF}\MpKsl9be36b1f.sys []
S1 MpKsl9c795ac0;MpKsl9c795ac0; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{16869722-BA9A-4667-BD86-D29A17B88F45}\MpKsl9c795ac0.sys []
S1 MpKsla9c1a339;MpKsla9c1a339; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{71393EF3-34A4-4D41-83B5-5D90DADA0BCB}\MpKsla9c1a339.sys []
S1 MpKslafa2d87a;MpKslafa2d87a; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{690B9EAB-D233-4EB2-BDD0-617357B02DAC}\MpKslafa2d87a.sys []
S1 MpKslb3fdecff;MpKslb3fdecff; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A9CED337-8D5C-4C2A-A0B8-07D3A9F82A30}\MpKslb3fdecff.sys []
S1 MpKslb4bb1f8e;MpKslb4bb1f8e; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{68696094-53F4-479D-95A4-A273BF2CE444}\MpKslb4bb1f8e.sys []
S1 MpKslc007bd1e;MpKslc007bd1e; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{45145A0A-C1F7-4228-A481-CEB55D71AE7D}\MpKslc007bd1e.sys []
S1 MpKslc04b6b3b;MpKslc04b6b3b; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A225A6A3-44A0-424B-87E5-C82B0E4B5D33}\MpKslc04b6b3b.sys []
S1 MpKslc9383797;MpKslc9383797; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{9CDCA918-6A6B-4EA1-9D0D-20D40B5E6070}\MpKslc9383797.sys []
S1 MpKslcabaedc3;MpKslcabaedc3; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C3417A3C-1B0C-499E-93B8-2066DD5A4B77}\MpKslcabaedc3.sys []
S1 MpKslcf5c6104;MpKslcf5c6104; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5460994E-A04B-4710-8BE0-98C5A3378FD8}\MpKslcf5c6104.sys []
S1 MpKsld69a3c2a;MpKsld69a3c2a; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C4286052-83DF-4A45-997B-891DF685621A}\MpKsld69a3c2a.sys []
S1 MpKslde9c7412;MpKslde9c7412; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{3192C3BD-89FF-45E6-A286-00774FE5FFCE}\MpKslde9c7412.sys []
S1 MpKsle01976a9;MpKsle01976a9; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{08658C33-5F0F-43EC-B388-10AF3A331EC0}\MpKsle01976a9.sys []
S1 MpKsle052a762;MpKsle052a762; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{0D666499-8EDE-44AC-A9CE-9036ECDEE430}\MpKsle052a762.sys []
S1 MpKsle3ac5e92;MpKsle3ac5e92; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{274A2654-5D60-44D6-A543-530AE8CCBB94}\MpKsle3ac5e92.sys []
S1 MpKsle735b0c4;MpKsle735b0c4; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{441BAE10-18D2-427F-89AE-9A2FC43BFBB4}\MpKsle735b0c4.sys []
S1 MpKsle9e46fb4;MpKsle9e46fb4; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{344A0043-CA9D-4C23-999A-F058BA218E09}\MpKsle9e46fb4.sys []
S1 MpKsled1c962f;MpKsled1c962f; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C3736206-2199-440E-BEEC-ED948C41AC7F}\MpKsled1c962f.sys []
S1 MpKslee493281;MpKslee493281; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{97C0D17B-80FC-4ED5-98EC-1AB10533E762}\MpKslee493281.sys []
S1 MpKslf08b92c4;MpKslf08b92c4; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A9CED337-8D5C-4C2A-A0B8-07D3A9F82A30}\MpKslf08b92c4.sys []
S1 MpKslf5832496;MpKslf5832496; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{44F709CF-E234-4A9E-9215-484278321971}\MpKslf5832496.sys []
S1 MpKslfb16bef1;MpKslfb16bef1; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{FB335D1F-1312-494A-A047-779C048DA658}\MpKslfb16bef1.sys []
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 EUCR;EUCR; C:\Windows\system32\DRIVERS\EUCR6SK.SYS [2010-06-17 82768]
S3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 26600]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2010-12-14 41984]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2011-01-05 37664]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2010-10-07 345376]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files\Launch Manager\dsiwmis.exe [2010-08-10 321104]
R2 ePowerSvc;Acer ePower Service; C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [2010-06-11 735776]
R2 GREGService;GREGService; C:\Program Files\Packard Bell\Registration\GREGsvc.exe [2010-01-08 23584]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-06-08 13336]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2011-04-27 11736]
R2 Updater Service;Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [2010-01-29 243232]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\Antimalware\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2011-04-27 208944]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-12-14 867080]
S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2011-01-25 820008]
-----------------EOF-----------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by vendulka at 2011-08-19 15:56:20
Microsoft Windows 7 Starter Service Pack 1
System drive C: has 111 GB (80%) free of 139 GB
Total RAM: 1013 MB (42% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:57:07, on 19/08/2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Launch Manager\LManager.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe
C:\Program Files\PackardBellXSync\Deployment\Functions\{AA58F999-6D97-42c2-A69F-8CC04D18D944}\OMEA.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Video Web Camera\VideoWebCamera.exe
C:\Program Files\Launch Manager\LMworker.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Windows\system32\igfxext.exe
C:\Users\vendulka\Desktop\RSIT.exe
C:\Program Files\trend micro\vendulka.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://packardbell.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://packardbell.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://packardbell.msn.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - (no file)
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [LManager] C:\Program Files\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Acer ePower Management] C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe
O4 - HKLM\..\Run: [OMEA] "C:\Program Files\PackardBellXSync\Deployment\Functions\{AA58F999-6D97-42c2-A69F-8CC04D18D944}\OMEA.exe"
O4 - HKLM\..\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: VideoWebCamera.exe.lnk = C:\Program Files\Video Web Camera\VideoWebCamera.exe
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files\Launch Manager\dsiwmis.exe
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: GREGService - Acer Incorporated - C:\Program Files\Packard Bell\Registration\GREGsvc.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Updater Service - Acer Group - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
--
End of file - 6075 bytes
=========Mozilla firefox=========
ProfilePath - C:\Users\vendulka\AppData\Roaming\Mozilla\Firefox\Profiles\k5pw0rz2.default
prefs.js - "browser.search.suggest.enabled" - false
prefs.js - "browser.startup.homepage" - "http://seznam.cz"
prefs.js - "extensions.enabledItems" - "engine@conduit.com:3.2.5.2, {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}:3.2.5.2, {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.18"
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
C:\Program Files\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
nsIQTScriptablePlugin.xpt
C:\Program Files\Mozilla Firefox\plugins\
npqtplugin.dll
npqtplugin2.dll
npqtplugin3.dll
npqtplugin4.dll
npqtplugin5.dll
npqtplugin6.dll
npqtplugin7.dll
QuickTimePlugin.class
C:\Program Files\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
C:\Users\vendulka\AppData\Roaming\Mozilla\Firefox\Profiles\k5pw0rz2.default\extensions\
engine@conduit.com
{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
C:\Users\vendulka\AppData\Roaming\Mozilla\Firefox\Profiles\k5pw0rz2.default\searchplugins\
conduit.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"LManager"=C:\Program Files\Launch Manager\LManager.exe [2010-08-10 975952]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-06-08 284696]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2010-08-03 9398888]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-02-28 35696]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2010-06-16 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2010-06-16 173592]
"Persistence"=C:\Windows\system32\igfxpers.exe [2010-06-16 150552]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2010-02-05 1692968]
"Acer ePower Management"=C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe [2010-06-11 715296]
"OMEA"=C:\Program Files\PackardBellXSync\Deployment\Functions\{AA58F999-6D97-42c2-A69F-8CC04D18D944}\OMEA.exe [2009-06-04 184320]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2011-06-15 997920]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2010-11-29 421888]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2011-01-25 421160]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2009-10-09 25623336]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
VideoWebCamera.exe.lnk - C:\Program Files\Video Web Camera\VideoWebCamera.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2010-04-19 218112]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"msacm.siren"=sirenacm.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2011-08-19 15:56:21 ----D---- C:\Program Files\trend micro
2011-08-19 15:56:20 ----D---- C:\rsit
2011-08-19 15:19:08 ----D---- C:\Users\vendulka\AppData\Roaming\Yahoo!
2011-08-19 15:18:52 ----D---- C:\Program Files\Yahoo!
2011-08-19 15:18:32 ----D---- C:\Program Files\CCleaner
2011-08-12 09:21:04 ----D---- C:\Windows\system32\SPReview
2011-08-12 09:18:47 ----D---- C:\Windows\system32\EventProviders
2011-08-12 09:11:52 ----A---- C:\Windows\system32\MRT.exe
2011-08-09 19:22:25 ----A---- C:\Windows\system32\xmllite.dll
2011-08-09 19:22:21 ----A---- C:\Windows\system32\ntoskrnl.exe
2011-08-09 19:22:19 ----A---- C:\Windows\system32\ntkrnlpa.exe
2011-08-09 19:22:16 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2011-08-09 19:22:14 ----A---- C:\Windows\system32\drivers\tcpip.sys
2011-08-09 19:22:09 ----A---- C:\Windows\system32\iertutil.dll
2011-08-09 19:21:58 ----A---- C:\Windows\system32\mshtml.dll
2011-08-09 19:21:57 ----A---- C:\Windows\system32\wininet.dll
2011-08-09 19:21:56 ----A---- C:\Windows\system32\urlmon.dll
2011-08-09 19:21:54 ----A---- C:\Windows\system32\ieframe.dll
2011-08-09 19:21:52 ----A---- C:\Windows\system32\msfeeds.dll
2011-08-09 19:21:48 ----A---- C:\Windows\system32\mshtmled.dll
2011-08-09 19:21:47 ----A---- C:\Windows\system32\url.dll
2011-08-09 19:21:47 ----A---- C:\Windows\system32\ieui.dll
2011-08-09 19:21:46 ----A---- C:\Windows\system32\jsproxy.dll
2011-08-09 19:21:39 ----A---- C:\Windows\system32\kernel32.dll
2011-08-09 19:21:38 ----A---- C:\Windows\system32\winsrv.dll
2011-08-09 19:21:38 ----A---- C:\Windows\system32\conhost.exe
2011-08-09 19:21:37 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2011-08-09 19:21:37 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2011-08-09 19:21:37 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2011-08-09 19:21:37 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2011-08-09 19:21:37 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2011-08-09 19:21:37 ----A---- C:\Windows\system32\KernelBase.dll
2011-08-09 19:21:36 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2011-08-09 19:21:36 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-08-09 19:21:36 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2011-08-09 19:21:36 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2011-08-09 19:21:35 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2011-08-09 19:21:35 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2011-08-09 19:21:35 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2011-08-09 19:21:34 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2011-08-09 19:21:34 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2011-08-09 19:21:34 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2011-08-09 19:21:34 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2011-08-09 19:21:34 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2011-08-09 19:21:33 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2011-08-09 19:21:33 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2011-08-09 19:21:33 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2011-08-09 19:21:33 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2011-08-09 19:21:32 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2011-08-09 19:21:32 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2011-08-09 19:21:32 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2011-08-09 19:21:32 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2011-08-09 19:21:31 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2011-08-09 19:21:31 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2011-08-09 19:21:31 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2011-08-09 19:21:27 ----A---- C:\Windows\system32\odbcjt32.dll
2011-08-09 19:21:26 ----A---- C:\Windows\system32\odbccp32.dll
2011-08-09 19:21:25 ----A---- C:\Windows\system32\odbccr32.dll
2011-08-09 19:21:24 ----A---- C:\Windows\system32\odbccu32.dll
2011-08-09 19:21:22 ----A---- C:\Windows\system32\odbctrac.dll
======List of files/folders modified in the last 1 month======
2011-08-19 15:56:21 ----D---- C:\Program Files
2011-08-19 15:49:37 ----D---- C:\Users\vendulka\AppData\Roaming\uTorrent
2011-08-19 15:47:27 ----D---- C:\Windows\Temp
2011-08-19 15:47:27 ----D---- C:\Windows
2011-08-19 15:46:09 ----D---- C:\Program Files\Mozilla Firefox
2011-08-19 15:30:27 ----D---- C:\Users\vendulka\AppData\Roaming\Skype
2011-08-19 15:28:48 ----HD---- C:\ProgramData
2011-08-19 15:26:04 ----D---- C:\Windows\debug
2011-08-19 15:17:42 ----D---- C:\Windows\System32
2011-08-19 15:17:42 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-08-19 15:17:41 ----D---- C:\Windows\inf
2011-08-19 11:42:15 ----D---- C:\Windows\system32\config
2011-08-18 09:35:26 ----SHD---- C:\System Volume Information
2011-08-14 17:26:38 ----D---- C:\Windows\Microsoft.NET
2011-08-14 09:22:52 ----RSD---- C:\Windows\assembly
2011-08-14 08:42:04 ----D---- C:\Windows\winsxs
2011-08-13 10:03:51 ----D---- C:\Windows\system32\catroot
2011-08-13 09:38:12 ----D---- C:\Windows\system32\catroot2
2011-08-12 19:25:42 ----D---- C:\Windows\system32\LogFiles
2011-08-12 11:02:00 ----D---- C:\Windows\system32\DriverStore
2011-08-12 10:51:52 ----D---- C:\Program Files\Windows Sidebar
2011-08-12 10:51:52 ----D---- C:\Program Files\Windows Portable Devices
2011-08-12 10:51:52 ----D---- C:\Program Files\Windows Media Player
2011-08-12 10:51:52 ----D---- C:\Program Files\Windows Mail
2011-08-12 10:51:52 ----D---- C:\Program Files\Internet Explorer
2011-08-12 10:51:52 ----D---- C:\Program Files\DVD Maker
2011-08-12 10:51:51 ----D---- C:\Program Files\Windows Photo Viewer
2011-08-12 10:51:45 ----D---- C:\Windows\servicing
2011-08-12 10:51:45 ----D---- C:\Program Files\Windows Defender
2011-08-12 10:51:39 ----D---- C:\Windows\system32\da-DK
2011-08-12 10:51:39 ----D---- C:\Windows\PolicyDefinitions
2011-08-12 10:51:38 ----D---- C:\Windows\system32\en-US
2011-08-12 10:51:35 ----D---- C:\Windows\system32\oobe
2011-08-12 10:51:34 ----D---- C:\Windows\system32\sysprep
2011-08-12 10:51:34 ----D---- C:\Windows\system32\sppui
2011-08-12 10:51:34 ----D---- C:\Windows\system32\Setup
2011-08-12 10:51:34 ----D---- C:\Windows\system32\migration
2011-08-12 10:51:34 ----D---- C:\Windows\system32\manifeststore
2011-08-12 10:51:34 ----D---- C:\Windows\system32\es-ES
2011-08-12 10:51:34 ----D---- C:\Windows\system32\en
2011-08-12 10:51:34 ----D---- C:\Windows\system32\cs-CZ
2011-08-12 10:51:34 ----D---- C:\Windows\system32\AdvancedInstallers
2011-08-12 10:51:33 ----D---- C:\Windows\system32\drivers\en-US
2011-08-12 10:51:33 ----D---- C:\Windows\system32\drivers
2011-08-12 10:51:30 ----D---- C:\Windows\system32\wbem
2011-08-12 10:51:29 ----D---- C:\Windows\system32\migwiz
2011-08-12 10:51:29 ----D---- C:\Windows\system32\Dism
2011-08-12 10:51:05 ----RSD---- C:\Windows\Fonts
2011-08-12 10:51:04 ----D---- C:\Windows\AppPatch
2011-08-12 10:36:25 ----D---- C:\Windows\system32\Boot
2011-08-12 10:27:15 ----D---- C:\Program Files\Microsoft Security Client
2011-08-12 09:54:56 ----A---- C:\Windows\system32\msclmd.dll
2011-08-12 09:18:19 ----SHD---- C:\Windows\Installer
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2010-06-08 435736]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2011-04-18 165648]
R1 MpKsl5af61f55;MpKsl5af61f55; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{9F733E06-DCF3-46B0-A7E7-882BBAF4187F}\MpKsl5af61f55.sys [2011-08-19 28752]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2010-07-15 1906024]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2010-04-19 4806144]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2010-08-03 3158120]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C62x86.sys [2010-08-24 68208]
R3 MpNWMon;Microsoft Malware Protection Network Driver; C:\Windows\system32\DRIVERS\MpNWMon.sys [2011-04-18 43392]
R3 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2011-04-27 65024]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2010-02-05 242992]
S1 MpKsl0c5f4d12;MpKsl0c5f4d12; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{EF3504F0-1A40-420F-AAE0-79705F59A700}\MpKsl0c5f4d12.sys []
S1 MpKsl0ec69b14;MpKsl0ec69b14; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7D34D40F-5912-405A-A816-012BA88E76B1}\MpKsl0ec69b14.sys []
S1 MpKsl1547b09e;MpKsl1547b09e; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{75719830-D147-4E05-920F-02FD7B561710}\MpKsl1547b09e.sys []
S1 MpKsl2677bed1;MpKsl2677bed1; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AF581842-FFDD-4497-B126-9EFEFEFBA5FA}\MpKsl2677bed1.sys []
S1 MpKsl2a3c507d;MpKsl2a3c507d; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{08658C33-5F0F-43EC-B388-10AF3A331EC0}\MpKsl2a3c507d.sys []
S1 MpKsl2ed92e3e;MpKsl2ed92e3e; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{BC982855-F010-47B4-9C8F-28F7B587C9DD}\MpKsl2ed92e3e.sys []
S1 MpKsl2ef4866f;MpKsl2ef4866f; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C2B3C56C-3AFF-43ED-89A6-EB6D96D435DD}\MpKsl2ef4866f.sys []
S1 MpKsl2f674885;MpKsl2f674885; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D68FCFB4-501E-4C14-9D4E-8E5E2E3B84FA}\MpKsl2f674885.sys []
S1 MpKsl31eac845;MpKsl31eac845; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{CBFF6B4C-5D32-42B2-85D2-DBE20C4530A5}\MpKsl31eac845.sys []
S1 MpKsl392f4dbd;MpKsl392f4dbd; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7C2C5443-C104-4282-AA29-FFD5BC50305B}\MpKsl392f4dbd.sys []
S1 MpKsl3a6349b0;MpKsl3a6349b0; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{3378F3C4-3DE6-4549-8309-3EC2C00DF889}\MpKsl3a6349b0.sys []
S1 MpKsl4c510ebc;MpKsl4c510ebc; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AF581842-FFDD-4497-B126-9EFEFEFBA5FA}\MpKsl4c510ebc.sys []
S1 MpKsl4f74400c;MpKsl4f74400c; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A7E268E1-9666-450A-865E-8C99FF33FAFC}\MpKsl4f74400c.sys []
S1 MpKsl55d5cb12;MpKsl55d5cb12; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{274A2654-5D60-44D6-A543-530AE8CCBB94}\MpKsl55d5cb12.sys []
S1 MpKsl64dad268;MpKsl64dad268; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{EF3504F0-1A40-420F-AAE0-79705F59A700}\MpKsl64dad268.sys []
S1 MpKsl6ba3225a;MpKsl6ba3225a; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C09B9570-BF86-4105-9AB6-A78E9559EB35}\MpKsl6ba3225a.sys []
S1 MpKsl6c0aee07;MpKsl6c0aee07; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{18734FCF-E80D-4B19-8E1B-6B729A3DA386}\MpKsl6c0aee07.sys []
S1 MpKsl6e460d9a;MpKsl6e460d9a; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{43F1C39B-F558-4696-A3E0-78E89D703E56}\MpKsl6e460d9a.sys []
S1 MpKsl72d37da7;MpKsl72d37da7; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{16869722-BA9A-4667-BD86-D29A17B88F45}\MpKsl72d37da7.sys []
S1 MpKsl77697e73;MpKsl77697e73; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D311609B-0954-4F94-90C3-5E820B7A1F9F}\MpKsl77697e73.sys []
S1 MpKsl7d0b2036;MpKsl7d0b2036; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{101C9CE0-F3C9-4C41-A146-7CDB82CA4E5F}\MpKsl7d0b2036.sys []
S1 MpKsl7d8d6fe2;MpKsl7d8d6fe2; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{97712319-4019-43E1-BAD6-AD81793E3EBD}\MpKsl7d8d6fe2.sys []
S1 MpKsl874b3610;MpKsl874b3610; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8F851B60-8FA2-4BED-B9C8-14D9BA7C07E7}\MpKsl874b3610.sys []
S1 MpKsl89d427af;MpKsl89d427af; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{6EB013F5-9BB4-4288-B13B-EA713EC9351A}\MpKsl89d427af.sys []
S1 MpKsl8fec53a6;MpKsl8fec53a6; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7BB3C8EB-8A8F-4839-876A-B950804B9691}\MpKsl8fec53a6.sys []
S1 MpKsl90948e70;MpKsl90948e70; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{274A2654-5D60-44D6-A543-530AE8CCBB94}\MpKsl90948e70.sys []
S1 MpKsl92c76b0e;MpKsl92c76b0e; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D68FCFB4-501E-4C14-9D4E-8E5E2E3B84FA}\MpKsl92c76b0e.sys []
S1 MpKsl93db73bb;MpKsl93db73bb; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{EDD9F6C8-2A65-44B3-A02C-9519A925E57C}\MpKsl93db73bb.sys []
S1 MpKsl9be36b1f;MpKsl9be36b1f; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D9630682-5961-4A3A-95F1-B3EB2A0BD7EF}\MpKsl9be36b1f.sys []
S1 MpKsl9c795ac0;MpKsl9c795ac0; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{16869722-BA9A-4667-BD86-D29A17B88F45}\MpKsl9c795ac0.sys []
S1 MpKsla9c1a339;MpKsla9c1a339; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{71393EF3-34A4-4D41-83B5-5D90DADA0BCB}\MpKsla9c1a339.sys []
S1 MpKslafa2d87a;MpKslafa2d87a; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{690B9EAB-D233-4EB2-BDD0-617357B02DAC}\MpKslafa2d87a.sys []
S1 MpKslb3fdecff;MpKslb3fdecff; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A9CED337-8D5C-4C2A-A0B8-07D3A9F82A30}\MpKslb3fdecff.sys []
S1 MpKslb4bb1f8e;MpKslb4bb1f8e; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{68696094-53F4-479D-95A4-A273BF2CE444}\MpKslb4bb1f8e.sys []
S1 MpKslc007bd1e;MpKslc007bd1e; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{45145A0A-C1F7-4228-A481-CEB55D71AE7D}\MpKslc007bd1e.sys []
S1 MpKslc04b6b3b;MpKslc04b6b3b; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A225A6A3-44A0-424B-87E5-C82B0E4B5D33}\MpKslc04b6b3b.sys []
S1 MpKslc9383797;MpKslc9383797; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{9CDCA918-6A6B-4EA1-9D0D-20D40B5E6070}\MpKslc9383797.sys []
S1 MpKslcabaedc3;MpKslcabaedc3; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C3417A3C-1B0C-499E-93B8-2066DD5A4B77}\MpKslcabaedc3.sys []
S1 MpKslcf5c6104;MpKslcf5c6104; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{5460994E-A04B-4710-8BE0-98C5A3378FD8}\MpKslcf5c6104.sys []
S1 MpKsld69a3c2a;MpKsld69a3c2a; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C4286052-83DF-4A45-997B-891DF685621A}\MpKsld69a3c2a.sys []
S1 MpKslde9c7412;MpKslde9c7412; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{3192C3BD-89FF-45E6-A286-00774FE5FFCE}\MpKslde9c7412.sys []
S1 MpKsle01976a9;MpKsle01976a9; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{08658C33-5F0F-43EC-B388-10AF3A331EC0}\MpKsle01976a9.sys []
S1 MpKsle052a762;MpKsle052a762; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{0D666499-8EDE-44AC-A9CE-9036ECDEE430}\MpKsle052a762.sys []
S1 MpKsle3ac5e92;MpKsle3ac5e92; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{274A2654-5D60-44D6-A543-530AE8CCBB94}\MpKsle3ac5e92.sys []
S1 MpKsle735b0c4;MpKsle735b0c4; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{441BAE10-18D2-427F-89AE-9A2FC43BFBB4}\MpKsle735b0c4.sys []
S1 MpKsle9e46fb4;MpKsle9e46fb4; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{344A0043-CA9D-4C23-999A-F058BA218E09}\MpKsle9e46fb4.sys []
S1 MpKsled1c962f;MpKsled1c962f; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{C3736206-2199-440E-BEEC-ED948C41AC7F}\MpKsled1c962f.sys []
S1 MpKslee493281;MpKslee493281; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{97C0D17B-80FC-4ED5-98EC-1AB10533E762}\MpKslee493281.sys []
S1 MpKslf08b92c4;MpKslf08b92c4; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A9CED337-8D5C-4C2A-A0B8-07D3A9F82A30}\MpKslf08b92c4.sys []
S1 MpKslf5832496;MpKslf5832496; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{44F709CF-E234-4A9E-9215-484278321971}\MpKslf5832496.sys []
S1 MpKslfb16bef1;MpKslfb16bef1; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{FB335D1F-1312-494A-A047-779C048DA658}\MpKslfb16bef1.sys []
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 EUCR;EUCR; C:\Windows\system32\DRIVERS\EUCR6SK.SYS [2010-06-17 82768]
S3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 26600]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2010-12-14 41984]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2011-01-05 37664]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2010-10-07 345376]
R2 DsiWMIService;Dritek WMI Service; C:\Program Files\Launch Manager\dsiwmis.exe [2010-08-10 321104]
R2 ePowerSvc;Acer ePower Service; C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [2010-06-11 735776]
R2 GREGService;GREGService; C:\Program Files\Packard Bell\Registration\GREGsvc.exe [2010-01-08 23584]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-06-08 13336]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [2011-04-27 11736]
R2 Updater Service;Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [2010-01-29 243232]
R3 NisSrv;@c:\Program Files\Microsoft Security Client\Antimalware\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2011-04-27 208944]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-12-14 867080]
S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2011-01-25 820008]
-----------------EOF-----------------