Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

nový NB a už bluescreen

To, co se nehodí jinam..

Moderátor: Moderátoři

Odpovědět
Zpráva
Autor
fastcivic
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 29 led 2006 13:42

nový NB a už bluescreen

#1 Příspěvek od fastcivic »

dobrý večer
mam nový noťas a hned od druheho den co sem s nim pracoval mi občas spadne s doprovodem modre obrazovky. Zkusil sem patrat sam co se deje, ale jedine co jsem zjistil je, ze to muze zpusobovat od prehrivani, pres spatne ovladace az po vadny HW.
Jde o ASUS PRO5DID-SX236V
Dela to jak pri hrani her, tak pri uplne necinnosti kdy notas jen lezi otevreny a nikdo s nim nepracuje. Jsem z toho dost zoufaly. Byl to darek a nechci koukat na zuby darovanemu koni :(
Udelal sem analyzu dmp souboru, ale nic konkretniho jsem z googlu nedostal...

Poradte prosim jak ho vylecit

ADDITIONAL_DEBUG_TEXT:
Use '!findthebuild' command to search for the target build information.
If the build information is available, run '!findthebuild -s ; .reload' to set symbol path and load symbols.

MODULE_NAME: nt

FAULTING_MODULE: fffff8000301b000 nt

DEBUG_FLR_IMAGE_TIMESTAMP: 4e02aa44

READ_ADDRESS: unable to get nt!MmSpecialPoolStart
unable to get nt!MmSpecialPoolEnd
unable to get nt!MmPoolCodeStart
unable to get nt!MmPoolCodeEnd
fffff6a8ff8206c0

FAULTING_IP:
nt+4a5b1
fffff800`030655b1 488b1e mov rbx,qword ptr [rsi]

MM_INTERNAL_CODE: 5

CUSTOMER_CRASH_COUNT: 1

DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT

BUGCHECK_STR: 0x50

CURRENT_IRQL: 0

LAST_CONTROL_TRANSFER: from fffff8000310a7a1 to fffff8000308b5c0

STACK_TEXT:
fffff880`083fe5f8 fffff800`0310a7a1 : 00000000`00000050 fffff6a8`ff8206c0 00000000`00000000 fffff880`083fe760 : nt+0x705c0
fffff880`083fe600 00000000`00000050 : fffff6a8`ff8206c0 00000000`00000000 fffff880`083fe760 00000000`00000005 : nt+0xef7a1
fffff880`083fe608 fffff6a8`ff8206c0 : 00000000`00000000 fffff880`083fe760 00000000`00000005 fffff880`083fe5f0 : 0x50
fffff880`083fe610 00000000`00000000 : fffff880`083fe760 00000000`00000005 fffff880`083fe5f0 fffffa80`063bd030 : 0xfffff6a8`ff8206c0


STACK_COMMAND: .bugcheck ; kb

FOLLOWUP_IP:
nt+4a5b1
fffff800`030655b1 488b1e mov rbx,qword ptr [rsi]

SYMBOL_NAME: nt+4a5b1

FOLLOWUP_NAME: MachineOwner

IMAGE_NAME: ntoskrnl.exe

BUCKET_ID: WRONG_SYMBOLS

Followup: MachineOwner
---------

0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************

PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: fffff6a8ff8206c0, memory referenced.
Arg2: 0000000000000000, value 0 = read operation, 1 = write operation.
Arg3: fffff800030655b1, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 0000000000000005, (reserved)

Debugging Details:
------------------

***** Kernel symbols are WRONG. Please fix symbols to do analysis.

*************************************************************************
*** ***
*** ***
*** Your debugger is not using the correct symbols ***
*** ***
*** In order for this command to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: nt!_KPRCB ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Your debugger is not using the correct symbols ***
*** ***
*** In order for this command to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: nt!KPRCB ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Your debugger is not using the correct symbols ***
*** ***
*** In order for this command to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: nt!_KPRCB ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Your debugger is not using the correct symbols ***
*** ***
*** In order for this command to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: nt!KPRCB ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Your debugger is not using the correct symbols ***
*** ***
*** In order for this command to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: nt!_KPRCB ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Your debugger is not using the correct symbols ***
*** ***
*** In order for this command to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: nt!_KPRCB ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Your debugger is not using the correct symbols ***
*** ***
*** In order for this command to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: nt!_KPRCB ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Your debugger is not using the correct symbols ***
*** ***
*** In order for this command to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: nt!_KPRCB ***
*** ***
*************************************************************************

ADDITIONAL_DEBUG_TEXT:
Use '!findthebuild' command to search for the target build information.
If the build information is available, run '!findthebuild -s ; .reload' to set symbol path and load symbols.

MODULE_NAME: nt

FAULTING_MODULE: fffff8000301b000 nt

DEBUG_FLR_IMAGE_TIMESTAMP: 4e02aa44

READ_ADDRESS: fffff6a8ff8206c0

FAULTING_IP:
nt+4a5b1
fffff800`030655b1 488b1e mov rbx,qword ptr [rsi]

MM_INTERNAL_CODE: 5

CUSTOMER_CRASH_COUNT: 1

DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT

BUGCHECK_STR: 0x50

CURRENT_IRQL: 0

LAST_CONTROL_TRANSFER: from fffff8000310a7a1 to fffff8000308b5c0

STACK_TEXT:
fffff880`083fe5f8 fffff800`0310a7a1 : 00000000`00000050 fffff6a8`ff8206c0 00000000`00000000 fffff880`083fe760 : nt+0x705c0
fffff880`083fe600 00000000`00000050 : fffff6a8`ff8206c0 00000000`00000000 fffff880`083fe760 00000000`00000005 : nt+0xef7a1
fffff880`083fe608 fffff6a8`ff8206c0 : 00000000`00000000 fffff880`083fe760 00000000`00000005 fffff880`083fe5f0 : 0x50
fffff880`083fe610 00000000`00000000 : fffff880`083fe760 00000000`00000005 fffff880`083fe5f0 fffffa80`063bd030 : 0xfffff6a8`ff8206c0


STACK_COMMAND: .bugcheck ; kb

FOLLOWUP_IP:
nt+4a5b1
fffff800`030655b1 488b1e mov rbx,qword ptr [rsi]

SYMBOL_NAME: nt+4a5b1

FOLLOWUP_NAME: MachineOwner

IMAGE_NAME: ntoskrnl.exe

BUCKET_ID: WRONG_SYMBOLS

Followup: MachineOwner
---------

0: kd> !analyze -v
*******************************************************************************
* *
* Bugcheck Analysis *
* *
*******************************************************************************

PAGE_FAULT_IN_NONPAGED_AREA (50)
Invalid system memory was referenced. This cannot be protected by try-except,
it must be protected by a Probe. Typically the address is just plain bad or it
is pointing at freed memory.
Arguments:
Arg1: fffff6a8ff8206c0, memory referenced.
Arg2: 0000000000000000, value 0 = read operation, 1 = write operation.
Arg3: fffff800030655b1, If non-zero, the instruction address which referenced the bad memory
address.
Arg4: 0000000000000005, (reserved)

Debugging Details:
------------------

***** Kernel symbols are WRONG. Please fix symbols to do analysis.

*************************************************************************
*** ***
*** ***
*** Your debugger is not using the correct symbols ***
*** ***
*** In order for this command to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: nt!_KPRCB ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Your debugger is not using the correct symbols ***
*** ***
*** In order for this command to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: nt!KPRCB ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Your debugger is not using the correct symbols ***
*** ***
*** In order for this command to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: nt!_KPRCB ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Your debugger is not using the correct symbols ***
*** ***
*** In order for this command to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: nt!KPRCB ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Your debugger is not using the correct symbols ***
*** ***
*** In order for this command to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: nt!_KPRCB ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Your debugger is not using the correct symbols ***
*** ***
*** In order for this command to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: nt!_KPRCB ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Your debugger is not using the correct symbols ***
*** ***
*** In order for this command to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: nt!_KPRCB ***
*** ***
*************************************************************************
*************************************************************************
*** ***
*** ***
*** Your debugger is not using the correct symbols ***
*** ***
*** In order for this command to work properly, your symbol path ***
*** must point to .pdb files that have full type information. ***
*** ***
*** Certain .pdb files (such as the public OS symbols) do not ***
*** contain the required information. Contact the group that ***
*** provided you with these symbols if you need this command to ***
*** work. ***
*** ***
*** Type referenced: nt!_KPRCB ***
*** ***
*************************************************************************

ADDITIONAL_DEBUG_TEXT:
Use '!findthebuild' command to search for the target build information.
If the build information is available, run '!findthebuild -s ; .reload' to set symbol path and load symbols.

MODULE_NAME: nt

FAULTING_MODULE: fffff8000301b000 nt

DEBUG_FLR_IMAGE_TIMESTAMP: 4e02aa44

READ_ADDRESS: fffff6a8ff8206c0

FAULTING_IP:
nt+4a5b1
fffff800`030655b1 488b1e mov rbx,qword ptr [rsi]

MM_INTERNAL_CODE: 5

CUSTOMER_CRASH_COUNT: 1

DEFAULT_BUCKET_ID: VISTA_DRIVER_FAULT

BUGCHECK_STR: 0x50

CURRENT_IRQL: 0

LAST_CONTROL_TRANSFER: from fffff8000310a7a1 to fffff8000308b5c0

STACK_TEXT:
fffff880`083fe5f8 fffff800`0310a7a1 : 00000000`00000050 fffff6a8`ff8206c0 00000000`00000000 fffff880`083fe760 : nt+0x705c0
fffff880`083fe600 00000000`00000050 : fffff6a8`ff8206c0 00000000`00000000 fffff880`083fe760 00000000`00000005 : nt+0xef7a1
fffff880`083fe608 fffff6a8`ff8206c0 : 00000000`00000000 fffff880`083fe760 00000000`00000005 fffff880`083fe5f0 : 0x50
fffff880`083fe610 00000000`00000000 : fffff880`083fe760 00000000`00000005 fffff880`083fe5f0 fffffa80`063bd030 : 0xfffff6a8`ff8206c0


STACK_COMMAND: .bugcheck ; kb

FOLLOWUP_IP:
nt+4a5b1
fffff800`030655b1 488b1e mov rbx,qword ptr [rsi]

SYMBOL_NAME: nt+4a5b1

FOLLOWUP_NAME: MachineOwner

IMAGE_NAME: ntoskrnl.exe

BUCKET_ID: WRONG_SYMBOLS

Followup: MachineOwner
---------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119405
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: nový NB a už bluescreen

#2 Příspěvek od Rudy »

Zdravím!
Zkuste provést kontrolu paměti RAM: http://www.viry.cz/forum/viewtopic.php?f=53&t=106788 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

fastcivic
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 29 led 2006 13:42

Re: nový NB a už bluescreen

#3 Příspěvek od fastcivic »

pripadam si jak neschopny. To c ma byt vypalene na cd ma vypadat takhle? Nechce mi to ten kram sezrat. Mam nastavene v biosu jako prvni cd, az pak hdd. Napise to ze to nelze spustit a rozjede se win
Přílohy
screen testram.jpg
screen testram.jpg (43.41 KiB) Zobrazeno 1240 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119405
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: nový NB a už bluescreen

#4 Příspěvek od Rudy »

Zřejmě jste CD nevypálil jako bootovací.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

fastcivic
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 29 led 2006 13:42

Re: nový NB a už bluescreen

#5 Příspěvek od fastcivic »

tak nakonec se mi to vcera podarilo rozjet hned po tom co sem tady napsal ze mi to nejde :oops:
bezelo to celou noc, udelalo 6 testu bez jedine chyby. Ted si muzu byt jisty ze jsou ramky ok?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119405
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: nový NB a už bluescreen

#6 Příspěvek od Rudy »

Vypadá to, spíš na vadný HW. Pro jistotu ale dejte log z RSIT: http://www.viry.cz/forum/viewtopic.php?f=13&t=105895 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

fastcivic
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 29 led 2006 13:42

Re: nový NB a už bluescreen

#7 Příspěvek od fastcivic »

Logfile of random's system information tool 1.09 (written by random/random)
Run by Denis at 2011-09-30 19:49:48
Microsoft Windows 7 Home Premium
System drive C: has 73 GB (48%) free of 153 GB
Total RAM: 4095 MB (55% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:49:53, on 30.9.2011
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16839)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\Winamp\winampa.exe
C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\QIP 2010\qip.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files\trend micro\Denis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Pomocník pro přihlášení ke službě Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [Boingo Wi-Fi] "C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk"
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [NBAgent] "C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-3201448915-3208623186-2291822294-1001\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3201448915-3208623186-2291822294-1001\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Global Startup: FancyStart daemon.lnk = ?
O4 - Global Startup: SRS Premium Sound.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Přidat na blog - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Přidat na blog Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10312 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Windows\system32\FBAgent.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
C:\Windows\System32\spoolsv.exe
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
"C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe"
"C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe"
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session
"taskhost.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesApp64.exe" /TUStart /pid:2016
ATKOSD.exe
KBFiltr.exe
taskeng.exe {78F74070-7C7D-4DB0-A0C2-3BD5EC99F392}
WDC.exe
"C:\Program Files\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
"C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe"
"C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe"
"C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe"
"C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe"
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
"C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\SRSPremiumPanel_64.exe" /f=srs_premium_sound_nopreset.zip
"C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files (x86)\Winamp\winampa.exe"
"C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Windows\SysWOW64\ACEngSvr.exe" -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\wuauclt.exe"
"C:\Program Files (x86)\ASUS\ASUS WebStorage\EeeStorageUploader.exe" @@c052a933-f311-48de-bb2f-6d5ccca76d89 54860b61-6d7b-4610-b6de-effdbdc31c83 Odeslat položku 666
"C:\Windows\AsScrPro.exe"
"C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\QIP 2010\qip.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=2112.72c46b0.835956415 "C:\Windows\system32\Macromed\Flash\NPSWF32.dll" Mozilla.Firefox.7.0 -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.jar" 2112 "\\.\pipe\gecko-crash-server-pipe.2112" plugin
"c:\program files\windows defender\MpCmdRun.exe" SpyNetService -RestrictPrivileges -AccessKey E86DED91-97C6-1A5C-891E-EF556D3C126D -Reinvoke
"C:\Users\Denis\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Denis\AppData\Roaming\Mozilla\Firefox\Profiles\z0955h89.default

prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8051.1204]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.69\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.69\npGoogleUpdate3.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}

C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll

C:\Program Files (x86)\Mozilla Firefox\plugins\
NPOFF12.DLL
npwachk.dll

C:\Program Files (x86)\Mozilla Firefox\searchplugins\
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}]
Windows Live Family Safety Browser Helper Class - C:\Program Files\Windows Live\Family Safety\fssbho.dll [2008-12-08 68960]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2008-12-04 92504]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2008-12-08 1067352]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2008-12-08 1067352]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ASUS WebStorage"=C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe [2010-03-16 1754448]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2009-09-30 621440]
"AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2009-09-02 323584]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2011-01-12 2918656]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-08-02 4910912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-02-28 35696]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ASUS Screen Saver Protector]
C:\Windows\AsScrPro.exe [2010-09-17 3054136]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CLMLServer]
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2009-11-02 103720]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2009-12-21 9639424]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"UpdateLBPShortCut"=C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"UpdateP2GoShortCut"=C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"Boingo Wi-Fi"=C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk [2010-09-17 2429]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2009-10-27 6998656]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2009-08-20 170624]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"WinampAgent"=C:\Program Files (x86)\Winamp\winampa.exe [2011-07-11 74752]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]
"NBAgent"=C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe [2011-04-08 1406248]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FancyStart daemon.lnk - C:\Windows\Installer\{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}\_A1DDD39913A1970387B7B3.exe
SRS Premium Sound.lnk - C:\Windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLinkedConnections"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2011-09-30 19:49:48 ----D---- C:\rsit
2011-09-30 19:49:48 ----D---- C:\Program Files\trend micro
2011-09-28 09:22:15 ----D---- C:\Users\Denis\AppData\Roaming\Nero
2011-09-28 09:15:53 ----D---- C:\Program Files (x86)\Nero
2011-09-28 09:15:48 ----D---- C:\ProgramData\Nero
2011-09-27 19:39:38 ----D---- C:\Program Files (x86)\Debugging Tools for Windows (x86)
2011-09-25 13:26:44 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2011-09-25 13:25:56 ----A---- C:\Windows\system32\FntCache.dll
2011-09-25 13:25:55 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2011-09-25 13:25:55 ----A---- C:\Windows\system32\DWrite.dll
2011-09-25 13:25:55 ----A---- C:\Windows\system32\d2d1.dll
2011-09-25 13:25:54 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2011-09-19 21:13:36 ----SHD---- C:\Config.Msi
2011-09-19 21:06:00 ----D---- C:\Windows\system32\SPReview
2011-09-19 21:05:07 ----D---- C:\Windows\system32\EventProviders
2011-09-19 21:03:38 ----A---- C:\Windows\system32\MRT.exe
2011-09-19 18:29:18 ----D---- C:\Program Files (x86)\Microsoft Works
2011-09-19 18:28:47 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2011-09-19 18:28:22 ----D---- C:\Program Files (x86)\Microsoft.NET
2011-09-19 18:24:46 ----D---- C:\Program Files\Microsoft Office
2011-09-19 18:24:42 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2011-09-19 18:24:09 ----D---- C:\ProgramData\Microsoft Help
2011-09-19 18:23:46 ----RHD---- C:\MSOCache
2011-09-17 20:25:03 ----SHD---- C:\found.000
2011-09-13 22:28:26 ----D---- C:\Users\Denis\AppData\Roaming\NVIDIA
2011-09-13 22:21:45 ----D---- C:\Program Files\CCleaner
2011-09-13 21:34:38 ----D---- C:\Program Files (x86)\Alcohol Soft
2011-09-13 21:28:35 ----A---- C:\Windows\system32\drivers\sptd.sys
2011-09-13 21:08:19 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2011-09-13 21:08:13 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2011-09-13 18:27:40 ----RA---- C:\Windows\SYSWOW64\vp6vfw.dll
2011-09-13 07:54:01 ----D---- C:\ProgramData\Electronic Arts
2011-09-13 07:54:01 ----D---- C:\ProgramData\EA Core
2011-09-13 07:31:44 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2011-09-13 07:31:44 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2011-09-13 07:31:44 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2011-09-13 07:31:44 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2011-09-13 07:31:44 ----A---- C:\Windows\system32\XAudio2_6.dll
2011-09-13 07:31:44 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2011-09-13 07:31:44 ----A---- C:\Windows\system32\xactengine3_6.dll
2011-09-13 07:31:44 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2011-09-13 07:26:14 ----D---- C:\ProgramData\Solidshield
2011-09-12 20:58:09 ----A---- C:\Windows\system32\TURegOpt.exe
2011-09-12 20:58:03 ----A---- C:\Windows\system32\uxtuneup.dll
2011-09-12 20:58:02 ----A---- C:\Windows\SYSWOW64\uxtuneup.dll
2011-09-12 20:58:02 ----A---- C:\Windows\SYSWOW64\authuitu.dll
2011-09-12 20:58:02 ----A---- C:\Windows\system32\authuitu.dll
2011-09-12 20:57:52 ----D---- C:\Users\Denis\AppData\Roaming\TuneUp Software
2011-09-12 20:57:47 ----D---- C:\Program Files (x86)\TuneUp Utilities 2011
2011-09-12 20:57:41 ----D---- C:\ProgramData\TuneUp Software
2011-09-12 20:57:22 ----SHD---- C:\ProgramData\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
2011-09-11 20:06:17 ----D---- C:\Users\Denis\AppData\Roaming\Media Player Classic
2011-09-11 19:07:04 ----D---- C:\Program Files (x86)\uTorrent
2011-09-11 19:06:10 ----D---- C:\Users\Denis\AppData\Roaming\uTorrent
2011-09-11 18:50:17 ----D---- C:\Users\Denis\AppData\Roaming\GHISLER
2011-09-11 18:50:17 ----D---- C:\totalcmd
2011-09-11 18:50:17 ----A---- C:\Windows\UC.PIF
2011-09-11 18:50:17 ----A---- C:\Windows\RAR.PIF
2011-09-11 18:50:17 ----A---- C:\Windows\PKZIP.PIF
2011-09-11 18:50:17 ----A---- C:\Windows\PKUNZIP.PIF
2011-09-11 18:50:17 ----A---- C:\Windows\NOCLOSE.PIF
2011-09-11 18:50:17 ----A---- C:\Windows\LHA.PIF
2011-09-11 18:50:17 ----A---- C:\Windows\ARJ.PIF
2011-09-11 15:49:25 ----D---- C:\Windows\Minidump
2011-09-10 12:23:48 ----N---- C:\Windows\SYSWOW64\iyvu9_32.dll
2011-09-10 12:23:48 ----A---- C:\Windows\SYSWOW64\iacenc.dll
2011-09-10 12:23:46 ----D---- C:\Program Files (x86)\Ligos
2011-09-10 12:13:57 ----A---- C:\Windows\IsUninst.exe
2011-09-10 12:08:24 ----A---- C:\Windows\SYSWOW64\unrar.dll
2011-09-10 12:08:23 ----A---- C:\Windows\avisplitter.ini
2011-09-10 12:08:19 ----A---- C:\Windows\SYSWOW64\xvidvfw.dll
2011-09-10 12:08:19 ----A---- C:\Windows\SYSWOW64\xvidcore.dll
2011-09-10 12:08:18 ----A---- C:\Windows\SYSWOW64\ff_vfw.dll
2011-09-10 12:08:15 ----D---- C:\Program Files (x86)\K-Lite Codec Pack
2011-09-10 12:02:55 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2011-09-10 12:02:55 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2011-09-10 12:02:55 ----A---- C:\Windows\system32\XAudio2_5.dll
2011-09-10 12:02:55 ----A---- C:\Windows\system32\xactengine3_5.dll
2011-09-10 12:02:54 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2011-09-10 12:02:54 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2011-09-10 12:02:54 ----A---- C:\Windows\system32\d3dcsx_42.dll
2011-09-10 12:02:54 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2011-09-10 12:02:53 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2011-09-10 12:02:53 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2011-09-10 12:02:53 ----A---- C:\Windows\system32\d3dx11_42.dll
2011-09-10 12:02:53 ----A---- C:\Windows\system32\d3dx10_42.dll
2011-09-10 12:02:52 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2011-09-10 12:02:52 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2011-09-10 12:02:52 ----A---- C:\Windows\system32\D3DX9_42.dll
2011-09-10 12:02:52 ----A---- C:\Windows\system32\d3dx10_41.dll
2011-09-10 12:02:52 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2011-09-10 12:02:51 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2011-09-10 12:02:51 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2011-09-10 12:02:51 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2011-09-10 12:02:51 ----A---- C:\Windows\system32\XAudio2_4.dll
2011-09-10 12:02:51 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2011-09-10 12:02:51 ----A---- C:\Windows\system32\D3DX9_41.dll
2011-09-10 12:02:50 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2011-09-10 12:02:50 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2011-09-10 12:02:50 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2011-09-10 12:02:50 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2011-09-10 12:02:50 ----A---- C:\Windows\system32\xactengine3_4.dll
2011-09-10 12:02:50 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2011-09-10 12:02:50 ----A---- C:\Windows\system32\d3dx10_40.dll
2011-09-10 12:02:50 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2011-09-10 12:02:49 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2011-09-10 12:02:49 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2011-09-10 12:02:49 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2011-09-10 12:02:49 ----A---- C:\Windows\system32\XAudio2_3.dll
2011-09-10 12:02:49 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2011-09-10 12:02:49 ----A---- C:\Windows\system32\D3DX9_40.dll
2011-09-10 12:02:48 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2011-09-10 12:02:48 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2011-09-10 12:02:48 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2011-09-10 12:02:48 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2011-09-10 12:02:48 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2011-09-10 12:02:48 ----A---- C:\Windows\system32\XAudio2_2.dll
2011-09-10 12:02:48 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2011-09-10 12:02:48 ----A---- C:\Windows\system32\xactengine3_3.dll
2011-09-10 12:02:48 ----A---- C:\Windows\system32\xactengine3_2.dll
2011-09-10 12:02:48 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2011-09-10 12:02:47 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2011-09-10 12:02:47 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2011-09-10 12:02:47 ----A---- C:\Windows\system32\d3dx10_39.dll
2011-09-10 12:02:47 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2011-09-10 12:02:46 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2011-09-10 12:02:46 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2011-09-10 12:02:46 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2011-09-10 12:02:46 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2011-09-10 12:02:46 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2011-09-10 12:02:46 ----A---- C:\Windows\system32\XAudio2_1.dll
2011-09-10 12:02:46 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2011-09-10 12:02:46 ----A---- C:\Windows\system32\xactengine3_1.dll
2011-09-10 12:02:46 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2011-09-10 12:02:46 ----A---- C:\Windows\system32\D3DX9_39.dll
2011-09-10 12:02:45 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2011-09-10 12:02:45 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2011-09-10 12:02:45 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2011-09-10 12:02:45 ----A---- C:\Windows\system32\D3DX9_38.dll
2011-09-10 12:02:45 ----A---- C:\Windows\system32\d3dx10_38.dll
2011-09-10 12:02:45 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2011-09-10 12:02:44 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2011-09-10 12:02:44 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2011-09-10 12:02:44 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2011-09-10 12:02:44 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2011-09-10 12:02:44 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2011-09-10 12:02:44 ----A---- C:\Windows\system32\XAudio2_0.dll
2011-09-10 12:02:44 ----A---- C:\Windows\system32\xactengine3_0.dll
2011-09-10 12:02:44 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2011-09-10 12:02:44 ----A---- C:\Windows\system32\d3dx10_37.dll
2011-09-10 12:02:44 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2011-09-10 12:02:43 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2011-09-10 12:02:43 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2011-09-10 12:02:43 ----A---- C:\Windows\system32\xactengine2_10.dll
2011-09-10 12:02:43 ----A---- C:\Windows\system32\D3DX9_37.dll
2011-09-10 12:02:42 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2011-09-10 12:02:42 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2011-09-10 12:02:42 ----A---- C:\Windows\system32\d3dx10_36.dll
2011-09-10 12:02:42 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2011-09-10 12:02:41 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2011-09-10 12:02:41 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2011-09-10 12:02:41 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2011-09-10 12:02:41 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2011-09-10 12:02:41 ----A---- C:\Windows\system32\xactengine2_9.dll
2011-09-10 12:02:41 ----A---- C:\Windows\system32\d3dx9_36.dll
2011-09-10 12:02:41 ----A---- C:\Windows\system32\d3dx10_35.dll
2011-09-10 12:02:41 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2011-09-10 12:02:40 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2011-09-10 12:02:40 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2011-09-10 12:02:40 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2011-09-10 12:02:40 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2011-09-10 12:02:40 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2011-09-10 12:02:40 ----A---- C:\Windows\system32\xactengine2_8.dll
2011-09-10 12:02:40 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2011-09-10 12:02:40 ----A---- C:\Windows\system32\d3dx9_35.dll
2011-09-10 12:02:40 ----A---- C:\Windows\system32\d3dx10_34.dll
2011-09-10 12:02:40 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2011-09-10 12:02:39 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2011-09-10 12:02:39 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2011-09-10 12:02:39 ----A---- C:\Windows\system32\xinput1_3.dll
2011-09-10 12:02:39 ----A---- C:\Windows\system32\d3dx9_34.dll
2011-09-10 12:02:38 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2011-09-10 12:02:38 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2011-09-10 12:02:38 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2011-09-10 12:02:38 ----A---- C:\Windows\system32\xactengine2_7.dll
2011-09-10 12:02:38 ----A---- C:\Windows\system32\d3dx10_33.dll
2011-09-10 12:02:38 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2011-09-10 12:02:37 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2011-09-10 12:02:37 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2011-09-10 12:02:37 ----A---- C:\Windows\system32\xactengine2_6.dll
2011-09-10 12:02:37 ----A---- C:\Windows\system32\d3dx9_33.dll
2011-09-10 12:02:36 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2011-09-10 12:02:36 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2011-09-10 12:02:36 ----A---- C:\Windows\system32\xactengine2_5.dll
2011-09-10 12:02:36 ----A---- C:\Windows\system32\d3dx10.dll
2011-09-10 12:02:35 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2011-09-10 12:02:35 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2011-09-10 12:02:35 ----A---- C:\Windows\system32\xactengine2_4.dll
2011-09-10 12:02:35 ----A---- C:\Windows\system32\x3daudio1_1.dll
2011-09-10 12:02:34 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2011-09-10 12:02:34 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2011-09-10 12:02:34 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2011-09-10 12:02:34 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2011-09-10 12:02:34 ----A---- C:\Windows\system32\xinput1_2.dll
2011-09-10 12:02:34 ----A---- C:\Windows\system32\xinput1_1.dll
2011-09-10 12:02:34 ----A---- C:\Windows\system32\xactengine2_3.dll
2011-09-10 12:02:34 ----A---- C:\Windows\system32\xactengine2_2.dll
2011-09-10 12:02:34 ----A---- C:\Windows\system32\d3dx9_31.dll
2011-09-10 12:02:33 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2011-09-10 12:02:33 ----A---- C:\Windows\system32\xactengine2_1.dll
2011-09-10 12:02:30 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2011-09-10 12:02:30 ----A---- C:\Windows\system32\d3dx9_30.dll
2011-09-10 12:02:29 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2011-09-10 12:02:29 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2011-09-10 12:02:29 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2011-09-10 12:02:29 ----A---- C:\Windows\system32\xactengine2_0.dll
2011-09-10 12:02:29 ----A---- C:\Windows\system32\x3daudio1_0.dll
2011-09-10 12:02:29 ----A---- C:\Windows\system32\d3dx9_29.dll
2011-09-10 12:02:28 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2011-09-10 12:02:28 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2011-09-10 12:02:28 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2011-09-10 12:02:28 ----A---- C:\Windows\system32\d3dx9_28.dll
2011-09-10 12:02:28 ----A---- C:\Windows\system32\d3dx9_27.dll
2011-09-10 12:02:28 ----A---- C:\Windows\system32\d3dx9_26.dll
2011-09-10 12:02:27 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2011-09-10 12:02:27 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2011-09-10 12:02:27 ----A---- C:\Windows\system32\d3dx9_25.dll
2011-09-10 12:02:27 ----A---- C:\Windows\system32\d3dx9_24.dll
2011-09-10 11:20:42 ----D---- C:\Users\Denis\AppData\Roaming\EeeStorageUploader
2011-09-10 11:20:39 ----D---- C:\Users\Denis\AppData\Roaming\temp
2011-09-10 11:08:57 ----N---- C:\Windows\system32\MpSigStub.exe
2011-09-10 11:02:08 ----D---- C:\ProgramData\ESET
2011-09-10 11:02:08 ----D---- C:\Program Files\ESET
2011-09-10 09:51:27 ----D---- C:\Users\Denis\AppData\Roaming\Google
2011-09-10 09:47:37 ----A---- C:\Windows\system32\drivers\ntfs.sys
2011-09-10 09:47:36 ----A---- C:\Windows\SYSWOW64\esent.dll
2011-09-10 09:47:36 ----A---- C:\Windows\system32\esent.dll
2011-09-10 09:47:36 ----A---- C:\Windows\system32\drivers\storport.sys
2011-09-10 09:47:36 ----A---- C:\Windows\system32\drivers\nvstor.sys
2011-09-10 09:47:36 ----A---- C:\Windows\system32\drivers\nvraid.sys
2011-09-10 09:47:36 ----A---- C:\Windows\system32\drivers\amdxata.sys
2011-09-10 09:47:36 ----A---- C:\Windows\system32\drivers\amdsata.sys
2011-09-10 09:47:35 ----A---- C:\Windows\system32\fsutil.exe
2011-09-10 09:47:35 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2011-09-10 09:47:35 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2011-09-10 09:47:34 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2011-09-10 09:47:23 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2011-09-10 09:47:23 ----A---- C:\Windows\system32\drivers\usbport.sys
2011-09-10 09:47:23 ----A---- C:\Windows\system32\drivers\usbohci.sys
2011-09-10 09:47:23 ----A---- C:\Windows\system32\drivers\usbhub.sys
2011-09-10 09:47:23 ----A---- C:\Windows\system32\drivers\usbehci.sys
2011-09-10 09:47:23 ----A---- C:\Windows\system32\drivers\usbd.sys
2011-09-10 09:47:23 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2011-09-09 23:22:59 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2011-09-09 23:22:58 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2011-09-09 23:22:49 ----D---- C:\Program Files (x86)\Winamp Detect
2011-09-09 23:22:38 ----D---- C:\Users\Denis\AppData\Roaming\Winamp
2011-09-09 23:22:38 ----D---- C:\Program Files (x86)\Winamp
2011-09-09 23:17:29 ----D---- C:\Users\Denis\AppData\Roaming\vlc
2011-09-09 23:17:00 ----D---- C:\Program Files (x86)\VideoLAN
2011-09-09 22:29:11 ----D---- C:\Users\Denis\AppData\Roaming\DAEMON Tools Lite
2011-09-09 22:29:08 ----D---- C:\ProgramData\DAEMON Tools Lite
2011-09-09 21:25:50 ----D---- C:\Windows\SYSWOW64\Wat
2011-09-09 21:25:50 ----D---- C:\Windows\system32\Wat
2011-09-09 21:12:08 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2011-09-09 21:12:08 ----A---- C:\Windows\system32\wcncsvc.dll
2011-09-09 21:00:20 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2011-09-09 21:00:20 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2011-09-09 21:00:20 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2011-09-09 21:00:20 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2011-09-09 21:00:20 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2011-09-09 21:00:20 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2011-09-09 21:00:20 ----A---- C:\Windows\system32\PresentationHost.exe
2011-09-09 21:00:20 ----A---- C:\Windows\system32\netfxperf.dll
2011-09-09 21:00:20 ----A---- C:\Windows\system32\mscoree.dll
2011-09-09 21:00:20 ----A---- C:\Windows\system32\dfshim.dll
2011-09-09 21:00:01 ----A---- C:\Windows\system32\browserchoice.exe
2011-09-09 20:50:06 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2011-09-09 20:50:06 ----A---- C:\Windows\system32\drivers\ks.sys
2011-09-09 17:15:49 ----D---- C:\Users\Denis\AppData\Roaming\WinRAR
2011-09-09 17:15:34 ----D---- C:\Program Files (x86)\WinRAR
2011-09-09 15:44:49 ----D---- C:\Program Files (x86)\DsNET Corp
2011-09-09 13:13:22 ----A---- C:\Windows\SYSWOW64\tzres.dll
2011-09-09 13:13:22 ----A---- C:\Windows\system32\tzres.dll
2011-09-09 13:12:58 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2011-09-09 13:12:58 ----A---- C:\Windows\system32\xmllite.dll
2011-09-09 13:12:56 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2011-09-09 13:12:56 ----A---- C:\Windows\system32\kerberos.dll
2011-09-09 13:12:55 ----A---- C:\Windows\system32\odbccu32.dll
2011-09-09 13:12:55 ----A---- C:\Windows\system32\odbccr32.dll
2011-09-09 13:12:54 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2011-09-09 13:12:54 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2011-09-09 13:12:54 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2011-09-09 13:12:54 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2011-09-09 13:12:54 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2011-09-09 13:12:54 ----A---- C:\Windows\system32\odbctrac.dll
2011-09-09 13:12:54 ----A---- C:\Windows\system32\odbccp32.dll
2011-09-09 13:12:51 ----A---- C:\Windows\system32\drivers\dfsc.sys
2011-09-09 13:12:46 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2011-09-09 13:12:46 ----A---- C:\Windows\system32\poqexec.exe
2011-09-09 13:12:45 ----A---- C:\Windows\explorer.exe
2011-09-09 13:12:44 ----A---- C:\Windows\SYSWOW64\explorer.exe
2011-09-09 13:12:43 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2011-09-09 13:12:43 ----A---- C:\Windows\system32\EncDec.dll
2011-09-09 13:12:43 ----A---- C:\Windows\system32\CPFilters.dll
2011-09-09 13:12:42 ----A---- C:\Windows\SYSWOW64\sbe.dll
2011-09-09 13:12:42 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2011-09-09 13:12:42 ----A---- C:\Windows\system32\sbe.dll
2011-09-09 13:12:40 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2011-09-09 13:12:40 ----A---- C:\Windows\system32\t2embed.dll
2011-09-09 13:12:37 ----A---- C:\Windows\SYSWOW64\ole32.dll
2011-09-09 13:12:37 ----A---- C:\Windows\system32\ole32.dll
2011-09-09 13:12:36 ----A---- C:\Windows\system32\schedsvc.dll
2011-09-09 13:12:35 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2011-09-09 13:12:35 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2011-09-09 13:12:35 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2011-09-09 13:12:35 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2011-09-09 13:12:35 ----A---- C:\Windows\system32\wmicmiplugin.dll
2011-09-09 13:12:35 ----A---- C:\Windows\system32\taskschd.dll
2011-09-09 13:12:35 ----A---- C:\Windows\system32\taskeng.exe
2011-09-09 13:12:35 ----A---- C:\Windows\system32\taskcomp.dll
2011-09-09 13:12:35 ----A---- C:\Windows\system32\schtasks.exe
2011-09-09 13:12:32 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2011-09-09 13:12:32 ----A---- C:\Windows\system32\mssrch.dll
2011-09-09 13:12:31 ----A---- C:\Windows\SYSWOW64\tquery.dll
2011-09-09 13:12:31 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2011-09-09 13:12:31 ----A---- C:\Windows\system32\tquery.dll
2011-09-09 13:12:31 ----A---- C:\Windows\system32\SearchIndexer.exe
2011-09-09 13:12:31 ----A---- C:\Windows\system32\mssph.dll
2011-09-09 13:12:30 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2011-09-09 13:12:30 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2011-09-09 13:12:30 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2011-09-09 13:12:30 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2011-09-09 13:12:30 ----A---- C:\Windows\SYSWOW64\mssph.dll
2011-09-09 13:12:30 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2011-09-09 13:12:30 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2011-09-09 13:12:30 ----A---- C:\Windows\system32\SearchFilterHost.exe
2011-09-09 13:12:30 ----A---- C:\Windows\system32\mssvp.dll
2011-09-09 13:12:30 ----A---- C:\Windows\system32\mssphtb.dll
2011-09-09 13:12:30 ----A---- C:\Windows\system32\msscntrs.dll
2011-09-09 13:12:28 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2011-09-09 13:12:28 ----A---- C:\Windows\system32\StructuredQuery.dll
2011-09-09 13:12:27 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2011-09-09 13:12:27 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2011-09-09 13:12:27 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2011-09-09 13:12:25 ----A---- C:\Windows\system32\drivers\afd.sys
2011-09-09 13:12:21 ----A---- C:\Windows\system32\shell32.dll
2011-09-09 13:12:19 ----A---- C:\Windows\SYSWOW64\shell32.dll
2011-09-09 13:12:14 ----A---- C:\Windows\system32\msdri.dll
2011-09-09 13:12:07 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2011-09-09 13:12:07 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2011-09-09 13:12:03 ----A---- C:\Windows\SYSWOW64\schannel.dll
2011-09-09 13:12:03 ----A---- C:\Windows\system32\schannel.dll
2011-09-09 13:12:01 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2011-09-09 13:12:01 ----A---- C:\Windows\system32\comctl32.dll
2011-09-09 13:11:59 ----A---- C:\Windows\SYSWOW64\jscript.dll
2011-09-09 13:11:59 ----A---- C:\Windows\system32\vbscript.dll
2011-09-09 13:11:59 ----A---- C:\Windows\system32\jscript.dll
2011-09-09 13:11:58 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2011-09-09 13:11:52 ----A---- C:\Windows\system32\msxml6.dll
2011-09-09 13:11:51 ----A---- C:\Windows\SYSWOW64\upnp.dll
2011-09-09 13:11:51 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2011-09-09 13:11:51 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2011-09-09 13:11:51 ----A---- C:\Windows\system32\wscapi.dll
2011-09-09 13:11:51 ----A---- C:\Windows\system32\winhttp.dll
2011-09-09 13:11:51 ----A---- C:\Windows\system32\WebClnt.dll
2011-09-09 13:11:51 ----A---- C:\Windows\system32\upnp.dll
2011-09-09 13:11:51 ----A---- C:\Windows\system32\msxml3.dll
2011-09-09 13:11:51 ----A---- C:\Windows\system32\davclnt.dll
2011-09-09 13:11:50 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2011-09-09 13:11:50 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2011-09-09 13:11:50 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2011-09-09 13:11:50 ----A---- C:\Windows\SYSWOW64\slwga.dll
2011-09-09 13:11:50 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2011-09-09 13:11:50 ----A---- C:\Windows\system32\wscsvc.dll
2011-09-09 13:11:50 ----A---- C:\Windows\system32\slwga.dll
2011-09-09 13:11:47 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2011-09-09 13:11:47 ----A---- C:\Windows\system32\XpsPrint.dll
2011-09-09 13:11:45 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2011-09-09 13:11:45 ----A---- C:\Windows\system32\mfc42u.dll
2011-09-09 13:11:45 ----A---- C:\Windows\system32\mfc42.dll
2011-09-09 13:11:44 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2011-09-09 13:11:43 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2011-09-09 13:11:43 ----A---- C:\Windows\system32\rtutils.dll
2011-09-09 13:11:42 ----A---- C:\Windows\system32\spoolsv.exe
2011-09-09 13:11:35 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2011-09-09 13:11:35 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2011-09-09 13:11:35 ----A---- C:\Windows\system32\atmlib.dll
2011-09-09 13:11:35 ----A---- C:\Windows\system32\atmfd.dll
2011-09-09 13:11:34 ----A---- C:\Windows\system32\d3d10warp.dll
2011-09-09 13:11:33 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2011-09-09 13:11:33 ----A---- C:\Windows\system32\WMVDECOD.DLL
2011-09-09 13:11:33 ----A---- C:\Windows\system32\mf.dll
2011-09-09 13:11:32 ----A---- C:\Windows\SYSWOW64\mf.dll
2011-09-09 13:11:31 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2011-09-09 13:11:31 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2011-09-09 13:11:31 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2011-09-09 13:11:31 ----A---- C:\Windows\system32\mfreadwrite.dll
2011-09-09 13:11:31 ----A---- C:\Windows\system32\ExplorerFrame.dll
2011-09-09 13:11:31 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2011-09-09 13:11:30 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2011-09-09 13:11:30 ----A---- C:\Windows\system32\XpsRasterService.dll
2011-09-09 13:11:30 ----A---- C:\Windows\system32\mfps.dll
2011-09-09 13:11:30 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2011-09-09 13:11:30 ----A---- C:\Windows\system32\cdd.dll
2011-09-09 13:11:27 ----A---- C:\Windows\SYSWOW64\webio.dll
2011-09-09 13:11:27 ----A---- C:\Windows\system32\webio.dll
2011-09-09 13:11:26 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2011-09-09 13:11:25 ----A---- C:\Windows\SYSWOW64\iccvid.dll
2011-09-09 13:11:23 ----A---- C:\Windows\system32\drivers\fvevol.sys
2011-09-09 13:11:11 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2011-09-09 13:11:11 ----A---- C:\Windows\system32\dnsapi.dll
2011-09-09 13:11:10 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2011-09-09 13:11:10 ----A---- C:\Windows\system32\dnsrslvr.dll
2011-09-09 13:11:10 ----A---- C:\Windows\system32\dnscacheugc.exe
2011-09-09 13:10:56 ----A---- C:\Windows\system32\wmpmde.dll
2011-09-09 13:10:55 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2011-09-09 13:10:54 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2011-09-09 13:10:54 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2011-09-09 13:10:54 ----A---- C:\Windows\system32\d3d10_1core.dll
2011-09-09 13:10:54 ----A---- C:\Windows\system32\d3d10_1.dll
2011-09-09 13:10:53 ----A---- C:\Windows\system32\drivers\srv.sys
2011-09-09 13:10:52 ----A---- C:\Windows\system32\drivers\srvnet.sys
2011-09-09 13:10:52 ----A---- C:\Windows\system32\drivers\srv2.sys
2011-09-09 13:10:41 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2011-09-09 13:10:41 ----A---- C:\Windows\system32\ntdll.dll
2011-09-09 13:10:36 ----A---- C:\Windows\system32\winload.exe
2011-09-09 13:10:35 ----A---- C:\Windows\system32\winresume.exe
2011-09-09 13:10:35 ----A---- C:\Windows\system32\kdusb.dll
2011-09-09 13:10:35 ----A---- C:\Windows\system32\kdcom.dll
2011-09-09 13:10:35 ----A---- C:\Windows\system32\kd1394.dll
2011-09-09 13:10:33 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2011-09-09 13:10:33 ----A---- C:\Windows\system32\oleaut32.dll
2011-09-09 13:10:31 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2011-09-09 13:10:31 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2011-09-09 13:10:28 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2011-09-09 13:10:28 ----A---- C:\Windows\system32\wow64win.dll
2011-09-09 13:10:28 ----A---- C:\Windows\system32\winsrv.dll
2011-09-09 13:10:28 ----A---- C:\Windows\system32\KernelBase.dll
2011-09-09 13:10:28 ----A---- C:\Windows\system32\kernel32.dll
2011-09-09 13:10:28 ----A---- C:\Windows\system32\conhost.exe
2011-09-09 13:10:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2011-09-09 13:10:27 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2011-09-09 13:10:27 ----A---- C:\Windows\SYSWOW64\wow32.dll
2011-09-09 13:10:27 ----A---- C:\Windows\SYSWOW64\setup16.exe
2011-09-09 13:10:27 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2011-09-09 13:10:27 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2011-09-09 13:10:27 ----A---- C:\Windows\SYSWOW64\instnm.exe
2011-09-09 13:10:27 ----A---- C:\Windows\system32\wow64cpu.dll
2011-09-09 13:10:27 ----A---- C:\Windows\system32\wow64.dll
2011-09-09 13:10:27 ----A---- C:\Windows\system32\ntvdm64.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2011-09-09 13:10:26 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2011-09-09 13:10:26 ----A---- C:\Windows\SYSWOW64\user.exe
2011-09-09 13:10:23 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2011-09-09 13:10:23 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2011-09-09 13:10:23 ----A---- C:\Windows\SYSWOW64\devobj.dll
2011-09-09 13:10:23 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2011-09-09 13:10:23 ----A---- C:\Windows\system32\umpnpmgr.dll
2011-09-09 13:10:21 ----A---- C:\Windows\system32\mstscax.dll
2011-09-09 13:10:20 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2011-09-09 13:10:20 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2011-09-09 13:10:20 ----A---- C:\Windows\system32\mstsc.exe
2011-09-09 13:10:18 ----A---- C:\Windows\system32\win32k.sys
2011-09-09 13:10:15 ----A---- C:\Windows\system32\drivers\tcpip.sys
2011-09-09 13:10:13 ----A---- C:\Windows\system32\wmp.dll
2011-09-09 13:10:12 ----A---- C:\Windows\SYSWOW64\wmp.dll
2011-09-09 13:10:10 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2011-09-09 13:10:10 ----A---- C:\Windows\system32\wmploc.DLL
2011-09-09 13:10:08 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2011-09-09 13:10:08 ----A---- C:\Windows\system32\prevhost.exe
2011-09-09 13:10:07 ----A---- C:\Windows\system32\FXSCOVER.exe
2011-09-09 13:10:06 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2011-09-09 13:10:06 ----A---- C:\Windows\system32\inetcomm.dll
2011-09-09 13:10:04 ----A---- C:\Windows\system32\consent.exe
2011-09-09 13:10:02 ----A---- C:\Windows\system32\drivers\bowser.sys
2011-09-09 13:10:00 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2011-09-09 13:10:00 ----A---- C:\Windows\system32\odbc32.dll
2011-09-09 13:09:49 ----A---- C:\Windows\system32\mshtml.dll
2011-09-09 13:09:48 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2011-09-09 13:09:46 ----A---- C:\Windows\system32\ieframe.dll
2011-09-09 13:09:45 ----A---- C:\Windows\system32\iertutil.dll
2011-09-09 13:09:44 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2011-09-09 13:09:44 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2011-09-09 13:09:43 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2011-09-09 13:09:43 ----A---- C:\Windows\system32\urlmon.dll
2011-09-09 13:09:43 ----A---- C:\Windows\system32\mstime.dll
2011-09-09 13:09:42 ----A---- C:\Windows\SYSWOW64\wininet.dll
2011-09-09 13:09:42 ----A---- C:\Windows\SYSWOW64\mstime.dll
2011-09-09 13:09:42 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2011-09-09 13:09:42 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2011-09-09 13:09:42 ----A---- C:\Windows\system32\wininet.dll
2011-09-09 13:09:42 ----A---- C:\Windows\system32\msfeeds.dll
2011-09-09 13:09:42 ----A---- C:\Windows\system32\iedkcs32.dll
2011-09-09 13:09:41 ----A---- C:\Windows\SYSWOW64\url.dll
2011-09-09 13:09:41 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2011-09-09 13:09:41 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2011-09-09 13:09:41 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2011-09-09 13:09:41 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2011-09-09 13:09:41 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2011-09-09 13:09:41 ----A---- C:\Windows\SYSWOW64\ieui.dll
2011-09-09 13:09:41 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2011-09-09 13:09:41 ----A---- C:\Windows\system32\url.dll
2011-09-09 13:09:41 ----A---- C:\Windows\system32\mshtmled.dll
2011-09-09 13:09:41 ----A---- C:\Windows\system32\msfeedssync.exe
2011-09-09 13:09:41 ----A---- C:\Windows\system32\msfeedsbs.dll
2011-09-09 13:09:41 ----A---- C:\Windows\system32\licmgr10.dll
2011-09-09 13:09:41 ----A---- C:\Windows\system32\jsproxy.dll
2011-09-09 13:09:41 ----A---- C:\Windows\system32\ieui.dll
2011-09-09 13:09:41 ----A---- C:\Windows\system32\iepeers.dll
2011-09-09 13:04:39 ----A---- C:\Windows\SYSWOW64\sscore.dll
2011-09-09 13:04:39 ----A---- C:\Windows\system32\srvsvc.dll
2011-09-09 13:04:27 ----A---- C:\Windows\system32\ntoskrnl.exe
2011-09-09 13:04:26 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2011-09-09 13:04:26 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2011-09-09 12:52:39 ----D---- C:\Windows\system32\Service
2011-09-08 20:00:44 ----D---- C:\Users\Denis\AppData\Roaming\Mozilla
2011-09-08 20:00:34 ----D---- C:\Program Files (x86)\Mozilla Firefox
2011-09-08 19:30:48 ----D---- C:\Users\Denis\AppData\Roaming\Skype
2011-09-08 19:30:42 ----RD---- C:\Program Files (x86)\Skype
2011-09-08 19:30:39 ----D---- C:\ProgramData\Skype
2011-09-08 19:20:11 ----D---- C:\Users\Denis\AppData\Roaming\QIP
2011-09-08 19:19:32 ----D---- C:\Program Files (x86)\QIP 2010
2011-09-08 19:14:35 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2011-09-08 19:14:26 ----A---- C:\Windows\system32\easyupdatusapiu64.dll
2011-09-08 19:14:10 ----D---- C:\ProgramData\NVIDIA Corporation
2011-09-08 19:12:02 ----A---- C:\Windows\system32\nvhdap64.dll
2011-09-08 19:12:02 ----A---- C:\Windows\system32\nvhdagenco642040.dll
2011-09-08 19:12:02 ----A---- C:\Windows\system32\drivers\nvhda64v.sys
2011-09-08 19:11:57 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2011-09-08 19:11:57 ----A---- C:\Windows\system32\OpenCL.dll
2011-09-08 19:11:55 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2011-09-08 19:11:54 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2011-09-08 19:11:54 ----A---- C:\Windows\system32\nvoglv64.dll
2011-09-08 19:11:53 ----A---- C:\Windows\system32\nvgenco64.dll
2011-09-08 19:11:53 ----A---- C:\Windows\system32\nvdispco64.dll
2011-09-08 19:11:53 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2011-09-08 19:11:52 ----A---- C:\Windows\system32\nvd3dumx.dll
2011-09-08 19:11:51 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2011-09-08 19:11:51 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2011-09-08 19:11:51 ----A---- C:\Windows\system32\nvcuvid.dll
2011-09-08 19:11:50 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2011-09-08 19:11:50 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2011-09-08 19:11:50 ----A---- C:\Windows\system32\nvcuvenc.dll
2011-09-08 19:11:50 ----A---- C:\Windows\system32\nvcuda.dll
2011-09-08 19:11:49 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2011-09-08 19:11:48 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2011-09-08 19:11:48 ----A---- C:\Windows\system32\nvcompiler.dll
2011-09-08 19:10:51 ----D---- C:\Program Files\NVIDIA Corporation
2011-09-08 19:09:57 ----D---- C:\NVIDIA
2011-09-08 19:03:28 ----D---- C:\Users\Denis\AppData\Roaming\Macromedia
2011-09-08 18:57:41 ----D---- C:\Users\Denis\AppData\Roaming\Adobe
2011-09-08 18:32:03 ----D---- C:\Users\Denis\AppData\Roaming\Asus WebStorage
2011-09-08 18:24:57 ----D---- C:\Users\Denis\AppData\Roaming\Identities
2011-09-08 18:22:20 ----DC---- C:\Windows\system32\DRVSTORE
2011-09-08 18:22:20 ----A---- C:\Windows\system32\drivers\fssfltr.sys
2011-09-08 18:22:19 ----D---- C:\Program Files\Windows Live
2011-09-08 18:21:24 ----D---- C:\Program Files (x86)\Microsoft Sync Framework
2011-09-08 18:19:51 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2011-09-08 18:19:51 ----A---- C:\Windows\system32\d3dx9_32.dll
2011-09-08 18:19:32 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2011-09-08 18:18:31 ----D---- C:\Program Files (x86)\Microsoft
2011-09-08 18:17:58 ----D---- C:\Program Files (x86)\Windows Live SkyDrive
2011-09-08 18:17:52 ----D---- C:\Program Files (x86)\Windows Live
2011-09-08 18:17:21 ----D---- C:\Windows\PCHEALTH
2011-09-08 18:16:54 ----D---- C:\Windows\system32\log
2011-09-08 18:16:07 ----HD---- C:\ASUS.DAT
2011-09-08 18:15:57 ----SD---- C:\Users\Denis\AppData\Roaming\Microsoft
2011-09-08 18:15:57 ----D---- C:\Users\Denis\AppData\Roaming\Media Center Programs
2011-09-06 11:03:16 ----SHD---- C:\System Volume Information
2011-09-06 11:03:16 ----ASH---- C:\pagefile.sys
2011-09-06 11:03:09 ----ASH---- C:\hiberfil.sys

======List of files/folders modified in the last 1 month======

2011-09-30 19:49:53 ----D---- C:\Windows\Prefetch
2011-09-30 19:49:50 ----D---- C:\Windows\Temp
2011-09-30 19:49:48 ----RD---- C:\Program Files
2011-09-30 19:12:22 ----D---- C:\Windows\system32\Tasks
2011-09-30 14:52:55 ----RSD---- C:\Windows\assembly
2011-09-30 14:52:55 ----D---- C:\Windows\Microsoft.NET
2011-09-30 14:04:44 ----D---- C:\Windows\System32
2011-09-30 14:04:44 ----D---- C:\Windows\inf
2011-09-30 14:04:44 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-09-30 12:19:02 ----D---- C:\Windows\system32\config
2011-09-30 11:55:39 ----D---- C:\ProgramData\NVIDIA
2011-09-30 07:14:25 ----SHD---- C:\Windows\Installer
2011-09-30 07:11:34 ----D---- C:\Windows\winsxs
2011-09-29 15:13:37 ----A---- C:\Windows\system32\ServiceFilter.ini
2011-09-29 15:13:36 ----A---- C:\Windows\system32\AutoRunFilter.ini
2011-09-28 09:21:57 ----D---- C:\Windows\Cursors
2011-09-28 09:16:38 ----D---- C:\Windows\SysWOW64
2011-09-28 09:15:59 ----D---- C:\Program Files (x86)\Common Files
2011-09-28 09:15:53 ----RD---- C:\Program Files (x86)
2011-09-28 09:15:48 ----HD---- C:\ProgramData
2011-09-28 09:11:25 ----D---- C:\Windows\SYSWOW64\en-US
2011-09-28 09:11:24 ----D---- C:\Windows\system32\en-US
2011-09-28 09:10:58 ----D---- C:\Windows
2011-09-25 16:27:19 ----D---- C:\Windows\system32\catroot2
2011-09-25 16:15:33 ----D---- C:\Windows\Logs
2011-09-25 16:15:33 ----D---- C:\Windows\debug
2011-09-25 15:42:41 ----D---- C:\Windows\system32\NDF
2011-09-25 13:27:11 ----SD---- C:\ProgramData\Microsoft
2011-09-25 13:26:36 ----D---- C:\Program Files (x86)\Microsoft Office
2011-09-25 13:26:29 ----D---- C:\Windows\system32\drivers
2011-09-25 13:26:27 ----D---- C:\Windows\system32\catroot
2011-09-25 13:26:26 ----D---- C:\Windows\system32\DriverStore
2011-09-19 21:14:05 ----RSD---- C:\Windows\Fonts
2011-09-19 21:12:25 ----A---- C:\Windows\win.ini
2011-09-19 18:29:09 ----D---- C:\Program Files (x86)\MSBuild
2011-09-19 18:28:45 ----D---- C:\Windows\ShellNew
2011-09-19 18:27:39 ----D---- C:\Program Files\Common Files\Microsoft Shared
2011-09-16 15:53:43 ----SHD---- C:\$Recycle.Bin
2011-09-13 17:57:35 ----D---- C:\Windows\system32\drivers\UMDF
2011-09-13 07:26:57 ----D---- C:\Windows\rescache
2011-09-13 07:20:57 ----D---- C:\Windows\SYSWOW64\winrm
2011-09-13 07:20:57 ----D---- C:\Windows\SYSWOW64\sr-Latn-CS
2011-09-13 07:20:57 ----D---- C:\Windows\SYSWOW64\slmgr
2011-09-13 07:20:57 ----D---- C:\Windows\SYSWOW64\en
2011-09-13 07:20:49 ----D---- C:\Windows\system32\winrm
2011-09-13 07:20:49 ----D---- C:\Windows\system32\sr-Latn-CS
2011-09-13 07:20:49 ----D---- C:\Windows\system32\slmgr
2011-09-13 07:20:49 ----D---- C:\Windows\system32\en
2011-09-13 07:12:18 ----D---- C:\Windows\system32\WCN
2011-09-13 07:12:18 ----D---- C:\Windows\system32\drivers\en-US
2011-09-13 07:12:18 ----D---- C:\Windows\system32\Dism
2011-09-13 07:12:13 ----D---- C:\Windows\system32\wbem
2011-09-13 07:12:13 ----D---- C:\Windows\system32\Printing_Admin_Scripts
2011-09-13 07:10:43 ----D---- C:\Program Files\Windows Sidebar
2011-09-13 07:10:42 ----D---- C:\Windows\SYSWOW64\migwiz
2011-09-13 07:10:42 ----D---- C:\Windows\SYSWOW64\drivers
2011-09-13 07:10:42 ----D---- C:\Windows\servicing
2011-09-13 07:10:42 ----D---- C:\Windows\ehome
2011-09-13 07:10:42 ----D---- C:\Program Files\Windows Photo Viewer
2011-09-13 07:10:42 ----D---- C:\Program Files\Windows Media Player
2011-09-13 07:10:42 ----D---- C:\Program Files\Windows Mail
2011-09-13 07:10:42 ----D---- C:\Program Files\Windows Journal
2011-09-13 07:10:42 ----D---- C:\Program Files\Windows Defender
2011-09-13 07:10:42 ----D---- C:\Program Files\Internet Explorer
2011-09-13 07:10:42 ----D---- C:\Program Files\Common Files\System
2011-09-13 07:10:42 ----D---- C:\Program Files (x86)\Windows Sidebar
2011-09-13 07:10:42 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2011-09-13 07:10:42 ----D---- C:\Program Files (x86)\Windows Media Player
2011-09-13 07:10:42 ----D---- C:\Program Files (x86)\Windows Mail
2011-09-13 07:10:42 ----D---- C:\Program Files (x86)\Windows Defender
2011-09-13 07:10:42 ----D---- C:\Program Files (x86)\Internet Explorer
2011-09-13 07:10:41 ----D---- C:\Windows\SYSWOW64\sl-SI
2011-09-13 07:10:35 ----D---- C:\Windows\SYSWOW64\WCN
2011-09-13 07:10:35 ----D---- C:\Windows\SYSWOW64\wbem
2011-09-13 07:10:35 ----D---- C:\Windows\system32\sysprep
2011-09-13 07:10:35 ----D---- C:\Windows\system32\sl-SI
2011-09-13 07:10:35 ----D---- C:\Windows\system32\oobe
2011-09-13 07:10:35 ----D---- C:\Windows\system32\migwiz
2011-09-13 07:10:35 ----D---- C:\Windows\PolicyDefinitions
2011-09-13 07:09:09 ----D---- C:\Windows\SYSWOW64\sk-SK
2011-09-13 07:09:02 ----D---- C:\Windows\system32\sk-SK
2011-09-13 07:07:31 ----D---- C:\Windows\SYSWOW64\ro-RO
2011-09-13 07:07:24 ----D---- C:\Windows\system32\ro-RO
2011-09-13 07:05:34 ----D---- C:\Windows\SYSWOW64\XPSViewer
2011-09-13 07:05:34 ----D---- C:\Windows\SYSWOW64\pl-PL
2011-09-13 07:05:34 ----D---- C:\Windows\SYSWOW64\MUI
2011-09-13 07:05:34 ----D---- C:\Windows\SYSWOW64\migration
2011-09-13 07:05:34 ----D---- C:\Windows\SYSWOW64\DriverStore
2011-09-13 07:05:34 ----D---- C:\Windows\SYSWOW64\Dism
2011-09-13 07:05:31 ----D---- C:\Windows\SYSWOW64\Printing_Admin_Scripts
2011-09-13 07:05:28 ----D---- C:\Windows\SYSWOW64\com
2011-09-13 07:05:28 ----D---- C:\Windows\system32\migration
2011-09-13 07:05:28 ----D---- C:\Windows\system32\Boot
2011-09-13 07:05:28 ----D---- C:\Windows\IME
2011-09-13 07:05:27 ----D---- C:\Windows\system32\MUI
2011-09-13 07:05:26 ----D---- C:\Windows\system32\pl-PL
2011-09-13 07:05:17 ----D---- C:\Windows\system32\com
2011-09-13 07:05:17 ----D---- C:\Windows\AppPatch
2011-09-13 07:03:03 ----D---- C:\Windows\SYSWOW64\hu-HU
2011-09-13 07:02:54 ----D---- C:\Windows\system32\hu-HU
2011-09-13 07:00:54 ----D---- C:\Windows\SYSWOW64\lv-LV
2011-09-13 07:00:47 ----D---- C:\Windows\system32\lv-LV
2011-09-13 06:58:44 ----D---- C:\Windows\SYSWOW64\lt-LT
2011-09-13 06:58:41 ----D---- C:\Windows\system32\lt-LT
2011-09-13 06:56:40 ----D---- C:\Windows\SYSWOW64\hr-HR
2011-09-13 06:56:37 ----D---- C:\Windows\system32\hr-HR
2011-09-13 06:54:31 ----D---- C:\Windows\SYSWOW64\et-EE
2011-09-13 06:54:28 ----D---- C:\Windows\system32\et-EE
2011-09-13 06:52:14 ----D---- C:\Windows\SYSWOW64\bg-BG
2011-09-13 06:52:06 ----D---- C:\Windows\system32\bg-BG
2011-09-13 06:48:47 ----D---- C:\Windows\SYSWOW64\drivers\en-US
2011-09-13 06:48:47 ----D---- C:\Program Files\DVD Maker
2011-09-13 06:48:38 ----D---- C:\Windows\en-US
2011-09-11 15:50:20 ----D---- C:\Windows\SYSWOW64\cs-CZ
2011-09-11 15:50:19 ----D---- C:\Windows\system32\cs-CZ
2011-09-10 12:23:48 ----D---- C:\Windows\Help
2011-09-10 10:48:50 ----D---- C:\ProgramData\Partner
2011-09-10 10:48:50 ----D---- C:\Program Files\Google
2011-09-10 10:48:50 ----D---- C:\Program Files (x86)\Google
2011-09-10 09:55:36 ----D---- C:\Windows\system32\drivers\etc
2011-09-10 09:55:36 ----D---- C:\Program Files (x86)\ASUS
2011-09-10 05:03:10 ----D---- C:\Windows\system32\wdi
2011-09-09 20:50:10 ----D---- C:\Windows\SoftwareDistribution
2011-09-09 19:51:09 ----A---- C:\Windows\system32\Defrag.ini
2011-09-09 12:51:40 ----RD---- C:\Users
2011-09-08 19:16:01 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2011-09-08 18:14:18 ----SHD---- C:\Recovery

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 nvstor64;nvstor64; C:\Windows\system32\DRIVERS\nvstor64.sys [2010-04-27 244328]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-09-17 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2011-09-13 503352]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2011-09-13 270912]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2010-12-21 141264]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-03 15416]
R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2010-12-21 170640]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2010-12-21 125296]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-10-05 1542656]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2009-10-15 117760]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2009-12-22 2229280]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2011-05-10 174184]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2009-06-28 28704]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-06-10 539240]
R3 SPUVCbv;SPUVCb Driver Service; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [2010-01-31 2495944]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv; \??\C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys [2010-10-07 11856]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 AmUStor;AM USB Stroage Driver; C:\Windows\system32\drivers\AmUStor.SYS [2009-08-21 44032]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2008-12-08 61792]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver; C:\Windows\system32\DRIVERS\SiSG664.sys [2009-06-10 56832]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2008-05-24 154168]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 40448]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2009-09-17 359552]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-16 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-11-10 96896]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [2011-01-12 810144]
R2 NAUpdate;@C:\Program Files (x86)\Nero\Update\NASvc.exe,-200; C:\Program Files (x86)\Nero\Update\NASvc.exe [2011-03-29 598312]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2011-08-03 980072]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-08-03 2255464]
R2 SeaPort;SeaPort; C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2008-12-04 226640]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-08-03 379496]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service; C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe [2011-09-01 2027840]
R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-09-17 135664]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2011-01-12 42360]
S3 fsssvc;Windows Live Zabezpečení rodiny; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2008-12-08 533344]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-09-17 135664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-09-09 1255736]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119405
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: nový NB a už bluescreen

#8 Příspěvek od Rudy »

Na virus to nevypadá. Na vašem místě bych reklamoval.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

fastcivic
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 29 led 2006 13:42

Re: nový NB a už bluescreen

#9 Příspěvek od fastcivic »

:( a nemuze to delat nejaky spatny ovladac nebo windows?

Uživatelský avatar
Pavuk29
VIP in memoriam
VIP in memoriam
Příspěvky: 6953
Registrován: 31 říj 2003 08:26
Bydliště: Banská Bystrica
Kontaktovat uživatele:

Re: nový NB a už bluescreen

#10 Příspěvek od Pavuk29 »

fastcivic píše::( a nemuze to delat nejaky spatny ovladac nebo windows?
Akoze spatny Windows? To neovplyvnite.
Riadil by som sa tym, co napisal Rudy...
------------------------------------------------------------------------------------------------------------------------------
:!: PLS NEPISTE MI SZ, NA ICQ A MAILY S OTAZKAMI, PISTE DO FORA :!: :spam:
------------------------------------------------------------------------------------------------------------------------------
V pripadne akutnych problemov s chodom fora, :207: pripadne s inymi uzivatelmi, :whip: kontaktujte ma na ICQ alebo mailom :31: na pavuk29 zavinac forum.viry.cz. Byvam pri pocitaci casto aj ked nie som online na fore.
http://www.icq.com/people/267560078/
:183: hotline: http://forum.viry.cz/viewtopic.php?f=12&t=116821
:!: pravidla fora: http://forum.viry.cz/viewtopic.php?f=12&t=5601

fastcivic
Návštěvník
Návštěvník
Příspěvky: 6
Registrován: 29 led 2006 13:42

Re: nový NB a už bluescreen

#11 Příspěvek od fastcivic »

ok, no radost z toho nemam
kazdopadne dekuju za cas a ochotu :thumbsup:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119405
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: nový NB a už bluescreen

#12 Příspěvek od Rudy »

Reinstal ovaldačů samozřejmě můžete provést, ale osobně si od toho moc neslibuji. Nemáte zač!
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět