Vysoka CPU Usage.
Napsal: 04 bře 2012 15:25
Zdravím už dosť často ma trápi vysoká CPU usage. či pozerám videa,net, alebo hrám menej náročnejšie hry moja CPU usage sa pohybuje okolo 90% čo je dosť vela.
Pc specifikacie : Intel Pentium D dual-core 2,6Ghz
2,5 Gb Ram
Ati Radeon x1550 512Mb
Windows xp sp2
Log :
Logfile of random's system information tool 1.09 (written by random/random)
Run by Administrator at 2012-03-04 15:12:21
Microsoft Windows XP Professional Service Pack 2
System drive D: has 9 GB (23%) free of 40 GB
Total RAM: 2559 MB (62% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:12:25, on 4.3.2012
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\Ati2evxx.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\system32\Ati2evxx.exe
D:\WINDOWS\Explorer.EXE
D:\Program Files\Intel\PROSetWired\NCS\PROSet\PRONoMgr.exe
D:\WINDOWS\SOUNDMAN.EXE
D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
D:\Program Files\Common Files\Java\Java Update\jusched.exe
D:\Documents and Settings\All Users\Application Data\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe
D:\Program Files\iTunes\iTunesHelper.exe
D:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe
D:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\LinkAir.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
D:\Program Files\Pando Networks\Media Booster\PMB.exe
D:\Program Files\Steam\Steam.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Documents and Settings\Administrator\Local Settings\Application Data\Akamai\netsession_win.exe
D:\Program Files\Skype\Phone\Skype.exe
D:\WINDOWS\System32\svchost.exe
D:\Documents and Settings\Administrator\Local Settings\Application Data\Akamai\netsession_win.exe
D:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
D:\Program Files\Application Updater\ApplicationUpdater.exe
D:\Program Files\Bonjour\mDNSResponder.exe
D:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe
D:\Program Files\Java\jre6\bin\jqs.exe
D:\WINDOWS\system32\PnkBstrA.exe
D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
D:\Program Files\Google\Update\GoogleUpdate.exe
D:\Program Files\Xfire\Xfire.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\iPod\bin\iPodService.exe
D:\WINDOWS\system32\wscntfy.exe
D:\Program Files\Opera\opera.exe
D:\WINDOWS\system32\taskmgr.exe
D:\Program Files\Java\jre6\bin\java.exe
D:\Documents and Settings\Administrator\Desktop\RSIT.exe
D:\Program Files\trend micro\Administrator.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.facemoods.com/?a=down
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bigseekpro.com/hypercam/{0C2 ... EE3E97E98B}
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: Dealio Toolbar - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - D:\Program Files\Dealio Toolbar\IE\5.0\dealioToolbarIE.dll
O2 - BHO: Dealio Toolbar - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - D:\Program Files\Dealio Toolbar\IE\5.0\dealioToolbarIE.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: LinkAirBrowserHelper HistoryTriggerBHO - {21A88CB9-84D2-4020-A2D1-B25A21034884} - D:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\LinkAirBrowserHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: SMTTB2009 - {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - D:\Program Files\Hyperionics DB Toolbar\tbcore3.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - D:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: Dealio Toolbar - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - D:\Program Files\Dealio Toolbar\IE\5.0\dealioToolbarIE.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [GrooveMonitor] "D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [StartCCC] "D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "D:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [B2C_AGENT] D:\Documents and Settings\All Users\Application Data\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe
O4 - HKLM\..\Run: [APSDaemon] "D:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [SearchSettings] "D:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [ctfmon.exe] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Skype] "D:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - Global Startup: Adobe Reader Speed Launch.lnk = D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: SATARAID5.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube Download - D:\Documents and Settings\Administrator\Application Data\DVDVideoSoftIEHelpers\freeyoutubedownload.htm
O8 - Extra context menu item: Free YouTube to MP3 Converter - D:\Documents and Settings\Administrator\Application Data\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
O8 - Extra context menu item: LG Air Sync (R-Click) - Save as Mobile Image - res://D:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\IEContextMenu.dll/206
O8 - Extra context menu item: LG Air Sync (R-Click) - Save as Mobile Memo - res://D:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\IEContextMenu.dll/208
O8 - Extra context menu item: LG Air Sync (R-Click) - Save as Mobile Text file - res://D:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\IEContextMenu.dll/210
O8 - Extra context menu item: LG Air Sync (R-Click) - Set as Mobile Wallpaper - res://D:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\IEContextMenu.dll/205
O8 - Extra context menu item: LG Air Sync Option - res://D:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\IEContextMenu.dll/209
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - D:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - D:\WINDOWS\System32\browseui.dll
O23 - Service: Apple Mobile Device - Apple Inc. - D:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Application Updater - Spigot, Inc. - D:\Program Files\Application Updater\ApplicationUpdater.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - D:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - D:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Bonjour Service - Apple Inc. - D:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - D:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - D:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - D:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - D:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - D:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - D:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: PnkBstrA - Unknown owner - D:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - D:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Steam Client Service - Valve Corporation - D:\Program Files\Common Files\Steam\SteamService.exe
--
End of file - 10167 bytes
======Scheduled tasks folder======
D:\WINDOWS\tasks\AppleSoftwareUpdate.job
D:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
D:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
=========Mozilla firefox=========
ProfilePath - D:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\gc8f186z.default
prefs.js - "extensions.enabledItems" - "wtxpcom@mybrowserbar.com:5.0, dealio@mybrowserbar.com:5.0, {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}:5.9.0.9216"
prefs.js - "keyword.URL" - "http://search.yahoo.com/search?ei=utf-8 ... &ilc=12&p="
"{20a82645-c095-46ed-80e3-08825760534b}"=D:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"webcomponent@globalenglish.com"=D:\Program Files\GlobalEnglish\Firefox\Version3\webcomponent@globalenglish.com
"jqs@sun.com"=D:\Program Files\Java\jre6\lib\deploy\jqs\ff
"{00ADD29A-66F4-4f22-BCC0-4C1D29DA647B}"=D:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\{00ADD29A-66F4-4f22-BCC0-4C1D29DA647B}\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=D:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=D:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0]
"Description"=DivX Web Player
"Path"=D:\Program Files\DivX\DivX Web Player\npdivx32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=D:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=D:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nexon.net/NxGame]
"Description"=Nexon Game Controller
"Path"=D:\Documents and Settings\All Users\Application Data\NexonUS\NGM\npNxGameUS.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=D:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=D:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=D:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@viewpoint.com/VMP]
"Description"=Viewpoint Media Player for Mozilla
"Path"=D:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll
D:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
D:\Program Files\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js
D:\Program Files\Mozilla Firefox\plugins\
libdivx.dll
np-mswmp.dll
npdeployJava1.dll
npdivx32.dll
npdivx32.xpt
npnul32.dll
ssldivx.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt
D:\Program Files\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
dunaj-sk.xml
eBay.xml
fcmdSrch.xml
google.xml
slovnik-sk.xml
wikipedia-sk.xml
yahoo.xml
zoznam-sk.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}]
Dealio Toolbar - D:\Program Files\Dealio Toolbar\IE\5.0\dealioToolbarIE.dll [2012-02-06 1074016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14 63136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{21A88CB9-84D2-4020-A2D1-B25A21034884}]
HistoryTriggerBHO Class - D:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\LinkAirBrowserHelper.dll [2010-09-16 35688]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-26 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - D:\Program Files\Java\jre6\bin\ssv.dll [2011-11-10 325408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2012-01-17 3855520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - D:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-11-10 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-11-10 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}]
SMTTB2009 Class - D:\Program Files\Hyperionics DB Toolbar\tbcore3.dll [2011-06-22 2398720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - D:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2011-04-21 1000768]
{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - Dealio Toolbar - D:\Program Files\Dealio Toolbar\IE\5.0\dealioToolbarIE.dll [2012-02-06 1074016]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=D:\WINDOWS\SOUNDMAN.EXE [2005-06-14 77824]
"GrooveMonitor"=D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-26 31016]
"StartCCC"=D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-02-10 61440]
"SunJavaUpdateSched"=D:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-06-09 254696]
"B2C_AGENT"=D:\Documents and Settings\All Users\Application Data\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe [2011-09-28 404568]
"APSDaemon"=D:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2011-11-01 59240]
""= []
"SearchSettings"=D:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe [2012-02-06 934240]
"KernelFaultCheck"=D:\WINDOWS\system32\dumprep 0 -k []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-07-24 490952]
"ctfmon.exe"=D:\WINDOWS\system32\ctfmon.exe [2004-08-04 15360]
"Skype"=D:\Program Files\Skype\Phone\Skype.exe [2012-02-15 17146504]
D:\Documents and Settings\All Users\Start Menu\Programs\Startup
Adobe Reader Speed Launch.lnk - D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
SATARAID5.lnk - D:\Program Files\Silicon Image\3132 SATARAID5\sam.jar
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
D:\WINDOWS\system32\Ati2evxx.dll [2010-02-11 155648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-26 2210608]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=
scecli
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\Program Files\Opera\opera.exe"="D:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"D:\Program Files\VideoLAN\VLC\vlc.exe"="D:\Program Files\VideoLAN\VLC\vlc.exe:*:Enabled:VLC media player"
"D:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="D:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"D:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="D:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"D:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="D:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"D:\Program Files\Counter-Strike 1.6 & Half-Life\hl.exe"="D:\Program Files\Counter-Strike 1.6 & Half-Life\hl.exe:*:Enabled:Half-Life Launcher"
"D:\WINDOWS\system32\PnkBstrA.exe"="D:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"D:\WINDOWS\system32\PnkBstrB.exe"="D:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"D:\Program Files\Pando Networks\Media Booster\PMB.exe"="D:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"D:\Documents and Settings\All Users\Application Data\NexonUS\NGM\NGM.exe"="D:\Documents and Settings\All Users\Application Data\NexonUS\NGM\NGM.exe:*:Enabled:Nexon Game Manager"
"D:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe"="D:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe:*:Enabled:NEXON_EU_Downloader_Engine"
"D:\Program Files\Steam\Steam.exe"="D:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
"D:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe"="D:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe:*:Enabled:WebKit"
"D:\Program Files\Bonjour\mDNSResponder.exe"="D:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour Service"
"D:\Program Files\iTunes\iTunes.exe"="D:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"D:\Documents and Settings\Administrator\Local Settings\Application Data\Akamai\netsession_win.exe"="D:\Documents and Settings\Administrator\Local Settings\Application Data\Akamai\netsession_win.exe:*:Enabled:Akamai NetSession Interface"
"D:\Program Files\Skype\Phone\Skype.exe"="D:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"D:\Program Files\Pinnacle\VideoSpin\Programs\RM.exe"="D:\Program Files\Pinnacle\VideoSpin\Programs\RM.exe:*:Enabled:Render Manager"
"D:\Program Files\Pinnacle\VideoSpin\Programs\umi.exe"="D:\Program Files\Pinnacle\VideoSpin\Programs\umi.exe:*:Enabled:umi"
"D:\Program Files\Pinnacle\VideoSpin\Programs\VideoSpin.exe"="D:\Program Files\Pinnacle\VideoSpin\Programs\VideoSpin.exe:*:Enabled:Pinnacle VideoSpin"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\Program Files\Pando Networks\Media Booster\PMB.exe"="D:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"midi"=wdmaud.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.l3acm"=D:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer"=wdmaud.drv
"VIDC.FPS1"=frapsvid.dll
"msacm.vorbis"=vorbis.acm
"VIDC.XFR1"=xfcodec.dll
======List of files/folders created in the last 1 month======
2012-03-03 23:27:21 ----D---- D:\Documents and Settings\Administrator\Application Data\avidemux
2012-03-03 22:59:18 ----D---- D:\Program Files\Pinnacle
2012-03-03 22:58:33 ----D---- D:\Documents and Settings\All Users\Application Data\Pinnacle
2012-02-29 20:21:24 ----A---- D:\WINDOWS\system32\xfcodec.dll
2012-02-28 14:57:20 ----A---- D:\WINDOWS\system32\npptNT2.sys
2012-02-28 14:46:12 ----D---- D:\Documents and Settings\Administrator\Application Data\InstallShield
2012-02-27 17:41:34 ----D---- D:\Program Files\Common Files\Skype
2012-02-25 13:24:51 ----D---- D:\Program Files\Vistumbler
2012-02-22 11:09:15 ----D---- D:\WINDOWS\Prefetch
2012-02-22 10:38:09 ----D---- D:\WINDOWS\system32\scripting
2012-02-22 10:38:08 ----D---- D:\WINDOWS\system32\en
2012-02-22 10:38:08 ----D---- D:\WINDOWS\system32\bits
2012-02-22 10:38:08 ----D---- D:\WINDOWS\l2schemas
2012-02-22 10:34:02 ----D---- D:\WINDOWS\network diagnostic
2012-02-22 10:33:02 ----A---- D:\WINDOWS\005725_.tmp
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\wmvdmoe2.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\wmspdmoe.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\wmspdmod.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\wmsdmoe2.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\wmpdxm.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\wmpasf.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\wmp.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\wmidx.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\wmerror.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\msxml6r.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\msxml6.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\mspmsnsv.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\mp4sdmod.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\mp43dmod.dll
2012-02-22 10:32:32 ----A---- D:\WINDOWS\system32\wmphoto.dll
2012-02-22 10:32:32 ----A---- D:\WINDOWS\system32\windowscodecsext.dll
2012-02-22 10:32:32 ----A---- D:\WINDOWS\system32\windowscodecs.dll
2012-02-22 10:32:32 ----A---- D:\WINDOWS\system32\photometadatahandler.dll
2012-02-22 10:32:32 ----A---- D:\WINDOWS\system32\mstscax.dll
2012-02-22 10:32:32 ----A---- D:\WINDOWS\system32\mstsc.exe
2012-02-22 10:32:31 ----A---- D:\WINDOWS\system32\smtpapi.dll
2012-02-22 10:32:31 ----A---- D:\WINDOWS\system32\comsdupd.exe
2012-02-22 10:32:30 ----A---- D:\WINDOWS\system32\spiisupd.exe
2012-02-22 10:32:30 ----A---- D:\WINDOWS\system32\rwnh.dll
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\slserv.exe
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\slcoinst.dll
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\secedit.exe
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\p2pgasvc.dll
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\kbdukx.dll
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\ir41_qc.dll
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\extmgr.dll
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\encdec.dll
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\dxdiagn.dll
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\dsprpres.dll
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\drivers\irbus.sys
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\asr_pfu.exe
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\wups.dll
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\wscntfy.exe
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\w3ssl.dll
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\pnrpnsp.dll
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\p2psvc.dll
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\nv4_disp.dll
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\msftedit.dll
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\kbdsmsno.dll
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\kbdfi1.dll
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\fltlib.dll
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\bitsprx2.dll
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\ati2dvaa.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\wuaueng1.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\wuauclt1.exe
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\wuauclt.exe
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\wshbth.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\spupdwxp.exe
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\smbinst.exe
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\slrundll.exe
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\slgen.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\sbeio.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\sbe.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\s3gnb.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\p2pgraph.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\msdadiag.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\kbdmlt47.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\ir50_qcx.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\ir50_32.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\ir41_qcx.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\ieencode.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\httpapi.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\hccoin.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\slrundll.exe
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\xmlprovi.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\xmlprov.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\winbrand.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\twext.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\spnpinst.exe
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\p2pnetsh.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\mtxparhd.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\mssap.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\kbdinmal.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\kbdinbe1.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\iuengine.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\fwcfg.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\d3d9.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\cmsetacl.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\ati3d1ag.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\xpsp1res.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\wuweb.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\wuaueng.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\wuapi.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\wscsvc.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\winshfhc.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\winhttp.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\slextspk.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\powercfg.exe
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\p2p.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\mdmxsdk.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\kbdsmsfi.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\kbdmlt48.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\ir50_qc.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\fsquirt.exe
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\fltmc.exe
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\faxpatch.exe
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\encapi.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\cdm.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\btpanui.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\bthserv.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\bthci.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\bitsprx3.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\auditusr.exe
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\ativtmxx.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\xpsp2res.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\xpob2res.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\wucltui.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\wuauserv.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\strmfilt.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\sdhcinst.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\qmgr.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\kbdno1.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\kbdmaori.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\kbdinben.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\hsfcisp2.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\wacompen.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\viaagp.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\vchnt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\usbvideo.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\usbehci.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\usb8023x.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\uagp35.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\tunmp.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\smbali.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\sisagp.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\siint5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\sffp_sd.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\sffdisk.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\sdbus.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\rndismpx.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\rfcomm.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\mutohpen.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\mssmbios.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\ip6fw.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\intelppm.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\ch7xxnt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\http.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\hidir.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\hidbth.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\gagp30kx.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\fltmgr.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\bthusb.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\bthprint.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\bthport.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\bthpan.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\bthmodem.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\bthenum.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\atv10nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\atv06nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\atv04nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\atv02nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\atv01nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\amdk7.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\amdagp.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\alim1541.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\agpcpq.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\agp440.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\adv11nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\adv09nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\adv08nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\adv07nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\adv05nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\adv02nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\adv01nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\blastcln.exe
2012-02-22 10:32:21 ----A---- D:\WINDOWS\system32\pidgen.dll
2012-02-22 10:32:21 ----A---- D:\WINDOWS\system32\dpcdll.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\wsecedit.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\tracerpt.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\tlntsvrp.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\tlntsvr.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\tlntsess.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\tlntadmn.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\tasklist.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\taskkill.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\systeminfo.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\schtasks.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\rsnotify.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\proxycfg.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\openfiles.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\nwwks.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\nwapi32.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\ntbackup.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqutil.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqupgrd.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqtrig.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqtgsvc.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqsvc.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqsnap.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqsec.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqrtdep.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqrt.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqqm.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqoa.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqlogmgr.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqise.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqdscli.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqbkup.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqad.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\logman.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\gptext.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\gpresult.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\gpedit.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\getmac.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\fdeploy.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\fde.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\eventtriggers.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\eventcreate.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\efsadu.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\drivers\nwrdr.sys
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\drivers\mqac.sys
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\driverquery.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\cipher.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\bootcfg.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\asr_fmt.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\appmgr.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\appmgmts.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\adsnw.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\winhlp32.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\twain_32.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\browser.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\browselc.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\blackbox.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\bidispl.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\batt.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\batmeter.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\basesrv.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\avifil32.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\autolfn.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\autofmt.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\authz.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\audiosrv.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\attrib.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\atmlib.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\atmfd.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\atmadm.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\atl.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\at.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\asycfilt.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\asferror.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\apphelp.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\amstream.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\alrsvc.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\alg.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\ahui.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\advpack.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\adsnt.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\adsmsext.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\adsldpc.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\adsldp.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\admparse.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\actxprxy.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\actmovie.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\activeds.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\aclui.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\accwiz.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\6to4svc.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\regedit.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\hh.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\explorer.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\dbnmpntw.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\dbnetlib.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\dbmsrpcn.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\dbghelp.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\davclnt.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\datime.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\dataclen.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\danim.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\d3dim700.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\d3d8thk.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\d3d8.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\ctfmon.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\csrss.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cscui.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cscript.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cscdll.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cryptui.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cryptsvc.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cryptnet.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cryptext.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cryptdll.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cryptdlg.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\crypt32.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\credui.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\corpol.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\conime.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\confmsp.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\comuid.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\comsvcs.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\comsnap.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\comres.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\comrepl.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\compstui.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\compatui.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\comaddin.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\colbact.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cnbjmon.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cmutil.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cmstp.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cmprops.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cmmon32.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cmdl32.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cmdial32.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cmcfg32.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\clusapi.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\clipsrv.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\clipbrd.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cliconfg.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cliconfg.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cleanmgr.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\clbcatq.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\clbcatex.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cisvc.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\ciodm.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cic.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cfgmgr32.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cfgbkend.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cewmdm.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\certmgr.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\certcli.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cdosys.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cdfview.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\catsrvut.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\catsrvps.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\catsrv.dll
Pc specifikacie : Intel Pentium D dual-core 2,6Ghz
2,5 Gb Ram
Ati Radeon x1550 512Mb
Windows xp sp2
Log :
Logfile of random's system information tool 1.09 (written by random/random)
Run by Administrator at 2012-03-04 15:12:21
Microsoft Windows XP Professional Service Pack 2
System drive D: has 9 GB (23%) free of 40 GB
Total RAM: 2559 MB (62% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:12:25, on 4.3.2012
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\Ati2evxx.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\system32\Ati2evxx.exe
D:\WINDOWS\Explorer.EXE
D:\Program Files\Intel\PROSetWired\NCS\PROSet\PRONoMgr.exe
D:\WINDOWS\SOUNDMAN.EXE
D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
D:\Program Files\Common Files\Java\Java Update\jusched.exe
D:\Documents and Settings\All Users\Application Data\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe
D:\Program Files\iTunes\iTunesHelper.exe
D:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe
D:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\LinkAir.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
D:\Program Files\Pando Networks\Media Booster\PMB.exe
D:\Program Files\Steam\Steam.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Documents and Settings\Administrator\Local Settings\Application Data\Akamai\netsession_win.exe
D:\Program Files\Skype\Phone\Skype.exe
D:\WINDOWS\System32\svchost.exe
D:\Documents and Settings\Administrator\Local Settings\Application Data\Akamai\netsession_win.exe
D:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
D:\Program Files\Application Updater\ApplicationUpdater.exe
D:\Program Files\Bonjour\mDNSResponder.exe
D:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe
D:\Program Files\Java\jre6\bin\jqs.exe
D:\WINDOWS\system32\PnkBstrA.exe
D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
D:\Program Files\Google\Update\GoogleUpdate.exe
D:\Program Files\Xfire\Xfire.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\iPod\bin\iPodService.exe
D:\WINDOWS\system32\wscntfy.exe
D:\Program Files\Opera\opera.exe
D:\WINDOWS\system32\taskmgr.exe
D:\Program Files\Java\jre6\bin\java.exe
D:\Documents and Settings\Administrator\Desktop\RSIT.exe
D:\Program Files\trend micro\Administrator.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.facemoods.com/?a=down
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bigseekpro.com/hypercam/{0C2 ... EE3E97E98B}
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: Dealio Toolbar - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - D:\Program Files\Dealio Toolbar\IE\5.0\dealioToolbarIE.dll
O2 - BHO: Dealio Toolbar - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - D:\Program Files\Dealio Toolbar\IE\5.0\dealioToolbarIE.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: LinkAirBrowserHelper HistoryTriggerBHO - {21A88CB9-84D2-4020-A2D1-B25A21034884} - D:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\LinkAirBrowserHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: SMTTB2009 - {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - D:\Program Files\Hyperionics DB Toolbar\tbcore3.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - D:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: Dealio Toolbar - {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - D:\Program Files\Dealio Toolbar\IE\5.0\dealioToolbarIE.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [GrooveMonitor] "D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [StartCCC] "D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "D:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [B2C_AGENT] D:\Documents and Settings\All Users\Application Data\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe
O4 - HKLM\..\Run: [APSDaemon] "D:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [SearchSettings] "D:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [ctfmon.exe] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Skype] "D:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - Global Startup: Adobe Reader Speed Launch.lnk = D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: SATARAID5.lnk = ?
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Free YouTube Download - D:\Documents and Settings\Administrator\Application Data\DVDVideoSoftIEHelpers\freeyoutubedownload.htm
O8 - Extra context menu item: Free YouTube to MP3 Converter - D:\Documents and Settings\Administrator\Application Data\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
O8 - Extra context menu item: LG Air Sync (R-Click) - Save as Mobile Image - res://D:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\IEContextMenu.dll/206
O8 - Extra context menu item: LG Air Sync (R-Click) - Save as Mobile Memo - res://D:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\IEContextMenu.dll/208
O8 - Extra context menu item: LG Air Sync (R-Click) - Save as Mobile Text file - res://D:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\IEContextMenu.dll/210
O8 - Extra context menu item: LG Air Sync (R-Click) - Set as Mobile Wallpaper - res://D:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\IEContextMenu.dll/205
O8 - Extra context menu item: LG Air Sync Option - res://D:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\IEContextMenu.dll/209
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - D:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - D:\WINDOWS\System32\browseui.dll
O23 - Service: Apple Mobile Device - Apple Inc. - D:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Application Updater - Spigot, Inc. - D:\Program Files\Application Updater\ApplicationUpdater.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - D:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - D:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Bonjour Service - Apple Inc. - D:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - D:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - D:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - D:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - D:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - D:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - D:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: PnkBstrA - Unknown owner - D:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - D:\Program Files\Skype\Updater\Updater.exe
O23 - Service: Steam Client Service - Valve Corporation - D:\Program Files\Common Files\Steam\SteamService.exe
--
End of file - 10167 bytes
======Scheduled tasks folder======
D:\WINDOWS\tasks\AppleSoftwareUpdate.job
D:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
D:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
=========Mozilla firefox=========
ProfilePath - D:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\gc8f186z.default
prefs.js - "extensions.enabledItems" - "wtxpcom@mybrowserbar.com:5.0, dealio@mybrowserbar.com:5.0, {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}:5.9.0.9216"
prefs.js - "keyword.URL" - "http://search.yahoo.com/search?ei=utf-8 ... &ilc=12&p="
"{20a82645-c095-46ed-80e3-08825760534b}"=D:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"webcomponent@globalenglish.com"=D:\Program Files\GlobalEnglish\Firefox\Version3\webcomponent@globalenglish.com
"jqs@sun.com"=D:\Program Files\Java\jre6\lib\deploy\jqs\ff
"{00ADD29A-66F4-4f22-BCC0-4C1D29DA647B}"=D:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\{00ADD29A-66F4-4f22-BCC0-4C1D29DA647B}\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=D:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=D:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0]
"Description"=DivX Web Player
"Path"=D:\Program Files\DivX\DivX Web Player\npdivx32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=D:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=D:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nexon.net/NxGame]
"Description"=Nexon Game Controller
"Path"=D:\Documents and Settings\All Users\Application Data\NexonUS\NGM\npNxGameUS.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=D:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=D:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=D:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@viewpoint.com/VMP]
"Description"=Viewpoint Media Player for Mozilla
"Path"=D:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll
D:\Program Files\Mozilla Firefox\extensions\
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
D:\Program Files\Mozilla Firefox\components\
browser.xpt
browserdirprovider.dll
brwsrcmp.dll
components.list
FeedConverter.js
FeedProcessor.js
FeedWriter.js
fuelApplication.js
GPSDGeolocationProvider.js
jsconsole-clhandler.js
NetworkGeolocationProvider.js
nsAddonRepository.js
nsBadCertHandler.js
nsBlocklistService.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsContentDispatchChooser.js
nsContentPrefService.js
nsDefaultCLH.js
nsDownloadManagerUI.js
nsExtensionManager.js
nsFormAutoComplete.js
nsHandlerService.js
nsHelperAppDlg.js
nsINIProcessor.js
nsLivemarkService.js
nsLoginInfo.js
nsLoginManager.js
nsLoginManagerPrompter.js
nsMicrosummaryService.js
nsPlacesAutoComplete.js
nsPlacesDBFlush.js
nsPlacesTransactionsService.js
nsPrivateBrowsingService.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsTaggingService.js
nsTryToClose.js
nsUpdateService.js
nsUpdateServiceStub.js
nsUpdateTimerManager.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsURLFormatter.js
nsWebHandlerApp.js
pluginGlue.js
storage-Legacy.js
storage-mozStorage.js
txEXSLTRegExFunctions.js
WebContentConverter.js
D:\Program Files\Mozilla Firefox\plugins\
libdivx.dll
np-mswmp.dll
npdeployJava1.dll
npdivx32.dll
npdivx32.xpt
npnul32.dll
ssldivx.dll
WMP Firefox Plugin License.rtf
WMP Firefox Plugin RelNotes.txt
D:\Program Files\Mozilla Firefox\searchplugins\
atlas-sk.xml
azet-sk.xml
dunaj-sk.xml
eBay.xml
fcmdSrch.xml
google.xml
slovnik-sk.xml
wikipedia-sk.xml
yahoo.xml
zoznam-sk.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C}]
Dealio Toolbar - D:\Program Files\Dealio Toolbar\IE\5.0\dealioToolbarIE.dll [2012-02-06 1074016]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14 63136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{21A88CB9-84D2-4020-A2D1-B25A21034884}]
HistoryTriggerBHO Class - D:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\LinkAirBrowserHelper.dll [2010-09-16 35688]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-26 2210608]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - D:\Program Files\Java\jre6\bin\ssv.dll [2011-11-10 325408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2012-01-17 3855520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - D:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-11-10 42272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-11-10 79648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCBCCB87-9224-4B8D-B117-F56D924BEB18}]
SMTTB2009 Class - D:\Program Files\Hyperionics DB Toolbar\tbcore3.dll [2011-06-22 2398720]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - D:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2011-04-21 1000768]
{01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - Dealio Toolbar - D:\Program Files\Dealio Toolbar\IE\5.0\dealioToolbarIE.dll [2012-02-06 1074016]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=D:\WINDOWS\SOUNDMAN.EXE [2005-06-14 77824]
"GrooveMonitor"=D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-26 31016]
"StartCCC"=D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-02-10 61440]
"SunJavaUpdateSched"=D:\Program Files\Common Files\Java\Java Update\jusched.exe [2011-06-09 254696]
"B2C_AGENT"=D:\Documents and Settings\All Users\Application Data\LGMOBILEAX\B2C_Client\B2CNotiAgent.exe [2011-09-28 404568]
"APSDaemon"=D:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2011-11-01 59240]
""= []
"SearchSettings"=D:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe [2012-02-06 934240]
"KernelFaultCheck"=D:\WINDOWS\system32\dumprep 0 -k []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-07-24 490952]
"ctfmon.exe"=D:\WINDOWS\system32\ctfmon.exe [2004-08-04 15360]
"Skype"=D:\Program Files\Skype\Phone\Skype.exe [2012-02-15 17146504]
D:\Documents and Settings\All Users\Start Menu\Programs\Startup
Adobe Reader Speed Launch.lnk - D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
SATARAID5.lnk - D:\Program Files\Silicon Image\3132 SATARAID5\sam.jar
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
D:\WINDOWS\system32\Ati2evxx.dll [2010-02-11 155648]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-26 2210608]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=
scecli
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\Program Files\Opera\opera.exe"="D:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"D:\Program Files\VideoLAN\VLC\vlc.exe"="D:\Program Files\VideoLAN\VLC\vlc.exe:*:Enabled:VLC media player"
"D:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="D:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"D:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="D:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"D:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="D:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"D:\Program Files\Counter-Strike 1.6 & Half-Life\hl.exe"="D:\Program Files\Counter-Strike 1.6 & Half-Life\hl.exe:*:Enabled:Half-Life Launcher"
"D:\WINDOWS\system32\PnkBstrA.exe"="D:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"D:\WINDOWS\system32\PnkBstrB.exe"="D:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"D:\Program Files\Pando Networks\Media Booster\PMB.exe"="D:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"D:\Documents and Settings\All Users\Application Data\NexonUS\NGM\NGM.exe"="D:\Documents and Settings\All Users\Application Data\NexonUS\NGM\NGM.exe:*:Enabled:Nexon Game Manager"
"D:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe"="D:\Nexon\NEXON_EU_Downloader\NEXON_EU_Downloader_Engine.exe:*:Enabled:NEXON_EU_Downloader_Engine"
"D:\Program Files\Steam\Steam.exe"="D:\Program Files\Steam\Steam.exe:*:Enabled:Steam"
"D:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe"="D:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe:*:Enabled:WebKit"
"D:\Program Files\Bonjour\mDNSResponder.exe"="D:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour Service"
"D:\Program Files\iTunes\iTunes.exe"="D:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"D:\Documents and Settings\Administrator\Local Settings\Application Data\Akamai\netsession_win.exe"="D:\Documents and Settings\Administrator\Local Settings\Application Data\Akamai\netsession_win.exe:*:Enabled:Akamai NetSession Interface"
"D:\Program Files\Skype\Phone\Skype.exe"="D:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"D:\Program Files\Pinnacle\VideoSpin\Programs\RM.exe"="D:\Program Files\Pinnacle\VideoSpin\Programs\RM.exe:*:Enabled:Render Manager"
"D:\Program Files\Pinnacle\VideoSpin\Programs\umi.exe"="D:\Program Files\Pinnacle\VideoSpin\Programs\umi.exe:*:Enabled:umi"
"D:\Program Files\Pinnacle\VideoSpin\Programs\VideoSpin.exe"="D:\Program Files\Pinnacle\VideoSpin\Programs\VideoSpin.exe:*:Enabled:Pinnacle VideoSpin"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\Program Files\Pando Networks\Media Booster\PMB.exe"="D:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.trspch"=tssoft32.acm
"vidc.cvid"=iccvid.dll
"vidc.I420"=msh263.drv
"vidc.iv31"=ir32_32.dll
"vidc.iv32"=ir32_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"midi"=wdmaud.drv
"msacm.msg723"=msg723.acm
"vidc.M263"=msh263.drv
"vidc.M261"=msh261.drv
"msacm.msaudio1"=msaud32.acm
"msacm.sl_anet"=sl_anet.acm
"msacm.l3acm"=D:\WINDOWS\system32\l3codeca.acm
"wave"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer"=wdmaud.drv
"VIDC.FPS1"=frapsvid.dll
"msacm.vorbis"=vorbis.acm
"VIDC.XFR1"=xfcodec.dll
======List of files/folders created in the last 1 month======
2012-03-03 23:27:21 ----D---- D:\Documents and Settings\Administrator\Application Data\avidemux
2012-03-03 22:59:18 ----D---- D:\Program Files\Pinnacle
2012-03-03 22:58:33 ----D---- D:\Documents and Settings\All Users\Application Data\Pinnacle
2012-02-29 20:21:24 ----A---- D:\WINDOWS\system32\xfcodec.dll
2012-02-28 14:57:20 ----A---- D:\WINDOWS\system32\npptNT2.sys
2012-02-28 14:46:12 ----D---- D:\Documents and Settings\Administrator\Application Data\InstallShield
2012-02-27 17:41:34 ----D---- D:\Program Files\Common Files\Skype
2012-02-25 13:24:51 ----D---- D:\Program Files\Vistumbler
2012-02-22 11:09:15 ----D---- D:\WINDOWS\Prefetch
2012-02-22 10:38:09 ----D---- D:\WINDOWS\system32\scripting
2012-02-22 10:38:08 ----D---- D:\WINDOWS\system32\en
2012-02-22 10:38:08 ----D---- D:\WINDOWS\system32\bits
2012-02-22 10:38:08 ----D---- D:\WINDOWS\l2schemas
2012-02-22 10:34:02 ----D---- D:\WINDOWS\network diagnostic
2012-02-22 10:33:02 ----A---- D:\WINDOWS\005725_.tmp
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\wmvdmoe2.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\wmspdmoe.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\wmspdmod.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\wmsdmoe2.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\wmpdxm.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\wmpasf.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\wmp.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\wmidx.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\wmerror.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\msxml6r.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\msxml6.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\mspmsnsv.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\mp4sdmod.dll
2012-02-22 10:32:34 ----A---- D:\WINDOWS\system32\mp43dmod.dll
2012-02-22 10:32:32 ----A---- D:\WINDOWS\system32\wmphoto.dll
2012-02-22 10:32:32 ----A---- D:\WINDOWS\system32\windowscodecsext.dll
2012-02-22 10:32:32 ----A---- D:\WINDOWS\system32\windowscodecs.dll
2012-02-22 10:32:32 ----A---- D:\WINDOWS\system32\photometadatahandler.dll
2012-02-22 10:32:32 ----A---- D:\WINDOWS\system32\mstscax.dll
2012-02-22 10:32:32 ----A---- D:\WINDOWS\system32\mstsc.exe
2012-02-22 10:32:31 ----A---- D:\WINDOWS\system32\smtpapi.dll
2012-02-22 10:32:31 ----A---- D:\WINDOWS\system32\comsdupd.exe
2012-02-22 10:32:30 ----A---- D:\WINDOWS\system32\spiisupd.exe
2012-02-22 10:32:30 ----A---- D:\WINDOWS\system32\rwnh.dll
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\slserv.exe
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\slcoinst.dll
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\secedit.exe
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\p2pgasvc.dll
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\kbdukx.dll
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\ir41_qc.dll
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\extmgr.dll
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\encdec.dll
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\dxdiagn.dll
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\dsprpres.dll
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\drivers\irbus.sys
2012-02-22 10:32:29 ----A---- D:\WINDOWS\system32\asr_pfu.exe
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\wups.dll
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\wscntfy.exe
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\w3ssl.dll
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\pnrpnsp.dll
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\p2psvc.dll
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\nv4_disp.dll
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\msftedit.dll
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\kbdsmsno.dll
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\kbdfi1.dll
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\fltlib.dll
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\bitsprx2.dll
2012-02-22 10:32:28 ----A---- D:\WINDOWS\system32\ati2dvaa.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\wuaueng1.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\wuauclt1.exe
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\wuauclt.exe
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\wshbth.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\spupdwxp.exe
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\smbinst.exe
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\slrundll.exe
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\slgen.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\sbeio.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\sbe.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\s3gnb.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\p2pgraph.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\msdadiag.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\kbdmlt47.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\ir50_qcx.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\ir50_32.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\ir41_qcx.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\ieencode.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\httpapi.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\system32\hccoin.dll
2012-02-22 10:32:27 ----A---- D:\WINDOWS\slrundll.exe
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\xmlprovi.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\xmlprov.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\winbrand.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\twext.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\spnpinst.exe
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\p2pnetsh.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\mtxparhd.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\mssap.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\kbdinmal.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\kbdinbe1.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\iuengine.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\fwcfg.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\d3d9.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\cmsetacl.dll
2012-02-22 10:32:26 ----A---- D:\WINDOWS\system32\ati3d1ag.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\xpsp1res.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\wuweb.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\wuaueng.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\wuapi.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\wscsvc.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\winshfhc.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\winhttp.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\slextspk.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\powercfg.exe
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\p2p.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\mdmxsdk.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\kbdsmsfi.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\kbdmlt48.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\ir50_qc.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\fsquirt.exe
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\fltmc.exe
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\faxpatch.exe
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\encapi.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\cdm.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\btpanui.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\bthserv.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\bthci.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\bitsprx3.dll
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\auditusr.exe
2012-02-22 10:32:25 ----A---- D:\WINDOWS\system32\ativtmxx.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\xpsp2res.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\xpob2res.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\wucltui.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\wuauserv.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\strmfilt.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\sdhcinst.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\qmgr.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\kbdno1.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\kbdmaori.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\kbdinben.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\hsfcisp2.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\wacompen.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\viaagp.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\vchnt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\usbvideo.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\usbehci.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\usb8023x.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\uagp35.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\tunmp.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\smbali.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\sisagp.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\siint5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\sffp_sd.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\sffdisk.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\sdbus.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\rndismpx.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\rfcomm.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\mutohpen.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\mssmbios.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\ip6fw.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\intelppm.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\ch7xxnt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\http.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\hidir.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\hidbth.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\gagp30kx.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\fltmgr.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\bthusb.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\bthprint.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\bthport.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\bthpan.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\bthmodem.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\bthenum.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\atv10nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\atv06nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\atv04nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\atv02nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\atv01nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\amdk7.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\amdagp.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\alim1541.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\agpcpq.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\agp440.sys
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\adv11nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\adv09nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\adv08nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\adv07nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\adv05nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\adv02nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\drivers\adv01nt5.dll
2012-02-22 10:32:24 ----A---- D:\WINDOWS\system32\blastcln.exe
2012-02-22 10:32:21 ----A---- D:\WINDOWS\system32\pidgen.dll
2012-02-22 10:32:21 ----A---- D:\WINDOWS\system32\dpcdll.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\wsecedit.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\tracerpt.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\tlntsvrp.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\tlntsvr.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\tlntsess.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\tlntadmn.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\tasklist.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\taskkill.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\systeminfo.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\schtasks.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\rsnotify.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\proxycfg.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\openfiles.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\nwwks.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\nwapi32.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\ntbackup.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqutil.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqupgrd.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqtrig.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqtgsvc.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqsvc.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqsnap.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqsec.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqrtdep.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqrt.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqqm.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqoa.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqlogmgr.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqise.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqdscli.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqbkup.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\mqad.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\logman.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\gptext.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\gpresult.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\gpedit.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\getmac.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\fdeploy.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\fde.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\eventtriggers.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\eventcreate.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\efsadu.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\drivers\nwrdr.sys
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\drivers\mqac.sys
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\driverquery.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\cipher.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\bootcfg.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\asr_fmt.exe
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\appmgr.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\appmgmts.dll
2012-02-22 10:32:20 ----A---- D:\WINDOWS\system32\adsnw.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\winhlp32.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\twain_32.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\browser.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\browselc.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\blackbox.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\bidispl.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\batt.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\batmeter.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\basesrv.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\avifil32.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\autolfn.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\autofmt.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\authz.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\audiosrv.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\attrib.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\atmlib.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\atmfd.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\atmadm.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\atl.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\at.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\asycfilt.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\asferror.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\apphelp.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\amstream.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\alrsvc.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\alg.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\ahui.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\advpack.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\adsnt.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\adsmsext.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\adsldpc.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\adsldp.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\admparse.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\actxprxy.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\actmovie.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\activeds.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\aclui.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\accwiz.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\system32\6to4svc.dll
2012-02-22 10:32:14 ----A---- D:\WINDOWS\regedit.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\hh.exe
2012-02-22 10:32:14 ----A---- D:\WINDOWS\explorer.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\dbnmpntw.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\dbnetlib.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\dbmsrpcn.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\dbghelp.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\davclnt.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\datime.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\dataclen.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\danim.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\d3dim700.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\d3d8thk.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\d3d8.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\ctfmon.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\csrss.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cscui.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cscript.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cscdll.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cryptui.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cryptsvc.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cryptnet.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cryptext.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cryptdll.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cryptdlg.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\crypt32.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\credui.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\corpol.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\conime.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\confmsp.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\comuid.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\comsvcs.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\comsnap.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\comres.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\comrepl.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\compstui.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\compatui.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\comaddin.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\colbact.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cnbjmon.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cmutil.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cmstp.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cmprops.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cmmon32.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cmdl32.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cmdial32.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cmcfg32.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\clusapi.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\clipsrv.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\clipbrd.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cliconfg.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cliconfg.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cleanmgr.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\clbcatq.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\clbcatex.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cisvc.exe
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\ciodm.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cic.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cfgmgr32.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cfgbkend.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cewmdm.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\certmgr.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\certcli.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cdosys.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\cdfview.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\catsrvut.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\catsrvps.dll
2012-02-22 10:32:13 ----A---- D:\WINDOWS\system32\catsrv.dll