Nodrá smrt - win32k.sys
Napsal: 19 bře 2012 22:36
Zdravím a prosím o pomoc. Známí si koupili nový NB (
http://www.alza.cz/fujitsu-lifebook-ah531-d272547.htm ) a požádali mne o pomoc při oživení a přetažení dat z dosluhujícího NB. Po samoinstalaci se NB zasekl, explorer vyvolal výjimku a musel být ukončen. S problémy stáhnuté a nainstalované AVG našlo win32/heur a středně závažný špehoovací cookies, jsou v karanténě. Počítač však při jakékoliv činnosti padá do modré smrti, hlášení je stejné, jako v případě http://forum.viry.cz/viewtopic.php?f=4&t=118795 , jen jsem nezkontrolovala adresu, ta bude pravděpodobně jiná. Použití Google Chrome nebo Firefoxu nic neřeší, v lepším případě explorer vyvolá výjimku a musí být ukončen, v druhél to jdr rovnou do modré smrti, ze které se nelze dostat opičím trojhmatem, ale vypnutím a zapnutím NB. Test integrity ( cmd sfc /scannow ) nic nenašel. NB je k síti připojený kabelem (UPC). Při startu vyběhne hlášení o chybné konfiguraci WLAN, ale diagnostika po naběhnutí nezjistí žádné potíže. Do sítí se motala nějaká neznámá WiFi síť (zařazená v kanceláři), ke které se pochopitelně nedalo připojit. Po zakázání této sítě NB tvrdí, že v něm není žádný WiFi adaptér. Na NB momentálně běží Memtest, první kompletní průchod trval skoro půldruhé hodiny a byl v pořádku. CrystalDiskInfo:
----------------------------------------------------------------------------
CrystalDiskInfo 4.2.0 (C) 2008-2012 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 7 Home Premium Edition SP1 [6.1 Build 7601] (x64)
Date : 2012/03/19 18:27:13
-- Controller Map ----------------------------------------------------------
+ Intel(R) Mobile Express Chipset SATA AHCI Controller [ATA]
- ST9500325AS
- TSSTcorp CDDVDW TS-L633F
-- Disk List ---------------------------------------------------------------
(1) ST9500325AS : 500.1 GB [0-0-0, pd1]
----------------------------------------------------------------------------
(1) ST9500325AS
----------------------------------------------------------------------------
Model : ST9500325AS
Firmware : 0001SDM1
Serial Number : S2W5VM57
Disk Size : 500.1 GB (8.4/137.4/500.1)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 4
Transfer Mode : SATA/300
Power On Hours : 8 hod.
Power On Count : 34 krát
Temparature : 36 C (96 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 0000h [OFF]
AAM Level : ----
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 117 _99 __6 000008F94408 Počet chyb čtení
03 _99 _98 __0 000000000000 Čas na roztočení ploten
04 100 100 _20 000000000022 Počet spuštění/zastavení
05 100 100 _36 000000000000 Počet přemapovaných sektorů
07 _60 _60 _30 00000011A1AA Počet chybných hledání
09 100 100 __0 000000000008 Hodin v činnosti
0A 100 100 _97 000000000000 Počet opakovaných pokusů o roztočení ploten
0C 100 100 _20 000000000022 Počet cyklů zapnutí zařízení
B8 100 100 _99 000000000000 Ukončovacích chyb
BB 100 100 __0 000000000000 Ohlášeno neopravitelných chyb
BC 100 100 __0 000000000000 Časový limit příkazu
BD 100 100 __0 000000000000 Vysoká rychlost zápisu
BE _64 _61 _45 000026240024 Teplota toku vzduchu
BF 100 100 __0 000000000000 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 000000000018 Počet vypnutí disku
C1 100 100 __0 000000000025 Počet cyklů načítání/vymazání
C2 _36 _40 __0 001300000024 Teplota
C3 _59 _55 __0 000008F94408 Počet oprav chybného čtení
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
FE 100 100 __0 000000000000 Ochrana proti pádu
-- IDENTIFY_DEVICE ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 0C 5A 3F FF C8 37 00 10 00 00 00 00 00 3F 00 00
010: 00 00 00 00 20 20 20 20 20 20 20 20 20 20 20 20
020: 53 32 57 35 56 4D 35 37 00 00 40 00 00 04 30 30
030: 30 31 53 44 4D 31 53 54 39 35 30 30 33 32 35 41
040: 53 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20
050: 20 20 20 20 20 20 20 20 20 20 20 20 20 20 80 10
060: 00 00 2F 00 40 00 02 00 02 00 00 07 FF FF 00 01
070: 00 3F FF C1 00 3E 01 10 FF FF 0F FF 00 00 00 07
080: 00 03 00 78 00 78 00 78 00 78 00 00 00 00 00 00
090: 00 00 00 00 00 00 00 1F 05 06 00 00 00 48 00 48
0A0: 01 F0 00 29 34 6B 7D 09 61 23 34 69 BC 01 61 23
0B0: 40 7F 00 42 00 42 00 00 FF FE 00 00 FE 00 00 00
0C0: 00 00 00 00 00 00 00 00 60 30 3A 38 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 50 00 C5 00 46 37 C5 B3
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 1E
0F0: 40 1C 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 29 60 30 3A 38 60 30 3A 38 20 20 00 02 01 40
110: 01 00 50 00 3C 06 3C 0A 00 00 00 3C 00 00 00 08
120: 00 00 00 00 00 1F 02 80 00 00 00 00 00 08 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 3C 00 80 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 10 3B 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 15 18 00 00 00 00 00 00 00 00 10 10 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 F6 A5
A log RSIT:
Logfile of random's system information tool 1.09 (written by random/random)
Run by Ja at 2012-03-19 18:09:24
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 55 GB (63%) free of 87 GB
Total RAM: 4009 MB (65% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:09:31, on 19.3.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Windows\vsnp2uvc.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
C:\Program Files (x86)\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe
C:\Fujitsu\Programs\DeskUpdate\DeskUpdateNotifier.exe
C:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe
C:\Program Files (x86)\AVG\AVG2012\avgtray.exe
C:\Program Files (x86)\AVG Secure Search\vprot.exe
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\reader_sl.exe
C:\Program Files\trend micro\Ja.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ts.fujitsu.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssie.dll
O2 - BHO: Partner BHO Class - {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\Partner.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\10.2.0.3\AVG Secure Search_toolbar.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL
O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\10.2.0.3\AVG Secure Search_toolbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [IndicatorUtility] "C:\Program Files (x86)\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe"
O4 - HKLM\..\Run: [snp2uvc] C:\Windows\vsnp2uvc.exe
O4 - HKLM\..\Run: [DeskUpdateNotifier] "c:\Fujitsu\Programs\DeskUpdate\DeskUpdateNotifier.exe"
O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\3.0"
O4 - HKLM\..\Run: [YouCam Mirror Tray icon] "C:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [AVG_TRAY] "C:\Program Files (x86)\AVG\AVG2012\avgtray.exe"
O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\Ja\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - .DEFAULT User Startup: LaunchCenter.lnk = C:\Program Files\Fujitsu\LaunchCenter\LaunchCenter.exe (User 'Default user')
O4 - .DEFAULT User Startup: newreminderdialog.lnk = C:\Program Files\Fujitsu\FujitsuRecovery\NewReminderDialog.exe (User 'Default user')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~3\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgpp.dll
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\10.2.0\ViProtocol.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe
O23 - Service: Bluetooth Device Monitor - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Partner Service - Google Inc. - C:\ProgramData\Partner\Partner.exe
O23 - Service: PFNService - FUJITSU LIMITED - C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe
O23 - Service: PowerSavingUtilityService - FUJITSU LIMITED - C:\Program Files\Fujitsu\PSUtility\PSUService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater10.2.0 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\10.2.0\ToolbarUpdater.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12033 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
C:\PROGRA~2\AVG\AVG2012\avgrsa.exe /boot
C:\Program Files (x86)\AVG\AVG2012\avgcsrva.exe /pipeName=a4ec7970-7405-4505-9d9d-716e5d33890d /coreSdkOptions=286 /logConfFile="C:\ProgramData\AVG2012\temp\30869523-2e48-427c-96c9-e01a443dec02-1ac-oopp.tmp" /loggerName=AVG.RS.Core /binaryPath="C:\Program Files (x86)\AVG\AVG2012\" /registryPath="SYSTEM\CurrentControlSet\Services\Avg\Avg2012" /tempPath="C:\ProgramData\AVG2012\temp\"
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe"
C:\Windows\system32\WLANExt.exe 22972240
\??\C:\Windows\system32\conhost.exe "9942719739579330841135126686-19135242196545552352083938871-2864612001659526769
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe"
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe"
"C:\Program Files\Fujitsu\PSUtility\PSUService.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\10.2.0\ToolbarUpdater.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\AVG\AVG2012\avgnsa.exe"
WLIDSvcM.exe 2108
"C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe"
"C:\Program Files (x86)\AVG\AVG2012\avgemca.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
taskeng.exe {A8D500B5-81E3-434D-848B-47ECF09F4640}
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"taskhost.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
"C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe"
"C:\Program Files\Fujitsu\FDM7\FdmDaemon.exe"
"C:\Program Files\Fujitsu\PSUtility\TrayManager.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel Wireless Tray
"C:\Windows\vsnp2uvc.exe"
"C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe"
"C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
"C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe"
"C:\Fujitsu\Programs\DeskUpdate\DeskUpdateNotifier.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe" /s
"C:\Program Files (x86)\AVG\AVG2012\avgtray.exe"
"C:\Program Files (x86)\AVG Secure Search\vprot.exe"
"C:\Program Files (x86)\Adobe\Reader 9.0\Reader\reader_sl.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-3883384124-2000024974-1271472304-10011_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-3883384124-2000024974-1271472304-10011 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Windows\system32\SearchFilterHost.exe" 0 532 536 544 65536 540
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files\Fujitsu\Plugfree NETWORK\PFNetDm.EXE"
"C:\Program Files\Fujitsu\Plugfree NETWORK\PFNTray.EXE"
"E:\RSITx64.exe"
C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3883384124-2000024974-1271472304-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3883384124-2000024974-1271472304-1001UA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\7g6bbgqc.default
prefs.js - "browser.startup.homepage" - "http://www.google.cz/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files (x86)\Mozilla Firefox\searchplugins\
avg-secure-search.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files (x86)\AVG\AVG2012\avgssiea.dll [2011-11-11 1942368]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}]
Partner BHO Class - C:\ProgramData\Partner\Partner64.dll [2012-03-15 750064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2012-03-19 253040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 689040]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-01-03 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files (x86)\AVG\AVG2012\avgssie.dll [2011-11-11 1378144]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}]
Partner BHO Class - C:\ProgramData\Partner\Partner.dll [2012-03-15 433648]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
AVG Security Toolbar - C:\Program Files (x86)\AVG Secure Search\10.2.0.3\AVG Secure Search_toolbar.dll [2012-03-19 1869152]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2012-03-19 192112]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL [2010-12-21 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2012-03-19 253040]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{95B7759C-8C7F-4BF1-B163-73684A933233} - AVG Security Toolbar - C:\Program Files (x86)\AVG Secure Search\10.2.0.3\AVG Secure Search_toolbar.dll [2012-03-19 1869152]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2012-03-19 192112]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-11-19 1886504]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [2010-11-03 10228224]
"LoadFUJ02E3"=C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe [2010-06-08 45680]
"FDM7"=C:\Program Files\Fujitsu\FDM7\FdmDaemon.exe [2009-11-26 164712]
"PSUTility"=C:\Program Files\Fujitsu\PSUtility\TrayManager.exe [2010-11-13 199528]
"PfNet"=C:\Program Files\Fujitsu\Plugfree NETWORK\PfNet.exe [2010-10-07 6311424]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-12-07 11663464]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2011-04-20 168216]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2011-04-20 392472]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2011-04-20 416024]
"IntelWireless"=C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [2011-01-05 1933584]
"snp2uvc"=C:\Windows\vsnp2uvc.exe [2009-08-13 662016]
"LoadFujitsuQuickTouch"=C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe [2010-07-16 162416]
"LoadBtnHnd"=C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe [2010-07-09 21616]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"=C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2012-03-15 39408]
"Google Update"=C:\Users\Ja\AppData\Local\Google\Update\GoogleUpdate.exe [2012-03-16 136176]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IndicatorUtility"=C:\Program Files (x86)\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe [2010-09-30 48752]
"snp2uvc"=C:\Windows\vsnp2uvc.exe [2009-08-13 662016]
"DeskUpdateNotifier"=c:\Fujitsu\Programs\DeskUpdate\DeskUpdateNotifier.exe [2010-10-13 97560]
"UCam_Menu"=C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
"YouCam Mirror Tray icon"=C:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe [2009-07-08 162912]
"AVG_TRAY"=C:\Program Files (x86)\AVG\AVG2012\avgtray.exe [2012-01-24 2416480]
"vProt"=C:\Program Files (x86)\AVG Secure Search\vprot.exe [2012-03-19 982880]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2012-01-03 37296]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-02 843712]
C:\Users\Ja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2011-04-15 385024]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-03-19 18:09:24 ----D---- C:\rsit
2012-03-19 18:09:24 ----D---- C:\Program Files\trend micro
2012-03-19 16:28:42 ----A---- C:\Windows\system32\avgrep.txt
2012-03-19 16:00:58 ----D---- C:\Program Files (x86)\Adobe
2012-03-19 16:00:48 ----SHD---- C:\Config.Msi
2012-03-16 17:22:41 ----D---- C:\Program Files\Microsoft Office
2012-03-16 17:22:33 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2012-03-16 17:21:51 ----D---- C:\ProgramData\Microsoft Help
2012-03-16 17:21:38 ----RHD---- C:\MSOCache
2012-03-16 16:11:37 ----A---- C:\Windows\system32\drivers\usbport.sys
2012-03-16 16:11:37 ----A---- C:\Windows\system32\drivers\usbhub.sys
2012-03-16 16:11:37 ----A---- C:\Windows\system32\drivers\usbehci.sys
2012-03-16 16:11:37 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2012-03-16 16:11:36 ----A---- C:\Windows\system32\drivers\usbd.sys
2012-03-16 16:11:36 ----A---- C:\Windows\system32\drivers\bthport.sys
2012-03-16 16:11:35 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2012-03-16 16:11:32 ----A---- C:\Windows\system32\fsutil.exe
2012-03-16 16:11:32 ----A---- C:\Windows\system32\esent.dll
2012-03-16 16:11:31 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2012-03-16 16:11:31 ----A---- C:\Windows\SYSWOW64\esent.dll
2012-03-16 16:11:31 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2012-03-16 16:11:31 ----A---- C:\Windows\system32\drivers\storport.sys
2012-03-16 16:11:31 ----A---- C:\Windows\system32\drivers\nvstor.sys
2012-03-16 16:11:31 ----A---- C:\Windows\system32\drivers\nvraid.sys
2012-03-16 16:11:31 ----A---- C:\Windows\system32\drivers\ntfs.sys
2012-03-16 16:11:31 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2012-03-16 16:11:31 ----A---- C:\Windows\system32\drivers\amdxata.sys
2012-03-16 16:11:31 ----A---- C:\Windows\system32\drivers\amdsata.sys
2012-03-16 00:28:05 ----D---- C:\Windows\SoftwareDistribution
2012-03-16 00:25:35 ----D---- C:\Windows\SYSWOW64\NV
2012-03-16 00:25:35 ----D---- C:\Windows\system32\NV
2012-03-16 00:21:25 ----A---- C:\Windows\vsnp2uvc.exe
2012-03-16 00:21:25 ----A---- C:\Windows\SYSWOW64\vsnp2uvc.dll
2012-03-16 00:21:25 ----A---- C:\Windows\SYSWOW64\rsnp2uvc.dll
2012-03-16 00:21:25 ----A---- C:\Windows\system32\vsnp2uvc.dll
2012-03-16 00:21:25 ----A---- C:\Windows\system32\rsnp2uvc.dll
2012-03-16 00:21:25 ----A---- C:\Windows\system32\drivers\snp2uvc.sys
2012-03-16 00:21:25 ----A---- C:\Windows\system32\drivers\sncduvc.sys
2012-03-16 00:21:25 ----A---- C:\Windows\system32\csnp2uvc.dll
2012-03-16 00:21:25 ----A---- C:\Windows\snuvcdsm.exe
2012-03-16 00:21:25 ----A---- C:\Windows\snp2uvc.src
2012-03-16 00:21:25 ----A---- C:\Windows\snp2uvc.ini
2012-03-16 00:20:21 ----N---- C:\Windows\system32\IHV_Install.bat
2012-03-16 00:20:03 ----D---- C:\ProgramData\Roaming
2012-03-16 00:19:34 ----D---- C:\ProgramData\Intel
2012-03-16 00:19:34 ----D---- C:\Program Files (x86)\Cisco
2012-03-16 00:19:20 ----A---- C:\Windows\system32\drivers\IntelMEFWVer.dll
2012-03-16 00:19:18 ----A---- C:\Windows\SYSWOW64\log.txt
2012-03-16 00:16:54 ----D---- C:\ProgramData\NVIDIA
2012-03-16 00:16:30 ----D---- C:\ProgramData\NVIDIA Corporation
2012-03-16 00:16:28 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2012-03-16 00:16:16 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2012-03-16 00:16:16 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2012-03-16 00:16:16 ----A---- C:\Windows\SYSWOW64\nvoptimusmft.dll
2012-03-16 00:16:16 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2012-03-16 00:16:16 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2012-03-16 00:16:16 ----A---- C:\Windows\SYSWOW64\nvdecodemft.dll
2012-03-16 00:16:16 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2012-03-16 00:16:16 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\nvwgf2umx.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\nvumdshimx.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\nvoptimusmft.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\nvoglv64.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\nvinitx.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\nvgenco642040.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\nvdispco642080.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\nvdecodemft.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\nvd3dumx.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\nvcuvid.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\drivers\nvpciflt.sys
2012-03-16 00:16:16 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2012-03-16 00:16:15 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2012-03-16 00:16:15 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2012-03-16 00:16:15 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2012-03-16 00:16:15 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2012-03-16 00:16:15 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2012-03-16 00:16:15 ----A---- C:\Windows\system32\OpenCL.dll
2012-03-16 00:16:15 ----A---- C:\Windows\system32\nvcuvenc.dll
2012-03-16 00:16:15 ----A---- C:\Windows\system32\nvcuda.dll
2012-03-16 00:16:15 ----A---- C:\Windows\system32\nvcompiler.dll
2012-03-16 00:16:15 ----A---- C:\Windows\system32\nvapi64.dll
2012-03-16 00:16:13 ----D---- C:\Program Files\NVIDIA Corporation
2012-03-16 00:13:12 ----ASH---- C:\pagefile.sys
2012-03-16 00:13:12 ----ASH---- C:\hiberfil.sys
2012-03-15 20:27:53 ----D---- C:\ProgramData\McAfee
2012-03-15 20:05:12 ----D---- C:\Windows\SYSWOW64\Wat
2012-03-15 20:05:12 ----D---- C:\Windows\system32\Wat
2012-03-15 19:38:25 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-03-15 19:38:24 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2012-03-15 19:38:24 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2012-03-15 19:36:44 ----A---- C:\Windows\system32\MRT.exe
2012-03-15 11:20:45 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2012-03-15 11:20:45 ----A---- C:\Windows\system32\mshtmled.dll
2012-03-15 11:20:45 ----A---- C:\Windows\system32\iertutil.dll
2012-03-15 11:20:44 ----A---- C:\Windows\SYSWOW64\url.dll
2012-03-15 11:20:44 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2012-03-15 11:20:44 ----A---- C:\Windows\system32\jscript9.dll
2012-03-15 11:20:43 ----A---- C:\Windows\SYSWOW64\ieui.dll
2012-03-15 11:20:43 ----A---- C:\Windows\system32\url.dll
2012-03-15 11:20:42 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2012-03-15 11:20:42 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2012-03-15 11:20:42 ----A---- C:\Windows\SYSWOW64\jscript.dll
2012-03-15 11:20:42 ----A---- C:\Windows\system32\urlmon.dll
2012-03-15 11:20:42 ----A---- C:\Windows\system32\jscript.dll
2012-03-15 11:20:42 ----A---- C:\Windows\system32\ieui.dll
2012-03-15 11:20:41 ----A---- C:\Windows\SYSWOW64\wininet.dll
2012-03-15 11:20:41 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2012-03-15 11:20:41 ----A---- C:\Windows\system32\wininet.dll
2012-03-15 11:20:41 ----A---- C:\Windows\system32\jsproxy.dll
2012-03-15 11:20:40 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2012-03-15 11:20:38 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2012-03-15 11:20:38 ----A---- C:\Windows\system32\mshtml.dll
2012-03-15 11:20:37 ----A---- C:\Windows\system32\ieframe.dll
2012-03-15 11:19:40 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2012-03-15 11:19:40 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2012-03-15 11:19:40 ----A---- C:\Windows\system32\wow64win.dll
2012-03-15 11:19:40 ----A---- C:\Windows\system32\winsrv.dll
2012-03-15 11:19:40 ----A---- C:\Windows\system32\KernelBase.dll
2012-03-15 11:19:40 ----A---- C:\Windows\system32\kernel32.dll
2012-03-15 11:19:40 ----A---- C:\Windows\system32\conhost.exe
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2012-03-15 11:19:39 ----A---- C:\Windows\SYSWOW64\wow32.dll
2012-03-15 11:19:39 ----A---- C:\Windows\SYSWOW64\user.exe
2012-03-15 11:19:39 ----A---- C:\Windows\SYSWOW64\setup16.exe
2012-03-15 11:19:39 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2012-03-15 11:19:39 ----A---- C:\Windows\SYSWOW64\instnm.exe
2012-03-15 11:19:39 ----A---- C:\Windows\system32\wow64cpu.dll
2012-03-15 11:19:39 ----A---- C:\Windows\system32\wow64.dll
2012-03-15 11:19:39 ----A---- C:\Windows\system32\ntvdm64.dll
2012-03-15 11:19:30 ----A---- C:\Windows\SYSWOW64\tzres.dll
2012-03-15 11:19:30 ----A---- C:\Windows\system32\tzres.dll
2012-03-15 11:19:17 ----A---- C:\Windows\SYSWOW64\tquery.dll
2012-03-15 11:19:17 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2012-03-15 11:19:17 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2012-03-15 11:19:17 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2012-03-15 11:19:17 ----A---- C:\Windows\SYSWOW64\mssph.dll
2012-03-15 11:19:17 ----A---- C:\Windows\system32\tquery.dll
2012-03-15 11:19:17 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2012-03-15 11:19:17 ----A---- C:\Windows\system32\SearchIndexer.exe
2012-03-15 11:19:17 ----A---- C:\Windows\system32\SearchFilterHost.exe
2012-03-15 11:19:17 ----A---- C:\Windows\system32\mssvp.dll
2012-03-15 11:19:17 ----A---- C:\Windows\system32\mssrch.dll
2012-03-15 11:19:17 ----A---- C:\Windows\system32\mssphtb.dll
2012-03-15 11:19:17 ----A---- C:\Windows\system32\mssph.dll
2012-03-15 11:19:16 ----A---- C:\Windows\SYSWOW64\webio.dll
2012-03-15 11:19:16 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2012-03-15 11:19:16 ----A---- C:\Windows\SYSWOW64\schannel.dll
2012-03-15 11:19:16 ----A---- C:\Windows\SYSWOW64\secur32.dll
2012-03-15 11:19:16 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2012-03-15 11:19:16 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2012-03-15 11:19:16 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2012-03-15 11:19:16 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2012-03-15 11:19:16 ----A---- C:\Windows\system32\webio.dll
2012-03-15 11:19:16 ----A---- C:\Windows\system32\sspisrv.dll
2012-03-15 11:19:16 ----A---- C:\Windows\system32\sspicli.dll
2012-03-15 11:19:16 ----A---- C:\Windows\system32\schannel.dll
2012-03-15 11:19:16 ----A---- C:\Windows\system32\secur32.dll
2012-03-15 11:19:16 ----A---- C:\Windows\system32\msscntrs.dll
2012-03-15 11:19:16 ----A---- C:\Windows\system32\lsass.exe
2012-03-15 11:19:16 ----A---- C:\Windows\system32\lsasrv.dll
2012-03-15 11:19:16 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2012-03-15 11:19:16 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2012-03-15 11:19:16 ----A---- C:\Windows\system32\drivers\cng.sys
2012-03-15 11:19:15 ----A---- C:\Windows\system32\shell32.dll
2012-03-15 11:19:14 ----A---- C:\Windows\SYSWOW64\shell32.dll
2012-03-15 11:19:14 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2012-03-15 11:19:14 ----A---- C:\Windows\system32\ntshrui.dll
2012-03-15 11:19:13 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2012-03-15 11:19:13 ----A---- C:\Windows\system32\XpsPrint.dll
2012-03-15 11:19:13 ----A---- C:\Windows\system32\DWrite.dll
2012-03-15 11:19:12 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2012-03-15 11:19:11 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2012-03-15 11:19:11 ----A---- C:\Windows\system32\poqexec.exe
2012-03-15 11:19:10 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2012-03-15 11:19:10 ----A---- C:\Windows\system32\mfc42u.dll
2012-03-15 11:19:10 ----A---- C:\Windows\system32\mfc42.dll
2012-03-15 11:19:09 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2012-03-15 11:19:09 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-03-15 11:19:08 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2012-03-15 11:19:08 ----A---- C:\Windows\system32\win32k.sys
2012-03-15 11:19:07 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2012-03-15 11:19:07 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2012-03-15 11:19:07 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2012-03-15 11:19:07 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2012-03-15 11:19:07 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2012-03-15 11:19:07 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2012-03-15 11:19:07 ----A---- C:\Windows\system32\odbctrac.dll
2012-03-15 11:19:07 ----A---- C:\Windows\system32\odbccu32.dll
2012-03-15 11:19:07 ----A---- C:\Windows\system32\odbccr32.dll
2012-03-15 11:19:07 ----A---- C:\Windows\system32\odbccp32.dll
2012-03-15 11:19:04 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2012-03-15 11:19:04 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2012-03-15 11:19:04 ----A---- C:\Windows\system32\atmlib.dll
2012-03-15 11:19:04 ----A---- C:\Windows\system32\atmfd.dll
2012-03-15 11:19:03 ----A---- C:\Windows\system32\winresume.exe
2012-03-15 11:19:03 ----A---- C:\Windows\system32\winload.exe
2012-03-15 11:19:03 ----A---- C:\Windows\system32\kdusb.dll
2012-03-15 11:19:03 ----A---- C:\Windows\system32\kdcom.dll
2012-03-15 11:19:03 ----A---- C:\Windows\system32\kd1394.dll
2012-03-15 11:19:02 ----A---- C:\Windows\SYSWOW64\quartz.dll
2012-03-15 11:19:02 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2012-03-15 11:19:02 ----A---- C:\Windows\system32\quartz.dll
2012-03-15 11:19:02 ----A---- C:\Windows\system32\qdvd.dll
2012-03-15 11:19:00 ----A---- C:\Windows\SYSWOW64\explorer.exe
2012-03-15 11:19:00 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2012-03-15 11:19:00 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2012-03-15 11:19:00 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2012-03-15 11:19:00 ----A---- C:\Windows\explorer.exe
2012-03-15 11:18:59 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2012-03-15 11:18:59 ----A---- C:\Windows\system32\xmllite.dll
2012-03-15 11:18:58 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2012-03-15 11:18:58 ----A---- C:\Windows\system32\EncDec.dll
2012-03-15 11:18:58 ----A---- C:\Windows\system32\drivers\srvnet.sys
2012-03-15 11:18:58 ----A---- C:\Windows\system32\drivers\srv2.sys
2012-03-15 11:18:58 ----A---- C:\Windows\system32\drivers\srv.sys
2012-03-15 11:18:58 ----A---- C:\Windows\system32\csrsrv.dll
2012-03-15 11:18:57 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2012-03-15 11:18:57 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2012-03-15 11:18:57 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2012-03-15 11:18:57 ----A---- C:\Windows\system32\psisdecd.dll
2012-03-15 11:18:57 ----A---- C:\Windows\system32\dnsrslvr.dll
2012-03-15 11:18:57 ----A---- C:\Windows\system32\dnscacheugc.exe
2012-03-15 11:18:57 ----A---- C:\Windows\system32\dnsapi.dll
2012-03-15 11:18:56 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2012-03-15 11:18:56 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2012-03-15 11:18:56 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2012-03-15 11:18:56 ----A---- C:\Windows\SYSWOW64\devobj.dll
2012-03-15 11:18:56 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2012-03-15 11:18:56 ----A---- C:\Windows\system32\umpnpmgr.dll
2012-03-15 11:18:56 ----A---- C:\Windows\system32\ntdll.dll
2012-03-15 11:18:56 ----A---- C:\Windows\system32\msvcrt.dll
2012-03-15 11:18:55 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2012-03-15 11:18:55 ----A---- C:\Windows\system32\FXSCOVER.exe
2012-03-15 11:18:55 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2012-03-15 11:18:55 ----A---- C:\Windows\system32\drivers\afd.sys
2012-03-15 11:18:54 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2012-03-15 11:18:54 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2012-03-15 11:18:54 ----A---- C:\Windows\system32\oleaut32.dll
2012-03-15 11:18:54 ----A---- C:\Windows\system32\oleacc.dll
2012-03-15 11:18:54 ----A---- C:\Windows\system32\drivers\bowser.sys
2012-03-15 11:18:53 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2012-03-15 11:18:53 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2012-03-15 11:18:53 ----A---- C:\Windows\system32\prevhost.exe
2012-03-15 11:18:53 ----A---- C:\Windows\system32\inetcomm.dll
2012-03-15 11:14:05 ----A---- C:\Windows\SYSWOW64\packager.dll
2012-03-15 11:14:05 ----A---- C:\Windows\system32\packager.dll
2012-03-15 11:08:48 ----D---- C:\Program Files\CCleaner
2012-03-15 10:51:53 ----D---- C:\Users\Ja\AppData\Roaming\Mozilla
2012-03-15 10:51:37 ----D---- C:\Program Files (x86)\Mozilla Firefox
2012-03-15 10:28:08 ----HD---- C:\$AVG
2012-03-15 09:42:07 ----D---- C:\Users\Ja\AppData\Roaming\AVG2012
2012-03-15 09:40:25 ----D---- C:\ProgramData\AVG Secure Search
2012-03-15 09:40:24 ----D---- C:\Program Files (x86)\AVG Secure Search
2012-03-15 09:40:17 ----D---- C:\Windows\SYSWOW64\drivers\AVG
2012-03-15 09:40:09 ----D---- C:\Windows\system32\drivers\AVG
2012-03-15 09:40:09 ----D---- C:\ProgramData\AVG2012
2012-03-15 09:39:42 ----D---- C:\Program Files (x86)\AVG
2012-03-15 09:06:34 ----HD---- C:\ProgramData\Common Files
2012-03-15 09:05:19 ----D---- C:\Users\Ja\AppData\Roaming\Tific
2012-03-15 09:04:33 ----D---- C:\ProgramData\MFAData
2012-03-15 08:55:28 ----D---- C:\Windows\Minidump
2012-03-15 08:49:58 ----D---- C:\Users\Ja\AppData\Roaming\Macromedia
2012-03-15 08:49:58 ----D---- C:\Users\Ja\AppData\Roaming\Adobe
2012-03-15 08:49:50 ----D---- C:\Windows\SYSWOW64\Macromed
2012-03-15 08:49:48 ----D---- C:\Windows\system32\Macromed
2012-03-15 08:48:59 ----HD---- C:\Windows\AxInstSV
2012-03-15 08:47:07 ----D---- C:\Users\Ja\AppData\Roaming\Google
2012-03-15 08:42:19 ----D---- C:\Users\Ja\AppData\Roaming\Fujitsu Launch Center
2012-03-15 08:41:57 ----SHD---- C:\$RECYCLE.BIN
2012-03-15 08:39:48 ----D---- C:\Program Files (x86)\Intel Corporation
2012-03-15 08:38:51 ----D---- C:\Program Files (x86)\CyberLink
2012-03-15 08:38:13 ----D---- C:\ProgramData\Fujitsu
2012-03-15 08:37:36 ----D---- C:\ProgramData\Temp
2012-03-15 08:37:22 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2012-03-15 08:37:22 ----A---- C:\Windows\system32\rdpcore.dll
2012-03-15 08:37:22 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2012-03-15 08:37:22 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2012-03-15 08:37:21 ----A---- C:\Windows\system32\rdrmemptylst.exe
2012-03-15 08:37:21 ----A---- C:\Windows\system32\rdpwsx.dll
2012-03-15 08:37:21 ----A---- C:\Windows\system32\rdpcorekmts.dll
2012-03-15 08:35:52 ----D---- C:\ProgramData\Adobe
2012-03-15 08:29:48 ----SD---- C:\Users\Ja\AppData\Roaming\Microsoft
2012-03-15 08:29:48 ----D---- C:\Users\Ja\AppData\Roaming\Intel
2012-03-15 08:29:48 ----D---- C:\Users\Ja\AppData\Roaming\Identities
2012-03-15 08:29:48 ----D---- C:\Users\Ja\AppData\Roaming\Fujitsu
2012-03-15 08:29:35 ----D---- C:\ProgramData\Partner
2012-03-15 08:29:33 ----D---- C:\Program Files\Google
2012-03-15 08:29:10 ----D---- C:\ProgramData\Google
2012-03-15 08:29:10 ----D---- C:\Program Files (x86)\Google
======List of files/folders modified in the last 1 month======
2012-03-19 18:09:24 ----RD---- C:\Program Files
2012-03-19 18:07:47 ----D---- C:\Windows\Temp
2012-03-19 18:06:57 ----D---- C:\Windows
2012-03-19 18:01:28 ----D---- C:\Windows\inf
2012-03-19 17:46:50 ----D---- C:\Windows\system32\NDF
2012-03-19 17:45:13 ----D---- C:\Windows\system32\config
2012-03-19 17:43:24 ----SHD---- C:\Windows\Installer
2012-03-19 17:32:37 ----RD---- C:\Program Files (x86)
2012-03-19 17:32:37 ----HD---- C:\ProgramData
2012-03-19 16:37:55 ----D---- C:\Windows\winsxs
2012-03-19 16:28:42 ----D---- C:\Windows\System32
2012-03-19 16:00:45 ----D---- C:\Windows\SysWOW64
2012-03-19 15:59:03 ----D---- C:\Windows\Prefetch
2012-03-16 19:44:59 ----D---- C:\Windows\Microsoft.NET
2012-03-16 19:44:19 ----RSD---- C:\Windows\assembly
2012-03-16 19:41:25 ----D---- C:\Windows\system32\catroot2
2012-03-16 19:41:21 ----SHD---- C:\System Volume Information
2012-03-16 18:36:30 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2012-03-16 18:25:49 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-03-16 17:30:57 ----SD---- C:\ProgramData\Microsoft
2012-03-16 17:30:55 ----D---- C:\Program Files (x86)\Microsoft Office
2012-03-16 17:24:42 ----RSD---- C:\Windows\Fonts
2012-03-16 17:24:25 ----D---- C:\Program Files (x86)\Common Files
2012-03-16 17:24:16 ----D---- C:\Program Files (x86)\Microsoft.NET
2012-03-16 17:23:28 ----D---- C:\Windows\system32\Tasks
2012-03-16 17:22:34 ----D---- C:\Windows\ShellNew
2012-03-16 17:02:12 ----D---- C:\Windows\Tasks
2012-03-16 16:49:37 ----D---- C:\Windows\system32\drivers
2012-03-16 16:47:44 ----D---- C:\Windows\SYSWOW64\pt-PT
2012-03-16 16:47:44 ----D---- C:\Windows\SYSWOW64\pl-PL
2012-03-16 16:47:44 ----D---- C:\Windows\SYSWOW64\fr-FR
2012-03-16 16:47:44 ----D---- C:\Windows\SYSWOW64\es-ES
2012-03-16 16:47:44 ----D---- C:\Windows\SYSWOW64\en-US
2012-03-16 16:47:44 ----D---- C:\Windows\SYSWOW64\cs-CZ
2012-03-16 16:47:44 ----D---- C:\Windows\system32\pt-PT
2012-03-16 16:47:44 ----D---- C:\Windows\system32\pl-PL
2012-03-16 16:47:44 ----D---- C:\Windows\system32\fr-FR
2012-03-16 16:47:44 ----D---- C:\Windows\system32\es-ES
2012-03-16 16:47:44 ----D---- C:\Windows\system32\en-US
2012-03-16 16:47:44 ----D---- C:\Windows\system32\DriverStore
2012-03-16 16:47:44 ----D---- C:\Windows\system32\cs-CZ
2012-03-16 16:11:25 ----D---- C:\Windows\system32\catroot
2012-03-16 00:26:31 ----D---- C:\Windows\rescache
2012-03-16 00:21:28 ----D---- C:\Windows\twain_32
2012-03-16 00:20:40 ----D---- C:\Windows\system32\restore
2012-03-16 00:19:34 ----D---- C:\Program Files\Intel
2012-03-16 00:19:34 ----D---- C:\Program Files\Common Files\Intel
2012-03-16 00:19:14 ----D---- C:\Program Files (x86)\Intel
2012-03-16 00:16:41 ----D---- C:\Windows\Help
2012-03-16 00:15:40 ----D---- C:\Windows\Registration
2012-03-16 00:14:42 ----D---- C:\Windows\SYSWOW64\RTCOM
2012-03-15 20:19:32 ----D---- C:\Windows\debug
2012-03-15 20:14:37 ----D---- C:\Windows\system32\wdi
2012-03-15 20:11:33 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2012-03-15 20:11:24 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-03-15 19:55:04 ----D---- C:\Windows\ehome
2012-03-15 19:55:04 ----D---- C:\Program Files\Common Files\System
2012-03-15 19:55:02 ----D---- C:\Windows\AppPatch
2012-03-15 19:55:00 ----D---- C:\Windows\system32\Boot
2012-03-15 19:54:58 ----D---- C:\Windows\SYSWOW64\sk-SK
2012-03-15 19:54:58 ----D---- C:\Windows\system32\sk-SK
2012-03-15 19:54:57 ----D---- C:\Windows\SYSWOW64\migration
2012-03-15 19:54:57 ----D---- C:\Windows\system32\migration
2012-03-15 19:54:57 ----D---- C:\Program Files\Internet Explorer
2012-03-15 19:54:57 ----D---- C:\Program Files (x86)\Internet Explorer
2012-03-15 11:09:57 ----D---- C:\Windows\Panther
2012-03-15 11:09:52 ----D---- C:\Windows\Logs
2012-03-15 11:00:05 ----D---- C:\Windows\system32\LogFiles
2012-03-15 09:40:17 ----D---- C:\Windows\SYSWOW64\drivers
2012-03-15 09:19:04 ----D---- C:\ProgramData\Norton
2012-03-15 09:18:57 ----D---- C:\Program Files\Common Files
2012-03-15 08:49:57 ----D---- C:\Windows\Downloaded Program Files
2012-03-15 08:45:52 ----D---- C:\Fujitsu
2012-03-15 08:39:15 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-03-15 08:37:17 ----D---- C:\Program Files\Fujitsu
2012-03-15 08:29:48 ----RD---- C:\Users
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSEH;AVGIDSEH; C:\Windows\system32\DRIVERS\AVGIDSEH.Sys [2011-07-11 26704]
R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx64.sys [2011-09-13 37456]
R0 FBIOSDRV;Fujitsu BIOS Driver; C:\Windows\System32\Drivers\FBIOSDRV.sys [2009-06-24 21104]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\drivers\iaStor.sys [2011-02-18 439320]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2010-11-17 25576]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 Avgldx64;AVG AVI Loader Driver; C:\Windows\system32\DRIVERS\avgldx64.sys [2011-10-07 283728]
R1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\Windows\system32\DRIVERS\avgmfx64.sys [2011-08-08 46672]
R1 Avgtdia;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdia.sys [2011-07-11 375376]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R3 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys [2011-07-11 120400]
R3 AVGIDSFilter;AVGIDSFilter; C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys [2011-07-11 29776]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 btmaux;Intel Bluetooth Auxiliary Service; C:\Windows\system32\DRIVERS\btmaux.sys [2010-11-04 58128]
R3 btmhsf;btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [2011-11-15 327168]
R3 FUJ02B1;Fujitsu FUJ02B1 Device Driver; C:\Windows\system32\DRIVERS\FUJ02B1.sys [2006-11-01 7808]
R3 FUJ02E3;Fujitsu FUJ02E3 Device Driver; C:\Windows\system32\drivers\FUJ02E3.sys [2006-11-01 7296]
R3 iBtFltCoex;iBtFltCoex; C:\Windows\system32\DRIVERS\iBtFltCoex.sys [2011-12-09 60416]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2011-04-15 12228128]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-12-08 2657768]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-10-14 317440]
R3 iwdbus;IWD Bus Enumerator; C:\Windows\system32\DRIVERS\iwdbus.sys [2011-03-24 25496]
R3 MEIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2011-01-04 8507392]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-05-07 245792]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2010-12-28 412776]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2010-10-09 1801216]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2009-11-19 299568]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2011-04-28 552960]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2011-03-24 34200]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe [2011-10-12 4433248]
R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe [2011-08-02 192776]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2010-11-03 897088]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2011-01-05 1515792]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-02-01 326168]
R2 NVSvc;NVIDIA Driver Helper Service; C:\Windows\system32\nvvsvc.exe [2010-11-18 993896]
R2 PFNService;PFNService; C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe [2010-10-07 331776]
R2 PowerSavingUtilityService;PowerSavingUtilityService; C:\Program Files\Fujitsu\PSUtility\PSUService.exe [2010-06-17 63336]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2011-01-05 836880]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-02-01 2656280]
R2 vToolbarUpdater10.2.0;vToolbarUpdater10.2.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\10.2.0\ToolbarUpdater.exe [2012-03-19 918880]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-03-15 136176]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-19 44376]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-03-15 136176]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-03-15 182768]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2011-01-05 340240]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 Partner Service;Partner Service; C:\ProgramData\Partner\Partner.exe [2012-03-15 332272]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-03-15 1255736]
S4 NetMsmqActivator;@C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]
-----------------EOF-----------------
K NB se, vzhledem k tomu, že je u známých, dostanu ve středu odpoledne.
Díky za pomoc.
http://www.alza.cz/fujitsu-lifebook-ah531-d272547.htm ) a požádali mne o pomoc při oživení a přetažení dat z dosluhujícího NB. Po samoinstalaci se NB zasekl, explorer vyvolal výjimku a musel být ukončen. S problémy stáhnuté a nainstalované AVG našlo win32/heur a středně závažný špehoovací cookies, jsou v karanténě. Počítač však při jakékoliv činnosti padá do modré smrti, hlášení je stejné, jako v případě http://forum.viry.cz/viewtopic.php?f=4&t=118795 , jen jsem nezkontrolovala adresu, ta bude pravděpodobně jiná. Použití Google Chrome nebo Firefoxu nic neřeší, v lepším případě explorer vyvolá výjimku a musí být ukončen, v druhél to jdr rovnou do modré smrti, ze které se nelze dostat opičím trojhmatem, ale vypnutím a zapnutím NB. Test integrity ( cmd sfc /scannow ) nic nenašel. NB je k síti připojený kabelem (UPC). Při startu vyběhne hlášení o chybné konfiguraci WLAN, ale diagnostika po naběhnutí nezjistí žádné potíže. Do sítí se motala nějaká neznámá WiFi síť (zařazená v kanceláři), ke které se pochopitelně nedalo připojit. Po zakázání této sítě NB tvrdí, že v něm není žádný WiFi adaptér. Na NB momentálně běží Memtest, první kompletní průchod trval skoro půldruhé hodiny a byl v pořádku. CrystalDiskInfo:
----------------------------------------------------------------------------
CrystalDiskInfo 4.2.0 (C) 2008-2012 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 7 Home Premium Edition SP1 [6.1 Build 7601] (x64)
Date : 2012/03/19 18:27:13
-- Controller Map ----------------------------------------------------------
+ Intel(R) Mobile Express Chipset SATA AHCI Controller [ATA]
- ST9500325AS
- TSSTcorp CDDVDW TS-L633F
-- Disk List ---------------------------------------------------------------
(1) ST9500325AS : 500.1 GB [0-0-0, pd1]
----------------------------------------------------------------------------
(1) ST9500325AS
----------------------------------------------------------------------------
Model : ST9500325AS
Firmware : 0001SDM1
Serial Number : S2W5VM57
Disk Size : 500.1 GB (8.4/137.4/500.1)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 4
Transfer Mode : SATA/300
Power On Hours : 8 hod.
Power On Count : 34 krát
Temparature : 36 C (96 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 0000h [OFF]
AAM Level : ----
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 117 _99 __6 000008F94408 Počet chyb čtení
03 _99 _98 __0 000000000000 Čas na roztočení ploten
04 100 100 _20 000000000022 Počet spuštění/zastavení
05 100 100 _36 000000000000 Počet přemapovaných sektorů
07 _60 _60 _30 00000011A1AA Počet chybných hledání
09 100 100 __0 000000000008 Hodin v činnosti
0A 100 100 _97 000000000000 Počet opakovaných pokusů o roztočení ploten
0C 100 100 _20 000000000022 Počet cyklů zapnutí zařízení
B8 100 100 _99 000000000000 Ukončovacích chyb
BB 100 100 __0 000000000000 Ohlášeno neopravitelných chyb
BC 100 100 __0 000000000000 Časový limit příkazu
BD 100 100 __0 000000000000 Vysoká rychlost zápisu
BE _64 _61 _45 000026240024 Teplota toku vzduchu
BF 100 100 __0 000000000000 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 000000000018 Počet vypnutí disku
C1 100 100 __0 000000000025 Počet cyklů načítání/vymazání
C2 _36 _40 __0 001300000024 Teplota
C3 _59 _55 __0 000008F94408 Počet oprav chybného čtení
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
FE 100 100 __0 000000000000 Ochrana proti pádu
-- IDENTIFY_DEVICE ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 0C 5A 3F FF C8 37 00 10 00 00 00 00 00 3F 00 00
010: 00 00 00 00 20 20 20 20 20 20 20 20 20 20 20 20
020: 53 32 57 35 56 4D 35 37 00 00 40 00 00 04 30 30
030: 30 31 53 44 4D 31 53 54 39 35 30 30 33 32 35 41
040: 53 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20
050: 20 20 20 20 20 20 20 20 20 20 20 20 20 20 80 10
060: 00 00 2F 00 40 00 02 00 02 00 00 07 FF FF 00 01
070: 00 3F FF C1 00 3E 01 10 FF FF 0F FF 00 00 00 07
080: 00 03 00 78 00 78 00 78 00 78 00 00 00 00 00 00
090: 00 00 00 00 00 00 00 1F 05 06 00 00 00 48 00 48
0A0: 01 F0 00 29 34 6B 7D 09 61 23 34 69 BC 01 61 23
0B0: 40 7F 00 42 00 42 00 00 FF FE 00 00 FE 00 00 00
0C0: 00 00 00 00 00 00 00 00 60 30 3A 38 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 50 00 C5 00 46 37 C5 B3
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 1E
0F0: 40 1C 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 29 60 30 3A 38 60 30 3A 38 20 20 00 02 01 40
110: 01 00 50 00 3C 06 3C 0A 00 00 00 3C 00 00 00 08
120: 00 00 00 00 00 1F 02 80 00 00 00 00 00 08 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 3C 00 80 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 10 3B 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 15 18 00 00 00 00 00 00 00 00 10 10 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 F6 A5
A log RSIT:
Logfile of random's system information tool 1.09 (written by random/random)
Run by Ja at 2012-03-19 18:09:24
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 55 GB (63%) free of 87 GB
Total RAM: 4009 MB (65% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:09:31, on 19.3.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Windows\vsnp2uvc.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
C:\Program Files (x86)\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe
C:\Fujitsu\Programs\DeskUpdate\DeskUpdateNotifier.exe
C:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe
C:\Program Files (x86)\AVG\AVG2012\avgtray.exe
C:\Program Files (x86)\AVG Secure Search\vprot.exe
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\reader_sl.exe
C:\Program Files\trend micro\Ja.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ts.fujitsu.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssie.dll
O2 - BHO: Partner BHO Class - {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\Partner.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\10.2.0.3\AVG Secure Search_toolbar.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL
O3 - Toolbar: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\10.2.0.3\AVG Secure Search_toolbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [IndicatorUtility] "C:\Program Files (x86)\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe"
O4 - HKLM\..\Run: [snp2uvc] C:\Windows\vsnp2uvc.exe
O4 - HKLM\..\Run: [DeskUpdateNotifier] "c:\Fujitsu\Programs\DeskUpdate\DeskUpdateNotifier.exe"
O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\3.0"
O4 - HKLM\..\Run: [YouCam Mirror Tray icon] "C:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [AVG_TRAY] "C:\Program Files (x86)\AVG\AVG2012\avgtray.exe"
O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG Secure Search\vprot.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\Ja\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - .DEFAULT User Startup: LaunchCenter.lnk = C:\Program Files\Fujitsu\LaunchCenter\LaunchCenter.exe (User 'Default user')
O4 - .DEFAULT User Startup: newreminderdialog.lnk = C:\Program Files\Fujitsu\FujitsuRecovery\NewReminderDialog.exe (User 'Default user')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~3\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~3\Office14\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgpp.dll
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\10.2.0\ViProtocol.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe
O23 - Service: Bluetooth Device Monitor - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: Partner Service - Google Inc. - C:\ProgramData\Partner\Partner.exe
O23 - Service: PFNService - FUJITSU LIMITED - C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe
O23 - Service: PowerSavingUtilityService - FUJITSU LIMITED - C:\Program Files\Fujitsu\PSUtility\PSUService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater10.2.0 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\10.2.0\ToolbarUpdater.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12033 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
C:\PROGRA~2\AVG\AVG2012\avgrsa.exe /boot
C:\Program Files (x86)\AVG\AVG2012\avgcsrva.exe /pipeName=a4ec7970-7405-4505-9d9d-716e5d33890d /coreSdkOptions=286 /logConfFile="C:\ProgramData\AVG2012\temp\30869523-2e48-427c-96c9-e01a443dec02-1ac-oopp.tmp" /loggerName=AVG.RS.Core /binaryPath="C:\Program Files (x86)\AVG\AVG2012\" /registryPath="SYSTEM\CurrentControlSet\Services\Avg\Avg2012" /tempPath="C:\ProgramData\AVG2012\temp\"
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe"
C:\Windows\system32\WLANExt.exe 22972240
\??\C:\Windows\system32\conhost.exe "9942719739579330841135126686-19135242196545552352083938871-2864612001659526769
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\nvvsvc.exe -session -first
"C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe"
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe"
"C:\Program Files\Fujitsu\PSUtility\PSUService.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\10.2.0\ToolbarUpdater.exe"
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
"C:\Program Files (x86)\AVG\AVG2012\avgnsa.exe"
WLIDSvcM.exe 2108
"C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe"
"C:\Program Files (x86)\AVG\AVG2012\avgemca.exe"
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
taskeng.exe {A8D500B5-81E3-434D-848B-47ECF09F4640}
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"taskhost.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
"C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe"
"C:\Program Files\Fujitsu\FDM7\FdmDaemon.exe"
"C:\Program Files\Fujitsu\PSUtility\TrayManager.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel Wireless Tray
"C:\Windows\vsnp2uvc.exe"
"C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe"
"C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe"
"C:\Program Files\Synaptics\SynTP\SynTPHelper.exe"
"C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
"C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe"
"C:\Fujitsu\Programs\DeskUpdate\DeskUpdateNotifier.exe"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe" /s
"C:\Program Files (x86)\AVG\AVG2012\avgtray.exe"
"C:\Program Files (x86)\AVG Secure Search\vprot.exe"
"C:\Program Files (x86)\Adobe\Reader 9.0\Reader\reader_sl.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-3883384124-2000024974-1271472304-10011_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-3883384124-2000024974-1271472304-10011 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Windows\system32\SearchFilterHost.exe" 0 532 536 544 65536 540
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files\Fujitsu\Plugfree NETWORK\PFNetDm.EXE"
"C:\Program Files\Fujitsu\Plugfree NETWORK\PFNTray.EXE"
"E:\RSITx64.exe"
C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3883384124-2000024974-1271472304-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3883384124-2000024974-1271472304-1001UA.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\7g6bbgqc.default
prefs.js - "browser.startup.homepage" - "http://www.google.cz/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 10.1 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
C:\Program Files (x86)\Mozilla Firefox\extensions\
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files (x86)\Mozilla Firefox\components\
binary.manifest
browsercomps.dll
C:\Program Files (x86)\Mozilla Firefox\searchplugins\
avg-secure-search.xml
google.xml
heureka-cz.xml
jyxo-cz.xml
seznam-cz.xml
slunecnice-cz.xml
wikipedia-cz.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files (x86)\AVG\AVG2012\avgssiea.dll [2011-11-11 1942368]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}]
Partner BHO Class - C:\ProgramData\Partner\Partner64.dll [2012-03-15 750064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2012-03-19 253040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-12-21 689040]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-01-03 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files (x86)\AVG\AVG2012\avgssie.dll [2011-11-11 1378144]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}]
Partner BHO Class - C:\ProgramData\Partner\Partner.dll [2012-03-15 433648]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
AVG Security Toolbar - C:\Program Files (x86)\AVG Secure Search\10.2.0.3\AVG Secure Search_toolbar.dll [2012-03-19 1869152]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2012-03-19 192112]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL [2010-12-21 561552]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2012-03-19 253040]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{95B7759C-8C7F-4BF1-B163-73684A933233} - AVG Security Toolbar - C:\Program Files (x86)\AVG Secure Search\10.2.0.3\AVG Secure Search_toolbar.dll [2012-03-19 1869152]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2012-03-19 192112]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-11-19 1886504]
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [2010-11-03 10228224]
"LoadFUJ02E3"=C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe [2010-06-08 45680]
"FDM7"=C:\Program Files\Fujitsu\FDM7\FdmDaemon.exe [2009-11-26 164712]
"PSUTility"=C:\Program Files\Fujitsu\PSUtility\TrayManager.exe [2010-11-13 199528]
"PfNet"=C:\Program Files\Fujitsu\Plugfree NETWORK\PfNet.exe [2010-10-07 6311424]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-12-07 11663464]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2011-04-20 168216]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2011-04-20 392472]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2011-04-20 416024]
"IntelWireless"=C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [2011-01-05 1933584]
"snp2uvc"=C:\Windows\vsnp2uvc.exe [2009-08-13 662016]
"LoadFujitsuQuickTouch"=C:\Program Files\Fujitsu\Application Panel\QuickTouch.exe [2010-07-16 162416]
"LoadBtnHnd"=C:\Program Files\Fujitsu\Application Panel\BtnHnd.exe [2010-07-09 21616]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"=C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2012-03-15 39408]
"Google Update"=C:\Users\Ja\AppData\Local\Google\Update\GoogleUpdate.exe [2012-03-16 136176]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IndicatorUtility"=C:\Program Files (x86)\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe [2010-09-30 48752]
"snp2uvc"=C:\Windows\vsnp2uvc.exe [2009-08-13 662016]
"DeskUpdateNotifier"=c:\Fujitsu\Programs\DeskUpdate\DeskUpdateNotifier.exe [2010-10-13 97560]
"UCam_Menu"=C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
"YouCam Mirror Tray icon"=C:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe [2009-07-08 162912]
"AVG_TRAY"=C:\Program Files (x86)\AVG\AVG2012\avgtray.exe [2012-01-24 2416480]
"vProt"=C:\Program Files (x86)\AVG Secure Search\vprot.exe [2012-03-19 982880]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2012-01-03 37296]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-01-02 843712]
C:\Users\Ja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2011-04-15 385024]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-03-19 18:09:24 ----D---- C:\rsit
2012-03-19 18:09:24 ----D---- C:\Program Files\trend micro
2012-03-19 16:28:42 ----A---- C:\Windows\system32\avgrep.txt
2012-03-19 16:00:58 ----D---- C:\Program Files (x86)\Adobe
2012-03-19 16:00:48 ----SHD---- C:\Config.Msi
2012-03-16 17:22:41 ----D---- C:\Program Files\Microsoft Office
2012-03-16 17:22:33 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2012-03-16 17:21:51 ----D---- C:\ProgramData\Microsoft Help
2012-03-16 17:21:38 ----RHD---- C:\MSOCache
2012-03-16 16:11:37 ----A---- C:\Windows\system32\drivers\usbport.sys
2012-03-16 16:11:37 ----A---- C:\Windows\system32\drivers\usbhub.sys
2012-03-16 16:11:37 ----A---- C:\Windows\system32\drivers\usbehci.sys
2012-03-16 16:11:37 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2012-03-16 16:11:36 ----A---- C:\Windows\system32\drivers\usbd.sys
2012-03-16 16:11:36 ----A---- C:\Windows\system32\drivers\bthport.sys
2012-03-16 16:11:35 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2012-03-16 16:11:32 ----A---- C:\Windows\system32\fsutil.exe
2012-03-16 16:11:32 ----A---- C:\Windows\system32\esent.dll
2012-03-16 16:11:31 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2012-03-16 16:11:31 ----A---- C:\Windows\SYSWOW64\esent.dll
2012-03-16 16:11:31 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2012-03-16 16:11:31 ----A---- C:\Windows\system32\drivers\storport.sys
2012-03-16 16:11:31 ----A---- C:\Windows\system32\drivers\nvstor.sys
2012-03-16 16:11:31 ----A---- C:\Windows\system32\drivers\nvraid.sys
2012-03-16 16:11:31 ----A---- C:\Windows\system32\drivers\ntfs.sys
2012-03-16 16:11:31 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2012-03-16 16:11:31 ----A---- C:\Windows\system32\drivers\amdxata.sys
2012-03-16 16:11:31 ----A---- C:\Windows\system32\drivers\amdsata.sys
2012-03-16 00:28:05 ----D---- C:\Windows\SoftwareDistribution
2012-03-16 00:25:35 ----D---- C:\Windows\SYSWOW64\NV
2012-03-16 00:25:35 ----D---- C:\Windows\system32\NV
2012-03-16 00:21:25 ----A---- C:\Windows\vsnp2uvc.exe
2012-03-16 00:21:25 ----A---- C:\Windows\SYSWOW64\vsnp2uvc.dll
2012-03-16 00:21:25 ----A---- C:\Windows\SYSWOW64\rsnp2uvc.dll
2012-03-16 00:21:25 ----A---- C:\Windows\system32\vsnp2uvc.dll
2012-03-16 00:21:25 ----A---- C:\Windows\system32\rsnp2uvc.dll
2012-03-16 00:21:25 ----A---- C:\Windows\system32\drivers\snp2uvc.sys
2012-03-16 00:21:25 ----A---- C:\Windows\system32\drivers\sncduvc.sys
2012-03-16 00:21:25 ----A---- C:\Windows\system32\csnp2uvc.dll
2012-03-16 00:21:25 ----A---- C:\Windows\snuvcdsm.exe
2012-03-16 00:21:25 ----A---- C:\Windows\snp2uvc.src
2012-03-16 00:21:25 ----A---- C:\Windows\snp2uvc.ini
2012-03-16 00:20:21 ----N---- C:\Windows\system32\IHV_Install.bat
2012-03-16 00:20:03 ----D---- C:\ProgramData\Roaming
2012-03-16 00:19:34 ----D---- C:\ProgramData\Intel
2012-03-16 00:19:34 ----D---- C:\Program Files (x86)\Cisco
2012-03-16 00:19:20 ----A---- C:\Windows\system32\drivers\IntelMEFWVer.dll
2012-03-16 00:19:18 ----A---- C:\Windows\SYSWOW64\log.txt
2012-03-16 00:16:54 ----D---- C:\ProgramData\NVIDIA
2012-03-16 00:16:30 ----D---- C:\ProgramData\NVIDIA Corporation
2012-03-16 00:16:28 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2012-03-16 00:16:16 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2012-03-16 00:16:16 ----A---- C:\Windows\SYSWOW64\nvumdshim.dll
2012-03-16 00:16:16 ----A---- C:\Windows\SYSWOW64\nvoptimusmft.dll
2012-03-16 00:16:16 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2012-03-16 00:16:16 ----A---- C:\Windows\SYSWOW64\nvinit.dll
2012-03-16 00:16:16 ----A---- C:\Windows\SYSWOW64\nvdecodemft.dll
2012-03-16 00:16:16 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2012-03-16 00:16:16 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\nvwgf2umx.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\nvumdshimx.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\nvoptimusmft.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\nvoglv64.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\nvinitx.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\nvgenco642040.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\nvdispco642080.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\nvdecodemft.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\nvd3dumx.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\nvcuvid.dll
2012-03-16 00:16:16 ----A---- C:\Windows\system32\drivers\nvpciflt.sys
2012-03-16 00:16:16 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2012-03-16 00:16:15 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2012-03-16 00:16:15 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2012-03-16 00:16:15 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2012-03-16 00:16:15 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2012-03-16 00:16:15 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2012-03-16 00:16:15 ----A---- C:\Windows\system32\OpenCL.dll
2012-03-16 00:16:15 ----A---- C:\Windows\system32\nvcuvenc.dll
2012-03-16 00:16:15 ----A---- C:\Windows\system32\nvcuda.dll
2012-03-16 00:16:15 ----A---- C:\Windows\system32\nvcompiler.dll
2012-03-16 00:16:15 ----A---- C:\Windows\system32\nvapi64.dll
2012-03-16 00:16:13 ----D---- C:\Program Files\NVIDIA Corporation
2012-03-16 00:13:12 ----ASH---- C:\pagefile.sys
2012-03-16 00:13:12 ----ASH---- C:\hiberfil.sys
2012-03-15 20:27:53 ----D---- C:\ProgramData\McAfee
2012-03-15 20:05:12 ----D---- C:\Windows\SYSWOW64\Wat
2012-03-15 20:05:12 ----D---- C:\Windows\system32\Wat
2012-03-15 19:38:25 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-03-15 19:38:24 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2012-03-15 19:38:24 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2012-03-15 19:36:44 ----A---- C:\Windows\system32\MRT.exe
2012-03-15 11:20:45 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2012-03-15 11:20:45 ----A---- C:\Windows\system32\mshtmled.dll
2012-03-15 11:20:45 ----A---- C:\Windows\system32\iertutil.dll
2012-03-15 11:20:44 ----A---- C:\Windows\SYSWOW64\url.dll
2012-03-15 11:20:44 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2012-03-15 11:20:44 ----A---- C:\Windows\system32\jscript9.dll
2012-03-15 11:20:43 ----A---- C:\Windows\SYSWOW64\ieui.dll
2012-03-15 11:20:43 ----A---- C:\Windows\system32\url.dll
2012-03-15 11:20:42 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2012-03-15 11:20:42 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2012-03-15 11:20:42 ----A---- C:\Windows\SYSWOW64\jscript.dll
2012-03-15 11:20:42 ----A---- C:\Windows\system32\urlmon.dll
2012-03-15 11:20:42 ----A---- C:\Windows\system32\jscript.dll
2012-03-15 11:20:42 ----A---- C:\Windows\system32\ieui.dll
2012-03-15 11:20:41 ----A---- C:\Windows\SYSWOW64\wininet.dll
2012-03-15 11:20:41 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2012-03-15 11:20:41 ----A---- C:\Windows\system32\wininet.dll
2012-03-15 11:20:41 ----A---- C:\Windows\system32\jsproxy.dll
2012-03-15 11:20:40 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2012-03-15 11:20:38 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2012-03-15 11:20:38 ----A---- C:\Windows\system32\mshtml.dll
2012-03-15 11:20:37 ----A---- C:\Windows\system32\ieframe.dll
2012-03-15 11:19:40 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2012-03-15 11:19:40 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2012-03-15 11:19:40 ----A---- C:\Windows\system32\wow64win.dll
2012-03-15 11:19:40 ----A---- C:\Windows\system32\winsrv.dll
2012-03-15 11:19:40 ----A---- C:\Windows\system32\KernelBase.dll
2012-03-15 11:19:40 ----A---- C:\Windows\system32\kernel32.dll
2012-03-15 11:19:40 ----A---- C:\Windows\system32\conhost.exe
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2012-03-15 11:19:39 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2012-03-15 11:19:39 ----A---- C:\Windows\SYSWOW64\wow32.dll
2012-03-15 11:19:39 ----A---- C:\Windows\SYSWOW64\user.exe
2012-03-15 11:19:39 ----A---- C:\Windows\SYSWOW64\setup16.exe
2012-03-15 11:19:39 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2012-03-15 11:19:39 ----A---- C:\Windows\SYSWOW64\instnm.exe
2012-03-15 11:19:39 ----A---- C:\Windows\system32\wow64cpu.dll
2012-03-15 11:19:39 ----A---- C:\Windows\system32\wow64.dll
2012-03-15 11:19:39 ----A---- C:\Windows\system32\ntvdm64.dll
2012-03-15 11:19:30 ----A---- C:\Windows\SYSWOW64\tzres.dll
2012-03-15 11:19:30 ----A---- C:\Windows\system32\tzres.dll
2012-03-15 11:19:17 ----A---- C:\Windows\SYSWOW64\tquery.dll
2012-03-15 11:19:17 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2012-03-15 11:19:17 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2012-03-15 11:19:17 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2012-03-15 11:19:17 ----A---- C:\Windows\SYSWOW64\mssph.dll
2012-03-15 11:19:17 ----A---- C:\Windows\system32\tquery.dll
2012-03-15 11:19:17 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2012-03-15 11:19:17 ----A---- C:\Windows\system32\SearchIndexer.exe
2012-03-15 11:19:17 ----A---- C:\Windows\system32\SearchFilterHost.exe
2012-03-15 11:19:17 ----A---- C:\Windows\system32\mssvp.dll
2012-03-15 11:19:17 ----A---- C:\Windows\system32\mssrch.dll
2012-03-15 11:19:17 ----A---- C:\Windows\system32\mssphtb.dll
2012-03-15 11:19:17 ----A---- C:\Windows\system32\mssph.dll
2012-03-15 11:19:16 ----A---- C:\Windows\SYSWOW64\webio.dll
2012-03-15 11:19:16 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2012-03-15 11:19:16 ----A---- C:\Windows\SYSWOW64\schannel.dll
2012-03-15 11:19:16 ----A---- C:\Windows\SYSWOW64\secur32.dll
2012-03-15 11:19:16 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2012-03-15 11:19:16 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2012-03-15 11:19:16 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2012-03-15 11:19:16 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2012-03-15 11:19:16 ----A---- C:\Windows\system32\webio.dll
2012-03-15 11:19:16 ----A---- C:\Windows\system32\sspisrv.dll
2012-03-15 11:19:16 ----A---- C:\Windows\system32\sspicli.dll
2012-03-15 11:19:16 ----A---- C:\Windows\system32\schannel.dll
2012-03-15 11:19:16 ----A---- C:\Windows\system32\secur32.dll
2012-03-15 11:19:16 ----A---- C:\Windows\system32\msscntrs.dll
2012-03-15 11:19:16 ----A---- C:\Windows\system32\lsass.exe
2012-03-15 11:19:16 ----A---- C:\Windows\system32\lsasrv.dll
2012-03-15 11:19:16 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2012-03-15 11:19:16 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2012-03-15 11:19:16 ----A---- C:\Windows\system32\drivers\cng.sys
2012-03-15 11:19:15 ----A---- C:\Windows\system32\shell32.dll
2012-03-15 11:19:14 ----A---- C:\Windows\SYSWOW64\shell32.dll
2012-03-15 11:19:14 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2012-03-15 11:19:14 ----A---- C:\Windows\system32\ntshrui.dll
2012-03-15 11:19:13 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2012-03-15 11:19:13 ----A---- C:\Windows\system32\XpsPrint.dll
2012-03-15 11:19:13 ----A---- C:\Windows\system32\DWrite.dll
2012-03-15 11:19:12 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2012-03-15 11:19:11 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2012-03-15 11:19:11 ----A---- C:\Windows\system32\poqexec.exe
2012-03-15 11:19:10 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2012-03-15 11:19:10 ----A---- C:\Windows\system32\mfc42u.dll
2012-03-15 11:19:10 ----A---- C:\Windows\system32\mfc42.dll
2012-03-15 11:19:09 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2012-03-15 11:19:09 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-03-15 11:19:08 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2012-03-15 11:19:08 ----A---- C:\Windows\system32\win32k.sys
2012-03-15 11:19:07 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2012-03-15 11:19:07 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2012-03-15 11:19:07 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2012-03-15 11:19:07 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2012-03-15 11:19:07 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2012-03-15 11:19:07 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2012-03-15 11:19:07 ----A---- C:\Windows\system32\odbctrac.dll
2012-03-15 11:19:07 ----A---- C:\Windows\system32\odbccu32.dll
2012-03-15 11:19:07 ----A---- C:\Windows\system32\odbccr32.dll
2012-03-15 11:19:07 ----A---- C:\Windows\system32\odbccp32.dll
2012-03-15 11:19:04 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2012-03-15 11:19:04 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2012-03-15 11:19:04 ----A---- C:\Windows\system32\atmlib.dll
2012-03-15 11:19:04 ----A---- C:\Windows\system32\atmfd.dll
2012-03-15 11:19:03 ----A---- C:\Windows\system32\winresume.exe
2012-03-15 11:19:03 ----A---- C:\Windows\system32\winload.exe
2012-03-15 11:19:03 ----A---- C:\Windows\system32\kdusb.dll
2012-03-15 11:19:03 ----A---- C:\Windows\system32\kdcom.dll
2012-03-15 11:19:03 ----A---- C:\Windows\system32\kd1394.dll
2012-03-15 11:19:02 ----A---- C:\Windows\SYSWOW64\quartz.dll
2012-03-15 11:19:02 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2012-03-15 11:19:02 ----A---- C:\Windows\system32\quartz.dll
2012-03-15 11:19:02 ----A---- C:\Windows\system32\qdvd.dll
2012-03-15 11:19:00 ----A---- C:\Windows\SYSWOW64\explorer.exe
2012-03-15 11:19:00 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2012-03-15 11:19:00 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2012-03-15 11:19:00 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2012-03-15 11:19:00 ----A---- C:\Windows\explorer.exe
2012-03-15 11:18:59 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2012-03-15 11:18:59 ----A---- C:\Windows\system32\xmllite.dll
2012-03-15 11:18:58 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2012-03-15 11:18:58 ----A---- C:\Windows\system32\EncDec.dll
2012-03-15 11:18:58 ----A---- C:\Windows\system32\drivers\srvnet.sys
2012-03-15 11:18:58 ----A---- C:\Windows\system32\drivers\srv2.sys
2012-03-15 11:18:58 ----A---- C:\Windows\system32\drivers\srv.sys
2012-03-15 11:18:58 ----A---- C:\Windows\system32\csrsrv.dll
2012-03-15 11:18:57 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2012-03-15 11:18:57 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2012-03-15 11:18:57 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2012-03-15 11:18:57 ----A---- C:\Windows\system32\psisdecd.dll
2012-03-15 11:18:57 ----A---- C:\Windows\system32\dnsrslvr.dll
2012-03-15 11:18:57 ----A---- C:\Windows\system32\dnscacheugc.exe
2012-03-15 11:18:57 ----A---- C:\Windows\system32\dnsapi.dll
2012-03-15 11:18:56 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2012-03-15 11:18:56 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2012-03-15 11:18:56 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2012-03-15 11:18:56 ----A---- C:\Windows\SYSWOW64\devobj.dll
2012-03-15 11:18:56 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2012-03-15 11:18:56 ----A---- C:\Windows\system32\umpnpmgr.dll
2012-03-15 11:18:56 ----A---- C:\Windows\system32\ntdll.dll
2012-03-15 11:18:56 ----A---- C:\Windows\system32\msvcrt.dll
2012-03-15 11:18:55 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2012-03-15 11:18:55 ----A---- C:\Windows\system32\FXSCOVER.exe
2012-03-15 11:18:55 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2012-03-15 11:18:55 ----A---- C:\Windows\system32\drivers\afd.sys
2012-03-15 11:18:54 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2012-03-15 11:18:54 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2012-03-15 11:18:54 ----A---- C:\Windows\system32\oleaut32.dll
2012-03-15 11:18:54 ----A---- C:\Windows\system32\oleacc.dll
2012-03-15 11:18:54 ----A---- C:\Windows\system32\drivers\bowser.sys
2012-03-15 11:18:53 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2012-03-15 11:18:53 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2012-03-15 11:18:53 ----A---- C:\Windows\system32\prevhost.exe
2012-03-15 11:18:53 ----A---- C:\Windows\system32\inetcomm.dll
2012-03-15 11:14:05 ----A---- C:\Windows\SYSWOW64\packager.dll
2012-03-15 11:14:05 ----A---- C:\Windows\system32\packager.dll
2012-03-15 11:08:48 ----D---- C:\Program Files\CCleaner
2012-03-15 10:51:53 ----D---- C:\Users\Ja\AppData\Roaming\Mozilla
2012-03-15 10:51:37 ----D---- C:\Program Files (x86)\Mozilla Firefox
2012-03-15 10:28:08 ----HD---- C:\$AVG
2012-03-15 09:42:07 ----D---- C:\Users\Ja\AppData\Roaming\AVG2012
2012-03-15 09:40:25 ----D---- C:\ProgramData\AVG Secure Search
2012-03-15 09:40:24 ----D---- C:\Program Files (x86)\AVG Secure Search
2012-03-15 09:40:17 ----D---- C:\Windows\SYSWOW64\drivers\AVG
2012-03-15 09:40:09 ----D---- C:\Windows\system32\drivers\AVG
2012-03-15 09:40:09 ----D---- C:\ProgramData\AVG2012
2012-03-15 09:39:42 ----D---- C:\Program Files (x86)\AVG
2012-03-15 09:06:34 ----HD---- C:\ProgramData\Common Files
2012-03-15 09:05:19 ----D---- C:\Users\Ja\AppData\Roaming\Tific
2012-03-15 09:04:33 ----D---- C:\ProgramData\MFAData
2012-03-15 08:55:28 ----D---- C:\Windows\Minidump
2012-03-15 08:49:58 ----D---- C:\Users\Ja\AppData\Roaming\Macromedia
2012-03-15 08:49:58 ----D---- C:\Users\Ja\AppData\Roaming\Adobe
2012-03-15 08:49:50 ----D---- C:\Windows\SYSWOW64\Macromed
2012-03-15 08:49:48 ----D---- C:\Windows\system32\Macromed
2012-03-15 08:48:59 ----HD---- C:\Windows\AxInstSV
2012-03-15 08:47:07 ----D---- C:\Users\Ja\AppData\Roaming\Google
2012-03-15 08:42:19 ----D---- C:\Users\Ja\AppData\Roaming\Fujitsu Launch Center
2012-03-15 08:41:57 ----SHD---- C:\$RECYCLE.BIN
2012-03-15 08:39:48 ----D---- C:\Program Files (x86)\Intel Corporation
2012-03-15 08:38:51 ----D---- C:\Program Files (x86)\CyberLink
2012-03-15 08:38:13 ----D---- C:\ProgramData\Fujitsu
2012-03-15 08:37:36 ----D---- C:\ProgramData\Temp
2012-03-15 08:37:22 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2012-03-15 08:37:22 ----A---- C:\Windows\system32\rdpcore.dll
2012-03-15 08:37:22 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2012-03-15 08:37:22 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2012-03-15 08:37:21 ----A---- C:\Windows\system32\rdrmemptylst.exe
2012-03-15 08:37:21 ----A---- C:\Windows\system32\rdpwsx.dll
2012-03-15 08:37:21 ----A---- C:\Windows\system32\rdpcorekmts.dll
2012-03-15 08:35:52 ----D---- C:\ProgramData\Adobe
2012-03-15 08:29:48 ----SD---- C:\Users\Ja\AppData\Roaming\Microsoft
2012-03-15 08:29:48 ----D---- C:\Users\Ja\AppData\Roaming\Intel
2012-03-15 08:29:48 ----D---- C:\Users\Ja\AppData\Roaming\Identities
2012-03-15 08:29:48 ----D---- C:\Users\Ja\AppData\Roaming\Fujitsu
2012-03-15 08:29:35 ----D---- C:\ProgramData\Partner
2012-03-15 08:29:33 ----D---- C:\Program Files\Google
2012-03-15 08:29:10 ----D---- C:\ProgramData\Google
2012-03-15 08:29:10 ----D---- C:\Program Files (x86)\Google
======List of files/folders modified in the last 1 month======
2012-03-19 18:09:24 ----RD---- C:\Program Files
2012-03-19 18:07:47 ----D---- C:\Windows\Temp
2012-03-19 18:06:57 ----D---- C:\Windows
2012-03-19 18:01:28 ----D---- C:\Windows\inf
2012-03-19 17:46:50 ----D---- C:\Windows\system32\NDF
2012-03-19 17:45:13 ----D---- C:\Windows\system32\config
2012-03-19 17:43:24 ----SHD---- C:\Windows\Installer
2012-03-19 17:32:37 ----RD---- C:\Program Files (x86)
2012-03-19 17:32:37 ----HD---- C:\ProgramData
2012-03-19 16:37:55 ----D---- C:\Windows\winsxs
2012-03-19 16:28:42 ----D---- C:\Windows\System32
2012-03-19 16:00:45 ----D---- C:\Windows\SysWOW64
2012-03-19 15:59:03 ----D---- C:\Windows\Prefetch
2012-03-16 19:44:59 ----D---- C:\Windows\Microsoft.NET
2012-03-16 19:44:19 ----RSD---- C:\Windows\assembly
2012-03-16 19:41:25 ----D---- C:\Windows\system32\catroot2
2012-03-16 19:41:21 ----SHD---- C:\System Volume Information
2012-03-16 18:36:30 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2012-03-16 18:25:49 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-03-16 17:30:57 ----SD---- C:\ProgramData\Microsoft
2012-03-16 17:30:55 ----D---- C:\Program Files (x86)\Microsoft Office
2012-03-16 17:24:42 ----RSD---- C:\Windows\Fonts
2012-03-16 17:24:25 ----D---- C:\Program Files (x86)\Common Files
2012-03-16 17:24:16 ----D---- C:\Program Files (x86)\Microsoft.NET
2012-03-16 17:23:28 ----D---- C:\Windows\system32\Tasks
2012-03-16 17:22:34 ----D---- C:\Windows\ShellNew
2012-03-16 17:02:12 ----D---- C:\Windows\Tasks
2012-03-16 16:49:37 ----D---- C:\Windows\system32\drivers
2012-03-16 16:47:44 ----D---- C:\Windows\SYSWOW64\pt-PT
2012-03-16 16:47:44 ----D---- C:\Windows\SYSWOW64\pl-PL
2012-03-16 16:47:44 ----D---- C:\Windows\SYSWOW64\fr-FR
2012-03-16 16:47:44 ----D---- C:\Windows\SYSWOW64\es-ES
2012-03-16 16:47:44 ----D---- C:\Windows\SYSWOW64\en-US
2012-03-16 16:47:44 ----D---- C:\Windows\SYSWOW64\cs-CZ
2012-03-16 16:47:44 ----D---- C:\Windows\system32\pt-PT
2012-03-16 16:47:44 ----D---- C:\Windows\system32\pl-PL
2012-03-16 16:47:44 ----D---- C:\Windows\system32\fr-FR
2012-03-16 16:47:44 ----D---- C:\Windows\system32\es-ES
2012-03-16 16:47:44 ----D---- C:\Windows\system32\en-US
2012-03-16 16:47:44 ----D---- C:\Windows\system32\DriverStore
2012-03-16 16:47:44 ----D---- C:\Windows\system32\cs-CZ
2012-03-16 16:11:25 ----D---- C:\Windows\system32\catroot
2012-03-16 00:26:31 ----D---- C:\Windows\rescache
2012-03-16 00:21:28 ----D---- C:\Windows\twain_32
2012-03-16 00:20:40 ----D---- C:\Windows\system32\restore
2012-03-16 00:19:34 ----D---- C:\Program Files\Intel
2012-03-16 00:19:34 ----D---- C:\Program Files\Common Files\Intel
2012-03-16 00:19:14 ----D---- C:\Program Files (x86)\Intel
2012-03-16 00:16:41 ----D---- C:\Windows\Help
2012-03-16 00:15:40 ----D---- C:\Windows\Registration
2012-03-16 00:14:42 ----D---- C:\Windows\SYSWOW64\RTCOM
2012-03-15 20:19:32 ----D---- C:\Windows\debug
2012-03-15 20:14:37 ----D---- C:\Windows\system32\wdi
2012-03-15 20:11:33 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2012-03-15 20:11:24 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-03-15 19:55:04 ----D---- C:\Windows\ehome
2012-03-15 19:55:04 ----D---- C:\Program Files\Common Files\System
2012-03-15 19:55:02 ----D---- C:\Windows\AppPatch
2012-03-15 19:55:00 ----D---- C:\Windows\system32\Boot
2012-03-15 19:54:58 ----D---- C:\Windows\SYSWOW64\sk-SK
2012-03-15 19:54:58 ----D---- C:\Windows\system32\sk-SK
2012-03-15 19:54:57 ----D---- C:\Windows\SYSWOW64\migration
2012-03-15 19:54:57 ----D---- C:\Windows\system32\migration
2012-03-15 19:54:57 ----D---- C:\Program Files\Internet Explorer
2012-03-15 19:54:57 ----D---- C:\Program Files (x86)\Internet Explorer
2012-03-15 11:09:57 ----D---- C:\Windows\Panther
2012-03-15 11:09:52 ----D---- C:\Windows\Logs
2012-03-15 11:00:05 ----D---- C:\Windows\system32\LogFiles
2012-03-15 09:40:17 ----D---- C:\Windows\SYSWOW64\drivers
2012-03-15 09:19:04 ----D---- C:\ProgramData\Norton
2012-03-15 09:18:57 ----D---- C:\Program Files\Common Files
2012-03-15 08:49:57 ----D---- C:\Windows\Downloaded Program Files
2012-03-15 08:45:52 ----D---- C:\Fujitsu
2012-03-15 08:39:15 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-03-15 08:37:17 ----D---- C:\Program Files\Fujitsu
2012-03-15 08:29:48 ----RD---- C:\Users
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 AVGIDSEH;AVGIDSEH; C:\Windows\system32\DRIVERS\AVGIDSEH.Sys [2011-07-11 26704]
R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx64.sys [2011-09-13 37456]
R0 FBIOSDRV;Fujitsu BIOS Driver; C:\Windows\System32\Drivers\FBIOSDRV.sys [2009-06-24 21104]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\drivers\iaStor.sys [2011-02-18 439320]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2010-11-17 25576]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 Avgldx64;AVG AVI Loader Driver; C:\Windows\system32\DRIVERS\avgldx64.sys [2011-10-07 283728]
R1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\Windows\system32\DRIVERS\avgmfx64.sys [2011-08-08 46672]
R1 Avgtdia;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdia.sys [2011-07-11 375376]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R3 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys [2011-07-11 120400]
R3 AVGIDSFilter;AVGIDSFilter; C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys [2011-07-11 29776]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 btmaux;Intel Bluetooth Auxiliary Service; C:\Windows\system32\DRIVERS\btmaux.sys [2010-11-04 58128]
R3 btmhsf;btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [2011-11-15 327168]
R3 FUJ02B1;Fujitsu FUJ02B1 Device Driver; C:\Windows\system32\DRIVERS\FUJ02B1.sys [2006-11-01 7808]
R3 FUJ02E3;Fujitsu FUJ02E3 Device Driver; C:\Windows\system32\drivers\FUJ02E3.sys [2006-11-01 7296]
R3 iBtFltCoex;iBtFltCoex; C:\Windows\system32\DRIVERS\iBtFltCoex.sys [2011-12-09 60416]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2011-04-15 12228128]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-12-08 2657768]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2010-10-14 317440]
R3 iwdbus;IWD Bus Enumerator; C:\Windows\system32\DRIVERS\iwdbus.sys [2011-03-24 25496]
R3 MEIx64;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECIx64.sys [2010-10-20 56344]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2011-01-04 8507392]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RtsUStor.sys [2010-05-07 245792]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2010-12-28 412776]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2010-10-09 1801216]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2009-11-19 299568]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2011-04-28 552960]
S3 intaud_WaveExtensible;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2011-03-24 34200]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe [2011-10-12 4433248]
R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe [2011-08-02 192776]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2010-11-03 897088]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2011-01-05 1515792]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2011-02-01 326168]
R2 NVSvc;NVIDIA Driver Helper Service; C:\Windows\system32\nvvsvc.exe [2010-11-18 993896]
R2 PFNService;PFNService; C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe [2010-10-07 331776]
R2 PowerSavingUtilityService;PowerSavingUtilityService; C:\Program Files\Fujitsu\PSUtility\PSUService.exe [2010-06-17 63336]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2011-01-05 836880]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-02-01 2656280]
R2 vToolbarUpdater10.2.0;vToolbarUpdater10.2.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\10.2.0\ToolbarUpdater.exe [2012-03-19 918880]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 2286976]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-03-15 136176]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-19 44376]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-03-15 136176]
S3 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-03-15 182768]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2011-01-05 340240]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 Partner Service;Partner Service; C:\ProgramData\Partner\Partner.exe [2012-03-15 332272]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-03-15 1255736]
S4 NetMsmqActivator;@C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 57184]
-----------------EOF-----------------
K NB se, vzhledem k tomu, že je u známých, dostanu ve středu odpoledne.
Díky za pomoc.