Prosim o kontrolu dekuji
Napsal: 11 zář 2012 16:15
Logfile of random's system information tool 1.09 (written by random/random)
Run by Alexandr at 2012-09-11 17:13:32
Microsoft Windows 7 Home Premium
System drive C: has 373 GB (80%) free of 467 GB
Total RAM: 3246 MB (44% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:15:26, on 11.9.2012
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v9.00 (9.00.8112.16448)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Program Files\Common Files\Java\Java Update\jucheck.exe
C:\Users\Alexandr\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Alexandr\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Alexandr\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Alexandr\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Alexandr\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Alexandr\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Alexandr\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Alexandr\Downloads\RSIT.exe
C:\Program Files\trend micro\Alexandr.exe
C:\Users\Alexandr\Downloads\windows6.1-KB976932-X86.exe
C:\ecfe53a069841dec879dfc63a0\spinstall.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eu.ask.com/?l=dis&o=101702
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\Alexandr\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "C:\Program Files\DAEMON Tools Pro\DTAgent.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
--
End of file - 4617 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1400525804-1886829956-2827827383-1002Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1400525804-1886829956-2827827383-1002UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-09-10 453104]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-08-21 1227224]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-09-10 157680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-08-21 1227224]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-08-21 4282728]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2012-06-11 10996368]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-08-11 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-08-11 175640]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-08-11 169496]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-06-08 102400]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-17 252296]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Alexandr\AppData\Local\Google\Update\GoogleUpdate.exe [2012-08-10 116648]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1173504]
"DAEMON Tools Pro Agent"=C:\Program Files\DAEMON Tools Pro\DTAgent.exe [2012-02-02 3035968]
""= []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-08-11 227328]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.iv50"=ir50_32.dll
"msacm.iac2"=C:\Windows\system32\Iac25_32.ax
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-09-11 17:14:58 ----D---- C:\Windows\system32\EventProviders
2012-09-11 17:14:25 ----D---- C:\ecfe53a069841dec879dfc63a0
2012-09-10 18:23:55 ----D---- C:\ProgramData\Sun
2012-09-10 18:23:54 ----D---- C:\Program Files\Common Files\Java
2012-09-10 18:23:37 ----A---- C:\Windows\system32\deployJava1.dll
2012-09-10 18:23:36 ----A---- C:\Windows\system32\npDeployJava1.dll
2012-09-10 18:23:36 ----A---- C:\Windows\system32\javaws.exe
2012-09-10 18:23:22 ----A---- C:\Windows\system32\javaw.exe
2012-09-10 18:23:22 ----A---- C:\Windows\system32\java.exe
2012-09-10 18:23:04 ----D---- C:\Program Files\Java
2012-09-08 16:41:54 ----D---- C:\Users\Alexandr\AppData\Roaming\Mozilla
2012-08-26 21:51:12 ----D---- C:\Users\Alexandr\AppData\Roaming\Foxit Software
2012-08-26 21:50:06 ----D---- C:\Program Files\Foxit Software
2012-08-26 20:56:15 ----A---- C:\Windows\system32\drivers\PnkBstrK.sys
2012-08-26 20:56:03 ----A---- C:\Windows\system32\PnkBstrB.exe
2012-08-26 20:55:35 ----A---- C:\Windows\system32\PnkBstrA.exe
2012-08-26 20:55:32 ----D---- C:\Users\Alexandr\AppData\Roaming\Ubisoft
2012-08-24 06:59:53 ----D---- C:\Program Files\Microsoft SkyDrive
2012-08-24 06:59:32 ----D---- C:\ProgramData\Microsoft SkyDrive
2012-08-24 06:58:31 ----D---- C:\Program Files\Common Files\Windows Live
2012-08-22 07:06:52 ----D---- C:\Program Files\MSXML 4.0
2012-08-21 18:24:58 ----D---- C:\Program Files\Common Files\Nokia
2012-08-21 18:23:56 ----A---- C:\Windows\system32\drivers\pccsmcfd.sys
2012-08-21 18:23:49 ----D---- C:\Program Files\PC Connectivity Solution
2012-08-21 18:20:00 ----D---- C:\ProgramData\PC Suite
2012-08-21 18:19:58 ----D---- C:\Users\Alexandr\AppData\Roaming\PC Suite
2012-08-21 18:19:17 ----D---- C:\ProgramData\Nokia
2012-08-21 18:18:43 ----D---- C:\Program Files\DIFX
2012-08-21 18:18:08 ----A---- C:\Windows\system32\nmwcdcls.dll
2012-08-21 18:16:42 ----D---- C:\ProgramData\NokiaInstallerCache
2012-08-21 18:16:42 ----D---- C:\Program Files\Nokia
2012-08-18 18:55:28 ----D---- C:\Users\Alexandr\AppData\Roaming\dvdcss
2012-08-18 18:55:17 ----D---- C:\Users\Alexandr\AppData\Roaming\vlc
2012-08-18 18:53:49 ----D---- C:\Program Files\VideoLAN
2012-08-18 18:28:15 ----D---- C:\ProgramData\Ask
2012-08-18 18:28:13 ----D---- C:\Program Files\The KMPlayer
2012-08-17 13:33:29 ----D---- C:\Users\Alexandr\AppData\Roaming\WinRAR
2012-08-15 22:32:45 ----D---- C:\Users\Alexandr\AppData\Roaming\Macromedia
2012-08-15 22:28:04 ----D---- C:\Users\Alexandr\AppData\Roaming\Nero
2012-08-15 22:19:29 ----D---- C:\ProgramData\Nero
2012-08-15 22:17:03 ----D---- C:\Users\Alexandr\AppData\Roaming\Adobe
2012-08-15 22:13:54 ----DC---- C:\Windows\system32\DRVSTORE
2012-08-15 22:13:37 ----D---- C:\Windows\system32\Macromed
2012-08-15 21:29:51 ----D---- C:\Games
2012-08-15 20:19:34 ----A---- C:\Windows\system32\drivers\bthport.sys
2012-08-15 20:18:25 ----A---- C:\Windows\system32\mshtmled.dll
2012-08-15 20:18:24 ----A---- C:\Windows\system32\ieui.dll
2012-08-15 20:18:24 ----A---- C:\Windows\system32\iertutil.dll
2012-08-15 20:18:23 ----A---- C:\Windows\system32\ieUnatt.exe
2012-08-15 20:18:22 ----A---- C:\Windows\system32\jsproxy.dll
2012-08-15 20:18:21 ----A---- C:\Windows\system32\wininet.dll
2012-08-15 20:18:21 ----A---- C:\Windows\system32\url.dll
2012-08-15 20:18:21 ----A---- C:\Windows\system32\jscript9.dll
2012-08-15 20:18:21 ----A---- C:\Windows\system32\jscript.dll
2012-08-15 20:18:19 ----A---- C:\Windows\system32\urlmon.dll
2012-08-15 20:18:18 ----A---- C:\Windows\system32\mshtml.dll
2012-08-15 20:18:17 ----A---- C:\Windows\system32\ieframe.dll
2012-08-15 18:50:58 ----A---- C:\Windows\system32\srcore.dll
2012-08-15 18:50:55 ----A---- C:\Windows\system32\win32k.sys
2012-08-15 18:50:53 ----A---- C:\Windows\system32\win32spl.dll
2012-08-15 18:50:52 ----A---- C:\Windows\system32\spoolsv.exe
2012-08-15 18:50:49 ----A---- C:\Windows\system32\netapi32.dll
2012-08-15 18:50:49 ----A---- C:\Windows\system32\browser.dll
2012-08-15 18:50:49 ----A---- C:\Windows\system32\browcli.dll
2012-08-15 18:50:47 ----A---- C:\Windows\system32\localspl.dll
2012-08-14 17:09:52 ----D---- C:\Program Files\Bing Bar Installer
2012-08-13 20:29:22 ----D---- C:\Program Files\Rapala Pro Fishing
2012-08-13 20:24:16 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2012-08-13 19:54:21 ----A---- C:\Windows\system32\drivers\sptd.sys
2012-08-13 19:52:05 ----D---- C:\Users\Alexandr\AppData\Roaming\DAEMON Tools Pro
2012-08-13 19:52:05 ----D---- C:\ProgramData\DAEMON Tools Pro
2012-08-13 19:51:04 ----D---- C:\Program Files\DAEMON Tools Pro
2012-08-13 17:08:25 ----A---- C:\Windows\system32\RtNicProp32.dll
2012-08-13 17:08:25 ----A---- C:\Windows\system32\drivers\Rt86win7.sys
2012-08-12 23:36:08 ----A---- C:\Windows\system32\WavesGUILib.dll
2012-08-12 23:36:08 ----A---- C:\Windows\system32\tosade.dll
2012-08-12 23:36:08 ----A---- C:\Windows\system32\TepeqAPO.dll
2012-08-12 23:36:08 ----A---- C:\Windows\system32\tadefxapo2.dll
2012-08-12 23:36:08 ----A---- C:\Windows\system32\tadefxapo.dll
2012-08-12 23:36:07 ----A---- C:\Windows\system32\SFSS_APO.dll
2012-08-12 23:36:07 ----A---- C:\Windows\system32\SFNHK.dll
2012-08-12 23:36:07 ----A---- C:\Windows\system32\SFCOM.dll
2012-08-12 23:36:07 ----A---- C:\Windows\system32\SFAPO.dll
2012-08-12 23:36:06 ----A---- C:\Windows\system32\SETDDA5.tmp
2012-08-12 23:36:06 ----A---- C:\Windows\system32\RtkPgExt.dll
2012-08-12 23:36:06 ----A---- C:\Windows\system32\RtkCoLDR.dll
2012-08-12 23:36:06 ----A---- C:\Windows\system32\RtkCoInstII.dll
2012-08-12 23:36:06 ----A---- C:\Windows\system32\RtkApoApi.dll
2012-08-12 23:36:06 ----A---- C:\Windows\system32\drivers\RTKVHDA.sys
2012-08-12 23:36:05 ----A---- C:\Windows\system32\RTEEP32A.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\RTEEL32A.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\RTEEG32A.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\RTEED32A.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\RP3DHT32.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\RP3DAA32.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\RCoRes.dat
2012-08-12 23:36:05 ----A---- C:\Windows\system32\R4EEP32A.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\R4EEL32A.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\R4EEG32A.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\R4EED32A.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\R4EEA32A.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2012-08-12 23:36:04 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2012-08-12 23:36:04 ----A---- C:\Windows\system32\MaxxAudioRealtek2.dll
2012-08-12 23:36:04 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2012-08-12 23:36:04 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2012-08-12 23:36:04 ----A---- C:\Windows\system32\MaxxAudioAPOShell.dll
2012-08-12 23:36:04 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2012-08-12 23:36:04 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2012-08-12 23:36:04 ----A---- C:\Windows\system32\KAAPORT.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\FMAPO.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSVoiceClarityDLL.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSU2PREC32.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSU2PLFX32.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSU2PGFX32.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSSymmetryDLL.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSS2SpeakerDLL.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSNeoPCDLL.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSLimiterDLL.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSLFXAPO.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSGFXAPONS.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSGFXAPO.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSGainCompensatorDLL.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSBoostDLL.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSBassEnhancementDLL.dll
2012-08-12 23:36:00 ----A---- C:\Windows\system32\AERTARen.dll
2012-08-12 23:36:00 ----A---- C:\Windows\system32\AERTACap.dll
2012-08-12 19:51:29 ----D---- C:\R.G. Catalyst
2012-08-12 15:42:49 ----D---- C:\Program Files\Microsoft
2012-08-12 15:42:27 ----A---- C:\Windows\system32\XAudio2_7.dll
2012-08-12 15:42:27 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2012-08-12 15:42:27 ----A---- C:\Windows\system32\xactengine3_7.dll
2012-08-12 15:42:27 ----A---- C:\Windows\system32\d3dx11_43.dll
2012-08-12 15:42:27 ----A---- C:\Windows\system32\d3dx10_43.dll
2012-08-12 15:42:27 ----A---- C:\Windows\system32\d3dcsx_43.dll
2012-08-12 15:42:27 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2012-08-12 15:42:26 ----A---- C:\Windows\system32\D3DX9_43.dll
2012-08-12 15:42:23 ----A---- C:\Windows\system32\XAudio2_6.dll
2012-08-12 15:42:23 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2012-08-12 15:42:23 ----A---- C:\Windows\system32\xactengine3_6.dll
2012-08-12 15:42:23 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2012-08-12 15:42:22 ----A---- C:\Windows\system32\XAudio2_5.dll
2012-08-12 15:42:20 ----A---- C:\Windows\system32\xactengine3_5.dll
2012-08-12 15:42:20 ----A---- C:\Windows\system32\d3dx11_42.dll
2012-08-12 15:42:20 ----A---- C:\Windows\system32\d3dx10_42.dll
2012-08-12 15:42:20 ----A---- C:\Windows\system32\d3dcsx_42.dll
2012-08-12 15:42:20 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2012-08-12 15:42:19 ----A---- C:\Windows\system32\D3DX9_42.dll
2012-08-12 15:42:19 ----A---- C:\Windows\system32\d3dx10_41.dll
2012-08-12 15:42:19 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2012-08-12 15:42:18 ----A---- C:\Windows\system32\D3DX9_41.dll
2012-08-12 15:42:17 ----A---- C:\Windows\system32\XAudio2_4.dll
2012-08-12 15:42:17 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2012-08-12 15:42:16 ----A---- C:\Windows\system32\xactengine3_4.dll
2012-08-12 15:42:16 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2012-08-12 15:42:15 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2012-08-12 15:42:14 ----A---- C:\Windows\system32\D3DX9_40.dll
2012-08-12 15:42:13 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2012-08-12 15:42:12 ----A---- C:\Windows\system32\XAudio2_3.dll
2012-08-12 15:42:12 ----A---- C:\Windows\system32\xactengine3_3.dll
2012-08-12 15:42:11 ----A---- C:\Windows\system32\XAudio2_2.dll
2012-08-12 15:42:11 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2012-08-12 15:42:11 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2012-08-12 15:42:10 ----A---- C:\Windows\system32\xactengine3_2.dll
2012-08-12 15:42:09 ----A---- C:\Windows\system32\D3DX9_39.dll
2012-08-12 15:42:09 ----A---- C:\Windows\system32\d3dx10_39.dll
2012-08-12 15:42:09 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2012-08-12 15:42:08 ----A---- C:\Windows\system32\XAudio2_1.dll
2012-08-12 15:42:08 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2012-08-12 15:42:07 ----A---- C:\Windows\system32\xactengine3_1.dll
2012-08-12 15:42:07 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2012-08-12 15:42:07 ----A---- C:\Windows\system32\D3DX9_38.dll
2012-08-12 15:42:07 ----A---- C:\Windows\system32\d3dx10_38.dll
2012-08-12 15:42:07 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2012-08-12 15:42:06 ----A---- C:\Windows\system32\XAudio2_0.dll
2012-08-12 15:42:06 ----A---- C:\Windows\system32\xactengine3_0.dll
2012-08-12 15:42:06 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2012-08-12 15:42:06 ----A---- C:\Windows\system32\D3DX9_37.dll
2012-08-12 15:42:06 ----A---- C:\Windows\system32\d3dx10_37.dll
2012-08-12 15:42:06 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2012-08-12 15:42:04 ----A---- C:\Windows\system32\xactengine2_10.dll
2012-08-12 15:42:03 ----A---- C:\Windows\system32\d3dx9_36.dll
2012-08-12 15:42:03 ----A---- C:\Windows\system32\d3dx10_36.dll
2012-08-12 15:42:03 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2012-08-12 15:42:00 ----A---- C:\Windows\system32\xactengine2_9.dll
2012-08-12 15:42:00 ----A---- C:\Windows\system32\xactengine2_8.dll
2012-08-12 15:42:00 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2012-08-12 15:42:00 ----A---- C:\Windows\system32\d3dx9_35.dll
2012-08-12 15:42:00 ----A---- C:\Windows\system32\d3dx10_35.dll
2012-08-12 15:42:00 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2012-08-12 15:41:59 ----A---- C:\Windows\system32\d3dx10_34.dll
2012-08-12 15:41:59 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2012-08-12 15:41:58 ----A---- C:\Windows\system32\xinput1_3.dll
2012-08-12 15:41:58 ----A---- C:\Windows\system32\xactengine2_7.dll
2012-08-12 15:41:58 ----A---- C:\Windows\system32\d3dx9_34.dll
2012-08-12 15:41:58 ----A---- C:\Windows\system32\d3dx10_33.dll
2012-08-12 15:41:58 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2012-08-12 15:41:57 ----A---- C:\Windows\system32\xactengine2_6.dll
2012-08-12 15:41:57 ----A---- C:\Windows\system32\xactengine2_5.dll
2012-08-12 15:41:57 ----A---- C:\Windows\system32\d3dx9_33.dll
2012-08-12 15:41:57 ----A---- C:\Windows\system32\d3dx9_32.dll
2012-08-12 15:41:57 ----A---- C:\Windows\system32\d3dx10.dll
2012-08-12 15:41:56 ----A---- C:\Windows\system32\xactengine2_4.dll
2012-08-12 15:41:56 ----A---- C:\Windows\system32\x3daudio1_1.dll
2012-08-12 15:41:56 ----A---- C:\Windows\system32\d3dx9_31.dll
2012-08-12 15:41:55 ----A---- C:\Windows\system32\xinput1_2.dll
2012-08-12 15:41:55 ----A---- C:\Windows\system32\xactengine2_3.dll
2012-08-12 15:41:54 ----A---- C:\Windows\system32\xinput1_1.dll
2012-08-12 15:41:54 ----A---- C:\Windows\system32\xactengine2_2.dll
2012-08-12 15:41:54 ----A---- C:\Windows\system32\xactengine2_1.dll
2012-08-12 15:41:44 ----A---- C:\Windows\system32\d3dx9_30.dll
2012-08-12 15:41:43 ----A---- C:\Windows\system32\xactengine2_0.dll
2012-08-12 15:41:43 ----A---- C:\Windows\system32\x3daudio1_0.dll
2012-08-12 15:41:43 ----A---- C:\Windows\system32\d3dx9_29.dll
2012-08-12 15:41:43 ----A---- C:\Windows\system32\d3dx9_28.dll
2012-08-12 15:41:42 ----A---- C:\Windows\system32\d3dx9_27.dll
2012-08-12 15:41:42 ----A---- C:\Windows\system32\d3dx9_26.dll
2012-08-12 15:41:42 ----A---- C:\Windows\system32\d3dx9_25.dll
2012-08-12 15:41:42 ----A---- C:\Windows\system32\d3dx9_24.dll
2012-08-12 15:39:59 ----HD---- C:\Windows\msdownld.tmp
2012-08-12 15:39:54 ----D---- C:\Windows\system32\directx
2012-08-12 15:18:34 ----D---- C:\Program Files\uTorrent
2012-08-12 15:17:49 ----D---- C:\Users\Alexandr\AppData\Roaming\uTorrent
2012-08-12 15:09:08 ----D---- C:\rsit
2012-08-12 15:09:08 ----D---- C:\Program Files\trend micro
======List of files/folders modified in the last 1 month======
2012-09-11 17:15:16 ----D---- C:\Windows\Temp
2012-09-11 17:15:08 ----D---- C:\Windows\Prefetch
2012-09-11 17:14:58 ----D---- C:\Windows\System32
2012-09-11 17:09:59 ----D---- C:\Windows\system32\config
2012-09-11 17:06:57 ----D---- C:\Windows
2012-09-11 17:06:49 ----D---- C:\Windows\inf
2012-09-11 16:19:00 ----SHD---- C:\System Volume Information
2012-09-11 16:17:20 ----D---- C:\Windows\SoftwareDistribution
2012-09-10 19:12:47 ----SHD---- C:\Windows\Installer
2012-09-10 19:12:47 ----RD---- C:\Program Files
2012-09-10 18:43:32 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-09-10 18:23:55 ----HD---- C:\ProgramData
2012-09-10 18:23:54 ----D---- C:\Program Files\Common Files
2012-09-10 17:52:42 ----D---- C:\Windows\system32\drivers
2012-09-08 16:41:02 ----D---- C:\Windows\system32\Tasks
2012-08-27 06:58:39 ----D---- C:\Windows\Logs
2012-08-26 20:55:36 ----D---- C:\Windows\system32\LogFiles
2012-08-24 20:09:55 ----D---- C:\Windows\winsxs
2012-08-24 06:58:29 ----SD---- C:\ProgramData\Microsoft
2012-08-23 16:23:23 ----D---- C:\Windows\system32\wdi
2012-08-21 19:02:31 ----D---- C:\Windows\system32\catroot
2012-08-21 18:23:56 ----D---- C:\Windows\system32\DriverStore
2012-08-21 18:23:04 ----D---- C:\Windows\system32\catroot2
2012-08-21 18:13:09 ----D---- C:\Windows\system32\drivers\UMDF
2012-08-21 11:12:23 ----A---- C:\Windows\system32\aswBoot.exe
2012-08-21 09:40:24 ----D---- C:\Windows\system32\NDF
2012-08-15 22:32:11 ----D---- C:\Windows\Cursors
2012-08-15 22:14:31 ----RSD---- C:\Windows\Fonts
2012-08-15 22:14:31 ----D---- C:\Windows\system32\migration
2012-08-15 22:14:31 ----D---- C:\Program Files\Internet Explorer
2012-08-15 21:51:39 ----D---- C:\Windows\debug
2012-08-15 20:20:35 ----A---- C:\Windows\system32\MRT.exe
2012-08-15 10:48:13 ----D---- C:\Windows\rescache
2012-08-13 22:30:30 ----D---- C:\Program Files\Common Files\InstallShield
2012-08-13 22:30:09 ----HD---- C:\Program Files\InstallShield Installation Information
2012-08-13 17:08:24 ----D---- C:\Program Files\Realtek
2012-08-13 17:06:47 ----D---- C:\Windows\Tasks
2012-08-13 17:06:47 ----D---- C:\Windows\system32\wfp
2012-08-13 17:06:46 ----D---- C:\Windows\system32\CodeIntegrity
2012-08-13 17:06:46 ----D---- C:\Windows\security
2012-08-13 17:06:44 ----D---- C:\Windows\system32\wbem
2012-08-13 17:06:44 ----D---- C:\Windows\registration
2012-08-13 16:49:55 ----D---- C:\Windows\Microsoft.NET
2012-08-13 16:49:26 ----RSD---- C:\Windows\assembly
2012-08-12 23:37:28 ----HD---- C:\Program Files\Temp
2012-08-12 23:37:01 ----D---- C:\Windows\system32\RTCOM
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2012-08-13 477240]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2012-08-21 44784]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-08-21 729752]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-08-21 355632]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-08-21 54232]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-08-13 242240]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-08-21 21256]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-08-21 58680]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2012-08-11 5551104]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2012-08-11 176128]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2011-06-27 2191872]
R3 HECI;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECI.sys [2009-09-17 41088]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2012-06-12 3238608]
R3 intelkmd;intelkmd; C:\Windows\system32\DRIVERS\igdpmd32.sys [2012-08-11 8744448]
R3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIV.sys [2012-08-11 168480]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2012-02-16 514152]
S0 prohlp02;StarForce Protection Helper Driver v2; C:\Windows\System32\drivers\prohlp02.sys [2004-10-07 115744]
S0 sfhlp01;StarForce Protection Helper Driver; C:\Windows\System32\drivers\sfhlp01.sys [2003-12-01 4832]
S1 prodrv06;StarForce Protection Environment Driver v6; C:\Windows\System32\drivers\prodrv06.sys [2004-10-07 80576]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 ao6xri1z;ao6xri1z; C:\Windows\system32\drivers\ao6xri1z.sys []
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393216]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2012-08-11 8744448]
S3 MSI_MSIBIOS_010507;MSI_MSIBIOS_010507; \??\C:\Program Files\MSI\Live Update 5\msibios32_100507.sys []
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2012-01-09 18176]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbo.sys [2012-01-09 23168]
S3 NTIOLib_1_0_4;NTIOLib_1_0_4; \??\C:\Program Files\MSI\Live Update 5\NTIOLib.sys []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2012-06-27 19072]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2012-01-09 8192]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2009-07-14 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2012-01-09 8192]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 34944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2012-08-11 176128]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-08-21 44808]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2012-08-26 76888]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2012-08-01 724888]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-08-10 1343400]
-----------------EOF-----------------
Run by Alexandr at 2012-09-11 17:13:32
Microsoft Windows 7 Home Premium
System drive C: has 373 GB (80%) free of 467 GB
Total RAM: 3246 MB (44% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:15:26, on 11.9.2012
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v9.00 (9.00.8112.16448)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Program Files\Common Files\Java\Java Update\jucheck.exe
C:\Users\Alexandr\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Alexandr\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Alexandr\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Alexandr\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Alexandr\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Alexandr\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Alexandr\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Alexandr\Downloads\RSIT.exe
C:\Program Files\trend micro\Alexandr.exe
C:\Users\Alexandr\Downloads\windows6.1-KB976932-X86.exe
C:\ecfe53a069841dec879dfc63a0\spinstall.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eu.ask.com/?l=dis&o=101702
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\Alexandr\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] "C:\Program Files\DAEMON Tools Pro\DTAgent.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
--
End of file - 4617 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1400525804-1886829956-2827827383-1002Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1400525804-1886829956-2827827383-1002UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-09-10 453104]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-08-21 1227224]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-09-10 157680]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2012-08-21 1227224]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-08-21 4282728]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2012-06-11 10996368]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-08-11 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-08-11 175640]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-08-11 169496]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-06-08 102400]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2012-01-17 252296]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Alexandr\AppData\Local\Google\Update\GoogleUpdate.exe [2012-08-10 116648]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1173504]
"DAEMON Tools Pro Agent"=C:\Program Files\DAEMON Tools Pro\DTAgent.exe [2012-02-02 3035968]
""= []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-08-11 227328]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.iv50"=ir50_32.dll
"msacm.iac2"=C:\Windows\system32\Iac25_32.ax
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-09-11 17:14:58 ----D---- C:\Windows\system32\EventProviders
2012-09-11 17:14:25 ----D---- C:\ecfe53a069841dec879dfc63a0
2012-09-10 18:23:55 ----D---- C:\ProgramData\Sun
2012-09-10 18:23:54 ----D---- C:\Program Files\Common Files\Java
2012-09-10 18:23:37 ----A---- C:\Windows\system32\deployJava1.dll
2012-09-10 18:23:36 ----A---- C:\Windows\system32\npDeployJava1.dll
2012-09-10 18:23:36 ----A---- C:\Windows\system32\javaws.exe
2012-09-10 18:23:22 ----A---- C:\Windows\system32\javaw.exe
2012-09-10 18:23:22 ----A---- C:\Windows\system32\java.exe
2012-09-10 18:23:04 ----D---- C:\Program Files\Java
2012-09-08 16:41:54 ----D---- C:\Users\Alexandr\AppData\Roaming\Mozilla
2012-08-26 21:51:12 ----D---- C:\Users\Alexandr\AppData\Roaming\Foxit Software
2012-08-26 21:50:06 ----D---- C:\Program Files\Foxit Software
2012-08-26 20:56:15 ----A---- C:\Windows\system32\drivers\PnkBstrK.sys
2012-08-26 20:56:03 ----A---- C:\Windows\system32\PnkBstrB.exe
2012-08-26 20:55:35 ----A---- C:\Windows\system32\PnkBstrA.exe
2012-08-26 20:55:32 ----D---- C:\Users\Alexandr\AppData\Roaming\Ubisoft
2012-08-24 06:59:53 ----D---- C:\Program Files\Microsoft SkyDrive
2012-08-24 06:59:32 ----D---- C:\ProgramData\Microsoft SkyDrive
2012-08-24 06:58:31 ----D---- C:\Program Files\Common Files\Windows Live
2012-08-22 07:06:52 ----D---- C:\Program Files\MSXML 4.0
2012-08-21 18:24:58 ----D---- C:\Program Files\Common Files\Nokia
2012-08-21 18:23:56 ----A---- C:\Windows\system32\drivers\pccsmcfd.sys
2012-08-21 18:23:49 ----D---- C:\Program Files\PC Connectivity Solution
2012-08-21 18:20:00 ----D---- C:\ProgramData\PC Suite
2012-08-21 18:19:58 ----D---- C:\Users\Alexandr\AppData\Roaming\PC Suite
2012-08-21 18:19:17 ----D---- C:\ProgramData\Nokia
2012-08-21 18:18:43 ----D---- C:\Program Files\DIFX
2012-08-21 18:18:08 ----A---- C:\Windows\system32\nmwcdcls.dll
2012-08-21 18:16:42 ----D---- C:\ProgramData\NokiaInstallerCache
2012-08-21 18:16:42 ----D---- C:\Program Files\Nokia
2012-08-18 18:55:28 ----D---- C:\Users\Alexandr\AppData\Roaming\dvdcss
2012-08-18 18:55:17 ----D---- C:\Users\Alexandr\AppData\Roaming\vlc
2012-08-18 18:53:49 ----D---- C:\Program Files\VideoLAN
2012-08-18 18:28:15 ----D---- C:\ProgramData\Ask
2012-08-18 18:28:13 ----D---- C:\Program Files\The KMPlayer
2012-08-17 13:33:29 ----D---- C:\Users\Alexandr\AppData\Roaming\WinRAR
2012-08-15 22:32:45 ----D---- C:\Users\Alexandr\AppData\Roaming\Macromedia
2012-08-15 22:28:04 ----D---- C:\Users\Alexandr\AppData\Roaming\Nero
2012-08-15 22:19:29 ----D---- C:\ProgramData\Nero
2012-08-15 22:17:03 ----D---- C:\Users\Alexandr\AppData\Roaming\Adobe
2012-08-15 22:13:54 ----DC---- C:\Windows\system32\DRVSTORE
2012-08-15 22:13:37 ----D---- C:\Windows\system32\Macromed
2012-08-15 21:29:51 ----D---- C:\Games
2012-08-15 20:19:34 ----A---- C:\Windows\system32\drivers\bthport.sys
2012-08-15 20:18:25 ----A---- C:\Windows\system32\mshtmled.dll
2012-08-15 20:18:24 ----A---- C:\Windows\system32\ieui.dll
2012-08-15 20:18:24 ----A---- C:\Windows\system32\iertutil.dll
2012-08-15 20:18:23 ----A---- C:\Windows\system32\ieUnatt.exe
2012-08-15 20:18:22 ----A---- C:\Windows\system32\jsproxy.dll
2012-08-15 20:18:21 ----A---- C:\Windows\system32\wininet.dll
2012-08-15 20:18:21 ----A---- C:\Windows\system32\url.dll
2012-08-15 20:18:21 ----A---- C:\Windows\system32\jscript9.dll
2012-08-15 20:18:21 ----A---- C:\Windows\system32\jscript.dll
2012-08-15 20:18:19 ----A---- C:\Windows\system32\urlmon.dll
2012-08-15 20:18:18 ----A---- C:\Windows\system32\mshtml.dll
2012-08-15 20:18:17 ----A---- C:\Windows\system32\ieframe.dll
2012-08-15 18:50:58 ----A---- C:\Windows\system32\srcore.dll
2012-08-15 18:50:55 ----A---- C:\Windows\system32\win32k.sys
2012-08-15 18:50:53 ----A---- C:\Windows\system32\win32spl.dll
2012-08-15 18:50:52 ----A---- C:\Windows\system32\spoolsv.exe
2012-08-15 18:50:49 ----A---- C:\Windows\system32\netapi32.dll
2012-08-15 18:50:49 ----A---- C:\Windows\system32\browser.dll
2012-08-15 18:50:49 ----A---- C:\Windows\system32\browcli.dll
2012-08-15 18:50:47 ----A---- C:\Windows\system32\localspl.dll
2012-08-14 17:09:52 ----D---- C:\Program Files\Bing Bar Installer
2012-08-13 20:29:22 ----D---- C:\Program Files\Rapala Pro Fishing
2012-08-13 20:24:16 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2012-08-13 19:54:21 ----A---- C:\Windows\system32\drivers\sptd.sys
2012-08-13 19:52:05 ----D---- C:\Users\Alexandr\AppData\Roaming\DAEMON Tools Pro
2012-08-13 19:52:05 ----D---- C:\ProgramData\DAEMON Tools Pro
2012-08-13 19:51:04 ----D---- C:\Program Files\DAEMON Tools Pro
2012-08-13 17:08:25 ----A---- C:\Windows\system32\RtNicProp32.dll
2012-08-13 17:08:25 ----A---- C:\Windows\system32\drivers\Rt86win7.sys
2012-08-12 23:36:08 ----A---- C:\Windows\system32\WavesGUILib.dll
2012-08-12 23:36:08 ----A---- C:\Windows\system32\tosade.dll
2012-08-12 23:36:08 ----A---- C:\Windows\system32\TepeqAPO.dll
2012-08-12 23:36:08 ----A---- C:\Windows\system32\tadefxapo2.dll
2012-08-12 23:36:08 ----A---- C:\Windows\system32\tadefxapo.dll
2012-08-12 23:36:07 ----A---- C:\Windows\system32\SFSS_APO.dll
2012-08-12 23:36:07 ----A---- C:\Windows\system32\SFNHK.dll
2012-08-12 23:36:07 ----A---- C:\Windows\system32\SFCOM.dll
2012-08-12 23:36:07 ----A---- C:\Windows\system32\SFAPO.dll
2012-08-12 23:36:06 ----A---- C:\Windows\system32\SETDDA5.tmp
2012-08-12 23:36:06 ----A---- C:\Windows\system32\RtkPgExt.dll
2012-08-12 23:36:06 ----A---- C:\Windows\system32\RtkCoLDR.dll
2012-08-12 23:36:06 ----A---- C:\Windows\system32\RtkCoInstII.dll
2012-08-12 23:36:06 ----A---- C:\Windows\system32\RtkApoApi.dll
2012-08-12 23:36:06 ----A---- C:\Windows\system32\drivers\RTKVHDA.sys
2012-08-12 23:36:05 ----A---- C:\Windows\system32\RTEEP32A.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\RTEEL32A.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\RTEEG32A.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\RTEED32A.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\RP3DHT32.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\RP3DAA32.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\RCoRes.dat
2012-08-12 23:36:05 ----A---- C:\Windows\system32\R4EEP32A.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\R4EEL32A.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\R4EEG32A.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\R4EED32A.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\R4EEA32A.dll
2012-08-12 23:36:05 ----A---- C:\Windows\system32\drivers\RTAIODAT.DAT
2012-08-12 23:36:04 ----A---- C:\Windows\system32\MaxxVolumeSDAPO.dll
2012-08-12 23:36:04 ----A---- C:\Windows\system32\MaxxAudioRealtek2.dll
2012-08-12 23:36:04 ----A---- C:\Windows\system32\MaxxAudioRealtek.dll
2012-08-12 23:36:04 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2012-08-12 23:36:04 ----A---- C:\Windows\system32\MaxxAudioAPOShell.dll
2012-08-12 23:36:04 ----A---- C:\Windows\system32\MaxxAudioAPO30.dll
2012-08-12 23:36:04 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2012-08-12 23:36:04 ----A---- C:\Windows\system32\KAAPORT.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\FMAPO.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSVoiceClarityDLL.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSU2PREC32.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSU2PLFX32.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSU2PGFX32.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSSymmetryDLL.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSS2SpeakerDLL.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSS2HeadphoneDLL.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSNeoPCDLL.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSLimiterDLL.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSLFXAPO.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSGFXAPONS.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSGFXAPO.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSGainCompensatorDLL.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSBoostDLL.dll
2012-08-12 23:36:01 ----A---- C:\Windows\system32\DTSBassEnhancementDLL.dll
2012-08-12 23:36:00 ----A---- C:\Windows\system32\AERTARen.dll
2012-08-12 23:36:00 ----A---- C:\Windows\system32\AERTACap.dll
2012-08-12 19:51:29 ----D---- C:\R.G. Catalyst
2012-08-12 15:42:49 ----D---- C:\Program Files\Microsoft
2012-08-12 15:42:27 ----A---- C:\Windows\system32\XAudio2_7.dll
2012-08-12 15:42:27 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2012-08-12 15:42:27 ----A---- C:\Windows\system32\xactengine3_7.dll
2012-08-12 15:42:27 ----A---- C:\Windows\system32\d3dx11_43.dll
2012-08-12 15:42:27 ----A---- C:\Windows\system32\d3dx10_43.dll
2012-08-12 15:42:27 ----A---- C:\Windows\system32\d3dcsx_43.dll
2012-08-12 15:42:27 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2012-08-12 15:42:26 ----A---- C:\Windows\system32\D3DX9_43.dll
2012-08-12 15:42:23 ----A---- C:\Windows\system32\XAudio2_6.dll
2012-08-12 15:42:23 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2012-08-12 15:42:23 ----A---- C:\Windows\system32\xactengine3_6.dll
2012-08-12 15:42:23 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2012-08-12 15:42:22 ----A---- C:\Windows\system32\XAudio2_5.dll
2012-08-12 15:42:20 ----A---- C:\Windows\system32\xactengine3_5.dll
2012-08-12 15:42:20 ----A---- C:\Windows\system32\d3dx11_42.dll
2012-08-12 15:42:20 ----A---- C:\Windows\system32\d3dx10_42.dll
2012-08-12 15:42:20 ----A---- C:\Windows\system32\d3dcsx_42.dll
2012-08-12 15:42:20 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2012-08-12 15:42:19 ----A---- C:\Windows\system32\D3DX9_42.dll
2012-08-12 15:42:19 ----A---- C:\Windows\system32\d3dx10_41.dll
2012-08-12 15:42:19 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2012-08-12 15:42:18 ----A---- C:\Windows\system32\D3DX9_41.dll
2012-08-12 15:42:17 ----A---- C:\Windows\system32\XAudio2_4.dll
2012-08-12 15:42:17 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2012-08-12 15:42:16 ----A---- C:\Windows\system32\xactengine3_4.dll
2012-08-12 15:42:16 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2012-08-12 15:42:15 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2012-08-12 15:42:14 ----A---- C:\Windows\system32\D3DX9_40.dll
2012-08-12 15:42:13 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2012-08-12 15:42:12 ----A---- C:\Windows\system32\XAudio2_3.dll
2012-08-12 15:42:12 ----A---- C:\Windows\system32\xactengine3_3.dll
2012-08-12 15:42:11 ----A---- C:\Windows\system32\XAudio2_2.dll
2012-08-12 15:42:11 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2012-08-12 15:42:11 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2012-08-12 15:42:10 ----A---- C:\Windows\system32\xactengine3_2.dll
2012-08-12 15:42:09 ----A---- C:\Windows\system32\D3DX9_39.dll
2012-08-12 15:42:09 ----A---- C:\Windows\system32\d3dx10_39.dll
2012-08-12 15:42:09 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2012-08-12 15:42:08 ----A---- C:\Windows\system32\XAudio2_1.dll
2012-08-12 15:42:08 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2012-08-12 15:42:07 ----A---- C:\Windows\system32\xactengine3_1.dll
2012-08-12 15:42:07 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2012-08-12 15:42:07 ----A---- C:\Windows\system32\D3DX9_38.dll
2012-08-12 15:42:07 ----A---- C:\Windows\system32\d3dx10_38.dll
2012-08-12 15:42:07 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2012-08-12 15:42:06 ----A---- C:\Windows\system32\XAudio2_0.dll
2012-08-12 15:42:06 ----A---- C:\Windows\system32\xactengine3_0.dll
2012-08-12 15:42:06 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2012-08-12 15:42:06 ----A---- C:\Windows\system32\D3DX9_37.dll
2012-08-12 15:42:06 ----A---- C:\Windows\system32\d3dx10_37.dll
2012-08-12 15:42:06 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2012-08-12 15:42:04 ----A---- C:\Windows\system32\xactengine2_10.dll
2012-08-12 15:42:03 ----A---- C:\Windows\system32\d3dx9_36.dll
2012-08-12 15:42:03 ----A---- C:\Windows\system32\d3dx10_36.dll
2012-08-12 15:42:03 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2012-08-12 15:42:00 ----A---- C:\Windows\system32\xactengine2_9.dll
2012-08-12 15:42:00 ----A---- C:\Windows\system32\xactengine2_8.dll
2012-08-12 15:42:00 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2012-08-12 15:42:00 ----A---- C:\Windows\system32\d3dx9_35.dll
2012-08-12 15:42:00 ----A---- C:\Windows\system32\d3dx10_35.dll
2012-08-12 15:42:00 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2012-08-12 15:41:59 ----A---- C:\Windows\system32\d3dx10_34.dll
2012-08-12 15:41:59 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2012-08-12 15:41:58 ----A---- C:\Windows\system32\xinput1_3.dll
2012-08-12 15:41:58 ----A---- C:\Windows\system32\xactengine2_7.dll
2012-08-12 15:41:58 ----A---- C:\Windows\system32\d3dx9_34.dll
2012-08-12 15:41:58 ----A---- C:\Windows\system32\d3dx10_33.dll
2012-08-12 15:41:58 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2012-08-12 15:41:57 ----A---- C:\Windows\system32\xactengine2_6.dll
2012-08-12 15:41:57 ----A---- C:\Windows\system32\xactengine2_5.dll
2012-08-12 15:41:57 ----A---- C:\Windows\system32\d3dx9_33.dll
2012-08-12 15:41:57 ----A---- C:\Windows\system32\d3dx9_32.dll
2012-08-12 15:41:57 ----A---- C:\Windows\system32\d3dx10.dll
2012-08-12 15:41:56 ----A---- C:\Windows\system32\xactengine2_4.dll
2012-08-12 15:41:56 ----A---- C:\Windows\system32\x3daudio1_1.dll
2012-08-12 15:41:56 ----A---- C:\Windows\system32\d3dx9_31.dll
2012-08-12 15:41:55 ----A---- C:\Windows\system32\xinput1_2.dll
2012-08-12 15:41:55 ----A---- C:\Windows\system32\xactengine2_3.dll
2012-08-12 15:41:54 ----A---- C:\Windows\system32\xinput1_1.dll
2012-08-12 15:41:54 ----A---- C:\Windows\system32\xactengine2_2.dll
2012-08-12 15:41:54 ----A---- C:\Windows\system32\xactengine2_1.dll
2012-08-12 15:41:44 ----A---- C:\Windows\system32\d3dx9_30.dll
2012-08-12 15:41:43 ----A---- C:\Windows\system32\xactengine2_0.dll
2012-08-12 15:41:43 ----A---- C:\Windows\system32\x3daudio1_0.dll
2012-08-12 15:41:43 ----A---- C:\Windows\system32\d3dx9_29.dll
2012-08-12 15:41:43 ----A---- C:\Windows\system32\d3dx9_28.dll
2012-08-12 15:41:42 ----A---- C:\Windows\system32\d3dx9_27.dll
2012-08-12 15:41:42 ----A---- C:\Windows\system32\d3dx9_26.dll
2012-08-12 15:41:42 ----A---- C:\Windows\system32\d3dx9_25.dll
2012-08-12 15:41:42 ----A---- C:\Windows\system32\d3dx9_24.dll
2012-08-12 15:39:59 ----HD---- C:\Windows\msdownld.tmp
2012-08-12 15:39:54 ----D---- C:\Windows\system32\directx
2012-08-12 15:18:34 ----D---- C:\Program Files\uTorrent
2012-08-12 15:17:49 ----D---- C:\Users\Alexandr\AppData\Roaming\uTorrent
2012-08-12 15:09:08 ----D---- C:\rsit
2012-08-12 15:09:08 ----D---- C:\Program Files\trend micro
======List of files/folders modified in the last 1 month======
2012-09-11 17:15:16 ----D---- C:\Windows\Temp
2012-09-11 17:15:08 ----D---- C:\Windows\Prefetch
2012-09-11 17:14:58 ----D---- C:\Windows\System32
2012-09-11 17:09:59 ----D---- C:\Windows\system32\config
2012-09-11 17:06:57 ----D---- C:\Windows
2012-09-11 17:06:49 ----D---- C:\Windows\inf
2012-09-11 16:19:00 ----SHD---- C:\System Volume Information
2012-09-11 16:17:20 ----D---- C:\Windows\SoftwareDistribution
2012-09-10 19:12:47 ----SHD---- C:\Windows\Installer
2012-09-10 19:12:47 ----RD---- C:\Program Files
2012-09-10 18:43:32 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-09-10 18:23:55 ----HD---- C:\ProgramData
2012-09-10 18:23:54 ----D---- C:\Program Files\Common Files
2012-09-10 17:52:42 ----D---- C:\Windows\system32\drivers
2012-09-08 16:41:02 ----D---- C:\Windows\system32\Tasks
2012-08-27 06:58:39 ----D---- C:\Windows\Logs
2012-08-26 20:55:36 ----D---- C:\Windows\system32\LogFiles
2012-08-24 20:09:55 ----D---- C:\Windows\winsxs
2012-08-24 06:58:29 ----SD---- C:\ProgramData\Microsoft
2012-08-23 16:23:23 ----D---- C:\Windows\system32\wdi
2012-08-21 19:02:31 ----D---- C:\Windows\system32\catroot
2012-08-21 18:23:56 ----D---- C:\Windows\system32\DriverStore
2012-08-21 18:23:04 ----D---- C:\Windows\system32\catroot2
2012-08-21 18:13:09 ----D---- C:\Windows\system32\drivers\UMDF
2012-08-21 11:12:23 ----A---- C:\Windows\system32\aswBoot.exe
2012-08-21 09:40:24 ----D---- C:\Windows\system32\NDF
2012-08-15 22:32:11 ----D---- C:\Windows\Cursors
2012-08-15 22:14:31 ----RSD---- C:\Windows\Fonts
2012-08-15 22:14:31 ----D---- C:\Windows\system32\migration
2012-08-15 22:14:31 ----D---- C:\Program Files\Internet Explorer
2012-08-15 21:51:39 ----D---- C:\Windows\debug
2012-08-15 20:20:35 ----A---- C:\Windows\system32\MRT.exe
2012-08-15 10:48:13 ----D---- C:\Windows\rescache
2012-08-13 22:30:30 ----D---- C:\Program Files\Common Files\InstallShield
2012-08-13 22:30:09 ----HD---- C:\Program Files\InstallShield Installation Information
2012-08-13 17:08:24 ----D---- C:\Program Files\Realtek
2012-08-13 17:06:47 ----D---- C:\Windows\Tasks
2012-08-13 17:06:47 ----D---- C:\Windows\system32\wfp
2012-08-13 17:06:46 ----D---- C:\Windows\system32\CodeIntegrity
2012-08-13 17:06:46 ----D---- C:\Windows\security
2012-08-13 17:06:44 ----D---- C:\Windows\system32\wbem
2012-08-13 17:06:44 ----D---- C:\Windows\registration
2012-08-13 16:49:55 ----D---- C:\Windows\Microsoft.NET
2012-08-13 16:49:26 ----RSD---- C:\Windows\assembly
2012-08-12 23:37:28 ----HD---- C:\Program Files\Temp
2012-08-12 23:37:01 ----D---- C:\Windows\system32\RTCOM
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2012-08-13 477240]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2012-08-21 44784]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-08-21 729752]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-08-21 355632]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-08-21 54232]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-08-13 242240]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-08-21 21256]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-08-21 58680]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2012-08-11 5551104]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2012-08-11 176128]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athr.sys [2011-06-27 2191872]
R3 HECI;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECI.sys [2009-09-17 41088]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2012-06-12 3238608]
R3 intelkmd;intelkmd; C:\Windows\system32\DRIVERS\igdpmd32.sys [2012-08-11 8744448]
R3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIV.sys [2012-08-11 168480]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt86win7.sys [2012-02-16 514152]
S0 prohlp02;StarForce Protection Helper Driver v2; C:\Windows\System32\drivers\prohlp02.sys [2004-10-07 115744]
S0 sfhlp01;StarForce Protection Helper Driver; C:\Windows\System32\drivers\sfhlp01.sys [2003-12-01 4832]
S1 prodrv06;StarForce Protection Environment Driver v6; C:\Windows\System32\drivers\prodrv06.sys [2004-10-07 80576]
S2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 ao6xri1z;ao6xri1z; C:\Windows\system32\drivers\ao6xri1z.sys []
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393216]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2012-08-11 8744448]
S3 MSI_MSIBIOS_010507;MSI_MSIBIOS_010507; \??\C:\Program Files\MSI\Live Update 5\msibios32_100507.sys []
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2012-01-09 18176]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbo.sys [2012-01-09 23168]
S3 NTIOLib_1_0_4;NTIOLib_1_0_4; \??\C:\Program Files\MSI\Live Update 5\NTIOLib.sys []
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2012-06-27 19072]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2012-01-09 8192]
S3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 35840]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2009-07-14 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2012-01-09 8192]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 34944]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2012-08-11 176128]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-08-21 44808]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2012-08-26 76888]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2012-08-01 724888]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-08-10 1343400]
-----------------EOF-----------------