
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
laptop-absolutni zpomaleni
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
-
- Návštěvník
- Příspěvky: 346
- Registrován: 02 úno 2006 13:03
laptop-absolutni zpomaleni
prosim o kontrolu logu, dekuji mnohokrat.
Logfile of random's system information tool 1.09 (written by random/random)
Run by Kaniii at 2012-09-20 10:38:23
Microsoft® Windows Vista™ Home Premium Service Pack 1
System drive C: has 96 GB (66%) free of 144 GB
Total RAM: 894 MB (16% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:39:14, on 2012-09-20
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18639)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\BisonCam\BisonHK.exe
C:\Program Files\Power Manager\PM.exe
C:\Program Files\Realtek Semiconductor Corp\Realtek Card Reader Monitor\CardReaderMonitor.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\CyberLink\MagicSports\Kernel\MagicSports\MSPMirage.exe
C:\Program Files\Ask.com\Updater\Updater.exe
C:\Program Files\Connect Manager\Bin\CancelAutoPlay.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopCrawl.exe
C:\Program Files\Connect Manager\Bin\zLoggingDaemon.exe
C:\Program Files\Connect Manager\Bin\zConnectionManager.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Telia mobile broadband\Telia mobile broadband.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Users\Kaniii\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Kaniii\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Kaniii\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Kaniii\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Kaniii\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Kaniii\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Kaniii\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Kaniii\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Kaniii\Downloads\RSIT.exe
C:\Program Files\trend micro\Kaniii.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ask.com/?l=dis&o=15187&apn_p ... 2012-08-30
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O1 - Hosts: ::1 localhost
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7529.1424\swg.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Google\Google_BAE\BAE.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [BisonHK] C:\Windows\BisonCam\BisonHK.exe
O4 - HKLM\..\Run: [PowerManager] C:\Program Files\Power Manager\PM.exe
O4 - HKLM\..\Run: [CardReaderMonitor] C:\Program Files\Realtek Semiconductor Corp.\Realtek Card Reader Monitor\CardReaderMonitor.exe
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [MSPService] C:\Program Files\CyberLink\MagicSports\Kernel\MagicSports\MSPMirage.exe
O4 - HKLM\..\Run: [toolbar_eula_launcher] C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe
O4 - HKLM\..\Run: [ApnUpdater] "C:\Program Files\Ask.com\Updater\Updater.exe"
O4 - HKLM\..\Run: [zLoader.exe] "C:\Program Files\Connect Manager\Bin\zLoader.exe"
O4 - HKLM\..\Run: [CancelAutoPlay.exe] "C:\Program Files\Connect Manager\Bin\CancelAutoPlay.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [avast] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKCU\..\Run: [SmpcSys] C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
O4 - HKCU\..\Run: [Google Update] "C:\Users\Kaniii\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [HW_OPENEYE_OUC_Tele2 Mobile Partner] "C:\Program Files\Tele2 Mobile Partner\UpdateDog\ouc.exe"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Kaniii\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKAL TJÄNST')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKAL TJÄNST')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NÄTVERKSTJÄNST')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{60C3F092-39A0-4EB2-A57D-4631C12A5776}: NameServer = 195.67.199.18 195.67.199.19
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktopManager.exe
O23 - Service: Tjänsten Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Tjänsten Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
--
End of file - 9816 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-42147192-3489510026-1774748535-1002Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-42147192-3489510026-1774748535-1002UA.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-42147192-3489510026-1774748535-1002Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-42147192-3489510026-1774748535-1002UA.job
C:\Windows\tasks\Recovery DVD Creator.job
C:\Windows\tasks\Utökad garanti.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Kaniii\AppData\Roaming\Mozilla\Firefox\Profiles\yflo0yer.default
prefs.js - "browser.startup.homepage" - "http://www.ask.com/?l=dis&o=15187&apn_p ... 2012-08-30"
prefs.js - "keyword.URL" - "http://websearch.ask.com/redirect?clien ... 2-08-30&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Picasa2\npPicasa3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
C:\Program Files\Mozilla Firefox\extensions\
packardbell@partners.mozilla.com
talkback@mozilla.org
{3112ca9c-de6d-4884-a869-9855de68056c}
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
browser.xpt
FeedConverter.js
FeedProcessor.js
FeedWriter.js
flashplayer.xpt
GoogleDesktopMozilla.dll
GoogleDesktopMozillaStub.js
GoogleDesktopMozillaStub.xpt
jar50.dll
jsconsole-clhandler.js
jsd3250.dll
myspell.dll
nsBookmarkTransactionManager.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsCloseAllWindows.js
nsDictionary.js
nsExtensionManager.js
nsHelperAppDlg.js
nsMicrosummaryService.js
nsPostUpdateWin.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsUpdateService.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsUrlClassifierTable.js
nsURLFormatter.js
nsXmlRpcClient.js
spellchk.dll
WebContentConverter.js
xpinstal.dll
C:\Program Files\Mozilla Firefox\plugins\
npnul32.dll
NPSWF32.dll
NPSWF32_FlashUtil.exe
C:\Program Files\Mozilla Firefox\searchplugins\
amazon-en-GB.xml
answers.xml
creativecommons.xml
eBay-en-GB.xml
google.xml
yahoo-sv-SE.xml
C:\Users\Kaniii\AppData\Roaming\Mozilla\Firefox\Profiles\yflo0yer.default\extensions\
toolbar@ask.com
{20a82645-c095-46ed-80e3-08825760534b}
C:\Users\Kaniii\AppData\Roaming\Mozilla\Firefox\Profiles\yflo0yer.default\searchplugins\
askcom.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2012-08-21 192144]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2012-08-13 4120256]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7529.1424\swg.dll [2012-08-21 1002992]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
CBrowserHelperObject Object - C:\Program Files\Google\Google_BAE\BAE.dll [2006-11-09 98304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2012-08-08 1527496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2012-08-08 1527496]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2012-08-21 192144]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-02-09 845360]
"BisonHK"=C:\Windows\BisonCam\BisonHK.exe [2007-05-16 73728]
"PowerManager"=C:\Program Files\Power Manager\PM.exe [2007-05-16 29696]
"CardReaderMonitor"=C:\Program Files\Realtek Semiconductor Corp.\Realtek Card Reader Monitor\CardReaderMonitor.exe [2007-07-25 643072]
""= []
"RoxWatchTray"=C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe [2007-01-11 232184]
"Google Desktop Search"=C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2007-01-04 227328]
"MSPService"=C:\Program Files\CyberLink\MagicSports\Kernel\MagicSports\MSPMirage.exe [2007-06-13 102400]
"toolbar_eula_launcher"=C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe [2007-01-10 18944]
"ApnUpdater"=C:\Program Files\Ask.com\Updater\Updater.exe [2012-08-08 1644744]
"zLoader.exe"=C:\Program Files\Connect Manager\Bin\zLoader.exe [2012-02-07 25872]
"CancelAutoPlay.exe"=C:\Program Files\Connect Manager\Bin\CancelAutoPlay.exe [2012-02-07 73488]
"NvSvc"=C:\Windows\system32\nvsvc.dll [2007-07-21 86016]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2007-07-21 8433664]
"NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2007-07-21 81920]
"avast"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2012-08-21 4282728]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SmpcSys"=C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe [2007-07-19 1120568]
"Google Update"=C:\Users\Kaniii\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-08 116648]
"HW_OPENEYE_OUC_Tele2 Mobile Partner"=C:\Program Files\Tele2 Mobile Partner\UpdateDog\ouc.exe []
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]
"Facebook Update"=C:\Users\Kaniii\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-17 138096]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2012-07-13 17418928]
"ISUSPM"=C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [2006-09-11 218032]
"WindowsWelcomeCenter"=oobefldr.dll,ShowWelcomeCenter []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"msacm.mkdmp3enc"=C:\PROGRA~1\CYBERL~1\MAGICS~1\Kernel\Burner\MKDMP3Enc.ACM
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======List of files/folders created in the last 1 month======
2012-09-20 10:38:28 ----D---- C:\Program Files\trend micro
2012-09-20 10:38:23 ----D---- C:\rsit
2012-09-20 10:03:45 ----A---- C:\Windows\system32\drivers\ewusbnet.sys
2012-09-20 10:03:45 ----A---- C:\Windows\system32\drivers\ewusbmdm.sys
2012-09-20 10:03:45 ----A---- C:\Windows\system32\drivers\ewusbdev.sys
2012-09-20 10:03:45 ----A---- C:\Windows\system32\drivers\ewdcsc.sys
2012-09-20 10:02:06 ----D---- C:\Program Files\Telia mobile broadband
2012-09-12 18:22:17 ----D---- C:\Program Files\Microsoft.NET
2012-09-12 15:27:04 ----A---- C:\Windows\system32\msshsq.dll
2012-09-12 13:38:56 ----A---- C:\Windows\system32\quartz.dll
2012-09-12 13:38:40 ----A---- C:\Windows\system32\ole32.dll
2012-09-12 13:38:26 ----A---- C:\Windows\system32\EncDec.dll
2012-09-12 13:38:25 ----A---- C:\Windows\system32\sbeio.dll
2012-09-12 13:38:24 ----A---- C:\Windows\system32\sbe.dll
2012-09-12 13:38:14 ----A---- C:\Windows\system32\wmpmde.dll
2012-09-12 13:38:02 ----A---- C:\Windows\system32\drivers\srv.sys
2012-09-12 13:37:41 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-09-12 13:37:41 ----A---- C:\Windows\system32\ntkrnlpa.exe
2012-09-12 13:37:40 ----A---- C:\Windows\system32\ntdll.dll
2012-09-12 13:36:41 ----A---- C:\Windows\system32\wmploc.DLL
2012-09-12 13:36:40 ----A---- C:\Windows\system32\wmp.dll
2012-09-12 13:36:12 ----A---- C:\Windows\system32\fontsub.dll
2012-09-12 13:36:12 ----A---- C:\Windows\system32\atmlib.dll
2012-09-12 13:36:12 ----A---- C:\Windows\system32\atmfd.dll
2012-09-12 13:35:44 ----A---- C:\Windows\system32\msxml3.dll
2012-09-12 13:35:33 ----A---- C:\Windows\system32\asycfilt.dll
2012-09-12 13:35:23 ----A---- C:\Windows\system32\t2embed.dll
2012-09-12 13:34:28 ----A---- C:\Windows\system32\shsvcs.dll
2012-09-12 13:33:51 ----A---- C:\Windows\system32\drivers\bowser.sys
2012-09-12 13:33:35 ----A---- C:\Windows\system32\vbscript.dll
2012-09-12 13:33:35 ----A---- C:\Windows\system32\jscript.dll
2012-09-12 13:32:13 ----A---- C:\Windows\system32\iertutil.dll
2012-09-12 13:32:13 ----A---- C:\Windows\system32\ieframe.dll
2012-09-12 13:32:12 ----A---- C:\Windows\system32\occache.dll
2012-09-12 13:32:12 ----A---- C:\Windows\system32\ieUnatt.exe
2012-09-12 13:32:09 ----A---- C:\Windows\system32\mshtml.dll
2012-09-12 13:32:08 ----A---- C:\Windows\system32\mshtmled.dll
2012-09-12 13:32:08 ----A---- C:\Windows\system32\msfeeds.dll
2012-09-12 13:32:08 ----A---- C:\Windows\system32\ieencode.dll
2012-09-12 13:32:07 ----A---- C:\Windows\system32\iepeers.dll
2012-09-12 13:32:07 ----A---- C:\Windows\system32\ieapfltr.dll
2012-09-12 13:32:07 ----A---- C:\Windows\system32\ieaksie.dll
2012-09-12 13:32:06 ----A---- C:\Windows\system32\iedkcs32.dll
2012-09-12 13:32:05 ----A---- C:\Windows\system32\wininet.dll
2012-09-12 13:32:05 ----A---- C:\Windows\system32\jsproxy.dll
2012-09-12 13:32:04 ----A---- C:\Windows\system32\mstime.dll
2012-09-12 13:32:03 ----A---- C:\Windows\system32\urlmon.dll
2012-09-12 13:31:40 ----A---- C:\Windows\system32\drivers\dfsc.sys
2012-09-12 13:31:26 ----A---- C:\Windows\system32\dnsrslvr.dll
2012-09-12 13:31:26 ----A---- C:\Windows\system32\dnscacheugc.exe
2012-09-12 13:31:25 ----A---- C:\Windows\system32\dnsapi.dll
2012-09-12 13:30:58 ----A---- C:\Windows\system32\consent.exe
2012-09-12 13:30:47 ----A---- C:\Windows\system32\sdclt.exe
2012-09-12 13:30:28 ----A---- C:\Windows\system32\wmicmiplugin.dll
2012-09-12 13:30:26 ----A---- C:\Windows\system32\taskschd.dll
2012-09-12 13:30:26 ----A---- C:\Windows\system32\taskeng.exe
2012-09-12 13:30:26 ----A---- C:\Windows\system32\schedsvc.dll
2012-09-12 13:30:25 ----A---- C:\Windows\system32\taskcomp.dll
2012-09-12 13:30:12 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2012-09-12 13:30:12 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2012-09-12 13:30:11 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2012-09-12 13:29:54 ----A---- C:\Windows\system32\iccvid.dll
2012-09-12 13:29:25 ----A---- C:\Windows\system32\win32k.sys
2012-09-12 13:29:14 ----A---- C:\Windows\system32\mfc40.dll
2012-09-12 13:29:13 ----A---- C:\Windows\system32\mfc40u.dll
2012-09-12 13:28:46 ----A---- C:\Windows\system32\wersvc.dll
2012-09-12 13:28:45 ----A---- C:\Windows\system32\Faultrep.dll
2012-09-12 13:28:29 ----A---- C:\Windows\system32\mfc42u.dll
2012-09-12 13:28:29 ----A---- C:\Windows\system32\mfc42.dll
2012-09-12 13:28:16 ----A---- C:\Windows\system32\drivers\afd.sys
2012-09-12 13:28:05 ----A---- C:\Windows\system32\drivers\srv2.sys
2012-09-12 13:28:04 ----A---- C:\Windows\system32\drivers\srvnet.sys
2012-09-12 13:27:34 ----A---- C:\Windows\system32\shlwapi.dll
2012-09-12 13:27:29 ----A---- C:\Windows\system32\shell32.dll
2012-09-12 13:27:16 ----A---- C:\Windows\system32\spoolsv.exe
2012-09-12 13:27:06 ----A---- C:\Windows\system32\oleaut32.dll
2012-09-12 13:26:20 ----A---- C:\Windows\system32\srvsvc.dll
2012-09-12 13:26:18 ----A---- C:\Windows\system32\netevent.dll
2012-09-12 13:25:57 ----A---- C:\Windows\system32\MP4SDECD.DLL
2012-09-12 13:25:45 ----A---- C:\Windows\system32\rtutils.dll
2012-09-12 13:25:06 ----A---- C:\Windows\system32\odbc32.dll
2012-09-12 13:24:49 ----A---- C:\Windows\system32\usp10.dll
2012-09-12 13:24:34 ----A---- C:\Windows\system32\inetcomm.dll
2012-09-12 13:24:18 ----A---- C:\Windows\system32\drivers\nwifi.sys
2012-09-12 13:24:18 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2012-09-12 13:24:17 ----A---- C:\Windows\system32\emdmgmt.dll
2012-09-12 13:24:17 ----A---- C:\Windows\system32\dataclen.dll
2012-09-12 13:24:17 ----A---- C:\Windows\system32\cdd.dll
2012-09-12 13:23:31 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2012-09-12 13:23:24 ----A---- C:\Windows\system32\Apphlpdm.dll
2012-09-12 13:22:52 ----A---- C:\Windows\system32\pacerprf.dll
2012-09-12 13:22:52 ----A---- C:\Windows\system32\drivers\pacer.sys
2012-09-12 09:44:41 ----A---- C:\Windows\system32\tzres.dll
2012-09-12 09:43:24 ----A---- C:\Windows\system32\wscript.exe
2012-09-12 09:43:24 ----A---- C:\Windows\system32\scrrun.dll
2012-09-12 09:43:24 ----A---- C:\Windows\system32\scrobj.dll
2012-09-12 09:43:23 ----A---- C:\Windows\system32\cscript.exe
2012-09-12 09:43:21 ----A---- C:\Windows\system32\wshext.dll
2012-09-12 09:42:57 ----A---- C:\Windows\system32\kernel32.dll
2012-09-12 09:42:17 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-09-12 08:49:26 ----A---- C:\Windows\system32\msshooks.dll
2012-09-12 08:49:25 ----A---- C:\Windows\system32\msscb.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\thawbrkr.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\SearchFilterHost.exe
2012-09-12 08:49:18 ----A---- C:\Windows\system32\propsys.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\propdefs.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\msstrc.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\mssprxy.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\mssitlb.dll
2012-09-12 08:49:17 ----A---- C:\Windows\system32\srchadmin.dll
2012-09-12 08:49:17 ----A---- C:\Windows\system32\korwbrkr.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\xmlfilter.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\wsepno.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\rtffilt.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\offfilt.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\nlhtml.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\mimefilt.dll
2012-09-12 08:49:15 ----A---- C:\Windows\system32\msscntrs.dll
2012-09-12 08:49:15 ----A---- C:\Windows\system32\chsbrkr.dll
2012-09-12 08:49:14 ----A---- C:\Windows\system32\tquery.dll
2012-09-12 08:49:14 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2012-09-12 08:49:14 ----A---- C:\Windows\system32\SearchIndexer.exe
2012-09-12 08:49:14 ----A---- C:\Windows\system32\chtbrkr.dll
2012-09-12 08:49:13 ----A---- C:\Windows\system32\mssvp.dll
2012-09-12 08:49:13 ----A---- C:\Windows\system32\mssrch.dll
2012-09-12 08:49:13 ----A---- C:\Windows\system32\mssphtb.dll
2012-09-12 08:49:13 ----A---- C:\Windows\system32\mssph.dll
2012-09-12 08:43:57 ----A---- C:\Windows\system32\psisdecd.dll
2012-09-12 08:29:13 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2012-09-12 08:29:13 ----A---- C:\Windows\system32\PresentationHost.exe
2012-09-12 08:29:13 ----A---- C:\Windows\system32\netfxperf.dll
2012-09-12 08:29:13 ----A---- C:\Windows\system32\mscoree.dll
2012-09-12 08:29:12 ----A---- C:\Windows\system32\dfshim.dll
2012-09-12 08:12:31 ----D---- C:\Windows\system32\WindowsPowerShell
2012-09-12 08:10:08 ----A---- C:\Windows\system32\winrsmgr.dll
2012-09-12 08:09:24 ----A---- C:\Windows\system32\wsmprovhost.exe
2012-09-12 08:09:24 ----A---- C:\Windows\system32\winrshost.exe
2012-09-12 08:09:24 ----A---- C:\Windows\system32\winrs.exe
2012-09-12 08:09:19 ----A---- C:\Windows\system32\wsmplpxy.dll
2012-09-12 08:09:18 ----A---- C:\Windows\system32\winrssrv.dll
2012-09-12 08:09:09 ----A---- C:\Windows\system32\wevtfwd.dll
2012-09-12 08:09:09 ----A---- C:\Windows\system32\wecutil.exe
2012-09-12 08:09:09 ----A---- C:\Windows\system32\wecapi.dll
2012-09-12 08:09:07 ----A---- C:\Windows\system32\WsmRes.dll
2012-09-12 08:09:07 ----A---- C:\Windows\system32\wecsvc.dll
2012-09-12 08:09:04 ----A---- C:\Windows\system32\pwrshplugin.dll
2012-09-12 08:08:45 ----A---- C:\Windows\system32\winrm.vbs
2012-09-12 08:08:31 ----A---- C:\Windows\system32\WsmAuto.dll
2012-09-12 08:08:30 ----A---- C:\Windows\system32\WsmWmiPl.dll
2012-09-12 08:08:30 ----A---- C:\Windows\system32\winrscmd.dll
2012-09-12 08:08:29 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2012-09-12 08:08:29 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2012-09-12 08:08:27 ----A---- C:\Windows\system32\WsmSvc.dll
2012-09-11 11:29:52 ----A---- C:\Windows\system32\comctl32.dll
2012-09-11 11:28:43 ----A---- C:\Windows\system32\winsrv.dll
2012-09-11 11:28:42 ----A---- C:\Windows\system32\csrsrv.dll
2012-09-11 11:28:32 ----A---- C:\Windows\system32\mstscax.dll
2012-09-11 11:28:30 ----A---- C:\Windows\system32\mstsc.exe
2012-09-11 10:52:39 ----A---- C:\Windows\system32\schannel.dll
2012-09-10 12:35:06 ----D---- C:\PerfLogs
2012-08-30 18:31:36 ----D---- C:\Users\Kaniii\AppData\Roaming\Adobe
2012-08-30 18:29:27 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2012-08-28 13:46:51 ----A---- C:\Users\Kaniii\AppData\Roaming\nvModes.dat
======List of files/folders modified in the last 1 month======
2012-09-20 10:38:40 ----D---- C:\Windows\Temp
2012-09-20 10:38:28 ----RD---- C:\Program Files
2012-09-20 10:19:36 ----D---- C:\Windows\ModemLogs
2012-09-20 10:18:40 ----D---- C:\Windows\inf
2012-09-20 10:18:40 ----AD---- C:\Windows\System32
2012-09-20 10:18:40 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-09-20 10:15:19 ----D---- C:\Users\Kaniii\AppData\Roaming\Skype
2012-09-20 10:14:07 ----D---- C:\Windows
2012-09-20 10:03:45 ----D---- C:\Windows\system32\drivers
2012-09-20 10:03:44 ----D---- C:\Windows\system32\catroot
2012-09-19 17:13:55 ----SHD---- C:\System Volume Information
2012-09-17 11:01:11 ----SHD---- C:\Windows\Installer
2012-09-16 17:53:26 ----RSD---- C:\Windows\assembly
2012-09-16 17:53:26 ----D---- C:\Windows\Microsoft.NET
2012-09-15 10:33:34 ----D---- C:\Windows\system32\sv-SE
2012-09-15 10:20:02 ----D---- C:\Windows\system32\en-US
2012-09-14 23:25:49 ----D---- C:\Users\Kaniii\AppData\Roaming\Roxio
2012-09-14 22:17:22 ----RSD---- C:\Windows\Fonts
2012-09-14 22:15:36 ----D---- C:\Windows\winsxs
2012-09-14 18:01:11 ----D---- C:\Windows\system32\catroot2
2012-09-14 17:46:30 ----D---- C:\Program Files\Common Files
2012-09-14 17:46:14 ----D---- C:\ProgramData\Adobe
2012-09-13 17:27:39 ----D---- C:\Windows\rescache
2012-09-13 13:54:13 ----D---- C:\Windows\system32\config
2012-09-13 13:54:01 ----D---- C:\Windows\Tasks
2012-09-13 13:54:00 ----D---- C:\Windows\system32\spool
2012-09-13 13:54:00 ----D---- C:\Windows\system32\Msdtc
2012-09-13 13:54:00 ----D---- C:\Windows\system32\CodeIntegrity
2012-09-13 13:53:57 ----D---- C:\Windows\system32\wbem
2012-09-13 13:53:57 ----D---- C:\Windows\registration
2012-09-12 17:55:20 ----D---- C:\Program Files\Windows Media Player
2012-09-12 17:55:19 ----D---- C:\Program Files\Windows Mail
2012-09-12 17:55:18 ----D---- C:\Program Files\Internet Explorer
2012-09-12 17:55:14 ----D---- C:\Program Files\Movie Maker
2012-09-12 17:55:12 ----D---- C:\Windows\AppPatch
2012-09-12 15:32:47 ----A---- C:\Windows\system32\mrt.exe
2012-09-12 09:18:02 ----D---- C:\Windows\PolicyDefinitions
2012-09-12 09:17:11 ----D---- C:\Windows\ehome
2012-09-11 16:16:13 ----D---- C:\Windows\system32\sysprep
2012-09-11 16:16:13 ----D---- C:\Windows\system32\sv
2012-09-11 16:16:13 ----D---- C:\Windows\system32\SLUI
2012-09-11 16:16:13 ----D---- C:\Windows\system32\setup
2012-09-11 16:16:13 ----D---- C:\Windows\system32\oobe
2012-09-11 16:16:13 ----D---- C:\Windows\system32\migwiz
2012-09-11 16:16:13 ----D---- C:\Windows\system32\migration
2012-09-11 16:16:13 ----D---- C:\Windows\system
2012-09-11 16:16:12 ----RSD---- C:\Windows\Media
2012-09-11 16:16:12 ----RD---- C:\Windows\Offline Web Pages
2012-09-11 16:16:12 ----D---- C:\Windows\system32\drivers\sv-SE
2012-09-11 16:16:12 ----D---- C:\Windows\ShellNew
2012-09-11 16:16:12 ----D---- C:\Program Files\Windows Sidebar
2012-09-11 16:16:12 ----D---- C:\Program Files\Windows Journal
2012-09-11 16:16:12 ----D---- C:\Program Files\Windows Defender
2012-09-11 16:16:12 ----D---- C:\Program Files\Windows Collaboration
2012-09-11 16:16:12 ----D---- C:\Program Files\Common Files\System
2012-09-11 16:16:12 ----D---- C:\Program Files\Common Files\Services
2012-09-11 15:24:45 ----D---- C:\Windows\system32\Tasks
2012-09-10 12:49:22 ----SHD---- C:\boot
2012-09-10 12:49:00 ----ASH---- C:\Program Files\desktop.ini
2012-09-10 12:37:03 ----D---- C:\Program Files\Windows Calendar
2012-09-10 12:37:01 ----D---- C:\Program Files\Windows Photo Gallery
2012-09-10 12:36:59 ----D---- C:\Windows\servicing
2012-09-10 12:36:58 ----D---- C:\Windows\MSAgent
2012-09-10 12:36:57 ----D---- C:\Windows\L2Schemas
2012-09-10 12:36:57 ----D---- C:\Windows\IME
2012-09-10 12:36:57 ----D---- C:\Windows\DigitalLocker
2012-09-10 12:36:56 ----D---- C:\Windows\system32\ko-KR
2012-09-10 12:36:56 ----D---- C:\Windows\system32\da-DK
2012-09-10 12:36:56 ----D---- C:\Windows\system32\com
2012-09-10 12:36:55 ----D---- C:\Windows\system32\it-IT
2012-09-10 12:36:55 ----D---- C:\Windows\system32\el-GR
2012-09-10 12:36:55 ----D---- C:\Windows\system32\de-DE
2012-09-10 12:36:52 ----D---- C:\Windows\system32\AdvancedInstallers
2012-09-10 12:36:51 ----D---- C:\Windows\system32\ru-RU
2012-09-10 12:36:51 ----D---- C:\Windows\system32\ias
2012-09-10 12:36:51 ----D---- C:\Windows\system32\fr-FR
2012-09-10 12:36:43 ----D---- C:\Windows\system32\pt-PT
2012-09-10 12:36:43 ----D---- C:\Windows\system32\hu-HU
2012-09-10 12:36:43 ----D---- C:\Windows\system32\he-IL
2012-09-10 12:36:43 ----D---- C:\Windows\system32\fi-FI
2012-09-10 12:36:43 ----D---- C:\Windows\system32\cs-CZ
2012-09-10 12:36:40 ----D---- C:\Windows\system32\zh-TW
2012-09-10 12:36:40 ----D---- C:\Windows\system32\zh-CN
2012-09-10 12:36:40 ----D---- C:\Windows\system32\manifeststore
2012-09-10 12:36:40 ----D---- C:\Windows\system32\es-ES
2012-09-10 12:36:39 ----D---- C:\Windows\system32\ro-RO
2012-09-10 12:36:39 ----D---- C:\Windows\system32\pl-PL
2012-09-10 12:36:39 ----D---- C:\Windows\system32\ja-JP
2012-09-10 12:36:37 ----D---- C:\Windows\system32\tr-TR
2012-09-10 12:36:36 ----D---- C:\Windows\system32\nl-NL
2012-09-10 12:36:36 ----D---- C:\Windows\system32\nb-NO
2012-09-10 12:36:36 ----D---- C:\Windows\system32\ar-SA
2012-09-10 12:36:32 ----D---- C:\Windows\system32\pt-BR
2012-09-10 12:35:19 ----D---- C:\Windows\Boot
2012-09-10 12:35:15 ----D---- C:\Windows\system32\Boot
2012-09-10 12:29:27 ----D---- C:\Windows\system32\drivers\UMDF
2012-09-10 11:40:26 ----A---- C:\Windows\system32\ifxcardm.dll
2012-09-10 11:39:54 ----A---- C:\Windows\system32\axaltocm.dll
2012-09-07 10:26:22 ----D---- C:\Windows\Minidump
2012-09-06 20:51:03 ----D---- C:\Windows\Prefetch
2012-09-02 13:21:39 ----D---- C:\Program Files\Ask.com
2012-08-31 21:53:11 ----D---- C:\ProgramData\Skype
2012-08-21 22:00:39 ----D---- C:\Users\Kaniii\AppData\Roaming\CyberLink
2012-08-21 21:09:37 ----D---- C:\Users\Kaniii\AppData\Roaming\uTorrent
2012-08-21 11:12:23 ----A---- C:\Windows\system32\aswBoot.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2006-09-27 36560]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2012-08-21 35928]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-08-21 729752]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-08-21 355632]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-08-21 54232]
R1 WINIO;WINIO; \??\C:\Windows\system32\WinIo.sys [2007-01-04 9336]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-08-21 21256]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-08-21 58680]
R3 Cam5607;Bison WebCam; C:\Windows\System32\Drivers\BisonC07.sys [2007-07-23 971944]
R3 GEARAspiWDM;GEARAspiWDM; C:\Windows\System32\Drivers\GEARAspiWDM.sys [2006-09-19 15664]
R3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2007-04-12 160768]
R3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2009-12-07 103168]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvmfdx32.sys [2007-03-06 1059112]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2007-07-21 7138272]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2007-02-16 12032]
R3 RTSTOR;USB Mass Storage Device; C:\Windows\system32\drivers\RTSTOR.SYS [2007-06-15 47616]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-02-09 182456]
R3 usbaudio;USB-ljuddrivrutiner (WDM); C:\Windows\system32\drivers\usbaudio.sys [2008-01-19 73088]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\Windows\system32\DRIVERS\ew_hwusbdev.sys []
S3 ew_usbenumfilter;huawei_CompositeFilter; C:\Windows\system32\DRIVERS\ew_usbenumfilter.sys []
S3 ewusbnet;HUAWEI USB-NDIS miniport; C:\Windows\system32\DRIVERS\ewusbnet.sys [2009-12-08 113664]
S3 huawei_enumerator;huawei_enumerator; C:\Windows\system32\DRIVERS\ew_jubusenum.sys []
S3 massfilter_lte;LTE Device Mass Storage Filter Driver; \??\C:\Windows\system32\drivers\massfilter_lte.sys [2011-12-05 15896]
S3 MSKSSRV;Tjänstproxy för Microsoft-direktuppspelning; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Klockproxy för Microsoft-direktuppspelning; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Kvalitetshanteringsproxy för Microsoft-direktuppspelning; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Tee/Sink-to-Sink-konverterare för Microsoft-direktuppspelning; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 RTL8187B;Realtek RTL8187B Wireless 802.11g 54Mbps USB 2.0 Network Adapter; C:\Windows\system32\DRIVERS\RTL8187B.sys [2007-06-08 253952]
S3 usbvideo;USB-videoenhet (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2006-11-02 132352]
S3 zgdcat_1440;ZTE Datacard AT Port 1440; C:\Windows\system32\DRIVERS\zgdcat_1440.sys [2012-02-07 111768]
S3 zgdcdiag_1440;ZTE Datacard Diagnostics Port 1440; C:\Windows\system32\DRIVERS\zgdcdiag_1440.sys [2012-02-07 111768]
S3 zgdcmdm_1440;ZTE Datacard Modem 1440; C:\Windows\system32\DRIVERS\zgdcmdm_1440.sys [2012-02-07 111768]
S3 zgdcnet_1440;ZTE Datacard Network Adapter 1440; C:\Windows\system32\DRIVERS\zgdcnet_1440.sys [2012-02-07 141848]
S3 zgdcnmea_1440;ZTE Datacard NMEA Port 1440; C:\Windows\system32\DRIVERS\zgdcnmea_1440.sys [2012-02-07 111768]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2012-08-21 44808]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared Files\RichVideo.exe [2007-03-06 266343]
R2 RoxWatch9;Roxio Hard Drive Watcher 9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe [2007-01-11 166648]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-08-13 3064000]
R3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-01-11 887544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 CLTNetCnService;Symantec Lic NetConnect service; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe /h ccCommon []
S2 gupdate;Tjänsten Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-05-10 135664]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-06-07 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-30 250568]
S3 GoogleDesktopManager;GoogleDesktopManager; C:\Program Files\Google\Google Desktop Search\GoogleDesktopManager.exe [2007-01-04 66560]
S3 gupdatem;Tjänsten Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-05-10 135664]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-21 194032]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2006-09-14 73728]
S3 WPFFontCache_v0400;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
-----------------EOF-----------------
Logfile of random's system information tool 1.09 (written by random/random)
Run by Kaniii at 2012-09-20 10:38:23
Microsoft® Windows Vista™ Home Premium Service Pack 1
System drive C: has 96 GB (66%) free of 144 GB
Total RAM: 894 MB (16% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:39:14, on 2012-09-20
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18639)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\BisonCam\BisonHK.exe
C:\Program Files\Power Manager\PM.exe
C:\Program Files\Realtek Semiconductor Corp\Realtek Card Reader Monitor\CardReaderMonitor.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\CyberLink\MagicSports\Kernel\MagicSports\MSPMirage.exe
C:\Program Files\Ask.com\Updater\Updater.exe
C:\Program Files\Connect Manager\Bin\CancelAutoPlay.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopCrawl.exe
C:\Program Files\Connect Manager\Bin\zLoggingDaemon.exe
C:\Program Files\Connect Manager\Bin\zConnectionManager.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Telia mobile broadband\Telia mobile broadband.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Users\Kaniii\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Kaniii\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Kaniii\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Kaniii\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Kaniii\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Kaniii\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Kaniii\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Kaniii\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Kaniii\Downloads\RSIT.exe
C:\Program Files\trend micro\Kaniii.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ask.com/?l=dis&o=15187&apn_p ... 2012-08-30
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O1 - Hosts: ::1 localhost
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7529.1424\swg.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Google\Google_BAE\BAE.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [BisonHK] C:\Windows\BisonCam\BisonHK.exe
O4 - HKLM\..\Run: [PowerManager] C:\Program Files\Power Manager\PM.exe
O4 - HKLM\..\Run: [CardReaderMonitor] C:\Program Files\Realtek Semiconductor Corp.\Realtek Card Reader Monitor\CardReaderMonitor.exe
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [MSPService] C:\Program Files\CyberLink\MagicSports\Kernel\MagicSports\MSPMirage.exe
O4 - HKLM\..\Run: [toolbar_eula_launcher] C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe
O4 - HKLM\..\Run: [ApnUpdater] "C:\Program Files\Ask.com\Updater\Updater.exe"
O4 - HKLM\..\Run: [zLoader.exe] "C:\Program Files\Connect Manager\Bin\zLoader.exe"
O4 - HKLM\..\Run: [CancelAutoPlay.exe] "C:\Program Files\Connect Manager\Bin\CancelAutoPlay.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [avast] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKCU\..\Run: [SmpcSys] C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
O4 - HKCU\..\Run: [Google Update] "C:\Users\Kaniii\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [HW_OPENEYE_OUC_Tele2 Mobile Partner] "C:\Program Files\Tele2 Mobile Partner\UpdateDog\ouc.exe"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Kaniii\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKAL TJÄNST')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKAL TJÄNST')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NÄTVERKSTJÄNST')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{60C3F092-39A0-4EB2-A57D-4631C12A5776}: NameServer = 195.67.199.18 195.67.199.19
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktopManager.exe
O23 - Service: Tjänsten Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Tjänsten Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
--
End of file - 9816 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-42147192-3489510026-1774748535-1002Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-42147192-3489510026-1774748535-1002UA.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-42147192-3489510026-1774748535-1002Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-42147192-3489510026-1774748535-1002UA.job
C:\Windows\tasks\Recovery DVD Creator.job
C:\Windows\tasks\Utökad garanti.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Kaniii\AppData\Roaming\Mozilla\Firefox\Profiles\yflo0yer.default
prefs.js - "browser.startup.homepage" - "http://www.ask.com/?l=dis&o=15187&apn_p ... 2012-08-30"
prefs.js - "keyword.URL" - "http://websearch.ask.com/redirect?clien ... 2-08-30&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Picasa2\npPicasa3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
C:\Program Files\Mozilla Firefox\extensions\
packardbell@partners.mozilla.com
talkback@mozilla.org
{3112ca9c-de6d-4884-a869-9855de68056c}
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
browser.xpt
FeedConverter.js
FeedProcessor.js
FeedWriter.js
flashplayer.xpt
GoogleDesktopMozilla.dll
GoogleDesktopMozillaStub.js
GoogleDesktopMozillaStub.xpt
jar50.dll
jsconsole-clhandler.js
jsd3250.dll
myspell.dll
nsBookmarkTransactionManager.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsCloseAllWindows.js
nsDictionary.js
nsExtensionManager.js
nsHelperAppDlg.js
nsMicrosummaryService.js
nsPostUpdateWin.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsUpdateService.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsUrlClassifierTable.js
nsURLFormatter.js
nsXmlRpcClient.js
spellchk.dll
WebContentConverter.js
xpinstal.dll
C:\Program Files\Mozilla Firefox\plugins\
npnul32.dll
NPSWF32.dll
NPSWF32_FlashUtil.exe
C:\Program Files\Mozilla Firefox\searchplugins\
amazon-en-GB.xml
answers.xml
creativecommons.xml
eBay-en-GB.xml
google.xml
yahoo-sv-SE.xml
C:\Users\Kaniii\AppData\Roaming\Mozilla\Firefox\Profiles\yflo0yer.default\extensions\
toolbar@ask.com
{20a82645-c095-46ed-80e3-08825760534b}
C:\Users\Kaniii\AppData\Roaming\Mozilla\Firefox\Profiles\yflo0yer.default\searchplugins\
askcom.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2012-08-21 192144]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Browser Helper - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2012-08-13 4120256]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7529.1424\swg.dll [2012-08-21 1002992]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
CBrowserHelperObject Object - C:\Program Files\Google\Google_BAE\BAE.dll [2006-11-09 98304]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2012-08-08 1527496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2012-08-08 1527496]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2012-08-21 192144]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-02-09 845360]
"BisonHK"=C:\Windows\BisonCam\BisonHK.exe [2007-05-16 73728]
"PowerManager"=C:\Program Files\Power Manager\PM.exe [2007-05-16 29696]
"CardReaderMonitor"=C:\Program Files\Realtek Semiconductor Corp.\Realtek Card Reader Monitor\CardReaderMonitor.exe [2007-07-25 643072]
""= []
"RoxWatchTray"=C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe [2007-01-11 232184]
"Google Desktop Search"=C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2007-01-04 227328]
"MSPService"=C:\Program Files\CyberLink\MagicSports\Kernel\MagicSports\MSPMirage.exe [2007-06-13 102400]
"toolbar_eula_launcher"=C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe [2007-01-10 18944]
"ApnUpdater"=C:\Program Files\Ask.com\Updater\Updater.exe [2012-08-08 1644744]
"zLoader.exe"=C:\Program Files\Connect Manager\Bin\zLoader.exe [2012-02-07 25872]
"CancelAutoPlay.exe"=C:\Program Files\Connect Manager\Bin\CancelAutoPlay.exe [2012-02-07 73488]
"NvSvc"=C:\Windows\system32\nvsvc.dll [2007-07-21 86016]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2007-07-21 8433664]
"NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2007-07-21 81920]
"avast"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2012-08-21 4282728]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SmpcSys"=C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe [2007-07-19 1120568]
"Google Update"=C:\Users\Kaniii\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-08 116648]
"HW_OPENEYE_OUC_Tele2 Mobile Partner"=C:\Program Files\Tele2 Mobile Partner\UpdateDog\ouc.exe []
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]
"Facebook Update"=C:\Users\Kaniii\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-17 138096]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2012-07-13 17418928]
"ISUSPM"=C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [2006-09-11 218032]
"WindowsWelcomeCenter"=oobefldr.dll,ShowWelcomeCenter []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"msacm.mkdmp3enc"=C:\PROGRA~1\CYBERL~1\MAGICS~1\Kernel\Burner\MKDMP3Enc.ACM
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======List of files/folders created in the last 1 month======
2012-09-20 10:38:28 ----D---- C:\Program Files\trend micro
2012-09-20 10:38:23 ----D---- C:\rsit
2012-09-20 10:03:45 ----A---- C:\Windows\system32\drivers\ewusbnet.sys
2012-09-20 10:03:45 ----A---- C:\Windows\system32\drivers\ewusbmdm.sys
2012-09-20 10:03:45 ----A---- C:\Windows\system32\drivers\ewusbdev.sys
2012-09-20 10:03:45 ----A---- C:\Windows\system32\drivers\ewdcsc.sys
2012-09-20 10:02:06 ----D---- C:\Program Files\Telia mobile broadband
2012-09-12 18:22:17 ----D---- C:\Program Files\Microsoft.NET
2012-09-12 15:27:04 ----A---- C:\Windows\system32\msshsq.dll
2012-09-12 13:38:56 ----A---- C:\Windows\system32\quartz.dll
2012-09-12 13:38:40 ----A---- C:\Windows\system32\ole32.dll
2012-09-12 13:38:26 ----A---- C:\Windows\system32\EncDec.dll
2012-09-12 13:38:25 ----A---- C:\Windows\system32\sbeio.dll
2012-09-12 13:38:24 ----A---- C:\Windows\system32\sbe.dll
2012-09-12 13:38:14 ----A---- C:\Windows\system32\wmpmde.dll
2012-09-12 13:38:02 ----A---- C:\Windows\system32\drivers\srv.sys
2012-09-12 13:37:41 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-09-12 13:37:41 ----A---- C:\Windows\system32\ntkrnlpa.exe
2012-09-12 13:37:40 ----A---- C:\Windows\system32\ntdll.dll
2012-09-12 13:36:41 ----A---- C:\Windows\system32\wmploc.DLL
2012-09-12 13:36:40 ----A---- C:\Windows\system32\wmp.dll
2012-09-12 13:36:12 ----A---- C:\Windows\system32\fontsub.dll
2012-09-12 13:36:12 ----A---- C:\Windows\system32\atmlib.dll
2012-09-12 13:36:12 ----A---- C:\Windows\system32\atmfd.dll
2012-09-12 13:35:44 ----A---- C:\Windows\system32\msxml3.dll
2012-09-12 13:35:33 ----A---- C:\Windows\system32\asycfilt.dll
2012-09-12 13:35:23 ----A---- C:\Windows\system32\t2embed.dll
2012-09-12 13:34:28 ----A---- C:\Windows\system32\shsvcs.dll
2012-09-12 13:33:51 ----A---- C:\Windows\system32\drivers\bowser.sys
2012-09-12 13:33:35 ----A---- C:\Windows\system32\vbscript.dll
2012-09-12 13:33:35 ----A---- C:\Windows\system32\jscript.dll
2012-09-12 13:32:13 ----A---- C:\Windows\system32\iertutil.dll
2012-09-12 13:32:13 ----A---- C:\Windows\system32\ieframe.dll
2012-09-12 13:32:12 ----A---- C:\Windows\system32\occache.dll
2012-09-12 13:32:12 ----A---- C:\Windows\system32\ieUnatt.exe
2012-09-12 13:32:09 ----A---- C:\Windows\system32\mshtml.dll
2012-09-12 13:32:08 ----A---- C:\Windows\system32\mshtmled.dll
2012-09-12 13:32:08 ----A---- C:\Windows\system32\msfeeds.dll
2012-09-12 13:32:08 ----A---- C:\Windows\system32\ieencode.dll
2012-09-12 13:32:07 ----A---- C:\Windows\system32\iepeers.dll
2012-09-12 13:32:07 ----A---- C:\Windows\system32\ieapfltr.dll
2012-09-12 13:32:07 ----A---- C:\Windows\system32\ieaksie.dll
2012-09-12 13:32:06 ----A---- C:\Windows\system32\iedkcs32.dll
2012-09-12 13:32:05 ----A---- C:\Windows\system32\wininet.dll
2012-09-12 13:32:05 ----A---- C:\Windows\system32\jsproxy.dll
2012-09-12 13:32:04 ----A---- C:\Windows\system32\mstime.dll
2012-09-12 13:32:03 ----A---- C:\Windows\system32\urlmon.dll
2012-09-12 13:31:40 ----A---- C:\Windows\system32\drivers\dfsc.sys
2012-09-12 13:31:26 ----A---- C:\Windows\system32\dnsrslvr.dll
2012-09-12 13:31:26 ----A---- C:\Windows\system32\dnscacheugc.exe
2012-09-12 13:31:25 ----A---- C:\Windows\system32\dnsapi.dll
2012-09-12 13:30:58 ----A---- C:\Windows\system32\consent.exe
2012-09-12 13:30:47 ----A---- C:\Windows\system32\sdclt.exe
2012-09-12 13:30:28 ----A---- C:\Windows\system32\wmicmiplugin.dll
2012-09-12 13:30:26 ----A---- C:\Windows\system32\taskschd.dll
2012-09-12 13:30:26 ----A---- C:\Windows\system32\taskeng.exe
2012-09-12 13:30:26 ----A---- C:\Windows\system32\schedsvc.dll
2012-09-12 13:30:25 ----A---- C:\Windows\system32\taskcomp.dll
2012-09-12 13:30:12 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2012-09-12 13:30:12 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2012-09-12 13:30:11 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2012-09-12 13:29:54 ----A---- C:\Windows\system32\iccvid.dll
2012-09-12 13:29:25 ----A---- C:\Windows\system32\win32k.sys
2012-09-12 13:29:14 ----A---- C:\Windows\system32\mfc40.dll
2012-09-12 13:29:13 ----A---- C:\Windows\system32\mfc40u.dll
2012-09-12 13:28:46 ----A---- C:\Windows\system32\wersvc.dll
2012-09-12 13:28:45 ----A---- C:\Windows\system32\Faultrep.dll
2012-09-12 13:28:29 ----A---- C:\Windows\system32\mfc42u.dll
2012-09-12 13:28:29 ----A---- C:\Windows\system32\mfc42.dll
2012-09-12 13:28:16 ----A---- C:\Windows\system32\drivers\afd.sys
2012-09-12 13:28:05 ----A---- C:\Windows\system32\drivers\srv2.sys
2012-09-12 13:28:04 ----A---- C:\Windows\system32\drivers\srvnet.sys
2012-09-12 13:27:34 ----A---- C:\Windows\system32\shlwapi.dll
2012-09-12 13:27:29 ----A---- C:\Windows\system32\shell32.dll
2012-09-12 13:27:16 ----A---- C:\Windows\system32\spoolsv.exe
2012-09-12 13:27:06 ----A---- C:\Windows\system32\oleaut32.dll
2012-09-12 13:26:20 ----A---- C:\Windows\system32\srvsvc.dll
2012-09-12 13:26:18 ----A---- C:\Windows\system32\netevent.dll
2012-09-12 13:25:57 ----A---- C:\Windows\system32\MP4SDECD.DLL
2012-09-12 13:25:45 ----A---- C:\Windows\system32\rtutils.dll
2012-09-12 13:25:06 ----A---- C:\Windows\system32\odbc32.dll
2012-09-12 13:24:49 ----A---- C:\Windows\system32\usp10.dll
2012-09-12 13:24:34 ----A---- C:\Windows\system32\inetcomm.dll
2012-09-12 13:24:18 ----A---- C:\Windows\system32\drivers\nwifi.sys
2012-09-12 13:24:18 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2012-09-12 13:24:17 ----A---- C:\Windows\system32\emdmgmt.dll
2012-09-12 13:24:17 ----A---- C:\Windows\system32\dataclen.dll
2012-09-12 13:24:17 ----A---- C:\Windows\system32\cdd.dll
2012-09-12 13:23:31 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2012-09-12 13:23:24 ----A---- C:\Windows\system32\Apphlpdm.dll
2012-09-12 13:22:52 ----A---- C:\Windows\system32\pacerprf.dll
2012-09-12 13:22:52 ----A---- C:\Windows\system32\drivers\pacer.sys
2012-09-12 09:44:41 ----A---- C:\Windows\system32\tzres.dll
2012-09-12 09:43:24 ----A---- C:\Windows\system32\wscript.exe
2012-09-12 09:43:24 ----A---- C:\Windows\system32\scrrun.dll
2012-09-12 09:43:24 ----A---- C:\Windows\system32\scrobj.dll
2012-09-12 09:43:23 ----A---- C:\Windows\system32\cscript.exe
2012-09-12 09:43:21 ----A---- C:\Windows\system32\wshext.dll
2012-09-12 09:42:57 ----A---- C:\Windows\system32\kernel32.dll
2012-09-12 09:42:17 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-09-12 08:49:26 ----A---- C:\Windows\system32\msshooks.dll
2012-09-12 08:49:25 ----A---- C:\Windows\system32\msscb.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\thawbrkr.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\SearchFilterHost.exe
2012-09-12 08:49:18 ----A---- C:\Windows\system32\propsys.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\propdefs.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\msstrc.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\mssprxy.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\mssitlb.dll
2012-09-12 08:49:17 ----A---- C:\Windows\system32\srchadmin.dll
2012-09-12 08:49:17 ----A---- C:\Windows\system32\korwbrkr.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\xmlfilter.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\wsepno.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\rtffilt.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\offfilt.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\nlhtml.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\mimefilt.dll
2012-09-12 08:49:15 ----A---- C:\Windows\system32\msscntrs.dll
2012-09-12 08:49:15 ----A---- C:\Windows\system32\chsbrkr.dll
2012-09-12 08:49:14 ----A---- C:\Windows\system32\tquery.dll
2012-09-12 08:49:14 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2012-09-12 08:49:14 ----A---- C:\Windows\system32\SearchIndexer.exe
2012-09-12 08:49:14 ----A---- C:\Windows\system32\chtbrkr.dll
2012-09-12 08:49:13 ----A---- C:\Windows\system32\mssvp.dll
2012-09-12 08:49:13 ----A---- C:\Windows\system32\mssrch.dll
2012-09-12 08:49:13 ----A---- C:\Windows\system32\mssphtb.dll
2012-09-12 08:49:13 ----A---- C:\Windows\system32\mssph.dll
2012-09-12 08:43:57 ----A---- C:\Windows\system32\psisdecd.dll
2012-09-12 08:29:13 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2012-09-12 08:29:13 ----A---- C:\Windows\system32\PresentationHost.exe
2012-09-12 08:29:13 ----A---- C:\Windows\system32\netfxperf.dll
2012-09-12 08:29:13 ----A---- C:\Windows\system32\mscoree.dll
2012-09-12 08:29:12 ----A---- C:\Windows\system32\dfshim.dll
2012-09-12 08:12:31 ----D---- C:\Windows\system32\WindowsPowerShell
2012-09-12 08:10:08 ----A---- C:\Windows\system32\winrsmgr.dll
2012-09-12 08:09:24 ----A---- C:\Windows\system32\wsmprovhost.exe
2012-09-12 08:09:24 ----A---- C:\Windows\system32\winrshost.exe
2012-09-12 08:09:24 ----A---- C:\Windows\system32\winrs.exe
2012-09-12 08:09:19 ----A---- C:\Windows\system32\wsmplpxy.dll
2012-09-12 08:09:18 ----A---- C:\Windows\system32\winrssrv.dll
2012-09-12 08:09:09 ----A---- C:\Windows\system32\wevtfwd.dll
2012-09-12 08:09:09 ----A---- C:\Windows\system32\wecutil.exe
2012-09-12 08:09:09 ----A---- C:\Windows\system32\wecapi.dll
2012-09-12 08:09:07 ----A---- C:\Windows\system32\WsmRes.dll
2012-09-12 08:09:07 ----A---- C:\Windows\system32\wecsvc.dll
2012-09-12 08:09:04 ----A---- C:\Windows\system32\pwrshplugin.dll
2012-09-12 08:08:45 ----A---- C:\Windows\system32\winrm.vbs
2012-09-12 08:08:31 ----A---- C:\Windows\system32\WsmAuto.dll
2012-09-12 08:08:30 ----A---- C:\Windows\system32\WsmWmiPl.dll
2012-09-12 08:08:30 ----A---- C:\Windows\system32\winrscmd.dll
2012-09-12 08:08:29 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2012-09-12 08:08:29 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2012-09-12 08:08:27 ----A---- C:\Windows\system32\WsmSvc.dll
2012-09-11 11:29:52 ----A---- C:\Windows\system32\comctl32.dll
2012-09-11 11:28:43 ----A---- C:\Windows\system32\winsrv.dll
2012-09-11 11:28:42 ----A---- C:\Windows\system32\csrsrv.dll
2012-09-11 11:28:32 ----A---- C:\Windows\system32\mstscax.dll
2012-09-11 11:28:30 ----A---- C:\Windows\system32\mstsc.exe
2012-09-11 10:52:39 ----A---- C:\Windows\system32\schannel.dll
2012-09-10 12:35:06 ----D---- C:\PerfLogs
2012-08-30 18:31:36 ----D---- C:\Users\Kaniii\AppData\Roaming\Adobe
2012-08-30 18:29:27 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2012-08-28 13:46:51 ----A---- C:\Users\Kaniii\AppData\Roaming\nvModes.dat
======List of files/folders modified in the last 1 month======
2012-09-20 10:38:40 ----D---- C:\Windows\Temp
2012-09-20 10:38:28 ----RD---- C:\Program Files
2012-09-20 10:19:36 ----D---- C:\Windows\ModemLogs
2012-09-20 10:18:40 ----D---- C:\Windows\inf
2012-09-20 10:18:40 ----AD---- C:\Windows\System32
2012-09-20 10:18:40 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-09-20 10:15:19 ----D---- C:\Users\Kaniii\AppData\Roaming\Skype
2012-09-20 10:14:07 ----D---- C:\Windows
2012-09-20 10:03:45 ----D---- C:\Windows\system32\drivers
2012-09-20 10:03:44 ----D---- C:\Windows\system32\catroot
2012-09-19 17:13:55 ----SHD---- C:\System Volume Information
2012-09-17 11:01:11 ----SHD---- C:\Windows\Installer
2012-09-16 17:53:26 ----RSD---- C:\Windows\assembly
2012-09-16 17:53:26 ----D---- C:\Windows\Microsoft.NET
2012-09-15 10:33:34 ----D---- C:\Windows\system32\sv-SE
2012-09-15 10:20:02 ----D---- C:\Windows\system32\en-US
2012-09-14 23:25:49 ----D---- C:\Users\Kaniii\AppData\Roaming\Roxio
2012-09-14 22:17:22 ----RSD---- C:\Windows\Fonts
2012-09-14 22:15:36 ----D---- C:\Windows\winsxs
2012-09-14 18:01:11 ----D---- C:\Windows\system32\catroot2
2012-09-14 17:46:30 ----D---- C:\Program Files\Common Files
2012-09-14 17:46:14 ----D---- C:\ProgramData\Adobe
2012-09-13 17:27:39 ----D---- C:\Windows\rescache
2012-09-13 13:54:13 ----D---- C:\Windows\system32\config
2012-09-13 13:54:01 ----D---- C:\Windows\Tasks
2012-09-13 13:54:00 ----D---- C:\Windows\system32\spool
2012-09-13 13:54:00 ----D---- C:\Windows\system32\Msdtc
2012-09-13 13:54:00 ----D---- C:\Windows\system32\CodeIntegrity
2012-09-13 13:53:57 ----D---- C:\Windows\system32\wbem
2012-09-13 13:53:57 ----D---- C:\Windows\registration
2012-09-12 17:55:20 ----D---- C:\Program Files\Windows Media Player
2012-09-12 17:55:19 ----D---- C:\Program Files\Windows Mail
2012-09-12 17:55:18 ----D---- C:\Program Files\Internet Explorer
2012-09-12 17:55:14 ----D---- C:\Program Files\Movie Maker
2012-09-12 17:55:12 ----D---- C:\Windows\AppPatch
2012-09-12 15:32:47 ----A---- C:\Windows\system32\mrt.exe
2012-09-12 09:18:02 ----D---- C:\Windows\PolicyDefinitions
2012-09-12 09:17:11 ----D---- C:\Windows\ehome
2012-09-11 16:16:13 ----D---- C:\Windows\system32\sysprep
2012-09-11 16:16:13 ----D---- C:\Windows\system32\sv
2012-09-11 16:16:13 ----D---- C:\Windows\system32\SLUI
2012-09-11 16:16:13 ----D---- C:\Windows\system32\setup
2012-09-11 16:16:13 ----D---- C:\Windows\system32\oobe
2012-09-11 16:16:13 ----D---- C:\Windows\system32\migwiz
2012-09-11 16:16:13 ----D---- C:\Windows\system32\migration
2012-09-11 16:16:13 ----D---- C:\Windows\system
2012-09-11 16:16:12 ----RSD---- C:\Windows\Media
2012-09-11 16:16:12 ----RD---- C:\Windows\Offline Web Pages
2012-09-11 16:16:12 ----D---- C:\Windows\system32\drivers\sv-SE
2012-09-11 16:16:12 ----D---- C:\Windows\ShellNew
2012-09-11 16:16:12 ----D---- C:\Program Files\Windows Sidebar
2012-09-11 16:16:12 ----D---- C:\Program Files\Windows Journal
2012-09-11 16:16:12 ----D---- C:\Program Files\Windows Defender
2012-09-11 16:16:12 ----D---- C:\Program Files\Windows Collaboration
2012-09-11 16:16:12 ----D---- C:\Program Files\Common Files\System
2012-09-11 16:16:12 ----D---- C:\Program Files\Common Files\Services
2012-09-11 15:24:45 ----D---- C:\Windows\system32\Tasks
2012-09-10 12:49:22 ----SHD---- C:\boot
2012-09-10 12:49:00 ----ASH---- C:\Program Files\desktop.ini
2012-09-10 12:37:03 ----D---- C:\Program Files\Windows Calendar
2012-09-10 12:37:01 ----D---- C:\Program Files\Windows Photo Gallery
2012-09-10 12:36:59 ----D---- C:\Windows\servicing
2012-09-10 12:36:58 ----D---- C:\Windows\MSAgent
2012-09-10 12:36:57 ----D---- C:\Windows\L2Schemas
2012-09-10 12:36:57 ----D---- C:\Windows\IME
2012-09-10 12:36:57 ----D---- C:\Windows\DigitalLocker
2012-09-10 12:36:56 ----D---- C:\Windows\system32\ko-KR
2012-09-10 12:36:56 ----D---- C:\Windows\system32\da-DK
2012-09-10 12:36:56 ----D---- C:\Windows\system32\com
2012-09-10 12:36:55 ----D---- C:\Windows\system32\it-IT
2012-09-10 12:36:55 ----D---- C:\Windows\system32\el-GR
2012-09-10 12:36:55 ----D---- C:\Windows\system32\de-DE
2012-09-10 12:36:52 ----D---- C:\Windows\system32\AdvancedInstallers
2012-09-10 12:36:51 ----D---- C:\Windows\system32\ru-RU
2012-09-10 12:36:51 ----D---- C:\Windows\system32\ias
2012-09-10 12:36:51 ----D---- C:\Windows\system32\fr-FR
2012-09-10 12:36:43 ----D---- C:\Windows\system32\pt-PT
2012-09-10 12:36:43 ----D---- C:\Windows\system32\hu-HU
2012-09-10 12:36:43 ----D---- C:\Windows\system32\he-IL
2012-09-10 12:36:43 ----D---- C:\Windows\system32\fi-FI
2012-09-10 12:36:43 ----D---- C:\Windows\system32\cs-CZ
2012-09-10 12:36:40 ----D---- C:\Windows\system32\zh-TW
2012-09-10 12:36:40 ----D---- C:\Windows\system32\zh-CN
2012-09-10 12:36:40 ----D---- C:\Windows\system32\manifeststore
2012-09-10 12:36:40 ----D---- C:\Windows\system32\es-ES
2012-09-10 12:36:39 ----D---- C:\Windows\system32\ro-RO
2012-09-10 12:36:39 ----D---- C:\Windows\system32\pl-PL
2012-09-10 12:36:39 ----D---- C:\Windows\system32\ja-JP
2012-09-10 12:36:37 ----D---- C:\Windows\system32\tr-TR
2012-09-10 12:36:36 ----D---- C:\Windows\system32\nl-NL
2012-09-10 12:36:36 ----D---- C:\Windows\system32\nb-NO
2012-09-10 12:36:36 ----D---- C:\Windows\system32\ar-SA
2012-09-10 12:36:32 ----D---- C:\Windows\system32\pt-BR
2012-09-10 12:35:19 ----D---- C:\Windows\Boot
2012-09-10 12:35:15 ----D---- C:\Windows\system32\Boot
2012-09-10 12:29:27 ----D---- C:\Windows\system32\drivers\UMDF
2012-09-10 11:40:26 ----A---- C:\Windows\system32\ifxcardm.dll
2012-09-10 11:39:54 ----A---- C:\Windows\system32\axaltocm.dll
2012-09-07 10:26:22 ----D---- C:\Windows\Minidump
2012-09-06 20:51:03 ----D---- C:\Windows\Prefetch
2012-09-02 13:21:39 ----D---- C:\Program Files\Ask.com
2012-08-31 21:53:11 ----D---- C:\ProgramData\Skype
2012-08-21 22:00:39 ----D---- C:\Users\Kaniii\AppData\Roaming\CyberLink
2012-08-21 21:09:37 ----D---- C:\Users\Kaniii\AppData\Roaming\uTorrent
2012-08-21 11:12:23 ----A---- C:\Windows\system32\aswBoot.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2006-09-27 36560]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2012-08-21 35928]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-08-21 729752]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-08-21 355632]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-08-21 54232]
R1 WINIO;WINIO; \??\C:\Windows\system32\WinIo.sys [2007-01-04 9336]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-08-21 21256]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-08-21 58680]
R3 Cam5607;Bison WebCam; C:\Windows\System32\Drivers\BisonC07.sys [2007-07-23 971944]
R3 GEARAspiWDM;GEARAspiWDM; C:\Windows\System32\Drivers\GEARAspiWDM.sys [2006-09-19 15664]
R3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2007-04-12 160768]
R3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2009-12-07 103168]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvmfdx32.sys [2007-03-06 1059112]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2007-07-21 7138272]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2007-02-16 12032]
R3 RTSTOR;USB Mass Storage Device; C:\Windows\system32\drivers\RTSTOR.SYS [2007-06-15 47616]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-02-09 182456]
R3 usbaudio;USB-ljuddrivrutiner (WDM); C:\Windows\system32\drivers\usbaudio.sys [2008-01-19 73088]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\Windows\system32\DRIVERS\ew_hwusbdev.sys []
S3 ew_usbenumfilter;huawei_CompositeFilter; C:\Windows\system32\DRIVERS\ew_usbenumfilter.sys []
S3 ewusbnet;HUAWEI USB-NDIS miniport; C:\Windows\system32\DRIVERS\ewusbnet.sys [2009-12-08 113664]
S3 huawei_enumerator;huawei_enumerator; C:\Windows\system32\DRIVERS\ew_jubusenum.sys []
S3 massfilter_lte;LTE Device Mass Storage Filter Driver; \??\C:\Windows\system32\drivers\massfilter_lte.sys [2011-12-05 15896]
S3 MSKSSRV;Tjänstproxy för Microsoft-direktuppspelning; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Klockproxy för Microsoft-direktuppspelning; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Kvalitetshanteringsproxy för Microsoft-direktuppspelning; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Tee/Sink-to-Sink-konverterare för Microsoft-direktuppspelning; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 RTL8187B;Realtek RTL8187B Wireless 802.11g 54Mbps USB 2.0 Network Adapter; C:\Windows\system32\DRIVERS\RTL8187B.sys [2007-06-08 253952]
S3 usbvideo;USB-videoenhet (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2006-11-02 132352]
S3 zgdcat_1440;ZTE Datacard AT Port 1440; C:\Windows\system32\DRIVERS\zgdcat_1440.sys [2012-02-07 111768]
S3 zgdcdiag_1440;ZTE Datacard Diagnostics Port 1440; C:\Windows\system32\DRIVERS\zgdcdiag_1440.sys [2012-02-07 111768]
S3 zgdcmdm_1440;ZTE Datacard Modem 1440; C:\Windows\system32\DRIVERS\zgdcmdm_1440.sys [2012-02-07 111768]
S3 zgdcnet_1440;ZTE Datacard Network Adapter 1440; C:\Windows\system32\DRIVERS\zgdcnet_1440.sys [2012-02-07 141848]
S3 zgdcnmea_1440;ZTE Datacard NMEA Port 1440; C:\Windows\system32\DRIVERS\zgdcnmea_1440.sys [2012-02-07 111768]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2012-08-21 44808]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared Files\RichVideo.exe [2007-03-06 266343]
R2 RoxWatch9;Roxio Hard Drive Watcher 9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe [2007-01-11 166648]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-08-13 3064000]
R3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-01-11 887544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 CLTNetCnService;Symantec Lic NetConnect service; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe /h ccCommon []
S2 gupdate;Tjänsten Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-05-10 135664]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-06-07 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-30 250568]
S3 GoogleDesktopManager;GoogleDesktopManager; C:\Program Files\Google\Google Desktop Search\GoogleDesktopManager.exe [2007-01-04 66560]
S3 gupdatem;Tjänsten Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-05-10 135664]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-21 194032]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2006-09-14 73728]
S3 WPFFontCache_v0400;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119515
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: laptop-absolutni zpomaleni
Necelý 1GB RAM při oper. systému WinVista znamená, že laptop nikdy nebude dostatečně rychlý. Nicméně ho můžeme vyčistit od zbytečností. Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.:files
C:\Program Files\Ask.com
C:\Program Files\Google\Google Toolbar
C:\Program Files\Skype\Toolbars
C:\Program Files\Google\GoogleToolbarNotifier
C:\Program Files\Google\Google_BAE
C:\Users\Kaniii\AppData\Local\Facebook\Update
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-42147192-3489510026-1774748535-1002Core.job
C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-42147192-3489510026-1774748535-1002UA.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-42147192-3489510026-1774748535-1002Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-42147192-3489510026-1774748535-1002UA.job
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ApnUpdater"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Facebook Update"=-
:commands
[Purity]
[Emptytemp]
[Emptyflash]
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
- Návštěvník
- Příspěvky: 346
- Registrován: 02 úno 2006 13:03
Re: laptop-absolutni zpomaleni
udelano...rychlost zatim stejna...mala
log rsit
Logfile of random's system information tool 1.09 (written by random/random)
Run by Kaniii at 2012-09-20 14:18:05
Microsoft® Windows Vista™ Home Premium Service Pack 1
System drive C: has 97 GB (67%) free of 144 GB
Total RAM: 894 MB (20% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:18:40, on 2012-09-20
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18639)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\BisonCam\BisonHK.exe
C:\Program Files\Power Manager\PM.exe
C:\Program Files\Realtek Semiconductor Corp\Realtek Card Reader Monitor\CardReaderMonitor.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\CyberLink\MagicSports\Kernel\MagicSports\MSPMirage.exe
C:\Program Files\Connect Manager\Bin\CancelAutoPlay.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
C:\Users\Kaniii\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopCrawl.exe
C:\Program Files\Connect Manager\Bin\zLoggingDaemon.exe
C:\Program Files\Connect Manager\Bin\zConnectionManager.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
C:\Windows\system32\taskeng.exe
C:\Users\Kaniii\Downloads\RSIT.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\trend micro\Kaniii.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ask.com/?l=dis&o=15187&apn_p ... 2012-08-30
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (file missing)
O1 - Hosts: ::1 localhost
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [BisonHK] C:\Windows\BisonCam\BisonHK.exe
O4 - HKLM\..\Run: [PowerManager] C:\Program Files\Power Manager\PM.exe
O4 - HKLM\..\Run: [CardReaderMonitor] C:\Program Files\Realtek Semiconductor Corp.\Realtek Card Reader Monitor\CardReaderMonitor.exe
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [MSPService] C:\Program Files\CyberLink\MagicSports\Kernel\MagicSports\MSPMirage.exe
O4 - HKLM\..\Run: [toolbar_eula_launcher] C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe
O4 - HKLM\..\Run: [zLoader.exe] "C:\Program Files\Connect Manager\Bin\zLoader.exe"
O4 - HKLM\..\Run: [CancelAutoPlay.exe] "C:\Program Files\Connect Manager\Bin\CancelAutoPlay.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [avast] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKCU\..\Run: [SmpcSys] C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
O4 - HKCU\..\Run: [Google Update] "C:\Users\Kaniii\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [HW_OPENEYE_OUC_Tele2 Mobile Partner] "C:\Program Files\Tele2 Mobile Partner\UpdateDog\ouc.exe"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKAL TJÄNST')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKAL TJÄNST')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NÄTVERKSTJÄNST')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing)
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing)
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktopManager.exe
O23 - Service: Tjänsten Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Tjänsten Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
--
End of file - 7977 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\Recovery DVD Creator.job
C:\Windows\tasks\Utökad garanti.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Kaniii\AppData\Roaming\Mozilla\Firefox\Profiles\yflo0yer.default
prefs.js - "browser.startup.homepage" - "http://www.ask.com/?l=dis&o=15187&apn_p ... 2012-08-30"
prefs.js - "keyword.URL" - "http://websearch.ask.com/redirect?clien ... 2-08-30&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Picasa2\npPicasa3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
C:\Program Files\Mozilla Firefox\extensions\
packardbell@partners.mozilla.com
talkback@mozilla.org
{3112ca9c-de6d-4884-a869-9855de68056c}
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
browser.xpt
FeedConverter.js
FeedProcessor.js
FeedWriter.js
flashplayer.xpt
GoogleDesktopMozilla.dll
GoogleDesktopMozillaStub.js
GoogleDesktopMozillaStub.xpt
jar50.dll
jsconsole-clhandler.js
jsd3250.dll
myspell.dll
nsBookmarkTransactionManager.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsCloseAllWindows.js
nsDictionary.js
nsExtensionManager.js
nsHelperAppDlg.js
nsMicrosummaryService.js
nsPostUpdateWin.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsUpdateService.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsUrlClassifierTable.js
nsURLFormatter.js
nsXmlRpcClient.js
spellchk.dll
WebContentConverter.js
xpinstal.dll
C:\Program Files\Mozilla Firefox\plugins\
npnul32.dll
NPSWF32.dll
NPSWF32_FlashUtil.exe
C:\Program Files\Mozilla Firefox\searchplugins\
amazon-en-GB.xml
answers.xml
creativecommons.xml
eBay-en-GB.xml
google.xml
yahoo-sv-SE.xml
C:\Users\Kaniii\AppData\Roaming\Mozilla\Firefox\Profiles\yflo0yer.default\extensions\
toolbar@ask.com
{20a82645-c095-46ed-80e3-08825760534b}
C:\Users\Kaniii\AppData\Roaming\Mozilla\Firefox\Profiles\yflo0yer.default\searchplugins\
askcom.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-02-09 845360]
"BisonHK"=C:\Windows\BisonCam\BisonHK.exe [2007-05-16 73728]
"PowerManager"=C:\Program Files\Power Manager\PM.exe [2007-05-16 29696]
"CardReaderMonitor"=C:\Program Files\Realtek Semiconductor Corp.\Realtek Card Reader Monitor\CardReaderMonitor.exe [2007-07-25 643072]
""= []
"RoxWatchTray"=C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe [2007-01-11 232184]
"Google Desktop Search"=C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2007-01-04 227328]
"MSPService"=C:\Program Files\CyberLink\MagicSports\Kernel\MagicSports\MSPMirage.exe [2007-06-13 102400]
"toolbar_eula_launcher"=C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe [2007-01-10 18944]
"zLoader.exe"=C:\Program Files\Connect Manager\Bin\zLoader.exe [2012-02-07 25872]
"CancelAutoPlay.exe"=C:\Program Files\Connect Manager\Bin\CancelAutoPlay.exe [2012-02-07 73488]
"NvSvc"=C:\Windows\system32\nvsvc.dll [2007-07-21 86016]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2007-07-21 8433664]
"NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2007-07-21 81920]
"avast"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2012-08-21 4282728]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SmpcSys"=C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe [2007-07-19 1120568]
"Google Update"=C:\Users\Kaniii\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-08 116648]
"HW_OPENEYE_OUC_Tele2 Mobile Partner"=C:\Program Files\Tele2 Mobile Partner\UpdateDog\ouc.exe []
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2012-07-13 17418928]
"ISUSPM"=C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [2006-09-11 218032]
"WindowsWelcomeCenter"=oobefldr.dll,ShowWelcomeCenter []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"msacm.mkdmp3enc"=C:\PROGRA~1\CYBERL~1\MAGICS~1\Kernel\Burner\MKDMP3Enc.ACM
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======List of files/folders created in the last 1 month======
2012-09-20 14:04:59 ----D---- C:\_OTM
2012-09-20 10:38:28 ----D---- C:\Program Files\trend micro
2012-09-20 10:38:23 ----D---- C:\rsit
2012-09-20 10:03:45 ----A---- C:\Windows\system32\drivers\ewusbnet.sys
2012-09-20 10:03:45 ----A---- C:\Windows\system32\drivers\ewusbmdm.sys
2012-09-20 10:03:45 ----A---- C:\Windows\system32\drivers\ewusbdev.sys
2012-09-20 10:03:45 ----A---- C:\Windows\system32\drivers\ewdcsc.sys
2012-09-20 10:02:06 ----D---- C:\Program Files\Telia mobile broadband
2012-09-12 18:22:17 ----D---- C:\Program Files\Microsoft.NET
2012-09-12 15:27:04 ----A---- C:\Windows\system32\msshsq.dll
2012-09-12 13:38:56 ----A---- C:\Windows\system32\quartz.dll
2012-09-12 13:38:40 ----A---- C:\Windows\system32\ole32.dll
2012-09-12 13:38:26 ----A---- C:\Windows\system32\EncDec.dll
2012-09-12 13:38:25 ----A---- C:\Windows\system32\sbeio.dll
2012-09-12 13:38:24 ----A---- C:\Windows\system32\sbe.dll
2012-09-12 13:38:14 ----A---- C:\Windows\system32\wmpmde.dll
2012-09-12 13:38:02 ----A---- C:\Windows\system32\drivers\srv.sys
2012-09-12 13:37:41 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-09-12 13:37:41 ----A---- C:\Windows\system32\ntkrnlpa.exe
2012-09-12 13:37:40 ----A---- C:\Windows\system32\ntdll.dll
2012-09-12 13:36:41 ----A---- C:\Windows\system32\wmploc.DLL
2012-09-12 13:36:40 ----A---- C:\Windows\system32\wmp.dll
2012-09-12 13:36:12 ----A---- C:\Windows\system32\fontsub.dll
2012-09-12 13:36:12 ----A---- C:\Windows\system32\atmlib.dll
2012-09-12 13:36:12 ----A---- C:\Windows\system32\atmfd.dll
2012-09-12 13:35:44 ----A---- C:\Windows\system32\msxml3.dll
2012-09-12 13:35:33 ----A---- C:\Windows\system32\asycfilt.dll
2012-09-12 13:35:23 ----A---- C:\Windows\system32\t2embed.dll
2012-09-12 13:34:28 ----A---- C:\Windows\system32\shsvcs.dll
2012-09-12 13:33:51 ----A---- C:\Windows\system32\drivers\bowser.sys
2012-09-12 13:33:35 ----A---- C:\Windows\system32\vbscript.dll
2012-09-12 13:33:35 ----A---- C:\Windows\system32\jscript.dll
2012-09-12 13:32:13 ----A---- C:\Windows\system32\iertutil.dll
2012-09-12 13:32:13 ----A---- C:\Windows\system32\ieframe.dll
2012-09-12 13:32:12 ----A---- C:\Windows\system32\occache.dll
2012-09-12 13:32:12 ----A---- C:\Windows\system32\ieUnatt.exe
2012-09-12 13:32:09 ----A---- C:\Windows\system32\mshtml.dll
2012-09-12 13:32:08 ----A---- C:\Windows\system32\mshtmled.dll
2012-09-12 13:32:08 ----A---- C:\Windows\system32\msfeeds.dll
2012-09-12 13:32:08 ----A---- C:\Windows\system32\ieencode.dll
2012-09-12 13:32:07 ----A---- C:\Windows\system32\iepeers.dll
2012-09-12 13:32:07 ----A---- C:\Windows\system32\ieapfltr.dll
2012-09-12 13:32:07 ----A---- C:\Windows\system32\ieaksie.dll
2012-09-12 13:32:06 ----A---- C:\Windows\system32\iedkcs32.dll
2012-09-12 13:32:05 ----A---- C:\Windows\system32\wininet.dll
2012-09-12 13:32:05 ----A---- C:\Windows\system32\jsproxy.dll
2012-09-12 13:32:04 ----A---- C:\Windows\system32\mstime.dll
2012-09-12 13:32:03 ----A---- C:\Windows\system32\urlmon.dll
2012-09-12 13:31:40 ----A---- C:\Windows\system32\drivers\dfsc.sys
2012-09-12 13:31:26 ----A---- C:\Windows\system32\dnsrslvr.dll
2012-09-12 13:31:26 ----A---- C:\Windows\system32\dnscacheugc.exe
2012-09-12 13:31:25 ----A---- C:\Windows\system32\dnsapi.dll
2012-09-12 13:30:58 ----A---- C:\Windows\system32\consent.exe
2012-09-12 13:30:47 ----A---- C:\Windows\system32\sdclt.exe
2012-09-12 13:30:28 ----A---- C:\Windows\system32\wmicmiplugin.dll
2012-09-12 13:30:26 ----A---- C:\Windows\system32\taskschd.dll
2012-09-12 13:30:26 ----A---- C:\Windows\system32\taskeng.exe
2012-09-12 13:30:26 ----A---- C:\Windows\system32\schedsvc.dll
2012-09-12 13:30:25 ----A---- C:\Windows\system32\taskcomp.dll
2012-09-12 13:30:12 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2012-09-12 13:30:12 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2012-09-12 13:30:11 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2012-09-12 13:29:54 ----A---- C:\Windows\system32\iccvid.dll
2012-09-12 13:29:25 ----A---- C:\Windows\system32\win32k.sys
2012-09-12 13:29:14 ----A---- C:\Windows\system32\mfc40.dll
2012-09-12 13:29:13 ----A---- C:\Windows\system32\mfc40u.dll
2012-09-12 13:28:46 ----A---- C:\Windows\system32\wersvc.dll
2012-09-12 13:28:45 ----A---- C:\Windows\system32\Faultrep.dll
2012-09-12 13:28:29 ----A---- C:\Windows\system32\mfc42u.dll
2012-09-12 13:28:29 ----A---- C:\Windows\system32\mfc42.dll
2012-09-12 13:28:16 ----A---- C:\Windows\system32\drivers\afd.sys
2012-09-12 13:28:05 ----A---- C:\Windows\system32\drivers\srv2.sys
2012-09-12 13:28:04 ----A---- C:\Windows\system32\drivers\srvnet.sys
2012-09-12 13:27:34 ----A---- C:\Windows\system32\shlwapi.dll
2012-09-12 13:27:29 ----A---- C:\Windows\system32\shell32.dll
2012-09-12 13:27:16 ----A---- C:\Windows\system32\spoolsv.exe
2012-09-12 13:27:06 ----A---- C:\Windows\system32\oleaut32.dll
2012-09-12 13:26:20 ----A---- C:\Windows\system32\srvsvc.dll
2012-09-12 13:26:18 ----A---- C:\Windows\system32\netevent.dll
2012-09-12 13:25:57 ----A---- C:\Windows\system32\MP4SDECD.DLL
2012-09-12 13:25:45 ----A---- C:\Windows\system32\rtutils.dll
2012-09-12 13:25:06 ----A---- C:\Windows\system32\odbc32.dll
2012-09-12 13:24:49 ----A---- C:\Windows\system32\usp10.dll
2012-09-12 13:24:34 ----A---- C:\Windows\system32\inetcomm.dll
2012-09-12 13:24:18 ----A---- C:\Windows\system32\drivers\nwifi.sys
2012-09-12 13:24:18 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2012-09-12 13:24:17 ----A---- C:\Windows\system32\emdmgmt.dll
2012-09-12 13:24:17 ----A---- C:\Windows\system32\dataclen.dll
2012-09-12 13:24:17 ----A---- C:\Windows\system32\cdd.dll
2012-09-12 13:23:31 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2012-09-12 13:23:24 ----A---- C:\Windows\system32\Apphlpdm.dll
2012-09-12 13:22:52 ----A---- C:\Windows\system32\pacerprf.dll
2012-09-12 13:22:52 ----A---- C:\Windows\system32\drivers\pacer.sys
2012-09-12 09:44:41 ----A---- C:\Windows\system32\tzres.dll
2012-09-12 09:43:24 ----A---- C:\Windows\system32\wscript.exe
2012-09-12 09:43:24 ----A---- C:\Windows\system32\scrrun.dll
2012-09-12 09:43:24 ----A---- C:\Windows\system32\scrobj.dll
2012-09-12 09:43:23 ----A---- C:\Windows\system32\cscript.exe
2012-09-12 09:43:21 ----A---- C:\Windows\system32\wshext.dll
2012-09-12 09:42:57 ----A---- C:\Windows\system32\kernel32.dll
2012-09-12 09:42:17 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-09-12 08:49:26 ----A---- C:\Windows\system32\msshooks.dll
2012-09-12 08:49:25 ----A---- C:\Windows\system32\msscb.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\thawbrkr.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\SearchFilterHost.exe
2012-09-12 08:49:18 ----A---- C:\Windows\system32\propsys.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\propdefs.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\msstrc.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\mssprxy.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\mssitlb.dll
2012-09-12 08:49:17 ----A---- C:\Windows\system32\srchadmin.dll
2012-09-12 08:49:17 ----A---- C:\Windows\system32\korwbrkr.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\xmlfilter.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\wsepno.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\rtffilt.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\offfilt.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\nlhtml.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\mimefilt.dll
2012-09-12 08:49:15 ----A---- C:\Windows\system32\msscntrs.dll
2012-09-12 08:49:15 ----A---- C:\Windows\system32\chsbrkr.dll
2012-09-12 08:49:14 ----A---- C:\Windows\system32\tquery.dll
2012-09-12 08:49:14 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2012-09-12 08:49:14 ----A---- C:\Windows\system32\SearchIndexer.exe
2012-09-12 08:49:14 ----A---- C:\Windows\system32\chtbrkr.dll
2012-09-12 08:49:13 ----A---- C:\Windows\system32\mssvp.dll
2012-09-12 08:49:13 ----A---- C:\Windows\system32\mssrch.dll
2012-09-12 08:49:13 ----A---- C:\Windows\system32\mssphtb.dll
2012-09-12 08:49:13 ----A---- C:\Windows\system32\mssph.dll
2012-09-12 08:43:57 ----A---- C:\Windows\system32\psisdecd.dll
2012-09-12 08:29:13 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2012-09-12 08:29:13 ----A---- C:\Windows\system32\PresentationHost.exe
2012-09-12 08:29:13 ----A---- C:\Windows\system32\netfxperf.dll
2012-09-12 08:29:13 ----A---- C:\Windows\system32\mscoree.dll
2012-09-12 08:29:12 ----A---- C:\Windows\system32\dfshim.dll
2012-09-12 08:12:31 ----D---- C:\Windows\system32\WindowsPowerShell
2012-09-12 08:10:08 ----A---- C:\Windows\system32\winrsmgr.dll
2012-09-12 08:09:24 ----A---- C:\Windows\system32\wsmprovhost.exe
2012-09-12 08:09:24 ----A---- C:\Windows\system32\winrshost.exe
2012-09-12 08:09:24 ----A---- C:\Windows\system32\winrs.exe
2012-09-12 08:09:19 ----A---- C:\Windows\system32\wsmplpxy.dll
2012-09-12 08:09:18 ----A---- C:\Windows\system32\winrssrv.dll
2012-09-12 08:09:09 ----A---- C:\Windows\system32\wevtfwd.dll
2012-09-12 08:09:09 ----A---- C:\Windows\system32\wecutil.exe
2012-09-12 08:09:09 ----A---- C:\Windows\system32\wecapi.dll
2012-09-12 08:09:07 ----A---- C:\Windows\system32\WsmRes.dll
2012-09-12 08:09:07 ----A---- C:\Windows\system32\wecsvc.dll
2012-09-12 08:09:04 ----A---- C:\Windows\system32\pwrshplugin.dll
2012-09-12 08:08:45 ----A---- C:\Windows\system32\winrm.vbs
2012-09-12 08:08:31 ----A---- C:\Windows\system32\WsmAuto.dll
2012-09-12 08:08:30 ----A---- C:\Windows\system32\WsmWmiPl.dll
2012-09-12 08:08:30 ----A---- C:\Windows\system32\winrscmd.dll
2012-09-12 08:08:29 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2012-09-12 08:08:29 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2012-09-12 08:08:27 ----A---- C:\Windows\system32\WsmSvc.dll
2012-09-11 11:29:52 ----A---- C:\Windows\system32\comctl32.dll
2012-09-11 11:28:43 ----A---- C:\Windows\system32\winsrv.dll
2012-09-11 11:28:42 ----A---- C:\Windows\system32\csrsrv.dll
2012-09-11 11:28:32 ----A---- C:\Windows\system32\mstscax.dll
2012-09-11 11:28:30 ----A---- C:\Windows\system32\mstsc.exe
2012-09-11 10:52:39 ----A---- C:\Windows\system32\schannel.dll
2012-09-10 12:35:06 ----D---- C:\PerfLogs
2012-08-30 18:31:36 ----D---- C:\Users\Kaniii\AppData\Roaming\Adobe
2012-08-30 18:29:27 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2012-08-28 13:46:51 ----A---- C:\Users\Kaniii\AppData\Roaming\nvModes.dat
======List of files/folders modified in the last 1 month======
2012-09-20 14:17:58 ----D---- C:\Windows\Temp
2012-09-20 14:17:32 ----D---- C:\Users\Kaniii\AppData\Roaming\Skype
2012-09-20 14:05:22 ----D---- C:\Windows\Tasks
2012-09-20 14:05:20 ----D---- C:\Program Files\Google
2012-09-20 14:05:19 ----RD---- C:\Program Files\Skype
2012-09-20 14:05:17 ----RD---- C:\Program Files
2012-09-20 14:03:30 ----AD---- C:\Windows\System32
2012-09-20 14:03:30 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-09-20 14:03:29 ----D---- C:\Windows\inf
2012-09-20 13:27:52 ----D---- C:\Windows\Prefetch
2012-09-20 12:03:16 ----SHD---- C:\Windows\Installer
2012-09-20 10:19:36 ----D---- C:\Windows\ModemLogs
2012-09-20 10:14:07 ----D---- C:\Windows
2012-09-20 10:03:45 ----D---- C:\Windows\system32\drivers
2012-09-20 10:03:44 ----D---- C:\Windows\system32\catroot
2012-09-19 17:13:55 ----SHD---- C:\System Volume Information
2012-09-16 17:53:26 ----RSD---- C:\Windows\assembly
2012-09-16 17:53:26 ----D---- C:\Windows\Microsoft.NET
2012-09-15 10:33:34 ----D---- C:\Windows\system32\sv-SE
2012-09-15 10:20:02 ----D---- C:\Windows\system32\en-US
2012-09-14 23:25:49 ----D---- C:\Users\Kaniii\AppData\Roaming\Roxio
2012-09-14 22:17:22 ----RSD---- C:\Windows\Fonts
2012-09-14 22:15:36 ----D---- C:\Windows\winsxs
2012-09-14 18:01:11 ----D---- C:\Windows\system32\catroot2
2012-09-14 17:46:30 ----D---- C:\Program Files\Common Files
2012-09-14 17:46:14 ----D---- C:\ProgramData\Adobe
2012-09-13 17:27:39 ----D---- C:\Windows\rescache
2012-09-13 13:54:13 ----D---- C:\Windows\system32\config
2012-09-13 13:54:00 ----D---- C:\Windows\system32\spool
2012-09-13 13:54:00 ----D---- C:\Windows\system32\Msdtc
2012-09-13 13:54:00 ----D---- C:\Windows\system32\CodeIntegrity
2012-09-13 13:53:57 ----D---- C:\Windows\system32\wbem
2012-09-13 13:53:57 ----D---- C:\Windows\registration
2012-09-12 17:55:20 ----D---- C:\Program Files\Windows Media Player
2012-09-12 17:55:19 ----D---- C:\Program Files\Windows Mail
2012-09-12 17:55:18 ----D---- C:\Program Files\Internet Explorer
2012-09-12 17:55:14 ----D---- C:\Program Files\Movie Maker
2012-09-12 17:55:12 ----D---- C:\Windows\AppPatch
2012-09-12 15:32:47 ----A---- C:\Windows\system32\mrt.exe
2012-09-12 09:18:02 ----D---- C:\Windows\PolicyDefinitions
2012-09-12 09:17:11 ----D---- C:\Windows\ehome
2012-09-11 16:16:13 ----D---- C:\Windows\system32\sysprep
2012-09-11 16:16:13 ----D---- C:\Windows\system32\sv
2012-09-11 16:16:13 ----D---- C:\Windows\system32\SLUI
2012-09-11 16:16:13 ----D---- C:\Windows\system32\setup
2012-09-11 16:16:13 ----D---- C:\Windows\system32\oobe
2012-09-11 16:16:13 ----D---- C:\Windows\system32\migwiz
2012-09-11 16:16:13 ----D---- C:\Windows\system32\migration
2012-09-11 16:16:13 ----D---- C:\Windows\system
2012-09-11 16:16:12 ----RSD---- C:\Windows\Media
2012-09-11 16:16:12 ----RD---- C:\Windows\Offline Web Pages
2012-09-11 16:16:12 ----D---- C:\Windows\system32\drivers\sv-SE
2012-09-11 16:16:12 ----D---- C:\Windows\ShellNew
2012-09-11 16:16:12 ----D---- C:\Program Files\Windows Sidebar
2012-09-11 16:16:12 ----D---- C:\Program Files\Windows Journal
2012-09-11 16:16:12 ----D---- C:\Program Files\Windows Defender
2012-09-11 16:16:12 ----D---- C:\Program Files\Windows Collaboration
2012-09-11 16:16:12 ----D---- C:\Program Files\Common Files\System
2012-09-11 16:16:12 ----D---- C:\Program Files\Common Files\Services
2012-09-11 15:24:45 ----D---- C:\Windows\system32\Tasks
2012-09-10 12:49:22 ----SHD---- C:\boot
2012-09-10 12:49:00 ----ASH---- C:\Program Files\desktop.ini
2012-09-10 12:37:03 ----D---- C:\Program Files\Windows Calendar
2012-09-10 12:37:01 ----D---- C:\Program Files\Windows Photo Gallery
2012-09-10 12:36:59 ----D---- C:\Windows\servicing
2012-09-10 12:36:58 ----D---- C:\Windows\MSAgent
2012-09-10 12:36:57 ----D---- C:\Windows\L2Schemas
2012-09-10 12:36:57 ----D---- C:\Windows\IME
2012-09-10 12:36:57 ----D---- C:\Windows\DigitalLocker
2012-09-10 12:36:56 ----D---- C:\Windows\system32\ko-KR
2012-09-10 12:36:56 ----D---- C:\Windows\system32\da-DK
2012-09-10 12:36:56 ----D---- C:\Windows\system32\com
2012-09-10 12:36:55 ----D---- C:\Windows\system32\it-IT
2012-09-10 12:36:55 ----D---- C:\Windows\system32\el-GR
2012-09-10 12:36:55 ----D---- C:\Windows\system32\de-DE
2012-09-10 12:36:52 ----D---- C:\Windows\system32\AdvancedInstallers
2012-09-10 12:36:51 ----D---- C:\Windows\system32\ru-RU
2012-09-10 12:36:51 ----D---- C:\Windows\system32\ias
2012-09-10 12:36:51 ----D---- C:\Windows\system32\fr-FR
2012-09-10 12:36:43 ----D---- C:\Windows\system32\pt-PT
2012-09-10 12:36:43 ----D---- C:\Windows\system32\hu-HU
2012-09-10 12:36:43 ----D---- C:\Windows\system32\he-IL
2012-09-10 12:36:43 ----D---- C:\Windows\system32\fi-FI
2012-09-10 12:36:43 ----D---- C:\Windows\system32\cs-CZ
2012-09-10 12:36:40 ----D---- C:\Windows\system32\zh-TW
2012-09-10 12:36:40 ----D---- C:\Windows\system32\zh-CN
2012-09-10 12:36:40 ----D---- C:\Windows\system32\manifeststore
2012-09-10 12:36:40 ----D---- C:\Windows\system32\es-ES
2012-09-10 12:36:39 ----D---- C:\Windows\system32\ro-RO
2012-09-10 12:36:39 ----D---- C:\Windows\system32\pl-PL
2012-09-10 12:36:39 ----D---- C:\Windows\system32\ja-JP
2012-09-10 12:36:37 ----D---- C:\Windows\system32\tr-TR
2012-09-10 12:36:36 ----D---- C:\Windows\system32\nl-NL
2012-09-10 12:36:36 ----D---- C:\Windows\system32\nb-NO
2012-09-10 12:36:36 ----D---- C:\Windows\system32\ar-SA
2012-09-10 12:36:32 ----D---- C:\Windows\system32\pt-BR
2012-09-10 12:35:19 ----D---- C:\Windows\Boot
2012-09-10 12:35:15 ----D---- C:\Windows\system32\Boot
2012-09-10 12:29:27 ----D---- C:\Windows\system32\drivers\UMDF
2012-09-10 11:40:26 ----A---- C:\Windows\system32\ifxcardm.dll
2012-09-10 11:39:54 ----A---- C:\Windows\system32\axaltocm.dll
2012-09-07 10:26:22 ----D---- C:\Windows\Minidump
2012-08-31 21:53:11 ----D---- C:\ProgramData\Skype
2012-08-21 22:00:39 ----D---- C:\Users\Kaniii\AppData\Roaming\CyberLink
2012-08-21 21:09:37 ----D---- C:\Users\Kaniii\AppData\Roaming\uTorrent
2012-08-21 11:12:23 ----A---- C:\Windows\system32\aswBoot.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2006-09-27 36560]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2012-08-21 35928]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-08-21 729752]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-08-21 355632]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-08-21 54232]
R1 WINIO;WINIO; \??\C:\Windows\system32\WinIo.sys [2007-01-04 9336]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-08-21 21256]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-08-21 58680]
R3 Cam5607;Bison WebCam; C:\Windows\System32\Drivers\BisonC07.sys [2007-07-23 971944]
R3 GEARAspiWDM;GEARAspiWDM; C:\Windows\System32\Drivers\GEARAspiWDM.sys [2006-09-19 15664]
R3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2007-04-12 160768]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvmfdx32.sys [2007-03-06 1059112]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2007-07-21 7138272]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2007-02-16 12032]
R3 RTSTOR;USB Mass Storage Device; C:\Windows\system32\drivers\RTSTOR.SYS [2007-06-15 47616]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-02-09 182456]
R3 usbaudio;USB-ljuddrivrutiner (WDM); C:\Windows\system32\drivers\usbaudio.sys [2008-01-19 73088]
R3 zgdcat_1440;ZTE Datacard AT Port 1440; C:\Windows\system32\DRIVERS\zgdcat_1440.sys [2012-02-07 111768]
R3 zgdcdiag_1440;ZTE Datacard Diagnostics Port 1440; C:\Windows\system32\DRIVERS\zgdcdiag_1440.sys [2012-02-07 111768]
R3 zgdcmdm_1440;ZTE Datacard Modem 1440; C:\Windows\system32\DRIVERS\zgdcmdm_1440.sys [2012-02-07 111768]
R3 zgdcnet_1440;ZTE Datacard Network Adapter 1440; C:\Windows\system32\DRIVERS\zgdcnet_1440.sys [2012-02-07 141848]
R3 zgdcnmea_1440;ZTE Datacard NMEA Port 1440; C:\Windows\system32\DRIVERS\zgdcnmea_1440.sys [2012-02-07 111768]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\Windows\system32\DRIVERS\ew_hwusbdev.sys []
S3 ew_usbenumfilter;huawei_CompositeFilter; C:\Windows\system32\DRIVERS\ew_usbenumfilter.sys []
S3 ewusbnet;HUAWEI USB-NDIS miniport; C:\Windows\system32\DRIVERS\ewusbnet.sys [2009-12-08 113664]
S3 huawei_enumerator;huawei_enumerator; C:\Windows\system32\DRIVERS\ew_jubusenum.sys []
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2009-12-07 103168]
S3 massfilter_lte;LTE Device Mass Storage Filter Driver; \??\C:\Windows\system32\drivers\massfilter_lte.sys [2011-12-05 15896]
S3 MSKSSRV;Tjänstproxy för Microsoft-direktuppspelning; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Klockproxy för Microsoft-direktuppspelning; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Kvalitetshanteringsproxy för Microsoft-direktuppspelning; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Tee/Sink-to-Sink-konverterare för Microsoft-direktuppspelning; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 RTL8187B;Realtek RTL8187B Wireless 802.11g 54Mbps USB 2.0 Network Adapter; C:\Windows\system32\DRIVERS\RTL8187B.sys [2007-06-08 253952]
S3 usbvideo;USB-videoenhet (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2006-11-02 132352]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2012-08-21 44808]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared Files\RichVideo.exe [2007-03-06 266343]
R2 RoxWatch9;Roxio Hard Drive Watcher 9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe [2007-01-11 166648]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-08-13 3064000]
R3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-01-11 887544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 CLTNetCnService;Symantec Lic NetConnect service; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe /h ccCommon []
S2 gupdate;Tjänsten Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-05-10 135664]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-06-07 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-30 250568]
S3 GoogleDesktopManager;GoogleDesktopManager; C:\Program Files\Google\Google Desktop Search\GoogleDesktopManager.exe [2007-01-04 66560]
S3 gupdatem;Tjänsten Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-05-10 135664]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-21 194032]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2006-09-14 73728]
S3 WPFFontCache_v0400;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
-----------------EOF-----------------
log rsit
Logfile of random's system information tool 1.09 (written by random/random)
Run by Kaniii at 2012-09-20 14:18:05
Microsoft® Windows Vista™ Home Premium Service Pack 1
System drive C: has 97 GB (67%) free of 144 GB
Total RAM: 894 MB (20% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:18:40, on 2012-09-20
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18639)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\BisonCam\BisonHK.exe
C:\Program Files\Power Manager\PM.exe
C:\Program Files\Realtek Semiconductor Corp\Realtek Card Reader Monitor\CardReaderMonitor.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\CyberLink\MagicSports\Kernel\MagicSports\MSPMirage.exe
C:\Program Files\Connect Manager\Bin\CancelAutoPlay.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
C:\Users\Kaniii\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopCrawl.exe
C:\Program Files\Connect Manager\Bin\zLoggingDaemon.exe
C:\Program Files\Connect Manager\Bin\zConnectionManager.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
C:\Windows\system32\taskeng.exe
C:\Users\Kaniii\Downloads\RSIT.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\trend micro\Kaniii.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ask.com/?l=dis&o=15187&apn_p ... 2012-08-30
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (file missing)
O1 - Hosts: ::1 localhost
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [BisonHK] C:\Windows\BisonCam\BisonHK.exe
O4 - HKLM\..\Run: [PowerManager] C:\Program Files\Power Manager\PM.exe
O4 - HKLM\..\Run: [CardReaderMonitor] C:\Program Files\Realtek Semiconductor Corp.\Realtek Card Reader Monitor\CardReaderMonitor.exe
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [MSPService] C:\Program Files\CyberLink\MagicSports\Kernel\MagicSports\MSPMirage.exe
O4 - HKLM\..\Run: [toolbar_eula_launcher] C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe
O4 - HKLM\..\Run: [zLoader.exe] "C:\Program Files\Connect Manager\Bin\zLoader.exe"
O4 - HKLM\..\Run: [CancelAutoPlay.exe] "C:\Program Files\Connect Manager\Bin\CancelAutoPlay.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [avast] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
O4 - HKCU\..\Run: [SmpcSys] C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
O4 - HKCU\..\Run: [Google Update] "C:\Users\Kaniii\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [HW_OPENEYE_OUC_Tele2 Mobile Partner] "C:\Program Files\Tele2 Mobile Partner\UpdateDog\ouc.exe"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKAL TJÄNST')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKAL TJÄNST')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NÄTVERKSTJÄNST')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing)
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing)
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktopManager.exe
O23 - Service: Tjänsten Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Tjänsten Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
--
End of file - 7977 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\Recovery DVD Creator.job
C:\Windows\tasks\Utökad garanti.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Kaniii\AppData\Roaming\Mozilla\Firefox\Profiles\yflo0yer.default
prefs.js - "browser.startup.homepage" - "http://www.ask.com/?l=dis&o=15187&apn_p ... 2012-08-30"
prefs.js - "keyword.URL" - "http://websearch.ask.com/redirect?clien ... 2-08-30&q="
"{20a82645-c095-46ed-80e3-08825760534b}"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@google.com/npPicasa3,version=3.0.0]
"Description"=Picasa3 plugin
"Path"=C:\Program Files\Picasa2\npPicasa3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
C:\Program Files\Mozilla Firefox\extensions\
packardbell@partners.mozilla.com
talkback@mozilla.org
{3112ca9c-de6d-4884-a869-9855de68056c}
{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
{972ce4c6-7e08-4474-a285-3208198ce6fd}
C:\Program Files\Mozilla Firefox\components\
browser.xpt
FeedConverter.js
FeedProcessor.js
FeedWriter.js
flashplayer.xpt
GoogleDesktopMozilla.dll
GoogleDesktopMozillaStub.js
GoogleDesktopMozillaStub.xpt
jar50.dll
jsconsole-clhandler.js
jsd3250.dll
myspell.dll
nsBookmarkTransactionManager.js
nsBrowserContentHandler.js
nsBrowserGlue.js
nsCloseAllWindows.js
nsDictionary.js
nsExtensionManager.js
nsHelperAppDlg.js
nsMicrosummaryService.js
nsPostUpdateWin.js
nsProxyAutoConfig.js
nsSafebrowsingApplication.js
nsSearchService.js
nsSearchSuggestions.js
nsSessionStartup.js
nsSessionStore.js
nsSetDefaultBrowser.js
nsSidebar.js
nsUpdateService.js
nsUrlClassifierLib.js
nsUrlClassifierListManager.js
nsUrlClassifierTable.js
nsURLFormatter.js
nsXmlRpcClient.js
spellchk.dll
WebContentConverter.js
xpinstal.dll
C:\Program Files\Mozilla Firefox\plugins\
npnul32.dll
NPSWF32.dll
NPSWF32_FlashUtil.exe
C:\Program Files\Mozilla Firefox\searchplugins\
amazon-en-GB.xml
answers.xml
creativecommons.xml
eBay-en-GB.xml
google.xml
yahoo-sv-SE.xml
C:\Users\Kaniii\AppData\Roaming\Mozilla\Firefox\Profiles\yflo0yer.default\extensions\
toolbar@ask.com
{20a82645-c095-46ed-80e3-08825760534b}
C:\Users\Kaniii\AppData\Roaming\Mozilla\Firefox\Profiles\yflo0yer.default\searchplugins\
askcom.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-02-09 845360]
"BisonHK"=C:\Windows\BisonCam\BisonHK.exe [2007-05-16 73728]
"PowerManager"=C:\Program Files\Power Manager\PM.exe [2007-05-16 29696]
"CardReaderMonitor"=C:\Program Files\Realtek Semiconductor Corp.\Realtek Card Reader Monitor\CardReaderMonitor.exe [2007-07-25 643072]
""= []
"RoxWatchTray"=C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe [2007-01-11 232184]
"Google Desktop Search"=C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2007-01-04 227328]
"MSPService"=C:\Program Files\CyberLink\MagicSports\Kernel\MagicSports\MSPMirage.exe [2007-06-13 102400]
"toolbar_eula_launcher"=C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe [2007-01-10 18944]
"zLoader.exe"=C:\Program Files\Connect Manager\Bin\zLoader.exe [2012-02-07 25872]
"CancelAutoPlay.exe"=C:\Program Files\Connect Manager\Bin\CancelAutoPlay.exe [2012-02-07 73488]
"NvSvc"=C:\Windows\system32\nvsvc.dll [2007-07-21 86016]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2007-07-21 8433664]
"NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2007-07-21 81920]
"avast"=C:\Program Files\Alwil Software\Avast5\avastUI.exe [2012-08-21 4282728]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SmpcSys"=C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe [2007-07-19 1120568]
"Google Update"=C:\Users\Kaniii\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-08 116648]
"HW_OPENEYE_OUC_Tele2 Mobile Partner"=C:\Program Files\Tele2 Mobile Partner\UpdateDog\ouc.exe []
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2012-07-13 17418928]
"ISUSPM"=C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [2006-09-11 218032]
"WindowsWelcomeCenter"=oobefldr.dll,ShowWelcomeCenter []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"msacm.mkdmp3enc"=C:\PROGRA~1\CYBERL~1\MAGICS~1\Kernel\Burner\MKDMP3Enc.ACM
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======List of files/folders created in the last 1 month======
2012-09-20 14:04:59 ----D---- C:\_OTM
2012-09-20 10:38:28 ----D---- C:\Program Files\trend micro
2012-09-20 10:38:23 ----D---- C:\rsit
2012-09-20 10:03:45 ----A---- C:\Windows\system32\drivers\ewusbnet.sys
2012-09-20 10:03:45 ----A---- C:\Windows\system32\drivers\ewusbmdm.sys
2012-09-20 10:03:45 ----A---- C:\Windows\system32\drivers\ewusbdev.sys
2012-09-20 10:03:45 ----A---- C:\Windows\system32\drivers\ewdcsc.sys
2012-09-20 10:02:06 ----D---- C:\Program Files\Telia mobile broadband
2012-09-12 18:22:17 ----D---- C:\Program Files\Microsoft.NET
2012-09-12 15:27:04 ----A---- C:\Windows\system32\msshsq.dll
2012-09-12 13:38:56 ----A---- C:\Windows\system32\quartz.dll
2012-09-12 13:38:40 ----A---- C:\Windows\system32\ole32.dll
2012-09-12 13:38:26 ----A---- C:\Windows\system32\EncDec.dll
2012-09-12 13:38:25 ----A---- C:\Windows\system32\sbeio.dll
2012-09-12 13:38:24 ----A---- C:\Windows\system32\sbe.dll
2012-09-12 13:38:14 ----A---- C:\Windows\system32\wmpmde.dll
2012-09-12 13:38:02 ----A---- C:\Windows\system32\drivers\srv.sys
2012-09-12 13:37:41 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-09-12 13:37:41 ----A---- C:\Windows\system32\ntkrnlpa.exe
2012-09-12 13:37:40 ----A---- C:\Windows\system32\ntdll.dll
2012-09-12 13:36:41 ----A---- C:\Windows\system32\wmploc.DLL
2012-09-12 13:36:40 ----A---- C:\Windows\system32\wmp.dll
2012-09-12 13:36:12 ----A---- C:\Windows\system32\fontsub.dll
2012-09-12 13:36:12 ----A---- C:\Windows\system32\atmlib.dll
2012-09-12 13:36:12 ----A---- C:\Windows\system32\atmfd.dll
2012-09-12 13:35:44 ----A---- C:\Windows\system32\msxml3.dll
2012-09-12 13:35:33 ----A---- C:\Windows\system32\asycfilt.dll
2012-09-12 13:35:23 ----A---- C:\Windows\system32\t2embed.dll
2012-09-12 13:34:28 ----A---- C:\Windows\system32\shsvcs.dll
2012-09-12 13:33:51 ----A---- C:\Windows\system32\drivers\bowser.sys
2012-09-12 13:33:35 ----A---- C:\Windows\system32\vbscript.dll
2012-09-12 13:33:35 ----A---- C:\Windows\system32\jscript.dll
2012-09-12 13:32:13 ----A---- C:\Windows\system32\iertutil.dll
2012-09-12 13:32:13 ----A---- C:\Windows\system32\ieframe.dll
2012-09-12 13:32:12 ----A---- C:\Windows\system32\occache.dll
2012-09-12 13:32:12 ----A---- C:\Windows\system32\ieUnatt.exe
2012-09-12 13:32:09 ----A---- C:\Windows\system32\mshtml.dll
2012-09-12 13:32:08 ----A---- C:\Windows\system32\mshtmled.dll
2012-09-12 13:32:08 ----A---- C:\Windows\system32\msfeeds.dll
2012-09-12 13:32:08 ----A---- C:\Windows\system32\ieencode.dll
2012-09-12 13:32:07 ----A---- C:\Windows\system32\iepeers.dll
2012-09-12 13:32:07 ----A---- C:\Windows\system32\ieapfltr.dll
2012-09-12 13:32:07 ----A---- C:\Windows\system32\ieaksie.dll
2012-09-12 13:32:06 ----A---- C:\Windows\system32\iedkcs32.dll
2012-09-12 13:32:05 ----A---- C:\Windows\system32\wininet.dll
2012-09-12 13:32:05 ----A---- C:\Windows\system32\jsproxy.dll
2012-09-12 13:32:04 ----A---- C:\Windows\system32\mstime.dll
2012-09-12 13:32:03 ----A---- C:\Windows\system32\urlmon.dll
2012-09-12 13:31:40 ----A---- C:\Windows\system32\drivers\dfsc.sys
2012-09-12 13:31:26 ----A---- C:\Windows\system32\dnsrslvr.dll
2012-09-12 13:31:26 ----A---- C:\Windows\system32\dnscacheugc.exe
2012-09-12 13:31:25 ----A---- C:\Windows\system32\dnsapi.dll
2012-09-12 13:30:58 ----A---- C:\Windows\system32\consent.exe
2012-09-12 13:30:47 ----A---- C:\Windows\system32\sdclt.exe
2012-09-12 13:30:28 ----A---- C:\Windows\system32\wmicmiplugin.dll
2012-09-12 13:30:26 ----A---- C:\Windows\system32\taskschd.dll
2012-09-12 13:30:26 ----A---- C:\Windows\system32\taskeng.exe
2012-09-12 13:30:26 ----A---- C:\Windows\system32\schedsvc.dll
2012-09-12 13:30:25 ----A---- C:\Windows\system32\taskcomp.dll
2012-09-12 13:30:12 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2012-09-12 13:30:12 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2012-09-12 13:30:11 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2012-09-12 13:29:54 ----A---- C:\Windows\system32\iccvid.dll
2012-09-12 13:29:25 ----A---- C:\Windows\system32\win32k.sys
2012-09-12 13:29:14 ----A---- C:\Windows\system32\mfc40.dll
2012-09-12 13:29:13 ----A---- C:\Windows\system32\mfc40u.dll
2012-09-12 13:28:46 ----A---- C:\Windows\system32\wersvc.dll
2012-09-12 13:28:45 ----A---- C:\Windows\system32\Faultrep.dll
2012-09-12 13:28:29 ----A---- C:\Windows\system32\mfc42u.dll
2012-09-12 13:28:29 ----A---- C:\Windows\system32\mfc42.dll
2012-09-12 13:28:16 ----A---- C:\Windows\system32\drivers\afd.sys
2012-09-12 13:28:05 ----A---- C:\Windows\system32\drivers\srv2.sys
2012-09-12 13:28:04 ----A---- C:\Windows\system32\drivers\srvnet.sys
2012-09-12 13:27:34 ----A---- C:\Windows\system32\shlwapi.dll
2012-09-12 13:27:29 ----A---- C:\Windows\system32\shell32.dll
2012-09-12 13:27:16 ----A---- C:\Windows\system32\spoolsv.exe
2012-09-12 13:27:06 ----A---- C:\Windows\system32\oleaut32.dll
2012-09-12 13:26:20 ----A---- C:\Windows\system32\srvsvc.dll
2012-09-12 13:26:18 ----A---- C:\Windows\system32\netevent.dll
2012-09-12 13:25:57 ----A---- C:\Windows\system32\MP4SDECD.DLL
2012-09-12 13:25:45 ----A---- C:\Windows\system32\rtutils.dll
2012-09-12 13:25:06 ----A---- C:\Windows\system32\odbc32.dll
2012-09-12 13:24:49 ----A---- C:\Windows\system32\usp10.dll
2012-09-12 13:24:34 ----A---- C:\Windows\system32\inetcomm.dll
2012-09-12 13:24:18 ----A---- C:\Windows\system32\drivers\nwifi.sys
2012-09-12 13:24:18 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2012-09-12 13:24:17 ----A---- C:\Windows\system32\emdmgmt.dll
2012-09-12 13:24:17 ----A---- C:\Windows\system32\dataclen.dll
2012-09-12 13:24:17 ----A---- C:\Windows\system32\cdd.dll
2012-09-12 13:23:31 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2012-09-12 13:23:24 ----A---- C:\Windows\system32\Apphlpdm.dll
2012-09-12 13:22:52 ----A---- C:\Windows\system32\pacerprf.dll
2012-09-12 13:22:52 ----A---- C:\Windows\system32\drivers\pacer.sys
2012-09-12 09:44:41 ----A---- C:\Windows\system32\tzres.dll
2012-09-12 09:43:24 ----A---- C:\Windows\system32\wscript.exe
2012-09-12 09:43:24 ----A---- C:\Windows\system32\scrrun.dll
2012-09-12 09:43:24 ----A---- C:\Windows\system32\scrobj.dll
2012-09-12 09:43:23 ----A---- C:\Windows\system32\cscript.exe
2012-09-12 09:43:21 ----A---- C:\Windows\system32\wshext.dll
2012-09-12 09:42:57 ----A---- C:\Windows\system32\kernel32.dll
2012-09-12 09:42:17 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-09-12 08:49:26 ----A---- C:\Windows\system32\msshooks.dll
2012-09-12 08:49:25 ----A---- C:\Windows\system32\msscb.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\thawbrkr.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\SearchFilterHost.exe
2012-09-12 08:49:18 ----A---- C:\Windows\system32\propsys.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\propdefs.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\msstrc.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\mssprxy.dll
2012-09-12 08:49:18 ----A---- C:\Windows\system32\mssitlb.dll
2012-09-12 08:49:17 ----A---- C:\Windows\system32\srchadmin.dll
2012-09-12 08:49:17 ----A---- C:\Windows\system32\korwbrkr.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\xmlfilter.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\wsepno.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\rtffilt.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\offfilt.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\nlhtml.dll
2012-09-12 08:49:16 ----A---- C:\Windows\system32\mimefilt.dll
2012-09-12 08:49:15 ----A---- C:\Windows\system32\msscntrs.dll
2012-09-12 08:49:15 ----A---- C:\Windows\system32\chsbrkr.dll
2012-09-12 08:49:14 ----A---- C:\Windows\system32\tquery.dll
2012-09-12 08:49:14 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2012-09-12 08:49:14 ----A---- C:\Windows\system32\SearchIndexer.exe
2012-09-12 08:49:14 ----A---- C:\Windows\system32\chtbrkr.dll
2012-09-12 08:49:13 ----A---- C:\Windows\system32\mssvp.dll
2012-09-12 08:49:13 ----A---- C:\Windows\system32\mssrch.dll
2012-09-12 08:49:13 ----A---- C:\Windows\system32\mssphtb.dll
2012-09-12 08:49:13 ----A---- C:\Windows\system32\mssph.dll
2012-09-12 08:43:57 ----A---- C:\Windows\system32\psisdecd.dll
2012-09-12 08:29:13 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2012-09-12 08:29:13 ----A---- C:\Windows\system32\PresentationHost.exe
2012-09-12 08:29:13 ----A---- C:\Windows\system32\netfxperf.dll
2012-09-12 08:29:13 ----A---- C:\Windows\system32\mscoree.dll
2012-09-12 08:29:12 ----A---- C:\Windows\system32\dfshim.dll
2012-09-12 08:12:31 ----D---- C:\Windows\system32\WindowsPowerShell
2012-09-12 08:10:08 ----A---- C:\Windows\system32\winrsmgr.dll
2012-09-12 08:09:24 ----A---- C:\Windows\system32\wsmprovhost.exe
2012-09-12 08:09:24 ----A---- C:\Windows\system32\winrshost.exe
2012-09-12 08:09:24 ----A---- C:\Windows\system32\winrs.exe
2012-09-12 08:09:19 ----A---- C:\Windows\system32\wsmplpxy.dll
2012-09-12 08:09:18 ----A---- C:\Windows\system32\winrssrv.dll
2012-09-12 08:09:09 ----A---- C:\Windows\system32\wevtfwd.dll
2012-09-12 08:09:09 ----A---- C:\Windows\system32\wecutil.exe
2012-09-12 08:09:09 ----A---- C:\Windows\system32\wecapi.dll
2012-09-12 08:09:07 ----A---- C:\Windows\system32\WsmRes.dll
2012-09-12 08:09:07 ----A---- C:\Windows\system32\wecsvc.dll
2012-09-12 08:09:04 ----A---- C:\Windows\system32\pwrshplugin.dll
2012-09-12 08:08:45 ----A---- C:\Windows\system32\winrm.vbs
2012-09-12 08:08:31 ----A---- C:\Windows\system32\WsmAuto.dll
2012-09-12 08:08:30 ----A---- C:\Windows\system32\WsmWmiPl.dll
2012-09-12 08:08:30 ----A---- C:\Windows\system32\winrscmd.dll
2012-09-12 08:08:29 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2012-09-12 08:08:29 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2012-09-12 08:08:27 ----A---- C:\Windows\system32\WsmSvc.dll
2012-09-11 11:29:52 ----A---- C:\Windows\system32\comctl32.dll
2012-09-11 11:28:43 ----A---- C:\Windows\system32\winsrv.dll
2012-09-11 11:28:42 ----A---- C:\Windows\system32\csrsrv.dll
2012-09-11 11:28:32 ----A---- C:\Windows\system32\mstscax.dll
2012-09-11 11:28:30 ----A---- C:\Windows\system32\mstsc.exe
2012-09-11 10:52:39 ----A---- C:\Windows\system32\schannel.dll
2012-09-10 12:35:06 ----D---- C:\PerfLogs
2012-08-30 18:31:36 ----D---- C:\Users\Kaniii\AppData\Roaming\Adobe
2012-08-30 18:29:27 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2012-08-28 13:46:51 ----A---- C:\Users\Kaniii\AppData\Roaming\nvModes.dat
======List of files/folders modified in the last 1 month======
2012-09-20 14:17:58 ----D---- C:\Windows\Temp
2012-09-20 14:17:32 ----D---- C:\Users\Kaniii\AppData\Roaming\Skype
2012-09-20 14:05:22 ----D---- C:\Windows\Tasks
2012-09-20 14:05:20 ----D---- C:\Program Files\Google
2012-09-20 14:05:19 ----RD---- C:\Program Files\Skype
2012-09-20 14:05:17 ----RD---- C:\Program Files
2012-09-20 14:03:30 ----AD---- C:\Windows\System32
2012-09-20 14:03:30 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-09-20 14:03:29 ----D---- C:\Windows\inf
2012-09-20 13:27:52 ----D---- C:\Windows\Prefetch
2012-09-20 12:03:16 ----SHD---- C:\Windows\Installer
2012-09-20 10:19:36 ----D---- C:\Windows\ModemLogs
2012-09-20 10:14:07 ----D---- C:\Windows
2012-09-20 10:03:45 ----D---- C:\Windows\system32\drivers
2012-09-20 10:03:44 ----D---- C:\Windows\system32\catroot
2012-09-19 17:13:55 ----SHD---- C:\System Volume Information
2012-09-16 17:53:26 ----RSD---- C:\Windows\assembly
2012-09-16 17:53:26 ----D---- C:\Windows\Microsoft.NET
2012-09-15 10:33:34 ----D---- C:\Windows\system32\sv-SE
2012-09-15 10:20:02 ----D---- C:\Windows\system32\en-US
2012-09-14 23:25:49 ----D---- C:\Users\Kaniii\AppData\Roaming\Roxio
2012-09-14 22:17:22 ----RSD---- C:\Windows\Fonts
2012-09-14 22:15:36 ----D---- C:\Windows\winsxs
2012-09-14 18:01:11 ----D---- C:\Windows\system32\catroot2
2012-09-14 17:46:30 ----D---- C:\Program Files\Common Files
2012-09-14 17:46:14 ----D---- C:\ProgramData\Adobe
2012-09-13 17:27:39 ----D---- C:\Windows\rescache
2012-09-13 13:54:13 ----D---- C:\Windows\system32\config
2012-09-13 13:54:00 ----D---- C:\Windows\system32\spool
2012-09-13 13:54:00 ----D---- C:\Windows\system32\Msdtc
2012-09-13 13:54:00 ----D---- C:\Windows\system32\CodeIntegrity
2012-09-13 13:53:57 ----D---- C:\Windows\system32\wbem
2012-09-13 13:53:57 ----D---- C:\Windows\registration
2012-09-12 17:55:20 ----D---- C:\Program Files\Windows Media Player
2012-09-12 17:55:19 ----D---- C:\Program Files\Windows Mail
2012-09-12 17:55:18 ----D---- C:\Program Files\Internet Explorer
2012-09-12 17:55:14 ----D---- C:\Program Files\Movie Maker
2012-09-12 17:55:12 ----D---- C:\Windows\AppPatch
2012-09-12 15:32:47 ----A---- C:\Windows\system32\mrt.exe
2012-09-12 09:18:02 ----D---- C:\Windows\PolicyDefinitions
2012-09-12 09:17:11 ----D---- C:\Windows\ehome
2012-09-11 16:16:13 ----D---- C:\Windows\system32\sysprep
2012-09-11 16:16:13 ----D---- C:\Windows\system32\sv
2012-09-11 16:16:13 ----D---- C:\Windows\system32\SLUI
2012-09-11 16:16:13 ----D---- C:\Windows\system32\setup
2012-09-11 16:16:13 ----D---- C:\Windows\system32\oobe
2012-09-11 16:16:13 ----D---- C:\Windows\system32\migwiz
2012-09-11 16:16:13 ----D---- C:\Windows\system32\migration
2012-09-11 16:16:13 ----D---- C:\Windows\system
2012-09-11 16:16:12 ----RSD---- C:\Windows\Media
2012-09-11 16:16:12 ----RD---- C:\Windows\Offline Web Pages
2012-09-11 16:16:12 ----D---- C:\Windows\system32\drivers\sv-SE
2012-09-11 16:16:12 ----D---- C:\Windows\ShellNew
2012-09-11 16:16:12 ----D---- C:\Program Files\Windows Sidebar
2012-09-11 16:16:12 ----D---- C:\Program Files\Windows Journal
2012-09-11 16:16:12 ----D---- C:\Program Files\Windows Defender
2012-09-11 16:16:12 ----D---- C:\Program Files\Windows Collaboration
2012-09-11 16:16:12 ----D---- C:\Program Files\Common Files\System
2012-09-11 16:16:12 ----D---- C:\Program Files\Common Files\Services
2012-09-11 15:24:45 ----D---- C:\Windows\system32\Tasks
2012-09-10 12:49:22 ----SHD---- C:\boot
2012-09-10 12:49:00 ----ASH---- C:\Program Files\desktop.ini
2012-09-10 12:37:03 ----D---- C:\Program Files\Windows Calendar
2012-09-10 12:37:01 ----D---- C:\Program Files\Windows Photo Gallery
2012-09-10 12:36:59 ----D---- C:\Windows\servicing
2012-09-10 12:36:58 ----D---- C:\Windows\MSAgent
2012-09-10 12:36:57 ----D---- C:\Windows\L2Schemas
2012-09-10 12:36:57 ----D---- C:\Windows\IME
2012-09-10 12:36:57 ----D---- C:\Windows\DigitalLocker
2012-09-10 12:36:56 ----D---- C:\Windows\system32\ko-KR
2012-09-10 12:36:56 ----D---- C:\Windows\system32\da-DK
2012-09-10 12:36:56 ----D---- C:\Windows\system32\com
2012-09-10 12:36:55 ----D---- C:\Windows\system32\it-IT
2012-09-10 12:36:55 ----D---- C:\Windows\system32\el-GR
2012-09-10 12:36:55 ----D---- C:\Windows\system32\de-DE
2012-09-10 12:36:52 ----D---- C:\Windows\system32\AdvancedInstallers
2012-09-10 12:36:51 ----D---- C:\Windows\system32\ru-RU
2012-09-10 12:36:51 ----D---- C:\Windows\system32\ias
2012-09-10 12:36:51 ----D---- C:\Windows\system32\fr-FR
2012-09-10 12:36:43 ----D---- C:\Windows\system32\pt-PT
2012-09-10 12:36:43 ----D---- C:\Windows\system32\hu-HU
2012-09-10 12:36:43 ----D---- C:\Windows\system32\he-IL
2012-09-10 12:36:43 ----D---- C:\Windows\system32\fi-FI
2012-09-10 12:36:43 ----D---- C:\Windows\system32\cs-CZ
2012-09-10 12:36:40 ----D---- C:\Windows\system32\zh-TW
2012-09-10 12:36:40 ----D---- C:\Windows\system32\zh-CN
2012-09-10 12:36:40 ----D---- C:\Windows\system32\manifeststore
2012-09-10 12:36:40 ----D---- C:\Windows\system32\es-ES
2012-09-10 12:36:39 ----D---- C:\Windows\system32\ro-RO
2012-09-10 12:36:39 ----D---- C:\Windows\system32\pl-PL
2012-09-10 12:36:39 ----D---- C:\Windows\system32\ja-JP
2012-09-10 12:36:37 ----D---- C:\Windows\system32\tr-TR
2012-09-10 12:36:36 ----D---- C:\Windows\system32\nl-NL
2012-09-10 12:36:36 ----D---- C:\Windows\system32\nb-NO
2012-09-10 12:36:36 ----D---- C:\Windows\system32\ar-SA
2012-09-10 12:36:32 ----D---- C:\Windows\system32\pt-BR
2012-09-10 12:35:19 ----D---- C:\Windows\Boot
2012-09-10 12:35:15 ----D---- C:\Windows\system32\Boot
2012-09-10 12:29:27 ----D---- C:\Windows\system32\drivers\UMDF
2012-09-10 11:40:26 ----A---- C:\Windows\system32\ifxcardm.dll
2012-09-10 11:39:54 ----A---- C:\Windows\system32\axaltocm.dll
2012-09-07 10:26:22 ----D---- C:\Windows\Minidump
2012-08-31 21:53:11 ----D---- C:\ProgramData\Skype
2012-08-21 22:00:39 ----D---- C:\Users\Kaniii\AppData\Roaming\CyberLink
2012-08-21 21:09:37 ----D---- C:\Users\Kaniii\AppData\Roaming\uTorrent
2012-08-21 11:12:23 ----A---- C:\Windows\system32\aswBoot.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2006-09-27 36560]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2012-08-21 35928]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-08-21 729752]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-08-21 355632]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-08-21 54232]
R1 WINIO;WINIO; \??\C:\Windows\system32\WinIo.sys [2007-01-04 9336]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-08-21 21256]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-08-21 58680]
R3 Cam5607;Bison WebCam; C:\Windows\System32\Drivers\BisonC07.sys [2007-07-23 971944]
R3 GEARAspiWDM;GEARAspiWDM; C:\Windows\System32\Drivers\GEARAspiWDM.sys [2006-09-19 15664]
R3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2007-04-12 160768]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvmfdx32.sys [2007-03-06 1059112]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2007-07-21 7138272]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2007-02-16 12032]
R3 RTSTOR;USB Mass Storage Device; C:\Windows\system32\drivers\RTSTOR.SYS [2007-06-15 47616]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-02-09 182456]
R3 usbaudio;USB-ljuddrivrutiner (WDM); C:\Windows\system32\drivers\usbaudio.sys [2008-01-19 73088]
R3 zgdcat_1440;ZTE Datacard AT Port 1440; C:\Windows\system32\DRIVERS\zgdcat_1440.sys [2012-02-07 111768]
R3 zgdcdiag_1440;ZTE Datacard Diagnostics Port 1440; C:\Windows\system32\DRIVERS\zgdcdiag_1440.sys [2012-02-07 111768]
R3 zgdcmdm_1440;ZTE Datacard Modem 1440; C:\Windows\system32\DRIVERS\zgdcmdm_1440.sys [2012-02-07 111768]
R3 zgdcnet_1440;ZTE Datacard Network Adapter 1440; C:\Windows\system32\DRIVERS\zgdcnet_1440.sys [2012-02-07 141848]
R3 zgdcnmea_1440;ZTE Datacard NMEA Port 1440; C:\Windows\system32\DRIVERS\zgdcnmea_1440.sys [2012-02-07 111768]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device; C:\Windows\system32\DRIVERS\ew_hwusbdev.sys []
S3 ew_usbenumfilter;huawei_CompositeFilter; C:\Windows\system32\DRIVERS\ew_usbenumfilter.sys []
S3 ewusbnet;HUAWEI USB-NDIS miniport; C:\Windows\system32\DRIVERS\ewusbnet.sys [2009-12-08 113664]
S3 huawei_enumerator;huawei_enumerator; C:\Windows\system32\DRIVERS\ew_jubusenum.sys []
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\Windows\system32\DRIVERS\ewusbmdm.sys [2009-12-07 103168]
S3 massfilter_lte;LTE Device Mass Storage Filter Driver; \??\C:\Windows\system32\drivers\massfilter_lte.sys [2011-12-05 15896]
S3 MSKSSRV;Tjänstproxy för Microsoft-direktuppspelning; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Klockproxy för Microsoft-direktuppspelning; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Kvalitetshanteringsproxy för Microsoft-direktuppspelning; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Tee/Sink-to-Sink-konverterare för Microsoft-direktuppspelning; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 RTL8187B;Realtek RTL8187B Wireless 802.11g 54Mbps USB 2.0 Network Adapter; C:\Windows\system32\DRIVERS\RTL8187B.sys [2007-06-08 253952]
S3 usbvideo;USB-videoenhet (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2006-11-02 132352]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2012-08-21 44808]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files\CyberLink\Shared Files\RichVideo.exe [2007-03-06 266343]
R2 RoxWatch9;Roxio Hard Drive Watcher 9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe [2007-01-11 166648]
R2 Skype C2C Service;Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-08-13 3064000]
R3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-01-11 887544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 CLTNetCnService;Symantec Lic NetConnect service; C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe /h ccCommon []
S2 gupdate;Tjänsten Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-05-10 135664]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2012-06-07 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-08-30 250568]
S3 GoogleDesktopManager;GoogleDesktopManager; C:\Program Files\Google\Google Desktop Search\GoogleDesktopManager.exe [2007-01-04 66560]
S3 gupdatem;Tjänsten Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2012-05-10 135664]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2012-08-21 194032]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2006-09-14 73728]
S3 WPFFontCache_v0400;@c:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119515
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: laptop-absolutni zpomaleni
Dvouklikem na soubor C:\Program Files\trend micro\Kaniii.exe spusťte HijackThis. Klikněte na "Do a system scan only" a v otevřeném okně vlevo ve čtverečcích zaškrtněte:
Klikněte na >FixChecked<. Pak znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC.R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ask.com/?l=dis&o=15187&apn_p ... 2012-08-30
R3 - URLSearchHook: UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (file missing)
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing)
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (file missing)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
- Návštěvník
- Příspěvky: 346
- Registrován: 02 úno 2006 13:03
Re: laptop-absolutni zpomaleni
udelano, ale porad je to skoro stejne, pomale, pris spusteni youtube na plnou obrazovku je zvuk pekne pozadu oproti obrazu, da se jeste neco udelat?
- Rudy
- Site Admin
- Příspěvky: 119515
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: laptop-absolutni zpomaleni
1. Dejte log ComboFix:
2. Klikněte do obrazu videa pravým myšítkem>nastavení a vypněte hardwarou akceleraci.Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe
pote spustte aplikaci pod uctem s administratorskym opravnenim
hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.
v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se
jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine
aplikace ani nic jineho
behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)
upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,
pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k
nezadoucim kolizim s rezidentem antispyware
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
-
- Návštěvník
- Příspěvky: 346
- Registrován: 02 úno 2006 13:03
Re: laptop-absolutni zpomaleni
udelano, dekuji. maly posun v rychlosti je. je jeste sance neco dalsiho s tim udelat, nebo se mam smirit, ze je to stary laptop v kombinaci s horsi vistou proste nepojede lepe...?
- Rudy
- Site Admin
- Příspěvky: 119515
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: laptop-absolutni zpomaleni
Rád bych viděl log ComboFix. Najdete ho v c:\combofix.txt.
Edit//
Pro neaktivitu v tomto vlákně zamykám
. Pro případné odemknutí topicu kontaktu některého z moderátorů na email.
Edit//
Pro neaktivitu v tomto vlákně zamykám

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.