Prosim o kontrolu logu
Napsal: 05 črc 2013 09:26
Zdravim,
Posledni dva dny mam mensi problem s PC.
Pri kazdem kliknuti nejakeho linku v browseru s emi automaticky otevre reklamni okno.
PC funguje pomaleji.
Odinstaloval jsem vssechny nepotrebne programy, ale stale pretrvava problem. Uz jsem bezradny. Predem dekuji.
Logfile of random's system information tool 1.09 (written by random/random)
Run by Izolda at 2013-07-05 10:21:23
Microsoft Windows 7 Ultimate
System drive C: has 87 GB (70%) free of 125 GB
Total RAM: 3071 MB (49% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:21:31, on 2013-07-05
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.17267)
Boot mode: Normal
Running processes:
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\Izolda\AppData\Local\GG\Application\gghub.exe
C:\Users\Izolda\AppData\Local\GG\Application\ggapp.exe
C:\Users\Izolda\AppData\Local\GG\Application\ggapp.exe
C:\Users\Izolda\Downloads\RSIT.exe
C:\Program Files\trend micro\Izolda.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-search.com/?babsrc=HP_ ... 9&tsp=4931
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,,c:\program files\microsoft\desktoplayer.exe,c:\program files\nvidia corporation\3d vision\nvscpapisvrsrv.exe
O2 - BHO: Lyrmix - {A8E06666-F1AE-4436-80C1-A1A1A865F236} - C:\Program Files\Lyrmix\lyrmix.dll
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKCU\..\Run: [GG] "C:\Users\Izolda\AppData\Local\GG\Application\gghub.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'USLUGA LOKALNA')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'USLUGA LOKALNA')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'USLUGA SIECIOWA')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'USLUGA SIECIOWA')
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: c:\progra~2\browse~1\261339~1.144\{c16c1~1\browse~1.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: BrowserDefendert - Unknown owner - C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe
O23 - Service: Usluga Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Usluga Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
--
End of file - 4312 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\Lyrmix Update.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A8E06666-F1AE-4436-80C1-A1A1A865F236}]
Lyrmix - C:\Program Files\Lyrmix\lyrmix.dll [2013-06-10 133528]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2010-12-23 9972328]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"GG"=C:\Users\Izolda\AppData\Local\GG\Application\gghub.exe [2013-06-20 3365440]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GG]
C:\Users\Izolda\AppData\Local\GG\Application\gghub.exe [2013-06-20 3365440]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]
C:\Users\Izolda\AppData\Roaming\uTorrent\uTorrent.exe [2013-05-09 1044560]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="c:\progra~2\browse~1\261339~1.144\{c16c1~1\browse~1.dll "
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-07-05 10:21:23 ----D---- C:\rsit
2013-07-05 10:21:23 ----D---- C:\Program Files\trend micro
2013-07-03 00:46:08 ----D---- C:\Users\Izolda\AppData\Roaming\calibre
2013-07-03 00:37:49 ----D---- C:\ProgramData\BrowserDefender
2013-07-03 00:37:43 ----D---- C:\Users\Izolda\AppData\Roaming\BabSolution
2013-07-03 00:34:34 ----D---- C:\Users\Izolda\AppData\Roaming\DealPly
2013-07-03 00:34:17 ----D---- C:\Program Files\Lyrmix
2013-06-24 12:54:35 ----D---- C:\Program Files\Kolekcja Klasyki
2013-06-19 11:09:00 ----D---- C:\Riot Games
2013-06-18 13:52:30 ----D---- C:\ProgramData\PMB Files
2013-06-17 16:27:27 ----D---- C:\ProgramData\Room Arranger
2013-06-16 23:33:48 ----D---- C:\Program Files\Common Files\Adobe
2013-06-16 23:33:48 ----D---- C:\Program Files\Adobe
2013-06-16 23:31:34 ----D---- C:\ProgramData\Adobe
2013-06-16 17:55:23 ----D---- C:\Users\Izolda\AppData\Roaming\Mumble
2013-06-16 15:54:13 ----D---- C:\Windows\system32\searchplugins
2013-06-16 15:54:13 ----D---- C:\Windows\system32\Extensions
2013-06-16 15:53:53 ----D---- C:\Program Files\Mozilla Firefox
2013-06-16 15:53:33 ----D---- C:\ProgramData\Babylon
2013-06-16 15:53:32 ----D---- C:\Users\Izolda\AppData\Roaming\Babylon
2013-06-16 15:18:33 ----D---- C:\Users\Izolda\AppData\Roaming\Malwarebytes
2013-06-16 15:18:27 ----D---- C:\ProgramData\Malwarebytes
2013-06-16 14:48:00 ----D---- C:\Program Files\Badosoft
2013-06-15 15:08:36 ----D---- C:\Users\Izolda\AppData\Roaming\OpenOffice.org
2013-06-14 09:08:08 ----A---- C:\Windows\system32\wups2.dll
2013-06-14 09:08:08 ----A---- C:\Windows\system32\wucltux.dll
2013-06-14 09:08:08 ----A---- C:\Windows\system32\wuaueng.dll
2013-06-14 09:08:08 ----A---- C:\Windows\system32\wuauclt.exe
2013-06-14 09:07:47 ----A---- C:\Windows\system32\wuwebv.dll
2013-06-14 09:07:47 ----A---- C:\Windows\system32\wuapp.exe
2013-06-13 21:53:30 ----D---- C:\Program Files\Movavi Video Converter 10
2013-06-13 20:56:31 ----D---- C:\Users\Izolda\AppData\Roaming\MOVAVI
2013-06-13 20:40:09 ----D---- C:\Windows\Minidump
2013-06-12 20:38:14 ----D---- C:\Program Files\Room Arranger
2013-06-12 20:29:13 ----D---- C:\ProgramData\Google
2013-06-12 20:29:12 ----D---- C:\Users\Izolda\AppData\Roaming\Google
2013-06-11 13:35:08 ----D---- C:\Program Files\Soul of the Ultimate Nation
2013-06-11 12:54:14 ----D---- C:\Program Files\Ingamba
2013-06-11 08:27:18 ----D---- C:\Users\Izolda\AppData\Roaming\LolClient
2013-06-10 23:05:02 ----A---- C:\Windows\system32\D3DX9_39.dll
2013-06-10 23:05:02 ----A---- C:\Windows\system32\d3dx10_39.dll
2013-06-10 23:05:02 ----A---- C:\Windows\system32\D3DCompiler_39.dll
======List of files/folders modified in the last 1 month======
2013-07-05 10:21:23 ----D---- C:\Program Files
2013-07-05 10:21:04 ----D---- C:\Users\Izolda\AppData\Roaming\GG
2013-07-05 10:20:45 ----D---- C:\Windows\Prefetch
2013-07-05 10:15:38 ----D---- C:\Windows\System32
2013-07-05 10:15:38 ----D---- C:\Windows\inf
2013-07-05 10:15:38 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-07-05 10:09:16 ----D---- C:\Windows\system32\Tasks
2013-07-05 10:09:14 ----D---- C:\ProgramData\NVIDIA
2013-07-05 10:09:14 ----D---- C:\Program Files\Microsoft
2013-07-05 10:08:46 ----D---- C:\Windows\Temp
2013-07-05 10:08:46 ----D---- C:\Windows
2013-07-04 23:17:13 ----D---- C:\Users\Izolda\AppData\Roaming\vlc
2013-07-03 23:36:20 ----SHD---- C:\Windows\Installer
2013-07-03 16:46:29 ----D---- C:\Windows\system32\NDF
2013-07-03 16:18:08 ----SHD---- C:\System Volume Information
2013-07-03 16:17:34 ----D---- C:\Users\Izolda\AppData\Roaming\uTorrent
2013-07-03 16:17:29 ----D---- C:\Windows\Logs
2013-07-03 00:44:11 ----D---- C:\Windows\system32\config
2013-07-03 00:37:49 ----HD---- C:\ProgramData
2013-07-03 00:34:17 ----D---- C:\Windows\Tasks
2013-06-25 17:19:53 ----HD---- C:\Program Files\InstallShield Installation Information
2013-06-25 11:36:53 ----D---- C:\Windows\winsxs
2013-06-25 11:36:32 ----D---- C:\Program Files\Common Files\microsoft shared
2013-06-21 13:18:03 ----D---- C:\Users\Izolda\AppData\Roaming\Skype
2013-06-19 22:41:13 ----D---- C:\Windows\system32\catroot2
2013-06-18 13:52:15 ----D---- C:\Program Files\Pando Networks
2013-06-17 11:04:59 ----RSD---- C:\Windows\assembly
2013-06-17 11:04:14 ----RSD---- C:\Windows\Fonts
2013-06-17 08:31:26 ----SD---- C:\Users\Izolda\AppData\Roaming\Microsoft
2013-06-16 23:48:22 ----D---- C:\Users\Izolda\AppData\Roaming\Adobe
2013-06-16 23:33:48 ----D---- C:\Program Files\Common Files
2013-06-16 15:41:43 ----D---- C:\Windows\system32\drivers
2013-06-16 15:39:56 ----D---- C:\Windows\AppCompat
2013-06-15 02:36:54 ----D---- C:\Windows\rescache
2013-06-14 09:40:23 ----D---- C:\Windows\system32\catroot
2013-06-14 09:31:16 ----D---- C:\Program Files\Google
2013-06-14 09:08:31 ----D---- C:\Windows\system32\pl-PL
2013-06-12 08:40:22 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-06-10 08:06:40 ----D---- C:\ProgramData\Skype
2013-06-10 08:06:33 ----RD---- C:\Program Files\Skype
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2010-12-30 3351208]
R3 NVENETFD;Sterownik kontrolera sieci NVIDIA nForce; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-14 347264]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2010-09-07 123496]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2009-06-28 17920]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 LLRING0;LLRING0; \??\e:\KickerMu-V3\MuGuard\llck.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 133120]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 34944]
S3 XDva401;XDva401; \??\C:\Windows\system32\XDva401.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BrowserDefendert;BrowserDefendert; C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe [2013-05-23 2827728]
R2 NVSvc;NVIDIA Driver Helper Service; C:\Windows\system32\nvvsvc.exe [2010-10-16 600680]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2010-10-16 369256]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Usługa Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-05-08 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-02-28 161384]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-12 256904]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 aspnet_state;„Usługa stanu ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 gupdatem;Usługa Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-05-08 116648]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-05-08 1343400]
S4 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-11 65640]
S4 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
-----------------EOF-----------------
Posledni dva dny mam mensi problem s PC.
Pri kazdem kliknuti nejakeho linku v browseru s emi automaticky otevre reklamni okno.
PC funguje pomaleji.
Odinstaloval jsem vssechny nepotrebne programy, ale stale pretrvava problem. Uz jsem bezradny. Predem dekuji.
Logfile of random's system information tool 1.09 (written by random/random)
Run by Izolda at 2013-07-05 10:21:23
Microsoft Windows 7 Ultimate
System drive C: has 87 GB (70%) free of 125 GB
Total RAM: 3071 MB (49% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:21:31, on 2013-07-05
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.17267)
Boot mode: Normal
Running processes:
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\Izolda\AppData\Local\GG\Application\gghub.exe
C:\Users\Izolda\AppData\Local\GG\Application\ggapp.exe
C:\Users\Izolda\AppData\Local\GG\Application\ggapp.exe
C:\Users\Izolda\Downloads\RSIT.exe
C:\Program Files\trend micro\Izolda.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-search.com/?babsrc=HP_ ... 9&tsp=4931
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,,c:\program files\microsoft\desktoplayer.exe,c:\program files\nvidia corporation\3d vision\nvscpapisvrsrv.exe
O2 - BHO: Lyrmix - {A8E06666-F1AE-4436-80C1-A1A1A865F236} - C:\Program Files\Lyrmix\lyrmix.dll
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKCU\..\Run: [GG] "C:\Users\Izolda\AppData\Local\GG\Application\gghub.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'USLUGA LOKALNA')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'USLUGA LOKALNA')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'USLUGA SIECIOWA')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'USLUGA SIECIOWA')
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: c:\progra~2\browse~1\261339~1.144\{c16c1~1\browse~1.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: BrowserDefendert - Unknown owner - C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe
O23 - Service: Usluga Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Usluga Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
--
End of file - 4312 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\Lyrmix Update.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A8E06666-F1AE-4436-80C1-A1A1A865F236}]
Lyrmix - C:\Program Files\Lyrmix\lyrmix.dll [2013-06-10 133528]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2010-12-23 9972328]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"GG"=C:\Users\Izolda\AppData\Local\GG\Application\gghub.exe [2013-06-20 3365440]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GG]
C:\Users\Izolda\AppData\Local\GG\Application\gghub.exe [2013-06-20 3365440]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]
C:\Users\Izolda\AppData\Roaming\uTorrent\uTorrent.exe [2013-05-09 1044560]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="c:\progra~2\browse~1\261339~1.144\{c16c1~1\browse~1.dll "
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-07-05 10:21:23 ----D---- C:\rsit
2013-07-05 10:21:23 ----D---- C:\Program Files\trend micro
2013-07-03 00:46:08 ----D---- C:\Users\Izolda\AppData\Roaming\calibre
2013-07-03 00:37:49 ----D---- C:\ProgramData\BrowserDefender
2013-07-03 00:37:43 ----D---- C:\Users\Izolda\AppData\Roaming\BabSolution
2013-07-03 00:34:34 ----D---- C:\Users\Izolda\AppData\Roaming\DealPly
2013-07-03 00:34:17 ----D---- C:\Program Files\Lyrmix
2013-06-24 12:54:35 ----D---- C:\Program Files\Kolekcja Klasyki
2013-06-19 11:09:00 ----D---- C:\Riot Games
2013-06-18 13:52:30 ----D---- C:\ProgramData\PMB Files
2013-06-17 16:27:27 ----D---- C:\ProgramData\Room Arranger
2013-06-16 23:33:48 ----D---- C:\Program Files\Common Files\Adobe
2013-06-16 23:33:48 ----D---- C:\Program Files\Adobe
2013-06-16 23:31:34 ----D---- C:\ProgramData\Adobe
2013-06-16 17:55:23 ----D---- C:\Users\Izolda\AppData\Roaming\Mumble
2013-06-16 15:54:13 ----D---- C:\Windows\system32\searchplugins
2013-06-16 15:54:13 ----D---- C:\Windows\system32\Extensions
2013-06-16 15:53:53 ----D---- C:\Program Files\Mozilla Firefox
2013-06-16 15:53:33 ----D---- C:\ProgramData\Babylon
2013-06-16 15:53:32 ----D---- C:\Users\Izolda\AppData\Roaming\Babylon
2013-06-16 15:18:33 ----D---- C:\Users\Izolda\AppData\Roaming\Malwarebytes
2013-06-16 15:18:27 ----D---- C:\ProgramData\Malwarebytes
2013-06-16 14:48:00 ----D---- C:\Program Files\Badosoft
2013-06-15 15:08:36 ----D---- C:\Users\Izolda\AppData\Roaming\OpenOffice.org
2013-06-14 09:08:08 ----A---- C:\Windows\system32\wups2.dll
2013-06-14 09:08:08 ----A---- C:\Windows\system32\wucltux.dll
2013-06-14 09:08:08 ----A---- C:\Windows\system32\wuaueng.dll
2013-06-14 09:08:08 ----A---- C:\Windows\system32\wuauclt.exe
2013-06-14 09:07:47 ----A---- C:\Windows\system32\wuwebv.dll
2013-06-14 09:07:47 ----A---- C:\Windows\system32\wuapp.exe
2013-06-13 21:53:30 ----D---- C:\Program Files\Movavi Video Converter 10
2013-06-13 20:56:31 ----D---- C:\Users\Izolda\AppData\Roaming\MOVAVI
2013-06-13 20:40:09 ----D---- C:\Windows\Minidump
2013-06-12 20:38:14 ----D---- C:\Program Files\Room Arranger
2013-06-12 20:29:13 ----D---- C:\ProgramData\Google
2013-06-12 20:29:12 ----D---- C:\Users\Izolda\AppData\Roaming\Google
2013-06-11 13:35:08 ----D---- C:\Program Files\Soul of the Ultimate Nation
2013-06-11 12:54:14 ----D---- C:\Program Files\Ingamba
2013-06-11 08:27:18 ----D---- C:\Users\Izolda\AppData\Roaming\LolClient
2013-06-10 23:05:02 ----A---- C:\Windows\system32\D3DX9_39.dll
2013-06-10 23:05:02 ----A---- C:\Windows\system32\d3dx10_39.dll
2013-06-10 23:05:02 ----A---- C:\Windows\system32\D3DCompiler_39.dll
======List of files/folders modified in the last 1 month======
2013-07-05 10:21:23 ----D---- C:\Program Files
2013-07-05 10:21:04 ----D---- C:\Users\Izolda\AppData\Roaming\GG
2013-07-05 10:20:45 ----D---- C:\Windows\Prefetch
2013-07-05 10:15:38 ----D---- C:\Windows\System32
2013-07-05 10:15:38 ----D---- C:\Windows\inf
2013-07-05 10:15:38 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-07-05 10:09:16 ----D---- C:\Windows\system32\Tasks
2013-07-05 10:09:14 ----D---- C:\ProgramData\NVIDIA
2013-07-05 10:09:14 ----D---- C:\Program Files\Microsoft
2013-07-05 10:08:46 ----D---- C:\Windows\Temp
2013-07-05 10:08:46 ----D---- C:\Windows
2013-07-04 23:17:13 ----D---- C:\Users\Izolda\AppData\Roaming\vlc
2013-07-03 23:36:20 ----SHD---- C:\Windows\Installer
2013-07-03 16:46:29 ----D---- C:\Windows\system32\NDF
2013-07-03 16:18:08 ----SHD---- C:\System Volume Information
2013-07-03 16:17:34 ----D---- C:\Users\Izolda\AppData\Roaming\uTorrent
2013-07-03 16:17:29 ----D---- C:\Windows\Logs
2013-07-03 00:44:11 ----D---- C:\Windows\system32\config
2013-07-03 00:37:49 ----HD---- C:\ProgramData
2013-07-03 00:34:17 ----D---- C:\Windows\Tasks
2013-06-25 17:19:53 ----HD---- C:\Program Files\InstallShield Installation Information
2013-06-25 11:36:53 ----D---- C:\Windows\winsxs
2013-06-25 11:36:32 ----D---- C:\Program Files\Common Files\microsoft shared
2013-06-21 13:18:03 ----D---- C:\Users\Izolda\AppData\Roaming\Skype
2013-06-19 22:41:13 ----D---- C:\Windows\system32\catroot2
2013-06-18 13:52:15 ----D---- C:\Program Files\Pando Networks
2013-06-17 11:04:59 ----RSD---- C:\Windows\assembly
2013-06-17 11:04:14 ----RSD---- C:\Windows\Fonts
2013-06-17 08:31:26 ----SD---- C:\Users\Izolda\AppData\Roaming\Microsoft
2013-06-16 23:48:22 ----D---- C:\Users\Izolda\AppData\Roaming\Adobe
2013-06-16 23:33:48 ----D---- C:\Program Files\Common Files
2013-06-16 15:41:43 ----D---- C:\Windows\system32\drivers
2013-06-16 15:39:56 ----D---- C:\Windows\AppCompat
2013-06-15 02:36:54 ----D---- C:\Windows\rescache
2013-06-14 09:40:23 ----D---- C:\Windows\system32\catroot
2013-06-14 09:31:16 ----D---- C:\Program Files\Google
2013-06-14 09:08:31 ----D---- C:\Windows\system32\pl-PL
2013-06-12 08:40:22 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2013-06-10 08:06:40 ----D---- C:\ProgramData\Skype
2013-06-10 08:06:33 ----RD---- C:\Program Files\Skype
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12368]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 173648]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584]
R2 Parvdm;Parvdm; C:\Windows\system32\DRIVERS\parvdm.sys [2009-07-14 8704]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2010-12-30 3351208]
R3 NVENETFD;Sterownik kontrolera sieci NVIDIA nForce; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-14 347264]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda32v.sys [2010-09-07 123496]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2009-06-28 17920]
S3 aic78xx;aic78xx; C:\Windows\system32\DRIVERS\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 LLRING0;LLRING0; \??\e:\KickerMu-V3\MuGuard\llck.sys []
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 133120]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 34944]
S3 XDva401;XDva401; \??\C:\Windows\system32\XDva401.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 BrowserDefendert;BrowserDefendert; C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserDefender.exe [2013-05-23 2827728]
R2 NVSvc;NVIDIA Driver Helper Service; C:\Windows\system32\nvvsvc.exe [2010-10-16 600680]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2010-10-16 369256]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Usługa Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-05-08 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-02-28 161384]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-12 256904]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 20992]
S3 aspnet_state;„Usługa stanu ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 gupdatem;Usługa Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2013-05-08 116648]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-05-08 1343400]
S4 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-11 65640]
S4 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 20992]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 20992]
-----------------EOF-----------------