Kontrola logu děkuji
Napsal: 29 led 2010 15:50
Zdravím,preventivní kontrola logu a jelikož mám 64bitový systém vkládám log z DDS.
DDS (Ver_09-12-01.01) - NTFSX64
Run by Lisacek at 15:47:18,52 on p 29.01.2010
Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_17
Microsoft Windows 7 Professional 6.1.7600.0.1250.420.1029.18.4095.2805 [GMT 1:00]
============== Running Processes ===============
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\FBAgent.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe
C:\Program Files\ATKGFNEX\GFNEXSrv.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\nvvsvc.exe
C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files\P4G\BatteryLife.exe
C:\Program Files (x86)\ASUS\ASUS CopyProtect\aspg.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\Explorer.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Windows\SysWOW64\ACEngSvr.exe
C:\Program Files (x86)\Xobni\XobniService.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\Atouch64.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\taskeng.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\ATKOSD.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\KBFiltr.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\WDC.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Program Files\Elantech\ETDCtrl.exe
C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\SRSPremiumPanel_64.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe
C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Users\Lisacek\Desktop\dds.pif
C:\Windows\system32\conhost.exe
============== Pseudo HJT Report ===============
uStart Page = hxxp://www.seznam.cz/
uLocal Page =
uDefault_Page_URL = hxxp://asus.msn.com
mLocal Page =
uURLSearchHooks: H - No File
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files (x86)\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files (x86)\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\program files (x86)\microsoft office\office12\GrooveShellExtensions.dll
BHO: Pomocná služba pro přihlášení ke službě Windows Live ID: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files (x86)\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files (x86)\java\jre6\bin\jp2ssv.dll
BHO: Windows Live Toolbar Helper: {e15a8dc0-8516-42a1-81ea-dc94ec1acf10} - c:\program files (x86)\windows live\toolbar\wltcore.dll
TB: &Windows Live Toolbar: {21fa44ef-376d-4d53-9b0f-8a89d3229068} - c:\program files (x86)\windows live\toolbar\wltcore.dll
uRun: [msnmsgr] "c:\program files (x86)\windows live\messenger\msnmsgr.exe" /background
mRun: [MDS_Menu] "c:\program files (x86)\cyberlink\mediashowespresso\muitransfer\muistartmenu.exe" "c:\program files (x86)\cyberlink\mediashowespresso" updatewithcreateonce "software\cyberlink\mediashow espresso\5.0"
mRun: [UpdatePDRShortCut] "c:\program files (x86)\cyberlink\powerdirector\muitransfer\muistartmenu.exe" "c:\program files (x86)\cyberlink\powerdirector" updatewithcreateonce "software\cyberlink\powerdirector\7.0"
mRun: [RemoteControl9] "c:\program files (x86)\cyberlink\powerdvd9\PDVD9Serv.exe"
mRun: [PDVD9LanguageShortcut] "c:\program files (x86)\cyberlink\powerdvd9\language\Language.exe"
mRun: [UpdatePSTShortCut] "c:\program files (x86)\cyberlink\dvd suite\muitransfer\muistartmenu.exe" "c:\program files (x86)\cyberlink\dvd suite" updatewithcreateonce "software\cyberlink\PowerStarter"
mRun: [UpdateLBPShortCut] "c:\program files (x86)\cyberlink\labelprint\muitransfer\muistartmenu.exe" "c:\program files (x86)\cyberlink\labelprint" updatewithcreateonce "software\cyberlink\labelprint\2.5"
mRun: [UpdateP2GoShortCut] "c:\program files (x86)\cyberlink\power2go\muitransfer\muistartmenu.exe" "c:\program files (x86)\cyberlink\power2go" updatewithcreateonce "software\cyberlink\power2go\6.0"
mRun: [HControlUser] c:\program files (x86)\asus\atk hotkey\HControlUser.exe
mRun: [ATKOSD2] c:\program files (x86)\asus\atkosd2\ATKOSD2.exe
mRun: [ATKMEDIA] c:\program files (x86)\asus\atk media\DMedia.exe
mRun: [GrooveMonitor] "c:\program files (x86)\microsoft office\office12\GrooveMonitor.exe"
StartupFolder: c:\progra~3\micros~1\windows\startm~1\programs\startup\blueto~1.lnk - c:\program files\widcomm\bluetooth software\BTTray.exe
StartupFolder: c:\progra~3\micros~1\windows\startm~1\programs\startup\fancys~1.lnk - c:\windows\installer\{f0df4513-3c4c-4eb8-8012-2c5f70af3988}\_A1DDD39913A1970387B7B3.exe
StartupFolder: c:\progra~3\micros~1\windows\startm~1\programs\startup\srspre~1.lnk - c:\windows\installer\{d42f84b6-3709-4a50-8502-6719d16ae6c8}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: ForceActiveDesktopOn = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - c:\progra~2\micros~1\office12\EXCEL.EXE/3000
IE: Odeslat obrázek do zařízení &Bluetooth... - c:\program files\widcomm\bluetooth software\btsendto_ie_ctx.htm
IE: Odeslat stránku do zařízení &Bluetooth... - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
IE: {88EB38EF-4D2C-436D-ABD3-56B232674062} - c:\program files (x86)\icq7.0\ICQ.exe
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files (x86)\windows live\writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~2\micros~1\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~2\micros~1\office12\REFIEBAR.DLL
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_05-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
TCP: {830CEDDD-36D9-4C4A-8D80-417361BD6905} = 172.27.12.254,156.154.70.1
TCP: {C8E7A80F-042C-47A7-BEAD-8278147D1B03} = 172.27.12.254,156.154.70.1
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files (x86)\microsoft office\office12\GrooveSystemServices.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~2\common~1\skype\SKYPE4~1.DLL
mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "c:\program files (x86)\common files\lightscribe\LSRunOnce.exe"
{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}
{9030D464-4C02-4ABF-8ECC-5164760863C6}
{DBC80044-A445-435b-BC74-9C25C1C588A9}
TB-X64: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
mRun-x64: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun-x64: [ETDWare] c:\program files\elantech\ETDCtrl.exe
mRun-x64: [AmIcoSinglun64] c:\program files (x86)\amicosinglun\AmIcoSinglun64.exe
mRun-x64: [egui] "c:\program files\eset\eset nod32 antivirus\egui.exe" /hide /waitservice
IE-X64: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
============= SERVICES / DRIVERS ===============
R0 lullaby;lullaby;c:\windows\system32\drivers\lullaby.sys [2009-10-20 15928]
R1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\drivers\vwififlt.sys [2009-7-14 59904]
R2 AFBAgent;AFBAgent;c:\windows\system32\FBAgent.exe [2009-10-20 359552]
R2 ASMMAP64;ASMMAP64;c:\program files\atkgfnex\ASMMAP64.sys [2009-10-20 14904]
R2 ekrn;ESET Service;c:\program files\eset\eset nod32 antivirus\x86\ekrn.exe [2009-11-16 735960]
R2 epfwwfpr;epfwwfpr;c:\windows\system32\drivers\epfwwfpr.sys [2009-12-18 123200]
R2 FastBootAgent;FastBootAgent;c:\windows\syswow64\fast boot\FastBootAgent.exe [2009-10-20 306232]
R2 XobniService;XobniService;c:\program files (x86)\xobni\XobniService.exe [2009-10-12 46824]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\drivers\btwl2cap.sys [2009-10-20 35104]
R3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\drivers\ETD.sys [2009-7-9 140800]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller (NDIS 6.20);c:\windows\system32\drivers\L1C62x64.sys [2009-9-4 62464]
R3 NETw5s64;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows 7 64 Bit;c:\windows\system32\drivers\NETw5s64.sys [2009-9-15 6952960]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [2009-6-26 83488]
S2 gupdate1ca807ac59d5734;Služba Google Update (gupdate1ca807ac59d5734);c:\program files (x86)\google\update\GoogleUpdate.exe [2009-12-19 133104]
S3 fssfltr;fssfltr;c:\windows\system32\drivers\fssfltr.sys [2009-12-16 61280]
S3 fsssvc;Služba Windows Live Zabezpečení rodiny;c:\program files (x86)\windows live\family safety\fsssvc.exe [2009-8-5 704864]
S3 NETw1v64;Intel(R) Wireless WiFi Link 1000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\drivers\NETw1v64.sys [2009-7-20 7058432]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\system32\drivers\SiSG664.sys [2009-6-10 56832]
S3 StorSvc;Služba úložiště;c:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-14 27136]
S4 Wyeke Service;Wyeke Service;"c:\programdata\wyeke\wyeke131.exe" "c:\program files (x86)\wyeke\wyeke.dll" service --> c:\programdata\wyeke\wyeke131.exe [?]
=============== Created Last 30 ================
2010-01-29 12:14:27 0 d-----w- c:\program files (x86)\Saints Row 2
2010-01-29 10:04:25 0 d-----w- c:\program files (x86)\SH Team
2010-01-28 14:58:28 0 d-----w- c:\program files\ESET
2010-01-27 16:43:11 0 d-----w- c:\users\lisacek\CSS
2010-01-27 15:47:57 2870272 ----a-w- c:\windows\explorer.exe
2010-01-27 15:47:56 389632 ----a-w- c:\windows\system32\winlogon.exe
2010-01-27 15:47:56 2614272 ----a-w- c:\windows\syswow64\explorer.exe
2010-01-23 14:53:07 455680 ----a-w- c:\windows\system32\deploytk.dll
2010-01-23 06:56:27 0 d-----w- c:\users\lisacek\appdata\roaming\TuneUp Software
2010-01-23 06:55:47 0 d-----w- c:\programdata\TuneUp Software
2010-01-23 06:55:28 0 d-sh--w- c:\programdata\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
2010-01-22 07:19:05 0 d-----w- c:\program files (x86)\ICQ7.0
2010-01-22 07:08:11 5961728 ----a-w- c:\windows\syswow64\mshtml.dll
2010-01-22 07:08:09 10976768 ----a-w- c:\windows\syswow64\ieframe.dll
2010-01-22 07:08:08 1192960 ----a-w- c:\windows\system32\wininet.dll
2010-01-22 07:08:07 381440 ----a-w- c:\windows\syswow64\iedkcs32.dll
2010-01-22 07:08:07 1224704 ----a-w- c:\windows\syswow64\urlmon.dll
2010-01-22 07:08:06 977920 ----a-w- c:\windows\syswow64\wininet.dll
2010-01-22 07:08:06 64512 ----a-w- c:\windows\syswow64\msfeedsbs.dll
2010-01-20 19:19:14 0 d-----w- c:\program files (x86)\VALVe
2010-01-20 10:02:09 0 d-----w- c:\program files (x86)\Movie Maker 2.6
2010-01-20 07:17:07 90112 ----a-w- c:\windows\unvise32.exe
2010-01-20 07:15:39 0 d-----w- c:\users\lisacek\FREERAPID DOWNLOADER
2010-01-20 06:51:58 65536 --sha-w- c:\users\lisacek\ntuser.dat{10cd6b3f-058f-11df-9cb3-9556adb22040}.TM.blf
2010-01-20 06:51:58 524288 --sha-w- c:\users\lisacek\ntuser.dat{10cd6b3f-058f-11df-9cb3-9556adb22040}.TMContainer00000000000000000002.regtrans-ms
2010-01-20 06:51:58 524288 --sha-w- c:\users\lisacek\ntuser.dat{10cd6b3f-058f-11df-9cb3-9556adb22040}.TMContainer00000000000000000001.regtrans-ms
2010-01-20 06:37:58 0 d-----w- c:\program files (x86)\Control deck
2010-01-19 15:37:43 0 d-----w- c:\users\lisacek\appdata\roaming\VitySoft
2010-01-17 15:40:06 0 d-----w- c:\program files\Java
2010-01-16 20:02:33 0 d-----w- c:\program files (x86)\VentriloMIX
2010-01-16 17:29:04 0 d-----w- c:\users\lisacek\appdata\roaming\Zoner
2010-01-16 16:12:46 32 ----a-w- c:\windows\go
2010-01-16 11:46:08 0 d-sh--w- c:\programdata\SecuROM
2010-01-16 11:36:31 0 d-----w- c:\windows\D56B0E274A3E46C9B5C1D93D580C099C.TMP
2010-01-15 19:46:57 0 d-----w- c:\programdata\Codemasters
2010-01-15 19:34:59 809560 ----a-r- c:\windows\syswow64\tmpFBF3.tmp
2010-01-15 19:33:00 809560 ----a-r- c:\windows\syswow64\tmpFB94.tmp
2010-01-15 19:15:35 0 d-----w- c:\users\lisacek\DIRT 2
2010-01-15 18:40:17 809560 ----a-r- c:\windows\syswow64\tmpE640.tmp
2010-01-15 18:38:38 809560 ----a-r- c:\windows\syswow64\tmpE5F1.tmp
2010-01-13 12:54:29 70656 ----a-w- c:\windows\syswow64\fontsub.dll
2010-01-13 12:54:29 148480 ----a-w- c:\windows\system32\t2embed.dll
2010-01-13 12:54:29 108544 ----a-w- c:\windows\syswow64\t2embed.dll
2010-01-13 12:54:29 100864 ----a-w- c:\windows\system32\fontsub.dll
2010-01-07 15:21:27 0 d-sh--w- c:\users\lisacek\appdata\roaming\.#
2010-01-06 18:26:27 0 d-----w- c:\program files (x86)\Unlocker
2010-01-05 17:28:04 0 d-----w- C:\Shoty
2010-01-05 15:49:12 0 d-----w- c:\program files (x86)\Trend Micro
2010-01-04 20:28:58 0 d-----w- c:\program files (x86)\Workspace Macro Pro 6.5
2010-01-04 19:35:11 0 d-----w- c:\users\lisacek\SCREENSHOTS
2010-01-04 19:34:58 0 d-----w- c:\program files (x86)\ScreenShots
2010-01-04 18:44:26 0 d-----w- c:\users\lisacek\appdata\roaming\picpick
2010-01-03 14:46:53 0 d-----w- c:\windows\system32\out
2010-01-03 10:51:05 0 d-----w- c:\program files (x86)\RKCutterBanker
2010-01-03 10:26:00 0 d-----w- c:\programdata\Winferno
2010-01-03 10:21:17 0 d-----w- c:\program files (x86)\Free Offers from Freeze.com
2010-01-03 10:21:13 516832 ----a-w- c:\windows\syswow64\CapiCom.dll
2010-01-02 11:56:16 411368 ----a-w- c:\windows\syswow64\deploytk.dll
2010-01-02 11:08:27 34064 ----a-w- c:\windows\syswow64\lhacm.acm
2010-01-02 10:05:13 0 d-----w- c:\users\lisacek\MBAM
2010-01-02 08:05:33 56 ---ha-w- c:\programdata\ezsidmv.dat
2010-01-01 17:57:25 0 d-----w- C:\Games
2010-01-01 15:06:26 0 d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2010-01-01 08:35:51 77976 ----a-w- c:\windows\system32\drivers\pctNdis64.sys
2009-12-31 14:28:41 199 ----a-w- C:\DARE.INI
2009-12-31 09:13:51 69 ----a-w- c:\users\lisacek\jagex_runescape_preferences2.dat
2009-12-31 09:12:58 39 ----a-w- c:\users\lisacek\jagex_runescape_preferences.dat
2009-12-31 09:12:49 0 d-----w- C:\.jagex_cache_32
==================== Find3M ====================
2010-01-20 07:06:37 149280 ----a-w- c:\windows\syswow64\javaws.exe
2010-01-20 07:06:37 145184 ----a-w- c:\windows\syswow64\javaw.exe
2010-01-20 07:06:37 145184 ----a-w- c:\windows\syswow64\java.exe
2010-01-15 19:35:00 466520 ----a-w- c:\windows\system32\wrap_oal.dll
2010-01-15 19:34:59 445016 ----a-w- c:\windows\syswow64\wrap_oal.dll
2010-01-15 19:34:59 122968 ----a-w- c:\windows\system32\OpenAL32.dll
2010-01-15 19:34:59 109144 ----a-w- c:\windows\syswow64\OpenAL32.dll
2010-01-15 10:56:00 183112 ----a-w- c:\windows\syswow64\PnkBstrB.exe
2010-01-14 09:38:24 625914 ----a-w- c:\windows\system32\perfh005.dat
2010-01-14 09:38:24 120000 ----a-w- c:\windows\system32\perfc005.dat
2009-12-30 13:55:06 22104 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-12-19 08:21:51 75064 ----a-w- c:\windows\syswow64\PnkBstrA.exe
2009-12-18 14:02:26 123200 ----a-w- c:\windows\system32\drivers\epfwwfpr.sys
2009-12-17 14:49:35 178800 ----a-w- c:\windows\syswow64\CmdLineExt_x64.dll
2009-12-11 17:11:31 2250024 ----a-w- c:\windows\syswow64\pbsvc.exe
2009-12-01 12:39:32 868848 ----a-w- c:\windows\system32\drivers\sptd.sys
2009-11-30 17:02:40 171144 ----a-w- c:\windows\syswow64\xliveinstall.dll
2009-11-30 17:02:38 72840 ----a-w- c:\windows\syswow64\xliveinstallhost.exe
2009-11-28 20:23:08 737280 ----a-w- c:\windows\iun6002.exe
2009-11-07 22:25:36 86016 ----a-w- c:\windows\syswow64\frapsvid.dll
2009-11-07 22:25:34 84992 ----a-w- c:\windows\system32\frapsv64.dll
2009-11-06 09:59:54 15406728 ----a-w- c:\windows\syswow64\xlive.dll
2009-11-06 09:59:54 13642888 ----a-w- c:\windows\syswow64\xlivefnt.dll
2009-11-02 19:42:06 226688 ------w- c:\windows\system32\MpSigStub.exe
2009-08-03 21:13:18 36232 ----a-w- c:\windows\inf\perflib\0405\perfd.dat
2009-08-03 21:13:18 36232 ----a-w- c:\windows\inf\perflib\0405\perfc.dat
2009-08-03 21:13:18 292004 ----a-w- c:\windows\inf\perflib\0405\perfi.dat
2009-08-03 21:13:18 292004 ----a-w- c:\windows\inf\perflib\0405\perfh.dat
2009-07-14 04:54:24 174 --sha-w- c:\program files\desktop.ini
2009-07-14 04:54:24 174 --sha-w- c:\program files (x86)\desktop.ini
2009-07-14 01:00:34 291294 ----a-w- c:\windows\inf\perflib\0000\perfi.dat
2009-07-14 01:00:34 291294 ----a-w- c:\windows\inf\perflib\0000\perfh.dat
2009-07-14 01:00:32 31548 ----a-w- c:\windows\inf\perflib\0000\perfd.dat
2009-07-14 01:00:32 31548 ----a-w- c:\windows\inf\perflib\0000\perfc.dat
2009-04-08 17:31:56 106496 ----a-w- c:\program files (x86)\common files\CPInstallAction.dll
2008-08-12 04:45:20 155648 ----a-w- c:\program files (x86)\common files\MSIactionall.dll
2008-05-22 15:35:54 51962 ----a-w- c:\program files (x86)\common files\banner.jpg
2007-06-12 16:34:50 35822 ----a-w- c:\program files (x86)\common files\ASPG_icon.ico
2009-06-10 20:44:08 9633792 --sha-r- c:\windows\fonts\StaticCache.dat
2009-07-14 01:39:53 398848 --sha-w- c:\windows\winsxs\amd64_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_4d4d1f2f696639a2\WinMail.exe
2009-07-14 01:14:45 396800 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
============= FINISH: 15:48:49,75 ===============
DDS (Ver_09-12-01.01) - NTFSX64
Run by Lisacek at 15:47:18,52 on p 29.01.2010
Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_17
Microsoft Windows 7 Professional 6.1.7600.0.1250.420.1029.18.4095.2805 [GMT 1:00]
============== Running Processes ===============
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\FBAgent.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\ASLDRSrv.exe
C:\Program Files\ATKGFNEX\GFNEXSrv.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\nvvsvc.exe
C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
C:\Windows\SysWOW64\Fast Boot\FastBootAgent.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe
C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files\P4G\BatteryLife.exe
C:\Program Files (x86)\ASUS\ASUS CopyProtect\aspg.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\Explorer.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Windows\SysWOW64\ACEngSvr.exe
C:\Program Files (x86)\Xobni\XobniService.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\HControl.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\Atouch64.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\taskeng.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\ATKOSD.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\KBFiltr.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\WDC.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Program Files\Elantech\ETDCtrl.exe
C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\SRSPremiumPanel_64.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe
C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe
C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Users\Lisacek\Desktop\dds.pif
C:\Windows\system32\conhost.exe
============== Pseudo HJT Report ===============
uStart Page = hxxp://www.seznam.cz/
uLocal Page =
uDefault_Page_URL = hxxp://asus.msn.com
mLocal Page =
uURLSearchHooks: H - No File
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files (x86)\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files (x86)\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\program files (x86)\microsoft office\office12\GrooveShellExtensions.dll
BHO: Pomocná služba pro přihlášení ke službě Windows Live ID: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files (x86)\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files (x86)\java\jre6\bin\jp2ssv.dll
BHO: Windows Live Toolbar Helper: {e15a8dc0-8516-42a1-81ea-dc94ec1acf10} - c:\program files (x86)\windows live\toolbar\wltcore.dll
TB: &Windows Live Toolbar: {21fa44ef-376d-4d53-9b0f-8a89d3229068} - c:\program files (x86)\windows live\toolbar\wltcore.dll
uRun: [msnmsgr] "c:\program files (x86)\windows live\messenger\msnmsgr.exe" /background
mRun: [MDS_Menu] "c:\program files (x86)\cyberlink\mediashowespresso\muitransfer\muistartmenu.exe" "c:\program files (x86)\cyberlink\mediashowespresso" updatewithcreateonce "software\cyberlink\mediashow espresso\5.0"
mRun: [UpdatePDRShortCut] "c:\program files (x86)\cyberlink\powerdirector\muitransfer\muistartmenu.exe" "c:\program files (x86)\cyberlink\powerdirector" updatewithcreateonce "software\cyberlink\powerdirector\7.0"
mRun: [RemoteControl9] "c:\program files (x86)\cyberlink\powerdvd9\PDVD9Serv.exe"
mRun: [PDVD9LanguageShortcut] "c:\program files (x86)\cyberlink\powerdvd9\language\Language.exe"
mRun: [UpdatePSTShortCut] "c:\program files (x86)\cyberlink\dvd suite\muitransfer\muistartmenu.exe" "c:\program files (x86)\cyberlink\dvd suite" updatewithcreateonce "software\cyberlink\PowerStarter"
mRun: [UpdateLBPShortCut] "c:\program files (x86)\cyberlink\labelprint\muitransfer\muistartmenu.exe" "c:\program files (x86)\cyberlink\labelprint" updatewithcreateonce "software\cyberlink\labelprint\2.5"
mRun: [UpdateP2GoShortCut] "c:\program files (x86)\cyberlink\power2go\muitransfer\muistartmenu.exe" "c:\program files (x86)\cyberlink\power2go" updatewithcreateonce "software\cyberlink\power2go\6.0"
mRun: [HControlUser] c:\program files (x86)\asus\atk hotkey\HControlUser.exe
mRun: [ATKOSD2] c:\program files (x86)\asus\atkosd2\ATKOSD2.exe
mRun: [ATKMEDIA] c:\program files (x86)\asus\atk media\DMedia.exe
mRun: [GrooveMonitor] "c:\program files (x86)\microsoft office\office12\GrooveMonitor.exe"
StartupFolder: c:\progra~3\micros~1\windows\startm~1\programs\startup\blueto~1.lnk - c:\program files\widcomm\bluetooth software\BTTray.exe
StartupFolder: c:\progra~3\micros~1\windows\startm~1\programs\startup\fancys~1.lnk - c:\windows\installer\{f0df4513-3c4c-4eb8-8012-2c5f70af3988}\_A1DDD39913A1970387B7B3.exe
StartupFolder: c:\progra~3\micros~1\windows\startm~1\programs\startup\srspre~1.lnk - c:\windows\installer\{d42f84b6-3709-4a50-8502-6719d16ae6c8}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: ForceActiveDesktopOn = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - c:\progra~2\micros~1\office12\EXCEL.EXE/3000
IE: Odeslat obrázek do zařízení &Bluetooth... - c:\program files\widcomm\bluetooth software\btsendto_ie_ctx.htm
IE: Odeslat stránku do zařízení &Bluetooth... - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
IE: {88EB38EF-4D2C-436D-ABD3-56B232674062} - c:\program files (x86)\icq7.0\ICQ.exe
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files (x86)\windows live\writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~2\micros~1\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~2\micros~1\office12\REFIEBAR.DLL
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_05-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
TCP: {830CEDDD-36D9-4C4A-8D80-417361BD6905} = 172.27.12.254,156.154.70.1
TCP: {C8E7A80F-042C-47A7-BEAD-8278147D1B03} = 172.27.12.254,156.154.70.1
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files (x86)\microsoft office\office12\GrooveSystemServices.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~2\common~1\skype\SKYPE4~1.DLL
mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "c:\program files (x86)\common files\lightscribe\LSRunOnce.exe"
{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}
{9030D464-4C02-4ABF-8ECC-5164760863C6}
{DBC80044-A445-435b-BC74-9C25C1C588A9}
TB-X64: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
mRun-x64: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun-x64: [ETDWare] c:\program files\elantech\ETDCtrl.exe
mRun-x64: [AmIcoSinglun64] c:\program files (x86)\amicosinglun\AmIcoSinglun64.exe
mRun-x64: [egui] "c:\program files\eset\eset nod32 antivirus\egui.exe" /hide /waitservice
IE-X64: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
============= SERVICES / DRIVERS ===============
R0 lullaby;lullaby;c:\windows\system32\drivers\lullaby.sys [2009-10-20 15928]
R1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\drivers\vwififlt.sys [2009-7-14 59904]
R2 AFBAgent;AFBAgent;c:\windows\system32\FBAgent.exe [2009-10-20 359552]
R2 ASMMAP64;ASMMAP64;c:\program files\atkgfnex\ASMMAP64.sys [2009-10-20 14904]
R2 ekrn;ESET Service;c:\program files\eset\eset nod32 antivirus\x86\ekrn.exe [2009-11-16 735960]
R2 epfwwfpr;epfwwfpr;c:\windows\system32\drivers\epfwwfpr.sys [2009-12-18 123200]
R2 FastBootAgent;FastBootAgent;c:\windows\syswow64\fast boot\FastBootAgent.exe [2009-10-20 306232]
R2 XobniService;XobniService;c:\program files (x86)\xobni\XobniService.exe [2009-10-12 46824]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\drivers\btwl2cap.sys [2009-10-20 35104]
R3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\drivers\ETD.sys [2009-7-9 140800]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller (NDIS 6.20);c:\windows\system32\drivers\L1C62x64.sys [2009-9-4 62464]
R3 NETw5s64;Ovladač adaptéru Intel(R) Wireless WiFi Link pro systém Windows 7 64 Bit;c:\windows\system32\drivers\NETw5s64.sys [2009-9-15 6952960]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [2009-6-26 83488]
S2 gupdate1ca807ac59d5734;Služba Google Update (gupdate1ca807ac59d5734);c:\program files (x86)\google\update\GoogleUpdate.exe [2009-12-19 133104]
S3 fssfltr;fssfltr;c:\windows\system32\drivers\fssfltr.sys [2009-12-16 61280]
S3 fsssvc;Služba Windows Live Zabezpečení rodiny;c:\program files (x86)\windows live\family safety\fsssvc.exe [2009-8-5 704864]
S3 NETw1v64;Intel(R) Wireless WiFi Link 1000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\drivers\NETw1v64.sys [2009-7-20 7058432]
S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\system32\drivers\SiSG664.sys [2009-6-10 56832]
S3 StorSvc;Služba úložiště;c:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-14 27136]
S4 Wyeke Service;Wyeke Service;"c:\programdata\wyeke\wyeke131.exe" "c:\program files (x86)\wyeke\wyeke.dll" service --> c:\programdata\wyeke\wyeke131.exe [?]
=============== Created Last 30 ================
2010-01-29 12:14:27 0 d-----w- c:\program files (x86)\Saints Row 2
2010-01-29 10:04:25 0 d-----w- c:\program files (x86)\SH Team
2010-01-28 14:58:28 0 d-----w- c:\program files\ESET
2010-01-27 16:43:11 0 d-----w- c:\users\lisacek\CSS
2010-01-27 15:47:57 2870272 ----a-w- c:\windows\explorer.exe
2010-01-27 15:47:56 389632 ----a-w- c:\windows\system32\winlogon.exe
2010-01-27 15:47:56 2614272 ----a-w- c:\windows\syswow64\explorer.exe
2010-01-23 14:53:07 455680 ----a-w- c:\windows\system32\deploytk.dll
2010-01-23 06:56:27 0 d-----w- c:\users\lisacek\appdata\roaming\TuneUp Software
2010-01-23 06:55:47 0 d-----w- c:\programdata\TuneUp Software
2010-01-23 06:55:28 0 d-sh--w- c:\programdata\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
2010-01-22 07:19:05 0 d-----w- c:\program files (x86)\ICQ7.0
2010-01-22 07:08:11 5961728 ----a-w- c:\windows\syswow64\mshtml.dll
2010-01-22 07:08:09 10976768 ----a-w- c:\windows\syswow64\ieframe.dll
2010-01-22 07:08:08 1192960 ----a-w- c:\windows\system32\wininet.dll
2010-01-22 07:08:07 381440 ----a-w- c:\windows\syswow64\iedkcs32.dll
2010-01-22 07:08:07 1224704 ----a-w- c:\windows\syswow64\urlmon.dll
2010-01-22 07:08:06 977920 ----a-w- c:\windows\syswow64\wininet.dll
2010-01-22 07:08:06 64512 ----a-w- c:\windows\syswow64\msfeedsbs.dll
2010-01-20 19:19:14 0 d-----w- c:\program files (x86)\VALVe
2010-01-20 10:02:09 0 d-----w- c:\program files (x86)\Movie Maker 2.6
2010-01-20 07:17:07 90112 ----a-w- c:\windows\unvise32.exe
2010-01-20 07:15:39 0 d-----w- c:\users\lisacek\FREERAPID DOWNLOADER
2010-01-20 06:51:58 65536 --sha-w- c:\users\lisacek\ntuser.dat{10cd6b3f-058f-11df-9cb3-9556adb22040}.TM.blf
2010-01-20 06:51:58 524288 --sha-w- c:\users\lisacek\ntuser.dat{10cd6b3f-058f-11df-9cb3-9556adb22040}.TMContainer00000000000000000002.regtrans-ms
2010-01-20 06:51:58 524288 --sha-w- c:\users\lisacek\ntuser.dat{10cd6b3f-058f-11df-9cb3-9556adb22040}.TMContainer00000000000000000001.regtrans-ms
2010-01-20 06:37:58 0 d-----w- c:\program files (x86)\Control deck
2010-01-19 15:37:43 0 d-----w- c:\users\lisacek\appdata\roaming\VitySoft
2010-01-17 15:40:06 0 d-----w- c:\program files\Java
2010-01-16 20:02:33 0 d-----w- c:\program files (x86)\VentriloMIX
2010-01-16 17:29:04 0 d-----w- c:\users\lisacek\appdata\roaming\Zoner
2010-01-16 16:12:46 32 ----a-w- c:\windows\go
2010-01-16 11:46:08 0 d-sh--w- c:\programdata\SecuROM
2010-01-16 11:36:31 0 d-----w- c:\windows\D56B0E274A3E46C9B5C1D93D580C099C.TMP
2010-01-15 19:46:57 0 d-----w- c:\programdata\Codemasters
2010-01-15 19:34:59 809560 ----a-r- c:\windows\syswow64\tmpFBF3.tmp
2010-01-15 19:33:00 809560 ----a-r- c:\windows\syswow64\tmpFB94.tmp
2010-01-15 19:15:35 0 d-----w- c:\users\lisacek\DIRT 2
2010-01-15 18:40:17 809560 ----a-r- c:\windows\syswow64\tmpE640.tmp
2010-01-15 18:38:38 809560 ----a-r- c:\windows\syswow64\tmpE5F1.tmp
2010-01-13 12:54:29 70656 ----a-w- c:\windows\syswow64\fontsub.dll
2010-01-13 12:54:29 148480 ----a-w- c:\windows\system32\t2embed.dll
2010-01-13 12:54:29 108544 ----a-w- c:\windows\syswow64\t2embed.dll
2010-01-13 12:54:29 100864 ----a-w- c:\windows\system32\fontsub.dll
2010-01-07 15:21:27 0 d-sh--w- c:\users\lisacek\appdata\roaming\.#
2010-01-06 18:26:27 0 d-----w- c:\program files (x86)\Unlocker
2010-01-05 17:28:04 0 d-----w- C:\Shoty
2010-01-05 15:49:12 0 d-----w- c:\program files (x86)\Trend Micro
2010-01-04 20:28:58 0 d-----w- c:\program files (x86)\Workspace Macro Pro 6.5
2010-01-04 19:35:11 0 d-----w- c:\users\lisacek\SCREENSHOTS
2010-01-04 19:34:58 0 d-----w- c:\program files (x86)\ScreenShots
2010-01-04 18:44:26 0 d-----w- c:\users\lisacek\appdata\roaming\picpick
2010-01-03 14:46:53 0 d-----w- c:\windows\system32\out
2010-01-03 10:51:05 0 d-----w- c:\program files (x86)\RKCutterBanker
2010-01-03 10:26:00 0 d-----w- c:\programdata\Winferno
2010-01-03 10:21:17 0 d-----w- c:\program files (x86)\Free Offers from Freeze.com
2010-01-03 10:21:13 516832 ----a-w- c:\windows\syswow64\CapiCom.dll
2010-01-02 11:56:16 411368 ----a-w- c:\windows\syswow64\deploytk.dll
2010-01-02 11:08:27 34064 ----a-w- c:\windows\syswow64\lhacm.acm
2010-01-02 10:05:13 0 d-----w- c:\users\lisacek\MBAM
2010-01-02 08:05:33 56 ---ha-w- c:\programdata\ezsidmv.dat
2010-01-01 17:57:25 0 d-----w- C:\Games
2010-01-01 15:06:26 0 d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2010-01-01 08:35:51 77976 ----a-w- c:\windows\system32\drivers\pctNdis64.sys
2009-12-31 14:28:41 199 ----a-w- C:\DARE.INI
2009-12-31 09:13:51 69 ----a-w- c:\users\lisacek\jagex_runescape_preferences2.dat
2009-12-31 09:12:58 39 ----a-w- c:\users\lisacek\jagex_runescape_preferences.dat
2009-12-31 09:12:49 0 d-----w- C:\.jagex_cache_32
==================== Find3M ====================
2010-01-20 07:06:37 149280 ----a-w- c:\windows\syswow64\javaws.exe
2010-01-20 07:06:37 145184 ----a-w- c:\windows\syswow64\javaw.exe
2010-01-20 07:06:37 145184 ----a-w- c:\windows\syswow64\java.exe
2010-01-15 19:35:00 466520 ----a-w- c:\windows\system32\wrap_oal.dll
2010-01-15 19:34:59 445016 ----a-w- c:\windows\syswow64\wrap_oal.dll
2010-01-15 19:34:59 122968 ----a-w- c:\windows\system32\OpenAL32.dll
2010-01-15 19:34:59 109144 ----a-w- c:\windows\syswow64\OpenAL32.dll
2010-01-15 10:56:00 183112 ----a-w- c:\windows\syswow64\PnkBstrB.exe
2010-01-14 09:38:24 625914 ----a-w- c:\windows\system32\perfh005.dat
2010-01-14 09:38:24 120000 ----a-w- c:\windows\system32\perfc005.dat
2009-12-30 13:55:06 22104 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-12-19 08:21:51 75064 ----a-w- c:\windows\syswow64\PnkBstrA.exe
2009-12-18 14:02:26 123200 ----a-w- c:\windows\system32\drivers\epfwwfpr.sys
2009-12-17 14:49:35 178800 ----a-w- c:\windows\syswow64\CmdLineExt_x64.dll
2009-12-11 17:11:31 2250024 ----a-w- c:\windows\syswow64\pbsvc.exe
2009-12-01 12:39:32 868848 ----a-w- c:\windows\system32\drivers\sptd.sys
2009-11-30 17:02:40 171144 ----a-w- c:\windows\syswow64\xliveinstall.dll
2009-11-30 17:02:38 72840 ----a-w- c:\windows\syswow64\xliveinstallhost.exe
2009-11-28 20:23:08 737280 ----a-w- c:\windows\iun6002.exe
2009-11-07 22:25:36 86016 ----a-w- c:\windows\syswow64\frapsvid.dll
2009-11-07 22:25:34 84992 ----a-w- c:\windows\system32\frapsv64.dll
2009-11-06 09:59:54 15406728 ----a-w- c:\windows\syswow64\xlive.dll
2009-11-06 09:59:54 13642888 ----a-w- c:\windows\syswow64\xlivefnt.dll
2009-11-02 19:42:06 226688 ------w- c:\windows\system32\MpSigStub.exe
2009-08-03 21:13:18 36232 ----a-w- c:\windows\inf\perflib\0405\perfd.dat
2009-08-03 21:13:18 36232 ----a-w- c:\windows\inf\perflib\0405\perfc.dat
2009-08-03 21:13:18 292004 ----a-w- c:\windows\inf\perflib\0405\perfi.dat
2009-08-03 21:13:18 292004 ----a-w- c:\windows\inf\perflib\0405\perfh.dat
2009-07-14 04:54:24 174 --sha-w- c:\program files\desktop.ini
2009-07-14 04:54:24 174 --sha-w- c:\program files (x86)\desktop.ini
2009-07-14 01:00:34 291294 ----a-w- c:\windows\inf\perflib\0000\perfi.dat
2009-07-14 01:00:34 291294 ----a-w- c:\windows\inf\perflib\0000\perfh.dat
2009-07-14 01:00:32 31548 ----a-w- c:\windows\inf\perflib\0000\perfd.dat
2009-07-14 01:00:32 31548 ----a-w- c:\windows\inf\perflib\0000\perfc.dat
2009-04-08 17:31:56 106496 ----a-w- c:\program files (x86)\common files\CPInstallAction.dll
2008-08-12 04:45:20 155648 ----a-w- c:\program files (x86)\common files\MSIactionall.dll
2008-05-22 15:35:54 51962 ----a-w- c:\program files (x86)\common files\banner.jpg
2007-06-12 16:34:50 35822 ----a-w- c:\program files (x86)\common files\ASPG_icon.ico
2009-06-10 20:44:08 9633792 --sha-r- c:\windows\fonts\StaticCache.dat
2009-07-14 01:39:53 398848 --sha-w- c:\windows\winsxs\amd64_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_4d4d1f2f696639a2\WinMail.exe
2009-07-14 01:14:45 396800 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
============= FINISH: 15:48:49,75 ===============