Vírus winlogon.exe
Napsal: 30 led 2010 17:12
Dostal sa ku mne PC, ktorý nemal antivír a bol moc zavíreny cez Eset online scaner som odstránil okolo 200 vírusov, nainštaloval som Eset Smart Security 4 opäť skontroloval a vymazal ďalších 10 vírusov, potom som updatol windows, po resete mi Eset vypisuje okna s vírusmi:
- C:Windows/system32/winlogon.exe s infiltráciou win32/trojanproxy.agent.NIC.virus,
- C.Windows/system32/svchost.exe s infiltráciou win32/trojanproxy.agent.NIC.virus,
- C:Windows/system32/lssas.exe s infiltráciou win32/trojanproxy.agent.NIC.virus.
Taktiež Windows ma upozorňuje na vloženie inštalačného CD pretože súbory nevyhnutné pre správnu funkčnosť systému boli nahradené súbormi neznámej verzie. Kedže mám iba recovery DVD-ROM tak mi ho neberie.
PROSÍM o radu, nechcem preinštalovať windows pretože mám tam dôležité dáta. Za každú radu pekne ďakujem:
Pripájam LOG.RSIT
Logfile of random's system information tool 1.06 (written by random/random)
Run by Jan Kuzma at 2010-01-30 16:47:29
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 16 GB (22%) free of 76 GB
Total RAM: 383 MB (18% free)
HijackThis download failed
======Scheduled tasks folder======
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2009-03-16 1088296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-07-05 259696]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.15642\swg.dll [2009-07-28 669168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll [2009-07-05 470512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2009-07-10 1174920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-07-05 259696]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2009-07-10 1174920]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SMSERIAL"=C:\WINDOWS\sm56hlpr.exe [2006-01-20 544768]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-05-04 16206848]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"Wireless Console 2"=C:\Program Files\Wireless Console 2\wcourier.exe [2005-10-17 987136]
"egui"=C:\Program Files\eset1\egui.exe [2009-02-06 2021400]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-03 15360]
C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Startup
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2006-03-08 61440]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Documents and Settings\Jan Kuzma\jgshv.exe"="C:\Documents and Settings\Jan Kuzma\jgshv.exe:*:Enabled:ENABLE"
"C:\WINDOWS\system32\bufxh.exe"="C:\WINDOWS\system32\bufxh.exe:*:Enabled:ENABLE"
"C:\WINDOWS\system32\bufxh .exe"="C:\WINDOWS\system32\bufxh .exe:*:Enabled:ENABLE"
"C:\WINDOWS\System32\ifq.exe"="C:\WINDOWS\System32\ifq.exe:*:Enabled:ENABLE"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype "
"C:\Documents and Settings\Jan Kuzma\cgtsuhs.exe"="C:\Documents and Settings\Jan Kuzma\cgtsuhs.exe:*:Enabled:ENABLE"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{41e4438e-c139-11de-9373-0018f3b793ce}]
shell\AutoRun\command - E:\AutoRun.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{41e4438f-c139-11de-9373-0018f3b793ce}]
shell\AutoRun\command - E:\AutoRun.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{910f3af6-3d58-11dd-9266-0018f3b793ce}]
shell\AutoRun\command - y82td3td.com
shell\explore\command - y82td3td.com
shell\open\command - y82td3td.com
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bbbdf3a8-3c56-11dd-9264-0018f3b793ce}]
shell\AutoRun\command - b.com
shell\explore\command - b.com
shell\open\command - b.com
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d443ff90-e241-11dc-91f0-0018f3b793ce}]
shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL wscript.exe MS32DLL.dll.vbs
======List of files/folders created in the last 1 months======
2010-01-30 16:47:30 ----D---- C:\Program Files\trend micro
2010-01-30 16:47:29 ----D---- C:\rsit
2010-01-29 23:48:55 ----D---- C:\!KillBox
2010-01-29 22:34:54 ----D---- C:\Documents and Settings\All Users.WINDOWS\Application Data\Windows Genuine Advantage
2010-01-29 22:30:32 ----SHD---- C:\FOUND.002
2010-01-29 22:27:39 ----HD---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-01-29 22:27:34 ----HD---- C:\WINDOWS\$NtUninstallKB952954$
2010-01-29 22:27:28 ----HD---- C:\WINDOWS\$NtUninstallKB959426$
2010-01-29 22:27:23 ----HD---- C:\WINDOWS\$NtUninstallKB946648$
2010-01-29 22:27:14 ----HD---- C:\WINDOWS\$NtUninstallKB956803$
2010-01-29 22:27:09 ----HD---- C:\WINDOWS\$NtUninstallKB935448$
2010-01-29 22:27:05 ----HD---- C:\WINDOWS\$NtUninstallKB958869$
2010-01-29 22:26:58 ----HD---- C:\WINDOWS\$NtUninstallKB976098-v2$
2010-01-29 22:26:41 ----HD---- C:\WINDOWS\$NtUninstallKB969059$
2010-01-29 22:26:37 ----HD---- C:\WINDOWS\$NtUninstallKB971657$
2010-01-29 22:26:32 ----HD---- C:\WINDOWS\$NtUninstallKB971557$
2010-01-29 22:26:27 ----HD---- C:\WINDOWS\$NtUninstallKB960225$
2010-01-29 22:26:21 ----HD---- C:\WINDOWS\$NtUninstallKB974112$
2010-01-29 22:26:17 ----HD---- C:\WINDOWS\$NtUninstallKB956844$
2010-01-29 22:26:12 ----HD---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2010-01-29 22:26:08 ----HD---- C:\WINDOWS\$NtUninstallKB971633$
2010-01-29 22:26:02 ----HD---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-01-29 22:25:57 ----HD---- C:\WINDOWS\$NtUninstallKB952004$
2010-01-29 22:25:49 ----HD---- C:\WINDOWS\$NtUninstallKB973507$
2010-01-29 22:25:37 ----D---- C:\WINDOWS\system32\MpEngineStore
2010-01-29 22:25:37 ----A---- C:\WINDOWS\system32\MRT.INI
2010-01-29 22:23:26 ----A---- C:\WINDOWS\system32\MRT.exe
2010-01-29 22:23:19 ----HD---- C:\WINDOWS\$NtUninstallKB973687$
2010-01-29 22:23:14 ----HD---- C:\WINDOWS\$NtUninstallKB957097$
2010-01-29 22:23:09 ----HD---- C:\WINDOWS\$NtUninstallKB952287$
2010-01-29 22:23:04 ----HD---- C:\WINDOWS\$NtUninstallKB973904$
2010-01-29 22:22:59 ----HD---- C:\WINDOWS\$NtUninstallKB951066$
2010-01-29 22:22:54 ----HD---- C:\WINDOWS\$NtUninstallKB974392$
2010-01-29 22:22:46 ----HD---- C:\WINDOWS\$NtUninstallKB951748$
2010-01-29 22:22:40 ----HD---- C:\WINDOWS\$NtUninstallKB970238$
2010-01-29 22:22:34 ----D---- C:\WINDOWS\ServicePackFiles
2010-01-29 22:22:32 ----HD---- C:\WINDOWS\$NtUninstallKB958470$
2010-01-29 22:22:25 ----HD---- C:\WINDOWS\$NtUninstallKB973815$
2010-01-29 22:22:16 ----HD---- C:\WINDOWS\$NtUninstallKB971032$
2010-01-29 22:22:10 ----HD---- C:\WINDOWS\$NtUninstallKB955069$
2010-01-29 22:22:05 ----HD---- C:\WINDOWS\$NtUninstallKB956802$
2010-01-29 22:21:34 ----D---- C:\Program Files\MSXML 4.0
2010-01-29 22:21:24 ----HD---- C:\WINDOWS\$NtUninstallKB923561$
2010-01-29 22:21:18 ----HD---- C:\WINDOWS\$NtUninstallKB975467$
2010-01-29 22:21:10 ----HD---- C:\WINDOWS\$NtUninstallKB968389$
2010-01-29 22:20:58 ----HD---- C:\WINDOWS\$NtUninstallKB969947$
2010-01-29 22:11:57 ----D---- C:\Documents and Settings\Jan Kuzma\Application Data\ESET
2010-01-29 22:07:57 ----D---- C:\Program Files\eset1
2010-01-29 19:47:00 ----A---- C:\WINDOWS\system32\xpsp3res.dll
2010-01-29 19:01:43 ----D---- C:\Documents and Settings\Jan Kuzma\Application Data\GlarySoft
2010-01-29 18:52:22 ----N---- C:\WINDOWS\system32\tzchange.exe
2010-01-29 18:32:44 ----D---- C:\WINDOWS\system32\CatRoot_bak
2010-01-29 18:24:22 ----A---- C:\WINDOWS\wininit.ini
2010-01-29 17:42:28 ----D---- C:\Program Files\Spybot - Search & Destroy
2010-01-29 17:42:28 ----D---- C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot - Search & Destroy
2010-01-29 15:15:59 ----HD---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-01-29 15:15:54 ----HD---- C:\WINDOWS\$NtUninstallKB955759$
2010-01-29 15:15:24 ----HD---- C:\WINDOWS\$NtUninstallKB972270$
2010-01-29 15:15:13 ----HD---- C:\WINDOWS\$NtUninstallKB956572$
2010-01-29 15:15:06 ----HD---- C:\WINDOWS\$NtUninstallKB973869$
2010-01-29 15:14:59 ----HD---- C:\WINDOWS\$NtUninstallKB973540_WM9L$
2010-01-29 15:14:56 ----HD---- C:\WINDOWS\$NtUninstallKB950762$
2010-01-29 15:14:52 ----HD---- C:\WINDOWS\$NtUninstallKB958687$
2010-01-29 15:14:48 ----HD---- C:\WINDOWS\$NtUninstallKB973354$
2010-01-29 15:14:44 ----HD---- C:\WINDOWS\$NtUninstallKB971961$
2010-01-29 15:14:34 ----HD---- C:\WINDOWS\$NtUninstallKB971486$
2010-01-29 15:14:29 ----HD---- C:\WINDOWS\$NtUninstallKB960803$
2010-01-29 15:14:25 ----HD---- C:\WINDOWS\$NtUninstallKB973525$
2010-01-29 15:14:20 ----HD---- C:\WINDOWS\$NtUninstallKB958644$
2010-01-29 15:14:14 ----HD---- C:\WINDOWS\$NtUninstallKB944338-v2$
2010-01-29 14:27:14 ----D---- C:\Program Files\Alwil Software
2010-01-29 14:27:14 ----D---- C:\Documents and Settings\All Users.WINDOWS\Application Data\Alwil Software
2010-01-29 14:18:07 ----SHD---- C:\WINDOWS\CSC
2010-01-29 13:23:39 ----D---- C:\Program Files\CCleaner
2010-01-21 15:20:05 ----A---- C:\WINDOWS\rafazon.bat
======List of files/folders modified in the last 1 months======
2010-01-30 16:35:48 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-01-29 18:42:16 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-01-16 19:04:42 ----A---- C:\WINDOWS\NeroDigital.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2009-02-06 106208]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2009-02-06 56280]
R1 InCDPass;InCDPass; C:\WINDOWS\System32\DRIVERS\InCDPass.sys [2006-04-06 29440]
R1 incdrm;InCD Reader; C:\WINDOWS\system32\drivers\incdrm.sys [2006-04-06 33408]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-03 36096]
R1 WS2IFSL;Prostredie podpory poskytovate¾a služby Windows Socket 2.0 Non-IFS Service; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-08-23 12032]
R2 Angelnt;Angelnt; C:\WINDOWS\System32\Drivers\ANGELNT.SYS [2009-02-04 51072]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2009-02-06 130952]
R2 irda;IrDA Protocol; C:\WINDOWS\system32\DRIVERS\irda.sys [2004-08-03 87424]
R2 MDC8021X;AEGIS Protocol (IEEE 802.1x) v2.3.1.9; C:\WINDOWS\system32\DRIVERS\mdc8021x.sys [2009-09-18 15781]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2006-03-08 1506816]
R3 BCM43XX;ASUS 802.11 ovládaè sieového adaptéru; C:\WINDOWS\system32\DRIVERS\bcmwl5.sys [2005-02-11 371712]
R3 CmBatt;Microsoft AC Adapter Driver; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2004-08-03 14080]
R3 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2009-02-06 113448]
R3 Epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2009-02-06 33096]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-05-04 4271616]
R3 irsir;Microsoft Serial Infrared Driver; C:\WINDOWS\system32\DRIVERS\irsir.sys [2001-08-17 18688]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ATKACPI.sys [2005-02-17 5632]
R3 Rasirda;WAN Miniport (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys [2001-08-17 19584]
R3 rimsptsk;rimsptsk; C:\WINDOWS\system32\DRIVERS\rimsptsk.sys [2005-07-12 51328]
R3 RTL8023xp;Realtek 10/100/1000 NIC Family all in one NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2006-01-18 80512]
R3 smserial;smserial; C:\WINDOWS\system32\DRIVERS\smserial.sys [2006-01-20 862340]
R3 SynMini;USB2.0 1.3M WebCam; C:\WINDOWS\System32\Drivers\SynMini.sys [2006-07-03 1056512]
R3 SynScan;USB2.0 1.3M WebCam Still Image; C:\WINDOWS\System32\Drivers\SynScan.sys [2006-06-30 8064]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2005-10-21 191936]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-03 26624]
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]
R3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2004-08-03 17024]
R3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
R4 InCDfs;InCD File System; C:\WINDOWS\system32\drivers\InCDfs.sys [2006-04-06 102016]
S1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-03 14848]
S3 ASNDIS5;ASNDIS5 Protocol Driver; \??\C:\WINDOWS\system32\ASNDIS5.SYS []
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-03 17024]
S3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\WINDOWS\system32\DRIVERS\ewusbmdm.sys [2008-03-17 101376]
S3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-03 85376]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-03 10880]
S3 nmwcd;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\nmwcd.sys [2007-02-22 137216]
S3 nmwcdc;Nokia USB Generic; C:\WINDOWS\system32\drivers\nmwcdc.sys [2007-02-22 8320]
S3 nmwcdcj;Nokia USB Port; C:\WINDOWS\system32\drivers\nmwcdcj.sys [2007-02-22 12288]
S3 nmwcdcm;Nokia USB Modem; C:\WINDOWS\system32\drivers\nmwcdcm.sys [2007-02-22 12288]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
S3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2004-08-03 67584]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-03 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-03 15360]
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-03 19328]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2006-03-08 405504]
R2 ekrn;ESET Service; C:\Program Files\eset1\ekrn.exe [2009-02-06 727720]
R2 InCDsrv;InCD Helper; C:\Program Files\Ahead\InCD\InCDsrv.exe [2006-04-06 880128]
R2 Irmon;Infrared Monitor; C:\WINDOWS\system32\svchost.exe [2004-08-03 17408]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-04-24 73728]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe [2001-02-23 270336]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\eset1\EHttpSrv.exe [2009-02-06 20680]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-07-05 182768]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2007-12-10 353280]
-----------------EOF-----------------
- C:Windows/system32/winlogon.exe s infiltráciou win32/trojanproxy.agent.NIC.virus,
- C.Windows/system32/svchost.exe s infiltráciou win32/trojanproxy.agent.NIC.virus,
- C:Windows/system32/lssas.exe s infiltráciou win32/trojanproxy.agent.NIC.virus.
Taktiež Windows ma upozorňuje na vloženie inštalačného CD pretože súbory nevyhnutné pre správnu funkčnosť systému boli nahradené súbormi neznámej verzie. Kedže mám iba recovery DVD-ROM tak mi ho neberie.
PROSÍM o radu, nechcem preinštalovať windows pretože mám tam dôležité dáta. Za každú radu pekne ďakujem:
Pripájam LOG.RSIT
Logfile of random's system information tool 1.06 (written by random/random)
Run by Jan Kuzma at 2010-01-30 16:47:29
Systém Microsoft Windows XP Professional Service Pack 2
System drive C: has 16 GB (22%) free of 76 GB
Total RAM: 383 MB (18% free)
HijackThis download failed
======Scheduled tasks folder======
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2009-03-16 1088296]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-07-05 259696]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.15642\swg.dll [2009-07-28 669168]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll [2009-07-05 470512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2009-07-10 1174920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-07-05 259696]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2009-07-10 1174920]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SMSERIAL"=C:\WINDOWS\sm56hlpr.exe [2006-01-20 544768]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2006-05-04 16206848]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"Wireless Console 2"=C:\Program Files\Wireless Console 2\wcourier.exe [2005-10-17 987136]
"egui"=C:\Program Files\eset1\egui.exe [2009-02-06 2021400]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2004-08-03 15360]
C:\Documents and Settings\All Users.WINDOWS\Start Menu\Programs\Startup
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2006-03-08 61440]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Documents and Settings\Jan Kuzma\jgshv.exe"="C:\Documents and Settings\Jan Kuzma\jgshv.exe:*:Enabled:ENABLE"
"C:\WINDOWS\system32\bufxh.exe"="C:\WINDOWS\system32\bufxh.exe:*:Enabled:ENABLE"
"C:\WINDOWS\system32\bufxh .exe"="C:\WINDOWS\system32\bufxh .exe:*:Enabled:ENABLE"
"C:\WINDOWS\System32\ifq.exe"="C:\WINDOWS\System32\ifq.exe:*:Enabled:ENABLE"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype "
"C:\Documents and Settings\Jan Kuzma\cgtsuhs.exe"="C:\Documents and Settings\Jan Kuzma\cgtsuhs.exe:*:Enabled:ENABLE"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{41e4438e-c139-11de-9373-0018f3b793ce}]
shell\AutoRun\command - E:\AutoRun.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{41e4438f-c139-11de-9373-0018f3b793ce}]
shell\AutoRun\command - E:\AutoRun.exe
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{910f3af6-3d58-11dd-9266-0018f3b793ce}]
shell\AutoRun\command - y82td3td.com
shell\explore\command - y82td3td.com
shell\open\command - y82td3td.com
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bbbdf3a8-3c56-11dd-9264-0018f3b793ce}]
shell\AutoRun\command - b.com
shell\explore\command - b.com
shell\open\command - b.com
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d443ff90-e241-11dc-91f0-0018f3b793ce}]
shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL wscript.exe MS32DLL.dll.vbs
======List of files/folders created in the last 1 months======
2010-01-30 16:47:30 ----D---- C:\Program Files\trend micro
2010-01-30 16:47:29 ----D---- C:\rsit
2010-01-29 23:48:55 ----D---- C:\!KillBox
2010-01-29 22:34:54 ----D---- C:\Documents and Settings\All Users.WINDOWS\Application Data\Windows Genuine Advantage
2010-01-29 22:30:32 ----SHD---- C:\FOUND.002
2010-01-29 22:27:39 ----HD---- C:\WINDOWS\$NtUninstallKB951376-v2$
2010-01-29 22:27:34 ----HD---- C:\WINDOWS\$NtUninstallKB952954$
2010-01-29 22:27:28 ----HD---- C:\WINDOWS\$NtUninstallKB959426$
2010-01-29 22:27:23 ----HD---- C:\WINDOWS\$NtUninstallKB946648$
2010-01-29 22:27:14 ----HD---- C:\WINDOWS\$NtUninstallKB956803$
2010-01-29 22:27:09 ----HD---- C:\WINDOWS\$NtUninstallKB935448$
2010-01-29 22:27:05 ----HD---- C:\WINDOWS\$NtUninstallKB958869$
2010-01-29 22:26:58 ----HD---- C:\WINDOWS\$NtUninstallKB976098-v2$
2010-01-29 22:26:41 ----HD---- C:\WINDOWS\$NtUninstallKB969059$
2010-01-29 22:26:37 ----HD---- C:\WINDOWS\$NtUninstallKB971657$
2010-01-29 22:26:32 ----HD---- C:\WINDOWS\$NtUninstallKB971557$
2010-01-29 22:26:27 ----HD---- C:\WINDOWS\$NtUninstallKB960225$
2010-01-29 22:26:21 ----HD---- C:\WINDOWS\$NtUninstallKB974112$
2010-01-29 22:26:17 ----HD---- C:\WINDOWS\$NtUninstallKB956844$
2010-01-29 22:26:12 ----HD---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2010-01-29 22:26:08 ----HD---- C:\WINDOWS\$NtUninstallKB971633$
2010-01-29 22:26:02 ----HD---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2010-01-29 22:25:57 ----HD---- C:\WINDOWS\$NtUninstallKB952004$
2010-01-29 22:25:49 ----HD---- C:\WINDOWS\$NtUninstallKB973507$
2010-01-29 22:25:37 ----D---- C:\WINDOWS\system32\MpEngineStore
2010-01-29 22:25:37 ----A---- C:\WINDOWS\system32\MRT.INI
2010-01-29 22:23:26 ----A---- C:\WINDOWS\system32\MRT.exe
2010-01-29 22:23:19 ----HD---- C:\WINDOWS\$NtUninstallKB973687$
2010-01-29 22:23:14 ----HD---- C:\WINDOWS\$NtUninstallKB957097$
2010-01-29 22:23:09 ----HD---- C:\WINDOWS\$NtUninstallKB952287$
2010-01-29 22:23:04 ----HD---- C:\WINDOWS\$NtUninstallKB973904$
2010-01-29 22:22:59 ----HD---- C:\WINDOWS\$NtUninstallKB951066$
2010-01-29 22:22:54 ----HD---- C:\WINDOWS\$NtUninstallKB974392$
2010-01-29 22:22:46 ----HD---- C:\WINDOWS\$NtUninstallKB951748$
2010-01-29 22:22:40 ----HD---- C:\WINDOWS\$NtUninstallKB970238$
2010-01-29 22:22:34 ----D---- C:\WINDOWS\ServicePackFiles
2010-01-29 22:22:32 ----HD---- C:\WINDOWS\$NtUninstallKB958470$
2010-01-29 22:22:25 ----HD---- C:\WINDOWS\$NtUninstallKB973815$
2010-01-29 22:22:16 ----HD---- C:\WINDOWS\$NtUninstallKB971032$
2010-01-29 22:22:10 ----HD---- C:\WINDOWS\$NtUninstallKB955069$
2010-01-29 22:22:05 ----HD---- C:\WINDOWS\$NtUninstallKB956802$
2010-01-29 22:21:34 ----D---- C:\Program Files\MSXML 4.0
2010-01-29 22:21:24 ----HD---- C:\WINDOWS\$NtUninstallKB923561$
2010-01-29 22:21:18 ----HD---- C:\WINDOWS\$NtUninstallKB975467$
2010-01-29 22:21:10 ----HD---- C:\WINDOWS\$NtUninstallKB968389$
2010-01-29 22:20:58 ----HD---- C:\WINDOWS\$NtUninstallKB969947$
2010-01-29 22:11:57 ----D---- C:\Documents and Settings\Jan Kuzma\Application Data\ESET
2010-01-29 22:07:57 ----D---- C:\Program Files\eset1
2010-01-29 19:47:00 ----A---- C:\WINDOWS\system32\xpsp3res.dll
2010-01-29 19:01:43 ----D---- C:\Documents and Settings\Jan Kuzma\Application Data\GlarySoft
2010-01-29 18:52:22 ----N---- C:\WINDOWS\system32\tzchange.exe
2010-01-29 18:32:44 ----D---- C:\WINDOWS\system32\CatRoot_bak
2010-01-29 18:24:22 ----A---- C:\WINDOWS\wininit.ini
2010-01-29 17:42:28 ----D---- C:\Program Files\Spybot - Search & Destroy
2010-01-29 17:42:28 ----D---- C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot - Search & Destroy
2010-01-29 15:15:59 ----HD---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-01-29 15:15:54 ----HD---- C:\WINDOWS\$NtUninstallKB955759$
2010-01-29 15:15:24 ----HD---- C:\WINDOWS\$NtUninstallKB972270$
2010-01-29 15:15:13 ----HD---- C:\WINDOWS\$NtUninstallKB956572$
2010-01-29 15:15:06 ----HD---- C:\WINDOWS\$NtUninstallKB973869$
2010-01-29 15:14:59 ----HD---- C:\WINDOWS\$NtUninstallKB973540_WM9L$
2010-01-29 15:14:56 ----HD---- C:\WINDOWS\$NtUninstallKB950762$
2010-01-29 15:14:52 ----HD---- C:\WINDOWS\$NtUninstallKB958687$
2010-01-29 15:14:48 ----HD---- C:\WINDOWS\$NtUninstallKB973354$
2010-01-29 15:14:44 ----HD---- C:\WINDOWS\$NtUninstallKB971961$
2010-01-29 15:14:34 ----HD---- C:\WINDOWS\$NtUninstallKB971486$
2010-01-29 15:14:29 ----HD---- C:\WINDOWS\$NtUninstallKB960803$
2010-01-29 15:14:25 ----HD---- C:\WINDOWS\$NtUninstallKB973525$
2010-01-29 15:14:20 ----HD---- C:\WINDOWS\$NtUninstallKB958644$
2010-01-29 15:14:14 ----HD---- C:\WINDOWS\$NtUninstallKB944338-v2$
2010-01-29 14:27:14 ----D---- C:\Program Files\Alwil Software
2010-01-29 14:27:14 ----D---- C:\Documents and Settings\All Users.WINDOWS\Application Data\Alwil Software
2010-01-29 14:18:07 ----SHD---- C:\WINDOWS\CSC
2010-01-29 13:23:39 ----D---- C:\Program Files\CCleaner
2010-01-21 15:20:05 ----A---- C:\WINDOWS\rafazon.bat
======List of files/folders modified in the last 1 months======
2010-01-30 16:35:48 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-01-29 18:42:16 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-01-16 19:04:42 ----A---- C:\WINDOWS\NeroDigital.ini
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2009-02-06 106208]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2009-02-06 56280]
R1 InCDPass;InCDPass; C:\WINDOWS\System32\DRIVERS\InCDPass.sys [2006-04-06 29440]
R1 incdrm;InCD Reader; C:\WINDOWS\system32\drivers\incdrm.sys [2006-04-06 33408]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-03 36096]
R1 WS2IFSL;Prostredie podpory poskytovate¾a služby Windows Socket 2.0 Non-IFS Service; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2001-08-23 12032]
R2 Angelnt;Angelnt; C:\WINDOWS\System32\Drivers\ANGELNT.SYS [2009-02-04 51072]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2009-02-06 130952]
R2 irda;IrDA Protocol; C:\WINDOWS\system32\DRIVERS\irda.sys [2004-08-03 87424]
R2 MDC8021X;AEGIS Protocol (IEEE 802.1x) v2.3.1.9; C:\WINDOWS\system32\DRIVERS\mdc8021x.sys [2009-09-18 15781]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2006-03-08 1506816]
R3 BCM43XX;ASUS 802.11 ovládaè sieového adaptéru; C:\WINDOWS\system32\DRIVERS\bcmwl5.sys [2005-02-11 371712]
R3 CmBatt;Microsoft AC Adapter Driver; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2004-08-03 14080]
R3 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2009-02-06 113448]
R3 Epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2009-02-06 33096]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-05-04 4271616]
R3 irsir;Microsoft Serial Infrared Driver; C:\WINDOWS\system32\DRIVERS\irsir.sys [2001-08-17 18688]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ATKACPI.sys [2005-02-17 5632]
R3 Rasirda;WAN Miniport (IrDA); C:\WINDOWS\system32\DRIVERS\rasirda.sys [2001-08-17 19584]
R3 rimsptsk;rimsptsk; C:\WINDOWS\system32\DRIVERS\rimsptsk.sys [2005-07-12 51328]
R3 RTL8023xp;Realtek 10/100/1000 NIC Family all in one NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2006-01-18 80512]
R3 smserial;smserial; C:\WINDOWS\system32\DRIVERS\smserial.sys [2006-01-20 862340]
R3 SynMini;USB2.0 1.3M WebCam; C:\WINDOWS\System32\Drivers\SynMini.sys [2006-07-03 1056512]
R3 SynScan;USB2.0 1.3M WebCam Still Image; C:\WINDOWS\System32\Drivers\SynScan.sys [2006-06-30 8064]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2005-10-21 191936]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-03 26624]
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]
R3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2004-08-03 17024]
R3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
R4 InCDfs;InCD File System; C:\WINDOWS\system32\drivers\InCDfs.sys [2006-04-06 102016]
S1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-03 14848]
S3 ASNDIS5;ASNDIS5 Protocol Driver; \??\C:\WINDOWS\system32\ASNDIS5.SYS []
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-03 17024]
S3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\WINDOWS\system32\DRIVERS\ewusbmdm.sys [2008-03-17 101376]
S3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-03 85376]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-03 10880]
S3 nmwcd;Nokia USB Phone Parent; C:\WINDOWS\system32\drivers\nmwcd.sys [2007-02-22 137216]
S3 nmwcdc;Nokia USB Generic; C:\WINDOWS\system32\drivers\nmwcdc.sys [2007-02-22 8320]
S3 nmwcdcj;Nokia USB Port; C:\WINDOWS\system32\drivers\nmwcdcj.sys [2007-02-22 12288]
S3 nmwcdcm;Nokia USB Modem; C:\WINDOWS\system32\drivers\nmwcdcm.sys [2007-02-22 12288]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
S3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2004-08-03 67584]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-03 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-03 15360]
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-03 19328]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2006-03-08 405504]
R2 ekrn;ESET Service; C:\Program Files\eset1\ekrn.exe [2009-02-06 727720]
R2 InCDsrv;InCD Helper; C:\Program Files\Ahead\InCD\InCDsrv.exe [2006-04-06 880128]
R2 Irmon;Infrared Monitor; C:\WINDOWS\system32\svchost.exe [2004-08-03 17408]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-04-24 73728]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe [2001-02-23 270336]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\eset1\EHttpSrv.exe [2009-02-06 20680]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-07-05 182768]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2007-12-10 353280]
-----------------EOF-----------------