Kontrola logu
Napsal: 12 úno 2010 12:50
Logfile of random's system information tool 1.06 (written by random/random)
Run by mato at 2010-02-12 12:46:06
Microsoft Windows 7 Ultimate Service Pack 2
System drive C: has 14 GB (45%) free of 31 GB
Total RAM: 3069 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:47:08, on 12. 2. 2010
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\DigitalPersona\Bin\DpAgent.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Innovative Solutions\DriverMax\devices.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Webteh\BSplayerPro\bsplayer.exe
C:\Users\mato\Desktop\RSIT.exe
C:\Program Files\trend micro\mato.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: DigitalPersona Personal Extension - {395610AE-C624-4f58-B89E-23733EA00F9A} - C:\Program Files\DigitalPersona\Bin\DpOtsPluginIe8.dll
O2 - BHO: Pomocník pri prihlasovaní v konte Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [DpAgent] C:\Program Files\DigitalPersona\Bin\dpagent.exe
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\RunOnce: [Boot Deleter-C1C] E:\Programy\Sprava pc\BootDeleter\Boot Deleter.exe DELETE ::{645FF040-5081-101B-9F08-00AA002F954E}
O4 - HKCU\..\Run: [DriverMax_RESTART] "C:\Program Files\Innovative Solutions\DriverMax\devices.exe" -RESTART
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O13 - Gopher Prefix:
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_8e7d5b9d3a91d8c5\aestsrv.exe
O23 - Service: AST Service (astcc) - Nalpeiron Ltd. - C:\Windows\system32\ASTSRV.EXE
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: Autodesk Network Licensing Service - Autodesk, Inc. - C:\Program Files\Common Files\Autodesk Shared\Service\AdskNetSrv.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: @C:\Program Files\DigitalPersona\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - C:\Program Files\DigitalPersona\Bin\DpHostW.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: NitroPDFDriverCreatorReadSpool (NitroDriverReadSpool) - Nitro PDF Software - C:\Program Files\Nitro PDF\Professional\NitroPDFDriverService.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_8e7d5b9d3a91d8c5\STacSV.exe
O23 - Service: @C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe,-1 (TuneUp.Defrag) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vcsFPService.exe
O23 - Service: Validity Fingerprint Service (vfsFPService) - Validity Sensors, Inc. - c:\Windows\system32\vfsFPService.exe
--
End of file - 7423 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{395610AE-C624-4f58-B89E-23733EA00F9A}]
DigitalPersona Personal Extension - C:\Program Files\DigitalPersona\Bin\DpOtsPluginIe8.dll [2009-04-17 1256512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pri prihlasovaní v konte Windows Live ID - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-03-30 403824]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-02-04 41760]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2009-03-19 2029640]
"DpAgent"=C:\Program Files\DigitalPersona\Bin\dpagent.exe [2009-04-17 842816]
"QlbCtrl.exe"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2009-07-27 321080]
"WirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2009-09-01 499768]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-08-07 186904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Boot Deleter-C1C"=E:\Programy\Sprava pc\BootDeleter\Boot Deleter.exe [2005-02-09 62976]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DriverMax_RESTART"=C:\Program Files\Innovative Solutions\DriverMax\devices.exe [2010-01-11 9068960]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Device Detector]
DevDetect.exe -autorun []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DriverMax]
C:\Program Files\Innovative Solutions\DriverMax\devices.exe [2010-01-11 9068960]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DriverMax_RESTART]
C:\Program Files\Innovative Solutions\DriverMax\devices.exe [2010-01-11 9068960]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FileHippo.com]
C:\Program Files\FileHippo.com\UpdateChecker.exe [2010-02-05 155648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-01-11 246504]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SysTrayApp]
C:\Program Files\IDT\WDM\sttray.exe [2009-07-21 458844]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UCam_Menu]
C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [2007-12-24 222504]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
DPPWDFLT
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - "C:\Windows\system32\NOTEPAD.EXE" "%1"
.scr - install -
.scr - config -
======List of files/folders created in the last 1 months======
2010-02-12 12:46:06 ----D---- C:\rsit
2010-02-12 12:46:06 ----D---- C:\Program Files\trend micro
2010-02-12 12:41:29 ----D---- C:\Program Files\TrendMicro
2010-02-12 12:04:31 ----D---- C:\Windows\LastGood
2010-02-12 11:57:19 ----D---- C:\Users\mato\AppData\Roaming\InstallShield
2010-02-12 11:55:27 ----A---- C:\Windows\system32\hcwutl32.dll
2010-02-12 11:55:19 ----D---- C:\Program Files\HP USB TV Tuner
2010-02-12 11:54:58 ----A---- C:\Windows\xUninstall.bat
2010-02-12 11:54:51 ----A---- C:\Windows\system32\JmCrIcon.dll
2010-02-12 11:54:50 ----D---- C:\Windows\JMCR_DIR
2010-02-11 19:05:46 ----A---- C:\Windows\system32\XAudio2_6.dll
2010-02-11 19:05:46 ----A---- C:\Windows\system32\XAudio2_5.dll
2010-02-11 19:05:46 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2010-02-11 19:05:46 ----A---- C:\Windows\system32\xactengine3_6.dll
2010-02-11 19:05:46 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2010-02-11 19:05:45 ----A---- C:\Windows\system32\xactengine3_5.dll
2010-02-11 19:05:45 ----A---- C:\Windows\system32\d3dcsx_42.dll
2010-02-11 19:05:45 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2010-02-11 19:05:44 ----A---- C:\Windows\system32\XAudio2_4.dll
2010-02-11 19:05:44 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2010-02-11 19:05:44 ----A---- C:\Windows\system32\D3DX9_42.dll
2010-02-11 19:05:44 ----A---- C:\Windows\system32\D3DX9_41.dll
2010-02-11 19:05:44 ----A---- C:\Windows\system32\d3dx11_42.dll
2010-02-11 19:05:44 ----A---- C:\Windows\system32\d3dx10_42.dll
2010-02-11 19:05:44 ----A---- C:\Windows\system32\d3dx10_41.dll
2010-02-11 19:05:44 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\XAudio2_3.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\xactengine3_4.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\xactengine3_3.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\D3DX9_40.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\d3dx10_40.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-02-11 19:05:42 ----A---- C:\Windows\system32\XAudio2_1.dll
2010-02-11 19:05:42 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2010-02-11 19:05:42 ----A---- C:\Windows\system32\xactengine3_1.dll
2010-02-11 19:05:42 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2010-02-11 19:05:42 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-02-11 19:05:42 ----A---- C:\Windows\system32\D3DX9_38.dll
2010-02-11 19:05:42 ----A---- C:\Windows\system32\d3dx10_38.dll
2010-02-11 19:05:42 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2010-02-11 19:05:41 ----A---- C:\Windows\system32\XAudio2_0.dll
2010-02-11 19:05:41 ----A---- C:\Windows\system32\xactengine3_0.dll
2010-02-11 19:05:41 ----A---- C:\Windows\system32\xactengine2_10.dll
2010-02-11 19:05:41 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2010-02-11 19:05:41 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2010-02-11 19:05:40 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2010-02-11 19:05:39 ----A---- C:\Windows\system32\xactengine2_9.dll
2010-02-11 19:05:39 ----A---- C:\Windows\system32\xactengine2_8.dll
2010-02-11 19:05:39 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2010-02-11 19:05:39 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2010-02-11 19:05:38 ----A---- C:\Windows\system32\xinput1_3.dll
2010-02-11 19:05:38 ----A---- C:\Windows\system32\xactengine2_7.dll
2010-02-11 19:05:38 ----A---- C:\Windows\system32\xactengine2_6.dll
2010-02-11 19:05:38 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2010-02-11 19:05:38 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2010-02-11 19:05:37 ----A---- C:\Windows\system32\xactengine2_5.dll
2010-02-11 19:05:37 ----A---- C:\Windows\system32\xactengine2_4.dll
2010-02-11 19:05:37 ----A---- C:\Windows\system32\x3daudio1_1.dll
2010-02-11 19:05:37 ----A---- C:\Windows\system32\d3dx9_32.dll
2010-02-11 19:05:37 ----A---- C:\Windows\system32\d3dx9_31.dll
2010-02-11 19:05:36 ----A---- C:\Windows\system32\xinput1_2.dll
2010-02-11 19:05:36 ----A---- C:\Windows\system32\xactengine2_3.dll
2010-02-11 19:05:35 ----A---- C:\Windows\system32\xinput1_1.dll
2010-02-11 19:05:35 ----A---- C:\Windows\system32\xactengine2_2.dll
2010-02-11 19:05:34 ----A---- C:\Windows\system32\xactengine2_1.dll
2010-02-11 19:05:33 ----A---- C:\Windows\system32\xactengine2_0.dll
2010-02-11 19:05:33 ----A---- C:\Windows\system32\x3daudio1_0.dll
2010-02-11 19:05:33 ----A---- C:\Windows\system32\d3dx9_29.dll
2010-02-11 19:05:33 ----A---- C:\Windows\system32\d3dx9_28.dll
2010-02-11 19:05:33 ----A---- C:\Windows\system32\d3dx9_27.dll
2010-02-11 19:05:33 ----A---- C:\Windows\system32\d3dx9_26.dll
2010-02-11 19:05:33 ----A---- C:\Windows\system32\d3dx9_25.dll
2010-02-11 19:05:33 ----A---- C:\Windows\system32\d3dx9_24.dll
2010-02-11 18:54:43 ----D---- C:\Windows\Sun
2010-02-11 15:18:26 ----A---- C:\Windows\system32\DXErr.exe
2010-02-11 15:18:26 ----A---- C:\Windows\system32\dxcpl.exe
2010-02-11 15:18:26 ----A---- C:\Windows\system32\d3dx9_36.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\ntdllnew.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\msvcrtnew.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\kernel32new.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\d3dx9_35.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\d3dx9_34.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\d3dx9_33.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\d3dx10_37.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\d3dx10_36.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\d3dx10_35.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\d3dx10_34.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\d3dx10_33.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\d3dx10.dll
2010-02-11 15:18:24 ----A---- C:\Windows\system32\unins000.exe
2010-02-11 12:49:07 ----D---- C:\Windows\system32\directx
2010-02-11 12:02:24 ----A---- C:\Windows\system32\OpenCL.dll
2010-02-11 12:02:23 ----A---- C:\Windows\system32\nvoglv32.dll
2010-02-11 12:02:15 ----A---- C:\Windows\system32\nvencodemft.dll
2010-02-11 12:02:14 ----A---- C:\Windows\system32\nvdecodemft.dll
2010-02-11 12:02:12 ----A---- C:\Windows\system32\nvcuvid.dll
2010-02-11 12:02:12 ----A---- C:\Windows\system32\nvcuvenc.dll
2010-02-11 12:02:12 ----A---- C:\Windows\system32\nvcuda.dll
2010-02-11 12:02:02 ----A---- C:\Windows\system32\nvcompiler.dll
2010-02-11 12:02:00 ----A---- C:\Windows\system32\nvcod187.dll
2010-02-11 12:02:00 ----A---- C:\Windows\system32\nvcod.dll
2010-02-11 11:07:51 ----D---- C:\ProgramData\Innovative Solutions
2010-02-11 11:07:44 ----D---- C:\Program Files\Innovative Solutions
2010-02-11 10:49:34 ----D---- C:\Program Files\FileHippo.com
2010-02-10 20:21:26 ----D---- C:\Users\mato\AppData\Roaming\Desktopicon
2010-02-10 19:16:36 ----A---- C:\Windows\system32\quartz.dll
2010-02-10 19:16:35 ----A---- C:\Windows\system32\msvidc32.dll
2010-02-10 19:16:35 ----A---- C:\Windows\system32\mciavi32.dll
2010-02-10 19:16:35 ----A---- C:\Windows\system32\avifil32.dll
2010-02-10 19:16:34 ----A---- C:\Windows\system32\msyuv.dll
2010-02-10 19:16:34 ----A---- C:\Windows\system32\msrle32.dll
2010-02-10 19:16:34 ----A---- C:\Windows\system32\iyuv_32.dll
2010-02-10 19:16:33 ----A---- C:\Windows\system32\tsbyuv.dll
2010-02-10 19:16:29 ----A---- C:\Windows\system32\kernel32.dll
2010-02-10 19:16:28 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-02-10 19:16:27 ----A---- C:\Windows\system32\apphelp.dll
2010-02-10 19:16:26 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-02-10 19:16:23 ----A---- C:\Windows\system32\secproc_isv.dll
2010-02-10 19:16:23 ----A---- C:\Windows\system32\secproc.dll
2010-02-10 19:16:22 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-02-10 19:16:22 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-02-10 19:16:22 ----A---- C:\Windows\system32\RMActivate.exe
2010-02-10 19:16:21 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-02-10 19:16:21 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-02-10 19:16:21 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-02-10 12:27:06 ----D---- C:\Users\mato\AppData\Roaming\Canneverbe Limited
2010-02-10 12:27:06 ----D---- C:\ProgramData\Canneverbe Limited
2010-02-10 12:26:43 ----D---- C:\Program Files\CDBurnerXP
2010-02-10 02:55:07 ----D---- C:\Users\mato\AppData\Roaming\gtk-2.0
2010-02-08 20:15:08 ----D---- C:\Users\mato\AppData\Roaming\Google
2010-02-08 20:14:44 ----D---- C:\ProgramData\Google
2010-02-07 21:45:06 ----D---- C:\Users\mato\AppData\Roaming\ACD Systems
2010-02-07 16:32:17 ----D---- C:\Users\mato\AppData\Roaming\Opera
2010-02-05 17:36:09 ----D---- C:\Program Files\CyberLink
2010-02-05 15:42:56 ----D---- C:\Program Files\Opera
2010-02-05 15:42:02 ----D---- C:\Users\mato\AppData\Roaming\Nitro PDF
2010-02-05 15:40:32 ----A---- C:\Windows\system32\nitrolocalui.dll
2010-02-05 15:40:32 ----A---- C:\Windows\system32\nitrolocalmon.dll
2010-02-05 15:40:24 ----D---- C:\ProgramData\Nitro PDF
2010-02-05 15:40:24 ----D---- C:\Program Files\Common Files\Nitro PDF
2010-02-05 15:40:23 ----D---- C:\Program Files\Nitro PDF
2010-02-05 15:38:58 ----D---- C:\Users\mato\AppData\Roaming\Downloaded Installations
2010-02-05 15:13:24 ----D---- C:\Users\mato\AppData\Roaming\vlc
2010-02-05 15:12:46 ----D---- C:\Program Files\VideoLAN
2010-02-05 11:56:59 ----D---- C:\GGmenu
2010-02-05 10:26:40 ----D---- C:\CAD standardy
2010-02-05 10:17:00 ----D---- C:\Program Files\Common Files\InstallShield
2010-02-05 01:38:28 ----D---- C:\Users\mato\AppData\Roaming\QIP
2010-02-05 01:38:15 ----D---- C:\Program Files\QIP Infium
2010-02-05 01:28:34 ----D---- C:\Program Files\Infinium QIP
2010-02-05 01:21:49 ----D---- C:\Users\mato\AppData\Roaming\Macrovision
2010-02-05 01:20:50 ----A---- C:\ProgramData\HPWALog.txt
2010-02-05 01:20:48 ----D---- C:\Users\mato\AppData\Roaming\DigitalPersona
2010-02-05 00:57:35 ----A---- C:\Windows\system32\TURegOpt.exe
2010-02-05 00:57:31 ----A---- C:\Windows\system32\uxtuneup.dll
2010-02-05 00:57:31 ----A---- C:\Windows\system32\authuitu.dll
2010-02-05 00:57:13 ----D---- C:\Users\mato\AppData\Roaming\TuneUp Software
2010-02-05 00:57:01 ----D---- C:\Program Files\TuneUp Utilities 2010
2010-02-05 00:56:39 ----D---- C:\ProgramData\TuneUp Software
2010-02-05 00:56:34 ----SHD---- C:\ProgramData\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
2010-02-05 00:23:58 ----D---- C:\Program Files\WIDCOMM
2010-02-05 00:16:35 ----D---- C:\Program Files\Microsoft
2010-02-05 00:14:03 ----D---- C:\Program Files\Intel
2010-02-05 00:13:52 ----D---- C:\Intel
2010-02-05 00:09:23 ----D---- C:\Program Files\Validity Sensors
2010-02-05 00:06:47 ----D---- C:\ProgramData\Azureus
2010-02-05 00:06:26 ----D---- C:\Users\mato\AppData\Roaming\Azureus
2010-02-05 00:06:00 ----D---- C:\Program Files\Vuze
2010-02-05 00:05:50 ----D---- C:\Program Files\Conduit
2010-02-05 00:02:58 ----SHD---- C:\Config.Msi
2010-02-05 00:00:48 ----D---- C:\Program Files\Microsoft Silverlight
2010-02-04 23:58:24 ----D---- C:\Program Files\WinRAR
2010-02-04 23:26:17 ----D---- C:\Program Files\DAEMON Tools Lite
2010-02-04 23:26:01 ----D---- C:\Users\mato\AppData\Roaming\DAEMON Tools Lite
2010-02-04 23:25:59 ----D---- C:\ProgramData\DAEMON Tools Lite
2010-02-04 23:19:33 ----D---- C:\Program Files\Microsoft Works
2010-02-04 23:19:20 ----D---- C:\Program Files\Microsoft Visual Studio
2010-02-04 23:19:20 ----D---- C:\Program Files\Common Files\DESIGNER
2010-02-04 23:19:04 ----D---- C:\Windows\PCHEALTH
2010-02-04 23:17:22 ----D---- C:\Program Files\Microsoft Office
2010-02-04 23:16:12 ----RHD---- C:\MSOCache
2010-02-04 23:12:12 ----D---- C:\Users\mato\AppData\Roaming\WinRAR
2010-02-04 23:09:46 ----D---- C:\Users\mato\AppData\Roaming\Foxit
2010-02-04 23:09:46 ----D---- C:\Program Files\Foxit Software
2010-02-04 23:08:43 ----A---- C:\Windows\system32\unrar.dll
2010-02-04 23:08:42 ----A---- C:\Windows\avisplitter.ini
2010-02-04 23:08:36 ----A---- C:\Windows\system32\yv12vfw.dll
2010-02-04 23:08:35 ----A---- C:\Windows\system32\xvidvfw.dll
2010-02-04 23:08:35 ----A---- C:\Windows\system32\xvidcore.dll
2010-02-04 23:08:30 ----A---- C:\Windows\system32\ff_vfw.dll.manifest
2010-02-04 23:08:29 ----A---- C:\Windows\system32\ff_vfw.dll
2010-02-04 23:08:26 ----D---- C:\Program Files\K-Lite Codec Pack
2010-02-04 23:03:58 ----D---- C:\Program Files\JDownloader
2010-02-04 22:55:07 ----D---- C:\ProgramData\ACD Systems
2010-02-04 22:54:52 ----D---- C:\Program Files\Common Files\ACD Systems
2010-02-04 22:54:52 ----D---- C:\Program Files\ACD Systems
2010-02-04 22:49:35 ----A---- C:\Windows\system32\MRT.exe
2010-02-04 22:49:35 ----A---- C:\Windows\system32\aestecap.dll
2010-02-04 22:49:35 ----A---- C:\Windows\system32\aestaren.dll
2010-02-04 22:49:35 ----A---- C:\Windows\system32\aestacap.dll
2010-02-04 22:49:34 ----A---- C:\Windows\system32\idtmini1.exe
2010-02-04 22:49:34 ----A---- C:\Windows\system32\AESTCom.dll
2010-02-04 22:49:33 ----A---- C:\Windows\system32\stlang.dll
2010-02-04 22:49:33 ----A---- C:\Windows\sttray.exe
2010-02-04 22:49:30 ----D---- C:\Windows\system32\SRSLabs
2010-02-04 22:49:15 ----A---- C:\Windows\system32\staco.dll
2010-02-04 22:47:39 ----A---- C:\Windows\system32\stcplx.dll
2010-02-04 22:47:38 ----A---- C:\Windows\system32\stapo.dll
2010-02-04 22:47:38 -------- C:\Windows\system32\stapi32.dll
2010-02-04 22:47:15 ----D---- C:\Program Files\IDT
2010-02-04 22:45:52 ----D---- C:\Program Files\CCleaner
2010-02-04 22:42:47 ----D---- C:\Users\mato\AppData\Roaming\BSplayer PRO
2010-02-04 22:42:40 ----D---- C:\Program Files\Webteh
2010-02-04 22:36:11 ----D---- C:\Users\mato\AppData\Roaming\Autodesk
2010-02-04 22:36:11 ----D---- C:\ProgramData\FLEXnet
2010-02-04 22:25:33 ----D---- C:\Program Files\Common Files\Macrovision Shared
2010-02-04 22:23:06 ----D---- C:\ProgramData\Autodesk
2010-02-04 22:20:53 ----D---- C:\Program Files\Microsoft SDKs
2010-02-04 22:20:51 ----D---- C:\Program Files\Microsoft.NET
2010-02-04 22:20:50 ----D---- C:\ProgramData\Microsoft Help
2010-02-04 22:20:50 ----D---- C:\Program Files\Microsoft Visual Studio 9.0
2010-02-04 22:20:13 ----D---- C:\Program Files\Common Files\Autodesk Shared
2010-02-04 22:20:13 ----D---- C:\Program Files\Autodesk
2010-02-04 22:20:05 ----A---- C:\Windows\system32\d3dx9_37.dll
2010-02-04 22:19:58 ----A---- C:\Windows\system32\d3dx9_30.dll
2010-02-04 22:12:46 ----D---- C:\Users\mato\AppData\Roaming\hpqLog
2010-02-04 22:12:14 ----RA---- C:\Windows\system32\BttnCmn.dll
2010-02-04 22:12:14 ----D---- C:\Program Files\Hewlett-Packard
2010-02-04 22:12:14 ----A---- C:\Windows\system32\BttnCmns.dll
2010-02-04 22:12:10 ----HD---- C:\Program Files\InstallShield Installation Information
2010-02-04 22:10:09 ----D---- C:\Program Files\Validity Sensors, Inc
2010-02-04 22:09:09 ----D---- C:\Windows\system32\tr
2010-02-04 22:09:09 ----D---- C:\Windows\system32\sv
2010-02-04 22:09:09 ----D---- C:\Windows\system32\ru
2010-02-04 22:09:09 ----D---- C:\Windows\system32\no
2010-02-04 22:09:09 ----D---- C:\Windows\system32\da
2010-02-04 22:09:07 ----D---- C:\Windows\system32\ko
2010-02-04 22:09:07 ----D---- C:\Windows\system32\ja
2010-02-04 22:09:07 ----D---- C:\Windows\system32\it
2010-02-04 22:09:07 ----D---- C:\Windows\system32\fr
2010-02-04 22:09:07 ----D---- C:\Windows\system32\es
2010-02-04 22:09:07 ----D---- C:\Windows\system32\de
2010-02-04 22:09:06 ----D---- C:\Windows\DPDrv
2010-02-04 22:09:04 ----D---- C:\ProgramData\Macrovision
2010-02-04 22:09:04 ----D---- C:\Program Files\DigitalPersona
2010-02-04 22:08:28 ----D---- C:\ProgramData\Downloaded Installations
2010-02-04 22:08:03 ----D---- C:\swsetup
2010-02-04 22:01:02 ----D---- C:\ProgramData\Sun
2010-02-04 22:01:01 ----D---- C:\Windows\system32\Adobe
2010-02-04 22:01:00 ----D---- C:\Program Files\Common Files\Java
2010-02-04 21:57:24 ----A---- C:\Windows\system32\javaws.exe
2010-02-04 21:57:24 ----A---- C:\Windows\system32\javaw.exe
2010-02-04 21:57:24 ----A---- C:\Windows\system32\java.exe
2010-02-04 21:57:24 ----A---- C:\Windows\system32\deploytk.dll
2010-02-04 21:57:13 ----D---- C:\Program Files\Java
2010-02-04 21:54:26 ----D---- C:\Users\mato\AppData\Roaming\Macromedia
2010-02-04 21:54:26 ----D---- C:\Users\mato\AppData\Roaming\Adobe
2010-02-04 21:49:51 ----D---- C:\Windows\system32\AGEIA
2010-02-04 21:49:49 ----D---- C:\Program Files\AGEIA Technologies
2010-02-04 21:49:32 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2010-02-04 21:49:29 ----D---- C:\Program Files\NVIDIA Corporation
2010-02-04 21:48:24 ----A---- C:\Windows\system32\nvwgf2um.dll
2010-02-04 21:48:22 ----A---- C:\Windows\system32\nvd3dum.dll
2010-02-04 21:48:20 ----A---- C:\Windows\system32\nvcod178.dll
2010-02-04 21:48:20 ----A---- C:\Windows\system32\nvapi.dll
2010-02-04 21:48:19 ----D---- C:\NVIDIA
2010-02-04 21:41:11 ----D---- C:\Windows\system32\Macromed
2010-02-04 21:12:12 ----D---- C:\ProgramData\ESET
2010-02-04 21:12:12 ----D---- C:\Program Files\ESET
2010-02-04 21:02:59 ----D---- C:\Program Files\Google
2010-02-04 20:51:10 ----A---- C:\Windows\system32\msv1_0.dll
2010-02-04 20:50:10 ----A---- C:\Windows\system32\tzres.dll
2010-02-04 20:49:03 ----SHD---- C:\Windows\Installer
2010-02-04 20:48:56 ----A---- C:\Windows\system32\nvuninst.exe
2010-02-04 20:48:13 ----A---- C:\Windows\system32\winlogon.exe
2010-02-04 20:48:13 ----A---- C:\Windows\explorer.exe
2010-02-04 20:48:12 ----A---- C:\Windows\system32\msasn1.dll
2010-02-04 20:48:11 ----A---- C:\Windows\system32\wmp.dll
2010-02-04 20:48:10 ----A---- C:\Windows\system32\CertEnroll.dll
2010-02-04 20:48:09 ----A---- C:\Windows\system32\wmploc.DLL
2010-02-04 20:48:09 ----A---- C:\Windows\system32\winresume.exe
2010-02-04 20:48:09 ----A---- C:\Windows\system32\winload.exe
2010-02-04 20:48:08 ----A---- C:\Windows\system32\t2embed.dll
2010-02-04 20:48:08 ----A---- C:\Windows\system32\atmfd.dll
2010-02-04 20:48:07 ----A---- C:\Windows\system32\fontsub.dll
2010-02-04 20:48:05 ----A---- C:\Windows\system32\mshtml.dll
2010-02-04 20:48:04 ----A---- C:\Windows\system32\wininet.dll
2010-02-04 20:48:04 ----A---- C:\Windows\system32\urlmon.dll
2010-02-04 20:48:04 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-02-04 20:48:04 ----A---- C:\Windows\system32\ieframe.dll
2010-02-04 20:48:04 ----A---- C:\Windows\system32\iedkcs32.dll
2010-02-04 20:47:01 ----D---- C:\Users\mato\AppData\Roaming\Mozilla
2010-02-04 20:46:34 ----N---- C:\Windows\system32\MpSigStub.exe
2010-02-04 20:45:34 ----D---- C:\Windows\pss
2010-02-04 20:40:43 ----D---- C:\Program Files\Mozilla Firefox
2010-02-04 20:37:30 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-02-04 20:34:37 ----D---- C:\Users\mato\AppData\Roaming\Identities
2010-02-04 20:34:20 ----SD---- C:\Users\mato\AppData\Roaming\Microsoft
2010-02-04 20:34:20 ----D---- C:\Users\mato\AppData\Roaming\Media Center Programs
2010-02-04 20:34:11 ----SHD---- C:\Recovery
2010-02-04 20:29:26 ----D---- C:\Windows\SoftwareDistribution
2010-02-04 20:26:36 ----D---- C:\Windows\Prefetch
2010-02-04 20:25:33 ----D---- C:\Windows\Panther
2010-02-04 20:13:32 ----SHD---- C:\System Volume Information
2010-01-18 07:30:48 ----A---- C:\Windows\system32\msvcr71.dll
2010-01-18 07:30:46 ----A---- C:\Windows\system32\msvcp71.dll
======List of files/folders modified in the last 1 months======
Run by mato at 2010-02-12 12:46:06
Microsoft Windows 7 Ultimate Service Pack 2
System drive C: has 14 GB (45%) free of 31 GB
Total RAM: 3069 MB (61% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:47:08, on 12. 2. 2010
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskhost.exe
C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesApp32.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\DigitalPersona\Bin\DpAgent.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Innovative Solutions\DriverMax\devices.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Webteh\BSplayerPro\bsplayer.exe
C:\Users\mato\Desktop\RSIT.exe
C:\Program Files\trend micro\mato.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: DigitalPersona Personal Extension - {395610AE-C624-4f58-B89E-23733EA00F9A} - C:\Program Files\DigitalPersona\Bin\DpOtsPluginIe8.dll
O2 - BHO: Pomocník pri prihlasovaní v konte Windows Live ID - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [DpAgent] C:\Program Files\DigitalPersona\Bin\dpagent.exe
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\RunOnce: [Boot Deleter-C1C] E:\Programy\Sprava pc\BootDeleter\Boot Deleter.exe DELETE ::{645FF040-5081-101B-9F08-00AA002F954E}
O4 - HKCU\..\Run: [DriverMax_RESTART] "C:\Program Files\Innovative Solutions\DriverMax\devices.exe" -RESTART
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O13 - Gopher Prefix:
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_8e7d5b9d3a91d8c5\aestsrv.exe
O23 - Service: AST Service (astcc) - Nalpeiron Ltd. - C:\Windows\system32\ASTSRV.EXE
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: Autodesk Network Licensing Service - Autodesk, Inc. - C:\Program Files\Common Files\Autodesk Shared\Service\AdskNetSrv.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: @C:\Program Files\DigitalPersona\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - C:\Program Files\DigitalPersona\Bin\DpHostW.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: NitroPDFDriverCreatorReadSpool (NitroDriverReadSpool) - Nitro PDF Software - C:\Program Files\Nitro PDF\Professional\NitroPDFDriverService.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_8e7d5b9d3a91d8c5\STacSV.exe
O23 - Service: @C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe,-1 (TuneUp.Defrag) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpDefragService.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files\TuneUp Utilities 2010\TuneUpUtilitiesService32.exe
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vcsFPService.exe
O23 - Service: Validity Fingerprint Service (vfsFPService) - Validity Sensors, Inc. - c:\Windows\system32\vfsFPService.exe
--
End of file - 7423 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{395610AE-C624-4f58-B89E-23733EA00F9A}]
DigitalPersona Personal Extension - C:\Program Files\DigitalPersona\Bin\DpOtsPluginIe8.dll [2009-04-17 1256512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pri prihlasovaní v konte Windows Live ID - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-03-30 403824]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-02-04 41760]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2009-03-19 2029640]
"DpAgent"=C:\Program Files\DigitalPersona\Bin\dpagent.exe [2009-04-17 842816]
"QlbCtrl.exe"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2009-07-27 321080]
"WirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2009-09-01 499768]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe [2009-08-07 186904]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Boot Deleter-C1C"=E:\Programy\Sprava pc\BootDeleter\Boot Deleter.exe [2005-02-09 62976]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DriverMax_RESTART"=C:\Program Files\Innovative Solutions\DriverMax\devices.exe [2010-01-11 9068960]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Device Detector]
DevDetect.exe -autorun []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DriverMax]
C:\Program Files\Innovative Solutions\DriverMax\devices.exe [2010-01-11 9068960]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DriverMax_RESTART]
C:\Program Files\Innovative Solutions\DriverMax\devices.exe [2010-01-11 9068960]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FileHippo.com]
C:\Program Files\FileHippo.com\UpdateChecker.exe [2010-02-05 155648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-01-11 246504]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SysTrayApp]
C:\Program Files\IDT\WDM\sttray.exe [2009-07-21 458844]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UCam_Menu]
C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [2007-12-24 222504]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
DPPWDFLT
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - "C:\Windows\system32\NOTEPAD.EXE" "%1"
.scr - install -
.scr - config -
======List of files/folders created in the last 1 months======
2010-02-12 12:46:06 ----D---- C:\rsit
2010-02-12 12:46:06 ----D---- C:\Program Files\trend micro
2010-02-12 12:41:29 ----D---- C:\Program Files\TrendMicro
2010-02-12 12:04:31 ----D---- C:\Windows\LastGood
2010-02-12 11:57:19 ----D---- C:\Users\mato\AppData\Roaming\InstallShield
2010-02-12 11:55:27 ----A---- C:\Windows\system32\hcwutl32.dll
2010-02-12 11:55:19 ----D---- C:\Program Files\HP USB TV Tuner
2010-02-12 11:54:58 ----A---- C:\Windows\xUninstall.bat
2010-02-12 11:54:51 ----A---- C:\Windows\system32\JmCrIcon.dll
2010-02-12 11:54:50 ----D---- C:\Windows\JMCR_DIR
2010-02-11 19:05:46 ----A---- C:\Windows\system32\XAudio2_6.dll
2010-02-11 19:05:46 ----A---- C:\Windows\system32\XAudio2_5.dll
2010-02-11 19:05:46 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2010-02-11 19:05:46 ----A---- C:\Windows\system32\xactengine3_6.dll
2010-02-11 19:05:46 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2010-02-11 19:05:45 ----A---- C:\Windows\system32\xactengine3_5.dll
2010-02-11 19:05:45 ----A---- C:\Windows\system32\d3dcsx_42.dll
2010-02-11 19:05:45 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2010-02-11 19:05:44 ----A---- C:\Windows\system32\XAudio2_4.dll
2010-02-11 19:05:44 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2010-02-11 19:05:44 ----A---- C:\Windows\system32\D3DX9_42.dll
2010-02-11 19:05:44 ----A---- C:\Windows\system32\D3DX9_41.dll
2010-02-11 19:05:44 ----A---- C:\Windows\system32\d3dx11_42.dll
2010-02-11 19:05:44 ----A---- C:\Windows\system32\d3dx10_42.dll
2010-02-11 19:05:44 ----A---- C:\Windows\system32\d3dx10_41.dll
2010-02-11 19:05:44 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\XAudio2_3.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\xactengine3_4.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\xactengine3_3.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\D3DX9_40.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\d3dx10_40.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2010-02-11 19:05:43 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-02-11 19:05:42 ----A---- C:\Windows\system32\XAudio2_1.dll
2010-02-11 19:05:42 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2010-02-11 19:05:42 ----A---- C:\Windows\system32\xactengine3_1.dll
2010-02-11 19:05:42 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2010-02-11 19:05:42 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-02-11 19:05:42 ----A---- C:\Windows\system32\D3DX9_38.dll
2010-02-11 19:05:42 ----A---- C:\Windows\system32\d3dx10_38.dll
2010-02-11 19:05:42 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2010-02-11 19:05:41 ----A---- C:\Windows\system32\XAudio2_0.dll
2010-02-11 19:05:41 ----A---- C:\Windows\system32\xactengine3_0.dll
2010-02-11 19:05:41 ----A---- C:\Windows\system32\xactengine2_10.dll
2010-02-11 19:05:41 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2010-02-11 19:05:41 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2010-02-11 19:05:40 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2010-02-11 19:05:39 ----A---- C:\Windows\system32\xactengine2_9.dll
2010-02-11 19:05:39 ----A---- C:\Windows\system32\xactengine2_8.dll
2010-02-11 19:05:39 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2010-02-11 19:05:39 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2010-02-11 19:05:38 ----A---- C:\Windows\system32\xinput1_3.dll
2010-02-11 19:05:38 ----A---- C:\Windows\system32\xactengine2_7.dll
2010-02-11 19:05:38 ----A---- C:\Windows\system32\xactengine2_6.dll
2010-02-11 19:05:38 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2010-02-11 19:05:38 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2010-02-11 19:05:37 ----A---- C:\Windows\system32\xactengine2_5.dll
2010-02-11 19:05:37 ----A---- C:\Windows\system32\xactengine2_4.dll
2010-02-11 19:05:37 ----A---- C:\Windows\system32\x3daudio1_1.dll
2010-02-11 19:05:37 ----A---- C:\Windows\system32\d3dx9_32.dll
2010-02-11 19:05:37 ----A---- C:\Windows\system32\d3dx9_31.dll
2010-02-11 19:05:36 ----A---- C:\Windows\system32\xinput1_2.dll
2010-02-11 19:05:36 ----A---- C:\Windows\system32\xactengine2_3.dll
2010-02-11 19:05:35 ----A---- C:\Windows\system32\xinput1_1.dll
2010-02-11 19:05:35 ----A---- C:\Windows\system32\xactengine2_2.dll
2010-02-11 19:05:34 ----A---- C:\Windows\system32\xactengine2_1.dll
2010-02-11 19:05:33 ----A---- C:\Windows\system32\xactengine2_0.dll
2010-02-11 19:05:33 ----A---- C:\Windows\system32\x3daudio1_0.dll
2010-02-11 19:05:33 ----A---- C:\Windows\system32\d3dx9_29.dll
2010-02-11 19:05:33 ----A---- C:\Windows\system32\d3dx9_28.dll
2010-02-11 19:05:33 ----A---- C:\Windows\system32\d3dx9_27.dll
2010-02-11 19:05:33 ----A---- C:\Windows\system32\d3dx9_26.dll
2010-02-11 19:05:33 ----A---- C:\Windows\system32\d3dx9_25.dll
2010-02-11 19:05:33 ----A---- C:\Windows\system32\d3dx9_24.dll
2010-02-11 18:54:43 ----D---- C:\Windows\Sun
2010-02-11 15:18:26 ----A---- C:\Windows\system32\DXErr.exe
2010-02-11 15:18:26 ----A---- C:\Windows\system32\dxcpl.exe
2010-02-11 15:18:26 ----A---- C:\Windows\system32\d3dx9_36.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\ntdllnew.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\msvcrtnew.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\kernel32new.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\d3dx9_35.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\d3dx9_34.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\d3dx9_33.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\d3dx10_37.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\d3dx10_36.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\d3dx10_35.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\d3dx10_34.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\d3dx10_33.dll
2010-02-11 15:18:25 ----A---- C:\Windows\system32\d3dx10.dll
2010-02-11 15:18:24 ----A---- C:\Windows\system32\unins000.exe
2010-02-11 12:49:07 ----D---- C:\Windows\system32\directx
2010-02-11 12:02:24 ----A---- C:\Windows\system32\OpenCL.dll
2010-02-11 12:02:23 ----A---- C:\Windows\system32\nvoglv32.dll
2010-02-11 12:02:15 ----A---- C:\Windows\system32\nvencodemft.dll
2010-02-11 12:02:14 ----A---- C:\Windows\system32\nvdecodemft.dll
2010-02-11 12:02:12 ----A---- C:\Windows\system32\nvcuvid.dll
2010-02-11 12:02:12 ----A---- C:\Windows\system32\nvcuvenc.dll
2010-02-11 12:02:12 ----A---- C:\Windows\system32\nvcuda.dll
2010-02-11 12:02:02 ----A---- C:\Windows\system32\nvcompiler.dll
2010-02-11 12:02:00 ----A---- C:\Windows\system32\nvcod187.dll
2010-02-11 12:02:00 ----A---- C:\Windows\system32\nvcod.dll
2010-02-11 11:07:51 ----D---- C:\ProgramData\Innovative Solutions
2010-02-11 11:07:44 ----D---- C:\Program Files\Innovative Solutions
2010-02-11 10:49:34 ----D---- C:\Program Files\FileHippo.com
2010-02-10 20:21:26 ----D---- C:\Users\mato\AppData\Roaming\Desktopicon
2010-02-10 19:16:36 ----A---- C:\Windows\system32\quartz.dll
2010-02-10 19:16:35 ----A---- C:\Windows\system32\msvidc32.dll
2010-02-10 19:16:35 ----A---- C:\Windows\system32\mciavi32.dll
2010-02-10 19:16:35 ----A---- C:\Windows\system32\avifil32.dll
2010-02-10 19:16:34 ----A---- C:\Windows\system32\msyuv.dll
2010-02-10 19:16:34 ----A---- C:\Windows\system32\msrle32.dll
2010-02-10 19:16:34 ----A---- C:\Windows\system32\iyuv_32.dll
2010-02-10 19:16:33 ----A---- C:\Windows\system32\tsbyuv.dll
2010-02-10 19:16:29 ----A---- C:\Windows\system32\kernel32.dll
2010-02-10 19:16:28 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-02-10 19:16:27 ----A---- C:\Windows\system32\apphelp.dll
2010-02-10 19:16:26 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-02-10 19:16:23 ----A---- C:\Windows\system32\secproc_isv.dll
2010-02-10 19:16:23 ----A---- C:\Windows\system32\secproc.dll
2010-02-10 19:16:22 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-02-10 19:16:22 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-02-10 19:16:22 ----A---- C:\Windows\system32\RMActivate.exe
2010-02-10 19:16:21 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-02-10 19:16:21 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-02-10 19:16:21 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-02-10 12:27:06 ----D---- C:\Users\mato\AppData\Roaming\Canneverbe Limited
2010-02-10 12:27:06 ----D---- C:\ProgramData\Canneverbe Limited
2010-02-10 12:26:43 ----D---- C:\Program Files\CDBurnerXP
2010-02-10 02:55:07 ----D---- C:\Users\mato\AppData\Roaming\gtk-2.0
2010-02-08 20:15:08 ----D---- C:\Users\mato\AppData\Roaming\Google
2010-02-08 20:14:44 ----D---- C:\ProgramData\Google
2010-02-07 21:45:06 ----D---- C:\Users\mato\AppData\Roaming\ACD Systems
2010-02-07 16:32:17 ----D---- C:\Users\mato\AppData\Roaming\Opera
2010-02-05 17:36:09 ----D---- C:\Program Files\CyberLink
2010-02-05 15:42:56 ----D---- C:\Program Files\Opera
2010-02-05 15:42:02 ----D---- C:\Users\mato\AppData\Roaming\Nitro PDF
2010-02-05 15:40:32 ----A---- C:\Windows\system32\nitrolocalui.dll
2010-02-05 15:40:32 ----A---- C:\Windows\system32\nitrolocalmon.dll
2010-02-05 15:40:24 ----D---- C:\ProgramData\Nitro PDF
2010-02-05 15:40:24 ----D---- C:\Program Files\Common Files\Nitro PDF
2010-02-05 15:40:23 ----D---- C:\Program Files\Nitro PDF
2010-02-05 15:38:58 ----D---- C:\Users\mato\AppData\Roaming\Downloaded Installations
2010-02-05 15:13:24 ----D---- C:\Users\mato\AppData\Roaming\vlc
2010-02-05 15:12:46 ----D---- C:\Program Files\VideoLAN
2010-02-05 11:56:59 ----D---- C:\GGmenu
2010-02-05 10:26:40 ----D---- C:\CAD standardy
2010-02-05 10:17:00 ----D---- C:\Program Files\Common Files\InstallShield
2010-02-05 01:38:28 ----D---- C:\Users\mato\AppData\Roaming\QIP
2010-02-05 01:38:15 ----D---- C:\Program Files\QIP Infium
2010-02-05 01:28:34 ----D---- C:\Program Files\Infinium QIP
2010-02-05 01:21:49 ----D---- C:\Users\mato\AppData\Roaming\Macrovision
2010-02-05 01:20:50 ----A---- C:\ProgramData\HPWALog.txt
2010-02-05 01:20:48 ----D---- C:\Users\mato\AppData\Roaming\DigitalPersona
2010-02-05 00:57:35 ----A---- C:\Windows\system32\TURegOpt.exe
2010-02-05 00:57:31 ----A---- C:\Windows\system32\uxtuneup.dll
2010-02-05 00:57:31 ----A---- C:\Windows\system32\authuitu.dll
2010-02-05 00:57:13 ----D---- C:\Users\mato\AppData\Roaming\TuneUp Software
2010-02-05 00:57:01 ----D---- C:\Program Files\TuneUp Utilities 2010
2010-02-05 00:56:39 ----D---- C:\ProgramData\TuneUp Software
2010-02-05 00:56:34 ----SHD---- C:\ProgramData\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
2010-02-05 00:23:58 ----D---- C:\Program Files\WIDCOMM
2010-02-05 00:16:35 ----D---- C:\Program Files\Microsoft
2010-02-05 00:14:03 ----D---- C:\Program Files\Intel
2010-02-05 00:13:52 ----D---- C:\Intel
2010-02-05 00:09:23 ----D---- C:\Program Files\Validity Sensors
2010-02-05 00:06:47 ----D---- C:\ProgramData\Azureus
2010-02-05 00:06:26 ----D---- C:\Users\mato\AppData\Roaming\Azureus
2010-02-05 00:06:00 ----D---- C:\Program Files\Vuze
2010-02-05 00:05:50 ----D---- C:\Program Files\Conduit
2010-02-05 00:02:58 ----SHD---- C:\Config.Msi
2010-02-05 00:00:48 ----D---- C:\Program Files\Microsoft Silverlight
2010-02-04 23:58:24 ----D---- C:\Program Files\WinRAR
2010-02-04 23:26:17 ----D---- C:\Program Files\DAEMON Tools Lite
2010-02-04 23:26:01 ----D---- C:\Users\mato\AppData\Roaming\DAEMON Tools Lite
2010-02-04 23:25:59 ----D---- C:\ProgramData\DAEMON Tools Lite
2010-02-04 23:19:33 ----D---- C:\Program Files\Microsoft Works
2010-02-04 23:19:20 ----D---- C:\Program Files\Microsoft Visual Studio
2010-02-04 23:19:20 ----D---- C:\Program Files\Common Files\DESIGNER
2010-02-04 23:19:04 ----D---- C:\Windows\PCHEALTH
2010-02-04 23:17:22 ----D---- C:\Program Files\Microsoft Office
2010-02-04 23:16:12 ----RHD---- C:\MSOCache
2010-02-04 23:12:12 ----D---- C:\Users\mato\AppData\Roaming\WinRAR
2010-02-04 23:09:46 ----D---- C:\Users\mato\AppData\Roaming\Foxit
2010-02-04 23:09:46 ----D---- C:\Program Files\Foxit Software
2010-02-04 23:08:43 ----A---- C:\Windows\system32\unrar.dll
2010-02-04 23:08:42 ----A---- C:\Windows\avisplitter.ini
2010-02-04 23:08:36 ----A---- C:\Windows\system32\yv12vfw.dll
2010-02-04 23:08:35 ----A---- C:\Windows\system32\xvidvfw.dll
2010-02-04 23:08:35 ----A---- C:\Windows\system32\xvidcore.dll
2010-02-04 23:08:30 ----A---- C:\Windows\system32\ff_vfw.dll.manifest
2010-02-04 23:08:29 ----A---- C:\Windows\system32\ff_vfw.dll
2010-02-04 23:08:26 ----D---- C:\Program Files\K-Lite Codec Pack
2010-02-04 23:03:58 ----D---- C:\Program Files\JDownloader
2010-02-04 22:55:07 ----D---- C:\ProgramData\ACD Systems
2010-02-04 22:54:52 ----D---- C:\Program Files\Common Files\ACD Systems
2010-02-04 22:54:52 ----D---- C:\Program Files\ACD Systems
2010-02-04 22:49:35 ----A---- C:\Windows\system32\MRT.exe
2010-02-04 22:49:35 ----A---- C:\Windows\system32\aestecap.dll
2010-02-04 22:49:35 ----A---- C:\Windows\system32\aestaren.dll
2010-02-04 22:49:35 ----A---- C:\Windows\system32\aestacap.dll
2010-02-04 22:49:34 ----A---- C:\Windows\system32\idtmini1.exe
2010-02-04 22:49:34 ----A---- C:\Windows\system32\AESTCom.dll
2010-02-04 22:49:33 ----A---- C:\Windows\system32\stlang.dll
2010-02-04 22:49:33 ----A---- C:\Windows\sttray.exe
2010-02-04 22:49:30 ----D---- C:\Windows\system32\SRSLabs
2010-02-04 22:49:15 ----A---- C:\Windows\system32\staco.dll
2010-02-04 22:47:39 ----A---- C:\Windows\system32\stcplx.dll
2010-02-04 22:47:38 ----A---- C:\Windows\system32\stapo.dll
2010-02-04 22:47:38 -------- C:\Windows\system32\stapi32.dll
2010-02-04 22:47:15 ----D---- C:\Program Files\IDT
2010-02-04 22:45:52 ----D---- C:\Program Files\CCleaner
2010-02-04 22:42:47 ----D---- C:\Users\mato\AppData\Roaming\BSplayer PRO
2010-02-04 22:42:40 ----D---- C:\Program Files\Webteh
2010-02-04 22:36:11 ----D---- C:\Users\mato\AppData\Roaming\Autodesk
2010-02-04 22:36:11 ----D---- C:\ProgramData\FLEXnet
2010-02-04 22:25:33 ----D---- C:\Program Files\Common Files\Macrovision Shared
2010-02-04 22:23:06 ----D---- C:\ProgramData\Autodesk
2010-02-04 22:20:53 ----D---- C:\Program Files\Microsoft SDKs
2010-02-04 22:20:51 ----D---- C:\Program Files\Microsoft.NET
2010-02-04 22:20:50 ----D---- C:\ProgramData\Microsoft Help
2010-02-04 22:20:50 ----D---- C:\Program Files\Microsoft Visual Studio 9.0
2010-02-04 22:20:13 ----D---- C:\Program Files\Common Files\Autodesk Shared
2010-02-04 22:20:13 ----D---- C:\Program Files\Autodesk
2010-02-04 22:20:05 ----A---- C:\Windows\system32\d3dx9_37.dll
2010-02-04 22:19:58 ----A---- C:\Windows\system32\d3dx9_30.dll
2010-02-04 22:12:46 ----D---- C:\Users\mato\AppData\Roaming\hpqLog
2010-02-04 22:12:14 ----RA---- C:\Windows\system32\BttnCmn.dll
2010-02-04 22:12:14 ----D---- C:\Program Files\Hewlett-Packard
2010-02-04 22:12:14 ----A---- C:\Windows\system32\BttnCmns.dll
2010-02-04 22:12:10 ----HD---- C:\Program Files\InstallShield Installation Information
2010-02-04 22:10:09 ----D---- C:\Program Files\Validity Sensors, Inc
2010-02-04 22:09:09 ----D---- C:\Windows\system32\tr
2010-02-04 22:09:09 ----D---- C:\Windows\system32\sv
2010-02-04 22:09:09 ----D---- C:\Windows\system32\ru
2010-02-04 22:09:09 ----D---- C:\Windows\system32\no
2010-02-04 22:09:09 ----D---- C:\Windows\system32\da
2010-02-04 22:09:07 ----D---- C:\Windows\system32\ko
2010-02-04 22:09:07 ----D---- C:\Windows\system32\ja
2010-02-04 22:09:07 ----D---- C:\Windows\system32\it
2010-02-04 22:09:07 ----D---- C:\Windows\system32\fr
2010-02-04 22:09:07 ----D---- C:\Windows\system32\es
2010-02-04 22:09:07 ----D---- C:\Windows\system32\de
2010-02-04 22:09:06 ----D---- C:\Windows\DPDrv
2010-02-04 22:09:04 ----D---- C:\ProgramData\Macrovision
2010-02-04 22:09:04 ----D---- C:\Program Files\DigitalPersona
2010-02-04 22:08:28 ----D---- C:\ProgramData\Downloaded Installations
2010-02-04 22:08:03 ----D---- C:\swsetup
2010-02-04 22:01:02 ----D---- C:\ProgramData\Sun
2010-02-04 22:01:01 ----D---- C:\Windows\system32\Adobe
2010-02-04 22:01:00 ----D---- C:\Program Files\Common Files\Java
2010-02-04 21:57:24 ----A---- C:\Windows\system32\javaws.exe
2010-02-04 21:57:24 ----A---- C:\Windows\system32\javaw.exe
2010-02-04 21:57:24 ----A---- C:\Windows\system32\java.exe
2010-02-04 21:57:24 ----A---- C:\Windows\system32\deploytk.dll
2010-02-04 21:57:13 ----D---- C:\Program Files\Java
2010-02-04 21:54:26 ----D---- C:\Users\mato\AppData\Roaming\Macromedia
2010-02-04 21:54:26 ----D---- C:\Users\mato\AppData\Roaming\Adobe
2010-02-04 21:49:51 ----D---- C:\Windows\system32\AGEIA
2010-02-04 21:49:49 ----D---- C:\Program Files\AGEIA Technologies
2010-02-04 21:49:32 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2010-02-04 21:49:29 ----D---- C:\Program Files\NVIDIA Corporation
2010-02-04 21:48:24 ----A---- C:\Windows\system32\nvwgf2um.dll
2010-02-04 21:48:22 ----A---- C:\Windows\system32\nvd3dum.dll
2010-02-04 21:48:20 ----A---- C:\Windows\system32\nvcod178.dll
2010-02-04 21:48:20 ----A---- C:\Windows\system32\nvapi.dll
2010-02-04 21:48:19 ----D---- C:\NVIDIA
2010-02-04 21:41:11 ----D---- C:\Windows\system32\Macromed
2010-02-04 21:12:12 ----D---- C:\ProgramData\ESET
2010-02-04 21:12:12 ----D---- C:\Program Files\ESET
2010-02-04 21:02:59 ----D---- C:\Program Files\Google
2010-02-04 20:51:10 ----A---- C:\Windows\system32\msv1_0.dll
2010-02-04 20:50:10 ----A---- C:\Windows\system32\tzres.dll
2010-02-04 20:49:03 ----SHD---- C:\Windows\Installer
2010-02-04 20:48:56 ----A---- C:\Windows\system32\nvuninst.exe
2010-02-04 20:48:13 ----A---- C:\Windows\system32\winlogon.exe
2010-02-04 20:48:13 ----A---- C:\Windows\explorer.exe
2010-02-04 20:48:12 ----A---- C:\Windows\system32\msasn1.dll
2010-02-04 20:48:11 ----A---- C:\Windows\system32\wmp.dll
2010-02-04 20:48:10 ----A---- C:\Windows\system32\CertEnroll.dll
2010-02-04 20:48:09 ----A---- C:\Windows\system32\wmploc.DLL
2010-02-04 20:48:09 ----A---- C:\Windows\system32\winresume.exe
2010-02-04 20:48:09 ----A---- C:\Windows\system32\winload.exe
2010-02-04 20:48:08 ----A---- C:\Windows\system32\t2embed.dll
2010-02-04 20:48:08 ----A---- C:\Windows\system32\atmfd.dll
2010-02-04 20:48:07 ----A---- C:\Windows\system32\fontsub.dll
2010-02-04 20:48:05 ----A---- C:\Windows\system32\mshtml.dll
2010-02-04 20:48:04 ----A---- C:\Windows\system32\wininet.dll
2010-02-04 20:48:04 ----A---- C:\Windows\system32\urlmon.dll
2010-02-04 20:48:04 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-02-04 20:48:04 ----A---- C:\Windows\system32\ieframe.dll
2010-02-04 20:48:04 ----A---- C:\Windows\system32\iedkcs32.dll
2010-02-04 20:47:01 ----D---- C:\Users\mato\AppData\Roaming\Mozilla
2010-02-04 20:46:34 ----N---- C:\Windows\system32\MpSigStub.exe
2010-02-04 20:45:34 ----D---- C:\Windows\pss
2010-02-04 20:40:43 ----D---- C:\Program Files\Mozilla Firefox
2010-02-04 20:37:30 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-02-04 20:34:37 ----D---- C:\Users\mato\AppData\Roaming\Identities
2010-02-04 20:34:20 ----SD---- C:\Users\mato\AppData\Roaming\Microsoft
2010-02-04 20:34:20 ----D---- C:\Users\mato\AppData\Roaming\Media Center Programs
2010-02-04 20:34:11 ----SHD---- C:\Recovery
2010-02-04 20:29:26 ----D---- C:\Windows\SoftwareDistribution
2010-02-04 20:26:36 ----D---- C:\Windows\Prefetch
2010-02-04 20:25:33 ----D---- C:\Windows\Panther
2010-02-04 20:13:32 ----SHD---- C:\System Volume Information
2010-01-18 07:30:48 ----A---- C:\Windows\system32\msvcr71.dll
2010-01-18 07:30:46 ----A---- C:\Windows\system32\msvcp71.dll
======List of files/folders modified in the last 1 months======