Nejde spustit správce úloh jedná se o vir?
Napsal: 19 úno 2010 14:56
Ahoj , mám problém , sestra si vybírala meily a nejspíš stáhla i nějakou přílohu. Nemůžu spustit správce úloh a ukazuje se mi antivir Security Essential 2010 i když jsem ho nestahoval , slyšel jsem že to je trojan či co. Jak se ho mám nadobro zbavit ? Ten správce mi píše že ho správce tohoto systému zakázal i když jsem s tím nic nedělal, mám nainstalovaný Microsoft security essentials a Spywere terminator. Microsoft mi napsal že nalezl toto: Trojan:Win32/Alureon.CT , Backdoor: Win32/Trenk!rts , TrojanDownloader:Win32/Renos.KR a Trojan:Win32/Meredrop Spywere Terminator mi našel take nějaké 3 problémi co s tím ? tady je logfile z Spyweru.
Logfile of Spyware Terminator v2.3.0.494 (db:1.000.000.000)
Scan Time: 19.2.2010 13:12:07 length: 5925 s
Platform: VISTA (6.1.0.7600)
User: Admin
Boot Mode: Normal
Scan type: Full_Virus__Spyware_Scan
Scanned Objects: 153051 (Critical:3)
Filter: No System items, No Safe items, No Invalid items
Running Processes
MsMpEng.exe [Microsoft Corporation] : C:\Program Files\Microsoft Security Essentials\MsMpEng.exe
ijplmsvc.exe : C:\Program Files\Canon\IJPLM\ijplmsvc.exe
LSSrvc.exe [Hewlett-Packard Company] : C:\Program Files\Common Files\LightScribe\LSSrvc.exe
NBService.exe [Nero AG] : C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
ULCDRSvr.exe [Ulead Systems, Inc.] : C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
Yw1.exe : C:\Users\Pepa\AppData\Local\Temp\Yw1.exe
msa.exe : C:\Windows\msa.exe
DTVSchdl.exe [Leadtek Research Inc.] : C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
WFWIZ.exe [Leadtek Research Inc.] : C:\Program Files\WinFast\WFDTV\WFWIZ.exe
BJMYPRT.EXE [CANON INC.] : C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
jusched.exe [Sun Microsystems, Inc.] : C:\Program Files\Common Files\Java\Java Update\jusched.exe
vsnpstd3.exe : C:\Windows\vsnpstd3.exe
LaunchApplication.exe [Nokia] : C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
msseces.exe [Microsoft Corporation] : C:\Program Files\Microsoft Security Essentials\msseces.exe
uTorrent.exe [BitTorrent, Inc.] : C:\Program Files\uTorrent\uTorrent.exe
sidebar.exe [Microsoft Corporation] : C:\Program Files\Windows Sidebar\sidebar.exe
DTLite.exe [DT Soft Ltd] : C:\Program Files\DAEMON Tools Lite\DTLite.exe
rundll32.exe [Microsoft Corporation] : C:\Windows\system32\rundll32.exe
ServiceLayer.exe [Nokia.] : C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
wmpnetwk.exe [Microsoft Corporation] : C:\Program Files\Windows Media Player\wmpnetwk.exe
chrome.exe [Google Inc.] : C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
chrome.exe [Google Inc.] : C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
chrome.exe [Google Inc.] : C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
chrome.exe [Google Inc.] : C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
Internet Settings
R - HKLM\Software\Microsoft\Internet Explorer\Main, Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R - HKLM\System\CurrentControlSet\Services\Tcpip\Parameters, Domain =
BHO
02 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - [Sun Microsystems, Inc.] : C:\Program Files\Java\jre6\bin\jp2ssv.dll
Toolbars
03 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - : C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
StartUps
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Google Update : [Google Inc.] : C:\Users\Pepa\AppData\LOCAL\GOOGLE\UPDATE\GOOGLEUPDATE.EXE
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, uTorrent : [BitTorrent, Inc.] : C:\Program Files\uTorrent\uTorrent.exe
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sidebar : [Microsoft Corporation] : C:\Program Files\Windows Sidebar\sidebar.exe
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DAEMON Tools Lite : [DT Soft Ltd] : C:\Program Files\DAEMON Tools Lite\DTLite.exe
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, LosAlamos : : C:\Windows\system32\sshnas21.dll
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, TOY5KNQ8OC : : C:\Users\Pepa\AppData\Local\Temp\Yw1.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WinFastDTV : [Leadtek Research Inc.] : C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WinFast Schedule : [Leadtek Research Inc.] : C:\Program Files\WinFast\WFDTV\WFWIZ.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CanonSolutionMenu : [CANON INC.] : C:\Program Files\CANON\SOLUTIONMENU\CNSLMAIN.EXE
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CanonMyPrinter : [CANON INC.] : C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, SunJavaUpdateSched : [Sun Microsystems, Inc.] : C:\Program Files\Common Files\Java\Java Update\jusched.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, AdobeCS4ServiceManager : [Adobe Systems Incorporated] : C:\Program Files\Common Files\ADOBE\CS4SERVICEMANAGER\CS4SERVICEMANAGER.EXE
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, snpstd3 : : C:\Windows\vsnpstd3.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tsnpstd3 : : C:\Windows\tsnpstd3.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, PCSuiteTrayApplication : [Nokia] : C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSE : [Microsoft Corporation] : C:\Program Files\Microsoft Security Essentials\msseces.exe
Shell Extensions
MF ADTS Property Handler - {80009818-f38f-4af1-87b5-eadab9433e58} - [Microsoft Corporation] : C:\Windows\system32\mf.dll
TCUP: Shell Extention - {544F5441-4C43-4D44-5550-5348454C4C00} - : C:\Program Files\TC UP\PLUGINS\Library\TCUPShellExt.dll
NeroCoverEdLiveIcons Class - {97F68CE3-7146-45FF-BE24-D9A7DD7CB8A2} - [Nero AG] : C:\Program Files\Nero\Nero 9\Nero CoverDesigner\CoverEdExtension.dll
Nokia Phone Browser - {416651E4-9C3C-11D9-8BDE-F66BAD1E3F3A} - [Nokia] : C:\Program Files\Nokia\Nokia PC Suite 6\PhoneBrowser.dll
Protocol Handler
MHTML Asynchronous Pluggable Protocol Handler - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - [Microsoft Corporation] : C:\Windows\system32\inetcomm.dll
Services
23 - [Arcsoft, Inc.] : C:\Windows\system32\drivers\Afc.sys
23 - [Advanced Micro Devices] : C:\Windows\system32\DRIVERS\amdxata.sys
23 - [Microsoft Corporation] : C:\Windows\system32\DRIVERS\bowser.sys
23 - [Microsoft Corporation] : C:\Windows\system32\Drivers\dfsc.sys
23 - [Microsoft Corporation] : C:\Windows\system32\drivers\discache.sys
23 - [ASUSTeK Computer Inc.] : C:\Windows\system32\drivers\EIO.sys
23 - : C:\Program Files\Canon\IJPLM\ijplmsvc.exe
23 - [Hewlett-Packard Company] : C:\Program Files\Common Files\LightScribe\LSSrvc.exe
23 - [Microsoft Corporation] : C:\Windows\system32\DRIVERS\mrxsmb10.sys
23 - [Microsoft Corporation] : C:\Program Files\Microsoft Security Essentials\MsMpEng.exe
23 - [Microsoft Corporation] : C:\Windows\system32\DRIVERS\mssmbios.sys
23 - [Nero AG] : C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
23 - [NVIDIA Corporation] : C:\Windows\system32\DRIVERS\nvm62x32.sys
23 - [NVIDIA Corporation] : C:\Windows\system32\DRIVERS\nvlddmkm.sys
23 - [NVIDIA Corporation] : C:\Windows\system32\DRIVERS\nvstor.sys
23 - [Nokia.] : C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
23 - : C:\Windows\system32\Drivers\sptd.sys
23 - [Ulead Systems, Inc.] : C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
23 - [Leadtek Research Inc.] : C:\Program Files\WinFast\WFDTV\WFIOCTL.SYS
23 - [Leadtek Research Inc.] : C:\Windows\system32\drivers\wfeaglxt.sys
23 - [Microsoft Corporation] : C:\Program Files\Windows Media Player\wmpnetwk.exe
23 - [Crawler.com] : C:\Windows\system32\drivers\sp_rsdrv2.sys
System Policies
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer, NoActiveDesktopChanges : :
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableTaskMgr : :
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop, NoChangingWallPaper : :
Threat Files
<Server-FTP.SFH.d> : C:\Program Files\TC UP\PLUGINS\Tools\HFS\hfs.exe
<AdTool.MyWebSearch.bm> : C:\Users\Pepa\AppData\Local\Temp\NERO1004803\unit_app_75\Toolbar.exe
Advanced Files Report
%PROGRAMFILES%\Microsoft Security Essentials\MsMpEng.exe [Microsoft Corporation] [Microsoft Malware Protection] MD5=FBE736AF381983A1D4ADBBF1FACF6976 SIZE=17904
%SYSDIR%\CNMLM9H.DLL [CANON INC.] [Canon IJ Printer Driver] MD5=7227043C783F12F9FB1F312BFF791660 SIZE=230912
%SYSDIR%\spool\PRTPROCS\W32X86\CNMPD9H.DLL [CANON INC.] [Canon IJ Printer Driver] MD5=053A5647034E7F7447EC2584D5CEED34 SIZE=27136
%PROGRAMFILES%\Canon\IJPLM\ijplmsvc.exe [IJPLMSVC] MD5=755519F49906B73C1FE9CBBF75E347EA SIZE=103808
%COMMONFILES%\LightScribe\LSSrvc.exe [Hewlett-Packard Company] [LightScribe] MD5=108333981C841EB0FF198AA5DFCF3D3B SIZE=73728
%COMMONFILES%\LightScribe\LSSProxy.dll [Hewlett-Packard Company] [LightScribe] MD5=D73B5BEFC8BB6E877A7E6437E2613FFA SIZE=110592
%COMMONFILES%\LightScribe\LSLog.dll [Hewlett-Packard Company] [LightScribe] MD5=61DACB0FBB1F7237FFEF769C23C903AF SIZE=33792
%COMMONFILES%\Nero\Nero BackItUp 4\NBService.exe [Nero AG] [Nero BackItUp] MD5=B90E093E7A7250906F1054418B5339C0 SIZE=935208
%COMMONFILES%\Nero\Nero BackItUp 4\NB.dll [Nero AG] [Nero BackItUp] MD5=D167CA427516B8C416B746117F69B870 SIZE=1160488
%COMMONFILES%\Nero\Nero BackItUp 4\LBFC.dll [Nero AG] [Nero BackItUp] MD5=5F5360825D2B829121E78E84D4CB8785 SIZE=451880
%COMMONFILES%\Nero\Nero BackItUp 4\NBBurn.dll [Nero AG] [Nero BackItUp] MD5=81DA72712DF46480E6248AEB35E15FCC SIZE=275752
%COMMONFILES%\Nero\Nero BackItUp 4\NeroAPIGlueLayerUnicode.dll [Nero AG] [NeroAPIGlueLayerUnicode] MD5=8E2D68A36FCB58A8DA57DE3E064F39CC SIZE=181544
%COMMONFILES%\Ulead Systems\DVD\ULCDRSvr.exe [Ulead Systems, Inc.] [Ulead Systems ULCDRSvr] MD5=332D341D92B933600D41953B08360DFB SIZE=49152
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\PhoneBrowser.dll [Nokia] [Phone Browser] MD5=83B84455615CA7E25A4E15C3890E2D58 SIZE=563200
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\PCSCM.dll [Nokia] [PC Suite Common Modules] MD5=0E51263EA765F9AB45AA8F04CADB22B9 SIZE=659456
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\Lang\PhoneBrowser_cze.nlr [Nokia] [Nokia Phone Browser] MD5=40F8D9ED9B9B18E93EB247DEEF74E6F8 SIZE=28160
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\Resource\PhoneBrowser_Nokia.ngr [Nokia] [Nokia Phone Browser] MD5=B058E4E76A4524DC13FC44B7829FEE5F SIZE=543744
%PROGRAMFILES%\ArcSoft\Software Suite\PhotoImpression 5\share\pihook.dll MD5=9064D871EF0125B58CC58AFC767F1E47 SIZE=53248
%COMMONFILES%\Adobe\Adobe Drive CS4\BIB.dll [Adobe Systems Incorporated] [BIB 2008/06/03-17:36:12] MD5=87AF77718E3BFB5A7766F575609C057A SIZE=276992
%COMMONFILES%\Adobe\Adobe Version Cue CS4\Client\4.0.0\VersionCue.DLL [Adobe Systems, Incorporated] [Adobe VersionCue] MD5=A12F7C8E171E67E3D71358BF3AF10163 SIZE=1414496
%WINDIR%\msa.exe MD5=09E37D3474E616F9D257B7B933DF14E0 SIZE=161792
%PROGRAMFILES%\Canon\MyPrinter\BJMyRes.dll [CANON INC.] [Canon My Printer] MD5=A5327EBE026244837F56DAD114C227A4 SIZE=90112
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\PCSSupportSetup.DLL [Nokia] [Nokia Connectivity Library] MD5=F7C6D906CE4CF1EBE64DCE92DA54A7A9 SIZE=77824
%PROGRAMFILES%\PC Connectivity Solution\ConnAPI.DLL [Nokia.] [PC Connectivity Solution] MD5=6EDB0B1E5CE652CB7261CD1B96CB25FD SIZE=429056
%PROGRAMFILES%\PC Connectivity Solution\ConfServer.dll [Nokia] [PC Connectivity Solution] MD5=20CC8683720C80E4412AAA0F16DD0082 SIZE=188416
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\Lang\LaunchApplication_cze.NLR [Nokia] MD5=A4E0157639D6295A8B62B39105EFCC27 SIZE=13312
%USERPROFILE%\Local\Microsoft\Windows Sidebar\Gadgets\Stahování z netu.gadget\netlib.dll [Jonathan Abbott] [NIC Information .NET Wrapper] MD5=942889718D170DA972E710F9BC1D7BE5 SIZE=20480
%SYSDIR%\nvd3dum.dll [NVIDIA Corporation] [NVIDIA Windows Vista WDDM driver] MD5=DD6D6D7C8E644904D897FCED6B09BD02 SIZE=7592960
%PROGRAMFILES%\DAEMON Tools Lite\DTCommonRes.dll [DT Soft Ltd] [DAEMON Tools Lite] MD5=D8F8768B624847472AF413DF94972986 SIZE=1344048
%PROGRAMFILES%\DAEMON Tools Lite\DTLiteUI.dll [DT Soft Ltd] [DAEMON Tools Lite] MD5=F72C338065ABBDF20403E76E32FB304B SIZE=397872
%PROGRAMFILES%\DAEMON Tools Lite\Engine.dll [DT Soft Ltd] [DAEMON Tools Lite] MD5=4EB846BBBE51C67D066C5F9FA997CD58 SIZE=2318896
%PROGRAMFILES%\DAEMON Tools Lite\imgengine.dll [DT Soft Ltd.] [DAEMON Tools Image Engine] MD5=21500EE9073A483752BD3162F39E34DB SIZE=282056
%SYSDIR%\rundll32.exe [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=51138BEEA3E2C21EC44D0932C71762A8 SIZE=44544
%PROGRAMFILES%\PC Connectivity Solution\ServiceLayer.exe [Nokia.] [PC Connectivity Solution] MD5=019AB047B932AD277A4DA2673E5CC19C SIZE=300544
%PROGRAMFILES%\PC Connectivity Solution\NclTools.dll [Nokia] [PC Connectivity Solution] MD5=A8AC6EBC90EEF4D3AF15D9B98F23A8EF SIZE=135168
%PROGRAMFILES%\PC Connectivity Solution\Transports\NCLIrDAMM.dll [Nokia Corp.] [PC Connectivity Solution] MD5=01EE6FDC94168D5F06EFC758470C3F7B SIZE=127488
%PROGRAMFILES%\PC Connectivity Solution\Transports\NCLRSMM.dll [Nokia Corp.] [PC Connectivity Solution] MD5=02B1B5469314AD2A14E1F9635B677F30 SIZE=156672
%PROGRAMFILES%\PC Connectivity Solution\Transports\NCLUSBMM.dll [Nokia Corp.] [PC Connectivity Solution] MD5=C1DDF1C948242F935B283BC8ED1DDB45 SIZE=167424
%PROGRAMFILES%\PC Connectivity Solution\Transports\NclMSBTMM.dll [Nokia Corp.] [PC Connectivity Solution] MD5=56E1439FEB2BEDB986F9045C140F9ADE SIZE=166400
%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=77FBD400984CF72BA0FC4B3489D65F74 SIZE=1121280
%COMMONFILES%\Adobe\Adobe Drive CS4\AdobeDriveCS4_NP.dll [Adobe Systems Incorporated] [Adobe Drive CS4] MD5=185D50DA1832A734DC9826037E82BE40 SIZE=79240
%PROGRAMFILES%\WinClamAVShield\ClamAVServer.dll [Crawler, LLC] [CLAMAVServer] MD5=06BB9EDA9B7D93BF078FC135977A82AF SIZE=135168
%PROGRAMFILES%\WinClamAVShield\libclamav.dll [ClamWin Antivirus] MD5=97290402B38494EF36A575335BBCC954 SIZE=973312
%PROGRAMFILES%\WinClamAVShield\libclamunrar_iface.dll [ClamWin Antivirus] MD5=ACAFC7FD7C8D0BBEB69999487BEB58FD SIZE=45056
%PROGRAMFILES%\WinClamAVShield\libclamunrar.dll [ClamWin Antivirus] MD5=4CD796A1EBF08D73A1571E78F3891163 SIZE=62464
%USERPROFILE%\Local\Google\Chrome\Application\chrome.exe [Google Inc.] [Google Chrome] MD5=A11B4EA812B993F18420A0FB54FF8605 SIZE=527344
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\chrome.dll [Google Inc.] [Google Chrome] MD5=D4F7EA9854D884B4292EC02B88244347 SIZE=14492144
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\icudt42.dll [IBM Corporation and others] [International Components for Unicode] MD5=79CBDE440E195A8ABEC2B053E0DB3AD7 SIZE=10947056
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\gears.dll [Google Inc.] [Google Gears 0.5.33.0] MD5=05B854551B611D688966F9E643EA5568 SIZE=3184112
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\rlz.dll MD5=FC627890FF28F6CA119C0EDF7FA7E64C SIZE=109040
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\avcodec-52.dll MD5=BE8A290B996C1BFECB4A053FC50496B4 SIZE=1112560
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\avutil-50.dll MD5=9839634F601D649A2C2F9B91E32F43F4 SIZE=61424
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\avformat-52.dll MD5=5049828E3A9192EE7152A8E8D7686288 SIZE=135152
%SYSDIR%\Macromed\Flash\NPSWF32.dll [Adobe Systems, Inc.] [Shockwave Flash] MD5=F8EFDCFC440A420D6C1ECD245AB20207 SIZE=3884312
%PROGRAMFILES%\Securityessentials2010\SE2010.exe
%PROGRAMFILES%\softonicen\tbsoft.dl
%SYSDIR%\mf.dll [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=80EFBCAFBD26956B69EE9CEFC93423B0 SIZE=3177984
%PROGRAMFILES%\TC UP\PLUGINS\Library\TCUPShellExt.dll MD5=22AB2F0F9179D94644124FF1B524E6BB SIZE=160256
%PROGRAMFILES%\Nero\Nero 9\Nero CoverDesigner\CoverEdExtension.dll [Nero AG] [Cover Designer] MD5=314F4D23D1B710AB7614600185E52034 SIZE=2241832
%SYSDIR%\svchost.exe -k netsvcs
%SYSDIR%\drivers\Afc.sys [Arcsoft, Inc.] [Arcsoft(R) ASPI Shell] MD5=A7B8A3A79D35215D798A300DF49ED23F SIZE=11776
%SYSDIR%\DRIVERS\amdxata.sys [Advanced Micro Devices] [Storage Filter Driver] MD5=B81C2B5616F6420A9941EA093A92B150 SIZE=23616
%SYSDIR%\svchost.exe -k LocalSystemNetworkRestricted
%SYSDIR%\svchost.exe -k LocalServiceNetworkRestricted
%SYSDIR%\svchost.exe -k LocalServiceNoNetwork
%SYSDIR%\DRIVERS\bowser.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=FCAFAEF6798D7B51FF029F99A9898961 SIZE=69632
%SYSDIR%\svchost.exe -k NetworkService
%SYSDIR%\svchost.exe -k DcomLaunch
%SYSDIR%\Drivers\dfsc.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=8E09E52EE2E3CEB199EF3DD99CF9E3FB SIZE=78336
%SYSDIR%\drivers\discache.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=1A050B0274BFB3890703D490F330C0DA SIZE=32256
%SYSDIR%\drivers\EIO.sys [ASUSTeK Computer Inc.] [ASUS Kernel Mode Driver for NT] MD5=0DAF3544804650526751C478AECCCE63 SIZE=12288
%SYSDIR%\svchost.exe -k LocalService
%SYSDIR%\svchost.exe -k LocalServiceAndNoImpersonation
%SYSDIR%\DRIVERS\mrxsmb10.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=6532ACBF612A8D340EF9E25E4FEF21EE SIZE=221184
%SYSDIR%\DRIVERS\mssmbios.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=FC6B9FF600CC585EA38B12589BD4E246 SIZE=28240
%SYSDIR%\DRIVERS\nvm62x32.sys [NVIDIA Corporation] [NVIDIA Networking Driver] MD5=B5E37E31C053BC9950455A257526514B SIZE=347264
%SYSDIR%\DRIVERS\nvlddmkm.sys [NVIDIA Corporation] [NVIDIA Windows Kernel Mode Driver, Version 185.93] MD5=B0881DDA5A8160422561FFAB7F0008B1 SIZE=9853248
%SYSDIR%\DRIVERS\nvstor.sys [NVIDIA Corporation] [NVIDIA nForce(TM) SATA Driver] MD5=C99F251A5DE63C6F129CF71933ACED0F SIZE=142416
%SYSDIR%\svchost.exe -k LocalServicePeerNet
%SYSDIR%\svchost.exe -k NetworkServiceNetworkRestricted
%SYSDIR%\svchost.exe -k RPCSS
%SYSDIR%\Drivers\sptd.sys SIZE=691696
%SYSDIR%\svchost.exe -k imgsvc
%PROGRAMFILES%\WinFast\WFDTV\WFIOCTL.SYS [Leadtek Research Inc.] [WinFast MultiMedia Device Driver (Windows 2000/XP)] MD5=9BC98A4E3401D52ED860CF883CCB7478 SIZE=9446
%SYSDIR%\drivers\wfeaglxt.sys [Leadtek Research Inc.] [wfeaglxt.sys] MD5=439FFDA8B6BCF6F3D7C4F3A41AF55A4B SIZE=405632
%SYSDIR%\SearchIndexer.exe \Embedding
%SYSDIR%\drivers\sp_rsdrv2.sys [Crawler.com] [Spyware Terminator] MD5=CCD6E6C387E3EFA3BA5FE0E7883821C1 SIZE=141312
%SYSDIR%\mscoree.dll [Microsoft Corporation] [Microsoft® .NET Framework] MD5=3CDEDF4059A2BDBB9CD888EA1979D54C SIZE=278864
%SYSDIR%\inetcomm.dll [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=5E5DFC8EE7EA23CCAD44085BFDA70FBC SIZE=740864
End of Report
Logfile of Spyware Terminator v2.3.0.494 (db:1.000.000.000)
Scan Time: 19.2.2010 13:12:07 length: 5925 s
Platform: VISTA (6.1.0.7600)
User: Admin
Boot Mode: Normal
Scan type: Full_Virus__Spyware_Scan
Scanned Objects: 153051 (Critical:3)
Filter: No System items, No Safe items, No Invalid items
Running Processes
MsMpEng.exe [Microsoft Corporation] : C:\Program Files\Microsoft Security Essentials\MsMpEng.exe
ijplmsvc.exe : C:\Program Files\Canon\IJPLM\ijplmsvc.exe
LSSrvc.exe [Hewlett-Packard Company] : C:\Program Files\Common Files\LightScribe\LSSrvc.exe
NBService.exe [Nero AG] : C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
ULCDRSvr.exe [Ulead Systems, Inc.] : C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
Yw1.exe : C:\Users\Pepa\AppData\Local\Temp\Yw1.exe
msa.exe : C:\Windows\msa.exe
DTVSchdl.exe [Leadtek Research Inc.] : C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
WFWIZ.exe [Leadtek Research Inc.] : C:\Program Files\WinFast\WFDTV\WFWIZ.exe
BJMYPRT.EXE [CANON INC.] : C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
jusched.exe [Sun Microsystems, Inc.] : C:\Program Files\Common Files\Java\Java Update\jusched.exe
vsnpstd3.exe : C:\Windows\vsnpstd3.exe
LaunchApplication.exe [Nokia] : C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
msseces.exe [Microsoft Corporation] : C:\Program Files\Microsoft Security Essentials\msseces.exe
uTorrent.exe [BitTorrent, Inc.] : C:\Program Files\uTorrent\uTorrent.exe
sidebar.exe [Microsoft Corporation] : C:\Program Files\Windows Sidebar\sidebar.exe
DTLite.exe [DT Soft Ltd] : C:\Program Files\DAEMON Tools Lite\DTLite.exe
rundll32.exe [Microsoft Corporation] : C:\Windows\system32\rundll32.exe
ServiceLayer.exe [Nokia.] : C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
wmpnetwk.exe [Microsoft Corporation] : C:\Program Files\Windows Media Player\wmpnetwk.exe
chrome.exe [Google Inc.] : C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
chrome.exe [Google Inc.] : C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
chrome.exe [Google Inc.] : C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
chrome.exe [Google Inc.] : C:\Users\Pepa\AppData\Local\Google\Chrome\Application\chrome.exe
Internet Settings
R - HKLM\Software\Microsoft\Internet Explorer\Main, Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R - HKLM\System\CurrentControlSet\Services\Tcpip\Parameters, Domain =
BHO
02 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - [Sun Microsystems, Inc.] : C:\Program Files\Java\jre6\bin\jp2ssv.dll
Toolbars
03 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - : C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
StartUps
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Google Update : [Google Inc.] : C:\Users\Pepa\AppData\LOCAL\GOOGLE\UPDATE\GOOGLEUPDATE.EXE
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, uTorrent : [BitTorrent, Inc.] : C:\Program Files\uTorrent\uTorrent.exe
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, Sidebar : [Microsoft Corporation] : C:\Program Files\Windows Sidebar\sidebar.exe
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DAEMON Tools Lite : [DT Soft Ltd] : C:\Program Files\DAEMON Tools Lite\DTLite.exe
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, LosAlamos : : C:\Windows\system32\sshnas21.dll
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, TOY5KNQ8OC : : C:\Users\Pepa\AppData\Local\Temp\Yw1.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WinFastDTV : [Leadtek Research Inc.] : C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, WinFast Schedule : [Leadtek Research Inc.] : C:\Program Files\WinFast\WFDTV\WFWIZ.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CanonSolutionMenu : [CANON INC.] : C:\Program Files\CANON\SOLUTIONMENU\CNSLMAIN.EXE
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, CanonMyPrinter : [CANON INC.] : C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, SunJavaUpdateSched : [Sun Microsystems, Inc.] : C:\Program Files\Common Files\Java\Java Update\jusched.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, AdobeCS4ServiceManager : [Adobe Systems Incorporated] : C:\Program Files\Common Files\ADOBE\CS4SERVICEMANAGER\CS4SERVICEMANAGER.EXE
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, snpstd3 : : C:\Windows\vsnpstd3.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, tsnpstd3 : : C:\Windows\tsnpstd3.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, PCSuiteTrayApplication : [Nokia] : C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MSSE : [Microsoft Corporation] : C:\Program Files\Microsoft Security Essentials\msseces.exe
Shell Extensions
MF ADTS Property Handler - {80009818-f38f-4af1-87b5-eadab9433e58} - [Microsoft Corporation] : C:\Windows\system32\mf.dll
TCUP: Shell Extention - {544F5441-4C43-4D44-5550-5348454C4C00} - : C:\Program Files\TC UP\PLUGINS\Library\TCUPShellExt.dll
NeroCoverEdLiveIcons Class - {97F68CE3-7146-45FF-BE24-D9A7DD7CB8A2} - [Nero AG] : C:\Program Files\Nero\Nero 9\Nero CoverDesigner\CoverEdExtension.dll
Nokia Phone Browser - {416651E4-9C3C-11D9-8BDE-F66BAD1E3F3A} - [Nokia] : C:\Program Files\Nokia\Nokia PC Suite 6\PhoneBrowser.dll
Protocol Handler
MHTML Asynchronous Pluggable Protocol Handler - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - [Microsoft Corporation] : C:\Windows\system32\inetcomm.dll
Services
23 - [Arcsoft, Inc.] : C:\Windows\system32\drivers\Afc.sys
23 - [Advanced Micro Devices] : C:\Windows\system32\DRIVERS\amdxata.sys
23 - [Microsoft Corporation] : C:\Windows\system32\DRIVERS\bowser.sys
23 - [Microsoft Corporation] : C:\Windows\system32\Drivers\dfsc.sys
23 - [Microsoft Corporation] : C:\Windows\system32\drivers\discache.sys
23 - [ASUSTeK Computer Inc.] : C:\Windows\system32\drivers\EIO.sys
23 - : C:\Program Files\Canon\IJPLM\ijplmsvc.exe
23 - [Hewlett-Packard Company] : C:\Program Files\Common Files\LightScribe\LSSrvc.exe
23 - [Microsoft Corporation] : C:\Windows\system32\DRIVERS\mrxsmb10.sys
23 - [Microsoft Corporation] : C:\Program Files\Microsoft Security Essentials\MsMpEng.exe
23 - [Microsoft Corporation] : C:\Windows\system32\DRIVERS\mssmbios.sys
23 - [Nero AG] : C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
23 - [NVIDIA Corporation] : C:\Windows\system32\DRIVERS\nvm62x32.sys
23 - [NVIDIA Corporation] : C:\Windows\system32\DRIVERS\nvlddmkm.sys
23 - [NVIDIA Corporation] : C:\Windows\system32\DRIVERS\nvstor.sys
23 - [Nokia.] : C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
23 - : C:\Windows\system32\Drivers\sptd.sys
23 - [Ulead Systems, Inc.] : C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
23 - [Leadtek Research Inc.] : C:\Program Files\WinFast\WFDTV\WFIOCTL.SYS
23 - [Leadtek Research Inc.] : C:\Windows\system32\drivers\wfeaglxt.sys
23 - [Microsoft Corporation] : C:\Program Files\Windows Media Player\wmpnetwk.exe
23 - [Crawler.com] : C:\Windows\system32\drivers\sp_rsdrv2.sys
System Policies
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer, NoActiveDesktopChanges : :
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableTaskMgr : :
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop, NoChangingWallPaper : :
Threat Files
<Server-FTP.SFH.d> : C:\Program Files\TC UP\PLUGINS\Tools\HFS\hfs.exe
<AdTool.MyWebSearch.bm> : C:\Users\Pepa\AppData\Local\Temp\NERO1004803\unit_app_75\Toolbar.exe
Advanced Files Report
%PROGRAMFILES%\Microsoft Security Essentials\MsMpEng.exe [Microsoft Corporation] [Microsoft Malware Protection] MD5=FBE736AF381983A1D4ADBBF1FACF6976 SIZE=17904
%SYSDIR%\CNMLM9H.DLL [CANON INC.] [Canon IJ Printer Driver] MD5=7227043C783F12F9FB1F312BFF791660 SIZE=230912
%SYSDIR%\spool\PRTPROCS\W32X86\CNMPD9H.DLL [CANON INC.] [Canon IJ Printer Driver] MD5=053A5647034E7F7447EC2584D5CEED34 SIZE=27136
%PROGRAMFILES%\Canon\IJPLM\ijplmsvc.exe [IJPLMSVC] MD5=755519F49906B73C1FE9CBBF75E347EA SIZE=103808
%COMMONFILES%\LightScribe\LSSrvc.exe [Hewlett-Packard Company] [LightScribe] MD5=108333981C841EB0FF198AA5DFCF3D3B SIZE=73728
%COMMONFILES%\LightScribe\LSSProxy.dll [Hewlett-Packard Company] [LightScribe] MD5=D73B5BEFC8BB6E877A7E6437E2613FFA SIZE=110592
%COMMONFILES%\LightScribe\LSLog.dll [Hewlett-Packard Company] [LightScribe] MD5=61DACB0FBB1F7237FFEF769C23C903AF SIZE=33792
%COMMONFILES%\Nero\Nero BackItUp 4\NBService.exe [Nero AG] [Nero BackItUp] MD5=B90E093E7A7250906F1054418B5339C0 SIZE=935208
%COMMONFILES%\Nero\Nero BackItUp 4\NB.dll [Nero AG] [Nero BackItUp] MD5=D167CA427516B8C416B746117F69B870 SIZE=1160488
%COMMONFILES%\Nero\Nero BackItUp 4\LBFC.dll [Nero AG] [Nero BackItUp] MD5=5F5360825D2B829121E78E84D4CB8785 SIZE=451880
%COMMONFILES%\Nero\Nero BackItUp 4\NBBurn.dll [Nero AG] [Nero BackItUp] MD5=81DA72712DF46480E6248AEB35E15FCC SIZE=275752
%COMMONFILES%\Nero\Nero BackItUp 4\NeroAPIGlueLayerUnicode.dll [Nero AG] [NeroAPIGlueLayerUnicode] MD5=8E2D68A36FCB58A8DA57DE3E064F39CC SIZE=181544
%COMMONFILES%\Ulead Systems\DVD\ULCDRSvr.exe [Ulead Systems, Inc.] [Ulead Systems ULCDRSvr] MD5=332D341D92B933600D41953B08360DFB SIZE=49152
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\PhoneBrowser.dll [Nokia] [Phone Browser] MD5=83B84455615CA7E25A4E15C3890E2D58 SIZE=563200
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\PCSCM.dll [Nokia] [PC Suite Common Modules] MD5=0E51263EA765F9AB45AA8F04CADB22B9 SIZE=659456
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\Lang\PhoneBrowser_cze.nlr [Nokia] [Nokia Phone Browser] MD5=40F8D9ED9B9B18E93EB247DEEF74E6F8 SIZE=28160
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\Resource\PhoneBrowser_Nokia.ngr [Nokia] [Nokia Phone Browser] MD5=B058E4E76A4524DC13FC44B7829FEE5F SIZE=543744
%PROGRAMFILES%\ArcSoft\Software Suite\PhotoImpression 5\share\pihook.dll MD5=9064D871EF0125B58CC58AFC767F1E47 SIZE=53248
%COMMONFILES%\Adobe\Adobe Drive CS4\BIB.dll [Adobe Systems Incorporated] [BIB 2008/06/03-17:36:12] MD5=87AF77718E3BFB5A7766F575609C057A SIZE=276992
%COMMONFILES%\Adobe\Adobe Version Cue CS4\Client\4.0.0\VersionCue.DLL [Adobe Systems, Incorporated] [Adobe VersionCue] MD5=A12F7C8E171E67E3D71358BF3AF10163 SIZE=1414496
%WINDIR%\msa.exe MD5=09E37D3474E616F9D257B7B933DF14E0 SIZE=161792
%PROGRAMFILES%\Canon\MyPrinter\BJMyRes.dll [CANON INC.] [Canon My Printer] MD5=A5327EBE026244837F56DAD114C227A4 SIZE=90112
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\PCSSupportSetup.DLL [Nokia] [Nokia Connectivity Library] MD5=F7C6D906CE4CF1EBE64DCE92DA54A7A9 SIZE=77824
%PROGRAMFILES%\PC Connectivity Solution\ConnAPI.DLL [Nokia.] [PC Connectivity Solution] MD5=6EDB0B1E5CE652CB7261CD1B96CB25FD SIZE=429056
%PROGRAMFILES%\PC Connectivity Solution\ConfServer.dll [Nokia] [PC Connectivity Solution] MD5=20CC8683720C80E4412AAA0F16DD0082 SIZE=188416
%PROGRAMFILES%\Nokia\Nokia PC Suite 6\Lang\LaunchApplication_cze.NLR [Nokia] MD5=A4E0157639D6295A8B62B39105EFCC27 SIZE=13312
%USERPROFILE%\Local\Microsoft\Windows Sidebar\Gadgets\Stahování z netu.gadget\netlib.dll [Jonathan Abbott] [NIC Information .NET Wrapper] MD5=942889718D170DA972E710F9BC1D7BE5 SIZE=20480
%SYSDIR%\nvd3dum.dll [NVIDIA Corporation] [NVIDIA Windows Vista WDDM driver] MD5=DD6D6D7C8E644904D897FCED6B09BD02 SIZE=7592960
%PROGRAMFILES%\DAEMON Tools Lite\DTCommonRes.dll [DT Soft Ltd] [DAEMON Tools Lite] MD5=D8F8768B624847472AF413DF94972986 SIZE=1344048
%PROGRAMFILES%\DAEMON Tools Lite\DTLiteUI.dll [DT Soft Ltd] [DAEMON Tools Lite] MD5=F72C338065ABBDF20403E76E32FB304B SIZE=397872
%PROGRAMFILES%\DAEMON Tools Lite\Engine.dll [DT Soft Ltd] [DAEMON Tools Lite] MD5=4EB846BBBE51C67D066C5F9FA997CD58 SIZE=2318896
%PROGRAMFILES%\DAEMON Tools Lite\imgengine.dll [DT Soft Ltd.] [DAEMON Tools Image Engine] MD5=21500EE9073A483752BD3162F39E34DB SIZE=282056
%SYSDIR%\rundll32.exe [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=51138BEEA3E2C21EC44D0932C71762A8 SIZE=44544
%PROGRAMFILES%\PC Connectivity Solution\ServiceLayer.exe [Nokia.] [PC Connectivity Solution] MD5=019AB047B932AD277A4DA2673E5CC19C SIZE=300544
%PROGRAMFILES%\PC Connectivity Solution\NclTools.dll [Nokia] [PC Connectivity Solution] MD5=A8AC6EBC90EEF4D3AF15D9B98F23A8EF SIZE=135168
%PROGRAMFILES%\PC Connectivity Solution\Transports\NCLIrDAMM.dll [Nokia Corp.] [PC Connectivity Solution] MD5=01EE6FDC94168D5F06EFC758470C3F7B SIZE=127488
%PROGRAMFILES%\PC Connectivity Solution\Transports\NCLRSMM.dll [Nokia Corp.] [PC Connectivity Solution] MD5=02B1B5469314AD2A14E1F9635B677F30 SIZE=156672
%PROGRAMFILES%\PC Connectivity Solution\Transports\NCLUSBMM.dll [Nokia Corp.] [PC Connectivity Solution] MD5=C1DDF1C948242F935B283BC8ED1DDB45 SIZE=167424
%PROGRAMFILES%\PC Connectivity Solution\Transports\NclMSBTMM.dll [Nokia Corp.] [PC Connectivity Solution] MD5=56E1439FEB2BEDB986F9045C140F9ADE SIZE=166400
%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=77FBD400984CF72BA0FC4B3489D65F74 SIZE=1121280
%COMMONFILES%\Adobe\Adobe Drive CS4\AdobeDriveCS4_NP.dll [Adobe Systems Incorporated] [Adobe Drive CS4] MD5=185D50DA1832A734DC9826037E82BE40 SIZE=79240
%PROGRAMFILES%\WinClamAVShield\ClamAVServer.dll [Crawler, LLC] [CLAMAVServer] MD5=06BB9EDA9B7D93BF078FC135977A82AF SIZE=135168
%PROGRAMFILES%\WinClamAVShield\libclamav.dll [ClamWin Antivirus] MD5=97290402B38494EF36A575335BBCC954 SIZE=973312
%PROGRAMFILES%\WinClamAVShield\libclamunrar_iface.dll [ClamWin Antivirus] MD5=ACAFC7FD7C8D0BBEB69999487BEB58FD SIZE=45056
%PROGRAMFILES%\WinClamAVShield\libclamunrar.dll [ClamWin Antivirus] MD5=4CD796A1EBF08D73A1571E78F3891163 SIZE=62464
%USERPROFILE%\Local\Google\Chrome\Application\chrome.exe [Google Inc.] [Google Chrome] MD5=A11B4EA812B993F18420A0FB54FF8605 SIZE=527344
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\chrome.dll [Google Inc.] [Google Chrome] MD5=D4F7EA9854D884B4292EC02B88244347 SIZE=14492144
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\icudt42.dll [IBM Corporation and others] [International Components for Unicode] MD5=79CBDE440E195A8ABEC2B053E0DB3AD7 SIZE=10947056
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\gears.dll [Google Inc.] [Google Gears 0.5.33.0] MD5=05B854551B611D688966F9E643EA5568 SIZE=3184112
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\rlz.dll MD5=FC627890FF28F6CA119C0EDF7FA7E64C SIZE=109040
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\avcodec-52.dll MD5=BE8A290B996C1BFECB4A053FC50496B4 SIZE=1112560
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\avutil-50.dll MD5=9839634F601D649A2C2F9B91E32F43F4 SIZE=61424
%USERPROFILE%\Local\Google\Chrome\Application\4.0.249.89\avformat-52.dll MD5=5049828E3A9192EE7152A8E8D7686288 SIZE=135152
%SYSDIR%\Macromed\Flash\NPSWF32.dll [Adobe Systems, Inc.] [Shockwave Flash] MD5=F8EFDCFC440A420D6C1ECD245AB20207 SIZE=3884312
%PROGRAMFILES%\Securityessentials2010\SE2010.exe
%PROGRAMFILES%\softonicen\tbsoft.dl
%SYSDIR%\mf.dll [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=80EFBCAFBD26956B69EE9CEFC93423B0 SIZE=3177984
%PROGRAMFILES%\TC UP\PLUGINS\Library\TCUPShellExt.dll MD5=22AB2F0F9179D94644124FF1B524E6BB SIZE=160256
%PROGRAMFILES%\Nero\Nero 9\Nero CoverDesigner\CoverEdExtension.dll [Nero AG] [Cover Designer] MD5=314F4D23D1B710AB7614600185E52034 SIZE=2241832
%SYSDIR%\svchost.exe -k netsvcs
%SYSDIR%\drivers\Afc.sys [Arcsoft, Inc.] [Arcsoft(R) ASPI Shell] MD5=A7B8A3A79D35215D798A300DF49ED23F SIZE=11776
%SYSDIR%\DRIVERS\amdxata.sys [Advanced Micro Devices] [Storage Filter Driver] MD5=B81C2B5616F6420A9941EA093A92B150 SIZE=23616
%SYSDIR%\svchost.exe -k LocalSystemNetworkRestricted
%SYSDIR%\svchost.exe -k LocalServiceNetworkRestricted
%SYSDIR%\svchost.exe -k LocalServiceNoNetwork
%SYSDIR%\DRIVERS\bowser.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=FCAFAEF6798D7B51FF029F99A9898961 SIZE=69632
%SYSDIR%\svchost.exe -k NetworkService
%SYSDIR%\svchost.exe -k DcomLaunch
%SYSDIR%\Drivers\dfsc.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=8E09E52EE2E3CEB199EF3DD99CF9E3FB SIZE=78336
%SYSDIR%\drivers\discache.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=1A050B0274BFB3890703D490F330C0DA SIZE=32256
%SYSDIR%\drivers\EIO.sys [ASUSTeK Computer Inc.] [ASUS Kernel Mode Driver for NT] MD5=0DAF3544804650526751C478AECCCE63 SIZE=12288
%SYSDIR%\svchost.exe -k LocalService
%SYSDIR%\svchost.exe -k LocalServiceAndNoImpersonation
%SYSDIR%\DRIVERS\mrxsmb10.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=6532ACBF612A8D340EF9E25E4FEF21EE SIZE=221184
%SYSDIR%\DRIVERS\mssmbios.sys [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=FC6B9FF600CC585EA38B12589BD4E246 SIZE=28240
%SYSDIR%\DRIVERS\nvm62x32.sys [NVIDIA Corporation] [NVIDIA Networking Driver] MD5=B5E37E31C053BC9950455A257526514B SIZE=347264
%SYSDIR%\DRIVERS\nvlddmkm.sys [NVIDIA Corporation] [NVIDIA Windows Kernel Mode Driver, Version 185.93] MD5=B0881DDA5A8160422561FFAB7F0008B1 SIZE=9853248
%SYSDIR%\DRIVERS\nvstor.sys [NVIDIA Corporation] [NVIDIA nForce(TM) SATA Driver] MD5=C99F251A5DE63C6F129CF71933ACED0F SIZE=142416
%SYSDIR%\svchost.exe -k LocalServicePeerNet
%SYSDIR%\svchost.exe -k NetworkServiceNetworkRestricted
%SYSDIR%\svchost.exe -k RPCSS
%SYSDIR%\Drivers\sptd.sys SIZE=691696
%SYSDIR%\svchost.exe -k imgsvc
%PROGRAMFILES%\WinFast\WFDTV\WFIOCTL.SYS [Leadtek Research Inc.] [WinFast MultiMedia Device Driver (Windows 2000/XP)] MD5=9BC98A4E3401D52ED860CF883CCB7478 SIZE=9446
%SYSDIR%\drivers\wfeaglxt.sys [Leadtek Research Inc.] [wfeaglxt.sys] MD5=439FFDA8B6BCF6F3D7C4F3A41AF55A4B SIZE=405632
%SYSDIR%\SearchIndexer.exe \Embedding
%SYSDIR%\drivers\sp_rsdrv2.sys [Crawler.com] [Spyware Terminator] MD5=CCD6E6C387E3EFA3BA5FE0E7883821C1 SIZE=141312
%SYSDIR%\mscoree.dll [Microsoft Corporation] [Microsoft® .NET Framework] MD5=3CDEDF4059A2BDBB9CD888EA1979D54C SIZE=278864
%SYSDIR%\inetcomm.dll [Microsoft Corporation] [Microsoft® Windows® Operating System] MD5=5E5DFC8EE7EA23CCAD44085BFDA70FBC SIZE=740864
End of Report