Trojan-Dropper.agent
Napsal: 23 bře 2010 23:14
zdravim virus forum,
problem mam takyto vcera som neviem ako cistou nahodou chytil virus skor trojana, neviem preco ale ani eset ani spybot snd ani ad aware nic nezachytili.
strasne mi spomaluje komp a web stranky
spravil som scan esetu nic , ad aware nic, spybot snd nic,
jedine spyware doctor mi nasiel trojan-dropper.agent ale nechce mi ho zmazat ze nieje mozne zmazat a vyzaduje restart na zmazanie ale ani to nepomaha.
stiahol som si este trojan killer ten nasiel tiez ale ked dam zmazat tak zmaze ale na novom scene je nanovo cize nezmazal.
vopred dakujem za pomoc
posielam vam tu log
Logfile of random's system information tool 1.06 (written by random/random)
Run by Administrator at 2010-03-23 23:02:54
Microsoft Windows 7 Ultimate Service Pack 2
System drive C: has 369 GB (90%) free of 410 GB
Total RAM: 2046 MB (34% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:59:52, on 23. 3. 2010
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Windows\System32\smss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\atieclxx.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Windows\system32\PnkBstrA.exe
C:\Program Files\Spyware Doctor\pctsAuxs.exe
C:\Program Files\Spyware Doctor\pctsSvc.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Spyware Doctor\pctsTray.exe
C:\Program Files\Common Files\ACD Systems\EN\DevDetect.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Spyware Doctor\TFEngine\TFService.exe
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Peto\Hijackthis\RSIT.exe
C:\Peto\Hijackthis\Administrator.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT1750559
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Browser Defender BHO - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O3 - Toolbar: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: PC Tools Browser Guard - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [ISTray] "C:\Program Files\Spyware Doctor\pctsTray.exe"
O4 - HKCU\..\Run: [Device Detector] DevDetect.exe -autorun
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O13 - Gopher Prefix:
O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} (asusTek_sysctrl Class) - http://support.asus.com/common/asusTek_sys_ctrl.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Browser Defender Update Service - Threat Expert Ltd. - C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: ThreatFire - PC Tools - C:\Program Files\Spyware Doctor\TFEngine\TFService.exe
--
End of file - 8862 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Ad-Aware Update (Weekly).job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A0F3D1B-0909-4FF4-B272-609CCE6054E7}]
PC Tools Browser Guard BHO - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll [2010-01-22 567248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08 804136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-02-04 1197448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2009-07-02 2215960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2009-07-02 2215960]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-02-04 1197448]
{472734EA-242A-422B-ADF8-83D1E48CC825} - PC Tools Browser Guard - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll [2010-01-22 567248]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2010-02-26 2140880]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-11-10 417792]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2010-02-15 141608]
"ISTray"=C:\Program Files\Spyware Doctor\pctsTray.exe [2010-03-09 1286608]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Device Detector"=DevDetect.exe -autorun []
"SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2010-03-09 26100520]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Lavasoft Ad-Aware Service]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-03-23 22:57:18 ----D---- C:\rsit
2010-03-23 21:30:01 ----D---- C:\Program Files\GridinSoft Trojan Killer
2010-03-23 19:17:44 ----D---- C:\Users\Administrator\AppData\Roaming\Skype
2010-03-23 19:17:32 ----D---- C:\Users\Administrator\AppData\Roaming\ESET
2010-03-23 17:21:47 ----D---- C:\Users\Administrator\AppData\Roaming\TrojanHunter
2010-03-23 17:05:48 ----R---- C:\Windows\system32\streamhlp.dll
2010-03-23 17:05:09 ----D---- C:\Program Files\TrojanHunter 5.0
2010-03-23 15:48:07 ----D---- C:\ProgramData\Simply Super Software
2010-03-23 00:08:15 ----A---- C:\Windows\BDTSupport.dll
2010-03-23 00:08:13 ----A---- C:\Windows\SGDetectionTool.dll
2010-03-23 00:08:13 ----A---- C:\Windows\PCTBDRes.dll
2010-03-23 00:08:13 ----A---- C:\Windows\PCTBDCore.dll
2010-03-23 00:05:28 ----D---- C:\Program Files\Common Files\PC Tools
2010-03-23 00:05:26 ----D---- C:\Users\Administrator\AppData\Roaming\PC Tools
2010-03-23 00:05:26 ----D---- C:\ProgramData\PC Tools
2010-03-23 00:05:26 ----D---- C:\Program Files\Spyware Doctor
2010-03-23 00:05:11 ----AD---- C:\ProgramData\TEMP
2010-03-22 23:42:04 ----A---- C:\Windows\system32\GEARAspi.dll
2010-03-22 23:39:49 ----D---- C:\Program Files\iPod
2010-03-22 23:39:48 ----D---- C:\ProgramData\{755AC846-7372-4AC8-8550-C52491DAA8BD}
2010-03-22 23:39:48 ----D---- C:\Program Files\iTunes
2010-03-22 23:36:45 ----D---- C:\Program Files\Bonjour
2010-03-22 23:35:04 ----D---- C:\Program Files\QuickTime
2010-03-22 23:35:03 ----D---- C:\ProgramData\Apple Computer
2010-03-22 23:33:21 ----D---- C:\Program Files\Apple Software Update
2010-03-22 23:31:05 ----A---- C:\Windows\system32\lsdelete.exe
2010-03-22 23:30:22 ----D---- C:\ProgramData\Apple
2010-03-22 23:30:22 ----D---- C:\Program Files\Common Files\Apple
2010-03-22 21:59:45 ----D---- C:\Program Files\EarthView
2010-03-21 00:30:56 ----A---- C:\Windows\system32\PnkBstrB.exe
2010-03-21 00:30:49 ----A---- C:\Windows\system32\PnkBstrA.exe
2010-03-21 00:30:47 ----A---- C:\Windows\system32\pbsvc_bc2.exe
2010-03-21 00:19:32 ----D---- C:\Hry
2010-03-20 23:59:50 ----D---- C:\Program Files\DAEMON Tools Lite
2010-03-20 23:59:09 ----D---- C:\Users\Administrator\AppData\Roaming\DAEMON Tools Lite
2010-03-20 23:58:06 ----D---- C:\ProgramData\DAEMON Tools Lite
2010-03-20 17:18:46 ----A---- C:\Windows\system32\XAudio2_5.dll
2010-03-20 17:18:40 ----A---- C:\Windows\system32\xactengine3_5.dll
2010-03-20 17:18:40 ----A---- C:\Windows\system32\d3dx11_42.dll
2010-03-20 17:18:40 ----A---- C:\Windows\system32\d3dcsx_42.dll
2010-03-20 17:18:40 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2010-03-20 17:18:39 ----A---- C:\Windows\system32\D3DX9_41.dll
2010-03-20 17:18:39 ----A---- C:\Windows\system32\d3dx10_42.dll
2010-03-20 17:18:39 ----A---- C:\Windows\system32\d3dx10_41.dll
2010-03-20 17:18:39 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2010-03-20 17:18:38 ----A---- C:\Windows\system32\XAudio2_4.dll
2010-03-20 17:18:38 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2010-03-20 17:18:38 ----A---- C:\Windows\system32\xactengine3_4.dll
2010-03-20 17:18:38 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2010-03-20 17:18:38 ----A---- C:\Windows\system32\d3dx10_40.dll
2010-03-20 17:18:38 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2010-03-20 17:18:37 ----A---- C:\Windows\system32\D3DX9_40.dll
2010-03-20 17:18:36 ----A---- C:\Windows\system32\XAudio2_3.dll
2010-03-20 17:18:36 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2010-03-20 17:18:34 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-03-20 17:18:34 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-03-20 17:18:34 ----A---- C:\Windows\system32\xactengine3_3.dll
2010-03-20 17:18:34 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2010-03-20 17:18:29 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-03-20 17:18:29 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-03-20 17:18:29 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-03-20 17:18:29 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-03-20 17:18:28 ----A---- C:\Windows\system32\XAudio2_1.dll
2010-03-20 17:18:28 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2010-03-20 17:18:27 ----A---- C:\Windows\system32\xactengine3_1.dll
2010-03-20 17:18:27 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2010-03-20 17:18:27 ----A---- C:\Windows\system32\D3DX9_38.dll
2010-03-20 17:18:27 ----A---- C:\Windows\system32\d3dx10_38.dll
2010-03-20 17:18:27 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2010-03-20 17:18:26 ----A---- C:\Windows\system32\XAudio2_0.dll
2010-03-20 17:18:24 ----A---- C:\Windows\system32\xactengine3_0.dll
2010-03-20 17:18:24 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2010-03-20 17:18:24 ----A---- C:\Windows\system32\D3DX9_37.dll
2010-03-20 17:18:24 ----A---- C:\Windows\system32\d3dx10_37.dll
2010-03-20 17:18:24 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2010-03-20 17:18:23 ----A---- C:\Windows\system32\xactengine2_10.dll
2010-03-20 17:18:22 ----A---- C:\Windows\system32\d3dx9_36.dll
2010-03-20 17:18:22 ----A---- C:\Windows\system32\d3dx10_36.dll
2010-03-20 17:18:22 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2010-03-20 17:18:21 ----A---- C:\Windows\system32\xactengine2_9.dll
2010-03-20 17:18:21 ----A---- C:\Windows\system32\d3dx9_35.dll
2010-03-20 17:18:21 ----A---- C:\Windows\system32\d3dx10_35.dll
2010-03-20 17:18:21 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2010-03-20 17:18:20 ----A---- C:\Windows\system32\xinput1_3.dll
2010-03-20 17:18:20 ----A---- C:\Windows\system32\xactengine2_8.dll
2010-03-20 17:18:20 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2010-03-20 17:18:20 ----A---- C:\Windows\system32\d3dx9_34.dll
2010-03-20 17:18:20 ----A---- C:\Windows\system32\d3dx10_34.dll
2010-03-20 17:18:20 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2010-03-20 17:18:19 ----A---- C:\Windows\system32\xactengine2_7.dll
2010-03-20 17:18:19 ----A---- C:\Windows\system32\d3dx10_33.dll
2010-03-20 17:18:19 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2010-03-20 17:18:18 ----A---- C:\Windows\system32\xactengine2_6.dll
2010-03-20 17:18:18 ----A---- C:\Windows\system32\d3dx9_33.dll
2010-03-20 17:18:17 ----A---- C:\Windows\system32\xactengine2_5.dll
2010-03-20 17:18:17 ----A---- C:\Windows\system32\d3dx9_32.dll
2010-03-20 17:18:17 ----A---- C:\Windows\system32\d3dx10.dll
2010-03-20 17:18:16 ----A---- C:\Windows\system32\xactengine2_4.dll
2010-03-20 17:18:16 ----A---- C:\Windows\system32\x3daudio1_1.dll
2010-03-20 17:18:12 ----A---- C:\Windows\system32\xactengine2_3.dll
2010-03-20 17:18:11 ----A---- C:\Windows\system32\xinput1_2.dll
2010-03-20 17:18:10 ----A---- C:\Windows\system32\xinput1_1.dll
2010-03-20 17:18:10 ----A---- C:\Windows\system32\xactengine2_2.dll
2010-03-20 17:18:08 ----A---- C:\Windows\system32\xactengine2_1.dll
2010-03-20 17:17:56 ----A---- C:\Windows\system32\xactengine2_0.dll
2010-03-20 17:17:56 ----A---- C:\Windows\system32\x3daudio1_0.dll
2010-03-20 17:17:56 ----A---- C:\Windows\system32\d3dx9_30.dll
2010-03-20 17:17:56 ----A---- C:\Windows\system32\d3dx9_29.dll
2010-03-20 17:17:56 ----A---- C:\Windows\system32\d3dx9_28.dll
2010-03-20 17:17:56 ----A---- C:\Windows\system32\d3dx9_27.dll
2010-03-20 17:17:55 ----A---- C:\Windows\system32\d3dx9_26.dll
2010-03-20 17:17:55 ----A---- C:\Windows\system32\d3dx9_25.dll
2010-03-20 17:17:55 ----A---- C:\Windows\system32\d3dx9_24.dll
2010-03-20 17:10:27 ----D---- C:\Users\Administrator\AppData\Roaming\DeskSoft
2010-03-20 16:16:56 ----D---- C:\Program Files\Common Files\Steam
2010-03-18 23:02:40 ----DC---- C:\Windows\system32\DRVSTORE
2010-03-18 22:59:56 ----HDC---- C:\ProgramData\{74D08EB8-01D1-4BAE-91E3-F30C1B031AC6}
2010-03-18 22:59:23 ----D---- C:\ProgramData\Lavasoft
2010-03-18 22:59:23 ----D---- C:\Program Files\Lavasoft
2010-03-18 22:30:21 ----A---- C:\Windows\system32\D3DX9_42.dll
2010-03-18 22:30:18 ----A---- C:\Windows\system32\d3dx9_31.dll
2010-03-18 22:28:54 ----D---- C:\Program Files\Winamp Detect
2010-03-18 22:27:23 ----D---- C:\Program Files\Common Files\PX Storage Engine
2010-03-18 22:27:06 ----D---- C:\Users\Administrator\AppData\Roaming\Winamp
2010-03-18 22:27:06 ----D---- C:\Program Files\Winamp
2010-03-18 20:07:08 ----D---- C:\Peto
2010-03-18 19:56:17 ----D---- C:\Program Files\Ask.com
2010-03-18 19:55:46 ----D---- C:\Program Files\BitTorrent
2010-03-18 19:49:33 ----D---- C:\Program Files\Conduit
2010-03-18 19:49:30 ----D---- C:\Program Files\BS_Player
2010-03-18 19:49:18 ----D---- C:\Users\Administrator\AppData\Roaming\BSplayer Pro
2010-03-18 19:49:18 ----D---- C:\Users\Administrator\AppData\Roaming\BSplayer
2010-03-18 19:49:06 ----D---- C:\Program Files\Webteh
2010-03-18 19:44:45 ----D---- C:\Program Files\Common Files\Skype
2010-03-18 19:44:43 ----RD---- C:\Program Files\Skype
2010-03-18 19:44:39 ----D---- C:\ProgramData\Skype
2010-03-18 19:43:23 ----D---- C:\Program Files\CCleaner
2010-03-18 19:39:38 ----D---- C:\ProgramData\Spybot - Search & Destroy
2010-03-18 19:39:38 ----D---- C:\Program Files\Spybot - Search & Destroy
2010-03-18 16:45:41 ----D---- C:\ProgramData\ESET
2010-03-18 16:45:41 ----D---- C:\Program Files\ESET
2010-03-17 13:18:24 ----D---- C:\Program Files\Microsoft Silverlight
2010-03-17 11:07:38 ----D---- C:\Users\Administrator\AppData\Roaming\GHISLER
2010-03-17 11:07:38 ----D---- C:\Program Files\totalcmd
2010-03-16 14:50:20 ----A---- C:\Windows\system32\unrar.dll
2010-03-16 14:50:20 ----A---- C:\Windows\avisplitter.ini
2010-03-16 14:50:19 ----A---- C:\Windows\system32\yv12vfw.dll
2010-03-16 14:50:19 ----A---- C:\Windows\system32\xvidvfw.dll
2010-03-16 14:50:19 ----A---- C:\Windows\system32\xvidcore.dll
2010-03-16 14:50:18 ----A---- C:\Windows\system32\ff_vfw.dll.manifest
2010-03-16 14:50:18 ----A---- C:\Windows\system32\ff_vfw.dll
2010-03-16 14:50:17 ----D---- C:\Program Files\K-Lite Codec Pack
2010-03-16 14:45:07 ----D---- C:\Users\Administrator\AppData\Roaming\ACD Systems
2010-03-16 14:42:10 ----D---- C:\ProgramData\ACD Systems
2010-03-16 14:42:01 ----D---- C:\Program Files\Common Files\ACD Systems
2010-03-16 14:42:01 ----D---- C:\Program Files\ACD Systems
2010-03-16 14:29:37 ----D---- C:\Users\Administrator\AppData\Roaming\WinRAR
2010-03-16 14:29:24 ----D---- C:\Program Files\WinRAR
2010-03-16 14:25:12 ----D---- C:\ProgramData\WinZip
2010-03-16 14:25:02 ----D---- C:\Program Files\WinZip
2010-03-16 14:00:57 ----D---- C:\ProgramData\Nero
2010-03-16 14:00:57 ----D---- C:\Program Files\Nero
2010-03-16 14:00:57 ----A---- C:\Windows\system32\TwnLib4.dll
2010-03-16 14:00:57 ----A---- C:\Windows\system32\imagXRA7.dll
2010-03-16 14:00:57 ----A---- C:\Windows\system32\imagXR7.dll
2010-03-16 14:00:57 ----A---- C:\Windows\system32\imagXpr7.dll
2010-03-16 14:00:57 ----A---- C:\Windows\system32\imagX7.dll
2010-03-16 14:00:51 ----D---- C:\Program Files\Common Files\Nero
2010-03-16 13:46:45 ----D---- C:\ProgramData\Adobe
2010-03-16 13:46:34 ----D---- C:\Program Files\Common Files\Adobe
2010-03-16 13:46:34 ----D---- C:\Program Files\Adobe
2010-03-15 15:06:40 ----D---- C:\Program Files\Microsoft Works
2010-03-15 15:05:49 ----D---- C:\Program Files\Microsoft Visual Studio
2010-03-15 15:05:49 ----D---- C:\Program Files\Common Files\DESIGNER
2010-03-15 15:05:35 ----D---- C:\Windows\PCHEALTH
2010-03-15 15:05:35 ----D---- C:\Program Files\Microsoft.NET
2010-03-15 15:02:26 ----D---- C:\ProgramData\Microsoft Help
2010-03-15 15:02:26 ----D---- C:\Program Files\Microsoft Office
2010-03-15 15:00:42 ----A---- C:\Windows\system32\browserchoice.exe
2010-03-15 14:58:44 ----RHD---- C:\MSOCache
2010-03-15 14:21:39 ----D---- C:\Program Files\Common Files\ATI Technologies
2010-03-15 14:19:15 ----SHD---- C:\Windows\Installer
2010-03-15 14:19:14 ----D---- C:\Program Files\ATI
2010-03-15 14:15:53 ----D---- C:\Program Files\ATI Technologies
2010-03-15 14:13:02 ----D---- C:\ATI
2010-03-15 13:52:56 ----D---- C:\Users\Administrator\AppData\Roaming\Macromedia
2010-03-15 13:52:54 ----D---- C:\Users\Administrator\AppData\Roaming\Adobe
2010-03-15 13:52:49 ----D---- C:\Windows\system32\Macromed
2010-03-15 13:12:47 ----A---- C:\Windows\system32\msv1_0.dll
2010-03-15 13:09:30 ----A---- C:\Windows\system32\MRT.exe
2010-03-15 13:06:33 ----A---- C:\Windows\system32\jscript.dll
2010-03-15 13:06:31 ----A---- C:\Windows\system32\mshtml.dll
2010-03-15 13:06:30 ----A---- C:\Windows\system32\urlmon.dll
2010-03-15 13:06:30 ----A---- C:\Windows\system32\ieframe.dll
2010-03-15 13:06:30 ----A---- C:\Windows\system32\iedkcs32.dll
2010-03-15 13:06:29 ----A---- C:\Windows\system32\wininet.dll
2010-03-15 13:06:29 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-03-15 13:06:19 ----A---- C:\Windows\system32\wmp.dll
2010-03-15 13:06:18 ----A---- C:\Windows\system32\wmploc.DLL
2010-03-15 13:06:18 ----A---- C:\Windows\system32\winresume.exe
2010-03-15 13:06:18 ----A---- C:\Windows\system32\winload.exe
2010-03-15 13:06:18 ----A---- C:\Windows\system32\CertEnroll.dll
2010-03-15 13:06:10 ----A---- C:\Windows\system32\kernel32.dll
2010-03-15 13:06:09 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-03-15 13:06:09 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-03-15 13:06:09 ----A---- C:\Windows\system32\apphelp.dll
2010-03-15 13:06:07 ----A---- C:\Windows\system32\quartz.dll
2010-03-15 13:06:07 ----A---- C:\Windows\system32\msyuv.dll
2010-03-15 13:06:07 ----A---- C:\Windows\system32\msvidc32.dll
2010-03-15 13:06:07 ----A---- C:\Windows\system32\mciavi32.dll
2010-03-15 13:06:07 ----A---- C:\Windows\system32\iyuv_32.dll
2010-03-15 13:06:07 ----A---- C:\Windows\system32\avifil32.dll
2010-03-15 13:06:06 ----A---- C:\Windows\system32\tsbyuv.dll
2010-03-15 13:06:06 ----A---- C:\Windows\system32\msrle32.dll
2010-03-15 13:06:04 ----A---- C:\Windows\system32\t2embed.dll
2010-03-15 13:06:04 ----A---- C:\Windows\system32\fontsub.dll
2010-03-15 13:06:04 ----A---- C:\Windows\system32\atmfd.dll
2010-03-15 13:05:56 ----A---- C:\Windows\system32\psisdecd.dll
2010-03-15 13:05:56 ----A---- C:\Windows\system32\msdri.dll
2010-03-15 13:05:56 ----A---- C:\Windows\system32\CPFilters.dll
2010-03-15 13:05:54 ----A---- C:\Windows\system32\winlogon.exe
2010-03-15 13:05:54 ----A---- C:\Windows\explorer.exe
2010-03-15 13:05:21 ----A---- C:\Windows\system32\msasn1.dll
2010-03-15 13:00:20 ----A---- C:\Windows\system32\tzres.dll
2010-03-15 13:00:10 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-03-15 13:00:10 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-03-15 13:00:10 ----A---- C:\Windows\system32\secproc_isv.dll
2010-03-15 13:00:10 ----A---- C:\Windows\system32\secproc.dll
2010-03-15 13:00:10 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-03-15 13:00:10 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-03-15 13:00:10 ----A---- C:\Windows\system32\RMActivate.exe
2010-03-15 13:00:09 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-03-15 12:44:31 ----N---- C:\Windows\system32\MpSigStub.exe
2010-03-15 12:34:51 ----D---- C:\Users\Administrator\AppData\Roaming\Identities
2010-03-15 12:34:40 ----SD---- C:\Users\Administrator\AppData\Roaming\Microsoft
2010-03-15 12:34:40 ----D---- C:\Users\Administrator\AppData\Roaming\Media Center Programs
2010-03-15 12:25:53 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-03-15 12:21:08 ----SHD---- C:\Recovery
2010-03-15 11:48:01 ----D---- C:\Windows\SoftwareDistribution
2010-03-15 11:41:34 ----D---- C:\Windows\Prefetch
2010-03-15 11:41:04 ----SHD---- C:\System Volume Information
2010-03-15 11:40:11 ----D---- C:\Windows\Panther
2010-03-15 11:39:59 ----RASH---- C:\BOOTSECT.BAK
2010-03-15 11:39:52 ----SHD---- C:\Boot
======List of files/folders modified in the last 1 months======
2010-03-23 23:01:17 ----D---- C:\Windows\Temp
2010-03-23 23:01:07 ----D---- C:\Windows\system32\Tasks
2010-03-23 22:47:58 ----D---- C:\Windows\System32
2010-03-23 22:47:57 ----D---- C:\Windows\inf
2010-03-23 22:41:20 ----D---- C:\Windows\system32\config
2010-03-23 22:30:50 ----SD---- C:\ProgramData\Microsoft
2010-03-23 22:16:36 ----D---- C:\Windows\Tasks
2010-03-23 22:09:59 ----RD---- C:\Program Files
2010-03-23 15:48:07 ----HD---- C:\ProgramData
2010-03-23 00:51:37 ----D---- C:\Windows\system32\catroot2
2010-03-23 00:31:42 ----D---- C:\Windows
2010-03-23 00:15:20 ----D---- C:\Windows\system32\drivers
2010-03-23 00:05:28 ----D---- C:\Program Files\Common Files
2010-03-22 23:42:05 ----D---- C:\Windows\system32\catroot
2010-03-22 23:36:17 ----D---- C:\Program Files\Internet Explorer
2010-03-22 23:32:30 ----D---- C:\Windows\system32\DriverStore
2010-03-21 00:30:45 ----D---- C:\Windows\system32\LogFiles
2010-03-21 00:18:52 ----RSD---- C:\Windows\assembly
2010-03-21 00:15:11 ----D---- C:\Windows\winsxs
2010-03-20 17:18:00 ----D---- C:\Windows\Microsoft.NET
2010-03-20 17:17:43 ----D---- C:\Windows\Logs
2010-03-17 12:41:29 ----D---- C:\Windows\system32\wdi
2010-03-17 11:10:54 ----SHD---- C:\$Recycle.Bin
2010-03-17 11:10:42 ----RD---- C:\Users
2010-03-16 09:40:51 ----D---- C:\Windows\rescache
2010-03-15 15:16:05 ----D---- C:\Program Files\Common Files\System
2010-03-15 15:16:05 ----A---- C:\Windows\win.ini
2010-03-15 15:12:43 ----RSD---- C:\Windows\Fonts
2010-03-15 15:12:35 ----D---- C:\Program Files\Common Files\microsoft shared
2010-03-15 15:03:50 ----D---- C:\Windows\ShellNew
2010-03-15 14:37:33 ----D---- C:\Windows\debug
2010-03-15 14:26:53 ----D---- C:\Windows\Downloaded Program Files
2010-03-15 13:17:08 ----D---- C:\Windows\AppPatch
2010-03-15 13:17:07 ----D---- C:\Windows\system32\Boot
2010-03-15 13:17:07 ----D---- C:\Program Files\Windows Media Player
2010-03-15 13:17:04 ----D---- C:\Windows\ehome
2010-03-15 13:08:29 ----D---- C:\Windows\system32\sk-SK
2010-03-15 12:44:06 ----D---- C:\Windows\system32\restore
2010-03-15 12:25:43 ----D---- C:\Windows\system32\wbem
2010-03-15 11:55:27 ----D---- C:\Windows\system32\sysprep
2010-03-15 11:50:59 ----D---- C:\Windows\system32\CodeIntegrity
2010-03-15 11:43:04 ----D---- C:\Windows\CSC
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 blbdrive;blbdrive; C:\Windows\system32\DRIVERS\blbdrive.sys [2009-07-14 35328]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584]
R1 DfsC;@%systemroot%\system32\drivers\dfsc.sys,-101; C:\Windows\System32\Drivers\dfsc.sys [2009-07-14 78336]
R1 discache;@%systemroot%\system32\drivers\discache.sys,-102; C:\Windows\System32\drivers\discache.sys [2009-07-14 32256]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2010-02-26 114984]
R1 nsiproxy;@%SystemRoot%\system32\drivers\nsiproxy.sys,-2; C:\Windows\system32\drivers\nsiproxy.sys [2009-07-14 16896]
R1 pctgntdi;pctgntdi; \??\C:\Windows\System32\drivers\pctgntdi.sys [2010-02-05 233136]
R1 RDPENCDD;@%systemroot%\system32\drivers\RDPENCDD.sys,-101; C:\Windows\system32\drivers\rdpencdd.sys [2009-07-14 6656]
R1 RDPREFMP;@%systemroot%\system32\drivers\RdpRefMp.sys,-101; C:\Windows\system32\drivers\rdprefmp.sys [2009-07-14 7168]
R1 tdx;@%SystemRoot%\system32\tcpipcfg.dll,-50004; C:\Windows\system32\DRIVERS\tdx.sys [2009-07-14 74240]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R1 Wanarpv6;@%systemroot%\system32\rascfg.dll,-32012; C:\Windows\system32\DRIVERS\wanarp.sys [2009-07-14 63488]
R1 WfpLwf;WFP Lightweight Filter; C:\Windows\system32\DRIVERS\wfplwf.sys [2009-07-14 9728]
R1 ws2ifsl;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\Windows\system32\drivers\ws2ifsl.sys [2009-07-14 16384]
R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2010-02-26 133512]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2010-02-26 134488]
R2 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2010-02-26 41312]
R2 lltdio;Link-Layer Topology Discovery Mapper I/O Driver; C:\Windows\system32\DRIVERS\lltdio.sys [2009-07-14 48128]
R2 luafv;@%systemroot%\system32\drivers\luafv.sys,-100; C:\Windows\system32\drivers\luafv.sys [2009-07-14 86528]
R2 PEAUTH;PEAUTH; C:\Windows\system32\drivers\peauth.sys [2009-07-14 586752]
R2 rspndr;Link-Layer Topology Discovery Responder; C:\Windows\system32\DRIVERS\rspndr.sys [2009-07-14 60928]
R2 tcpipreg;TCP/IP Registry Compatibility; C:\Windows\System32\drivers\tcpipreg.sys [2009-07-14 34816]
R3 AmdK8;AMD K8 Processor Driver; C:\Windows\system32\DRIVERS\amdk8.sys [2009-07-14 55296]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atipmdag.sys [2010-02-03 5313536]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-02-03 150016]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2009-07-08 2506232]
R3 bowser;@%systemroot%\system32\browser.dll,-102; C:\Windows\system32\DRIVERS\bowser.sys [2009-07-14 69632]
R3 CompositeBus;Composite Bus Enumerator Driver; C:\Windows\system32\DRIVERS\CompositeBus.sys [2009-07-14 31232]
R3 DXGKrnl;LDDM Graphics Subsystem; C:\Windows\System32\drivers\dxgkrnl.sys [2009-10-02 728648]
R3 Epfwndis;Eset Personal Firewall; C:\Windows\system32\DRIVERS\Epfwndis.sys [2010-02-26 32584]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 26600]
R3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2009-07-14 304128]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\Windows\system32\DRIVERS\HDAudBus.sys [2009-07-14 108544]
R3 HidUsb;Microsoft HID Class Driver; C:\Windows\system32\DRIVERS\hidusb.sys [2009-07-14 24064]
R3 kbdhid;Keyboard HID Driver; C:\Windows\system32\DRIVERS\kbdhid.sys [2009-07-14 28160]
R3 monitor;Microsoft Monitor Class Function Driver Service; C:\Windows\system32\DRIVERS\monitor.sys [2009-07-14 23552]
R3 mouhid;Mouse HID Driver; C:\Windows\system32\DRIVERS\mouhid.sys [2009-07-14 26112]
R3 mpsdrv;@%SystemRoot%\system32\FirewallAPI.dll,-23092; C:\Windows\System32\drivers\mpsdrv.sys [2009-07-14 60416]
R3 mrxsmb10;@%systemroot%\system32\wkssvc.dll,-1004; C:\Windows\system32\DRIVERS\mrxsmb10.sys [2010-01-08 221184]
R3 mrxsmb20;@%systemroot%\system32\wkssvc.dll,-1006; C:\Windows\system32\DRIVERS\mrxsmb20.sys [2009-07-14 95744]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2010-03-16 6504]
R3 NativeWifiP;NativeWiFi Filter; C:\Windows\system32\DRIVERS\nwifi.sys [2009-07-14 267264]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-13 347264]
R3 pctplsg;pctplsg; \??\C:\Windows\System32\drivers\pctplsg.sys [2010-02-05 70408]
R3 Ph3xIB32;Philips 713x Inbox PCI TV Card; C:\Windows\system32\DRIVERS\Ph3xIB32.sys [2009-07-13 1311232]
R3 RasAgileVpn;WAN Miniport (IKEv2); C:\Windows\system32\DRIVERS\AgileVpn.sys [2009-07-14 49152]
R3 RasSstp;@%systemroot%\system32\sstpsvc.dll,-202; C:\Windows\system32\DRIVERS\rassstp.sys [2009-07-14 75264]
R3 rdpbus;Remote Desktop Device Redirector Bus Driver; C:\Windows\system32\DRIVERS\rdpbus.sys [2009-07-14 18944]
R3 srv2;@%systemroot%\system32\srvsvc.dll,-104; C:\Windows\System32\DRIVERS\srv2.sys [2009-07-14 306688]
R3 srvnet;srvnet; C:\Windows\System32\DRIVERS\srvnet.sys [2009-12-08 113664]
R3 TfNetMon;TfNetMon; \??\C:\Windows\system32\drivers\TfNetMon.sys [2010-02-02 33552]
R3 tunnel;Microsoft Tunnel Miniport Adapter Driver; C:\Windows\system32\DRIVERS\tunnel.sys [2009-07-14 108544]
R3 umbus;UMBus Enumerator Driver; C:\Windows\system32\DRIVERS\umbus.sys [2009-07-14 39936]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\Windows\system32\DRIVERS\usbccgp.sys [2009-07-14 75264]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\Windows\system32\DRIVERS\usbehci.sys [2009-10-24 41984]
R3 usbhub;Microsoft USB Standard Hub Driver; C:\Windows\system32\DRIVERS\usbhub.sys [2009-10-24 258560]
R3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\Windows\system32\DRIVERS\usbohci.sys [2009-07-14 20480]
R3 USBSTOR;USB Mass Storage Driver; C:\Windows\system32\DRIVERS\USBSTOR.SYS [2009-07-14 74752]
R3 vwifibus;Virtual WiFi Bus Driver; C:\Windows\system32\DRIVERS\vwifibus.sys [2009-07-14 19968]
R3 WudfPf;User Mode Driver Frameworks Platform Driver; C:\Windows\system32\drivers\WudfPf.sys [2009-07-14 92672]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2009-07-14 132224]
S3 1394ohci;1394 OHCI Compliant Host Controller; C:\Windows\system32\DRIVERS\1394ohci.sys [2009-07-14 163328]
S3 a5mrp2wl;a5mrp2wl; C:\Windows\system32\drivers\a5mrp2wl.sys []
S3 AcpiPmi;ACPI Power Meter Driver; C:\Windows\system32\DRIVERS\acpipmi.sys [2009-07-14 9728]
S3 adp94xx;adp94xx; C:\Windows\system32\DRIVERS\adp94xx.sys [2009-07-14 422976]
S3 adpahci;adpahci; C:\Windows\system32\DRIVERS\adpahci.sys [2009-07-14 297552]
S3 adpu320;adpu320; C:\Windows\system32\DRIVERS\adpu320.sys [2009-07-14 146512]
S3 agp440;Intel AGP Bus Filter; C:\Windows\system32\DRIVERS\agp440.sys [2009-07-14 53312]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 amdide;amdide; C:\Windows\system32\DRIVERS\amdide.sys [2009-07-14 14912]
S3 AmdPPM;AMD Processor Driver; C:\Windows\system32\DRIVERS\amdppm.sys [2009-07-14 52736]
S3 amdsata;amdsata; C:\Windows\system32\DRIVERS\amdsata.sys [2009-07-14 79952]
S3 amdsbs;amdsbs; C:\Windows\system32\DRIVERS\amdsbs.sys [2009-07-14 159312]
S3 AppID;@%systemroot%\system32\appidsvc.dll,-102; C:\Windows\system32\drivers\appid.sys [2009-07-14 50176]
S3 arc;arc; C:\Windows\system32\DRIVERS\arc.sys [2009-07-14 76368]
S3 arcsas;arcsas; C:\Windows\system32\DRIVERS\arcsas.sys [2009-07-14 86608]
S3 b06bdrv;Broadcom NetXtreme II VBD; C:\Windows\system32\DRIVERS\bxvbdx.sys [2009-07-13 430080]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 BrFiltLo;Brother USB Mass-Storage Lower Filter Driver; C:\Windows\system32\DRIVERS\BrFiltLo.sys [2009-07-13 13568]
S3 BrFiltUp;Brother USB Mass-Storage Upper Filter Driver; C:\Windows\system32\DRIVERS\BrFiltUp.sys [2009-07-13 5248]
S3 Brserid;Brother MFC Serial Port Interface Driver (WDM); C:\Windows\System32\Drivers\Brserid.sys [2009-07-14 272128]
S3 BrSerWdm;Brother WDM Serial driver; C:\Windows\System32\Drivers\BrSerWdm.sys [2009-07-13 62336]
S3 BrUsbMdm;Brother MFC USB Fax Only Modem; C:\Windows\System32\Drivers\BrUsbMdm.sys [2009-07-13 12160]
S3 BrUsbSer;Brother MFC USB Serial WDM Driver; C:\Windows\System32\Drivers\BrUsbSer.sys [2009-07-13 11904]
S3 BTHMODEM;Bluetooth Serial Communications Driver; C:\Windows\system32\DRIVERS\bthmodem.sys [2009-07-14 56320]
S3 circlass;Consumer IR Devices; C:\Windows\system32\DRIVERS\circlass.sys [2009-07-14 37888]
S3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2009-07-14 14080]
S3 Compbatt;Compbatt; C:\Windows\system32\DRIVERS\compbatt.sys [2009-07-14 19024]
S3 ebdrv;Broadcom NetXtreme II 10 GigE VBD; C:\Windows\system32\DRIVERS\evbdx.sys [2009-07-13 3100160]
S3 elxstor;elxstor; C:\Windows\system32\DRIVERS\elxstor.sys [2009-07-14 453712]
S3 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\DRIVERS\errdev.sys [2009-07-14 7168]
S3 exfat;exFAT File System Driver; C:\Windows\system32\drivers\exfat.sys [2009-07-14 142336]
S3 Filetrace;@%SystemRoot%\system32\drivers\filetrace.sys,-10001; C:\Windows\system32\drivers\filetrace.sys [2009-07-14 28160]
S3 FsDepends;@%SystemRoot%\system32\drivers\fsdepends.sys,-10001; C:\Windows\System32\drivers\FsDepends.sys [2009-07-14 46160]
S3 gagp30kx;Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms; C:\Windows\system32\DRIVERS\gagp30kx.sys [2009-07-14 57936]
S3 hcw85cir;Hauppauge Consumer Infrared Receiver; C:\Windows\system32\drivers\hcw85cir.sys [2009-07-13 26624]
S3 HidBatt;HID UPS Battery Driver; C:\Windows\system32\DRIVERS\HidBatt.sys [2009-07-14 21504]
S3 HidBth;Microsoft Bluetooth HID Miniport; C:\Windows\system32\DRIVERS\hidbth.sys [2009-07-14 91136]
S3 HidIr;Microsoft Infrared HID Driver; C:\Windows\system32\DRIVERS\hidir.sys [2009-07-14 37888]
S3 HpSAMD;HpSAMD; C:\Windows\system32\DRIVERS\HpSAMD.sys [2009-07-14 67152]
S3 iaStorV;iaStorV; C:\Windows\system32\DRIVERS\iaStorV.sys [2009-07-14 332352]
S3 iirsp;iirsp; C:\Windows\system32\DRIVERS\iirsp.sys [2009-07-14 41040]
S3 intelide;intelide; C:\Windows\system32\DRIVERS\intelide.sys [2009-07-14 15424]
S3 intelppm;Intel Processor Driver; C:\Windows\system32\DRIVERS\intelppm.sys [2009-07-14 53760]
S3 IPMIDRV;IPMIDRV; C:\Windows\system32\DRIVERS\IPMIDrv.sys [2009-07-14 65536]
S3 isapnp;isapnp; C:\Windows\system32\DRIVERS\isapnp.sys [2009-07-14 46656]
S3 iScsiPrt;iScsiPort Driver; C:\Windows\system32\DRIVERS\msiscsi.sys [2009-07-14 186960]
S3 LSI_FC;LSI_FC; C:\Windows\system32\DRIVERS\lsi_fc.sys [2009-07-14 95824]
S3 LSI_SAS;LSI_SAS; C:\Windows\system32\DRIVERS\lsi_sas.sys [2009-07-14 89168]
S3 LSI_SAS2;LSI_SAS2; C:\Windows\system32\DRIVERS\lsi_sas2.sys [2009-07-14 54864]
S3 LSI_SCSI;LSI_SCSI; C:\Windows\system32\DRIVERS\lsi_scsi.sys [2009-07-14 96848]
S3 megasas;megasas; C:\Windows\system32\DRIVERS\megasas.sys [2009-07-14 30800]
S3 MegaSR;MegaSR; C:\Windows\system32\DRIVERS\MegaSR.sys [2009-07-14 235584]
S3 mpio;mpio; C:\Windows\system32\DRIVERS\mpio.sys [2009-07-14 130624]
S3 msahci;msahci; C:\Windows\system32\DRIVERS\msahci.sys [2009-07-14 27712]
S3 msdsm;msdsm; C:\Windows\system32\DRIVERS\msdsm.sys [2009-07-14 115792]
S3 mshidkmdf;@%SystemRoot%\system32\drivers\mshidkmdf.sys,-100; C:\Windows\System32\drivers\mshidkmdf.sys [2009-07-14 4096]
S3 MsRPC;MsRPC; C:\Windows\system32\drivers\MsRPC.sys [2009-07-14 162896]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2009-07-14 6144]
S3 MTConfig;Microsoft Input Configuration Driver; C:\Windows\system32\DRIVERS\MTConfig.sys [2009-07-14 12288]
S3 NdisCap;NDIS Capture LightWeight Filter; C:\Windows\system32\DRIVERS\ndiscap.sys [2009-07-14 27136]
S3 nfrd960;nfrd960; C:\Windows\system32\DRIVERS\nfrd960.sys [2009-07-14 44624]
S3 nv_agp;NVIDIA nForce AGP Bus Filter; C:\Windows\system32\DRIVERS\nv_agp.sys [2009-07-14 105024]
S3 ohci1394;1394 OHCI Compliant Host Controller (Legacy); C:\Windows\system32\DRIVERS\ohci1394.sys [2009-07-14 62464]
S3 ql2300;ql2300; C:\Windows\system32\DRIVERS\ql2300.sys [2009-07-14 1383488]
S3 ql40xx;ql40xx; C:\Windows\system32\DRIVERS\ql40xx.sys [2009-07-14 106064]
S3 QWAVEdrv;@%SystemRoot%\system32\drivers\qwavedrv.sys,-1; C:\Windows\system32\drivers\qwavedrv.sys [2009-07-14 31744]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632]
S3 sbp2port;sbp2port; C:\Windows\system32\DRIVERS\sbp2port.sys [2009-07-14 85568]
S3 scfilter;@%SystemRoot%\System32\drivers\scfilter.sys,-11; C:\Windows\System32\DRIVERS\scfilter.sys [2009-07-14 26624]
S3 sermouse;Serial Mouse Driver; C:\Windows\system32\DRIVERS\sermouse.sys [2009-07-14 19968]
S3 sffdisk;SFF Storage Class Driver; C:\Windows\system32\DRIVERS\sffdisk.sys [2009-07-14 11264]
S3 sffp_mmc;SFF Storage Protocol Driver for MMC; C:\Windows\system32\DRIVERS\sffp_mmc.sys [2009-07-14 12288]
S3 sffp_sd;SFF Storage Protocol Driver for SDBus; C:\Windows\system32\DRIVERS\sffp_sd.sys [2009-07-14 12800]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 SiSRaid2;SiSRaid2; C:\Windows\system32\DRIVERS\SiSRaid2.sys [2009-07-14 40016]
S3 SiSRaid4;SiSRaid4; C:\Windows\system32\DRIVERS\sisraid4.sys [2009-07-14 77888]
S3 Smb;@%SystemRoot%\system32\tcpipcfg.dll,-50005; C:\Windows\system32\DRIVERS\smb.sys [2009-07-14 71168]
S3 stexstor;stexstor; C:\Windows\system32\DRIVERS\stexstor.sys [2009-07-14 21072]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224]
S3 TCPIP6;Microsoft IPv6 Protocol Driver; C:\Windows\system32\DRIVERS\tcpip.sys [2009-07-14 1285712]
S3 tssecsrv;@%SystemRoot%\System32\DRIVERS\tssecsrv.sys,-101; C:\Windows\System32\DRIVERS\tssecsrv.sys [2009-07-14 30208]
S3 uagp35;Microsoft AGPv3.5 Filter; C:\Windows\system32\DRIVERS\uagp35.sys [2009-07-14 55888]
S3 uliagpkx;Uli AGP Bus Filter; C:\Windows\system32\DRIVERS\uliagpkx.sys [2009-07-14 57424]
S3 UmPass;Microsoft UMPass Driver; C:\Windows\system32\DRIVERS\umpass.sys [2009-07-14 8192]
S3 usbcir;eHome Infrared Receiver (USBCIR); C:\Windows\system32\DRIVERS\usbcir.sys [2009-07-14 86016]
S3 usbprint;Microsoft USB PRINTER Class; C:\Windows\system32\DRIVERS\usbprint.sys [2009-07-14 19968]
S3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\Windows\system32\DRIVERS\usbuhci.sys [2009-07-14 24064]
S3 vga;vga; C:\Windows\system32\DRIVERS\vgapnp.sys [2009-07-14 26112]
S3 vhdmp;vhdmp; C:\Windows\system32\DRIVERS\vhdmp.sys [2009-07-14 159824]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920]
S3 vsmraid;vsmraid; C:\Windows\system32\DRIVERS\vsmraid.sys [2009-07-14 141904]
S3 WacomPen;Wacom Serial Pen HID Driver; C:\Windows\system32\DRIVERS\wacompen.sys [2009-07-14 21632]
S3 Wd;Wd; C:\Windows\system32\DRIVERS\wd.sys [2009-07-14 19024]
S3 WIMMount;WIMMount; C:\Windows\system32\drivers\wimmount.sys [2009-07-14 19008]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 34944]
S3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2009-07-14 11264]
S4 crcdisk;Crcdisk Filter Driver; C:\Windows\system32\DRIVERS\crcdisk.sys [2009-07-14 22096]
problem mam takyto vcera som neviem ako cistou nahodou chytil virus skor trojana, neviem preco ale ani eset ani spybot snd ani ad aware nic nezachytili.
strasne mi spomaluje komp a web stranky
spravil som scan esetu nic , ad aware nic, spybot snd nic,
jedine spyware doctor mi nasiel trojan-dropper.agent ale nechce mi ho zmazat ze nieje mozne zmazat a vyzaduje restart na zmazanie ale ani to nepomaha.
stiahol som si este trojan killer ten nasiel tiez ale ked dam zmazat tak zmaze ale na novom scene je nanovo cize nezmazal.
vopred dakujem za pomoc
posielam vam tu log
Logfile of random's system information tool 1.06 (written by random/random)
Run by Administrator at 2010-03-23 23:02:54
Microsoft Windows 7 Ultimate Service Pack 2
System drive C: has 369 GB (90%) free of 410 GB
Total RAM: 2046 MB (34% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:59:52, on 23. 3. 2010
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Windows\System32\smss.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\atieclxx.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Windows\system32\PnkBstrA.exe
C:\Program Files\Spyware Doctor\pctsAuxs.exe
C:\Program Files\Spyware Doctor\pctsSvc.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Spyware Doctor\pctsTray.exe
C:\Program Files\Common Files\ACD Systems\EN\DevDetect.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Spyware Doctor\TFEngine\TFService.exe
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Peto\Hijackthis\RSIT.exe
C:\Peto\Hijackthis\Administrator.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource= ... =CT1750559
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Browser Defender BHO - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O3 - Toolbar: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: PC Tools Browser Guard - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [ISTray] "C:\Program Files\Spyware Doctor\pctsTray.exe"
O4 - HKCU\..\Run: [Device Detector] DevDetect.exe -autorun
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O9 - Extra button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O13 - Gopher Prefix:
O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} (asusTek_sysctrl Class) - http://support.asus.com/common/asusTek_sys_ctrl.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Browser Defender Update Service - Threat Expert Ltd. - C:\Program Files\Spyware Doctor\BDT\BDTUpdateService.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: ThreatFire - PC Tools - C:\Program Files\Spyware Doctor\TFEngine\TFService.exe
--
End of file - 8862 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Ad-Aware Update (Weekly).job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A0F3D1B-0909-4FF4-B272-609CCE6054E7}]
PC Tools Browser Guard BHO - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll [2010-01-22 567248]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype add-on for Internet Explorer - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08 804136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-02-04 1197448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2009-07-02 2215960]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2009-07-02 2215960]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-02-04 1197448]
{472734EA-242A-422B-ADF8-83D1E48CC825} - PC Tools Browser Guard - C:\Program Files\Spyware Doctor\BDT\PCTBrowserDefender.dll [2010-01-22 567248]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2010-02-26 2140880]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-11-10 417792]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2010-02-15 141608]
"ISTray"=C:\Program Files\Spyware Doctor\pctsTray.exe [2010-03-09 1286608]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Device Detector"=DevDetect.exe -autorun []
"SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-03-05 2260480]
"Skype"=C:\Program Files\Skype\Phone\Skype.exe [2010-03-09 26100520]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Lavasoft Ad-Aware Service]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-03-23 22:57:18 ----D---- C:\rsit
2010-03-23 21:30:01 ----D---- C:\Program Files\GridinSoft Trojan Killer
2010-03-23 19:17:44 ----D---- C:\Users\Administrator\AppData\Roaming\Skype
2010-03-23 19:17:32 ----D---- C:\Users\Administrator\AppData\Roaming\ESET
2010-03-23 17:21:47 ----D---- C:\Users\Administrator\AppData\Roaming\TrojanHunter
2010-03-23 17:05:48 ----R---- C:\Windows\system32\streamhlp.dll
2010-03-23 17:05:09 ----D---- C:\Program Files\TrojanHunter 5.0
2010-03-23 15:48:07 ----D---- C:\ProgramData\Simply Super Software
2010-03-23 00:08:15 ----A---- C:\Windows\BDTSupport.dll
2010-03-23 00:08:13 ----A---- C:\Windows\SGDetectionTool.dll
2010-03-23 00:08:13 ----A---- C:\Windows\PCTBDRes.dll
2010-03-23 00:08:13 ----A---- C:\Windows\PCTBDCore.dll
2010-03-23 00:05:28 ----D---- C:\Program Files\Common Files\PC Tools
2010-03-23 00:05:26 ----D---- C:\Users\Administrator\AppData\Roaming\PC Tools
2010-03-23 00:05:26 ----D---- C:\ProgramData\PC Tools
2010-03-23 00:05:26 ----D---- C:\Program Files\Spyware Doctor
2010-03-23 00:05:11 ----AD---- C:\ProgramData\TEMP
2010-03-22 23:42:04 ----A---- C:\Windows\system32\GEARAspi.dll
2010-03-22 23:39:49 ----D---- C:\Program Files\iPod
2010-03-22 23:39:48 ----D---- C:\ProgramData\{755AC846-7372-4AC8-8550-C52491DAA8BD}
2010-03-22 23:39:48 ----D---- C:\Program Files\iTunes
2010-03-22 23:36:45 ----D---- C:\Program Files\Bonjour
2010-03-22 23:35:04 ----D---- C:\Program Files\QuickTime
2010-03-22 23:35:03 ----D---- C:\ProgramData\Apple Computer
2010-03-22 23:33:21 ----D---- C:\Program Files\Apple Software Update
2010-03-22 23:31:05 ----A---- C:\Windows\system32\lsdelete.exe
2010-03-22 23:30:22 ----D---- C:\ProgramData\Apple
2010-03-22 23:30:22 ----D---- C:\Program Files\Common Files\Apple
2010-03-22 21:59:45 ----D---- C:\Program Files\EarthView
2010-03-21 00:30:56 ----A---- C:\Windows\system32\PnkBstrB.exe
2010-03-21 00:30:49 ----A---- C:\Windows\system32\PnkBstrA.exe
2010-03-21 00:30:47 ----A---- C:\Windows\system32\pbsvc_bc2.exe
2010-03-21 00:19:32 ----D---- C:\Hry
2010-03-20 23:59:50 ----D---- C:\Program Files\DAEMON Tools Lite
2010-03-20 23:59:09 ----D---- C:\Users\Administrator\AppData\Roaming\DAEMON Tools Lite
2010-03-20 23:58:06 ----D---- C:\ProgramData\DAEMON Tools Lite
2010-03-20 17:18:46 ----A---- C:\Windows\system32\XAudio2_5.dll
2010-03-20 17:18:40 ----A---- C:\Windows\system32\xactengine3_5.dll
2010-03-20 17:18:40 ----A---- C:\Windows\system32\d3dx11_42.dll
2010-03-20 17:18:40 ----A---- C:\Windows\system32\d3dcsx_42.dll
2010-03-20 17:18:40 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2010-03-20 17:18:39 ----A---- C:\Windows\system32\D3DX9_41.dll
2010-03-20 17:18:39 ----A---- C:\Windows\system32\d3dx10_42.dll
2010-03-20 17:18:39 ----A---- C:\Windows\system32\d3dx10_41.dll
2010-03-20 17:18:39 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2010-03-20 17:18:38 ----A---- C:\Windows\system32\XAudio2_4.dll
2010-03-20 17:18:38 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2010-03-20 17:18:38 ----A---- C:\Windows\system32\xactengine3_4.dll
2010-03-20 17:18:38 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2010-03-20 17:18:38 ----A---- C:\Windows\system32\d3dx10_40.dll
2010-03-20 17:18:38 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2010-03-20 17:18:37 ----A---- C:\Windows\system32\D3DX9_40.dll
2010-03-20 17:18:36 ----A---- C:\Windows\system32\XAudio2_3.dll
2010-03-20 17:18:36 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2010-03-20 17:18:34 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-03-20 17:18:34 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-03-20 17:18:34 ----A---- C:\Windows\system32\xactengine3_3.dll
2010-03-20 17:18:34 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2010-03-20 17:18:29 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-03-20 17:18:29 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-03-20 17:18:29 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-03-20 17:18:29 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-03-20 17:18:28 ----A---- C:\Windows\system32\XAudio2_1.dll
2010-03-20 17:18:28 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2010-03-20 17:18:27 ----A---- C:\Windows\system32\xactengine3_1.dll
2010-03-20 17:18:27 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2010-03-20 17:18:27 ----A---- C:\Windows\system32\D3DX9_38.dll
2010-03-20 17:18:27 ----A---- C:\Windows\system32\d3dx10_38.dll
2010-03-20 17:18:27 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2010-03-20 17:18:26 ----A---- C:\Windows\system32\XAudio2_0.dll
2010-03-20 17:18:24 ----A---- C:\Windows\system32\xactengine3_0.dll
2010-03-20 17:18:24 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2010-03-20 17:18:24 ----A---- C:\Windows\system32\D3DX9_37.dll
2010-03-20 17:18:24 ----A---- C:\Windows\system32\d3dx10_37.dll
2010-03-20 17:18:24 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2010-03-20 17:18:23 ----A---- C:\Windows\system32\xactengine2_10.dll
2010-03-20 17:18:22 ----A---- C:\Windows\system32\d3dx9_36.dll
2010-03-20 17:18:22 ----A---- C:\Windows\system32\d3dx10_36.dll
2010-03-20 17:18:22 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2010-03-20 17:18:21 ----A---- C:\Windows\system32\xactengine2_9.dll
2010-03-20 17:18:21 ----A---- C:\Windows\system32\d3dx9_35.dll
2010-03-20 17:18:21 ----A---- C:\Windows\system32\d3dx10_35.dll
2010-03-20 17:18:21 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2010-03-20 17:18:20 ----A---- C:\Windows\system32\xinput1_3.dll
2010-03-20 17:18:20 ----A---- C:\Windows\system32\xactengine2_8.dll
2010-03-20 17:18:20 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2010-03-20 17:18:20 ----A---- C:\Windows\system32\d3dx9_34.dll
2010-03-20 17:18:20 ----A---- C:\Windows\system32\d3dx10_34.dll
2010-03-20 17:18:20 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2010-03-20 17:18:19 ----A---- C:\Windows\system32\xactengine2_7.dll
2010-03-20 17:18:19 ----A---- C:\Windows\system32\d3dx10_33.dll
2010-03-20 17:18:19 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2010-03-20 17:18:18 ----A---- C:\Windows\system32\xactengine2_6.dll
2010-03-20 17:18:18 ----A---- C:\Windows\system32\d3dx9_33.dll
2010-03-20 17:18:17 ----A---- C:\Windows\system32\xactengine2_5.dll
2010-03-20 17:18:17 ----A---- C:\Windows\system32\d3dx9_32.dll
2010-03-20 17:18:17 ----A---- C:\Windows\system32\d3dx10.dll
2010-03-20 17:18:16 ----A---- C:\Windows\system32\xactengine2_4.dll
2010-03-20 17:18:16 ----A---- C:\Windows\system32\x3daudio1_1.dll
2010-03-20 17:18:12 ----A---- C:\Windows\system32\xactengine2_3.dll
2010-03-20 17:18:11 ----A---- C:\Windows\system32\xinput1_2.dll
2010-03-20 17:18:10 ----A---- C:\Windows\system32\xinput1_1.dll
2010-03-20 17:18:10 ----A---- C:\Windows\system32\xactengine2_2.dll
2010-03-20 17:18:08 ----A---- C:\Windows\system32\xactengine2_1.dll
2010-03-20 17:17:56 ----A---- C:\Windows\system32\xactengine2_0.dll
2010-03-20 17:17:56 ----A---- C:\Windows\system32\x3daudio1_0.dll
2010-03-20 17:17:56 ----A---- C:\Windows\system32\d3dx9_30.dll
2010-03-20 17:17:56 ----A---- C:\Windows\system32\d3dx9_29.dll
2010-03-20 17:17:56 ----A---- C:\Windows\system32\d3dx9_28.dll
2010-03-20 17:17:56 ----A---- C:\Windows\system32\d3dx9_27.dll
2010-03-20 17:17:55 ----A---- C:\Windows\system32\d3dx9_26.dll
2010-03-20 17:17:55 ----A---- C:\Windows\system32\d3dx9_25.dll
2010-03-20 17:17:55 ----A---- C:\Windows\system32\d3dx9_24.dll
2010-03-20 17:10:27 ----D---- C:\Users\Administrator\AppData\Roaming\DeskSoft
2010-03-20 16:16:56 ----D---- C:\Program Files\Common Files\Steam
2010-03-18 23:02:40 ----DC---- C:\Windows\system32\DRVSTORE
2010-03-18 22:59:56 ----HDC---- C:\ProgramData\{74D08EB8-01D1-4BAE-91E3-F30C1B031AC6}
2010-03-18 22:59:23 ----D---- C:\ProgramData\Lavasoft
2010-03-18 22:59:23 ----D---- C:\Program Files\Lavasoft
2010-03-18 22:30:21 ----A---- C:\Windows\system32\D3DX9_42.dll
2010-03-18 22:30:18 ----A---- C:\Windows\system32\d3dx9_31.dll
2010-03-18 22:28:54 ----D---- C:\Program Files\Winamp Detect
2010-03-18 22:27:23 ----D---- C:\Program Files\Common Files\PX Storage Engine
2010-03-18 22:27:06 ----D---- C:\Users\Administrator\AppData\Roaming\Winamp
2010-03-18 22:27:06 ----D---- C:\Program Files\Winamp
2010-03-18 20:07:08 ----D---- C:\Peto
2010-03-18 19:56:17 ----D---- C:\Program Files\Ask.com
2010-03-18 19:55:46 ----D---- C:\Program Files\BitTorrent
2010-03-18 19:49:33 ----D---- C:\Program Files\Conduit
2010-03-18 19:49:30 ----D---- C:\Program Files\BS_Player
2010-03-18 19:49:18 ----D---- C:\Users\Administrator\AppData\Roaming\BSplayer Pro
2010-03-18 19:49:18 ----D---- C:\Users\Administrator\AppData\Roaming\BSplayer
2010-03-18 19:49:06 ----D---- C:\Program Files\Webteh
2010-03-18 19:44:45 ----D---- C:\Program Files\Common Files\Skype
2010-03-18 19:44:43 ----RD---- C:\Program Files\Skype
2010-03-18 19:44:39 ----D---- C:\ProgramData\Skype
2010-03-18 19:43:23 ----D---- C:\Program Files\CCleaner
2010-03-18 19:39:38 ----D---- C:\ProgramData\Spybot - Search & Destroy
2010-03-18 19:39:38 ----D---- C:\Program Files\Spybot - Search & Destroy
2010-03-18 16:45:41 ----D---- C:\ProgramData\ESET
2010-03-18 16:45:41 ----D---- C:\Program Files\ESET
2010-03-17 13:18:24 ----D---- C:\Program Files\Microsoft Silverlight
2010-03-17 11:07:38 ----D---- C:\Users\Administrator\AppData\Roaming\GHISLER
2010-03-17 11:07:38 ----D---- C:\Program Files\totalcmd
2010-03-16 14:50:20 ----A---- C:\Windows\system32\unrar.dll
2010-03-16 14:50:20 ----A---- C:\Windows\avisplitter.ini
2010-03-16 14:50:19 ----A---- C:\Windows\system32\yv12vfw.dll
2010-03-16 14:50:19 ----A---- C:\Windows\system32\xvidvfw.dll
2010-03-16 14:50:19 ----A---- C:\Windows\system32\xvidcore.dll
2010-03-16 14:50:18 ----A---- C:\Windows\system32\ff_vfw.dll.manifest
2010-03-16 14:50:18 ----A---- C:\Windows\system32\ff_vfw.dll
2010-03-16 14:50:17 ----D---- C:\Program Files\K-Lite Codec Pack
2010-03-16 14:45:07 ----D---- C:\Users\Administrator\AppData\Roaming\ACD Systems
2010-03-16 14:42:10 ----D---- C:\ProgramData\ACD Systems
2010-03-16 14:42:01 ----D---- C:\Program Files\Common Files\ACD Systems
2010-03-16 14:42:01 ----D---- C:\Program Files\ACD Systems
2010-03-16 14:29:37 ----D---- C:\Users\Administrator\AppData\Roaming\WinRAR
2010-03-16 14:29:24 ----D---- C:\Program Files\WinRAR
2010-03-16 14:25:12 ----D---- C:\ProgramData\WinZip
2010-03-16 14:25:02 ----D---- C:\Program Files\WinZip
2010-03-16 14:00:57 ----D---- C:\ProgramData\Nero
2010-03-16 14:00:57 ----D---- C:\Program Files\Nero
2010-03-16 14:00:57 ----A---- C:\Windows\system32\TwnLib4.dll
2010-03-16 14:00:57 ----A---- C:\Windows\system32\imagXRA7.dll
2010-03-16 14:00:57 ----A---- C:\Windows\system32\imagXR7.dll
2010-03-16 14:00:57 ----A---- C:\Windows\system32\imagXpr7.dll
2010-03-16 14:00:57 ----A---- C:\Windows\system32\imagX7.dll
2010-03-16 14:00:51 ----D---- C:\Program Files\Common Files\Nero
2010-03-16 13:46:45 ----D---- C:\ProgramData\Adobe
2010-03-16 13:46:34 ----D---- C:\Program Files\Common Files\Adobe
2010-03-16 13:46:34 ----D---- C:\Program Files\Adobe
2010-03-15 15:06:40 ----D---- C:\Program Files\Microsoft Works
2010-03-15 15:05:49 ----D---- C:\Program Files\Microsoft Visual Studio
2010-03-15 15:05:49 ----D---- C:\Program Files\Common Files\DESIGNER
2010-03-15 15:05:35 ----D---- C:\Windows\PCHEALTH
2010-03-15 15:05:35 ----D---- C:\Program Files\Microsoft.NET
2010-03-15 15:02:26 ----D---- C:\ProgramData\Microsoft Help
2010-03-15 15:02:26 ----D---- C:\Program Files\Microsoft Office
2010-03-15 15:00:42 ----A---- C:\Windows\system32\browserchoice.exe
2010-03-15 14:58:44 ----RHD---- C:\MSOCache
2010-03-15 14:21:39 ----D---- C:\Program Files\Common Files\ATI Technologies
2010-03-15 14:19:15 ----SHD---- C:\Windows\Installer
2010-03-15 14:19:14 ----D---- C:\Program Files\ATI
2010-03-15 14:15:53 ----D---- C:\Program Files\ATI Technologies
2010-03-15 14:13:02 ----D---- C:\ATI
2010-03-15 13:52:56 ----D---- C:\Users\Administrator\AppData\Roaming\Macromedia
2010-03-15 13:52:54 ----D---- C:\Users\Administrator\AppData\Roaming\Adobe
2010-03-15 13:52:49 ----D---- C:\Windows\system32\Macromed
2010-03-15 13:12:47 ----A---- C:\Windows\system32\msv1_0.dll
2010-03-15 13:09:30 ----A---- C:\Windows\system32\MRT.exe
2010-03-15 13:06:33 ----A---- C:\Windows\system32\jscript.dll
2010-03-15 13:06:31 ----A---- C:\Windows\system32\mshtml.dll
2010-03-15 13:06:30 ----A---- C:\Windows\system32\urlmon.dll
2010-03-15 13:06:30 ----A---- C:\Windows\system32\ieframe.dll
2010-03-15 13:06:30 ----A---- C:\Windows\system32\iedkcs32.dll
2010-03-15 13:06:29 ----A---- C:\Windows\system32\wininet.dll
2010-03-15 13:06:29 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-03-15 13:06:19 ----A---- C:\Windows\system32\wmp.dll
2010-03-15 13:06:18 ----A---- C:\Windows\system32\wmploc.DLL
2010-03-15 13:06:18 ----A---- C:\Windows\system32\winresume.exe
2010-03-15 13:06:18 ----A---- C:\Windows\system32\winload.exe
2010-03-15 13:06:18 ----A---- C:\Windows\system32\CertEnroll.dll
2010-03-15 13:06:10 ----A---- C:\Windows\system32\kernel32.dll
2010-03-15 13:06:09 ----A---- C:\Windows\system32\ntoskrnl.exe
2010-03-15 13:06:09 ----A---- C:\Windows\system32\ntkrnlpa.exe
2010-03-15 13:06:09 ----A---- C:\Windows\system32\apphelp.dll
2010-03-15 13:06:07 ----A---- C:\Windows\system32\quartz.dll
2010-03-15 13:06:07 ----A---- C:\Windows\system32\msyuv.dll
2010-03-15 13:06:07 ----A---- C:\Windows\system32\msvidc32.dll
2010-03-15 13:06:07 ----A---- C:\Windows\system32\mciavi32.dll
2010-03-15 13:06:07 ----A---- C:\Windows\system32\iyuv_32.dll
2010-03-15 13:06:07 ----A---- C:\Windows\system32\avifil32.dll
2010-03-15 13:06:06 ----A---- C:\Windows\system32\tsbyuv.dll
2010-03-15 13:06:06 ----A---- C:\Windows\system32\msrle32.dll
2010-03-15 13:06:04 ----A---- C:\Windows\system32\t2embed.dll
2010-03-15 13:06:04 ----A---- C:\Windows\system32\fontsub.dll
2010-03-15 13:06:04 ----A---- C:\Windows\system32\atmfd.dll
2010-03-15 13:05:56 ----A---- C:\Windows\system32\psisdecd.dll
2010-03-15 13:05:56 ----A---- C:\Windows\system32\msdri.dll
2010-03-15 13:05:56 ----A---- C:\Windows\system32\CPFilters.dll
2010-03-15 13:05:54 ----A---- C:\Windows\system32\winlogon.exe
2010-03-15 13:05:54 ----A---- C:\Windows\explorer.exe
2010-03-15 13:05:21 ----A---- C:\Windows\system32\msasn1.dll
2010-03-15 13:00:20 ----A---- C:\Windows\system32\tzres.dll
2010-03-15 13:00:10 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-03-15 13:00:10 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-03-15 13:00:10 ----A---- C:\Windows\system32\secproc_isv.dll
2010-03-15 13:00:10 ----A---- C:\Windows\system32\secproc.dll
2010-03-15 13:00:10 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-03-15 13:00:10 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-03-15 13:00:10 ----A---- C:\Windows\system32\RMActivate.exe
2010-03-15 13:00:09 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-03-15 12:44:31 ----N---- C:\Windows\system32\MpSigStub.exe
2010-03-15 12:34:51 ----D---- C:\Users\Administrator\AppData\Roaming\Identities
2010-03-15 12:34:40 ----SD---- C:\Users\Administrator\AppData\Roaming\Microsoft
2010-03-15 12:34:40 ----D---- C:\Users\Administrator\AppData\Roaming\Media Center Programs
2010-03-15 12:25:53 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-03-15 12:21:08 ----SHD---- C:\Recovery
2010-03-15 11:48:01 ----D---- C:\Windows\SoftwareDistribution
2010-03-15 11:41:34 ----D---- C:\Windows\Prefetch
2010-03-15 11:41:04 ----SHD---- C:\System Volume Information
2010-03-15 11:40:11 ----D---- C:\Windows\Panther
2010-03-15 11:39:59 ----RASH---- C:\BOOTSECT.BAK
2010-03-15 11:39:52 ----SHD---- C:\Boot
======List of files/folders modified in the last 1 months======
2010-03-23 23:01:17 ----D---- C:\Windows\Temp
2010-03-23 23:01:07 ----D---- C:\Windows\system32\Tasks
2010-03-23 22:47:58 ----D---- C:\Windows\System32
2010-03-23 22:47:57 ----D---- C:\Windows\inf
2010-03-23 22:41:20 ----D---- C:\Windows\system32\config
2010-03-23 22:30:50 ----SD---- C:\ProgramData\Microsoft
2010-03-23 22:16:36 ----D---- C:\Windows\Tasks
2010-03-23 22:09:59 ----RD---- C:\Program Files
2010-03-23 15:48:07 ----HD---- C:\ProgramData
2010-03-23 00:51:37 ----D---- C:\Windows\system32\catroot2
2010-03-23 00:31:42 ----D---- C:\Windows
2010-03-23 00:15:20 ----D---- C:\Windows\system32\drivers
2010-03-23 00:05:28 ----D---- C:\Program Files\Common Files
2010-03-22 23:42:05 ----D---- C:\Windows\system32\catroot
2010-03-22 23:36:17 ----D---- C:\Program Files\Internet Explorer
2010-03-22 23:32:30 ----D---- C:\Windows\system32\DriverStore
2010-03-21 00:30:45 ----D---- C:\Windows\system32\LogFiles
2010-03-21 00:18:52 ----RSD---- C:\Windows\assembly
2010-03-21 00:15:11 ----D---- C:\Windows\winsxs
2010-03-20 17:18:00 ----D---- C:\Windows\Microsoft.NET
2010-03-20 17:17:43 ----D---- C:\Windows\Logs
2010-03-17 12:41:29 ----D---- C:\Windows\system32\wdi
2010-03-17 11:10:54 ----SHD---- C:\$Recycle.Bin
2010-03-17 11:10:42 ----RD---- C:\Users
2010-03-16 09:40:51 ----D---- C:\Windows\rescache
2010-03-15 15:16:05 ----D---- C:\Program Files\Common Files\System
2010-03-15 15:16:05 ----A---- C:\Windows\win.ini
2010-03-15 15:12:43 ----RSD---- C:\Windows\Fonts
2010-03-15 15:12:35 ----D---- C:\Program Files\Common Files\microsoft shared
2010-03-15 15:03:50 ----D---- C:\Windows\ShellNew
2010-03-15 14:37:33 ----D---- C:\Windows\debug
2010-03-15 14:26:53 ----D---- C:\Windows\Downloaded Program Files
2010-03-15 13:17:08 ----D---- C:\Windows\AppPatch
2010-03-15 13:17:07 ----D---- C:\Windows\system32\Boot
2010-03-15 13:17:07 ----D---- C:\Program Files\Windows Media Player
2010-03-15 13:17:04 ----D---- C:\Windows\ehome
2010-03-15 13:08:29 ----D---- C:\Windows\system32\sk-SK
2010-03-15 12:44:06 ----D---- C:\Windows\system32\restore
2010-03-15 12:25:43 ----D---- C:\Windows\system32\wbem
2010-03-15 11:55:27 ----D---- C:\Windows\system32\sysprep
2010-03-15 11:50:59 ----D---- C:\Windows\system32\CodeIntegrity
2010-03-15 11:43:04 ----D---- C:\Windows\CSC
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 blbdrive;blbdrive; C:\Windows\system32\DRIVERS\blbdrive.sys [2009-07-14 35328]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 387584]
R1 DfsC;@%systemroot%\system32\drivers\dfsc.sys,-101; C:\Windows\System32\Drivers\dfsc.sys [2009-07-14 78336]
R1 discache;@%systemroot%\system32\drivers\discache.sys,-102; C:\Windows\System32\drivers\discache.sys [2009-07-14 32256]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2010-02-26 114984]
R1 nsiproxy;@%SystemRoot%\system32\drivers\nsiproxy.sys,-2; C:\Windows\system32\drivers\nsiproxy.sys [2009-07-14 16896]
R1 pctgntdi;pctgntdi; \??\C:\Windows\System32\drivers\pctgntdi.sys [2010-02-05 233136]
R1 RDPENCDD;@%systemroot%\system32\drivers\RDPENCDD.sys,-101; C:\Windows\system32\drivers\rdpencdd.sys [2009-07-14 6656]
R1 RDPREFMP;@%systemroot%\system32\drivers\RdpRefMp.sys,-101; C:\Windows\system32\drivers\rdprefmp.sys [2009-07-14 7168]
R1 tdx;@%SystemRoot%\system32\tcpipcfg.dll,-50004; C:\Windows\system32\DRIVERS\tdx.sys [2009-07-14 74240]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R1 Wanarpv6;@%systemroot%\system32\rascfg.dll,-32012; C:\Windows\system32\DRIVERS\wanarp.sys [2009-07-14 63488]
R1 WfpLwf;WFP Lightweight Filter; C:\Windows\system32\DRIVERS\wfplwf.sys [2009-07-14 9728]
R1 ws2ifsl;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\Windows\system32\drivers\ws2ifsl.sys [2009-07-14 16384]
R2 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2010-02-26 133512]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2010-02-26 134488]
R2 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2010-02-26 41312]
R2 lltdio;Link-Layer Topology Discovery Mapper I/O Driver; C:\Windows\system32\DRIVERS\lltdio.sys [2009-07-14 48128]
R2 luafv;@%systemroot%\system32\drivers\luafv.sys,-100; C:\Windows\system32\drivers\luafv.sys [2009-07-14 86528]
R2 PEAUTH;PEAUTH; C:\Windows\system32\drivers\peauth.sys [2009-07-14 586752]
R2 rspndr;Link-Layer Topology Discovery Responder; C:\Windows\system32\DRIVERS\rspndr.sys [2009-07-14 60928]
R2 tcpipreg;TCP/IP Registry Compatibility; C:\Windows\System32\drivers\tcpipreg.sys [2009-07-14 34816]
R3 AmdK8;AMD K8 Processor Driver; C:\Windows\system32\DRIVERS\amdk8.sys [2009-07-14 55296]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atipmdag.sys [2010-02-03 5313536]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-02-03 150016]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2009-07-08 2506232]
R3 bowser;@%systemroot%\system32\browser.dll,-102; C:\Windows\system32\DRIVERS\bowser.sys [2009-07-14 69632]
R3 CompositeBus;Composite Bus Enumerator Driver; C:\Windows\system32\DRIVERS\CompositeBus.sys [2009-07-14 31232]
R3 DXGKrnl;LDDM Graphics Subsystem; C:\Windows\System32\drivers\dxgkrnl.sys [2009-10-02 728648]
R3 Epfwndis;Eset Personal Firewall; C:\Windows\system32\DRIVERS\Epfwndis.sys [2010-02-26 32584]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 26600]
R3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2009-07-14 304128]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\Windows\system32\DRIVERS\HDAudBus.sys [2009-07-14 108544]
R3 HidUsb;Microsoft HID Class Driver; C:\Windows\system32\DRIVERS\hidusb.sys [2009-07-14 24064]
R3 kbdhid;Keyboard HID Driver; C:\Windows\system32\DRIVERS\kbdhid.sys [2009-07-14 28160]
R3 monitor;Microsoft Monitor Class Function Driver Service; C:\Windows\system32\DRIVERS\monitor.sys [2009-07-14 23552]
R3 mouhid;Mouse HID Driver; C:\Windows\system32\DRIVERS\mouhid.sys [2009-07-14 26112]
R3 mpsdrv;@%SystemRoot%\system32\FirewallAPI.dll,-23092; C:\Windows\System32\drivers\mpsdrv.sys [2009-07-14 60416]
R3 mrxsmb10;@%systemroot%\system32\wkssvc.dll,-1004; C:\Windows\system32\DRIVERS\mrxsmb10.sys [2010-01-08 221184]
R3 mrxsmb20;@%systemroot%\system32\wkssvc.dll,-1006; C:\Windows\system32\DRIVERS\mrxsmb20.sys [2009-07-14 95744]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2010-03-16 6504]
R3 NativeWifiP;NativeWiFi Filter; C:\Windows\system32\DRIVERS\nwifi.sys [2009-07-14 267264]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm62x32.sys [2009-07-13 347264]
R3 pctplsg;pctplsg; \??\C:\Windows\System32\drivers\pctplsg.sys [2010-02-05 70408]
R3 Ph3xIB32;Philips 713x Inbox PCI TV Card; C:\Windows\system32\DRIVERS\Ph3xIB32.sys [2009-07-13 1311232]
R3 RasAgileVpn;WAN Miniport (IKEv2); C:\Windows\system32\DRIVERS\AgileVpn.sys [2009-07-14 49152]
R3 RasSstp;@%systemroot%\system32\sstpsvc.dll,-202; C:\Windows\system32\DRIVERS\rassstp.sys [2009-07-14 75264]
R3 rdpbus;Remote Desktop Device Redirector Bus Driver; C:\Windows\system32\DRIVERS\rdpbus.sys [2009-07-14 18944]
R3 srv2;@%systemroot%\system32\srvsvc.dll,-104; C:\Windows\System32\DRIVERS\srv2.sys [2009-07-14 306688]
R3 srvnet;srvnet; C:\Windows\System32\DRIVERS\srvnet.sys [2009-12-08 113664]
R3 TfNetMon;TfNetMon; \??\C:\Windows\system32\drivers\TfNetMon.sys [2010-02-02 33552]
R3 tunnel;Microsoft Tunnel Miniport Adapter Driver; C:\Windows\system32\DRIVERS\tunnel.sys [2009-07-14 108544]
R3 umbus;UMBus Enumerator Driver; C:\Windows\system32\DRIVERS\umbus.sys [2009-07-14 39936]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\Windows\system32\DRIVERS\usbccgp.sys [2009-07-14 75264]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\Windows\system32\DRIVERS\usbehci.sys [2009-10-24 41984]
R3 usbhub;Microsoft USB Standard Hub Driver; C:\Windows\system32\DRIVERS\usbhub.sys [2009-10-24 258560]
R3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\Windows\system32\DRIVERS\usbohci.sys [2009-07-14 20480]
R3 USBSTOR;USB Mass Storage Driver; C:\Windows\system32\DRIVERS\USBSTOR.SYS [2009-07-14 74752]
R3 vwifibus;Virtual WiFi Bus Driver; C:\Windows\system32\DRIVERS\vwifibus.sys [2009-07-14 19968]
R3 WudfPf;User Mode Driver Frameworks Platform Driver; C:\Windows\system32\drivers\WudfPf.sys [2009-07-14 92672]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2009-07-14 132224]
S3 1394ohci;1394 OHCI Compliant Host Controller; C:\Windows\system32\DRIVERS\1394ohci.sys [2009-07-14 163328]
S3 a5mrp2wl;a5mrp2wl; C:\Windows\system32\drivers\a5mrp2wl.sys []
S3 AcpiPmi;ACPI Power Meter Driver; C:\Windows\system32\DRIVERS\acpipmi.sys [2009-07-14 9728]
S3 adp94xx;adp94xx; C:\Windows\system32\DRIVERS\adp94xx.sys [2009-07-14 422976]
S3 adpahci;adpahci; C:\Windows\system32\DRIVERS\adpahci.sys [2009-07-14 297552]
S3 adpu320;adpu320; C:\Windows\system32\DRIVERS\adpu320.sys [2009-07-14 146512]
S3 agp440;Intel AGP Bus Filter; C:\Windows\system32\DRIVERS\agp440.sys [2009-07-14 53312]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\DRIVERS\amdagp.sys [2009-07-14 53312]
S3 amdide;amdide; C:\Windows\system32\DRIVERS\amdide.sys [2009-07-14 14912]
S3 AmdPPM;AMD Processor Driver; C:\Windows\system32\DRIVERS\amdppm.sys [2009-07-14 52736]
S3 amdsata;amdsata; C:\Windows\system32\DRIVERS\amdsata.sys [2009-07-14 79952]
S3 amdsbs;amdsbs; C:\Windows\system32\DRIVERS\amdsbs.sys [2009-07-14 159312]
S3 AppID;@%systemroot%\system32\appidsvc.dll,-102; C:\Windows\system32\drivers\appid.sys [2009-07-14 50176]
S3 arc;arc; C:\Windows\system32\DRIVERS\arc.sys [2009-07-14 76368]
S3 arcsas;arcsas; C:\Windows\system32\DRIVERS\arcsas.sys [2009-07-14 86608]
S3 b06bdrv;Broadcom NetXtreme II VBD; C:\Windows\system32\DRIVERS\bxvbdx.sys [2009-07-13 430080]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 BrFiltLo;Brother USB Mass-Storage Lower Filter Driver; C:\Windows\system32\DRIVERS\BrFiltLo.sys [2009-07-13 13568]
S3 BrFiltUp;Brother USB Mass-Storage Upper Filter Driver; C:\Windows\system32\DRIVERS\BrFiltUp.sys [2009-07-13 5248]
S3 Brserid;Brother MFC Serial Port Interface Driver (WDM); C:\Windows\System32\Drivers\Brserid.sys [2009-07-14 272128]
S3 BrSerWdm;Brother WDM Serial driver; C:\Windows\System32\Drivers\BrSerWdm.sys [2009-07-13 62336]
S3 BrUsbMdm;Brother MFC USB Fax Only Modem; C:\Windows\System32\Drivers\BrUsbMdm.sys [2009-07-13 12160]
S3 BrUsbSer;Brother MFC USB Serial WDM Driver; C:\Windows\System32\Drivers\BrUsbSer.sys [2009-07-13 11904]
S3 BTHMODEM;Bluetooth Serial Communications Driver; C:\Windows\system32\DRIVERS\bthmodem.sys [2009-07-14 56320]
S3 circlass;Consumer IR Devices; C:\Windows\system32\DRIVERS\circlass.sys [2009-07-14 37888]
S3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2009-07-14 14080]
S3 Compbatt;Compbatt; C:\Windows\system32\DRIVERS\compbatt.sys [2009-07-14 19024]
S3 ebdrv;Broadcom NetXtreme II 10 GigE VBD; C:\Windows\system32\DRIVERS\evbdx.sys [2009-07-13 3100160]
S3 elxstor;elxstor; C:\Windows\system32\DRIVERS\elxstor.sys [2009-07-14 453712]
S3 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\DRIVERS\errdev.sys [2009-07-14 7168]
S3 exfat;exFAT File System Driver; C:\Windows\system32\drivers\exfat.sys [2009-07-14 142336]
S3 Filetrace;@%SystemRoot%\system32\drivers\filetrace.sys,-10001; C:\Windows\system32\drivers\filetrace.sys [2009-07-14 28160]
S3 FsDepends;@%SystemRoot%\system32\drivers\fsdepends.sys,-10001; C:\Windows\System32\drivers\FsDepends.sys [2009-07-14 46160]
S3 gagp30kx;Microsoft Generic AGPv3.0 Filter for K8 Processor Platforms; C:\Windows\system32\DRIVERS\gagp30kx.sys [2009-07-14 57936]
S3 hcw85cir;Hauppauge Consumer Infrared Receiver; C:\Windows\system32\drivers\hcw85cir.sys [2009-07-13 26624]
S3 HidBatt;HID UPS Battery Driver; C:\Windows\system32\DRIVERS\HidBatt.sys [2009-07-14 21504]
S3 HidBth;Microsoft Bluetooth HID Miniport; C:\Windows\system32\DRIVERS\hidbth.sys [2009-07-14 91136]
S3 HidIr;Microsoft Infrared HID Driver; C:\Windows\system32\DRIVERS\hidir.sys [2009-07-14 37888]
S3 HpSAMD;HpSAMD; C:\Windows\system32\DRIVERS\HpSAMD.sys [2009-07-14 67152]
S3 iaStorV;iaStorV; C:\Windows\system32\DRIVERS\iaStorV.sys [2009-07-14 332352]
S3 iirsp;iirsp; C:\Windows\system32\DRIVERS\iirsp.sys [2009-07-14 41040]
S3 intelide;intelide; C:\Windows\system32\DRIVERS\intelide.sys [2009-07-14 15424]
S3 intelppm;Intel Processor Driver; C:\Windows\system32\DRIVERS\intelppm.sys [2009-07-14 53760]
S3 IPMIDRV;IPMIDRV; C:\Windows\system32\DRIVERS\IPMIDrv.sys [2009-07-14 65536]
S3 isapnp;isapnp; C:\Windows\system32\DRIVERS\isapnp.sys [2009-07-14 46656]
S3 iScsiPrt;iScsiPort Driver; C:\Windows\system32\DRIVERS\msiscsi.sys [2009-07-14 186960]
S3 LSI_FC;LSI_FC; C:\Windows\system32\DRIVERS\lsi_fc.sys [2009-07-14 95824]
S3 LSI_SAS;LSI_SAS; C:\Windows\system32\DRIVERS\lsi_sas.sys [2009-07-14 89168]
S3 LSI_SAS2;LSI_SAS2; C:\Windows\system32\DRIVERS\lsi_sas2.sys [2009-07-14 54864]
S3 LSI_SCSI;LSI_SCSI; C:\Windows\system32\DRIVERS\lsi_scsi.sys [2009-07-14 96848]
S3 megasas;megasas; C:\Windows\system32\DRIVERS\megasas.sys [2009-07-14 30800]
S3 MegaSR;MegaSR; C:\Windows\system32\DRIVERS\MegaSR.sys [2009-07-14 235584]
S3 mpio;mpio; C:\Windows\system32\DRIVERS\mpio.sys [2009-07-14 130624]
S3 msahci;msahci; C:\Windows\system32\DRIVERS\msahci.sys [2009-07-14 27712]
S3 msdsm;msdsm; C:\Windows\system32\DRIVERS\msdsm.sys [2009-07-14 115792]
S3 mshidkmdf;@%SystemRoot%\system32\drivers\mshidkmdf.sys,-100; C:\Windows\System32\drivers\mshidkmdf.sys [2009-07-14 4096]
S3 MsRPC;MsRPC; C:\Windows\system32\drivers\MsRPC.sys [2009-07-14 162896]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2009-07-14 6144]
S3 MTConfig;Microsoft Input Configuration Driver; C:\Windows\system32\DRIVERS\MTConfig.sys [2009-07-14 12288]
S3 NdisCap;NDIS Capture LightWeight Filter; C:\Windows\system32\DRIVERS\ndiscap.sys [2009-07-14 27136]
S3 nfrd960;nfrd960; C:\Windows\system32\DRIVERS\nfrd960.sys [2009-07-14 44624]
S3 nv_agp;NVIDIA nForce AGP Bus Filter; C:\Windows\system32\DRIVERS\nv_agp.sys [2009-07-14 105024]
S3 ohci1394;1394 OHCI Compliant Host Controller (Legacy); C:\Windows\system32\DRIVERS\ohci1394.sys [2009-07-14 62464]
S3 ql2300;ql2300; C:\Windows\system32\DRIVERS\ql2300.sys [2009-07-14 1383488]
S3 ql40xx;ql40xx; C:\Windows\system32\DRIVERS\ql40xx.sys [2009-07-14 106064]
S3 QWAVEdrv;@%SystemRoot%\system32\drivers\qwavedrv.sys,-1; C:\Windows\system32\drivers\qwavedrv.sys [2009-07-14 31744]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 5632]
S3 sbp2port;sbp2port; C:\Windows\system32\DRIVERS\sbp2port.sys [2009-07-14 85568]
S3 scfilter;@%SystemRoot%\System32\drivers\scfilter.sys,-11; C:\Windows\System32\DRIVERS\scfilter.sys [2009-07-14 26624]
S3 sermouse;Serial Mouse Driver; C:\Windows\system32\DRIVERS\sermouse.sys [2009-07-14 19968]
S3 sffdisk;SFF Storage Class Driver; C:\Windows\system32\DRIVERS\sffdisk.sys [2009-07-14 11264]
S3 sffp_mmc;SFF Storage Protocol Driver for MMC; C:\Windows\system32\DRIVERS\sffp_mmc.sys [2009-07-14 12288]
S3 sffp_sd;SFF Storage Protocol Driver for SDBus; C:\Windows\system32\DRIVERS\sffp_sd.sys [2009-07-14 12800]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\DRIVERS\sisagp.sys [2009-07-14 52304]
S3 SiSRaid2;SiSRaid2; C:\Windows\system32\DRIVERS\SiSRaid2.sys [2009-07-14 40016]
S3 SiSRaid4;SiSRaid4; C:\Windows\system32\DRIVERS\sisraid4.sys [2009-07-14 77888]
S3 Smb;@%SystemRoot%\system32\tcpipcfg.dll,-50005; C:\Windows\system32\DRIVERS\smb.sys [2009-07-14 71168]
S3 stexstor;stexstor; C:\Windows\system32\DRIVERS\stexstor.sys [2009-07-14 21072]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 28224]
S3 TCPIP6;Microsoft IPv6 Protocol Driver; C:\Windows\system32\DRIVERS\tcpip.sys [2009-07-14 1285712]
S3 tssecsrv;@%SystemRoot%\System32\DRIVERS\tssecsrv.sys,-101; C:\Windows\System32\DRIVERS\tssecsrv.sys [2009-07-14 30208]
S3 uagp35;Microsoft AGPv3.5 Filter; C:\Windows\system32\DRIVERS\uagp35.sys [2009-07-14 55888]
S3 uliagpkx;Uli AGP Bus Filter; C:\Windows\system32\DRIVERS\uliagpkx.sys [2009-07-14 57424]
S3 UmPass;Microsoft UMPass Driver; C:\Windows\system32\DRIVERS\umpass.sys [2009-07-14 8192]
S3 usbcir;eHome Infrared Receiver (USBCIR); C:\Windows\system32\DRIVERS\usbcir.sys [2009-07-14 86016]
S3 usbprint;Microsoft USB PRINTER Class; C:\Windows\system32\DRIVERS\usbprint.sys [2009-07-14 19968]
S3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\Windows\system32\DRIVERS\usbuhci.sys [2009-07-14 24064]
S3 vga;vga; C:\Windows\system32\DRIVERS\vgapnp.sys [2009-07-14 26112]
S3 vhdmp;vhdmp; C:\Windows\system32\DRIVERS\vhdmp.sys [2009-07-14 159824]
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\DRIVERS\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\DRIVERS\viac7.sys [2009-07-14 52736]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 175824]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 17920]
S3 vsmraid;vsmraid; C:\Windows\system32\DRIVERS\vsmraid.sys [2009-07-14 141904]
S3 WacomPen;Wacom Serial Pen HID Driver; C:\Windows\system32\DRIVERS\wacompen.sys [2009-07-14 21632]
S3 Wd;Wd; C:\Windows\system32\DRIVERS\wd.sys [2009-07-14 19024]
S3 WIMMount;WIMMount; C:\Windows\system32\drivers\wimmount.sys [2009-07-14 19008]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2009-07-14 34944]
S3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2009-07-14 11264]
S4 crcdisk;Crcdisk Filter Driver; C:\Windows\system32\DRIVERS\crcdisk.sys [2009-07-14 22096]