pomaly internet a nektere stranky nejdou vubec
Napsal: 30 bře 2010 18:26
Nastala take nejaka chyba v rsit
Logfile of random's system information tool 1.06 (written by random/random)
Run by Fido at 2010-03-30 19:21:59
Microsoft Windows 7 Home Premium
System drive C: has 30 GB (25%) free of 119 GB
Total RAM: 4095 MB (64% free)
HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000123B4-9B42-4900-B3F7-F4B073EFC214}]
Octh Class - C:\Program Files (x86)\Orbitdownloader\orbitcth.dll [2010-02-10 240912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-22 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2009-10-11 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2008-12-08 1067352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
Locked
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2008-12-08 1067352]
{C55BBCD6-41AD-48AD-9953-3609C48EACC7} - Grab Pro - C:\Program Files (x86)\Orbitdownloader\GrabPro.dll [2010-02-10 666816]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"UpdateLBPShortCut"=C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"UpdateP2GoShortCut"=C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2008-12-04 218408]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-10-02 98304]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe [2009-08-17 6859392]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2009-09-17 2245120]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe [2009-04-20 159744]
"Setwallpaper"=c:\programdata\SetWallpaper.cmd []
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"SunJavaUpdateSched"=C:\Program Files (x86)\Java\jre6\bin\jusched.exe [2009-10-11 149280]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
"RGSC"=D:\Hry\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe [2010-03-18 306088]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FancyStart daemon.lnk - C:\Windows\Installer\{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}\_A1DDD39913A1970387B7B3.exe
SRS Premium Sound.lnk - C:\Windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vga.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vgasave.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Browser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dhcp]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DnsCache]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ipnat.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanServer]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanWorkstation]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LmHosts]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Messenger]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS Wrapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ndisuio]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOSGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetDDEGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetMan]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Network]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetworkProvider]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP_TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdsessmgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SharedAccess]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Streams Drivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Tcpip]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vga.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vgasave.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E972-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E973-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E974-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E975-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=
"NoActiveDesktopChanges"=
"ForceActiveDesktopOn"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Orbitdownloader\orbitdm.exe"="C:\Program Files (x86)\Orbitdownloader\orbitdm.exe:*:Enabled:Orbit"
"C:\Program Files (x86)\Orbitdownloader\orbitnet.exe"="C:\Program Files (x86)\Orbitdownloader\orbitnet.exe:*:Enabled:Orbit"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{77647ebc-1d9a-11df-8f09-e0cb4e4a28c9}]
shell\AutoRun\command - F:\setup.exe
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-03-30 19:20:43 ----D---- C:\Program Files (x86)\trend micro
2010-03-30 19:20:42 ----D---- C:\rsit
2010-03-29 20:38:13 ----D---- C:\Users\Fido\AppData\Roaming\skypePM
2010-03-29 20:30:41 ----D---- C:\Users\Fido\AppData\Roaming\Skype
2010-03-29 20:29:57 ----D---- C:\Program Files (x86)\Common Files\Skype
2010-03-29 20:29:55 ----RD---- C:\Program Files (x86)\Skype
2010-03-29 20:29:46 ----D---- C:\ProgramData\Skype
2010-03-27 20:55:32 ----A---- C:\Windows\system32\javaws.exe
2010-03-27 20:55:32 ----A---- C:\Windows\system32\javaw.exe
2010-03-27 20:55:31 ----A---- C:\Windows\system32\java.exe
2010-03-27 17:03:17 ----D---- C:\Users\Fido\AppData\Roaming\MathWorks
2010-03-27 15:05:43 ----D---- C:\BCB_EXE
2010-03-27 07:50:30 ----D---- C:\Program Files (x86)\Borland
2010-03-26 18:02:13 ----D---- C:\Program Files (x86)\Common Files\Borland Shared
2010-03-23 14:52:40 ----D---- C:\Users\Fido\AppData\Roaming\Dev-Cpp
2010-03-23 14:51:29 ----D---- C:\Dev-Cpp
2010-03-19 04:02:11 ----A---- C:\Windows\system32\d3dx10_42.dll
2010-03-19 04:02:10 ----A---- C:\Windows\system32\D3DX9_42.dll
2010-03-18 11:05:06 ----A---- C:\Windows\system32\CmdLineExt_x64.dll
2010-03-18 11:01:29 ----D---- C:\Windows\system32\xlive
2010-03-18 11:01:28 ----D---- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2010-03-18 04:34:52 ----D---- C:\ProgramData\Stardock
2010-03-17 21:08:28 ----A---- C:\Windows\system32\deploytk.dll
2010-03-17 21:08:06 ----D---- C:\Program Files (x86)\Java
2010-03-17 15:47:53 ----A---- C:\Windows\ntbtlog.txt
2010-03-17 15:32:31 ----D---- C:\Program Files (x86)\NeoSmart Technologies
2010-03-17 15:22:36 ----A---- C:\Windows\BcdLog.txt
2010-03-17 15:20:18 ----A---- C:\Windows\system32\EuEpmGdi.dll
2010-03-17 15:20:17 ----A---- C:\Windows\system32\setupempdrv03.exe
2010-03-17 15:20:17 ----A---- C:\Windows\system32\BootMan.exe
2010-03-17 15:19:37 ----D---- C:\Program Files (x86)\EASEUS
2010-03-17 14:55:24 ----D---- C:\Users\Fido\AppData\Roaming\GetRightToGo
2010-03-14 18:55:32 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2010-03-14 18:47:44 ----D---- C:\Program Files (x86)\Common Files\Merge Modules
2010-03-14 18:47:43 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 9.0
2010-03-14 18:36:51 ----D---- C:\Users\Fido\AppData\Roaming\TeamViewer
2010-03-14 18:36:41 ----D---- C:\Program Files (x86)\TeamViewer
2010-03-08 22:34:35 ----D---- C:\Windows\14FCFE7CAB86428A9D2EBFB6F5A7AA6E.TMP
2010-03-05 14:30:17 ----D---- C:\Program Files (x86)\DownloadToolz
2010-03-05 12:49:45 ----D---- C:\ProgramData\Solidshield
2010-03-05 12:24:22 ----A---- C:\Windows\system32\d3dx10_41.dll
2010-03-05 12:24:22 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2010-03-05 12:24:19 ----A---- C:\Windows\system32\D3DX9_41.dll
2010-03-05 12:24:16 ----A---- C:\Windows\system32\XAudio2_4.dll
2010-03-05 12:24:16 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2010-03-05 12:24:14 ----A---- C:\Windows\system32\xactengine3_4.dll
2010-03-05 12:24:13 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2010-03-05 12:24:11 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2010-03-05 12:24:10 ----A---- C:\Windows\system32\d3dx10_40.dll
2010-03-05 12:24:08 ----A---- C:\Windows\system32\D3DX9_40.dll
2010-03-05 12:24:05 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2010-03-05 12:24:04 ----A---- C:\Windows\system32\XAudio2_3.dll
2010-03-05 12:24:03 ----A---- C:\Windows\system32\xactengine3_3.dll
2010-03-05 12:24:01 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2010-03-05 12:23:58 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-03-05 12:23:58 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-03-05 12:23:56 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-03-05 12:23:54 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-03-05 12:23:54 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-03-05 12:23:52 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-03-04 15:38:50 ----D---- C:\Users\Fido\AppData\Roaming\GrabPro
2010-03-04 15:38:50 ----D---- C:\downloads
2010-03-04 15:38:44 ----D---- C:\Program Files (x86)\Orbitdownloader
2010-03-04 15:38:43 ----D---- C:\Users\Fido\AppData\Roaming\Orbit
2010-03-03 15:05:29 ----A---- C:\Windows\system32\unrar.dll
2010-03-03 15:05:27 ----A---- C:\Windows\avisplitter.ini
2010-03-03 15:05:22 ----A---- C:\Windows\system32\yv12vfw.dll
2010-03-03 15:05:21 ----A---- C:\Windows\system32\xvidvfw.dll
2010-03-03 15:05:21 ----A---- C:\Windows\system32\xvidcore.dll
2010-03-03 15:05:13 ----A---- C:\Windows\system32\ff_vfw.dll.manifest
2010-03-03 15:05:12 ----A---- C:\Windows\system32\ff_vfw.dll
2010-03-03 15:05:07 ----D---- C:\Program Files (x86)\K-Lite Codec Pack
2010-03-03 15:02:14 ----D---- C:\Program Files (x86)\FLVPlayer
2010-03-03 14:58:55 ----D---- C:\Users\Fido\AppData\Roaming\CyberLink
2010-03-03 12:18:58 ----D---- C:\aircrack-ng-1.0-win
2010-03-03 10:14:37 ----A---- C:\Windows\system32\secproc_isv.dll
2010-03-03 10:14:37 ----A---- C:\Windows\system32\secproc.dll
2010-03-03 10:14:37 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-03-03 10:14:37 ----A---- C:\Windows\system32\RMActivate.exe
2010-03-03 10:14:36 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-03-03 10:14:36 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-03-03 10:14:36 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-03-03 10:14:36 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-03-03 10:14:34 ----A---- C:\Windows\system32\t2embed.dll
2010-03-03 10:14:34 ----A---- C:\Windows\system32\fontsub.dll
2010-03-03 10:14:31 ----A---- C:\Windows\system32\explorer.exe
2010-03-03 10:14:31 ----A---- C:\Windows\explorer.exe
2010-03-03 10:14:28 ----A---- C:\Windows\system32\wow32.dll
2010-03-03 10:14:28 ----A---- C:\Windows\system32\setup16.exe
2010-03-03 10:14:28 ----A---- C:\Windows\system32\ntvdm64.dll
2010-03-03 10:14:27 ----A---- C:\Windows\system32\user.exe
2010-03-03 10:14:27 ----A---- C:\Windows\system32\instnm.exe
2010-03-03 10:14:23 ----A---- C:\Windows\system32\tzres.dll
2010-03-03 10:13:57 ----A---- C:\Windows\system32\tsbyuv.dll
2010-03-03 10:13:57 ----A---- C:\Windows\system32\quartz.dll
2010-03-03 10:13:57 ----A---- C:\Windows\system32\msyuv.dll
2010-03-03 10:13:57 ----A---- C:\Windows\system32\msvidc32.dll
2010-03-03 10:13:57 ----A---- C:\Windows\system32\msrle32.dll
2010-03-03 10:13:57 ----A---- C:\Windows\system32\mciavi32.dll
2010-03-03 10:13:57 ----A---- C:\Windows\system32\iyuv_32.dll
2010-03-03 10:13:57 ----A---- C:\Windows\system32\avifil32.dll
2010-03-03 10:13:49 ----A---- C:\Windows\system32\mshtml.dll
2010-03-03 10:13:48 ----A---- C:\Windows\system32\ieframe.dll
2010-03-03 10:13:47 ----A---- C:\Windows\system32\urlmon.dll
2010-03-03 10:13:46 ----A---- C:\Windows\system32\wininet.dll
2010-03-03 10:13:46 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-03-03 10:13:46 ----A---- C:\Windows\system32\iedkcs32.dll
2010-03-03 10:13:36 ----A---- C:\Windows\system32\jscript.dll
2010-03-03 10:13:32 ----A---- C:\Windows\system32\CPFilters.dll
2010-03-03 10:13:31 ----A---- C:\Windows\system32\psisdecd.dll
2010-03-01 10:19:02 ----D---- C:\Users\Fido\AppData\Roaming\uTorrent
======List of files/folders modified in the last 1 months======
2010-03-30 19:22:50 ----D---- C:\Windows\Temp
2010-03-30 19:20:44 ----D---- C:\Windows\Prefetch
2010-03-30 19:20:43 ----RD---- C:\Program Files (x86)
2010-03-30 17:48:15 ----D---- C:\Windows\System32
2010-03-30 17:48:15 ----D---- C:\Windows\inf
2010-03-30 00:17:52 ----SHD---- C:\System Volume Information
2010-03-29 21:00:40 ----SHD---- C:\Windows\Installer
2010-03-29 20:38:14 ----HD---- C:\ProgramData
2010-03-29 20:29:57 ----D---- C:\Program Files (x86)\Common Files
2010-03-27 20:55:32 ----D---- C:\Windows\SysWOW64
2010-03-27 16:59:12 ----RSD---- C:\Windows\assembly
2010-03-27 15:51:16 ----RD---- C:\Program Files
2010-03-27 15:49:21 ----D---- C:\Windows\winsxs
2010-03-26 17:53:25 ----SD---- C:\Users\Fido\AppData\Roaming\Microsoft
2010-03-25 04:01:01 ----D---- C:\Program Files (x86)\Internet Explorer
2010-03-24 07:20:02 ----D---- C:\Program Files (x86)\Mozilla Firefox
2010-03-18 10:29:10 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2010-03-17 18:47:08 ----SHD---- C:\Boot
2010-03-17 15:47:53 ----D---- C:\Windows
2010-03-16 12:48:43 ----D---- C:\Windows\Logs
2010-03-15 18:43:13 ----D---- C:\ProgramData\Adobe
2010-03-14 22:29:50 ----D---- C:\Windows\Microsoft.NET
2010-03-14 18:55:03 ----D---- C:\ProgramData\Microsoft Help
2010-03-14 18:53:52 ----SD---- C:\ProgramData\Microsoft
2010-03-14 18:51:16 ----D---- C:\Program Files (x86)\Common Files\microsoft shared
2010-03-12 18:18:32 ----D---- C:\Program Files (x86)\Common Files\Adobe
2010-03-11 04:22:56 ----D---- C:\Windows\AppPatch
2010-03-06 17:33:23 ----D---- C:\Windows\debug
2010-03-04 07:28:05 ----RSD---- C:\Windows\Fonts
2010-03-04 07:27:41 ----D---- C:\Program Files (x86)\Microsoft Works
2010-03-04 07:25:35 ----A---- C:\Windows\win.ini
2010-03-04 05:30:01 ----D---- C:\Windows\rescache
2010-03-04 04:47:55 ----D---- C:\Windows\system32\cs-CZ
2010-03-04 04:47:47 ----D---- C:\Windows\ehome
2010-03-04 04:03:13 ----D---- C:\Windows\SoftwareDistribution
2010-03-03 12:21:26 ----A---- C:\wepkeys.txt
2010-03-01 21:41:17 ----D---- C:\PerfLogs
2010-03-01 21:33:21 ----D---- C:\Windows\Minidump
Logfile of random's system information tool 1.06 (written by random/random)
Run by Fido at 2010-03-30 19:21:59
Microsoft Windows 7 Home Premium
System drive C: has 30 GB (25%) free of 119 GB
Total RAM: 4095 MB (64% free)
HijackThis download failed
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000123B4-9B42-4900-B3F7-F4B073EFC214}]
Octh Class - C:\Program Files (x86)\Orbitdownloader\orbitcth.dll [2010-02-10 240912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-22 75200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocník pro přihlášení ke službě Windows Live - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17 408440]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2009-10-11 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2008-12-08 1067352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
Locked
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2008-12-08 1067352]
{C55BBCD6-41AD-48AD-9953-3609C48EACC7} - Grab Pro - C:\Program Files (x86)\Orbitdownloader\GrabPro.dll [2010-02-10 666816]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"UpdateLBPShortCut"=C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [2009-05-20 222504]
"UpdateP2GoShortCut"=C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2008-12-04 218408]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-10-02 98304]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATKOSD2\ATKOSD2.exe [2009-08-17 6859392]
"HDAudDeck"=C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2009-09-17 2245120]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Media\DMedia.exe [2009-04-20 159744]
"Setwallpaper"=c:\programdata\SetWallpaper.cmd []
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"SunJavaUpdateSched"=C:\Program Files (x86)\Java\jre6\bin\jusched.exe [2009-10-11 149280]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2009-10-30 369200]
"RGSC"=D:\Hry\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe [2010-03-18 306088]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
FancyStart daemon.lnk - C:\Windows\Installer\{F0DF4513-3C4C-4EB8-8012-2C5F70AF3988}\_A1DDD39913A1970387B7B3.exe
SRS Premium Sound.lnk - C:\Windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vga.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vgasave.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Browser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dhcp]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DnsCache]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ipnat.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanServer]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanWorkstation]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LmHosts]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Messenger]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS Wrapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ndisuio]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOSGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetDDEGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetMan]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Network]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetworkProvider]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP_TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdsessmgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SharedAccess]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Streams Drivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Tcpip]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vga.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vgasave.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E972-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E973-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E974-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E975-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=
"NoActiveDesktopChanges"=
"ForceActiveDesktopOn"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Orbitdownloader\orbitdm.exe"="C:\Program Files (x86)\Orbitdownloader\orbitdm.exe:*:Enabled:Orbit"
"C:\Program Files (x86)\Orbitdownloader\orbitnet.exe"="C:\Program Files (x86)\Orbitdownloader\orbitnet.exe:*:Enabled:Orbit"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{77647ebc-1d9a-11df-8f09-e0cb4e4a28c9}]
shell\AutoRun\command - F:\setup.exe
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2010-03-30 19:20:43 ----D---- C:\Program Files (x86)\trend micro
2010-03-30 19:20:42 ----D---- C:\rsit
2010-03-29 20:38:13 ----D---- C:\Users\Fido\AppData\Roaming\skypePM
2010-03-29 20:30:41 ----D---- C:\Users\Fido\AppData\Roaming\Skype
2010-03-29 20:29:57 ----D---- C:\Program Files (x86)\Common Files\Skype
2010-03-29 20:29:55 ----RD---- C:\Program Files (x86)\Skype
2010-03-29 20:29:46 ----D---- C:\ProgramData\Skype
2010-03-27 20:55:32 ----A---- C:\Windows\system32\javaws.exe
2010-03-27 20:55:32 ----A---- C:\Windows\system32\javaw.exe
2010-03-27 20:55:31 ----A---- C:\Windows\system32\java.exe
2010-03-27 17:03:17 ----D---- C:\Users\Fido\AppData\Roaming\MathWorks
2010-03-27 15:05:43 ----D---- C:\BCB_EXE
2010-03-27 07:50:30 ----D---- C:\Program Files (x86)\Borland
2010-03-26 18:02:13 ----D---- C:\Program Files (x86)\Common Files\Borland Shared
2010-03-23 14:52:40 ----D---- C:\Users\Fido\AppData\Roaming\Dev-Cpp
2010-03-23 14:51:29 ----D---- C:\Dev-Cpp
2010-03-19 04:02:11 ----A---- C:\Windows\system32\d3dx10_42.dll
2010-03-19 04:02:10 ----A---- C:\Windows\system32\D3DX9_42.dll
2010-03-18 11:05:06 ----A---- C:\Windows\system32\CmdLineExt_x64.dll
2010-03-18 11:01:29 ----D---- C:\Windows\system32\xlive
2010-03-18 11:01:28 ----D---- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2010-03-18 04:34:52 ----D---- C:\ProgramData\Stardock
2010-03-17 21:08:28 ----A---- C:\Windows\system32\deploytk.dll
2010-03-17 21:08:06 ----D---- C:\Program Files (x86)\Java
2010-03-17 15:47:53 ----A---- C:\Windows\ntbtlog.txt
2010-03-17 15:32:31 ----D---- C:\Program Files (x86)\NeoSmart Technologies
2010-03-17 15:22:36 ----A---- C:\Windows\BcdLog.txt
2010-03-17 15:20:18 ----A---- C:\Windows\system32\EuEpmGdi.dll
2010-03-17 15:20:17 ----A---- C:\Windows\system32\setupempdrv03.exe
2010-03-17 15:20:17 ----A---- C:\Windows\system32\BootMan.exe
2010-03-17 15:19:37 ----D---- C:\Program Files (x86)\EASEUS
2010-03-17 14:55:24 ----D---- C:\Users\Fido\AppData\Roaming\GetRightToGo
2010-03-14 18:55:32 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2010-03-14 18:47:44 ----D---- C:\Program Files (x86)\Common Files\Merge Modules
2010-03-14 18:47:43 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 9.0
2010-03-14 18:36:51 ----D---- C:\Users\Fido\AppData\Roaming\TeamViewer
2010-03-14 18:36:41 ----D---- C:\Program Files (x86)\TeamViewer
2010-03-08 22:34:35 ----D---- C:\Windows\14FCFE7CAB86428A9D2EBFB6F5A7AA6E.TMP
2010-03-05 14:30:17 ----D---- C:\Program Files (x86)\DownloadToolz
2010-03-05 12:49:45 ----D---- C:\ProgramData\Solidshield
2010-03-05 12:24:22 ----A---- C:\Windows\system32\d3dx10_41.dll
2010-03-05 12:24:22 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2010-03-05 12:24:19 ----A---- C:\Windows\system32\D3DX9_41.dll
2010-03-05 12:24:16 ----A---- C:\Windows\system32\XAudio2_4.dll
2010-03-05 12:24:16 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2010-03-05 12:24:14 ----A---- C:\Windows\system32\xactengine3_4.dll
2010-03-05 12:24:13 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2010-03-05 12:24:11 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2010-03-05 12:24:10 ----A---- C:\Windows\system32\d3dx10_40.dll
2010-03-05 12:24:08 ----A---- C:\Windows\system32\D3DX9_40.dll
2010-03-05 12:24:05 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2010-03-05 12:24:04 ----A---- C:\Windows\system32\XAudio2_3.dll
2010-03-05 12:24:03 ----A---- C:\Windows\system32\xactengine3_3.dll
2010-03-05 12:24:01 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2010-03-05 12:23:58 ----A---- C:\Windows\system32\XAudio2_2.dll
2010-03-05 12:23:58 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2010-03-05 12:23:56 ----A---- C:\Windows\system32\xactengine3_2.dll
2010-03-05 12:23:54 ----A---- C:\Windows\system32\d3dx10_39.dll
2010-03-05 12:23:54 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2010-03-05 12:23:52 ----A---- C:\Windows\system32\D3DX9_39.dll
2010-03-04 15:38:50 ----D---- C:\Users\Fido\AppData\Roaming\GrabPro
2010-03-04 15:38:50 ----D---- C:\downloads
2010-03-04 15:38:44 ----D---- C:\Program Files (x86)\Orbitdownloader
2010-03-04 15:38:43 ----D---- C:\Users\Fido\AppData\Roaming\Orbit
2010-03-03 15:05:29 ----A---- C:\Windows\system32\unrar.dll
2010-03-03 15:05:27 ----A---- C:\Windows\avisplitter.ini
2010-03-03 15:05:22 ----A---- C:\Windows\system32\yv12vfw.dll
2010-03-03 15:05:21 ----A---- C:\Windows\system32\xvidvfw.dll
2010-03-03 15:05:21 ----A---- C:\Windows\system32\xvidcore.dll
2010-03-03 15:05:13 ----A---- C:\Windows\system32\ff_vfw.dll.manifest
2010-03-03 15:05:12 ----A---- C:\Windows\system32\ff_vfw.dll
2010-03-03 15:05:07 ----D---- C:\Program Files (x86)\K-Lite Codec Pack
2010-03-03 15:02:14 ----D---- C:\Program Files (x86)\FLVPlayer
2010-03-03 14:58:55 ----D---- C:\Users\Fido\AppData\Roaming\CyberLink
2010-03-03 12:18:58 ----D---- C:\aircrack-ng-1.0-win
2010-03-03 10:14:37 ----A---- C:\Windows\system32\secproc_isv.dll
2010-03-03 10:14:37 ----A---- C:\Windows\system32\secproc.dll
2010-03-03 10:14:37 ----A---- C:\Windows\system32\RMActivate_isv.exe
2010-03-03 10:14:37 ----A---- C:\Windows\system32\RMActivate.exe
2010-03-03 10:14:36 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2010-03-03 10:14:36 ----A---- C:\Windows\system32\secproc_ssp.dll
2010-03-03 10:14:36 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2010-03-03 10:14:36 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2010-03-03 10:14:34 ----A---- C:\Windows\system32\t2embed.dll
2010-03-03 10:14:34 ----A---- C:\Windows\system32\fontsub.dll
2010-03-03 10:14:31 ----A---- C:\Windows\system32\explorer.exe
2010-03-03 10:14:31 ----A---- C:\Windows\explorer.exe
2010-03-03 10:14:28 ----A---- C:\Windows\system32\wow32.dll
2010-03-03 10:14:28 ----A---- C:\Windows\system32\setup16.exe
2010-03-03 10:14:28 ----A---- C:\Windows\system32\ntvdm64.dll
2010-03-03 10:14:27 ----A---- C:\Windows\system32\user.exe
2010-03-03 10:14:27 ----A---- C:\Windows\system32\instnm.exe
2010-03-03 10:14:23 ----A---- C:\Windows\system32\tzres.dll
2010-03-03 10:13:57 ----A---- C:\Windows\system32\tsbyuv.dll
2010-03-03 10:13:57 ----A---- C:\Windows\system32\quartz.dll
2010-03-03 10:13:57 ----A---- C:\Windows\system32\msyuv.dll
2010-03-03 10:13:57 ----A---- C:\Windows\system32\msvidc32.dll
2010-03-03 10:13:57 ----A---- C:\Windows\system32\msrle32.dll
2010-03-03 10:13:57 ----A---- C:\Windows\system32\mciavi32.dll
2010-03-03 10:13:57 ----A---- C:\Windows\system32\iyuv_32.dll
2010-03-03 10:13:57 ----A---- C:\Windows\system32\avifil32.dll
2010-03-03 10:13:49 ----A---- C:\Windows\system32\mshtml.dll
2010-03-03 10:13:48 ----A---- C:\Windows\system32\ieframe.dll
2010-03-03 10:13:47 ----A---- C:\Windows\system32\urlmon.dll
2010-03-03 10:13:46 ----A---- C:\Windows\system32\wininet.dll
2010-03-03 10:13:46 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-03-03 10:13:46 ----A---- C:\Windows\system32\iedkcs32.dll
2010-03-03 10:13:36 ----A---- C:\Windows\system32\jscript.dll
2010-03-03 10:13:32 ----A---- C:\Windows\system32\CPFilters.dll
2010-03-03 10:13:31 ----A---- C:\Windows\system32\psisdecd.dll
2010-03-01 10:19:02 ----D---- C:\Users\Fido\AppData\Roaming\uTorrent
======List of files/folders modified in the last 1 months======
2010-03-30 19:22:50 ----D---- C:\Windows\Temp
2010-03-30 19:20:44 ----D---- C:\Windows\Prefetch
2010-03-30 19:20:43 ----RD---- C:\Program Files (x86)
2010-03-30 17:48:15 ----D---- C:\Windows\System32
2010-03-30 17:48:15 ----D---- C:\Windows\inf
2010-03-30 00:17:52 ----SHD---- C:\System Volume Information
2010-03-29 21:00:40 ----SHD---- C:\Windows\Installer
2010-03-29 20:38:14 ----HD---- C:\ProgramData
2010-03-29 20:29:57 ----D---- C:\Program Files (x86)\Common Files
2010-03-27 20:55:32 ----D---- C:\Windows\SysWOW64
2010-03-27 16:59:12 ----RSD---- C:\Windows\assembly
2010-03-27 15:51:16 ----RD---- C:\Program Files
2010-03-27 15:49:21 ----D---- C:\Windows\winsxs
2010-03-26 17:53:25 ----SD---- C:\Users\Fido\AppData\Roaming\Microsoft
2010-03-25 04:01:01 ----D---- C:\Program Files (x86)\Internet Explorer
2010-03-24 07:20:02 ----D---- C:\Program Files (x86)\Mozilla Firefox
2010-03-18 10:29:10 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2010-03-17 18:47:08 ----SHD---- C:\Boot
2010-03-17 15:47:53 ----D---- C:\Windows
2010-03-16 12:48:43 ----D---- C:\Windows\Logs
2010-03-15 18:43:13 ----D---- C:\ProgramData\Adobe
2010-03-14 22:29:50 ----D---- C:\Windows\Microsoft.NET
2010-03-14 18:55:03 ----D---- C:\ProgramData\Microsoft Help
2010-03-14 18:53:52 ----SD---- C:\ProgramData\Microsoft
2010-03-14 18:51:16 ----D---- C:\Program Files (x86)\Common Files\microsoft shared
2010-03-12 18:18:32 ----D---- C:\Program Files (x86)\Common Files\Adobe
2010-03-11 04:22:56 ----D---- C:\Windows\AppPatch
2010-03-06 17:33:23 ----D---- C:\Windows\debug
2010-03-04 07:28:05 ----RSD---- C:\Windows\Fonts
2010-03-04 07:27:41 ----D---- C:\Program Files (x86)\Microsoft Works
2010-03-04 07:25:35 ----A---- C:\Windows\win.ini
2010-03-04 05:30:01 ----D---- C:\Windows\rescache
2010-03-04 04:47:55 ----D---- C:\Windows\system32\cs-CZ
2010-03-04 04:47:47 ----D---- C:\Windows\ehome
2010-03-04 04:03:13 ----D---- C:\Windows\SoftwareDistribution
2010-03-03 12:21:26 ----A---- C:\wepkeys.txt
2010-03-01 21:41:17 ----D---- C:\PerfLogs
2010-03-01 21:33:21 ----D---- C:\Windows\Minidump