
Logfile of random's system information tool 1.09 (written by random/random)
Run by dominik at 2012-02-22 11:41:21
Microsoft Windows 7 Starter Service Pack 1
System drive C: has 82 GB (80%) free of 102 GB
Total RAM: 1014 MB (47% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:41:26, on 22. 2. 2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\windows\system32\taskhost.exe
C:\windows\system32\Dwm.exe
C:\windows\Explorer.EXE
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\windows\system32\taskeng.exe
C:\Program Files\Common Files\InstantOn\InsOnWMI.exe
C:\Users\dominik\Downloads\RSIT.exe
C:\Program Files\trend micro\dominik.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Realtime Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Asus Launcher Service (AsusService) - Unknown owner - C:\windows\system32\AsusService.exe
O23 - Service: VideAceWindowsService - Unknown owner - C:\ExpressGateUtil\VAWinService.exe
--
End of file - 3102 bytes
======Scheduled tasks folder======
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-3775613134-2289134461-1204827955-1000Core.job
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-3775613134-2289134461-1204827955-1000UA.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 439168]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2011-09-23 258512]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
C:\windows\system32\hkcmd.exe [2011-04-19 174360]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
C:\windows\system32\igfxtray.exe [2011-04-19 142104]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence]
C:\windows\system32\igfxpers.exe [2011-04-19 150808]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl]
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2010-08-24 9722472]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\SYSTEM32\igfxdev.dll [2011-04-11 218112]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"msacm.siren"=sirenacm.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2012-02-22 11:34:47 ----D---- C:\Program Files\trend micro
2012-02-22 11:34:46 ----D---- C:\rsit
2012-02-22 10:46:48 ----D---- C:\Program Files\Microsoft.NET
2012-02-22 10:32:23 ----A---- C:\windows\system32\drivers\usbport.sys
2012-02-22 10:32:23 ----A---- C:\windows\system32\drivers\usbhub.sys
2012-02-22 10:32:23 ----A---- C:\windows\system32\drivers\usbehci.sys
2012-02-22 10:32:22 ----A---- C:\windows\system32\drivers\usbuhci.sys
2012-02-22 10:32:22 ----A---- C:\windows\system32\drivers\usbohci.sys
2012-02-22 10:32:22 ----A---- C:\windows\system32\drivers\usbd.sys
2012-02-22 10:32:22 ----A---- C:\windows\system32\drivers\usbccgp.sys
2012-02-22 10:32:15 ----A---- C:\windows\system32\esent.dll
2012-02-22 10:32:14 ----A---- C:\windows\system32\drivers\storport.sys
2012-02-22 10:32:14 ----A---- C:\windows\system32\drivers\nvstor.sys
2012-02-22 10:32:14 ----A---- C:\windows\system32\drivers\nvraid.sys
2012-02-22 10:32:14 ----A---- C:\windows\system32\drivers\ntfs.sys
2012-02-22 10:32:14 ----A---- C:\windows\system32\drivers\iaStorV.sys
2012-02-22 10:32:14 ----A---- C:\windows\system32\drivers\amdsata.sys
2012-02-22 10:32:13 ----A---- C:\windows\system32\fsutil.exe
2012-02-22 10:32:13 ----A---- C:\windows\system32\drivers\amdxata.sys
2012-02-22 10:32:11 ----A---- C:\windows\system32\drivers\USBSTOR.SYS
2012-02-22 10:32:03 ----A---- C:\windows\system32\drivers\BTHUSB.SYS
2012-02-22 10:32:03 ----A---- C:\windows\system32\drivers\bthport.sys
2012-02-22 10:07:56 ----A---- C:\windows\system32\MRT.exe
2012-02-22 09:43:11 ----A---- C:\windows\system32\mshtmled.dll
2012-02-22 09:43:10 ----A---- C:\windows\system32\jscript.dll
2012-02-22 09:43:10 ----A---- C:\windows\system32\iertutil.dll
2012-02-22 09:43:09 ----A---- C:\windows\system32\jscript9.dll
2012-02-22 09:43:08 ----A---- C:\windows\system32\jsproxy.dll
2012-02-22 09:43:07 ----A---- C:\windows\system32\wininet.dll
2012-02-22 09:43:07 ----A---- C:\windows\system32\url.dll
2012-02-22 09:43:07 ----A---- C:\windows\system32\ieui.dll
2012-02-22 09:43:03 ----A---- C:\windows\system32\mshtml.dll
2012-02-22 09:42:59 ----A---- C:\windows\system32\urlmon.dll
2012-02-22 09:42:59 ----A---- C:\windows\system32\ieframe.dll
2012-02-22 09:41:04 ----A---- C:\windows\system32\ntdll.dll
2012-02-22 09:40:44 ----A---- C:\windows\system32\shell32.dll
2012-02-22 09:40:43 ----A---- C:\windows\system32\ntshrui.dll
2012-02-22 09:40:23 ----A---- C:\windows\system32\drivers\afd.sys
2012-02-22 09:40:08 ----A---- C:\windows\system32\XpsGdiConverter.dll
2012-02-22 09:39:59 ----A---- C:\windows\system32\tzres.dll
2012-02-22 09:39:28 ----A---- C:\windows\system32\mssrch.dll
2012-02-22 09:39:27 ----A---- C:\windows\system32\tquery.dll
2012-02-22 09:39:27 ----A---- C:\windows\system32\SearchIndexer.exe
2012-02-22 09:39:26 ----A---- C:\windows\system32\SearchProtocolHost.exe
2012-02-22 09:39:26 ----A---- C:\windows\system32\mssph.dll
2012-02-22 09:39:25 ----A---- C:\windows\system32\SearchFilterHost.exe
2012-02-22 09:39:25 ----A---- C:\windows\system32\mssvp.dll
2012-02-22 09:39:24 ----A---- C:\windows\system32\mssphtb.dll
2012-02-22 09:39:24 ----A---- C:\windows\system32\msscntrs.dll
2012-02-22 09:39:19 ----A---- C:\windows\system32\schannel.dll
2012-02-22 09:39:19 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2012-02-22 09:39:18 ----A---- C:\windows\system32\lsasrv.dll
2012-02-22 09:39:18 ----A---- C:\windows\system32\drivers\ksecdd.sys
2012-02-22 09:39:18 ----A---- C:\windows\system32\drivers\cng.sys
2012-02-22 09:39:17 ----A---- C:\windows\system32\webio.dll
2012-02-22 09:39:17 ----A---- C:\windows\system32\lsass.exe
2012-02-22 09:39:16 ----A---- C:\windows\system32\sspisrv.dll
2012-02-22 09:39:16 ----A---- C:\windows\system32\sspicli.dll
2012-02-22 09:39:16 ----A---- C:\windows\system32\secur32.dll
2012-02-22 09:39:13 ----A---- C:\windows\system32\quartz.dll
2012-02-22 09:39:13 ----A---- C:\windows\system32\qdvd.dll
2012-02-22 09:38:50 ----A---- C:\windows\system32\ntoskrnl.exe
2012-02-22 09:38:49 ----A---- C:\windows\system32\ntkrnlpa.exe
2012-02-22 09:38:46 ----A---- C:\windows\system32\drivers\srvnet.sys
2012-02-22 09:38:46 ----A---- C:\windows\system32\drivers\srv2.sys
2012-02-22 09:38:46 ----A---- C:\windows\system32\drivers\srv.sys
2012-02-22 09:38:44 ----A---- C:\windows\system32\EncDec.dll
2012-02-22 09:38:41 ----A---- C:\windows\system32\CPFilters.dll
2012-02-22 09:38:40 ----A---- C:\windows\system32\sbe.dll
2012-02-22 09:38:36 ----A---- C:\windows\system32\drivers\tcpip.sys
2012-02-22 09:38:33 ----A---- C:\windows\explorer.exe
2012-02-22 09:38:32 ----A---- C:\windows\system32\csrsrv.dll
2012-02-22 09:38:28 ----A---- C:\windows\system32\KernelBase.dll
2012-02-22 09:38:28 ----A---- C:\windows\system32\kernel32.dll
2012-02-22 09:38:27 ----A---- C:\windows\system32\winsrv.dll
2012-02-22 09:38:27 ----A---- C:\windows\system32\conhost.exe
2012-02-22 09:38:26 ----AH---- C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2012-02-22 09:38:26 ----AH---- C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2012-02-22 09:38:26 ----AH---- C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2012-02-22 09:38:26 ----AH---- C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-02-22 09:38:26 ----AH---- C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2012-02-22 09:38:26 ----AH---- C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-02-22 09:38:26 ----AH---- C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2012-02-22 09:38:25 ----AH---- C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2012-02-22 09:38:20 ----A---- C:\windows\system32\XpsPrint.dll
2012-02-22 09:38:18 ----A---- C:\windows\system32\umpnpmgr.dll
2012-02-22 09:38:16 ----A---- C:\windows\system32\packager.dll
2012-02-22 09:38:14 ----A---- C:\windows\system32\mfc42.dll
2012-02-22 09:38:13 ----A---- C:\windows\system32\mfc42u.dll
2012-02-22 09:38:10 ----A---- C:\windows\system32\drivers\mrxsmb20.sys
2012-02-22 09:38:10 ----A---- C:\windows\system32\drivers\mrxsmb10.sys
2012-02-22 09:38:09 ----A---- C:\windows\system32\drivers\mrxsmb.sys
2012-02-22 09:38:07 ----A---- C:\windows\system32\oleaut32.dll
2012-02-22 09:38:07 ----A---- C:\windows\system32\oleacc.dll
2012-02-22 09:38:04 ----A---- C:\windows\system32\fontsub.dll
2012-02-22 09:38:04 ----A---- C:\windows\system32\atmlib.dll
2012-02-22 09:38:04 ----A---- C:\windows\system32\atmfd.dll
2012-02-22 09:38:01 ----A---- C:\windows\system32\psisdecd.dll
2012-02-22 09:37:54 ----A---- C:\windows\system32\inetcomm.dll
2012-02-22 09:37:50 ----A---- C:\windows\system32\prevhost.exe
2012-02-22 09:37:48 ----A---- C:\windows\system32\drivers\bowser.sys
2012-02-22 09:37:45 ----A---- C:\windows\system32\msvcrt.dll
2012-02-22 09:37:43 ----A---- C:\windows\system32\dnsrslvr.dll
2012-02-22 09:37:43 ----A---- C:\windows\system32\dnsapi.dll
2012-02-22 09:37:42 ----A---- C:\windows\system32\dnscacheugc.exe
2012-02-22 09:37:40 ----A---- C:\windows\system32\odbcjt32.dll
2012-02-22 09:37:39 ----A---- C:\windows\system32\odbccu32.dll
2012-02-22 09:37:39 ----A---- C:\windows\system32\odbccr32.dll
2012-02-22 09:37:39 ----A---- C:\windows\system32\odbccp32.dll
2012-02-22 09:37:38 ----A---- C:\windows\system32\odbctrac.dll
2012-02-22 09:37:36 ----A---- C:\windows\system32\kerberos.dll
2012-02-22 09:37:32 ----A---- C:\windows\system32\poqexec.exe
2012-02-22 09:37:28 ----A---- C:\windows\system32\FXSCOVER.exe
2012-02-22 09:37:24 ----A---- C:\windows\system32\xmllite.dll
2012-02-22 09:37:22 ----A---- C:\windows\system32\drivers\Diskdump.sys
2012-02-22 09:34:16 ----A---- C:\windows\system32\win32k.sys
2012-02-22 09:22:24 ----A---- C:\windows\system32\drivers\dxgmms1.sys
2012-02-21 23:41:30 ----D---- C:\Users\dominik\AppData\Roaming\VSRevoGroup
2012-02-21 18:34:55 ----D---- C:\Program Files\GIMP-2.0
2012-02-21 17:58:31 ----D---- C:\Users\dominik\AppData\Roaming\.minecraft
2012-02-21 17:53:44 ----D---- C:\ProgramData\Sun
2012-02-21 17:53:43 ----D---- C:\Program Files\Common Files\Java
2012-02-21 17:53:25 ----A---- C:\windows\system32\javaws.exe
2012-02-21 17:53:25 ----A---- C:\windows\system32\javaw.exe
2012-02-21 17:53:25 ----A---- C:\windows\system32\java.exe
2012-02-21 17:53:25 ----A---- C:\windows\system32\deployJava1.dll
2012-02-21 17:52:59 ----D---- C:\Program Files\Java
2012-02-21 17:33:50 ----D---- C:\Users\dominik\AppData\Roaming\Avira
2012-02-21 17:32:51 ----A---- C:\windows\system32\drivers\ssmdrv.sys
2012-02-21 17:32:47 ----A---- C:\windows\system32\drivers\avkmgr.sys
2012-02-21 17:32:47 ----A---- C:\windows\system32\drivers\avipbb.sys
2012-02-21 17:32:47 ----A---- C:\windows\system32\drivers\avgntflt.sys
2012-02-21 17:32:42 ----D---- C:\ProgramData\Avira
2012-02-21 17:32:42 ----D---- C:\Program Files\Avira
2012-02-21 15:07:49 ----N---- C:\windows\system32\MpSigStub.exe
2012-02-21 14:46:02 ----D---- C:\Program Files\CCleaner
2012-02-21 14:45:04 ----D---- C:\Program Files\Google
2012-02-21 14:44:15 ----D---- C:\Program Files\VS Revo Group
2012-02-21 14:36:12 ----D---- C:\windows\system32\Lang
2012-02-21 14:36:11 ----A---- C:\windows\system32\igxpun.exe
2012-02-21 14:28:02 ----D---- C:\ProgramData\ASUS WebStorage
2012-02-21 14:22:00 ----SHD---- C:\$RECYCLE.BIN
2012-02-21 14:18:49 ----D---- C:\Users\dominik\AppData\Roaming\E-Cam
2012-02-21 14:18:49 ----D---- C:\Users\dominik\AppData\Roaming\ASUS WebStorage
2012-02-21 14:18:49 ----D---- C:\Users\dominik\AppData\Roaming\Adobe
2012-02-21 14:18:48 ----SD---- C:\Users\dominik\AppData\Roaming\Microsoft
2012-02-21 14:18:48 ----D---- C:\Users\dominik\AppData\Roaming\Macromedia
2012-02-21 14:18:48 ----D---- C:\Users\dominik\AppData\Roaming\InstallShield
2012-02-21 14:18:48 ----D---- C:\Users\dominik\AppData\Roaming\Identities
2012-02-21 14:17:35 ----SHD---- C:\Recovery
======List of files/folders modified in the last 1 month======
2012-02-22 11:41:23 ----D---- C:\windows\Temp
2012-02-22 11:34:47 ----RD---- C:\Program Files
2012-02-22 11:33:20 ----D---- C:\windows\inf
2012-02-22 11:32:51 ----D---- C:\Windows
2012-02-22 11:32:02 ----D---- C:\windows\system32\config
2012-02-22 11:29:39 ----D---- C:\windows\debug
2012-02-22 11:17:39 ----SHD---- C:\windows\Installer
2012-02-22 11:17:10 ----SD---- C:\ProgramData\Microsoft
2012-02-22 11:17:10 ----D---- C:\Program Files\Microsoft
2012-02-22 11:13:17 ----SHD---- C:\System Volume Information
2012-02-22 11:02:13 ----D---- C:\Program Files\Asus
2012-02-22 11:02:06 ----D---- C:\AsusVibeData
2012-02-22 10:59:12 ----D---- C:\windows\system32\Tasks
2012-02-22 10:59:11 ----D---- C:\windows\Tasks
2012-02-22 10:55:25 ----HD---- C:\Program Files\InstallShield Installation Information
2012-02-22 10:54:09 ----AD---- C:\windows\system32\drivers
2012-02-22 10:53:59 ----D---- C:\windows\Microsoft.NET
2012-02-22 10:53:57 ----RSD---- C:\windows\assembly
2012-02-22 10:51:12 ----D---- C:\windows\System32
2012-02-22 10:51:12 ----A---- C:\windows\system32\PerfStringBackup.INI
2012-02-22 10:46:53 ----D---- C:\windows\system32\en-US
2012-02-22 10:38:26 ----D---- C:\windows\winsxs
2012-02-22 10:36:17 ----D---- C:\windows\system32\pl-PL
2012-02-22 10:36:17 ----D---- C:\windows\system32\hu-HU
2012-02-22 10:36:17 ----D---- C:\windows\system32\DriverStore
2012-02-22 10:36:17 ----D---- C:\windows\system32\cs-CZ
2012-02-22 10:33:19 ----HD---- C:\ProgramData
2012-02-22 10:31:50 ----D---- C:\windows\system32\catroot2
2012-02-22 10:31:50 ----D---- C:\windows\system32\catroot
2012-02-22 10:23:20 ----D---- C:\windows\Prefetch
2012-02-22 10:19:47 ----D---- C:\windows\AppPatch
2012-02-22 10:19:45 ----D---- C:\Program Files\Common Files\System
2012-02-22 10:19:44 ----RSD---- C:\windows\Fonts
2012-02-22 10:19:43 ----D---- C:\windows\system32\sk-SK
2012-02-22 10:19:27 ----D---- C:\windows\system32\migration
2012-02-22 10:19:26 ----D---- C:\Program Files\Internet Explorer
2012-02-22 09:42:28 ----D---- C:\windows\SoftwareDistribution
2012-02-22 09:33:14 ----D---- C:\windows\Logs
2012-02-21 19:23:25 ----D---- C:\windows\system32\wdi
2012-02-21 17:53:43 ----D---- C:\Program Files\Common Files
2012-02-21 14:55:31 ----D---- C:\ProgramData\Trend Micro
2012-02-21 14:49:26 ----D---- C:\windows\system32\restore
2012-02-21 14:46:50 ----D---- C:\windows\panther
2012-02-21 14:18:47 ----RD---- C:\Users
2012-02-21 14:17:35 ----D---- C:\windows\system32\Recovery
2012-02-09 03:10:31 ----D---- C:\windows\rescache
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 iaStor;Intel AHCI Controller; C:\windows\system32\drivers\iaStor.sys [2010-06-08 435736]
R0 rdyboost;ReadyBoost; C:\windows\System32\drivers\rdyboost.sys [2010-11-20 173440]
R1 AsIO;AsIO; C:\windows\system32\drivers\AsIO.sys [2010-06-28 11456]
R1 AsUpIO;AsUpIO; C:\windows\system32\drivers\AsUpIO.sys [2010-08-03 11832]
R1 avipbb;avipbb; C:\windows\system32\DRIVERS\avipbb.sys [2011-09-18 134344]
R1 avkmgr;avkmgr; C:\windows\system32\DRIVERS\avkmgr.sys [2011-09-15 36000]
R1 ssmdrv;ssmdrv; C:\windows\system32\DRIVERS\ssmdrv.sys [2010-06-17 28520]
R1 vwififlt;Virtual WiFi Filter Driver; C:\windows\system32\DRIVERS\vwififlt.sys [2009-07-14 48128]
R2 avgntflt;avgntflt; C:\windows\system32\DRIVERS\avgntflt.sys [2011-09-15 74640]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\windows\system32\DRIVERS\athr.sys [2011-06-27 2191872]
R3 ETD;ELAN PS/2 Port Input Device; C:\windows\system32\DRIVERS\ETD.sys [2010-04-13 109960]
R3 igfx;igfx; C:\windows\system32\DRIVERS\igdkmd32.sys [2011-04-11 4815872]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\windows\system32\drivers\RTKVHDA.sys [2010-08-24 3178472]
R3 kbfiltr;Keyboard Filter; C:\windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 13880]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller; C:\windows\system32\DRIVERS\L1C62x86.sys [2010-09-27 68208]
S2 Parvdm;Parvdm; C:\windows\system32\drivers\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\windows\system32\DRIVERS\b57nd60x.sys [2009-07-13 229888]
S3 BthEnum;Bluetooth Request Block Driver; C:\windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
S3 BTHPORT;Bluetooth Port Driver; C:\windows\System32\Drivers\BTHport.sys [2011-04-28 393728]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\windows\System32\Drivers\BTHUSB.sys [2011-04-28 60416]
S3 btwavdt;Bluetooth AVDT; C:\windows\system32\drivers\btwavdt.sys [2010-05-21 111144]
S3 btwrchid;btwrchid; C:\windows\system32\drivers\btwrchid.sys [2010-05-21 18728]
S3 fssfltr;FssFltr; C:\windows\system32\DRIVERS\fssfltr.sys [2010-09-23 39272]
S3 pciide;pciide; C:\windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
S3 sisagp;SIS AGP Bus Filter; C:\windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 viaagp;VIA AGP Bus Filter; C:\windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\windows\system32\drivers\viac7.sys [2009-07-14 52736]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AntiVirService;Avira Realtime Protection; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2011-09-23 110032]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2011-09-23 86224]
R2 AsusService;Asus Launcher Service; C:\windows\system32\AsusService.exe [2011-03-04 224680]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 VideAceWindowsService;VideAceWindowsService; C:\ExpressGateUtil\VAWinService.exe [2011-01-13 91464]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2010-09-21 1710464]
S3 fsssvc;Windows Live Family Safety Service; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2010-09-23 1493352]
S4 wlcrasvc;Windows Live Mesh remote connections service; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-09-23 51040]
-----------------EOF-----------------