Gjest Skrevet 25. august 2009 Del Skrevet 25. august 2009 (endret) Loggs. MBAM Klikk for å se/fjerne spoilerteksten nedenfor Malwarebytes' Anti-Malware 1.40 Databaseversjon: 2695 Windows 6.0.6002 Service Pack 2 25.08.2009 21:15:51 mbam-log-2009-08-25 (21-15-51).txt Skanntype: Rask Skann Objekter skannet: 90192 Tid tilbakelagt: 5 minute(s), 8 second(s) Minneprosesser infisert: 0 Minnemoduler infisert: 0 Registernøkler infisert: 3 Registerverdier infisert: 2 Registerfiler infisert: 1 Mapper infisert: 1 Filer infisert: 4 Minneprosesser infisert: (Ingen mistenkelige filer funnet) Minnemoduler infisert: (Ingen mistenkelige filer funnet) Registernøkler infisert: HKEY_CURRENT_USER\SOFTWARE\VB and VBA Program Settings\tm (Trojan.Downloader) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\XML (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ksi32sk (Rootkit.Agent) -> Quarantined and deleted successfully. Registerverdier infisert: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\idstrf (Malware.Trace) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\WINID (Malware.Trace) -> Quarantined and deleted successfully. Registerfiler infisert: HKEY_CLASSES_ROOT\regfile\shell\open\command\(default) (Broken.OpenCommand) -> Bad: ("regedit.exe" "%1") Good: (regedit.exe "%1") -> Quarantined and deleted successfully. Mapper infisert: C:\Windows\System32\790151 (Trojan.BHO) -> Quarantined and deleted successfully. Filer infisert: C:\install.exe (Trojan.Agent) -> Quarantined and deleted successfully. C:\Windows\System32\win32hlp.cnf (Trojan.Agent) -> Quarantined and deleted successfully. C:\Windows\Tasks\{5B57CF47-0BFA-43c6-ACF9-3B3653DCADBA}.job (Trojan.FakeAlert) -> Quarantined and deleted successfully. C:\Windows\Tasks\{783AF354-B514-42d6-970E-3E8BF0A5279C}.job (Trojan.Downloader) -> Quarantined and deleted successfully. Hijack Klikk for å se/fjerne spoilerteksten nedenfor Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 21:23:20, on 25.08.2009 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v7.00 (7.00.6002.18005) Boot mode: Normal Running processes: C:\Program Files (x86)\Windows Live\Family Safety\fsui.exe C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\PROGRA~2\Java\jre6\bin\jp2launcher.exe C:\Program Files (x86)\Java\jre6\bin\java.exe C:\Program Files (x86)\Spotify\spotify.exe C:\Users\kristian\Desktop\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files (x86)\AVG\AVG8\Toolbar\IEToolbar.dll R3 - URLSearchHook: (no name) - *{57BCA5FA-5DBB-45a2-B558-1755C3F6253B} - (no file) R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file) R3 - URLSearchHook: (no name) - *{930f1200-f5f1-4870-bac6-e233ec8e7023} - (no file) O1 - Hosts: 91.121.97.18 thepiratebay.org O1 - Hosts: 91.121.97.18 www.thepiratebay.org O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files (x86)\AskBarDis\bar\bin\askBar.dll O2 - BHO: Winamp Toolbar Loader - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:\Program Files (x86)\Winamp Toolbar\winamptb.dll O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG8\avgssie.dll O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files (x86)\Windows Live\Family Safety\fssbho.dll O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: Softonic English Toolbar - {930f1200-f5f1-4870-bac6-e233ec8e7023} - C:\Program Files (x86)\Softonic_English\tbSof1.dll O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files (x86)\AVG\AVG8\Toolbar\IEToolbar.dll O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll O3 - Toolbar: Winamp Toolbar - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:\Program Files (x86)\Winamp Toolbar\winamptb.dll O3 - Toolbar: Softonic English Toolbar - {930f1200-f5f1-4870-bac6-e233ec8e7023} - C:\Program Files (x86)\Softonic_English\tbSof1.dll O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files (x86)\AVG\AVG8\Toolbar\IEToolbar.dll O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files (x86)\AskBarDis\bar\bin\askBar.dll O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /install /silent O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files (x86)\Windows Live\Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020 O4 - HKCU\..\Run: [Google Update] "C:\Users\kristian\AppData\Local\Google\Update\GoogleUpdate.exe" /c O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files (x86)\BitTorrent\bittorrent.exe" O4 - HKUS\S-1-5-18\..\RunOnce: [] (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [] (User 'Default user') O8 - Extra context menu item: &Winamp Search - C:\ProgramData\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 O9 - Extra button: Blogg dette - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Blogg dette i Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Send til OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: S&end til OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL O13 - Gopher Prefix: O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG8\avgpp.dll O20 - Winlogon Notify: !SASWinLogon - C:\Program Files (x86)\SUPERAntiSpyware\SASWINLO.dll O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Ati External Event Utility - Unknown owner - C:\Windows\system32\Ati2evxx.exe (file missing) O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~2\AVG\AVG8\avgemc.exe O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~2\AVG\AVG8\avgwdsvc.exe O23 - Service: Bonjour-tjeneste (Bonjour Service) - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing) O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPod-tjeneste (iPod Service) - Apple Inc. - C:\Program Files (x86)\iPod\bin\iPodService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe O23 - Service: NMSAccessU - Unknown owner - C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\SysWOW64\IoctlSvc.exe O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 10438 bytes RIST Klikk for å se/fjerne spoilerteksten nedenfor Logfile of random's system information tool 1.06 (written by random/random) Run by kristian at 2009-08-25 21:34:47 Microsoft® Windows Vista™ Home Premium Service Pack 2 System drive C: has 159 GB (33%) free of 477 GB Total RAM: 4094 MB (43% free) Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 21:34:50, on 25.08.2009 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v7.00 (7.00.6002.18005) Boot mode: Normal Running processes: C:\Program Files (x86)\Windows Live\Family Safety\fsui.exe C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\PROGRA~2\Java\jre6\bin\jp2launcher.exe C:\Program Files (x86)\Java\jre6\bin\java.exe C:\Program Files (x86)\Spotify\spotify.exe C:\Program Files (x86)\SUPERAntiSpyware\SUPERAntiSpyware.exe C:\Users\kristian\Desktop\RSIT.exe C:\Users\kristian\Desktop\kristian.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files (x86)\AVG\AVG8\Toolbar\IEToolbar.dll R3 - URLSearchHook: (no name) - *{57BCA5FA-5DBB-45a2-B558-1755C3F6253B} - (no file) R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file) R3 - URLSearchHook: (no name) - *{930f1200-f5f1-4870-bac6-e233ec8e7023} - (no file) O1 - Hosts: 91.121.97.18 thepiratebay.org O1 - Hosts: 91.121.97.18 www.thepiratebay.org O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files (x86)\AskBarDis\bar\bin\askBar.dll O2 - BHO: Winamp Toolbar Loader - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:\Program Files (x86)\Winamp Toolbar\winamptb.dll O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG8\avgssie.dll O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files (x86)\Windows Live\Family Safety\fssbho.dll O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll O2 - BHO: Softonic English Toolbar - {930f1200-f5f1-4870-bac6-e233ec8e7023} - C:\Program Files (x86)\Softonic_English\tbSof1.dll O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files (x86)\AVG\AVG8\Toolbar\IEToolbar.dll O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll O3 - Toolbar: Winamp Toolbar - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:\Program Files (x86)\Winamp Toolbar\winamptb.dll O3 - Toolbar: Softonic English Toolbar - {930f1200-f5f1-4870-bac6-e233ec8e7023} - C:\Program Files (x86)\Softonic_English\tbSof1.dll O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files (x86)\AVG\AVG8\Toolbar\IEToolbar.dll O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files (x86)\AskBarDis\bar\bin\askBar.dll O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /install /silent O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files (x86)\Windows Live\Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020 O4 - HKCU\..\Run: [Google Update] "C:\Users\kristian\AppData\Local\Google\Update\GoogleUpdate.exe" /c O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files (x86)\BitTorrent\bittorrent.exe" O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOKAL TJENESTE') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOKAL TJENESTE') O4 - HKUS\S-1-5-19\..\RunOnce: [] (User 'LOKAL TJENESTE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETTVERKSTJENESTE') O4 - HKUS\S-1-5-20\..\RunOnce: [] (User 'NETTVERKSTJENESTE') O4 - HKUS\S-1-5-18\..\RunOnce: [] (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [] (User 'Default user') O8 - Extra context menu item: &Winamp Search - C:\ProgramData\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html O8 - Extra context menu item: E&ksporter til Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 O9 - Extra button: Blogg dette - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Blogg dette i Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Send til OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: S&end til OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL O13 - Gopher Prefix: O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG8\avgpp.dll O20 - Winlogon Notify: !SASWinLogon - C:\Program Files (x86)\SUPERAntiSpyware\SASWINLO.dll O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Ati External Event Utility - Unknown owner - C:\Windows\system32\Ati2evxx.exe (file missing) O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~2\AVG\AVG8\avgemc.exe O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~2\AVG\AVG8\avgwdsvc.exe O23 - Service: Bonjour-tjeneste (Bonjour Service) - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing) O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPod-tjeneste (iPod Service) - Apple Inc. - C:\Program Files (x86)\iPod\bin\iPodService.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe O23 - Service: NMSAccessU - Unknown owner - C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\SysWOW64\IoctlSvc.exe O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 11011 bytes ======Scheduled tasks folder====== C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-648481256-502356968-4235842458-1000Core.job C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-648481256-502356968-4235842458-1000UA.job C:\Windows\tasks\Norton Security Scan for kristian.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}] AskBar BHO - C:\Program Files (x86)\AskBarDis\bar\bin\askBar.dll [2008-09-08 279944] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{25CEE8EC-5730-41bc-8B58-22DDC8AB8C20}] Winamp Toolbar Loader - C:\Program Files (x86)\Winamp Toolbar\winamptb.dll [2008-07-16 1266992] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}] AVG Safe Search - C:\Program Files (x86)\AVG\AVG8\avgssie.dll [2009-08-02 1111320] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}] Windows Live Family Safety Browser Helper Class - C:\Program Files (x86)\Windows Live\Family Safety\fssbho.dll [2009-02-06 61808] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}] Search Helper - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{930f1200-f5f1-4870-bac6-e233ec8e7023}] Softonic English Toolbar - C:\Program Files (x86)\Softonic_English\tbSof1.dll [2009-04-27 1883672] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A3BC75A2-1F87-4686-AA43-5347D756017C}] AVG Security Toolbar BHO - C:\Program Files (x86)\AVG\AVG8\Toolbar\IEToolbar.dll [2009-07-24 1062144] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}] Windows Live Toolbar Helper - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - Winamp Toolbar - C:\Program Files (x86)\Winamp Toolbar\winamptb.dll [2008-07-16 1266992] {930f1200-f5f1-4870-bac6-e233ec8e7023} - Softonic English Toolbar - C:\Program Files (x86)\Softonic_English\tbSof1.dll [2009-04-27 1883672] {21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904] {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - AVG Security Toolbar - C:\Program Files (x86)\AVG\AVG8\Toolbar\IEToolbar.dll [2009-07-24 1062144] {32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll [2009-04-23 937416] {3041d03e-fd4b-44e0-b742-2d9b88305f98} - Ask Toolbar - C:\Program Files (x86)\AskBarDis\bar\bin\askBar.dll [2008-09-08 279944] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-08-29 61440] "GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072] "NBKeyScan"=C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2008-12-02 2221352] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce] "Malwarebytes' Anti-Malware"=C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe [2009-08-03 419088] "Malwarebytes Anti-Malware (reboot)"=C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe [2009-08-03 1295632] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "MsnMsgr"=C:\Program Files (x86)\Windows Live\Messenger\MsnMsgr.Exe [2009-02-06 3885400] "Steam"=C:\Program Files (x86)\Steam\Steam.exe [2009-06-11 1217784] "ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-21 138240] "IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2008-12-12 1840424] "Google Update"=C:\Users\kristian\AppData\Local\Google\Update\GoogleUpdate.exe [2008-11-08 133104] "BitTorrent"=C:\Program Files (x86)\BitTorrent\bittorrent.exe [2008-12-16 637232] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon] C:\Program Files (x86)\SUPERAntiSpyware\SASWINLO.dll [2008-12-22 356352] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files (x86)\SUPERAntiSpyware\SASSEH.DLL [2008-05-13 77824] "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System] "DisableTaskMgr"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "EnableUIADesktopToggle"=0 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=149 "NoSetActiveDesktop"=0 "NoActiveDesktopChanges"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoActiveDesktop"= "ForceActiveDesktopOn"= "NoSetActiveDesktop"= "NoActiveDesktopChanges"= "BindDirectlyToPropertySetStorage"= [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "C:\Program Files (x86)\BitTorrent\bittorrent.exe"="C:\Program Files (x86)\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\D] shell\AutoRun\command - D:\Setup.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\E] shell\AutoRun\command - E:\DHT_Launcher.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{793270b0-ad7e-11dd-ba44-806e6f6e6963}] shell\AutoRun\command - D:\Setup\rsrc\autorun.exe shell\dinstall\command - D:\Directx\dxsetup.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{8ddba63b-42cc-11de-b531-0021853dbc75}] shell\AutoRun\command - F:\LaunchU3.exe -a [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d27871fd-5e6c-11de-9f6b-0021853dbc75}] shell\AutoRun\command - E:\Autoplay\AutoRun.exe [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e03194b2-47b8-11de-b406-0021853dbc75}] shell\AutoRun\command - F:\LaunchU3.exe -a ======List of files/folders created in the last 1 months====== 2009-08-24 14:00:07 ----A---- C:\Windows\ntbtlog.txt 2009-08-15 23:22:28 ----D---- C:\Users\kristian\AppData\Roaming\FrostWire 2009-08-15 23:22:15 ----D---- C:\Program Files (x86)\AskBarDis 2009-08-15 23:22:09 ----D---- C:\Program Files (x86)\FrostWire 2009-08-13 11:44:11 ----A---- C:\Windows\system32\mstscax.dll 2009-08-13 11:44:01 ----A---- C:\Windows\system32\atl.dll 2009-08-13 11:43:55 ----A---- C:\Windows\system32\avifil32.dll 2009-08-13 11:43:44 ----A---- C:\Windows\system32\wmp.dll 2009-08-13 11:43:43 ----A---- C:\Windows\system32\wmpdxm.dll 2009-08-13 11:43:42 ----A---- C:\Windows\system32\wmploc.DLL 2009-08-13 11:43:42 ----A---- C:\Windows\system32\spwmp.dll 2009-08-13 11:43:42 ----A---- C:\Windows\system32\dxmasf.dll 2009-08-09 20:43:39 ----D---- C:\Windows\system32\vi-VN 2009-08-09 20:43:39 ----D---- C:\Windows\system32\eu-ES 2009-08-09 20:43:39 ----D---- C:\Windows\system32\ca-ES 2009-08-08 20:46:57 ----D---- C:\Users\kristian\AppData\Roaming\dvdcss 2009-08-08 01:51:37 ----A---- C:\Windows\system32\NlsLexicons0007.dll 2009-08-08 01:51:32 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll 2009-08-08 01:51:31 ----A---- C:\Windows\system32\NlsLexicons0009.dll 2009-08-08 01:51:28 ----A---- C:\Windows\system32\SLCExt.dll 2009-08-08 01:51:26 ----A---- C:\Windows\system32\mssrch.dll 2009-08-08 01:51:23 ----A---- C:\Windows\system32\WscEapPr.dll 2009-08-08 01:51:22 ----A---- C:\Windows\system32\wcnwiz2.dll 2009-08-08 01:51:19 ----A---- C:\Windows\system32\tquery.dll 2009-08-08 01:51:18 ----A---- C:\Windows\system32\PresentationNative_v0300.dll 2009-08-08 01:51:16 ----A---- C:\Windows\system32\RMActivate_isv.exe 2009-08-08 01:51:14 ----A---- C:\Windows\system32\RMActivate.exe 2009-08-08 01:51:13 ----A---- C:\Windows\system32\msi.dll 2009-08-08 01:51:12 ----A---- C:\Windows\system32\imapi2fs.dll 2009-08-08 01:51:11 ----A---- C:\Windows\system32\secproc_isv.dll 2009-08-08 01:51:10 ----A---- C:\Windows\system32\icardagt.exe 2009-08-08 01:51:09 ----A---- C:\Windows\system32\mf.dll 2009-08-08 01:51:07 ----A---- C:\Windows\system32\spwizui.dll 2009-08-08 01:51:07 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll 2009-08-08 01:51:04 ----A---- C:\Windows\system32\spreview.exe 2009-08-08 01:51:04 ----A---- C:\Windows\system32\spinstall.exe 2009-08-08 01:51:04 ----A---- C:\Windows\system32\drmv2clt.dll 2009-08-08 01:51:03 ----A---- C:\Windows\system32\secproc.dll 2009-08-08 01:51:02 ----A---- C:\Windows\system32\shell32.dll 2009-08-08 01:51:01 ----A---- C:\Windows\system32\SearchIndexer.exe 2009-08-08 01:51:01 ----A---- C:\Windows\system32\p2psvc.dll 2009-08-08 01:51:01 ----A---- C:\Windows\system32\EhStorPwdMgr.dll 2009-08-08 01:51:01 ----A---- C:\Windows\system32\EhStorAuthn.dll 2009-08-08 01:51:00 ----A---- C:\Windows\system32\mssvp.dll 2009-08-08 01:50:59 ----A---- C:\Windows\system32\mscoree.dll 2009-08-08 01:50:59 ----A---- C:\Windows\system32\kernel32.dll 2009-08-08 01:50:58 ----A---- C:\Windows\system32\ntdll.dll 2009-08-08 01:50:58 ----A---- C:\Windows\system32\mssphtb.dll 2009-08-08 01:50:58 ----A---- C:\Windows\system32\mssph.dll 2009-08-08 01:50:58 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL 2009-08-08 01:50:58 ----A---- C:\Windows\system32\imapi2.dll 2009-08-08 01:50:56 ----A---- C:\Windows\system32\sdohlp.dll 2009-08-08 01:50:56 ----A---- C:\Windows\system32\IMJP10K.DLL 2009-08-08 01:50:56 ----A---- C:\Windows\system32\esent.dll 2009-08-08 01:50:56 ----A---- C:\Windows\system32\DevicePairing.dll 2009-08-08 01:50:54 ----A---- C:\Windows\system32\korwbrkr.dll 2009-08-08 01:50:53 ----A---- C:\Windows\system32\sperror.dll 2009-08-08 01:50:53 ----A---- C:\Windows\system32\RMActivate_ssp.exe 2009-08-08 01:50:52 ----A---- C:\Windows\system32\SLC.dll 2009-08-08 01:50:52 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe 2009-08-08 01:50:52 ----A---- C:\Windows\system32\PresentationHostProxy.dll 2009-08-08 01:50:51 ----A---- C:\Windows\system32\WMVCORE.DLL 2009-08-08 01:50:51 ----A---- C:\Windows\system32\msshsq.dll 2009-08-08 01:50:51 ----A---- C:\Windows\system32\msjet40.dll 2009-08-08 01:50:51 ----A---- C:\Windows\system32\EhStorAPI.dll 2009-08-08 01:50:50 ----A---- C:\Windows\system32\msxml6.dll 2009-08-08 01:50:49 ----A---- C:\Windows\system32\Query.dll 2009-08-08 01:50:48 ----A---- C:\Windows\system32\user32.dll 2009-08-08 01:50:48 ----A---- C:\Windows\system32\msexch40.dll 2009-08-08 01:50:48 ----A---- C:\Windows\system32\EhStorShell.dll 2009-08-08 01:50:47 ----A---- C:\Windows\system32\srchadmin.dll 2009-08-08 01:50:47 ----A---- C:\Windows\system32\P2PGraph.dll 2009-08-08 01:50:47 ----A---- C:\Windows\system32\ole32.dll 2009-08-08 01:50:47 ----A---- C:\Windows\system32\IasMigReader.exe 2009-08-08 01:50:47 ----A---- C:\Windows\explorer.exe 2009-08-08 01:50:46 ----A---- C:\Windows\system32\msxml3.dll 2009-08-08 01:50:46 ----A---- C:\Windows\system32\gdi32.dll 2009-08-08 01:50:46 ----A---- C:\Windows\system32\EncDec.dll 2009-08-08 01:50:45 ----A---- C:\Windows\system32\riched20.dll 2009-08-08 01:50:45 ----A---- C:\Windows\system32\mmc.exe 2009-08-08 01:50:45 ----A---- C:\Windows\system32\Magnify.exe 2009-08-08 01:50:45 ----A---- C:\Windows\system32\IasMigPlugin.dll 2009-08-08 01:50:45 ----A---- C:\Windows\system32\DevicePairingWizard.exe 2009-08-08 01:50:44 ----A---- C:\Windows\system32\RacEngn.dll 2009-08-08 01:50:44 ----A---- C:\Windows\system32\fdBth.dll 2009-08-08 01:50:43 ----A---- C:\Windows\system32\spoolss.dll 2009-08-08 01:50:43 ----A---- C:\Windows\system32\SearchProtocolHost.exe 2009-08-08 01:50:43 ----A---- C:\Windows\system32\SearchFilterHost.exe 2009-08-08 01:50:43 ----A---- C:\Windows\system32\milcore.dll 2009-08-08 01:50:43 ----A---- C:\Windows\system32\CertEnroll.dll 2009-08-08 01:50:43 ----A---- C:\Windows\system32\bcrypt.dll 2009-08-08 01:50:42 ----A---- C:\Windows\system32\NaturalLanguage6.dll 2009-08-08 01:50:41 ----A---- C:\Windows\system32\msjtes40.dll 2009-08-08 01:50:41 ----A---- C:\Windows\system32\jscript.dll 2009-08-08 01:50:40 ----A---- C:\Windows\system32\Storprop.dll 2009-08-08 01:50:40 ----A---- C:\Windows\system32\msvcp60.dll 2009-08-08 01:50:40 ----A---- C:\Windows\system32\infocardapi.dll 2009-08-08 01:50:40 ----A---- C:\Windows\system32\gpedit.dll 2009-08-08 01:50:40 ----A---- C:\Windows\system32\es.dll 2009-08-08 01:50:39 ----A---- C:\Windows\system32\mstext40.dll 2009-08-08 01:50:39 ----A---- C:\Windows\system32\advapi32.dll 2009-08-08 01:50:38 ----A---- C:\Windows\system32\WMPhoto.dll 2009-08-08 01:50:38 ----A---- C:\Windows\system32\WebClnt.dll 2009-08-08 01:50:38 ----A---- C:\Windows\system32\slwmi.dll 2009-08-08 01:50:38 ----A---- C:\Windows\system32\msexcl40.dll 2009-08-08 01:50:38 ----A---- C:\Windows\system32\comsvcs.dll 2009-08-08 01:50:37 ----A---- C:\Windows\system32\vssapi.dll 2009-08-08 01:50:37 ----A---- C:\Windows\system32\msxbde40.dll 2009-08-08 01:50:37 ----A---- C:\Windows\system32\msfeeds.dll 2009-08-08 01:50:37 ----A---- C:\Windows\system32\DevicePairingProxy.dll 2009-08-08 01:50:37 ----A---- C:\Windows\system32\authui.dll 2009-08-08 01:50:35 ----A---- C:\Windows\system32\vbscript.dll 2009-08-08 01:50:35 ----A---- C:\Windows\system32\PresentationHost.exe 2009-08-08 01:50:35 ----A---- C:\Windows\system32\newdev.dll 2009-08-08 01:50:35 ----A---- C:\Windows\system32\msrepl40.dll 2009-08-08 01:50:34 ----A---- C:\Windows\system32\propsys.dll 2009-08-08 01:50:34 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2009-08-08 01:50:34 ----A---- C:\Windows\system32\iasrecst.dll 2009-08-08 01:50:34 ----A---- C:\Windows\system32\explorer.exe 2009-08-08 01:50:34 ----A---- C:\Windows\system32\eudcedit.exe 2009-08-08 01:50:34 ----A---- C:\Windows\system32\crypt32.dll 2009-08-08 01:50:33 ----A---- C:\Windows\system32\setupapi.dll 2009-08-08 01:50:33 ----A---- C:\Windows\system32\mspbde40.dll 2009-08-08 01:50:33 ----A---- C:\Windows\system32\iedkcs32.dll 2009-08-08 01:50:32 ----A---- C:\Windows\system32\d3d9.dll 2009-08-08 01:50:31 ----A---- C:\Windows\system32\shlwapi.dll 2009-08-08 01:50:31 ----A---- C:\Windows\system32\msltus40.dll 2009-08-08 01:50:31 ----A---- C:\Windows\system32\mfc42.dll 2009-08-08 01:50:31 ----A---- C:\Windows\system32\davclnt.dll 2009-08-08 01:50:30 ----A---- C:\Windows\system32\wevtapi.dll 2009-08-08 01:50:30 ----A---- C:\Windows\system32\msrd3x40.dll 2009-08-08 01:50:30 ----A---- C:\Windows\system32\browseui.dll 2009-08-08 01:50:29 ----A---- C:\Windows\system32\photowiz.dll 2009-08-08 01:50:29 ----A---- C:\Windows\system32\nlhtml.dll 2009-08-08 01:50:27 ----A---- C:\Windows\system32\win32spl.dll 2009-08-08 01:50:27 ----A---- C:\Windows\system32\quartz.dll 2009-08-08 01:50:26 ----A---- C:\Windows\system32\winhttp.dll 2009-08-08 01:50:26 ----A---- C:\Windows\system32\WcnNetsh.dll 2009-08-08 01:50:26 ----A---- C:\Windows\system32\SLCommDlg.dll 2009-08-08 01:50:26 ----A---- C:\Windows\system32\oleaut32.dll 2009-08-08 01:50:26 ----A---- C:\Windows\system32\netshell.dll 2009-08-08 01:50:26 ----A---- C:\Windows\system32\msv1_0.dll 2009-08-08 01:50:26 ----A---- C:\Windows\system32\kerberos.dll 2009-08-08 01:50:26 ----A---- C:\Windows\system32\apds.dll 2009-08-08 01:50:25 ----A---- C:\Windows\system32\xmlfilter.dll 2009-08-08 01:50:25 ----A---- C:\Windows\system32\mswstr10.dll 2009-08-08 01:50:25 ----A---- C:\Windows\system32\msvcrt.dll 2009-08-08 01:50:25 ----A---- C:\Windows\system32\msctf.dll 2009-08-08 01:50:24 ----A---- C:\Windows\system32\mfc42u.dll 2009-08-08 01:50:24 ----A---- C:\Windows\system32\eapphost.dll 2009-08-08 01:50:23 ----A---- C:\Windows\system32\sqlsrv32.dll 2009-08-08 01:50:23 ----A---- C:\Windows\system32\secur32.dll 2009-08-08 01:50:23 ----A---- C:\Windows\system32\msrd2x40.dll 2009-08-08 01:50:22 ----A---- C:\Windows\system32\shdocvw.dll 2009-08-08 01:50:22 ----A---- C:\Windows\system32\propdefs.dll 2009-08-08 01:50:22 ----A---- C:\Windows\system32\odbc32.dll 2009-08-08 01:50:21 ----A---- C:\Windows\system32\WsmSvc.dll 2009-08-08 01:50:21 ----A---- C:\Windows\system32\wevtutil.exe 2009-08-08 01:50:21 ----A---- C:\Windows\system32\mssitlb.dll 2009-08-08 01:50:21 ----A---- C:\Windows\system32\dbgeng.dll 2009-08-08 01:50:20 ----A---- C:\Windows\system32\usp10.dll 2009-08-08 01:50:20 ----A---- C:\Windows\system32\mmcndmgr.dll 2009-08-08 01:50:20 ----A---- C:\Windows\system32\ieapfltr.dll 2009-08-08 01:50:19 ----A---- C:\Windows\system32\mshtmled.dll 2009-08-08 01:50:19 ----A---- C:\Windows\system32\drvinst.exe 2009-08-08 01:50:18 ----A---- C:\Windows\system32\schannel.dll 2009-08-08 01:50:18 ----A---- C:\Windows\system32\netlogon.dll 2009-08-08 01:50:18 ----A---- C:\Windows\system32\msscb.dll 2009-08-08 01:50:18 ----A---- C:\Windows\system32\msctfp.dll 2009-08-08 01:50:18 ----A---- C:\Windows\system32\fdBthProxy.dll 2009-08-08 01:50:18 ----A---- C:\Windows\system32\devmgr.dll 2009-08-08 01:50:18 ----A---- C:\Windows\system32\adsldpc.dll 2009-08-08 01:50:17 ----A---- C:\Windows\system32\WSDApi.dll 2009-08-08 01:50:17 ----A---- C:\Windows\system32\WMVSDECD.DLL 2009-08-08 01:50:17 ----A---- C:\Windows\system32\Wldap32.dll 2009-08-08 01:50:17 ----A---- C:\Windows\system32\WindowsCodecs.dll 2009-08-08 01:50:17 ----A---- C:\Windows\system32\wcnwiz.dll 2009-08-08 01:50:17 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll 2009-08-08 01:50:17 ----A---- C:\Windows\system32\evr.dll 2009-08-08 01:50:16 ----A---- C:\Windows\system32\wcncsvc.dll 2009-08-08 01:50:16 ----A---- C:\Windows\system32\services.exe 2009-08-08 01:50:16 ----A---- C:\Windows\system32\PortableDeviceApi.dll 2009-08-08 01:50:16 ----A---- C:\Windows\system32\mimefilt.dll 2009-08-08 01:50:16 ----A---- C:\Windows\system32\iertutil.dll 2009-08-08 01:50:16 ----A---- C:\Windows\system32\comdlg32.dll 2009-08-08 01:50:16 ----A---- C:\Windows\system32\certcli.dll 2009-08-08 01:50:16 ----A---- C:\Windows\system32\adtschema.dll 2009-08-08 01:50:15 ----A---- C:\Windows\system32\taskeng.exe 2009-08-08 01:50:15 ----A---- C:\Windows\system32\rtffilt.dll 2009-08-08 01:50:15 ----A---- C:\Windows\system32\reg.exe 2009-08-08 01:50:15 ----A---- C:\Windows\system32\mswdat10.dll 2009-08-08 01:50:15 ----A---- C:\Windows\system32\msjter40.dll 2009-08-08 01:50:15 ----A---- C:\Windows\system32\msdtcprx.dll 2009-08-08 01:50:15 ----A---- C:\Windows\system32\msdrm.dll 2009-08-08 01:50:15 ----A---- C:\Windows\system32\ipsmsnap.dll 2009-08-08 01:50:15 ----A---- C:\Windows\system32\dnsapi.dll 2009-08-08 01:50:15 ----A---- C:\Windows\system32\certutil.exe 2009-08-08 01:50:14 ----A---- C:\Windows\system32\WMNetMgr.dll 2009-08-08 01:50:14 ----A---- C:\Windows\system32\msshooks.dll 2009-08-08 01:50:14 ----A---- C:\Windows\system32\msscntrs.dll 2009-08-08 01:50:13 ----A---- C:\Windows\system32\rsaenh.dll 2009-08-08 01:50:13 ----A---- C:\Windows\system32\msstrc.dll 2009-08-08 01:50:13 ----A---- C:\Windows\system32\msihnd.dll 2009-08-08 01:50:13 ----A---- C:\Windows\system32\MMDevAPI.dll 2009-08-08 01:50:13 ----A---- C:\Windows\system32\inetcomm.dll 2009-08-08 01:50:12 ----A---- C:\Windows\system32\netapi32.dll 2009-08-08 01:50:12 ----A---- C:\Windows\system32\mtxclu.dll 2009-08-08 01:50:12 ----A---- C:\Windows\system32\mscories.dll 2009-08-08 01:50:12 ----A---- C:\Windows\system32\hidserv.dll 2009-08-08 01:50:12 ----A---- C:\Windows\system32\fundisc.dll 2009-08-08 01:50:12 ----A---- C:\Windows\system32\dfshim.dll 2009-08-08 01:50:12 ----A---- C:\Windows\system32\cryptsvc.dll 2009-08-08 01:50:11 ----A---- C:\Windows\system32\TsWpfWrp.exe 2009-08-08 01:50:11 ----A---- C:\Windows\system32\gameux.dll 2009-08-08 01:50:11 ----A---- C:\Windows\system32\dhcpcsvc6.dll 2009-08-08 01:50:09 ----A---- C:\Windows\system32\wdc.dll 2009-08-08 01:50:09 ----A---- C:\Windows\system32\shsvcs.dll 2009-08-08 01:50:09 ----A---- C:\Windows\system32\msiexec.exe 2009-08-08 01:50:09 ----A---- C:\Windows\system32\imapi.dll 2009-08-08 01:50:08 ----A---- C:\Windows\system32\imm32.dll 2009-08-08 01:50:08 ----A---- C:\Windows\system32\iassdo.dll 2009-08-08 01:50:08 ----A---- C:\Windows\system32\chsbrkr.dll 2009-08-08 01:50:07 ----A---- C:\Windows\system32\spcmsg.dll 2009-08-08 01:50:07 ----A---- C:\Windows\system32\slmgr.vbs 2009-08-08 01:50:07 ----A---- C:\Windows\system32\scrrun.dll 2009-08-08 01:50:07 ----A---- C:\Windows\system32\pnidui.dll 2009-08-08 01:50:07 ----A---- C:\Windows\system32\autofmt.exe 2009-08-08 01:50:06 ----A---- C:\Windows\system32\pdh.dll 2009-08-08 01:50:06 ----A---- C:\Windows\system32\dhcpcsvc.dll 2009-08-08 01:50:06 ----A---- C:\Windows\system32\CertEnrollUI.dll 2009-08-08 01:50:06 ----A---- C:\Windows\system32\azroles.dll 2009-08-08 01:50:05 ----A---- C:\Windows\system32\wmpmde.dll 2009-08-08 01:50:05 ----A---- C:\Windows\system32\winlogon.exe 2009-08-08 01:50:05 ----A---- C:\Windows\system32\SyncCenter.dll 2009-08-08 01:50:05 ----A---- C:\Windows\system32\pidgenx.dll 2009-08-08 01:50:04 ----A---- C:\Windows\system32\msjetoledb40.dll 2009-08-08 01:50:04 ----A---- C:\Windows\system32\comuid.dll 2009-08-08 01:50:04 ----A---- C:\Windows\system32\certmgr.dll 2009-08-08 01:50:03 ----A---- C:\Windows\system32\ncrypt.dll 2009-08-08 01:50:02 ----A---- C:\Windows\system32\WindowsCodecsExt.dll 2009-08-08 01:50:02 ----A---- C:\Windows\system32\sethc.exe 2009-08-08 01:50:02 ----A---- C:\Windows\system32\iassam.dll 2009-08-08 01:50:01 ----A---- C:\Windows\system32\spp.dll 2009-08-08 01:50:00 ----A---- C:\Windows\system32\scrobj.dll 2009-08-08 01:49:59 ----A---- C:\Windows\system32\untfs.dll 2009-08-08 01:49:59 ----A---- C:\Windows\system32\taskcomp.dll 2009-08-08 01:49:59 ----A---- C:\Windows\system32\rtutils.dll 2009-08-08 01:49:58 ----A---- C:\Windows\system32\printui.dll 2009-08-08 01:49:58 ----A---- C:\Windows\system32\iasnap.dll 2009-08-08 01:49:58 ----A---- C:\Windows\system32\autochk.exe 2009-08-08 01:49:57 ----A---- C:\Windows\system32\WMVDECOD.DLL 2009-08-08 01:49:57 ----A---- C:\Windows\system32\cscript.exe 2009-08-08 01:49:57 ----A---- C:\Windows\system32\basecsp.dll 2009-08-08 01:49:57 ----A---- C:\Windows\system32\autoconv.exe 2009-08-08 01:49:56 ----A---- C:\Windows\system32\userenv.dll 2009-08-08 01:49:56 ----A---- C:\Windows\system32\osk.exe 2009-08-08 01:49:56 ----A---- C:\Windows\system32\onex.dll 2009-08-08 01:49:56 ----A---- C:\Windows\system32\mswsock.dll 2009-08-08 01:49:56 ----A---- C:\Windows\system32\audiodg.exe 2009-08-08 01:49:55 ----A---- C:\Windows\system32\winmm.dll 2009-08-08 01:49:55 ----A---- C:\Windows\system32\RelMon.dll 2009-08-08 01:49:55 ----A---- C:\Windows\system32\rdpencom.dll 2009-08-08 01:49:54 ----A---- C:\Windows\system32\WinSCard.dll 2009-08-08 01:49:54 ----A---- C:\Windows\system32\WerFaultSecure.exe 2009-08-08 01:49:54 ----A---- C:\Windows\system32\WerFault.exe 2009-08-08 01:49:54 ----A---- C:\Windows\system32\Utilman.exe 2009-08-08 01:49:54 ----A---- C:\Windows\system32\stobject.dll 2009-08-08 01:49:54 ----A---- C:\Windows\system32\secproc_ssp_isv.dll 2009-08-08 01:49:54 ----A---- C:\Windows\system32\secproc_ssp.dll 2009-08-08 01:49:54 ----A---- C:\Windows\system32\offfilt.dll 2009-08-08 01:49:54 ----A---- C:\Windows\system32\msftedit.dll 2009-08-08 01:49:54 ----A---- C:\Windows\system32\mfplat.dll 2009-08-08 01:49:54 ----A---- C:\Windows\system32\diskraid.exe 2009-08-08 01:49:53 ----A---- C:\Windows\system32\wscript.exe 2009-08-08 01:49:53 ----A---- C:\Windows\system32\ulib.dll 2009-08-08 01:49:53 ----A---- C:\Windows\system32\SndVol.exe 2009-08-08 01:49:53 ----A---- C:\Windows\system32\prnntfy.dll 2009-08-08 01:49:53 ----A---- C:\Windows\system32\odbccp32.dll 2009-08-08 01:49:53 ----A---- C:\Windows\system32\msnetobj.dll 2009-08-08 01:49:53 ----A---- C:\Windows\system32\mscms.dll 2009-08-08 01:49:53 ----A---- C:\Windows\system32\iasdatastore.dll 2009-08-08 01:49:53 ----A---- C:\Windows\system32\dsound.dll 2009-08-08 01:49:53 ----A---- C:\Windows\system32\cryptui.dll 2009-08-08 01:49:53 ----A---- C:\Windows\system32\AudioEng.dll 2009-08-08 01:49:53 ----A---- C:\Windows\system32\apphelp.dll 2009-08-08 01:49:53 ----A---- C:\Windows\system32\adsmsext.dll 2009-08-08 01:49:52 ----A---- C:\Windows\system32\wscntfy.dll 2009-08-08 01:49:52 ----A---- C:\Windows\system32\wlangpui.dll 2009-08-08 01:49:52 ----A---- C:\Windows\system32\rastapi.dll 2009-08-08 01:49:52 ----A---- C:\Windows\system32\pnpsetup.dll 2009-08-08 01:49:52 ----A---- C:\Windows\system32\ipsecsnp.dll 2009-08-08 01:49:52 ----A---- C:\Windows\system32\IPHLPAPI.DLL 2009-08-08 01:49:52 ----A---- C:\Windows\system32\fdProxy.dll 2009-08-08 01:49:52 ----A---- C:\Windows\system32\diskpart.exe 2009-08-08 01:49:51 ----A---- C:\Windows\system32\WMVENCOD.DLL 2009-08-08 01:49:51 ----A---- C:\Windows\system32\vdsdyn.dll 2009-08-08 01:49:51 ----A---- C:\Windows\system32\rastls.dll 2009-08-08 01:49:51 ----A---- C:\Windows\system32\netiohlp.dll 2009-08-08 01:49:51 ----A---- C:\Windows\system32\logman.exe 2009-08-08 01:49:51 ----A---- C:\Windows\system32\iepeers.dll 2009-08-08 01:49:51 ----A---- C:\Windows\system32\iashlpr.dll 2009-08-08 01:49:51 ----A---- C:\Windows\system32\gpapi.dll 2009-08-08 01:49:50 ----A---- C:\Windows\system32\wusa.exe 2009-08-08 01:49:50 ----A---- C:\Windows\system32\rasapi32.dll 2009-08-08 01:49:50 ----A---- C:\Windows\system32\ntprint.dll 2009-08-08 01:49:50 ----A---- C:\Windows\system32\mscorier.dll 2009-08-08 01:49:50 ----A---- C:\Windows\system32\iasrad.dll 2009-08-08 01:49:49 ----A---- C:\Windows\system32\zipfldr.dll 2009-08-08 01:49:49 ----A---- C:\Windows\system32\wshext.dll 2009-08-08 01:49:49 ----A---- C:\Windows\system32\webcheck.dll 2009-08-08 01:49:49 ----A---- C:\Windows\system32\netcenter.dll 2009-08-08 01:49:49 ----A---- C:\Windows\system32\findstr.exe 2009-08-08 01:49:48 ----A---- C:\Windows\system32\wer.dll 2009-08-08 01:49:48 ----A---- C:\Windows\system32\rasdlg.dll 2009-08-08 01:49:48 ----A---- C:\Windows\system32\iassvcs.dll 2009-08-08 01:49:47 ----A---- C:\Windows\system32\wsnmp32.dll 2009-08-08 01:49:47 ----A---- C:\Windows\system32\tsbyuv.dll 2009-08-08 01:49:47 ----A---- C:\Windows\system32\themecpl.dll 2009-08-08 01:49:47 ----A---- C:\Windows\system32\scansetting.dll 2009-08-08 01:49:47 ----A---- C:\Windows\system32\ntmarta.dll 2009-08-08 01:49:47 ----A---- C:\Windows\system32\msutb.dll 2009-08-08 01:49:47 ----A---- C:\Windows\system32\mstlsapi.dll 2009-08-08 01:49:47 ----A---- C:\Windows\system32\mssprxy.dll 2009-08-08 01:49:47 ----A---- C:\Windows\system32\iasads.dll 2009-08-08 01:49:46 ----A---- C:\Windows\system32\slcc.dll 2009-08-08 01:49:46 ----A---- C:\Windows\system32\powrprof.dll 2009-08-08 01:49:46 ----A---- C:\Windows\system32\powercpl.dll 2009-08-08 01:49:46 ----A---- C:\Windows\system32\PerfCenterCPL.dll 2009-08-08 01:49:46 ----A---- C:\Windows\system32\networkmap.dll 2009-08-08 01:49:46 ----A---- C:\Windows\system32\mstsc.exe 2009-08-08 01:49:46 ----A---- C:\Windows\system32\icardres.dll 2009-08-08 01:49:46 ----A---- C:\Windows\system32\iasacct.dll 2009-08-08 01:49:45 ----A---- C:\Windows\system32\wlanhlp.dll 2009-08-08 01:49:45 ----A---- C:\Windows\system32\newdev.exe 2009-08-08 01:49:45 ----A---- C:\Windows\system32\connect.dll 2009-08-08 01:49:45 ----A---- C:\Windows\system32\authz.dll 2009-08-08 01:49:44 ----A---- C:\Windows\system32\usercpl.dll 2009-08-08 01:49:44 ----A---- C:\Windows\system32\themeui.dll 2009-08-08 01:49:44 ----A---- C:\Windows\system32\systemcpl.dll 2009-08-08 01:49:44 ----A---- C:\Windows\system32\sud.dll 2009-08-08 01:49:44 ----A---- C:\Windows\system32\samlib.dll 2009-08-08 01:49:44 ----A---- C:\Windows\system32\pcaui.dll 2009-08-08 01:49:44 ----A---- C:\Windows\system32\mmci.dll 2009-08-08 01:49:44 ----A---- C:\Windows\system32\accessibilitycpl.dll 2009-08-08 01:49:43 ----A---- C:\Windows\system32\wlanpref.dll 2009-08-08 01:49:43 ----A---- C:\Windows\system32\rpchttp.dll 2009-08-08 01:49:43 ----A---- C:\Windows\system32\regapi.dll 2009-08-08 01:49:43 ----A---- C:\Windows\system32\qdvd.dll 2009-08-08 01:49:43 ----A---- C:\Windows\system32\ieaksie.dll 2009-08-08 01:49:43 ----A---- C:\Windows\system32\autoplay.dll 2009-08-08 01:49:42 ----A---- C:\Windows\system32\wpcao.dll 2009-08-08 01:49:42 ----A---- C:\Windows\system32\vdsutil.dll 2009-08-08 01:49:42 ----A---- C:\Windows\system32\tapisrv.dll 2009-08-08 01:49:42 ----A---- C:\Windows\system32\scksp.dll 2009-08-08 01:49:42 ----A---- C:\Windows\system32\msinfo32.exe 2009-08-08 01:49:42 ----A---- C:\Windows\system32\feclient.dll 2009-08-08 01:49:41 ----A---- C:\Windows\system32\wscisvif.dll 2009-08-08 01:49:41 ----A---- C:\Windows\system32\WMPEncEn.dll 2009-08-08 01:49:41 ----A---- C:\Windows\system32\scesrv.dll 2009-08-08 01:49:41 ----A---- C:\Windows\system32\rekeywiz.exe 2009-08-08 01:49:41 ----A---- C:\Windows\system32\psisdecd.dll 2009-08-08 01:49:41 ----A---- C:\Windows\system32\oleprn.dll 2009-08-08 01:49:41 ----A---- C:\Windows\system32\mpr.dll 2009-08-08 01:49:41 ----A---- C:\Windows\system32\iaspolcy.dll 2009-08-08 01:49:41 ----A---- C:\Windows\system32\Faultrep.dll 2009-08-08 01:49:41 ----A---- C:\Windows\system32\dot3msm.dll 2009-08-08 01:49:41 ----A---- C:\Windows\system32\AudioSes.dll 2009-08-08 01:49:40 ----A---- C:\Windows\system32\rasgcw.dll 2009-08-08 01:49:40 ----A---- C:\Windows\system32\qedit.dll 2009-08-08 01:49:40 ----A---- C:\Windows\system32\perfdisk.dll 2009-08-08 01:49:40 ----A---- C:\Windows\system32\ncryptui.dll 2009-08-08 01:49:40 ----A---- C:\Windows\system32\hdwwiz.exe 2009-08-08 01:49:40 ----A---- C:\Windows\system32\dpapimig.exe 2009-08-08 01:49:40 ----A---- C:\Windows\system32\certreq.exe 2009-08-08 01:49:39 ----A---- C:\Windows\system32\TSTheme.exe 2009-08-08 01:49:39 ----A---- C:\Windows\system32\tcpmon.dll 2009-08-08 01:49:39 ----A---- C:\Windows\system32\tcpipcfg.dll 2009-08-08 01:49:39 ----A---- C:\Windows\system32\spwinsat.dll 2009-08-08 01:49:39 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll 2009-08-08 01:49:39 ----A---- C:\Windows\system32\scecli.dll 2009-08-08 01:49:39 ----A---- C:\Windows\system32\rasplap.dll 2009-08-08 01:49:39 ----A---- C:\Windows\system32\FWPUCLNT.DLL 2009-08-08 01:49:39 ----A---- C:\Windows\system32\fdWSD.dll 2009-08-08 01:49:39 ----A---- C:\Windows\system32\extmgr.dll 2009-08-08 01:49:39 ----A---- C:\Windows\system32\cmmon32.exe 2009-08-08 01:49:38 ----A---- C:\Windows\system32\whealogr.dll 2009-08-08 01:49:38 ----A---- C:\Windows\system32\cmdial32.dll 2009-08-08 01:49:37 ----A---- C:\Windows\system32\WMVXENCD.DLL 2009-08-08 01:49:37 ----A---- C:\Windows\system32\wlanui.dll 2009-08-08 01:49:37 ----A---- C:\Windows\system32\wiaaut.dll 2009-08-08 01:49:37 ----A---- C:\Windows\system32\SCardSvr.dll 2009-08-08 01:49:37 ----A---- C:\Windows\system32\raschap.dll 2009-08-08 01:49:37 ----A---- C:\Windows\system32\MSVidCtl.dll 2009-08-08 01:49:37 ----A---- C:\Windows\system32\fontext.dll 2009-08-08 01:49:37 ----A---- C:\Windows\system32\conime.exe 2009-08-08 01:49:36 ----A---- C:\Windows\system32\wlanmsm.dll 2009-08-08 01:49:36 ----A---- C:\Windows\system32\shwebsvc.dll 2009-08-08 01:49:36 ----A---- C:\Windows\system32\rasppp.dll 2009-08-08 01:49:36 ----A---- C:\Windows\system32\oobefldr.dll 2009-08-08 01:49:36 ----A---- C:\Windows\system32\occache.dll 2009-08-08 01:49:36 ----A---- C:\Windows\system32\dsprop.dll 2009-08-08 01:49:36 ----A---- C:\Windows\system32\dimsroam.dll 2009-08-08 01:49:35 ----A---- C:\Windows\system32\wmdrmsdk.dll 2009-08-08 01:49:35 ----A---- C:\Windows\system32\shsetup.dll 2009-08-08 01:49:35 ----A---- C:\Windows\system32\rasmontr.dll 2009-08-08 01:49:35 ----A---- C:\Windows\system32\mscandui.dll 2009-08-08 01:49:35 ----A---- C:\Windows\system32\modemui.dll 2009-08-08 01:49:35 ----A---- C:\Windows\system32\dataclen.dll 2009-08-08 01:49:35 ----A---- C:\Windows\system32\chtbrkr.dll 2009-08-08 01:49:34 ----A---- C:\Windows\system32\WSDMon.dll 2009-08-08 01:49:34 ----A---- C:\Windows\system32\wmpeffects.dll 2009-08-08 01:49:34 ----A---- C:\Windows\system32\wlgpclnt.dll 2009-08-08 01:49:34 ----A---- C:\Windows\system32\netplwiz.dll 2009-08-08 01:49:34 ----A---- C:\Windows\system32\credui.dll 2009-08-08 01:49:34 ----A---- C:\Windows\system32\blackbox.dll 2009-08-08 01:49:34 ----A---- C:\Windows\system32\AUDIOKSE.dll 2009-08-08 01:49:33 ----A---- C:\Windows\system32\wscapi.dll 2009-08-08 01:49:33 ----A---- C:\Windows\system32\wpcsvc.dll 2009-08-08 01:49:33 ----A---- C:\Windows\system32\networkexplorer.dll 2009-08-08 01:49:33 ----A---- C:\Windows\system32\mstime.dll 2009-08-08 01:49:33 ----A---- C:\Windows\system32\msscp.dll 2009-08-08 01:49:33 ----A---- C:\Windows\system32\msrating.dll 2009-08-08 01:49:33 ----A---- C:\Windows\system32\logagent.exe 2009-08-08 01:49:33 ----A---- C:\Windows\system32\InkEd.dll 2009-08-08 01:49:33 ----A---- C:\Windows\system32\ifmon.dll 2009-08-08 01:49:33 ----A---- C:\Windows\system32\gpresult.exe 2009-08-08 01:49:33 ----A---- C:\Windows\system32\cipher.exe 2009-08-08 01:49:32 ----A---- C:\Windows\system32\wpdwcn.dll 2009-08-08 01:49:32 ----A---- C:\Windows\system32\thawbrkr.dll 2009-08-08 01:49:32 ----A---- C:\Windows\system32\msimtf.dll 2009-08-08 01:49:31 ----A---- C:\Windows\system32\softkbd.dll 2009-08-08 01:49:31 ----A---- C:\Windows\system32\sendmail.dll 2009-08-08 01:49:31 ----A---- C:\Windows\system32\olepro32.dll 2009-08-08 01:49:31 ----A---- C:\Windows\system32\msctfui.dll 2009-08-08 01:49:31 ----A---- C:\Windows\system32\MediaMetadataHandler.dll 2009-08-08 01:49:31 ----A---- C:\Windows\system32\dmsynth.dll 2009-08-08 01:49:31 ----A---- C:\Windows\system32\Apphlpdm.dll 2009-08-08 01:49:30 ----A---- C:\Windows\system32\wmdrmdev.dll 2009-08-08 01:49:30 ----A---- C:\Windows\system32\puiapi.dll 2009-08-08 01:49:30 ----A---- C:\Windows\system32\input.dll 2009-08-08 01:49:30 ----A---- C:\Windows\system32\ExplorerFrame.dll 2009-08-08 01:49:30 ----A---- C:\Windows\system32\drmmgrtn.dll 2009-08-08 01:49:29 ----A---- C:\Windows\system32\wshbth.dll 2009-08-08 01:49:29 ----A---- C:\Windows\system32\WMADMOD.DLL 2009-08-08 01:49:29 ----A---- C:\Windows\system32\version.dll 2009-08-08 01:49:29 ----A---- C:\Windows\system32\msisip.dll 2009-08-08 01:49:29 ----A---- C:\Windows\system32\mprapi.dll 2009-08-08 01:49:29 ----A---- C:\Windows\system32\fdSSDP.dll 2009-08-08 01:49:29 ----A---- C:\Windows\system32\fc.exe 2009-08-08 01:49:28 ----A---- C:\Windows\system32\wsdchngr.dll 2009-08-08 01:49:28 ----A---- C:\Windows\system32\wmdrmnet.dll 2009-08-08 01:49:28 ----A---- C:\Windows\system32\rrinstaller.exe 2009-08-08 01:49:28 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll 2009-08-08 01:49:28 ----A---- C:\Windows\system32\msjint40.dll 2009-08-08 01:49:28 ----A---- C:\Windows\system32\MsCtfMonitor.dll 2009-08-08 01:49:28 ----A---- C:\Windows\system32\l2nacp.dll 2009-08-08 01:49:28 ----A---- C:\Windows\system32\ftp.exe 2009-08-08 01:49:28 ----A---- C:\Windows\system32\eapp3hst.dll 2009-08-08 01:49:28 ----A---- C:\Windows\system32\dmusic.dll 2009-08-08 01:49:28 ----A---- C:\Windows\system32\cscdll.dll 2009-08-08 01:49:28 ----A---- C:\Windows\system32\cscapi.dll 2009-08-08 01:49:27 ----A---- C:\Windows\system32\tscupgrd.exe 2009-08-08 01:49:27 ----A---- C:\Windows\system32\SMBHelperClass.dll 2009-08-08 01:49:27 ----A---- C:\Windows\system32\rasdial.exe 2009-08-08 01:49:27 ----A---- C:\Windows\system32\rasdiag.dll 2009-08-08 01:49:27 ----A---- C:\Windows\system32\PortableDeviceTypes.dll 2009-08-08 01:49:27 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL 2009-08-08 01:49:27 ----A---- C:\Windows\system32\msfeedsbs.dll 2009-08-08 01:49:27 ----A---- C:\Windows\system32\MSAC3ENC.DLL 2009-08-08 01:49:27 ----A---- C:\Windows\system32\ipconfig.exe 2009-08-08 01:49:27 ----A---- C:\Windows\system32\fdWCN.dll 2009-08-08 01:49:27 ----A---- C:\Windows\system32\eappcfg.dll 2009-08-08 01:49:27 ----A---- C:\Windows\system32\dot3cfg.dll 2009-08-08 01:49:27 ----A---- C:\Windows\system32\CHxReadingStringIME.dll 2009-08-08 01:49:27 ----A---- C:\Windows\system32\bthudtask.exe 2009-08-08 01:49:27 ----A---- C:\Windows\system32\aaclient.dll 2009-08-08 01:49:26 ----A---- C:\Windows\system32\slcinst.dll 2009-08-08 01:49:26 ----A---- C:\Windows\system32\ocsetup.exe 2009-08-08 01:49:26 ----A---- C:\Windows\system32\nslookup.exe 2009-08-08 01:49:26 ----A---- C:\Windows\system32\networkitemfactory.dll 2009-08-08 01:49:26 ----A---- C:\Windows\system32\mfps.dll 2009-08-08 01:49:26 ----A---- C:\Windows\system32\hbaapi.dll 2009-08-08 01:49:26 ----A---- C:\Windows\system32\FwRemoteSvr.dll 2009-08-08 01:49:26 ----A---- C:\Windows\system32\fdeploy.dll 2009-08-08 01:49:26 ----A---- C:\Windows\system32\eappgnui.dll 2009-08-08 01:49:25 ----A---- C:\Windows\system32\tsgqec.dll 2009-08-08 01:49:25 ----A---- C:\Windows\system32\mmcico.dll 2009-08-08 01:49:25 ----A---- C:\Windows\system32\mfpmp.exe 2009-08-08 01:49:25 ----A---- C:\Windows\system32\gpupdate.exe 2009-08-08 01:49:23 ----A---- C:\Windows\system32\wmpps.dll 2009-08-08 01:49:23 ----A---- C:\Windows\system32\winrnr.dll 2009-08-08 01:49:23 ----A---- C:\Windows\system32\vdmdbg.dll 2009-08-08 01:49:23 ----A---- C:\Windows\system32\slwga.dll 2009-08-08 01:49:23 ----A---- C:\Windows\system32\odbcconf.dll 2009-08-08 01:49:23 ----A---- C:\Windows\system32\NcdProp.dll 2009-08-08 01:49:22 ----A---- C:\Windows\system32\midimap.dll 2009-08-08 01:49:21 ----A---- C:\Windows\system32\f3ahvoas.dll 2009-08-08 01:49:20 ----A---- C:\Windows\system32\msimsg.dll 2009-08-08 01:49:20 ----A---- C:\Windows\system32\mferror.dll 2009-08-08 01:49:00 ----A---- C:\Windows\system32\wdscore.dll 2009-08-08 01:48:42 ----A---- C:\Windows\system32\drvstore.dll 2009-08-03 16:49:06 ----A---- C:\Windows\dd_ATL90SP1_KB973924MSI2559.txt 2009-08-03 16:48:53 ----A---- C:\Windows\dd_ATL90SP1_KB973924UI2559.txt 2009-08-03 16:48:09 ----A---- C:\Windows\dd_ATL80SP1_KB973923MSI24C3.txt 2009-08-03 16:48:07 ----A---- C:\Windows\dd_ATL80SP1_KB973923UI24C3.txt 2009-08-03 16:47:34 ----A---- C:\Windows\dd_ATL80SP1_KB973923MSI2454.txt 2009-08-03 16:47:33 ----A---- C:\Windows\dd_ATL80SP1_KB973923UI2454.txt 2009-08-02 10:36:25 ----A---- C:\Windows\system32\mshtml.dll 2009-08-02 10:36:22 ----A---- C:\Windows\system32\ieframe.dll 2009-08-02 10:36:17 ----A---- C:\Windows\system32\wininet.dll 2009-08-02 10:36:17 ----A---- C:\Windows\system32\urlmon.dll 2009-08-02 10:36:15 ----A---- C:\Windows\system32\ieui.dll 2009-08-02 10:36:10 ----A---- C:\Windows\system32\ieencode.dll ======List of files/folders modified in the last 1 months====== 2009-08-25 21:34:50 ----D---- C:\Windows\Prefetch 2009-08-25 21:34:35 ----D---- C:\Windows\Temp 2009-08-25 21:27:51 ----D---- C:\Program Files (x86)\Steam 2009-08-25 21:15:51 ----D---- C:\Windows\Tasks 2009-08-25 21:15:51 ----D---- C:\Windows\SysWOW64 2009-08-25 21:09:08 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware 2009-08-25 21:09:05 ----D---- C:\Windows\system32\drivers 2009-08-25 20:08:42 ----HD---- C:\$AVG8.VAULT$ 2009-08-25 19:30:02 ----D---- C:\Windows 2009-08-25 19:22:13 ----D---- C:\Users\kristian\AppData\Roaming\Skype 2009-08-25 19:18:21 ----D---- C:\Users\kristian\AppData\Roaming\BitTorrent 2009-08-25 18:30:43 ----SHD---- C:\System Volume Information 2009-08-23 12:33:37 ----D---- C:\Windows\Debug 2009-08-21 17:06:52 ----D---- C:\Users\kristian\AppData\Roaming\Spotify 2009-08-18 22:56:24 ----SHD---- C:\Windows\Installer 2009-08-16 17:55:11 ----D---- C:\Windows\System32 2009-08-16 17:55:11 ----D---- C:\Windows\inf 2009-08-16 00:17:16 ----D---- C:\Users\kristian\AppData\Roaming\LimeWire 2009-08-15 23:22:15 ----RD---- C:\Program Files (x86) 2009-08-15 22:27:32 ----D---- C:\Program Files (x86)\Mozilla Firefox 2009-08-14 11:46:42 ----D---- C:\Windows\winsxs 2009-08-14 11:27:16 ----D---- C:\Program Files (x86)\Windows Mail 2009-08-14 11:27:12 ----D---- C:\Program Files (x86)\Windows Media Player 2009-08-14 10:52:07 ----D---- C:\ProgramData\Microsoft Help 2009-08-14 10:40:02 ----D---- C:\Program Files (x86)\Common Files\Steam 2009-08-13 12:44:51 ----D---- C:\Users\kristian\AppData\Roaming\vlc 2009-08-10 18:27:49 ----D---- C:\Windows\Microsoft.NET 2009-08-10 18:27:44 ----RSD---- C:\Windows\assembly 2009-08-10 16:03:44 ----D---- C:\Windows\rescache 2009-08-10 15:29:19 ----SHD---- C:\Boot 2009-08-09 20:51:17 ----D---- C:\Program Files (x86)\Windows Calendar 2009-08-09 20:51:16 ----D---- C:\Program Files (x86)\Windows Sidebar 2009-08-09 20:51:16 ----D---- C:\Program Files (x86)\Internet Explorer 2009-08-09 20:51:13 ----D---- C:\Program Files (x86)\Windows Photo Gallery 2009-08-09 20:51:13 ----D---- C:\Program Files (x86)\Common Files\System 2009-08-09 20:51:01 ----D---- C:\Windows\servicing 2009-08-09 20:50:58 ----D---- C:\Windows\ehome 2009-08-09 20:49:24 ----D---- C:\Windows\system32\XPSViewer 2009-08-09 20:49:24 ----D---- C:\Windows\system32\sk-SK 2009-08-09 20:49:24 ----D---- C:\Windows\system32\oobe 2009-08-09 20:49:24 ----D---- C:\Windows\system32\lv-LV 2009-08-09 20:49:24 ----D---- C:\Windows\system32\ko-KR 2009-08-09 20:49:24 ----D---- C:\Windows\system32\it-IT 2009-08-09 20:49:24 ----D---- C:\Windows\system32\hr-HR 2009-08-09 20:49:24 ----D---- C:\Windows\system32\et-EE 2009-08-09 20:49:24 ----D---- C:\Windows\system32\en-US 2009-08-09 20:49:24 ----D---- C:\Windows\system32\el-GR 2009-08-09 20:49:24 ----D---- C:\Windows\system32\de-DE 2009-08-09 20:49:24 ----D---- C:\Windows\system32\da-DK 2009-08-09 20:49:23 ----D---- C:\Windows\system32\migration 2009-08-09 20:49:18 ----D---- C:\Windows\system32\zh-CN 2009-08-09 20:49:18 ----D---- C:\Windows\system32\sv-SE 2009-08-09 20:49:18 ----D---- C:\Windows\system32\sr-Latn-CS 2009-08-09 20:49:18 ----D---- C:\Windows\system32\SLUI 2009-08-09 20:49:18 ----D---- C:\Windows\system32\setup 2009-08-09 20:49:18 ----D---- C:\Windows\system32\ru-RU 2009-08-09 20:49:18 ----D---- C:\Windows\system32\pt-PT 2009-08-09 20:49:18 ----D---- C:\Windows\system32\hu-HU 2009-08-09 20:49:18 ----D---- C:\Windows\system32\he-IL 2009-08-09 20:49:18 ----D---- C:\Windows\system32\fr-FR 2009-08-09 20:49:18 ----D---- C:\Windows\system32\fi-FI 2009-08-09 20:49:18 ----D---- C:\Windows\system32\cs-CZ 2009-08-09 20:49:18 ----D---- C:\Windows\system32\AdvancedInstallers 2009-08-09 20:49:17 ----D---- C:\Windows\system32\zh-TW 2009-08-09 20:49:17 ----D---- C:\Windows\system32\wbem 2009-08-09 20:49:17 ----D---- C:\Windows\system32\uk-UA 2009-08-09 20:49:17 ----D---- C:\Windows\system32\tr-TR 2009-08-09 20:49:17 ----D---- C:\Windows\system32\th-TH 2009-08-09 20:49:17 ----D---- C:\Windows\system32\sl-SI 2009-08-09 20:49:17 ----D---- C:\Windows\system32\ro-RO 2009-08-09 20:49:17 ----D---- C:\Windows\system32\pl-PL 2009-08-09 20:49:17 ----D---- C:\Windows\system32\manifeststore 2009-08-09 20:49:17 ----D---- C:\Windows\system32\ja-JP 2009-08-09 20:49:17 ----D---- C:\Windows\system32\es-ES 2009-08-09 20:49:17 ----D---- C:\Windows\system32\bg-BG 2009-08-09 20:49:15 ----D---- C:\Windows\system32\nb-NO 2009-08-09 20:49:13 ----D---- C:\Windows\system32\nl-NL 2009-08-09 20:49:13 ----D---- C:\Windows\system32\lt-LT 2009-08-09 20:49:13 ----D---- C:\Windows\system32\ar-SA 2009-08-09 20:49:12 ----D---- C:\Windows\system32\migwiz 2009-08-09 20:49:11 ----D---- C:\Windows\system32\pt-BR 2009-08-09 20:46:11 ----D---- C:\Windows\IME 2009-08-09 20:43:50 ----RSD---- C:\Windows\Fonts 2009-08-09 20:43:49 ----D---- C:\Windows\AppPatch ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R1 AvgLdx64;AVG AVI Loader Driver x64; C:\Windows\System32\Drivers\avgldx64.sys [] R1 AvgMfx64;AVG On-access Scanner Minifilter Driver x64; C:\Windows\System32\Drivers\avgmfx64.sys [] R1 AvgTdiA;AVG8 Network Redirector x64; C:\Windows\System32\Drivers\avgtdia.sys [] R1 SCDEmu;SCDEmu; C:\Windows\system32\drivers\SCDEmu.sys [] R2 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [] R3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [] R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [] R3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [] R3 ksthunk;Kernel Streaming Thunks; C:\Windows\system32\drivers\ksthunk.sys [] R3 L8042Kbd;SetPoint Keyboard Driver; C:\Windows\system32\DRIVERS\L8042Kbd.sys [] R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [] R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [] R3 LVUSBS64;Logitech USB Monitor Filter; C:\Windows\system32\drivers\LVUSBS64.sys [] R3 mcdbus;Driver for MagicISO SCSI Host Controller; C:\Windows\system32\DRIVERS\mcdbus.sys [2008-07-28 255424] R3 rt61x64;Ralink RT61 Wireless Driver for Windows Vista; C:\Windows\system32\DRIVERS\netr6164.sys [] R3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh64.sys [] R3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [] R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [] S1 SASDIFSV;SASDIFSV; \??\C:\Program Files (x86)\SUPERAntiSpyware\SASDIFSV.SYS [2009-03-23 9968] S1 SASKUTIL;SASKUTIL; \??\C:\Program Files (x86)\SUPERAntiSpyware\SASKUTIL.sys [2009-03-23 72944] S3 adr9bmr4;adr9bmr4; C:\Windows\system32\drivers\adr9bmr4.sys [] S3 Alpham1;Ideazon ZBoard USB Human Interface Device; C:\Windows\system32\DRIVERS\Alpham164.sys [] S3 Alpham2;Ideazon ZBoard MM USB Human Interface Device; C:\Windows\system32\DRIVERS\Alpham264.sys [] S3 aqd7snwf;aqd7snwf; C:\Windows\system32\drivers\aqd7snwf.sys [] S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [] S3 GMSIPCI;GMSIPCI; \??\D:\INSTALL\GMSIPCI.SYS [] S3 LVUVC64;Logitech QuickCam Pro 5000(UVC); C:\Windows\system32\DRIVERS\lvuvc64.sys [] S3 MSKSSRV;Tjenesteproxy for Microsoft Streaming; C:\Windows\system32\drivers\MSKSSRV.sys [] S3 MSPCLOCK;Klokkeproxy for Microsoft Streaming; C:\Windows\system32\drivers\MSPCLOCK.sys [] S3 MSPQM;Kvalitetsbehandlingsproxy for Microsoft Streaming; C:\Windows\system32\drivers\MSPQM.sys [] S3 MSTEE;Tee/Sink-to-Sink-konverterer for Microsoft Streaming; C:\Windows\system32\drivers\MSTEE.sys [] S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm60x64.sys [] S3 s217bus;Sony Ericsson Device 217 driver (WDM); C:\Windows\system32\DRIVERS\s217bus.sys [] S3 SASENUM;SASENUM; \??\C:\Program Files (x86)\SUPERAntiSpyware\SASENUM.SYS [2009-03-23 7408] S3 Ser2pl;Prolific Serial port driver; C:\Windows\system32\DRIVERS\ser2pl64.sys [] S3 usbaudio;USB-lyddriver (WDM); C:\Windows\system32\drivers\usbaudio.sys [] S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [] S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [] S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [] S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2008-11-07 132424] R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [] R2 avg8emc;AVG8 E-mail Scanner; C:\PROGRA~2\AVG\AVG8\avgemc.exe [2009-08-02 908056] R2 avg8wd;AVG8 WatchDog; C:\PROGRA~2\AVG\AVG8\avgwdsvc.exe [2009-08-02 297752] R2 Bonjour Service;Bonjour-tjeneste; C:\Program Files (x86)\Bonjour\mDNSResponder.exe [2008-12-12 238888] R2 fsssvc;Windows Live Tryggere for familien; C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2009-02-06 533360] R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe [2008-12-02 877864] R2 NMSAccessU;NMSAccessU; C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe [2008-10-20 71096] R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\SysWOW64\IoctlSvc.exe [2006-12-19 81920] R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2009-06-20 75064] R2 SeaPort;SeaPort; C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512] R3 NMIndexingService;NMIndexingService; C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe [2008-12-12 537896] S3 clr_optimization_v2.0.50727_64;Microsoft .NET Framework NGEN v2.0.50727_X64; C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe [2009-03-30 89920] S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632] S3 iPod Service;iPod-tjeneste; C:\Program Files (x86)\iPod\bin\iPodService.exe [2009-01-06 536872] S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712] S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] S3 PerfHost;@%systemroot%\sysWow64\perfhost.exe,-2; C:\Windows\SysWow64\perfhost.exe [2008-01-21 19968] S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2009-08-13 312568] -----------------EOF----------------- Endret 25. august 2009 av Gjest Lenke til kommentar
geir__hk Skrevet 25. august 2009 Del Skrevet 25. august 2009 hijack-logg: C:\Program Files (x86)\AskBarDis\bar\bin\askBar.dll Dette er visstnok definert som adware fordi det henter reklame som du så gjerne vil se Lenke til kommentar
Anbefalte innlegg
Opprett en konto eller logg inn for å kommentere
Du må være et medlem for å kunne skrive en kommentar
Opprett konto
Det er enkelt å melde seg inn for å starte en ny konto!
Start en kontoLogg inn
Har du allerede en konto? Logg inn her.
Logg inn nå