- Logfile of random's system information tool 1.06 (written by random/random)
- Run by Santa at 2010-02-09 16:39:16
- Microsoft® Windows Vista™ Home Premium Service Pack 1
- System drive C: has 148 GB (65%) free of 228 GB
- Total RAM: 3061 MB (48% free)
- Logfile of Trend Micro HijackThis v2.0.2
- Scan saved at 4:39:53 PM, on 2/9/2010
- Platform: Windows Vista SP1 (WinNT 6.00.1905)
- MSIE: Internet Explorer v8.00 (8.00.6001.18882)
- Boot mode: Normal
- Running processes:
- C:\Windows\system32\taskeng.exe
- C:\Windows\system32\Dwm.exe
- C:\Windows\system32\taskeng.exe
- C:\Windows\Explorer.EXE
- C:\Program Files\Alwil Software\Avast4\ashDisp.exe
- C:\Program Files\Java\jdk1.6.0_11\bin\bin\jusched.exe
- C:\Windows\V0230Mon.exe
- C:\Windows\System32\wpcumi.exe
- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
- C:\Program Files\iTunes\iTunesHelper.exe
- C:\Windows\ehome\ehtray.exe
- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
- C:\Program Files\Windows Media Player\wmpnscfg.exe
- C:\Users\Santa\AppData\Local\Google\Update\GoogleUpdate.exe
- C:\Windows\ehome\ehmsas.exe
- C:\Windows\system32\wuauclt.exe
- C:\Program Files\Mozilla Firefox\firefox.exe
- C:\Windows\system32\SearchFilterHost.exe
- C:\Users\Santa\Desktop\RSIT.exe
- C:\Windows\system32\SearchProtocolHost.exe
- C:\Program Files\trend micro\Santa.exe
- R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
- R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
- R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
- R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
- R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
- R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
- O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
- O2 - BHO: ZoneAlarm Toolbar Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
- O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
- O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
- O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
- O2 - BHO: AIM Toolbar Loader - {b0cda128-b425-4eef-a174-61a11ac5dbf8} - (no file)
- O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll
- O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jdk1.6.0_11\bin\bin\jp2ssv.dll
- O2 - BHO: Google Gears Helper - {E0FEFE40-FBF9-42AE-BA58-794CA7E3FB53} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.33.0\gears.dll
- O3 - Toolbar: AIM Toolbar - {61539ecd-cc67-4437-a03c-9aaccbd14326} - (no file)
- O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
- O3 - Toolbar: ZoneAlarm Toolbar - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
- O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
- O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\Windows\system32\WLTRAY.exe
- O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jdk1.6.0_11\bin\bin\jusched.exe"
- O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
- O4 - HKLM\..\Run: [V0230Mon.exe] C:\Windows\V0230Mon.exe
- O4 - HKLM\..\Run: [WPCUMI] C:\Windows\system32\WpcUmi.exe
- O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
- O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
- O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
- O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
- O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
- O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
- O4 - HKCU\..\Run: [Google Update] "C:\Users\Santa\AppData\Local\Google\Update\GoogleUpdate.exe" /c
- O4 - HKUS\S-1-5-21-1864734467-1502112414-1167469204-1014\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'Guest User')
- O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
- O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
- O9 - Extra button: (no name) - {09C04DA7-5B76-4EBC-BBEE-B25EAC5965F5} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.33.0\gears.dll
- O9 - Extra 'Tools' menuitem: &Gears Settings - {09C04DA7-5B76-4EBC-BBEE-B25EAC5965F5} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.33.0\gears.dll
- O9 - Extra button: AIM Toolbar - {0b83c99c-1efa-4259-858f-bcb33e007a5b} - (no file)
- O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
- O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
- O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
- O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
- O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
- O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
- O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
- O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
- O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
- O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
- O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
- O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
- O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - http://download.eset.com/special/eos/OnlineScanner.cab
- O20 - Winlogon Notify: GoToAssist - C:\Program Files\Citrix\GoToAssist\514\G2AWinLogon.dll
- O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_2ba5baa4\aestsrv.exe
- O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
- O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
- O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
- O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
- O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
- O23 - Service: Kaspersky Anti-Virus (AVP) - ALWIL Software - (no file)
- O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
- O23 - Service: Dock Login Service (DockLoginService) - Stardock Corporation - C:\Program Files\Dell\DellDock\DockLogin.exe
- O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
- O23 - Service: GoToAssist - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files\Citrix\GoToAssist\514\g2aservice.exe
- O23 - Service: Google Update Service (gupdate1c9af2a4ed18150) (gupdate1c9af2a4ed18150) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
- O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
- O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
- O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
- O23 - Service: ZoneAlarm Toolbar IswSvc (IswSvc) - Check Point Software Technologies - C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
- O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
- O23 - Service: SupportSoft Sprocket Service (DellSupportCenter) (sprtsvc_DellSupportCenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe
- O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_2ba5baa4\STacSV.exe
- O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
- O23 - Service: TeamViewer 5 (TeamViewer5) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe
- O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
- O23 - Service: TrueVector Internet Monitor (vsmon) - Unknown owner - C:\Windows\System32\ZoneLabs\vsmon.exe (file missing)
- O23 - Service: Stardock WindowBlinds (WindowBlinds) - Stardock Corporation - C:\Program Files\Stardock\Object Desktop\WindowBlinds\vistasrv.exe
- O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\Windows\System32\WLTRYSVC.EXE
- O23 - Service: z2 Remote2PC Server (z2 R2PC Server) - z2 Software - C:\Program Files\z2 Remote2PC\R2PCServ.exe
- --
- End of file - 9778 bytes
- ======Scheduled tasks folder======
- C:\Windows\tasks\Google Software Updater.job
- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1864734467-1502112414-1167469204-1000Core.job
- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1864734467-1502112414-1167469204-1000UA.job
- ======Registry dump======
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
- Adobe PDF Link Helper - c:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3}]
- ZoneAlarm Toolbar Registrar - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2009-10-14 578928]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
- Windows Live Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
- Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-12-08 263280]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
- Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll [2009-12-08 764912]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b0cda128-b425-4eef-a174-61a11ac5dbf8}]
- AIM Toolbar Loader
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
- CBrowserHelperObject Object - C:\Program Files\Dell\BAE\BAE.dll [2006-11-09 98304]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
- Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jdk1.6.0_11\bin\bin\jp2ssv.dll [2009-10-11 41760]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E0FEFE40-FBF9-42AE-BA58-794CA7E3FB53}]
- Google Gears Helper - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.33.0\gears.dll [2009-10-16 2101248]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
- {61539ecd-cc67-4437-a03c-9aaccbd14326} - []
- {2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-12-08 263280]
- {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - ZoneAlarm Toolbar - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2009-10-14 578928]
- [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
- "avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-02-05 81000]
- "Broadcom Wireless Manager UI"=C:\Windows\system32\WLTRAY.exe [2008-11-17 3810304]
- "SunJavaUpdateSched"=C:\Program Files\Java\jdk1.6.0_11\bin\bin\jusched.exe [2009-10-11 149280]
- "QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-11-10 417792]
- "V0230Mon.exe"=C:\Windows\V0230Mon.exe [2006-09-07 32768]
- "WPCUMI"=C:\Windows\system32\WpcUmi.exe [2006-11-02 176128]
- "AdobeCS4ServiceManager"=C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2008-08-14 611712]
- "Malwarebytes' Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2010-01-07 429392]
- "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2010-01-22 141608]
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
- "ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-20 125952]
- "swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-12-10 39408]
- "WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-20 202240]
- "Google Update"=C:\Users\Santa\AppData\Local\Google\Update\GoogleUpdate.exe [2009-11-01 135664]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
- c:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Aim6]
- C:\Program Files\AIM6\aim6.exe [2009-05-18 49968]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Apoint]
- C:\Program Files\DellTPad\Apoint.exe [2008-06-30 196608]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Broadcom Wireless Manager UI]
- C:\Windows\system32\WLTRAY.exe [2008-11-17 3810304]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
- C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2006-10-16 1197648]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\dellsupportcenter]
- C:\Program Files\Dell Support Center\bin\sprtcmd.exe [2008-10-04 206064]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ehTray.exe]
- C:\Windows\ehome\ehTray.exe [2008-01-20 125952]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
- C:\Windows\system32\hkcmd.exe [2008-03-10 166424]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAAnotif]
- C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2007-10-03 178712]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
- C:\Windows\system32\igfxtray.exe [2008-03-10 141848]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
- C:\Program Files\iTunes\iTunesHelper.exe [2010-01-22 141608]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes' Anti-Malware]
- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2010-01-07 429392]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
- C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2009-07-26 3883856]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCMService]
- C:\Program Files\Dell\MediaDirect\PCMService.exe [2008-01-14 132392]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence]
- C:\Windows\system32\igfxpers.exe [2008-03-10 133656]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SightSpeed]
- C:\Program Files\Dell Video Chat\DellVideoChat.exe [2008-08-15 4812664]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
- C:\Program Files\Java\jdk1.6.0_11\bin\bin\jusched.exe [2009-10-11 149280]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-12-10 39408]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SysTrayApp]
- C:\Program Files\IDT\WDM\sttray.exe [2008-08-29 442460]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\V0230Mon.exe]
- C:\Windows\V0230Mon.exe [2006-09-07 32768]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]
- C:\Program Files\Windows Defender\MSASCui.exe [2008-01-20 1008184]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^QuickSet.lnk]
- C:\PROGRA~1\Dell\QuickSet\quickset.exe [2008-05-02 1211472]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Santa^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dell Dock.lnk]
- C:\PROGRA~1\Dell\DellDock\DellDock.exe [2009-10-19 1316192]
- [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Santa^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.1.lnk]
- C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE []
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\GoToAssist]
- C:\Program Files\Citrix\GoToAssist\514\G2AWinLogon.dll [2008-12-10 10536]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
- C:\Windows\system32\igfxdev.dll [2008-03-10 204800]
- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
- "{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\GoToAssist]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
- "LogonHoursAction"=2
- "DontDisplayLogonHoursWarnings"=1
- [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
- "dontdisplaylastusername"=0
- "legalnoticecaption"=
- "legalnoticetext"=
- "shutdownwithoutlogon"=1
- "undockwithoutlogon"=1
- "EnableUIADesktopToggle"=0
- [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
- "NoDriveTypeAutoRun"=145
- "NoDrives"=0
- [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
- "NoDriveTypeAutoRun"=
- "NoDrives"=
- [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
- "C:\Program Files\xchat\xchat.exe"="C:\Program Files\xchat\xchat.exe:*:Enabled:XChat IRC Client"
- [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
- ======File associations======
- .js - edit - C:\Windows\System32\Notepad.exe %1
- .txt - open -
- ======List of files/folders created in the last 1 months======
- 2010-02-09 16:39:16 ----D---- C:\rsit
- 2010-02-09 16:39:16 ----D---- \rsit
- 2010-02-09 16:20:44 ----A---- C:\RootRepeal report 02-09-10 (16-20-44).txt
- 2010-02-09 16:20:44 ----A---- \RootRepeal report 02-09-10 (16-20-44).txt
- 2010-02-09 15:49:04 ----A---- C:\RootRepeal report 02-09-10 (15-49-04).txt
- 2010-02-09 15:49:04 ----A---- \RootRepeal report 02-09-10 (15-49-04).txt
- 2010-02-09 15:48:23 ----A---- C:\RootRepeal report 02-09-10 (15-48-23).txt
- 2010-02-09 15:48:23 ----A---- \RootRepeal report 02-09-10 (15-48-23).txt
- 2010-02-08 14:41:23 ----D---- C:\Program Files\iPod
- 2010-02-08 14:41:19 ----D---- C:\Program Files\iTunes
- 2010-02-06 22:34:40 ----D---- C:\Avenger
- 2010-02-06 22:34:40 ----D---- \Avenger
- 2010-02-06 22:34:39 ----A---- C:\avenger.txt
- 2010-02-06 22:34:39 ----A---- \avenger.txt
- 2010-02-06 19:34:25 ----A---- C:\Windows\ntbtlog.txt
- 2010-02-03 23:04:15 ----A---- C:\ComboFix.txt
- 2010-02-03 23:04:15 ----A---- \ComboFix.txt
- 2010-02-03 22:55:03 ----SHD---- C:\$RECYCLE.BIN
- 2010-02-03 22:55:03 ----SHD---- \$RECYCLE.BIN
- 2010-02-03 22:28:12 ----A---- C:\Windows\MBR.exe
- 2010-02-03 22:28:11 ----A---- C:\Windows\zip.exe
- 2010-02-03 22:28:11 ----A---- C:\Windows\SWSC.exe
- 2010-02-03 22:28:11 ----A---- C:\Windows\SWREG.exe
- 2010-02-03 22:28:11 ----A---- C:\Windows\sed.exe
- 2010-02-03 22:28:11 ----A---- C:\Windows\PEV.exe
- 2010-02-03 22:28:11 ----A---- C:\Windows\NIRCMD.exe
- 2010-02-03 22:28:11 ----A---- C:\Windows\grep.exe
- 2010-02-03 22:22:13 ----D---- C:\Qoobox
- 2010-02-03 22:22:13 ----D---- \Qoobox
- 2010-02-03 22:21:52 ----A---- C:\Windows\SWXCACLS.exe
- 2010-02-01 19:34:43 ----A---- C:\Windows\wininit.ini
- 2010-02-01 19:15:59 ----D---- C:\Program Files\TrendMicro
- 2010-02-01 19:12:00 ----D---- C:\Program Files\Spybot - Search & Destroy
- 2010-02-01 18:57:56 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
- 2010-01-27 16:58:05 ----D---- C:\Program Files\Common Files\Macrovision Shared
- 2010-01-23 01:09:07 ----D---- C:\Adobe CS4
- 2010-01-23 01:09:07 ----D---- \Adobe CS4
- 2010-01-23 00:12:55 ----D---- C:\Program Files\Common Files\Akamai
- 2010-01-22 22:33:20 ----SHD---- C:\Windows\system32\%APPDATA%
- 2010-01-22 19:31:52 ----A---- C:\Windows\system32\mshtml.dll
- 2010-01-22 19:31:51 ----A---- C:\Windows\system32\ieframe.dll
- 2010-01-22 19:31:49 ----A---- C:\Windows\system32\urlmon.dll
- 2010-01-22 19:31:49 ----A---- C:\Windows\system32\iertutil.dll
- 2010-01-22 19:31:48 ----A---- C:\Windows\system32\wininet.dll
- 2010-01-22 19:31:48 ----A---- C:\Windows\system32\occache.dll
- 2010-01-22 19:31:48 ----A---- C:\Windows\system32\msfeeds.dll
- 2010-01-22 19:31:47 ----A---- C:\Windows\system32\ieui.dll
- 2010-01-22 19:31:47 ----A---- C:\Windows\system32\iedkcs32.dll
- 2010-01-22 19:31:46 ----A---- C:\Windows\system32\msfeedssync.exe
- 2010-01-22 19:31:46 ----A---- C:\Windows\system32\msfeedsbs.dll
- 2010-01-22 19:31:46 ----A---- C:\Windows\system32\jsproxy.dll
- 2010-01-22 19:31:46 ----A---- C:\Windows\system32\ieUnatt.exe
- 2010-01-22 19:31:46 ----A---- C:\Windows\system32\iesysprep.dll
- 2010-01-22 19:31:46 ----A---- C:\Windows\system32\iesetup.dll
- 2010-01-22 19:31:46 ----A---- C:\Windows\system32\iepeers.dll
- 2010-01-22 19:31:46 ----A---- C:\Windows\system32\ie4uinit.exe
- 2010-01-22 19:31:45 ----A---- C:\Windows\system32\iernonce.dll
- 2010-01-12 20:47:26 ----A---- C:\Windows\system32\t2embed.dll
- 2010-01-12 20:47:25 ----A---- C:\Windows\system32\fontsub.dll
- ======List of files/folders modified in the last 1 months======
- 2010-02-09 16:39:53 ----D---- C:\Program Files\Trend Micro
- 2010-02-09 16:39:33 ----D---- C:\Windows\Prefetch
- 2010-02-09 16:39:25 ----D---- C:\Windows\Temp
- 2010-02-09 16:13:24 ----D---- C:\Windows\Tasks
- 2010-02-09 15:49:37 ----D---- C:\Windows\system32\drivers
- 2010-02-09 11:50:16 ----D---- C:\Windows\System32
- 2010-02-09 11:50:16 ----A---- C:\Windows\system32\PerfStringBackup.INI
- 2010-02-09 11:50:15 ----D---- C:\Windows\inf
- 2010-02-09 11:43:53 ----D---- C:\Program Files\z2 Remote2PC
- 2010-02-09 11:42:20 ----D---- C:\Windows\system32\catroot2
- 2010-02-09 00:33:34 ----SHD---- C:\Windows\Installer
- 2010-02-09 00:33:34 ----D---- C:\Config.Msi
- 2010-02-09 00:33:34 ----D---- \Config.Msi
- 2010-02-08 14:41:23 ----D---- C:\Program Files
- 2010-02-08 14:41:23 ----D---- \Program Files
- 2010-02-08 14:41:21 ----D---- C:\Program Files\Common Files\Apple
- 2010-02-07 01:07:37 ----D---- C:\Windows
- 2010-02-07 01:07:37 ----D---- \Windows
- 2010-02-06 20:02:37 ----D---- C:\Program Files\Mozilla Firefox
- 2010-02-03 23:02:10 ----D---- C:\Windows\ERDNT
- 2010-02-03 22:55:07 ----A---- C:\Windows\system.ini
- 2010-02-03 22:37:43 ----D---- C:\Windows\AppPatch
- 2010-02-03 22:37:38 ----D---- C:\Program Files\Common Files
- 2010-02-03 16:02:06 ----D---- C:\Windows\PCHEALTH
- 2010-02-02 16:42:43 ----D---- C:\Windows\Icons
- 2010-02-01 19:34:44 ----D---- C:\Program Files\Free Offers from Freeze.com
- 2010-02-01 19:12:00 ----D---- C:\ProgramData
- 2010-02-01 19:12:00 ----D---- \ProgramData
- 2010-01-29 18:49:39 ----RD---- C:\Users
- 2010-01-29 18:49:39 ----RD---- \Users
- 2010-01-29 03:00:15 ----D---- C:\Windows\winsxs
- 2010-01-29 03:00:15 ----D---- C:\Program Files\Internet Explorer
- 2010-01-27 17:38:52 ----SHD---- C:\System Volume Information
- 2010-01-27 17:38:52 ----SHD---- \System Volume Information
- 2010-01-27 17:07:52 ----D---- C:\Program Files\Adobe
- 2010-01-27 17:06:10 ----D---- C:\Program Files\Common Files\Adobe
- 2010-01-27 17:04:17 ----RSD---- C:\Windows\Fonts
- 2010-01-26 14:17:40 ----D---- C:\Windows\system32\catroot
- 2010-01-25 14:16:13 ----D---- C:\Windows\system32\Tasks
- 2010-01-23 03:15:44 ----D---- C:\Windows\system32\migration
- 2010-01-22 22:31:12 ----D---- C:\Program Files\Microsoft Silverlight
- 2010-01-22 22:11:10 ----D---- C:\Program Files\CCleaner
- 2010-01-22 22:09:10 ----D---- C:\Windows\Debug
- 2010-01-14 11:12:06 ----N---- C:\Windows\system32\MpSigStub.exe
- 2010-01-14 03:02:36 ----D---- C:\Program Files\Windows Mail
- 2010-01-12 20:02:47 ----HD---- C:\Program Files\InstallShield Installation Information
- 2010-01-12 20:02:24 ----D---- C:\Program Files\Creative
- 2010-01-12 19:42:46 ----RSD---- C:\Windows\assembly
- 2010-01-12 19:42:25 ----D---- C:\Program Files\Microsoft Visual Studio 9.0
- 2010-01-12 19:42:25 ----D---- C:\Program Files\Common Files\microsoft shared
- 2010-01-12 19:35:56 ----D---- C:\Program Files\Google
- ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
- R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2009-02-05 23152]
- R1 aswSP;avast! Self Protection; C:\Windows\system32\drivers\aswSP.sys [2009-02-05 114768]
- R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2009-02-05 51376]
- R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\System32\DRIVERS\cmdguard.sys [2009-05-28 130080]
- R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2009-05-28 28704]
- R2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys [2008-08-14 74720]
- R2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys [2009-02-05 20560]
- R2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys [2009-02-05 51792]
- R2 ISWKL;ZoneAlarm Toolbar ISWKL; \??\C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys [2009-10-14 25208]
- R2 LMIRfsDriver;LogMeIn Remote File System Driver; \??\C:\Windows\system32\drivers\LMIRfsDriver.sys [2008-07-24 47640]
- R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2008-03-10 46592]
- R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2008-03-10 43008]
- R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2008-03-10 38400]
- R2 RMCAST;RMCAST (Pgm) Protocol Driver; C:\Windows\system32\DRIVERS\RMCAST.sys [2008-12-10 113664]
- R2 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys [2009-11-22 446664]
- R3 ApfiltrService;Alps Touch Pad Filter Driver for Windows 2000/XP/Vista; C:\Windows\system32\DRIVERS\Apfiltr.sys [2008-06-30 170032]
- R3 BCM43XX;Dell Wireless WLAN Card Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2008-11-17 1331192]
- R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-20 14208]
- R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 26600]
- R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-03-10 2302976]
- R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI Service; C:\Windows\system32\drivers\IntcHdmi.sys [2008-03-10 111616]
- R3 itecir;ITECIR Infrared Receiver; C:\Windows\system32\DRIVERS\itecir.sys [2008-03-14 54784]
- R3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60x.sys [2008-03-10 203264]
- R3 KeyScrambler;KeyScrambler; C:\Windows\System32\drivers\keyscrambler.sys [2009-10-04 115312]
- R3 lmimirr;lmimirr; C:\Windows\system32\DRIVERS\lmimirr.sys [2008-07-24 10144]
- R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2010-01-07 19160]
- R3 OA001Ufd;Creative Camera OA001 Upper Filter Driver; C:\Windows\system32\DRIVERS\OA001Ufd.sys [2008-10-05 144672]
- R3 OA001Vid;Creative Camera OA001 Function Driver; C:\Windows\system32\DRIVERS\OA001Vid.sys [2008-10-05 277440]
- R3 radpms;Driver for RADPMS Device; C:\Windows\system32\DRIVERS\radpms.sys [2008-07-24 12192]
- R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-20 88576]
- R3 STHDA;IDT High Definition Audio CODEC; C:\Windows\system32\DRIVERS\stwrt.sys [2008-08-29 382976]
- R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-20 11264]
- S1 kl1;kl1; C:\Windows\system32\DRIVERS\kl1.sys []
- S1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys []
- S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter; C:\Windows\system32\DRIVERS\klim6.sys []
- S1 SymIM;Symantec Network Security Intermediate Filter Driver; C:\Windows\system32\DRIVERS\SymIMv.sys []
- S2 LMIInfo;LogMeIn Kernel Information Provider; \??\C:\Program Files\LogMeIn\x86\RaInfo.sys []
- S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2008-01-20 179712]
- S3 BCM42RLY;BCM42RLY; C:\Windows\system32\drivers\BCM42RLY.sys [2008-11-17 18424]
- S3 catchme;catchme; \??\C:\Windows\TEMP\catchme.sys []
- S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-20 5632]
- S3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\Windows\system32\DRIVERS\e1e6032.sys [2008-01-20 220672]
- S3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys []
- S3 GarenaPEngine;GarenaPEngine; \??\C:\Users\Santa\AppData\Local\Temp\FKOF70.tmp []
- S3 libusb0;LibUsb-Win32 - Kernel Driver, Version 0.1.12.1; C:\Windows\system32\drivers\libusb0.sys [2007-03-20 28672]
- S3 ManyCam;ManyCam Virtual Webcam, WDM Video Capture Driver; C:\Windows\system32\DRIVERS\ManyCam.sys [2008-01-14 21632]
- S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-20 8192]
- S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-20 5888]
- S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-20 5504]
- S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-20 6016]
- S3 ntkvpn;Loki VPN Driver Service; C:\Windows\system32\DRIVERS\ntkvpn.sys []
- S3 R300;R300; C:\Windows\system32\DRIVERS\atikmdag.sys [2006-11-01 2028032]
- S3 SUPERWEBCAM;SuperWebcam, WDM Virtual Video Capture Device; C:\Windows\system32\DRIVERS\superwebcam.sys [2006-06-27 31872]
- S3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT.SYS []
- S3 tap0901;TAP-Win32 Adapter V9; C:\Windows\system32\DRIVERS\tap0901.sys [2008-11-19 25216]
- S3 taphss;Anchorfree HSS Adapter; C:\Windows\system32\DRIVERS\taphss.sys [2009-09-15 32768]
- S3 tapvpn;TAP VPN Adapter; C:\Windows\system32\DRIVERS\tapvpn.sys [2008-01-23 27136]
- S3 UMPass;Microsoft UMPass Driver; C:\Windows\system32\DRIVERS\umpass.sys [2008-01-20 7680]
- S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys []
- S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2009-08-28 40448]
- S3 usbaudio;USB Audio Driver (WDM); C:\Windows\system32\drivers\usbaudio.sys [2008-01-20 73088]
- S3 V0230Vfx;V0230Vfx; C:\Windows\system32\DRIVERS\V0230Vfx.sys [2006-03-24 6272]
- S3 V0230VID;Live! Cam Video IM Pro; C:\Windows\system32\DRIVERS\V0230VID.sys [2007-08-07 509760]
- S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter; C:\Windows\system32\DRIVERS\VBoxNetAdp.sys [2009-10-07 94992]
- S3 VBoxNetFlt;VBoxNetFlt Service; C:\Windows\system32\DRIVERS\VBoxNetFlt.sys []
- S3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\Windows\system32\DRIVERS\vmnetadapter.sys []
- S3 vsdatant7;vsdatant7; C:\Windows\System32\drivers\vsdatant.win7.sys []
- S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-20 39936]
- S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-20 83328]
- S3 xusb21;Xbox 360 Wireless Receiver Driver Service 21; C:\Windows\system32\DRIVERS\xusb21.sys [2007-08-28 55808]
- S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-20 6656]
- S4 LMIRfsClientNP;LMIRfsClientNP; C:\Windows\system32\drivers\LMIRfsClientNP.sys []
- S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-20 386616]
- S4 RsFx0102;RsFx0102 Driver; C:\Windows\system32\DRIVERS\RsFx0102.sys [2008-07-10 242712]
- ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
- R2 AESTFilters;Andrea ST Filters Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_2ba5baa4\aestsrv.exe [2008-08-29 73728]
- R2 Akamai;Akamai NetSession Interface; C:\Windows\System32\svchost.exe [2008-01-20 21504]
- R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-08-28 144672]
- R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-02-05 18752]
- R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-02-05 138680]
- R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
- R2 DockLoginService;Dock Login Service; C:\Program Files\Dell\DellDock\DockLogin.exe [2009-06-09 155648]
- R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2007-10-03 358936]
- R2 IswSvc;ZoneAlarm Toolbar IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [2009-10-14 476528]
- R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2010-01-07 236368]
- R2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [2008-07-10 40999448]
- R2 sprtsvc_DellSupportCenter;SupportSoft Sprocket Service (DellSupportCenter); C:\Program Files\Dell Support Center\bin\sprtsvc.exe [2008-10-04 201968]
- R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-07-10 98840]
- R2 STacSV;Audio Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_2ba5baa4\STacSV.exe [2008-08-29 225362]
- R2 TeamViewer5;TeamViewer 5; C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe [2009-12-17 185640]
- R2 Viewpoint Manager Service;Viewpoint Manager Service; C:\Program Files\Viewpoint\Common\ViewpointService.exe [2007-01-04 24652]
- R2 WindowBlinds;Stardock WindowBlinds; C:\Program Files\Stardock\Object Desktop\WindowBlinds\vistasrv.exe [2008-08-29 230648]
- R2 wltrysvc;Dell Wireless WLAN Tray Service; C:\Windows\System32\WLTRYSVC.EXE [2008-11-17 26112]
- R2 z2 R2PC Server;z2 Remote2PC Server; C:\Program Files\z2 Remote2PC\R2PCServ.exe [2007-08-26 512000]
- R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-02-05 254040]
- R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-02-05 352920]
- R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2010-01-22 545576]
- S2 gupdate1c9af2a4ed18150;Google Update Service (gupdate1c9af2a4ed18150); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-03-27 133104]
- S2 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-07-21 190448]
- S2 vsmon;TrueVector Internet Monitor; C:\Windows\System32\ZoneLabs\vsmon.exe -service []
- S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-01-27 655624]
- S3 GoToAssist;GoToAssist; C:\Program Files\Citrix\GoToAssist\514\g2aservice.exe [2008-12-10 16680]
- S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
- S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
- S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2008-03-24 74384]
- S3 WLSetupSvc;Windows Live Setup Service; C:\Program Files\Windows Live\installer\WLSetupSvc.exe [2007-10-25 266240]
- S4 MSSQLServerADHelper100;SQL Active Directory Helper Service; c:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [2008-07-10 47128]
- S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2008-07-10 369688]
- S4 SQLBrowser;SQL Server Browser; c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2008-07-10 258072]
- -----------------EOF-----------------
