Share Pastebin
Guest
Public paste!

IOF

By: a guest | Feb 9th, 2010 | Syntax: None | Size: 37.13 KB | Hits: 53 | Expires: Never
Copy text to clipboard
  1. Logfile of random's system information tool 1.06 (written by random/random)
  2. Run by Santa at 2010-02-09 16:39:16
  3. Microsoft® Windows Vista™ Home Premium  Service Pack 1
  4. System drive C: has 148 GB (65%) free of 228 GB
  5. Total RAM: 3061 MB (48% free)
  6.  
  7. Logfile of Trend Micro HijackThis v2.0.2
  8. Scan saved at 4:39:53 PM, on 2/9/2010
  9. Platform: Windows Vista SP1 (WinNT 6.00.1905)
  10. MSIE: Internet Explorer v8.00 (8.00.6001.18882)
  11. Boot mode: Normal
  12.  
  13. Running processes:
  14. C:\Windows\system32\taskeng.exe
  15. C:\Windows\system32\Dwm.exe
  16. C:\Windows\system32\taskeng.exe
  17. C:\Windows\Explorer.EXE
  18. C:\Program Files\Alwil Software\Avast4\ashDisp.exe
  19. C:\Program Files\Java\jdk1.6.0_11\bin\bin\jusched.exe
  20. C:\Windows\V0230Mon.exe
  21. C:\Windows\System32\wpcumi.exe
  22. C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
  23. C:\Program Files\iTunes\iTunesHelper.exe
  24. C:\Windows\ehome\ehtray.exe
  25. C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
  26. C:\Program Files\Windows Media Player\wmpnscfg.exe
  27. C:\Users\Santa\AppData\Local\Google\Update\GoogleUpdate.exe
  28. C:\Windows\ehome\ehmsas.exe
  29. C:\Windows\system32\wuauclt.exe
  30. C:\Program Files\Mozilla Firefox\firefox.exe
  31. C:\Windows\system32\SearchFilterHost.exe
  32. C:\Users\Santa\Desktop\RSIT.exe
  33. C:\Windows\system32\SearchProtocolHost.exe
  34. C:\Program Files\trend micro\Santa.exe
  35.  
  36. R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
  37. R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
  38. R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
  39. R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
  40. R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
  41. R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
  42. O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
  43. O2 - BHO: ZoneAlarm Toolbar Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
  44. O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
  45. O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
  46. O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
  47. O2 - BHO: AIM Toolbar Loader - {b0cda128-b425-4eef-a174-61a11ac5dbf8} - (no file)
  48. O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll
  49. O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jdk1.6.0_11\bin\bin\jp2ssv.dll
  50. O2 - BHO: Google Gears Helper - {E0FEFE40-FBF9-42AE-BA58-794CA7E3FB53} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.33.0\gears.dll
  51. O3 - Toolbar: AIM Toolbar - {61539ecd-cc67-4437-a03c-9aaccbd14326} - (no file)
  52. O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
  53. O3 - Toolbar: ZoneAlarm Toolbar - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
  54. O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
  55. O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\Windows\system32\WLTRAY.exe
  56. O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jdk1.6.0_11\bin\bin\jusched.exe"
  57. O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
  58. O4 - HKLM\..\Run: [V0230Mon.exe] C:\Windows\V0230Mon.exe
  59. O4 - HKLM\..\Run: [WPCUMI] C:\Windows\system32\WpcUmi.exe
  60. O4 - HKLM\..\Run: [AdobeCS4ServiceManager] "C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe" -launchedbylogin
  61. O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
  62. O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
  63. O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
  64. O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
  65. O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
  66. O4 - HKCU\..\Run: [Google Update] "C:\Users\Santa\AppData\Local\Google\Update\GoogleUpdate.exe" /c
  67. O4 - HKUS\S-1-5-21-1864734467-1502112414-1167469204-1014\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'Guest User')
  68. O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
  69. O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
  70. O9 - Extra button: (no name) - {09C04DA7-5B76-4EBC-BBEE-B25EAC5965F5} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.33.0\gears.dll
  71. O9 - Extra 'Tools' menuitem: &Gears Settings - {09C04DA7-5B76-4EBC-BBEE-B25EAC5965F5} - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.33.0\gears.dll
  72. O9 - Extra button: AIM Toolbar - {0b83c99c-1efa-4259-858f-bcb33e007a5b} - (no file)
  73. O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
  74. O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
  75. O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
  76. O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
  77. O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
  78. O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
  79. O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
  80. O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
  81. O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
  82. O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
  83. O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
  84. O10 - Unknown file in Winsock LSP: c:\windows\system32\wpclsp.dll
  85. O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - http://download.eset.com/special/eos/OnlineScanner.cab
  86. O20 - Winlogon Notify: GoToAssist - C:\Program Files\Citrix\GoToAssist\514\G2AWinLogon.dll
  87. O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_2ba5baa4\aestsrv.exe
  88. O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
  89. O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
  90. O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
  91. O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
  92. O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
  93. O23 - Service: Kaspersky Anti-Virus (AVP) - ALWIL Software - (no file)
  94. O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
  95. O23 - Service: Dock Login Service (DockLoginService) - Stardock Corporation - C:\Program Files\Dell\DellDock\DockLogin.exe
  96. O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
  97. O23 - Service: GoToAssist - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files\Citrix\GoToAssist\514\g2aservice.exe
  98. O23 - Service: Google Update Service (gupdate1c9af2a4ed18150) (gupdate1c9af2a4ed18150) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
  99. O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
  100. O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
  101. O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
  102. O23 - Service: ZoneAlarm Toolbar IswSvc (IswSvc) - Check Point Software Technologies - C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
  103. O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
  104. O23 - Service: SupportSoft Sprocket Service (DellSupportCenter) (sprtsvc_DellSupportCenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe
  105. O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_2ba5baa4\STacSV.exe
  106. O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
  107. O23 - Service: TeamViewer 5 (TeamViewer5) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe
  108. O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
  109. O23 - Service: TrueVector Internet Monitor (vsmon) - Unknown owner - C:\Windows\System32\ZoneLabs\vsmon.exe (file missing)
  110. O23 - Service: Stardock WindowBlinds (WindowBlinds) - Stardock Corporation - C:\Program Files\Stardock\Object Desktop\WindowBlinds\vistasrv.exe
  111. O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\Windows\System32\WLTRYSVC.EXE
  112. O23 - Service: z2 Remote2PC Server (z2 R2PC Server) - z2 Software - C:\Program Files\z2 Remote2PC\R2PCServ.exe
  113.  
  114. --
  115. End of file - 9778 bytes
  116.  
  117. ======Scheduled tasks folder======
  118.  
  119. C:\Windows\tasks\Google Software Updater.job
  120. C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
  121. C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
  122. C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1864734467-1502112414-1167469204-1000Core.job
  123. C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1864734467-1502112414-1167469204-1000UA.job
  124.  
  125. ======Registry dump======
  126.  
  127. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
  128. Adobe PDF Link Helper - c:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
  129.  
  130. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3}]
  131. ZoneAlarm Toolbar Registrar - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2009-10-14 578928]
  132.  
  133. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
  134. Windows Live Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]
  135.  
  136. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
  137. Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-12-08 263280]
  138.  
  139. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
  140. Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll [2009-12-08 764912]
  141.  
  142. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b0cda128-b425-4eef-a174-61a11ac5dbf8}]
  143. AIM Toolbar Loader
  144.  
  145. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
  146. CBrowserHelperObject Object - C:\Program Files\Dell\BAE\BAE.dll [2006-11-09 98304]
  147.  
  148. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
  149. Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jdk1.6.0_11\bin\bin\jp2ssv.dll [2009-10-11 41760]
  150.  
  151. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E0FEFE40-FBF9-42AE-BA58-794CA7E3FB53}]
  152. Google Gears Helper - C:\Program Files\Google\Google Gears\Internet Explorer\0.5.33.0\gears.dll [2009-10-16 2101248]
  153.  
  154. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
  155. {61539ecd-cc67-4437-a03c-9aaccbd14326} -  []
  156. {2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-12-08 263280]
  157. {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - ZoneAlarm Toolbar - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll [2009-10-14 578928]
  158.  
  159. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
  160. "avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-02-05 81000]
  161. "Broadcom Wireless Manager UI"=C:\Windows\system32\WLTRAY.exe [2008-11-17 3810304]
  162. "SunJavaUpdateSched"=C:\Program Files\Java\jdk1.6.0_11\bin\bin\jusched.exe [2009-10-11 149280]
  163. "QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-11-10 417792]
  164. "V0230Mon.exe"=C:\Windows\V0230Mon.exe [2006-09-07 32768]
  165. "WPCUMI"=C:\Windows\system32\WpcUmi.exe [2006-11-02 176128]
  166. "AdobeCS4ServiceManager"=C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [2008-08-14 611712]
  167. "Malwarebytes' Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2010-01-07 429392]
  168. "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2010-01-22 141608]
  169.  
  170. [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  171. "ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-20 125952]
  172. "swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-12-10 39408]
  173. "WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-20 202240]
  174. "Google Update"=C:\Users\Santa\AppData\Local\Google\Update\GoogleUpdate.exe [2009-11-01 135664]
  175.  
  176. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
  177. c:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
  178.  
  179. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Aim6]
  180. C:\Program Files\AIM6\aim6.exe [2009-05-18 49968]
  181.  
  182. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Apoint]
  183. C:\Program Files\DellTPad\Apoint.exe [2008-06-30 196608]
  184.  
  185. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Broadcom Wireless Manager UI]
  186. C:\Windows\system32\WLTRAY.exe [2008-11-17 3810304]
  187.  
  188. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonMyPrinter]
  189. C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2006-10-16 1197648]
  190.  
  191. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\dellsupportcenter]
  192. C:\Program Files\Dell Support Center\bin\sprtcmd.exe [2008-10-04 206064]
  193.  
  194. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ehTray.exe]
  195. C:\Windows\ehome\ehTray.exe [2008-01-20 125952]
  196.  
  197. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
  198. C:\Windows\system32\hkcmd.exe [2008-03-10 166424]
  199.  
  200. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAAnotif]
  201. C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2007-10-03 178712]
  202.  
  203. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
  204. C:\Windows\system32\igfxtray.exe [2008-03-10 141848]
  205.  
  206. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
  207. C:\Program Files\iTunes\iTunesHelper.exe [2010-01-22 141608]
  208.  
  209. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes' Anti-Malware]
  210. C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2010-01-07 429392]
  211.  
  212. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
  213. C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2009-07-26 3883856]
  214.  
  215. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCMService]
  216. C:\Program Files\Dell\MediaDirect\PCMService.exe [2008-01-14 132392]
  217.  
  218. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence]
  219. C:\Windows\system32\igfxpers.exe [2008-03-10 133656]
  220.  
  221. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SightSpeed]
  222. C:\Program Files\Dell Video Chat\DellVideoChat.exe [2008-08-15 4812664]
  223.  
  224. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
  225. C:\Program Files\Java\jdk1.6.0_11\bin\bin\jusched.exe [2009-10-11 149280]
  226.  
  227. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
  228. C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-12-10 39408]
  229.  
  230. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SysTrayApp]
  231. C:\Program Files\IDT\WDM\sttray.exe [2008-08-29 442460]
  232.  
  233. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\V0230Mon.exe]
  234. C:\Windows\V0230Mon.exe [2006-09-07 32768]
  235.  
  236. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]
  237. C:\Program Files\Windows Defender\MSASCui.exe [2008-01-20 1008184]
  238.  
  239. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^QuickSet.lnk]
  240. C:\PROGRA~1\Dell\QuickSet\quickset.exe [2008-05-02 1211472]
  241.  
  242. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Santa^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dell Dock.lnk]
  243. C:\PROGRA~1\Dell\DellDock\DellDock.exe [2009-10-19 1316192]
  244.  
  245. [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Santa^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.1.lnk]
  246. C:\PROGRA~1\OPENOF~1.ORG\program\QUICKS~1.EXE  []
  247.  
  248. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\GoToAssist]
  249. C:\Program Files\Citrix\GoToAssist\514\G2AWinLogon.dll [2008-12-10 10536]
  250.  
  251. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
  252. C:\Windows\system32\igfxdev.dll [2008-03-10 204800]
  253.  
  254. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
  255. "{AEB6717E-7E19-11d0-97EE-00C04FD91972}"= []
  256.  
  257. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
  258.  
  259. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\GoToAssist]
  260.  
  261. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vsmon]
  262.  
  263. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
  264.  
  265. [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
  266. "LogonHoursAction"=2
  267. "DontDisplayLogonHoursWarnings"=1
  268.  
  269. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
  270. "dontdisplaylastusername"=0
  271. "legalnoticecaption"=
  272. "legalnoticetext"=
  273. "shutdownwithoutlogon"=1
  274. "undockwithoutlogon"=1
  275. "EnableUIADesktopToggle"=0
  276.  
  277. [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
  278. "NoDriveTypeAutoRun"=145
  279. "NoDrives"=0
  280.  
  281. [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
  282. "NoDriveTypeAutoRun"=
  283. "NoDrives"=
  284.  
  285. [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
  286. "C:\Program Files\xchat\xchat.exe"="C:\Program Files\xchat\xchat.exe:*:Enabled:XChat IRC Client"
  287.  
  288. [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
  289.  
  290. ======File associations======
  291.  
  292. .js - edit - C:\Windows\System32\Notepad.exe %1
  293. .txt - open -
  294.  
  295. ======List of files/folders created in the last 1 months======
  296.  
  297. 2010-02-09 16:39:16 ----D---- C:\rsit
  298. 2010-02-09 16:39:16 ----D---- \rsit
  299. 2010-02-09 16:20:44 ----A---- C:\RootRepeal report 02-09-10 (16-20-44).txt
  300. 2010-02-09 16:20:44 ----A---- \RootRepeal report 02-09-10 (16-20-44).txt
  301. 2010-02-09 15:49:04 ----A---- C:\RootRepeal report 02-09-10 (15-49-04).txt
  302. 2010-02-09 15:49:04 ----A---- \RootRepeal report 02-09-10 (15-49-04).txt
  303. 2010-02-09 15:48:23 ----A---- C:\RootRepeal report 02-09-10 (15-48-23).txt
  304. 2010-02-09 15:48:23 ----A---- \RootRepeal report 02-09-10 (15-48-23).txt
  305. 2010-02-08 14:41:23 ----D---- C:\Program Files\iPod
  306. 2010-02-08 14:41:19 ----D---- C:\Program Files\iTunes
  307. 2010-02-06 22:34:40 ----D---- C:\Avenger
  308. 2010-02-06 22:34:40 ----D---- \Avenger
  309. 2010-02-06 22:34:39 ----A---- C:\avenger.txt
  310. 2010-02-06 22:34:39 ----A---- \avenger.txt
  311. 2010-02-06 19:34:25 ----A---- C:\Windows\ntbtlog.txt
  312. 2010-02-03 23:04:15 ----A---- C:\ComboFix.txt
  313. 2010-02-03 23:04:15 ----A---- \ComboFix.txt
  314. 2010-02-03 22:55:03 ----SHD---- C:\$RECYCLE.BIN
  315. 2010-02-03 22:55:03 ----SHD---- \$RECYCLE.BIN
  316. 2010-02-03 22:28:12 ----A---- C:\Windows\MBR.exe
  317. 2010-02-03 22:28:11 ----A---- C:\Windows\zip.exe
  318. 2010-02-03 22:28:11 ----A---- C:\Windows\SWSC.exe
  319. 2010-02-03 22:28:11 ----A---- C:\Windows\SWREG.exe
  320. 2010-02-03 22:28:11 ----A---- C:\Windows\sed.exe
  321. 2010-02-03 22:28:11 ----A---- C:\Windows\PEV.exe
  322. 2010-02-03 22:28:11 ----A---- C:\Windows\NIRCMD.exe
  323. 2010-02-03 22:28:11 ----A---- C:\Windows\grep.exe
  324. 2010-02-03 22:22:13 ----D---- C:\Qoobox
  325. 2010-02-03 22:22:13 ----D---- \Qoobox
  326. 2010-02-03 22:21:52 ----A---- C:\Windows\SWXCACLS.exe
  327. 2010-02-01 19:34:43 ----A---- C:\Windows\wininit.ini
  328. 2010-02-01 19:15:59 ----D---- C:\Program Files\TrendMicro
  329. 2010-02-01 19:12:00 ----D---- C:\Program Files\Spybot - Search & Destroy
  330. 2010-02-01 18:57:56 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
  331. 2010-01-27 16:58:05 ----D---- C:\Program Files\Common Files\Macrovision Shared
  332. 2010-01-23 01:09:07 ----D---- C:\Adobe CS4
  333. 2010-01-23 01:09:07 ----D---- \Adobe CS4
  334. 2010-01-23 00:12:55 ----D---- C:\Program Files\Common Files\Akamai
  335. 2010-01-22 22:33:20 ----SHD---- C:\Windows\system32\%APPDATA%
  336. 2010-01-22 19:31:52 ----A---- C:\Windows\system32\mshtml.dll
  337. 2010-01-22 19:31:51 ----A---- C:\Windows\system32\ieframe.dll
  338. 2010-01-22 19:31:49 ----A---- C:\Windows\system32\urlmon.dll
  339. 2010-01-22 19:31:49 ----A---- C:\Windows\system32\iertutil.dll
  340. 2010-01-22 19:31:48 ----A---- C:\Windows\system32\wininet.dll
  341. 2010-01-22 19:31:48 ----A---- C:\Windows\system32\occache.dll
  342. 2010-01-22 19:31:48 ----A---- C:\Windows\system32\msfeeds.dll
  343. 2010-01-22 19:31:47 ----A---- C:\Windows\system32\ieui.dll
  344. 2010-01-22 19:31:47 ----A---- C:\Windows\system32\iedkcs32.dll
  345. 2010-01-22 19:31:46 ----A---- C:\Windows\system32\msfeedssync.exe
  346. 2010-01-22 19:31:46 ----A---- C:\Windows\system32\msfeedsbs.dll
  347. 2010-01-22 19:31:46 ----A---- C:\Windows\system32\jsproxy.dll
  348. 2010-01-22 19:31:46 ----A---- C:\Windows\system32\ieUnatt.exe
  349. 2010-01-22 19:31:46 ----A---- C:\Windows\system32\iesysprep.dll
  350. 2010-01-22 19:31:46 ----A---- C:\Windows\system32\iesetup.dll
  351. 2010-01-22 19:31:46 ----A---- C:\Windows\system32\iepeers.dll
  352. 2010-01-22 19:31:46 ----A---- C:\Windows\system32\ie4uinit.exe
  353. 2010-01-22 19:31:45 ----A---- C:\Windows\system32\iernonce.dll
  354. 2010-01-12 20:47:26 ----A---- C:\Windows\system32\t2embed.dll
  355. 2010-01-12 20:47:25 ----A---- C:\Windows\system32\fontsub.dll
  356.  
  357. ======List of files/folders modified in the last 1 months======
  358.  
  359. 2010-02-09 16:39:53 ----D---- C:\Program Files\Trend Micro
  360. 2010-02-09 16:39:33 ----D---- C:\Windows\Prefetch
  361. 2010-02-09 16:39:25 ----D---- C:\Windows\Temp
  362. 2010-02-09 16:13:24 ----D---- C:\Windows\Tasks
  363. 2010-02-09 15:49:37 ----D---- C:\Windows\system32\drivers
  364. 2010-02-09 11:50:16 ----D---- C:\Windows\System32
  365. 2010-02-09 11:50:16 ----A---- C:\Windows\system32\PerfStringBackup.INI
  366. 2010-02-09 11:50:15 ----D---- C:\Windows\inf
  367. 2010-02-09 11:43:53 ----D---- C:\Program Files\z2 Remote2PC
  368. 2010-02-09 11:42:20 ----D---- C:\Windows\system32\catroot2
  369. 2010-02-09 00:33:34 ----SHD---- C:\Windows\Installer
  370. 2010-02-09 00:33:34 ----D---- C:\Config.Msi
  371. 2010-02-09 00:33:34 ----D---- \Config.Msi
  372. 2010-02-08 14:41:23 ----D---- C:\Program Files
  373. 2010-02-08 14:41:23 ----D---- \Program Files
  374. 2010-02-08 14:41:21 ----D---- C:\Program Files\Common Files\Apple
  375. 2010-02-07 01:07:37 ----D---- C:\Windows
  376. 2010-02-07 01:07:37 ----D---- \Windows
  377. 2010-02-06 20:02:37 ----D---- C:\Program Files\Mozilla Firefox
  378. 2010-02-03 23:02:10 ----D---- C:\Windows\ERDNT
  379. 2010-02-03 22:55:07 ----A---- C:\Windows\system.ini
  380. 2010-02-03 22:37:43 ----D---- C:\Windows\AppPatch
  381. 2010-02-03 22:37:38 ----D---- C:\Program Files\Common Files
  382. 2010-02-03 16:02:06 ----D---- C:\Windows\PCHEALTH
  383. 2010-02-02 16:42:43 ----D---- C:\Windows\Icons
  384. 2010-02-01 19:34:44 ----D---- C:\Program Files\Free Offers from Freeze.com
  385. 2010-02-01 19:12:00 ----D---- C:\ProgramData
  386. 2010-02-01 19:12:00 ----D---- \ProgramData
  387. 2010-01-29 18:49:39 ----RD---- C:\Users
  388. 2010-01-29 18:49:39 ----RD---- \Users
  389. 2010-01-29 03:00:15 ----D---- C:\Windows\winsxs
  390. 2010-01-29 03:00:15 ----D---- C:\Program Files\Internet Explorer
  391. 2010-01-27 17:38:52 ----SHD---- C:\System Volume Information
  392. 2010-01-27 17:38:52 ----SHD---- \System Volume Information
  393. 2010-01-27 17:07:52 ----D---- C:\Program Files\Adobe
  394. 2010-01-27 17:06:10 ----D---- C:\Program Files\Common Files\Adobe
  395. 2010-01-27 17:04:17 ----RSD---- C:\Windows\Fonts
  396. 2010-01-26 14:17:40 ----D---- C:\Windows\system32\catroot
  397. 2010-01-25 14:16:13 ----D---- C:\Windows\system32\Tasks
  398. 2010-01-23 03:15:44 ----D---- C:\Windows\system32\migration
  399. 2010-01-22 22:31:12 ----D---- C:\Program Files\Microsoft Silverlight
  400. 2010-01-22 22:11:10 ----D---- C:\Program Files\CCleaner
  401. 2010-01-22 22:09:10 ----D---- C:\Windows\Debug
  402. 2010-01-14 11:12:06 ----N---- C:\Windows\system32\MpSigStub.exe
  403. 2010-01-14 03:02:36 ----D---- C:\Program Files\Windows Mail
  404. 2010-01-12 20:02:47 ----HD---- C:\Program Files\InstallShield Installation Information
  405. 2010-01-12 20:02:24 ----D---- C:\Program Files\Creative
  406. 2010-01-12 19:42:46 ----RSD---- C:\Windows\assembly
  407. 2010-01-12 19:42:25 ----D---- C:\Program Files\Microsoft Visual Studio 9.0
  408. 2010-01-12 19:42:25 ----D---- C:\Program Files\Common Files\microsoft shared
  409. 2010-01-12 19:35:56 ----D---- C:\Program Files\Google
  410.  
  411. ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
  412.  
  413. R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2009-02-05 23152]
  414. R1 aswSP;avast! Self Protection; C:\Windows\system32\drivers\aswSP.sys [2009-02-05 114768]
  415. R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2009-02-05 51376]
  416. R1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\System32\DRIVERS\cmdguard.sys [2009-05-28 130080]
  417. R1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2009-05-28 28704]
  418. R2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys [2008-08-14 74720]
  419. R2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys [2009-02-05 20560]
  420. R2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys [2009-02-05 51792]
  421. R2 ISWKL;ZoneAlarm Toolbar ISWKL; \??\C:\Program Files\CheckPoint\ZAForceField\ISWKL.sys [2009-10-14 25208]
  422. R2 LMIRfsDriver;LogMeIn Remote File System Driver; \??\C:\Windows\system32\drivers\LMIRfsDriver.sys [2008-07-24 47640]
  423. R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2008-03-10 46592]
  424. R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2008-03-10 43008]
  425. R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2008-03-10 38400]
  426. R2 RMCAST;RMCAST (Pgm) Protocol Driver; C:\Windows\system32\DRIVERS\RMCAST.sys [2008-12-10 113664]
  427. R2 Vsdatant;Zone Alarm Firewall Driver; C:\Windows\system32\DRIVERS\vsdatant.sys [2009-11-22 446664]
  428. R3 ApfiltrService;Alps Touch Pad Filter Driver for Windows 2000/XP/Vista; C:\Windows\system32\DRIVERS\Apfiltr.sys [2008-06-30 170032]
  429. R3 BCM43XX;Dell Wireless WLAN Card Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2008-11-17 1331192]
  430. R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-20 14208]
  431. R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 26600]
  432. R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-03-10 2302976]
  433. R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI Service; C:\Windows\system32\drivers\IntcHdmi.sys [2008-03-10 111616]
  434. R3 itecir;ITECIR Infrared Receiver; C:\Windows\system32\DRIVERS\itecir.sys [2008-03-14 54784]
  435. R3 k57nd60x;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60x.sys [2008-03-10 203264]
  436. R3 KeyScrambler;KeyScrambler; C:\Windows\System32\drivers\keyscrambler.sys [2009-10-04 115312]
  437. R3 lmimirr;lmimirr; C:\Windows\system32\DRIVERS\lmimirr.sys [2008-07-24 10144]
  438. R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2010-01-07 19160]
  439. R3 OA001Ufd;Creative Camera OA001 Upper Filter Driver; C:\Windows\system32\DRIVERS\OA001Ufd.sys [2008-10-05 144672]
  440. R3 OA001Vid;Creative Camera OA001 Function Driver; C:\Windows\system32\DRIVERS\OA001Vid.sys [2008-10-05 277440]
  441. R3 radpms;Driver for RADPMS Device; C:\Windows\system32\DRIVERS\radpms.sys [2008-07-24 12192]
  442. R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2008-01-20 88576]
  443. R3 STHDA;IDT High Definition Audio CODEC; C:\Windows\system32\DRIVERS\stwrt.sys [2008-08-29 382976]
  444. R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-20 11264]
  445. S1 kl1;kl1; C:\Windows\system32\DRIVERS\kl1.sys []
  446. S1 KLIF;Kaspersky Lab Driver; C:\Windows\system32\DRIVERS\klif.sys []
  447. S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter; C:\Windows\system32\DRIVERS\klim6.sys []
  448. S1 SymIM;Symantec Network Security Intermediate Filter Driver; C:\Windows\system32\DRIVERS\SymIMv.sys []
  449. S2 LMIInfo;LogMeIn Kernel Information Provider; \??\C:\Program Files\LogMeIn\x86\RaInfo.sys []
  450. S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2008-01-20 179712]
  451. S3 BCM42RLY;BCM42RLY; C:\Windows\system32\drivers\BCM42RLY.sys [2008-11-17 18424]
  452. S3 catchme;catchme; \??\C:\Windows\TEMP\catchme.sys []
  453. S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-20 5632]
  454. S3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\Windows\system32\DRIVERS\e1e6032.sys [2008-01-20 220672]
  455. S3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys []
  456. S3 GarenaPEngine;GarenaPEngine; \??\C:\Users\Santa\AppData\Local\Temp\FKOF70.tmp []
  457. S3 libusb0;LibUsb-Win32 - Kernel Driver, Version 0.1.12.1; C:\Windows\system32\drivers\libusb0.sys [2007-03-20 28672]
  458. S3 ManyCam;ManyCam Virtual Webcam, WDM Video Capture Driver; C:\Windows\system32\DRIVERS\ManyCam.sys [2008-01-14 21632]
  459. S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-20 8192]
  460. S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-20 5888]
  461. S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-20 5504]
  462. S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-20 6016]
  463. S3 ntkvpn;Loki VPN Driver Service; C:\Windows\system32\DRIVERS\ntkvpn.sys []
  464. S3 R300;R300; C:\Windows\system32\DRIVERS\atikmdag.sys [2006-11-01 2028032]
  465. S3 SUPERWEBCAM;SuperWebcam, WDM Virtual Video Capture Device; C:\Windows\system32\DRIVERS\superwebcam.sys [2006-06-27 31872]
  466. S3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT.SYS []
  467. S3 tap0901;TAP-Win32 Adapter V9; C:\Windows\system32\DRIVERS\tap0901.sys [2008-11-19 25216]
  468. S3 taphss;Anchorfree HSS Adapter; C:\Windows\system32\DRIVERS\taphss.sys [2009-09-15 32768]
  469. S3 tapvpn;TAP VPN Adapter; C:\Windows\system32\DRIVERS\tapvpn.sys [2008-01-23 27136]
  470. S3 UMPass;Microsoft UMPass Driver; C:\Windows\system32\DRIVERS\umpass.sys [2008-01-20 7680]
  471. S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys []
  472. S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2009-08-28 40448]
  473. S3 usbaudio;USB Audio Driver (WDM); C:\Windows\system32\drivers\usbaudio.sys [2008-01-20 73088]
  474. S3 V0230Vfx;V0230Vfx; C:\Windows\system32\DRIVERS\V0230Vfx.sys [2006-03-24 6272]
  475. S3 V0230VID;Live! Cam Video IM Pro; C:\Windows\system32\DRIVERS\V0230VID.sys [2007-08-07 509760]
  476. S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter; C:\Windows\system32\DRIVERS\VBoxNetAdp.sys [2009-10-07 94992]
  477. S3 VBoxNetFlt;VBoxNetFlt Service; C:\Windows\system32\DRIVERS\VBoxNetFlt.sys []
  478. S3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\Windows\system32\DRIVERS\vmnetadapter.sys []
  479. S3 vsdatant7;vsdatant7; C:\Windows\System32\drivers\vsdatant.win7.sys []
  480. S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-20 39936]
  481. S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-20 83328]
  482. S3 xusb21;Xbox 360 Wireless Receiver Driver Service 21; C:\Windows\system32\DRIVERS\xusb21.sys [2007-08-28 55808]
  483. S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-20 6656]
  484. S4 LMIRfsClientNP;LMIRfsClientNP; C:\Windows\system32\drivers\LMIRfsClientNP.sys []
  485. S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-20 386616]
  486. S4 RsFx0102;RsFx0102 Driver; C:\Windows\system32\DRIVERS\RsFx0102.sys [2008-07-10 242712]
  487.  
  488. ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
  489.  
  490. R2 AESTFilters;Andrea ST Filters Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_2ba5baa4\aestsrv.exe [2008-08-29 73728]
  491. R2 Akamai;Akamai NetSession Interface; C:\Windows\System32\svchost.exe [2008-01-20 21504]
  492. R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-08-28 144672]
  493. R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe [2009-02-05 18752]
  494. R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast4\ashServ.exe [2009-02-05 138680]
  495. R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
  496. R2 DockLoginService;Dock Login Service; C:\Program Files\Dell\DellDock\DockLogin.exe [2009-06-09 155648]
  497. R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2007-10-03 358936]
  498. R2 IswSvc;ZoneAlarm Toolbar IswSvc; C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe [2009-10-14 476528]
  499. R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2010-01-07 236368]
  500. R2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [2008-07-10 40999448]
  501. R2 sprtsvc_DellSupportCenter;SupportSoft Sprocket Service (DellSupportCenter); C:\Program Files\Dell Support Center\bin\sprtsvc.exe [2008-10-04 201968]
  502. R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-07-10 98840]
  503. R2 STacSV;Audio Service; C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_2ba5baa4\STacSV.exe [2008-08-29 225362]
  504. R2 TeamViewer5;TeamViewer 5; C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe [2009-12-17 185640]
  505. R2 Viewpoint Manager Service;Viewpoint Manager Service; C:\Program Files\Viewpoint\Common\ViewpointService.exe [2007-01-04 24652]
  506. R2 WindowBlinds;Stardock WindowBlinds; C:\Program Files\Stardock\Object Desktop\WindowBlinds\vistasrv.exe [2008-08-29 230648]
  507. R2 wltrysvc;Dell Wireless WLAN Tray Service; C:\Windows\System32\WLTRYSVC.EXE [2008-11-17 26112]
  508. R2 z2 R2PC Server;z2 Remote2PC Server; C:\Program Files\z2 Remote2PC\R2PCServ.exe [2007-08-26 512000]
  509. R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe [2009-02-05 254040]
  510. R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast4\ashWebSv.exe [2009-02-05 352920]
  511. R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2010-01-22 545576]
  512. S2 gupdate1c9af2a4ed18150;Google Update Service (gupdate1c9af2a4ed18150); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-03-27 133104]
  513. S2 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-07-21 190448]
  514. S2 vsmon;TrueVector Internet Monitor; C:\Windows\System32\ZoneLabs\vsmon.exe -service []
  515. S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-01-27 655624]
  516. S3 GoToAssist;GoToAssist; C:\Program Files\Citrix\GoToAssist\514\g2aservice.exe [2008-12-10 16680]
  517. S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
  518. S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
  519. S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2008-03-24 74384]
  520. S3 WLSetupSvc;Windows Live Setup Service; C:\Program Files\Windows Live\installer\WLSetupSvc.exe [2007-10-25 266240]
  521. S4 MSSQLServerADHelper100;SQL Active Directory Helper Service; c:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [2008-07-10 47128]
  522. S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS); c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2008-07-10 369688]
  523. S4 SQLBrowser;SQL Server Browser; c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2008-07-10 258072]
  524.  
  525. -----------------EOF-----------------