Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- .
- DDS (Ver_2011-08-26.01) - NTFSAMD64
- Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_26
- Run by admin at 22:21:08 on 2011-09-23
- Microsoft Windows 7 Édition Familiale Premium 6.1.7600.0.1252.33.1036.18.3949.1751 [GMT 2:00]
- .
- AV: avast! Internet Security *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
- SP: avast! Internet Security *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
- SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
- FW: PC Tools Firewall Plus *Enabled* {175D0B73-9F8F-2CA9-8BF1-62277A276DC9}
- FW: avast! Internet Security *Disabled* {131692B0-0864-D491-4E21-3A3A1D8BBB47}
- .
- ============== Running Processes ===============
- .
- C:\Windows\system32\wininit.exe
- C:\Windows\system32\lsm.exe
- C:\Windows\system32\svchost.exe -k DcomLaunch
- C:\Windows\system32\nvvsvc.exe
- C:\Windows\system32\svchost.exe -k RPCSS
- C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
- C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
- C:\Windows\system32\svchost.exe -k netsvcs
- C:\Windows\system32\svchost.exe -k LocalService
- C:\Windows\system32\svchost.exe -k NetworkService
- C:\Windows\system32\FBAgent.exe
- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
- C:\Windows\system32\nvvsvc.exe
- C:\Program Files\AVAST Software\Avast\afwServ.exe
- C:\Windows\System32\spoolsv.exe
- C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
- C:\Windows\SysWOW64\svchost.exe -k Akamai
- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
- C:\Program Files (x86)\PC Tools Firewall Plus\FWService.exe
- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
- C:\Windows\system32\svchost.exe -k imgsvc
- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe
- C:\Windows\SysWOW64\vmnat.exe
- C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
- C:\Windows\SysWOW64\vmnetdhcp.exe
- C:\Windows\system32\taskhost.exe
- C:\Windows\system32\Dwm.exe
- C:\Windows\Explorer.EXE
- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
- C:\Windows\AsScrPro.exe
- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
- C:\Windows\system32\wbem\wmiprvse.exe
- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
- C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
- C:\Windows\system32\SearchIndexer.exe
- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
- C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
- C:\Windows\system32\taskeng.exe
- C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
- C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
- C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
- C:\Program Files\P4G\BatteryLife.exe
- C:\Windows\SysWOW64\ACEngSvr.exe
- C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe
- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
- C:\Program Files\Windows Media Player\wmpnetwk.exe
- C:\Program Files (x86)\ManyCam\Bin\ManyCam.exe
- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
- C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe
- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
- C:\Program Files (x86)\Roxio\CinePlayer\5.0\CPMonitor.exe
- C:\Program Files (x86)\PC Tools Firewall Plus\FirewallGUI.exe
- C:\Program Files (x86)\Yuna Software\Messenger Plus!\PlusService.exe
- C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe
- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
- C:\Program Files (x86)\iTunes\iTunesHelper.exe
- C:\Program Files\AVAST Software\Avast\AvastUI.exe
- C:\Program Files (x86)\Yahoo!\Messenger\ymsgr_tray.exe
- C:\Program Files\iPod\bin\iPodService.exe
- C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
- C:\Windows\System32\svchost.exe -k secsvcs
- C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe
- C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
- C:\Windows\system32\wuauclt.exe
- C:\Windows\system32\taskmgr.exe
- C:\Windows\system32\notepad.exe
- D:\Security\OTL.exe
- C:\Windows\notepad.exe
- C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineScannerApp.exe
- C:\Program Files (x86)\ESET\ESET Online Scanner\OnlineCmdLineScanner.exe
- C:\Windows\system32\conhost.exe
- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
- C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
- C:\Windows\system32\conhost.exe
- C:\Windows\system32\SearchProtocolHost.exe
- C:\Windows\system32\SearchFilterHost.exe
- C:\Windows\system32\DllHost.exe
- C:\Windows\system32\DllHost.exe
- C:\Windows\SysWOW64\cmd.exe
- C:\Windows\system32\conhost.exe
- C:\Windows\SysWOW64\cscript.exe
- C:\Windows\system32\wbem\wmiprvse.exe
- .
- ============== Pseudo HJT Report ===============
- .
- uStart Page = hxxp://www.google.fr/
- uDefault_Page_URL = hxxp://asus.msn.com
- mStart Page = hxxp://asus.msn.com
- mWinlogon: Userinit=userinit.exe,
- BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File
- BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
- BHO: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
- BHO: Programme d'aide de l'Assistant de connexion Windows Live: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
- BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
- BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
- BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll
- BHO: Google Dictionary Compression sdch: {c84d72fe-e17d-4195-bb24-76c02e2e7c4e} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll
- BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
- TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
- TB: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
- TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
- uRun: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
- uRun: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
- uRun: [ManyCam] "C:\Program Files (x86)\ManyCam\Bin\ManyCam.exe" /silent
- uRun: [FileHippo.com] "C:\Program Files (x86)\FileHippo.com\UpdateChecker.exe" /background
- uRun: [Messenger (Yahoo!)] "C:\PROGRA~2\Yahoo!\Messenger\YahooMessenger.exe" -quiet
- mRun: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
- mRun: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
- mRun: [Nuance PDF Reader-reminder] "C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe" -r "C:\ProgramData\Nuance\PDF Reader\Ereg\Ereg.ini"
- mRun: [THX TruStudio NB Settings] "C:\Program Files (x86)\Creative\THX TruStudio\THXNBSet\THXAudNB.exe" /r
- mRun: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
- mRun: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
- mRun: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
- mRun: [Wireless Console 3] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
- mRun: [CPMonitor] "C:\Program Files (x86)\Roxio\CinePlayer\5.0\CPMonitor.exe"
- mRun: [00PCTFW] "C:\Program Files (x86)\PC Tools Firewall Plus\FirewallGUI.exe" -s
- mRun: [PlusService] C:\Program Files (x86)\Yuna Software\Messenger Plus!\PlusService.exe
- mRun: [vmware-tray] "C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe"
- mRun: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
- mRun: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
- mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
- mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
- mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
- mRun: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
- mRun: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
- mPolicies-explorer: NoActiveDesktop = 1 (0x1)
- mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
- mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
- mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
- mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
- IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
- LSP: C:\Program Files (x86)\VMware\VMware Workstation\vsocklib.dll
- DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
- DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
- DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
- TCP: DhcpNameServer = 192.168.0.254
- TCP: Interfaces\{5D825BD3-A6CB-44A9-A47B-22820CD42A16} : DhcpNameServer = 192.168.0.254
- Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
- BHO-X64: {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File
- BHO-X64: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
- {8E5E2654-AD2D-48bf-AC2D-D17F00898D06}
- {9030D464-4C02-4ABF-8ECC-5164760863C6}
- {AA58ED58-01DD-4d91-8333-CF10577473F7}
- {AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
- {AF69DE43-7D58-4638-B6FA-CE66B5AD205D}
- {C84D72FE-E17D-4195-BB24-76C02E2E7C4E}
- {DBC80044-A445-435b-BC74-9C25C1C588A9}
- {2318C2B1-4965-11d4-9B18-009027A5CD4F}
- {8E5E2654-AD2D-48bf-AC2D-D17F00898D06}
- TB-X64: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
- mRun-x64: [UpdateLBPShortCut] "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
- mRun-x64: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
- mRun-x64: [Nuance PDF Reader-reminder] "C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe" -r "C:\ProgramData\Nuance\PDF Reader\Ereg\Ereg.ini"
- mRun-x64: [THX TruStudio NB Settings] "C:\Program Files (x86)\Creative\THX TruStudio\THXNBSet\THXAudNB.exe" /r
- mRun-x64: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
- mRun-x64: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
- mRun-x64: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
- mRun-x64: [Wireless Console 3] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
- mRun-x64: [CPMonitor] "C:\Program Files (x86)\Roxio\CinePlayer\5.0\CPMonitor.exe"
- mRun-x64: [00PCTFW] "C:\Program Files (x86)\PC Tools Firewall Plus\FirewallGUI.exe" -s
- mRun-x64: [PlusService] C:\Program Files (x86)\Yuna Software\Messenger Plus!\PlusService.exe
- mRun-x64: [vmware-tray] "C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe"
- mRun-x64: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
- mRun-x64: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
- mRun-x64: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
- mRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
- mRun-x64: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
- mRun-x64: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
- mRun-x64: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
- .
- ================= FIREFOX ===================
- .
- FF - ProfilePath - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\jmq2rr1g.default\
- FF - prefs.js: keyword.URL - « hxxp://www.google.com/search?btnI=I%27m+Feeling+Lucky&ie=UTF-8&oe=UTF-8&q=
- FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
- FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
- FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.69\npGoogleUpdate3.dll
- FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
- FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrlui.dll
- FF - plugin: C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll
- FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
- FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
- FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
- .
- ---- FIREFOX POLICIES ----
- FF - user.js: yahoo.ytff.general.dontshowhpoffer - true
- ============= SERVICES / DRIVERS ===============
- .
- R0 aswNdis;avast! Firewall NDIS Filter Service;C:\Windows\system32\DRIVERS\aswNdis.sys --> C:\Windows\system32\DRIVERS\aswNdis.sys [?]
- R0 aswNdis2;avast! Firewall Core Firewall Service;C:\Windows\system32\drivers\aswNdis2.sys --> C:\Windows\system32\drivers\aswNdis2.sys [?]
- R0 PxHlpa64;PxHlpa64;C:\Windows\system32\Drivers\PxHlpa64.sys --> C:\Windows\system32\Drivers\PxHlpa64.sys [?]
- R1 aswFW;avast! TDI Firewall driver;C:\Windows\system32\drivers\aswFW.sys --> C:\Windows\system32\drivers\aswFW.sys [?]
- R1 aswSnx;aswSnx;C:\Windows\system32\drivers\aswSnx.sys --> C:\Windows\system32\drivers\aswSnx.sys [?]
- R1 aswSP;aswSP;C:\Windows\system32\drivers\aswSP.sys --> C:\Windows\system32\drivers\aswSP.sys [?]
- R1 pctgntdi;pctgntdi;\??\C:\Windows\System32\drivers\pctgntdi64.sys --> C:\Windows\System32\drivers\pctgntdi64.sys [?]
- R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?]
- R2 AFBAgent;AFBAgent;"C:\Windows\system32\FBAgent.exe" --> C:\Windows\system32\FBAgent.exe [?]
- R2 Akamai;Akamai NetSession Interface;C:\Windows\System32\svchost.exe -k Akamai [2009-7-14 20992]
- R2 ASMMAP64;ASMMAP64;C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-7-3 15416]
- R2 aswFsBlk;aswFsBlk;C:\Windows\system32\drivers\aswFsBlk.sys --> C:\Windows\system32\drivers\aswFsBlk.sys [?]
- R2 aswMonFlt;aswMonFlt;\??\C:\Windows\system32\drivers\aswMonFlt.sys --> C:\Windows\system32\drivers\aswMonFlt.sys [?]
- R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2011-9-18 44768]
- R2 avast! Firewall;avast! Firewall;C:\Program Files\AVAST Software\Avast\afwServ.exe [2011-9-18 127192]
- R2 cvhsvc;Client Virtualization Handler;C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE [2010-10-20 821664]
- R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2011-9-16 366152]
- R2 PCToolsFirewallPlus;PC Tools Firewall Plus;C:\Program Files (x86)\PC Tools Firewall Plus\FWService.exe [2011-6-28 286000]
- R2 sftlist;Application Virtualization Client;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2010-9-14 508264]
- R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2010-10-29 236136]
- R2 TurboB;Turbo Boost UI Monitor driver;C:\Windows\system32\DRIVERS\TurboB.sys --> C:\Windows\system32\DRIVERS\TurboB.sys [?]
- R2 UNS;Intel(R) Management & Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-3-9 2314240]
- R2 VMUSBArbService;VMware USB Arbitration Service;C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe [2011-3-25 539248]
- R3 FLxHCIc;Fresco Logic xHCI (USB3) Device Driver;C:\Windows\system32\DRIVERS\FLxHCIc.sys --> C:\Windows\system32\DRIVERS\FLxHCIc.sys [?]
- R3 FLxHCIh;Fresco Logic xHCI (USB3) Hub Device Driver;C:\Windows\system32\DRIVERS\FLxHCIh.sys --> C:\Windows\system32\DRIVERS\FLxHCIh.sys [?]
- R3 HECIx64;Intel(R) Management Engine Interface;C:\Windows\system32\DRIVERS\HECIx64.sys --> C:\Windows\system32\DRIVERS\HECIx64.sys [?]
- R3 Impcd;Impcd;C:\Windows\system32\DRIVERS\Impcd.sys --> C:\Windows\system32\DRIVERS\Impcd.sys [?]
- R3 ManyCam;ManyCam Virtual Webcam, WDM Video Capture Driver;C:\Windows\system32\DRIVERS\ManyCam_x64.sys --> C:\Windows\system32\DRIVERS\ManyCam_x64.sys [?]
- R3 MBAMProtector;MBAMProtector;\??\C:\Windows\system32\drivers\mbam.sys --> C:\Windows\system32\drivers\mbam.sys [?]
- R3 MBfilt;MBfilt;C:\Windows\system32\drivers\MBfilt64.sys --> C:\Windows\system32\drivers\MBfilt64.sys [?]
- R3 NVHDA;Service for NVIDIA High Definition Audio Driver;C:\Windows\system32\drivers\nvhda64v.sys --> C:\Windows\system32\drivers\nvhda64v.sys [?]
- R3 PCTFW-PacketFilter;PCTools Firewall - Packet filter driver;\??\C:\Windows\system32\drivers\pctNdis-PacketFilter64.sys --> C:\Windows\system32\drivers\pctNdis-PacketFilter64.sys [?]
- R3 pctNdisMP;PC Tools Driver;C:\Windows\system32\DRIVERS\pctNdis64.sys --> C:\Windows\system32\DRIVERS\pctNdis64.sys [?]
- R3 pctplfw;pctplfw;\??\C:\Windows\System32\drivers\pctplfw64.sys --> C:\Windows\System32\drivers\pctplfw64.sys [?]
- R3 RSPCIESTOR;Realtek PCIE CardReader Driver;C:\Windows\system32\DRIVERS\RtsPStor.sys --> C:\Windows\system32\DRIVERS\RtsPStor.sys [?]
- R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\system32\DRIVERS\Rt64win7.sys --> C:\Windows\system32\DRIVERS\Rt64win7.sys [?]
- R3 S6000KNT;S6000KNT_WebCam Driver;C:\Windows\system32\Drivers\S6000KNT.sys --> C:\Windows\system32\Drivers\S6000KNT.sys [?]
- R3 Sftfs;Sftfs;C:\Windows\system32\DRIVERS\Sftfslh.sys --> C:\Windows\system32\DRIVERS\Sftfslh.sys [?]
- R3 Sftplay;Sftplay;C:\Windows\system32\DRIVERS\Sftplaylh.sys --> C:\Windows\system32\DRIVERS\Sftplaylh.sys [?]
- R3 Sftredir;Sftredir;C:\Windows\system32\DRIVERS\Sftredirlh.sys --> C:\Windows\system32\DRIVERS\Sftredirlh.sys [?]
- R3 Sftvol;Sftvol;C:\Windows\system32\DRIVERS\Sftvollh.sys --> C:\Windows\system32\DRIVERS\Sftvollh.sys [?]
- R3 sftvsa;Application Virtualization Service Agent;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2010-9-14 219496]
- S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
- S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
- S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-3-9 135664]
- S3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service;C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2011-3-9 79360]
- S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2011-3-9 79360]
- S3 gupdatem;Service Google Update (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-3-9 135664]
- S3 osppsvc;Office Software Protection Platform;C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-1-9 4925184]
- S3 pctNdis;PC Tools Firewall Intermediate Filter Service;C:\Windows\system32\DRIVERS\pctNdis64.sys --> C:\Windows\system32\DRIVERS\pctNdis64.sys [?]
- S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;C:\Windows\system32\DRIVERS\SiSG664.sys --> C:\Windows\system32\DRIVERS\SiSG664.sys [?]
- S3 SwitchBoard;SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096]
- S3 TurboBoost;TurboBoost;C:\Program Files\Intel\TurboBoost\TurboBoost.exe [2009-8-7 118672]
- S3 WatAdminSvc;Service Windows Activation Technologies;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
- .
- =============== Created Last 30 ================
- .
- 2011-09-23 20:07:21 -------- d-----w- C:\Program Files (x86)\ESET
- 2011-09-23 19:12:29 69000 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E8BB92FD-8718-4784-BE8F-0448D88FF01B}\offreg.dll
- 2011-09-23 19:12:28 9049936 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E8BB92FD-8718-4784-BE8F-0448D88FF01B}\mpengine.dll
- 2011-09-22 19:32:15 -------- d-----w- C:\sfzone_profile
- 2011-09-20 21:08:31 -------- d-----w- C:\Users\admin\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
- 2011-09-20 13:00:22 -------- d-----w- C:\Program Files\Axantum
- 2011-09-20 12:41:52 -------- d-----w- C:\Program Files\Mplayer
- 2011-09-20 12:34:20 -------- d-----w- C:\Users\admin\AppData\Roaming\XWindows Dock
- 2011-09-20 12:34:18 -------- d-----w- C:\Program Files (x86)\XWindows Dock
- 2011-09-20 10:11:14 -------- d-----w- C:\Program Files (x86)\VideoLAN
- 2011-09-19 18:32:18 0 ---ha-w- C:\Users\admin\AppData\Local\BITFA37.tmp
- 2011-09-19 18:30:30 0 ---ha-w- C:\Users\admin\AppData\Local\BIT561A.tmp
- 2011-09-18 20:51:43 0 ----a-w- C:\Windows\SysWow64\shoA82B.tmp
- 2011-09-18 11:41:59 140120 ----a-w- C:\Windows\System32\drivers\aswFW.sys
- 2011-09-18 11:41:19 258392 ----a-w- C:\Windows\System32\drivers\aswNdis2.sys
- 2011-09-18 11:41:15 65368 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys
- 2011-09-18 11:41:15 601944 ----a-w- C:\Windows\System32\drivers\aswSnx.sys
- 2011-09-18 11:40:48 12368 ----a-w- C:\Windows\System32\drivers\aswNdis.sys
- 2011-09-18 11:40:40 41184 ----a-w- C:\Windows\avastSS.scr
- 2011-09-17 19:35:24 -------- d-----w- C:\Users\admin\AppData\Local\Diagnostics
- 2011-09-17 14:46:29 -------- d-----w- C:\ProgramData\AVAST Software
- 2011-09-17 14:46:29 -------- d-----w- C:\Program Files\AVAST Software
- 2011-09-04 21:55:49 -------- d-----w- C:\Program Files (x86)\Yahoo!
- 2011-09-02 14:10:16 -------- d-----w- C:\ProgramData\VirtualizedApplications
- 2011-09-02 12:24:56 -------- d-----w- C:\Program Files (x86)\FileHippo.com
- 2011-09-02 11:57:50 -------- d-----w- C:\Users\admin\AppData\Roaming\SoftGrid Client
- 2011-09-02 11:57:50 -------- d-----w- C:\Users\admin\AppData\Local\SoftGrid Client
- 2011-09-02 11:56:43 -------- d-----w- C:\Program Files (x86)\Microsoft Application Virtualization Client
- 2011-09-02 11:56:30 -------- d-----w- C:\Users\admin\AppData\Roaming\TP
- 2011-09-02 09:45:53 2048 ----a-w- C:\Windows\SysWow64\tzres.dll
- 2011-09-02 09:45:53 2048 ----a-w- C:\Windows\System32\tzres.dll
- .
- ==================== Find3M ====================
- .
- 2011-09-19 18:29:28 45056 ----a-w- C:\Windows\System32\acovcnt.exe
- 2011-09-16 20:59:46 512 ----a-w- C:\PhysicalMBR.bin
- 2011-09-04 21:59:06 404640 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
- 2011-08-31 15:00:50 25416 ----a-w- C:\Windows\System32\drivers\mbam.sys
- 2011-07-22 05:35:08 1638912 ----a-w- C:\Windows\System32\mshtml.tlb
- 2011-07-22 04:56:17 1638912 ----a-w- C:\Windows\SysWow64\mshtml.tlb
- 2011-07-16 19:41:35 5653224 ----a-w- C:\Windows\SysWow64\SpoonUninstall.exe
- 2011-07-16 05:26:54 362496 ----a-w- C:\Windows\System32\wow64win.dll
- 2011-07-16 05:26:53 243200 ----a-w- C:\Windows\System32\wow64.dll
- 2011-07-16 05:26:53 13312 ----a-w- C:\Windows\System32\wow64cpu.dll
- 2011-07-16 05:26:18 214528 ----a-w- C:\Windows\System32\winsrv.dll
- 2011-07-16 05:24:09 16384 ----a-w- C:\Windows\System32\ntvdm64.dll
- 2011-07-16 05:21:32 422400 ----a-w- C:\Windows\System32\KernelBase.dll
- 2011-07-16 05:17:46 338432 ----a-w- C:\Windows\System32\conhost.exe
- 2011-07-16 04:36:09 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
- 2011-07-16 04:32:14 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
- 2011-07-16 04:31:50 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
- 2011-07-16 04:30:29 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
- 2011-07-16 04:30:27 272384 ----a-w- C:\Windows\SysWow64\KernelBase.dll
- 2011-07-16 02:26:12 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
- 2011-07-16 02:26:11 2048 ----a-w- C:\Windows\SysWow64\user.exe
- 2011-07-16 02:21:47 6144 ---ha-w- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
- 2011-07-16 02:21:47 4608 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
- 2011-07-16 02:21:47 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
- 2011-07-16 02:21:47 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
- 2011-07-09 02:44:55 287744 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys
- 2011-07-04 21:15:10 472808 ----a-w- C:\Windows\SysWow64\deployJava1.dll
- .
- ============= FINISH: 22:22:08,05 ===============
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement