|
Szia,
köszönöm a választ, sikerült letöltenem az rsit-et, itt a naplója: Ha tudsz segíteni, azt előre is köszönöm, addig is próbálkozom tovább :-) Logfile of random's system information tool 1.08 (written by random/random) Run by Varga Andrea Regina at 2011-05-09 15:48:26 Microsoft Windows XP Professional Szervizcsomag 3 System drive C: has 5 GB (31%) free of 15 GB Total RAM: 1014 MB (31% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 15:52:52, on 2011.05.09. Platform: Windows XP Szervizcsomag 3 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\igfxtray.exe C:\WINDOWS\system32\hkcmd.exe C:\WINDOWS\system32\igfxpers.exe C:\WINDOWS\RTHDCPL.EXE C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe C:\WINDOWS\system32\igfxsrvc.exe C:\Program Files\Common Files\Java\Java Update\jusched.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\DNA\btdna.exe C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\wbem\wmiapsrv.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Mozilla Firefox\plugin-container.exe C:\WINDOWS\system32\wscntfy.exe C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe C:\Documents and Settings\Varga Andrea Regina\Dokumentumok\Letöltések\RSIT(1).exe C:\Program Files\trend micro\Varga Andrea Regina.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = <a href="http://www.crawler.com/search/dispatcher.aspx?tp=aus&qkw=%s&tbid=60347">http://www.crawler.com/search/dispatcher.aspx?tp=aus&qkw=%s&tbid=60347 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.imesh.com/ R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.imesh.com/sidebar.html?src=ssb&sysid=1 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hivatkozások O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: MediaBar - {28387537-e3f9-4ed7-860c-11e69af4a8a0} - C:\PROGRA~1\IMESHA~1\MediaBar\ToolBar\imeshdtxmltbpi.dll (file missing) O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll (file missing) O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (file missing) O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: BluePhone Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (file missing) O3 - Toolbar: MediaBar - {28387537-e3f9-4ed7-860c-11e69af4a8a0} - C:\PROGRA~1\IMESHA~1\MediaBar\ToolBar\imeshdtxmltbpi.dll (file missing) O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file) O4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\Audio\Drivers\AzMixerSel.exe O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 5.3\THGuard.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe" O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020 O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'HELYI SZOLGÁLTATÁS') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'HÁLÓZATI SZOLGÁLTATÁS') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200 O8 - Extra context menu item: E&xportálás Microsoft Excel formátumba - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O22 - SharedTaskScheduler: Browseui előbetöltője - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Komponenskategóriák gyorsítótárazási szolgáltatása - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: Logikai lemezkezelő felügyeleti szolgáltatás (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe O23 - Service: Eseménynapló (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: HP Status Server - Hewlett-Packard Company - C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBOID.EXE O23 - Service: IMAPI CD-égető COM-szolgáltatás (ImapiService) - Unknown owner - C:\WINDOWS\system32\imapi.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: NetMeeting távoli asztalmegosztás (mnmsrvc) - Unknown owner - C:\WINDOWS\system32\mnmsrvc.exe O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe O23 - Service: Plug and Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe O23 - Service: Távoli asztal súgó-munkamenetének kezelője (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe O23 - Service: Intelligens kártya (SCardSvr) - Unknown owner - C:\WINDOWS\System32\SCardSvr.exe O23 - Service: Teljesítménynaplók és riasztások (SysmonLog) - Unknown owner - C:\WINDOWS\system32\smlogsvc.exe O23 - Service: Kötet árnyékmásolata (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe O23 - Service: WMI teljesítményadapter (WmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\wmiapsrv.exe -- End of file - 8853 bytes ======Scheduled tasks folder====== C:\WINDOWS\tasks\AllegroupPST Updates.job C:\WINDOWS\tasks\AppleSoftwareUpdate.job C:\WINDOWS\tasks\VateraPST2 Updates.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{28387537-e3f9-4ed7-860c-11e69af4a8a0}] MediaBar - C:\PROGRA~1\IMESHA~1\MediaBar\ToolBar\imeshdtxmltbpi.dll [] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}] AVG Safe Search - C:\Program Files\AVG\AVG10\avgssie.dll [] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}] Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-01-26 1879896] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] BluePhone Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-02-03 41760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}] JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-02-03 79648] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {D4027C7F-154A-4066-A1AD-4243D8127440} - BluePhone Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [] {28387537-e3f9-4ed7-860c-11e69af4a8a0} - MediaBar - C:\PROGRA~1\IMESHA~1\MediaBar\ToolBar\imeshdtxmltbpi.dll [] {CCC7A320-B3CA-4199-B1A6-9F516DD69829} [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "AzMixerSel"=C:\Program Files\Realtek\Audio\Drivers\AzMixerSel.exe [2006-07-17 53248] "UserFaultCheck"=C:\WINDOWS\system32\dumprep 0 -u [] "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-01-31 35760] "Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-21 932288] "IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2008-02-28 141848] "HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2008-02-28 166424] "Persistence"=C:\WINDOWS\system32\igfxpers.exe [2008-02-28 137752] "RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2009-08-24 18702336] "avgnt"=C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe [2008-06-12 266497] "QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2008-05-27 413696] "SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-10-29 249064] "NeroFilterCheck"=C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe [2007-03-01 153136] "NBKeyScan"=C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2007-12-03 2213160] "THGuard"=C:\Program Files\TrojanHunter 5.3\THGuard.exe [] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360] "MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-14 1695232] "BitTorrent DNA"=C:\Program Files\DNA\btdna.exe [2010-05-25 323392] "SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-01-26 2144088] "IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2007-12-13 1688872] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui] C:\WINDOWS\system32\igfxdev.dll [2008-02-15 208896] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon] C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265096] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=149 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "HonorAutoRunSetting"=1 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\Program Files\VateraPST2\vateraPST.exe"="C:\Program Files\VateraPST2\vateraPST.exe:*:Enabled:vateraPST" "C:\Program Files\DNA\btdna.exe"="C:\Program Files\DNA\btdna.exe:*:Enabled:DNA" "C:\Program Files\BitTorrent\bittorrent.exe"="C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent" "C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour" "C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqscnvw.exe"="C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqscnvw.exe:*:Enabled:hpqscnvw.exe" "C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe" "C:\Program Files\Hewlett-Packard\Digital Imaging\Unload\HpqPhUnl.exe"="C:\Program Files\Hewlett-Packard\Digital Imaging\Unload\HpqPhUnl.exe:*:Enabled:hpqphunl.exe" "C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqnrs08.exe"="C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqnrs08.exe:*:Enabled:hpqnrs08.exe" "C:\Program Files\Fotoalbum\fotoalbum.exe"="C:\Program Files\Fotoalbum\fotoalbum.exe:*:Enabled:Képfeltöltő a Fotóalbum.hu oldalhoz" "C:\Documents and Settings\Varga Andrea Regina\Dokumentumok\Downloads\Foxit\Foxit.PDF.Editor.v1.5.2722 full - MaMuNi\Crack\PDFEdit.exe"="C:\Documents and Settings\Varga Andrea Regina\Dokumentumok\Downloads\Foxit\Foxit.PDF.Editor.v1.5.2722 full - MaMuNi\Crack\PDFEdit.exe:*:Enabled:Foxit PDF Editor, the first REAL editor for PDF files!" "C:\Program Files\Foxit Software\PDF Editor\PDFEdit.exe"="C:\Program Files\Foxit Software\PDF Editor\PDFEdit.exe:*:Enabled:Foxit PDF Editor, the first REAL editor for PDF files!" "D:\Program Files\totalcmd\TOTALCMD.EXE"="D:\Program Files\totalcmd\TOTALCMD.EXE:*:Enabled:Total Commander 32 bit" "C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager" "C:\Program Files\AllegroupPST\vateraPST.exe"="C:\Program Files\AllegroupPST\vateraPST.exe:*:Enabled:vateraPST" "C:\Program Files\iMesh Applications\iMesh\iMesh.exe"="C:\Program Files\iMesh Applications\iMesh\iMesh.exe:*:Enabled:iMesh" "C:\Program Files\Java\jre6\bin\javaw.exe"="C:\Program Files\Java\jre6\bin\javaw.exe:*:Enabled:Java(TM) Platform SE binary" "C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe"="C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe:*:Enabled:Spyware Terminator Update Support" "C:\Program Files\AVG\AVG10\avgmfapx.exe"="C:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:AVG telepítő" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\Program Files\iMesh Applications\iMesh\iMesh.exe"="C:\Program Files\iMesh Applications\iMesh\iMesh.exe:*:Enabled:iMesh" ======List of files/folders created in the last 1 months====== 2011-05-09 15:48:40 ----D---- C:\Program Files\trend micro 2011-05-09 15:48:26 ----D---- C:\rsit 2011-05-09 13:12:48 ----A---- C:\WINDOWS\hpbvspst.ini 2011-05-09 13:12:26 ----A---- C:\WINDOWS\hpbvnstp.ini 2011-05-09 13:11:21 ----A---- C:\WINDOWS\system32\HPPASNM0.DLL 2011-05-09 13:11:21 ----A---- C:\WINDOWS\system32\HPPAPTS0.DLL 2011-05-09 13:11:21 ----A---- C:\WINDOWS\system32\HPPAPML0.DLL 2011-05-09 13:11:21 ----A---- C:\WINDOWS\system32\HPPAMON0.DLL 2011-05-09 13:11:21 ----A---- C:\WINDOWS\system32\HPPADT40.DLL 2011-05-09 13:09:32 ----A---- C:\WINDOWS\system32\drivers\Dot4Scan.sys 2011-05-09 13:09:25 ----A---- C:\WINDOWS\system32\hppldcoi.dll 2011-05-09 13:09:24 ----A---- C:\WINDOWS\system32\hppcew01.dll 2011-05-09 13:09:24 ----A---- C:\WINDOWS\system32\drivers\hpfxgen.sys 2011-05-09 13:09:24 ----A---- C:\WINDOWS\system32\drivers\hpfxbulk.sys 2011-05-09 13:09:18 ----A---- C:\WINDOWS\system32\HPPEPR01.DLL 2011-05-09 13:09:18 ----A---- C:\WINDOWS\system32\HPPCPR01.DLL 2011-05-09 13:09:14 ----A---- C:\WINDOWS\system32\hpzipm12.dll 2011-05-09 13:09:14 ----A---- C:\WINDOWS\system32\hpxp3390.dll 2011-05-09 13:09:14 ----A---- C:\WINDOWS\system32\hpptpml3.dll 2011-05-09 13:09:14 ----A---- C:\WINDOWS\system32\hppasc01.dll 2011-05-07 23:07:54 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys 2011-05-07 23:07:41 ----A---- C:\WINDOWS\system32\drivers\mbam.sys 2011-05-07 23:07:40 ----D---- C:\Program Files\Malwarebytes' Anti-Malware 2011-05-06 21:12:20 ----D---- C:\Documents and Settings\Varga Andrea Regina\Application Data\AVG10 2011-05-06 20:58:26 ----HD---- C:\Documents and Settings\All Users.WINDOWS\Application Data\Common Files 2011-05-06 20:50:32 ----D---- C:\Documents and Settings\All Users.WINDOWS\Application Data\AVG10 2011-05-06 20:42:08 ----D---- C:\Documents and Settings\All Users.WINDOWS\Application Data\MFAData 2011-05-06 12:26:29 ----D---- C:\Documents and Settings\Varga Andrea Regina\Application Data\Real 2011-05-06 10:58:08 ----D---- C:\Documents and Settings\Varga Andrea Regina\Application Data\Malwarebytes 2011-05-06 10:57:34 ----D---- C:\Documents and Settings\All Users.WINDOWS\Application Data\Malwarebytes 2011-05-06 10:54:29 ----D---- C:\Documents and Settings\Varga Andrea Regina\Application Data\TrojanHunter 2011-05-06 08:05:12 ----R---- C:\WINDOWS\system32\streamhlp.dll 2011-05-04 19:46:13 ----D---- C:\Documents and Settings\All Users.WINDOWS\Application Data\{28910930-D6AA-4454-A794-62EB7625055A} 2011-05-04 19:46:08 ----D---- C:\Program Files\AllegroupPST 2011-04-27 06:08:49 ----D---- C:\Program Files\MSXML 4.0 2011-04-25 19:35:27 ----D---- C:\Documents and Settings\Varga Andrea Regina\Application Data\Nero 2011-04-25 19:33:41 ----A---- C:\WINDOWS\system32\MsiExec.exe.log 2011-04-25 19:16:09 ----D---- C:\Program Files\Nero 2011-04-25 19:16:09 ----D---- C:\Documents and Settings\All Users.WINDOWS\Application Data\Nero 2011-04-25 19:16:08 ----D---- C:\Program Files\Common Files\Nero 2011-04-25 19:12:38 ----A---- C:\WINDOWS\system32\d3dx9_30.dll 2011-04-25 19:12:33 ----A---- C:\WINDOWS\system32\d3dx9_28.dll 2011-04-24 21:28:49 ----A---- C:\WINDOWS\system32\pncrt.dll 2011-04-24 21:19:59 ----D---- C:\Program Files\FreeTime 2011-04-17 15:18:01 ----A---- C:\WINDOWS\system32\SUGO1LMK.DLL 2011-04-17 15:17:59 ----A---- C:\WINDOWS\system32\SSCoInst.exe 2011-04-17 15:17:59 ----A---- C:\WINDOWS\system32\SSCoInst.dll 2011-04-17 15:17:59 ----A---- C:\WINDOWS\system32\SECSNMP.dll 2011-04-17 14:38:50 ----RA---- C:\WINDOWS\system32\ZHHP2600.EXE 2011-04-17 14:38:49 ----RA---- C:\WINDOWS\system32\zSHP2600.EXE 2011-04-17 14:38:49 ----RA---- C:\WINDOWS\system32\ZLHP2600.DLL 2011-04-17 14:38:49 ----RA---- C:\WINDOWS\system32\zIMF.DLL 2011-04-17 14:38:49 ----RA---- C:\WINDOWS\system32\ZHHP_RES.DLL 2011-04-17 14:38:49 ----RA---- C:\WINDOWS\system32\AGISSI.DLL 2011-04-17 14:38:48 ----RA---- C:\WINDOWS\system32\ZTAG.DLL 2011-04-16 06:48:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2485663$ 2011-04-16 06:48:02 ----HDC---- C:\WINDOWS\$NtUninstallKB2510581$ 2011-04-16 06:47:33 ----HDC---- C:\WINDOWS\$NtUninstallKB2506223$ 2011-04-16 06:46:55 ----HDC---- C:\WINDOWS\$NtUninstallKB2412687$ 2011-04-16 06:26:47 ----HDC---- C:\WINDOWS\$NtUninstallKB2508272$ 2011-04-16 06:26:26 ----HDC---- C:\WINDOWS\$NtUninstallKB2503658$ 2011-04-16 06:26:11 ----HDC---- C:\WINDOWS\$NtUninstallKB2507618$ 2011-04-16 06:25:22 ----HDC---- C:\WINDOWS\$NtUninstallKB2497640$ 2011-04-16 06:24:34 ----HDC---- C:\WINDOWS\$NtUninstallKB2508429$ 2011-04-16 06:24:21 ----HDC---- C:\WINDOWS\$NtUninstallKB2511455$ 2011-04-16 06:23:59 ----HDC---- C:\WINDOWS\$NtUninstallKB2506212$ 2011-04-16 06:23:24 ----HDC---- C:\WINDOWS\$NtUninstallKB2509553$ ======List of files/folders modified in the last 1 months====== 2011-05-09 15:48:40 ----RD---- C:\Program Files 2011-05-09 15:45:12 ----D---- C:\Documents and Settings\Varga Andrea Regina\Application Data\DNA 2011-05-09 15:37:05 ----D---- C:\WINDOWS\Prefetch 2011-05-09 15:22:08 ----D---- C:\WINDOWS\Temp 2011-05-09 14:17:25 ----D---- C:\WINDOWS 2011-05-09 14:15:03 ----D---- C:\Program Files\DNA 2011-05-09 14:12:29 ----A---- C:\WINDOWS\SchedLgU.Txt 2011-05-09 13:14:04 ----SHD---- C:\WINDOWS\Installer 2011-05-09 13:14:04 ----SHD---- C:\Config.Msi 2011-05-09 13:13:55 ----D---- C:\WINDOWS\WinSxS 2011-05-09 13:13:55 ----D---- C:\WINDOWS\twain_32 2011-05-09 13:13:07 ----D---- C:\WINDOWS\system32\ReinstallBackups 2011-05-09 13:13:07 ----D---- C:\WINDOWS\system32\drivers 2011-05-09 13:13:00 ----D---- C:\WINDOWS\system32 2011-05-09 13:09:43 ----RSHDC---- C:\WINDOWS\system32\dllcache 2011-05-09 13:09:28 ----HD---- C:\WINDOWS\inf 2011-05-09 13:09:27 ----DC---- C:\WINDOWS\system32\DRVSTORE 2011-05-09 12:50:36 ----D---- C:\WINDOWS\system32\CatRoot2 2011-05-09 12:45:42 ----D---- C:\Program Files\Mozilla Firefox 2011-05-08 17:44:19 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$ 2011-05-07 23:07:57 ----D---- C:\Program Files\ESET 2011-05-07 18:07:48 ----D---- C:\Documents and Settings\Varga Andrea Regina\Application Data\BitTorrent 2011-05-04 19:46:08 ----D---- C:\Documents and Settings\All Users.WINDOWS\Application Data\VateraPst 2011-05-04 19:08:24 ----D---- C:\WINDOWS\Debug 2011-04-25 19:16:08 ----D---- C:\Program Files\Common Files 2011-04-25 19:16:04 ----D---- C:\WINDOWS\Cursors 2011-04-25 19:12:40 ----D---- C:\WINDOWS\system32\DirectX 2011-04-25 18:50:03 ----D---- C:\Program Files\Ahead 2011-04-25 18:35:46 ----D---- C:\Program Files\Common Files\Microsoft Shared 2011-04-18 15:46:44 ----A---- C:\WINDOWS\system32\MRT.exe 2011-04-17 14:35:48 ----D---- C:\Program Files\HP 2011-04-17 14:28:18 ----D---- C:\temp 2011-04-16 15:37:57 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2011-04-16 14:36:31 ----D---- C:\WINDOWS\Microsoft.NET 2011-04-16 14:36:25 ----RSD---- C:\WINDOWS\assembly 2011-04-16 06:48:18 ----HD---- C:\WINDOWS\$hf_mig$ 2011-04-16 06:48:12 ----A---- C:\WINDOWS\imsins.BAK ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 AVGIDSEH;AVGIDSEH; C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys [2010-09-13 25680] R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.sys [] R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2010-12-31 75096] R1 eusk2par;Aladdin SmartKey Parallel Driver; \??\C:\WINDOWS\system32\Drivers\eusk2par.sys [] R1 intelppm;Intel processzor illesztőprogramja; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40576] R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2007-03-01 28352] R1 WmiAcpi;Microsoft Windows ACPI kezelő felület; C:\WINDOWS\system32\DRIVERS\wmiacpi.sys [2010-04-05 8832] R3 AR5416;Atheros AR5008 Wireless Network Adapter Service; C:\WINDOWS\system32\DRIVERS\athw.sys [2009-05-18 1566080] R3 avgntflt;avgntflt; \??\C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys [] R3 HDAudBus;Microsoft UAA busz-illesztőprogram - High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384] R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\igxpmp32.sys [2008-02-15 5854752] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2009-08-31 5891584] R3 L1c;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller; C:\WINDOWS\system32\DRIVERS\l1c51x86.sys [2009-03-02 38912] R3 seehcri;Sony Ericsson seehcri Device Driver; C:\WINDOWS\system32\DRIVERS\seehcri.sys [2011-01-01 27632] R3 usbccgp;Microsoft USB általános szülő-illesztőprogram; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128] R3 usbuhci;Microsoft USB univerzális állomásvezérlő miniport illesztőprogramja; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608] R3 usbvideo;USB videoeszköz (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2008-04-13 121984] R4 MBAMSwissArmy;MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\mbamswissarmy.sys [] S2 adfs;adfs; C:\WINDOWS\system32\drivers\adfs.sys [] S2 DgiVecp;Team MFP Comm Driver; C:\WINDOWS\System32\Drivers\DgiVecp.sys [2009-03-24 38400] S2 SSPORT;SSPORT; \??\C:\WINDOWS\system32\Drivers\SSPORT.sys [] S3 Ambfilt;Ambfilt; C:\WINDOWS\system32\drivers\Ambfilt.sys [2008-08-05 1684736] S3 CCDECODE;Feliratdekódoló; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024] S3 dot4;MS IEEE-1284.4 illesztőprogram; C:\WINDOWS\system32\DRIVERS\Dot4.sys [2008-04-13 206976] S3 Dot4Print;IEEE-1284.4 nyomtatóosztályú illesztőprogramja; C:\WINDOWS\system32\DRIVERS\Dot4Prt.sys [2001-08-17 12928] S3 Dot4Scan;Scan Class Driver for IEEE-1284.4; C:\WINDOWS\system32\DRIVERS\Dot4Scan.sys [2001-08-17 8704] S3 dot4usb;Dot4USB szűrő Dot4USB Filter; C:\WINDOWS\system32\DRIVERS\dot4usb.sys [2001-10-26 23808] S3 ggflt;SEMC USB Flash Driver Filter; C:\WINDOWS\system32\DRIVERS\ggflt.sys [2011-01-01 13224] S3 ggsemc;SEMC USB Flash Driver; C:\WINDOWS\system32\DRIVERS\ggsemc.sys [2011-01-01 25512] S3 HidUsb;Microsoft HID osztályú illesztőprogram; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368] S3 HPFXBULK;HPFXBULK; C:\WINDOWS\system32\drivers\hpfxbulk.sys [2006-04-04 9344] S3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2006-04-13 49664] S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2005-10-21 16496] S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2005-10-21 21568] S3 Monfilt;Monfilt; C:\WINDOWS\system32\drivers\Monfilt.sys [2006-01-04 1389056] S3 MSTEE;Microsoft Streaming Tee/Sink - Sink átalakító; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504] S3 NABTSFEC;NABTS/FEC VBI kodek; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248] S3 NdisIP;Microsoft TV-/videokapcsolat; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2010-04-05 10880] S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136] S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232] S3 usbprint;Microsoft USB PRINTER osztály; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856] S3 usbscan;USB-képolvasó illesztőprogramja; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104] S3 usbstor;USB háttértár illesztőprogramja; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368] S3 Wdf01000;Kernel Mode Driver Frameworks service; C:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008] S3 WSTCODEC;World Standard Teletext kodek; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AntiVirScheduler;Avira AntiVir Personal - Free Antivirus Scheduler; C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe [2008-10-15 68865] R2 AntiVirService;Avira AntiVir Personal - Free Antivirus Guard; C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe [2008-10-15 151297] R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2011-02-02 153376] R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2007-12-03 869672] R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336] S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2010-06-13 72704] S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312] S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632] S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104] S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-12-22 136120] S3 HP Status Server;HP Status Server; C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBOID.EXE [2004-10-16 73728] S3 hpqcxs08;hpqcxs08; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336] S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664] S3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2007-12-13 447784] S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096] -----------------EOF----------------- |
| Powered by Nabble | Edit this page |
