1. There were no problems in executing the instructions.
3. The computer is behaving fine.
2.
RSIT log.txtLogfile of random's system information tool 1.06 (written by random/random)
Run by Andy at 2010-01-08 17:25:32
Microsoft® Windows Vista™ Home Basic Service Pack 2
System drive C: has 36 GB (48%) free of 75 GB
Total RAM: 1014 MB (25% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 5:26:52 PM, on 1/8/2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18865)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\Dwm.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Windows\RtHDVCpl.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\KeyScrambler\KeyScrambler.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Windows\system32\igfxsrvc.exe
C:\Users\Andy\Desktop\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Andy.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.toshibadirect.com/dpdstartR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.toshibadirect.com/dpdstartR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.yahoo.com/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.yahoo.com/R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O1 - Hosts: [Internet Media][AS12008][204.69.234.0 - 204.69.234.255]
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\PROGRA~1\mcafee\msk\mskapbho.dll
O2 - BHO: QFX Software KeyScrambler - {2B9F5787-88A5-4945-90E7-C4B18563BC5E} - C:\Program Files\KeyScrambler\KeyScramblerIE.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: RoboForm - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [KeyScrambler] C:\Program Files\KeyScrambler\keyscrambler.exe /a
O4 - HKLM\..\Run: [mcagent_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [McENUI] C:\PROGRA~1\McAfee\MHN\McENUI.exe /hide
O4 - HKLM\..\Run: [OutpostMonitor] C:\PROGRA~1\Agnitum\OUTPOS~1\op_mon.exe /tray /noservice
O4 - HKLM\..\Run: [OutpostFeedBack] "C:\Program Files\Agnitum\Outpost Firewall\feedback.exe" /dump:os_startup
O4 - HKCU\..\Run: [TOSCDSPD] TOSCDSPD.EXE
O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O8 - Extra context menu item: Customize Menu -
file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Download all links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: Download FLV video content with IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm
O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: E&xport to Microsoft Excel -
res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Fill Forms -
file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: Google Sidewiki... -
res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_60D6097707281E79.dll/cmsidewiki.html
O8 - Extra context menu item: RoboForm Toolbar -
file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Save Forms -
file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} -
file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} -
file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} -
file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} -
file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: (no name) - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files\KeyScrambler\KeyScramblerIE.dll
O9 - Extra 'Tools' menuitem: &KeyScrambler... - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files\KeyScrambler\KeyScramblerIE.dll
O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} -
file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} -
file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - (no file)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O13 - Gopher Prefix:
O17 - HKLM\System\CCS\Services\Tcpip\..\{7BA2E328-50AF-446B-A44C-BC131CB3F659}: NameServer = 208.67.222.222,208.67.220.220
O17 - HKLM\System\CCS\Services\Tcpip\..\{872D7EC5-B036-4FA0-9D70-2D42C4F0BF46}: NameServer = 208.67.222.222,208.67.220.220
O17 - HKLM\System\CS1\Services\Tcpip\..\{7BA2E328-50AF-446B-A44C-BC131CB3F659}: NameServer = 208.67.222.222,208.67.220.220
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O20 - AppInit_DLLs: c:\progra~1\agnitum\outpos~1\wl_hook.dll c:\progra~1\google\google~2\goec62~1.dll
O23 - Service: Agnitum Client Security Service (acssrv) - Agnitum Ltd. - C:\PROGRA~1\Agnitum\OUTPOS~1\acs.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\Windows\system32\agrsmsvc.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LogMeIn Hamachi 2.0 Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: MySQL - Unknown owner - C:\Program.exe (file missing)
O23 - Service: pinger - Unknown owner - C:\TOSHIBA\IVP\ISM\pinger.exe
O23 - Service: Swupdtmr - Unknown owner - c:\TOSHIBA\IVP\swupdate\swupdtmr.exe
O23 - Service: TeamViewer 4 (TeamViewer4) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version4\TeamViewer_Service.exe
O23 - Service: TOSHIBA Navi Support Service (TNaviSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA DVD PLAYER\TNaviSrv.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - TOSHIBA Corporation - C:\Windows\system32\TODDSrv.exe
O23 - Service: @%SystemRoot%\System32\TuneUpDefragService.exe,-1 (TuneUp.Defrag) - TuneUp Software - C:\Windows\System32\TuneUpDefragService.exe
O23 - Service: @%SystemRoot%\System32\TUProgSt.exe,-1 (TuneUp.ProgramStatisticsSvc) - TuneUp Software - C:\Windows\System32\TUProgSt.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: wampapache - Unknown owner - c:\wamp\bin\apache\apache2.2.11\bin\httpd.exe (file missing)
O23 - Service: wampmysqld - Unknown owner - c:\wamp\bin\mysql\mysql5.1.36\bin\mysqld.exe (file missing)
--
End of file - 12032 bytes
======Scheduled tasks folder======
C:\Windows\tasks\McDefragTask.job
C:\Windows\tasks\McQcTask.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDMIEHlprObj Class - C:\Program Files\Internet Download Manager\IDMIECC.dll [2009-01-22 161200]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{27B4851A-3207-45A2-B947-BE8AFE6163AB}]
McAfee Phishing Filter - c:\PROGRA~1\mcafee\msk\mskapbho.dll [2009-07-08 246800]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2B9F5787-88A5-4945-90E7-C4B18563BC5E}]
KeyScramblerBHO Class - C:\Program Files\KeyScrambler\KeyScramblerIE.dll [2009-03-24 833776]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{724d43a9-0d85-11d4-9908-00400523e39a}]
C:\Program Files\Siber Systems\AI RoboForm\roboform.dll [2009-08-04 5960520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - C:\Program Files\McAfee\VirusScan\scriptsn.dll [2009-09-16 62784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-12-12 263280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll [2009-12-12 764912]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll [2009-11-23 204048]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-01-08 41760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{724d43a0-0d85-11d4-9908-00400523e39a} - &RoboForm - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll [2009-08-04 5960520]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll [2009-11-23 204048]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2009-12-12 263280]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-06-22 894248]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-07-06 4669440]
"Skytel"=C:\Windows\Skytel.exe [2007-06-15 1826816]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2007-06-06 142104]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2007-06-06 154392]
"Persistence"=C:\Windows\system32\igfxpers.exe [2007-06-06 138008]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-18 1008184]
"KeyScrambler"=C:\Program Files\KeyScrambler\keyscrambler.exe [2009-03-24 510704]
"mcagent_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2009-10-29 1218008]
"McENUI"=C:\PROGRA~1\McAfee\MHN\McENUI.exe [2009-07-07 1176808]
"OutpostMonitor"=C:\PROGRA~1\Agnitum\OUTPOS~1\op_mon.exe [2009-04-28 2374464]
"OutpostFeedBack"=C:\Program Files\Agnitum\Outpost Firewall\feedback.exe [2009-04-28 428032]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"TOSCDSPD"=TOSCDSPD.EXE []
"Messenger (Yahoo!)"=C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe [2009-05-26 4351216]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\1145860967]
C:\Program Files\Toshiba Registration\Registration.exe [2007-03-19 65603]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-09-04 935288]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-10-03 35696]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus CX8400 Series]
C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATICEA.EXE [2007-02-15 179200]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Desktop Search]
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2007-08-09 1862144]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAAnotif]
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2007-03-21 174872]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\mcagent_exe]
C:\Program Files\McAfee.com\Agent\mcagent.exe [2009-10-29 1218008]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NDSTray.exe]
NDSTray.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre6\bin\jusched.exe [2010-01-08 149280]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-06-13 39408]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="c:\progra~1\agnitum\outpos~1\wl_hook.dll c:\progra~1\google\google~2\goec62~1.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2007-05-31 200704]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MpfService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\TOSHIBA\ivp\NetInt\Netint.exe"="C:\TOSHIBA\ivp\NetInt\Netint.exe:*:Enabled:NIE - Toshiba Software Upgrades Engine"
"C:\TOSHIBA\Ivp\ISM\pinger.exe"="C:\TOSHIBA\Ivp\ISM\pinger.exe:*:Enabled:Toshiba Software Upgrades Pinger"
"C:\Nexon\Combat Arms\CombatArms.exe"="C:\Nexon\Combat Arms\CombatArms.exe:*Enabled:CombatArms.exe"
"C:\Nexon\Combat Arms\Engine.exe"="C:\Nexon\Combat Arms\Engine.exe:*Enabled:Engine.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 3 months======
2010-01-08 17:25:32 ----D---- C:\rsit
2010-01-08 17:15:16 ----A---- C:\Windows\system32\javaws.exe
2010-01-08 17:15:16 ----A---- C:\Windows\system32\javaw.exe
2010-01-08 17:15:15 ----A---- C:\Windows\system32\java.exe
2010-01-08 17:14:37 ----D---- C:\Program Files\Java
2010-01-08 16:58:29 ----D---- C:\Program Files\Common Files\Adobe
2010-01-08 16:51:22 ----SHD---- C:\Config.Msi
2010-01-06 16:13:04 ----D---- C:\Windows\ERDNT
2010-01-06 16:12:19 ----D---- C:\Program Files\ERUNT
2010-01-01 12:28:23 ----D---- C:\Windows\Minidump
2009-12-27 14:11:19 ----D---- C:\ProgramData\Spybot - Search & Destroy
2009-12-27 14:11:19 ----D---- C:\Program Files\Spybot - Search & Destroy
2009-12-27 13:40:57 ----D---- C:\Program Files\SpywareBlaster
2009-12-27 13:29:56 ----D---- C:\Program Files\Agnitum
2009-12-27 13:29:34 ----D---- C:\ProgramData\Agnitum
2009-12-27 11:34:59 ----D---- C:\Program Files\Trend Micro
2009-12-24 14:21:13 ----A---- C:\Windows\system32\SpOrder.dll
2009-12-24 14:21:09 ----A---- C:\Windows\system32\VistaInfo32.dll
2009-12-10 19:26:20 ----D---- C:\Users\Andy\AppData\Roaming\gtk-2.0
2009-12-09 16:47:40 ----A---- C:\Windows\system32\mshtml.dll
2009-12-09 16:47:39 ----A---- C:\Windows\system32\ieframe.dll
2009-12-09 16:47:37 ----A---- C:\Windows\system32\wininet.dll
2009-12-09 16:47:37 ----A---- C:\Windows\system32\urlmon.dll
2009-12-09 16:47:37 ----A---- C:\Windows\system32\iertutil.dll
2009-12-09 16:47:36 ----A---- C:\Windows\system32\occache.dll
2009-12-09 16:47:36 ----A---- C:\Windows\system32\msfeeds.dll
2009-12-09 16:47:36 ----A---- C:\Windows\system32\iedkcs32.dll
2009-12-09 16:47:34 ----A---- C:\Windows\system32\msfeedsbs.dll
2009-12-09 16:47:34 ----A---- C:\Windows\system32\jsproxy.dll
2009-12-09 16:47:34 ----A---- C:\Windows\system32\ieUnatt.exe
2009-12-09 16:47:34 ----A---- C:\Windows\system32\ieui.dll
2009-12-09 16:47:34 ----A---- C:\Windows\system32\iesysprep.dll
2009-12-09 16:47:34 ----A---- C:\Windows\system32\iepeers.dll
2009-12-09 16:47:33 ----A---- C:\Windows\system32\msfeedssync.exe
2009-12-09 16:47:33 ----A---- C:\Windows\system32\iesetup.dll
2009-12-09 16:47:33 ----A---- C:\Windows\system32\iernonce.dll
2009-12-09 16:47:33 ----A---- C:\Windows\system32\ie4uinit.exe
2009-12-09 16:21:35 ----A---- C:\Windows\system32\winhttp.dll
2009-12-09 16:18:01 ----A---- C:\Windows\system32\nshhttp.dll
2009-12-09 16:18:01 ----A---- C:\Windows\system32\httpapi.dll
2009-12-09 16:16:29 ----A---- C:\Windows\system32\rastls.dll
2009-12-03 17:30:55 ----D---- C:\Users\Andy\AppData\Roaming\Apple Computer
2009-12-03 17:29:52 ----A---- C:\Windows\system32\GEARAspi.dll
2009-12-03 17:29:51 ----DC---- C:\Windows\system32\DRVSTORE
2009-12-03 17:28:13 ----D---- C:\Program Files\iPod
2009-12-03 17:28:09 ----D---- C:\ProgramData\{755AC846-7372-4AC8-8550-C52491DAA8BD}
2009-12-03 17:28:09 ----D---- C:\Program Files\iTunes
2009-12-03 17:26:39 ----D---- C:\Program Files\Bonjour
2009-12-03 17:24:57 ----D---- C:\Program Files\QuickTime
2009-12-03 17:24:55 ----D---- C:\ProgramData\Apple Computer
2009-12-03 17:24:11 ----D---- C:\Program Files\Apple Software Update
2009-12-03 17:20:46 ----D---- C:\ProgramData\Apple
2009-12-03 17:20:46 ----D---- C:\Program Files\Common Files\Apple
2009-11-28 19:27:30 ----D---- C:\ProgramData\Nexon
2009-11-25 16:26:14 ----A---- C:\Windows\system32\tzres.dll
2009-11-25 07:18:04 ----A---- C:\Windows\system32\msxml6.dll
2009-11-25 07:18:04 ----A---- C:\Windows\system32\msxml3.dll
2009-11-24 16:53:44 ----D---- C:\ProgramData\MySQL
2009-11-18 22:11:02 ----D---- C:\Users\Andy\AppData\Roaming\MySQL
2009-11-11 17:49:20 ----A---- C:\Windows\system32\WSDApi.dll
2009-11-06 19:51:23 ----D---- C:\Program Files\GIMP-2.0
2009-11-05 16:09:35 ----D---- C:\Users\Andy\AppData\Roaming\GetRightToGo
2009-11-04 06:45:22 ----D---- C:\Program Files\LogMeIn Hamachi
2009-11-03 15:56:04 ----A---- C:\Windows\system32\wups2.dll
2009-11-03 15:56:03 ----A---- C:\Windows\system32\wucltux.dll
2009-11-03 15:56:03 ----A---- C:\Windows\system32\wuaueng.dll
2009-11-03 15:56:03 ----A---- C:\Windows\system32\wuauclt.exe
2009-11-03 15:55:17 ----A---- C:\Windows\system32\wups.dll
2009-11-03 15:55:17 ----A---- C:\Windows\system32\wudriver.dll
2009-11-03 15:55:17 ----A---- C:\Windows\system32\wuapi.dll
2009-11-03 15:54:54 ----A---- C:\Windows\system32\wuwebv.dll
2009-11-03 15:54:54 ----A---- C:\Windows\system32\wuapp.exe
2009-11-03 07:14:15 ----D---- C:\Program Files\Windows Portable Devices
2009-11-03 07:11:41 ----A---- C:\Windows\system32\UIAnimation.dll
2009-11-03 07:11:38 ----A---- C:\Windows\system32\UIRibbonRes.dll
2009-11-03 07:11:38 ----A---- C:\Windows\system32\UIRibbon.dll
2009-11-03 07:10:54 ----A---- C:\Windows\system32\WMPhoto.dll
2009-11-03 07:10:50 ----A---- C:\Windows\system32\cdd.dll
2009-11-03 07:10:47 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2009-11-03 07:10:47 ----A---- C:\Windows\system32\d3d10warp.dll
2009-11-03 07:10:46 ----A---- C:\Windows\system32\XpsRasterService.dll
2009-11-03 07:10:46 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2009-11-03 07:10:46 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2009-11-03 07:10:46 ----A---- C:\Windows\system32\WindowsCodecs.dll
2009-11-03 07:10:46 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2009-11-03 07:10:46 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2009-11-03 07:10:46 ----A---- C:\Windows\system32\dxdiagn.dll
2009-11-03 07:10:46 ----A---- C:\Windows\system32\dxdiag.exe
2009-11-03 07:10:46 ----A---- C:\Windows\system32\d2d1.dll
2009-11-03 07:10:45 ----A---- C:\Windows\system32\xpsservices.dll
2009-11-03 07:10:45 ----A---- C:\Windows\system32\XpsPrint.dll
2009-11-03 07:10:45 ----A---- C:\Windows\system32\OpcServices.dll
2009-11-03 07:10:45 ----A---- C:\Windows\system32\FntCache.dll
2009-11-03 07:10:45 ----A---- C:\Windows\system32\dxgi.dll
2009-11-03 07:10:45 ----A---- C:\Windows\system32\DWrite.dll
2009-11-03 07:10:45 ----A---- C:\Windows\system32\d3d11.dll
2009-11-03 07:10:45 ----A---- C:\Windows\system32\d3d10level9.dll
2009-11-03 07:10:45 ----A---- C:\Windows\system32\d3d10core.dll
2009-11-03 07:10:45 ----A---- C:\Windows\system32\d3d10_1core.dll
2009-11-03 07:10:44 ----A---- C:\Windows\system32\d3d10_1.dll
2009-11-03 07:10:44 ----A---- C:\Windows\system32\d3d10.dll
2009-11-03 07:10:10 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2009-11-03 07:10:10 ----A---- C:\Windows\system32\wpdbusenum.dll
2009-11-03 07:10:10 ----A---- C:\Windows\system32\BthMtpContextHandler.dll
2009-11-03 07:09:56 ----A---- C:\Windows\system32\PortableDeviceConnectApi.dll
2009-11-03 07:09:48 ----A---- C:\Windows\system32\WpdMtpUS.dll
2009-11-03 07:09:48 ----A---- C:\Windows\system32\WpdConns.dll
2009-11-03 07:09:47 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2009-11-03 07:09:47 ----A---- C:\Windows\system32\wpdshext.dll
2009-11-03 07:09:47 ----A---- C:\Windows\system32\WpdMtp.dll
2009-11-03 07:09:47 ----A---- C:\Windows\system32\wpd_ci.dll
2009-11-03 07:09:47 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2009-11-03 07:09:47 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2009-11-03 07:09:47 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2009-11-03 07:09:46 ----A---- C:\Windows\system32\WPDSp.dll
2009-11-03 07:09:46 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2009-11-03 07:07:52 ----A---- C:\Windows\system32\oleaccrc.dll
2009-11-03 07:07:50 ----A---- C:\Windows\system32\UIAutomationCore.dll
2009-11-03 07:07:50 ----A---- C:\Windows\system32\oleacc.dll
2009-10-30 05:57:01 ----A---- C:\Windows\system32\unregmp2.exe
2009-10-30 05:56:34 ----A---- C:\Windows\system32\wmp.dll
2009-10-30 05:55:28 ----A---- C:\Windows\system32\wmploc.DLL
2009-10-27 15:25:36 ----D---- C:\Users\Andy\AppData\Roaming\HotzAdam
2009-10-21 18:02:36 ----D---- C:\Program Files\Microsoft SQL Server
2009-10-21 18:02:29 ----D---- C:\Program Files\Microsoft Silverlight
2009-10-21 18:02:18 ----D---- C:\Program Files\Microsoft Synchronization Services
2009-10-21 18:02:17 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2009-10-21 17:56:08 ----D---- C:\Program Files\Microsoft Visual Studio 9.0
2009-10-21 17:55:14 ----D---- C:\Program Files\Microsoft SDKs
2009-10-19 19:58:42 ----D---- C:\Users\Andy\AppData\Roaming\Dev-Cpp
2009-10-14 14:44:45 ----A---- C:\Windows\system32\msv1_0.dll
2009-10-14 14:44:36 ----A---- C:\Windows\system32\ntoskrnl.exe
2009-10-14 14:44:36 ----A---- C:\Windows\system32\ntkrnlpa.exe
2009-10-14 14:44:30 ----A---- C:\Windows\system32\msasn1.dll
2009-10-14 14:43:50 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2009-10-09 18:30:19 ----D---- C:\Program Files\AIM6
======List of files/folders modified in the last 3 months======
2010-01-08 17:25:39 ----D---- C:\Windows\Temp
2010-01-08 17:20:27 ----D---- C:\Windows
2010-01-08 17:15:32 ----SHD---- C:\Windows\Installer
2010-01-08 17:15:16 ----AD---- C:\Windows\System32
2010-01-08 17:14:44 ----A---- C:\Windows\system32\deploytk.dll
2010-01-08 17:14:37 ----RD---- C:\Program Files
2010-01-08 17:14:27 ----SHD---- C:\System Volume Information
2010-01-08 17:11:52 ----D---- C:\Program Files\Common Files
2010-01-08 16:58:53 ----D---- C:\ProgramData\Adobe
2010-01-08 16:58:29 ----D---- C:\Program Files\Adobe
2010-01-08 16:58:14 ----D---- C:\Windows\system32\catroot2
2010-01-08 16:53:45 ----D---- C:\Users\Andy\AppData\Roaming\DMCache
2010-01-08 16:36:08 ----D---- C:\Windows\Prefetch
2010-01-08 16:19:08 ----D---- C:\Windows\inf
2010-01-08 16:19:08 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-01-06 06:55:19 ----D---- C:\Program Files\Mozilla Firefox
2010-01-02 22:15:23 ----D---- C:\Windows\system32\drivers
2009-12-30 22:52:28 ----D---- C:\Windows\system32\config
2009-12-29 16:02:47 ----D---- C:\Windows\Debug
2009-12-27 14:11:19 ----HD---- C:\ProgramData
2009-12-27 13:34:01 ----D---- C:\Windows\system32\catroot
2009-12-23 14:12:58 ----SHD---- C:\Boot
2009-12-22 09:47:19 ----D---- C:\ProgramData\Google
2009-12-22 09:47:18 ----D---- C:\Program Files\Google
2009-12-22 09:47:15 ----D---- C:\Windows\Tasks
2009-12-21 21:51:58 ----RSD---- C:\Windows\Fonts
2009-12-18 06:50:21 ----D---- C:\Program Files\McAfee
2009-12-09 17:30:57 ----D---- C:\Windows\rescache
2009-12-09 17:12:37 ----D---- C:\Windows\winsxs
2009-12-09 16:59:08 ----D---- C:\Windows\system32\migration
2009-12-09 16:59:05 ----D---- C:\Program Files\Internet Explorer
2009-12-09 16:59:04 ----D---- C:\Windows\system32\en-US
2009-12-09 16:59:03 ----D---- C:\Program Files\Windows Mail
2009-12-01 20:28:58 ----D---- C:\Nexon
2009-12-01 19:08:05 ----D---- C:\ProgramData\McAfee
2009-12-01 12:06:19 ----A---- C:\Windows\system32\mrt.exe
2009-11-21 18:41:14 ----D---- C:\Windows\system32\LogFiles
2009-11-11 08:52:43 ----D---- C:\Windows\system32\Msdtc
2009-11-11 08:52:38 ----D---- C:\Windows\system32\wbem
2009-11-11 08:51:35 ----D---- C:\Windows\system32\spool
2009-11-11 08:51:35 ----D---- C:\Windows\system32\CodeIntegrity
2009-11-11 08:51:30 ----D---- C:\Windows\registration
2009-11-07 10:53:54 ----D---- C:\ProgramData\Ten Thumbs Typing Tutor
2009-11-06 17:22:50 ----SD---- C:\Users\Andy\AppData\Roaming\Microsoft
2009-11-03 15:45:27 ----D---- C:\Windows\system32\Tasks
2009-11-03 07:14:06 ----D---- C:\Windows\system32\pt-BR
2009-11-03 07:14:05 ----D---- C:\Windows\system32\uk-UA
2009-11-03 07:14:05 ----D---- C:\Windows\system32\pt-PT
2009-11-03 07:14:05 ----D---- C:\Windows\system32\pl-PL
2009-11-03 07:14:05 ----D---- C:\Windows\system32\ko-KR
2009-11-03 07:14:05 ----D---- C:\Windows\system32\it-IT
2009-11-03 07:14:05 ----D---- C:\Windows\system32\he-IL
2009-11-03 07:14:05 ----D---- C:\Windows\system32\bg-BG
2009-11-03 07:14:04 ----D---- C:\Windows\system32\zh-HK
2009-11-03 07:14:04 ----D---- C:\Windows\system32\sl-SI
2009-11-03 07:14:04 ----D---- C:\Windows\system32\nl-NL
2009-11-03 07:14:04 ----D---- C:\Windows\system32\hu-HU
2009-11-03 07:14:04 ----D---- C:\Windows\system32\hr-HR
2009-11-03 07:14:04 ----D---- C:\Windows\system32\el-GR
2009-11-03 07:14:03 ----D---- C:\Windows\system32\tr-TR
2009-11-03 07:14:03 ----D---- C:\Windows\system32\th-TH
2009-11-03 07:14:03 ----D---- C:\Windows\system32\sv-SE
2009-11-03 07:14:03 ----D---- C:\Windows\system32\sr-Latn-CS
2009-11-03 07:14:03 ----D---- C:\Windows\system32\fr-FR
2009-11-03 07:14:03 ----D---- C:\Windows\system32\fi-FI
2009-11-03 07:14:02 ----D---- C:\Windows\system32\zh-TW
2009-11-03 07:14:02 ----D---- C:\Windows\system32\sk-SK
2009-11-03 07:14:02 ----D---- C:\Windows\system32\lv-LV
2009-11-03 07:14:02 ----D---- C:\Windows\system32\lt-LT
2009-11-03 07:14:02 ----D---- C:\Windows\system32\et-EE
2009-11-03 07:14:02 ----D---- C:\Windows\system32\es-ES
2009-11-03 07:14:02 ----D---- C:\Windows\system32\de-DE
2009-11-03 07:14:01 ----D---- C:\Windows\system32\zh-CN
2009-11-03 07:14:01 ----D---- C:\Windows\system32\ro-RO
2009-11-03 07:14:01 ----D---- C:\Windows\system32\ja-JP
2009-11-03 07:14:01 ----D---- C:\Windows\system32\cs-CZ
2009-11-03 07:14:01 ----D---- C:\Windows\system32\ar-SA
2009-11-03 07:14:00 ----D---- C:\Windows\system32\ru-RU
2009-11-03 07:14:00 ----D---- C:\Windows\system32\nb-NO
2009-11-03 07:14:00 ----D---- C:\Windows\system32\da-DK
2009-11-02 20:42:06 ----N---- C:\Windows\system32\MpSigStub.exe
2009-10-30 06:13:10 ----D---- C:\Program Files\Windows Media Player
2009-10-21 18:20:01 ----D---- C:\Windows\Microsoft.NET
2009-10-21 18:19:48 ----RSD---- C:\Windows\assembly
2009-10-21 18:02:23 ----SD---- C:\ProgramData\Microsoft
2009-10-21 18:02:00 ----D---- C:\ProgramData\Microsoft Help
2009-10-21 17:56:25 ----D---- C:\Program Files\Common Files\microsoft shared
2009-10-12 18:21:14 ----D---- C:\Program Files\Common Files\AOL
2009-10-12 18:21:07 ----D---- C:\ProgramData\Viewpoint
2009-10-09 18:30:49 ----SD---- C:\Windows\Downloaded Program Files
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 afw;Agnitum Firewall Driver; C:\Windows\system32\DRIVERS\afw.sys [2009-02-18 29208]
R1 mfehidk;McAfee Inc. mfehidk; C:\Windows\system32\drivers\mfehidk.sys [2009-09-16 214664]
R1 MPFP;MPFP; C:\Windows\System32\Drivers\Mpfp.sys [2009-07-16 130424]
R1 SandBox;SandBox; \??\C:\Windows\system32\drivers\SandBox.sys [2009-04-06 704384]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-01-23 42496]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-07-30 38400]
R3 Afc;PPdus ASPI Shell; C:\Windows\system32\drivers\Afc.sys [2005-02-23 11776]
R3 afwcore;afwcore; C:\Windows\system32\drivers\afwcore.sys [2009-02-10 307224]
R3 AgereSoftModem;TOSHIBA V92 Software Modem; C:\Windows\system32\DRIVERS\AGRSM.sys [2006-11-28 1161888]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-18 14208]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2009-05-18 26600]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-04-23 26176]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2007-05-31 1774080]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-07-18 1841312]
R3 KeyScrambler;KeyScrambler; C:\Windows\System32\drivers\keyscrambler.sys [2009-01-18 114024]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\Windows\system32\drivers\mfeavfk.sys [2009-09-16 79816]
R3 mfebopk;McAfee Inc. mfebopk; C:\Windows\system32\drivers\mfebopk.sys [2009-09-16 35272]
R3 mfesmfk;McAfee Inc. mfesmfk; C:\Windows\system32\drivers\mfesmfk.sys [2009-09-16 40552]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATKACPI.sys [2006-12-14 7680]
R3 RTL8023xp;Realtek 10/100 NIC Family NDIS x86 Driver; C:\Windows\system32\DRIVERS\Rtnicxp.sys [2007-07-13 50688]
R3 RTL8187B;Realtek RTL8187B Wireless 802.11g 54Mbps USB 2.0 Network Adapter; C:\Windows\system32\DRIVERS\RTL8187B.sys [2007-06-01 252416]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-10 89088]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-06-22 187440]
R3 tdcmdpst;TOSHIBA Writing Engine Filter Driver; C:\Windows\system32\DRIVERS\tdcmdpst.sys [2006-10-18 16128]
R3 teamviewervpn;TeamViewer VPN Adapter; C:\Windows\system32\DRIVERS\teamviewervpn.sys [2008-01-25 25088]
S2 npkcrypt;npkcrypt; \??\C:\Nexon\MapleStory V55\npkcrypt.sys []
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632]
S3 EagleNT;EagleNT; \??\C:\Windows\system32\drivers\EagleNT.sys []
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-01 235520]
S3 mferkdk;McAfee Inc. mferkdk; C:\Windows\system32\drivers\mferkdk.sys [2009-09-16 34248]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192]
S3 msloop;Microsoft Loopback Adapter Driver; C:\Windows\system32\DRIVERS\loop.sys [2008-01-18 6656]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2009-08-28 40448]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-18 35328]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-09-30 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-18 83328]
S4 KR10I;KR10I; C:\Windows\system32\drivers\kr10i.sys [2006-11-09 219264]
S4 KR10N;KR10N; C:\Windows\system32\drivers\kr10n.sys [2006-11-09 211072]
S4 KR3NPXP;KR3NPXP; C:\Windows\system32\drivers\kr3npxp.sys [2006-09-27 479488]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\Windows\system32\agrsmsvc.exe [2006-10-05 9216]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-08-28 144672]
R2 ASLDRService;ASLDR Service; C:\Program Files\ATK Hotkey\ASLDRSrv.exe [2007-02-05 94208]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 CFSvcs;ConfigFree Service; C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe [2006-11-14 40960]
R2 Hamachi2Svc;LogMeIn Hamachi 2.0 Tunneling Engine; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2009-10-29 1074568]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2007-03-21 355096]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; C:\Program Files\McAfee\SiteAdvisor\McSACore.exe [2009-12-08 93320]
R2 mcmscsvc;McAfee Services; C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe [2009-07-09 865832]
R2 McNASvc;McAfee Network Agent; c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe [2009-07-07 2482848]
R2 McProxy;McAfee Proxy Service; c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe [2009-07-08 359952]
R2 McShield;McAfee Real-time Scanner; C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe [2009-09-16 144704]
R2 MpfService;McAfee Personal Firewall Service; C:\Program Files\McAfee\MPF\MPFSrv.exe [2009-10-27 895696]
R2 MSK80Service;McAfee Anti-Spam Service; C:\Program Files\McAfee\MSK\MskSrver.exe [2009-07-08 26640]
R2 pinger;pinger; C:\TOSHIBA\IVP\ISM\pinger.exe [2007-01-25 136816]
R2 Swupdtmr;Swupdtmr; c:\TOSHIBA\IVP\swupdate\swupdtmr.exe [2007-01-25 63096]
R2 TeamViewer4;TeamViewer 4; C:\Program Files\TeamViewer\Version4\TeamViewer_Service.exe [2009-02-27 185640]
R2 TNaviSrv;TOSHIBA Navi Support Service; C:\Program Files\TOSHIBA\TOSHIBA DVD PLAYER\TNaviSrv.exe [2007-07-26 77824]
R2 TODDSrv;TOSHIBA Optical Disc Drive Service; C:\Windows\system32\TODDSrv.exe [2006-05-25 114688]
R2 TuneUp.ProgramStatisticsSvc;@%SystemRoot%\System32\TUProgSt.exe,-1; C:\Windows\System32\TUProgSt.exe [2009-06-09 603904]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2006-08-23 49152]
R2 UxTuneUp;@%SystemRoot%\System32\uxtuneup.dll,-4096; C:\Windows\System32\svchost.exe [2008-01-18 21504]
R3 McSysmon;McAfee SystemGuards; C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe [2009-09-16 606736]
S2 acssrv;Agnitum Client Security Service; C:\PROGRA~1\Agnitum\OUTPOS~1\acs.exe [2009-04-28 1195008]
S2 MySQL;MySQL; C:\Program Files\MySQL\MySQL Server 5.1\bin\mysqld --defaults-file=C:\Program Files\MySQL\MySQL Server 5.1\my.ini MySQL []
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-18 21504]
S3 GoogleDesktopManager;GoogleDesktopManager; C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2007-08-09 1862144]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-06-13 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2009-11-12 545568]
S3 McODS;McAfee Scanner; C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe [2009-09-16 365072]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 TuneUp.Defrag;@%SystemRoot%\System32\TuneUpDefragService.exe,-1; C:\Windows\System32\TuneUpDefragService.exe [2009-06-09 360192]
S3 usprserv;User Privilege Service; C:\Windows\System32\svchost.exe [2008-01-18 21504]
S3 wampapache;wampapache; c:\wamp\bin\apache\apache2.2.11\bin\httpd.exe -k runservice []
S3 wampmysqld;wampmysqld; c:\wamp\bin\mysql\mysql5.1.36\bin\mysqld.exe wampmysqld []
-----------------EOF-----------------