Logfile of random's system information tool 1.06 (written by random/random)
Run by Admin New at 2010-02-14 12:25:18
Microsoft Windows XP Professional Service Pack 3
System drive C: has 55 GB (76%) free of 73 GB
Total RAM: 1013 MB (59% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:25:30 PM, on 14/02/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16981)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Tall Emu\Online Armor\OAcat.exe
C:\Program Files\Tall Emu\Online Armor\oasrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\IBM ThinkVantage\Rescue and Recovery\rrservice.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\IBM ThinkVantage\SafeGuard PrivateDisk\pdservice.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\Program Files\IBM ThinkVantage\Client Security Solution\cssauth.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe
C:\Program Files\Tall Emu\Online Armor\oaui.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Secunia\PSI\psi.exe
C:\Program Files\Tall Emu\Online Armor\OAhlp.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Admin New\desktop\rsit.exe
C:\Documents and Settings\Admin New\Desktop\Admin New.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page =
http://go.microsoft.com/fwlink/?LinkId=54843O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [PDService.exe] "C:\Program Files\IBM ThinkVantage\SafeGuard PrivateDisk\pdservice.exe"
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [cssauth] "C:\Program Files\IBM ThinkVantage\Client Security Solution\cssauth.exe" silent
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [WinPatrol] C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe -expressboot
O4 - HKLM\..\Run: [@OnlineArmor GUI] "C:\Program Files\Tall Emu\Online Armor\oaui.exe"
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: Secunia PSI.lnk = C:\Program Files\Secunia\PSI\psi.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) -
http://security.symantec.com/sscv6/Shar ... vSniff.cabO16 - DPF: {2DAD3559-2923-4935-AD49-B673D2539944} (IASRunner Class) -
http://www-307.ibm.com/pc/support/acpir.cabO16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} -
http://www.eset.eu/buxus/docs/OnlineScanner.cabO16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) -
http://security.symantec.com/sscv6/Shar ... /cabsa.cabO16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://update.microsoft.com/microsoftup ... 7910773562O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} -
http://wwwimages.adobe.com/www.adobe.co ... nos/gp.cabO16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://fpdownload2.macromedia.com/get/s ... wflash.cabO16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} -
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cabO23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Diskeeper - Diskeeper Corporation - C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Online Armor Helper Service (OAcat) - Tall Emu - C:\Program Files\Tall Emu\Online Armor\OAcat.exe
O23 - Service: IBM PSA Access Driver Control (PsaSrv) - Unknown owner - C:\WINDOWS\system32\PsaSrv.exe (file missing)
O23 - Service: Online Armor (SvcOnlineArmor) - Tall Emu - C:\Program Files\Tall Emu\Online Armor\oasrv.exe
O23 - Service: TSS Core Service (TSSCoreService) - IBM - C:\Program Files\IBM ThinkVantage\Client Security Solution\ibmtcsd.exe
O23 - Service: TVT Backup Service - Unknown owner - C:\Program Files\IBM ThinkVantage\Rescue and Recovery\rrservice.exe
--
End of file - 6372 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\Disk Cleanup.job
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMAXPnP"=C:\Program Files\Analog Devices\Core\smax4pnp.exe [2005-05-20 925696]
"PDService.exe"=C:\Program Files\IBM ThinkVantage\SafeGuard PrivateDisk\pdservice.exe [2005-07-07 49152]
"DLA"=C:\WINDOWS\System32\DLA\DLACTRLW.EXE [2005-08-01 122940]
"cssauth"=C:\Program Files\IBM ThinkVantage\Client Security Solution\cssauth.exe [2005-08-02 1988144]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-01-11 246504]
"WinPatrol"=C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe [2009-10-10 320832]
"@OnlineArmor GUI"=C:\Program Files\Tall Emu\Online Armor\oaui.exe [2009-12-05 6622920]
"avast5"=C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-02-11 2756488]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]
C:\Documents and Settings\Admin New\Start Menu\Programs\Startup
Secunia PSI.lnk - C:\Program Files\Secunia\PSI\psi.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-06-08 131072]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\NavLogon]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2009-03-11 239496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{4F07DA45-8170-4859-9B5F-037EF2970034}"=C:\PROGRA~1\TALLEM~1\ONLINE~1\oaevent.dll [2009-12-05 923336]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{ac75fcf0-0d07-11df-a513-0010c6b4a8c8}]
shell\AutoRun\command - E:\LaunchU3.exe -a
======List of files/folders created in the last 1 months======
2010-02-13 13:43:49 ----A---- C:\WINDOWS\system32\aswBoot.exe
2010-02-13 13:27:52 ----D---- C:\Documents and Settings\All Users\Application Data\Mozilla Firefox
2010-02-13 08:36:30 ----D---- C:\WINDOWS\SxsCaPendDel
2010-02-11 21:48:53 ----D---- C:\rsit
2010-02-11 21:11:05 ----D---- C:\_OTM
2010-02-11 16:18:51 ----D---- C:\WINDOWS\ERDNT
2010-02-11 16:17:19 ----D---- C:\Program Files\ERUNT
2010-02-10 11:54:14 ----HDC---- C:\WINDOWS\$NtUninstallKB978262$
2010-02-10 11:53:41 ----HDC---- C:\WINDOWS\$NtUninstallKB971468$
2010-02-10 11:51:58 ----HDC---- C:\WINDOWS\$NtUninstallKB978037$
2010-02-10 11:51:51 ----HDC---- C:\WINDOWS\$NtUninstallKB975713$
2010-02-10 11:51:44 ----HDC---- C:\WINDOWS\$NtUninstallKB978251$
2010-02-10 11:51:38 ----HDC---- C:\WINDOWS\$NtUninstallKB975560$
2010-02-10 11:51:29 ----HDC---- C:\WINDOWS\$NtUninstallKB977914$
2010-02-10 11:51:20 ----HDC---- C:\WINDOWS\$NtUninstallKB978706$
2010-02-10 11:51:08 ----HDC---- C:\WINDOWS\$NtUninstallKB977165$
2010-01-31 03:22:28 ----A---- C:\WINDOWS\is-V7OER.exe
2010-01-30 15:50:43 ----D---- C:\Documents and Settings\Admin New\Application Data\Mozilla
2010-01-30 15:50:34 ----D---- C:\Program Files\Mozilla Firefox
2010-01-30 13:38:34 ----D---- C:\Downloads
2010-01-27 14:09:03 ----D---- C:\Documents and Settings\All Users\Application Data\Google
2010-01-27 13:44:47 ----D---- C:\Program Files\Secunia
2010-01-27 13:42:35 ----D---- C:\WINDOWS\Sun
2010-01-27 13:37:00 ----HDC---- C:\WINDOWS\$NtUninstallKB970430$
2010-01-27 13:36:53 ----HDC---- C:\WINDOWS\$NtUninstallKB971737$
2010-01-21 13:59:51 ----D---- C:\Program Files\Google
2010-01-21 13:59:28 ----D---- C:\Program Files\Alwil Software
2010-01-21 13:59:28 ----D---- C:\Documents and Settings\All Users\Application Data\Alwil Software
2010-01-21 12:57:48 ----D---- C:\Documents and Settings\All Users\Application Data\OnlineArmor
2010-01-21 12:57:48 ----D---- C:\Documents and Settings\Admin New\Application Data\OnlineArmor
2010-01-21 12:57:28 ----D---- C:\Program Files\Tall Emu
2010-01-21 12:53:36 ----D---- C:\Documents and Settings\Admin New\Application Data\WinPatrol
2010-01-21 12:53:29 ----D---- C:\Program Files\BillP Studios
2010-01-21 12:45:26 ----D---- C:\Program Files\Common Files\Java
2010-01-21 12:45:26 ----D---- C:\Documents and Settings\All Users\Application Data\Sun
2010-01-21 12:45:06 ----A---- C:\WINDOWS\system32\javaws.exe
2010-01-21 12:45:06 ----A---- C:\WINDOWS\system32\javaw.exe
2010-01-21 12:45:06 ----A---- C:\WINDOWS\system32\java.exe
2010-01-21 12:45:06 ----A---- C:\WINDOWS\system32\deploytk.dll
2010-01-21 12:44:52 ----D---- C:\Program Files\Java
2010-01-21 12:44:24 ----D---- C:\Documents and Settings\Admin New\Application Data\Sun
2010-01-21 06:05:12 ----D---- C:\Program Files\Common Files\Adobe
2010-01-21 06:02:22 ----HD---- C:\WINDOWS\PIF
2010-01-21 04:24:50 ----HDC---- C:\WINDOWS\$NtUninstallKB960859$
2010-01-21 04:24:30 ----HDC---- C:\WINDOWS\$NtUninstallKB958869$
2010-01-21 04:24:24 ----HDC---- C:\WINDOWS\$NtUninstallKB976098-v2$
2010-01-21 04:24:19 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-01-21 04:24:13 ----HDC---- C:\WINDOWS\$NtUninstallKB974318$
2010-01-21 04:24:08 ----HDC---- C:\WINDOWS\$NtUninstallKB969059$
2010-01-21 04:23:50 ----HDC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2010-01-21 04:22:28 ----HDC---- C:\WINDOWS\$NtUninstallKB971657$
2010-01-21 04:22:23 ----HDC---- C:\WINDOWS\$NtUninstallKB971557$
2010-01-21 04:22:17 ----HDC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2010-01-21 04:22:13 ----HDC---- C:\WINDOWS\$NtUninstallKB972270$
2010-01-21 04:22:07 ----HDC---- C:\WINDOWS\$NtUninstallKB956744$
2010-01-21 04:22:02 ----HDC---- C:\WINDOWS\$NtUninstallKB974112$
2010-01-21 04:21:57 ----HDC---- C:\WINDOWS\$NtUninstallKB956844$
2010-01-21 04:21:37 ----HDC---- C:\WINDOWS\$NtUninstallKB973869$
2010-01-21 04:21:32 ----HDC---- C:\WINDOWS\$NtUninstallKB975025$
2010-01-21 04:21:27 ----HDC---- C:\WINDOWS\$NtUninstallKB974571$
2010-01-21 04:21:21 ----HDC---- C:\WINDOWS\$NtUninstallKB973507$
2010-01-21 04:19:34 ----HDC---- C:\WINDOWS\$NtUninstallKB973687$
2010-01-21 04:19:13 ----HDC---- C:\WINDOWS\$NtUninstallKB973354$
2010-01-21 04:19:07 ----HDC---- C:\WINDOWS\$NtUninstallKB973904$
2010-01-21 04:18:27 ----HDC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2010-01-21 04:18:21 ----HDC---- C:\WINDOWS\$NtUninstallKB974392$
2010-01-21 04:17:08 ----HDC---- C:\WINDOWS\$NtUninstallKB971486$
2010-01-21 04:17:01 ----HDC---- C:\WINDOWS\$NtUninstallKB973815$
2010-01-21 04:16:55 ----HDC---- C:\WINDOWS\$NtUninstallKB973525$
2010-01-21 04:16:36 ----HDC---- C:\WINDOWS\$NtUninstallKB971961$
2010-01-21 04:16:30 ----HDC---- C:\WINDOWS\$NtUninstallKB975467$
2010-01-21 04:16:24 ----HDC---- C:\WINDOWS\$NtUninstallKB968389$
2010-01-21 04:16:16 ----HDC---- C:\WINDOWS\$NtUninstallKB969947$
2010-01-21 02:49:44 ----D---- C:\Program Files\Trend Micro
======List of files/folders modified in the last 1 months======
2010-02-14 12:25:26 ----D---- C:\WINDOWS\Prefetch
2010-02-14 12:22:49 ----D---- C:\WINDOWS\Temp
2010-02-13 15:24:34 ----SHD---- C:\WINDOWS\Installer
2010-02-13 15:24:24 ----AD---- C:\WINDOWS
2010-02-13 13:44:06 ----D---- C:\WINDOWS\system32\drivers
2010-02-13 13:43:58 ----D---- C:\WINDOWS\WinSxS
2010-02-13 13:43:57 ----D---- C:\Program Files\Common Files\Microsoft Shared
2010-02-13 13:43:49 ----AD---- C:\WINDOWS\system32
2010-02-13 13:42:59 ----D---- C:\WINDOWS\system32\CatRoot2
2010-02-13 13:42:41 ----RSHD---- C:\RRbackups
2010-02-13 13:41:08 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-02-13 10:19:06 ----HD---- C:\WINDOWS\inf
2010-02-12 12:31:09 ----RD---- C:\Program Files
2010-02-12 12:14:24 ----D---- C:\WINDOWS\Help
2010-02-12 12:14:23 ----HD---- C:\Program Files\InstallShield Installation Information
2010-02-12 12:14:23 ----D---- C:\Program Files\ThinkVantage
2010-02-12 12:14:23 ----D---- C:\Icons
2010-02-12 11:49:43 ----D---- C:\Documents and Settings\Admin New\Application Data\SUPERAntiSpyware.com
2010-02-12 11:49:29 ----D---- C:\Program Files\Common Files
2010-02-12 11:49:28 ----D---- C:\Program Files\SUPERAntiSpyware
2010-02-12 11:47:36 ----D---- C:\Program Files\Lenovo
2010-02-12 11:32:00 ----A---- C:\WINDOWS\win.ini
2010-02-11 15:54:49 ----D---- C:\Program Files\Common Files\Symantec Shared
2010-02-11 15:54:42 ----SD---- C:\WINDOWS\Tasks
2010-02-10 12:44:07 ----D---- C:\WINDOWS\Minidump
2010-02-10 11:54:13 ----HD---- C:\WINDOWS\$hf_mig$
2010-02-10 11:53:44 ----A---- C:\WINDOWS\imsins.BAK
2010-02-10 11:53:42 ----RSHD---- C:\WINDOWS\system32\dllcache
2010-02-01 14:26:20 ----A---- C:\WINDOWS\system32\MRT.exe
2010-01-31 04:17:26 ----D---- C:\WINDOWS\WBEM
2010-01-31 03:45:06 ----SD---- C:\Documents and Settings\Admin New\Application Data\Microsoft
2010-01-31 03:23:20 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2010-01-30 15:23:06 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2010-01-27 13:57:08 ----D---- C:\WINDOWS\system32\wbem
2010-01-27 13:57:08 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2010-01-27 13:36:40 ----D---- C:\WINDOWS\system32\en-us
2010-01-27 13:36:40 ----D---- C:\Program Files\Internet Explorer
2010-01-27 13:36:32 ----D---- C:\WINDOWS\ie7updates
2010-01-21 12:41:47 ----D---- C:\Documents and Settings\All Users\Application Data\avg8
2010-01-21 12:35:12 ----D---- C:\Documents and Settings\All Users\Application Data\NOS
2010-01-21 12:34:55 ----SD---- C:\WINDOWS\Downloaded Program Files
2010-01-21 06:12:56 ----D---- C:\Program Files\Adobe
2010-01-21 05:59:34 ----D---- C:\WINDOWS\system32\appmgmt
2010-01-21 05:55:52 ----D---- C:\Program Files\Common Files\Adobe AIR
2010-01-21 05:13:14 ----D---- C:\WINDOWS\AppPatch
2010-01-21 04:19:15 ----D---- C:\Program Files\Outlook Express
2010-01-21 04:09:14 ----D---- C:\IBMSHARE
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 Aavmker4;avast! Asynchronous Virus Monitor; C:\WINDOWS\system32\drivers\Aavmker4.sys [2010-02-11 28880]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2010-02-11 162512]
R1 aswTdi;avast! Network Shield Support; C:\WINDOWS\system32\drivers\aswTdi.sys [2010-02-11 46672]
R1 DLACDBHM;DLACDBHM; C:\WINDOWS\System32\Drivers\DLACDBHM.SYS [2005-07-07 5628]
R1 DLARTL_N;DLARTL_N; C:\WINDOWS\System32\Drivers\DLARTL_N.SYS [2005-07-07 22684]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-13 36352]
R1 OADevice;OADriver; \??\C:\WINDOWS\system32\drivers\OADriver.sys []
R1 OAmon;OAmon; \??\C:\WINDOWS\system32\drivers\OAmon.sys []
R1 OAnet;OAnet; \??\C:\WINDOWS\system32\drivers\OAnet.sys []
R2 aswFsBlk;aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [2010-02-11 19024]
R2 aswMon2;aswMon2; C:\WINDOWS\system32\drivers\aswMon2.sys [2010-02-11 100432]
R2 DLABOIOM;DLABOIOM; C:\WINDOWS\System32\DLA\DLABOIOM.SYS [2005-08-01 25628]
R2 DLADResN;DLADResN; C:\WINDOWS\System32\DLA\DLADResN.SYS [2005-08-01 2496]
R2 DLAIFS_M;DLAIFS_M; C:\WINDOWS\System32\DLA\DLAIFS_M.SYS [2005-08-01 86524]
R2 DLAOPIOM;DLAOPIOM; C:\WINDOWS\System32\DLA\DLAOPIOM.SYS [2005-08-01 14684]
R2 DLAPoolM;DLAPoolM; C:\WINDOWS\System32\DLA\DLAPoolM.SYS [2005-08-01 6364]
R2 DLAUDF_M;DLAUDF_M; C:\WINDOWS\System32\DLA\DLAUDF_M.SYS [2005-08-01 87004]
R2 DLAUDFAM;DLAUDFAM; C:\WINDOWS\System32\DLA\DLAUDFAM.SYS [2005-08-01 92700]
R2 DRVNDDM;DRVNDDM; C:\WINDOWS\System32\Drivers\DRVNDDM.SYS [2005-07-07 40544]
R2 EGATHDRV;IBM eGatherer; \??\C:\WINDOWS\SYSTEM32\EGATHDRV.SYS []
R2 ibmfilter;ibmfilter; \??\C:\WINDOWS\system32\drivers\ibmfilter.sys []
R2 pmem;pmem; \??\C:\WINDOWS\System32\drivers\pmemnt.sys []
R2 PrivateDisk;PrivateDisk; \??\C:\Program Files\IBM ThinkVantage\SafeGuard PrivateDisk\PrivateDiskM.sys []
R2 smi2;smi2; \??\C:\Program Files\SMI2\smi2.sys []
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\ADIHdAud.sys [2005-07-19 163840]
R3 AEAudioService;AEAudio Service; C:\WINDOWS\system32\drivers\AEAudio.sys [2005-03-04 127872]
R3 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [2010-02-11 23376]
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e1e5132.sys [2008-12-05 241296]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-06-08 1050140]
R3 Pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2003-09-19 10368]
R3 psadd;Lenovo Parties Service Access Device Driver; C:\WINDOWS\system32\DRIVERS\psadd.sys [2007-02-19 21376]
R3 PSI;PSI; C:\WINDOWS\system32\DRIVERS\psi_mf.sys [2009-06-17 12648]
R3 SenFiltService;SenFilt Service; C:\WINDOWS\system32\drivers\Senfilt.sys [2005-08-11 393088]
R3 TPM;Winbond Trusted Platform Module; C:\WINDOWS\system32\DRIVERS\tpm.sys [2007-05-01 17792]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-13 14592]
S3 ac97intc;Intel(r) 82801 Audio Driver Install Service (WDM); C:\WINDOWS\system32\drivers\ac97intc.sys [2001-08-17 96256]
S3 ADM8511;ADMtek ADM8511/AN986 USB To Fast Ethernet Converter; C:\WINDOWS\system32\DRIVERS\ADM8511.SYS [2001-08-17 20160]
S3 E100B;Intel(R) PRO Adapter Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2001-08-17 117760]
S3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
S3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
S3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2004-08-04 1897408]
S3 TPM12;NSC Integrated Trusted Platform Module 1.2; C:\WINDOWS\system32\DRIVERS\nsctpm12.sys [2005-04-21 13056]
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S4 agp440;Intel AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agp440.sys [2008-04-13 42368]
S4 agpCPQ;Compaq AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\agpCPQ.sys [2008-04-13 44928]
S4 alim1541;ALI AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\alim1541.sys [2008-04-13 42752]
S4 amdagp;AMD AGP Bus Filter Driver; C:\WINDOWS\system32\DRIVERS\amdagp.sys [2008-04-13 43008]
S4 cbidf;cbidf; C:\WINDOWS\system32\DRIVERS\cbidf2k.sys [2001-08-17 13952]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\DRIVERS\intelide.sys [2008-04-13 5504]
S4 sisagp;SIS AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\sisagp.sys [2008-04-13 40960]
S4 viaagp;VIA AGP Bus Filter; C:\WINDOWS\system32\DRIVERS\viaagp.sys [2008-04-13 42240]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-02-11 40384]
R2 Diskeeper;Diskeeper; C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe [2005-09-28 622700]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-01-21 153376]
R2 OAcat;Online Armor Helper Service; C:\Program Files\Tall Emu\Online Armor\OAcat.exe [2009-12-05 1282248]
R2 SvcOnlineArmor;Online Armor; C:\Program Files\Tall Emu\Online Armor\oasrv.exe [2009-12-05 3291336]
R2 TSSCoreService;TSS Core Service; C:\Program Files\IBM ThinkVantage\Client Security Solution\ibmtcsd.exe [2005-08-02 722480]
R2 TVT Backup Service;TVT Backup Service; C:\Program Files\IBM ThinkVantage\Rescue and Recovery\rrservice.exe [2005-08-02 1372160]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2004-08-11 38912]
R3 avast! Mail Scanner;avast! Mail Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-02-11 40384]
R3 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-02-11 40384]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2004-07-15 32768]
S3 getPlusHelper;getPlus(R) Helper; C:\WINDOWS\System32\svchost.exe [2008-04-13 14336]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 PsaSrv;IBM PSA Access Driver Control; C:\WINDOWS\system32\PsaSrv.exe []
S3 WmcCds;Windows Media Connect (WMC); c:\program files\windows media connect\mswmccds.exe [2004-08-11 483328]
S3 WmcCdsLs;Windows Media Connect (WMC) Helper; C:\Program Files\Windows Media Connect\mswmcls.exe [2004-08-11 28160]
-----------------EOF-----------------