AVG installed. my C:\ is the printer card reader.
Operational drive is E:\ all others are either optical or storage drives (internal)
here is the old log. do you want a new log since nod32 is gone?
Logfile of random's system information tool 1.05 (written by random/random)
Run by Aqua at 2009-01-16 08:04:56
Microsoft Windows XP Professional Service Pack 3
System drive E: has 38 GB (50%) free of 76 GB
Total RAM: 2046 MB (68% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:05:08 AM, on 1/16/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
E:\WINDOWS\System32\smss.exe
E:\WINDOWS\system32\winlogon.exe
E:\WINDOWS\system32\services.exe
E:\WINDOWS\system32\lsass.exe
E:\WINDOWS\system32\svchost.exe
E:\WINDOWS\System32\svchost.exe
E:\WINDOWS\system32\spoolsv.exe
E:\Program Files\Java\jre6\bin\jqs.exe
E:\Program Files\Eset\nod32krn.exe
E:\WINDOWS\system32\nvsvc32.exe
E:\Program Files\SafeConnect\scManager.sys
E:\WINDOWS\system32\svchost.exe
E:\WINDOWS\Explorer.EXE
E:\WINDOWS\CTHELPER.EXE
E:\WINDOWS\system32\CTXFIHLP.EXE
E:\WINDOWS\SYSTEM32\CTXFISPI.EXE
E:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
E:\Program Files\Common Files\LogiShrd\LComMgr\LVComSX.exe
E:\WINDOWS\system32\RUNDLL32.EXE
E:\Program Files\Java\jre6\bin\jusched.exe
E:\Program Files\Eset\nod32kui.exe
E:\WINDOWS\system32\ctfmon.exe
E:\Documents and Settings\Aqua\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
E:\Program Files\Logitech\SetPoint\SetPoint.exe
E:\Program Files\SafeConnect\scClient.exe
E:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
E:\Program Files\AIM\aim.exe
E:\Program Files\Mozilla Firefox\firefox.exe
G:\sysreset\mirc.exe
E:\PROGRA~1\MICROS~2\Office\WINWORD.EXE
E:\Program Files\Common Files\Real\Update_OB\realsched.exe
E:\Program Files\Winamp\winamp.exe
F:\Downloads\RSIT.exe
F:\Downloads\Aqua.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - E:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - E:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - E:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE E:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [CTxfiHlp] CTXFIHLP.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "E:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [WinampAgent] "E:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "E:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LVCOMSX] "E:\Program Files\Common Files\LogiShrd\LComMgr\LVComSX.exe"
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE E:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] "E:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [IMJPMIG8.1] "E:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] E:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] E:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] E:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [nod32kui] "E:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [TkBellExe] "E:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [Vidalia] "E:\Program Files\Vidalia Bundle\Vidalia\vidalia.exe"
O4 - HKCU\..\Run: [ctfmon.exe] E:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Utopia Angel] "E:\utop\Angel.exe"
O4 - HKCU\..\Run: [Google Update] "E:\Documents and Settings\Aqua\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - Global Startup: Adobe Gamma Loader.lnk = E:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Logitech SetPoint.lnk = E:\Program Files\Logitech\SetPoint\SetPoint.exe
O4 - Global Startup: Microsoft Office.lnk = E:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: SafeConnect.lnk = ?
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - E:\Program Files\AIM\aim.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) -
http://www.kaspersky.com/kos/eng/partne ... nicode.cabO16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://fpdownload2.macromedia.com/get/s ... wflash.cabO18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - E:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe LM Service - Unknown owner - E:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Sony SPTI Service for DVE (ICDSPTSV) - Sony Corporation - E:\WINDOWS\system32\IcdSptSv.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - E:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - E:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - E:\Program Files\Eset\nod32krn.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - E:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SafeConnect Manager (SCManager) - Unknown owner - E:\Program Files\SafeConnect\scManager.sys servicestart (file missing)
--
End of file - 6561 bytes
======Scheduled tasks folder======
E:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-507921405-682003330-725345543-1003.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - E:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - E:\Program Files\Java\jre6\bin\ssv.dll [2008-12-20 320920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - E:\Program Files\Java\jre6\bin\jp2ssv.dll [2008-12-20 34816]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - E:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2008-12-20 73728]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=E:\WINDOWS\system32\NvCpl.dll [2007-12-05 8523776]
"nwiz"=nwiz.exe /install []
"CTHelper"=E:\WINDOWS\CTHELPER.EXE [2006-08-17 17920]
"CTxfiHlp"=E:\WINDOWS\system32\CTXFIHLP.EXE [2006-08-17 18944]
"Adobe Reader Speed Launcher"=E:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]
"WinampAgent"=E:\Program Files\Winamp\winampa.exe []
"Kernel and Hardware Abstraction Layer"=E:\WINDOWS\KHALMNPR.EXE [2008-02-29 76304]
"LogitechCommunicationsManager"=E:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe [2007-04-05 488984]
"LVCOMSX"=E:\Program Files\Common Files\LogiShrd\LComMgr\LVComSX.exe [2007-03-09 252704]
"NvMediaCenter"=E:\WINDOWS\system32\NvMcTray.dll [2007-12-05 81920]
"SunJavaUpdateSched"=E:\Program Files\Java\jre6\bin\jusched.exe [2008-12-20 136600]
"IMJPMIG8.1"=E:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2006-02-28 208952]
"MSPY2002"=E:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe [2006-02-28 59392]
"PHIME2002ASync"=E:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2006-02-28 455168]
"PHIME2002A"=E:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2006-02-28 455168]
"nod32kui"=E:\Program Files\Eset\nod32kui.exe [2008-12-30 949376]
"TkBellExe"=E:\Program Files\Common Files\Real\Update_OB\realsched.exe [2009-01-11 185872]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Vidalia"=E:\Program Files\Vidalia Bundle\Vidalia\vidalia.exe []
"ctfmon.exe"=E:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]
"Utopia Angel"=E:\utop\Angel.exe [2009-01-05 3552256]
"Google Update"=E:\Documents and Settings\Aqua\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2008-12-30 133104]
E:\Documents and Settings\All Users\Start Menu\Programs\Startup
Adobe Gamma Loader.lnk - E:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
Logitech SetPoint.lnk - E:\Program Files\Logitech\SetPoint\SetPoint.exe
Microsoft Office.lnk - E:\Program Files\Microsoft Office\Office\OSA9.EXE
SafeConnect.lnk - E:\Program Files\SafeConnect\scClient.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
e:\program files\common files\logitech\bluetooth\LBTWlgn.dll [2008-05-02 72208]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
E:\WINDOWS\system32\WgaLogon.dll [2008-09-05 241704]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WdfLoadGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"E:\Program Files\AIM\aim.exe"="E:\Program Files\AIM\aim.exe:*:Enabled:AOL Instant Messenger"
"E:\Program Files\Sophos\AutoUpdate\ALsvc.exe"="E:\Program Files\Sophos\AutoUpdate\ALsvc.exe:*:Enabled:ALsvc"
"E:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe"="E:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe:*:Enabled:hpqscnvw.exe"
"E:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="E:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"E:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe"="E:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe:*:Enabled:hpqnrs08.exe"
"C:\sysreset\mirc.exe"="C:\sysreset\mirc.exe:*:Enabled:mIRC"
"E:\Program Files\uTorrent\uTorrent.exe"="E:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"E:\Program Files\Internet Explorer\iexplore.exe"="E:\Program Files\Internet Explorer\iexplore.exe:*:Enabled:Internet Explorer"
"E:\Program Files\FlashGet\flashget.exe"="E:\Program Files\FlashGet\flashget.exe:*:Enabled:Flashget"
"E:\Program Files\Yahoo!\Messenger\YahooMessenger.exe"="E:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger"
"E:\Program Files\Yahoo!\Messenger\YServer.exe"="E:\Program Files\Yahoo!\Messenger\YServer.exe:*:Enabled:Yahoo! FT Server"
"G:\sysreset\mirc.exe"="G:\sysreset\mirc.exe:*:Enabled:mIRC"
"E:\Program Files\Stardock Games\Sins of a Solar Empire\Sins of a Solar Empire.exe"="E:\Program Files\Stardock Games\Sins of a Solar Empire\Sins of a Solar Empire.exe:*:Enabled:Sins of a Solar Empire"
"E:\Program Files\Messenger\msmsgs.exe"="E:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"E:\Program Files\MSN Messenger\msnmsgr.exe"="E:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"E:\Program Files\MSN Messenger\livecall.exe"="E:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"E:\Program Files\realplay.exe"="E:\Program Files\realplay.exe:*:Enabled:RealPlayer"
"E:\Program Files\Skype\Phone\Skype.exe"="E:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype. Take a deep breath "
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"E:\Program Files\MSN Messenger\msnmsgr.exe"="E:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"E:\Program Files\MSN Messenger\livecall.exe"="E:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
======List of files/folders created in the last 1 months======
2009-01-16 08:04:56 ----D---- E:\rsit
2009-01-13 20:31:41 ----HDC---- E:\WINDOWS\$NtUninstallKB958687$
2009-01-11 21:13:33 ----D---- E:\Program Files\templates
2009-01-11 21:13:33 ----A---- E:\Program Files\wmdmhelper.dll
2009-01-11 21:13:32 ----D---- E:\Program Files\Devices
2009-01-11 21:13:32 ----D---- E:\Program Files\CDBurning
2009-01-11 21:13:32 ----A---- E:\Program Files\tsasdk.dll
2009-01-11 21:13:32 ----A---- E:\Program Files\tpasdk.dll
2009-01-11 21:13:32 ----A---- E:\Program Files\tnetdtct.dll
2009-01-11 21:13:32 ----A---- E:\Program Files\rjprog.dll
2009-01-11 21:13:32 ----A---- E:\Program Files\rjdlg.dll
2009-01-11 21:13:32 ----A---- E:\Program Files\rjbres.dll
2009-01-11 21:13:32 ----A---- E:\Program Files\mmcdda32.dll
2009-01-11 21:13:32 ----A---- E:\Program Files\ierjplug.dll
2009-01-11 21:13:32 ----A---- E:\Program Files\fixrjb.exe
2009-01-11 21:13:32 ----A---- E:\Program Files\DUNZIP32.dll
2009-01-11 21:13:32 ----A---- E:\Program Files\dtdr3260.dll
2009-01-11 21:13:31 ----D---- E:\Program Files\Common Files\xing shared
2009-01-11 21:13:31 ----A---- E:\Program Files\rpwa3260.dll
2009-01-11 21:13:30 ----D---- E:\Program Files\producer
2009-01-11 21:13:30 ----D---- E:\Program Files\browserrecord
2009-01-11 21:13:30 ----A---- E:\Program Files\rpshellsearch.dll
2009-01-11 21:13:30 ----A---- E:\Program Files\rpbrowserrecordplugin.dll
2009-01-11 21:13:30 ----A---- E:\Program Files\RecordingManager.exe.manifest
2009-01-11 21:13:30 ----A---- E:\Program Files\RecordingManager.exe
2009-01-11 21:13:30 ----A---- E:\Program Files\dbghelp.dll
2009-01-11 21:13:29 ----D---- E:\Program Files\plugins
2009-01-11 21:13:29 ----A---- E:\Program Files\rjwmapln.dll
2009-01-11 21:13:28 ----A---- E:\Program Files\rpau3260.dll
2009-01-11 21:13:28 ----A---- E:\Program Files\RealNetworks License.txt
2009-01-11 21:13:28 ----A---- E:\Program Files\playrlic.txt
2009-01-11 21:13:27 ----D---- E:\Program Files\Netscape6
2009-01-11 21:13:27 ----D---- E:\Program Files\DataCache
2009-01-11 21:13:27 ----A---- E:\WINDOWS\system32\rmoc3260.dll
2009-01-11 21:13:27 ----A---- E:\Program Files\rpplugprot.dll
2009-01-11 21:13:27 ----A---- E:\Program Files\rdsf3260.dll
2009-01-11 21:13:27 ----A---- E:\Program Files\HXAudioDeviceHook.dll
2009-01-11 21:13:26 ----D---- E:\Program Files\rpplugins
2009-01-11 21:13:26 ----D---- E:\Program Files\library
2009-01-11 21:13:26 ----A---- E:\WINDOWS\system32\pndx5032.dll
2009-01-11 21:13:26 ----A---- E:\WINDOWS\system32\pndx5016.dll
2009-01-11 21:13:26 ----A---- E:\Program Files\rpshellextension.dll
2009-01-11 21:13:26 ----A---- E:\Program Files\rpshell.dll
2009-01-11 21:13:26 ----A---- E:\Program Files\rphelperapp.exe
2009-01-11 21:13:26 ----A---- E:\Program Files\realplay.exe.manifest
2009-01-11 21:13:26 ----A---- E:\Program Files\realplay.exe
2009-01-11 21:13:26 ----A---- E:\Program Files\realjbox.exe
2009-01-11 21:13:25 ----D---- E:\Program Files\Setup
2009-01-11 21:13:25 ----A---- E:\WINDOWS\system32\pncrt.dll
2009-01-11 21:13:25 ----A---- E:\WINDOWS\system32\msvcp71.dll
2008-12-30 15:02:04 ----A---- E:\WINDOWS\system32\imon.dll
2008-12-30 15:01:34 ----D---- E:\Program Files\ESET
2008-12-20 20:22:05 ----A---- E:\WINDOWS\system32\deploytk.dll
2008-12-18 00:06:37 ----D---- E:\Program Files\Spybot - Search & Destroy
2008-12-18 00:06:37 ----D---- E:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
======List of files/folders modified in the last 1 months======
2009-01-15 20:32:46 ----D---- E:\Documents and Settings\Aqua\Application Data\Skype
2009-01-15 19:43:06 ----D---- E:\Program Files\Mozilla Firefox
2009-01-15 17:27:47 ----D---- E:\Documents and Settings\Aqua\Application Data\skypePM
2009-01-14 20:07:52 ----D---- E:\WINDOWS\Temp
2009-01-14 17:10:07 ----A---- E:\WINDOWS\SchedLgU.Txt
2009-01-14 13:26:26 ----D---- E:\WINDOWS\Prefetch
2009-01-14 13:22:49 ----D---- E:\WINDOWS\system32
2009-01-14 12:20:01 ----D---- E:\WINDOWS
2009-01-13 20:31:43 ----RSHDC---- E:\WINDOWS\system32\dllcache
2009-01-13 20:31:43 ----D---- E:\WINDOWS\system32\drivers
2009-01-13 20:31:39 ----HD---- E:\WINDOWS\inf
2009-01-13 20:31:37 ----HD---- E:\WINDOWS\$hf_mig$
2009-01-13 20:31:35 ----D---- E:\WINDOWS\system32\CatRoot2
2009-01-12 23:23:58 ----D---- E:\Documents and Settings\Aqua\Application Data\Adobe
2009-01-12 23:23:58 ----D---- E:\Documents and Settings\All Users\Application Data\Adobe
2009-01-11 21:13:39 ----D---- E:\Documents and Settings\Aqua\Application Data\Real
2009-01-11 21:13:38 ----RD---- E:\Program Files
2009-01-11 21:13:31 ----D---- E:\Program Files\Common Files
2009-01-11 21:13:29 ----D---- E:\Program Files\Common Files\Real
2009-01-09 20:17:03 ----D---- E:\Documents and Settings\Aqua\Application Data\uTorrent
2009-01-09 17:35:30 ----A---- E:\WINDOWS\system32\MRT.exe
2008-12-30 18:22:23 ----SD---- E:\WINDOWS\Tasks
2008-12-30 15:03:11 ----HD---- E:\Config.Msi
2008-12-30 15:03:11 ----D---- E:\WINDOWS\SxsCaPendDel
2008-12-30 15:01:02 ----D---- E:\WINDOWS\WinSxS
2008-12-30 15:00:52 ----SHD---- E:\WINDOWS\Installer
2008-12-30 14:58:29 ----D---- E:\Program Files\Microsoft Visual Studio 9.0
2008-12-30 14:58:29 ----D---- E:\Program Files\Common Files\Microsoft Shared
2008-12-30 14:58:22 ----D---- E:\Documents and Settings\All Users\Application Data\Microsoft Help
2008-12-28 22:18:49 ----RSD---- E:\WINDOWS\assembly
2008-12-22 13:52:19 ----D---- E:\Program Files\FlashGet
2008-12-20 20:21:58 ----A---- E:\WINDOWS\system32\javaws.exe
2008-12-20 20:21:58 ----A---- E:\WINDOWS\system32\javaw.exe
2008-12-20 20:21:58 ----A---- E:\WINDOWS\system32\java.exe
2008-12-20 20:21:55 ----D---- E:\Program Files\Java
2008-12-18 09:29:19 ----A---- E:\WINDOWS\imsins.BAK
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 intelppm;Intel Processor Driver; E:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-13 36352]
R1 kbdhid;Keyboard HID Driver; E:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-13 14592]
R1 nod32drv;nod32drv; E:\WINDOWS\system32\drivers\nod32drv.sys [2008-12-30 15424]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; E:\WINDOWS\System32\drivers\ws2ifsl.sys [2006-02-28 12032]
R2 AMON;AMON; E:\WINDOWS\system32\drivers\amon.sys [2008-12-30 512096]
R3 Arp1394;1394 ARP Client Protocol; E:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 ctac32k;Creative AC3 Software Decoder; E:\WINDOWS\system32\drivers\ctac32k.sys [2006-08-17 502272]
R3 ctaud2k;Creative Audio Driver (WDM); E:\WINDOWS\system32\drivers\ctaud2k.sys [2006-08-17 500480]
R3 ctprxy2k;Creative Proxy Driver; E:\WINDOWS\system32\drivers\ctprxy2k.sys [2006-08-17 7168]
R3 ctsfm2k;Creative SoundFont Management Device Driver; E:\WINDOWS\system32\drivers\ctsfm2k.sys [2006-08-17 143872]
R3 emupia;E-mu Plug-in Architecture Driver; E:\WINDOWS\system32\drivers\emupia2k.sys [2006-08-17 78336]
R3 ha20x2k;Creative 20X HAL Driver; E:\WINDOWS\system32\drivers\ha20x2k.sys [2006-08-17 1110528]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; E:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Microsoft HID Class Driver; E:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 HPZid412;IEEE-1284.4 Driver HPZid412; E:\WINDOWS\system32\DRIVERS\HPZid412.sys [2006-04-12 49664]
R3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; E:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2006-04-12 16496]
R3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; E:\WINDOWS\system32\DRIVERS\HPZius12.sys [2006-04-12 21568]
R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; E:\WINDOWS\system32\DRIVERS\LHidFilt.Sys [2008-02-29 35344]
R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; E:\WINDOWS\system32\DRIVERS\LMouFilt.Sys [2008-02-29 36880]
R3 mouhid;Mouse HID Driver; E:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 NIC1394;1394 Net Driver; E:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 npkcusb;npkcusb; \??\E:\Program Files\Ragray\npkcusb.sys []
R3 nv;nv; E:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2007-12-05 7435392]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; E:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-08-07 52736]
R3 nvnetbus;NVIDIA Network Bus Enumerator; E:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-08-07 18944]
R3 ossrv;Creative OS Services Driver; E:\WINDOWS\system32\drivers\ctoss2k.sys [2006-08-17 116224]
R3 usbccgp;Microsoft USB Generic Parent Driver; E:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; E:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;USB2 Enabled Hub; E:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbohci;Microsoft USB Open Host Controller Miniport Driver; E:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-13 17152]
R3 usbprint;Microsoft USB PRINTER Class; E:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 usbscan;USB Scanner Driver; E:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
R3 USBSTOR;USB Mass Storage Driver; E:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 Wdf01000;Wdf01000; E:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S3 axjghpnj;axjghpnj; E:\WINDOWS\system32\drivers\axjghpnj.sys []
S3 ctdvda2k;Creative DVD-Audio Device Driver; E:\WINDOWS\system32\drivers\ctdvda2k.sys [2006-08-17 340176]
S3 HidBatt;HID UPS Battery Driver; E:\WINDOWS\system32\DRIVERS\HidBatt.sys [2008-04-13 20352]
S3 ICDUSB2;Sony IC Recorder (P); E:\WINDOWS\System32\Drivers\ICDUSB2.sys [2002-11-28 39048]
S3 npkcrypt;npkcrypt; \??\E:\Program Files\Ragray\npkcrypt.sys []
S3 WPN111;Wireless USB 2.0 Adapter with RangeMax Service; E:\WINDOWS\system32\DRIVERS\WPN111.sys [2005-09-26 362944]
S4 IntelIde;IntelIde; E:\WINDOWS\system32\drivers\IntelIde.sys []
S4 sr;System Restore Filter Driver; E:\WINDOWS\system32\DRIVERS\sr.sys [2008-04-13 73472]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 JavaQuickStarterService;Java Quick Starter; E:\Program Files\Java\jre6\bin\jqs.exe [2008-12-20 152984]
R2 NOD32krn;NOD32 Kernel Service; E:\Program Files\Eset\nod32krn.exe [2008-12-30 552064]
R2 NVSvc;NVIDIA Display Driver Service; E:\WINDOWS\system32\nvsvc32.exe [2007-12-05 155716]
R2 SCManager;SafeConnect Manager; E:\Program Files\SafeConnect\scManager.sys [2008-09-22 136472]
S2 Net Driver HPZ12;Net Driver HPZ12; E:\WINDOWS\System32\svchost.exe [2008-04-13 14336]
S2 Pml Driver HPZ12;Pml Driver HPZ12; E:\WINDOWS\System32\svchost.exe [2008-04-13 14336]
S3 Adobe LM Service;Adobe LM Service; E:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2008-09-16 68096]
S3 aspnet_state;ASP.NET State Service; E:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; E:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; E:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 ICDSPTSV;Sony SPTI Service for DVE; E:\WINDOWS\system32\IcdSptSv.exe [2003-04-01 69632]
S3 idsvc;Windows CardSpace; E:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 LBTServ;Logitech Bluetooth Service; E:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe [2008-05-02 121360]
S3 usnjsvc;Messenger Sharing Folders USN Journal Reader service; E:\Program Files\MSN Messenger\usnsvc.exe [2007-01-19 97136]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; E:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
-----------------EOF-----------------