Logfile of random's system information tool 1.04 (written by random/random)
Run by [removed] at 2008-12-06 16:19:09
Microsoft® Windows Vista™ Home Basic
System drive C: has 91 GB (86%) free of 106 GB
Total RAM: 501 MB (33% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 4:19:47 PM, on 12/6/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16757)
Boot mode: Normal
Running processes:
C:\Program Files\Norton AntiVirus\Engine\16.1.0.33\ccSvcHst.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\HP\Smart Web Printing\hpswp_clipbook.exe
C:\Users\desktop\Desktop\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\desktop.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.myspace.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton AntiVirus\Engine\16.1.0.33\IPSBHO.DLL
O2 - BHO: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O9 - Extra button: HP Clipbook - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: HP Smart Select - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O13 - Gopher Prefix:
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) -
http://dl8-cdn-01.sun.com/s/ESD5/JSCDL/jre…ows-i586-jc.cab
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: Norton AntiVirus - Symantec Corporation - C:\Program Files\Norton AntiVirus\Engine\16.1.0.33\ccSvcHst.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
–
End of file - 4801 bytes
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{053F9267-DC04-4294-A72C-58F732D338C0}]
HP Print Clips - C:\Program Files\HP\Smart Web Printing\hpswp_framework.dll [2007-03-02 177768]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2008-12-02 304736]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Symantec Intrusion Prevention - C:\Program Files\Norton AntiVirus\Engine\16.1.0.33\IPSBHO.DLL [2008-12-03 107896]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java™ Plug-In SSV Helper - C:\Program Files\Java\jre6\bin\ssv.dll [2008-12-05 320920]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - c:\program files\google\googletoolbar1.dll [2008-12-02 2403392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java™ Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2008-12-05 34816]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll [2008-12-02 2403392]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-12-02 1006264]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2008-01-02 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2008-01-02 166424]
"Persistence"=C:\Windows\system32\igfxpers.exe [2008-01-02 133656]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2008-12-05 136600]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe [2008-12-02 171448]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2006-11-02 201728]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2008-01-02 200704]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======List of files/folders created in the last 1 months======
2008-12-06 16:19:09 —-D—- C:\rsit
2008-12-06 04:11:20 —-A—- C:\Windows\system32\igfxres.dll
2008-12-05 22:53:45 —-A—- C:\Windows\system32\javaws.exe
2008-12-05 22:53:45 —-A—- C:\Windows\system32\javaw.exe
2008-12-05 22:53:45 —-A—- C:\Windows\system32\java.exe
2008-12-05 22:53:45 —-A—- C:\Windows\system32\deploytk.dll
2008-12-05 22:52:27 —-D—- C:\Program Files\Java
2008-12-05 20:28:57 —-D—- C:\Program Files\Malwarebytes' Anti-Malware
2008-12-04 03:20:40 —-D—- C:\Program Files\MSXML 4.0
2008-12-04 03:06:36 —-D—- C:\Program Files\ThreatExpert Memory Scanner
2008-12-03 22:31:33 —-D—- C:\ProgramData\Symantec
2008-12-03 22:29:19 —-D—- C:\Program Files\Symantec
2008-12-03 22:29:19 —-D—- C:\Program Files\Common Files\Symantec Shared
2008-12-03 22:28:33 —-D—- C:\Program Files\Norton AntiVirus
2008-12-03 22:23:58 —-D—- C:\ProgramData\Norton
2008-12-03 22:23:51 —-D—- C:\ProgramData\NortonInstaller
2008-12-03 22:23:51 —-D—- C:\Program Files\NortonInstaller
2008-12-03 22:20:35 —-D—- C:\ProgramData\Symantec Temporary Files
2008-12-03 21:27:33 —-D—- C:\Users\desktop\AppData\Roaming\Malwarebytes
2008-12-03 21:27:23 —-D—- C:\ProgramData\Malwarebytes
2008-12-03 16:05:40 —-D—- C:\ProgramData\vsosdk
2008-12-03 05:52:58 —-D—- C:\ProgramData\SUPERAntiSpyware.com
2008-12-03 05:52:20 —-D—- C:\Users\desktop\AppData\Roaming\SUPERAntiSpyware.com
2008-12-03 05:52:20 —-D—- C:\Program Files\SUPERAntiSpyware
2008-12-03 05:17:46 —-D—- C:\Windows\SoftwareDistribution
2008-12-03 05:15:34 —-D—- C:\Windows\Debug
2008-12-03 05:12:57 —-D—- C:\Windows\Prefetch
2008-12-03 05:11:50 —-D—- C:\Windows\Panther
2008-12-03 05:11:35 —-RAS—- C:\BOOTSECT.BAK
2008-12-03 04:50:37 —-D—- C:\Program Files\Trend Micro
2008-12-03 02:34:28 —-D—- C:\Users\desktop\AppData\Roaming\Nero
2008-12-03 01:26:59 —-A—- C:\Windows\Irremote.ini
2008-12-03 00:18:16 —-D—- C:\Program Files\Nero
2008-12-03 00:15:42 —-D—- C:\ProgramData\Nero
2008-12-03 00:15:33 —-D—- C:\Program Files\Common Files\Nero
2008-12-03 00:13:00 —-A—- C:\Windows\system32\d3dx9_30.dll
2008-12-02 23:29:11 —-A—- C:\Windows\system32\es.dll
2008-12-02 22:58:13 —-A—- C:\Windows\system32\wups2.dll
2008-12-02 22:58:13 —-A—- C:\Windows\system32\wucltux.dll
2008-12-02 22:58:13 —-A—- C:\Windows\system32\wuaueng.dll
2008-12-02 22:58:13 —-A—- C:\Windows\system32\wuauclt.exe
2008-12-02 22:56:41 —-A—- C:\Windows\system32\wups.dll
2008-12-02 22:56:41 —-A—- C:\Windows\system32\wudriver.dll
2008-12-02 22:56:41 —-A—- C:\Windows\system32\wuapi.dll
2008-12-02 22:55:03 —-A—- C:\Windows\system32\wuwebv.dll
2008-12-02 22:55:03 —-A—- C:\Windows\system32\wuapp.exe
2008-12-02 22:23:04 —-D—- C:\Users\desktop\AppData\Roaming\Vso
2008-12-02 22:23:04 —-A—- C:\Users\desktop\AppData\Roaming\inst.exe
2008-12-02 22:22:39 —-D—- C:\Program Files\DVDFab 5
2008-12-02 18:12:43 —-D—- C:\ProgramData\WEBREG
2008-12-02 18:08:56 —-D—- C:\Users\desktop\AppData\Roaming\HPAppData
2008-12-02 18:08:38 —-D—- C:\ProgramData\HPSSUPPLY
2008-12-02 18:06:50 —-D—- C:\ProgramData\HP Product Assistant
2008-12-02 18:02:24 —-D—- C:\Program Files\Common Files\HP
2008-12-02 18:00:13 —-D—- C:\ProgramData\Hewlett-Packard
2008-12-02 17:56:43 —-A—- C:\Windows\system32\hpzids01.dll
2008-12-02 17:56:37 —-A—- C:\Windows\system32\hpzll5ha.dll
2008-12-02 17:55:57 —-D—- C:\Program Files\HP
2008-12-02 17:54:20 —-D—- C:\ProgramData\HP
2008-12-02 06:57:17 —-D—- C:\Program Files\Common Files\Adobe AIR
2008-12-02 06:52:41 —-D—- C:\ProgramData\Adobe
2008-12-02 06:51:28 —-D—- C:\Program Files\Common Files\Adobe
2008-12-02 06:51:28 —-D—- C:\Program Files\Adobe
2008-12-02 06:47:24 —-D—- C:\Users\desktop\AppData\Roaming\Macromedia
2008-12-02 06:47:23 —-D—- C:\Users\desktop\AppData\Roaming\Adobe
2008-12-02 06:46:00 —-D—- C:\Windows\system32\Macromed
2008-12-02 06:44:52 —-D—- C:\ProgramData\NOS
2008-12-02 06:44:51 —-D—- C:\Program Files\NOS
2008-12-02 05:58:38 —-D—- C:\Users\desktop\AppData\Roaming\Google
2008-12-02 05:31:58 —-A—- C:\Windows\system32\msvcr80.dll
2008-12-02 05:28:25 —-D—- C:\Users\desktop\AppData\Roaming\WinRAR
2008-12-02 05:26:14 —-A—- C:\Windows\cdplayer.ini
2008-12-02 05:25:25 —-D—- C:\Program Files\Common Files\xing shared
2008-12-02 05:25:11 —-A—- C:\Windows\system32\rmoc3260.dll
2008-12-02 05:25:03 —-D—- C:\Program Files\Real
2008-12-02 05:25:03 —-A—- C:\Windows\system32\pndx5032.dll
2008-12-02 05:25:03 —-A—- C:\Windows\system32\pndx5016.dll
2008-12-02 05:25:03 —-A—- C:\Windows\system32\pncrt.dll
2008-12-02 05:25:03 —-A—- C:\Windows\system32\msvcr71.dll
2008-12-02 05:25:03 —-A—- C:\Windows\system32\msvcp71.dll
2008-12-02 05:24:56 —-D—- C:\Program Files\Common Files\Real
2008-12-02 05:24:52 —-D—- C:\Users\desktop\AppData\Roaming\Real
2008-12-02 05:24:09 —-D—- C:\ProgramData\Google
2008-12-02 05:24:04 —-D—- C:\Program Files\Google
2008-12-02 05:22:27 —-D—- C:\Program Files\Voobys
2008-12-02 05:19:48 —-D—- C:\Windows\system32\URTTEMP
2008-12-02 05:18:40 —-SHD—- C:\Windows\Installer
2008-12-02 05:17:14 —-D—- C:\Program Files\WinRAR
2008-12-02 04:00:53 —-A—- C:\Windows\system32\winipsec.dll
2008-12-02 04:00:53 —-A—- C:\Windows\system32\polstore.dll
2008-12-02 04:00:53 —-A—- C:\Windows\system32\IPSECSVC.DLL
2008-12-02 04:00:53 —-A—- C:\Windows\system32\FwRemoteSvr.dll
2008-12-02 04:00:04 —-A—- C:\Windows\system32\riched32.dll
2008-12-02 04:00:04 —-A—- C:\Windows\system32\riched20.dll
2008-12-02 04:00:02 —-A—- C:\Windows\system32\rasser.dll
2008-12-02 04:00:02 —-A—- C:\Windows\system32\rasmxs.dll
2008-12-02 04:00:02 —-A—- C:\Windows\system32\rasdiag.dll
2008-12-02 04:00:02 —-A—- C:\Windows\system32\rascfg.dll
2008-12-02 04:00:01 —-A—- C:\Windows\system32\netcfgx.dll
2008-12-02 04:00:01 —-A—- C:\Windows\system32\msftedit.dll
2008-12-02 04:00:01 —-A—- C:\Windows\system32\icsunattend.exe
2008-12-02 04:00:00 —-A—- C:\Windows\system32\wshqos.dll
2008-12-02 04:00:00 —-A—- C:\Windows\system32\traffic.dll
2008-12-02 04:00:00 —-A—- C:\Windows\system32\ipnathlp.dll
2008-12-02 03:59:59 —-A—- C:\Windows\system32\pacerprf.dll
2008-12-02 03:59:59 —-A—- C:\Windows\system32\localspl.dll
2008-12-02 03:59:59 —-A—- C:\Windows\system32\dps.dll
2008-12-02 03:59:59 —-A—- C:\Windows\system32\cdd.dll
2008-12-02 03:59:14 —-A—- C:\Windows\system32\PortableDeviceTypes.dll
2008-12-02 03:59:14 —-A—- C:\Windows\system32\PortableDeviceClassExtension.dll
2008-12-02 03:59:14 —-A—- C:\Windows\system32\PortableDeviceApi.dll
2008-12-02 03:58:26 —-A—- C:\Windows\system32\Apphlpdm.dll
2008-12-02 03:58:24 —-A—- C:\Windows\system32\GameUXLegacyGDFs.dll
2008-12-02 03:58:24 —-A—- C:\Windows\system32\gameux.dll
2008-12-02 03:57:31 —-A—- C:\Windows\system32\msoert2.dll
2008-12-02 03:57:31 —-A—- C:\Windows\system32\msoeacct.dll
2008-12-02 03:57:31 —-A—- C:\Windows\system32\ACCTRES.dll
2008-12-02 03:56:39 —-A—- C:\Windows\system32\wtsapi32.dll
2008-12-02 03:56:37 —-A—- C:\Windows\explorer.exe
2008-12-02 03:56:36 —-A—- C:\Windows\system32\sysmain.dll
2008-12-02 03:56:34 —-A—- C:\Windows\system32\wlansvc.dll
2008-12-02 03:56:34 —-A—- C:\Windows\system32\wlansec.dll
2008-12-02 03:56:34 —-A—- C:\Windows\system32\wlanmsm.dll
2008-12-02 03:56:34 —-A—- C:\Windows\system32\wlanhlp.dll
2008-12-02 03:56:34 —-A—- C:\Windows\system32\wlanapi.dll
2008-12-02 03:55:50 —-A—- C:\Windows\system32\WebClnt.dll
2008-12-02 03:53:51 —-A—- C:\Windows\system32\csrsrv.dll
2008-12-02 03:53:50 —-A—- C:\Windows\system32\winsrv.dll
2008-12-02 03:51:51 —-A—- C:\Windows\system32\shell32.dll
2008-12-02 03:42:18 —-D—- C:\Windows\system32\x64
2008-12-02 03:42:18 —-A—- C:\Windows\system32\igxpun.exe
2008-12-02 03:42:17 —-A—- C:\Windows\system32\difxapi.dll
2008-12-02 03:40:52 —-A—- C:\Windows\system32\tzres.dll
2008-12-02 03:39:52 —-A—- C:\Windows\system32\mcupdate_GenuineIntel.dll
2008-12-02 03:38:28 —-A—- C:\Windows\system32\wmpeffects.dll
2008-12-02 03:37:13 —-A—- C:\Windows\system32\msxml3r.dll
2008-12-02 03:37:13 —-A—- C:\Windows\system32\msxml3.dll
2008-12-02 03:36:34 —-A—- C:\Windows\system32\msscp.dll
2008-12-02 03:35:56 —-A—- C:\Windows\system32\wmploc.DLL
2008-12-02 03:35:55 —-A—- C:\Windows\system32\wmp.dll
2008-12-02 03:35:55 —-A—- C:\Windows\system32\spwmp.dll
2008-12-02 03:35:54 —-A—- C:\Windows\system32\MediaMetadataHandler.dll
2008-12-02 03:35:54 —-A—- C:\Windows\system32\dxmasf.dll
2008-12-02 03:35:15 —-A—- C:\Windows\system32\FirewallAPI.dll
2008-12-02 03:35:14 —-A—- C:\Windows\system32\wfapigp.dll
2008-12-02 03:35:14 —-A—- C:\Windows\system32\MPSSVC.dll
2008-12-02 03:35:14 —-A—- C:\Windows\system32\icfupgd.dll
2008-12-02 03:35:14 —-A—- C:\Windows\system32\cmifw.dll
2008-12-02 03:35:13 —-A—- C:\Windows\system32\iphlpsvc.dll
2008-12-02 03:34:39 —-A—- C:\Windows\system32\netapi32.dll
2008-12-02 03:32:50 —-A—- C:\Windows\system32\DWWIN.EXE
2008-12-02 03:31:45 —-A—- C:\Windows\system32\hcrstco.dll
2008-12-02 03:31:45 —-A—- C:\Windows\system32\hccoin.dll
2008-12-02 03:30:39 —-A—- C:\Windows\system32\netcfg.exe
2008-12-02 03:30:38 —-A—- C:\Windows\system32\tcpipcfg.dll
2008-12-02 03:30:38 —-A—- C:\Windows\system32\netiougc.exe
2008-12-02 03:30:04 —-A—- C:\Windows\system32\NlsLexicons0049.dll
2008-12-02 03:30:04 —-A—- C:\Windows\system32\NlsLexicons0047.dll
2008-12-02 03:30:04 —-A—- C:\Windows\system32\NlsLexicons0046.dll
2008-12-02 03:30:04 —-A—- C:\Windows\system32\NlsLexicons0045.dll
2008-12-02 03:30:04 —-A—- C:\Windows\system32\NlsLexicons0020.dll
2008-12-02 03:30:03 —-A—- C:\Windows\system32\NlsLexicons0039.dll
2008-12-02 03:30:03 —-A—- C:\Windows\system32\NlsLexicons0022.dll
2008-12-02 03:30:03 —-A—- C:\Windows\system32\NlsLexicons0021.dll
2008-12-02 03:30:02 —-A—- C:\Windows\system32\NlsLexicons0026.dll
2008-12-02 03:30:02 —-A—- C:\Windows\system32\NlsLexicons0024.dll
2008-12-02 03:30:01 —-A—- C:\Windows\system32\NlsLexicons0027.dll
2008-12-02 03:29:58 —-A—- C:\Windows\system32\NlsLexicons0010.dll
2008-12-02 03:29:57 —-A—- C:\Windows\system32\NlsLexicons0013.dll
2008-12-02 03:29:57 —-A—- C:\Windows\system32\NlsLexicons0011.dll
2008-12-02 03:29:56 —-A—- C:\Windows\system32\NlsLexicons0019.dll
2008-12-02 03:29:56 —-A—- C:\Windows\system32\NlsLexicons0018.dll
2008-12-02 03:29:56 —-A—- C:\Windows\system32\NlsLexicons0001.dll
2008-12-02 03:29:55 —-A—- C:\Windows\system32\NlsLexicons0003.dll
2008-12-02 03:29:55 —-A—- C:\Windows\system32\NlsLexicons0002.dll
2008-12-02 03:29:54 —-A—- C:\Windows\system32\NlsLexicons004b.dll
2008-12-02 03:29:54 —-A—- C:\Windows\system32\NlsLexicons004a.dll
2008-12-02 03:29:54 —-A—- C:\Windows\system32\NlsLexicons0009.dll
2008-12-02 03:29:54 —-A—- C:\Windows\system32\NlsLexicons0007.dll
2008-12-02 03:29:53 —-A—- C:\Windows\system32\NlsLexicons004e.dll
2008-12-02 03:29:53 —-A—- C:\Windows\system32\NlsLexicons004c.dll
2008-12-02 03:29:53 —-A—- C:\Windows\system32\NlsLexicons003e.dll
2008-12-02 03:29:53 —-A—- C:\Windows\system32\NlsLexicons002a.dll
2008-12-02 03:29:52 —-A—- C:\Windows\system32\NlsLexicons001b.dll
2008-12-02 03:29:52 —-A—- C:\Windows\system32\NlsLexicons001a.dll
2008-12-02 03:29:51 —-A—- C:\Windows\system32\NlsLexicons001d.dll
2008-12-02 03:29:51 —-A—- C:\Windows\system32\NlsLexicons000a.dll
2008-12-02 03:29:50 —-A—- C:\Windows\system32\NlsLexicons000d.dll
2008-12-02 03:29:50 —-A—- C:\Windows\system32\NlsLexicons000c.dll
2008-12-02 03:29:49 —-A—- C:\Windows\system32\NlsLexicons0816.dll
2008-12-02 03:29:49 —-A—- C:\Windows\system32\NlsLexicons0416.dll
2008-12-02 03:29:49 —-A—- C:\Windows\system32\NlsLexicons0414.dll
2008-12-02 03:29:49 —-A—- C:\Windows\system32\NlsLexicons000f.dll
2008-12-02 03:29:48 —-A—- C:\Windows\system32\NlsLexicons081a.dll
2008-12-02 03:29:47 —-A—- C:\Windows\system32\NlsModels0011.dll
2008-12-02 03:29:47 —-A—- C:\Windows\system32\NlsData0047.dll
2008-12-02 03:29:47 —-A—- C:\Windows\system32\NlsData0046.dll
2008-12-02 03:29:47 —-A—- C:\Windows\system32\NlsData0045.dll
2008-12-02 03:29:46 —-A—- C:\Windows\system32\NlsData0049.dll
2008-12-02 03:29:46 —-A—- C:\Windows\system32\NlsData0039.dll
2008-12-02 03:29:46 —-A—- C:\Windows\system32\NlsData0021.dll
2008-12-02 03:29:46 —-A—- C:\Windows\system32\NlsData0020.dll
2008-12-02 03:29:45 —-A—- C:\Windows\system32\NlsData0027.dll
2008-12-02 03:29:45 —-A—- C:\Windows\system32\NlsData0026.dll
2008-12-02 03:29:45 —-A—- C:\Windows\system32\NlsData0024.dll
2008-12-02 03:29:45 —-A—- C:\Windows\system32\NlsData0022.dll
2008-12-02 03:29:45 —-A—- C:\Windows\system32\NlsData0010.dll
2008-12-02 03:29:44 —-A—- C:\Windows\system32\NlsData0019.dll
2008-12-02 03:29:44 —-A—- C:\Windows\system32\NlsData0018.dll
2008-12-02 03:29:44 —-A—- C:\Windows\system32\NlsData0013.dll
2008-12-02 03:29:44 —-A—- C:\Windows\system32\NlsData0011.dll
2008-12-02 03:29:44 —-A—- C:\Windows\system32\NlsData0000.dll
2008-12-02 03:29:43 —-A—- C:\Windows\system32\NlsData0007.dll
2008-12-02 03:29:43 —-A—- C:\Windows\system32\NlsData0003.dll
2008-12-02 03:29:43 —-A—- C:\Windows\system32\NlsData0002.dll
2008-12-02 03:29:43 —-A—- C:\Windows\system32\NlsData0001.dll
2008-12-02 03:29:42 —-A—- C:\Windows\system32\NlsData004b.dll
2008-12-02 03:29:42 —-A—- C:\Windows\system32\NlsData004a.dll
2008-12-02 03:29:42 —-A—- C:\Windows\system32\NlsData0009.dll
2008-12-02 03:29:41 —-A—- C:\Windows\system32\NlsData004e.dll
2008-12-02 03:29:41 —-A—- C:\Windows\system32\NlsData004c.dll
2008-12-02 03:29:41 —-A—- C:\Windows\system32\NlsData003e.dll
2008-12-02 03:29:41 —-A—- C:\Windows\system32\NlsData002a.dll
2008-12-02 03:29:40 —-A—- C:\Windows\system32\NlsData001d.dll
2008-12-02 03:29:40 —-A—- C:\Windows\system32\NlsData001b.dll
2008-12-02 03:29:40 —-A—- C:\Windows\system32\NlsData001a.dll
2008-12-02 03:29:39 —-A—- C:\Windows\system32\NlsData000f.dll
2008-12-02 03:29:39 —-A—- C:\Windows\system32\NlsData000d.dll
2008-12-02 03:29:39 —-A—- C:\Windows\system32\NlsData000c.dll
2008-12-02 03:29:39 —-A—- C:\Windows\system32\NlsData000a.dll
2008-12-02 03:29:38 —-A—- C:\Windows\system32\NlsData0816.dll
2008-12-02 03:29:38 —-A—- C:\Windows\system32\NlsData0416.dll
2008-12-02 03:29:38 —-A—- C:\Windows\system32\NlsData0414.dll
2008-12-02 03:29:38 —-A—- C:\Windows\system32\NaturalLanguage6.dll
2008-12-02 03:29:37 —-A—- C:\Windows\system32\NlsLexicons0c1a.dll
2008-12-02 03:29:37 —-A—- C:\Windows\system32\NlsData0c1a.dll
2008-12-02 03:29:37 —-A—- C:\Windows\system32\NlsData081a.dll
2008-12-02 03:26:39 —-A—- C:\Windows\system32\setupapi.dll
2008-12-02 03:26:11 —-A—- C:\Windows\system32\wpd_ci.dll
2008-12-02 03:26:11 —-A—- C:\Windows\system32\srdelayed.exe
2008-12-02 03:26:11 —-A—- C:\Windows\system32\srcore.dll
2008-12-02 03:26:11 —-A—- C:\Windows\system32\srclient.dll
2008-12-02 03:26:11 —-A—- C:\Windows\system32\rstrui.exe
2008-12-02 03:26:10 —-A—- C:\Windows\system32\winresume.exe
2008-12-02 03:26:10 —-A—- C:\Windows\system32\winload.exe
2008-12-02 03:26:10 —-A—- C:\Windows\system32\kd1394.dll
2008-12-02 03:26:10 —-A—- C:\Windows\system32\ci.dll
2008-12-02 03:26:09 —-A—- C:\Windows\system32\umpnpmgr.dll
2008-12-02 03:26:09 —-A—- C:\Windows\system32\nshhttp.dll
2008-12-02 03:26:09 —-A—- C:\Windows\system32\kbd106n.dll
2008-12-02 03:26:09 —-A—- C:\Windows\system32\drvinst.exe
2008-12-02 03:26:09 —-A—- C:\Windows\system32\dpx.dll
2008-12-02 03:26:09 —-A—- C:\Windows\system32\cfgmgr32.dll
2008-12-02 03:26:08 —-A—- C:\Windows\system32\unlodctr.exe
2008-12-02 03:26:08 —-A—- C:\Windows\system32\prflbmsg.dll
2008-12-02 03:26:08 —-A—- C:\Windows\system32\oleaut32.dll
2008-12-02 03:26:08 —-A—- C:\Windows\system32\lodctr.exe
2008-12-02 03:26:08 —-A—- C:\Windows\system32\loadperf.dll
2008-12-02 03:26:07 —-A—- C:\Windows\system32\schedsvc.dll
2008-12-02 03:26:06 —-A—- C:\Windows\system32\f3ahvoas.dll
2008-12-02 03:26:06 —-A—- C:\Windows\system32\dispci.dll
2008-12-02 03:26:06 —-A—- C:\Windows\system32\batt.dll
2008-12-02 03:24:30 —-D—- C:\Program Files\CONEXANT
2008-12-02 03:23:23 —-A—- C:\Windows\system32\WMASF.DLL
2008-12-02 03:23:23 —-A—- C:\Windows\system32\LAPRXY.DLL
2008-12-02 03:23:23 —-A—- C:\Windows\system32\asferror.dll
2008-12-02 03:22:24 —-A—- C:\Windows\system32\gdi32.dll
2008-12-02 03:21:50 —-A—- C:\Windows\system32\slwmi.dll
2008-12-02 03:21:50 —-A—- C:\Windows\system32\SLC.dll
2008-12-02 03:21:50 —-A—- C:\Windows\system32\mcbuilder.exe
2008-12-02 03:21:49 —-A—- C:\Windows\system32\SLUINotify.dll
2008-12-02 03:21:49 —-A—- C:\Windows\system32\SLUI.exe
2008-12-02 03:21:49 —-A—- C:\Windows\system32\SLLUA.exe
2008-12-02 03:21:49 —-A—- C:\Windows\system32\SLCommDlg.dll
2008-12-02 03:21:48 —-A—- C:\Windows\system32\SLsvc.exe
2008-12-02 03:21:48 —-A—- C:\Windows\system32\slcinst.dll
2008-12-02 03:21:10 —-A—- C:\Windows\system32\WindowsCodecs.dll
2008-12-02 03:21:10 —-A—- C:\Windows\system32\PhotoMetadataHandler.dll
2008-12-02 03:21:09 —-A—- C:\Windows\system32\WindowsCodecsExt.dll
2008-12-02 03:19:56 —-A—- C:\Windows\system32\schannel.dll
2008-12-02 03:19:55 —-A—- C:\Windows\system32\ntprint.exe
2008-12-02 03:19:55 —-A—- C:\Windows\system32\ntprint.dll
2008-12-02 03:19:54 —-A—- C:\Windows\system32\dhcpcsvc6.dll
2008-12-02 03:19:54 —-A—- C:\Windows\system32\dhcpcsvc.dll
2008-12-02 03:19:54 —-A—- C:\Windows\system32\dhcpcmonitor.dll
2008-12-02 03:19:54 —-A—- C:\Windows\system32\authui.dll
2008-12-02 03:19:53 —-A—- C:\Windows\system32\msvfw32.dll
2008-12-02 03:19:53 —-A—- C:\Windows\system32\mciavi32.dll
2008-12-02 03:19:53 —-A—- C:\Windows\system32\avicap32.dll
2008-12-02 03:19:52 —-A—- C:\Windows\system32\sendmail.dll
2008-12-02 03:19:52 —-A—- C:\Windows\system32\msvidc32.dll
2008-12-02 03:19:52 —-A—- C:\Windows\system32\msrle32.dll
2008-12-02 03:19:52 —-A—- C:\Windows\system32\avifil32.dll
2008-12-02 03:19:19 —-A—- C:\Windows\system32\win32spl.dll
2008-12-02 03:19:19 —-A—- C:\Windows\system32\printcom.dll
2008-12-02 03:18:57 —-A—- C:\Windows\system32\wshrm.dll
2008-12-02 03:18:34 —-A—- C:\Windows\system32\sbunattend.exe
2008-12-02 03:17:54 —-A—- C:\Windows\system32\dnsrslvr.dll
2008-12-02 03:17:54 —-A—- C:\Windows\system32\dnscacheugc.exe
2008-12-02 03:17:54 —-A—- C:\Windows\system32\dnsapi.dll
2008-12-02 03:17:02 —-A—- C:\Windows\system32\rpcrt4.dll
2008-12-02 03:16:27 —-A—- C:\Windows\system32\INETRES.dll
2008-12-02 03:16:27 —-A—- C:\Windows\system32\inetcomm.dll
2008-12-02 03:16:05 —-A—- C:\Windows\system32\connect.dll
2008-12-02 03:15:43 —-A—- C:\Windows\system32\wmi.dll
2008-12-02 03:15:43 —-A—- C:\Windows\system32\imagehlp.dll
2008-12-02 03:15:21 —-A—- C:\Windows\system32\quartz.dll
2008-12-02 03:14:25 —-A—- C:\Windows\system32\crypt32.dll
2008-12-02 03:13:51 —-A—- C:\Windows\system32\ntoskrnl.exe
2008-12-02 03:13:51 —-A—- C:\Windows\system32\ntkrnlpa.exe
2008-12-02 03:13:32 —-A—- C:\Windows\system32\user32.dll
2008-12-02 03:13:14 —-A—- C:\Windows\system32\msxml6r.dll
2008-12-02 03:13:14 —-A—- C:\Windows\system32\msxml6.dll
2008-12-02 03:12:19 —-A—- C:\Windows\system32\advpack.dll
2008-12-02 03:12:18 —-A—- C:\Windows\system32\wininet.dll
2008-12-02 03:12:18 —-A—- C:\Windows\system32\jsproxy.dll
2008-12-02 03:12:18 —-A—- C:\Windows\system32\ieapfltr.dll
2008-12-02 03:12:17 —-A—- C:\Windows\system32\dxtrans.dll
2008-12-02 03:12:17 —-A—- C:\Windows\system32\dxtmsft.dll
2008-12-02 03:12:15 —-A—- C:\Windows\system32\ieui.dll
2008-12-02 03:12:14 —-A—- C:\Windows\system32\ieframe.dll
2008-12-02 03:12:13 —-A—- C:\Windows\system32\mshtmled.dll
2008-12-02 03:12:12 —-A—- C:\Windows\system32\mshtml.dll
2008-12-02 03:12:10 —-A—- C:\Windows\system32\mstime.dll
2008-12-02 03:12:10 —-A—- C:\Windows\system32\icardie.dll
2008-12-02 03:12:08 —-A—- C:\Windows\system32\ieUnatt.exe
2008-12-02 03:12:07 —-A—- C:\Windows\system32\urlmon.dll
2008-12-02 03:12:07 —-A—- C:\Windows\system32\pngfilt.dll
2008-12-02 03:12:06 —-A—- C:\Windows\system32\iesetup.dll
2008-12-02 03:12:06 —-A—- C:\Windows\system32\iertutil.dll
2008-12-02 03:12:06 —-A—- C:\Windows\system32\iernonce.dll
2008-12-02 03:12:06 —-A—- C:\Windows\system32\ie4uinit.exe
2008-12-02 03:11:01 —-A—- C:\Windows\system32\qmgr.dll
2008-12-02 02:39:23 —-D—- C:\Users\desktop\AppData\Roaming\Identities
2008-12-02 02:39:04 —-SD—- C:\Users\desktop\AppData\Roaming\Microsoft
======List of files/folders modified in the last 1 months======
2008-12-06 16:19:01 —-D—- C:\Windows\Temp
2008-12-06 16:12:18 —-D—- C:\Windows\System32
2008-12-06 16:12:18 —-D—- C:\Windows\inf
2008-12-06 16:12:18 —-A—- C:\Windows\system32\PerfStringBackup.INI
2008-12-06 02:49:51 —-SHD—- C:\System Volume Information
2008-12-06 02:41:43 —-RD—- C:\Program Files
2008-12-06 02:41:41 —-D—- C:\Windows\system32\drivers
2008-12-06 02:40:40 —-D—- C:\Windows
2008-12-06 02:40:04 —-HD—- C:\Config.Msi
2008-12-06 02:40:04 —-D—- C:\Program Files\MSN
2008-12-06 02:10:32 —-D—- C:\Windows\system32\WDI
2008-12-05 22:55:01 —-SD—- C:\Windows\Downloaded Program Files
2008-12-05 04:03:00 —-D—- C:\Program Files\Common Files
2008-12-04 03:55:58 —-D—- C:\Windows\system32\NDF
2008-12-04 03:21:12 —-D—- C:\Windows\winsxs
2008-12-04 00:53:20 —-D—- C:\Windows\system32\catroot2
2008-12-04 00:53:20 —-D—- C:\Windows\system32\catroot
2008-12-03 22:31:33 —-HD—- C:\ProgramData
2008-12-03 05:22:36 —-D—- C:\Windows\system32\CodeIntegrity
2008-12-03 05:13:02 —-D—- C:\Windows\servicing
2008-12-03 05:11:34 —-SHD—- C:\Boot
2008-12-03 02:46:23 —-SD—- C:\ProgramData\Microsoft
2008-12-03 00:09:46 —-D—- C:\Program Files\Common Files\microsoft shared
2008-12-02 23:39:57 —-D—- C:\Windows\rescache
2008-12-02 23:37:11 —-D—- C:\Windows\system32\en-US
2008-12-02 23:26:02 —-D—- C:\Windows\Registration
2008-12-02 23:24:20 —-D—- C:\Program Files\Internet Explorer
2008-12-02 05:21:19 —-RSD—- C:\Windows\assembly
2008-12-02 04:34:30 —-D—- C:\Windows\Microsoft.NET
2008-12-02 04:32:41 —-ASH—- C:\Program Files\desktop.ini
2008-12-02 04:27:05 —-D—- C:\Windows\system32\ras
2008-12-02 04:27:05 —-D—- C:\Windows\system32\icsxml
2008-12-02 04:27:05 —-D—- C:\Program Files\Windows Calendar
2008-12-02 04:27:03 —-D—- C:\Windows\system32\XPSViewer
2008-12-02 04:27:03 —-D—- C:\Windows\system32\wbem
2008-12-02 04:27:03 —-D—- C:\Windows\AppPatch
2008-12-02 04:27:03 —-D—- C:\Program Files\Windows Mail
2008-12-02 04:27:03 —-D—- C:\Program Files\Common Files\System
2008-12-02 04:27:02 —-D—- C:\Program Files\Windows Defender
2008-12-02 04:27:01 —-D—- C:\Program Files\Windows Media Player
2008-12-02 04:26:59 —-D—- C:\Windows\system32\migration
2008-12-02 04:26:54 —-D—- C:\Windows\system32\SLUI
2008-12-02 04:26:52 —-D—- C:\Program Files\Windows Sidebar
2008-12-02 02:45:21 —-D—- C:\Windows\Logs
2008-12-02 02:44:30 —-D—- C:\Windows\system32\LogFiles
2008-12-02 02:39:42 —-SHD—- C:\$Recycle.Bin
2008-12-02 02:38:53 —-RD—- C:\Users
2008-12-02 02:30:06 —-D—- C:\Windows\system32\restore
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 BHDrvx86;Symantec Heuristics Driver; \??\C:\Windows\system32\drivers\NAV\1001000.021\BHDrvx86.sys [2008-12-03 255536]
R1 ccHP;Symantec Hash Provider; \??\C:\Windows\system32\drivers\NAV\1001000.021\ccHPx86.sys [2008-12-03 362544]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2008-12-03 371248]
R1 IDSVix86;IDSVix86; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\ipsdefs\20081203.001\IDSvix86.sys [2008-12-03 289840]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL); \??\C:\Windows\system32\drivers\NAV\1001000.021\SRTSPX.SYS [2008-12-03 43696]
R1 SymIM;Symantec Network Security Intermediate Filter Driver; C:\Windows\system32\DRIVERS\SymIMv.sys [2008-12-03 25136]
R1 SYMTDI;SYMTDI; \??\C:\Windows\system32\drivers\NAV\1001000.021\SYMTDI.SYS [2008-12-03 198192]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-06-29 8704]
R3 E100B;Intel® PRO Adapter Driver; C:\Windows\system32\DRIVERS\e100b325.sys [2006-11-02 163328]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2008-12-03 99376]
R3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2007-06-20 984064]
R3 HSXHWBS2;HSXHWBS2; C:\Windows\system32\DRIVERS\HSXHWBS2.sys [2007-06-20 267264]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-01-02 2016256]
R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20081206.003\NAVENG.SYS [2008-12-03 89104]
R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20081206.003\NAVEX15.SYS [2008-12-03 876112]
R3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2008-12-02 47360]
R3 SRTSP;Symantec Real Time Storage Protection; \??\C:\Windows\system32\drivers\NAV\1001000.021\SRTSP.SYS [2008-12-03 306736]
R3 SYMDNS;SYMDNS; \??\C:\Windows\system32\drivers\NAV\1001000.021\SYMDNS.SYS [2008-12-03 12976]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT.SYS [2008-12-03 124464]
R3 SYMFW;SYMFW; \??\C:\Windows\system32\drivers\NAV\1001000.021\SYMFW.SYS [2008-12-03 89904]
R3 SYMNDISV;SYMNDISV; \??\C:\Windows\system32\drivers\NAV\1001000.021\SYMNDISV.SYS [2008-12-03 40496]
R3 SYMREDRV;SYMREDRV; \??\C:\Windows\system32\drivers\NAV\1001000.021\SYMREDRV.SYS [2008-12-03 24752]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2007-06-20 660480]
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2006-11-02 82560]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2006-11-02 5632]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-01-02 2016256]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2006-11-02 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2006-11-02 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2006-11-02 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2006-11-02 6016]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 hpqddsvc;HP CUE DeviceDiscovery Service; C:\Windows\system32\svchost.exe [2006-11-02 22016]
R2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [2008-09-30 935208]
R2 Norton AntiVirus;Norton AntiVirus; C:\Program Files\Norton AntiVirus\Engine\16.1.0.33\ccSvcHst.exe [2008-12-03 115560]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-06-29 386560]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2006-11-02 22016]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-12-02 138168]
—————–EOF—————–