Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Im infected with antivirus 360


  • This topic is locked This topic is locked
2 replies to this topic

#1 cor3

cor3

  • Members
  • 96 posts
  • OFFLINE
  •  
  • Local time:07:31 PM

Posted 17 December 2008 - 09:09 PM

I got infeced with the antivirus 360 crap
heres a screen shot
Posted Image
the icon for it is in the bottom right hand corner to the right of the aim icon
sorry i couldnt get the kaspery thing to work


and heres the log
Logfile of random's system information tool 1.05 (written by random/random)
Run by Gogsi at 2008-12-17 21:05:13
Microsoft Windows XP Home Edition Service Pack 2
System drive C: has 107 GB (93%) free of 114 GB
Total RAM: 502 MB (27% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:05:26 PM, on 12/17/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe
C:\WINDOWS\system32\agrsmsvc.exe
C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Program Files\Toshiba\Tvs\TvsTray.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\Program Files\TOSHIBA\TOSHIBA Controls\TFncKy.exe
C:\WINDOWS\system32\TPSMain.exe
C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe
C:\Program Files\TOSHIBA\TOSHIBA Zooming Utility\SmoothView.exe
C:\toshiba\ivp\ism\pinger.exe
C:\WINDOWS\system32\DVDRAMSV.exe
c:\program files\mcafee.com\agent\mcdetect.exe
C:\WINDOWS\RTHDCPL.EXE
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
C:\Program Files\CyberLink\PowerCinema for TOSHIBA\PCMAgent.exe
C:\Program Files\CyberLink\PowerCinema for TOSHIBA\Kernel\CLML\CLMLSvc.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\WINDOWS\system32\TPSBattM.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\ltmoh\Ltmoh.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Microsoft IntelliType Pro\itype.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
C:\Program Files\AIM6\aim6.exe
C:\Program Files\A360\av360.exe
C:\WINDOWS\system32\RAMASST.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
c:\TOSHIBA\IVP\swupdate\swupdtmr.exe
C:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\Program Files\AIM6\aolsoftware.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\svchost.exe
C:\Documents and Settings\Gogsi\Desktop\RSIT.exe
C:\Program Files\trend micro\Gogsi.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.toshiba.com/search
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.toshibadirect.com/dpdstart
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.toshibadirect.com/dpdstart
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.toshibadirect.com/dpdstart
O2 - BHO: (no name) - {037C7B8A-151A-49E6-BAED-CC05FCB50328} - C:\WINDOWS\system32\winsrc.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\McUpdate.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [THotkey] C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe
O4 - HKLM\..\Run: [NDSTray.exe] NDSTray.exe
O4 - HKLM\..\Run: [Tvs] C:\Program Files\Toshiba\Tvs\TvsTray.exe
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [TFncKy] TFncKy.exe
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe
O4 - HKLM\..\Run: [PadTouch] C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe
O4 - HKLM\..\Run: [SmoothView] C:\Program Files\TOSHIBA\TOSHIBA Zooming Utility\SmoothView.exe
O4 - HKLM\..\Run: [Pinger] c:\toshiba\ivp\ism\pinger.exe /run
O4 - HKLM\..\Run: [CFSServ.exe] CFSServ.exe -NoClient
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [PCMAgent] "C:\Program Files\CyberLink\PowerCinema for TOSHIBA\PCMAgent.exe"
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files\CyberLink\PowerCinema for TOSHIBA\Kernel\CLML\CLMLSvc.exe"
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [LtMoh] C:\Program Files\ltmoh\Ltmoh.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [itype] "C:\Program Files\Microsoft IntelliType Pro\itype.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
O4 - HKCU\..\Run: [LtMoh] C:\Program Files\ltmoh\Ltmoh.exe
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O4 - HKCU\..\Run: [70222955187644663222963928156048] C:\Program Files\A360\av360.exe
O4 - HKCU\..\Run: [ieupdate] "C:\WINDOWS\system32\explorer32.exe"
O4 - Startup: Microsoft Office OneNote 2003 Quick Launch.lnk = C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE
O4 - Global Startup: RAMASST.lnk = C:\WINDOWS\system32\RAMASST.exe
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.toshibadirect.com/dpdstart
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - Agere Systems - C:\WINDOWS\system32\agrsmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: DVD-RAM_Service - Matsubleepa Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel® PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Swupdtmr - Unknown owner - c:\TOSHIBA\IVP\swupdate\swupdtmr.exe
O23 - Service: TOSHIBA Application Service (TAPPSRV) - TOSHIBA Corp. - C:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe

--
End of file - 9710 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Microsoft_Hardware_Launch_IType_exe.job
C:\WINDOWS\tasks\Registration reminder 2.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{037C7B8A-151A-49E6-BAED-CC05FCB50328}]
C:\WINDOWS\system32\winsrc.dll [2008-12-17 338944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14 63136]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2008-12-08 304736]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5CA3D70E-1895-11CF-8E15-001234567890}]
DriveLetterAccess - C:\WINDOWS\System32\DLA\DLASHX_W.DLL [2005-08-01 110652]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - c:\program files\google\googletoolbar1.dll [2005-11-07 720896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll [2005-11-07 720896]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MCUpdateExe"=C:\PROGRA~1\mcafee.com\agent\McUpdate.exe [2006-01-11 212992]
"MCAgentExe"=c:\PROGRA~1\mcafee.com\agent\mcagent.exe [2005-09-22 303104]
"ATIPTA"=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe [2005-08-05 344064]
"SynTPLpr"=C:\Program Files\Synaptics\SynTP\SynTPLpr.exe [2004-10-14 98394]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2004-10-14 688218]
"THotkey"=C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe [2005-11-25 352256]
"NDSTray.exe"=NDSTray.exe []
"Tvs"=C:\Program Files\Toshiba\Tvs\TvsTray.exe [2005-11-10 73728]
"DLA"=C:\WINDOWS\System32\DLA\DLACTRLW.EXE [2005-08-01 122940]
"TFncKy"=TFncKy.exe []
"TPSMain"=C:\WINDOWS\system32\TPSMain.exe [2005-05-31 282624]
"PadTouch"=C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe [2005-07-15 1077322]
"SmoothView"=C:\Program Files\TOSHIBA\TOSHIBA Zooming Utility\SmoothView.exe [2005-04-26 122880]
"Pinger"=c:\toshiba\ivp\ism\pinger.exe [2005-03-17 151552]
"CFSServ.exe"=CFSServ.exe -NoClient []
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2008-01-29 16859648]
"Alcmtr"=C:\WINDOWS\ALCMTR.EXE [2005-05-03 69632]
"PCMAgent"=C:\Program Files\CyberLink\PowerCinema for TOSHIBA\PCMAgent.exe [2007-12-13 143360]
"CLMLServer"=C:\Program Files\CyberLink\PowerCinema for TOSHIBA\Kernel\CLML\CLMLSvc.exe [2008-02-14 184320]
"IntelZeroConfig"=C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe [2005-12-05 667718]
"IntelWireless"=C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe [2005-11-28 602182]
"LtMoh"=C:\Program Files\ltmoh\Ltmoh.exe [2005-12-16 188416]
"igfxtray"=C:\WINDOWS\system32\igfxtray.exe [2005-11-28 98304]
"igfxhkcmd"=C:\WINDOWS\system32\hkcmd.exe [2005-11-28 77824]
"igfxpers"=C:\WINDOWS\system32\igfxpers.exe [2005-11-28 118784]
"itype"=C:\Program Files\Microsoft IntelliType Pro\itype.exe [2008-06-10 1442888]
"IntelliPoint"=C:\Program Files\Microsoft IntelliPoint\ipoint.exe [2008-06-10 1406024]
"TkBellExe"=C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2008-12-08 185872]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2004-08-04 15360]
"TOSCDSPD"=C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe [2004-12-30 65536]
"LtMoh"=C:\Program Files\ltmoh\Ltmoh.exe [2005-12-16 188416]
"Aim6"=C:\Program Files\AIM6\aim6.exe [2008-10-21 50472]
"70222955187644663222963928156048"=C:\Program Files\A360\av360.exe [2008-12-17 2031616]
"ieupdate"=C:\WINDOWS\system32\explorer32.exe [2008-12-17 122368]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup
RAMASST.lnk - C:\WINDOWS\system32\RAMASST.exe

C:\Documents and Settings\Gogsi\Start Menu\Programs\Startup
Microsoft Office OneNote 2003 Quick Launch.lnk - C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2005-08-03 46080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2005-11-28 135168]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\TOSHIBA\ConfigFree\CFXFER.exe"="C:\Program Files\TOSHIBA\ConfigFree\CFXFER.exe:*:Enabled:ConfigFree SUMMIT Engine"
"C:\Program Files\Common Files\AOL\Loader\aolload.exe"="C:\Program Files\Common Files\AOL\Loader\aolload.exe:*:Enabled:AOL Loader"
"C:\Program Files\AIM6\aim6.exe"="C:\Program Files\AIM6\aim6.exe:*:Enabled:AIM"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\D]
shell\AutoRun\command - D:\INSTALL.EXE

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\E]
shell\AutoRun\command - E:\LaunchU3.exe -a

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{33d522de-c4f2-11dd-bfde-00038a000015}]
shell\AutoRun\command - E:\LaunchU3.exe -a


======List of files/folders created in the last 1 months======

2008-12-17 21:05:13 ----D---- C:\rsit
2008-12-17 21:05:13 ----D---- C:\Program Files\trend micro
2008-12-17 18:02:12 ----A---- C:\WINDOWS\system32\MRT.INI
2008-12-17 18:00:29 ----A---- C:\WINDOWS\system32\MRT.exe
2008-12-17 18:00:18 ----HDC---- C:\WINDOWS\$NtUninstallKB960714$
2008-12-17 17:58:54 ----A---- C:\WINDOWS\system32\winsrc.dll
2008-12-17 17:58:53 ----A---- C:\WINDOWS\system32\explorer32.exe
2008-12-17 17:58:36 ----A---- C:\WINDOWS\system32\ieupdates.exe
2008-12-17 17:56:09 ----D---- C:\Program Files\A360
2008-12-13 03:06:05 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2008-12-13 03:06:01 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2008-12-13 03:05:56 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2008-12-13 03:05:51 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2008-12-13 03:05:46 ----HDC---- C:\WINDOWS\$NtUninstallKB935448$
2008-12-13 03:05:41 ----HDC---- C:\WINDOWS\$NtUninstallKB952069_WM9$
2008-12-13 03:05:36 ----HDC---- C:\WINDOWS\$NtUninstallKB955839$
2008-12-13 03:05:32 ----HDC---- C:\WINDOWS\$NtUninstallKB956391$
2008-12-13 03:05:27 ----HDC---- C:\WINDOWS\$NtUninstallKB957095$
2008-12-13 03:05:10 ----HDC---- C:\WINDOWS\$NtUninstallKB958215$
2008-12-13 03:05:04 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2008-12-13 03:04:59 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2008-12-13 03:04:52 ----HDC---- C:\WINDOWS\$NtUninstallKB954211$
2008-12-13 03:04:20 ----HDC---- C:\WINDOWS\$NtUninstallKB956841$
2008-12-13 03:02:55 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2008-12-13 03:02:29 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2008-12-13 03:02:24 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2008-12-13 03:02:15 ----HDC---- C:\WINDOWS\$NtUninstallKB923689$
2008-12-13 03:01:48 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2008-12-13 03:01:43 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2008-12-13 03:01:40 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2008-12-13 03:01:35 ----HDC---- C:\WINDOWS\$NtUninstallKB954600$
2008-12-13 03:01:30 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2008-12-13 03:01:25 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2008-12-13 03:01:20 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
2008-12-13 03:01:17 ----D---- C:\Program Files\MSXML 4.0
2008-12-13 03:01:05 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2008-12-13 03:00:48 ----HDC---- C:\WINDOWS\$NtUninstallKB936782_WMP10$
2008-12-12 11:23:24 ----D---- C:\Program Files\PokerStars
2008-12-12 11:16:46 ----D---- C:\Program Files\Full Tilt Poker
2008-12-12 03:00:29 ----D---- C:\WINDOWS\system32\PreInstall
2008-12-12 03:00:27 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2008-12-10 21:26:35 ----D---- C:\Documents and Settings\Gogsi\Application Data\acccore
2008-12-10 21:25:56 ----D---- C:\Documents and Settings\All Users\Application Data\acccore
2008-12-10 21:25:48 ----D---- C:\Documents and Settings\All Users\Application Data\AOL OCP
2008-12-10 21:25:09 ----D---- C:\Program Files\AIM6
2008-12-10 11:46:08 ----D---- C:\Documents and Settings\Gogsi\Application Data\Move Networks
2008-12-10 11:27:54 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2008-12-08 21:50:23 ----A---- C:\WINDOWS\system32\wnaspi32.dll
2008-12-08 21:50:21 ----A---- C:\WINDOWS\system32\clrviddc.dll
2008-12-08 21:35:44 ----D---- C:\Program Files\Common Files\xing shared
2008-12-08 21:35:26 ----D---- C:\Documents and Settings\Gogsi\Application Data\Real
2008-12-08 21:21:49 ----D---- C:\Program Files\Microsoft IntelliPoint
2008-12-08 21:21:20 ----HDC---- C:\WINDOWS\$NtUninstallWdf01005$
2008-12-08 21:20:55 ----A---- C:\WINDOWS\system32\wdfcoinstaller01005.dll
2008-12-08 21:20:21 ----D---- C:\Program Files\Microsoft IntelliType Pro
2008-12-08 21:18:26 ----D---- C:\Program Files\MSXML 6.0
2008-12-08 21:17:31 ----A---- C:\WINDOWS\system32\hidserv.dll
2008-12-08 20:44:14 ----A---- C:\WINDOWS\system32\igfxres.dll
2008-12-08 20:30:45 ----D---- C:\Documents and Settings\Gogsi\Application Data\Mozilla
2008-12-08 20:27:50 ----A---- C:\WINDOWS\msoffice.ini
2008-12-08 20:23:13 ----D---- C:\Program Files\Mozilla Firefox
2008-12-08 20:22:15 ----D---- C:\WINDOWS\system32\LogFiles
2008-12-08 15:41:35 ----D---- C:\Program Files\ltmoh
2008-12-08 15:36:41 ----A---- C:\WINDOWS\system32\igfxTMM.dll
2008-12-08 15:36:41 ----A---- C:\WINDOWS\system32\igfxCoIn_v1132.dll
2008-12-08 15:36:41 ----A---- C:\WINDOWS\system32\igdumd32.dll
2008-12-08 15:36:41 ----A---- C:\WINDOWS\system32\ig4icd32.dll
2008-12-08 15:36:41 ----A---- C:\WINDOWS\system32\ig4dev32.dll
2008-12-08 15:36:41 ----A---- C:\WINDOWS\system32\difx32.dll
2008-12-08 15:35:47 ----A---- C:\WINDOWS\system32\igxpun.exe
2008-12-08 15:35:47 ----A---- C:\WINDOWS\system32\difxapi.dll
2008-12-07 23:27:33 ----D---- C:\Config.Msi
2008-12-07 23:27:19 ----D---- C:\Documents and Settings\All Users\Application Data\Intel
2008-12-07 23:27:03 ----D---- C:\Documents and Settings\Gogsi\Application Data\Intel
2008-12-07 23:26:56 ----D---- C:\Intel Proset.temp
2008-12-07 23:00:37 ----A---- C:\WINDOWS\system32\e100bmsg.dll
2008-12-07 23:00:01 ----A---- C:\WINDOWS\system32\Prounstl.exe
2008-12-07 23:00:00 ----A---- C:\WINDOWS\system32\NicIn32.dll
2008-12-07 23:00:00 ----A---- C:\WINDOWS\system32\NicCo32.dll
2008-12-07 22:58:28 ----D---- C:\Intel Display.temp
2008-12-07 22:57:44 ----D---- C:\Modem.temp
2008-12-07 22:57:05 ----A---- C:\ta6modemx.exe
2008-12-07 22:56:35 ----D---- C:\Documents and Settings\Gogsi\Application Data\Macromedia
2008-12-07 22:34:44 ----D---- C:\Intel Driver.temp
2008-12-07 22:34:13 ----D---- C:\Documents and Settings\Gogsi\Application Data\U3
2008-12-07 21:38:35 ----D---- C:\Documents and Settings\Gogsi\Application Data\ArcSoft
2008-12-07 21:38:22 ----HD---- C:\C_DILLA
2008-12-07 21:38:22 ----A---- C:\WINDOWS\CDILLA64.EXE
2008-12-07 21:38:21 ----A---- C:\WINDOWS\CDILLA40.DLL
2008-12-07 21:38:21 ----A---- C:\WINDOWS\CDILLA32.DLL
2008-12-07 21:38:21 ----A---- C:\WINDOWS\CDILLA16.EXE
2008-12-07 21:38:21 ----A---- C:\WINDOWS\CDILLA13.DLL
2008-12-07 21:38:21 ----A---- C:\WINDOWS\CDILLA10.EXE
2008-12-07 21:38:21 ----A---- C:\WINDOWS\CDILLA05.DLL
2008-12-07 21:37:29 ----D---- C:\Documents and Settings\Gogsi\Application Data\CyberLink
2008-12-07 20:51:40 ----D---- C:\temp
2008-12-07 20:51:35 ----D---- C:\Documents and Settings\All Users\Application Data\Atheros
2008-12-07 20:48:33 ----D---- C:\Documents and Settings\All Users\Application Data\CyberLink
2008-12-07 20:48:12 ----D---- C:\Program Files\CyberLink
2008-12-07 20:40:39 ----D---- C:\Program Files\Motorola
2008-12-07 20:40:31 ----D---- C:\WINDOWS\SM56Setup
2008-12-07 20:39:12 ----A---- C:\WINDOWS\SkyTel.exe
2008-12-07 20:39:09 ----A---- C:\WINDOWS\Alcmtr.exe
2008-12-07 20:38:58 ----A---- C:\WINDOWS\HideWin.exe
2008-12-07 20:38:02 ----D---- C:\Program Files\REALTEK RTL8187B Wireless LAN Driver
2008-12-07 20:35:30 ----N---- C:\WINDOWS\agrdel64.exe
2008-12-07 20:33:39 ----D---- C:\Documents and Settings\Gogsi\Application Data\InstallShield
2008-12-07 20:32:13 ----DC---- C:\WINDOWS\system32\DRVSTORE
2008-12-07 20:32:12 ----D---- C:\Program Files\Intel
2008-12-07 20:32:00 ----D---- C:\Intel
2008-12-07 20:30:36 ----D---- C:\Documents and Settings\Gogsi\Application Data\WinBatch
2008-12-07 17:25:46 ----D---- C:\KB893357.temp
2008-12-07 17:23:52 ----D---- C:\Realtek Lan.temp
2008-12-07 17:20:54 ----D---- C:\Chipset and Display.temp
2008-12-07 17:20:32 ----A---- C:\WINDOWS\system32\DelRunOnceReg.exe
2008-12-07 17:20:29 ----A---- C:\WINDOWS\system32\results.txt
2008-12-07 17:19:56 ----D---- C:\Atheros Utility.temp
2008-12-07 17:19:15 ----D---- C:\Program Files\Atheros
2008-12-07 17:19:00 ----D---- C:\Atheros Driver.temp
2008-12-07 17:16:20 ----D---- C:\Documents and Settings\Gogsi\Application Data\Sonic
2008-12-07 17:02:00 ----A---- C:\WINDOWS\system32\wmpns.dll
2008-12-07 17:01:51 ----SD---- C:\Documents and Settings\Gogsi\Application Data\Microsoft
2008-12-07 17:01:51 ----D---- C:\Documents and Settings\Gogsi\Application Data\You've Got Pictures Screensaver
2008-12-07 17:01:51 ----D---- C:\Documents and Settings\Gogsi\Application Data\toshiba
2008-12-07 17:01:51 ----D---- C:\Documents and Settings\Gogsi\Application Data\Intuit
2008-12-07 17:01:51 ----D---- C:\Documents and Settings\Gogsi\Application Data\Identities
2008-12-07 17:01:51 ----D---- C:\Documents and Settings\Gogsi\Application Data\ATI
2008-12-07 17:01:51 ----D---- C:\Documents and Settings\Gogsi\Application Data\AOL
2008-12-07 17:01:51 ----D---- C:\Documents and Settings\Gogsi\Application Data\Adobe
2008-12-07 17:01:51 ----ASH---- C:\Documents and Settings\Gogsi\Application Data\desktop.ini
2008-12-07 16:58:47 ----A---- C:\WINDOWS\ModemLog_TOSHIBA Software Modem #2.txt
2008-12-07 16:55:02 ----SHD---- C:\RECYCLER
2008-12-07 16:55:01 ----A---- C:\WINDOWS\smscfg.ini
2008-12-07 16:54:41 ----D---- C:\WINDOWS\system32\DLA
2008-12-07 16:54:41 ----A---- C:\WINDOWS\system32\DLAAPI_W.DLL
2008-12-07 16:54:41 ----A---- C:\WINDOWS\DLA.EXE
2008-12-07 16:53:07 ----D---- C:\Program Files\ArcSoft
2008-12-07 16:53:07 ----A---- C:\WINDOWS\pcdlib32.dll
2008-12-07 16:53:07 ----A---- C:\WINDOWS\CS_setup.ini
2008-12-07 16:51:53 ----SHD---- C:\System Volume Information

======List of files/folders modified in the last 1 months======

2008-12-17 21:05:21 ----D---- C:\WINDOWS\Prefetch
2008-12-17 21:05:13 ----D---- C:\Program Files
2008-12-17 21:00:24 ----A---- C:\WINDOWS\ModemLog_TOSHIBA Software Modem.txt
2008-12-17 19:38:50 ----D---- C:\WINDOWS
2008-12-17 19:37:40 ----AD---- C:\WINDOWS\system32
2008-12-17 18:00:22 ----RSHDC---- C:\WINDOWS\system32\dllcache
2008-12-17 18:00:05 ----HD---- C:\WINDOWS\inf
2008-12-17 18:00:04 ----HD---- C:\WINDOWS\$hf_mig$
2008-12-17 18:00:03 ----D---- C:\WINDOWS\system32\CatRoot2
2008-12-17 15:11:27 ----D---- C:\WINDOWS\Temp
2008-12-16 07:20:18 ----A---- C:\WINDOWS\dirsaver.ini
2008-12-15 11:45:18 ----A---- C:\WINDOWS\SchedLgU.Txt
2008-12-14 00:05:11 ----SD---- C:\WINDOWS\Tasks
2008-12-14 00:05:11 ----A---- C:\WINDOWS\setuplog.txt
2008-12-13 03:06:07 ----A---- C:\WINDOWS\imsins.BAK
2008-12-13 03:06:06 ----AD---- C:\WINDOWS\system32\drivers
2008-12-13 03:05:58 ----D---- C:\Program Files\Messenger
2008-12-13 03:05:19 ----D---- C:\Program Files\Internet Explorer
2008-12-13 03:04:13 ----SHD---- C:\WINDOWS\Installer
2008-12-13 03:01:40 ----D---- C:\WINDOWS\WinSxS
2008-12-12 11:16:45 ----HD---- C:\Program Files\InstallShield Installation Information
2008-12-12 09:33:23 ----A---- C:\WINDOWS\system32\mshtml.dll
2008-12-11 16:44:51 ----D---- C:\Program Files\MSN
2008-12-10 21:25:58 ----D---- C:\Program Files\Viewpoint
2008-12-10 21:25:49 ----SD---- C:\WINDOWS\Downloaded Program Files
2008-12-10 21:25:48 ----D---- C:\Documents and Settings\All Users\Application Data\AOL
2008-12-10 21:25:33 ----D---- C:\Program Files\Common Files\AOL
2008-12-10 19:54:31 ----D---- C:\Documents and Settings\All Users\Application Data\McAfee.com
2008-12-10 11:27:58 ----D---- C:\WINDOWS\SoftwareDistribution
2008-12-10 11:27:58 ----D---- C:\WINDOWS\Help
2008-12-08 21:51:15 ----D---- C:\WINDOWS\system
2008-12-08 21:35:44 ----D---- C:\Program Files\Common Files
2008-12-08 21:35:43 ----D---- C:\Program Files\Common Files\Real
2008-12-08 21:35:39 ----A---- C:\WINDOWS\system32\rmoc3260.dll
2008-12-08 21:35:33 ----A---- C:\WINDOWS\system32\pndx5032.dll
2008-12-08 21:35:33 ----A---- C:\WINDOWS\system32\pndx5016.dll
2008-12-08 21:35:32 ----A---- C:\WINDOWS\system32\pncrt.dll
2008-12-08 21:20:48 ----RSD---- C:\WINDOWS\Fonts
2008-12-08 21:19:16 ----D---- C:\WINDOWS\system32\CatRoot
2008-12-08 20:34:13 ----D---- C:\Program Files\McAfee.com
2008-12-08 20:29:29 ----D---- C:\Program Files\Pure Networks
2008-12-08 20:28:02 ----A---- C:\WINDOWS\win.ini
2008-12-08 20:26:42 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2008-12-08 15:42:27 ----D---- C:\WINDOWS\security
2008-12-08 15:41:35 ----D---- C:\WINDOWS\Driver Cache
2008-12-08 15:35:47 ----D---- C:\WINDOWS\system32\Lang
2008-12-07 20:45:04 ----D---- C:\WINDOWS\system32\ReinstallBackups
2008-12-07 20:39:41 ----D---- C:\WINDOWS\system32\RTCOM
2008-12-07 20:39:09 ----D---- C:\Program Files\Realtek
2008-12-07 17:02:01 ----A---- C:\WINDOWS\OEWABLog.txt
2008-12-07 17:01:57 ----AD---- C:\WINDOWS\I386
2008-12-07 17:01:50 ----D---- C:\Documents and Settings
2008-12-07 17:01:34 ----D---- C:\WINDOWS\system32\Restore
2008-12-07 17:01:29 ----RASH---- C:\boot.ini
2008-12-07 16:59:25 ----D---- C:\WINDOWS\Registration
2008-12-07 16:57:05 ----A---- C:\WINDOWS\system.ini
2008-12-07 16:54:56 ----D---- C:\WINDOWS\repair
2008-12-07 16:54:42 ----A---- C:\WINDOWS\wininit.ini
2008-12-07 16:54:41 ----D---- C:\Program Files\Sonic
2008-12-07 16:54:35 ----D---- C:\ARCSOFT_TRIAL

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 DLACDBHM;DLACDBHM; C:\WINDOWS\System32\Drivers\DLACDBHM.SYS [2005-07-07 5628]
R1 DLARTL_N;DLARTL_N; C:\WINDOWS\System32\Drivers\DLARTL_N.SYS [2005-07-07 22684]
R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-04 36096]
R1 meiudf;meiudf; C:\WINDOWS\System32\Drivers\meiudf.sys [2005-06-02 102384]
R1 Tcpip6;Microsoft IPv6 Protocol Driver; C:\WINDOWS\system32\DRIVERS\tcpip6.sys [2004-08-04 223616]
R2 Aspi32;Aspi32; C:\WINDOWS\system32\drivers\Aspi32.sys [1999-09-10 25244]
R2 DLABOIOM;DLABOIOM; C:\WINDOWS\System32\DLA\DLABOIOM.SYS [2005-08-01 25628]
R2 DLADResN;DLADResN; C:\WINDOWS\System32\DLA\DLADResN.SYS [2005-08-01 2496]
R2 DLAIFS_M;DLAIFS_M; C:\WINDOWS\System32\DLA\DLAIFS_M.SYS [2005-08-01 86524]
R2 DLAOPIOM;DLAOPIOM; C:\WINDOWS\System32\DLA\DLAOPIOM.SYS [2005-08-01 14684]
R2 DLAPoolM;DLAPoolM; C:\WINDOWS\System32\DLA\DLAPoolM.SYS [2005-08-01 6364]
R2 DLAUDF_M;DLAUDF_M; C:\WINDOWS\System32\DLA\DLAUDF_M.SYS [2005-08-01 87004]
R2 DLAUDFAM;DLAUDFAM; C:\WINDOWS\System32\DLA\DLAUDFAM.SYS [2005-08-01 92700]
R2 DRVNDDM;DRVNDDM; C:\WINDOWS\System32\Drivers\DRVNDDM.SYS [2005-07-07 40544]
R2 Netdevio;TOSHIBA Network Device Usermode I/O Protocol; C:\WINDOWS\system32\DRIVERS\netdevio.sys [2003-01-29 12032]
R2 NwlnkIpx;NWLink IPX/SPX/NetBIOS Compatible Transport Protocol; C:\WINDOWS\system32\DRIVERS\nwlnkipx.sys [2004-08-04 88448]
R2 NwlnkNb;NWLink NetBIOS; C:\WINDOWS\system32\DRIVERS\nwlnknb.sys [2004-08-04 63232]
R2 NwlnkSpx;NWLink SPX/SPXII Protocol; C:\WINDOWS\system32\DRIVERS\nwlnkspx.sys [2004-08-04 55936]
R2 s24trans;WLAN Transport; C:\WINDOWS\system32\DRIVERS\s24trans.sys [2005-11-28 13568]
R3 AgereSoftModem;TOSHIBA V92 Software Modem; C:\WINDOWS\system32\DRIVERS\AGRSM.sys [2006-08-31 1161152]
R3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2004-08-04 60800]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\WINDOWS\system32\DRIVERS\CmBatt.sys [2004-08-03 14080]
R3 E100B;Intel® PRO Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e100b325.sys [2005-10-10 163328]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-11-28 1353820]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-01-30 4725760]
R3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2004-08-04 61824]
R3 sdbus;sdbus; C:\WINDOWS\system32\DRIVERS\sdbus.sys [2004-08-04 67584]
R3 SynTP;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2004-10-14 185728]
R3 tbiosdrv;Toshiba Logical Tbios Device; C:\WINDOWS\system32\DRIVERS\tbiosdrv.sys [2005-08-24 9472]
R3 tunmp;Microsoft Tun Miniport Adapter Driver; C:\WINDOWS\system32\DRIVERS\tunmp.sys [2004-08-04 12416]
R3 TVALD;Toshiba Mobile PC Service; C:\WINDOWS\system32\DRIVERS\NBSMI.sys [2005-10-20 6144]
R3 Tvs;TOSHIBA Virtual Sound with SRS technologies; C:\WINDOWS\system32\DRIVERS\Tvs.sys [2005-11-15 43264]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-03 26624]
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-03 20480]
R3 w39n51;Intel® PRO/Wireless 3945ABG Adapter Driver; C:\WINDOWS\system32\DRIVERS\w39n51.sys [2005-12-05 1428096]
S1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-03 14848]
S3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2005-08-03 1273344]
S3 C-Dilla;C-Dilla; \??\C:\WINDOWS\system32\drivers\CDANT.SYS []
S3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
S3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd32.sys [2006-11-28 1476096]
S3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
S3 nm;Network Monitor Driver; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2004-08-04 40320]
S3 NuidFltr;NUID filter driver; C:\WINDOWS\system32\DRIVERS\NuidFltr.sys [2008-06-09 18504]
S3 Point32;Microsoft IntelliPoint Filter Driver; C:\WINDOWS\system32\DRIVERS\point32.sys [2008-06-10 31048]
S3 RTL8023xp;Realtek 10/100/1000 NIC Family all in one NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtlnicxp.sys [2005-03-04 74496]
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2004-08-04 17024]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
S3 wanatw;WAN Miniport (ATW); C:\WINDOWS\system32\DRIVERS\wanatw4.sys [2003-01-10 33588]
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 6to4;IPv6 Helper Service; C:\WINDOWS\system32\svchost.exe [2004-08-04 14336]
R2 AgereModemAudio;Agere Modem Call Progress Audio; C:\WINDOWS\system32\agrsmsvc.exe [2006-09-12 9216]
R2 C-DillaSrv;C-DillaSrv; C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE [2001-09-10 32256]
R2 CFSvcs;ConfigFree Service; C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe [2005-01-17 40960]
R2 DVD-RAM_Service;DVD-RAM_Service; C:\WINDOWS\system32\DVDRAMSV.exe [2004-08-28 110592]
R2 EvtEng;Intel® PROSet/Wireless Event Log; C:\Program Files\Intel\Wireless\Bin\EvtEng.exe [2005-11-28 114753]
R2 McDetect.exe;McAfee WSC Integration; c:\program files\mcafee.com\agent\mcdetect.exe [2005-10-13 126976]
R2 McTskshd.exe;McAfee Task Scheduler; c:\PROGRA~1\mcafee.com\agent\mctskshd.exe [2005-08-24 122368]
R2 NwSapAgent;SAP Agent; C:\WINDOWS\system32\svchost.exe [2004-08-04 14336]
R2 RegSrvc;Intel® PROSet/Wireless Registry Service; C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe [2005-11-28 217164]
R2 S24EventMonitor;Intel® PROSet/Wireless Service; C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe [2005-11-28 540745]
R2 Swupdtmr;Swupdtmr; c:\TOSHIBA\IVP\swupdate\swupdtmr.exe [2005-07-12 40960]
R2 TAPPSRV;TOSHIBA Application Service; C:\Program Files\TOSHIBA\TOSHIBA Applet\TAPPSRV.exe [2005-08-10 35328]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
R2 Viewpoint Manager Service;Viewpoint Manager Service; C:\Program Files\Viewpoint\Common\ViewpointService.exe [2007-01-04 24652]
S2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2005-08-03 380928]
S2 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2004-08-04 267776]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [2004-07-15 32768]
S3 mcupdmgr.exe;McAfee SecurityCenter Update Manager; C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe [2005-07-01 245760]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]

-----------------EOF-----------------

Edited by cor3, 17 December 2008 - 09:10 PM.


BC AdBot (Login to Remove)

 


#2 KoanYorel

KoanYorel

    Bleepin' Conundrum


  • Members
  • 19,461 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:65 miles due East of the "Logic Free Zone", in Md, USA
  • Local time:07:31 PM

Posted 26 December 2008 - 05:27 PM

Hello and welcome to Bleeping Computer

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help.

If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine. If you have not done so, include a description of your problem, along with any steps you may have performed so far.

Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.


Thanks and again sorry for the delay.

We need to see some information about what is happening in your machine. Please perform the following scan:
  • Download DDS by sUBs from one of the following links. Save it to your desktop.
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explaination about the tool. No input is needed, the scan is running.
  • Notepad will open with the results, click no to the Optional_Scan
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control HERE

R,
K
The only easy day was yesterday.

...some do, some don't; some will, some won't (WR)

#3 KoanYorel

KoanYorel

    Bleepin' Conundrum


  • Members
  • 19,461 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:65 miles due East of the "Logic Free Zone", in Md, USA
  • Local time:07:31 PM

Posted 03 January 2009 - 01:14 PM

Due to the lack of feedback, this Topic is now closed.

If you still have problems, please Start a new topic.

R,
K
The only easy day was yesterday.

...some do, some don't; some will, some won't (WR)




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users