Logfile of random's system information tool 1.09 (written by random/random) Run by Mariusz at 2013-02-04 08:33:52 Microsoft Windows 7 Home Premium Service Pack 1 System drive C: has 124 GB (56%) free of 222 GB Total RAM: 2814 MB (51% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 08:41:11, on 2013-02-04 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v9.00 (9.00.8112.16457) Boot mode: Normal Running processes: C:\Program Files\AVAST Software\Avast\AvastUI.exe C:\Program Files (x86)\Opera\opera.exe C:\Users\Mariusz\Desktop\OTL.exe E:\Program Files (x86)\Razer\Razer Game Booster\gbtray.exe C:\Program Files (x86)\Counter-Strike Source\hl2.exe C:\Program Files\trend micro\Mariusz.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = R3 - URLSearchHook: (no name) - - (no file) O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O3 - Toolbar: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - (no file) O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui O4 - HKLM\..\Run: [hpqSRMon] c:\program files (x86)\hp\digital imaging\bin\hpqsrmon.exe O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe" -osboot O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll O9 - Extra button: Fantapper - {AB745E88-1BAD-4B80-A83E-7C964EAC9804} - (no file) (HKCU) O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O17 - HKLM\System\CCS\Services\Tcpip\..\{A93DD5D7-0BE6-44C4-BD59-27432211CA18}: NameServer = 212.85.112.32,193.110.121.20 O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll O23 - Service: Advanced SystemCare Service 6 (AdvancedSystemCareService6) - IObit - E:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing) O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: Dritek WMI Service (DsiWMIService) - Dritek System Inc. - C:\Program Files (x86)\Launch Manager\dsiwmis.exe O23 - Service: System szyfrowania plików (EFS) (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\eMachines\eMachines Power Management\ePowerSvc.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: MBAMScheduler - Malwarebytes Corporation - E:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe O23 - Service: MBAMService - Malwarebytes Corporation - E:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: Bufor wydruku (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Wykrywanie usług interakcyjnych (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: Dysk wirtualny (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: Usługa udostępniania w sieci programu Windows Media Player (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 5686 bytes ======Listing Processes====== \SystemRoot\System32\smss.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 wininit.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 C:\Windows\system32\services.exe C:\Windows\system32\lsass.exe C:\Windows\system32\lsm.exe winlogon.exe C:\Windows\system32\svchost.exe -k DcomLaunch "E:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe" C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\system32\atiesrxx.exe C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\system32\svchost.exe -k GPSvcGroup C:\Windows\system32\svchost.exe -k LocalService atieclxx C:\Windows\system32\svchost.exe -k NetworkService "C:\Windows\system32\Dwm.exe" C:\Windows\Explorer.EXE "C:\Program Files\AVAST Software\Avast\AvastSvc.exe" C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork "C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService "E:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe" C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe C:\Windows\SysWOW64\PnkBstrA.exe "C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe" C:\Windows\system32\svchost.exe -k iissvcs "C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe" "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui "C:\Program Files\eMachines\eMachines Power Management\ePowerEvent.exe" "C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE" C:\Windows\system32\svchost.exe -k WindowsMobile "C:\Program Files (x86)\Opera\opera.exe" "C:\Users\Mariusz\Desktop\OTL.exe" "E:\Program Files (x86)\Razer\Razer Game Booster\gbtray.exe" -settingchange "C:\Program Files (x86)\Counter-Strike Source\hl2.exe" -game cstrike -console -steam -appid 240 "C:\Windows\notepad.exe" C:\Users\Mariusz\Desktop\Extras.Txt "C:\Users\Mariusz\Desktop\RSITx64.exe" C:\Windows\system32\wbem\wmiprvse.exe ======Scheduled tasks folder====== C:\Windows\tasks\avast! Emergency Update.job C:\Windows\tasks\Go for FilesUpdate.job C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3847028452-208903315-60195930-1000Core1cdcd982f9d762b.job C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3847028452-208903315-60195930-1000UA.job C:\Windows\tasks\RealUpgradeScheduledTaskS-1-5-21-3847028452-208903315-60195930-1000.job C:\Windows\tasks\ReclaimerResumeInstall_Mariusz.job C:\Windows\tasks\YourFile Update.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}] avast! WebRep - C:\Program Files\AVAST Softwar [2012-04-29 6426672] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-12-28 551400] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-12-28 209384] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2012-09-25 449512] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}] avast! WebRep - C:\Program Files\AVAST Softwar [2012-04-29 6426672] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2012-09-25 155384] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\AVAST Softwar [2012-04-29 6426672] [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar] {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Softwar [2012-04-29 6426672] {D4027C7F-154A-4066-A1AD-4243D8127440} [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-07-29 11101800] "AmIcoSinglun64"=C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [2010-06-10 324608] "Acer ePower Management"=C:\Program Files\eMachines\eMachines Power Management\ePowerTray.exe [2011-01-05 860040] "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-09-18 1842472] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [2012-10-11 59280] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task] E:\Program Files (x86)\QuickTime\QTTask.exe [2012-10-25 421888] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-11-15 642216] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Mobile Device Center] C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 660360] [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run] "avast"=C:\Program Files\AVAST Softwar [2012-04-29 6426672] "hpqSRMon"=c:\program files (x86)\hp\digital imaging\bin\hpqsrmon.exe [2008-07-22 150528] "TkBellExe"=C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe [2012-02-29 296056] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"=credssp.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=5 "ConsentPromptBehaviorUser"=3 "EnableUIADesktopToggle"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=145 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32] "vidc.mrle"=msrle32.dll "vidc.msvc"=msvidc32.dll "msacm.imaadpcm"=imaadp32.acm "msacm.msg711"=msg711.acm "msacm.msgsm610"=msgsm32.acm "msacm.msadpcm"=msadp32.acm "midimapper"=midimap.dll "wavemapper"=msacm32.drv "VIDC.UYVY"=msyuv.dll "VIDC.YUY2"=msyuv.dll "VIDC.YVYU"=msyuv.dll "VIDC.IYUV"=iyuv_32.dll "vidc.i420"=iyuv_32.dll "VIDC.YVU9"=tsbyuv.dll "msacm.l3acm"=C:\Windows\System32\l3codeca.acm "MSVideo8"=VfWWDM32.dll "wave"=wdmaud.drv "midi"=wdmaud.drv "mixer"=wdmaud.drv "aux"=wdmaud.drv "vidc.XVID"=xvidvfw.dll "VIDC.FPS1"=frapsv64.dll "wave1"=wdmaud.drv "midi1"=wdmaud.drv "mixer1"=wdmaud.drv "aux1"=wdmaud.drv "VIDC.RTV1"=rtvcvfw64.dll ======File associations====== .inf - install - %SystemRoot%\SysWow64\rundll32.exe setupapi,InstallHinfSection DefaultInstall 132 %1 .js - edit - C:\Windows\System32\Notepad.exe %1 .cpl - cplopen - %SystemRoot%\SysWow64\control.exe "%1",%* ======List of files/folders created in the last 1 month====== 2013-02-04 08:33:53 ----D---- C:\Program Files\trend micro 2013-02-04 08:33:52 ----D---- C:\rsit 2013-02-03 16:05:42 ----D---- C:\Users\Mariusz\AppData\Roaming\Malwarebytes 2013-02-03 16:05:31 ----A---- C:\Windows\system32\drivers\mbam.sys 2013-02-02 21:04:57 ----SHD---- C:\ProgramData\SCPHVY 2013-02-02 21:04:57 ----D---- C:\ProgramData\SUS 2013-02-01 16:54:54 ----D---- C:\Users\Mariusz\AppData\Roaming\taskcreator 2013-01-30 21:16:23 ----A---- C:\Windows\SYSWOW64\shortcut_ex.dat 2013-01-28 11:26:00 ----D---- C:\ProgramData\Mozilla 2013-01-28 11:25:59 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service 2013-01-28 09:48:23 ----D---- C:\Program Files (x86)\System.Data.SQLite 2013-01-23 18:32:03 ----D---- C:\Program Files (x86)\GameSpy Arcade 2013-01-23 18:24:28 ----D---- C:\Program Files (x86)\Aspyr 2013-01-17 08:28:17 ----A---- C:\Windows\ntbtlog.txt 2013-01-13 21:04:54 ----A---- C:\Windows\system32\win32spl.dll 2013-01-13 21:04:53 ----A---- C:\Windows\SYSWOW64\win32spl.dll 2013-01-13 20:59:14 ----A---- C:\Windows\system32\msxml6.dll 2013-01-13 20:59:13 ----A---- C:\Windows\SYSWOW64\msxml6.dll 2013-01-13 20:59:13 ----A---- C:\Windows\system32\msxml3.dll 2013-01-13 20:59:12 ----A---- C:\Windows\SYSWOW64\msxml3.dll 2013-01-13 20:57:24 ----A---- C:\Windows\system32\ncrypt.dll 2013-01-13 20:57:23 ----A---- C:\Windows\SYSWOW64\ncrypt.dll 2013-01-13 20:57:22 ----A---- C:\Windows\SYSWOW64\usp10.dll 2013-01-13 20:57:22 ----A---- C:\Windows\system32\usp10.dll 2013-01-13 20:57:17 ----A---- C:\Windows\system32\Wpc.dll 2013-01-13 20:57:16 ----A---- C:\Windows\system32\gameux.dll 2013-01-13 20:57:15 ----A---- C:\Windows\SYSWOW64\gameux.dll 2013-01-13 20:57:14 ----A---- C:\Windows\SYSWOW64\Wpc.dll 2013-01-13 20:56:14 ----A---- C:\Windows\SYSWOW64\KernelBase.dll 2013-01-13 20:56:14 ----A---- C:\Windows\system32\KernelBase.dll 2013-01-13 20:56:13 ----A---- C:\Windows\system32\kernel32.dll 2013-01-13 20:56:11 ----A---- C:\Windows\SYSWOW64\kernel32.dll 2013-01-13 20:56:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll 2013-01-13 20:56:09 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-01-13 20:56:09 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-01-13 20:56:09 ----A---- C:\Windows\SYSWOW64\wow32.dll 2013-01-13 20:56:09 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll 2013-01-13 20:56:09 ----A---- C:\Windows\system32\wow64win.dll 2013-01-13 20:56:09 ----A---- C:\Windows\system32\wow64cpu.dll 2013-01-13 20:56:09 ----A---- C:\Windows\system32\wow64.dll 2013-01-13 20:56:09 ----A---- C:\Windows\system32\winsrv.dll 2013-01-13 20:56:09 ----A---- C:\Windows\system32\ntvdm64.dll 2013-01-13 20:56:09 ----A---- C:\Windows\system32\conhost.exe 2013-01-13 20:56:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2013-01-13 20:56:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll 2013-01-13 20:56:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll 2013-01-13 20:56:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2013-01-13 20:56:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll 2013-01-13 20:56:08 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-01-13 20:56:08 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-01-13 20:56:08 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2013-01-13 20:56:08 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-01-13 20:56:08 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-01-13 20:56:08 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-01-13 20:56:08 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-01-13 20:56:08 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-01-13 20:56:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll 2013-01-13 20:56:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2013-01-13 20:56:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2013-01-13 20:56:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2013-01-13 20:56:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll 2013-01-13 20:56:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll 2013-01-13 20:56:07 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-01-13 20:56:07 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-01-13 20:56:07 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-01-13 20:56:07 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-01-13 20:56:07 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-01-13 20:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2013-01-13 20:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2013-01-13 20:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll 2013-01-13 20:56:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2013-01-13 20:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-01-13 20:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-01-13 20:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-01-13 20:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-01-13 20:56:06 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-01-13 20:56:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll 2013-01-13 20:56:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll 2013-01-13 20:56:04 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-01-13 20:56:03 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-01-13 20:56:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll 2013-01-13 20:56:00 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-01-13 20:56:00 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-01-13 20:55:59 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-01-13 20:55:58 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll 2013-01-13 20:55:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll 2013-01-13 20:55:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll 2013-01-13 20:55:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll 2013-01-13 20:55:56 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll 2013-01-13 20:55:56 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-01-13 20:55:55 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2013-01-13 20:55:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-01-13 20:55:53 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll 2013-01-13 20:55:53 ----A---- C:\Windows\SYSWOW64\setup16.exe 2013-01-13 20:55:53 ----A---- C:\Windows\SYSWOW64\instnm.exe 2013-01-13 20:55:51 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-01-13 20:55:49 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll 2013-01-13 20:55:48 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-01-13 20:55:42 ----A---- C:\Windows\SYSWOW64\user.exe 2013-01-13 20:54:31 ----A---- C:\Windows\system32\taskhost.exe 2013-01-13 20:46:38 ----A---- C:\Windows\system32\win32k.sys 2013-01-06 08:22:33 ----D---- C:\Users\Mariusz\AppData\Roaming\Patcher 2013-01-05 12:22:39 ----D---- C:\Program Files (x86)\uTorrent 2013-01-05 12:21:32 ----D---- C:\Users\Mariusz\AppData\Roaming\uTorrent ======List of files/folders modified in the last 1 month====== 2013-02-04 08:33:53 ----RD---- C:\Program Files 2013-02-04 08:21:20 ----D---- C:\Program Files (x86)\Counter-Strike Source 2013-02-04 08:12:11 ----D---- C:\Windows\Temp 2013-02-03 19:49:42 ----D---- C:\Windows\system32\catroot2 2013-02-03 18:01:22 ----D---- C:\Windows 2013-02-03 16:05:31 ----D---- C:\Windows\system32\drivers 2013-02-03 11:33:31 ----D---- C:\Windows\Tasks 2013-02-03 11:30:23 ----D---- C:\Windows\System32 2013-02-03 11:30:23 ----A---- C:\Windows\system32\PerfStringBackup.INI 2013-02-03 11:30:22 ----D---- C:\Windows\inf 2013-02-03 11:25:24 ----D---- C:\Users\Mariusz\AppData\Roaming\Real 2013-02-02 21:04:57 ----D---- C:\ProgramData 2013-02-02 21:02:30 ----SHD---- C:\Windows\Installer 2013-02-02 21:02:30 ----D---- C:\Config.Msi 2013-02-02 19:05:12 ----D---- C:\Users\Mariusz\AppData\Roaming\SoftGrid Client 2013-02-01 16:24:15 ----D---- C:\Program Files (x86)\SpeedFan 2013-01-30 21:16:23 ----D---- C:\Windows\SysWOW64 2013-01-28 11:27:56 ----D---- C:\Users\Mariusz\AppData\Roaming\Mozilla 2013-01-28 11:25:59 ----RD---- C:\Program Files (x86) 2013-01-28 11:24:48 ----D---- C:\Program Files (x86)\Mozilla Firefox 2013-01-28 09:48:32 ----RSD---- C:\Windows\assembly 2013-01-23 18:24:10 ----SHD---- C:\System Volume Information 2013-01-21 20:45:26 ----D---- C:\Users\Mariusz\AppData\Roaming\Skype 2013-01-19 18:35:54 ----D---- C:\ProgramData\Microsoft Help 2013-01-18 18:52:05 ----D---- C:\Windows\Microsoft.NET 2013-01-16 09:27:38 ----D---- C:\Windows\debug 2013-01-15 10:29:28 ----D---- C:\Windows\Prefetch 2013-01-15 10:11:52 ----D---- C:\Windows\twain_32 2013-01-15 10:11:24 ----D---- C:\Windows\system32\config 2013-01-14 10:10:10 ----D---- C:\Windows\winsxs 2013-01-14 10:06:43 ----D---- C:\Windows\SYSWOW64\pl-PL 2013-01-14 10:06:43 ----D---- C:\Windows\system32\pl-PL 2013-01-14 10:06:40 ----D---- C:\Windows\AppPatch 2013-01-14 08:49:55 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI 2013-01-13 20:54:26 ----D---- C:\Windows\system32\catroot 2013-01-13 20:17:24 ----SD---- C:\Users\Mariusz\AppData\Roaming\Microsoft 2013-01-10 12:24:09 ----D---- C:\Users\Mariusz\AppData\Roaming\BitTorrent 2013-01-10 12:24:00 ----D---- C:\Windows\Logs 2013-01-09 15:24:14 ----D---- C:\Windows\system32\NDF 2013-01-07 15:34:26 ----D---- C:\Program Files (x86)\Microsoft Office 2013-01-06 08:45:31 ----A---- C:\AutoMapaSetupLog.txt ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2009-08-24 16440] R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888] R0 speedfan;speedfan; C:\Windows\SysWOW64\speedfan.sys [2011-03-18 29592] R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2012-10-15 54072] R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-10-30 984144] R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-10-30 370288] R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-10-30 59728] R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904] R2 AODDriver4.2;AODDriver4.2; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-04-09 57472] R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-10-30 25232] R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-10-30 71600] R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-04-27 6659072] R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-04-27 195584] R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2010-05-12 2229608] R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2012-05-14 96896] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-07-29 2445672] R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\k57nd60a.sys [2010-06-08 406056] R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2012-12-14 24176] R3 Sftfs;Sftfs; C:\Windows\system32\DRIVERS\Sftfslh.sys [2011-10-01 764264] R3 Sftplay;Sftplay; C:\Windows\system32\DRIVERS\Sftplaylh.sys [2011-10-01 268648] R3 Sftredir;Sftredir; C:\Windows\system32\DRIVERS\Sftredirlh.sys [2011-10-01 25960] R3 Sftvol;Sftvol; C:\Windows\system32\DRIVERS\Sftvollh.sys [2011-10-01 22376] R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2009-09-18 292912] R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2009-12-22 38456] R3 wanatw;WAN Miniport (ATW); C:\Windows\system32\DRIVERS\wanatw64.sys [2006-11-29 24064] R3 WinRing0_1_2_0;WinRing0_1_2_0; \??\E:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [2012-11-13 14544] S0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2012-01-09 845560] S3 amdiox64;AMD IO Driver; C:\Windows\system32\DRIVERS\amdiox64.sys [2010-02-18 46136] S3 AmUStor;AM USB Stroage Driver; C:\Windows\system32\drivers\AmUStor.SYS [2010-06-10 40448] S3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2010-04-08 124944] S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232] S3 catchme;catchme; C:\Windows\system32\drivers\catchme.sys [] S3 Dot4;MS IEEE-1284.4 Driver; C:\Windows\system32\DRIVERS\Dot4.sys [2009-07-14 145920] S3 Dot4Print;Print Class Driver for IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2010-11-21 19968] S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2009-07-14 43008] S3 DrvAgent64;DrvAgent64; \??\C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS [2012-11-25 21712] S3 EagleX64;EagleX64; C:\Windows\system32\drivers\EagleX64.sys [] S3 flashusb;flashusb; C:\Windows\system32\DRIVERS\flashusb.sys [2012-06-27 19968] S3 ggflt;SEMC USB Flash Driver Filter; C:\Windows\system32\DRIVERS\ggflt.sys [2009-04-06 13352] S3 ggsemc;SEMC USB Flash Driver; C:\Windows\system32\DRIVERS\ggsemc.sys [2009-04-06 27176] S3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-06-10 6108416] S3 L1E;NDIS Miniport Driver for Atheros AR8121/AR8113/AR8114 PCI-E Ethernet Controller(NDIS6.20); C:\Windows\system32\DRIVERS\L1E62x64.sys [2009-06-20 54272] S3 NTIDrvr;NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [2010-04-28 18432] S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352] S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-10-29 19456] S3 RivaTuner64;RivaTuner64; C:\Windows\system32\drivers\RivaTuner64.sys [] S3 ss_bbus;SAMSUNG USB Mobile Device (WDM); C:\Windows\system32\DRIVERS\ss_bbus.sys [2012-06-27 127488] S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter); C:\Windows\system32\DRIVERS\ss_bmdfl.sys [2012-06-27 18944] S3 ss_bmdm;SAMSUNG USB Mobile Modem; C:\Windows\system32\DRIVERS\ss_bmdm.sys [2012-06-27 161280] S3 ss_bserd;SAMSUNG USB Mobile Logging Driver; C:\Windows\system32\DRIVERS\ss_bserd.sys [2012-06-27 128000] S3 taphss;Anchorfree HSS Adapter; C:\Windows\system32\DRIVERS\taphss.sys [2012-03-06 37888] S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2012-10-29 57856] S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-10-29 30208] S3 UBHelper;UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [2010-04-28 17408] S3 usbbus;LGE Mobile Composite USB Device; C:\Windows\system32\DRIVERS\lgx64bus.sys [2012-03-02 17920] S3 UsbDiag;LGE Mobile USB Serial Port; C:\Windows\system32\DRIVERS\lgx64diag.sys [2012-03-02 28160] S3 USBModem;LGE Mobile USB Modem; C:\Windows\system32\DRIVERS\lgx64modem.sys [2012-03-02 34816] S3 usbscan;Sterownik skanera USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AdvancedSystemCareService6;Advanced SystemCare Service 6; E:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe [2012-10-31 464256] R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-04-27 202752] R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-11-15 361984] R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Softwar [2012-04-29 6426672] R2 cvhsvc;Client Virtualization Handler; C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [2012-01-04 822624] R2 MBAMScheduler;MBAMScheduler; E:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2012-12-14 398184] R2 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240] R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2012-11-18 76888] R2 RapiMgr;Łączność urządzeń z systemem Windows Mobile; C:\Windows\system32\svchost.exe [2009-07-14 27136] R2 sftlist;Application Virtualization Client; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2011-10-01 508776] R2 WcesComm;Łączność urządzeń z systemem Windows Mobile 2003; C:\Windows\system32\svchost.exe [2009-07-14 27136] R3 sftvsa;Application Virtualization Service Agent; C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-01 219496] R3 WAS;@%windir%\system32\inetsrv\iisres.dll,-30001; C:\Windows\system32\svchost.exe [2009-07-14 27136] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] S2 DsiWMIService;Dritek WMI Service; C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2010-08-11 321104] S2 ePowerSvc;Acer ePower Service; C:\Program Files\eMachines\eMachines Power Management\ePowerSvc.exe [2011-01-05 867712] S2 MBAMService;MBAMService; E:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-12-14 682344] S2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136] S2 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240] S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2009-07-14 27136] S3 AppHostSvc;Usługa pomocnika hosta aplikacji; C:\Windows\system32\svchost.exe [2009-07-14 27136] S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376] S3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2009-07-14 27136] S3 hpqddsvc;Usługa HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2009-07-14 27136] S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-01-16 115608] S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184] S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2011-11-08 1255736] S4 GREGService;GREGService; C:\Program Files (x86)\eMachines\Registration\GREGsvc.exe [2010-01-08 23584] S4 Live Updater Service;Live Updater Service; C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe [2011-01-31 244624] S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240] S4 NTIBackupSvc;NTI Backup Now 5 Backup Service; C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2010-04-17 50432] S4 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service; C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2010-04-17 144640] S4 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352] S4 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944] S4 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2012-12-06 541168] S4 W3SVC;@%windir%\system32\inetsrv\iisres.dll,-30003; C:\Windows\system32\svchost.exe [2009-07-14 27136] -----------------EOF-----------------