Itt a main.txt
------------------------------------------------------------------------------
Deckard's System Scanner v20071014.68
Run by q on 2008-01-13 10:50:57
Computer is in Normal Mode.
--------------------------------------------------------------------------------
-- System Restore --------------------------------------------------------------
Successfully created a Deckard's System Scanner Restore Point.
-- Last 5 Restore Point(s) --
23: 2008-01-13 09:51:12 UTC - RP156 - Deckard's System Scanner Restore Point
22: 2008-01-13 08:05:12 UTC - RP155 - ComboFix created restore point
21: 2008-01-12 20:53:56 UTC - RP154 - ComboFix created restore point
20: 2008-01-12 18:14:41 UTC - RP153 - FlyakiteOSX v3.5
19: 2008-01-12 08:02:39 UTC - RP152 - Software Distribution Service 3.0
-- First Restore Point --
1: 2007-12-25 10:51:01 UTC - RP134 - Removed MP3 Player Utilities 4.07
Backed up registry hives.
Performed disk cleanup.
Total Physical Memory: 192 MiB (512 MiB recommended).
-- HijackThis (run as q.exe) ---------------------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:52:17, on 2008.01.13.
Platform: Windows XP Szervizcsomag 2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Documents and Settings\q\Asztal\dss.exe
C:\DOCUME~1\q\Asztal\q.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Hivatkozások
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - D:\Program Files\Real\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: FreshDownload Bar - {ED0E8CA5-42FB-4B18-997B-769E0408E79D} - D:\PROGRA~1\FRESHD~1\FRESHD~1\fdiebar.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "D:\Program Files\Adobe\Reader\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [EPSON Stylus C45 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I3T1.EXE /P23 "EPSON Stylus C45 Series" /O6 "USB001" /M "Stylus C45"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [System Files Updater] C:\WINDOWS\FlyakiteOSX\Tools\System Files Updater.exe /S
O4 - HKLM\..\Run: [RemoteControl] "D:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [SDFix] C:\SDFix\RunThis.bat /second
O4 - HKLM\..\RunOnce: [*Restore] C:\WINDOWS\system32\restore\rstrui.exe -c
O4 - HKLM\..\RunOnce: [SDFix] C:\SDFix\RunThis.bat /second
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Alt+Q Hotkey Tool] C:\WINDOWS\Alt+Q Hotkey.exe
O4 - HKCU\..\Run: [UberIcon] "C:\Program Files\UberIcon\UberIcon Manager.exe"
O4 - HKCU\..\Run: [Yz Shadow] C:\Program Files\YzShadow\YzShadow.exe
O4 - HKCU\..\Run: [RK Launcher] C:\Program Files\RK Launcher\RKLauncher.exe
O4 - HKCU\..\Run: [WinRoll] C:\Program Files\WinRoll\winroll.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'HELYI SZOLGÁLTATÁS')
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'HELYI SZOLGÁLTATÁS')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'HÁLÓZATI SZOLGÁLTATÁS')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\ObjectDock\ObjectDock.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Exif Launcher.lnk = ?
O4 - Global Startup: Microsoft Office OneNote 2003 Quick Launch.lnk = D:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE
O8 - Extra context menu item: Add to AMV Converter... - D:\Program Files\MP3 Player Utilities 4.07\AMVConverter\grab.html
O8 - Extra context menu item: E&xport to Microsoft Excel -
res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: MediaManager tool grab multimedia file - D:\Program Files\MP3 Player Utilities 4.07\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: FreshDownload - {F0B6F8BC-DE30-47F2-A346-DA1FC3A9B2BC} - D:\Program Files\FreshDevices\FreshDownload\fd.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {9059F30F-4EB1-4BD2-9FDC-36F43A218F4A} (Microsoft RDP Client Control (redist)) -
http://neptun1.ppke.hu/msrdp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{40C24230-47D8-4561-92F6-0FF5D9E1FE26}: NameServer = 84.2.44.1 84.2.46.1
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: Sony SPTI Service for DVE (ICDSPTSV) - Sony Corporation - C:\WINDOWS\system32\IcdSptSv.exe
--
End of file - 6294 bytes
-- HijackThis Fixed Entries (C:\DOCUME~1\q\Asztal\backups\) --------------------
backup-20080112-214940-174 O4 - HKCU\..\RunOnce: [] OSK.exe
backup-20080112-214940-394 O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
backup-20080112-214940-604 O2 - BHO: (no name) - {206E52E0-D52E-11D4-AD54-0000E86C26F6} - D:\PROGRA~1\FRESHD~1\FRESHD~1\FDCatch.dll (file missing)
-- File Associations -----------------------------------------------------------
.cpl - cplfile - shell\cplopen\command - rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.cpl - cplfile - shell\runas\command - rundll32.exe shell32.dll,Control_RunDLLAsUser "%1",%*
-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
R2 MASPINT - c:\windows\system32\drivers\maspint.sys <Not Verified; MicroStaff Co.,Ltd.; Aspi32 Driver for WinNT>
S3 catchme - c:\docume~1\q\locals~1\temp\catchme.sys (file missing)
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
All services whitelisted.
-- Device Manager: Disabled ----------------------------------------------------
Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description:
Device ID: ACPI\ATK0100\1010100
Manufacturer:
Name:
PNP Device ID: ACPI\ATK0100\1010100
Service:
Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: PCI modem
Device ID: PCI\VEN_1039&DEV_7013&SUBSYS_14571043&REV_A0\3&61AAA01&0&0E
Manufacturer:
Name: PCI modem
PNP Device ID: PCI\VEN_1039&DEV_7013&SUBSYS_14571043&REV_A0\3&61AAA01&0&0E
Service:
-- Files created between 2007-12-13 and 2008-01-13 -----------------------------
2008-01-13 10:18:36 0 d-------- C:\WINDOWS\ERUNT
2008-01-13 10:10:37 0 d-------- C:\WINDOWS\CSC
2008-01-12 10:28:15 0 d-------- C:\Program Files\VividLyrics
2008-01-12 08:54:30 0 d-------- C:\Program Files\ObjectDock
2008-01-12 08:54:29 0 d-------- C:\Program Files\RK Launcher
2008-01-12 08:54:27 0 d-------- C:\Program Files\iColorFolder
2008-01-12 08:54:25 0 d-------- C:\Program Files\WinRoll
2008-01-12 08:54:25 0 d-------- C:\Program Files\UberIcon
2008-01-12 08:54:25 0 d-------- C:\Program Files\Tiger System Preferences v2
2008-01-12 08:54:24 0 d-------- C:\Program Files\YzShadow
2008-01-10 21:24:30 0 d-------- C:\Program Files\YzShadow(2)
2008-01-10 21:24:30 0 d-------- C:\Program Files\WinRoll(2)
2008-01-10 21:24:29 0 d-------- C:\Program Files\UberIcon(2)
2008-01-10 21:24:27 0 d-------- C:\Program Files\Tiger System Preferences v2(2)
2008-01-10 21:24:23 0 d-------- C:\Program Files\iColorFolder(2)
2008-01-10 21:24:22 0 d-------- C:\Program Files\RK Launcher(2)
2008-01-10 21:24:20 0 d-------- C:\Program Files\ObjectDock(2)
2008-01-06 17:31:51 0 d-------- C:\Documents and Settings\q\UserData
2008-01-04 17:58:32 6553600 --a------ C:\Documents and Settings\q\ntuser.dat
2008-01-02 13:16:21 0 d--h----- C:\WINDOWS\FlyakiteOSX
2007-12-31 15:57:35 0 d-------- C:\Documents and Settings\q\Application Data\Help
2007-12-31 12:59:44 425984 --a------ C:\WINDOWS\system32\vp6vfw.dll <Not Verified; On2.com; On2_VP6>
2007-12-31 12:59:44 446464 --a------ C:\WINDOWS\system32\vp31vfw.dll <Not Verified; On2.com; On2_VP3>
2007-12-31 12:59:43 593938 --a------ C:\WINDOWS\system32\x264vfw.dll
2007-12-31 12:59:43 74240 --a------ C:\WINDOWS\system32\MACDec.dll <Not Verified; Matthew T. Ashland; Monkey's Audio>
2007-12-31 12:59:43 221184 --a------ C:\WINDOWS\system32\kl_upx.exe <Not Verified; The UPX Team
http://upx.sf.net; UPX>
2007-12-31 12:59:43 9216 --a------ C:\WINDOWS\system32\cpuinf32.dll
2007-12-31 12:59:42 1581056 --a------ C:\WINDOWS\system32\mplvw7.dll <Not Verified; Ligos Corporation; MPL Video Library>
2007-12-31 12:59:42 1122304 --a------ C:\WINDOWS\system32\mplvpx.dll <Not Verified; Ligos Corporation; MPL Video Library>
2007-12-31 12:59:42 1552384 --a------ C:\WINDOWS\system32\mplvm6.dll <Not Verified; Ligos Corporation; MPL Video Library>
2007-12-31 12:59:42 1650688 --a------ C:\WINDOWS\system32\mplva6.dll <Not Verified; Ligos Corporation; MPL Video Library>
2007-12-31 12:59:42 77824 --a------ C:\WINDOWS\system32\mplaw7.dll <Not Verified; Ligos Corporation; MPL Audio Library>
2007-12-31 12:59:42 65536 --a------ C:\WINDOWS\system32\mplapx.dll <Not Verified; Ligos Corporation; MPL Audio Library>
2007-12-31 12:59:42 65536 --a------ C:\WINDOWS\system32\mplam6.dll <Not Verified; Ligos Corporation; MPL Audio Library>
2007-12-31 12:59:42 77824 --a------ C:\WINDOWS\system32\mplaa6.dll <Not Verified; Ligos Corporation; MPL Audio Library>
2007-12-31 12:59:41 27648 --a------ C:\WINDOWS\system32\ir50_lcs.dll <Not Verified; Intel Corporation.; Intel Indeo® video 5.0 LC>
2007-12-31 12:59:40 413760 --a------ C:\WINDOWS\system32\mpg4c32.dll <Not Verified; Microsoft Corporation; Microsoft MPEG-4 Video Codec>
2007-12-31 12:59:40 33280 --a------ C:\WINDOWS\system32\huffyuv.dll <Not Verified; Disappearing Inc.; Huffyuv>
2007-12-31 12:59:39 421888 --a------ C:\WINDOWS\system32\OpenQuicktimeLib.dll
2007-12-31 12:59:39 286720 --a------ C:\WINDOWS\system32\3ivxVfWCodec.dll <Not Verified; 3ivx.com; 3ivx D4 4.5.1>
2007-12-31 12:59:39 1024000 --a------ C:\WINDOWS\system32\3ivx.dll <Not Verified; 3ivx.com; 3ivx D4 4.5.1>
2007-12-31 12:59:37 921600 --a------ C:\WINDOWS\system32\vorbisenc.dll
2007-12-31 12:59:37 237568 --a------ C:\WINDOWS\system32\OggDS.dll <Not Verified; ; Ogg DirectShow(tm) Filter Collection>
2007-12-31 12:59:37 45056 --a------ C:\WINDOWS\system32\ogg.dll
2007-12-31 12:59:36 2770 --a------ C:\WINDOWS\system32\xvidmerit.reg
2007-12-31 12:59:36 188416 --a------ C:\WINDOWS\system32\vorbis.dll
2007-12-31 12:59:34 95800 --a------ C:\WINDOWS\system32\bass.dll <Not Verified; Un4seen Developments; >
2007-12-31 12:59:19 1415680 --a------ C:\WINDOWS\system32\WMV9VCM.dll <Not Verified; Microsoft Corporation; Windows Media Video 9 VCM>
2007-12-31 12:59:17 0 d-------- C:\WINDOWS\system32\embedded
2007-12-30 23:22:10 210032 --a------ C:\WINDOWS\system32\DBCLIENT.DLL
2007-12-30 23:22:06 0 d-------- C:\Program Files\Common Files\Borland Shared
2007-12-30 09:38:34 3532 --a------ C:\drmHeader.bin
2007-12-28 13:55:40 0 d-------- C:\Documents and Settings\q\.scribus
2007-12-25 22:30:36 77824 --a------ C:\WINDOWS\system32\TWAIN_32.DLL <Not Verified; Aldus Corporation; Twain_32 Source Manager>
2007-12-25 22:30:34 0 d-------- C:\Adobe
2007-12-25 22:29:05 298496 --a------ C:\WINDOWS\uninst.exe <Not Verified; InstallShield Corporation, Inc.; InstallShield unInstaller>
2007-12-25 22:28:59 0 d-------- C:\Documents and Settings\q\WINDOWS
2007-12-25 11:51:19 0 d-------- C:\WINDOWS\system32\recover
2007-12-24 12:50:55 90112 --a------ C:\WINDOWS\unvise32.exe <Not Verified; MindVision Software; Installer VISE>
2007-12-24 12:50:38 86016 --a------ C:\WINDOWS\unvise32qt.exe <Not Verified; MindVision; Installer VISE 2.8.3>
2007-12-24 12:49:08 0 d-------- C:\Program Files\QuickTime
2007-12-24 12:48:43 0 d-------- C:\WINDOWS\system32\QuickTime
2007-12-24 12:48:16 0 d-------- C:\Documents and Settings\All Users\Application Data\QuickTime
2007-12-21 17:27:18 0 d-------- C:\Program Files\AviSynth 2.5
2007-12-21 17:26:47 0 d--hs---- C:\WINDOWS\system32\ShellDHCP
2007-12-19 11:27:02 0 d-------- C:\Documents and Settings\Internet\Application Data\Adobe
2007-12-18 18:55:16 0 d-------- C:\Documents and Settings\Sára\Application Data\Skype
2007-12-18 14:27:15 0 d-------- C:\Documents and Settings\Marci\Application Data\Publish Providers
2007-12-18 14:25:44 0 d-------- C:\Documents and Settings\Marci\Application Data\Sony
2007-12-17 11:36:33 2068 --a------ C:\WINDOWS\system32\d3d9caps.dat
2007-12-17 11:35:33 0 d-------- C:\Documents and Settings\q\Application Data\Publish Providers
2007-12-17 11:24:26 0 d-------- C:\Program Files\Microsoft SQL Server
2007-12-17 11:23:52 0 d-------- C:\Documents and Settings\q\Application Data\Sony
2007-12-17 11:21:08 0 d-------- C:\Program Files\Vstplugins
2007-12-17 11:20:43 0 d-------- C:\Documents and Settings\All Users\Application Data\Sony
2007-12-17 10:55:17 0 d-------- C:\Documents and Settings\q\Application Data\Sony Setup
2007-12-17 10:54:35 0 d-------- C:\Program Files\Sony Setup
-- Find3M Report ---------------------------------------------------------------
2008-01-12 19:31:28 0 d-------- C:\Program Files\Messenger
2008-01-12 19:31:27 0 d-------- C:\Program Files\Windows NT
2008-01-12 19:31:27 0 d-------- C:\Program Files\Movie Maker
2008-01-12 19:27:36 0 d-------- C:\Program Files\YzShadow
2008-01-12 19:22:13 219136 --a------ C:\WINDOWS\system32\uxtheme.dll <Not Verified; Microsoft Corporation; Microsoft® Windows® operációs rendszer>
2008-01-12 08:55:42 0 d-------- C:\Documents and Settings\q\Application Data\uTorrent
2008-01-12 08:54:00 0 d-------- C:\Program Files\MSN Messenger
2008-01-12 08:53:14 0 d-------- C:\Program Files\YzShadow(2)
2008-01-10 20:13:31 0 d-------- C:\Documents and Settings\q\Application Data\Skype
2008-01-02 13:35:17 1368064 --a------ C:\WINDOWS\Dokumentumok.exe <Not Verified; Microsoft Corporation; Microsoft® Windows® operációs rendszer>
2008-01-02 13:32:27 0 d-------- C:\Documents and Settings\q\Application Data\AVG7
2008-01-02 13:17:01 219136 --a------ C:\WINDOWS\system32\utheme.dll <Not Verified; Microsoft Corporation; Microsoft® Windows® operációs rendszer>
2007-12-29 10:11:20 0 d-------- C:\Documents and Settings\q\Application Data\Macromedia
2007-12-29 10:10:54 11210 --a------ C:\WINDOWS\mozver.dat
2007-12-18 15:12:30 416660 --a------ C:\WINDOWS\system32\perfh00E.dat
2007-12-18 15:12:30 93144 --a------ C:\WINDOWS\system32\perfc00E.dat
2007-11-22 22:58:57 0 d-------- C:\Program Files\Windows Media Connect 2
2007-11-21 13:55:46 0 d-------- C:\Program Files\Google
2007-11-17 13:19:45 23154 --a------ C:\Documents and Settings\q\Application Data\Microsoft Access.ADR
2007-11-15 19:03:27 0 d-------- C:\Program Files\SONY
2007-11-15 19:03:08 0 d--h----- C:\Program Files\InstallShield Installation Information
2007-11-01 12:55:22 335 --a------ C:\WINDOWS\nsreg.dat
2007-11-01 12:54:38 118784 --a------ C:\WINDOWS\SeaMonkeyUninstall.exe
2007-11-01 12:52:24 118784 --a------ C:\WINDOWS\GREUninstall.exe
-- Registry Dump ---------------------------------------------------------------
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2007.08.09. 17:54]
"Adobe Reader Speed Launcher"="D:\Program Files\Adobe\Reader\Reader\Reader_sl.exe" [2007.10.10. 19:51]
"REGSHAVE"="C:\Program Files\REGSHAVE\REGSHAVE.exe" [2002.02.04. 21:32]
"AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [2007.12.20. 19:03]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" [2007.07.12. 03:00]
"EPSON Stylus C45 Series"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I3T1.exe" [2004.01.14. 03:00]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007.12.24. 12:49]
"System Files Updater"="C:\WINDOWS\FlyakiteOSX\Tools\System Files Updater.exe" [2006.02.26. 00:41]
"RemoteControl"="D:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2003.12.08. 16:35]
"SDFix"="C:\SDFix\RunThis.bat /second" []
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004.08.18. 13:00]
"Skype"="C:\Program Files\Skype\Phone\Skype.exe" [2006.12.18. 16:32]
"MsnMsgr"="C:\Program Files\MSN Messenger\MsnMsgr.exe" [2007.01.19. 11:54]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2004.10.13. 17:24]
"Alt+Q Hotkey Tool"="C:\WINDOWS\Alt+Q Hotkey.exe" [2005.12.18. 20:14]
"UberIcon"="C:\Program Files\UberIcon\UberIcon Manager.exe" [2006.02.24. 01:32]
"Yz Shadow"="C:\Program Files\YzShadow\YzShadow.exe" [2006.02.24. 03:51]
"RK Launcher"="C:\Program Files\RK Launcher\RKLauncher.exe" [2005.10.19. 08:40]
"WinRoll"="C:\Program Files\WinRoll\winroll.exe" [2006.01.01. 23:27]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\runonce]
"*Restore"=C:\WINDOWS\system32\restore\rstrui.exe -c
"SDFix"=C:\SDFix\RunThis.bat /second
C:\Documents and Settings\q\Start Menu\Programs\Indˇt˘pult\
Stardock ObjectDock.lnk - C:\Program Files\ObjectDock\ObjectDock.exe [2005.07.14. 23:13:06]
C:\Documents and Settings\All Users\Start Menu\Programs\Indˇt˘pult\
Adobe Gamma Loader.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2007.08.09. 18:37:23]
Exif Launcher.lnk - D:\Program Files\FinePixViewer\QuickDCF.exe [2007.08.13. 16:22:22]
Microsoft Office OneNote 2003 Quick Launch.lnk - D:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE [2003.08.06. 12:23:32]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e857ec40-5d34-11dc-bc3a-00e018dc2cc4}]
verb1\command- F:\desktop.exe
-- End of Deckard's System Scanner: finished at 2008-01-13 10:53:11 ------------