OTL logfile created on: 30.4.2012 23:15:06 - Run 1
OTL by OldTimer - Version 3.2.42.2 Folder = C:\Documents and Settings\Tomi\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000041B | Country: Slovakia | Language: SKY | Date Format: d.M.yyyy
3,00 Gb Total Physical Memory | 1,51 Gb Available Physical Memory | 50,42% Memory free
4,84 Gb Paging File | 3,50 Gb Available in Paging File | 72,22% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 146,49 Gb Total Space | 26,23 Gb Free Space | 17,91% Space Free | Partition Type: NTFS
Drive D: | 151,59 Gb Total Space | 37,32 Gb Free Space | 24,62% Space Free | Partition Type: NTFS
Computer Name: TOMAS | User Name: Tomi | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days
========== Processes (SafeList) ==========
PRC - [2012.04.30 23:10:02 | 000,595,456 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Tomi\Desktop\OTL.exe
PRC - [2012.04.25 18:32:45 | 000,924,600 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2012.03.07 02:15:17 | 004,241,512 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2012.03.07 02:15:14 | 000,044,768 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2012.02.28 18:38:52 | 001,373,576 | ---- | M] (LogMeIn Inc.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
PRC - [2011.05.11 14:58:40 | 006,848,384 | ---- | M] () -- C:\Program Files\QIP Infium\infium.exe
PRC - [2011.02.19 13:46:34 | 004,431,016 | ---- | M] (Thorvald Natvig) -- C:\Program Files\Mumble\mumble.exe
PRC - [2010.07.30 12:40:54 | 000,090,112 | ---- | M] (Clarus, Inc.) -- C:\Program Files\Clarus\Samsung SecretZone\SZAssistSVC.exe
PRC - [2008.10.20 18:08:30 | 000,166,456 | ---- | M] (ASUS) -- C:\Program Files\ASUS\ATK Hotkey\HControl.exe
PRC - [2008.09.26 17:41:26 | 000,467,028 | ---- | M] (Atheros) -- C:\WINDOWS\system32\acs.exe
PRC - [2008.08.18 11:27:32 | 000,117,304 | ---- | M] (ASUS) -- C:\Program Files\ASUS\ATK Hotkey\MsgTranAgt.exe
PRC - [2008.08.18 10:56:22 | 000,098,304 | ---- | M] (ASUS) -- C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe
PRC - [2008.08.13 21:00:16 | 000,158,264 | ---- | M] (ASUS) -- C:\Program Files\ASUS\ATK Hotkey\WDC.exe
PRC - [2008.08.13 16:21:56 | 002,482,176 | ---- | M] (ASUS) -- C:\Program Files\ASUS\ATK Hotkey\ATKOSD.exe
PRC - [2008.06.24 19:01:08 | 000,159,744 | ---- | M] (ASUS) -- C:\Program Files\ASUS\ATK Media\DMedia.exe
PRC - [2008.04.14 14:03:54 | 001,448,576 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
PRC - [2008.04.14 14:03:54 | 000,596,584 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
PRC - [2008.04.14 05:42:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008.03.18 20:27:00 | 000,013,312 | ---- | M] (Agere Systems) -- C:\WINDOWS\system32\agrsmsvc.exe
PRC - [2008.01.23 15:34:42 | 007,766,016 | ---- | M] () -- C:\Program Files\ATKOSD2\ATKOSD2.exe
PRC - [2007.10.17 14:12:18 | 002,113,536 | ---- | M] (Electronic Arts) -- C:\Program Files\Ultima Online 2D\Client_6.0.4.0.exe
PRC - [2007.08.08 00:08:40 | 000,094,208 | ---- | M] () -- C:\Program Files\ATKGFNEX\GFNEXSrv.exe
PRC - [2007.03.26 15:00:04 | 000,102,400 | ---- | M] (Bentley Systems, Incorporated) -- C:\Program Files\Bentley\SELECTserver\Bentley.SelectServer.Gateway.exe
PRC - [2003.07.25 02:40:06 | 000,335,872 | ---- | M] (Globe Software) -- C:\Program Files\Globe Software\StatBar\StatBar.exe
========== Modules (No Company Name) ==========
MOD - [2012.04.30 19:43:39 | 000,020,552 | ---- | M] () -- C:\Program Files\Mumble\plugins\bf3.dll
MOD - [2012.04.30 10:20:30 | 001,771,520 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\defs\12043000\algo.dll
MOD - [2012.04.29 21:20:00 | 001,771,520 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\defs\12042901\algo.dll
MOD - [2012.04.25 18:32:44 | 001,952,696 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2012.04.14 15:50:04 | 008,797,344 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_233.dll
MOD - [2012.03.21 20:59:00 | 000,022,600 | ---- | M] () -- C:\Program Files\Mumble\plugins\lotro.dll
MOD - [2012.01.12 01:20:37 | 003,391,488 | ---- | M] () -- c:\windows\assembly\nativeimages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_2622e9e0\mscorlib.dll
MOD - [2012.01.12 01:20:04 | 002,088,960 | ---- | M] () -- c:\windows\assembly\nativeimages1_v1.1.4322\system.xml\1.0.5000.0__b77a5c561934e089_b71de441\system.xml.dll
MOD - [2012.01.12 01:19:39 | 001,966,080 | ---- | M] () -- c:\windows\assembly\nativeimages1_v1.1.4322\system\1.0.5000.0__b77a5c561934e089_f0afb8ec\system.dll
MOD - [2012.01.12 01:19:17 | 001,232,896 | ---- | M] () -- c:\windows\assembly\gac\system\1.0.5000.0__b77a5c561934e089\system.dll
MOD - [2012.01.12 01:19:16 | 001,269,760 | ---- | M] () -- c:\windows\assembly\gac\system.web\1.0.5000.0__b03f5f7f11d50a3a\system.web.dll
MOD - [2012.01.12 01:19:15 | 000,081,920 | ---- | M] () -- c:\windows\assembly\gac\system.security\1.0.5000.0__b03f5f7f11d50a3a\system.security.dll
MOD - [2012.01.09 01:44:33 | 000,032,112 | ---- | M] () -- C:\Program Files\Mumble\plugins\tf2.dll
MOD - [2012.01.09 01:44:33 | 000,031,600 | ---- | M] () -- C:\Program Files\Mumble\plugins\wow.dll
MOD - [2011.11.03 17:28:36 | 001,292,288 | ---- | M] () -- C:\WINDOWS\system32\quartz.dll
MOD - [2011.10.27 15:54:50 | 000,126,976 | ---- | M] () -- c:\windows\assembly\gac\system.serviceprocess\1.0.5000.0__b03f5f7f11d50a3a\system.serviceprocess.dll
MOD - [2011.10.27 15:54:49 | 001,294,336 | ---- | M] () -- c:\windows\assembly\gac\system.data\1.0.5000.0__b77a5c561934e089\system.data.dll
MOD - [2011.10.27 15:54:46 | 001,339,392 | ---- | M] () -- c:\windows\assembly\gac\system.xml\1.0.5000.0__b77a5c561934e089\system.xml.dll
MOD - [2011.10.27 15:54:35 | 000,573,440 | ---- | M] () -- c:\windows\assembly\gac\system.web.services\1.0.5000.0__b03f5f7f11d50a3a\system.web.services.dll
MOD - [2011.10.27 15:51:48 | 000,077,824 | ---- | M] () -- c:\windows\assembly\gac\system.configuration.install\1.0.5000.0__b03f5f7f11d50a3a\system.configuration.install.dll
MOD - [2011.10.24 19:18:22 | 000,020,848 | ---- | M] () -- C:\Program Files\Mumble\plugins\bfbc2.dll
MOD - [2011.10.22 23:30:49 | 000,037,544 | ---- | M] () -- C:\Program Files\Mumble\plugins\dys.dll
MOD - [2011.10.22 23:30:49 | 000,020,648 | ---- | M] () -- C:\Program Files\Mumble\plugins\ut3.dll
MOD - [2011.10.22 23:30:49 | 000,020,648 | ---- | M] () -- C:\Program Files\Mumble\plugins\ut2004.dll
MOD - [2011.10.22 23:30:48 | 000,037,544 | ---- | M] () -- C:\Program Files\Mumble\plugins\dods.dll
MOD - [2011.10.22 23:30:48 | 000,023,208 | ---- | M] () -- C:\Program Files\Mumble\plugins\sto.dll
MOD - [2011.10.22 23:30:48 | 000,022,696 | ---- | M] () -- C:\Program Files\Mumble\plugins\l4d.dll
MOD - [2011.10.22 23:30:48 | 000,020,648 | ---- | M] () -- C:\Program Files\Mumble\plugins\wolfet.dll
MOD - [2011.10.22 23:30:48 | 000,020,648 | ---- | M] () -- C:\Program Files\Mumble\plugins\gtaiv.dll
MOD - [2011.10.22 23:30:47 | 000,071,336 | ---- | M] () -- C:\Program Files\Mumble\plugins\manual.dll
MOD - [2011.10.22 23:30:47 | 000,037,744 | ---- | M] () -- C:\Program Files\Mumble\plugins\css.dll
MOD - [2011.10.22 23:30:47 | 000,037,544 | ---- | M] () -- C:\Program Files\Mumble\plugins\insurgency.dll
MOD - [2011.10.22 23:30:47 | 000,037,544 | ---- | M] () -- C:\Program Files\Mumble\plugins\hl2dm.dll
MOD - [2011.10.22 23:30:47 | 000,037,544 | ---- | M] () -- C:\Program Files\Mumble\plugins\gmod.dll
MOD - [2011.10.22 23:30:47 | 000,023,208 | ---- | M] () -- C:\Program Files\Mumble\plugins\etqw.dll
MOD - [2011.10.22 23:30:47 | 000,019,112 | ---- | M] () -- C:\Program Files\Mumble\plugins\link.dll
MOD - [2011.10.22 23:30:46 | 000,022,696 | ---- | M] () -- C:\Program Files\Mumble\plugins\l4d2.dll
MOD - [2011.10.22 23:30:46 | 000,022,184 | ---- | M] () -- C:\Program Files\Mumble\plugins\cs.dll
MOD - [2011.10.22 23:30:46 | 000,020,648 | ---- | M] () -- C:\Program Files\Mumble\plugins\codmw2so.dll
MOD - [2011.10.22 23:30:46 | 000,020,648 | ---- | M] () -- C:\Program Files\Mumble\plugins\codmw2.dll
MOD - [2011.10.22 23:30:46 | 000,020,648 | ---- | M] () -- C:\Program Files\Mumble\plugins\cod5.dll
MOD - [2011.10.22 23:30:45 | 000,023,720 | ---- | M] () -- C:\Program Files\Mumble\plugins\borderlands.dll
MOD - [2011.10.22 23:30:45 | 000,023,208 | ---- | M] () -- C:\Program Files\Mumble\plugins\cod4.dll
MOD - [2011.10.22 23:30:45 | 000,020,136 | ---- | M] () -- C:\Program Files\Mumble\plugins\bfheroes.dll
MOD - [2011.10.22 23:30:44 | 000,038,768 | ---- | M] () -- C:\Program Files\Mumble\plugins\bf2.dll
MOD - [2011.10.22 23:30:44 | 000,037,544 | ---- | M] () -- C:\Program Files\Mumble\plugins\aoc.dll
MOD - [2011.10.22 23:30:44 | 000,022,184 | ---- | M] () -- C:\Program Files\Mumble\plugins\bf2142.dll
MOD - [2011.10.22 23:30:44 | 000,020,648 | ---- | M] () -- C:\Program Files\Mumble\plugins\cod2.dll
MOD - [2011.10.22 23:30:44 | 000,020,648 | ---- | M] () -- C:\Program Files\Mumble\plugins\bf1942.dll
MOD - [2011.10.22 23:30:43 | 000,020,648 | ---- | M] () -- C:\Program Files\Mumble\plugins\breach.dll
MOD - [2011.10.22 23:30:41 | 000,020,136 | ---- | M] () -- C:\Program Files\Mumble\plugins\arma2.dll
MOD - [2011.09.29 17:50:26 | 001,964,544 | ---- | M] () -- C:\Program Files\QIP Infium\Protos\InfICQ\inficq.dll
MOD - [2011.05.11 14:58:46 | 000,685,952 | ---- | M] () -- C:\Program Files\QIP Infium\Protos\Social\Social.dll
MOD - [2011.05.11 14:58:46 | 000,052,096 | ---- | M] () -- C:\Program Files\QIP Infium\Protos\MRA\pics.dll
MOD - [2011.05.11 14:58:44 | 001,646,464 | ---- | M] () -- C:\Program Files\QIP Infium\Protos\MRA\mra.dll
MOD - [2011.05.11 14:58:42 | 004,658,560 | ---- | M] () -- C:\Program Files\QIP Infium\Core\voip.dll
MOD - [2011.05.11 14:58:42 | 000,087,424 | ---- | M] () -- C:\Program Files\QIP Infium\Core\WebWindow.dll
MOD - [2011.05.11 14:58:40 | 006,848,384 | ---- | M] () -- C:\Program Files\QIP Infium\infium.exe
MOD - [2011.02.19 13:47:20 | 000,168,104 | ---- | M] () -- C:\Program Files\Mumble\speex.dll
MOD - [2011.02.19 13:47:14 | 000,129,192 | ---- | M] () -- C:\Program Files\Mumble\mumble_ol.dll
MOD - [2011.02.19 13:47:08 | 000,079,528 | ---- | M] () -- C:\Program Files\Mumble\celt0.0.7.0.sse2.dll
MOD - [2011.02.19 13:46:56 | 000,094,888 | ---- | M] () -- C:\Program Files\Mumble\celt0.0.11.0.sse2.dll
MOD - [2011.01.10 19:32:04 | 001,070,760 | ---- | M] () -- C:\Program Files\Mumble\libprotobuf.dll
MOD - [2011.01.10 19:30:54 | 000,042,152 | ---- | M] () -- C:\Program Files\Mumble\QtPlugins\iconengines\qsvgicon4.dll
MOD - [2011.01.10 19:30:40 | 000,308,904 | ---- | M] () -- C:\Program Files\Mumble\QtPlugins\imageformats\qtiff4.dll
MOD - [2011.01.10 19:30:28 | 000,027,816 | ---- | M] () -- C:\Program Files\Mumble\QtPlugins\imageformats\qsvg4.dll
MOD - [2011.01.10 19:30:18 | 000,246,952 | ---- | M] () -- C:\Program Files\Mumble\QtPlugins\imageformats\qmng4.dll
MOD - [2011.01.10 19:30:08 | 000,208,552 | ---- | M] () -- C:\Program Files\Mumble\QtPlugins\imageformats\qjpeg4.dll
MOD - [2011.01.10 19:29:58 | 000,034,472 | ---- | M] () -- C:\Program Files\Mumble\QtPlugins\imageformats\qico4.dll
MOD - [2011.01.10 19:29:48 | 000,032,424 | ---- | M] () -- C:\Program Files\Mumble\QtPlugins\imageformats\qgif4.dll
MOD - [2011.01.10 19:21:10 | 008,223,744 | ---- | M] () -- C:\Program Files\Mumble\QtGui4.dll
MOD - [2010.12.04 15:47:38 | 000,957,952 | ---- | M] () -- C:\Program Files\Mumble\QtNetwork4.dll
MOD - [2010.11.09 21:46:08 | 000,271,360 | ---- | M] () -- C:\Program Files\Mumble\QtSvg4.dll
MOD - [2010.11.09 21:39:20 | 000,691,712 | ---- | M] () -- C:\Program Files\Mumble\QtOpenGL4.dll
MOD - [2010.11.09 21:24:58 | 000,679,936 | ---- | M] () -- C:\Program Files\Mumble\QtSql4.dll
MOD - [2010.11.09 21:05:58 | 000,342,528 | ---- | M] () -- C:\Program Files\Mumble\QtXml4.dll
MOD - [2010.11.09 21:05:46 | 002,343,424 | ---- | M] () -- C:\Program Files\Mumble\QtCore4.dll
MOD - [2010.10.04 01:50:48 | 002,259,968 | ---- | M] () -- C:\Program Files\Mumble\libsndfile-1.dll
MOD - [2010.07.09 07:41:42 | 002,359,296 | ---- | M] () -- C:\Program Files\Mumble\libmysql.dll
MOD - [2009.09.09 15:28:56 | 000,059,904 | ---- | M] () -- C:\Program Files\Mumble\zlib1.dll
MOD - [2009.08.16 17:06:02 | 000,141,312 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll
MOD - [2008.05.02 21:38:20 | 000,705,024 | ---- | M] () -- C:\Documents and Settings\Tomi\Desktop\UO\yokoinject\script.dll
MOD - [2008.05.02 21:37:52 | 000,936,960 | ---- | M] () -- C:\Documents and Settings\Tomi\Desktop\UO\yokoinject\Injection.dll
MOD - [2008.05.02 21:36:42 | 000,135,168 | ---- | M] () -- C:\Documents and Settings\Tomi\Desktop\UO\yokoinject\expat.dll
MOD - [2008.04.14 13:58:40 | 002,854,912 | ---- | M] () -- C:\WINDOWS\system32\btwicons.dll
MOD - [2008.04.14 13:55:58 | 000,040,960 | ---- | M] () -- C:\Program Files\WIDCOMM\Bluetooth Software\BTKeyInd.dll
MOD - [2008.04.14 05:42:04 | 000,192,512 | ---- | M] () -- C:\WINDOWS\system32\qcap.dll
MOD - [2008.04.14 05:42:00 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll
MOD - [2008.04.14 05:41:52 | 000,059,904 | ---- | M] () -- C:\WINDOWS\system32\devenum.dll
MOD - [2008.01.23 15:34:42 | 007,766,016 | ---- | M] () -- C:\Program Files\ATKOSD2\ATKOSD2.exe
MOD - [2007.11.12 15:41:50 | 000,106,496 | ---- | M] () -- C:\Program Files\ASUS\ATK Hotkey\MsgTran.dll
MOD - [2007.08.08 00:08:40 | 000,094,208 | ---- | M] () -- C:\Program Files\ATKGFNEX\GFNEXSrv.exe
MOD - [2007.08.02 16:22:54 | 000,020,480 | ---- | M] () -- C:\Program Files\Ultima Online 2D\Igrping.dll
MOD - [2007.08.02 16:22:50 | 000,291,328 | ---- | M] () -- C:\Program Files\Ultima Online 2D\Binkw32.dll
MOD - [2006.08.23 23:32:26 | 000,163,840 | ---- | M] () -- C:\Program Files\ASUS\ATK Hotkey\ASUSNet.dll
MOD - [2004.05.27 18:13:10 | 000,057,344 | ---- | M] () -- C:\Program Files\ASUS\ATK Hotkey\CMSSC.DLL
MOD - [2001.10.28 18:42:30 | 000,116,224 | ---- | M] () -- C:\WINDOWS\system32\pdfcmnnt.dll
========== Win32 Services (SafeList) ==========
SRV - [2012.04.25 18:32:45 | 000,129,976 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012.03.07 02:15:14 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV - [2012.02.28 18:38:52 | 001,373,576 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2010.07.30 12:40:54 | 000,090,112 | ---- | M] (Clarus, Inc.) [Auto | Running] -- C:\Program Files\Clarus\Samsung SecretZone\SZAssistSVC.exe -- (SZASSIST)
SRV - [2010.01.26 13:41:08 | 000,652,800 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2008.09.26 17:41:26 | 000,467,028 | ---- | M] (Atheros) [Auto | Running] -- C:\WINDOWS\system32\acs.exe -- (ACS)
SRV - [2008.03.18 20:27:00 | 000,013,312 | ---- | M] (Agere Systems) [Auto | Running] -- C:\WINDOWS\system32\agrsmsvc.exe -- (AgereModemAudio)
SRV - [2007.08.08 00:08:40 | 000,094,208 | ---- | M] () [Auto | Running] -- C:\Program Files\ATKGFNEX\GFNEXSrv.exe -- (ATKGFNEXSrv)
SRV - [2007.03.26 15:00:04 | 000,102,400 | ---- | M] (Bentley Systems, Incorporated) [Auto | Running] -- C:\Program Files\Bentley\SELECTserver\Bentley.SelectServer.Gateway.exe -- (Bentley SELECT Server Gateway)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Unknown] -- -- (aa39fl00)
DRV - [2012.03.07 02:03:51 | 000,612,184 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2012.03.07 02:03:38 | 000,337,880 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2012.03.07 02:02:00 | 000,035,672 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2012.03.07 02:01:53 | 000,053,848 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2012.03.07 02:01:39 | 000,095,704 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
DRV - [2012.03.07 02:01:30 | 000,020,696 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2012.03.07 01:58:29 | 000,024,920 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4)
DRV - [2011.12.17 02:34:31 | 000,023,456 | ---- | M] (Phoenix Technologies) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\DrvAgent32.sys -- (DrvAgent32)
DRV - [2010.07.19 20:31:54 | 000,721,904 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd)
DRV - [2010.06.14 15:14:48 | 000,064,512 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Program Files\Clarus\Samsung SecretZone\mvd21.sys -- (mvd21)
DRV - [2010.03.18 17:24:34 | 000,012,288 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Program Files\Clarus\Samsung SecretZone\mdf15.sys -- (mdf15)
DRV - [2010.02.11 14:02:15 | 000,226,880 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\tcpip6.sys -- (Tcpip6)
DRV - [2010.01.21 15:53:16 | 000,018,048 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2009.12.30 12:30:56 | 000,007,936 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2009.12.30 12:30:48 | 000,022,016 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2009.12.30 12:30:48 | 000,007,936 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2009.12.30 12:25:12 | 000,137,344 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdnsu.sys -- (nmwcdnsu)
DRV - [2009.12.30 12:25:12 | 000,008,320 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdnsuc.sys -- (nmwcdnsuc)
DRV - [2009.03.18 17:35:40 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2009.03.15 12:25:46 | 000,056,268 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\scdemu.sys -- (SCDEmu)
DRV - [2008.10.13 18:26:10 | 004,879,360 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2008.09.18 19:44:38 | 001,326,528 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\athw.sys -- (AR5416)
DRV - [2008.08.26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2008.08.05 02:30:00 | 001,772,544 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\snp2uvc.sys -- (SNP2UVC) USB2.0 PC Camera (SNP2UVC)
DRV - [2008.04.23 00:34:52 | 002,880,000 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2008.04.15 11:14:00 | 000,990,632 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btkrnl.sys -- (BTKRNL)
DRV - [2008.04.15 11:13:00 | 000,534,440 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btaudio.sys -- (btaudio)
DRV - [2008.03.27 17:18:00 | 000,047,272 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btwusb.sys -- (BTWUSB)
DRV - [2008.03.21 20:13:00 | 001,203,776 | ---- | M] (Agere Systems) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AGRSM.sys -- (AgereSoftModem)
DRV - [2008.03.10 18:18:00 | 000,057,384 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btwhid.sys -- (btwhid)
DRV - [2008.03.03 20:00:00 | 000,043,392 | ---- | M] (Silicon Integrated Systems Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SiSGbeXP.sys -- (SiSGbeXP)
DRV - [2008.02.08 08:46:36 | 000,057,408 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\wsimd.sys -- (WSIMD)
DRV - [2008.02.04 17:57:00 | 000,037,160 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btport.sys -- (BTDriver)
DRV - [2008.02.04 17:57:00 | 000,037,032 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btwmodem.sys -- (btwmodem)
DRV - [2007.09.20 11:59:00 | 000,156,392 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btwdndis.sys -- (BTWDNDIS)
DRV - [2007.07.24 11:09:04 | 000,013,880 | ---- | M] () [Kernel | Auto | Running] -- C:\Program Files\ATKGFNEX\ASMMAP.sys -- (ASMMAP)
DRV - [2006.12.17 23:11:58 | 000,007,680 | ---- | M] (ATK0100) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ATKACPI.sys -- (MTsensor)
DRV - [2006.06.16 00:12:20 | 000,132,608 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\Haspnt.sys -- (Haspnt)
DRV - [2004.05.27 18:13:04 | 000,016,269 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Running] -- C:\Program Files\ASUS\ATK Hotkey\ASNDIS5.SYS -- (ASNDIS5)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\..\URLSearchHook: - No CLSID value found
IE - HKLM\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://search.live.com/results.aspx?q={ ... rer:source?}
IE - HKU\.DEFAULT\..\URLSearchHook: - No CLSID value found
IE - HKU\.DEFAULT\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\..\URLSearchHook: - No CLSID value found
IE - HKU\S-1-5-18\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1547161642-1647877149-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.msn.com/
IE - HKU\S-1-5-21-1547161642-1647877149-725345543-1003\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-1547161642-1647877149-725345543-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://search.live.com/results.aspx?q={ ... orm=IE8SRC
IE - HKU\S-1-5-21-1547161642-1647877149-725345543-1003\..\SearchScopes\{401D90B8-9D4C-4FCD-A15B-C5A617CAA6F3}: "URL" =
http://search.yahoo.com/search?fr=chr-g ... earchTerms}
IE - HKU\S-1-5-21-1547161642-1647877149-725345543-1003\..\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}: "URL" =
http://search.icq.com/search/results.ph ... &ch_id=osd
IE - HKU\S-1-5-21-1547161642-1647877149-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=937811&ilc=12"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..extensions.enabledItems: {DDABDBA1-2377-4A30-A027-25697B99E254}:3.1
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems:
jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems:
toolbar@ask.com:3.11.3.15590
FF - prefs.js..extensions.enabledItems:
personas@christopher.beard:1.6.2
FF - prefs.js..extensions.enabledItems:
sk@dictionaries.addons.mozilla.org:2.03.2
FF - prefs.js..extensions.enabledItems: {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}:3.3.3.2
FF - prefs.js..extensions.enabledItems:
firefox@tvunetworks.com:2
FF - prefs.js..extensions.enabledItems: 5
FF - prefs.js..extensions.enabledItems: 3
FF - prefs.js..extensions.enabledItems: 1
FF - prefs.js..extensions.enabledItems:
cs@dictionaries.addons.mozilla.org:1.0.2
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {23fcfd51-4958-4f00-80a3-ae97e717ed8b}:2.1.0.900
FF - prefs.js..extensions.enabledItems: {6904342A-8307-11DF-A508-4AE2DFD72085}:2.1.0.900
FF - prefs.js..extensions.enabledItems: {A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}:7.3.2.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..extensions.enabledItems:
engine@conduit.com:3.3.3.2
FF - prefs.js..keyword.URL: "
http://search.yahoo.com/search?fr=green ... =937811&p="
FF - prefs.js..network.proxy.http_port: 80
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_2_202_233.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pages.tvunetworks.com/WebPlayer: C:\WINDOWS\system32\TVUAx\npTVUAx.dll (TVU networks)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Tomi\Local Settings\Application Data\Google\Update\1.3.21.53\npGoogleUpdate3.dll File not found
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Tomi\Local Settings\Application Data\Google\Update\1.3.21.53\npGoogleUpdate3.dll File not found
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files\DivX\DivX Plus Web Player\firefox\html5video [2010.12.26 00:43:24 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{6904342A-8307-11DF-A508-4AE2DFD72085}: C:\Program Files\DivX\DivX Plus Web Player\firefox\wpa [2010.12.26 00:43:25 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\ [2011.03.12 15:15:39 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\
wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2012.03.21 20:32:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 12.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012.04.25 18:32:45 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 12.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012.04.13 13:17:31 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\{CCB7D94B-CA92-4E3F-B79D-ADE0F07ADC74}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Thunderbird Connector\ThunderbirdExtension\ [2011.03.12 15:15:40 | 000,000,000 | ---D | M]
[2010.07.19 22:32:26 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Tomi\Application Data\Mozilla\Extensions
[2012.04.26 18:47:17 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Tomi\Application Data\Mozilla\Firefox\Profiles\bwid785m.default\extensions
[2012.04.16 00:44:51 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Documents and Settings\Tomi\Application Data\Mozilla\Firefox\Profiles\bwid785m.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
[2010.09.18 14:20:38 | 000,000,000 | ---D | M] (ÄŚeskĂ© slovnĂky pro kontrolu pravopisu) -- C:\Documents and Settings\Tomi\Application Data\Mozilla\Firefox\Profiles\bwid785m.default\extensions\
cs@dictionaries.addons.mozilla.org
[2011.03.30 13:08:47 | 000,000,000 | ---D | M] (Personas) -- C:\Documents and Settings\Tomi\Application Data\Mozilla\Firefox\Profiles\bwid785m.default\extensions\
personas@christopher.beard
[2011.03.30 13:08:44 | 000,000,000 | ---D | M] (SlovnĂky slovenskĂ©ho pravopisu) -- C:\Documents and Settings\Tomi\Application Data\Mozilla\Firefox\Profiles\bwid785m.default\extensions\
sk@dictionaries.addons.mozilla.org
[2012.03.16 22:21:09 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2012.03.16 21:45:51 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2010.07.20 17:29:43 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION
[2012.04.25 18:32:45 | 000,097,208 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011.04.06 14:29:40 | 000,002,208 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\heureka-cz.xml
[2011.04.06 14:29:40 | 000,000,638 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\jyxo-cz.xml
[2011.04.06 14:29:40 | 000,001,367 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\seznam-cz.xml
[2011.04.06 14:29:40 | 000,000,654 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\slunecnice-cz.xml
[2011.04.06 14:29:40 | 000,001,179 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-cz.xml
========== Chrome ==========
CHR - default_search_provider: Yahoo! (Enabled)
CHR - default_search_provider: search_url =
http://search.yahoo.com/search?fr=chr-g ... earchTerms}
CHR - default_search_provider: suggest_url =
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\Tomi\Local Settings\Application Data\Google\Chrome\Application\16.0.912.63\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\Tomi\Local Settings\Application Data\Google\Chrome\Application\16.0.912.63\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\Tomi\Local Settings\Application Data\Google\Chrome\Application\16.0.912.63\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.290.11 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U29 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll
CHR - plugin: 2007 Microsoft Office system (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: DivX VOD Helper Plug-in (Enabled) = C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll
CHR - plugin: DivX Web Player (Enabled) = C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
CHR - plugin: TVU Web Player for FireFox (Enabled) = C:\WINDOWS\system32\TVUAx\npTVUAx.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin
CHR - Extension: YouTube = C:\Documents and Settings\Tomi\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: H\u013Eada\u0165 v Google = C:\Documents and Settings\Tomi\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Tampermonkey = C:\Documents and Settings\Tomi\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo\2.3.2643_0\
CHR - Extension: Battlefield Play4Free = C:\Documents and Settings\Tomi\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\dkejhbcdagodjdndmfnhaibnealjonei\1.0.66.2_0\
CHR - Extension: DivX HiQ = C:\Documents and Settings\Tomi\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\fnjbmmemklcjgepojigaapkoodmkgbae\2.1.0.900_0\
CHR - Extension: avast! WebRep = C:\Documents and Settings\Tomi\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1426_0\
CHR - Extension: DivX Plus Web Player HTML5 \u003Cvideo\u003E = C:\Documents and Settings\Tomi\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.0.900_0\
CHR - Extension: GamePlayLabs Plugin = C:\Documents and Settings\Tomi\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ocphobfcfafpclibolpjdafgaffkaoci\1.0_0\
CHR - Extension: Gmail = C:\Documents and Settings\Tomi\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
CHR - Extension: Faceplus = C:\Documents and Settings\Tomi\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pmlhgdcnpdkocmekcobgmhfnkibegghn\1.26_0\
O1 HOSTS File: ([2012.04.16 23:43:53 | 000,000,098 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (DivX HiQ) - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKU\S-1-5-21-1547161642-1647877149-725345543-1003\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found.
O4 - HKLM..\Run: [ATKHOTKEY] C:\Program Files\ASUS\ATK Hotkey\HControl.exe (ASUS)
O4 - HKLM..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMedia.exe (ASUS)
O4 - HKLM..\Run: [ATKOSD2] C:\Program Files\ATKOSD2\ATKOSD2.exe ()
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [HControlUser] C:\Program Files\ASUS\ATK Hotkey\HControlUser.exe (ASUS)
O4 - HKLM..\Run: [MsgTranAgt] C:\Program Files\ASUS\ATK Hotkey\MsgTranAgt.exe (ASUS)
O4 - HKU\S-1-5-21-1547161642-1647877149-725345543-1003..\Run: [Časovač] File not found
O4 - HKU\S-1-5-21-1547161642-1647877149-725345543-1003..\Run: [StatBar] C:\Program Files\Globe Software\StatBar\StatBar.exe (Globe Software)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Bluetooth.lnk = C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
O4 - Startup: C:\Documents and Settings\Tomi\Start Menu\Programs\Startup\Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1547161642-1647877149-725345543-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1547161642-1647877149-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-1547161642-1647877149-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-1547161642-1647877149-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Send To Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O12 - Plugin for: .spop - C:\Program Files\Internet Explorer\PLUGINS\NPDocBox.dll (Intertrust Technologies, Inc.)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C}
http://update.microsoft.com/windowsupda ... 9575861870 (WUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 1.7.0_03)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}
http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-0017-0000-0003-ABCDEFFEDCBA}
http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 1.7.0_03)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.7.0/jinsta ... s-i586.cab (Java Plug-in 1.7.0_03)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.macromedia.com/get/s ... wflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{4010F671-18F2-43B4-8511-63BB13D7722D}: DhcpNameServer = 192.168.2.1 192.168.2.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop WallPaper: C:\Documents and Settings\Tomi\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Tomi\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
CREATERESTOREPOINT
Unable to start System Restore Service. Error code 1056
Drivers32: msacm.bdmpeg - C:\WINDOWS\System32\bdmpega.acm ()
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.DIVX - C:\WINDOWS\System32\DivX.dll (DivX, Inc.)
Drivers32: VIDC.FPS1 - C:\WINDOWS\System32\frapsvid.dll (Beepa P/L)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.mjpg - C:\WINDOWS\System32\bdmjpeg.dll ()
Drivers32: vidc.mpeg - C:\WINDOWS\System32\bdmpegv.dll ()
Drivers32: vidc.VP60 - C:\WINDOWS\System32\vp6vfw.dll (EA.com/On2.com)
Drivers32: vidc.VP61 - C:\WINDOWS\System32\vp6vfw.dll (EA.com/On2.com)
Drivers32: vidc.VP62 - C:\WINDOWS\System32\vp6vfw.dll (EA.com/On2.com)
Drivers32: vidc.yv12 - C:\WINDOWS\System32\DivX.dll (DivX, Inc.)
Drivers32: wave4 - C:\WINDOWS\System32\serwvdrv.dll (Microsoft Corporation)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 7 Days ==========
[2012.04.30 23:09:43 | 000,595,456 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Tomi\Desktop\OTL.exe
[2012.04.29 22:45:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tomi\Desktop\KM2008_01.prt
[2012.04.28 01:06:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tomi\Desktop\Wind
[2012.04.27 15:13:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tomi\Desktop\statik kel
[2012.04.25 18:32:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Mozilla
[2012.04.25 18:32:50 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service
========== Files - Modified Within 7 Days ==========
[2012.04.30 23:18:38 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2012.04.30 23:10:02 | 000,595,456 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Tomi\Desktop\OTL.exe
[2012.04.30 09:30:22 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012.04.30 09:29:01 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012.04.25 21:49:45 | 000,155,008 | ---- | M] () -- C:\Documents and Settings\Tomi\Desktop\KM2008_01.prt.zip
[2012.04.25 20:37:07 | 000,002,563 | ---- | M] () -- C:\Documents and Settings\Tomi\Desktop\Microsoft Office Word 2007.lnk
[2012.04.25 20:23:51 | 002,030,969 | ---- | M] () -- C:\Documents and Settings\Tomi\Desktop\globalka4.rar
========== Files Created - No Company Name ==========
[2012.04.30 23:18:38 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2012.04.25 21:49:45 | 000,155,008 | ---- | C] () -- C:\Documents and Settings\Tomi\Desktop\KM2008_01.prt.zip
[2012.04.25 20:23:50 | 002,030,969 | ---- | C] () -- C:\Documents and Settings\Tomi\Desktop\globalka4.rar
[2012.03.06 18:37:07 | 000,116,224 | ---- | C] () -- C:\WINDOWS\System32\pdfcmnnt.dll
[2012.02.14 23:48:00 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2012.02.11 16:15:26 | 000,000,552 | ---- | C] () -- C:\WINDOWS\System32\d3d8caps.dat
[2012.02.06 16:48:52 | 000,138,264 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2012.02.06 16:48:51 | 000,138,056 | ---- | C] () -- C:\Documents and Settings\Tomi\Application Data\PnkBstrK.sys
[2012.02.06 16:48:31 | 000,234,768 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2012.02.06 16:48:23 | 000,075,136 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2012.01.29 15:14:29 | 000,684,313 | ---- | C] () -- C:\WINDOWS\unins001.exe
[2012.01.29 15:14:29 | 000,013,572 | ---- | C] () -- C:\WINDOWS\unins001.dat
[2012.01.19 12:52:54 | 006,105,371 | ---- | C] () -- C:\Program Files\UOAM.rar
[2011.12.17 03:18:38 | 000,016,836 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTAIODAT.DAT
[2011.11.29 01:19:15 | 001,057,584 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2011.11.01 13:51:58 | 000,043,520 | ---- | C] () -- C:\WINDOWS\System32\CmdLineExt03.dll
[2011.10.27 15:55:02 | 000,000,127 | ---- | C] () -- C:\Documents and Settings\Tomi\Local Settings\Application Data\fusioncache.dat
[2011.09.26 18:26:37 | 000,005,159 | ---- | C] () -- C:\WINDOWS\WTRAN32.INI
[2011.05.15 13:06:36 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011.04.13 22:21:11 | 000,000,383 | ---- | C] () -- C:\WINDOWS\System32\haspdos.sys
[2011.04.13 22:21:09 | 000,132,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\Haspnt.sys
[2011.03.14 22:10:00 | 000,319,488 | R--- | C] () -- C:\WINDOWS\System32\MafiaSetup.exe
[2010.12.29 19:26:55 | 000,000,010 | ---- | C] () -- C:\WINDOWS\popcinfo.dat
[2010.12.27 22:57:56 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\GkSui18.EXE
[2010.10.08 21:33:40 | 000,000,766 | ---- | C] () -- C:\WINDOWS\CoD.INI
[2010.09.02 09:33:54 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\bdmjpeg.dll
[2010.09.02 09:32:52 | 000,058,368 | ---- | C] () -- C:\WINDOWS\System32\bdmpegv.dll
[2010.07.19 23:37:15 | 000,088,576 | ---- | C] () -- C:\Documents and Settings\Tomi\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.07.19 22:32:18 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010.07.19 21:09:34 | 000,262,216 | ---- | C] () -- C:\WINDOWS\System32\IPTests.dll
[2010.07.19 20:57:09 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ativpsrm.bin
[2010.07.19 20:50:02 | 000,067,965 | ---- | C] () -- C:\WINDOWS\System32\Oemdspif.dll
[2010.07.19 20:50:01 | 003,107,788 | ---- | C] () -- C:\WINDOWS\System32\ativvaxx.dat
[2010.07.19 20:50:01 | 000,887,724 | ---- | C] () -- C:\WINDOWS\System32\ativva6x.dat
[2010.07.19 20:50:01 | 000,000,003 | ---- | C] () -- C:\WINDOWS\System32\ativva5x.dat
[2010.07.19 20:50:00 | 000,196,565 | ---- | C] () -- C:\WINDOWS\System32\atiicdxx.dat
[2010.07.19 20:48:03 | 001,772,544 | ---- | C] () -- C:\WINDOWS\System32\drivers\snp2uvc.sys
[2010.07.19 20:48:03 | 000,176,128 | ---- | C] ( ) -- C:\WINDOWS\System32\csnp2uvc.dll
[2010.07.19 20:48:03 | 000,176,128 | ---- | C] ( ) -- C:\WINDOWS\System32\csnp2uvc(6).dll
[2010.07.19 20:48:03 | 000,176,128 | ---- | C] ( ) -- C:\WINDOWS\System32\csnp2uvc(5).dll
[2010.07.19 20:48:03 | 000,176,128 | ---- | C] ( ) -- C:\WINDOWS\System32\csnp2uvc(4).dll
[2010.07.19 20:48:03 | 000,176,128 | ---- | C] ( ) -- C:\WINDOWS\System32\csnp2uvc(3).dll
[2010.07.19 20:48:03 | 000,176,128 | ---- | C] ( ) -- C:\WINDOWS\System32\csnp2uvc(2).dll
[2010.07.19 20:48:03 | 000,028,160 | ---- | C] () -- C:\WINDOWS\System32\drivers\sncduvc.sys
[2010.07.19 20:48:03 | 000,015,497 | ---- | C] () -- C:\WINDOWS\snp2uvc.ini
[2010.07.19 20:40:11 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2010.07.19 20:38:48 | 003,593,416 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010.07.19 20:25:46 | 000,886,192 | ---- | C] () -- C:\WINDOWS\System32\ativvaxx.dll
[2010.07.19 20:05:50 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll
[2010.07.19 20:04:52 | 000,000,653 | ---- | C] () -- C:\WINDOWS\unins000.dat
[2010.07.19 18:52:08 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010.07.19 18:47:12 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
========== LOP Check ==========
[2011.06.02 22:56:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVAST Software
[2012.04.22 16:12:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Bentley
[2010.12.25 23:14:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Clarus
[2010.07.19 20:35:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
[2011.12.17 03:13:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DriverGenius
[2011.02.16 15:13:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ICQ
[2011.12.17 16:32:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Infineon
[2011.03.13 11:56:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nokia
[2011.03.12 15:12:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\OviInstallerCache
[2011.06.10 13:11:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Drivers HeadQuarters
[2011.03.12 15:18:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Suite
[2011.07.12 15:29:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ReaConverter
[2012.02.18 17:41:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\regid.1986-12.com.adobe
[2011.08.26 14:46:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Test Drive Unlimited
[2011.02.18 22:08:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TrackMania
[2012.04.13 22:39:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\YouTube Downloader
[2012.04.13 22:39:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\YTD YouTube Downloader & Converter
[2010.12.27 02:51:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Default User\Application Data\Thinstall
[2011.09.06 23:26:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Application Data\Mumble
[2012.04.13 15:25:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\AIMP3
[2011.11.10 17:55:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\BANDISOFT
[2011.10.29 14:02:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\Bentley
[2011.11.01 22:55:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\Black Sea Studios
[2011.03.19 15:06:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\BlackBean
[2010.07.20 01:32:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\COWON
[2012.02.13 21:58:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\DAEMON Tools Lite
[2011.02.17 18:11:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\ICQ
[2011.12.17 03:15:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\Infineon
[2012.04.13 23:15:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\InterTrust
[2011.12.17 03:46:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\Leadertech
[2011.03.16 15:47:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\Mathsoft
[2012.04.30 21:03:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\Mumble
[2011.03.13 11:47:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\Nokia
[2011.03.13 11:47:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\Nokia Ovi Suite
[2011.03.13 11:47:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\PC Suite
[2012.03.06 18:37:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\pdfforge
[2011.08.09 19:55:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\Razor
[2011.07.12 15:24:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\RCP 6
[2011.10.12 23:40:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\Rovio
[2011.12.17 02:32:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\SystemRequirementsLab
[2011.12.11 23:43:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\TeamViewer
[2010.12.27 15:44:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\Thinstall
[2012.04.22 16:05:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomi\Application Data\uTorrent
========== Purity Check ==========
========== Custom Scans ==========
< >
< netsvc >
< >
< MD5 for: ATAPI.SYS >
[2003.03.31 14:00:00 | 010,158,890 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp1.cab:atapi.sys
[2008.04.14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.04.14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2003.03.31 14:00:00 | 000,086,912 | ---- | M] (Microsoft Corporation) MD5=95B858761A00E1D4F81F79A0DA019ACA -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2008.04.14 05:42:14 | 000,588,800 | ---- | M] (Microsoft Corporation) MD5=23043C91A0F9DFB4B9E9F87B680863B4 -- C:\cmdcons\autochk.exe
[2008.04.14 05:42:14 | 000,588,800 | ---- | M] (Microsoft Corporation) MD5=23043C91A0F9DFB4B9E9F87B680863B4 -- C:\WINDOWS\ServicePackFiles\i386\autochk.exe
[2008.04.14 05:42:14 | 000,588,800 | ---- | M] (Microsoft Corporation) MD5=23043C91A0F9DFB4B9E9F87B680863B4 -- C:\WINDOWS\system32\autochk.exe
[2003.03.31 14:00:00 | 000,565,760 | ---- | M] (Microsoft Corporation) MD5=C29EA308913FEC2AF4F977EF718A3574 -- C:\WINDOWS\$NtServicePackUninstall$\autochk.exe
< MD5 for: CDROM.SYS >
[2003.03.31 14:00:00 | 010,158,890 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp1.cab:cdrom.sys
[2008.04.14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008.04.14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008.04.14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008.04.14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2003.03.31 14:00:00 | 000,047,488 | ---- | M] (Microsoft Corporation) MD5=6506E033AD04CFEC9EE56DBEFD1083DD -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys
< MD5 for: EXPLORER.EXE >
[2008.04.14 05:42:20 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 -- C:\WINDOWS\explorer.exe
[2008.04.14 05:42:20 | 001,033,728 | ---- | M] (Microsoft Corporation) MD5=12896823FB95BFB3DC9B46BCAEDC9923 -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[2003.03.31 14:00:00 | 001,004,032 | ---- | M] (Microsoft Corporation) MD5=A82B28BFC2E4455FE43022A498C0EF0A -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe
< MD5 for: HAL.DLL >
[2003.03.31 14:00:00 | 010,158,890 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp1.cab:hal.dll
[2008.04.14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2008.04.14 05:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:hal.dll
[2003.03.31 14:00:00 | 000,129,920 | ---- | M] (Microsoft Corporation) MD5=308709E92843DFF3A5CDCA069F6F5C61 -- C:\WINDOWS\$NtServicePackUninstall$\hal.dll
[2008.04.14 00:01:30 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=4329EE7D502C9113EBA0F9570392F5EE -- C:\WINDOWS\system32\HAL.DLL
[2008.04.14 00:01:34 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=6DB1E72AD3B372DFC451B7F54BA08AA7 -- C:\WINDOWS\ServicePackFiles\i386\hal.dll
< MD5 for: SCECLI.DLL >
[2003.03.31 14:00:00 | 000,174,592 | ---- | M] (Microsoft Corporation) MD5=97418A5C642A5C748A28BD7CF6860B57 -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008.04.14 05:42:06 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008.04.14 05:42:06 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\system32\scecli.dll
< MD5 for: SVCHOST.EXE >
[2003.03.31 14:00:00 | 000,012,800 | ---- | M] (Microsoft Corporation) MD5=0F7D9C87B0CE1FA520473119752C6F79 -- C:\WINDOWS\$NtServicePackUninstall$\svchost.exe
[2008.04.14 05:42:38 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=27C6D03BCDB8CFEB96B716F3D8BE3E18 -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008.04.14 05:42:38 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=27C6D03BCDB8CFEB96B716F3D8BE3E18 -- C:\WINDOWS\system32\svchost.exe
< MD5 for: TCPIP.SYS >
[2003.03.31 14:00:00 | 000,332,928 | ---- | M] (Microsoft Corporation) MD5=244A2F9816BC9B593957281EF577D976 -- C:\WINDOWS\$NtServicePackUninstall$\tcpip.sys
[2008.04.14 00:50:18 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\$NtUninstallKB951748$\tcpip.sys
[2008.04.14 00:50:18 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\ServicePackFiles\i386\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 13:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB2509553\SP3QFE\tcpip.sys
[2008.06.20 13:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys
< MD5 for: USERINIT.EXE >
[2008.04.14 05:42:40 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=A93AEE1928A9D7CE3E16D24EC7380F89 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008.04.14 05:42:40 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=A93AEE1928A9D7CE3E16D24EC7380F89 -- C:\WINDOWS\system32\userinit.exe
[2003.03.31 14:00:00 | 000,022,016 | ---- | M] (Microsoft Corporation) MD5=E931E0A2B8BF0019DB902E98D03662CB -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe
< MD5 for: WINLOGON.EXE >
[2003.03.31 14:00:00 | 000,516,608 | ---- | M] (Microsoft Corporation) MD5=2246D8D8F4714A2CEDB21AB9B1849ABB -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008.04.14 05:42:40 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008.04.14 05:42:40 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=ED0EF0A136DEC83DF69F04118870003E -- C:\WINDOWS\system32\winlogon.exe