Re: Nenačíta mi Facebook a stránky od Googlu
Napsal: 16 črc 2013 16:12
OTL.txt
OTL logfile created on: 16.7.2013 16:14:23 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\HP_Compaq\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000041B | Country: Slovakia | Language: SKY | Date Format: d.M.yyyy
2,00 Gb Total Physical Memory | 1,28 Gb Available Physical Memory | 63,82% Memory free
5,85 Gb Paging File | 5,23 Gb Available in Paging File | 89,44% Paging File free
Paging file location(s): C:\pagefile.sys 0 0F:\pagefile.sys 0 0 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 76,32 Gb Total Space | 34,17 Gb Free Space | 44,77% Space Free | Partition Type: NTFS
Drive F: | 465,76 Gb Total Space | 311,69 Gb Free Space | 66,92% Space Free | Partition Type: NTFS
Computer Name: HP | User Name: HP_Compaq | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days
========== Processes (SafeList) ==========
PRC - [2013.07.16 16:11:02 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\HP_Compaq\Desktop\OTL.exe
PRC - [2013.07.12 20:49:47 | 000,846,288 | ---- | M] (Google Inc.) -- C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
PRC - [2013.05.12 14:48:22 | 000,181,664 | ---- | M] (Oracle Corporation) -- C:\Program Files\Java\jre7\bin\jqs.exe
PRC - [2013.05.09 10:58:30 | 004,858,968 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2013.05.09 10:58:30 | 000,046,808 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2013.04.04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
PRC - [2012.09.28 10:25:56 | 000,586,904 | ---- | M] (PandoraTV) -- C:\Program Files\PANDORA.TV\PanService\PanProcess.exe
PRC - [2012.09.28 10:25:54 | 000,625,304 | ---- | M] (Pandora.TV) -- C:\Program Files\PANDORA.TV\PanService\PandoraService.exe
PRC - [2010.09.29 03:33:40 | 000,249,856 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\DatacardService\DCService.exe
PRC - [2010.05.31 18:51:34 | 000,536,576 | ---- | M] () -- C:\Program Files\Mobile Partner\Mobile Partner.exe
PRC - [2008.04.14 06:42:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2002.09.20 16:50:10 | 000,045,056 | ---- | M] (Analog Devices, Inc.) -- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
========== Modules (No Company Name) ==========
MOD - [2013.07.16 10:31:33 | 002,093,056 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\defs\13071600\algo.dll
MOD - [2013.07.12 20:49:44 | 000,396,240 | ---- | M] () -- C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\Application\28.0.1500.72\ppgooglenaclpluginchrome.dll
MOD - [2013.07.12 20:49:42 | 004,052,944 | ---- | M] () -- C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\Application\28.0.1500.72\pdf.dll
MOD - [2013.07.12 20:48:49 | 001,597,392 | ---- | M] () -- C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\Application\28.0.1500.72\ffmpegsumo.dll
MOD - [2013.03.15 07:47:17 | 001,564,008 | ---- | M] () -- C:\Program Files\NVIDIA Corporation\nView\nView.dll
MOD - [2012.10.22 12:21:42 | 001,277,952 | ---- | M] () -- C:\Program Files\PANDORA.TV\PanService\avformat-53.dll
MOD - [2012.07.09 18:57:30 | 002,090,496 | ---- | M] () -- C:\Program Files\PANDORA.TV\PanService\avcodec-53.dll
MOD - [2012.06.18 17:24:30 | 000,260,096 | ---- | M] () -- C:\Program Files\Notepad++\NppShell_05.dll
MOD - [2012.03.23 11:07:34 | 000,224,768 | ---- | M] () -- C:\Program Files\PANDORA.TV\PanService\libupnp.dll
MOD - [2011.12.06 17:19:48 | 000,133,632 | ---- | M] () -- C:\Program Files\PANDORA.TV\PanService\avutil-51.dll
MOD - [2010.09.29 03:33:40 | 000,249,856 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\DatacardService\DCService.exe
MOD - [2010.08.27 20:43:52 | 001,019,904 | ---- | M] () -- C:\Program Files\Mobile Partner\NDISAPI.dll
MOD - [2010.05.31 18:51:34 | 000,536,576 | ---- | M] () -- C:\Program Files\Mobile Partner\Mobile Partner.exe
MOD - [2010.05.31 18:51:16 | 000,139,264 | ---- | M] () -- C:\Program Files\Mobile Partner\LocaleMgrPlugin.dll
MOD - [2010.05.31 18:50:54 | 000,163,840 | ---- | M] () -- C:\Program Files\Mobile Partner\SMSPlugin.dll
MOD - [2010.05.31 18:50:26 | 000,032,768 | ---- | M] () -- C:\Program Files\Mobile Partner\NotifyServicePlugin.dll
MOD - [2010.05.31 18:49:18 | 000,057,344 | ---- | M] () -- C:\Program Files\Mobile Partner\ConfigFilePlugin.dll
MOD - [2010.05.31 18:48:36 | 000,122,880 | ---- | M] () -- C:\Program Files\Mobile Partner\DeviceMgrPlugin.dll
MOD - [2010.05.31 18:47:10 | 000,147,456 | ---- | M] () -- C:\Program Files\Mobile Partner\NetInfoPlugin.dll
MOD - [2010.05.31 18:45:44 | 000,090,112 | ---- | M] () -- C:\Program Files\Mobile Partner\DialUpPlugin.dll
MOD - [2010.05.31 18:45:06 | 000,253,952 | ---- | M] () -- C:\Program Files\Mobile Partner\DeviceMgrUIPlugin.dll
MOD - [2010.05.31 17:54:32 | 000,172,032 | R--- | M] () -- C:\Program Files\Mobile Partner\DetectDev.dll
MOD - [2010.05.31 17:54:26 | 000,061,440 | R--- | M] () -- C:\Program Files\Mobile Partner\DeviceOperate.dll
MOD - [2010.05.31 17:54:24 | 000,598,016 | R--- | M] () -- C:\Program Files\Mobile Partner\atcomm.dll
MOD - [2010.05.31 17:53:52 | 000,061,440 | R--- | M] () -- C:\Program Files\Mobile Partner\XCodec.dll
MOD - [2010.04.23 10:16:44 | 000,090,112 | R--- | M] () -- C:\Program Files\Mobile Partner\FileManager.dll
MOD - [2010.04.23 10:16:42 | 000,014,848 | R--- | M] () -- C:\Program Files\Mobile Partner\isaputrace.dll
MOD - [2010.03.15 11:28:22 | 000,141,824 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll
========== Services (SafeList) ==========
SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - [2013.06.14 18:30:41 | 000,256,904 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013.05.12 14:48:22 | 000,181,664 | ---- | M] (Oracle Corporation) [Auto | Running] -- C:\Program Files\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService)
SRV - [2013.05.09 10:58:30 | 000,046,808 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV - [2013.04.04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2013.04.04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2013.03.15 07:47:17 | 001,266,464 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2012.09.28 10:25:54 | 000,625,304 | ---- | M] (Pandora.TV) [Auto | Running] -- C:\Program Files\PANDORA.TV\PanService\PandoraService.exe -- (PanService)
SRV - [2010.09.29 03:33:40 | 000,249,856 | ---- | M] () [Auto | Running] -- C:\Documents and Settings\All Users\Application Data\DatacardService\DCService.exe -- (DCService.exe)
SRV - [2005.10.06 19:12:30 | 000,855,552 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Media Connect 2\wmccds.exe -- (WMConnectCDS)
SRV - [2003.04.07 07:32:06 | 000,065,795 | R--- | M] (HP) [On_Demand | Stopped] -- C:\WINDOWS\system32\HPZipm12.exe -- (Pml Driver HPZ12)
SRV - [2002.09.20 16:50:10 | 000,045,056 | ---- | M] (Analog Devices, Inc.) [Auto | Running] -- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe -- (SoundMAX Agent Service (default)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\usbehci_dsf.sys -- (usbehci_dsf)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\softehci.sys -- (softehci)
DRV - File not found [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\SBREdrv.sys -- (SBRE)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\pccsmcfd.sys -- (pccsmcfd)
DRV - File not found [Kernel | On_Demand | Stopped] -- E:\CDriver.sys -- (MSICDSetup)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\EagleXNt.sys -- (EagleXNt)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\CPUID\PC Wizard 2010\pcwiz_x32.sys -- (cpuz134)
DRV - File not found [Kernel | On_Demand | Unknown] -- -- (asx1yh4i)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\AmdLLD.sys -- (AmdLLD)
DRV - [2013.07.14 16:09:51 | 000,770,344 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2013.07.14 16:09:51 | 000,369,584 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2013.07.14 16:09:51 | 000,175,176 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\aswVmm.sys -- (aswVmm)
DRV - [2013.07.05 20:14:05 | 000,099,400 | ---- | M] (MotioninJoy) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\MijXfilt.sys -- (MotioninJoyXFilter)
DRV - [2013.06.22 10:04:06 | 000,242,240 | ---- | M] (DT Soft Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV - [2013.05.09 10:59:10 | 000,056,080 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2013.05.09 10:59:10 | 000,049,376 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\aswRvrt.sys -- (aswRvrt)
DRV - [2013.05.09 10:59:09 | 000,066,336 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV - [2013.05.09 10:59:09 | 000,049,760 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (AswRdr)
DRV - [2013.05.09 10:59:08 | 000,029,816 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2013.04.04 14:50:32 | 000,022,856 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2012.12.19 07:41:55 | 000,128,440 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvhda32.sys -- (NVHDA)
DRV - [2012.12.17 20:24:01 | 000,466,008 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd)
DRV - [2012.12.09 11:51:24 | 000,113,168 | ---- | M] (Power Software Ltd) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\scdemu.sys -- (SCDEmu)
DRV - [2012.11.13 21:04:34 | 000,025,200 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ggsemc.sys -- (ggsemc)
DRV - [2012.11.13 21:04:34 | 000,012,400 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ggflt.sys -- (ggflt)
DRV - [2012.09.01 18:23:45 | 000,013,816 | ---- | M] () [Kernel | Unavailable | Unknown] -- C:\WINDOWS\system32\unikey.sys -- (phunter)
DRV - [2012.04.28 16:03:33 | 000,271,360 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt)
DRV - [2012.04.28 16:03:32 | 000,018,048 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt)
DRV - [2011.07.01 11:46:40 | 000,026,624 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\tap0901.sys -- (tap0901)
DRV - [2011.06.02 10:08:34 | 000,011,336 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\SystemRequirementsLab\cpudrv.sys -- (cpudrv)
DRV - [2010.08.27 13:53:32 | 000,117,504 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ewusbnet.sys -- (ewusbnet)
DRV - [2010.08.07 17:48:30 | 000,106,496 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ewusbmdm.sys -- (hwdatacard)
DRV - [2010.07.27 15:25:48 | 000,072,832 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ew_jubusenum.sys -- (huawei_enumerator)
DRV - [2010.07.27 09:52:02 | 000,102,784 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ew_hwusbdev.sys -- (ew_hwusbdev)
DRV - [2010.03.20 12:06:58 | 000,011,136 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ew_usbenumfilter.sys -- (ew_usbenumfilter)
DRV - [2009.08.05 06:56:04 | 000,048,256 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\HPKBCCID.sys -- (HPKBCCID)
DRV - [2009.08.04 10:04:26 | 000,034,688 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\pcampr5.sys -- (PCAMPR5)
DRV - [2009.08.04 10:04:26 | 000,032,128 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\pcandis5.sys -- (PCANDIS5)
DRV - [2009.07.13 16:51:12 | 000,034,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\winusb.sys -- (WinUSB)
DRV - [2009.03.18 17:35:40 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2008.07.25 02:18:32 | 000,176,640 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\b57xp32.sys -- (b57w2k)
DRV - [2008.06.20 13:08:27 | 000,225,856 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\tcpip6.sys -- (Tcpip6)
DRV - [2008.06.06 10:15:40 | 000,098,816 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\baspxp32.sys -- (Blfp)
DRV - [2007.08.08 18:54:10 | 000,028,968 | ---- | M] () [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\ATITool.sys -- (ATITool)
DRV - [2007.01.24 02:01:00 | 000,007,680 | ---- | M] (SCM Microsystems Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\STCFUx32.sys -- (STCFUx32)
DRV - [2004.10.08 03:16:04 | 000,035,840 | ---- | M] (Oak Technology Inc.) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\AFS2K.SYS -- (AFS2K)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={ ... rer:source?}
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchT ... urceid=ie7
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,AlwaysUseDefaultPrinter = yes
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,AlwaysUseDefaultPrinter = yes
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,AlwaysUseDefaultPrinter = yes
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,AlwaysUseDefaultPrinter = yes
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1547161642-861567501-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,AlwaysUseDefaultPrinter = yes
IE - HKU\S-1-5-21-1547161642-861567501-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-1547161642-861567501-839522115-1003\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1547161642-861567501-839522115-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-1547161642-861567501-839522115-1003\..\SearchScopes\{479CC025-F10A-4C75-887B-26FF2DDD64A1}: "URL" = http://www.google.com/search?q={searchT ... 1I7GGLL_en
IE - HKU\S-1-5-21-1547161642-861567501-839522115-1003\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-1547161642-861567501-839522115-1003\..\SearchScopes\{8FFF0A65-0F0F-41BA-80D0-BDD0A96BF946}: "URL" = http://search.yahoo.com/search?fr=chr-g ... earchTerms}
IE - HKU\S-1-5-21-1547161642-861567501-839522115-1003\..\SearchScopes\{DCB0F2A9-383F-48B0-85FF-85DE0E93F73E}: "URL" = http://websearch.ask.com/redirect?clien ... 8DDA930D6F
IE - HKU\S-1-5-21-1547161642-861567501-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo.com/search?fr=green ... =512435&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&ilc=12&type=512435"
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.21.2: C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@ngm.nexoneu.com/NxGame: C:\Documents and Settings\All Users\Application Data\NexonEU\NGM\npNxGameeu.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=15.0.6.14: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=15.0.6.14: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=15.0.6.14: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=15.0.6.14: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nprpplugin;version=15.0.6.14: File not found
FF - HKLM\Software\MozillaPlugins\@soe.sony.com/installer,version=1.0.3: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.7: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc: C:\Program Files\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll File not found
[2012.11.15 20:34:11 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\HP_Compaq\Application Data\Mozilla\Extensions
[2013.07.14 14:46:14 | 000,000,915 | ---- | M] () -- C:\Documents and Settings\HP_Compaq\Application Data\Mozilla\Firefox\Profiles\95tvt5rs.default\searchplugins\yahoo.xml
[2012.12.08 19:47:52 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2012.10.29 19:23:22 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
[2010.10.29 21:12:14 | 000,002,185 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\facesmoochtb.xml
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter},
CHR - homepage:
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\Application\28.0.1500.72\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\Application\28.0.1500.72\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\Application\28.0.1500.72\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_262.dll
CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Documents and Settings\HP_Compaq\Application Data\Mozilla\plugins\np-mswmp.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.330.3 (Enabled) = C:\WINDOWS\system32\npdeployJava1.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll
CHR - plugin: Nokia Suite Enabler Plugin (Enabled) = C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll
CHR - plugin: RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) (Enabled) = C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll
CHR - plugin: RealPlayer Version Plugin (Enabled) = C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll
CHR - plugin: VLC Web Plugin (Enabled) = C:\Program Files\VideoLAN\VLC\npvlc.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - Extension: http://www.sector.sk/ = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\abefblogoddecahnjcecdnkhnlmjcnmm\2013.6.15.46637_0\
CHR - Extension: http://www.ps3mania.sk/forum.html = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\bhebejhlbagaeaeclinbkdpjljjhnlie\2013.7.5.16278_0\
CHR - Extension: James White = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\bkeidgmehkdjmpjodpjkepolokanalkm\3_0\
CHR - Extension: YouTube = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: https://www.facebook.com/ = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\celnaknmndcdcjcagffhbhciignkeokb\2013.6.27.45427_0\
CHR - Extension: http://www.csfd.cz/ = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\dfpmaamdbilchblfpjkfbhplblloomaa\2013.7.13.22618_0\
CHR - Extension: http://smartmobil.sk/forum/viewforum.php?f=13 = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\fdcgppjgcikcbhicbfbicfflmlablcog\2013.6.15.46595_0\
CHR - Extension: AdBlock = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.2_0\
CHR - Extension: avast! Online Security = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.8_0\
CHR - Extension: http://www.ps3zone.sk/index.php = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\hlbohbfphlmfbcgmogdeajaopogmgflk\2013.6.30.25638_0\
CHR - Extension: http://forum.viry.cz/index.php = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ihdglhohdciaalggbbfampmahfjoielg\2013.7.13.49144_0\
CHR - Extension: http://www.ps3zone.sk/viewtopic.php?f=25&t=55 = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\kfmpddfikpdfknmhggmljjcefollnipd\2013.7.13.38589_0\
CHR - Extension: Google Play = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\komhbcfkdcgmcdoenjcjheifdiabikfi\3.0_0\
CHR - Extension: Gmail = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
CHR - Extension: http://www.sector.sk/ = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\abefblogoddecahnjcecdnkhnlmjcnmm\2013.6.15.46637_0\
CHR - Extension: http://www.ps3mania.sk/forum.html = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\bhebejhlbagaeaeclinbkdpjljjhnlie\2013.7.5.16278_0\
CHR - Extension: James White = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\bkeidgmehkdjmpjodpjkepolokanalkm\3_0\
CHR - Extension: YouTube = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: https://www.facebook.com/ = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\celnaknmndcdcjcagffhbhciignkeokb\2013.6.27.45427_0\
CHR - Extension: http://www.csfd.cz/ = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\dfpmaamdbilchblfpjkfbhplblloomaa\2013.7.13.22618_0\
CHR - Extension: http://smartmobil.sk/forum/viewforum.php?f=13 = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\fdcgppjgcikcbhicbfbicfflmlablcog\2013.6.15.46595_0\
CHR - Extension: AdBlock = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.2_0\
CHR - Extension: avast! Online Security = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.8_0\
CHR - Extension: http://www.ps3zone.sk/index.php = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\hlbohbfphlmfbcgmogdeajaopogmgflk\2013.6.30.25638_0\
CHR - Extension: http://forum.viry.cz/index.php = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ihdglhohdciaalggbbfampmahfjoielg\2013.7.13.49144_0\
CHR - Extension: http://www.ps3zone.sk/viewtopic.php?f=25&t=55 = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\kfmpddfikpdfknmhggmljjcefollnipd\2013.7.13.38589_0\
CHR - Extension: Google Play = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\komhbcfkdcgmcdoenjcjheifdiabikfi\3.0_0\
CHR - Extension: Gmail = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
O1 HOSTS File: ([2012.11.06 20:01:08 | 000,000,789 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - Reg Error: Value error. File not found
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKU\S-1-5-21-1547161642-861567501-839522115-1003\..\Toolbar\ShellBrowser: (no name) - {EBE9E2B5-B526-48BC-AD46-687263EDCB0E} - No CLSID value found.
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [LayoutM] C:\WINDOWS\KLayMgr.exe (Chicony)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\nvmctray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nview\nwiz.exe ()
O4 - HKU\S-1-5-21-1547161642-861567501-839522115-1003..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (Disc Soft Ltd)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE (Microsoft Corporation)
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1547161642-861567501-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - mswsock.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - mswsock.dll File not found
O15 - HKU\S-1-5-19\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: sony.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-1547161642-861567501-839522115-1003\..Trusted Domains: clonewarsadventures.com ([]* in Dôveryhodné lokality)
O15 - HKU\S-1-5-21-1547161642-861567501-839522115-1003\..Trusted Domains: microsoft.com ([windowsupdate] https in Dôveryhodné lokality)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://www.update.microsoft.com/windows ... 3601001437 (WUWebControl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/microso ... 9867546703 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.21.2)
O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} Reg Error: Value error. (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_35)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.21.2)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain =
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{01A482B5-E480-41B7-825F-71A6F7506DE7}: NameServer = 213.151.200.31 85.237.225.250
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Reg Error: Value error.) - Reg Error: Value error. File not found
O24 - Desktop WallPaper: C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011.05.25 17:19:26 | 000,000,007 | -HS- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{0310f69a-bc9d-11e1-911a-bc8882b1ef4f}\Shell - "" = AutoRun
O33 - MountPoints2\{279caa16-6a8e-11e0-8aa4-000ffe0feb83}\Shell - "" = Autorun
O33 - MountPoints2\{2d7a0d2b-b55d-11e1-90f1-e57e7cc05bed}\Shell - "" = AutoRun
O33 - MountPoints2\{47279636-c05d-11e1-913a-b68f48aa9fd7}\Shell - "" = AutoRun
O33 - MountPoints2\{4a3ace62-3936-11e0-8a2b-000ffe0feb83}\Shell - "" = AutoRun
O33 - MountPoints2\{842b1ffa-acae-11e1-90ba-eae5b3e4a241}\Shell - "" = AutoRun
O33 - MountPoints2\{842b1ffa-acae-11e1-90ba-eae5b3e4a241}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL upgrade.htm
O33 - MountPoints2\{86efa5cc-bc74-11e1-9119-efe73a550912}\Shell - "" = AutoRun
O33 - MountPoints2\{d1be42df-549a-11e0-8a45-000ffe0feb83}\Shell - "" = AutoRun
O33 - MountPoints2\{d1be42df-549a-11e0-8a45-000ffe0feb83}\Shell\AutoRun\command - "" = G:\setup.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
NetSvcs: HidServ - %SystemRoot%\System32\hidserv.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: BITS - File not found
Drivers32: MIDI1 - C:\WINDOWS\System32\Syncor11.dll (SoundMAX)
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: msacm.vorbis - C:\WINDOWS\System32\vorbis.acm (HMS http://hp.vector.co.jp/authors/VA012897/)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FPS1 - C:\WINDOWS\System32\frapsvid.dll (Beepa P/L)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 7 Days ==========
[2013.07.16 16:11:06 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\HP_Compaq\Desktop\OTL.exe
[2013.07.16 14:12:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\VideoLAN
[2013.07.15 13:42:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Steam
[2013.07.14 16:10:32 | 000,000,000 | ---D | C] -- C:\Program Files\Siber Systems
[2013.07.14 16:09:39 | 000,029,816 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2013.07.14 16:09:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\avast! Free Antivirus
[2013.07.14 16:09:38 | 000,369,584 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2013.07.14 16:09:35 | 000,056,080 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2013.07.14 16:09:35 | 000,049,760 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2013.07.14 16:09:34 | 000,770,344 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
[2013.07.14 16:09:31 | 000,229,648 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[2013.07.14 16:09:31 | 000,066,336 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys
[2013.07.14 16:08:52 | 000,041,664 | ---- | C] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[2013.07.14 16:08:22 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2013.07.14 16:07:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\AVAST Software
[2013.07.13 20:03:06 | 000,000,000 | ---D | C] -- C:\rsit
[2013.07.13 13:55:05 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\HP_Compaq\Recent
[2013.07.10 16:25:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\REAL ZKW
[2013.07.10 16:24:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\HP_Compaq\Desktop\REAL_ZKW-Default-1.1.5.0
[2013.07.10 11:34:58 | 000,000,000 | ---D | C] -- C:\Program Files\The Elder Scrolls V Skyrim
[2001.10.02 11:56:42 | 000,031,744 | ---- | C] (Symantec Corp., Peter Norton Computing Group) -- C:\Program Files\Common Files\IRAWEBTR.DLL
[2001.10.02 11:56:40 | 000,186,368 | ---- | C] (Symantec Corp., Peter Norton Computing Group) -- C:\Program Files\Common Files\IRAREG.DLL
[2001.10.02 11:56:40 | 000,070,144 | ---- | C] (Symantec Corp., Peter Norton Computing Group) -- C:\Program Files\Common Files\IRAMDMTR.DLL
[2001.10.02 11:56:40 | 000,048,640 | ---- | C] (Symantec Corp., Peter Norton Computing Group) -- C:\Program Files\Common Files\IRALPTTR.DLL
[2001.10.02 11:56:40 | 000,017,920 | ---- | C] (Symantec Corp.) -- C:\Program Files\Common Files\IRASRIAL.DLL
[2001.10.02 11:56:38 | 000,099,840 | ---- | C] (Symantec Corp.) -- C:\Program Files\Common Files\IRAABOUT.DLL
[3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files - Modified Within 7 Days ==========
[2013.07.16 16:20:52 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2013.07.16 16:16:00 | 000,000,930 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2013.07.16 16:11:02 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\HP_Compaq\Desktop\OTL.exe
[2013.07.16 16:09:11 | 000,000,322 | -H-- | M] () -- C:\WINDOWS\tasks\avast! Emergency Update.job
[2013.07.16 16:06:52 | 000,000,926 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2013.07.16 16:06:47 | 000,000,286 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-1547161642-861567501-839522115-1003.job
[2013.07.16 16:06:46 | 000,000,302 | ---- | M] () -- C:\WINDOWS\tasks\iMeshNAG.job
[2013.07.16 16:06:43 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2013.07.16 15:47:02 | 000,001,032 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-861567501-839522115-1003UA.job
[2013.07.16 15:30:00 | 000,000,830 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2013.07.16 14:13:24 | 000,017,762 | ---- | M] () -- C:\WINDOWS\System32\nvAppTimestamps
[2013.07.16 14:12:27 | 000,000,725 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\VLC media player.lnk
[2013.07.16 13:35:09 | 000,501,552 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2013.07.16 13:35:09 | 000,087,458 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2013.07.15 16:15:35 | 000,072,192 | ---- | M] () -- C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2013.07.15 14:47:00 | 000,000,980 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-861567501-839522115-1003Core.job
[2013.07.14 18:23:51 | 000,012,620 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2013.07.14 16:09:51 | 000,770,344 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
[2013.07.14 16:09:51 | 000,369,584 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2013.07.14 16:09:51 | 000,175,176 | ---- | M] () -- C:\WINDOWS\System32\drivers\aswVmm.sys
[2013.07.14 16:09:51 | 000,000,175 | ---- | M] () -- C:\WINDOWS\System32\drivers\aswVmm.sys.sum
[2013.07.14 16:09:51 | 000,000,175 | ---- | M] () -- C:\WINDOWS\System32\drivers\aswSP.sys.sum
[2013.07.14 16:09:51 | 000,000,175 | ---- | M] () -- C:\WINDOWS\System32\drivers\aswSnx.sys.sum
[2013.07.14 16:09:31 | 000,002,577 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2013.07.13 19:59:44 | 000,002,340 | ---- | M] () -- C:\Documents and Settings\HP_Compaq\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2013.07.13 19:59:43 | 000,002,322 | ---- | M] () -- C:\Documents and Settings\HP_Compaq\Desktop\Google Chrome.lnk
[2013.07.10 11:43:23 | 000,000,748 | ---- | M] () -- C:\Documents and Settings\HP_Compaq\Desktop\SkyrimLauncher.lnk
[2013.07.10 11:00:59 | 000,000,521 | ---- | M] () -- C:\hpfr3420.xml
[3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files Created - No Company Name ==========
[2013.07.16 16:20:52 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2013.07.16 14:12:27 | 000,000,725 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\VLC media player.lnk
[2013.07.14 16:09:51 | 000,000,175 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswVmm.sys.sum
[2013.07.14 16:09:51 | 000,000,175 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswSP.sys.sum
[2013.07.14 16:09:51 | 000,000,175 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswSnx.sys.sum
[2013.07.14 16:09:34 | 000,175,176 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswVmm.sys
[2013.07.14 16:09:33 | 000,049,376 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswRvrt.sys
[2013.07.14 16:09:31 | 000,000,322 | -H-- | C] () -- C:\WINDOWS\tasks\avast! Emergency Update.job
[2013.07.10 11:43:23 | 000,000,748 | ---- | C] () -- C:\Documents and Settings\HP_Compaq\Desktop\SkyrimLauncher.lnk
[2013.06.21 16:53:22 | 012,998,543 | ---- | C] () -- C:\WINDOWS\deluge-1.3.6-win32-setup.exe
[2013.06.21 16:53:22 | 000,717,985 | ---- | C] () -- C:\WINDOWS\unins000.exe
[2013.06.21 16:53:22 | 000,095,430 | ---- | C] () -- C:\WINDOWS\unins000.dat
[2013.05.31 18:02:30 | 000,001,274 | ---- | C] () -- C:\Documents and Settings\HP_Compaq\.xmlcopyeditor
[2013.05.31 18:00:25 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\abracadabra08092011.exe
[2013.05.18 10:52:20 | 000,189,248 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2013.05.18 10:52:19 | 000,075,136 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2013.03.03 12:50:21 | 000,001,456 | ---- | C] () -- C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Adobe Save for Web 13.0 Prefs
[2013.01.02 15:02:15 | 000,008,306 | ---- | C] () -- C:\Documents and Settings\HP_Compaq\MAYANPROPHECY.nfo
[2012.12.24 19:26:03 | 000,000,204 | ---- | C] () -- C:\Documents and Settings\HP_Compaq\SciTE.recent
[2012.12.24 19:26:03 | 000,000,179 | ---- | C] () -- C:\Documents and Settings\HP_Compaq\SciTE.session
[2012.09.01 17:57:14 | 000,013,816 | ---- | C] () -- C:\WINDOWS\System32\unikey.sys
[2012.06.19 20:49:16 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2012.06.18 15:49:57 | 000,098,344 | ---- | C] () -- C:\WINDOWS\unPMV.exe
[2012.06.03 14:02:51 | 000,000,319 | ---- | C] () -- C:\WINDOWS\game.ini
[2012.04.30 18:28:17 | 000,134,671 | ---- | C] () -- C:\WINDOWS\System32\winstanew.dll
[2012.04.30 18:28:17 | 000,000,236 | -H-- | C] () -- C:\Program Files\Common Files\dx.reg
[2012.04.30 18:28:16 | 001,584,149 | ---- | C] () -- C:\WINDOWS\System32\setupapinew.dll
[2012.04.30 18:28:16 | 000,789,525 | ---- | C] () -- C:\WINDOWS\System32\rpcrt4new.dll
[2012.04.30 18:28:16 | 000,681,478 | ---- | C] () -- C:\WINDOWS\System32\msvcrtnew.dll
[2012.04.30 18:28:16 | 000,633,871 | ---- | C] () -- C:\WINDOWS\System32\user32new.dll
[2012.04.30 18:28:16 | 000,096,783 | ---- | C] () -- C:\WINDOWS\System32\powrprofnew.dll
[2012.04.30 18:28:16 | 000,087,558 | ---- | C] () -- C:\WINDOWS\System32\ntdsapinew.dll
[2012.04.30 18:28:16 | 000,072,707 | ---- | C] () -- C:\WINDOWS\System32\secur32new.dll
[2012.04.30 18:28:15 | 000,874,502 | ---- | C] () -- C:\WINDOWS\System32\kernel32new.dll
[2012.04.30 18:28:15 | 000,376,832 | ---- | C] () -- C:\WINDOWS\System32\M2000Twn.dll
[2012.04.30 18:28:15 | 000,039,948 | ---- | C] () -- C:\WINDOWS\System32\dwmapi.dll
[2012.04.30 18:28:09 | 000,187,398 | ---- | C] () -- C:\WINDOWS\System32\d3d10core.dll
[2012.04.30 18:28:08 | 000,974,354 | ---- | C] () -- C:\WINDOWS\System32\crypt32new.dll
[2012.04.30 18:28:08 | 000,770,069 | ---- | C] () -- C:\WINDOWS\System32\advapi32new.dll
[2012.04.30 18:28:08 | 000,171,023 | ---- | C] () -- C:\WINDOWS\System32\apphelpnew.dll
[2012.04.30 18:27:58 | 000,167,948 | ---- | C] () -- C:\WINDOWS\System32\dxgi.dll
[2012.04.30 18:27:52 | 001,029,126 | ---- | C] () -- C:\WINDOWS\System32\d3d10.dll
[2012.04.29 19:13:45 | 000,519,912 | ---- | C] () -- C:\WINDOWS\System32\d3dx10d_33.dll
[2012.04.29 19:13:45 | 000,025,037 | ---- | C] () -- C:\WINDOWS\System32\Nucleus.dll
[2012.04.28 16:03:33 | 000,271,360 | ---- | C] () -- C:\WINDOWS\System32\drivers\atksgt.sys
[2012.04.28 16:03:32 | 000,018,048 | ---- | C] () -- C:\WINDOWS\System32\drivers\lirsgt.sys
[2012.03.13 19:02:29 | 001,084,616 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin
[2012.03.13 19:02:29 | 001,084,532 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin
[2012.03.13 19:02:29 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin
[2012.01.28 12:32:57 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2011.12.30 17:17:56 | 000,120,320 | ---- | C] () -- C:\WINDOWS\System32\apexchanger.exe
[2011.12.30 17:17:56 | 000,109,568 | ---- | C] () -- C:\WINDOWS\System32\apex3gp.exe
[2011.12.30 17:17:54 | 004,755,968 | ---- | C] () -- C:\WINDOWS\System32\apexconverter.exe
[2011.12.30 17:17:53 | 003,138,048 | ---- | C] () -- C:\WINDOWS\System32\apexxbox.exe
[2011.12.30 17:17:53 | 000,086,016 | ---- | C] () -- C:\WINDOWS\System32\AddiTunes.exe
[2011.12.30 17:17:52 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\cygz.dll
[2011.12.30 17:17:52 | 000,007,196 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_3GP_AAC.ini
[2011.12.30 17:17:52 | 000,006,490 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_PSP.ini
[2011.12.30 17:17:52 | 000,005,028 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_3GP2_AAC.ini
[2011.12.30 17:17:52 | 000,004,296 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_Zune.ini
[2011.12.30 17:17:52 | 000,003,045 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_iPod.ini
[2011.12.30 17:17:52 | 000,002,956 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_PMP.ini
[2011.12.30 17:17:52 | 000,002,910 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_3GP_AMR.ini
[2011.12.30 17:17:52 | 000,002,516 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_PPC.ini
[2011.12.30 17:17:52 | 000,002,175 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_iPhone.ini
[2011.12.30 17:17:52 | 000,001,964 | ---- | C] () -- C:\WINDOWS\System32\INI_QT_3GPP2_QVGA_AAC.ini
[2011.12.30 17:17:52 | 000,001,964 | ---- | C] () -- C:\WINDOWS\System32\INI_QT_3GPP2_QCIF_AAC.ini
[2011.12.30 17:17:52 | 000,001,878 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_Xbox.ini
[2011.12.30 17:17:52 | 000,001,814 | ---- | C] () -- C:\WINDOWS\System32\INI_QT_3GPP_QVGA_AMR.ini
[2011.12.30 17:17:52 | 000,001,814 | ---- | C] () -- C:\WINDOWS\System32\INI_QT_3GPP_QVGA_AAC.ini
[2011.12.30 17:17:52 | 000,001,814 | ---- | C] () -- C:\WINDOWS\System32\INI_QT_3GPP_QCIF_AMR.ini
[2011.12.30 17:17:52 | 000,001,814 | ---- | C] () -- C:\WINDOWS\System32\INI_QT_3GPP_QCIF_AAC.ini
[2011.12.30 17:17:52 | 000,001,739 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_AppleTV.ini
[2011.12.30 17:17:52 | 000,000,036 | ---- | C] () -- C:\WINDOWS\System32\INI_Add_mfra.ini
[2011.12.16 15:10:55 | 000,000,400 | ---- | C] () -- C:\WINDOWS\T602.INI
[2011.11.20 17:29:43 | 002,227,862 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-S-1-5-21-1547161642-861567501-839522115-1003-0.dat
[2011.11.20 17:29:42 | 000,291,926 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-System.dat
[2011.08.15 17:59:34 | 000,144,384 | ---- | C] () -- C:\WINDOWS\System32\miccyhook.dll
[2011.08.13 21:18:35 | 002,288,632 | ---- | C] () -- C:\WINDOWS\System32\nvdata.data
[2011.08.12 22:20:03 | 000,000,075 | ---- | C] () -- C:\WINDOWS\System32\nvUnsupRes.dat
[2011.05.23 19:59:14 | 000,012,393 | ---- | C] () -- C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Bron.tok.A16.em.bin
[2011.03.16 19:32:12 | 000,000,132 | ---- | C] () -- C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\fusioncache.dat
[2011.02.15 21:32:44 | 000,072,192 | ---- | C] () -- C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.02.14 22:02:37 | 000,000,085 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\.zreglib
========== ZeroAccess Check ==========
[2012.11.19 17:58:41 | 000,000,000 | ---D | M] -- C:\WINDOWS\$NtUninstallKB10732$\663031401\L
[2012.11.23 18:37:03 | 000,000,000 | ---D | M] -- C:\WINDOWS\$NtUninstallKB10732$\663031401\U
[2012.11.23 18:18:07 | 000,000,804 | ---- | M] () -- C:\WINDOWS\$NtUninstallKB10732$\663031401\L\00000004.@
[2012.09.12 17:54:28 | 000,231,936 | ---- | M] () -- C:\WINDOWS\$NtUninstallKB10732$\663031401\L\00000008.@
[2011.02.13 23:01:16 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2008.04.14 06:42:06 | 001,499,136 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009.02.09 14:10:48 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008.04.14 06:42:10 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
========== LOP Check ==========
[2012.06.15 15:25:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\2DBoy
[2012.02.22 17:37:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Activision
[2011.04.21 19:59:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Age of Empires 3
[2012.05.06 17:31:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Autodesk
[2013.07.14 16:08:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVAST Software
[2012.11.09 19:18:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CPA_VA
[2012.12.18 18:33:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
[2011.03.19 11:56:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Pro
[2012.06.27 15:37:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DatacardService
[2011.08.19 14:48:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DSS
[2011.08.15 16:20:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\EA Core
[2011.02.14 22:02:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Elaborate Bytes
[2011.08.15 16:20:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Electronic Arts
[2011.05.14 13:50:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ESET
[2013.02.19 17:35:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\fltk.org
[2012.06.07 13:51:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Freemake
[2013.01.02 13:31:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\gamemaker_studio
[2012.06.24 18:50:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\GFI Software
[2011.11.13 16:23:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IconTweaker
[2013.07.16 13:37:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ICQ
[2011.05.18 20:25:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Installations
[2011.06.14 17:11:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MP3RocketDownload
[2012.11.09 19:40:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NexonEU
[2012.09.15 15:08:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nokia
[2012.05.24 17:15:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NokiaInstallerCache
[2012.10.29 15:56:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PACE Anti-Piracy
[2011.05.18 20:30:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Suite
[2013.01.02 19:27:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\regid.1986-12.com.adobe
[2012.10.29 17:02:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\RELOADED
[2012.11.14 16:56:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Sony
[2013.07.15 13:42:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Steam
[2013.03.10 14:04:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2013.05.03 18:41:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Turbine
[2013.05.18 11:37:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Ubisoft
[2012.11.14 20:27:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Unity
[2012.08.20 20:29:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Web Installer
[2011.07.15 17:36:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2012.06.24 17:46:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\Ad-Aware Antivirus
========== Purity Check ==========
========== Custom Scans ==========
< >
[2011.02.13 20:20:19 | 000,000,065 | RH-- | C] () -- C:\WINDOWS\Tasks\desktop.ini
[2011.02.13 20:26:38 | 000,000,006 | -H-- | C] () -- C:\WINDOWS\Tasks\SA.DAT
[2011.03.17 16:35:27 | 000,000,926 | ---- | C] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
[2011.03.17 16:35:28 | 000,000,930 | ---- | C] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
[2011.03.31 17:45:29 | 000,000,302 | ---- | C] () -- C:\WINDOWS\Tasks\iMeshNAG.job
[2012.07.13 17:41:19 | 000,000,980 | ---- | C] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-861567501-839522115-1003Core.job
[2012.07.13 17:41:20 | 000,001,032 | ---- | C] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-861567501-839522115-1003UA.job
[2012.08.20 20:20:19 | 000,000,294 | ---- | C] () -- C:\WINDOWS\Tasks\RealUpgradeScheduledTaskS-1-5-21-1547161642-861567501-839522115-1003.job
[2012.08.20 20:20:20 | 000,000,286 | ---- | C] () -- C:\WINDOWS\Tasks\RealUpgradeLogonTaskS-1-5-21-1547161642-861567501-839522115-1003.job
[2012.11.02 22:36:02 | 000,000,830 | ---- | C] () -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
[2013.07.14 16:09:31 | 000,000,322 | -H-- | C] () -- C:\WINDOWS\Tasks\avast! Emergency Update.job
< >
< MD5 for: ATAPI.SYS >
[2004.08.04 08:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\install_XP\I386\sp2.cab:atapi.sys
[2004.08.04 08:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008.04.14 06:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.04.14 06:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008.04.14 01:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\dllcache\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\ReinstallBackups\0033\DriverFiles\i386\atapi.sys
[2004.08.04 08:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2008.04.14 06:42:14 | 000,588,800 | ---- | M] (Microsoft Corporation) MD5=23043C91A0F9DFB4B9E9F87B680863B4 -- C:\WINDOWS\ServicePackFiles\i386\autochk.exe
[2008.04.14 06:42:14 | 000,588,800 | ---- | M] (Microsoft Corporation) MD5=23043C91A0F9DFB4B9E9F87B680863B4 -- C:\WINDOWS\system32\autochk.exe
[2004.08.04 08:00:00 | 000,588,800 | ---- | M] (Microsoft Corporation) MD5=B3415B9D6026F65E43089ABED096C38C -- C:\install_XP\I386\AUTOCHK.EXE
[2004.08.04 08:00:00 | 000,588,800 | ---- | M] (Microsoft Corporation) MD5=B3415B9D6026F65E43089ABED096C38C -- C:\WINDOWS\$NtServicePackUninstall$\autochk.exe
< MD5 for: CDROM.SYS >
[2004.08.04 08:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\install_XP\I386\sp2.cab:cdrom.sys
[2004.08.04 08:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2008.04.14 06:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008.04.14 06:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008.04.14 01:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2012.11.23 18:37:03 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2007.04.25 05:20:30 | 000,062,592 | ---- | M] (Microsoft Corporation) MD5=7B53584D94E9D8716B2DE91D5F1CB42D -- C:\WINDOWS\system32\dllcache\cdrom.sys
[2004.08.04 08:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys
OTL logfile created on: 16.7.2013 16:14:23 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\HP_Compaq\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 0000041B | Country: Slovakia | Language: SKY | Date Format: d.M.yyyy
2,00 Gb Total Physical Memory | 1,28 Gb Available Physical Memory | 63,82% Memory free
5,85 Gb Paging File | 5,23 Gb Available in Paging File | 89,44% Paging File free
Paging file location(s): C:\pagefile.sys 0 0F:\pagefile.sys 0 0 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 76,32 Gb Total Space | 34,17 Gb Free Space | 44,77% Space Free | Partition Type: NTFS
Drive F: | 465,76 Gb Total Space | 311,69 Gb Free Space | 66,92% Space Free | Partition Type: NTFS
Computer Name: HP | User Name: HP_Compaq | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 7 Days
========== Processes (SafeList) ==========
PRC - [2013.07.16 16:11:02 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\HP_Compaq\Desktop\OTL.exe
PRC - [2013.07.12 20:49:47 | 000,846,288 | ---- | M] (Google Inc.) -- C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
PRC - [2013.05.12 14:48:22 | 000,181,664 | ---- | M] (Oracle Corporation) -- C:\Program Files\Java\jre7\bin\jqs.exe
PRC - [2013.05.09 10:58:30 | 004,858,968 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2013.05.09 10:58:30 | 000,046,808 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2013.04.04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
PRC - [2012.09.28 10:25:56 | 000,586,904 | ---- | M] (PandoraTV) -- C:\Program Files\PANDORA.TV\PanService\PanProcess.exe
PRC - [2012.09.28 10:25:54 | 000,625,304 | ---- | M] (Pandora.TV) -- C:\Program Files\PANDORA.TV\PanService\PandoraService.exe
PRC - [2010.09.29 03:33:40 | 000,249,856 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\DatacardService\DCService.exe
PRC - [2010.05.31 18:51:34 | 000,536,576 | ---- | M] () -- C:\Program Files\Mobile Partner\Mobile Partner.exe
PRC - [2008.04.14 06:42:20 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2002.09.20 16:50:10 | 000,045,056 | ---- | M] (Analog Devices, Inc.) -- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
========== Modules (No Company Name) ==========
MOD - [2013.07.16 10:31:33 | 002,093,056 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\defs\13071600\algo.dll
MOD - [2013.07.12 20:49:44 | 000,396,240 | ---- | M] () -- C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\Application\28.0.1500.72\ppgooglenaclpluginchrome.dll
MOD - [2013.07.12 20:49:42 | 004,052,944 | ---- | M] () -- C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\Application\28.0.1500.72\pdf.dll
MOD - [2013.07.12 20:48:49 | 001,597,392 | ---- | M] () -- C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\Application\28.0.1500.72\ffmpegsumo.dll
MOD - [2013.03.15 07:47:17 | 001,564,008 | ---- | M] () -- C:\Program Files\NVIDIA Corporation\nView\nView.dll
MOD - [2012.10.22 12:21:42 | 001,277,952 | ---- | M] () -- C:\Program Files\PANDORA.TV\PanService\avformat-53.dll
MOD - [2012.07.09 18:57:30 | 002,090,496 | ---- | M] () -- C:\Program Files\PANDORA.TV\PanService\avcodec-53.dll
MOD - [2012.06.18 17:24:30 | 000,260,096 | ---- | M] () -- C:\Program Files\Notepad++\NppShell_05.dll
MOD - [2012.03.23 11:07:34 | 000,224,768 | ---- | M] () -- C:\Program Files\PANDORA.TV\PanService\libupnp.dll
MOD - [2011.12.06 17:19:48 | 000,133,632 | ---- | M] () -- C:\Program Files\PANDORA.TV\PanService\avutil-51.dll
MOD - [2010.09.29 03:33:40 | 000,249,856 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\DatacardService\DCService.exe
MOD - [2010.08.27 20:43:52 | 001,019,904 | ---- | M] () -- C:\Program Files\Mobile Partner\NDISAPI.dll
MOD - [2010.05.31 18:51:34 | 000,536,576 | ---- | M] () -- C:\Program Files\Mobile Partner\Mobile Partner.exe
MOD - [2010.05.31 18:51:16 | 000,139,264 | ---- | M] () -- C:\Program Files\Mobile Partner\LocaleMgrPlugin.dll
MOD - [2010.05.31 18:50:54 | 000,163,840 | ---- | M] () -- C:\Program Files\Mobile Partner\SMSPlugin.dll
MOD - [2010.05.31 18:50:26 | 000,032,768 | ---- | M] () -- C:\Program Files\Mobile Partner\NotifyServicePlugin.dll
MOD - [2010.05.31 18:49:18 | 000,057,344 | ---- | M] () -- C:\Program Files\Mobile Partner\ConfigFilePlugin.dll
MOD - [2010.05.31 18:48:36 | 000,122,880 | ---- | M] () -- C:\Program Files\Mobile Partner\DeviceMgrPlugin.dll
MOD - [2010.05.31 18:47:10 | 000,147,456 | ---- | M] () -- C:\Program Files\Mobile Partner\NetInfoPlugin.dll
MOD - [2010.05.31 18:45:44 | 000,090,112 | ---- | M] () -- C:\Program Files\Mobile Partner\DialUpPlugin.dll
MOD - [2010.05.31 18:45:06 | 000,253,952 | ---- | M] () -- C:\Program Files\Mobile Partner\DeviceMgrUIPlugin.dll
MOD - [2010.05.31 17:54:32 | 000,172,032 | R--- | M] () -- C:\Program Files\Mobile Partner\DetectDev.dll
MOD - [2010.05.31 17:54:26 | 000,061,440 | R--- | M] () -- C:\Program Files\Mobile Partner\DeviceOperate.dll
MOD - [2010.05.31 17:54:24 | 000,598,016 | R--- | M] () -- C:\Program Files\Mobile Partner\atcomm.dll
MOD - [2010.05.31 17:53:52 | 000,061,440 | R--- | M] () -- C:\Program Files\Mobile Partner\XCodec.dll
MOD - [2010.04.23 10:16:44 | 000,090,112 | R--- | M] () -- C:\Program Files\Mobile Partner\FileManager.dll
MOD - [2010.04.23 10:16:42 | 000,014,848 | R--- | M] () -- C:\Program Files\Mobile Partner\isaputrace.dll
MOD - [2010.03.15 11:28:22 | 000,141,824 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll
========== Services (SafeList) ==========
SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - [2013.06.14 18:30:41 | 000,256,904 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013.05.12 14:48:22 | 000,181,664 | ---- | M] (Oracle Corporation) [Auto | Running] -- C:\Program Files\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService)
SRV - [2013.05.09 10:58:30 | 000,046,808 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV - [2013.04.04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2013.04.04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2013.03.15 07:47:17 | 001,266,464 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2012.09.28 10:25:54 | 000,625,304 | ---- | M] (Pandora.TV) [Auto | Running] -- C:\Program Files\PANDORA.TV\PanService\PandoraService.exe -- (PanService)
SRV - [2010.09.29 03:33:40 | 000,249,856 | ---- | M] () [Auto | Running] -- C:\Documents and Settings\All Users\Application Data\DatacardService\DCService.exe -- (DCService.exe)
SRV - [2005.10.06 19:12:30 | 000,855,552 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Media Connect 2\wmccds.exe -- (WMConnectCDS)
SRV - [2003.04.07 07:32:06 | 000,065,795 | R--- | M] (HP) [On_Demand | Stopped] -- C:\WINDOWS\system32\HPZipm12.exe -- (Pml Driver HPZ12)
SRV - [2002.09.20 16:50:10 | 000,045,056 | ---- | M] (Analog Devices, Inc.) [Auto | Running] -- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe -- (SoundMAX Agent Service (default)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\usbehci_dsf.sys -- (usbehci_dsf)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\softehci.sys -- (softehci)
DRV - File not found [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\SBREdrv.sys -- (SBRE)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\pccsmcfd.sys -- (pccsmcfd)
DRV - File not found [Kernel | On_Demand | Stopped] -- E:\CDriver.sys -- (MSICDSetup)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\EagleXNt.sys -- (EagleXNt)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\CPUID\PC Wizard 2010\pcwiz_x32.sys -- (cpuz134)
DRV - File not found [Kernel | On_Demand | Unknown] -- -- (asx1yh4i)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\AmdLLD.sys -- (AmdLLD)
DRV - [2013.07.14 16:09:51 | 000,770,344 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2013.07.14 16:09:51 | 000,369,584 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2013.07.14 16:09:51 | 000,175,176 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\aswVmm.sys -- (aswVmm)
DRV - [2013.07.05 20:14:05 | 000,099,400 | ---- | M] (MotioninJoy) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\MijXfilt.sys -- (MotioninJoyXFilter)
DRV - [2013.06.22 10:04:06 | 000,242,240 | ---- | M] (DT Soft Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV - [2013.05.09 10:59:10 | 000,056,080 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2013.05.09 10:59:10 | 000,049,376 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\aswRvrt.sys -- (aswRvrt)
DRV - [2013.05.09 10:59:09 | 000,066,336 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV - [2013.05.09 10:59:09 | 000,049,760 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (AswRdr)
DRV - [2013.05.09 10:59:08 | 000,029,816 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2013.04.04 14:50:32 | 000,022,856 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2012.12.19 07:41:55 | 000,128,440 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvhda32.sys -- (NVHDA)
DRV - [2012.12.17 20:24:01 | 000,466,008 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd)
DRV - [2012.12.09 11:51:24 | 000,113,168 | ---- | M] (Power Software Ltd) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\scdemu.sys -- (SCDEmu)
DRV - [2012.11.13 21:04:34 | 000,025,200 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ggsemc.sys -- (ggsemc)
DRV - [2012.11.13 21:04:34 | 000,012,400 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ggflt.sys -- (ggflt)
DRV - [2012.09.01 18:23:45 | 000,013,816 | ---- | M] () [Kernel | Unavailable | Unknown] -- C:\WINDOWS\system32\unikey.sys -- (phunter)
DRV - [2012.04.28 16:03:33 | 000,271,360 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt)
DRV - [2012.04.28 16:03:32 | 000,018,048 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt)
DRV - [2011.07.01 11:46:40 | 000,026,624 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\tap0901.sys -- (tap0901)
DRV - [2011.06.02 10:08:34 | 000,011,336 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\SystemRequirementsLab\cpudrv.sys -- (cpudrv)
DRV - [2010.08.27 13:53:32 | 000,117,504 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ewusbnet.sys -- (ewusbnet)
DRV - [2010.08.07 17:48:30 | 000,106,496 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ewusbmdm.sys -- (hwdatacard)
DRV - [2010.07.27 15:25:48 | 000,072,832 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ew_jubusenum.sys -- (huawei_enumerator)
DRV - [2010.07.27 09:52:02 | 000,102,784 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ew_hwusbdev.sys -- (ew_hwusbdev)
DRV - [2010.03.20 12:06:58 | 000,011,136 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ew_usbenumfilter.sys -- (ew_usbenumfilter)
DRV - [2009.08.05 06:56:04 | 000,048,256 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\HPKBCCID.sys -- (HPKBCCID)
DRV - [2009.08.04 10:04:26 | 000,034,688 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\pcampr5.sys -- (PCAMPR5)
DRV - [2009.08.04 10:04:26 | 000,032,128 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\pcandis5.sys -- (PCANDIS5)
DRV - [2009.07.13 16:51:12 | 000,034,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\winusb.sys -- (WinUSB)
DRV - [2009.03.18 17:35:40 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2008.07.25 02:18:32 | 000,176,640 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\b57xp32.sys -- (b57w2k)
DRV - [2008.06.20 13:08:27 | 000,225,856 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\tcpip6.sys -- (Tcpip6)
DRV - [2008.06.06 10:15:40 | 000,098,816 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\baspxp32.sys -- (Blfp)
DRV - [2007.08.08 18:54:10 | 000,028,968 | ---- | M] () [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\ATITool.sys -- (ATITool)
DRV - [2007.01.24 02:01:00 | 000,007,680 | ---- | M] (SCM Microsystems Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\STCFUx32.sys -- (STCFUx32)
DRV - [2004.10.08 03:16:04 | 000,035,840 | ---- | M] (Oak Technology Inc.) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\AFS2K.SYS -- (AFS2K)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={ ... rer:source?}
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchT ... urceid=ie7
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,AlwaysUseDefaultPrinter = yes
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,AlwaysUseDefaultPrinter = yes
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,AlwaysUseDefaultPrinter = yes
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,AlwaysUseDefaultPrinter = yes
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1547161642-861567501-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,AlwaysUseDefaultPrinter = yes
IE - HKU\S-1-5-21-1547161642-861567501-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-1547161642-861567501-839522115-1003\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-1547161642-861567501-839522115-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-1547161642-861567501-839522115-1003\..\SearchScopes\{479CC025-F10A-4C75-887B-26FF2DDD64A1}: "URL" = http://www.google.com/search?q={searchT ... 1I7GGLL_en
IE - HKU\S-1-5-21-1547161642-861567501-839522115-1003\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-1547161642-861567501-839522115-1003\..\SearchScopes\{8FFF0A65-0F0F-41BA-80D0-BDD0A96BF946}: "URL" = http://search.yahoo.com/search?fr=chr-g ... earchTerms}
IE - HKU\S-1-5-21-1547161642-861567501-839522115-1003\..\SearchScopes\{DCB0F2A9-383F-48B0-85FF-85DE0E93F73E}: "URL" = http://websearch.ask.com/redirect?clien ... 8DDA930D6F
IE - HKU\S-1-5-21-1547161642-861567501-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.defaultenginename: "Yahoo"
FF - prefs.js..browser.search.selectedEngine: "Yahoo"
FF - prefs.js..keyword.URL: "http://search.yahoo.com/search?fr=green ... =512435&p="
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&ilc=12&type=512435"
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.21.2: C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.21.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@ngm.nexoneu.com/NxGame: C:\Documents and Settings\All Users\Application Data\NexonEU\NGM\npNxGameeu.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=15.0.6.14: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=15.0.6.14: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=15.0.6.14: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=15.0.6.14: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nprpplugin;version=15.0.6.14: File not found
FF - HKLM\Software\MozillaPlugins\@soe.sony.com/installer,version=1.0.3: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.7: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc: C:\Program Files\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll File not found
[2012.11.15 20:34:11 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\HP_Compaq\Application Data\Mozilla\Extensions
[2013.07.14 14:46:14 | 000,000,915 | ---- | M] () -- C:\Documents and Settings\HP_Compaq\Application Data\Mozilla\Firefox\Profiles\95tvt5rs.default\searchplugins\yahoo.xml
[2012.12.08 19:47:52 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2012.10.29 19:23:22 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
[2010.10.29 21:12:14 | 000,002,185 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\facesmoochtb.xml
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter},
CHR - homepage:
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\Application\28.0.1500.72\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\Application\28.0.1500.72\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\Application\28.0.1500.72\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_262.dll
CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Documents and Settings\HP_Compaq\Application Data\Mozilla\plugins\np-mswmp.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.330.3 (Enabled) = C:\WINDOWS\system32\npdeployJava1.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.6.9 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll
CHR - plugin: Nokia Suite Enabler Plugin (Enabled) = C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll
CHR - plugin: RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) (Enabled) = C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll
CHR - plugin: RealPlayer Version Plugin (Enabled) = C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll
CHR - plugin: VLC Web Plugin (Enabled) = C:\Program Files\VideoLAN\VLC\npvlc.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - Extension: http://www.sector.sk/ = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\abefblogoddecahnjcecdnkhnlmjcnmm\2013.6.15.46637_0\
CHR - Extension: http://www.ps3mania.sk/forum.html = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\bhebejhlbagaeaeclinbkdpjljjhnlie\2013.7.5.16278_0\
CHR - Extension: James White = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\bkeidgmehkdjmpjodpjkepolokanalkm\3_0\
CHR - Extension: YouTube = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: https://www.facebook.com/ = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\celnaknmndcdcjcagffhbhciignkeokb\2013.6.27.45427_0\
CHR - Extension: http://www.csfd.cz/ = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\dfpmaamdbilchblfpjkfbhplblloomaa\2013.7.13.22618_0\
CHR - Extension: http://smartmobil.sk/forum/viewforum.php?f=13 = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\fdcgppjgcikcbhicbfbicfflmlablcog\2013.6.15.46595_0\
CHR - Extension: AdBlock = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.2_0\
CHR - Extension: avast! Online Security = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.8_0\
CHR - Extension: http://www.ps3zone.sk/index.php = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\hlbohbfphlmfbcgmogdeajaopogmgflk\2013.6.30.25638_0\
CHR - Extension: http://forum.viry.cz/index.php = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ihdglhohdciaalggbbfampmahfjoielg\2013.7.13.49144_0\
CHR - Extension: http://www.ps3zone.sk/viewtopic.php?f=25&t=55 = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\kfmpddfikpdfknmhggmljjcefollnipd\2013.7.13.38589_0\
CHR - Extension: Google Play = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\komhbcfkdcgmcdoenjcjheifdiabikfi\3.0_0\
CHR - Extension: Gmail = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
CHR - Extension: http://www.sector.sk/ = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\abefblogoddecahnjcecdnkhnlmjcnmm\2013.6.15.46637_0\
CHR - Extension: http://www.ps3mania.sk/forum.html = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\bhebejhlbagaeaeclinbkdpjljjhnlie\2013.7.5.16278_0\
CHR - Extension: James White = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\bkeidgmehkdjmpjodpjkepolokanalkm\3_0\
CHR - Extension: YouTube = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: https://www.facebook.com/ = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\celnaknmndcdcjcagffhbhciignkeokb\2013.6.27.45427_0\
CHR - Extension: http://www.csfd.cz/ = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\dfpmaamdbilchblfpjkfbhplblloomaa\2013.7.13.22618_0\
CHR - Extension: http://smartmobil.sk/forum/viewforum.php?f=13 = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\fdcgppjgcikcbhicbfbicfflmlablcog\2013.6.15.46595_0\
CHR - Extension: AdBlock = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.2_0\
CHR - Extension: avast! Online Security = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\8.0.8_0\
CHR - Extension: http://www.ps3zone.sk/index.php = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\hlbohbfphlmfbcgmogdeajaopogmgflk\2013.6.30.25638_0\
CHR - Extension: http://forum.viry.cz/index.php = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ihdglhohdciaalggbbfampmahfjoielg\2013.7.13.49144_0\
CHR - Extension: http://www.ps3zone.sk/viewtopic.php?f=25&t=55 = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\kfmpddfikpdfknmhggmljjcefollnipd\2013.7.13.38589_0\
CHR - Extension: Google Play = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\komhbcfkdcgmcdoenjcjheifdiabikfi\3.0_0\
CHR - Extension: Gmail = C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
O1 HOSTS File: ([2012.11.06 20:01:08 | 000,000,789 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - Reg Error: Value error. File not found
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKU\S-1-5-21-1547161642-861567501-839522115-1003\..\Toolbar\ShellBrowser: (no name) - {EBE9E2B5-B526-48BC-AD46-687263EDCB0E} - No CLSID value found.
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [LayoutM] C:\WINDOWS\KLayMgr.exe (Chicony)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\nvmctray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nview\nwiz.exe ()
O4 - HKU\S-1-5-21-1547161642-861567501-839522115-1003..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (Disc Soft Ltd)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE (Microsoft Corporation)
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1547161642-861567501-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - mswsock.dll File not found
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - mswsock.dll File not found
O15 - HKU\S-1-5-19\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: sony.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-1547161642-861567501-839522115-1003\..Trusted Domains: clonewarsadventures.com ([]* in Dôveryhodné lokality)
O15 - HKU\S-1-5-21-1547161642-861567501-839522115-1003\..Trusted Domains: microsoft.com ([windowsupdate] https in Dôveryhodné lokality)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://www.update.microsoft.com/windows ... 3601001437 (WUWebControl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/microso ... 9867546703 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.21.2)
O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} Reg Error: Value error. (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_35)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 10.21.2)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain =
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{01A482B5-E480-41B7-825F-71A6F7506DE7}: NameServer = 213.151.200.31 85.237.225.250
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Reg Error: Value error.) - Reg Error: Value error. File not found
O24 - Desktop WallPaper: C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011.05.25 17:19:26 | 000,000,007 | -HS- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{0310f69a-bc9d-11e1-911a-bc8882b1ef4f}\Shell - "" = AutoRun
O33 - MountPoints2\{279caa16-6a8e-11e0-8aa4-000ffe0feb83}\Shell - "" = Autorun
O33 - MountPoints2\{2d7a0d2b-b55d-11e1-90f1-e57e7cc05bed}\Shell - "" = AutoRun
O33 - MountPoints2\{47279636-c05d-11e1-913a-b68f48aa9fd7}\Shell - "" = AutoRun
O33 - MountPoints2\{4a3ace62-3936-11e0-8a2b-000ffe0feb83}\Shell - "" = AutoRun
O33 - MountPoints2\{842b1ffa-acae-11e1-90ba-eae5b3e4a241}\Shell - "" = AutoRun
O33 - MountPoints2\{842b1ffa-acae-11e1-90ba-eae5b3e4a241}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL upgrade.htm
O33 - MountPoints2\{86efa5cc-bc74-11e1-9119-efe73a550912}\Shell - "" = AutoRun
O33 - MountPoints2\{d1be42df-549a-11e0-8a45-000ffe0feb83}\Shell - "" = AutoRun
O33 - MountPoints2\{d1be42df-549a-11e0-8a45-000ffe0feb83}\Shell\AutoRun\command - "" = G:\setup.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
NetSvcs: HidServ - %SystemRoot%\System32\hidserv.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: BITS - File not found
Drivers32: MIDI1 - C:\WINDOWS\System32\Syncor11.dll (SoundMAX)
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: msacm.vorbis - C:\WINDOWS\System32\vorbis.acm (HMS http://hp.vector.co.jp/authors/VA012897/)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FPS1 - C:\WINDOWS\System32\frapsvid.dll (Beepa P/L)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin
========== Files/Folders - Created Within 7 Days ==========
[2013.07.16 16:11:06 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\HP_Compaq\Desktop\OTL.exe
[2013.07.16 14:12:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\VideoLAN
[2013.07.15 13:42:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Steam
[2013.07.14 16:10:32 | 000,000,000 | ---D | C] -- C:\Program Files\Siber Systems
[2013.07.14 16:09:39 | 000,029,816 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2013.07.14 16:09:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\avast! Free Antivirus
[2013.07.14 16:09:38 | 000,369,584 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2013.07.14 16:09:35 | 000,056,080 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
[2013.07.14 16:09:35 | 000,049,760 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
[2013.07.14 16:09:34 | 000,770,344 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
[2013.07.14 16:09:31 | 000,229,648 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
[2013.07.14 16:09:31 | 000,066,336 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys
[2013.07.14 16:08:52 | 000,041,664 | ---- | C] (AVAST Software) -- C:\WINDOWS\avastSS.scr
[2013.07.14 16:08:22 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2013.07.14 16:07:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\AVAST Software
[2013.07.13 20:03:06 | 000,000,000 | ---D | C] -- C:\rsit
[2013.07.13 13:55:05 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\HP_Compaq\Recent
[2013.07.10 16:25:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\REAL ZKW
[2013.07.10 16:24:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\HP_Compaq\Desktop\REAL_ZKW-Default-1.1.5.0
[2013.07.10 11:34:58 | 000,000,000 | ---D | C] -- C:\Program Files\The Elder Scrolls V Skyrim
[2001.10.02 11:56:42 | 000,031,744 | ---- | C] (Symantec Corp., Peter Norton Computing Group) -- C:\Program Files\Common Files\IRAWEBTR.DLL
[2001.10.02 11:56:40 | 000,186,368 | ---- | C] (Symantec Corp., Peter Norton Computing Group) -- C:\Program Files\Common Files\IRAREG.DLL
[2001.10.02 11:56:40 | 000,070,144 | ---- | C] (Symantec Corp., Peter Norton Computing Group) -- C:\Program Files\Common Files\IRAMDMTR.DLL
[2001.10.02 11:56:40 | 000,048,640 | ---- | C] (Symantec Corp., Peter Norton Computing Group) -- C:\Program Files\Common Files\IRALPTTR.DLL
[2001.10.02 11:56:40 | 000,017,920 | ---- | C] (Symantec Corp.) -- C:\Program Files\Common Files\IRASRIAL.DLL
[2001.10.02 11:56:38 | 000,099,840 | ---- | C] (Symantec Corp.) -- C:\Program Files\Common Files\IRAABOUT.DLL
[3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files - Modified Within 7 Days ==========
[2013.07.16 16:20:52 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2013.07.16 16:16:00 | 000,000,930 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2013.07.16 16:11:02 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\HP_Compaq\Desktop\OTL.exe
[2013.07.16 16:09:11 | 000,000,322 | -H-- | M] () -- C:\WINDOWS\tasks\avast! Emergency Update.job
[2013.07.16 16:06:52 | 000,000,926 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2013.07.16 16:06:47 | 000,000,286 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-1547161642-861567501-839522115-1003.job
[2013.07.16 16:06:46 | 000,000,302 | ---- | M] () -- C:\WINDOWS\tasks\iMeshNAG.job
[2013.07.16 16:06:43 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2013.07.16 15:47:02 | 000,001,032 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-861567501-839522115-1003UA.job
[2013.07.16 15:30:00 | 000,000,830 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2013.07.16 14:13:24 | 000,017,762 | ---- | M] () -- C:\WINDOWS\System32\nvAppTimestamps
[2013.07.16 14:12:27 | 000,000,725 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\VLC media player.lnk
[2013.07.16 13:35:09 | 000,501,552 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2013.07.16 13:35:09 | 000,087,458 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2013.07.15 16:15:35 | 000,072,192 | ---- | M] () -- C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2013.07.15 14:47:00 | 000,000,980 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-861567501-839522115-1003Core.job
[2013.07.14 18:23:51 | 000,012,620 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2013.07.14 16:09:51 | 000,770,344 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
[2013.07.14 16:09:51 | 000,369,584 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
[2013.07.14 16:09:51 | 000,175,176 | ---- | M] () -- C:\WINDOWS\System32\drivers\aswVmm.sys
[2013.07.14 16:09:51 | 000,000,175 | ---- | M] () -- C:\WINDOWS\System32\drivers\aswVmm.sys.sum
[2013.07.14 16:09:51 | 000,000,175 | ---- | M] () -- C:\WINDOWS\System32\drivers\aswSP.sys.sum
[2013.07.14 16:09:51 | 000,000,175 | ---- | M] () -- C:\WINDOWS\System32\drivers\aswSnx.sys.sum
[2013.07.14 16:09:31 | 000,002,577 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2013.07.13 19:59:44 | 000,002,340 | ---- | M] () -- C:\Documents and Settings\HP_Compaq\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2013.07.13 19:59:43 | 000,002,322 | ---- | M] () -- C:\Documents and Settings\HP_Compaq\Desktop\Google Chrome.lnk
[2013.07.10 11:43:23 | 000,000,748 | ---- | M] () -- C:\Documents and Settings\HP_Compaq\Desktop\SkyrimLauncher.lnk
[2013.07.10 11:00:59 | 000,000,521 | ---- | M] () -- C:\hpfr3420.xml
[3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
[2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
========== Files Created - No Company Name ==========
[2013.07.16 16:20:52 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2013.07.16 14:12:27 | 000,000,725 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\VLC media player.lnk
[2013.07.14 16:09:51 | 000,000,175 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswVmm.sys.sum
[2013.07.14 16:09:51 | 000,000,175 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswSP.sys.sum
[2013.07.14 16:09:51 | 000,000,175 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswSnx.sys.sum
[2013.07.14 16:09:34 | 000,175,176 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswVmm.sys
[2013.07.14 16:09:33 | 000,049,376 | ---- | C] () -- C:\WINDOWS\System32\drivers\aswRvrt.sys
[2013.07.14 16:09:31 | 000,000,322 | -H-- | C] () -- C:\WINDOWS\tasks\avast! Emergency Update.job
[2013.07.10 11:43:23 | 000,000,748 | ---- | C] () -- C:\Documents and Settings\HP_Compaq\Desktop\SkyrimLauncher.lnk
[2013.06.21 16:53:22 | 012,998,543 | ---- | C] () -- C:\WINDOWS\deluge-1.3.6-win32-setup.exe
[2013.06.21 16:53:22 | 000,717,985 | ---- | C] () -- C:\WINDOWS\unins000.exe
[2013.06.21 16:53:22 | 000,095,430 | ---- | C] () -- C:\WINDOWS\unins000.dat
[2013.05.31 18:02:30 | 000,001,274 | ---- | C] () -- C:\Documents and Settings\HP_Compaq\.xmlcopyeditor
[2013.05.31 18:00:25 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\abracadabra08092011.exe
[2013.05.18 10:52:20 | 000,189,248 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2013.05.18 10:52:19 | 000,075,136 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2013.03.03 12:50:21 | 000,001,456 | ---- | C] () -- C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Adobe Save for Web 13.0 Prefs
[2013.01.02 15:02:15 | 000,008,306 | ---- | C] () -- C:\Documents and Settings\HP_Compaq\MAYANPROPHECY.nfo
[2012.12.24 19:26:03 | 000,000,204 | ---- | C] () -- C:\Documents and Settings\HP_Compaq\SciTE.recent
[2012.12.24 19:26:03 | 000,000,179 | ---- | C] () -- C:\Documents and Settings\HP_Compaq\SciTE.session
[2012.09.01 17:57:14 | 000,013,816 | ---- | C] () -- C:\WINDOWS\System32\unikey.sys
[2012.06.19 20:49:16 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2012.06.18 15:49:57 | 000,098,344 | ---- | C] () -- C:\WINDOWS\unPMV.exe
[2012.06.03 14:02:51 | 000,000,319 | ---- | C] () -- C:\WINDOWS\game.ini
[2012.04.30 18:28:17 | 000,134,671 | ---- | C] () -- C:\WINDOWS\System32\winstanew.dll
[2012.04.30 18:28:17 | 000,000,236 | -H-- | C] () -- C:\Program Files\Common Files\dx.reg
[2012.04.30 18:28:16 | 001,584,149 | ---- | C] () -- C:\WINDOWS\System32\setupapinew.dll
[2012.04.30 18:28:16 | 000,789,525 | ---- | C] () -- C:\WINDOWS\System32\rpcrt4new.dll
[2012.04.30 18:28:16 | 000,681,478 | ---- | C] () -- C:\WINDOWS\System32\msvcrtnew.dll
[2012.04.30 18:28:16 | 000,633,871 | ---- | C] () -- C:\WINDOWS\System32\user32new.dll
[2012.04.30 18:28:16 | 000,096,783 | ---- | C] () -- C:\WINDOWS\System32\powrprofnew.dll
[2012.04.30 18:28:16 | 000,087,558 | ---- | C] () -- C:\WINDOWS\System32\ntdsapinew.dll
[2012.04.30 18:28:16 | 000,072,707 | ---- | C] () -- C:\WINDOWS\System32\secur32new.dll
[2012.04.30 18:28:15 | 000,874,502 | ---- | C] () -- C:\WINDOWS\System32\kernel32new.dll
[2012.04.30 18:28:15 | 000,376,832 | ---- | C] () -- C:\WINDOWS\System32\M2000Twn.dll
[2012.04.30 18:28:15 | 000,039,948 | ---- | C] () -- C:\WINDOWS\System32\dwmapi.dll
[2012.04.30 18:28:09 | 000,187,398 | ---- | C] () -- C:\WINDOWS\System32\d3d10core.dll
[2012.04.30 18:28:08 | 000,974,354 | ---- | C] () -- C:\WINDOWS\System32\crypt32new.dll
[2012.04.30 18:28:08 | 000,770,069 | ---- | C] () -- C:\WINDOWS\System32\advapi32new.dll
[2012.04.30 18:28:08 | 000,171,023 | ---- | C] () -- C:\WINDOWS\System32\apphelpnew.dll
[2012.04.30 18:27:58 | 000,167,948 | ---- | C] () -- C:\WINDOWS\System32\dxgi.dll
[2012.04.30 18:27:52 | 001,029,126 | ---- | C] () -- C:\WINDOWS\System32\d3d10.dll
[2012.04.29 19:13:45 | 000,519,912 | ---- | C] () -- C:\WINDOWS\System32\d3dx10d_33.dll
[2012.04.29 19:13:45 | 000,025,037 | ---- | C] () -- C:\WINDOWS\System32\Nucleus.dll
[2012.04.28 16:03:33 | 000,271,360 | ---- | C] () -- C:\WINDOWS\System32\drivers\atksgt.sys
[2012.04.28 16:03:32 | 000,018,048 | ---- | C] () -- C:\WINDOWS\System32\drivers\lirsgt.sys
[2012.03.13 19:02:29 | 001,084,616 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin
[2012.03.13 19:02:29 | 001,084,532 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin
[2012.03.13 19:02:29 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin
[2012.01.28 12:32:57 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
[2011.12.30 17:17:56 | 000,120,320 | ---- | C] () -- C:\WINDOWS\System32\apexchanger.exe
[2011.12.30 17:17:56 | 000,109,568 | ---- | C] () -- C:\WINDOWS\System32\apex3gp.exe
[2011.12.30 17:17:54 | 004,755,968 | ---- | C] () -- C:\WINDOWS\System32\apexconverter.exe
[2011.12.30 17:17:53 | 003,138,048 | ---- | C] () -- C:\WINDOWS\System32\apexxbox.exe
[2011.12.30 17:17:53 | 000,086,016 | ---- | C] () -- C:\WINDOWS\System32\AddiTunes.exe
[2011.12.30 17:17:52 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\cygz.dll
[2011.12.30 17:17:52 | 000,007,196 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_3GP_AAC.ini
[2011.12.30 17:17:52 | 000,006,490 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_PSP.ini
[2011.12.30 17:17:52 | 000,005,028 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_3GP2_AAC.ini
[2011.12.30 17:17:52 | 000,004,296 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_Zune.ini
[2011.12.30 17:17:52 | 000,003,045 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_iPod.ini
[2011.12.30 17:17:52 | 000,002,956 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_PMP.ini
[2011.12.30 17:17:52 | 000,002,910 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_3GP_AMR.ini
[2011.12.30 17:17:52 | 000,002,516 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_PPC.ini
[2011.12.30 17:17:52 | 000,002,175 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_iPhone.ini
[2011.12.30 17:17:52 | 000,001,964 | ---- | C] () -- C:\WINDOWS\System32\INI_QT_3GPP2_QVGA_AAC.ini
[2011.12.30 17:17:52 | 000,001,964 | ---- | C] () -- C:\WINDOWS\System32\INI_QT_3GPP2_QCIF_AAC.ini
[2011.12.30 17:17:52 | 000,001,878 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_Xbox.ini
[2011.12.30 17:17:52 | 000,001,814 | ---- | C] () -- C:\WINDOWS\System32\INI_QT_3GPP_QVGA_AMR.ini
[2011.12.30 17:17:52 | 000,001,814 | ---- | C] () -- C:\WINDOWS\System32\INI_QT_3GPP_QVGA_AAC.ini
[2011.12.30 17:17:52 | 000,001,814 | ---- | C] () -- C:\WINDOWS\System32\INI_QT_3GPP_QCIF_AMR.ini
[2011.12.30 17:17:52 | 000,001,814 | ---- | C] () -- C:\WINDOWS\System32\INI_QT_3GPP_QCIF_AAC.ini
[2011.12.30 17:17:52 | 000,001,739 | ---- | C] () -- C:\WINDOWS\System32\INI_Pro_AppleTV.ini
[2011.12.30 17:17:52 | 000,000,036 | ---- | C] () -- C:\WINDOWS\System32\INI_Add_mfra.ini
[2011.12.16 15:10:55 | 000,000,400 | ---- | C] () -- C:\WINDOWS\T602.INI
[2011.11.20 17:29:43 | 002,227,862 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-S-1-5-21-1547161642-861567501-839522115-1003-0.dat
[2011.11.20 17:29:42 | 000,291,926 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\WPFFontCache_v0400-System.dat
[2011.08.15 17:59:34 | 000,144,384 | ---- | C] () -- C:\WINDOWS\System32\miccyhook.dll
[2011.08.13 21:18:35 | 002,288,632 | ---- | C] () -- C:\WINDOWS\System32\nvdata.data
[2011.08.12 22:20:03 | 000,000,075 | ---- | C] () -- C:\WINDOWS\System32\nvUnsupRes.dat
[2011.05.23 19:59:14 | 000,012,393 | ---- | C] () -- C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\Bron.tok.A16.em.bin
[2011.03.16 19:32:12 | 000,000,132 | ---- | C] () -- C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\fusioncache.dat
[2011.02.15 21:32:44 | 000,072,192 | ---- | C] () -- C:\Documents and Settings\HP_Compaq\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.02.14 22:02:37 | 000,000,085 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\.zreglib
========== ZeroAccess Check ==========
[2012.11.19 17:58:41 | 000,000,000 | ---D | M] -- C:\WINDOWS\$NtUninstallKB10732$\663031401\L
[2012.11.23 18:37:03 | 000,000,000 | ---D | M] -- C:\WINDOWS\$NtUninstallKB10732$\663031401\U
[2012.11.23 18:18:07 | 000,000,804 | ---- | M] () -- C:\WINDOWS\$NtUninstallKB10732$\663031401\L\00000004.@
[2012.09.12 17:54:28 | 000,231,936 | ---- | M] () -- C:\WINDOWS\$NtUninstallKB10732$\663031401\L\00000008.@
[2011.02.13 23:01:16 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shdocvw.dll -- [2008.04.14 06:42:06 | 001,499,136 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009.02.09 14:10:48 | 000,473,600 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008.04.14 06:42:10 | 000,273,920 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
========== LOP Check ==========
[2012.06.15 15:25:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\2DBoy
[2012.02.22 17:37:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Activision
[2011.04.21 19:59:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Age of Empires 3
[2012.05.06 17:31:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Autodesk
[2013.07.14 16:08:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVAST Software
[2012.11.09 19:18:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CPA_VA
[2012.12.18 18:33:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
[2011.03.19 11:56:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Pro
[2012.06.27 15:37:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DatacardService
[2011.08.19 14:48:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DSS
[2011.08.15 16:20:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\EA Core
[2011.02.14 22:02:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Elaborate Bytes
[2011.08.15 16:20:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Electronic Arts
[2011.05.14 13:50:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ESET
[2013.02.19 17:35:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\fltk.org
[2012.06.07 13:51:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Freemake
[2013.01.02 13:31:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\gamemaker_studio
[2012.06.24 18:50:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\GFI Software
[2011.11.13 16:23:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IconTweaker
[2013.07.16 13:37:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ICQ
[2011.05.18 20:25:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Installations
[2011.06.14 17:11:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MP3RocketDownload
[2012.11.09 19:40:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NexonEU
[2012.09.15 15:08:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nokia
[2012.05.24 17:15:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NokiaInstallerCache
[2012.10.29 15:56:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PACE Anti-Piracy
[2011.05.18 20:30:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Suite
[2013.01.02 19:27:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\regid.1986-12.com.adobe
[2012.10.29 17:02:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\RELOADED
[2012.11.14 16:56:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Sony
[2013.07.15 13:42:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Steam
[2013.03.10 14:04:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2013.05.03 18:41:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Turbine
[2013.05.18 11:37:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Ubisoft
[2012.11.14 20:27:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Unity
[2012.08.20 20:29:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Web Installer
[2011.07.15 17:36:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
[2012.06.24 17:46:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Application Data\Ad-Aware Antivirus
========== Purity Check ==========
========== Custom Scans ==========
< >
[2011.02.13 20:20:19 | 000,000,065 | RH-- | C] () -- C:\WINDOWS\Tasks\desktop.ini
[2011.02.13 20:26:38 | 000,000,006 | -H-- | C] () -- C:\WINDOWS\Tasks\SA.DAT
[2011.03.17 16:35:27 | 000,000,926 | ---- | C] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
[2011.03.17 16:35:28 | 000,000,930 | ---- | C] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
[2011.03.31 17:45:29 | 000,000,302 | ---- | C] () -- C:\WINDOWS\Tasks\iMeshNAG.job
[2012.07.13 17:41:19 | 000,000,980 | ---- | C] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-861567501-839522115-1003Core.job
[2012.07.13 17:41:20 | 000,001,032 | ---- | C] () -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1547161642-861567501-839522115-1003UA.job
[2012.08.20 20:20:19 | 000,000,294 | ---- | C] () -- C:\WINDOWS\Tasks\RealUpgradeScheduledTaskS-1-5-21-1547161642-861567501-839522115-1003.job
[2012.08.20 20:20:20 | 000,000,286 | ---- | C] () -- C:\WINDOWS\Tasks\RealUpgradeLogonTaskS-1-5-21-1547161642-861567501-839522115-1003.job
[2012.11.02 22:36:02 | 000,000,830 | ---- | C] () -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
[2013.07.14 16:09:31 | 000,000,322 | -H-- | C] () -- C:\WINDOWS\Tasks\avast! Emergency Update.job
< >
< MD5 for: ATAPI.SYS >
[2004.08.04 08:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\install_XP\I386\sp2.cab:atapi.sys
[2004.08.04 08:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008.04.14 06:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.04.14 06:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008.04.14 01:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\dllcache\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\atapi.sys
[2008.04.14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\ReinstallBackups\0033\DriverFiles\i386\atapi.sys
[2004.08.04 08:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
< MD5 for: AUTOCHK.EXE >
[2008.04.14 06:42:14 | 000,588,800 | ---- | M] (Microsoft Corporation) MD5=23043C91A0F9DFB4B9E9F87B680863B4 -- C:\WINDOWS\ServicePackFiles\i386\autochk.exe
[2008.04.14 06:42:14 | 000,588,800 | ---- | M] (Microsoft Corporation) MD5=23043C91A0F9DFB4B9E9F87B680863B4 -- C:\WINDOWS\system32\autochk.exe
[2004.08.04 08:00:00 | 000,588,800 | ---- | M] (Microsoft Corporation) MD5=B3415B9D6026F65E43089ABED096C38C -- C:\install_XP\I386\AUTOCHK.EXE
[2004.08.04 08:00:00 | 000,588,800 | ---- | M] (Microsoft Corporation) MD5=B3415B9D6026F65E43089ABED096C38C -- C:\WINDOWS\$NtServicePackUninstall$\autochk.exe
< MD5 for: CDROM.SYS >
[2004.08.04 08:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\install_XP\I386\sp2.cab:cdrom.sys
[2004.08.04 08:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2008.04.14 06:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008.04.14 06:51:44 | 020,056,462 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008.04.14 01:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2012.11.23 18:37:03 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2007.04.25 05:20:30 | 000,062,592 | ---- | M] (Microsoft Corporation) MD5=7B53584D94E9D8716B2DE91D5F1CB42D -- C:\WINDOWS\system32\dllcache\cdrom.sys
[2004.08.04 08:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys