OTL logfile created on: 2012-07-18 22:07:39 - Run 2 OTL by OldTimer - Version 3.2.54.0 Folder = G:\ Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Poland | Language: PLK | Date Format: yyyy-MM-dd 1,99 Gb Total Physical Memory | 1,58 Gb Available Physical Memory | 79,59% Memory free 4,21 Gb Paging File | 3,94 Gb Available in Paging File | 93,48% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 55,66 Gb Total Space | 17,36 Gb Free Space | 31,19% Space Free | Partition Type: NTFS Drive E: | 54,66 Gb Total Space | 45,10 Gb Free Space | 82,52% Space Free | Partition Type: NTFS Drive G: | 3,73 Gb Total Space | 3,45 Gb Free Space | 92,58% Space Free | Partition Type: FAT32 Computer Name: PANDI-PC | User Name: pani | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-07-18 18:02:32 | 000,596,480 | ---- | M] (OldTimer Tools) -- G:\OTL.exe PRC - [2011-04-12 18:07:38 | 000,031,232 | ---- | M] () -- C:\Windows\System32\crrss.exe PRC - [2009-04-11 08:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2011-04-12 18:07:38 | 000,031,232 | ---- | M] () -- C:\Windows\System32\crrss.exe [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2012-01-13 12:21:10 | 000,095,200 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- c:\Program Files\McAfee\SiteAdvisor\McSACore.exe -- (McAfee SiteAdvisor Service) SRV - [2010-01-15 14:49:20 | 000,227,232 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe -- (McComponentHostService) SRV - [2008-01-19 09:38:24 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2007-08-01 15:39:18 | 000,077,824 | ---- | M] (TOSHIBA Corporation) [Auto | Stopped] -- C:\Program Files\TOSHIBA\TOSHIBA DVD PLAYER\TNaviSrv.exe -- (TNaviSrv) SRV - [2007-03-29 11:39:00 | 000,427,576 | ---- | M] (TOSHIBA Corporation) [Auto | Stopped] -- C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe -- (TosCoSrv) SRV - [2006-11-14 21:33:10 | 000,040,960 | ---- | M] (TOSHIBA CORPORATION) [Auto | Stopped] -- C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe -- (CFSvcs) SRV - [2006-08-23 17:39:48 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper) SRV - [2006-05-25 20:30:16 | 000,114,688 | ---- | M] (TOSHIBA Corporation) [Auto | Stopped] -- C:\Windows\System32\TODDSrv.exe -- (TODDSrv) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd) DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt) DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ipinip.sys -- (IpInIp) DRV - File not found [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\blbdrive.sys -- (blbdrive) DRV - [2011-09-20 23:02:55 | 000,905,088 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tcpip.sys -- (Tcpip6) DRV - [2011-09-20 23:02:55 | 000,905,088 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\drivers\tcpip.sys -- (Tcpip) DRV - [2011-04-29 15:25:10 | 000,146,432 | ---- | M] () [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\srv2.sys -- (srv2) DRV - [2011-04-29 15:25:09 | 000,102,400 | ---- | M] () [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\srvnet.sys -- (srvnet) DRV - [2011-02-18 16:03:32 | 000,305,152 | ---- | M] () [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\srv.sys -- (srv) DRV - [2011-02-07 22:34:35 | 000,218,688 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\System32\drivers\dtsoftbus01.sys -- (dtsoftbus01) DRV - [2011-02-04 23:50:37 | 000,025,088 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\tunnel.sys -- (tunnel) DRV - [2011-02-04 23:50:36 | 000,030,720 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\System32\drivers\tcpipreg.sys -- (tcpipreg) DRV - [2011-02-04 23:50:36 | 000,015,360 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\TUNMP.SYS -- (tunmp) DRV - [2009-04-11 08:33:03 | 000,292,840 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\drivers\volmgrx.sys -- (volmgrx) DRV - [2009-04-11 08:32:55 | 000,226,280 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\drivers\volsnap.sys -- (volsnap) DRV - [2009-04-11 08:32:52 | 000,053,224 | ---- | M] () [Kernel | System | Running] -- C:\Windows\System32\drivers\termdd.sys -- (TermDD) DRV - [2009-04-11 06:45:56 | 000,072,192 | ---- | M] () [Kernel | System | Running] -- C:\Windows\System32\drivers\tdx.sys -- (tdx) DRV - [2009-04-11 06:45:22 | 000,066,560 | ---- | M] () [Kernel | System | Running] -- C:\Windows\System32\drivers\smb.sys -- (Smb) DRV - [2009-04-11 06:43:16 | 000,196,096 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\usbhub.sys -- (usbhub) DRV - [2009-04-11 06:42:55 | 000,065,536 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\USBSTOR.SYS -- (USBSTOR) DRV - [2009-04-11 06:42:52 | 000,039,936 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\usbehci.sys -- (usbehci) DRV - [2009-04-11 06:13:59 | 000,226,816 | ---- | M] () [File_System | Disabled | Stopped] -- C:\Windows\System32\drivers\udfs.sys -- (udfs) DRV - [2008-01-19 09:43:27 | 000,503,864 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\drivers\Wdf01000.sys -- (Wdf01000) DRV - [2008-01-19 09:42:18 | 000,052,792 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\drivers\volmgr.sys -- (volmgr) DRV - [2008-01-19 09:41:30 | 000,021,048 | ---- | M] () [Kernel | Boot | Stopped] -- C:\Windows\System32\drivers\spldr.sys -- (spldr) DRV - [2008-01-19 09:41:14 | 000,015,288 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\swenum.sys -- (swenum) DRV - [2008-01-19 08:01:15 | 000,023,552 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tssecsrv.sys -- (tssecsrv) DRV - [2008-01-19 08:01:08 | 000,029,184 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tdtcp.sys -- (TDTCP) DRV - [2008-01-19 08:01:07 | 000,017,920 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tdpipe.sys -- (TDPIPE) DRV - [2008-01-19 07:56:49 | 000,015,872 | ---- | M] () [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\ws2ifsl.sys -- (ws2ifsl) DRV - [2008-01-19 07:56:31 | 000,062,464 | ---- | M] () [Kernel | System | Stopped] -- C:\Windows\System32\drivers\wanarp.sys -- (Wanarpv6) DRV - [2008-01-19 07:56:31 | 000,062,464 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\wanarp.sys -- (Wanarp) DRV - [2008-01-19 07:55:03 | 000,060,416 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\System32\drivers\rspndr.sys -- (rspndr) DRV - [2008-01-19 07:53:40 | 000,034,816 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\umbus.sys -- (umbus) DRV - [2008-01-19 07:53:20 | 000,023,552 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\usbuhci.sys -- (usbuhci) DRV - [2008-01-19 07:53:04 | 000,083,328 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\WUDFRd.sys -- (WUDFRd) DRV - [2008-01-19 07:52:06 | 000,025,088 | ---- | M] () [Kernel | System | Running] -- C:\Windows\System32\drivers\vga.sys -- (VgaSave) DRV - [2008-01-19 07:49:16 | 000,019,968 | ---- | M] () [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\sermouse.sys -- (sermouse) DRV - [2007-07-26 17:18:04 | 000,285,184 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\drivers\tos_sps32.sys -- (tos_sps32) DRV - [2007-06-01 13:07:48 | 000,252,416 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\rtl8187B.sys -- (RTL8187B) DRV - [2007-01-18 16:47:18 | 000,211,072 | ---- | M] (TOSHIBA CORPORATION) [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\KR10N.sys -- (KR10N) DRV - [2007-01-18 16:40:56 | 000,219,392 | ---- | M] (TOSHIBA CORPORATION) [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\KR10I.sys -- (KR10I) DRV - [2007-01-04 14:48:04 | 000,104,344 | ---- | M] (Analog Devices Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\e4usbaw.sys -- (e4usbaw) DRV - [2007-01-04 14:47:48 | 000,069,656 | ---- | M] (Analog Deivces) [Kernel | Auto | Stopped] -- C:\Windows\System32\drivers\e4ldr.sys -- (E4LOADER) General Purpose USB Driver (e4ldr.sys) DRV - [2006-11-20 15:11:14 | 000,007,168 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\FwLnk.sys -- (FwLnk) DRV - [2006-11-02 11:50:16 | 000,076,392 | ---- | M] () [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\sbp2port.sys -- (sbp2port) DRV - [2006-11-02 11:50:04 | 000,058,472 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ULIAGPKX.SYS -- (uliagpkx) DRV - [2006-11-02 11:49:59 | 000,056,936 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\UAGP35.SYS -- (uagp35) DRV - [2006-11-02 11:49:52 | 000,054,376 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VIAAGP.SYS -- (viaagp) DRV - [2006-11-02 11:49:38 | 000,019,560 | ---- | M] () [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\wd.sys -- (Wd) DRV - [2006-11-02 11:14:58 | 000,018,944 | ---- | M] () [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\usbprint.sys -- (usbprint) DRV - [2006-11-02 10:55:11 | 000,073,216 | ---- | M] () [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\usbccgp.sys -- (usbccgp) DRV - [2006-11-02 10:55:09 | 000,068,608 | ---- | M] () [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\usbcir.sys -- (usbcir) eHome Infrared Receiver (USBCIR) DRV - [2006-11-02 10:55:05 | 000,019,456 | ---- | M] () [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\usbohci.sys -- (usbohci) DRV - [2006-11-02 10:53:56 | 000,026,112 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vgapnp.sys -- (vga) DRV - [2006-11-02 10:52:52 | 000,020,608 | ---- | M] () [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\wacompen.sys -- (WacomPen) DRV - [2006-11-02 10:51:40 | 000,013,312 | ---- | M] () [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\sfloppy.sys -- (sfloppy) DRV - [2006-11-02 10:51:40 | 000,012,800 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\sffp_sd.sys -- (sffp_sd) DRV - [2006-11-02 10:51:40 | 000,012,800 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\sffp_mmc.sys -- (sffp_mmc) DRV - [2006-11-02 10:51:38 | 000,013,312 | ---- | M] () [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\sffdisk.sys -- (sffdisk) DRV - [2006-11-02 10:51:30 | 000,083,456 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\serial.sys -- (Serial) DRV - [2006-11-02 10:51:25 | 000,017,920 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\serenum.sys -- (Serenum) DRV - [2006-11-02 10:35:03 | 000,011,264 | ---- | M] () [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\wmiacpi.sys -- (WmiAcpi) DRV - [2006-11-02 10:30:19 | 000,039,424 | ---- | M] () [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\viac7.sys -- (ViaC7) DRV - [2006-10-18 13:50:04 | 000,016,128 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\tdcmdpst.sys -- (tdcmdpst) DRV - [2006-10-05 23:22:14 | 000,016,768 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\drivers\TVALZ_O.SYS -- (TVALZ) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.co.uk IE - HKLM\..\SearchScopes,DefaultScope = {9BB47C17-9C68-4BB3-B188-DD9AF0FD22} IE - HKLM\..\SearchScopes\{533B9A32-2015-4DC5-8E3F-EEFEAC899365}: "URL" = http://www.google.co.uk/search?q={searchTerms}&rls=com.microsoft:*:IE-SearchBox&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7; IE - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD22}: "URL" = http://dts.search-results.com/sr?src=ieb&appid=20&systemid=2&sr=0&q={searchTerms} IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.premierarticles.info IE - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1 IE - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000\..\SearchScopes,DefaultScope = {9BB47C17-9C68-4BB3-B188-DD9AF0FD22} IE - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000\..\SearchScopes\{533B9A32-2015-4DC5-8E3F-EEFEAC899365}: "URL" = http://www.google.co.uk/search?q={searchTerms}&rls=com.microsoft:*:IE-SearchBox&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7; IE - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD22}: "URL" = http://dts.search-results.com/sr?src=ieb&appid=20&systemid=2&sr=0&q={searchTerms} IE - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@mcafee.com/SAFFPlugin: C:\Program Files\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{4ED1F68A-5463-4931-9384-8FFF5ED91D92}: C:\Program Files\McAfee\SiteAdvisor [2012-07-18 04:23:15 | 000,000,000 | ---D | M] [color=#E56717]========== Chrome ==========[/color] CHR - default_search_provider: () CHR - default_search_provider: search_url = CHR - default_search_provider: suggest_url = CHR - homepage: http://search.bearshare.net CHR - Extension: No name found = C:\Users\pani\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.40.135.2_0\ CHR - Extension: No name found = C:\Users\pani\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.122.1_0\ O1 HOSTS File: ([2012-01-11 23:40:08 | 000,000,822 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) O2 - BHO: (DataMngr) - {B939CF93-F2CB-443d-956C-DC523D85C9DB} - C:\Program Files\BearShare Applications\MediaBar\Datamngr\BrowserConnection.dll (MusicLab, LLC) O2 - BHO: (Wincore Mediabar) - {c2d64ff7-0ab8-4263-89c9-ea3b0f8f050c} - C:\Program Files\BearShare Applications\MediaBar\Datamngr\ToolBar\wincorebsdtx.dll () O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) O3 - HKLM\..\Toolbar: (Wincore Mediabar) - {c2d64ff7-0ab8-4263-89c9-ea3b0f8f050c} - C:\Program Files\BearShare Applications\MediaBar\Datamngr\ToolBar\wincorebsdtx.dll () O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found. O3 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) O4 - HKLM..\Run: [] File not found O4 - HKLM..\Run: [00TCrdMain] C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (TOSHIBA Corporation) O4 - HKLM..\Run: [ApnUpdater] C:\Program Files\Ask.com\Updater\Updater.exe (Ask) O4 - HKLM..\Run: [crrss] C:\Windows\System32\crrss.exe () O4 - HKLM..\Run: [DATAMNGR] C:\Program Files\BearShare Applications\MediaBar\Datamngr\datamngrUI.exe (MusicLab, LLC) O4 - HKLM..\Run: [Desktop SMS] C:\Program Files\IDM\Desktop SMS\DesktopSMS.exe (Interactive Digital Media) O4 - HKLM..\Run: [NDSTray.exe] NDSTray.exe File not found O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor) O4 - HKLM..\Run: [SmoothView] C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe (TOSHIBA Corporation) O4 - HKLM..\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe (Synaptics, Inc.) O4 - HKLM..\Run: [topi] C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe (TOSHIBA) O4 - HKLM..\Run: [Toshiba Registration] C:\Program Files\TOSHIBA\Registration\ToshibaRegistration.exe (Toshiba) O4 - HKLM..\Run: [TPwrMain] C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe (TOSHIBA Corporation) O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation) O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation) O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation) O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [] C:\Users\pani\AppData\Local\Temp\0003e030.tmp () O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [3mu4ooc1ga] C:\Users\pani\3mu4ooc1ga.exe () O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [Badoo Desktop] C:\ProgramData\Badoo\Badoo Desktop\1.6.48.1082\Badoo.Desktop.exe (Badoo) O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [BearShare] C:\Program Files\BearShare Applications\BearShare\BearShare.exe (MusicLab, LLC) O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [cskcomka] C:\Users\pani\cskcomka.exe (YthqO) O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd) O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [Gadu-Gadu 10] C:\Program Files\Gadu-Gadu 10\gg.exe (GG Network S.A.) O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [Intel Display Daemon] C:\Users\pani\Network\igfxcb86.exe () O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [IPLA!] C:\Program Files\ipla\ipla.exe (Redefine Sp z o.o.) O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [Microsoft Firevall Engine] c:\Users\Public\mdm.exe () O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [Microsoft Windows System] C:\Users\pani\P-7-78-8964-9648-3874\windll.exe () O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [MSConfig] C:\Users\pani\sudgkwt.exe () O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [NetworkToolHelper] rundll32 C:\Users\pani\AppData\Local\Temp\NETWOR~1.DLL,Enter File not found O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [Regedit32] C:\Windows\system32\regedit.exe File not found O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [Supports RAS Connections] 2584678.exe File not found O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [tcpudp] C:\Windows\BNAB8A.tmp File not found O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe () O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [vgrcjzwswy] C:\Users\pani\vhgwqwyeqwo.exe () O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [Windows Login access] C:\Users\pani\AppData\Roaming\web2net.exe () O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [WindowsDriverControl] C:\Users\Public\C-76947-8457-2745\msngrnums.exe (Microsoft) O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [WindowsUpdate] C:\Users\pani\AppData\Roaming\msconfig.exe () O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation) O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [winlogon] C:\Users\pani\winlogon.exe () O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [WinNTData] C:\Users\pani\AppData\Roaming\23F55A.exe () O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\Run: [WinRAR] C:\Users\pani\AppData\Roaming\23F559.exe () O4 - HKU\.DEFAULT..\RunOnce: [] C:\Windows\System32\osk.exe (Microsoft Corporation) O4 - HKU\S-1-5-18..\RunOnce: [] C:\Windows\System32\osk.exe (Microsoft Corporation) O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\RunOnce: [036DFF98000C7128192BA5742F3B707C] C:\ProgramData\036DFF98000C7128192BA5742F3B707C\036DFF98000C7128192BA5742F3B707C.exe () O4 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000..\RunServices: [Supports RAS Connections] 2584678.exe File not found O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\0glglww.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\2a1qqva.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\4j5jetj.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\4lvvqvf.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\5oejtee.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\5qal5vl.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\5qvqvvl.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\6a7avq0.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\6ffvaaa.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\6q7a6vv.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\6uuuku1.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\6wwrrlr.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\8dyndys.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\9hwwmmc.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\aqfaffaa.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\av2f0fva.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\avlgaavalgv.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\bbwqwq0lg.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\bwwbrw81lg9.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ddi7ttnn2t5.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ddyny1nndd2.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\e1j0ttjy.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ee1p1euuzz.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ffvava76q.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\hw6wwrww6m.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\kfaqlfvvl6.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\kqqv72fq1.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\l1vggaaglq.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\la6vvfvq.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ll2gbqq1bbw.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\llbbwl9g0.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\llrbrrllgww.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\mhw6wwrw.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\mrmbbr1hrr.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\nndidid6y.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ot84oj0yey.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\pe6zz7pp.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\pzz25ukk.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\qgg1qqll.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\qkkqla6v.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\r72mh0wmrw7.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\r7b9rwrw.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\rblrbwrr.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\rlbbwrllgww.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\s0iynniidy.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\t0iydi7ttn.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\t6o7zztjez.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tt6i7idit2.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tyiditdd2y.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\u6kfu6ppzu.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\w7w7mw0h7.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\wrrwrwrwgr.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ww2ccrwc.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\wwmmrmm2r.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\wwrwr1hrrr.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\y5jjett2o.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\yyyeoyy1yt1.exe () O4 - Startup: C:\Users\pani\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\zezt9jzztj.exe () F3 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000 WinNT: Load - (C:\Users\pani\LOCALS~1\Temp\mswkygbk.exe) - C:\Users\pani\LOCALS~1\Temp\mswkygbk.exe () O9 - Extra Button: eBay.co.uk - Buy It Sell It Love It - {76577871-04EC-495E-A12B-91F7C3600AFA} - http://rover.ebay.com/rover/1/710-44557-9400-3/4 File not found O9 - Extra Button: Amazon.co.uk - {8A918C1D-E123-4E36-B562-5C1519E434CE} - http://www.amazon.co.uk/exec/obidos/redirect-home?tag=Toshibaukbholink-21&site=home File not found O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29) O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab (Java Plug-in 1.6.0_02) O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) O20 - AppInit_DLLs: (C:\PROGRA~1\BEARSH~1\MediaBar\Datamngr\datamngr.dll) - C:\Program Files\BearShare Applications\MediaBar\Datamngr\datamngr.dll (MusicLab, LLC) O20 - AppInit_DLLs: (C:\PROGRA~1\BEARSH~1\MediaBar\Datamngr\IEBHO.dll) - C:\Program Files\BearShare Applications\MediaBar\Datamngr\IEBHO.dll (MusicLab, LLC) O20 - HKLM Winlogon: Shell - (explorer.exe) - explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\crrss.exe) - C:\Windows\System32\crrss.exe () O20 - HKLM Winlogon: TaskMan - (C:\Users\pani\gdubjauq.exe) - C:\Users\pani\gdubjauq.exe () O20 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000 Winlogon: Shell - (explorer.exe) - explorer.exe (Microsoft Corporation) O20 - HKU\S-1-5-21-1200627797-1890646175-1030499211-1000 Winlogon: Shell - ("C:\Users\pani\winlogon.exe") - C:\Users\pani\winlogon.exe () O24 - Desktop WallPaper: C:\Users\pani\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg O24 - Desktop BackupWallPaper: C:\Users\pani\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2006-09-18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O32 - AutoRun File - [2010-10-30 22:22:02 | 000,000,000 | ---D | M] - G:\autorun.inf -- [ FAT32 ] O33 - MountPoints2\{a0bdce16-32ea-11e0-94c2-000000000000}\Shell - "" = AutoRun O33 - MountPoints2\{a0bdce16-32ea-11e0-94c2-000000000000}\Shell\AutoRun\command - "" = D:\autorun.exe O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-07-17 18:28:00 | 000,000,000 | ---D | C] -- C:\ProgramData\011A [2012-07-17 14:54:42 | 000,000,000 | ---D | C] -- C:\ProgramData\036DFF98000C7128192BA5742F3B707C [2012-07-15 21:11:33 | 000,000,000 | ---D | C] -- C:\ProgramData\21129 [2012-04-05 21:30:38 | 000,096,256 | ---- | C] (YthqO) -- C:\Users\pani\cskcomka.exe [2011-10-14 12:13:02 | 000,333,312 | ---- | C] (YourCompany) -- C:\Users\pani\bm.exe [6 C:\Users\pani\AppData\Local\*.tmp files -> C:\Users\pani\AppData\Local\*.tmp -> ] [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-07-18 22:04:39 | 000,065,536 | ---- | M] () -- C:\Windows\System32\Ikeext.etl [2012-07-18 22:04:30 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2012-07-18 18:17:53 | 000,595,386 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2012-07-18 18:17:53 | 000,103,460 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2012-07-18 18:13:57 | 000,003,568 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 [2012-07-18 18:13:57 | 000,003,568 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 [2012-07-18 17:32:48 | 000,001,032 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2012-07-18 17:21:39 | 000,001,028 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2012-07-15 18:56:14 | 001,241,846 | ---- | M] () -- C:\Users\pani\Documents\pandzik.jpg [2012-07-15 18:56:14 | 001,241,846 | ---- | M] () -- C:\Users\pani\Desktop\pandzik.jpg [2012-07-13 10:26:39 | 000,001,976 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk [6 C:\Users\pani\AppData\Local\*.tmp files -> C:\Users\pani\AppData\Local\*.tmp -> ] [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-07-15 19:04:38 | 001,241,846 | ---- | C] () -- C:\Users\pani\Desktop\pandzik.jpg [2012-07-15 18:55:48 | 001,241,846 | ---- | C] () -- C:\Users\pani\Documents\pandzik.jpg [2012-06-13 09:52:45 | 000,117,760 | RHS- | C] () -- C:\Users\pani\gdubjauq.exe [2012-06-08 13:16:42 | 000,058,368 | ---- | C] () -- C:\Users\pani\AppData\Local\daefiurt [2012-06-07 15:08:07 | 000,058,368 | ---- | C] () -- C:\Users\pani\AppData\Local\krhgwtmb [2012-05-02 08:47:51 | 000,135,680 | RHS- | C] () -- C:\Users\pani\deh3ubd.exe [2012-05-01 13:34:55 | 000,141,312 | RHS- | C] () -- C:\Users\pani\vhgwqwyeqwo.exe [2012-04-29 14:22:33 | 000,333,312 | ---- | C] () -- C:\Users\pani\cn.exe [2012-04-24 11:17:44 | 000,000,000 | ---- | C] () -- C:\Users\pani\AppData\Roaming\s8cja [2012-04-07 20:39:20 | 000,045,880 | ---- | C] () -- C:\Windows\System32\drivers\16bb8793711c41f9.sys [2012-04-05 21:32:42 | 000,019,384 | -HS- | C] () -- C:\Users\pani\3mu4ooc1ga.exe [2012-03-24 11:39:44 | 000,120,857 | RHS- | C] () -- C:\Users\pani\AppData\Roaming\msconfig.exe [2012-03-14 19:01:41 | 002,044,416 | ---- | C] () -- C:\Windows\System32\win32k.sys [2012-03-14 11:55:57 | 000,180,736 | ---- | C] () -- C:\Windows\System32\drivers\rdpwd.sys [2012-03-14 01:08:45 | 000,041,984 | -HS- | C] () -- C:\Users\pani\AppData\Roaming\web2net.exe [2012-02-01 20:17:48 | 000,000,000 | ---- | C] () -- C:\Users\pani\AppData\Local\{016C1DC4-E627-4251-9534-BCF3133C0AD2} [2012-01-27 21:46:49 | 000,000,000 | ---- | C] () -- C:\Users\pani\AppData\Local\{7805AC5E-9041-4DB0-A96F-CC82CF2D3759} [2012-01-25 22:09:21 | 000,000,000 | ---- | C] () -- C:\Users\pani\AppData\Local\{7DBC9751-F07C-417F-A8CD-A666AB8B0BD8} [2012-01-18 20:38:39 | 000,000,000 | ---- | C] () -- C:\Users\pani\AppData\Local\{979FA530-111F-4949-9A96-7E400C29D408} [2012-01-17 22:12:56 | 000,000,000 | ---- | C] () -- C:\Users\pani\AppData\Local\{D38B1CA4-4985-47A3-9F81-F51C350EEF56} [2012-01-12 12:38:45 | 000,440,192 | ---- | C] () -- C:\Windows\System32\drivers\ksecdd.sys [2011-12-14 00:58:26 | 000,000,697 | ---- | C] () -- C:\Windows\System32\MRT.INI [2011-12-13 22:22:10 | 003,602,816 | ---- | C] () -- C:\Windows\System32\ntkrnlpa.exe [2011-12-13 22:16:34 | 000,049,152 | ---- | C] () -- C:\Windows\System32\csrsrv.dll [2011-11-09 23:12:40 | 000,905,088 | ---- | C] () -- C:\Windows\System32\drivers\tcpip.sys [2011-10-14 12:11:14 | 000,047,109 | -H-- | C] () -- C:\Users\pani\userdiff.sav [2011-10-14 12:11:14 | 000,033,792 | -H-- | C] () -- C:\Users\pani\sudgkwt.exe [2011-09-21 20:49:46 | 000,638,336 | ---- | C] () -- C:\Windows\System32\drivers\dxgkrnl.sys [2011-09-21 20:49:44 | 000,037,376 | ---- | C] () -- C:\Windows\System32\cdd.dll [2011-08-10 16:17:14 | 000,214,016 | ---- | C] () -- C:\Windows\System32\drivers\mrxsmb10.sys [2011-07-13 22:23:11 | 000,031,232 | ---- | C] () -- C:\Users\pani\winlogon.exe [2011-07-13 22:23:11 | 000,031,232 | ---- | C] () -- C:\Windows\System32\crrss.exe [2011-07-13 22:23:11 | 000,000,036 | ---- | C] () -- C:\Users\pani\uidsave.dat [2011-06-19 22:23:15 | 000,075,264 | ---- | C] () -- C:\Windows\System32\drivers\dfsc.sys [2011-06-19 22:23:12 | 000,273,408 | ---- | C] () -- C:\Windows\System32\drivers\afd.sys [2011-06-19 22:23:07 | 000,146,432 | ---- | C] () -- C:\Windows\System32\drivers\srv2.sys [2011-06-19 22:23:06 | 000,102,400 | ---- | C] () -- C:\Windows\System32\drivers\srvnet.sys [2011-06-19 22:22:35 | 000,106,496 | ---- | C] () -- C:\Windows\System32\drivers\mrxsmb.sys [2011-06-19 22:22:35 | 000,079,872 | ---- | C] () -- C:\Windows\System32\drivers\mrxsmb20.sys [2011-04-14 22:55:04 | 000,292,864 | ---- | C] () -- C:\Windows\System32\atmfd.dll [2011-04-14 22:55:00 | 000,069,632 | ---- | C] () -- C:\Windows\System32\drivers\bowser.sys [2011-04-14 22:54:53 | 000,305,152 | ---- | C] () -- C:\Windows\System32\drivers\srv.sys [2011-03-24 23:52:46 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin [2011-03-24 23:25:34 | 000,684,032 | ---- | C] () -- C:\Windows\System32\drivers\spsys.sys [2011-03-24 23:25:32 | 000,561,152 | ---- | C] () -- C:\Windows\System32\drivers\hdaudbus.sys [2011-03-24 23:25:23 | 000,438,744 | ---- | C] () -- C:\Windows\System32\mcupdate_GenuineIntel.dll [2011-03-24 23:25:10 | 000,986,600 | ---- | C] () -- C:\Windows\System32\winload.exe [2011-03-24 23:25:02 | 001,083,880 | ---- | C] () -- C:\Windows\System32\drivers\ntfs.sys [2011-03-24 23:25:02 | 000,054,272 | -HS- | C] () -- C:\Users\pani\AppData\Roaming\23F559.exe [2011-03-24 23:25:02 | 000,026,624 | -HS- | C] () -- C:\Users\pani\AppData\Roaming\23F55A.exe [2011-03-24 23:24:51 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin [2011-03-24 23:24:50 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll [2011-03-24 23:24:48 | 000,614,376 | ---- | C] () -- C:\Windows\System32\ci.dll [2011-03-24 23:24:46 | 000,225,280 | ---- | C] () -- C:\Windows\System32\drivers\rdbss.sys [2011-03-24 23:24:44 | 000,223,208 | ---- | C] () -- C:\Windows\System32\drivers\netio.sys [2011-03-24 23:24:44 | 000,114,688 | ---- | C] () -- C:\Windows\System32\drivers\mrxdav.sys [2011-03-24 23:24:42 | 000,065,536 | ---- | C] () -- C:\Windows\System32\drivers\USBSTOR.SYS [2011-03-24 23:24:41 | 000,196,096 | ---- | C] () -- C:\Windows\System32\drivers\usbhub.sys [2011-03-24 23:24:34 | 000,180,712 | ---- | C] () -- C:\Windows\System32\drivers\msiscsi.sys [2011-03-24 23:24:32 | 000,527,848 | ---- | C] () -- C:\Windows\System32\drivers\ndis.sys [2011-03-24 23:24:32 | 000,226,304 | ---- | C] () -- C:\Windows\System32\drivers\usbport.sys [2011-03-24 23:24:30 | 000,027,112 | ---- | C] () -- C:\Windows\System32\drivers\msahci.sys [2011-03-24 23:24:28 | 000,149,480 | ---- | C] () -- C:\Windows\System32\drivers\pci.sys [2011-03-24 23:24:28 | 000,125,928 | ---- | C] () -- C:\Windows\System32\drivers\Classpnp.sys [2011-03-24 23:24:27 | 000,265,688 | ---- | C] () -- C:\Windows\System32\drivers\acpi.sys [2011-03-24 23:24:27 | 000,053,224 | ---- | C] () -- C:\Windows\System32\drivers\termdd.sys [2011-03-24 23:24:27 | 000,050,664 | ---- | C] () -- C:\Windows\System32\PSHED.DLL [2011-03-24 23:24:27 | 000,035,304 | ---- | C] () -- C:\Windows\System32\drivers\crashdmp.sys [2011-03-24 23:24:26 | 000,245,736 | ---- | C] () -- C:\Windows\System32\clfs.sys [2011-03-24 23:24:26 | 000,122,344 | ---- | C] () -- C:\Windows\System32\drivers\Storport.sys [2011-03-24 23:24:26 | 000,109,032 | ---- | C] () -- C:\Windows\System32\drivers\ataport.sys [2011-03-24 23:24:26 | 000,054,248 | ---- | C] () -- C:\Windows\System32\drivers\partmgr.sys [2011-03-24 23:24:24 | 000,048,104 | ---- | C] () -- C:\Windows\System32\drivers\mup.sys [2011-03-24 23:24:23 | 000,053,736 | ---- | C] () -- C:\Windows\System32\drivers\disk.sys [2011-03-24 23:24:23 | 000,017,896 | ---- | C] () -- C:\Windows\System32\kd1394.dll [2011-03-24 23:24:22 | 000,292,840 | ---- | C] () -- C:\Windows\System32\drivers\volmgrx.sys [2011-03-24 23:24:22 | 000,099,816 | ---- | C] () -- C:\Windows\System32\drivers\FWPKCLNT.SYS [2011-03-24 23:24:22 | 000,043,496 | ---- | C] () -- C:\Windows\System32\drivers\pciidex.sys [2011-03-24 23:24:21 | 000,226,280 | ---- | C] () -- C:\Windows\System32\drivers\volsnap.sys [2011-03-24 23:24:21 | 000,190,424 | ---- | C] () -- C:\Windows\System32\drivers\fltMgr.sys [2011-03-24 23:24:21 | 000,161,752 | ---- | C] () -- C:\Windows\System32\drivers\msrpc.sys [2011-03-24 23:24:21 | 000,141,288 | ---- | C] () -- C:\Windows\System32\drivers\ecache.sys [2011-03-24 23:24:20 | 000,027,624 | ---- | C] () -- C:\Windows\System32\drivers\Dumpata.sys [2011-03-24 23:24:20 | 000,017,384 | ---- | C] () -- C:\Windows\System32\kdcom.dll [2011-03-24 23:24:19 | 000,019,944 | ---- | C] () -- C:\Windows\System32\kdusb.dll [2011-03-24 23:24:19 | 000,019,944 | ---- | C] () -- C:\Windows\System32\drivers\atapi.sys [2011-03-24 23:24:18 | 000,185,856 | ---- | C] () -- C:\Windows\System32\drivers\netbt.sys [2011-03-24 23:24:09 | 000,039,936 | ---- | C] () -- C:\Windows\System32\drivers\usbehci.sys [2011-03-24 23:24:06 | 000,149,504 | ---- | C] () -- C:\Windows\System32\drivers\ks.sys [2011-03-24 23:24:02 | 000,136,704 | ---- | C] () -- C:\Windows\System32\drivers\exfat.sys [2011-03-24 23:23:59 | 000,167,936 | ---- | C] () -- C:\Windows\System32\drivers\portcls.sys [2011-03-24 23:23:58 | 000,035,328 | ---- | C] () -- C:\Windows\System32\drivers\npfs.sys [2011-03-24 23:23:57 | 000,072,192 | ---- | C] () -- C:\Windows\System32\drivers\tdx.sys [2011-03-24 23:23:57 | 000,072,192 | ---- | C] () -- C:\Windows\System32\drivers\pacer.sys [2011-03-24 23:23:55 | 000,142,848 | ---- | C] () -- C:\Windows\System32\drivers\fastfat.sys [2011-03-24 23:23:54 | 000,113,664 | ---- | C] () -- C:\Windows\System32\drivers\rmcast.sys [2011-03-24 23:23:53 | 000,033,280 | ---- | C] () -- C:\Windows\System32\drivers\watchdog.sys [2011-03-24 23:23:52 | 000,226,816 | ---- | C] () -- C:\Windows\System32\drivers\udfs.sys [2011-03-24 23:23:52 | 000,066,560 | ---- | C] () -- C:\Windows\System32\drivers\smb.sys [2011-03-24 23:23:50 | 000,121,344 | ---- | C] () -- C:\Windows\System32\drivers\ndiswan.sys [2011-03-24 23:23:49 | 000,069,120 | ---- | C] () -- C:\Windows\System32\drivers\rassstp.sys [2011-03-24 23:23:48 | 000,067,072 | ---- | C] () -- C:\Windows\System32\drivers\cdrom.sys [2011-03-24 23:23:47 | 000,148,480 | ---- | C] () -- C:\Windows\System32\drivers\nwifi.sys [2011-03-24 23:23:46 | 000,076,288 | ---- | C] () -- C:\Windows\System32\drivers\dxg.sys [2011-03-24 23:23:46 | 000,019,456 | ---- | C] () -- C:\Windows\System32\drivers\Diskdump.sys [2011-03-24 23:23:45 | 000,033,280 | ---- | C] () -- C:\Windows\System32\drivers\RNDISMP.sys [2011-03-24 23:23:44 | 000,093,696 | ---- | C] () -- C:\Windows\System32\drivers\bridge.sys [2011-03-24 23:23:44 | 000,041,472 | ---- | C] () -- C:\Windows\System32\drivers\raspppoe.sys [2011-03-24 23:23:44 | 000,015,872 | ---- | C] () -- C:\Windows\System32\drivers\usb8023.sys [2011-03-24 23:23:43 | 000,007,168 | ---- | C] () -- C:\Windows\System32\f3ahvoas.dll [2011-03-23 00:01:39 | 000,064,000 | ---- | C] () -- C:\Windows\System32\drivers\mpsdrv.sys [2011-03-23 00:01:26 | 000,024,576 | ---- | C] () -- C:\Windows\System32\drivers\tape.sys [2011-03-23 00:01:26 | 000,017,408 | ---- | C] () -- C:\Windows\System32\drivers\smclib.sys [2011-03-23 00:01:25 | 000,018,944 | ---- | C] () -- C:\Windows\System32\drivers\mcd.sys [2011-03-23 00:01:01 | 000,015,872 | ---- | C] () -- C:\Windows\System32\drivers\ws2ifsl.sys [2011-03-23 00:00:51 | 000,016,384 | ---- | C] () -- C:\Windows\System32\drivers\nsiproxy.sys [2011-03-23 00:00:50 | 000,008,192 | ---- | C] () -- C:\Windows\System32\drivers\rootmdm.sys [2011-03-23 00:00:49 | 000,031,744 | ---- | C] () -- C:\Windows\System32\drivers\modem.sys [2011-03-23 00:00:29 | 000,118,272 | ---- | C] () -- C:\Windows\System32\RDPENCDD.dll [2011-03-23 00:00:29 | 000,023,552 | ---- | C] () -- C:\Windows\System32\drivers\tssecsrv.sys [2011-03-23 00:00:29 | 000,006,144 | ---- | C] () -- C:\Windows\System32\drivers\RDPENCDD.sys [2011-03-23 00:00:23 | 000,056,320 | ---- | C] () -- C:\Windows\System32\vga256.dll [2011-03-23 00:00:23 | 000,025,088 | ---- | C] () -- C:\Windows\System32\drivers\vga.sys [2011-03-23 00:00:23 | 000,021,504 | ---- | C] () -- C:\Windows\System32\vga64k.dll [2011-03-23 00:00:23 | 000,010,752 | ---- | C] () -- C:\Windows\System32\vga.dll [2011-03-23 00:00:22 | 000,011,776 | ---- | C] () -- C:\Windows\System32\framebuf.dll [2011-03-22 23:59:50 | 000,047,616 | ---- | C] () -- C:\Windows\System32\drivers\ipfltdrv.sys [2011-03-22 23:59:48 | 000,062,464 | ---- | C] () -- C:\Windows\System32\drivers\wanarp.sys [2011-03-22 23:59:48 | 000,049,664 | ---- | C] () -- C:\Windows\System32\drivers\ndproxy.sys [2011-03-22 23:59:48 | 000,020,992 | ---- | C] () -- C:\Windows\System32\drivers\ndistapi.sys [2011-03-22 23:59:47 | 000,076,288 | ---- | C] () -- C:\Windows\System32\drivers\rasl2tp.sys [2011-03-22 23:59:47 | 000,062,976 | ---- | C] () -- C:\Windows\System32\drivers\raspptp.sys [2011-03-22 23:59:13 | 000,060,416 | ---- | C] () -- C:\Windows\System32\drivers\rspndr.sys [2011-03-22 23:59:13 | 000,047,104 | ---- | C] () -- C:\Windows\System32\drivers\lltdio.sys [2011-03-22 23:59:10 | 000,016,896 | ---- | C] () -- C:\Windows\System32\drivers\ndisuio.sys [2011-03-22 23:58:32 | 000,084,480 | ---- | C] () -- C:\Windows\System32\drivers\luafv.sys [2011-03-22 23:58:21 | 000,008,192 | ---- | C] () -- C:\Windows\System32\drivers\mskssrv.sys [2011-03-22 23:58:21 | 000,006,016 | ---- | C] () -- C:\Windows\System32\drivers\mstee.sys [2011-03-22 23:58:21 | 000,005,888 | ---- | C] () -- C:\Windows\System32\drivers\mspclock.sys [2011-03-22 23:58:21 | 000,005,504 | ---- | C] () -- C:\Windows\System32\drivers\mspqm.sys [2011-03-22 23:58:20 | 000,100,864 | ---- | C] () -- C:\Windows\System32\drivers\ipnat.sys [2011-03-22 23:58:20 | 000,095,744 | ---- | C] () -- C:\Windows\System32\drivers\irda.sys [2011-03-22 23:57:12 | 000,083,328 | ---- | C] () -- C:\Windows\System32\drivers\WUDFRd.sys [2011-03-22 23:57:12 | 000,051,200 | ---- | C] () -- C:\Windows\System32\drivers\WUDFPf.sys [2011-03-22 23:56:48 | 000,024,120 | ---- | C] () -- C:\Windows\System32\BOOTVID.DLL [2011-02-15 23:36:05 | 000,006,144 | ---- | C] () -- C:\Users\pani\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-02-07 22:34:35 | 000,218,688 | ---- | C] () -- C:\Windows\System32\drivers\dtsoftbus01.sys [2011-02-07 21:37:16 | 000,017,976 | ---- | C] () -- C:\Windows\System32\drivers\intelide.sys [2011-02-07 21:37:08 | 000,503,864 | ---- | C] () -- C:\Windows\System32\drivers\Wdf01000.sys [2011-02-07 21:36:49 | 000,134,656 | ---- | C] () -- C:\Windows\System32\rdpdd.dll [2011-02-07 21:36:44 | 000,052,792 | ---- | C] () -- C:\Windows\System32\drivers\volmgr.sys [2011-02-07 21:36:38 | 000,035,896 | ---- | C] () -- C:\Windows\System32\drivers\WdfLdr.sys [2011-02-07 21:36:36 | 000,142,904 | ---- | C] () -- C:\Windows\System32\drivers\scsiport.sys [2011-02-07 21:36:33 | 000,016,440 | ---- | C] () -- C:\Windows\System32\drivers\msisadrv.sys [2011-02-07 21:36:32 | 000,057,400 | ---- | C] () -- C:\Windows\System32\drivers\mountmgr.sys [2011-02-07 21:36:31 | 000,058,936 | ---- | C] () -- C:\Windows\System32\drivers\fileinfo.sys [2011-02-07 21:36:30 | 000,041,472 | ---- | C] () -- C:\Windows\System32\drivers\intelppm.sys [2011-02-07 21:36:27 | 000,028,216 | ---- | C] () -- C:\Windows\System32\drivers\battc.sys [2011-02-07 21:36:20 | 000,110,080 | ---- | C] () -- C:\Windows\System32\drivers\videoprt.sys [2011-02-07 21:36:16 | 000,020,792 | ---- | C] () -- C:\Windows\System32\drivers\compbatt.sys [2011-02-07 21:36:13 | 000,035,384 | ---- | C] () -- C:\Windows\System32\drivers\kbdclass.sys [2011-02-07 21:36:12 | 000,034,360 | ---- | C] () -- C:\Windows\System32\drivers\mouclass.sys [2011-02-07 21:36:12 | 000,031,288 | ---- | C] () -- C:\Windows\System32\drivers\mssmbios.sys [2011-02-07 21:36:12 | 000,021,048 | ---- | C] () -- C:\Windows\System32\drivers\spldr.sys [2011-02-07 21:36:11 | 000,017,976 | ---- | C] () -- C:\Windows\System32\drivers\wmilib.sys [2011-02-07 21:36:11 | 000,015,288 | ---- | C] () -- C:\Windows\System32\drivers\swenum.sys [2011-02-07 21:36:07 | 000,070,144 | ---- | C] () -- C:\Windows\System32\drivers\cdfs.sys [2011-02-07 21:36:01 | 000,034,816 | ---- | C] () -- C:\Windows\System32\drivers\umbus.sys [2011-02-07 21:35:53 | 000,023,552 | ---- | C] () -- C:\Windows\System32\drivers\usbuhci.sys [2011-02-07 21:35:37 | 000,041,984 | ---- | C] () -- C:\Windows\System32\drivers\monitor.sys [2011-02-07 21:35:28 | 000,054,784 | ---- | C] () -- C:\Windows\System32\drivers\i8042prt.sys [2011-02-07 21:35:27 | 000,017,408 | ---- | C] () -- C:\Windows\System32\drivers\asyncmac.sys [2011-02-07 21:35:26 | 000,029,184 | ---- | C] () -- C:\Windows\System32\drivers\tdtcp.sys [2011-02-07 21:35:26 | 000,027,648 | ---- | C] () -- C:\Windows\System32\drivers\filetrace.sys [2011-02-07 21:35:26 | 000,012,800 | ---- | C] () -- C:\Windows\System32\drivers\fs_rec.sys [2011-02-07 21:35:24 | 000,017,920 | ---- | C] () -- C:\Windows\System32\drivers\tdpipe.sys [2011-02-07 21:35:21 | 000,020,992 | ---- | C] () -- C:\Windows\System32\drivers\tdi.sys [2011-02-07 21:35:16 | 000,031,232 | ---- | C] () -- C:\Windows\System32\drivers\qwavedrv.sys [2011-02-07 21:35:15 | 000,130,048 | ---- | C] () -- C:\Windows\System32\drivers\drmk.sys [2011-02-07 21:35:15 | 000,035,840 | ---- | C] () -- C:\Windows\System32\drivers\netbios.sys [2011-02-07 21:35:12 | 000,022,528 | ---- | C] () -- C:\Windows\System32\drivers\msfs.sys [2011-02-07 21:35:11 | 000,019,968 | ---- | C] () -- C:\Windows\System32\drivers\sermouse.sys [2011-02-07 21:35:09 | 000,013,312 | ---- | C] () -- C:\Windows\System32\drivers\irenum.sys [2011-02-07 21:35:07 | 000,014,208 | ---- | C] () -- C:\Windows\System32\drivers\CmBatt.sys [2011-02-07 21:35:07 | 000,011,776 | ---- | C] () -- C:\Windows\System32\drivers\rasacd.sys [2011-02-07 21:35:06 | 000,013,312 | ---- | C] () -- C:\Windows\System32\drivers\dxapi.sys [2011-02-07 21:35:06 | 000,010,752 | ---- | C] () -- C:\Windows\System32\KBDJPN.DLL [2011-02-07 21:35:06 | 000,010,240 | ---- | C] () -- C:\Windows\System32\KBDKOR.DLL [2011-02-07 21:35:06 | 000,007,680 | ---- | C] () -- C:\Windows\System32\drivers\umpass.sys [2011-02-07 21:35:06 | 000,006,144 | ---- | C] () -- C:\Windows\System32\drivers\beep.sys [2011-02-07 21:35:05 | 000,006,144 | ---- | C] () -- C:\Windows\System32\drivers\RDPCDD.sys [2011-02-07 21:35:05 | 000,004,608 | ---- | C] () -- C:\Windows\System32\drivers\null.sys [2011-02-07 21:35:04 | 000,014,336 | ---- | C] () -- C:\Windows\System32\tsddd.dll [2011-02-07 21:35:04 | 000,005,888 | ---- | C] () -- C:\Windows\System32\drivers\usbd.sys [2011-02-07 21:35:04 | 000,005,632 | ---- | C] () -- C:\Windows\System32\drivers\drmkaud.sys [2011-02-04 23:53:32 | 000,006,656 | ---- | C] () -- C:\Windows\System32\kbd106n.dll [2011-02-04 23:50:37 | 000,025,088 | ---- | C] () -- C:\Windows\System32\drivers\tunnel.sys [2011-02-04 23:50:36 | 000,030,720 | ---- | C] () -- C:\Windows\System32\drivers\tcpipreg.sys [2011-02-04 23:50:36 | 000,015,360 | ---- | C] () -- C:\Windows\System32\drivers\TUNMP.SYS [2011-02-04 23:40:10 | 000,411,648 | ---- | C] () -- C:\Windows\System32\drivers\http.sys [2011-02-04 10:00:43 | 000,005,648 | ---- | C] () -- C:\Users\pani\AppData\Local\d3d9caps.dat [2011-02-03 23:42:54 | 000,000,169 | ---- | C] () -- C:\Windows\adidsl.ini [2011-02-03 23:42:54 | 000,000,021 | ---- | C] () -- C:\Windows\Fast800.ini [2011-02-03 23:41:17 | 000,253,008 | ---- | C] () -- C:\Windows\adirasx64.exe [2011-02-03 23:41:17 | 000,194,128 | ---- | C] () -- C:\Windows\adiras.exe [2011-02-03 23:41:17 | 000,000,990 | ---- | C] () -- C:\Windows\adiras.ini [2011-02-03 23:41:16 | 000,127,456 | ---- | C] () -- C:\Windows\System32\IPDETECT.EXE [2011-02-03 23:41:15 | 000,104,344 | ---- | C] () -- C:\Windows\System32\drivers\e4usbaw.sys [2011-02-03 23:41:14 | 000,152,126 | ---- | C] () -- C:\Windows\System32\drivers\L1E9P2.BIN [2011-02-03 23:41:13 | 000,069,656 | ---- | C] () -- C:\Windows\System32\drivers\e4ldr.sys [2011-02-03 23:41:13 | 000,046,892 | ---- | C] () -- C:\Windows\System32\ADADIX16.DLL [2011-02-03 23:41:13 | 000,024,576 | ---- | C] () -- C:\Windows\enddisk32.exe [2011-02-03 23:41:12 | 000,152,308 | ---- | C] () -- C:\Windows\System32\drivers\L1E4I2.BIN [2011-02-03 23:41:12 | 000,152,306 | ---- | C] () -- C:\Windows\System32\drivers\L1E4I1.BIN [2011-02-03 23:41:12 | 000,152,306 | ---- | C] () -- C:\Windows\System32\drivers\L1E4I0.BIN [2011-02-03 23:41:12 | 000,152,146 | ---- | C] () -- C:\Windows\System32\drivers\L1E4P2.BIN [2011-02-03 23:41:12 | 000,152,145 | ---- | C] () -- C:\Windows\System32\drivers\L1E4P1.BIN [2011-02-03 23:41:12 | 000,152,145 | ---- | C] () -- C:\Windows\System32\drivers\L1E4P0.BIN [2011-02-03 23:41:12 | 000,152,036 | ---- | C] () -- C:\Windows\System32\drivers\L1E4D2.BIN [2011-02-03 23:41:12 | 000,152,034 | ---- | C] () -- C:\Windows\System32\drivers\L1E4D1.BIN [2011-02-03 23:41:12 | 000,152,034 | ---- | C] () -- C:\Windows\System32\drivers\L1E4D0.BIN [2011-02-03 23:41:12 | 000,022,395 | ---- | C] () -- C:\Windows\System32\drivers\fpga.bin [2011-02-03 23:41:11 | 000,152,126 | ---- | C] () -- C:\Windows\System32\drivers\L1E9P1.BIN [2011-02-03 23:41:11 | 000,152,126 | ---- | C] () -- C:\Windows\System32\drivers\L1E9P0.BIN [2011-02-03 23:41:11 | 000,152,126 | ---- | C] () -- C:\Windows\System32\drivers\L1E9I2.BIN [2011-02-03 23:41:11 | 000,152,126 | ---- | C] () -- C:\Windows\System32\drivers\L1E9I1.BIN [2011-02-03 23:41:11 | 000,152,126 | ---- | C] () -- C:\Windows\System32\drivers\L1E9I0.BIN [color=#E56717]========== LOP Check ==========[/color] [2011-02-07 22:36:36 | 000,000,000 | ---D | M] -- C:\Users\pani\AppData\Roaming\DAEMON Tools Lite [2011-02-04 10:16:10 | 000,000,000 | ---D | M] -- C:\Users\pani\AppData\Roaming\Gadu-Gadu 10 [2012-07-17 18:27:14 | 000,000,000 | ---D | M] -- C:\Users\pani\AppData\Roaming\ipla [2012-05-10 21:22:23 | 000,000,000 | ---D | M] -- C:\Users\pani\AppData\Roaming\MusicNet [2011-02-04 01:58:03 | 000,000,000 | ---D | M] -- C:\Users\pani\AppData\Roaming\OpenFM [2011-06-29 19:40:21 | 000,000,000 | ---D | M] -- C:\Users\pani\AppData\Roaming\Opera [2011-02-04 01:55:53 | 000,000,000 | ---D | M] -- C:\Users\pani\AppData\Roaming\RDRM [2011-02-04 01:15:05 | 000,000,000 | ---D | M] -- C:\Users\pani\AppData\Roaming\Toshiba [2012-07-18 18:13:57 | 000,032,622 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 957816 bytes -> C:\Users\pani\AppData\Roaming\desktop.ini:init < End of report >