OTL logfile created on: 2012-07-31 13:50:14 - Run 1 OTL by OldTimer - Version 3.2.55.0 Folder = C:\Documents and Settings\pdabrowski\Pulpit Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,43 Gb Total Physical Memory | 2,50 Gb Available Physical Memory | 72,84% Memory free 5,26 Gb Paging File | 4,34 Gb Available in Paging File | 82,43% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 149,01 Gb Total Space | 75,85 Gb Free Space | 50,90% Space Free | Partition Type: NTFS Drive E: | 177,14 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Drive H: | 1,86 Gb Total Space | 0,17 Gb Free Space | 8,87% Space Free | Partition Type: FAT Computer Name: DABROWSKI | User Name: pdabrowski | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-07-31 13:48:43 | 000,597,504 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\pdabrowski\Pulpit\OTL.exe PRC - [2012-07-26 19:52:04 | 001,095,560 | ---- | M] (Spigot, Inc.) -- C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe PRC - [2012-07-26 19:40:56 | 000,794,560 | ---- | M] (Spigot, Inc.) -- C:\Program Files\Application Updater\ApplicationUpdater.exe PRC - [2012-07-03 13:46:44 | 000,655,944 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe PRC - [2012-07-03 13:46:44 | 000,462,920 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe PRC - [2011-02-22 06:59:46 | 000,660,848 | ---- | M] (Juniper Networks) -- C:\Program Files\Juniper Networks\Common Files\dsNcService.exe PRC - [2010-09-03 15:11:18 | 005,253,928 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version5\TeamViewer.exe PRC - [2010-09-03 15:07:46 | 000,173,352 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe PRC - [2010-05-12 22:33:44 | 000,288,112 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\Apoint.exe PRC - [2010-04-05 11:19:28 | 000,495,708 | ---- | M] (IDT, Inc.) -- C:\Program Files\IDT\WDM\sttray.exe PRC - [2010-04-05 11:19:22 | 000,229,458 | ---- | M] (IDT, Inc.) -- c:\drivers\audio\R267815\payload\WDM\stacsv.exe PRC - [2010-04-05 11:18:46 | 000,737,280 | ---- | M] (Andrea Electronics Corporation) -- C:\WINDOWS\system32\AESTFltr.exe PRC - [2010-03-23 15:22:26 | 000,049,152 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\ApntEx.exe PRC - [2010-03-12 17:42:02 | 000,462,993 | ---- | M] (Creative Technology Ltd) -- C:\Program Files\Dell Webcam\Dell Webcam Central\WebcamDell2.exe PRC - [2010-03-04 03:16:06 | 000,013,336 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe PRC - [2010-03-04 03:16:04 | 000,284,696 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe PRC - [2010-02-26 04:58:52 | 002,143,608 | ---- | M] (Broadcom Corporation.) -- c:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe PRC - [2010-02-26 04:58:52 | 000,636,256 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe PRC - [2010-02-17 18:34:40 | 000,054,568 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\ApMsgFwd.exe PRC - [2010-02-05 14:45:16 | 000,385,856 | ---- | M] (Nokia) -- C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe PRC - [2010-02-03 10:46:52 | 001,531,904 | ---- | M] (Nokia) -- C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe PRC - [2010-01-26 13:41:08 | 000,652,800 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe PRC - [2010-01-14 23:53:48 | 000,034,232 | ---- | M] (Broadcom Corporation) -- C:\Program Files\Dell\Dell ControlPoint\Security Manager\BcmDeviceAndTaskStatusService.exe PRC - [2010-01-14 21:47:22 | 000,158,592 | ---- | M] (Wave Systems Corp.) -- C:\Program Files\Wave Systems Corp\Services Manager\DocMgr\bin\WavXDocMgr.exe PRC - [2010-01-10 19:01:26 | 000,060,928 | ---- | M] () -- C:\Program Files\STMicroelectronics\AccelerometerP11\InstallFilterService.exe PRC - [2009-12-29 23:35:38 | 000,140,520 | ---- | M] (CyberLink Corp.) -- C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe PRC - [2009-12-17 17:45:18 | 000,812,448 | ---- | M] (Broadcom Corporation) -- C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe PRC - [2009-12-17 17:45:18 | 000,027,040 | ---- | M] (Broadcom Corporation) -- C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe PRC - [2009-12-17 12:23:54 | 000,272,896 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\nokiaaserver.exe PRC - [2009-12-10 20:09:28 | 000,376,608 | ---- | M] (Dell Inc.) -- c:\Program Files\Dell\Dell ControlPoint\System Manager\DCPSysMgrSvc.exe PRC - [2009-12-08 19:08:34 | 000,024,576 | ---- | M] (Creative Technology Ltd.) -- C:\WINDOWS\OA015Mon.exe PRC - [2009-11-24 22:48:36 | 001,148,264 | ---- | M] (Wave Systems Corp.) -- C:\Program Files\Wave Systems Corp\Trusted Drive Manager\TdmService.exe PRC - [2009-11-24 22:48:32 | 000,132,456 | ---- | M] (Wave Systems Corp.) -- C:\Program Files\Wave Systems Corp\Trusted Drive Manager\TdmNotify.exe PRC - [2009-11-21 00:42:48 | 000,278,304 | ---- | M] (Dell Inc.) -- c:\Program Files\Dell\Dell ControlPoint\DCPButtonSvc.exe PRC - [2009-11-02 18:40:54 | 000,657,920 | ---- | M] (Dell Inc.) -- C:\Program Files\Dell\Dell ControlPoint\Dell.ControlPoint.exe PRC - [2009-10-29 14:03:34 | 000,159,744 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclBCBTSrv.exe PRC - [2009-10-27 10:15:44 | 000,132,608 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe PRC - [2009-10-27 10:15:02 | 000,120,832 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe PRC - [2009-09-21 21:55:12 | 000,858,384 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe PRC - [2009-09-21 21:50:04 | 000,364,544 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Intel\WiFi\bin\WLKEEPER.exe PRC - [2009-09-21 21:49:52 | 001,392,640 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe PRC - [2009-09-21 21:44:48 | 000,954,368 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Intel\WiFi\bin\S24EvMon.exe PRC - [2009-09-21 21:34:44 | 001,206,544 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe PRC - [2009-09-21 21:31:36 | 000,473,360 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe PRC - [2009-08-31 20:07:00 | 000,146,448 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\VirusScan Enterprise\mcshield.exe PRC - [2009-08-31 20:07:00 | 000,124,240 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\VirusScan Enterprise\shstat.exe PRC - [2009-08-31 20:07:00 | 000,070,728 | ---- | M] (McAfee, Inc.) -- C:\WINDOWS\system32\mfevtps.exe PRC - [2009-08-31 20:07:00 | 000,066,896 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\VirusScan Enterprise\vstskmgr.exe PRC - [2009-08-31 20:07:00 | 000,027,960 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\VirusScan Enterprise\mfeann.exe PRC - [2009-08-31 20:07:00 | 000,021,256 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\VirusScan Enterprise\engineserver.exe PRC - [2009-02-09 09:34:32 | 000,143,360 | ---- | M] (Brother Industries, Ltd.) -- C:\Program Files\Brother\Brmfcmon\BrMfimon.exe PRC - [2009-02-01 01:43:30 | 000,049,250 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\hidfind.exe PRC - [2009-01-16 16:00:00 | 000,226,624 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\Common Framework\naPrdMgr.exe PRC - [2009-01-16 16:00:00 | 000,136,512 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\Common Framework\UdaterUI.exe PRC - [2009-01-16 16:00:00 | 000,103,744 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\Common Framework\FrameworkService.exe PRC - [2009-01-16 16:00:00 | 000,091,456 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\Common Framework\McTray.exe PRC - [2008-08-12 11:24:46 | 000,114,688 | ---- | M] (Brother Industries, Ltd.) -- C:\Program Files\Brother\ControlCenter3\BrCtrCen.exe PRC - [2008-04-15 14:00:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2008-04-15 14:00:00 | 000,026,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\userinit.exe PRC - [2007-03-26 12:30:12 | 000,053,248 | ---- | M] (HP) -- C:\Program Files\HP\ToolBoxFX\bin\HPTLBXFX.exe PRC - [2004-04-01 16:48:14 | 000,032,862 | ---- | M] (Check Point Software Technologies) -- C:\Program Files\CheckPoint\SecuRemote\bin\SR_Watchdog.exe PRC - [2004-04-01 16:48:08 | 001,667,161 | ---- | M] (Check Point Software Technologies) -- C:\Program Files\CheckPoint\SecuRemote\bin\SR_GUI.exe PRC - [2004-04-01 16:48:04 | 000,106,589 | ---- | M] (Check Point Software Technologies) -- C:\Program Files\CheckPoint\SecuRemote\bin\SR_Service.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2012-06-15 07:57:38 | 000,212,992 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\8b84bb74d7724e147a642a1d5358feb7\System.ServiceProcess.ni.dll MOD - [2012-06-15 07:57:31 | 011,817,472 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\dbc413807cb7360b3e26ef3ca1d54f9a\System.Web.ni.dll MOD - [2012-06-15 07:57:01 | 012,433,920 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\01abbadafaf265d9f4ac9bbb247acb98\System.Windows.Forms.ni.dll MOD - [2012-06-15 07:56:54 | 001,592,320 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\d86f2038209a4cf0d0f5b30f6375c9b2\System.Drawing.ni.dll MOD - [2012-06-15 07:55:55 | 000,372,736 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll MOD - [2012-06-15 07:47:11 | 000,843,776 | ---- | M] () -- c:\windows\assembly\nativeimages1_v1.1.4322\system.drawing\1.0.5000.0__b03f5f7f11d50a3a_5775561a\system.drawing.dll MOD - [2012-06-15 07:47:04 | 003,035,136 | ---- | M] () -- c:\windows\assembly\nativeimages1_v1.1.4322\system.windows.forms\1.0.5000.0__b77a5c561934e089_18b10ab4\system.windows.forms.dll MOD - [2012-06-15 07:46:56 | 000,471,040 | ---- | M] () -- c:\windows\assembly\gac\system.drawing\1.0.5000.0__b03f5f7f11d50a3a\system.drawing.dll MOD - [2012-05-14 10:07:38 | 000,170,496 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\IsdiInterop\376f50398538ba8bd2f6268d93f3a21f\IsdiInterop.ni.dll MOD - [2012-05-14 10:07:35 | 000,998,400 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Management\9080c8e8e7b6dfb502c1328673d636f8\System.Management.ni.dll MOD - [2012-05-14 10:07:34 | 000,453,120 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\IAStorUtil\622607546fd59dc29861d64cd13296c8\IAStorUtil.ni.dll MOD - [2012-05-14 10:07:34 | 000,176,128 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\IAStorDataMgr\f81cd4ce5995e58cd97033f579ae7c9d\IAStorDataMgr.ni.dll MOD - [2012-05-14 10:07:33 | 000,019,968 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\IAStorDataMgrSvc\3fd9b9e3d91914329f8416fd8a5fc449\IAStorDataMgrSvc.ni.exe MOD - [2012-05-14 09:04:11 | 000,771,584 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\92d58f840f549f9bd880783d43db7e3c\System.Runtime.Remoting.ni.dll MOD - [2012-05-14 09:03:07 | 003,325,440 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\WindowsBase\6d8bef0d008389874e55c0308f0c18e5\WindowsBase.ni.dll MOD - [2012-05-14 09:02:59 | 005,450,752 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\3bba1b8b0b5ef0be238b011cc7a0575e\System.Xml.ni.dll MOD - [2012-05-14 09:02:54 | 000,971,264 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\3d5b7368bde0f65aa15d9f46b498cc89\System.Configuration.ni.dll MOD - [2012-05-14 09:02:51 | 007,953,408 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\e4b5afc4da43b1c576f9322f9f2e1bfe\System.ni.dll MOD - [2012-05-14 09:02:42 | 011,492,352 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\e337c89bc9f81b69d7237aa70e935900\mscorlib.ni.dll MOD - [2012-03-02 10:50:52 | 000,237,568 | ---- | M] () -- c:\windows\assembly\gac\mscorlib.resources\1.0.5000.0_pl_b77a5c561934e089\mscorlib.resources.dll MOD - [2012-01-12 08:25:50 | 003,391,488 | ---- | M] () -- c:\windows\assembly\nativeimages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_c5a53595\mscorlib.dll MOD - [2012-01-12 08:25:43 | 002,088,960 | ---- | M] () -- c:\windows\assembly\nativeimages1_v1.1.4322\system.xml\1.0.5000.0__b77a5c561934e089_8e6ca3da\system.xml.dll MOD - [2012-01-12 08:25:31 | 001,966,080 | ---- | M] () -- c:\windows\assembly\nativeimages1_v1.1.4322\system\1.0.5000.0__b77a5c561934e089_84f52dd2\system.dll MOD - [2012-01-12 08:25:23 | 001,232,896 | ---- | M] () -- c:\windows\assembly\gac\system\1.0.5000.0__b77a5c561934e089\system.dll MOD - [2012-01-12 08:25:22 | 002,064,384 | ---- | M] () -- c:\windows\assembly\gac\system.windows.forms\1.0.5000.0__b77a5c561934e089\system.windows.forms.dll MOD - [2010-08-12 23:25:17 | 000,046,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\Status Lib\1.6.401.18795__f25c74fcad379103\Status Lib.dll MOD - [2010-08-12 23:25:17 | 000,014,240 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\StatusInterfaces\1.6.401.18794__4ca2a925deedf37d\StatusInterfaces.dll MOD - [2010-08-12 23:15:06 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.ServiceProcess.resources\2.0.0.0_pl_b03f5f7f11d50a3a\System.ServiceProcess.resources.dll MOD - [2010-08-12 23:15:05 | 000,311,296 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pl_b77a5c561934e089\mscorlib.resources.dll MOD - [2010-03-04 03:08:58 | 000,058,880 | ---- | M] () -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll MOD - [2010-02-26 04:59:02 | 002,860,384 | ---- | M] () -- C:\WINDOWS\system32\btwicons.dll MOD - [2010-02-26 04:59:02 | 000,075,112 | ---- | M] () -- C:\Program Files\WIDCOMM\Bluetooth Software\BTKeyInd.dll MOD - [2010-02-05 14:42:00 | 000,934,912 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\curllibRD.dll MOD - [2010-02-05 14:42:00 | 000,734,720 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\ZipArchive.dll MOD - [2010-02-05 14:42:00 | 000,570,368 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\Maps Service API.dll MOD - [2010-02-03 13:23:00 | 000,245,040 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\OviShareLib.dll MOD - [2010-01-10 19:01:26 | 000,060,928 | ---- | M] () -- C:\Program Files\STMicroelectronics\AccelerometerP11\InstallFilterService.exe MOD - [2009-12-21 03:42:16 | 000,176,235 | ---- | M] () -- C:\WINDOWS\system32\Primomonnt.dll MOD - [2009-12-17 12:24:46 | 000,147,264 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\noaipcclient.dll MOD - [2009-12-17 12:23:54 | 000,272,896 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\nokiaaserver.exe MOD - [2009-12-08 15:30:26 | 000,161,792 | ---- | M] () -- C:\Program Files\PC Connectivity Solution\PCCSUpdater.dll MOD - [2009-11-19 22:47:10 | 000,249,856 | ---- | M] () -- C:\WINDOWS\system32\wxvault.dll MOD - [2009-11-13 15:17:00 | 000,010,752 | ---- | M] () -- C:\WINDOWS\system32\Wavx_ESC_Logging.dll MOD - [2009-08-31 12:33:34 | 000,016,384 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\qtsecurestorage.dll MOD - [2009-08-31 12:33:32 | 000,014,336 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\cryptodll.dll MOD - [2009-08-31 12:33:32 | 000,013,824 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\qtsecurestorageserver.dll MOD - [2009-08-31 12:11:16 | 000,025,088 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\wrtserviceipcserver.dll MOD - [2009-08-24 12:29:52 | 002,013,184 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\QtCore4.dll MOD - [2009-06-20 12:21:30 | 007,464,448 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\QtGui4.dll MOD - [2009-06-20 12:10:32 | 000,875,520 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\QtNetwork4.dll MOD - [2009-06-20 12:09:26 | 000,337,408 | ---- | M] () -- C:\Program Files\Common Files\Nokia\NoA\QtXml4.dll MOD - [2009-06-09 17:17:32 | 000,019,968 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\wrtserviceipcclient.dll MOD - [2009-03-30 16:46:00 | 002,070,016 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\QtCore4.dll MOD - [2009-02-27 20:04:20 | 000,311,296 | ---- | M] () -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\pdfshell.POL MOD - [2009-02-26 11:17:06 | 000,022,016 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\Imageformats\qgif4.dll MOD - [2009-02-26 10:23:56 | 000,246,784 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\QtSvg4.dll MOD - [2009-02-26 10:14:34 | 007,497,216 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\QtGui4.dll MOD - [2009-02-26 10:05:38 | 000,872,960 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\QtNetwork4.dll MOD - [2009-02-26 10:04:48 | 000,319,488 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\QtXml4.dll MOD - [2009-01-20 14:02:32 | 000,131,072 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\Imageformats\qjpeg1.dll MOD - [2009-01-20 14:02:32 | 000,013,824 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\Imageformats\qsvg1.dll MOD - [2009-01-16 16:00:00 | 000,057,344 | ---- | M] () -- C:\Program Files\McAfee\Common Framework\boost_thread-vc71-mt-1_32.dll MOD - [2008-12-25 12:36:32 | 000,139,264 | ---- | M] () -- C:\Program Files\Brother\BrUtilities\BrLogAPI.dll MOD - [2008-11-12 20:24:40 | 000,004,608 | ---- | M] () -- C:\Program Files\NTRU Cryptosystems\NTRU TCG Software Stack\bin\TspPopup_ENU.dll MOD - [2008-05-09 07:06:14 | 001,339,392 | ---- | M] () -- c:\windows\assembly\gac\system.xml\1.0.5000.0__b77a5c561934e089\system.xml.dll MOD - [2008-05-09 07:06:14 | 000,372,736 | ---- | M] () -- c:\windows\assembly\gac\system.management\1.0.5000.0__b03f5f7f11d50a3a\system.management.dll MOD - [2008-05-09 07:06:13 | 000,323,584 | ---- | M] () -- c:\windows\assembly\gac\system.runtime.remoting\1.0.5000.0__b77a5c561934e089\system.runtime.remoting.dll MOD - [2008-05-09 07:06:11 | 000,131,072 | ---- | M] () -- c:\windows\assembly\gac\system.runtime.serialization.formatters.soap\1.0.5000.0__b03f5f7f11d50a3a\system.runtime.serialization.formatters.soap.dll MOD - [2008-04-15 14:00:00 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll MOD - [2007-03-26 12:29:32 | 000,053,248 | ---- | M] () -- C:\Program Files\HP\ToolBoxFX\bin\NativeUtils.dll MOD - [2005-08-22 15:38:16 | 003,264,512 | ---- | M] () -- C:\Program Files\McAfee\Common Framework\cryptocme2.dll MOD - [2005-07-20 11:48:10 | 000,059,904 | ---- | M] () -- C:\Program Files\Nokia\Nokia Ovi Suite\zlib1.dll MOD - [2004-04-01 16:48:20 | 000,073,808 | ---- | M] () -- C:\Program Files\CheckPoint\SecuRemote\bin\Bind82.dll MOD - [2002-11-26 13:43:18 | 000,106,496 | ---- | M] () -- C:\WINDOWS\system32\BrMuSNMP.dll MOD - [2001-10-28 18:42:30 | 000,116,224 | ---- | M] () -- C:\WINDOWS\system32\pdfcmnnt.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2012-07-26 19:40:56 | 000,794,560 | ---- | M] (Spigot, Inc.) [Auto | Running] -- C:\Program Files\Application Updater\ApplicationUpdater.exe -- (Application Updater) SRV - [2012-07-03 13:46:44 | 000,655,944 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService) SRV - [2011-02-22 06:59:46 | 000,660,848 | ---- | M] (Juniper Networks) [Auto | Running] -- C:\Program Files\Juniper Networks\Common Files\dsNcService.exe -- (dsNcService) SRV - [2010-09-03 15:07:46 | 000,173,352 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe -- (TeamViewer5) SRV - [2010-04-05 11:19:22 | 000,229,458 | ---- | M] (IDT, Inc.) [Auto | Running] -- c:\drivers\audio\R267815\payload\WDM\stacsv.exe -- (STacSV) SRV - [2010-03-04 03:16:06 | 000,013,336 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc) SRV - [2010-01-26 13:41:08 | 000,652,800 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2010-01-10 19:01:26 | 000,060,928 | ---- | M] () [Auto | Running] -- C:\Program Files\STMicroelectronics\AccelerometerP11\InstallFilterService.exe -- (InstallFilterService) SRV - [2009-12-17 17:45:18 | 000,812,448 | ---- | M] (Broadcom Corporation) [Auto | Running] -- C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe -- (Credential Vault Host Control Service) SRV - [2009-12-17 17:45:18 | 000,027,040 | ---- | M] (Broadcom Corporation) [Auto | Running] -- C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe -- (Credential Vault Host Storage) SRV - [2009-12-10 20:09:28 | 000,376,608 | ---- | M] (Dell Inc.) [Auto | Running] -- c:\Program Files\Dell\Dell ControlPoint\System Manager\DCPSysMgrSvc.exe -- (dcpsysmgrsvc) SRV - [2009-11-24 22:48:36 | 001,148,264 | ---- | M] (Wave Systems Corp.) [Auto | Running] -- C:\Program Files\Wave Systems Corp\Trusted Drive Manager\TdmService.exe -- (TdmService) SRV - [2009-11-21 00:42:48 | 000,278,304 | ---- | M] (Dell Inc.) [Auto | Running] -- c:\Program Files\Dell\Dell ControlPoint\DCPButtonSvc.exe -- (buttonsvc32) SRV - [2009-11-18 23:35:48 | 001,032,192 | ---- | M] (Wave Systems Corp.) [On_Demand | Stopped] -- C:\Program Files\Wave Systems Corp\Secure Storage Manager\SecureStorageService.exe -- (SecureStorageService) SRV - [2009-09-21 21:55:12 | 000,858,384 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng) SRV - [2009-09-21 21:50:04 | 000,364,544 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\WLKEEPER.exe -- (WLANKEEPER) SRV - [2009-09-21 21:44:48 | 000,954,368 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\S24EvMon.exe -- (S24EventMonitor) SRV - [2009-09-21 21:31:36 | 000,473,360 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc) SRV - [2009-08-31 20:07:00 | 000,146,448 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\McAfee\VirusScan Enterprise\mcshield.exe -- (McShield) SRV - [2009-08-31 20:07:00 | 000,070,728 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\WINDOWS\system32\mfevtps.exe -- (mfevtp) SRV - [2009-08-31 20:07:00 | 000,066,896 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\McAfee\VirusScan Enterprise\vstskmgr.exe -- (McTaskManager) SRV - [2009-08-31 20:07:00 | 000,021,256 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\McAfee\VirusScan Enterprise\engineserver.exe -- (McAfeeEngineService) SRV - [2009-01-16 16:00:00 | 000,103,744 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\McAfee\Common Framework\FrameworkService.exe -- (McAfeeFramework) SRV - [2008-11-12 20:25:48 | 001,273,856 | ---- | M] () [Auto | Stopped] -- C:\Program Files\NTRU Cryptosystems\NTRU TCG Software Stack\bin\tcsd_win32.exe -- (tcsd_win32.exe) SRV - [2004-04-01 16:48:14 | 000,032,862 | ---- | M] (Check Point Software Technologies) [Auto | Running] -- C:\Program Files\CheckPoint\SecuRemote\bin\SR_Watchdog.exe -- (SR_WatchDog) SRV - [2004-04-01 16:48:04 | 000,106,589 | ---- | M] (Check Point Software Technologies) [Auto | Running] -- C:\Program Files\CheckPoint\SecuRemote\bin\SR_Service.exe -- (SR_Service) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - [2012-07-03 13:46:44 | 000,022,344 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector) DRV - [2011-02-22 06:36:54 | 000,026,624 | ---- | M] (Juniper Networks) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\dsNcAdpt.sys -- (dsNcAdpt) DRV - [2010-05-12 22:17:00 | 000,255,096 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Apfiltr.sys -- (ApfiltrService) DRV - [2010-04-05 11:19:24 | 001,656,499 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sthda.sys -- (STHDA) DRV - [2010-04-05 11:18:44 | 000,113,664 | ---- | M] (Andrea Electronics Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AESTAud.sys -- (AESTAud) DRV - [2010-03-21 13:25:04 | 000,059,904 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\risdpe86.sys -- (risdpcie) DRV - [2010-03-04 12:42:00 | 000,911,400 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btkrnl.sys -- (BTKRNL) DRV - [2010-03-04 12:42:00 | 000,556,200 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btaudio.sys -- (btaudio) DRV - [2010-03-04 12:42:00 | 000,118,440 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btwdndis.sys -- (BTWDNDIS) DRV - [2010-03-04 12:42:00 | 000,047,656 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btwusb.sys -- (BTWUSB) DRV - [2010-03-04 12:42:00 | 000,037,160 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btport.sys -- (BTDriver) DRV - [2010-03-04 12:42:00 | 000,037,032 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btwmodem.sys -- (btwmodem) DRV - [2010-02-26 19:31:22 | 000,132,480 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Impcd.sys -- (Impcd) DRV - [2010-01-21 15:53:16 | 000,018,048 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2010-01-19 08:50:10 | 000,235,520 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\IntcDAud.sys -- (IntcDAud) DRV - [2010-01-18 14:56:26 | 000,042,672 | ---- | M] (ST Microelectronics) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Accelern.sys -- (Acceler) DRV - [2010-01-18 14:56:26 | 000,017,072 | ---- | M] (ST Microelectronics) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\stdfltn.sys -- (stdflt) DRV - [2010-01-14 21:47:18 | 000,214,656 | ---- | M] (Wave Systems Corp.) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\WavxDMgr.sys -- (WavxDMgr) DRV - [2009-12-30 12:30:56 | 000,007,936 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2009-12-30 12:30:48 | 000,022,016 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2009-12-30 12:30:48 | 000,007,936 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2009-12-10 12:33:34 | 000,167,080 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\e1k5132.sys -- (e1kexpress) DRV - [2009-12-08 19:09:44 | 000,273,568 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\OA015Vid.sys -- (OA015Vid) DRV - [2009-11-03 23:40:42 | 000,033,832 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\cvusbdrv.sys -- (cvusbdrv) DRV - [2009-10-14 18:29:54 | 000,030,880 | ---- | M] (Intel Corporation ) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\iqvw32.sys -- (NAL) DRV - [2009-09-16 23:07:42 | 000,144,576 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\CtClsFlt.sys -- (CtClsFlt) DRV - [2009-09-15 18:34:10 | 005,977,216 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NETw5x32.sys -- (NETw5x32) DRV - [2009-08-31 20:07:00 | 000,343,664 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\mfehidk.sys -- (mfehidk) DRV - [2009-08-31 20:07:00 | 000,091,672 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mfeavfk.sys -- (mfeavfk) DRV - [2009-08-31 20:07:00 | 000,075,704 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mfeapfk.sys -- (mfeapfk) DRV - [2009-08-31 20:07:00 | 000,065,448 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mferkdet.sys -- (mferkdet) DRV - [2009-08-31 20:07:00 | 000,063,728 | ---- | M] (McAfee, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\mfetdik.sys -- (mfetdik) DRV - [2009-08-31 20:07:00 | 000,043,288 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mfebopk.sys -- (mfebopk) DRV - [2009-08-10 07:46:38 | 000,013,952 | ---- | M] (Intel Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\s24trans.sys -- (s24trans) DRV - [2009-05-28 17:48:20 | 000,134,144 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\CtAudDrv.sys -- (CtAudDrv) DRV - [2009-05-28 11:48:20 | 000,134,144 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\OA015Afx.sys -- (OA015Afx) DRV - [2009-04-15 17:49:48 | 000,028,672 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\usbccid.sys -- (USBCCID) DRV - [2008-08-26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008-06-04 20:14:00 | 000,026,608 | ---- | M] (Dell Inc) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\PBADRV.sys -- (PBADRV) DRV - [2004-04-01 16:48:24 | 000,670,128 | ---- | M] (Check Point Software Technologies) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\vpn.sys -- (VPN-1) DRV - [2004-04-01 16:48:18 | 002,041,744 | ---- | M] (Check Point Software Technologies) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\fw.sys -- (FW1) DRV - [2004-04-01 16:48:06 | 000,017,424 | ---- | M] (Check Point Software Technologies) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\scap.sys -- (Scap) DRV - [2004-04-01 16:48:04 | 000,014,924 | ---- | M] (Check Point Software Technologies) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\OMVA.sys -- (OMVA) DRV - [2000-11-25 11:38:48 | 000,095,484 | ---- | M] (DATOM Dariusz Cielebąk) [Kernel | Auto | Stopped] -- C:\WINDOWS\System32\drivers\KMM4XNT.SYS -- (Kmm4xNT) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = pl.v9.com/idg/idg_1343720470_925070 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Help_Page = http://support.euro.dell.com/support/index.aspx?c=pl&l=pl&s=pad IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = pl.v9.com/idg/idg_1343720470_925070 IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = pl.v9.com/idg/idg_1343720470_925070 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = pl.v9.com/idg/idg_1343720470_925070 IE - HKCU\..\URLSearchHook: {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\6.2\pdfforgeToolbarIE.dll (Spigot, Inc.) IE - HKCU\..\SearchScopes,DefaultScope = {91EA2C0B-5ED0-405E-A6C4-59F5BA07D551} IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC IE - HKCU\..\SearchScopes\{91EA2C0B-5ED0-405E-A6C4-59F5BA07D551}: "URL" = http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=827316&p={searchTerms} IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\ [2012-02-07 09:25:19 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\{CCB7D94B-CA92-4E3F-B79D-ADE0F07ADC74}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Thunderbird Connector\ThunderbirdExtension\ [2012-02-07 09:25:21 | 000,000,000 | ---D | M] O1 HOSTS File: ([2012-07-27 16:56:01 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan Enterprise\scriptsn.dll (McAfee, Inc.) O2 - BHO: (pdfforge Toolbar) - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\6.2\pdfforgeToolbarIE.dll (Spigot, Inc.) O3 - HKLM\..\Toolbar: (pdfforge Toolbar) - {B922D405-6D13-4A2B-AE89-08A030DA4402} - C:\Program Files\pdfforge Toolbar\IE\6.2\pdfforgeToolbarIE.dll (Spigot, Inc.) O4 - HKLM..\Run: [] File not found O4 - HKLM..\Run: [AESTFltr] C:\WINDOWS\System32\AESTFltr.exe (Andrea Electronics Corporation) O4 - HKLM..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe (Alps Electric Co., Ltd.) O4 - HKLM..\Run: [ControlCenter2.0] C:\Program Files\Brother\ControlCenter2\brctrcen.exe (Brother Industries, Ltd.) O4 - HKLM..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe (Brother Industries, Ltd.) O4 - HKLM..\Run: [Dell Webcam Central] C:\Program Files\Dell Webcam\Dell Webcam Central\WebcamDell2.exe (Creative Technology Ltd) O4 - HKLM..\Run: [DellControlPoint] C:\Program Files\Dell\Dell ControlPoint\Dell.ControlPoint.exe (Dell Inc.) O4 - HKLM..\Run: [IAStorIcon] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) O4 - HKLM..\Run: [IntelWireless] C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Intel(R) Corporation) O4 - HKLM..\Run: [IntelZeroConfig] C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe (Intel(R) Corporation) O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation) O4 - HKLM..\Run: [McAfeeUpdaterUI] C:\Program Files\McAfee\Common Framework\udaterui.exe (McAfee, Inc.) O4 - HKLM..\Run: [NokiaMServer] C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe (Nokia) O4 - HKLM..\Run: [OA015Mon] C:\WINDOWS\OA015Mon.exe (Creative Technology Ltd.) O4 - HKLM..\Run: [PDVDDXSrv] C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe (CyberLink Corp.) O4 - HKLM..\Run: [SearchSettings] C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe (Spigot, Inc.) O4 - HKLM..\Run: [ShStatEXE] C:\Program Files\McAfee\VirusScan Enterprise\SHSTAT.EXE (McAfee, Inc.) O4 - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe (IDT, Inc.) O4 - HKLM..\Run: [ToolBoxFX] C:\Program Files\HP\ToolBoxFX\bin\HPTLBXFX.exe (HP) O4 - HKLM..\Run: [USCService] C:\Program Files\Dell\Dell ControlPoint\Security Manager\BcmDeviceAndTaskStatusService.exe (Broadcom Corporation) O4 - HKLM..\Run: [WavXMgr] C:\Program Files\Wave Systems Corp\Services Manager\DocMgr\bin\WavXDocMgr.exe (Wave Systems Corp.) O4 - HKCU..\Run: [NokiaOviSuite2] C:\Program Files\Nokia\Nokia Ovi Suite\NokiaOviSuite.exe (Nokia) O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Bluetooth.lnk = C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.) O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\TdmNotify.lnk = C:\Program Files\Wave Systems Corp\Trusted Drive Manager\TdmNotify.exe (Wave Systems Corp.) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0 O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O8 - Extra context menu item: Send to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm () O8 - Extra context menu item: Send To Bluetooth - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm () O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm () O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm () O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20) O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20) O16 - DPF: {E5F5D008-DD2C-4D32-977D-1A0ADF03058B} https://vpnssl.bouygues-construction.com/dana-cached/setup/JuniperSetupSP1.cab (JuniperSetupControlXP Class) O16 - DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} https://vpnssl.bouygues-construction.com/dana-cached/sc/JuniperSetupClient.cab (JuniperSetupClientControl Class) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = intl.bycn O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{FF7C3824-8619-4EB3-ABF8-0BF58856F4E9}: DhcpNameServer = 217.30.129.149 217.30.137.200 172.16.0.1 O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - Winlogon\Notify\ckpNotify: DllName - (ckpNotify.dll) - C:\WINDOWS\System32\ckpNotify.dll (Check Point Software Technologies) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MsnlNamespaceMgr.dll (Microsoft Corporation) O30 - LSA: Authentication Packages - (wvauth) - C:\WINDOWS\System32\wvauth.dll (Wave Systems Corp.) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-09-09 14:48:25 | 000,000,000 | ---D | M] - C:\Autodesk -- [ NTFS ] O32 - AutoRun File - [2008-05-09 06:58:41 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-07-31 13:48:32 | 000,597,504 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\pdabrowski\Pulpit\OTL.exe [2012-07-31 13:32:51 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\pdabrowski\IECompatCache [2012-07-31 12:30:37 | 000,000,000 | ---D | C] -- C:\_OTL [2012-07-31 09:42:18 | 000,000,000 | ---D | C] -- C:\Program Files\HitmanPro [2012-07-31 09:41:12 | 007,742,968 | ---- | C] (SurfRight B.V.) -- C:\Documents and Settings\pdabrowski\Pulpit\HitmanPro36beta.exe [2012-07-31 09:41:10 | 000,000,000 | ---D | C] -- C:\Program Files\v9Soft [2012-07-31 08:28:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\HitmanPro [2012-07-31 08:28:24 | 007,750,160 | ---- | C] (SurfRight B.V.) -- C:\Documents and Settings\pdabrowski\Pulpit\HitmanPro36.exe [2012-07-31 08:18:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pdabrowski\Dane aplikacji\Search Settings [2012-07-31 08:18:18 | 000,000,000 | ---D | C] -- C:\Program Files\Application Updater [2012-07-31 08:18:17 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Spigot [2012-07-31 08:18:17 | 000,000,000 | ---D | C] -- C:\Program Files\pdfforge Toolbar [2012-07-30 15:09:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pdabrowski\Dane aplikacji\Malwarebytes [2012-07-30 15:08:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Malwarebytes' Anti-Malware [2012-07-30 15:08:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes [2012-07-30 15:08:44 | 000,022,344 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys [2012-07-30 15:08:44 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware [2012-07-30 15:08:19 | 010,652,120 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\pdabrowski\Pulpit\mbam-setup-1.62.0.1300.exe [2012-07-30 14:56:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss [2012-07-13 11:42:29 | 000,000,000 | -HSD | C] -- C:\RECYCLER [2012-07-13 11:07:30 | 000,000,000 | RHSD | C] -- C:\cmdcons [2012-07-13 10:54:09 | 000,000,000 | R--D | C] -- C:\Documents and Settings\pdabrowski\Menu Start\Programy\Narzędzia administracyjne [2012-07-13 10:53:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\erdnt [2012-07-12 11:16:59 | 001,522,176 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\BrWia08a.dll [2012-07-12 11:15:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pdabrowski\Pulpit\mflpro [2012-07-12 11:08:50 | 042,598,183 | ---- | C] (A.I.SOFT,INC.) -- C:\Documents and Settings\pdabrowski\Pulpit\6690-INST-B1.EXE [2012-07-03 14:28:57 | 000,122,880 | ---- | C] (Brother Industries,LTD) -- C:\WINDOWS\System32\BrfxD04a.dll [2012-07-03 13:47:46 | 000,188,416 | ---- | C] (brother) -- C:\WINDOWS\System32\PDRVINST.DLL [2012-07-03 13:47:46 | 000,081,920 | ---- | C] (brother) -- C:\WINDOWS\System32\BrWebIns.dll [2012-07-03 13:47:46 | 000,065,536 | ---- | C] (brother) -- C:\WINDOWS\System32\BRWEBUP.EXE [2012-07-03 13:47:43 | 000,120,832 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\BrWia04b.dll [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-07-31 13:50:01 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\pdabrowski\Ustawienia lokalne\Dane aplikacji\WavXMapDrive.bat [2012-07-31 13:49:56 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2012-07-31 13:48:43 | 000,597,504 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\pdabrowski\Pulpit\OTL.exe [2012-07-31 12:34:33 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2012-07-31 12:34:30 | 3680,391,168 | -HS- | M] () -- C:\hiberfil.sys [2012-07-31 12:34:30 | 000,415,064 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2012-07-31 09:41:32 | 007,742,968 | ---- | M] (SurfRight B.V.) -- C:\Documents and Settings\pdabrowski\Pulpit\HitmanPro36beta.exe [2012-07-31 09:40:54 | 001,242,736 | ---- | M] () -- C:\Documents and Settings\pdabrowski\Pulpit\hitmanpro_idg_downloader_43579_pc.exe [2012-07-31 08:28:27 | 007,750,160 | ---- | M] (SurfRight B.V.) -- C:\Documents and Settings\pdabrowski\Pulpit\HitmanPro36.exe [2012-07-30 15:08:51 | 000,000,786 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Malwarebytes Anti-Malware.lnk [2012-07-30 15:08:28 | 010,652,120 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\pdabrowski\Pulpit\mbam-setup-1.62.0.1300.exe [2012-07-27 16:56:10 | 000,527,924 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2012-07-27 16:56:10 | 000,446,152 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2012-07-27 16:56:10 | 000,100,428 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2012-07-27 16:56:10 | 000,073,358 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2012-07-27 16:56:01 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts [2012-07-13 11:07:38 | 000,000,327 | RHS- | M] () -- C:\boot.ini [2012-07-12 13:33:45 | 114,245,120 | ---- | M] () -- C:\Documents and Settings\pdabrowski\Pulpit\avast_pro_antivirus_setup.exe [2012-07-12 11:17:56 | 000,001,783 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Brother Creative Center.lnk [2012-07-12 11:17:39 | 000,000,813 | ---- | M] () -- C:\WINDOWS\BRWMARK.INI [2012-07-12 11:17:39 | 000,000,027 | ---- | M] () -- C:\WINDOWS\BRPP2KA.INI [2012-07-12 11:17:11 | 000,000,050 | ---- | M] () -- C:\WINDOWS\System32\bridf08a.dat [2012-07-12 11:08:52 | 042,598,183 | ---- | M] (A.I.SOFT,INC.) -- C:\Documents and Settings\pdabrowski\Pulpit\6690-INST-B1.EXE [2012-07-12 11:02:41 | 000,000,065 | ---- | M] () -- C:\WINDOWS\System32\BD7010.dat [2012-07-12 08:07:39 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2012-07-03 13:46:44 | 000,022,344 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-07-31 09:40:46 | 001,242,736 | ---- | C] () -- C:\Documents and Settings\pdabrowski\Pulpit\hitmanpro_idg_downloader_43579_pc.exe [2012-07-30 15:08:51 | 000,000,786 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Malwarebytes Anti-Malware.lnk [2012-07-13 11:07:38 | 000,000,211 | ---- | C] () -- C:\Boot.bak [2012-07-13 11:07:35 | 000,262,400 | RHS- | C] () -- C:\cmldr [2012-07-12 13:33:38 | 114,245,120 | ---- | C] () -- C:\Documents and Settings\pdabrowski\Pulpit\avast_pro_antivirus_setup.exe [2012-07-12 11:17:56 | 000,001,783 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Brother Creative Center.lnk [2012-07-12 11:17:39 | 000,000,027 | ---- | C] () -- C:\WINDOWS\BRPP2KA.INI [2012-07-12 11:17:11 | 000,000,050 | ---- | C] () -- C:\WINDOWS\System32\bridf08a.dat [2012-07-03 13:48:16 | 000,000,065 | ---- | C] () -- C:\WINDOWS\System32\BD7010.dat [2012-05-17 16:20:52 | 000,492,872 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2012-03-02 10:48:59 | 000,000,133 | ---- | C] () -- C:\WINDOWS\System32\AddPort.ini [2012-03-02 10:48:09 | 000,000,835 | ---- | C] () -- C:\WINDOWS\hpntwksetup.ini [2012-03-02 10:42:31 | 000,132,800 | ---- | C] () -- C:\WINDOWS\hppins02.dat [2012-03-02 10:42:31 | 000,001,883 | ---- | C] () -- C:\WINDOWS\hppmdl02.dat [2012-02-23 14:18:18 | 000,116,224 | ---- | C] () -- C:\WINDOWS\System32\pdfcmnnt.dll [2012-02-17 08:49:17 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll [2011-05-06 13:13:46 | 000,000,813 | ---- | C] () -- C:\WINDOWS\BRWMARK.INI [2011-05-06 13:13:25 | 000,000,228 | ---- | C] () -- C:\WINDOWS\Brpfx04a.ini [2011-05-06 13:13:25 | 000,000,094 | ---- | C] () -- C:\WINDOWS\brpcfx.ini [2011-05-06 13:13:25 | 000,000,050 | ---- | C] () -- C:\WINDOWS\System32\bd8370dn.dat [2011-05-06 13:12:04 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\BRTCPCON.DLL [2011-05-06 13:12:03 | 000,000,114 | ---- | C] () -- C:\WINDOWS\System32\BRLMW03A.INI [2011-05-06 13:12:02 | 000,000,050 | ---- | C] () -- C:\WINDOWS\System32\BRADM08A.DAT [2011-05-06 13:12:00 | 000,000,000 | ---- | C] () -- C:\WINDOWS\brdfxspd.dat [2011-05-06 13:11:58 | 000,106,496 | ---- | C] () -- C:\WINDOWS\System32\BrMuSNMP.dll [2011-05-06 13:03:47 | 000,031,767 | ---- | C] () -- C:\WINDOWS\maxlink.ini [2010-09-10 11:02:52 | 000,002,516 | ---- | C] () -- C:\WINDOWS\System32\drivers\default.bin [2010-09-10 11:02:52 | 000,002,516 | ---- | C] () -- C:\WINDOWS\System32\default.bin [2010-09-10 11:02:28 | 000,106,587 | ---- | C] () -- C:\WINDOWS\System32\fwnetcfg.dll [2010-09-10 11:02:24 | 000,004,133 | ---- | C] () -- C:\WINDOWS\entrust.ini [2010-09-10 11:01:47 | 000,176,235 | ---- | C] () -- C:\WINDOWS\System32\Primomonnt.dll [2010-09-10 09:41:42 | 000,159,744 | ---- | C] () -- C:\WINDOWS\System32\EnoJbig.dll [2010-09-10 09:41:42 | 000,150,016 | ---- | C] () -- C:\WINDOWS\System32\Tiff.dll [2010-09-09 12:27:02 | 000,000,421 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2010-09-09 11:36:42 | 000,013,404 | RHS- | C] () -- C:\Documents and Settings\All Users\ntuser.pol [2010-09-08 12:55:50 | 000,000,135 | ---- | C] () -- C:\Documents and Settings\pdabrowski\Ustawienia lokalne\Dane aplikacji\fusioncache.dat [2010-09-08 12:55:50 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\pdabrowski\Ustawienia lokalne\Dane aplikacji\WavXMapDrive.bat [2010-08-13 02:00:52 | 000,077,824 | ---- | C] () -- C:\WINDOWS\setpwr32.exe [2010-08-13 02:00:23 | 000,870,560 | ---- | C] () -- C:\WINDOWS\System32\igkrng575.bin [2010-08-13 02:00:23 | 000,127,868 | ---- | C] () -- C:\WINDOWS\System32\igcompkrng575.bin [2010-08-13 02:00:23 | 000,004,096 | ---- | C] ( ) -- C:\WINDOWS\System32\IGFXDEVLib.dll [2010-08-13 02:00:23 | 000,000,151 | ---- | C] () -- C:\WINDOWS\System32\GfxUI.exe.config [2010-08-13 01:58:20 | 000,001,308 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI [2010-08-12 23:32:23 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini [2010-08-12 23:18:34 | 000,308,624 | ---- | C] () -- C:\WINDOWS\System32\brcmbsp.dll [2010-08-12 23:18:34 | 000,206,216 | ---- | C] () -- C:\WINDOWS\System32\bipbsp.dll [2010-08-12 23:18:28 | 000,080,368 | ---- | C] () -- C:\WINDOWS\System32\pbadrvdll.dll < End of report >