OTL logfile created on: 2011-07-24 21:50:13 - Run 3 OTL by OldTimer - Version 3.2.26.1 Folder = D:\Users\Reaper\Downloads Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,25 Gb Total Physical Memory | 1,84 Gb Available Physical Memory | 56,55% Memory free 6,50 Gb Paging File | 4,94 Gb Available in Paging File | 76,04% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = D: | %SystemRoot% = D:\Windows | %ProgramFiles% = D:\Program Files Drive C: | 29,29 Gb Total Space | 1,07 Gb Free Space | 3,66% Space Free | Partition Type: NTFS Drive D: | 98,70 Gb Total Space | 10,60 Gb Free Space | 10,74% Space Free | Partition Type: NTFS Drive E: | 142,41 Gb Total Space | 0,49 Gb Free Space | 0,34% Space Free | Partition Type: NTFS Drive F: | 175,89 Gb Total Space | 13,13 Gb Free Space | 7,47% Space Free | Partition Type: NTFS Computer Name: REAPER-PRO | User Name: Reaper | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011-07-22 22:16:01 | 000,579,584 | ---- | M] (OldTimer Tools) -- D:\Users\Reaper\Downloads\OTL.exe PRC - [2011-06-30 09:19:51 | 000,924,632 | ---- | M] (Mozilla Corporation) -- D:\Program Files\Mozilla Firefox\firefox.exe PRC - [2011-05-25 17:29:54 | 001,951,112 | ---- | M] (LogMeIn Inc.) -- D:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe PRC - [2011-05-25 17:29:48 | 001,336,712 | ---- | M] (LogMeIn Inc.) -- D:\Program Files\LogMeIn Hamachi\hamachi-2.exe PRC - [2011-04-08 07:14:00 | 002,218,600 | ---- | M] (NVIDIA Corporation) -- D:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe PRC - [2011-04-07 22:43:20 | 000,373,864 | ---- | M] (NVIDIA Corporation) -- D:\Program Files\NVIDIA Corporation\Display\nvtray.exe PRC - [2011-04-07 22:43:04 | 000,841,832 | ---- | M] (NVIDIA Corporation) -- D:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe PRC - [2011-04-07 21:54:52 | 000,378,472 | ---- | M] (NVIDIA Corporation) -- D:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe PRC - [2011-02-26 07:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) -- D:\Windows\explorer.exe PRC - [2011-02-22 16:29:38 | 002,236,416 | ---- | M] () -- D:\Program Files\Vtune2\TBPANEL.exe PRC - [2011-01-27 17:51:05 | 002,253,688 | ---- | M] (TeamViewer GmbH) -- D:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe PRC - [2010-12-17 10:33:10 | 000,439,632 | ---- | M] (Trend Micro Inc.) -- D:\Program Files\Trend Micro\RUBotted\RUBotSrv.exe PRC - [2010-12-17 10:33:06 | 001,103,184 | ---- | M] (Trend Micro Inc.) -- D:\Program Files\Trend Micro\RUBotted\RUBottedGUI.exe PRC - [2010-11-11 13:55:46 | 000,159,472 | ---- | M] (Microsoft Corporation) -- D:\Program Files\Zune\ZuneLauncher.exe PRC - [2010-10-25 11:03:52 | 000,217,088 | ---- | M] (Teruten) -- D:\Windows\System32\FsUsbExService.Exe PRC - [2010-08-09 19:45:42 | 002,922,496 | ---- | M] (WhatPulse.org) -- D:\Program Files\WhatPulse\WhatPulse.exe PRC - [2010-07-22 01:24:16 | 012,477,024 | ---- | M] (GG Network S.A.) -- D:\Program Files\Gadu-Gadu 10\gg.exe PRC - [2010-07-12 18:33:54 | 001,592,672 | ---- | M] (Nullsoft, Inc.) -- D:\Program Files\Winamp\winamp.exe PRC - [2010-04-12 10:40:16 | 000,180,224 | ---- | M] (PowerISO Computing, Inc.) -- D:\Program Files\PowerISO\PWRISOVM.EXE PRC - [2010-04-07 22:07:24 | 000,810,120 | ---- | M] (ESET) -- D:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe PRC - [2010-04-07 22:07:04 | 002,145,000 | ---- | M] (ESET) -- D:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe PRC - [2010-04-01 11:16:20 | 000,357,696 | ---- | M] (DT Soft Ltd) -- D:\Program Files\DAEMON Tools Lite\DTLite.exe PRC - [2010-04-01 11:16:12 | 000,275,776 | ---- | M] (DT Soft Ltd) -- D:\Program Files\DAEMON Tools Lite\DTShellHlp.exe PRC - [2010-03-26 10:52:24 | 001,234,216 | ---- | M] (Nero AG) -- D:\Program Files\Nero\Nero 10\Nero BackItUp\NBAgent.exe PRC - [2010-03-25 14:39:22 | 000,490,280 | ---- | M] (Nero AG) -- D:\Program Files\Nero\Update\NASvc.exe PRC - [2010-01-29 23:20:26 | 000,112,208 | ---- | M] (Logitech, Inc.) -- D:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe PRC - [2010-01-27 13:30:16 | 001,312,848 | ---- | M] (Logitech, Inc.) -- D:\Program Files\Logitech\SetPointP\SetPoint.exe PRC - [2009-12-28 22:35:30 | 000,629,888 | ---- | M] (ASUSTeK Computer Inc.) -- D:\Program Files\ASUS\AASP\1.01.02\aaCenter.exe PRC - [2009-12-28 22:20:00 | 001,359,488 | ---- | M] () -- D:\Program Files\ASUS\AI Suite\EnergySaving\PwSave.exe PRC - [2009-12-28 22:19:44 | 000,633,984 | ---- | M] () -- D:\Program Files\ASUS\AI Suite\AiGear3\CpuPowerMonitor.exe PRC - [2009-12-28 22:19:32 | 001,437,312 | ---- | M] (ASUSTeK Computer Inc.) -- D:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe PRC - [2009-07-14 03:14:42 | 000,049,152 | ---- | M] (Microsoft Corporation) -- D:\Windows\System32\taskhost.exe PRC - [2009-07-14 03:14:41 | 000,354,304 | ---- | M] (Microsoft Corporation) -- D:\Windows\System32\StikyNot.exe PRC - [2009-05-15 07:35:52 | 000,935,208 | ---- | M] (Nero AG) -- D:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe PRC - [2008-06-05 10:19:18 | 000,479,232 | ---- | M] (Nikon Corporation) -- D:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe PRC - [2007-09-02 13:58:52 | 000,495,616 | ---- | M] () -- D:\Program Files\RocketDock\RocketDock.exe PRC - [2007-02-20 12:07:40 | 000,199,752 | ---- | M] (Pinnacle Systems GmbH) -- D:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2011-07-22 22:16:01 | 000,579,584 | ---- | M] (OldTimer Tools) -- D:\Users\Reaper\Downloads\OTL.exe MOD - [2010-08-21 07:21:32 | 001,680,896 | ---- | M] (Microsoft Corporation) -- D:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll MOD - [2007-09-02 13:57:36 | 000,069,632 | ---- | M] () -- D:\Program Files\RocketDock\RocketDock.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2011-05-25 17:29:48 | 001,336,712 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- D:\Program Files\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc) SRV - [2011-04-08 07:14:00 | 002,218,600 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- D:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe -- (nvUpdatusService) SRV - [2011-04-07 21:54:52 | 000,378,472 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- D:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service) SRV - [2011-01-27 17:51:05 | 002,253,688 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- D:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe -- (TeamViewer6) SRV - [2010-12-17 10:33:10 | 000,439,632 | ---- | M] (Trend Micro Inc.) [Auto | Running] -- D:\Program Files\Trend Micro\RUBotted\RUBotSrv.exe -- (RUBotSrv) SRV - [2010-11-11 13:57:04 | 000,268,528 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- D:\Program Files\Zune\WMZuneComm.exe -- (WMZuneComm) SRV - [2010-11-11 13:57:02 | 000,444,656 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- D:\Program Files\Zune\ZuneWlanCfgSvc.exe -- (ZuneWlanCfgSvc) SRV - [2010-11-11 13:55:56 | 006,351,600 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- D:\Program Files\Zune\ZuneNss.exe -- (ZuneNetworkSvc) SRV - [2010-10-25 11:03:52 | 000,217,088 | ---- | M] (Teruten) [Auto | Running] -- D:\Windows\System32\FsUsbExService.Exe -- (FsUsbExService) SRV - [2010-08-22 13:01:54 | 001,343,400 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- D:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc) SRV - [2010-04-07 22:10:38 | 000,033,560 | ---- | M] (ESET) [On_Demand | Stopped] -- D:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe -- (EhttpSrv) SRV - [2010-04-07 22:07:24 | 000,810,120 | ---- | M] (ESET) [Auto | Running] -- D:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe -- (ekrn) SRV - [2010-03-25 14:39:22 | 000,490,280 | ---- | M] (Nero AG) [Auto | Running] -- D:\Program Files\Nero\Update\NASvc.exe -- (NAUpdate) SRV - [2010-03-25 10:25:22 | 030,969,208 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- D:\Program Files\Microsoft Office\Office14\GROOVE.EXE -- (Microsoft SharePoint Workspace Audit Service) SRV - [2010-02-19 13:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- D:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard) SRV - [2010-01-29 23:17:14 | 000,292,944 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- D:\Program Files\Common Files\LogiShrd\Bluetooth\LBTServ.exe -- (LBTServ) SRV - [2009-10-20 20:19:48 | 000,117,264 | ---- | M] (CACE Technologies, Inc.) [On_Demand | Stopped] -- D:\Program Files\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental) SRV - [2009-07-14 03:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- D:\Windows\System32\sensrsvc.dll -- (SensrSvc) SRV - [2009-07-14 03:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- D:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc) SRV - [2009-07-14 03:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- D:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2009-05-15 07:35:52 | 000,935,208 | ---- | M] (Nero AG) [Auto | Running] -- D:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe -- (Nero BackItUp Scheduler 4.0) SRV - [2008-12-22 11:52:16 | 000,104,944 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- D:\Program Files\Common Files\Steam\SteamService.exe -- (Steam Client Service) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2011-04-08 07:14:00 | 010,690,024 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- D:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm) DRV - [2011-02-12 00:30:22 | 000,229,224 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- D:\Windows\System32\drivers\VMM.sys -- (vmm) DRV - [2011-01-20 16:41:25 | 000,002,368 | ---- | M] (AntiCracking) [Kernel | Auto | Running] -- D:\Windows\System32\SVKP.sys -- (SVKP) DRV - [2011-01-19 17:47:12 | 000,022,504 | ---- | M] (CPUID) [Kernel | Auto | Running] -- D:\Windows\System32\drivers\cpuz135_x32.sys -- (cpuz135) DRV - [2010-10-25 11:03:52 | 000,036,640 | ---- | M] () [Kernel | On_Demand | Running] -- D:\Windows\System32\FsUsbExDisk.Sys -- (FsUsbExDisk) DRV - [2010-10-08 16:57:54 | 000,100,560 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Stopped] -- D:\Windows\System32\drivers\VBoxNetAdp.sys -- (VBoxNetAdp) DRV - [2010-08-27 06:32:30 | 000,123,648 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- D:\Windows\System32\drivers\sscemdm.sys -- (sscemdm) DRV - [2010-08-27 06:32:30 | 000,100,352 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- D:\Windows\System32\drivers\ssceserd.sys -- (ssceserd) SAMSUNG Mobile Modem Diagnostic Serial Port V2 (WDM) DRV - [2010-08-27 06:32:30 | 000,098,560 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- D:\Windows\System32\drivers\sscebus.sys -- (sscebus) SAMSUNG USB Composite Device V2 driver (WDM) DRV - [2010-08-27 06:32:30 | 000,014,848 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- D:\Windows\System32\drivers\sscemdfl.sys -- (sscemdfl) DRV - [2010-05-21 17:09:43 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- D:\Windows\System32\Drivers\sptd.sys -- (sptd) DRV - [2010-04-12 10:44:34 | 000,059,388 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Running] -- D:\Windows\System32\drivers\scdemu.sys -- (SCDEmu) DRV - [2010-04-07 22:08:12 | 000,041,312 | ---- | M] (ESET) [Kernel | Auto | Running] -- D:\Windows\System32\drivers\epfwwfp.sys -- (epfwwfp) DRV - [2010-04-07 22:08:06 | 000,032,584 | ---- | M] (ESET) [Kernel | On_Demand | Running] -- D:\Windows\System32\drivers\epfwndis.sys -- (Epfwndis) DRV - [2010-04-07 22:08:04 | 000,134,488 | ---- | M] (ESET) [Kernel | Auto | Running] -- D:\Windows\System32\drivers\epfw.sys -- (epfw) DRV - [2010-04-07 22:07:08 | 000,114,984 | ---- | M] (ESET) [Kernel | Auto | Running] -- D:\Windows\System32\drivers\ehdrv.sys -- (ehdrv) DRV - [2010-04-07 22:03:46 | 000,133,512 | ---- | M] (ESET) [File_System | Auto | Running] -- D:\Windows\System32\drivers\eamonm.sys -- (eamonm) DRV - [2009-11-10 13:55:08 | 000,037,392 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- D:\Windows\System32\drivers\LMouFilt.Sys -- (LMouFilt) DRV - [2009-11-10 13:54:52 | 000,035,984 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- D:\Windows\System32\drivers\LHidFilt.Sys -- (LHidFilt) DRV - [2009-10-20 20:19:44 | 000,050,704 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- D:\Windows\System32\drivers\npf.sys -- (NPF) DRV - [2009-09-28 10:22:00 | 000,315,392 | ---- | M] () [Kernel | On_Demand | Running] -- D:\Windows\System32\drivers\yk62x86.sys -- (yukonw7) DRV - [2009-08-22 20:25:00 | 000,009,088 | ---- | M] () [Kernel | On_Demand | Running] -- D:\Program Files\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner32.sys -- (RivaTuner32) DRV - [2009-08-04 11:28:18 | 000,011,296 | ---- | M] () [Kernel | System | Running] -- D:\Windows\System32\drivers\AsIO.sys -- (AsIO) DRV - [2009-07-16 12:36:30 | 000,013,216 | ---- | M] () [Kernel | On_Demand | Running] -- D:\Windows\System32\drivers\ASACPI.sys -- (MTsensor) DRV - [2009-07-14 03:19:10 | 000,175,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- D:\Windows\system32\DRIVERS\vmbus.sys -- (vmbus) DRV - [2009-07-14 03:19:10 | 000,040,896 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- D:\Windows\system32\DRIVERS\vmstorfl.sys -- (storflt) DRV - [2009-07-14 03:19:10 | 000,028,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- D:\Windows\system32\DRIVERS\storvsc.sys -- (storvsc) DRV - [2009-07-14 01:53:36 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- D:\Windows\System32\drivers\loop.sys -- (msloop) DRV - [2009-07-14 01:51:11 | 000,034,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- D:\Windows\System32\drivers\winusb.sys -- (WinUsb) DRV - [2009-07-14 01:28:47 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- D:\Windows\system32\DRIVERS\vms3cap.sys -- (s3cap) DRV - [2009-07-14 01:28:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- D:\Windows\system32\DRIVERS\VMBusHID.sys -- (VMBusHID) DRV - [2009-07-14 00:02:52 | 000,043,008 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- D:\Windows\System32\drivers\Rtnicxp.sys -- (RTL8023xp) DRV - [2009-03-18 17:35:40 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- D:\Windows\System32\drivers\hamachi.sys -- (hamachi) DRV - [2008-05-02 11:58:28 | 000,008,064 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- D:\Windows\System32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2008-05-02 11:58:14 | 000,020,864 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\Windows\System32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2008-05-02 11:58:14 | 000,008,064 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- D:\Windows\System32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2008-05-02 11:58:12 | 000,017,536 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\Windows\System32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2008-02-05 01:50:44 | 000,059,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- D:\Windows\System32\drivers\VMNetSrv.sys -- (VPCNetS2) DRV - [2007-03-16 10:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- D:\Windows\System32\drivers\TBPanel.sys -- (TBPanel) DRV - [2007-03-16 10:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Running] -- D:\Windows\System32\drivers\TBPanel.sys -- (Cardex) DRV - [2006-11-30 00:24:57 | 000,033,588 | ---- | M] (America Online, Inc.) [Kernel | On_Demand | Running] -- D:\Windows\System32\drivers\wanatw4.sys -- (wanatw) WAN Miniport (ATW) DRV - [2005-09-23 23:18:32 | 000,171,520 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- D:\Windows\System32\drivers\MarvinBus.sys -- (MarvinBus) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.selectedEngine: "" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "google.pl" FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: {888d99e7-e8b5-46a3-851e-1ec45da1e644}:4.0.0 FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.2.2 FF - prefs.js..extensions.enabledItems: cssreloader@kenneth.io:1.0.2 FF - prefs.js..extensions.enabledItems: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.8.20100408.6 FF - prefs.js..network.proxy.backup.ftp: "127.0.0.1" FF - prefs.js..network.proxy.backup.ftp_port: 9666 FF - prefs.js..network.proxy.backup.gopher: "127.0.0.1" FF - prefs.js..network.proxy.backup.gopher_port: 9666 FF - prefs.js..network.proxy.backup.socks: "127.0.0.1" FF - prefs.js..network.proxy.backup.socks_port: 9666 FF - prefs.js..network.proxy.backup.ssl: "127.0.0.1" FF - prefs.js..network.proxy.backup.ssl_port: 9666 FF - prefs.js..network.proxy.ftp: "127.0.0.1" FF - prefs.js..network.proxy.ftp_port: 9666 FF - prefs.js..network.proxy.gopher: "127.0.0.1" FF - prefs.js..network.proxy.gopher_port: 9666 FF - prefs.js..network.proxy.http: "127.0.0.1" FF - prefs.js..network.proxy.http_port: 9666 FF - prefs.js..network.proxy.share_proxy_settings: true FF - prefs.js..network.proxy.socks: "127.0.0.1" FF - prefs.js..network.proxy.socks_port: 9666 FF - prefs.js..network.proxy.ssl: "127.0.0.1" FF - prefs.js..network.proxy.ssl_port: 9666 FF - prefs.js..network.proxy.type: 0 FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: D:\Windows\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: D:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: D:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: d:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: D:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: D:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: D:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: D:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: D:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: D:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: D:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: D:\Users\Reaper\AppData\Local\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.) FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: D:\Users\Reaper\AppData\Local\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.) FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: D:\Users\Reaper\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: D:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010-07-03 14:39:55 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Components: D:\Program Files\Mozilla Firefox\components [2011-06-30 09:19:52 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Plugins: D:\Program Files\Mozilla Firefox\plugins [2011-06-21 20:30:08 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: D:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2011-02-03 17:24:48 | 000,000,000 | ---D | M] FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: D:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010-07-03 14:39:55 | 000,000,000 | ---D | M] [2010-05-08 21:40:06 | 000,000,000 | ---D | M] (No name found) -- D:\Users\Reaper\AppData\Roaming\Mozilla\Extensions [2011-07-24 00:30:50 | 000,000,000 | ---D | M] (No name found) -- D:\Users\Reaper\AppData\Roaming\Mozilla\Firefox\Profiles\dlz0ljxo.default\extensions [2011-07-04 20:41:24 | 000,000,000 | ---D | M] (iMacros for Firefox) -- D:\Users\Reaper\AppData\Roaming\Mozilla\Firefox\Profiles\dlz0ljxo.default\extensions\{81BF1D23-5F17-408D-AC6B-BD6DF7CAF670} [2010-07-12 17:51:34 | 000,000,000 | ---D | M] (BitComet Video Downloader) -- D:\Users\Reaper\AppData\Roaming\Mozilla\Firefox\Profiles\dlz0ljxo.default\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB} [2011-06-21 21:33:21 | 000,000,000 | ---D | M] (DownloadHelper) -- D:\Users\Reaper\AppData\Roaming\Mozilla\Firefox\Profiles\dlz0ljxo.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2010-12-18 18:25:07 | 000,000,000 | ---D | M] (Edit Cookies) -- D:\Users\Reaper\AppData\Roaming\Mozilla\Firefox\Profiles\dlz0ljxo.default\extensions\{ea2b95c2-9be8-48ed-bdd1-5fcd2ad0ff99} [2011-07-01 18:19:04 | 000,000,000 | ---D | M] (Разпознаване на устройство Logitech) -- D:\Users\Reaper\AppData\Roaming\Mozilla\Firefox\Profiles\dlz0ljxo.default\extensions\DeviceDetection@logitech.com [2010-05-28 22:24:53 | 000,000,000 | ---D | M] (FireDownload) -- D:\Users\Reaper\AppData\Roaming\Mozilla\Firefox\Profiles\dlz0ljxo.default\extensions\firedownload@mozilla.org [2010-12-21 22:24:01 | 000,000,000 | ---D | M] (Firesheep) -- D:\Users\Reaper\AppData\Roaming\Mozilla\Firefox\Profiles\dlz0ljxo.default\extensions\firesheep@codebutler.com [2011-04-19 09:24:01 | 000,000,000 | ---D | M] (No name found) -- D:\Program Files\Mozilla Firefox\extensions [2010-06-08 13:30:49 | 000,000,000 | ---D | M] (Java Console) -- D:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} [2010-12-21 17:31:05 | 000,000,000 | ---D | M] (Java Console) -- D:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} [2011-04-19 09:24:01 | 000,000,000 | ---D | M] (Java Console) -- D:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} File not found (No name found) -- () (No name found) -- D:\USERS\REAPER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\DLZ0LJXO.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI () (No name found) -- D:\USERS\REAPER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\DLZ0LJXO.DEFAULT\EXTENSIONS\{DD3D7613-0246-469D-BC65-2A3CC1668ADC}.XPI [2011-06-30 09:19:51 | 000,142,296 | ---- | M] (Mozilla Foundation) -- D:\Program Files\mozilla firefox\components\browsercomps.dll [2010-02-21 12:22:32 | 000,712,704 | ---- | M] (BitComet) -- D:\Program Files\mozilla firefox\plugins\npBitCometAgent.dll [2011-02-02 21:40:24 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- D:\Program Files\mozilla firefox\plugins\npdeployJava1.dll [2010-07-12 18:33:56 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- D:\Program Files\mozilla firefox\plugins\npwachk.dll [2010-01-01 10:00:00 | 000,002,767 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2010-01-01 10:00:00 | 000,001,406 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2010-01-01 10:00:00 | 000,000,917 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2010-01-01 10:00:00 | 000,000,858 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2010-01-01 10:00:00 | 000,001,183 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2010-01-01 10:00:00 | 000,001,683 | ---- | M] () -- D:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2011-07-24 00:31:54 | 000,000,098 | ---- | M]) - D:\Windows\System32\drivers\etc\Hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O2 - BHO: (no name) - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - No CLSID value found. O2 - BHO: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - No CLSID value found. O2 - BHO: (BitComet Helper) - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - D:\Program Files\BitComet\tools\BitCometBHO_1.4.6.22.dll (BitComet) O2 - BHO: (no name) - {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - No CLSID value found. O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - D:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found. O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No CLSID value found. O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found. O4 - HKLM..\Run: [AdobeAAMUpdater-1.0] D:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [AdobeCS5ServiceManager] D:\Program Files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [Ai Nap] D:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe (ASUSTeK Computer Inc.) O4 - HKLM..\Run: [BCSSync] D:\Program Files\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation) O4 - HKLM..\Run: [Cpu Level Up help] D:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe () O4 - HKLM..\Run: [CPU Power Monitor] D:\Program Files\ASUS\AI Suite\AiGear3\CpuPowerMonitor.exe () O4 - HKLM..\Run: [egui] D:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET) O4 - HKLM..\Run: [EvtMgr6] D:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.) O4 - HKLM..\Run: [LogMeIn Hamachi Ui] D:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.) O4 - HKLM..\Run: [NBAgent] D:\Program Files\Nero\Nero 10\Nero BackItUp\NBAgent.exe (Nero AG) O4 - HKLM..\Run: [NvCplDaemon] D:\Windows\System32\NvCpl.dll (NVIDIA Corporation) O4 - HKLM..\Run: [PWRISOVM.EXE] D:\Program Files\PowerISO\PWRISOVM.EXE (PowerISO Computing, Inc.) O4 - HKLM..\Run: [RivaTunerStartupDaemon] D:\Program Files\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTunerWrapper.exe () O4 - HKLM..\Run: [SwitchBoard] D:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [Trend Micro RUBotted V2.0 Beta] D:\Program Files\Trend Micro\RUBotted\RUBottedGUI.exe (Trend Micro Inc.) O4 - HKLM..\Run: [USBToolTip] D:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe (Pinnacle Systems GmbH) O4 - HKLM..\Run: [Zune Launcher] D:\Program Files\Zune\ZuneLauncher.exe (Microsoft Corporation) O4 - HKCU..\Run: [ALLUpdate] D:\Program Files\ALLPlayer\ALLUpdate.exe () O4 - HKCU..\Run: [DAEMON Tools Lite] D:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd) O4 - HKCU..\Run: [RESTART_STICKY_NOTES] D:\Windows\System32\StikyNot.exe (Microsoft Corporation) O4 - HKCU..\Run: [RocketDock] D:\Program Files\RocketDock\RocketDock.exe () O4 - HKCU..\Run: [TBPanel] D:\Program Files\Vtune2\TBPanel.exe () O4 - HKCU..\Run: [WhatPulse] D:\Program Files\WhatPulse\WhatPulse.exe (WhatPulse.org) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - D:\Program Files\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation) O8 - Extra context menu item: Pobierz wszystkie wideo za pomocą BitComet - D:\Program Files\BitComet\BitComet.exe (www.BitComet.com) O8 - Extra context menu item: Pobierz wszystko za pomocą BitComet - D:\Program Files\BitComet\BitComet.exe (www.BitComet.com) O8 - Extra context menu item: Pobierz za pomocą BitComet - D:\Program Files\BitComet\BitComet.exe (www.BitComet.com) O8 - Extra context menu item: Wyślij &do programu OneNote - D:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O8 - Extra context menu item: 使用快车3下载 - D:\Users\Reaper\AppData\Roaming\FlashGetBHO\GetUrl.htm () O8 - Extra context menu item: 使用快车3下载全部链接 - D:\Users\Reaper\AppData\Roaming\FlashGetBHO\GetAllUrl.htm () O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: &Notatki połączone programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - D:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : &Notatki połączone programu OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - D:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation) O9 - Extra Button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - D:\Program Files\BitComet\tools\BitCometBHO_1.4.6.22.dll (BitComet) O13 - gopher Prefix: missing O15 - HKCU\..Trusted Domains: aol.com ([objects] * is out of zone range - 5) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 217.172.224.160 89.228.6.21 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20 - HKLM Winlogon: Shell - (explorer.exe) - D:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - D:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - Winlogon\Notify\LBTWlgn: DllName - d:\program files\common files\logishrd\bluetooth\LBTWlgn.dll - d:\Program Files\Common Files\LogiShrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O22 - SharedTaskScheduler: {E31004D1-A431-41B8-826F-E902F9D95C81} - Windows DreamScene - Reg Error: Key error. File not found O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - D:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-05-08 18:34:32 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2009-06-10 23:42:20 | 000,000,024 | ---- | M] () - D:\autoexec.bat -- [ NTFS ] O33 - MountPoints2\{12a6c6c5-64eb-11df-955d-0022155d6e20}\Shell - "" = AutoRun O33 - MountPoints2\{12a6c6c5-64eb-11df-955d-0022155d6e20}\Shell\AutoRun\command - "" = I:\autorun.exe O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011-07-24 00:41:39 | 000,000,000 | ---D | C] -- D:\Program Files\Ad-Remover [2011-07-24 00:30:43 | 000,000,000 | ---D | C] -- D:\_OTL [2011-07-23 21:05:33 | 000,000,000 | ---D | C] -- D:\Users\Reaper\Documents\Desktop(1) [2011-07-22 20:30:15 | 000,000,000 | ---D | C] -- D:\Users\Reaper\Desktop\Tom [2011-07-22 14:20:24 | 000,000,000 | ---D | C] -- D:\ProgramData\Media Center Programs [2011-07-21 22:45:18 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Theorica Divx ;-) Codecs [2011-07-20 01:16:37 | 000,000,000 | R--D | C] -- D:\Users\Reaper\Podcasts [2011-07-19 19:44:50 | 000,000,000 | ---D | C] -- D:\Users\Reaper\Documents\bada2-screeny [2011-07-13 16:42:54 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll [2011-07-13 16:42:53 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll [2011-07-13 16:42:53 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll [2011-07-13 16:42:53 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll [2011-07-13 16:42:53 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll [2011-07-13 16:42:53 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll [2011-07-13 16:42:53 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-string-l1-1-0.dll [2011-07-13 16:42:53 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll [2011-07-13 16:42:53 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll [2011-07-13 16:42:52 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-security-base-l1-1-0.dll [2011-07-13 16:42:52 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-file-l1-1-0.dll [2011-07-13 16:42:52 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll [2011-07-13 16:42:52 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll [2011-07-13 16:42:52 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll [2011-07-13 16:42:52 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll [2011-07-13 16:42:52 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll [2011-07-13 16:42:52 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll [2011-07-13 16:42:52 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll [2011-07-13 16:42:52 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll [2011-07-13 16:42:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-util-l1-1-0.dll [2011-07-13 16:42:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-io-l1-1-0.dll [2011-07-13 16:42:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll [2011-07-13 16:42:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll [2011-07-13 16:42:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll [2011-07-13 16:42:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll [2011-07-13 16:42:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll [2011-07-13 16:42:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll [2011-07-13 16:42:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- D:\Windows\System32\api-ms-win-core-console-l1-1-0.dll [2011-07-13 16:42:48 | 000,271,872 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\conhost.exe [2011-07-13 16:42:47 | 000,169,984 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\winsrv.dll [2011-07-13 16:42:40 | 002,332,672 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\win32k.sys [2011-07-01 21:27:38 | 000,036,864 | ---- | C] (TOSHIBA/MEI) -- D:\Windows\System32\SDDEVMGR.dll [2011-07-01 21:27:38 | 000,000,000 | ---D | C] -- D:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panasonic [2011-07-01 21:27:38 | 000,000,000 | ---D | C] -- D:\Program Files\Panasonic [2011-06-29 01:15:54 | 001,553,920 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\tquery.dll [2011-06-29 01:15:54 | 001,401,856 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\mssrch.dll [2011-06-29 01:15:53 | 000,666,624 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\mssvp.dll [2011-06-29 01:15:52 | 000,337,408 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\mssph.dll [2011-06-29 01:15:52 | 000,197,120 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\mssphtb.dll [2011-06-29 01:15:51 | 000,059,392 | ---- | C] (Microsoft Corporation) -- D:\Windows\System32\msscntrs.dll [2011-06-27 10:03:20 | 000,000,000 | ---D | C] -- D:\Users\Reaper\Desktop\Fotografia [1 D:\Users\Reaper\Desktop\*.tmp files -> D:\Users\Reaper\Desktop\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011-07-24 21:44:00 | 000,001,062 | ---- | M] () -- D:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1294886362-1705639430-4277845319-1000UA.job [2011-07-24 21:40:26 | 000,002,432 | ---- | M] () -- D:\Users\Reaper\AppData\Local\TemptDm612.html [2011-07-24 21:40:26 | 000,002,089 | ---- | M] () -- D:\Users\Reaper\AppData\Local\TempqRV612.html [2011-07-24 21:40:00 | 000,001,036 | ---- | M] () -- D:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2011-07-24 21:33:38 | 000,024,752 | -H-- | M] () -- D:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2011-07-24 21:33:38 | 000,024,752 | -H-- | M] () -- D:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2011-07-24 21:28:35 | 000,001,032 | ---- | M] () -- D:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2011-07-24 21:28:22 | 000,067,584 | --S- | M] () -- D:\Windows\bootstat.dat [2011-07-24 21:28:20 | 2616,549,376 | -HS- | M] () -- D:\hiberfil.sys [2011-07-24 21:26:39 | 000,002,432 | ---- | M] () -- D:\Users\Reaper\AppData\Local\TempYy4304.html [2011-07-24 21:26:39 | 000,002,089 | ---- | M] () -- D:\Users\Reaper\AppData\Local\TempOo4304.html [2011-07-24 19:52:22 | 001,768,238 | ---- | M] () -- D:\Users\Reaper\Documents\20110724_173056.jpg [2011-07-24 19:14:42 | 000,002,432 | ---- | M] () -- D:\Users\Reaper\AppData\Local\TempDk5560.html [2011-07-24 16:41:19 | 000,002,432 | ---- | M] () -- D:\Users\Reaper\AppData\Local\TempuS5964.html [2011-07-24 16:06:37 | 000,002,432 | ---- | M] () -- D:\Users\Reaper\AppData\Local\TempYJZ872.html [2011-07-24 00:44:27 | 000,002,432 | ---- | M] () -- D:\Users\Reaper\AppData\Local\Tempqd4740.html [2011-07-24 00:44:27 | 000,002,089 | ---- | M] () -- D:\Users\Reaper\AppData\Local\Tempvh4740.html [2011-07-24 00:41:39 | 000,001,843 | ---- | M] () -- D:\Users\Reaper\Desktop\AD-R.lnk [2011-07-24 00:41:37 | 000,648,822 | ---- | M] () -- D:\Users\Reaper\Desktop\1305092494221.jpg [2011-07-24 00:31:54 | 000,000,098 | ---- | M] () -- D:\Windows\System32\drivers\etc\Hosts [2011-07-23 22:11:46 | 002,204,783 | ---- | M] () -- D:\Users\Reaper\Desktop\DSC_0787.jpg [2011-07-23 22:08:30 | 000,000,020 | -H-- | M] () -- D:\ProgramData\PKP_DLdw.DAT [2011-07-23 21:09:00 | 003,932,214 | ---- | M] () -- D:\Users\Reaper\Documents\Unbenannt.bmp [2011-07-23 21:05:14 | 001,841,541 | ---- | M] () -- D:\Users\Reaper\Documents\Desktop(1).rar [2011-07-23 13:44:00 | 000,001,010 | ---- | M] () -- D:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1294886362-1705639430-4277845319-1000Core.job [2011-07-22 19:32:19 | 001,009,070 | ---- | M] () -- D:\Users\Reaper\Desktop\CCCP.jpg [2011-07-22 19:32:08 | 000,887,455 | ---- | M] () -- D:\Users\Reaper\Desktop\19564-cccp-soviet-prison.jpg [2011-07-22 14:13:08 | 000,004,062 | ---- | M] () -- D:\Users\Reaper\Desktop\Tom.zip [2011-07-21 13:19:16 | 000,000,020 | -H-- | M] () -- D:\ProgramData\PKP_DLdu.DAT [2011-07-19 19:31:20 | 012,803,417 | ---- | M] () -- D:\Users\Reaper\Documents\bada2-screeny.rar [2011-07-19 17:01:23 | 002,511,384 | ---- | M] () -- D:\Users\Reaper\Desktop\fotka.jpg [2011-07-19 16:32:11 | 000,002,712 | ---- | M] () -- D:\Users\Reaper\.recently-used.xbel [2011-07-17 18:06:05 | 001,160,192 | ---- | M] () -- D:\Users\Reaper\Documents\Obraz.png [2011-07-14 13:03:21 | 003,833,816 | ---- | M] () -- D:\Windows\System32\FNTCACHE.DAT [2011-07-06 00:47:19 | 000,016,400 | ---- | M] (Logitech, Inc.) -- D:\Windows\System32\drivers\LNonPnP.sys [2011-07-02 18:54:07 | 001,925,472 | ---- | M] () -- D:\Users\Reaper\Documents\dejwidek.jpg [2011-06-30 17:04:22 | 002,129,321 | ---- | M] () -- D:\Users\Reaper\Documents\FXT project one 0.2.smt [2011-06-30 12:57:25 | 000,742,266 | ---- | M] () -- D:\Windows\System32\perfh015.dat [2011-06-30 12:57:25 | 000,655,028 | ---- | M] () -- D:\Windows\System32\perfh009.dat [2011-06-30 12:57:25 | 000,155,902 | ---- | M] () -- D:\Windows\System32\perfc015.dat [2011-06-30 12:57:25 | 000,121,900 | ---- | M] () -- D:\Windows\System32\perfc009.dat [1 D:\Users\Reaper\Desktop\*.tmp files -> D:\Users\Reaper\Desktop\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011-07-24 21:40:26 | 000,002,432 | ---- | C] () -- D:\Users\Reaper\AppData\Local\TemptDm612.html [2011-07-24 21:40:26 | 000,002,089 | ---- | C] () -- D:\Users\Reaper\AppData\Local\TempqRV612.html [2011-07-24 19:51:24 | 001,768,238 | ---- | C] () -- D:\Users\Reaper\Documents\20110724_173056.jpg [2011-07-24 19:14:54 | 000,002,432 | ---- | C] () -- D:\Users\Reaper\AppData\Local\TempYy4304.html [2011-07-24 19:14:54 | 000,002,089 | ---- | C] () -- D:\Users\Reaper\AppData\Local\TempOo4304.html [2011-07-24 18:53:50 | 000,002,432 | ---- | C] () -- D:\Users\Reaper\AppData\Local\TempDk5560.html [2011-07-24 16:41:03 | 000,002,432 | ---- | C] () -- D:\Users\Reaper\AppData\Local\TempuS5964.html [2011-07-24 15:20:32 | 000,002,432 | ---- | C] () -- D:\Users\Reaper\AppData\Local\TempYJZ872.html [2011-07-24 00:41:39 | 000,001,843 | ---- | C] () -- D:\Users\Reaper\Desktop\AD-R.lnk [2011-07-24 00:38:42 | 000,002,432 | ---- | C] () -- D:\Users\Reaper\AppData\Local\Tempqd4740.html [2011-07-24 00:38:42 | 000,002,089 | ---- | C] () -- D:\Users\Reaper\AppData\Local\Tempvh4740.html [2011-07-23 22:11:45 | 002,204,783 | ---- | C] () -- D:\Users\Reaper\Desktop\DSC_0787.jpg [2011-07-23 21:08:55 | 000,648,822 | ---- | C] () -- D:\Users\Reaper\Desktop\1305092494221.jpg [2011-07-23 21:06:58 | 003,932,214 | ---- | C] () -- D:\Users\Reaper\Documents\Unbenannt.bmp [2011-07-23 21:05:33 | 001,009,070 | ---- | C] () -- D:\Users\Reaper\Desktop\CCCP.jpg [2011-07-23 21:05:33 | 000,887,455 | ---- | C] () -- D:\Users\Reaper\Desktop\19564-cccp-soviet-prison.jpg [2011-07-23 21:04:20 | 001,841,541 | ---- | C] () -- D:\Users\Reaper\Documents\Desktop(1).rar [2011-07-22 14:13:04 | 000,004,062 | ---- | C] () -- D:\Users\Reaper\Desktop\Tom.zip [2011-07-19 19:29:56 | 012,803,417 | ---- | C] () -- D:\Users\Reaper\Documents\bada2-screeny.rar [2011-07-19 17:00:39 | 002,511,384 | ---- | C] () -- D:\Users\Reaper\Desktop\fotka.jpg [2011-07-19 16:32:11 | 000,002,712 | ---- | C] () -- D:\Users\Reaper\.recently-used.xbel [2011-07-17 18:05:09 | 001,160,192 | ---- | C] () -- D:\Users\Reaper\Documents\Obraz.png [2011-07-02 18:53:23 | 001,925,472 | ---- | C] () -- D:\Users\Reaper\Documents\dejwidek.jpg [2011-06-30 17:03:57 | 002,129,321 | ---- | C] () -- D:\Users\Reaper\Documents\FXT project one 0.2.smt [2011-05-26 19:53:24 | 000,000,000 | ---- | C] () -- D:\Windows\ViewNX.INI [2011-05-26 15:53:32 | 000,000,268 | RH-- | C] () -- D:\ProgramData\images [2011-05-26 15:53:32 | 000,000,268 | RH-- | C] () -- D:\Users\Reaper\AppData\Roaming\docInfo [2011-05-26 15:53:32 | 000,000,020 | -H-- | C] () -- D:\ProgramData\PKP_DLdw.DAT [2011-05-26 15:53:32 | 000,000,012 | RH-- | C] () -- D:\ProgramData\Action [2011-05-26 15:51:42 | 000,000,268 | RH-- | C] () -- D:\ProgramData\grep [2011-05-26 15:51:42 | 000,000,268 | RH-- | C] () -- D:\Users\Reaper\AppData\Roaming\designjet [2011-05-26 15:51:42 | 000,000,020 | -H-- | C] () -- D:\ProgramData\PKP_DLdu.DAT [2011-04-12 17:01:13 | 000,110,592 | ---- | C] () -- D:\Windows\System32\rtvcvfw32.dll [2011-04-09 18:55:28 | 000,179,261 | ---- | C] () -- D:\Windows\System32\xlive.dll.cat [2011-04-08 13:28:58 | 000,041,872 | ---- | C] () -- D:\Windows\System32\xfcodec.dll [2011-04-06 18:00:59 | 000,001,809 | ---- | C] () -- D:\Windows\VPlayer.INI [2011-02-18 19:18:16 | 000,000,256 | ---- | C] () -- D:\Windows\game.ini [2011-02-04 19:22:28 | 000,024,576 | ---- | C] () -- D:\Windows\System32\AsIO.dll [2011-02-04 19:22:28 | 000,011,296 | ---- | C] () -- D:\Windows\System32\drivers\AsIO.sys [2011-02-04 19:22:24 | 000,011,832 | ---- | C] () -- D:\Windows\System32\drivers\AsInsHelp64.sys [2011-02-04 19:22:24 | 000,010,216 | ---- | C] () -- D:\Windows\System32\drivers\AsInsHelp32.sys [2011-02-04 19:18:40 | 000,013,216 | ---- | C] () -- D:\Windows\System32\drivers\ASACPI.sys [2011-01-25 00:58:53 | 000,129,024 | ---- | C] () -- D:\Windows\System32\AVERM.dll [2011-01-25 00:58:53 | 000,028,672 | ---- | C] () -- D:\Windows\System32\AVEQT.dll [2011-01-16 00:35:25 | 000,000,056 | -H-- | C] () -- D:\Windows\System32\ezsidmv.dat [2010-11-24 23:18:03 | 000,110,592 | ---- | C] () -- D:\Windows\System32\FsUsbExDevice.Dll [2010-11-24 23:18:03 | 000,036,640 | ---- | C] () -- D:\Windows\System32\FsUsbExDisk.Sys [2010-11-16 19:24:13 | 000,184,832 | ---- | C] () -- D:\Windows\System32\XPTable.dll_new [2010-11-12 16:01:55 | 000,000,038 | ---- | C] () -- D:\Windows\avisplitter.ini [2010-10-13 12:02:46 | 000,007,597 | ---- | C] () -- D:\Users\Reaper\AppData\Local\Resmon.ResmonCfg [2010-07-22 01:29:44 | 000,000,167 | ---- | C] () -- D:\Windows\usdthank.ini [2010-07-22 01:29:43 | 000,000,031 | ---- | C] () -- D:\Windows\idc.ini [2010-07-12 23:17:33 | 000,000,025 | ---- | C] () -- D:\Windows\cdplayer.ini [2010-07-12 19:11:56 | 000,000,335 | ---- | C] () -- D:\Windows\nsreg.dat [2010-07-03 21:11:01 | 000,011,776 | ---- | C] () -- D:\Users\Reaper\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-07-03 14:36:34 | 000,172,943 | ---- | C] () -- D:\Windows\hpoins28.dat [2010-07-03 14:36:34 | 000,000,442 | ---- | C] () -- D:\Windows\hpomdl28.dat [2010-06-26 21:49:23 | 001,481,728 | ---- | C] () -- D:\Windows\System32\LegitCheckControl.dll [2010-06-26 21:49:23 | 000,323,072 | ---- | C] () -- D:\Windows\System32\WgaTray.exe [2010-06-26 21:49:23 | 000,190,976 | ---- | C] () -- D:\Windows\System32\WgaLogon.dll [2010-06-22 16:37:12 | 000,000,600 | ---- | C] () -- D:\Users\Reaper\AppData\Local\PUTTY.RND [2010-06-21 15:45:22 | 000,000,305 | ---- | C] () -- D:\Windows\System32\secushr.dat [2010-06-21 15:45:04 | 000,000,025 | ---- | C] () -- D:\Windows\libem.INI [2010-06-08 23:08:38 | 000,000,193 | ---- | C] () -- D:\Windows\WORDPAD.INI [2010-05-22 16:00:49 | 000,137,464 | ---- | C] () -- D:\Windows\System32\drivers\PnkBstrK.sys [2010-05-22 16:00:49 | 000,022,328 | ---- | C] () -- D:\Users\Reaper\AppData\Roaming\PnkBstrK.sys [2010-05-22 16:00:34 | 000,214,520 | ---- | C] () -- D:\Windows\System32\PnkBstrB.exe [2010-05-22 16:00:29 | 000,075,136 | ---- | C] () -- D:\Windows\System32\PnkBstrA.exe [2010-05-22 16:00:28 | 000,682,280 | ---- | C] () -- D:\Windows\System32\pbsvc.exe [2010-05-21 18:02:33 | 000,001,769 | ---- | C] () -- D:\Windows\Language_trs.ini [2010-05-20 23:12:54 | 000,000,128 | ---- | C] () -- D:\Users\Reaper\AppData\Roaming\default.rss [2010-05-20 23:12:48 | 000,000,069 | ---- | C] () -- D:\Windows\NeroDigital.ini [2010-05-20 18:27:29 | 001,073,152 | ---- | C] () -- D:\Windows\System32\libmysql_c.dll [2010-05-16 14:49:49 | 000,004,767 | ---- | C] () -- D:\Windows\Irremote.ini [2009-10-20 20:19:30 | 000,053,299 | ---- | C] () -- D:\Windows\System32\pthreadVC.dll [2009-07-14 10:07:57 | 000,742,266 | ---- | C] () -- D:\Windows\System32\perfh015.dat [2009-07-14 10:07:57 | 000,337,158 | ---- | C] () -- D:\Windows\System32\perfi015.dat [2009-07-14 10:07:57 | 000,155,902 | ---- | C] () -- D:\Windows\System32\perfc015.dat [2009-07-14 10:07:57 | 000,038,710 | ---- | C] () -- D:\Windows\System32\perfd015.dat [2009-07-14 06:57:37 | 000,067,584 | --S- | C] () -- D:\Windows\bootstat.dat [2009-07-14 06:33:53 | 003,833,816 | ---- | C] () -- D:\Windows\System32\FNTCACHE.DAT [2009-07-14 04:05:48 | 000,655,028 | ---- | C] () -- D:\Windows\System32\perfh009.dat [2009-07-14 04:05:48 | 000,291,294 | ---- | C] () -- D:\Windows\System32\perfi009.dat [2009-07-14 04:05:48 | 000,121,900 | ---- | C] () -- D:\Windows\System32\perfc009.dat [2009-07-14 04:05:48 | 000,031,548 | ---- | C] () -- D:\Windows\System32\perfd009.dat [2009-07-14 04:05:05 | 000,000,741 | ---- | C] () -- D:\Windows\System32\NOISE.DAT [2009-07-14 04:04:11 | 000,215,943 | ---- | C] () -- D:\Windows\System32\dssec.dat [2009-07-14 02:55:09 | 000,587,776 | ---- | C] () -- D:\Windows\System32\hpotscl1.dll [2009-07-14 02:19:49 | 000,066,048 | ---- | C] () -- D:\Windows\System32\PrintBrmUi.exe [2009-07-14 01:55:01 | 000,043,131 | ---- | C] () -- D:\Windows\mib.bin [2009-07-14 01:51:43 | 000,073,728 | ---- | C] () -- D:\Windows\System32\BthpanContextHandler.dll [2009-07-14 01:42:10 | 000,064,000 | ---- | C] () -- D:\Windows\System32\BWContextHandler.dll [2009-06-10 23:26:10 | 000,673,088 | ---- | C] () -- D:\Windows\System32\mlang.dat [2007-01-26 03:04:12 | 000,138,752 | ---- | C] () -- D:\Windows\System32\mase32.dll [2007-01-26 03:04:12 | 000,027,648 | ---- | C] () -- D:\Windows\System32\ma32.dll [2005-10-14 11:56:50 | 003,596,288 | ---- | C] () -- D:\Windows\System32\qt-dx331.dll [2005-10-14 11:56:50 | 000,344,064 | ---- | C] () -- D:\Windows\System32\xvid.dll [2005-10-14 11:56:50 | 000,155,136 | ---- | C] () -- D:\Windows\System32\unrar.dll < End of report >