OTL logfile created on: 17/11/2013 1:31:39 p.m. - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\BUBETO\Desktop 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.10.9200.16736) Locale: 00001409 | Country: New Zealand | Language: ENZ | Date Format: d/MM/yyyy 4.00 Gb Total Physical Memory | 2.96 Gb Available Physical Memory | 74.12% Memory free 8.00 Gb Paging File | 6.77 Gb Available in Paging File | 84.64% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 60.00 Gb Total Space | 34.19 Gb Free Space | 56.98% Space Free | Partition Type: NTFS Drive D: | 693.24 Gb Total Space | 684.48 Gb Free Space | 98.74% Space Free | Partition Type: NTFS Computer Name: SETH-PC | User Name: BUBETO | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - C:\Users\BUBETO\Desktop\OTL.exe (OldTimer Tools) PRC - C:\Program Files (x86)\Innovative Solutions\DriverMax\drivermax.exe (Innovative Solutions) PRC - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe (Skype Technologies S.A.) PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated) PRC - C:\Windows\vVX3000.exe (Microsoft Corporation) [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - C:\Program Files (x86)\Innovative Solutions\DriverMax\sync.dll () [color=#E56717]========== Services (SafeList) ==========[/color] SRV:[b]64bit:[/b] - (ReflectService.exe) -- C:\Program Files\Macrium\Reflect\ReflectService.exe (Paramount Software UK Ltd) SRV:[b]64bit:[/b] - (NisSrv) -- C:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Corporation) SRV:[b]64bit:[/b] - (MsMpSvc) -- C:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation) SRV:[b]64bit:[/b] - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (MSCamSvc) -- C:\Program Files\Microsoft LifeCam\MSCamS64.exe (Microsoft Corporation) SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated) SRV - (Skype C2C Service) -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe (Skype Technologies S.A.) SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated) SRV - (SkypeUpdate) -- C:\Program Files (x86)\Skype\Updater\Updater.exe (Skype Technologies) SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV:[b]64bit:[/b] - (NisDrv) -- C:\Windows\SysNative\drivers\NisDrvWFP.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company) DRV:[b]64bit:[/b] - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices) DRV:[b]64bit:[/b] - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices) DRV:[b]64bit:[/b] - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (VX3000) -- C:\Windows\SysNative\drivers\VX3000.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.) DRV:[b]64bit:[/b] - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation) DRV:[b]64bit:[/b] - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology) DRV:[b]64bit:[/b] - (atikmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (ATI Technologies Inc.) DRV:[b]64bit:[/b] - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation) DRV:[b]64bit:[/b] - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation) DRV:[b]64bit:[/b] - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation) DRV:[b]64bit:[/b] - (L1C) -- C:\Windows\SysNative\drivers\L1C62x64.sys (Atheros Communications, Inc.) DRV:[b]64bit:[/b] - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.) DRV:[b]64bit:[/b] - (NuidFltr) -- C:\Windows\SysNative\drivers\nuidfltr.sys (Microsoft Corporation) DRV - (gdrv) -- C:\Windows\gdrv.sys (Windows (R) Server 2003 DDK provider) DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990} IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://msn.co.nz/?ocid=UP76DHP&pc=UP76&dt=110613 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://msn.co.nz/?ocid=iehp IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-NZ IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 31 92 F6 2A 00 D9 CE 01 [binary data] IE - HKCU\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990} IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7WQIB_enNZ561 IE - HKCU\..\SearchScopes\{72CA6EA9-07F8-491A-9E13-DF5F4F715FB4}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7WQIB_enNZ561 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.45.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2013/11/08 17:20:27 | 000,000,000 | ---D | M] FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2013/11/08 17:20:27 | 000,000,000 | ---D | M] O1 HOSTS File: ([2009/06/11 10:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O2:[b]64bit:[/b] - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found. O4:[b]64bit:[/b] - HKLM..\Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [VX3000] C:\Windows\vVX3000.exe (Microsoft Corporation) O4 - HKLM..\Run: [] File not found O4 - HKLM..\Run: [LifeCam] C:\Program Files (x86)\Microsoft LifeCam\LifeExp.exe (Microsoft Corporation) O4 - HKCU..\Run: [DriverMax_RESTART] C:\Program Files (x86)\Innovative Solutions\DriverMax\drivermax.exe (Innovative Solutions) O4 - HKCU..\RunOnce: [FlashPlayerUpdate] C:\Windows\system32\Macromed\Flash\FlashUtil64_11_9_900_117_ActiveX.exe -update activex File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O9:[b]64bit:[/b] - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O13[b]64bit:[/b] - gopher Prefix: missing O13 - gopher Prefix: missing O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O16 - DPF: {FFB3A759-98B1-446F-BDA9-909C6EB18CC7} http://utilities.pcpitstop.com/da2/PCPitStop2.cab (PCPitstop Exam) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 192.168.0.2 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{56318B64-22E0-43CE-9CA3-24FD98990823}: DhcpNameServer = 192.168.1.254 192.168.0.2 O18:[b]64bit:[/b] - Protocol\Handler\skype4com - No CLSID value found O18:[b]64bit:[/b] - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation) O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O34 - HKLM BootExecute: (autocheck autochk *) O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %* O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2013/11/17 13:29:11 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\BUBETO\Desktop\OTL.exe [2013/11/16 16:04:39 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\InstallShield Installation Information [2013/11/16 16:04:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIGABYTE [2013/11/16 16:04:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\GIGABYTE [2013/11/16 16:03:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\InstallShield [2013/11/16 15:54:18 | 000,531,658 | ---- | C] (Igor Pavlov) -- C:\Users\BUBETO\Desktop\mb_bios_ga-g31m-es2l_2.x_ff.exe [2013/11/15 22:13:47 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\Desktop\OTL results [2013/11/15 21:05:49 | 000,000,000 | ---D | C] -- C:\Windows\Hewlett-Packard [2013/11/15 15:03:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft LifeCam [2013/11/15 15:02:32 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft LifeCam [2013/11/15 15:02:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft LifeCam [2013/11/15 14:54:35 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\AppData\Roaming\Skype [2013/11/15 14:54:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype [2013/11/15 14:54:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype [2013/11/15 14:54:27 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype [2013/11/15 14:54:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype [2013/11/15 14:40:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Oracle [2013/11/15 14:40:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun [2013/11/15 14:40:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java [2013/11/15 14:40:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java [2013/11/15 14:40:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Java [2013/11/12 15:06:49 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpeedFan [2013/11/12 15:06:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpeedFan [2013/11/11 20:37:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Western Digital Corporation [2013/11/11 18:27:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SpeedFan [2013/11/10 11:18:23 | 000,000,000 | ---D | C] -- C:\Windows\Minidump [2013/11/10 00:35:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSXML 4.0 [2013/11/08 17:33:03 | 000,000,000 | ---D | C] -- C:\ProgramData\HPSSUPPLY [2013/11/08 17:27:28 | 000,000,000 | ---D | C] -- C:\ProgramData\WEBREG [2013/11/08 17:27:28 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\AppData\Roaming\HP [2013/11/08 17:20:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Coupons [2013/11/08 17:20:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Coupons [2013/11/08 17:20:48 | 000,000,000 | ---D | C] -- C:\ProgramData\HP Photo Creations [2013/11/08 17:20:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\HP Photo Creations [2013/11/08 17:20:42 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\AppData\Roaming\HpUpdate [2013/11/08 17:19:51 | 000,000,000 | ---D | C] -- C:\ProgramData\HP Product Assistant [2013/11/08 17:18:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\HP [2013/11/08 17:18:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Hewlett-Packard [2013/11/08 17:18:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP [2013/11/08 17:17:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\HP [2013/11/08 17:17:05 | 000,000,000 | -H-D | C] -- C:\Config.Msi [2013/11/08 17:15:20 | 000,000,000 | ---D | C] -- C:\ProgramData\HP [2013/11/08 10:12:36 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\AppData\Local\ElevatedDiagnostics [2013/11/08 09:58:40 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\AppData\Local\Programs [2013/11/07 09:30:47 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\Documents\Reflect [2013/11/07 09:17:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Macrium [2013/11/07 08:27:35 | 000,000,000 | ---D | C] -- C:\ProgramData\PCPitstop [2013/11/07 08:27:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PCPitstop [2013/11/07 07:45:15 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\AppData\Local\Innovative Solutions [2013/11/07 07:45:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverMax [2013/11/07 07:45:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Innovative Solutions [2013/11/06 21:29:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Security Client [2013/11/06 21:29:16 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Security Client [2013/11/06 11:54:45 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\AppData\Roaming\Google [2013/11/06 11:53:43 | 000,000,000 | ---D | C] -- C:\Program Files\Google [2013/11/06 11:53:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Google [2013/11/06 11:53:32 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\AppData\Local\Google [2013/11/06 11:53:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google [2013/11/06 11:53:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe [2013/11/06 11:53:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe [2013/11/06 11:52:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe [2013/11/06 11:51:26 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\AppData\Local\Adobe [2013/11/05 15:43:04 | 000,000,000 | ---D | C] -- C:\Program Files\Macrium [2013/11/05 15:37:32 | 000,000,000 | ---D | C] -- C:\Programs Files [2013/11/05 14:44:55 | 000,000,000 | ---D | C] -- C:\PROGRAMS [2013/11/05 14:43:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Macrium [2013/11/05 14:17:53 | 000,000,000 | R--D | C] -- C:\Users\BUBETO\Downloads [2013/11/05 13:37:57 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\SPReview [2013/11/05 13:37:33 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\EventProviders [2013/11/05 06:19:17 | 000,116,224 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysNative\fms.dll [2013/11/05 06:19:02 | 000,093,696 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysWow64\fms.dll [2013/11/04 20:58:24 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\AppData\Local\Microsoft Games [2013/11/04 15:44:18 | 000,000,000 | ---D | C] -- C:\boot [2013/11/04 15:35:41 | 000,000,000 | -HSD | C] -- C:\Windows\Installer [2013/11/04 14:45:50 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Wat [2013/11/04 14:45:50 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Wat [2013/11/04 13:51:57 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\MRT [2013/11/04 13:38:21 | 000,000,000 | ---D | C] -- C:\Windows\pss [2013/11/04 08:58:19 | 000,000,000 | ---D | C] -- C:\Windows\Panther [2013/11/04 08:42:28 | 000,000,000 | ---D | C] -- C:\Windows.old [2013/11/04 07:14:28 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\AppData\Local\Diagnostics [2013/11/03 13:07:10 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\AppData\Roaming\Macromedia [2013/11/03 13:07:10 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\AppData\Roaming\Adobe [2013/11/03 13:05:30 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Macromed [2013/11/03 13:05:28 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Macromed [2013/11/03 12:12:40 | 000,000,000 | R--D | C] -- C:\Users\BUBETO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup [2013/11/03 12:12:40 | 000,000,000 | R--D | C] -- C:\Users\BUBETO\Searches [2013/11/03 12:12:40 | 000,000,000 | R--D | C] -- C:\Users\BUBETO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools [2013/11/03 12:12:40 | 000,000,000 | -H-D | C] -- C:\Users\BUBETO\Application Data\Microsoft\Internet Explorer\Quick Launch\User Pinned [2013/11/03 12:12:32 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\AppData\Roaming\Identities [2013/11/03 12:12:31 | 000,000,000 | R--D | C] -- C:\Users\BUBETO\Contacts [2013/11/03 12:12:29 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\AppData\Local\VirtualStore [2013/11/03 12:12:25 | 000,000,000 | --SD | C] -- C:\Users\BUBETO\AppData\Roaming\Microsoft [2013/11/03 12:12:25 | 000,000,000 | R--D | C] -- C:\Users\BUBETO\Videos [2013/11/03 12:12:25 | 000,000,000 | R--D | C] -- C:\Users\BUBETO\Saved Games [2013/11/03 12:12:25 | 000,000,000 | R--D | C] -- C:\Users\BUBETO\Pictures [2013/11/03 12:12:25 | 000,000,000 | R--D | C] -- C:\Users\BUBETO\Music [2013/11/03 12:12:25 | 000,000,000 | R--D | C] -- C:\Users\BUBETO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance [2013/11/03 12:12:25 | 000,000,000 | R--D | C] -- C:\Users\BUBETO\Links [2013/11/03 12:12:25 | 000,000,000 | R--D | C] -- C:\Users\BUBETO\Documents [2013/11/03 12:12:25 | 000,000,000 | R--D | C] -- C:\Users\BUBETO\Desktop [2013/11/03 12:12:25 | 000,000,000 | R--D | C] -- C:\Users\BUBETO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories [2013/11/03 12:12:25 | 000,000,000 | -HSD | C] -- C:\Users\BUBETO\AppData\Local\Temporary Internet Files [2013/11/03 12:12:25 | 000,000,000 | -HSD | C] -- C:\Users\BUBETO\Templates [2013/11/03 12:12:25 | 000,000,000 | -HSD | C] -- C:\Users\BUBETO\Start Menu [2013/11/03 12:12:25 | 000,000,000 | -HSD | C] -- C:\Users\BUBETO\SendTo [2013/11/03 12:12:25 | 000,000,000 | -HSD | C] -- C:\Users\BUBETO\Recent [2013/11/03 12:12:25 | 000,000,000 | -HSD | C] -- C:\Users\BUBETO\PrintHood [2013/11/03 12:12:25 | 000,000,000 | -HSD | C] -- C:\Users\BUBETO\NetHood [2013/11/03 12:12:25 | 000,000,000 | -HSD | C] -- C:\Users\BUBETO\Documents\My Videos [2013/11/03 12:12:25 | 000,000,000 | -HSD | C] -- C:\Users\BUBETO\Documents\My Pictures [2013/11/03 12:12:25 | 000,000,000 | -HSD | C] -- C:\Users\BUBETO\Documents\My Music [2013/11/03 12:12:25 | 000,000,000 | -HSD | C] -- C:\Users\BUBETO\My Documents [2013/11/03 12:12:25 | 000,000,000 | -HSD | C] -- C:\Users\BUBETO\Local Settings [2013/11/03 12:12:25 | 000,000,000 | -HSD | C] -- C:\Users\BUBETO\AppData\Local\History [2013/11/03 12:12:25 | 000,000,000 | -HSD | C] -- C:\Users\BUBETO\Cookies [2013/11/03 12:12:25 | 000,000,000 | -HSD | C] -- C:\Users\BUBETO\Application Data [2013/11/03 12:12:25 | 000,000,000 | -HSD | C] -- C:\Users\BUBETO\AppData\Local\Application Data [2013/11/03 12:12:25 | 000,000,000 | -H-D | C] -- C:\Users\BUBETO\AppData [2013/11/03 12:12:25 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\AppData\Local\Temp [2013/11/03 12:12:25 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\AppData\Local\Microsoft [2013/11/03 12:12:25 | 000,000,000 | ---D | C] -- C:\Users\BUBETO\AppData\Roaming\Media Center Programs [2013/11/03 12:12:14 | 000,000,000 | -HSD | C] -- C:\Recovery [2013/11/03 12:02:04 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution [2013/11/03 11:59:55 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch [2013/11/03 11:00:35 | 000,000,000 | -HSD | C] -- C:\System Volume Information [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2013/11/17 13:30:37 | 000,015,152 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2013/11/17 13:30:37 | 000,015,152 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2013/11/17 13:29:11 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\BUBETO\Desktop\OTL.exe [2013/11/17 13:27:30 | 000,713,888 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2013/11/17 13:27:30 | 000,619,206 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2013/11/17 13:27:30 | 000,107,388 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2013/11/17 13:23:02 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2013/11/17 13:22:58 | 3220,037,632 | -HS- | M] () -- C:\hiberfil.sys [2013/11/17 13:08:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2013/11/17 11:03:16 | 000,363,609 | ---- | M] () -- C:\Users\BUBETO\Desktop\ANZ Dispute Form.pdf [2013/11/16 16:15:29 | 000,151,012 | ---- | M] () -- C:\Users\BUBETO\Desktop\bios.ini [2013/11/16 15:54:19 | 000,531,658 | ---- | M] (Igor Pavlov) -- C:\Users\BUBETO\Desktop\mb_bios_ga-g31m-es2l_2.x_ff.exe [2013/11/16 09:31:45 | 000,009,175 | ---- | M] () -- C:\Users\BUBETO\Desktop\Errors.rtf [2013/11/15 22:15:58 | 000,000,223 | ---- | M] () -- C:\Users\BUBETO\Desktop\Osho Zen Tarot.url [2013/11/15 22:01:57 | 000,000,396 | ---- | M] () -- C:\Users\BUBETO\Desktop\speccy 30 oktomvri 2013.rtf [2013/11/15 21:59:08 | 000,204,449 | ---- | M] () -- C:\Users\BUBETO\Desktop\speccy 1.rtf [2013/11/15 15:03:38 | 000,002,039 | ---- | M] () -- C:\Users\Public\Desktop\Microsoft LifeCam.lnk [2013/11/15 14:54:28 | 000,002,697 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk [2013/11/15 10:16:50 | 000,010,374 | ---- | M] () -- C:\Users\BUBETO\Desktop\is the disk bad.rtf [2013/11/12 18:04:49 | 000,000,184 | ---- | M] () -- C:\Users\BUBETO\Desktop\YouTube.url [2013/11/12 15:06:49 | 000,001,021 | ---- | M] () -- C:\Users\BUBETO\Desktop\SpeedFan.lnk [2013/11/12 15:06:47 | 000,000,045 | ---- | M] () -- C:\Windows\SysWow64\initdebug.nfo [2013/11/11 20:37:46 | 000,000,862 | ---- | M] () -- C:\Users\BUBETO\Application Data\Microsoft\Internet Explorer\Quick Launch\Data Lifeguard Diagnostic for Windows.lnk [2013/11/11 20:37:46 | 000,000,838 | ---- | M] () -- C:\Users\Public\Desktop\Data Lifeguard Diagnostic for Windows.lnk [2013/11/09 13:56:40 | 000,000,917 | ---- | M] () -- C:\Users\BUBETO\Desktop\Favorites - Shortcut.lnk [2013/11/09 03:28:17 | 000,006,997 | ---- | M] () -- C:\Users\BUBETO\Desktop\Locate dump files.rtf [2013/11/09 02:22:05 | 000,275,040 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT [2013/11/08 21:49:53 | 000,011,891 | ---- | M] () -- C:\Users\BUBETO\Desktop\Driver Verifier.rtf [2013/11/08 17:27:17 | 000,170,043 | ---- | M] () -- C:\Windows\hpoins44.dat [2013/11/08 17:19:12 | 000,002,109 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2013/11/08 09:58:44 | 000,000,000 | ---- | M] () -- C:\END [2013/11/07 09:17:53 | 000,002,483 | ---- | M] () -- C:\Users\Public\Desktop\Reflect.lnk [2013/11/07 07:45:15 | 000,001,248 | ---- | M] () -- C:\Users\BUBETO\Desktop\DriverMax.lnk [2013/11/07 06:50:58 | 000,000,468 | ---- | M] () -- C:\Users\BUBETO\Desktop\New Volume (D) - Shortcut.lnk [2013/11/06 21:29:55 | 000,001,945 | ---- | M] () -- C:\Windows\epplauncher.mif [2013/11/06 17:02:51 | 000,025,185 | ---- | M] () -- C:\Windows\SysWow64\ieuinit.inf [2013/11/06 17:02:51 | 000,025,185 | ---- | M] () -- C:\Windows\SysNative\ieuinit.inf [2013/11/04 14:49:25 | 000,001,451 | ---- | M] () -- C:\Users\BUBETO\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk [2013/11/03 12:31:50 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_NuidFltr_01005.Wdf [2013/11/03 12:03:04 | 000,039,252 | ---- | M] () -- C:\Windows\SysWow64\license.rtf [2013/11/03 12:03:04 | 000,039,252 | ---- | M] () -- C:\Windows\SysNative\license.rtf [2013/11/03 12:01:19 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin [2013/11/03 12:01:19 | 000,000,000 | ---- | M] () -- C:\Windows\SysNative\atiicdxx.dat [2013/11/03 12:00:45 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2013/11/17 11:03:16 | 000,363,609 | ---- | C] () -- C:\Users\BUBETO\Desktop\ANZ Dispute Form.pdf [2013/11/16 16:14:06 | 000,151,012 | ---- | C] () -- C:\Users\BUBETO\Desktop\bios.ini [2013/11/15 22:15:58 | 000,000,223 | ---- | C] () -- C:\Users\BUBETO\Desktop\Osho Zen Tarot.url [2013/11/15 22:01:57 | 000,000,396 | ---- | C] () -- C:\Users\BUBETO\Desktop\speccy 30 oktomvri 2013.rtf [2013/11/15 21:59:08 | 000,204,449 | ---- | C] () -- C:\Users\BUBETO\Desktop\speccy 1.rtf [2013/11/15 15:03:38 | 000,002,039 | ---- | C] () -- C:\Users\Public\Desktop\Microsoft LifeCam.lnk [2013/11/15 14:54:28 | 000,002,697 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk [2013/11/13 22:57:49 | 000,010,374 | ---- | C] () -- C:\Users\BUBETO\Desktop\is the disk bad.rtf [2013/11/13 21:52:57 | 000,009,175 | ---- | C] () -- C:\Users\BUBETO\Desktop\Errors.rtf [2013/11/12 18:04:49 | 000,000,184 | ---- | C] () -- C:\Users\BUBETO\Desktop\YouTube.url [2013/11/12 15:06:49 | 000,001,021 | ---- | C] () -- C:\Users\BUBETO\Desktop\SpeedFan.lnk [2013/11/12 15:06:47 | 000,000,045 | ---- | C] () -- C:\Windows\SysWow64\initdebug.nfo [2013/11/11 20:37:02 | 000,000,862 | ---- | C] () -- C:\Users\BUBETO\Application Data\Microsoft\Internet Explorer\Quick Launch\Data Lifeguard Diagnostic for Windows.lnk [2013/11/11 20:37:02 | 000,000,838 | ---- | C] () -- C:\Users\Public\Desktop\Data Lifeguard Diagnostic for Windows.lnk [2013/11/09 13:56:40 | 000,000,917 | ---- | C] () -- C:\Users\BUBETO\Desktop\Favorites - Shortcut.lnk [2013/11/09 02:31:12 | 000,006,997 | ---- | C] () -- C:\Users\BUBETO\Desktop\Locate dump files.rtf [2013/11/08 17:19:12 | 000,002,109 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2013/11/08 17:15:29 | 000,170,043 | ---- | C] () -- C:\Windows\hpoins44.dat [2013/11/08 17:15:29 | 000,000,512 | ---- | C] () -- C:\Windows\hpomdl44.dat [2013/11/08 11:18:57 | 000,011,891 | ---- | C] () -- C:\Users\BUBETO\Desktop\Driver Verifier.rtf [2013/11/08 09:58:44 | 000,000,000 | ---- | C] () -- C:\END [2013/11/07 09:17:53 | 000,002,483 | ---- | C] () -- C:\Users\Public\Desktop\Reflect.lnk [2013/11/07 07:45:15 | 000,001,248 | ---- | C] () -- C:\Users\BUBETO\Desktop\DriverMax.lnk [2013/11/07 06:50:58 | 000,000,468 | ---- | C] () -- C:\Users\BUBETO\Desktop\New Volume (D) - Shortcut.lnk [2013/11/06 21:29:55 | 000,001,945 | ---- | C] () -- C:\Windows\epplauncher.mif [2013/11/06 21:29:24 | 000,002,127 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk [2013/11/06 17:02:51 | 000,025,185 | ---- | C] () -- C:\Windows\SysWow64\ieuinit.inf [2013/11/06 17:02:51 | 000,025,185 | ---- | C] () -- C:\Windows\SysNative\ieuinit.inf [2013/11/06 11:53:11 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk [2013/11/06 06:05:23 | 000,000,003 | ---- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf [2013/11/05 06:20:03 | 000,347,904 | ---- | C] () -- C:\Windows\SysNative\systemsf.ebd [2013/11/05 06:18:49 | 000,010,429 | ---- | C] () -- C:\Windows\SysNative\ScavengeSpace.xml [2013/11/05 06:18:42 | 000,105,559 | ---- | C] () -- C:\Windows\SysWow64\RacRules.xml [2013/11/05 06:18:42 | 000,105,559 | ---- | C] () -- C:\Windows\SysNative\RacRules.xml [2013/11/05 06:18:36 | 000,001,041 | ---- | C] () -- C:\Windows\SysWow64\tcpbidi.xml [2013/11/03 13:05:32 | 000,000,830 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2013/11/03 12:31:50 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_NuidFltr_01005.Wdf [2013/11/03 12:29:20 | 000,001,451 | ---- | C] () -- C:\Users\BUBETO\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk [2013/11/03 12:12:41 | 000,001,427 | ---- | C] () -- C:\Users\BUBETO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk [2013/11/03 12:12:25 | 000,000,290 | ---- | C] () -- C:\Users\BUBETO\Application Data\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk [2013/11/03 12:12:25 | 000,000,272 | ---- | C] () -- C:\Users\BUBETO\Application Data\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk [2013/11/03 12:02:45 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk [2013/11/03 12:02:41 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk [2013/11/03 12:01:19 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin [2013/11/03 12:01:19 | 000,000,000 | ---- | C] () -- C:\Windows\SysNative\atiicdxx.dat [2013/11/03 12:00:45 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf [2013/11/03 11:59:15 | 3220,037,632 | -HS- | C] () -- C:\hiberfil.sys [color=#E56717]========== ZeroAccess Check ==========[/color] [2009/07/14 17:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 "" = C:\Windows\SysNative\shell32.dll -- [2013/07/26 15:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shell32.dll -- [2013/07/26 14:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 14:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/21 01:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 14:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] [color=#E56717]========== LOP Check ==========[/color] [color=#E56717]========== Purity Check ==========[/color] < End of report >