Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Multiple iexplore.exe at startup


  • Please log in to reply

#1
Tsorp

Tsorp

    New Member

  • Member
  • Pip
  • 1 posts
Hi all,

Ok so I've done all the scans required by the cleaning guide but these processes are still opening at startup and I don't even use IE. Any help would be greatly appreciated.

Here are the required logs:

Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Database version: 4354

Windows 6.0.6002 Service Pack 2 (Safe Mode)
Internet Explorer 8.0.6001.18928

2010-07-27 19:35:34
mbam-log-2010-07-27 (19-35-34).txt

Scan type: Full scan (C:\|D:\|)
Objects scanned: 293602
Time elapsed: 1 hour(s), 45 minute(s), 46 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)


GMER 1.0.15.15281 - http://www.gmer.net
Rootkit scan 2010-07-27 23:25:56
Windows 6.0.6002 Service Pack 2
Running: aaaa.exe; Driver: C:\Users\Ordi\AppData\Local\Temp\kwldapod.sys


---- System - GMER 1.0.15 ----

SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwAlpcConnectPort [0x8E03B570]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwAlpcCreatePort [0x8E03BE46]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwConnectPort [0x8E03AFC6]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwCreateFile [0x8E034884]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwCreateKey [0x8E055FA8]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwCreatePort [0x8E03BAD0]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwCreateProcess [0x8E04FE42]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwCreateProcessEx [0x8E05026A]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwCreateSection [0x8E05A6FE]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwCreateWaitablePort [0x8E03BC2E]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwDeleteFile [0x8E0355B4]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwDeleteKey [0x8E057A50]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwDeleteValueKey [0x8E057346]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwDuplicateObject [0x8E04EC26]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwLoadKey [0x8E05841A]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwLoadKey2 [0x8E058658]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwLoadKeyEx [0x8E058B0A]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwOpenFile [0x8E03516C]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwOpenProcess [0x8E052358]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwOpenThread [0x8E051F46]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwRenameKey [0x8E0594E0]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwReplaceKey [0x8E058DD4]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwRequestWaitReplyPort [0x8E03AB5E]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwRestoreKey [0x8E059F40]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwSecureConnectPort [0x8E03B292]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwSetInformationFile [0x8E0359BE]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwSetSecurityObject [0x8E059A68]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwSetValueKey [0x8E056A6A]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwSystemDebugControl [0x8E050F66]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwTerminateProcess [0x8E050C96]
SSDT \SystemRoot\system32\DRIVERS\vsdatant.sys (ZoneAlarm Firewalling Driver/Check Point Software Technologies LTD) ZwCreateUserProcess [0x8E0506DE]

---- Kernel code sections - GMER 1.0.15 ----

.text ntoskrnl.exe!KeInsertQueue + 32D 82088924 8 Bytes [70, B5, 03, 8E, 46, BE, 03, ...] {JO 0xffffffffffffffb7; ADD ECX, [ESI-0x71fc41ba]}
.text ntoskrnl.exe!KeInsertQueue + 3B1 820889A8 4 Bytes [C6, AF, 03, 8E]
.text ntoskrnl.exe!KeInsertQueue + 3C9 820889C0 4 Bytes [84, 48, 03, 8E]
.text ntoskrnl.exe!KeInsertQueue + 3D9 820889D0 4 Bytes [A8, 5F, 05, 8E]
.text ntoskrnl.exe!KeInsertQueue + 3F5 820889EC 12 Bytes [D0, BA, 03, 8E, 42, FE, 04, ...]
.text ...

---- User code sections - GMER 1.0.15 ----

.text C:\Program Files\Internet Explorer\iexplore.exe[4100] USER32.dll!CreateWindowExW 76811305 5 Bytes JMP 6E70DB1C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4100] USER32.dll!DialogBoxParamW 768310B0 5 Bytes JMP 6E6354C5 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4100] USER32.dll!DialogBoxIndirectParamW 76832EF5 5 Bytes JMP 6E80480F C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4100] USER32.dll!DialogBoxParamA 76848152 5 Bytes JMP 6E8047AC C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4100] USER32.dll!DialogBoxIndirectParamA 7684847D 5 Bytes JMP 6E804872 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4100] USER32.dll!MessageBoxIndirectA 7685D4D9 5 Bytes JMP 6E804741 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4100] USER32.dll!MessageBoxIndirectW 7685D5D3 5 Bytes JMP 6E8046D6 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4100] USER32.dll!MessageBoxExA 7685D639 5 Bytes JMP 6E804674 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[4100] USER32.dll!MessageBoxExW 7685D65D 5 Bytes JMP 6E804612 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Mozilla Firefox\firefox.exe[4284] ntdll.dll!LdrLoadDll 771B9390 5 Bytes JMP 00AD13F0 C:\Program Files\Mozilla Firefox\firefox.exe (Firefox/Mozilla Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5164] USER32.dll!SetWindowsHookExW 768087AD 5 Bytes JMP 6E709AC9 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5164] USER32.dll!CallNextHookEx 76808E3B 5 Bytes JMP 6E6FD0ED C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5164] USER32.dll!UnhookWindowsHookEx 768098DB 5 Bytes JMP 6E67467C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5164] USER32.dll!CreateWindowExW 76811305 5 Bytes JMP 6E70DB1C C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5164] USER32.dll!DialogBoxParamW 768310B0 5 Bytes JMP 6E6354C5 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5164] USER32.dll!DialogBoxIndirectParamW 76832EF5 5 Bytes JMP 6E80480F C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5164] USER32.dll!DialogBoxParamA 76848152 5 Bytes JMP 6E8047AC C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5164] USER32.dll!DialogBoxIndirectParamA 7684847D 5 Bytes JMP 6E804872 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5164] USER32.dll!MessageBoxIndirectA 7685D4D9 5 Bytes JMP 6E804741 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5164] USER32.dll!MessageBoxIndirectW 7685D5D3 5 Bytes JMP 6E8046D6 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5164] USER32.dll!MessageBoxExA 7685D639 5 Bytes JMP 6E804674 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5164] USER32.dll!MessageBoxExW 7685D65D 5 Bytes JMP 6E804612 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5164] ole32.dll!OleLoadFromStream 76431E12 5 Bytes JMP 6E804B77 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)
.text C:\Program Files\Internet Explorer\iexplore.exe[5164] ole32.dll!CoCreateInstance 76469EA6 5 Bytes JMP 6E70DB78 C:\Windows\system32\IEFRAME.dll (Internet Explorer/Microsoft Corporation)

---- Devices - GMER 1.0.15 ----

AttachedDevice \Driver\tdx \Device\Tcp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
AttachedDevice \Driver\volmgr \Device\HarddiskVolume1 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice \Driver\volmgr \Device\HarddiskVolume2 fvevol.sys (BitLocker Drive Encryption Driver/Microsoft Corporation)
AttachedDevice \Driver\tdx \Device\Udp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
AttachedDevice \Driver\tdx \Device\RawIp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)
AttachedDevice \FileSystem\fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)

---- Files - GMER 1.0.15 ----

File C:\Program Files\RVG Software\Holdem Manager\Importing\Status\Command.dat 0 bytes

---- EOF - GMER 1.0.15 ----


OTL logfile created on: 2010-07-27 22:29:58 - Run 1
OTL by OldTimer - Version 3.2.9.1 Folder = C:\Users\Ordi\Desktop
Windows Vista Ultimate Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18928)
Locale: 00000C0C | Country: Canada | Language: FRC | Date Format: yyyy-MM-dd

2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 45,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 76,00% Paging File free
Paging file location(s): c:\pagefile.sys 1000 1000d:\pagefile.sys 0 0 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 37,57 Gb Total Space | 6,07 Gb Free Space | 16,15% Space Free | Partition Type: NTFS
Drive D: | 195,31 Gb Total Space | 159,46 Gb Free Space | 81,64% Space Free | Partition Type: NTFS
Unable to calculate disk information.
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Drive R: | 31,86 Mb Total Space | 31,86 Mb Free Space | 100,00% Space Free | Partition Type: FAT

Computer Name: ORDI-PC
Current User Name: Ordi
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 90 Days
Output = Standard
Quick Scan

========== Processes (SafeList) ==========

PRC - [2010-07-27 22:28:07 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Users\Ordi\Desktop\OTL.exe
PRC - [2010-07-22 12:34:56 | 000,921,952 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgemc.exe
PRC - [2010-07-14 10:54:49 | 002,065,760 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgtray.exe
PRC - [2010-07-14 10:54:49 | 001,101,152 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgchsvx.exe
PRC - [2010-07-14 10:54:49 | 000,723,296 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgcsrvx.exe
PRC - [2010-07-14 10:54:49 | 000,620,896 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgnsx.exe
PRC - [2010-07-14 10:54:49 | 000,515,424 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgrsx.exe
PRC - [2010-07-14 10:54:47 | 000,308,136 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgwdsvc.exe
PRC - [2010-07-12 04:55:38 | 001,352,832 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
PRC - [2010-07-12 04:55:38 | 000,864,112 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
PRC - [2010-05-20 18:11:48 | 002,437,176 | ---- | M] (Check Point Software Technologies LTD) -- C:\Windows\System32\ZoneLabs\vsmon.exe
PRC - [2010-05-20 18:10:18 | 001,043,968 | ---- | M] (Check Point Software Technologies LTD) -- C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
PRC - [2010-01-27 23:16:02 | 000,617,152 | ---- | M] (Druide informatique inc.) -- C:\Program Files\Druide\Antidote 7\Programmes32\agentantidote.exe
PRC - [2009-10-19 19:03:50 | 000,995,328 | ---- | M] (D-Link Corp.) -- C:\Program Files\D-Link\DWA-125 revA\AirGCFG.exe
PRC - [2009-10-19 18:39:38 | 000,122,880 | ---- | M] (Wireless Service) -- C:\Program Files\D-Link\DWA-125 revA\WZCSLDR2.exe
PRC - [2009-09-08 03:48:55 | 000,066,048 | ---- | M] (PostgreSQL Global Development Group) -- C:\Program Files\PostgreSQL\8.4\bin\pg_ctl.exe
PRC - [2009-09-08 03:47:07 | 004,513,792 | ---- | M] (PostgreSQL Global Development Group) -- C:\Program Files\PostgreSQL\8.4\bin\postgres.exe
PRC - [2009-07-07 19:49:20 | 000,040,960 | ---- | M] () -- C:\Program Files\D-Link\DWA-125 revA\ANIWConnService.exe
PRC - [2009-04-11 02:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2009-01-28 03:39:02 | 000,185,640 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version4\TeamViewer_Service.exe
PRC - [2009-01-26 15:31:10 | 001,153,368 | ---- | M] (Safer Networking Ltd.) -- C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
PRC - [2008-08-29 19:12:56 | 000,230,648 | ---- | M] (Stardock Corporation) -- C:\Program Files\Stardock\Object Desktop\WindowBlinds\VistaSrv.exe
PRC - [2008-08-03 19:02:20 | 000,036,352 | ---- | M] () -- C:\Program Files\Winamp\winampa.exe
PRC - [2008-04-26 17:14:22 | 000,099,752 | ---- | M] () -- C:\Program Files\Stardock\Object Desktop\WindowBlinds\WBVista.exe
PRC - [2007-05-17 17:45:33 | 000,271,720 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft LifeCam\MSCamS32.exe
PRC - [2006-09-28 21:09:14 | 000,700,416 | ---- | M] () -- C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe


========== Modules (SafeList) ==========

MOD - [2010-07-27 22:28:07 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Users\Ordi\Desktop\OTL.exe
MOD - [2010-07-14 10:55:29 | 000,012,536 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Windows\System32\avgrsstx.dll
MOD - [2009-04-11 02:21:38 | 001,686,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18005_none_5cb72f96088b0de0\comctl32.dll
MOD - [2008-01-20 22:22:45 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msscript.ocx


========== Win32 Services (SafeList) ==========

SRV - [2010-07-22 12:34:56 | 000,921,952 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG9\avgemc.exe -- (avg9emc)
SRV - [2010-07-14 10:54:47 | 000,308,136 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG9\avgwdsvc.exe -- (avg9wd)
SRV - [2010-07-12 04:55:38 | 001,352,832 | ---- | M] (Lavasoft) [Auto | Running] -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service)
SRV - [2010-05-20 18:11:48 | 002,437,176 | ---- | M] (Check Point Software Technologies LTD) [Auto | Running] -- C:\Windows\System32\ZoneLabs\vsmon.exe -- (vsmon)
SRV - [2010-03-18 13:16:28 | 000,753,504 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe -- (WPFFontCache_v0400)
SRV - [2010-03-18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009-09-24 11:59:26 | 001,695,368 | ---- | M] (NanJing Nagasoft Co, LTD.) [Auto | Stopped] -- C:\Windows\System32\nagasoft\vjocx.dll -- (vvdsvc)
SRV - [2009-09-08 03:48:55 | 000,066,048 | ---- | M] (PostgreSQL Global Development Group) [Auto | Running] -- C:\Program Files\PostgreSQL\8.4\bin\pg_ctl.exe -- (postgresql-8.4)
SRV - [2009-08-21 09:27:26 | 000,126,976 | ---- | M] (Wireless Service) [Auto | Stopped] -- C:\Program Files\D-Link\DWA-125 revA\ANIWZCSdS.exe -- (D_Link_DWA-125)
SRV - [2009-07-07 19:49:20 | 000,040,960 | ---- | M] () [Auto | Running] -- C:\Program Files\D-Link\DWA-125 revA\ANIWConnService.exe -- (D_Link_DWA-125_WPS)
SRV - [2009-01-28 03:39:02 | 000,185,640 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files\TeamViewer\Version4\TeamViewer_Service.exe -- (TeamViewer4)
SRV - [2009-01-26 15:31:10 | 001,153,368 | ---- | M] (Safer Networking Ltd.) [Auto | Running] -- C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe -- (SBSDWSCService)
SRV - [2008-08-29 19:12:56 | 000,230,648 | ---- | M] (Stardock Corporation) [Auto | Running] -- C:\Program Files\Stardock\Object Desktop\WindowBlinds\VistaSrv.exe -- (WindowBlinds)
SRV - [2008-01-20 22:21:41 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2007-05-17 17:45:33 | 000,271,720 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft LifeCam\MSCamS32.exe -- (MSCamSvc)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vsdatant.win7.sys -- (vsdatant7)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\ipinip.sys -- (IpInIp)
DRV - [2010-07-14 10:55:27 | 000,243,024 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgtdix.sys -- (AvgTdiX)
DRV - [2010-07-14 10:55:16 | 000,216,400 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgldx86.sys -- (AvgLdx86)
DRV - [2010-07-14 10:54:51 | 000,029,584 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\System32\drivers\avgmfx86.sys -- (AvgMfx86)
DRV - [2010-07-12 04:55:39 | 000,064,288 | ---- | M] (Lavasoft AB) [File_System | Boot | Running] -- C:\Windows\system32\DRIVERS\Lbd.sys -- (Lbd)
DRV - [2010-05-15 16:30:46 | 000,457,304 | ---- | M] (Check Point Software Technologies LTD) [Kernel | System | Running] -- C:\Windows\System32\drivers\vsdatant.sys -- (Vsdatant)
DRV - [2009-11-12 17:42:16 | 000,032,768 | ---- | M] (AnchorFree Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\taphss.sys -- (taphss)
DRV - [2009-09-15 13:47:44 | 000,798,208 | ---- | M] (Ralink Technology Corp.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Dnetr28u.sys -- (netr28u)
DRV - [2009-07-22 15:13:20 | 000,028,592 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tap0901.sys -- (tap0901)
DRV - [2009-04-30 22:02:00 | 009,850,016 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2009-04-11 00:42:54 | 000,073,216 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\USBAUDIO.sys -- (usbaudio) USB Audio Driver (WDM)
DRV - [2009-03-06 18:09:52 | 000,012,800 | ---- | M] () [Kernel | System | Running] -- C:\Windows\System32\drivers\anodlwf.sys -- (anodlwf)
DRV - [2008-07-22 03:42:34 | 000,123,904 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Rtlh86.sys -- (RTL8169)
DRV - [2008-02-11 20:36:10 | 002,302,976 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\igdkmd32.sys -- (igfx)
DRV - [2008-01-20 22:21:35 | 000,386,616 | ---- | M] (LSI Corporation, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\megasr.sys -- (MegaSR)
DRV - [2008-01-20 22:21:35 | 000,149,560 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpu320.sys -- (adpu320)
DRV - [2008-01-20 22:21:35 | 000,031,288 | ---- | M] (LSI Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\megasas.sys -- (megasas)
DRV - [2008-01-20 22:21:34 | 000,101,432 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpu160m.sys -- (adpu160m)
DRV - [2008-01-20 22:21:34 | 000,074,808 | ---- | M] (Silicon Integrated Systems) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sisraid4.sys -- (SiSRaid4)
DRV - [2008-01-20 22:21:34 | 000,040,504 | ---- | M] (Hewlett-Packard Company) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\hpcisss.sys -- (HpCISSs)
DRV - [2008-01-20 22:21:33 | 001,122,360 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ql2300.sys -- (ql2300)
DRV - [2008-01-20 22:21:33 | 000,300,600 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpahci.sys -- (adpahci)
DRV - [2008-01-20 22:21:33 | 000,118,784 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\E1G60I32.sys -- (E1G60) Intel®
DRV - [2008-01-20 22:21:33 | 000,089,656 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_sas.sys -- (LSI_SAS)
DRV - [2008-01-20 22:21:32 | 000,130,616 | ---- | M] (VIA Technologies Inc.,Ltd) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\vsmraid.sys -- (vsmraid)
DRV - [2008-01-20 22:21:32 | 000,079,928 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\arcsas.sys -- (arcsas)
DRV - [2008-01-20 22:21:32 | 000,079,416 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\arc.sys -- (arc)
DRV - [2008-01-20 22:21:31 | 000,235,064 | ---- | M] (Intel Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iastorv.sys -- (iaStorV)
DRV - [2008-01-20 22:21:31 | 000,115,816 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ulsata2.sys -- (ulsata2)
DRV - [2008-01-20 22:21:31 | 000,096,312 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_scsi.sys -- (LSI_SCSI)
DRV - [2008-01-20 22:21:31 | 000,096,312 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_fc.sys -- (LSI_FC)
DRV - [2008-01-20 22:21:30 | 000,342,584 | ---- | M] (Emulex) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\elxstor.sys -- (elxstor)
DRV - [2008-01-20 22:21:29 | 000,422,968 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adp94xx.sys -- (adp94xx)
DRV - [2008-01-20 22:21:29 | 000,102,968 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvraid.sys -- (nvraid)
DRV - [2008-01-20 22:21:29 | 000,045,112 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvstor.sys -- (nvstor)
DRV - [2008-01-20 22:21:28 | 000,238,648 | ---- | M] (ULi Electronics Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\uliahci.sys -- (uliahci)
DRV - [2008-01-20 22:21:09 | 000,020,024 | ---- | M] (VIA Technologies, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\viaide.sys -- (viaide)
DRV - [2008-01-20 22:21:09 | 000,019,000 | ---- | M] (CMD Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\cmdide.sys -- (cmdide)
DRV - [2008-01-20 22:21:09 | 000,017,464 | ---- | M] (Acer Laboratories Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\aliide.sys -- (aliide)
DRV - [2007-04-10 17:46:53 | 001,966,312 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\VX1000.sys -- (VX1000)
DRV - [2006-11-02 05:50:35 | 000,106,088 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ql40xx.sys -- (ql40xx)
DRV - [2006-11-02 05:50:35 | 000,098,408 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ulsata.sys -- (UlSata)
DRV - [2006-11-02 05:50:19 | 000,045,160 | ---- | M] (IBM Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nfrd960.sys -- (nfrd960)
DRV - [2006-11-02 05:50:17 | 000,041,576 | ---- | M] (Intel Corp./ICP vortex GmbH) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iirsp.sys -- (iirsp)
DRV - [2006-11-02 05:50:11 | 000,071,272 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\djsvs.sys -- (aic78xx)
DRV - [2006-11-02 05:50:09 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iteraid.sys -- (iteraid)
DRV - [2006-11-02 05:50:07 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iteatapi.sys -- (iteatapi)
DRV - [2006-11-02 05:50:05 | 000,035,944 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\symc8xx.sys -- (Symc8xx)
DRV - [2006-11-02 05:50:03 | 000,034,920 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sym_u3.sys -- (Sym_u3)
DRV - [2006-11-02 05:49:59 | 000,033,384 | ---- | M] (LSI Logic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\mraid35x.sys -- (Mraid35x)
DRV - [2006-11-02 05:49:56 | 000,031,848 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sym_hi.sys -- (Sym_hi)
DRV - [2006-11-02 04:25:24 | 000,071,808 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brserid.sys -- (Brserid) Brother MFC Serial Port Interface Driver (WDM)
DRV - [2006-11-02 04:24:47 | 000,011,904 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brusbser.sys -- (BrUsbSer)
DRV - [2006-11-02 04:24:46 | 000,005,248 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brfiltup.sys -- (BrFiltUp)
DRV - [2006-11-02 04:24:45 | 000,013,568 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brfiltlo.sys -- (BrFiltLo)
DRV - [2006-11-02 04:24:44 | 000,062,336 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brserwdm.sys -- (BrSerWdm)
DRV - [2006-11-02 04:24:44 | 000,012,160 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brusbmdm.sys -- (BrUsbMdm)
DRV - [2006-11-02 03:36:50 | 000,020,608 | ---- | M] (N-trig Innovative Technologies) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ntrigdigi.sys -- (ntrigdigi)
DRV - [2003-12-09 10:04:40 | 000,010,368 | ---- | M] (gavotte) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\rramdisk.sys -- (RRamdisk)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========


IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.condui...&ctid=CT1561552
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:5555

========== FireFox ==========

FF - prefs.js..browser.search.suggest.enabled: false
FF - prefs.js..browser.startup.homepage: "google.com"
FF - prefs.js..extensions.enabledItems: {b5fdd3bd-d125-ebeb-d35c-19a35b239235}:4.6.6.3
FF - prefs.js..extensions.enabledItems: [email protected]:2
FF - prefs.js..extensions.enabledItems: 4
FF - prefs.js..extensions.enabledItems: 9
FF - prefs.js..extensions.enabledItems: 1
FF - prefs.js..extensions.enabledItems: {3f963a5b-e555-4543-90e2-c3908898db71}:9.0.0.845


FF - HKLM\software\mozilla\Firefox\Extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: C:\Program Files\AVG\AVG9\Firefox [2010-07-22 12:36:11 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-07-26 00:02:52 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-07-26 17:47:52 | 000,000,000 | ---D | M]

[2009-04-08 11:21:02 | 000,000,000 | ---D | M] -- C:\Users\Ordi\AppData\Roaming\Mozilla\Extensions
[2010-07-27 03:18:58 | 000,000,000 | ---D | M] -- C:\Users\Ordi\AppData\Roaming\Mozilla\Firefox\Profiles\p2l0e438.default\extensions
[2010-04-15 21:29:07 | 000,000,000 | ---D | M] (Better JTV) -- C:\Users\Ordi\AppData\Roaming\Mozilla\Firefox\Profiles\p2l0e438.default\extensions\{1fc895a6-2042-46ec-a61b-233165b4c218}
[2010-05-03 09:32:36 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Ordi\AppData\Roaming\Mozilla\Firefox\Profiles\p2l0e438.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2009-11-10 14:22:16 | 000,000,000 | ---D | M] -- C:\Users\Ordi\AppData\Roaming\Mozilla\Firefox\Profiles\p2l0e438.default\extensions\[email protected]
[2010-07-27 03:18:58 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010-02-01 11:05:14 | 000,000,000 | ---D | M] (LoudMo Contextual Ad Assistant) -- C:\Program Files\Mozilla Firefox\extensions\{b5fdd3bd-d125-ebeb-d35c-19a35b239235}
[2010-03-13 04:30:59 | 000,001,516 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\amazon-france.xml
[2010-03-13 04:30:59 | 000,001,822 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\cnrtl-tlfi-fr.xml
[2010-03-13 04:30:59 | 000,000,757 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\eBay-france.xml
[2006-09-10 07:35:08 | 000,000,748 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\MediaDICO-fr.xml
[2010-03-13 04:30:59 | 000,001,426 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-fr.xml
[2010-03-24 05:48:52 | 000,000,956 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\yahoo-france.xml

O1 HOSTS File: ([2006-09-18 17:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe (Lavasoft)
O4 - HKLM..\Run: [agentantidote.exe] C:\Program Files\Druide\Antidote 7\Programmes32\agentantidote.exe (Druide informatique inc.)
O4 - HKLM..\Run: [AVG9_TRAY] C:\Program Files\AVG\AVG9\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [D-Link D-Link DWA-125] C:\Program Files\D-Link\DWA-125 revA\AirGCFG.exe (D-Link Corp.)
O4 - HKLM..\Run: [LifeCam] C:\Program Files\Microsoft LifeCam\LifeExp.exe (Microsoft Corporation)
O4 - HKLM..\Run: [NvCplDaemon] C:\Windows\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe ()
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKLM..\Run: [WZCSLDR2] C:\Program Files\D-Link\DWA-125 revA\WZCSLDR2.exe (Wireless Service)
O4 - HKLM..\Run: [ZoneAlarm Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe (Check Point Software Technologies LTD)
O4 - HKCU..\Run: [CTSyncU.exe] C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe ()
O4 - Startup: C:\Users\Ordi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: E&xporter vers Microsoft Excel - C:\Program Files\Microsoft Office\Office10\EXCEL.EXE (Microsoft Corporation)
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {D4003189-95B1-4A2F-9A87-F2B03665960D} http://www.vexcast.c...oad/vexcast.cab (VodClient Control Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 24.200.241.37 24.201.245.77 24.200.243.189
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O20 - AppInit_DLLs: (avgrsstx.dll) - C:\Windows\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\Windows\System32\igfxdev.dll (Intel Corporation)
O20 - Winlogon\Notify\WBSrv: DllName - C:\Program Files\Stardock\Object Desktop\WindowBlinds\wbsrv.dll - C:\Program Files\Stardock\Object Desktop\WindowBlinds\WbSrv.dll (Stardock Corporation)
O22 - SharedTaskScheduler: {E31004D1-A431-41B8-826F-E902F9D95C81} - Windows DreamScene - C:\Windows\System32\DreamScene.dll (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\Ordi\AppData\Roaming\Mozilla\Firefox\Fond d'écran.bmp
O24 - Desktop BackupWallPaper: C:\Users\Ordi\AppData\Roaming\Mozilla\Firefox\Fond d'écran.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006-09-18 17:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{4aae877a-f320-11dd-842d-001966a12dcd}\Shell\AutoRun\command - "" = F:\Programs\nu2menu\nu2menu.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (lsdelete) - C:\Windows\System32\lsdelete.exe ()
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - File not found
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: Wmi - C:\Windows\System32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found

Drivers32: aux - C:\Windows\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: aux1 - C:\Windows\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: aux2 - C:\Windows\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: midi - C:\Windows\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: midi1 - C:\Windows\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: midi2 - C:\Windows\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: midimapper - C:\Windows\System32\midimap.dll (Microsoft Corporation)
Drivers32: mixer - C:\Windows\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: mixer1 - C:\Windows\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: mixer2 - C:\Windows\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: mixer3 - C:\Windows\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: mixer4 - C:\Windows\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: mixer5 - C:\Windows\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: msacm.ac3filter - C:\Windows\System32\ac3filter.acm ()
Drivers32: msacm.imaadpcm - C:\Windows\System32\imaadp32.acm (Microsoft Corporation)
Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.msadpcm - C:\Windows\System32\msadp32.acm (Microsoft Corporation)
Drivers32: msacm.msaudio1 - C:\Windows\System32\MSAUD32.ACM (Microsoft Corporation)
Drivers32: msacm.msg711 - C:\Windows\System32\msg711.acm (Microsoft Corporation)
Drivers32: msacm.msgsm610 - C:\Windows\System32\msgsm32.acm (Microsoft Corporation)
Drivers32: msacm.siren - C:\Windows\System32\sirenacm.dll (Microsoft Corporation)
Drivers32: msacm.sl_anet - C:\Windows\System32\SL_ANET.ACM (Sipro Lab Telecom Inc.)
Drivers32: MSVideo8 - C:\Windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\Windows\System32\iccvid.dll (Radius Inc.)
Drivers32: vidc.DIVX - C:\Windows\System32\DivX.dll (DivX, Inc.)
Drivers32: VIDC.FFDS - C:\Windows\System32\ff_vfw.dll ()
Drivers32: vidc.i420 - C:\Windows\System32\iyuv_32.dll (Microsoft Corporation)
Drivers32: VIDC.IYUV - C:\Windows\System32\iyuv_32.dll (Microsoft Corporation)
Drivers32: VIDC.MP42 - C:\Windows\System32\MPG4C32.DLL (Microsoft Corporation)
Drivers32: VIDC.MPG4 - C:\Windows\System32\MPG4C32.DLL (Microsoft Corporation)
Drivers32: vidc.mrle - C:\Windows\System32\msrle32.dll (Microsoft Corporation)
Drivers32: vidc.msvc - C:\Windows\System32\msvidc32.dll (Microsoft Corporation)
Drivers32: vidc.tscc - C:\Windows\System32\tsccvid.dll (TechSmith Corporation)
Drivers32: VIDC.UYVY - C:\Windows\System32\msyuv.dll (Microsoft Corporation)
Drivers32: VIDC.YUY2 - C:\Windows\System32\msyuv.dll (Microsoft Corporation)
Drivers32: vidc.yv12 - C:\Windows\System32\DivX.dll (DivX, Inc.)
Drivers32: VIDC.YVU9 - C:\Windows\System32\tsbyuv.dll (Microsoft Corporation)
Drivers32: VIDC.YVYU - C:\Windows\System32\msyuv.dll (Microsoft Corporation)
Drivers32: wave - C:\Windows\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: wave1 - C:\Windows\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: wave2 - C:\Windows\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: wave3 - C:\Windows\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: wave4 - C:\Windows\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: wave5 - C:\Windows\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: wavemapper - C:\Windows\System32\msacm32.drv (Microsoft Corporation)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

========== Files/Folders - Created Within 90 Days ==========

[2010-07-27 22:28:04 | 000,574,976 | ---- | C] (OldTimer Tools) -- C:\Users\Ordi\Desktop\OTL.exe
[2010-07-27 22:24:29 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2010-07-27 22:23:49 | 000,000,000 | ---D | C] -- C:\Program Files\ERUNT
[2010-07-27 22:23:02 | 000,791,393 | ---- | C] (Lars Hederer ) -- C:\Users\Ordi\Desktop\erunt_setup.exe
[2010-07-27 22:11:01 | 000,446,464 | ---- | C] (OldTimer Tools) -- C:\Users\Ordi\Desktop\TFC.exe
[2010-07-27 22:05:22 | 000,703,352 | ---- | C] (Sysinternals - www.sysinternals.com) -- C:\Users\Ordi\Desktop\autoruns.exe
[2010-07-27 22:05:04 | 000,703,352 | ---- | C] (Sysinternals - www.sysinternals.com) -- C:\Program Files\autoruns.exe
[2010-07-27 22:05:04 | 000,585,080 | ---- | C] (Sysinternals - www.sysinternals.com) -- C:\Program Files\autorunsc.exe
[2010-07-27 16:56:00 | 001,137,360 | ---- | C] (F-Secure Corporation) -- C:\Users\Ordi\Desktop\fsbl.exe
[2010-07-27 16:41:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy
[2010-07-27 16:41:13 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy
[2010-07-26 19:44:52 | 000,064,288 | ---- | C] (Lavasoft AB) -- C:\Windows\System32\drivers\Lbd.sys
[2010-07-26 19:44:51 | 000,095,024 | ---- | C] (Sunbelt Software) -- C:\Windows\System32\drivers\SBREDrv.sys
[2010-07-26 19:25:20 | 000,000,000 | ---D | C] -- C:\Users\Ordi\AppData\Local\Sunbelt Software
[2010-07-26 19:24:40 | 000,000,000 | -H-D | C] -- C:\ProgramData\{BD986C1B-72EC-4B82-B47B-6CAC4E6F494E}
[2010-07-26 18:04:28 | 000,000,000 | ---D | C] -- C:\Windows\System32\eu-ES
[2010-07-26 18:04:28 | 000,000,000 | ---D | C] -- C:\Windows\System32\ca-ES
[2010-07-26 18:04:27 | 000,000,000 | ---D | C] -- C:\Windows\System32\vi-VN
[2010-07-26 17:50:37 | 000,000,000 | ---D | C] -- C:\Windows\System32\EventProviders
[2010-07-26 17:43:56 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2010-07-26 17:31:58 | 000,000,000 | ---D | C] -- D:\Documents\ForceField Shared Files
[2010-07-26 17:31:29 | 000,000,000 | ---D | C] -- C:\Users\Ordi\AppData\Roaming\CheckPoint
[2010-07-26 17:21:17 | 000,000,000 | ---D | C] -- C:\Program Files\Conduit
[2010-07-26 17:20:58 | 000,000,000 | ---D | C] -- C:\Program Files\CheckPoint
[2010-07-26 17:16:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\ZoneLabs
[2010-07-26 17:16:19 | 000,000,000 | ---D | C] -- C:\Program Files\Zone Labs
[2010-07-26 17:16:02 | 000,000,000 | ---D | C] -- C:\ProgramData\CheckPoint
[2010-07-26 17:16:00 | 000,000,000 | ---D | C] -- C:\Windows\Internet Logs
[2010-07-26 14:58:23 | 000,000,000 | ---D | C] -- C:\ProgramData\WindowsSearch
[2010-07-23 12:57:27 | 000,000,000 | ---D | C] -- C:\Users\Ordi\AppData\Local\CutePDF Writer
[2010-07-23 12:57:04 | 000,000,000 | ---D | C] -- C:\Program Files\GPLGS
[2010-07-23 12:56:42 | 000,000,000 | ---D | C] -- C:\Program Files\Acro Software
[2010-07-14 15:41:00 | 000,000,000 | -HSD | C] -- C:\Windows\System32\%APPDATA%
[2010-07-14 10:59:07 | 000,000,000 | ---D | C] -- C:\Program Files\B2BPOKER
[2010-07-14 10:55:51 | 000,000,000 | -H-D | C] -- C:\$AVG
[2010-07-14 10:55:29 | 000,012,536 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\System32\avgrsstx.dll
[2010-07-14 10:55:27 | 000,243,024 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\System32\drivers\avgtdix.sys
[2010-07-14 10:55:16 | 000,216,400 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\System32\drivers\avgldx86.sys
[2010-07-14 10:54:51 | 000,029,584 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\System32\drivers\avgmfx86.sys
[2010-07-14 10:54:51 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\Avg
[2010-07-14 10:54:46 | 000,000,000 | ---D | C] -- C:\ProgramData\avg9
[2010-06-26 14:36:13 | 000,000,000 | ---D | C] -- C:\Users\Ordi\Desktop\CALGARY
[2010-06-25 01:36:53 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2010-06-20 12:25:54 | 000,000,000 | ---D | C] -- C:\Users\Ordi\AppData\Local\Cake Client (BETA)
[2010-06-08 12:08:21 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee
[2010-06-07 20:33:48 | 000,798,208 | ---- | C] (Ralink Technology Corp.) -- C:\Windows\System32\drivers\Dnetr28u.sys
[2010-06-07 20:33:48 | 000,221,184 | ---- | C] (Ralink Technology, Inc.) -- C:\Windows\System32\RaCoInst.dll
[2010-06-07 20:33:48 | 000,000,000 | ---D | C] -- C:\Program Files\D-Link
[2010-06-07 20:33:37 | 000,000,000 | ---D | C] -- C:\Users\Ordi\AppData\Roaming\InstallShield
[2010-05-28 14:15:57 | 000,000,000 | ---D | C] -- C:\ProgramData\PokerWorld
[2010-05-28 14:05:19 | 000,000,000 | ---D | C] -- C:\Users\Ordi\AppData\Local\PokerWorld
[2010-05-28 14:05:04 | 000,000,000 | ---D | C] -- C:\Program Files\PokerWorld
[2010-05-06 17:42:21 | 000,000,000 | ---D | C] -- C:\ProgramData\iWin Games
[2009-07-08 14:12:19 | 000,103,424 | ---- | C] ( ) -- C:\Windows\System32\TableScan_nat.dll

========== Files - Modified Within 90 Days ==========

[2010-07-27 22:28:50 | 005,767,168 | -HS- | M] () -- C:\Users\Ordi\ntuser.dat
[2010-07-27 22:28:07 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Users\Ordi\Desktop\OTL.exe
[2010-07-27 22:23:55 | 000,000,918 | ---- | M] () -- C:\Users\Ordi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk
[2010-07-27 22:23:50 | 000,000,719 | ---- | M] () -- C:\Users\Ordi\Desktop\ERUNT.lnk
[2010-07-27 22:23:42 | 000,697,560 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2010-07-27 22:23:42 | 000,604,084 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010-07-27 22:23:42 | 000,107,392 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010-07-27 22:22:53 | 000,791,393 | ---- | M] (Lars Hederer ) -- C:\Users\Ordi\Desktop\erunt_setup.exe
[2010-07-27 22:19:46 | 000,003,284 | ---- | M] () -- C:\Windows\System32\ANIWZCS{0FD6D936-515A-4763-9134-8544B4E33A2B}
[2010-07-27 22:19:46 | 000,003,284 | ---- | M] () -- C:\Users\Ordi\AppData\Roaming\ANIWZCS{0FD6D936-515A-4763-9134-8544B4E33A2B}
[2010-07-27 22:19:40 | 000,231,214 | ---- | M] () -- C:\ProgramData\nvModes.001
[2010-07-27 22:19:39 | 000,000,005 | ---- | M] () -- C:\Windows\System32\ANIWZCSUSERNAME{0FD6D936-515A-4763-9134-8544B4E33A2B}
[2010-07-27 22:19:19 | 000,231,214 | ---- | M] () -- C:\ProgramData\nvModes.dat
[2010-07-27 22:19:03 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010-07-27 22:19:00 | 000,003,712 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010-07-27 22:18:59 | 000,003,712 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010-07-27 22:18:53 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010-07-27 22:17:43 | 000,524,288 | -HS- | M] () -- C:\Users\Ordi\NTUSER.DAT{2b8c8510-4489-11de-9378-001966a12dcd}.TMContainer00000000000000000001.regtrans-ms
[2010-07-27 22:17:43 | 000,065,536 | -HS- | M] () -- C:\Users\Ordi\NTUSER.DAT{2b8c8510-4489-11de-9378-001966a12dcd}.TM.blf
[2010-07-27 22:10:57 | 000,446,464 | ---- | M] (OldTimer Tools) -- C:\Users\Ordi\Desktop\TFC.exe
[2010-07-27 17:14:27 | 062,646,716 | ---- | M] () -- C:\Windows\System32\drivers\Avg\incavi.avm
[2010-07-27 16:56:01 | 001,137,360 | ---- | M] (F-Secure Corporation) -- C:\Users\Ordi\Desktop\fsbl.exe
[2010-07-27 16:41:22 | 000,001,060 | ---- | M] () -- C:\Users\Ordi\Desktop\Spybot - Search & Destroy.lnk
[2010-07-27 09:59:18 | 000,002,377 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2010-07-26 19:44:51 | 000,095,024 | ---- | M] (Sunbelt Software) -- C:\Windows\System32\drivers\SBREDrv.sys
[2010-07-26 19:32:29 | 000,293,376 | ---- | M] () -- C:\Users\Ordi\Desktop\aaaa.exe
[2010-07-26 19:24:38 | 000,001,036 | ---- | M] () -- C:\Users\Ordi\Application Data\Microsoft\Internet Explorer\Quick Launch\Ad-Aware.lnk
[2010-07-26 19:24:38 | 000,001,012 | ---- | M] () -- C:\Users\Public\Desktop\Ad-Aware.lnk
[2010-07-26 18:38:41 | 000,000,784 | ---- | M] () -- D:\Documents\cc_20100726_183838.reg
[2010-07-26 18:38:29 | 000,003,600 | ---- | M] () -- D:\Documents\cc_20100726_183826.reg
[2010-07-26 18:38:18 | 000,013,928 | ---- | M] () -- D:\Documents\cc_20100726_183815.reg
[2010-07-26 18:38:05 | 000,460,328 | ---- | M] () -- D:\Documents\cc_20100726_183756.reg
[2010-07-26 18:36:55 | 000,000,809 | ---- | M] () -- C:\Users\Ordi\Desktop\CCleaner.lnk
[2010-07-26 18:34:12 | 000,054,776 | ---- | M] () -- C:\Users\Ordi\AppData\Local\GDIPFONTCACHEV1.DAT
[2010-07-26 18:08:12 | 000,251,528 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2010-07-26 17:47:53 | 000,001,892 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk
[2010-07-26 17:25:07 | 000,421,442 | -H-- | M] () -- C:\Windows\System32\drivers\vsconfig.xml
[2010-07-26 17:20:25 | 000,000,876 | ---- | M] () -- C:\Users\Ordi\Desktop\ZoneAlarm Security.lnk
[2010-07-23 12:57:30 | 003,594,182 | ---- | M] () -- C:\Users\Ordi\Desktop\Lease - Sébastien and Amélie.pdf
[2010-07-22 00:35:56 | 000,703,352 | ---- | M] (Sysinternals - www.sysinternals.com) -- C:\Users\Ordi\Desktop\autoruns.exe
[2010-07-22 00:35:56 | 000,703,352 | ---- | M] (Sysinternals - www.sysinternals.com) -- C:\Program Files\autoruns.exe
[2010-07-22 00:35:54 | 000,585,080 | ---- | M] (Sysinternals - www.sysinternals.com) -- C:\Program Files\autorunsc.exe
[2010-07-14 10:55:29 | 000,012,536 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Windows\System32\avgrsstx.dll
[2010-07-14 10:55:29 | 000,001,652 | ---- | M] () -- C:\Users\Public\Desktop\AVG Free 9.0.lnk
[2010-07-14 10:55:27 | 000,243,024 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Windows\System32\drivers\avgtdix.sys
[2010-07-14 10:55:16 | 000,216,400 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Windows\System32\drivers\avgldx86.sys
[2010-07-14 10:54:51 | 000,113,461 | ---- | M] () -- C:\Windows\System32\drivers\Avg\iavichjw.avm
[2010-07-14 10:54:51 | 000,029,584 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Windows\System32\drivers\avgmfx86.sys
[2010-07-12 04:55:39 | 000,064,288 | ---- | M] (Lavasoft AB) -- C:\Windows\System32\drivers\Lbd.sys
[2010-07-12 04:55:38 | 000,015,880 | ---- | M] () -- C:\Windows\System32\lsdelete.exe
[2010-07-10 14:23:09 | 000,460,824 | ---- | M] () -- C:\img2-001.raw
[2010-07-01 02:13:46 | 000,001,731 | ---- | M] () -- C:\Users\Ordi\Desktop\PokerWorld.lnk
[2010-06-23 15:10:36 | 000,002,671 | ---- | M] () -- C:\Users\Ordi\Desktop\Microsoft Word.lnk
[2010-06-07 20:37:32 | 000,001,827 | ---- | M] () -- C:\Users\Public\Desktop\Wireless Connection Manager.lnk
[2010-05-28 14:05:05 | 000,001,733 | ---- | M] () -- C:\Users\Ordi\Application Data\Microsoft\Internet Explorer\Quick Launch\PokerWorld.lnk
[2010-05-05 02:51:56 | 000,014,336 | ---- | M] () -- C:\Users\Ordi\Desktop\New Feuille de calcul Microsoft Excel.xls
[2010-04-29 15:39:38 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010-04-29 15:39:26 | 000,020,952 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010-04-29 15:26:39 | 000,000,865 | ---- | M] () -- C:\Users\Public\Desktop\Full Tilt Poker.lnk

========== Files Created - No Company Name ==========

[2010-07-27 22:23:55 | 000,000,918 | ---- | C] () -- C:\Users\Ordi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk
[2010-07-27 22:23:50 | 000,000,719 | ---- | C] () -- C:\Users\Ordi\Desktop\ERUNT.lnk
[2010-07-27 22:05:04 | 000,048,904 | ---- | C] () -- C:\Program Files\autoruns.chm
[2010-07-27 22:05:04 | 000,007,005 | ---- | C] () -- C:\Program Files\Eula.txt
[2010-07-27 16:41:22 | 000,001,060 | ---- | C] () -- C:\Users\Ordi\Desktop\Spybot - Search & Destroy.lnk
[2010-07-26 19:32:30 | 000,293,376 | ---- | C] () -- C:\Users\Ordi\Desktop\aaaa.exe
[2010-07-26 19:24:38 | 000,001,036 | ---- | C] () -- C:\Users\Ordi\Application Data\Microsoft\Internet Explorer\Quick Launch\Ad-Aware.lnk
[2010-07-26 19:24:38 | 000,001,012 | ---- | C] () -- C:\Users\Public\Desktop\Ad-Aware.lnk
[2010-07-26 18:38:40 | 000,000,784 | ---- | C] () -- D:\Documents\cc_20100726_183838.reg
[2010-07-26 18:38:27 | 000,003,600 | ---- | C] () -- D:\Documents\cc_20100726_183826.reg
[2010-07-26 18:38:17 | 000,013,928 | ---- | C] () -- D:\Documents\cc_20100726_183815.reg
[2010-07-26 18:37:59 | 000,460,328 | ---- | C] () -- D:\Documents\cc_20100726_183756.reg
[2010-07-26 17:32:04 | 000,003,284 | ---- | C] () -- C:\Windows\System32\ANIWZCS{0FD6D936-515A-4763-9134-8544B4E33A2B}
[2010-07-26 17:31:04 | 000,000,005 | ---- | C] () -- C:\Windows\System32\ANIWZCSUSERNAME{0FD6D936-515A-4763-9134-8544B4E33A2B}
[2010-07-26 17:20:25 | 000,000,876 | ---- | C] () -- C:\Users\Ordi\Desktop\ZoneAlarm Security.lnk
[2010-07-26 17:16:21 | 000,421,442 | -H-- | C] () -- C:\Windows\System32\drivers\vsconfig.xml
[2010-07-23 12:57:41 | 003,594,182 | ---- | C] () -- C:\Users\Ordi\Desktop\Lease - Sébastien and Amélie.pdf
[2010-07-23 12:56:43 | 000,087,552 | ---- | C] () -- C:\Windows\System32\cpwmon2k.dll
[2010-07-14 10:55:29 | 000,001,652 | ---- | C] () -- C:\Users\Public\Desktop\AVG Free 9.0.lnk
[2010-07-14 10:54:51 | 062,646,716 | ---- | C] () -- C:\Windows\System32\drivers\Avg\incavi.avm
[2010-07-14 10:54:51 | 000,113,461 | ---- | C] () -- C:\Windows\System32\drivers\Avg\iavichjw.avm
[2010-06-07 20:37:34 | 000,003,284 | ---- | C] () -- C:\Users\Ordi\AppData\Roaming\ANIWZCS{0FD6D936-515A-4763-9134-8544B4E33A2B}
[2010-06-07 20:37:32 | 000,001,827 | ---- | C] () -- C:\Users\Public\Desktop\Wireless Connection Manager.lnk
[2010-06-07 20:33:49 | 000,012,800 | ---- | C] () -- C:\Windows\System32\drivers\anodlwf.sys
[2010-06-07 20:33:48 | 000,013,931 | ---- | C] () -- C:\Windows\System32\RaCoInst.dat
[2010-05-28 14:05:05 | 000,001,733 | ---- | C] () -- C:\Users\Ordi\Application Data\Microsoft\Internet Explorer\Quick Launch\PokerWorld.lnk
[2010-05-28 14:05:05 | 000,001,731 | ---- | C] () -- C:\Users\Ordi\Desktop\PokerWorld.lnk
[2010-04-30 12:56:54 | 000,053,827 | ---- | C] () -- C:\Program Files\hminstalllog.txt
[2010-04-29 15:26:39 | 000,000,865 | ---- | C] () -- C:\Users\Public\Desktop\Full Tilt Poker.lnk
[2010-03-01 15:10:39 | 000,000,146 | ---- | C] () -- C:\Windows\System32\FullTiltPlanner-v0.2.ini
[2010-02-21 10:39:41 | 000,000,025 | ---- | C] () -- C:\Windows\EPCX4600.ini
[2009-12-12 09:10:29 | 000,000,087 | ---- | C] () -- C:\Windows\Antidote7.ini
[2009-11-10 07:45:13 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2009-11-09 16:36:18 | 000,000,000 | ---- | C] () -- C:\Windows\WB.ini
[2009-11-09 16:34:20 | 000,058,792 | ---- | C] () -- C:\Windows\System32\wbload.dll
[2009-07-15 04:09:42 | 000,000,118 | ---- | C] () -- C:\Windows\System32\MRT.INI
[2009-07-10 16:33:43 | 000,000,065 | ---- | C] () -- C:\Windows\wininit.ini
[2009-07-08 14:33:58 | 000,001,373 | ---- | C] () -- C:\Windows\PartyGrabber.ini
[2009-04-13 10:37:34 | 000,005,120 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll
[2009-04-13 10:37:34 | 000,000,547 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll.manifest
[2009-03-28 00:24:17 | 000,000,000 | ---- | C] () -- C:\Windows\HMHud.INI
[2009-02-04 21:12:13 | 000,000,382 | ---- | C] () -- C:\Windows\ODBC.INI
[2008-11-06 12:37:32 | 003,596,288 | ---- | C] () -- C:\Windows\System32\qt-dx331.dll
[2008-11-06 12:34:00 | 000,000,416 | ---- | C] () -- C:\Windows\System32\dtu100.dll.manifest
[2008-11-06 12:34:00 | 000,000,416 | ---- | C] () -- C:\Windows\System32\dpl100.dll.manifest
[2008-11-06 12:33:02 | 000,012,288 | ---- | C] () -- C:\Windows\System32\DivXWMPExtType.dll
[2008-02-11 20:55:18 | 000,147,456 | ---- | C] () -- C:\Windows\System32\igfxCoIn_v1437.dll
[2008-01-20 22:23:41 | 000,081,158 | ---- | C] () -- C:\Windows\System32\manage-bde.ini.en
[2007-04-10 17:46:52 | 000,015,498 | ---- | C] () -- C:\Windows\VX1000.ini
[2006-11-02 08:34:20 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006-11-02 03:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini

========== LOP Check ==========

[2010-06-27 15:56:27 | 000,000,000 | ---D | M] -- C:\Users\Ordi\AppData\Roaming\Azureus
[2010-01-29 00:19:47 | 000,000,000 | ---D | M] -- C:\Users\Ordi\AppData\Roaming\CCH
[2010-07-26 17:31:29 | 000,000,000 | ---D | M] -- C:\Users\Ordi\AppData\Roaming\CheckPoint
[2009-09-30 15:47:45 | 000,000,000 | ---D | M] -- C:\Users\Ordi\AppData\Roaming\CmapTools
[2009-03-20 14:27:07 | 000,000,000 | ---D | M] -- C:\Users\Ordi\AppData\Roaming\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2009-12-12 09:05:52 | 000,000,000 | ---D | M] -- C:\Users\Ordi\AppData\Roaming\Druide
[2010-06-08 12:01:24 | 000,000,000 | ---D | M] -- C:\Users\Ordi\AppData\Roaming\FrostWire
[2009-08-26 15:48:41 | 000,000,000 | ---D | M] -- C:\Users\Ordi\AppData\Roaming\GPass
[2009-04-04 08:20:05 | 000,000,000 | ---D | M] -- C:\Users\Ordi\AppData\Roaming\Hop! Écrire prefs
[2009-09-13 00:29:37 | 000,000,000 | ---D | M] -- C:\Users\Ordi\AppData\Roaming\KeePass
[2009-06-02 18:52:37 | 000,000,000 | ---D | M] -- C:\Users\Ordi\AppData\Roaming\Microgaming
[2009-04-29 10:37:07 | 000,000,000 | ---D | M] -- C:\Users\Ordi\AppData\Roaming\postgresql
[2009-10-13 15:17:45 | 000,000,000 | ---D | M] -- C:\Users\Ordi\AppData\Roaming\Stata10
[2009-02-15 15:09:20 | 000,000,000 | ---D | M] -- C:\Users\Ordi\AppData\Roaming\TeamViewer
[2010-07-27 22:17:54 | 000,032,640 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



========== Custom Scans ==========


< %SYSTEMDRIVE%\*.* >
[2010-07-27 22:18:49 | 000,120,863 | ---- | M] () -- C:\aaw7boot.log
[2006-09-18 17:43:36 | 000,000,024 | ---- | M] () -- C:\autoexec.bat
[2009-04-11 02:36:36 | 000,333,257 | RHS- | M] () -- C:\bootmgr
[2009-02-04 23:14:34 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK
[2006-09-18 17:43:37 | 000,000,010 | ---- | M] () -- C:\config.sys
[2010-07-10 14:23:09 | 000,460,824 | ---- | M] () -- C:\img2-001.raw
[2009-04-14 15:36:07 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010-07-10 01:16:50 | 000,000,109 | ---- | M] () -- C:\mbam-error.txt
[2009-04-14 15:36:07 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2010-07-27 22:18:49 | 1048,576,000 | -HS- | M] () -- C:\pagefile.sys

< %systemroot%\system32\*.wt >

< %systemroot%\system32\*.ruy >

< %systemroot%\Fonts\*.com >
[2006-11-02 08:35:26 | 000,026,040 | ---- | M] () -- C:\Windows\Fonts\GlobalMonospace.CompositeFont
[2006-11-02 08:35:26 | 000,026,489 | ---- | M] () -- C:\Windows\Fonts\GlobalSansSerif.CompositeFont
[2006-11-02 08:35:26 | 000,029,779 | ---- | M] () -- C:\Windows\Fonts\GlobalSerif.CompositeFont
[2010-07-26 17:57:34 | 000,037,665 | ---- | M] () -- C:\Windows\Fonts\GlobalUserInterface.CompositeFont

< %systemroot%\Fonts\*.dll >

< %systemroot%\Fonts\*.ini >
[2006-09-18 17:37:34 | 000,000,065 | ---- | M] () -- C:\Windows\Fonts\desktop.ini

< %systemroot%\Fonts\*.ini2 >

< %systemroot%\system32\spool\prtprocs\w32x86\*.* >
[2006-11-02 05:46:04 | 000,032,768 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Windows\System32\spool\prtprocs\w32x86\EP0NPP01.DLL
[2006-11-02 08:34:09 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spool\prtprocs\w32x86\jnwppr.dll

< %systemroot%\REPAIR\*.bak1 >

< %systemroot%\REPAIR\*.ini >

< %systemroot%\system32\*.jpg >

< %systemroot%\*.scr >

< %systemroot%\*._sy >

< %APPDATA%\Adobe\Update\*.* >

< %ALLUSERSPROFILE%\Favorites\*.* >

< %APPDATA%\Microsoft\*.* >
[2010-06-07 19:46:31 | 000,001,674 | -H-- | M] () -- C:\Users\Ordi\AppData\Roaming\Microsoft\LastFlashConfig.WFC

< %PROGRAMFILES%\*.* >
[2009-08-30 20:17:12 | 000,048,904 | ---- | M] () -- C:\Program Files\autoruns.chm
[2010-07-22 00:35:56 | 000,703,352 | ---- | M] (Sysinternals - www.sysinternals.com) -- C:\Program Files\autoruns.exe
[2010-07-22 00:35:54 | 000,585,080 | ---- | M] (Sysinternals - www.sysinternals.com) -- C:\Program Files\autorunsc.exe
[2008-01-20 22:41:56 | 000,000,174 | -HS- | M] () -- C:\Program Files\desktop.ini
[2006-07-28 09:32:44 | 000,007,005 | ---- | M] () -- C:\Program Files\Eula.txt
[2010-04-30 12:56:54 | 000,053,827 | ---- | M] () -- C:\Program Files\hminstalllog.txt

< %APPDATA%\Update\*.* >

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[2010-07-14 10:55:29 | 000,012,536 | ---- | M] (AVG Technologies CZ, s.r.o.) Unable to obtain MD5 -- C:\Windows\System32\avgrsstx.dll
[2009-03-08 07:22:37 | 000,156,160 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\System32\msls31.dll
[2009-04-11 02:28:23 | 000,286,720 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\System32\rasapi32.dll
[2008-01-20 22:22:18 | 000,071,168 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\System32\rasman.dll
[2009-04-11 02:27:47 | 000,241,128 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\System32\rsaenh.dll
[2009-04-11 02:28:24 | 000,036,352 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\System32\rtutils.dll
[2006-11-02 05:46:12 | 000,008,704 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\System32\SensApi.dll
[2009-04-11 02:28:23 | 000,228,352 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\System32\SLC.dll
[2008-01-20 22:22:21 | 000,376,832 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\System32\sxs.dll
[2006-11-02 05:46:13 | 000,191,488 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\System32\tapi32.dll

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\System32\config\*.sav >
[2008-01-20 23:16:46 | 017,956,864 | ---- | M] () -- C:\Windows\System32\config\COMPONENTS.SAV
[2008-01-20 23:16:31 | 000,106,496 | ---- | M] () -- C:\Windows\System32\config\DEFAULT.SAV
[2008-01-20 23:16:46 | 000,020,480 | ---- | M] () -- C:\Windows\System32\config\SECURITY.SAV
[2006-11-02 06:34:08 | 010,133,504 | ---- | M] () -- C:\Windows\System32\config\SOFTWARE.SAV
[2006-11-02 06:34:08 | 001,826,816 | ---- | M] () -- C:\Windows\System32\config\SYSTEM.SAV

< %systemroot%\system32\user32.dll /md5 >
[2009-04-11 02:28:25 | 000,627,712 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\System32\user32.dll

< %systemroot%\system32\ws2_32.dll /md5 >
[2008-01-20 22:22:57 | 000,179,200 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\System32\ws2_32.dll

< %systemroot%\system32\ws2help.dll /md5 >
[2006-11-02 05:44:30 | 000,004,608 | ---- | M] (Microsoft Corporation) MD5=17C0671BF57057108A6D949510EE42C8 -- C:\Windows\System32\ws2help.dll

< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >

< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2010-07-26 21:59:26

========== Alternate Data Streams ==========

@Alternate Data Stream - 81 bytes -> C:\Program Files\PokerWorld:MID
@Alternate Data Stream - 81 bytes -> C:\Program Files\Cake Poker:MID
< End of report >


OTL Extras logfile created on: 2010-07-27 22:29:58 - Run 1
OTL by OldTimer - Version 3.2.9.1 Folder = C:\Users\Ordi\Desktop
Windows Vista Ultimate Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18928)
Locale: 00000C0C | Country: Canada | Language: FRC | Date Format: yyyy-MM-dd

2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 45,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 76,00% Paging File free
Paging file location(s): c:\pagefile.sys 1000 1000d:\pagefile.sys 0 0 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 37,57 Gb Total Space | 6,07 Gb Free Space | 16,15% Space Free | Partition Type: NTFS
Drive D: | 195,31 Gb Total Space | 159,46 Gb Free Space | 81,64% Space Free | Partition Type: NTFS
Unable to calculate disk information.
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Drive R: | 31,86 Mb Total Space | 31,86 Mb Free Space | 100,00% Space Free | Partition Type: FAT

Computer Name: ORDI-PC
Current User Name: Ordi
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 90 Days
Output = Standard
Quick Scan

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office10\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office10\msohtmed.exe" /p %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\S-1-5-21-740960192-2607730556-3983123868-1000]
"EnableNotifications" = 0
"EnableNotificationsRef" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0

========== Authorized Applications List ==========


========== Vista Active Open Ports Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{13B79465-FBF3-4A23-B9C9-9C76AB297016}" = rport=445 | protocol=6 | dir=out | app=system |
"{15D4800E-F9FA-4CED-B718-DEDD882F0247}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{2EEAF00F-C3F1-4E73-A1E7-B1DC7D53A17E}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |
"{2FB28C23-DE0E-48EA-B2DB-B1AFF5D4F7C5}" = lport=137 | protocol=17 | dir=in | app=system |
"{334CF1B2-342E-4AD4-8D30-C09753A96C51}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{453D0D3E-7821-4E6A-A552-68DB75F2AA5F}" = lport=5000 | protocol=17 | dir=in | name=akamai netsession interface |
"{4DA78B45-C27B-4572-BAEE-6F55F41424CD}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{4F76D9AA-D2FD-4EC1-BD3E-A031A7A96D54}" = rport=137 | protocol=17 | dir=out | app=system |
"{572171D0-8DDA-4182-8627-EF286D0F5124}" = lport=5432 | protocol=6 | dir=in | name=postgressql |
"{7AFB97B6-5AA7-4A9F-A4C8-9CD516A878DA}" = lport=445 | protocol=6 | dir=in | app=system |
"{9A83503C-E376-4B9A-9A5F-945AD22186C2}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{A2BC4FFD-6C0A-437E-96A4-1033E20F6EB5}" = rport=138 | protocol=17 | dir=out | app=system |
"{A91B7DBD-5D4C-4737-B0D2-25DDDA8C4CE4}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{B536EEC2-52B7-486E-B572-C98EB7CFE891}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{BCCFFDDD-3EA7-4CAF-B6F8-B9B6F7673345}" = lport=2869 | protocol=6 | dir=in | app=system |
"{BCF19408-CC70-4D24-B433-B607DBD48A3B}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{C7A19B48-323C-4DCA-AA2B-DBFA7E181A2D}" = lport=49166 | protocol=6 | dir=in | name=akamai netsession interface |
"{C9DAFCEF-E5EC-4A54-B571-D4AD0ED7A5CE}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{CDD1C16C-EA64-4660-AB61-EE86A92BA4BD}" = lport=138 | protocol=17 | dir=in | app=system |
"{D9FE06F1-6E7B-4240-86D2-313C05540505}" = lport=139 | protocol=6 | dir=in | app=system |
"{EDEB5996-C22D-43A3-BA3B-4880CF2BFD2A}" = rport=139 | protocol=6 | dir=out | app=system |
"{F08625A6-1912-4164-B1FF-B9B0D5317B96}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{F2254326-0486-40C6-8041-8A8DC01E4CF2}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |

========== Vista Active Application Exception List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{008F9E58-826E-490F-BB3A-B175602E677D}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{023933B7-0E89-47BF-8066-E73DF82D8030}" = protocol=6 | dir=in | app=c:\program files\google\google talk\googletalk.exe |
"{0317631B-808C-4512-83CA-ECC1AEE36155}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{0420E33A-5786-4A6E-AED1-FE92AF5E2C96}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{045A24AF-F0CE-43F4-8B9C-E7A791F1A065}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{05160554-28C2-4280-9547-B1C040A0DAED}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{055171B5-2AF0-421B-893E-C40E96A5A610}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{056F8EA0-0E5F-4A98-9482-1076436D3DCF}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{05CEFEFE-2273-4758-9107-ED9B0CFED6A6}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{05F213FA-6FD9-44C5-9099-E34F52A2285F}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{062BB3E8-9DB1-4FA9-ABBB-DEE0B9B8F3C4}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{06FE4689-CD3F-4937-873B-BBD046ECD0B3}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{076B3BA4-F276-4211-9781-09B15B8F2AAA}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{08356A49-37DE-4806-BA59-37743D76EC0C}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{085C5D69-5872-46D2-A269-51FEFB477EDF}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{0A03F571-C538-40B6-B387-2B6C1F1FB257}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{0A473CCB-3AED-44BA-B493-56B00F405952}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{0A55B990-A721-4221-B1F3-C4BB396073B3}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{0A7BEBFD-8490-4611-BA6B-8A44516B4BB3}" = dir=in | app=c:\program files\avg\avg9\avgupd.exe |
"{0B3CEC6C-DC9A-444A-9904-A3D14945AB3B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{0B5BFBCF-A8B7-452A-92AB-33A3FFE3A109}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{0B832E62-335B-4062-A632-0E3FC1B7DC3E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{0B93AD0C-46E4-4EBF-9373-8C5776476211}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{0BAAF2DE-C9A5-4104-897E-92EEC8D1FE3B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{0BB243FB-A789-483C-A4C0-B464B04A9D08}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{0C1D3874-FB40-4DBE-93BF-614963AE3A0A}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{0C1E1833-46FE-4C54-BAC5-99127321C804}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{0D4B8128-2958-44A1-83E9-E992B6A61F9E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{0E257D16-96A9-458C-8B82-0B71603F88E5}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{0E688806-9D8E-4AE7-84FE-09E868F04394}" = protocol=6 | dir=in | app=c:\program files\microsoft lifecam\lifeexp.exe |
"{0FB5C16D-E175-48A8-8DFE-306398F0BE17}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{103A33D5-7C98-4391-A952-11EA1F1800D5}" = protocol=17 | dir=in | app=c:\program files\microsoft lifecam\lifecam.exe |
"{10648B69-C5FB-4749-89EC-580999DBE61F}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{10CD3975-444E-4E0F-88C2-3FB333DEC219}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{10D70135-764B-4E91-9DD5-90B671BE5350}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{111DD251-6A09-4C66-AC69-6E9499244162}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{129BE855-305D-49B4-92CB-0C7C8722A63D}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{1308E111-D723-4A3B-9EE0-B65A85AEE185}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{130DCD30-4F55-4DF3-8CBF-74E86C4EA244}" = protocol=1 | dir=in | [email protected],-28543 |
"{131629BE-2CBC-4BE4-B71E-646D47BF1B8F}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{136F07B8-612F-4665-AB2C-40F8E3B4750A}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{137531E6-9849-440C-86F0-E42A54149CF9}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{146A1EC0-5B9A-4DA6-97FF-8ECE37A3005D}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{1567F8D9-0780-483D-B617-713F727F06EE}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{1573FE8E-E2C6-45CC-AFE1-F6921B3646B4}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{15AD468F-876C-42E8-A39F-4E78BA52ADCD}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{16C66470-0201-43C3-A42A-C1F976FD0462}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{17A39730-E40D-4768-A5AF-040E8A9FAEA6}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{17E80799-DDAA-457E-96B1-B5E7BB79873C}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{187B3057-52F5-4AB0-BF2D-670059C81DD4}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{1880B857-A969-42EF-BABC-94938539419D}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{1A56B0B2-3CF8-4120-AA24-CE14A659D418}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{1B07A072-E585-4ECF-8CFD-D4BAA692911F}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{1C091A16-C010-4630-91DA-109C00477512}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{1C58ADE9-23A6-4FBA-8A91-21092286B311}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{1E42FBDF-3347-42BC-A07B-077D767AF983}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{1EB2A5BA-1DC9-4997-A99B-E515FCBB5A78}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{1FD69085-9F25-4898-BAEF-5092533CC5BA}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{208CC69F-E202-4E21-BE6F-ED3D6E34927C}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{20B23351-66AF-413E-B272-1BE50CD6DA6F}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{211A12BE-9EAD-4ED0-A79D-2C9B46BEBAF2}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2148E7C1-F94F-486C-89DA-310C04DE3D86}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2209BE95-7706-45F8-A038-DF996BDBCC82}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{22126D80-607E-44BF-8376-48DAB75AD63E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{22A7D438-570B-46BC-82DA-5EC4B20D0BE8}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{22FAF866-EC4C-4CEA-9D02-33E542542D12}" = protocol=17 | dir=in | app=c:\program files\rvg software\holdem manager\holdemmanager.exe |
"{23C30A6D-65D3-4E75-8DAB-CF08B332C6EA}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{249682A5-1BCD-4913-86CC-AFA31C9BC85F}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2588EC1C-98F4-44A5-940F-D6295E9460F2}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{25C73306-E8F4-411D-B1FA-EFD209847B65}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{267ABDCC-86BA-49CD-9EE8-771E53ABDD65}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2738D799-259F-4888-B4D0-59D39C02826E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{27FC0AEA-B0C2-4799-BDDF-C74AEF3AEB41}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{288BD566-AD4B-4A7D-8B8C-B53327DAE9FF}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2956AAF7-DC17-4750-8266-DF09AAADDEB1}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2A7A88CB-E792-40AF-99D2-B72F6DF700E3}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2A888B30-5E99-4825-AE6C-38FCDDEFBEEB}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2BB8DA45-31FB-40F9-91C0-00FB43B46ECF}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2BC19EA9-7D7A-414D-AFA1-9018BDC2D22C}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2BCA026A-6745-4474-858B-3DD3498E338B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2C3BC9C0-2985-4D2B-BE4C-7995D9BD096B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2CC1E468-58A4-4556-962D-C797AA324C0F}" = protocol=6 | dir=in | app=c:\program files\rvg software\holdem manager\holdemmanager.exe |
"{2DFEB072-D0E4-4C77-BC1A-DC0635D4544E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2E04A4AE-BBAE-49B0-8CA5-422D03C3F09B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2E33155F-E4C0-4FA4-AC23-6F453352090C}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2EA69616-C055-477B-A170-080D6494DEFF}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2F0257EF-EEEE-4715-B734-F673670E87FF}" = protocol=17 | dir=in | app=c:\windows\asam.exe |
"{2F86AD6C-2A74-44F7-B3CE-63242B3B54F7}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{2FC2E581-474A-40B1-8F6A-F83E96BD23B5}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{31DEDEDC-2C85-4B9E-A3DF-78DCF573BD82}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{321B2E13-3E54-4E2D-8475-784A7085B556}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{3233D0F8-518B-48EA-B1D6-07FC859D56F8}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{32408E42-D442-46F8-A93F-DA46113DB4F0}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{32DF5E02-146E-4CB7-B80D-BB8E47A72EE9}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{336B30A7-0763-4F54-B367-48914FE172E0}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{33BC7EEF-F2CC-4A3F-AB6B-85F5B62B2553}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{33F3CA6B-9A3E-443E-8831-A928A96B16EE}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{342AED22-9981-4BB0-8F04-642372438F72}" = protocol=6 | dir=in | app=c:\program files\rvg software\holdem manager\hmhud.exe |
"{34C03472-9DB3-47A7-A7DF-BF12A41ABF12}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{34D28D86-1FCB-4A20-9BF3-83FC0A8C1AB0}" = protocol=17 | dir=in | app=c:\users\ordi\desktop\seb\poker\converter\cakeconverter.exe |
"{36634BDB-C73A-47FD-9E7E-68BCCA9223EC}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{3711A2E3-97CA-47FA-8852-5021BFFE2315}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{3859FC4C-5C27-4987-B9B7-766443ABD896}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{389371E0-2435-4A26-A1A1-18C702BC878B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{38C0D0C7-3339-4AE7-AFD5-E39EA1306FCB}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{3988E059-7E54-4BFE-AE2A-18F8903B9922}" = protocol=17 | dir=in | app=c:\program files\rvg software\holdem manager\hmhud.exe |
"{398ED33A-666A-45DE-9649-4856977094AD}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{3A2A9997-9965-4E5D-883A-A801AE253746}" = dir=in | app=c:\program files\avg\avg9\avgnsx.exe |
"{3ACCA2FC-D517-4190-87AB-80A1A495FCB6}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{3B5C95AD-CD46-4526-A316-DD480DD0A0B6}" = protocol=6 | dir=in | app=c:\windows\system32\zonelabs\vsmon.exe |
"{3B8640A9-6012-471E-A6EE-675D9232B119}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{3CA03B03-CB60-4660-A027-DFFEA6A12E88}" = protocol=6 | dir=in | app=c:\program files\rvg software\holdem manager\dbcontrolpanel.exe |
"{3CAFD3B2-E87C-4E41-9D30-324ADB2BA76F}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{3D41DFA6-F340-4F49-A0F4-1E51E694F07E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{3D44C8B0-16C4-4DB3-AB55-7D923A3781B5}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{3D628B20-AE0A-4764-A864-39ED5734EFA5}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{3DCE465F-5921-4EE7-82BB-69A9AF873CD4}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{3E4919E8-7286-4ECA-8A35-176816EF30EF}" = protocol=6 | dir=in | app=c:\windows\asam.exe |
"{3E61A24C-EB19-4A62-BED4-3B407DE79915}" = protocol=17 | dir=in | app=c:\program files\microsoft lifecam\lifeexp.exe |
"{3E689664-0510-4AA5-AAB5-9D8DD61256FA}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{3E7A2E28-305A-4041-9462-07E7257F5AB7}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{3ECFAAD3-9A19-4E5C-964C-97FAC2BE8344}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{3F7F2DD2-E095-4DEA-83CC-0F31B4705C8A}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{3FA7E5E7-45CF-4ECA-AD6D-644832C4B477}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{40A8B22B-999F-4C09-8845-8F655AACC5CF}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{42F5D8F1-821F-4A56-98D1-60C9DC852B4A}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{430E9E96-6F52-41DE-A933-C905FCAC219D}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{431AE520-1713-44C8-9919-960F8318AA33}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{433C084C-2ED9-430F-9B69-4D3A9720312A}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{4371F620-1F8D-456D-A5F7-B3F323EA61E8}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{4456029B-B077-49EF-AC9E-8B5A31109FD5}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{44979D06-A52B-41ED-8F52-4755AF633E5B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{464C9B6C-E588-42B5-A23D-B5EF5F15B811}" = protocol=6 | dir=in | app=c:\program files\skype\plugin manager\skypepm.exe |
"{469AA095-C082-4DB0-8DD9-6FB5DE151DA7}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{46A0FBDD-2FCE-463A-BBB5-EA2D1F4060D9}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{4759CF75-D16A-469D-A8A0-40BBEED1859C}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{48A1E14F-69AD-4D34-8D79-909997488A21}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{49118EB9-5467-43F3-ACB0-F6481EFB833B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{495DFFA7-2574-43E3-AF66-2E6958FC98FF}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{4A3CA9CA-0B77-4B34-A5FC-BF2F75FAEF40}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{4A4CEC4E-72F6-46B6-B912-0748CB702F8F}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{4ABD49E0-F086-4511-8343-21D9D6BFBFFE}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{4B605DC6-4192-4BB6-A13A-9F2EAAD78081}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{4B87EC8A-8CCE-4460-AA68-1B6E5A84E978}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{4BEB16DD-BCC6-40C5-909F-0B2F10D47BBB}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{4D14BCFB-545A-4DD9-9C46-0A8BBA42261E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{4DF144CC-5F75-4E1C-87E3-253C114556D6}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{4F2FC7C5-0C02-40EC-83A9-A44B87D35618}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{4F3ED368-1532-49E9-8746-B8D8AD79C9C8}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{5078F8FA-B197-4CE3-A6D3-D57F80CE60B3}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{513FD21C-8DD4-49EA-A25C-7EF0228EDC71}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{518E579C-1588-4332-AABC-2A4C48C1BA1B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{52E0EAD0-D5C8-4B7C-BE8F-511A3E55C8F8}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{5534DC97-E54F-4B61-9747-D07914613230}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{5559BB9A-4BD4-488A-BD44-45FF778047E5}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{559D8711-A517-474B-98F5-2ACEB7C40BF8}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{55C9A31D-6571-4953-BEF1-E03A41E47AEB}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{5692C473-227A-4864-8E40-FE88802E6B93}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{56E2802F-EDCA-4749-BC89-7C485CFAAB00}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{583E5F47-99F3-4C3C-A2B8-D197062485A4}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{58B302E1-58DB-40A2-9C15-62AD9881F277}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{58C6A656-A104-4EAE-B56B-2F4BA88ECD5D}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{5A4059DE-460F-4CEC-9293-3FAFA2E58AB9}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{5A918DA8-8D51-43C0-8E4E-AC3142EE9E72}" = protocol=17 | dir=in | app=c:\program files\skype\plugin manager\skypepm.exe |
"{5AD4EE24-3C49-426B-A33F-08C19B362ACF}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{5C5973E5-CE92-4193-99F5-5D1969DF7AD9}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{5DBCB8E5-6E14-430C-85AC-874930790972}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{5DFDCF26-F449-4FDA-AA16-9B70815264D4}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{5E021453-865F-4F4A-8B2A-74EF4C6D13A9}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{5E338166-C8FE-407B-8C98-99E152C3218E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{5E8C1534-A045-4930-ACB3-0D865A165565}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{5FEA9F0F-8894-44B9-988C-F7B979913E3D}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{60249EBB-5DC2-44F8-AA99-3EF32C7F79CB}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{603742BF-8E6C-4778-B381-CDC188288127}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{63ECFC99-8D0E-446A-BCE9-68E952E551F8}" = protocol=1 | dir=out | [email protected],-28544 |
"{65167EDF-C21E-4A0E-A824-FB1EA35AB872}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{676EEF53-6B60-4225-8F3C-48CE7A9A15C9}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{679F2CC0-5A15-4F72-92B1-BA6EA887FBA8}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{67A0B453-F456-4C59-97FE-2D6DC4FB6DD5}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{682DB8CD-A2A7-454A-8553-9C75D2EC16A8}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{6A54165B-FA0E-4A82-ABA8-10CC591BF275}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{6AC2F964-8C4A-4E1C-B506-19BD4A007535}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{6BBE7E20-F3FD-4836-80F0-1640A62B37BA}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{6C2CDB37-BE32-431D-ADFD-D6742C4F8935}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{6D3ACD09-177B-47A1-953E-9FFFE74B3F2B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{6DB58873-2CCE-4203-A663-10113851EE9F}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{6EC1780B-EEDD-4BD9-9154-1814D76891EC}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{6F3B8FE4-1214-45F4-9C30-56D4BD36CF29}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{6F4670B6-9354-4693-86CC-104875CC23E6}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{70041268-C0DA-4915-B629-19435763BE8A}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{705103E2-1DAC-4C06-96E3-BD7BF2FDE77B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{70D3E3E1-E27B-4EC9-82BC-77F14D095A22}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{71619FFC-D540-468D-8FA4-ACAC8A0D1ECA}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{7165CAE5-9D03-4DC3-896A-C94830C166AE}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{72423A68-EA5C-421F-969D-6F79049D117E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{72FE7A83-042C-47CB-8C51-0A5CC0714DE4}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{73873744-E3BA-42CA-AFC6-A5857D60F418}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{73D6AE95-4502-427C-9771-BCAE7DDA7C58}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{74C3A4F1-A02B-4A9C-95C5-FC921476884F}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{75B078AC-DB04-49FD-9083-E9DA6A102F35}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{7723EF0C-D82C-4661-859F-5CF082730C4A}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{77C65B0F-C334-4A83-96E6-B84A6CA4764E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{78395915-B83B-4F39-A4AA-709CE269C939}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{7882B9CE-D084-4B09-9F02-D97DE1782570}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{78F5CB39-7722-4EEF-B8CF-A37794308709}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{7AFCA7DB-0302-40FB-944F-5E53F2BA5077}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{7B8EB573-A688-4DFD-8467-4CBF8B80B44A}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{7BFFA797-DB5A-49B5-AA2D-3447F527C1E0}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{7C351605-A7D1-4467-B116-00A51D2F213F}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{7D127E2E-FF3E-4A11-B738-E31E47872B4E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{7E406B4A-D802-49A3-8066-404A166A904E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{7E4A3B76-2EE6-4AF6-B0E2-EDA547A6F989}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{7E6DB88B-8AC2-4D65-B51E-1D123EA77B14}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{7E83AB01-7AD0-4747-9326-48C094ABC3A0}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{7F4075C2-18EB-4A92-BBB9-F726513C32E8}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{80151EBC-C00A-4044-8841-2EB604BA9194}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{812AEC0D-E00F-48F8-BC22-FF60DFB6545A}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{8263C2E8-0BD6-46A4-BB7C-5004987DAE11}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{82E374BB-6FD1-49AC-8615-A2003C9F6441}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{833219B5-2D7F-4F1C-9B62-88179A7C11BE}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{83CE3FF6-8255-44FB-8411-581492C3286A}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{83F3F4A2-B3A1-4015-B5D0-B6CB3F08177B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{83F666DD-569A-4F0F-B1BE-B59E50550760}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{8560CA90-AB11-4C4D-BE0F-AECF7D64CA23}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{85B55FC6-FB44-408D-8888-CDA219F1B04F}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{87695274-8692-41B0-A65F-CA640F7B1269}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{87DFD7E3-174F-4A9C-94B6-10E183961605}" = protocol=17 | dir=in | app=c:\program files\rvg software\holdem manager\dbcontrolpanel.exe |
"{881E1D1C-3BF4-4094-8B51-651F586B7B34}" = protocol=17 | dir=in | app=c:\windows\system32\zonelabs\vsmon.exe |
"{887A68F5-8AE5-4F30-B60C-F5A7991E90BC}" = protocol=58 | dir=in | [email protected],-28545 |
"{89E62696-DE7E-4627-864A-A289C0078ACB}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{8A2D842D-7236-4794-8B17-E132B71C5652}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{8AE231C8-D6E0-457A-907B-ACAC7F225E8C}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{8C0AF15D-3787-468C-8588-9F50F4B0C05D}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{8DE38DCD-285F-4B28-8985-F1458D4416AD}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{8E63FFCF-CAFE-44B1-8072-B9A058F9A25D}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{8EAAAE8C-2CED-42F1-81B5-170DDC213438}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{91A4D661-844E-46FE-830E-DDA771B2EB2D}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{91F504D0-39FF-4B37-96AA-B3AC52752C31}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{930F4AA1-E4F5-4288-8EF8-742056C5A1C6}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{931B1867-8584-4712-A243-76BB1FA1088B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{9388844C-9510-4D01-BA4A-F4713662CBC7}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{940ED8D8-261C-4C4D-8418-280CF66A4596}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{942FA0AE-F3A7-417B-811D-3E547B66BB72}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{94A561BC-E7E2-44A3-9123-F6C824B9B5F1}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{94BF49FC-EBBE-4D6E-B268-0A1C9198BD42}" = protocol=17 | dir=in | app=c:\program files\google\google talk\googletalk.exe |
"{966A7B91-877C-4D24-8443-66E641B0A3D1}" = protocol=6 | dir=in | app=c:\program files\cake poker (beta)\pokerclient.exe |
"{984B3E55-840C-4711-9D99-34C672A6994A}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{9A052356-FE6B-4AA5-B38F-FB7E12598CE2}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{9A282100-6D52-40EB-B250-390703852413}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{9C4C3737-DB4A-4DCC-B961-A45B5E482E60}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{9CDD96DD-3938-4B42-97D6-333CEDEDDDEF}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{9CF56F63-25DD-4C05-8D17-431A5D51525A}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{9D424254-D429-4DC7-AF5A-AA24A19776EC}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{9D7E87B6-C52C-4C70-9F08-717CA0B330BD}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{9EC19AC9-AA4E-450E-B786-B27F59D751EB}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{9F46C826-7C15-4301-B5DF-2FE2760D0715}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{9F6963E7-1491-41EA-A3A7-3F9673CD0FC2}" = protocol=58 | dir=out | [email protected],-28546 |
"{A03E4B5D-1096-4A6B-BE75-723C85162527}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A10CDD78-FBBF-4544-B406-B9D0F77D5A35}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A132AEBC-9CE4-4FB3-B852-C9C7FD948A59}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A1F1B2A4-65B9-4CAE-9D6F-8E442FE0D072}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A2193A82-5414-4C16-ADD9-DEA15C9BB109}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A26084C8-16A7-4447-8C8D-FD7D4A88E35E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A26535BA-F838-425D-8DCD-FA6207B21E93}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A2D1BE00-F106-4E4D-B958-E58EAD3BEAD6}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A33FE73E-97F3-42C0-BE2F-F8C94EF59DDD}" = dir=in | app=c:\program files\avg\avg9\avgemc.exe |
"{A3B5DD4E-B47D-4AE7-A687-702CBABACD05}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A40884AC-8BC2-4D31-AF2F-2D17A2D0CD7C}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A40AD2B5-E7B8-4086-972D-39A1D0EDE464}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A428A154-6675-4FF4-B0A9-037AB94E193F}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A46C025B-580F-41B8-9507-53185DA7D09A}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A47422DD-CB7E-4D82-896C-99CF137287CC}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A4AAC2EB-9FCC-4B69-9654-FE11E52821A6}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A57C010A-6D6C-4294-8CAB-D4EFFF5E996E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A69FD77B-60AD-40CD-87C0-8D5EE4250A89}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A6F9EE93-4847-48F6-85E5-5F1A83DFB2B9}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A74C755E-A66B-4781-A496-CD8AF4EDD221}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A889210D-D321-424F-8D38-9BD26468DC4E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A9138CCD-8ACF-43F7-89D9-6FB8E442403A}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{A93B603D-E96D-46C2-AA80-B86F5E457638}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{ABDF598C-83D4-4DD9-85C8-FF6345EC44FD}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{AC3EC9D2-85E3-4489-BE6A-109E6B774426}" = protocol=6 | dir=in | app=c:\users\ordi\desktop\seb\poker\converter\cakeconverter.exe |
"{ADE93326-C1AD-488F-859E-426D573978B7}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{AF3E8E47-419F-4732-9FEF-DEC3602D7D32}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{AF5A00FE-93BE-46D2-9966-1E812ED30416}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{AFA016CA-18BF-450A-BC78-4F018D41EBE4}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{B04B3ED3-9424-4266-878D-44EABA554454}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{B07F35FC-AD46-42D8-8173-9302EB5E8B24}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{B214ED79-FB6F-4A64-A7E5-C92C0694FBB9}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{B2431120-C8D0-4BF9-91ED-7D290494D45D}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{B278F0EC-F835-49DB-BAE9-89BEFF5F5A21}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{B3BAD63F-42AB-4842-ACCC-CA147ECBF554}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{B42DC2A4-2514-4994-B432-836B80E5B85E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{B59FD1F1-1206-419C-A40E-E543214476BF}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{B62CD23F-D2D4-4295-9EB5-07DD7A401678}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{B693D6EC-12CA-4EFF-94CC-4283B5151EE2}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{B70B8076-8D71-4C63-BD80-6513771D6899}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{B88CC080-0FA3-4D82-A9A3-D5C5B5EB792C}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{BB1FAFC3-D3ED-4A02-BF41-546A534C3353}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{BB60F851-7DE0-47C0-AA6F-910F1764E1F3}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{BB76DE60-E764-4AAA-A95A-D23C1DFE0782}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{BBC993C2-A36C-402F-BF14-5680E2E3D5FC}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{BBDBF09F-4B0E-4A10-8944-A23055CF64F5}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{BC55EFA6-BF77-49F7-A3B7-0BFED04C9312}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{BFB219A4-602D-4E23-9DEF-F28C5D4ED874}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{BFC1554F-EA51-4A8D-AB6C-6A390A92C51D}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{C032C0A8-5656-4F44-855F-8B8704FD72FC}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{C06ED01C-3DFF-4D55-B78B-4F4790050A96}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{C2B80946-2715-4D93-B8E3-390458C85C5B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{C2F62F46-C840-4174-AD0F-FA06352DEE55}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{C34394C8-4150-4222-BE9A-72C1593FB5DE}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{C41EC200-A3D7-4D2A-BC92-E0470483EF93}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{C46A7760-43DA-417D-9528-00B59FEC6AB2}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{C47347F9-5CE4-4CB5-8881-DABC0B90B6B6}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{C532BBFD-8B95-4B9B-88A4-734A5F7892F8}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{C6728C78-8A6E-4A90-AE48-8FD7398891CB}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{C680D998-3D58-426E-8D6D-A7CA2D2349BE}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{C6FDBBE0-9455-4E04-BEDC-11BD32830E70}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
"{C77CBB2F-894E-4D4C-B768-4678DBD65CAD}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{C7E3100D-947A-4F83-B81C-A50A22E8EE35}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{CA29AEBE-FC94-4D6F-B70C-1494F9AFFAFD}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{CA8640C9-7F4A-4A7C-91A4-85DF5E46160D}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{CAD1C43F-16C5-447B-A768-4CA472C510AF}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{CC53951B-B216-49AF-B8C0-B8E9E4C133D7}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{CC64B152-1710-4AF2-9F6C-86F33361A17E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{CD1B57A1-C9F1-43E9-8B8E-D99FD7B79219}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{CE9B4816-91E4-4006-B40B-927EEAC21276}" = protocol=17 | dir=in | app=c:\program files\frostwire\frostwire.exe |
"{CF32446F-FA00-4316-B979-A5C7B040E8B0}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{CFA893BB-E5EC-4794-AF3F-43CE99376E72}" = protocol=6 | dir=in | app=c:\program files\frostwire\frostwire.exe |
"{CFE6EB10-EAE7-41B9-86C6-2DB03F53445D}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{D13EA70C-1BD9-43CF-81D9-AB765F2A9309}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{D187F182-A527-4A73-8B3C-CC1388E21409}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{D1A24070-79F2-4BBC-BBA7-C4CAA92E8B81}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{D67AAAC1-81FF-48AD-BAE7-AB7BCEACE9DD}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{D6990123-7035-4635-987D-32531C403F00}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{D6D0282E-5F08-4291-8F44-03A268BFA356}" = protocol=6 | dir=in | app=c:\program files\microsoft lifecam\lifecam.exe |
"{D6FC71AE-46E9-4AE5-A53C-3AE9519F5418}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{D7613879-95CC-4746-A8ED-201818E11908}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{D7767690-9553-42BA-B5CA-F0F3B55D97B6}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{D8246E53-704A-483B-81FA-26D043E76CB4}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{D86EFF55-2252-4727-894F-1E2A48B0BA6A}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{D9878811-EBC3-4818-AEEA-69270E8426BB}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{D9AC8A65-0525-436D-8C0B-FCAD11C8509F}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{DA8A1E22-FD82-4336-8C9E-8F63E4D31930}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{DAB96986-60B5-44A5-9FB7-2B29DA8A1614}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{DADB808C-13A1-46AB-AE61-507AE4508409}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{DBE7E37B-F4C7-423C-AA8D-B3F01391759E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{DCAF43BE-DBE2-4C8E-BC9F-A299826BAC68}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{DD9A4F63-2B49-4E6B-B59D-402E17C4690B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{DE939F96-8EE7-4F8C-90E9-B743E436ADF0}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{DEB11AAC-92DB-4333-B78A-4C0E14EF6EAE}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{DF0D8AE0-8F4E-46C5-9E2A-2F53BCBB96F5}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{DF529C8B-B032-4B96-B989-664E9B0A038C}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{E182F57B-7422-4488-B480-AB1DF839EE2C}" = dir=in | app=c:\program files\skype\plugin manager\skypepm.exe |
"{E24B4419-7EE2-4F15-8008-7E255FA23143}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{E2556AB7-AA12-4D9D-A9DC-87F0A89F851D}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{E2C7A601-92F8-47E0-A10C-BE43FB67A6F2}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{E3068358-EA28-4F15-9E48-6A59F72F85BF}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{E3544ECE-D441-4D4F-80C5-FF485C286510}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{E51A6790-6C12-4ECA-AF34-431459A19899}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{E730783E-2FF8-4DC6-935F-9249CCAC2CFB}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{E8A51DD7-A121-47A4-B496-915ADAFB5E65}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{E9821A90-561F-40D6-A8C6-3689037D79DE}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{E992A2A5-81C6-4669-85EE-F8F813D4A14F}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{EA23E5AD-5049-4297-A285-533CEE0FE56F}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{EA66BD58-46A3-48C9-A0D2-1199D92CFC09}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{EBCFFF2E-5CD4-46F7-ABB4-2EA9724B4AD8}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{EBD3C7F1-FAE6-4F8C-AD8A-9587A9FA55FA}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{EBF6A0A5-EDD8-487A-81C1-55A5CE3EAF11}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{EC47494F-5B55-4994-8E06-2B50CD6C9983}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{EC4D7AE3-0007-46F5-9E35-B3254C36907E}" = protocol=17 | dir=in | app=c:\program files\cake poker (beta)\pokerclient.exe |
"{ECDCB9C3-D7D2-4AB8-9B73-CFC0FA4B2399}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{ED26B53E-7E45-4996-A4F2-4DCBECB0B564}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{ED3B016E-2D41-45FE-9944-DDF3FFC3F6F7}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{EDF1E47D-A81A-4373-AFD2-A9C1EC5793CD}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{EE207FC6-7EC1-4D0E-99B4-1BB73926F9FE}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{EE488A4C-CCCA-479D-9174-FCEEFA18E259}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{EEB7CD00-EC7D-4A3E-A5F5-E253F6B34B10}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{EF8F4430-BB86-41CB-8012-8DB7E1D7DF19}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{EFB335DF-F315-4DEC-88CD-78D850D27BA6}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{F01B5A58-9E08-4965-AE3E-B26291239688}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{F19659A9-9EDB-414D-B809-83185FAD114E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{F1FF203F-BEE7-47DD-8E12-94A821352169}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{F20E51F9-3DFA-476B-87A0-104D39F478E1}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{F22F579F-4438-496F-90FD-247E6247D1BA}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{F2408C32-03AC-49BF-AB8E-0A5448D25C5C}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{F2D8A7AB-DF47-42CA-9D4E-C069B7A623CB}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{F321FB21-275A-4E15-AFCB-D681033A248D}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{F5250CD0-9893-4521-AB23-DED330842E1B}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{F6529A76-8B37-4A4B-8830-2D74A03111DB}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{F66E9169-C0F6-47CE-95D9-F9EF52FE60AD}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{F7E7453E-FC30-4259-8B0D-394D5E324687}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{F9CE93C3-B5DE-4560-B7F4-685C173437CB}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{FC0FCD0C-6DCE-4421-9971-4EA2F7B197BA}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{FC785212-EF4B-49D4-9E0F-D7E9FCDAC5F3}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{FCCD9E83-88B9-4A0A-89E5-6925724D5ADE}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{FE22ABBA-7275-49E0-81E2-E2A9A98CF034}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{FE499BBB-68AA-41DD-A7D3-E4DB086FD74E}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{FE80066C-A37D-47F3-8945-F37FC6147BAA}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{FEBE0B00-5F6A-422B-BB93-30BB972EF1F2}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{FF0CA88F-5820-4D55-A03F-895A3D4CEA41}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{FF516D84-E80E-4EEB-BC35-3A86F01F1ECA}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"TCP Query User{071D4976-595D-4325-805E-1ED471978F45}C:\program files\java\jre6\bin\java.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\java.exe |
"TCP Query User{2134AAF5-0B14-4549-BFDD-75F992053C39}D:\program files\vuze\azureus.exe" = protocol=6 | dir=in | app=d:\program files\vuze\azureus.exe |
"TCP Query User{4184EA1D-A09E-4968-8EF8-30FB424103BA}C:\program files\vuze\azureus.exe" = protocol=6 | dir=in | app=c:\program files\vuze\azureus.exe |
"TCP Query User{729A0F6D-DC95-4DCC-9B1D-41C310A05D8D}C:\program files\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"TCP Query User{8F1AEC62-6D76-49CD-9EF7-26D1F0C12885}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"TCP Query User{9C303B2E-78C5-4755-930C-3F78467902E8}C:\users\ordi\desktop\mie\cmap tools\jre\bin\javaw.exe" = protocol=6 | dir=in | app=c:\users\ordi\desktop\mie\cmap tools\jre\bin\javaw.exe |
"TCP Query User{AF981207-CDDE-45D4-997E-E1C0D71321C6}C:\program files\carbonpoker\client.exe" = protocol=6 | dir=in | app=c:\program files\carbonpoker\client.exe |
"TCP Query User{E2D1FD6A-2FBD-438F-8A28-AC59F18110F0}C:\program files\b2bpoker\redbet\jre\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\b2bpoker\redbet\jre\bin\javaw.exe |
"TCP Query User{E8071455-2B44-44BD-B3CA-1D9BE636F33C}C:\program files\b2bpoker\noiqpoker\jre\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\b2bpoker\noiqpoker\jre\bin\javaw.exe |
"UDP Query User{05050728-248A-4EFA-9CBE-CF323D6F690F}C:\program files\b2bpoker\noiqpoker\jre\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\b2bpoker\noiqpoker\jre\bin\javaw.exe |
"UDP Query User{11E58FF7-45BE-481B-BFB3-F55E3261CF7C}C:\program files\b2bpoker\redbet\jre\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\b2bpoker\redbet\jre\bin\javaw.exe |
"UDP Query User{24D1F53B-92B5-4191-8014-6E2C36C611D8}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"UDP Query User{5245EBC3-250E-4331-8141-FE1558D69A59}C:\program files\vuze\azureus.exe" = protocol=17 | dir=in | app=c:\program files\vuze\azureus.exe |
"UDP Query User{6E77154B-6F91-4E4E-A7EE-B541F772DBB2}D:\program files\vuze\azureus.exe" = protocol=17 | dir=in | app=d:\program files\vuze\azureus.exe |
"UDP Query User{98119A69-4C06-48DB-8020-5BF4B213B89E}C:\program files\java\jre6\bin\java.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\java.exe |
"UDP Query User{C90D5E8A-A7EF-407C-8425-A77C0F2A614B}C:\program files\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"UDP Query User{EEBC4BE5-864E-42E9-A407-396591A6B9B3}C:\users\ordi\desktop\mie\cmap tools\jre\bin\javaw.exe" = protocol=17 | dir=in | app=c:\users\ordi\desktop\mie\cmap tools\jre\bin\javaw.exe |
"UDP Query User{FBB79057-76F2-4B1B-B35E-4E71F587E726}C:\program files\carbonpoker\client.exe" = protocol=17 | dir=in | app=c:\program files\carbonpoker\client.exe |

========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{0B82D6C6-9ECC-4710-97AB-5CE482E72852}_is1" = TableScan Turbo v0.43 (BETA)
"{13F3917B56CD4C25848BDC69916971BB}" = DivX Converter
"{18D10072035C4515918F7E37EAFAACFC}" = AutoUpdate
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Live Upload Tool
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{26A24AE4-039D-4CA4-87B4-2F83216011FF}" = Java™ 6 Update 17
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{31C44235-A613-4E95-B297-207BF6C6A8C1}" = Creative ZEN Vision M Series
"{3248F0A8-6813-11D6-A77B-00B0D0160070}" = Java™ 6 Update 7
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3FA365DF-2D68-45ED-8F83-8C8A33E65143}" = Apple Application Support
"{3FC7CBBC4C1E11DCA1A752EA55D89593}" = DivX Version Checker
"{46ABBC54-1872-4AA3-95E2-F2C063A63F31}" = Installation Windows Live
"{56CDB4FE-895F-4E0D-8BB4-9A8D4310898D}" = Antidote HD
"{5DD76286-9BE7-4894-A990-E905E91AC818}" = Windows Live Mail
"{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
"{63AFACBC-4795-4A1B-8037-5085DC03FC54}" = Microsoft LifeCam
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6D0C6BE4-F674-43D2-96BC-3509345108C9}_is1" = PokerStove version 1.23
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{770F1BEC-2871-4E70-B837-FB8525FFA3B1}" = Windows Live Messenger
"{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}" = Windows Live Call
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8B7917E0-AF55-4E8A-9473-017F0AA03AC8}" = QuickTime
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{9028040C-6000-11D3-8CFE-0050048383C9}" = Microsoft Office XP Professional avec FrontPage
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A96E97134CA649888820BCDE5E300BBD}" = H.264 Decoder
"{AAC389499AEF40428987B3D30CFC76C9}" = MKV Splitter
"{AC76BA86-7AD7-1033-7B44-A93000000001}" = Adobe Reader 9.3.3
"{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9
"{AEF9DC35ADDF4825B049ACBFD1C6EB37}" = AAC Decoder
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Plus Web Player
"{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}" = Creative MediaSource 5
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.2
"{D4C9692E-4EFA-4DA0-8B7F-9439466D9E31}" = Full Tilt Poker
"{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}" = Assistant de connexion Windows Live
"{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}" = Ad-Aware
"{E2DFE069-083E-4631-9B6C-43C48E991DE5}" = Junk Mail filter update
"{E45CACFE-0576-4375-A84F-C34B99A7B652}" = D-Link DWA-125
"{ED00D08A-3C5F-488D-93A0-A04F21F23956}" = Windows Live Communications Platform
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"Ad-Aware" = Ad-Aware
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"AVG9Uninstall" = AVG Free 9.0
"Cake Poker(uninstall)" = Cake Poker
"CCleaner" = CCleaner
"Creative Removable Disk Manager" = Gestionnaire de disques amovible Creative
"CutePDF Writer Installation" = CutePDF Writer 2.8
"EPSON Scanner" = EPSON Scan
"ERUNT_is1" = ERUNT 1.1j
"ffdshow_is1" = ffdshow [beta 1] [2006-12-11]
"HDMI" = Intel® Graphics Media Accelerator Driver
"HijackThis" = HijackThis 2.0.2
"HoldemManager" = Holdem Manager
"KeePass Password Safe_is1" = KeePass Password Safe 1.14
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Mozilla Firefox (3.6.8)" = Mozilla Firefox (3.6.8)
"NVIDIA Drivers" = NVIDIA Drivers
"PokerWorld(uninstall)" = PokerWorld
"PostgreSQL 8.4" = PostgreSQL 8.4
"Revo Uninstaller" = Revo Uninstaller 1.87
"SysInfo" = Creative System Information
"TeamViewer 4" = TeamViewer 4
"TOEFL Sample Questions" = TOEFL Sample Questions
"UltSounds" = Windows Sound Schemes
"Veetle TV" = Veetle TV 0.9.17
"VLC media player" = VLC media player 1.0.5
"WindowBlinds" = WindowBlinds
"WinLiveSuite_Wave3" = Installation Windows Live
"WinRAR archiver" = WinRAR archiver
"ZENcast Organizer" = ZENcast Organizer
"ZoneAlarm" = ZoneAlarm

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 2010-07-27 17:29:17 | Computer Name = Ordi-PC | Source = EventSystem | ID = 4609
Description =

Error - 2010-07-27 17:32:09 | Computer Name = Ordi-PC | Source = Perflib | ID = 1008
Description =

Error - 2010-07-27 17:32:10 | Computer Name = Ordi-PC | Source = PerfNet | ID = 2004
Description =

Error - 2010-07-27 17:32:10 | Computer Name = Ordi-PC | Source = PerfNet | ID = 2002
Description =

Error - 2010-07-27 20:10:21 | Computer Name = Ordi-PC | Source = PostgreSQL | ID = 0
Description = 2010-07-27 20:10:21 EDTFATAL: the database system is starting up

Error - 2010-07-27 20:10:23 | Computer Name = Ordi-PC | Source = PostgreSQL | ID = 0
Description = 2010-07-27 20:10:23 EDTFATAL: the database system is starting up

Error - 2010-07-27 20:10:26 | Computer Name = Ordi-PC | Source = WinMgmt | ID = 10
Description =

Error - 2010-07-27 21:57:27 | Computer Name = Ordi-PC | Source = Windows Search Service | ID = 3024
Description =

Error - 2010-07-27 22:15:01 | Computer Name = Ordi-PC | Source = Application Hang | ID = 1002
Description = The program TFC.exe version 3.1.7.0 stopped interacting with Windows
and was closed. To see if more information about the problem is available, check
the problem history in the Problem Reports and Solutions control panel. Process
ID: 1058 Start Time: 01cb2dfa22ec2cb8 Termination Time: 0

Error - 2010-07-27 22:19:16 | Computer Name = Ordi-PC | Source = WinMgmt | ID = 10
Description =

[ System Events ]
Error - 2010-07-27 17:29:54 | Computer Name = Ordi-PC | Source = Service Control Manager | ID = 7001
Description =

Error - 2010-07-27 17:29:54 | Computer Name = Ordi-PC | Source = DCOM | ID = 10005
Description =

Error - 2010-07-27 17:29:54 | Computer Name = Ordi-PC | Source = DCOM | ID = 10005
Description =

Error - 2010-07-27 17:29:54 | Computer Name = Ordi-PC | Source = Service Control Manager | ID = 7001
Description =

Error - 2010-07-27 20:09:30 | Computer Name = Ordi-PC | Source = volmgr | ID = 262193
Description = Configuring the Page file for crash dump failed. Make sure there is
a page file on the boot partition and that is large enough to contain all physical
memory.

Error - 2010-07-27 20:09:31 | Computer Name = Ordi-PC | Source = Microsoft-Windows-Kernel-Processor-Power | ID = 6
Description =

Error - 2010-07-27 20:09:44 | Computer Name = Ordi-PC | Source = volmgr | ID = 262193
Description = Configuring the Page file for crash dump failed. Make sure there is
a page file on the boot partition and that is large enough to contain all physical
memory.

Error - 2010-07-27 22:18:36 | Computer Name = Ordi-PC | Source = volmgr | ID = 262193
Description = Configuring the Page file for crash dump failed. Make sure there is
a page file on the boot partition and that is large enough to contain all physical
memory.

Error - 2010-07-27 22:18:37 | Computer Name = Ordi-PC | Source = Microsoft-Windows-Kernel-Processor-Power | ID = 6
Description =

Error - 2010-07-27 22:18:49 | Computer Name = Ordi-PC | Source = volmgr | ID = 262193
Description = Configuring the Page file for crash dump failed. Make sure there is
a page file on the boot partition and that is large enough to contain all physical
memory.


< End of report >
  • 0

Advertisements







Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP