Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Virus? Maybe?


  • Please log in to reply

#1
NokiGP

NokiGP

    New Member

  • Member
  • Pip
  • 3 posts
Ok so i have the problem described in this topic http://www.geekstogo...-annoying-bsod/

The AKV.exe wich i think its a virus is in the virus vault right now so it shouldn't cause any problem...well it still does.I received a bsod when i tried to enter in H.A.W.X. The blue screen doesn't appear on a specific program...it just randomly appears out of nowhere.Its not just in games.


I would really appreciate if someone could help me and i don't think its from the RAM i installed 1 day ago because this problem happened even BEFORE i installed them.I tried even with one RAM and it still doesn't work...
Maybe i should try reistalling the Windows...Also i used BlueScreenView and everytime the cause is differemt
Thank you!

Also the System Process uses a lot of memory: 100.000+ K
UPDATE:Again it happened omething about ALCXWDM.sys Beginning dump of physical memory.
Here is the OTL log:

OTL logfile created on: 1/4/2011 6:35:59 AM - Run 1
OTL by OldTimer - Version 3.2.20.1 Folder = C:\Documents and Settings\Snake\Desktop
Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

1,023.00 Mb Total Physical Memory | 470.00 Mb Available Physical Memory | 46.00% Memory free
9.00 Gb Paging File | 8.00 Gb Available in Paging File | 94.00% Paging File free
Paging file location(s): [Binary data over 100 bytes]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 19.53 Gb Total Space | 1.87 Gb Free Space | 9.59% Space Free | Partition Type: NTFS
Drive D: | 57.15 Gb Total Space | 19.13 Gb Free Space | 33.48% Space Free | Partition Type: NTFS
Drive E: | 7.82 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: CDFS

Computer Name: A-0087DD8CD1344 | User Name: Snake | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/01/04 06:23:10 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Snake\Desktop\OTL.exe
PRC - [2011/01/04 04:27:59 | 000,595,736 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgnsx.exe
PRC - [2011/01/04 04:27:58 | 000,486,680 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgrsx.exe
PRC - [2011/01/04 04:27:54 | 002,000,152 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgtray.exe
PRC - [2011/01/04 04:27:53 | 000,297,752 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG8\avgwdsvc.exe
PRC - [2010/12/15 16:55:46 | 000,944,496 | ---- | M] (Opera Software) -- C:\Program Files\Opera\opera.exe
PRC - [2010/12/14 15:42:42 | 000,653,120 | ---- | M] (TuneUp Software) -- C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesApp32.exe
PRC - [2010/12/14 15:41:10 | 001,517,376 | ---- | M] (TuneUp Software) -- C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
PRC - [2007/01/25 02:52:26 | 000,065,536 | ---- | M] () -- C:\Program Files\Common Files\NMSAccessU.exe
PRC - [2004/08/04 03:07:00 | 001,032,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


========== Modules (SafeList) ==========

MOD - [2011/01/04 06:23:10 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Snake\Desktop\OTL.exe
MOD - [2009/07/12 01:12:06 | 000,632,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcr80.dll
MOD - [2009/07/11 19:41:02 | 000,097,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_473666fd\ATL80.dll
MOD - [2004/08/04 03:07:00 | 001,050,624 | R--- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
MOD - [2004/08/04 03:07:00 | 000,152,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rsaenh.dll


========== Win32 Services (SafeList) ==========

SRV - File not found [Auto | Stopped] -- C:\windows\System32\hidserv.dll -- (HidServ)
SRV - File not found [Disabled | Stopped] -- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe -- (gusvc)
SRV - File not found [Disabled | Stopped] -- C:\WINDOWS\esetuninstaller.exe -- (EsetUninstaller)
SRV - File not found [Disabled | Stopped] -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe -- (ekrn)
SRV - File not found [Disabled | Stopped] -- D:\Jocuri PC\RPG\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe -- (DAUpdaterSvc)
SRV - [2011/01/04 04:27:53 | 000,297,752 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG8\avgwdsvc.exe -- (avg8wd)
SRV - [2010/12/14 15:41:10 | 001,517,376 | ---- | M] (TuneUp Software) [Auto | Running] -- C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe -- (TuneUp.UtilitiesSvc)
SRV - [2010/12/14 15:39:10 | 000,029,504 | ---- | M] (TuneUp Software) [On_Demand | Stopped] -- C:\WINDOWS\system32\uxtuneup.dll -- (UxTuneUp)
SRV - [2010/06/24 10:09:14 | 000,065,856 | ---- | M] (Nalpeiron Ltd.) [Disabled | Stopped] -- C:\WINDOWS\system32\NLSSRV32.EXE -- (nlsX86cc)
SRV - [2010/05/25 14:47:44 | 000,137,560 | ---- | M] (WeFi) [Disabled | Stopped] -- C:\Program Files\WeFi\WefiEngSvc.exe -- (WefiEngSvc)
SRV - [2010/02/25 03:01:00 | 003,432,444 | ---- | M] (INCA Internet Co., Ltd.) [Disabled | Stopped] -- C:\windows\System32\GameMon.des -- (npggsvc)
SRV - [2010/01/15 14:49:20 | 000,227,232 | ---- | M] (McAfee, Inc.) [Disabled | Stopped] -- C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe -- (McComponentHostService)
SRV - [2009/12/16 17:38:20 | 000,375,296 | ---- | M] (Spigot, Inc.) [Disabled | Stopped] -- C:\Program Files\Application Updater\ApplicationUpdater.exe -- (Application Updater)
SRV - [2009/12/10 11:20:06 | 001,643,872 | ---- | M] (ClanServers Hosting LLC) [Disabled | Stopped] -- C:\Program Files\GameTracker\GSInGameService.exe -- (GS In-Game Service)
SRV - [2009/10/29 12:27:54 | 001,074,568 | ---- | M] (LogMeIn Inc.) [Disabled | Stopped] -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2009/10/07 01:47:34 | 000,154,136 | ---- | M] (Logitech Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe -- (LVPrcSrv)
SRV - [2009/09/07 21:56:00 | 000,655,624 | ---- | M] (Acresso Software Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2009/06/02 09:10:08 | 000,637,952 | ---- | M] (Nokia.) [Disabled | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2009/05/23 06:54:24 | 000,217,088 | ---- | M] (Sony DADC Austria AG.) [Disabled | Stopped] -- C:\WINDOWS\system32\UAService7.exe -- (UserAccess7) SecuROM User Access Service (V7)
SRV - [2009/01/12 11:20:06 | 001,342,144 | ---- | M] (PGWARE LLC) [Disabled | Stopped] -- C:\Program Files\PGWARE\SuperRam\SuperRamService.exe -- (SuperRam)
SRV - [2008/11/09 22:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Disabled | Stopped] -- C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService)
SRV - [2007/07/24 10:15:14 | 000,185,632 | ---- | M] (Protexis Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2)
SRV - [2007/06/05 13:20:32 | 000,177,704 | ---- | M] () [Disabled | Stopped] -- C:\WINDOWS\system32\PSIService.exe -- (ProtexisLicensing)
SRV - [2007/05/28 18:57:54 | 000,275,968 | ---- | M] (Rocket Division Software) [Disabled | Stopped] -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE)
SRV - [2007/01/25 02:52:26 | 000,065,536 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\NMSAccessU.exe -- (NMSAccessU)
SRV - [2006/10/17 14:10:58 | 000,126,976 | ---- | M] (Worldweaver Ltd.) [Disabled | Stopped] -- C:\Program Files\Worldweaver\DX Studio Service\DXStudioService.exe -- (DX Studio Server)
SRV - [2006/06/26 09:33:56 | 000,091,696 | ---- | M] (Logitech Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\Logitech\SrvLnch\SrvLnch.exe -- (LVSrvLauncher)
SRV - [2005/07/08 16:24:46 | 000,871,424 | ---- | M] (Nero AG) [Disabled | Stopped] -- C:\Program Files\Ahead\InCD\InCDsrv.exe -- (InCDsrv)


========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\a\LOCALS~1\Temp\sony_ssm.sys -- (sony_ssm.sys)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\PROGRA~1\EEYEDI~1\RETINA~1\PCANDIS5_RETWIFI.SYS -- (PCANDIS5_RETWIFI)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\windows\System32\DRIVERS\LVMVDrv.sys -- (LVMVDrv)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\windows\System32\DRIVERS\LVcKap.sys -- (LVcKap)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\Snake\Local Settings\Temp\gUSBSTOi.sys -- (gUSBSTOi)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\a\LOCALS~1\Temp\RWIEA.tmp -- (GarenaPEngine)
DRV - File not found [Kernel | System | Stopped] -- C:\DOCUME~1\a\LOCALS~1\Temp\VSPE.sys -- (EterlogicVirtualSerialDriver)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\MediaCoder\SysInfo.sys -- (CrystalSysInfo)
DRV - [2011/01/04 04:28:17 | 000,108,552 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\windows\System32\Drivers\avgtdix.sys -- (AvgTdiX)
DRV - [2011/01/04 04:28:11 | 000,335,240 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\windows\System32\Drivers\avgldx86.sys -- (AvgLdx86)
DRV - [2011/01/04 04:28:10 | 000,027,784 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\windows\System32\Drivers\avgmfx86.sys -- (AvgMfx86)
DRV - [2011/01/02 02:46:31 | 000,420,920 | ---- | M] () [Kernel | Boot | Running] -- C:\windows\System32\Drivers\sptd.sys -- (sptd)
DRV - [2010/10/07 13:34:32 | 000,010,064 | ---- | M] (TuneUp Software) [Kernel | On_Demand | Running] -- C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesDriver32.sys -- (TuneUpUtilitiesDrv)
DRV - [2010/05/10 20:41:30 | 000,067,656 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL)
DRV - [2010/02/17 20:25:48 | 000,012,872 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV)
DRV - [2009/12/30 20:34:38 | 000,094,208 | ---- | M] (VSO Software) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ezplay.sys -- (ezplay)
DRV - [2009/12/30 11:20:54 | 000,027,064 | ---- | M] (VS Revo Group) [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\revoflt.sys -- (Revoflt)
DRV - [2009/11/14 19:10:16 | 000,180,224 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\WinVd32.sys -- (WinVd32)
DRV - [2009/11/14 19:10:07 | 000,010,752 | ---- | M] () [File_System | Auto | Running] -- C:\WINDOWS\system32\WinFLdrv.sys -- (WinFLdrv)
DRV - [2009/11/14 19:07:39 | 000,035,363 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\windrvNT.sys -- (windrvNT)
DRV - [2009/10/07 01:46:36 | 000,025,752 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LVPr2Mon.sys -- (LVPr2Mon)
DRV - [2009/08/22 20:25:00 | 000,009,088 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner32.sys -- (RivaTuner32)
DRV - [2009/07/19 10:52:50 | 000,281,760 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt)
DRV - [2009/07/19 10:52:49 | 000,025,888 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt)
DRV - [2009/07/10 06:36:18 | 004,407,808 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2009/06/11 12:37:54 | 000,025,280 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2009/05/31 17:09:08 | 000,162,432 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\ithsgt.sys -- (ithsgt)
DRV - [2009/05/31 17:09:07 | 000,012,032 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\lilsgt.sys -- (lilsgt)
DRV - [2009/05/01 00:56:30 | 000,495,768 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LV561AV.SYS -- (PID_0928) Logitech QuickCam Express(PID_0928)
DRV - [2009/02/24 17:42:14 | 000,116,736 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mcdbus.sys -- (mcdbus)
DRV - [2009/02/09 07:37:56 | 000,007,808 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2009/02/09 07:37:48 | 000,007,808 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2009/02/09 07:37:46 | 000,022,016 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2009/02/09 07:37:46 | 000,017,664 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2008/08/26 09:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2006/11/11 02:25:20 | 000,066,944 | ---- | M] (TOSHIBA Corporation) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\thdudf.sys -- (thdudf)
DRV - [2006/11/02 16:51:58 | 000,013,560 | ---- | M] (Cyberlink Corp.) [Kernel | Auto | Running] -- D:\Programe\PowerDVD\000.fcl -- ({95808DC4-FA4A-4c74-92FE-5B863F82066B})
DRV - [2006/09/24 15:28:46 | 000,005,248 | ---- | M] (Windows ® 2000 DDK provider) [Kernel | Boot | Running] -- C:\windows\system32\speedfan.sys -- (speedfan)
DRV - [2006/06/23 00:29:46 | 000,038,960 | R--- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LVUSBSta.sys -- (LVUSBSta)
DRV - [2006/05/30 06:53:18 | 000,029,184 | ---- | M] (http://libusb-win32.sourceforge.net) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\libusb0.sys -- (libusb0)
DRV - [2006/04/21 11:16:44 | 003,964,352 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\alcxwdm.sys -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)
DRV - [2005/12/06 17:11:18 | 000,035,328 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\windows\System32\drivers\sfsync03.sys -- (sfsync03) StarForce Protection Synchronization Driver (version 3.x)
DRV - [2005/11/03 16:40:07 | 000,063,488 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\windows\System32\drivers\sfvfs02.sys -- (sfvfs02) StarForce Protection VFS Driver (version 2.x)
DRV - [2005/08/10 16:06:28 | 000,019,968 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\windows\System32\drivers\sfsync02.sys -- (sfsync02) StarForce Protection Synchronization Driver (version 2.x)
DRV - [2005/08/10 14:44:04 | 000,050,688 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\windows\System32\drivers\sfdrv01.sys -- (sfdrv01) StarForce Protection Environment Driver (version 1.x)
DRV - [2005/07/08 16:17:54 | 000,099,584 | ---- | M] (Nero AG) [File_System | Disabled | Running] -- C:\windows\System32\drivers\InCDfs.sys -- (InCDfs)
DRV - [2005/07/08 16:17:36 | 000,029,696 | ---- | M] (Nero AG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\InCDpass.sys -- (InCDPass)
DRV - [2005/07/08 16:17:32 | 000,028,672 | ---- | M] (Nero AG) [Kernel | System | Running] -- C:\windows\System32\drivers\InCDrm.sys -- (incdrm)
DRV - [2005/05/16 15:20:39 | 000,006,656 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\windows\System32\drivers\sfhlp02.sys -- (sfhlp02) StarForce Protection Helper Driver (version 2.x)
DRV - [2004/08/22 15:31:48 | 000,005,248 | ---- | M] ( ) [Kernel | Boot | Stopped] -- C:\windows\System32\Drivers\d347prt.sys -- (d347prt)
DRV - [2004/08/22 15:31:10 | 000,155,136 | ---- | M] ( ) [Kernel | Boot | Stopped] -- C:\windows\system32\DRIVERS\d347bus.sys -- (d347bus)
DRV - [2004/08/09 13:33:26 | 000,114,016 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\windows\System32\drivers\prohlp02.sys -- (prohlp02)
DRV - [2004/08/09 13:29:28 | 000,053,920 | ---- | M] (Protection Technology) [Kernel | System | Running] -- C:\windows\System32\drivers\prodrv06.sys -- (prodrv06)
DRV - [2004/07/19 16:49:54 | 000,007,040 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\windows\System32\drivers\prosync1.sys -- (prosync1)
DRV - [2004/06/03 13:28:00 | 000,022,131 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Program Files\eEye Digital Security\Retina Wireless Scanner\PCANDIS5_WIFISCAN.SYS -- (PCANDIS5_WIFISCAN.SYS)
DRV - [2004/05/26 16:08:00 | 000,007,296 | R--- | M] (ASUSTeK Computer Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\EIO.sys -- (EIO)
DRV - [2003/12/01 17:20:52 | 000,004,832 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\windows\System32\drivers\sfhlp01.sys -- (sfhlp01)
DRV - [1996/04/03 21:33:26 | 000,005,248 | ---- | M] () [Kernel | Boot | Running] -- C:\windows\system32\giveio.sys -- (giveio)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomSearch = http://us.rd.yahoo.c...rch/search.html
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://toolbar.ask.c...61&gct=&gc=1&q=
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKLM\..\URLSearchHook: {25A6EDBF-C0FD-4ff7-B6A7-C6EDEA3B0B55} - C:\Program Files\MusicFrost\Music Frost Toolbar\SearchBHO.dll (TODO: <Company name>)

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.musicfrost.com
IE - HKCU\..\URLSearchHook: {25A6EDBF-C0FD-4ff7-B6A7-C6EDEA3B0B55} - C:\Program Files\MusicFrost\Music Frost Toolbar\SearchBHO.dll (TODO: <Company name>)
IE - HKCU\..\URLSearchHook: {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - Reg Error: Key error. File not found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "Google Custom Search"
FF - prefs.js..browser.search.defaultthis.engineName: " "
FF - prefs.js..browser.search.defaulturl: "http://search.condui...={searchTerms}"
FF - prefs.js..browser.search.selectedEngine: " "
FF - prefs.js..browser.startup.homepage: "http://search.condui...earchSource=13"
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: [email protected]:1.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: [email protected]:1.20.0.66
FF - prefs.js..extensions.enabledItems: [email protected]:5.0.31.0
FF - prefs.js..extensions.enabledItems: [email protected]:3.2.3.3
FF - prefs.js..extensions.enabledItems: {88c7f2aa-f93f-432c-8f0e-b7d85967a527}:3.2.3.3
FF - prefs.js..extensions.enabledItems: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}:3.2.5.2
FF - prefs.js..extensions.enabledItems: [email protected]:0.0.0.1
FF - prefs.js..extensions.enabledItems: {635abd67-4fe9-1b23-4f01-e679fa7484c1}:2.1.1.20091029021655
FF - prefs.js..extensions.enabledItems: [email protected]:0.6.2
FF - prefs.js..extensions.enabledItems: {beab8ae9-eb2d-4ded-3b29-d35f6b82bfa5}:1.0
FF - prefs.js..extensions.enabledItems: {6d011910-c4fe-11df-851a-0800200c9a66}:0.921
FF - prefs.js..keyword.URL: "http://search.condui...d=CT2786678&q="


FF - HKLM\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\BitDefender\BitDefender 2010\bdaphffext\
FF - HKLM\software\mozilla\Firefox\Extensions\\[email protected]: D:\Minecraft Install\FiddlerHook
FF - HKLM\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\AutocompletePro\[email protected] File not found
FF - HKLM\software\mozilla\Firefox\Extensions\\avg@igeared: C:\Program Files\AVG\AVG10\Toolbar\Firefox\avg@igeared
FF - HKLM\software\mozilla\Firefox\Extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: C:\Program Files\AVG\AVG8\Firefox [2011/01/04 04:27:53 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.12\extensions\\Components: D:\Programe\Mozilla Firefox\components [2009/10/30 22:49:56 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.12\extensions\\Plugins: D:\Programe\Mozilla Firefox\plugins [2009/10/30 22:49:52 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\SeaMonkey 2.0.3\extensions\\Components: C:\Program Files\SeaMonkey\components [2009/07/28 19:21:04 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\SeaMonkey 2.0.3\extensions\\Plugins: C:\Program Files\SeaMonkey\plugins [2009/07/28 19:21:04 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Thunderbird\Extensions\\[email protected]: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird

[2009/10/22 14:20:02 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Snake\Application Data\Mozilla\Extensions
[2011/01/01 23:36:59 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Snake\Application Data\Mozilla\Firefox\Profiles\ifutz9vw.default\extensions
[2010/12/30 00:58:13 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Documents and Settings\Snake\Application Data\Mozilla\Firefox\Profiles\ifutz9vw.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
[2009/10/30 23:09:24 | 000,000,000 | ---D | M] (SmallringFX DARKGreen) -- C:\Documents and Settings\Snake\Application Data\Mozilla\Firefox\Profiles\ifutz9vw.default\extensions\{6d011910-c4fe-11df-851a-0800200c9a66}
[2010/11/20 22:42:15 | 000,000,000 | ---D | M] (BitTorrentBar Community Toolbar) -- C:\Documents and Settings\Snake\Application Data\Mozilla\Firefox\Profiles\ifutz9vw.default\extensions\{88c7f2aa-f93f-432c-8f0e-b7d85967a527}
[2009/10/30 23:07:35 | 000,000,000 | ---D | M] (Nuri) -- C:\Documents and Settings\Snake\Application Data\Mozilla\Firefox\Profiles\ifutz9vw.default\extensions\{beab8ae9-eb2d-4ded-3b29-d35f6b82bfa5}
[2010/12/11 00:10:08 | 000,000,000 | ---D | M] (uTorrentBar Community Toolbar) -- C:\Documents and Settings\Snake\Application Data\Mozilla\Firefox\Profiles\ifutz9vw.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
[2010/11/19 09:52:37 | 000,000,000 | ---D | M] (Battlefield Heroes Updater) -- C:\Documents and Settings\Snake\Application Data\Mozilla\Firefox\Profiles\ifutz9vw.default\extensions\[email protected]
[2009/10/26 05:36:11 | 000,000,000 | ---D | M] (Разпознаване на устройство Logitech) -- C:\Documents and Settings\Snake\Application Data\Mozilla\Firefox\Profiles\ifutz9vw.default\extensions\[email protected]
[2010/11/20 22:42:17 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Documents and Settings\Snake\Application Data\Mozilla\Firefox\Profiles\ifutz9vw.default\extensions\[email protected]
[2010/12/14 06:10:26 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Snake\Application Data\Mozilla\Firefox\Profiles\ifutz9vw.default\extensions\SearchHelper
[2009/10/30 23:05:58 | 000,000,000 | ---D | M] ("Strata40") -- C:\Documents and Settings\Snake\Application Data\Mozilla\Firefox\Profiles\ifutz9vw.default\extensions\[email protected]
[2009/10/30 23:09:23 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Snake\Application Data\Mozilla\Firefox\Profiles\ifutz9vw.default\extensions\{6d011910-c4fe-11df-851a-0800200c9a66}\chrome\mozapps\extensions
[2009/10/30 23:05:58 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Snake\Application Data\Mozilla\Firefox\Profiles\ifutz9vw.default\extensions\[email protected]\chrome\mozapps\extensions
[2010/12/11 00:10:08 | 000,000,863 | ---- | M] () -- C:\Documents and Settings\Snake\Application Data\Mozilla\Firefox\Profiles\ifutz9vw.default\searchplugins\conduit.xml
[2010/12/14 06:10:26 | 000,002,119 | ---- | M] () -- C:\Documents and Settings\Snake\Application Data\Mozilla\Firefox\Profiles\ifutz9vw.default\searchplugins\MFGSearch.xml
[2011/01/03 09:32:44 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2010/12/14 06:10:23 | 000,000,000 | ---D | M] ("MF Custom Search") -- C:\PROGRAM FILES\MUSICFROST\MUSIC FROST TOOLBAR\FF
[2009/10/12 13:47:15 | 000,000,000 | ---D | M] (Java Console) -- D:\PROGRAME\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
File not found (No name found) -- D:\PROGRAME\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}

O1 HOSTS File: ([2010/12/27 02:10:28 | 000,000,892 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 78.159.111.231 filelist.ro
O1 - Hosts: 78.159.111.231 tractor.filelist.ro
O2 - BHO: (WeFiBar Toolbar) - {0b876028-b388-4f6d-922f-f52faec8535f} - C:\Program Files\WeFiBar\tbWeFi.dll (Conduit Ltd.)
O2 - BHO: (AskBar BHO) - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll (Ask.com)
O2 - BHO: (CSearchBHO Class) - {25A6EDBF-C0FD-4ff7-B6A7-C6EDEA3B0B55} - C:\Program Files\MusicFrost\Music Frost Toolbar\SearchBHO.dll (TODO: <Company name>)
O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O2 - BHO: (BitComet Helper) - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.4.1.27.dll (BitComet)
O2 - BHO: (no name) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - No CLSID value found.
O2 - BHO: (no name) - {5B291E6C-9A74-4034-971B-A4B007A0B313} - No CLSID value found.
O2 - BHO: (Softonic English Toolbar) - {930f1200-f5f1-4870-bac6-e233ec8e7023} - C:\Program Files\Softonic_English\tbSof0.dll (Conduit Ltd.)
O2 - BHO: (no name) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - No CLSID value found.
O2 - BHO: (IeMonitorBho Class) - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll (Megaupload Limited)
O2 - BHO: (no name) - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - No CLSID value found.
O2 - BHO: (FDMIECookiesBHO Class) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll ()
O2 - BHO: (SHOUTcast Loader) - {ccec60fc-2608-4e58-9659-3ffc159e8ea9} - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll (AOL LLC)
O2 - BHO: (no name) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - No CLSID value found.
O3 - HKLM\..\Toolbar: (SHOUTcast Radio Toolbar) - {0457331d-8ca6-4f97-9c26-6a9ef2b2dba8} - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll (AOL LLC)
O3 - HKLM\..\Toolbar: (no name) - {0974BA1E-64EC-11DE-B2A5-E43756D89593} - No CLSID value found.
O3 - HKLM\..\Toolbar: (WeFiBar Toolbar) - {0b876028-b388-4f6d-922f-f52faec8535f} - C:\Program Files\WeFiBar\tbWeFi.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (no name) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll (Ask.com)
O3 - HKLM\..\Toolbar: (no name) - {5B291E6C-9A74-4034-971B-A4B007A0B313} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Softonic English Toolbar) - {930f1200-f5f1-4870-bac6-e233ec8e7023} - C:\Program Files\Softonic_English\tbSof0.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (no name) - {A057A204-BACC-4D26-C39E-35F1D2A32EC8} - No CLSID value found.
O3 - HKLM\..\Toolbar: (MF Google Search) - {F2B3E4C7-A7CF-4c62-AED7-ADC5ED52016D} - C:\Program Files\MusicFrost\Music Frost Toolbar\SaveTubeVideo.dll (MF Technologies Company)
O3 - HKLM\..\Toolbar: (no name) - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (SHOUTcast Radio Toolbar) - {0457331D-8CA6-4F97-9C26-6A9EF2B2DBA8} - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll (AOL LLC)
O3 - HKCU\..\Toolbar\WebBrowser: (WeFiBar Toolbar) - {0B876028-B388-4F6D-922F-F52FAEC8535F} - C:\Program Files\WeFiBar\tbWeFi.dll (Conduit Ltd.)
O3 - HKCU\..\Toolbar\WebBrowser: (Ask Toolbar) - {3041D03E-FD4B-44E0-B742-2D9B88305F98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll (Ask.com)
O3 - HKCU\..\Toolbar\WebBrowser: (Softonic English Toolbar) - {930F1200-F5F1-4870-BAC6-E233EC8E7023} - C:\Program Files\Softonic_English\tbSof0.dll (Conduit Ltd.)
O4 - HKLM..\Run: [AVG8_TRAY] C:\Program Files\AVG\AVG8\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [KernelFaultCheck] File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRemoteRecursiveEvents = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoStrCmpLogical = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoClose = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: RunStartupScriptSync = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SynchronousMachineGroupPolicy = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SynchronousUserGroupPolicy = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\windows\System32\GPhotos.scr (Google Inc.)
O9 - Extra Button: Download Video - {11F19C45-9675-488A-A8E0-8E8234DC245D} - C:\Program Files\Tomato\YouTube Video Downloader\MDIEEx.dll File not found
O9 - Extra 'Tools' menuitem : Download Video on This Page - {11F19C45-9675-488A-A8E0-8E8234DC245D} - C:\Program Files\Tomato\YouTube Video Downloader\MDIEEx.dll File not found
O9 - Extra Button: Fiddler2 - {CF819DA3-9882-4944-ADF5-6EF17ECF3C6E} - D:\Minecraft Install\Fiddler.exe File not found
O9 - Extra 'Tools' menuitem : Fiddler2 - {CF819DA3-9882-4944-ADF5-6EF17ECF3C6E} - D:\Minecraft Install\Fiddler.exe File not found
O9 - Extra Button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - C:\Program Files\BitComet\tools\BitCometBHO_1.4.1.27.dll (BitComet)
O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - Reg Error: Key error. File not found
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} C:\Program Files\Yahoo!\Common\Yinsthelper.dll (Installation Support)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O18 - Protocol\Handler\avgsecuritytoolbar {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - Reg Error: Key error. File not found
O18 - Protocol\Handler\bw+0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw+0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw-0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw00 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw00s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw-0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw10 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw10s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw20 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw20s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw30 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw30s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw40 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw40s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw50 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw50s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw60 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw60s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw70 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw70s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw80 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw80s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw90 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bw90s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwa0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwa0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwb0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwb0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwc0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwc0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwd0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwd0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwe0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwe0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwf0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwf0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwfile-8876480 {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwg0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwg0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwh0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwh0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwi0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwi0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwj0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwj0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwk0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwk0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwl0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwl0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwm0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwm0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwn0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwn0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwo0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwo0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwp0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwp0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwq0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwq0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwr0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwr0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bws0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bws0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwt0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwt0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwu0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwu0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwv0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwv0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bww0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bww0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwx0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwx0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwy0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwy0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwz0 {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\bwz0s {271f703d-9bba-40b5-b958-38bd6c0dae18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\offline-8876480 {271F703D-9BBA-40B5-B958-38BD6C0DAE18} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll (Logitech)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\windows\System32\ati2evxx.dll (ATI Technologies Inc.)
O20 - Winlogon\Notify\avgrsstarter: DllName - avgrsstx.dll - C:\windows\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.)
O24 - Desktop WallPaper: C:\Documents and Settings\Snake\My Documents\My Pictures\996959_185773_front.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Snake\My Documents\My Pictures\996959_185773_front.bmp
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/04/15 01:15:38 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2006/05/12 17:01:28 | 000,000,026 | R--- | M] () - E:\Autorun.inf -- [ CDFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (aswboot.exe /m:513312718) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/01/04 06:21:36 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Snake\Desktop\OTL.exe
[2011/01/04 05:02:05 | 000,052,736 | ---- | C] (NirSoft) -- C:\Documents and Settings\Snake\Desktop\BlueScreenView.exe
[2011/01/04 04:45:17 | 000,000,000 | -H-D | C] -- C:\$AVG8.VAULT$
[2011/01/04 04:28:18 | 000,011,952 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\windows\System32\avgrsstx.dll
[2011/01/04 04:28:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\AVG Free 8.5
[2011/01/04 04:28:17 | 000,108,552 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\windows\System32\drivers\avgtdix.sys
[2011/01/04 04:28:11 | 000,335,240 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\windows\System32\drivers\avgldx86.sys
[2011/01/04 04:28:10 | 000,027,784 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\windows\System32\drivers\avgmfx86.sys
[2011/01/04 04:28:07 | 000,000,000 | ---D | C] -- C:\windows\System32\drivers\Avg
[2011/01/04 04:27:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\avg8
[2011/01/04 04:27:53 | 000,000,000 | ---D | C] -- C:\Program Files\AVG
[2011/01/04 03:31:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Local Settings\Application Data\Stardock
[2011/01/04 02:01:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\CleanMyPC Registry Cleaner
[2011/01/04 02:01:40 | 000,000,000 | ---D | C] -- C:\Program Files\CleanMyPC
[2011/01/04 01:55:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Start Menu\Programs\RegCure
[2011/01/04 01:45:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\RegCure
[2011/01/04 01:45:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\RegCure
[2011/01/04 01:45:33 | 000,000,000 | ---D | C] -- C:\Program Files\RegCure
[2011/01/03 23:21:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Application Data\SUPERAntiSpyware.com
[2011/01/03 23:21:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
[2011/01/03 23:20:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\SUPERAntiSpyware
[2011/01/03 23:20:37 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2011/01/03 23:19:20 | 009,953,832 | ---- | C] (SUPERAntiSpyware.com) -- C:\Documents and Settings\Snake\Desktop\SUPERAntiSpyware.exe
[2011/01/03 10:47:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Catalyst Control Center
[2011/01/03 10:43:35 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ATI Technologies
[2011/01/03 09:34:11 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2011/01/03 05:26:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\IObit
[2011/01/03 05:26:55 | 000,000,000 | ---D | C] -- C:\Program Files\IObit
[2011/01/03 04:24:25 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
[2011/01/03 04:23:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Local Settings\Application Data\2K Games
[2011/01/02 07:01:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Application Data\Real
[2011/01/02 03:07:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\DAEMON Tools Pro
[2011/01/02 02:52:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Start Menu\Programs\DAEMON Tools Pro
[2011/01/02 02:43:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Application Data\DAEMON Tools Pro
[2011/01/02 02:30:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Application Data\DAEMON Tools
[2011/01/02 00:04:10 | 000,000,000 | ---D | C] -- C:\Program Files\HFolders
[2011/01/01 23:38:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Application Data\SystemRequirementsLab
[2011/01/01 05:40:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\My Documents\EA Games
[2011/01/01 05:09:43 | 000,000,000 | ---D | C] -- C:\windows\E4D153288C89484BB9AAF5BE9EA6D01C.TMP
[2011/01/01 01:09:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Trine
[2010/12/31 01:07:19 | 000,000,000 | -H-D | C] -- C:\$AVG
[2010/12/30 09:29:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Application Data\dvdcss
[2010/12/30 03:48:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Start Menu\Programs\Hacker Evolution
[2010/12/30 00:56:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Yahoo! Messenger
[2010/12/29 23:26:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Start Menu\Programs\Sierra
[2010/12/29 07:57:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Local Settings\Application Data\Panda3D-1.7.0
[2010/12/29 06:49:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Start Menu\Programs\Sauerbraten
[2010/12/29 06:19:31 | 000,000,000 | ---D | C] -- C:\windows\D56B0E274A3E46C9B5C1D93D580C099C.TMP
[2010/12/29 03:50:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Start Menu\Programs\Atari
[2010/12/29 01:23:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\My Documents\Amnesia
[2010/12/28 10:08:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Local Settings\Application Data\Microsoft Help
[2010/12/28 10:07:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\My Documents\Visual Studio 2005
[2010/12/28 09:59:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Unreal Development Kit
[2010/12/28 09:56:14 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Chart Controls
[2010/12/28 09:35:42 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Snake\Recent
[2010/12/28 02:39:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Application Data\TBB
[2010/12/28 01:45:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Application Data\Foxit Software
[2010/12/27 02:06:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Application Data\Bierbuden Autoupdate
[2010/12/27 01:58:21 | 000,000,000 | ---D | C] -- C:\Put a directory on PYTHONPATH here
[2010/12/26 11:58:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Codemasters
[2010/12/26 10:34:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Local Settings\Application Data\OnLive App
[2010/12/26 10:32:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\OnLive
[2010/12/26 10:31:32 | 000,000,000 | ---D | C] -- C:\Program Files\OnLive
[2010/12/25 12:42:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\My Documents\OnLive App
[2010/12/25 12:38:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Application Data\OnLive App
[2010/12/24 00:34:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Application Data\flightgear.org
[2010/12/24 00:33:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\FlightGear v2.0.0
[2010/12/23 23:25:40 | 000,000,000 | ---D | C] -- C:\windows\NiwradSoft Shell Pack
[2010/12/23 07:49:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Bethesda Softworks
[2010/12/22 06:31:57 | 000,000,000 | ---D | C] -- C:\Program Files\K-Lite Codec Pack
[2010/12/20 01:37:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Application Data\FOG Downloader
[2010/12/20 01:06:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Local Settings\Application Data\Targem
[2010/12/20 01:06:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Documents\My Games
[2010/12/19 22:34:09 | 000,031,552 | ---- | C] (TuneUp Software) -- C:\windows\System32\TURegOpt.exe
[2010/12/19 22:34:06 | 000,029,504 | ---- | C] (TuneUp Software) -- C:\windows\System32\uxtuneup.dll
[2010/12/19 22:34:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\TuneUp Utilities 2011
[2010/12/19 22:33:40 | 000,000,000 | ---D | C] -- C:\Program Files\TuneUp Utilities 2011
[2010/12/19 22:33:23 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\Application Data\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
[2010/12/17 12:38:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\My Documents\Two Worlds II
[2010/12/17 11:39:03 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies
[2010/12/17 06:11:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Local Settings\Application Data\Two Worlds II
[2010/12/17 03:59:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Reality Pump
[2010/12/16 09:22:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\My Documents\gothic3
[2010/12/14 09:36:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Local Settings\Application Data\ConduitEngine
[2010/12/14 09:36:50 | 000,000,000 | ---D | C] -- C:\Program Files\ConduitEngine
[2010/12/14 09:36:27 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Snake\PrivacIE
[2010/12/14 08:27:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Application Data\Xfire
[2010/12/14 08:27:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Xfire
[2010/12/14 08:27:32 | 000,000,000 | ---D | C] -- C:\Program Files\Xfire
[2010/12/14 06:10:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\MusicFrost
[2010/12/14 06:10:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Application Data\MusicFrost
[2010/12/14 06:10:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\AudioEngines
[2010/12/14 06:10:16 | 000,000,000 | ---D | C] -- C:\Program Files\MusicFrost
[2010/12/14 05:53:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Start Menu\Programs\Fraps
[2010/12/14 02:22:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Chit Chat For Facebook
[2010/12/14 02:22:20 | 000,000,000 | ---D | C] -- C:\Program Files\Chit Chat For Facebook
[2010/12/14 02:22:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Chit Chat For Facebook
[2010/12/11 10:00:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\My Documents\Test Drive Unlimited
[2010/12/11 03:40:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Local Settings\Application Data\TechSmith
[2010/12/11 03:35:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\My Documents\Camtasia Studio
[2010/12/11 03:32:09 | 000,000,000 | ---D | C] -- C:\windows\System32\QuickTime
[2010/12/11 00:09:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Application Data\uTorrent
[2010/12/10 03:14:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Start Menu\Programs\CleanUp!
[2010/12/10 03:14:53 | 000,000,000 | ---D | C] -- C:\Program Files\CleanUp!
[2010/12/08 03:28:45 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek AC97
[2010/12/06 06:57:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Application Data\Help
[2010/12/06 06:57:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Snake\Local Settings\Application Data\Help
[2009/07/15 12:38:59 | 000,155,136 | ---- | C] ( ) -- C:\windows\System32\drivers\d347bus.sys
[2009/07/15 12:38:59 | 000,005,248 | ---- | C] ( ) -- C:\windows\System32\drivers\d347prt.sys
[4 C:\windows\System32\*.tmp files -> C:\windows\System32\*.tmp -> ]
[2 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/01/04 06:28:00 | 000,000,886 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA1ca4fe567ff5fd8.job
[2011/01/04 06:23:10 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Snake\Desktop\OTL.exe
[2011/01/04 06:15:48 | 000,000,882 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore1ca4fe5677779ce.job
[2011/01/04 06:15:41 | 000,002,048 | --S- | M] () -- C:\windows\bootstat.dat
[2011/01/04 05:58:25 | 000,045,404 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\Dump.zip
[2011/01/04 05:43:15 | 000,000,855 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\BlueScreenView.cfg
[2011/01/04 04:31:06 | 069,705,665 | ---- | M] () -- C:\windows\System32\drivers\Avg\incavi.avm
[2011/01/04 04:31:02 | 000,492,629 | ---- | M] () -- C:\windows\System32\drivers\Avg\miniavi.avg
[2011/01/04 04:31:02 | 000,142,495 | ---- | M] () -- C:\windows\System32\drivers\Avg\microavi.avg
[2011/01/04 04:28:18 | 000,011,952 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\windows\System32\avgrsstx.dll
[2011/01/04 04:28:18 | 000,001,524 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\AVG Free 8.5.lnk
[2011/01/04 04:28:17 | 000,108,552 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\windows\System32\drivers\avgtdix.sys
[2011/01/04 04:28:11 | 000,335,240 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\windows\System32\drivers\avgldx86.sys
[2011/01/04 04:28:10 | 000,027,784 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\windows\System32\drivers\avgmfx86.sys
[2011/01/04 04:28:07 | 006,061,540 | ---- | M] () -- C:\windows\System32\drivers\Avg\avi7.avg
[2011/01/04 03:58:56 | 000,000,000 | ---- | M] () -- C:\windows\MEMORY.DMP
[2011/01/04 03:27:40 | 000,000,520 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\Rds.lnk
[2011/01/04 02:01:41 | 000,000,791 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\CleanMyPC - Registry Cleaner.lnk
[2011/01/04 01:45:39 | 000,000,390 | ---- | M] () -- C:\windows\tasks\RegCure Program Check.job
[2011/01/04 01:45:38 | 000,000,372 | ---- | M] () -- C:\windows\tasks\RegCure.job
[2011/01/04 01:31:13 | 000,102,400 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\Mini010411-02.dmp
[2011/01/04 01:27:05 | 000,102,400 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\Mini010411-01.dmp
[2011/01/03 23:20:51 | 000,001,711 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\SUPERAntiSpyware Free Edition.lnk
[2011/01/03 23:19:43 | 009,953,832 | ---- | M] (SUPERAntiSpyware.com) -- C:\Documents and Settings\Snake\Desktop\SUPERAntiSpyware.exe
[2011/01/03 22:45:31 | 000,002,148 | ---- | M] () -- C:\Documents and Settings\Snake\Local
[2011/01/03 11:04:36 | 000,001,324 | ---- | M] () -- C:\windows\System32\d3d9caps.dat
[2011/01/03 04:16:10 | 000,000,777 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\MirrorsEdge.lnk
[2011/01/02 09:26:59 | 000,000,615 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\OnLive.lnk
[2011/01/02 08:28:29 | 000,000,320 | ---- | M] () -- C:\Documents and Settings\Snake\My Documents\PropertyHandler.reg
[2011/01/02 02:46:31 | 000,420,920 | ---- | M] () -- C:\windows\System32\drivers\sptd.sys
[2011/01/02 01:33:11 | 000,000,621 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\GT Legends.lnk
[2011/01/02 01:33:05 | 000,000,657 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\Trine.lnk
[2011/01/01 10:45:20 | 000,043,520 | ---- | M] () -- C:\windows\System32\CmdLineExt03.dll
[2010/12/31 04:15:00 | 000,000,350 | ---- | M] () -- C:\windows\tasks\PC Health Advisor.job
[2010/12/30 10:43:58 | 000,000,116 | ---- | M] () -- C:\windows\NeroDigital.ini
[2010/12/30 00:56:58 | 000,000,843 | ---- | M] () -- C:\Documents and Settings\Snake\Application Data\Microsoft\Internet Explorer\Quick Launch\Yahoo! Messenger.lnk
[2010/12/30 00:56:58 | 000,000,825 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Yahoo! Messenger.lnk
[2010/12/29 11:04:04 | 000,022,328 | ---- | M] () -- C:\windows\System32\drivers\PnkBstrK.sys
[2010/12/27 09:05:14 | 000,000,060 | ---- | M] () -- C:\windows\game.ini
[2010/12/27 08:53:03 | 000,001,776 | ---- | M] () -- C:\Documents and Settings\Snake\Application Data\Microsoft\Internet Explorer\Quick Launch\TuneUp Utilities 2011.lnk
[2010/12/27 03:37:00 | 000,000,410 | ---- | M] () -- C:\windows\tasks\ParetoLogic Update Version3.job
[2010/12/27 00:29:56 | 000,034,308 | ---- | M] () -- C:\windows\System32\BASSMOD.dll
[2010/12/24 00:29:26 | 000,001,776 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\TuneUp Utilities 2011.lnk
[2010/12/23 13:27:40 | 000,017,470 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\BlueScreenView.chm
[2010/12/23 13:22:50 | 000,052,736 | ---- | M] (NirSoft) -- C:\Documents and Settings\Snake\Desktop\BlueScreenView.exe
[2010/12/23 07:48:12 | 000,000,621 | ---- | M] () -- C:\Documents and Settings\Snake\Application Data\Microsoft\Internet Explorer\Quick Launch\BitTorrent.lnk
[2010/12/23 07:48:07 | 000,000,621 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\BitTorrent.lnk
[2010/12/23 03:54:33 | 000,002,206 | ---- | M] () -- C:\windows\System32\wpa.dbl
[2010/12/19 00:25:07 | 000,089,222 | ---- | M] () -- C:\Documents and Settings\Snake\My Documents\LOLCat.gif
[2010/12/17 11:33:36 | 000,000,010 | ---- | M] () -- C:\windows\WININIT.INI
[2010/12/17 05:56:11 | 000,000,609 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\Opera.lnk
[2010/12/14 15:43:44 | 000,031,552 | ---- | M] (TuneUp Software) -- C:\windows\System32\TURegOpt.exe
[2010/12/14 15:39:10 | 000,029,504 | ---- | M] (TuneUp Software) -- C:\windows\System32\uxtuneup.dll
[2010/12/14 06:04:16 | 000,006,144 | ---- | M] () -- C:\Documents and Settings\Snake\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/12/11 03:32:12 | 000,000,646 | ---- | M] () -- C:\Documents and Settings\Snake\My Documents\Camtasia Studio 7.lnk
[2010/12/11 00:10:00 | 000,000,647 | ---- | M] () -- C:\Documents and Settings\Snake\My Documents\µTorrent.lnk
[4 C:\windows\System32\*.tmp files -> C:\windows\System32\*.tmp -> ]
[2 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/01/04 05:58:25 | 000,045,404 | ---- | C] () -- C:\Documents and Settings\Snake\Desktop\Dump.zip
[2011/01/04 05:57:56 | 000,102,400 | ---- | C] () -- C:\Documents and Settings\Snake\Desktop\Mini010411-02.dmp
[2011/01/04 05:57:56 | 000,102,400 | ---- | C] () -- C:\Documents and Settings\Snake\Desktop\Mini010411-01.dmp
[2011/01/04 05:05:28 | 000,000,855 | ---- | C] () -- C:\Documents and Settings\Snake\Desktop\BlueScreenView.cfg
[2011/01/04 05:02:06 | 000,017,470 | ---- | C] () -- C:\Documents and Settings\Snake\Desktop\BlueScreenView.chm
[2011/01/04 04:28:18 | 000,001,524 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\AVG Free 8.5.lnk
[2011/01/04 04:28:07 | 069,705,665 | ---- | C] () -- C:\windows\System32\drivers\Avg\incavi.avm
[2011/01/04 04:28:07 | 006,061,540 | ---- | C] () -- C:\windows\System32\drivers\Avg\avi7.avg
[2011/01/04 04:28:07 | 000,492,629 | ---- | C] () -- C:\windows\System32\drivers\Avg\miniavi.avg
[2011/01/04 04:28:07 | 000,142,495 | ---- | C] () -- C:\windows\System32\drivers\Avg\microavi.avg
[2011/01/04 03:27:40 | 000,000,520 | ---- | C] () -- C:\Documents and Settings\Snake\Desktop\Rds.lnk
[2011/01/04 02:01:41 | 000,000,791 | ---- | C] () -- C:\Documents and Settings\Snake\Desktop\CleanMyPC - Registry Cleaner.lnk
[2011/01/04 01:45:37 | 000,000,390 | ---- | C] () -- C:\windows\tasks\RegCure Program Check.job
[2011/01/04 01:45:37 | 000,000,372 | ---- | C] () -- C:\windows\tasks\RegCure.job
[2011/01/03 23:20:51 | 000,001,711 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\SUPERAntiSpyware Free Edition.lnk
[2011/01/03 10:43:05 | 000,593,920 | ---- | C] () -- C:\windows\System32\ati2sgag.exe
[2011/01/03 10:42:20 | 000,007,167 | R--- | C] () -- C:\windows\System32\atifglpf.xml
[2011/01/03 05:23:33 | 000,002,148 | ---- | C] () -- C:\Documents and Settings\Snake\Local
[2011/01/03 05:15:40 | 000,000,000 | ---- | C] () -- C:\windows\MEMORY.DMP
[2011/01/03 04:16:11 | 000,000,777 | ---- | C] () -- C:\Documents and Settings\Snake\Desktop\MirrorsEdge.lnk
[2011/01/02 09:26:59 | 000,000,615 | ---- | C] () -- C:\Documents and Settings\Snake\Desktop\OnLive.lnk
[2011/01/02 08:28:29 | 000,000,320 | ---- | C] () -- C:\Documents and Settings\Snake\My Documents\PropertyHandler.reg
[2011/01/02 01:33:13 | 000,000,621 | ---- | C] () -- C:\Documents and Settings\Snake\Desktop\GT Legends.lnk
[2011/01/02 01:33:06 | 000,000,657 | ---- | C] () -- C:\Documents and Settings\Snake\Desktop\Trine.lnk
[2011/01/02 00:04:12 | 000,000,054 | ---- | C] () -- C:\windows\hcs.dat
[2010/12/30 00:56:58 | 000,000,843 | ---- | C] () -- C:\Documents and Settings\Snake\Application Data\Microsoft\Internet Explorer\Quick Launch\Yahoo! Messenger.lnk
[2010/12/30 00:56:58 | 000,000,825 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Yahoo! Messenger.lnk
[2010/12/27 09:05:14 | 000,000,060 | ---- | C] () -- C:\windows\game.ini
[2010/12/27 08:53:03 | 000,001,776 | ---- | C] () -- C:\Documents and Settings\Snake\Application Data\Microsoft\Internet Explorer\Quick Launch\TuneUp Utilities 2011.lnk
[2010/12/27 00:29:56 | 000,034,308 | ---- | C] () -- C:\windows\System32\BASSMOD.dll
[2010/12/24 00:29:26 | 000,001,776 | ---- | C] () -- C:\Documents and Settings\Snake\Desktop\TuneUp Utilities 2011.lnk
[2010/12/23 07:48:12 | 000,000,621 | ---- | C] () -- C:\Documents and Settings\Snake\Application Data\Microsoft\Internet Explorer\Quick Launch\BitTorrent.lnk
[2010/12/23 07:48:08 | 000,000,621 | ---- | C] () -- C:\Documents and Settings\Snake\Desktop\BitTorrent.lnk
[2010/12/14 02:22:21 | 000,000,000 | -H-- | C] () -- C:\Documents and Settings\All Users\Application Data\ccff.isl
[2010/12/11 03:32:12 | 000,000,646 | ---- | C] () -- C:\Documents and Settings\Snake\My Documents\Camtasia Studio 7.lnk
[2010/12/11 00:10:00 | 000,000,647 | ---- | C] () -- C:\Documents and Settings\Snake\My Documents\µTorrent.lnk
[2010/12/03 23:42:24 | 000,022,328 | ---- | C] () -- C:\windows\System32\drivers\PnkBstrK.sys
[2010/11/19 10:04:52 | 000,022,328 | ---- | C] () -- C:\Documents and Settings\Snake\Application Data\PnkBstrK.sys
[2010/07/09 21:00:32 | 000,041,872 | ---- | C] () -- C:\windows\System32\xfcodec.dll
[2010/03/15 20:03:03 | 000,209,008 | ---- | C] () -- C:\windows\System32\kbhookdll.dll
[2010/02/07 18:57:32 | 000,000,080 | RHS- | C] () -- C:\windows\System32\A94DAF9D54.dll
[2009/12/30 21:01:45 | 000,017,920 | ---- | C] () -- C:\windows\System32\wnaspi32.dll
[2009/12/30 20:53:12 | 000,044,544 | ---- | C] () -- C:\windows\System32\GIF89.DLL
[2009/12/30 20:53:09 | 000,484,352 | ---- | C] () -- C:\windows\System32\lame_enc.dll
[2009/11/19 15:43:29 | 000,000,389 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\hpzinstall.log
[2009/11/19 15:43:06 | 000,077,824 | R--- | C] () -- C:\windows\System32\hpzids01.dll
[2009/11/14 19:10:16 | 000,180,224 | ---- | C] () -- C:\windows\System32\WinVd32.sys
[2009/11/14 19:06:00 | 000,110,592 | ---- | C] () -- C:\windows\System32\suppdll.dll
[2009/11/14 19:06:00 | 000,035,363 | ---- | C] () -- C:\windows\System32\windrvNT.sys
[2009/11/05 22:17:10 | 000,000,848 | -HS- | C] () -- C:\windows\System32\KGyGaAvL.sys
[2009/10/27 02:38:12 | 000,006,144 | ---- | C] () -- C:\Documents and Settings\Snake\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/10/26 08:06:12 | 000,043,520 | ---- | C] () -- C:\windows\System32\CmdLineExt03.dll
[2009/10/10 17:15:46 | 000,002,272 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2009/10/09 18:05:41 | 000,164,352 | -HS- | C] () -- C:\windows\System32\SC.dll
[2009/10/07 01:46:36 | 000,025,752 | ---- | C] () -- C:\windows\System32\drivers\LVPr2Mon.sys
[2009/10/07 01:23:08 | 000,013,584 | ---- | C] () -- C:\windows\System32\drivers\iKeyLFT2.dll
[2009/09/16 16:27:58 | 000,508,224 | ---- | C] () -- C:\windows\System32\ICCProfiles.dll
[2009/09/16 13:49:42 | 000,069,632 | ---- | C] () -- C:\windows\System32\xmltok.dll
[2009/09/16 13:49:42 | 000,036,864 | ---- | C] () -- C:\windows\System32\xmlparse.dll
[2009/08/31 10:48:55 | 000,029,696 | ---- | C] () -- C:\windows\System32\pthread.dll
[2009/08/28 07:36:06 | 000,082,289 | ---- | C] () -- C:\windows\System32\lvcoinst.ini
[2009/08/18 09:57:31 | 000,000,031 | ---- | C] () -- C:\windows\System32\wdsdtdsini.dll
[2009/08/07 22:45:59 | 000,129,024 | ---- | C] () -- C:\windows\System32\AVERM.dll
[2009/08/07 22:45:58 | 000,028,672 | ---- | C] () -- C:\windows\System32\AVEQT.dll
[2009/08/07 18:51:34 | 000,178,430 | ---- | C] () -- C:\windows\System32\xlive.dll.cat
[2009/08/03 16:08:44 | 000,000,848 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\KGyGaAvL.sys
[2009/07/15 12:18:18 | 000,420,920 | ---- | C] () -- C:\windows\System32\drivers\sptd.sys
[2009/07/13 00:13:43 | 000,135,168 | ---- | C] () -- C:\windows\System32\RtlCPAPI.dll
[2009/07/12 23:12:35 | 000,040,960 | ---- | C] () -- C:\Program Files\Uninstall_CDS.exe
[2009/07/03 17:23:47 | 000,197,120 | ---- | C] () -- C:\windows\patchw32.dll
[2009/07/01 23:20:30 | 000,001,009 | ---- | C] () -- C:\windows\FOE2.ini
[2009/05/31 17:09:08 | 000,162,432 | ---- | C] () -- C:\windows\System32\drivers\ithsgt.sys
[2009/05/31 17:09:07 | 000,012,032 | ---- | C] () -- C:\windows\System32\drivers\lilsgt.sys
[2009/05/02 09:34:02 | 000,281,760 | ---- | C] () -- C:\windows\System32\drivers\atksgt.sys
[2009/05/02 09:34:00 | 000,025,888 | ---- | C] () -- C:\windows\System32\drivers\lirsgt.sys
[2009/04/21 04:57:30 | 000,021,840 | ---- | C] () -- C:\windows\System32\SIntfNT.dll
[2009/04/21 04:57:29 | 000,017,212 | ---- | C] () -- C:\windows\System32\SIntf32.dll
[2009/04/21 04:57:29 | 000,012,067 | ---- | C] () -- C:\windows\System32\SIntf16.dll
[2009/04/15 01:15:37 | 000,002,892 | ---- | C] () -- C:\windows\wincmd.ini
[2009/04/15 01:15:37 | 000,000,754 | ---- | C] () -- C:\windows\WORDPAD.INI
[2009/04/15 01:15:37 | 000,000,192 | ---- | C] () -- C:\windows\winamp.ini
[2009/04/15 01:15:37 | 000,000,010 | ---- | C] () -- C:\windows\WININIT.INI
[2009/04/15 01:15:35 | 000,001,408 | ---- | C] () -- C:\windows\Sandboxie.ini
[2009/04/15 01:15:35 | 000,000,169 | ---- | C] () -- C:\windows\RtlRack.ini
[2009/04/15 01:15:35 | 000,000,052 | ---- | C] () -- C:\windows\Relax.ini
[2009/04/15 01:15:34 | 000,004,161 | ---- | C] () -- C:\windows\ODBCINST.INI
[2009/04/15 01:15:34 | 000,000,116 | ---- | C] () -- C:\windows\NeroDigital.ini
[2009/04/15 01:15:34 | 000,000,103 | ---- | C] () -- C:\windows\jaangle.INI
[2009/04/15 01:15:34 | 000,000,050 | ---- | C] () -- C:\windows\MegaManager.INI
[2009/04/15 01:15:34 | 000,000,020 | ---- | C] () -- C:\windows\mafosav.INI
[2009/04/15 01:15:33 | 000,000,203 | ---- | C] () -- C:\windows\GSdx9.INI
[2009/04/15 01:15:33 | 000,000,203 | ---- | C] () -- C:\windows\GSdx9 sse2.INI
[2009/04/15 01:15:33 | 000,000,189 | ---- | C] () -- C:\windows\GSdx9-sse2.INI
[2009/04/15 01:15:33 | 000,000,109 | ---- | C] () -- C:\windows\disney.ini
[2009/04/15 01:15:32 | 000,000,025 | ---- | C] () -- C:\windows\CDE DX4400DEFGIPS.ini
[2009/04/15 01:15:32 | 000,000,023 | ---- | C] () -- C:\windows\BlendSettings.ini
[2009/04/12 04:08:42 | 000,015,620 | ---- | C] () -- C:\windows\System32\SystemRes10.b30.SYS
[2007/03/25 12:50:38 | 000,131,072 | ---- | C] () -- C:\windows\System32\gc.dll
[2007/01/25 02:52:26 | 000,065,536 | ---- | C] () -- C:\Program Files\Common Files\NMSAccessU.exe
[2006/11/10 15:08:50 | 000,024,064 | ---- | C] () -- C:\windows\System32\drivers\ATITool.sys
[2005/10/31 20:28:22 | 000,069,632 | ---- | C] () -- C:\windows\System32\MobOlExt.dll
[2004/08/22 16:04:56 | 000,069,120 | ---- | C] () -- C:\windows\daemon.dll
[1997/06/14 02:56:08 | 000,056,832 | ---- | C] () -- C:\windows\System32\iyvu9_32.dll
[1996/04/03 21:33:26 | 000,005,248 | ---- | C] () -- C:\windows\System32\giveio.sys

========== LOP Check ==========

[2009/12/26 09:31:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\123C6
[2010/03/19 17:09:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\2DBoy
[2010/03/15 20:48:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Alwil Software
[2009/07/03 11:28:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Autodesk
[2009/07/18 11:54:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\BioWare
[2010/03/15 20:33:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\BitDefender
[2010/01/09 11:49:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\BVRP Software
[2010/12/14 02:25:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Chit Chat For Facebook
[2009/11/12 22:55:52 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\Common Files
[2010/03/16 15:44:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
[2010/02/25 13:00:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Pro
[2009/09/08 10:41:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DrivingSpeed2
[2010/11/17 06:46:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\EA Core
[2010/11/17 06:46:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Electronic Arts
[2009/12/16 12:37:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\EmailNotifier
[2010/02/25 16:07:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ESET
[2010/02/01 10:33:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Firefly Studios
[2010/02/28 20:52:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\FreeDownloadManager.ORG
[2009/10/23 16:27:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\id Software
[2009/08/03 16:05:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\InterVideo
[2011/01/03 05:26:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IObit
[2009/12/18 17:12:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IsolatedStorage
[2009/05/23 03:54:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\LAG
[2010/01/28 21:06:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Martau
[2009/12/16 12:39:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Megaupload
[2011/01/03 11:38:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2009/05/29 21:57:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NFS Underground
[2009/07/09 14:44:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nitro PDF
[2009/11/11 04:17:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\OrbNetworks
[2009/06/30 23:00:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ParetoLogic
[2009/07/15 16:48:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Suite
[2009/10/26 06:26:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\pI3demoLicense
[2009/07/21 17:37:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PopCap Games
[2011/01/04 01:45:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\RegCure
[2009/05/29 02:45:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SEGA Corporation
[2009/11/11 04:07:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SHOUTcast Radio Toolbar
[2010/11/30 10:18:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Solidshield
[2009/10/17 18:49:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Sony
[2009/04/28 08:41:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Stentec
[2009/05/08 04:33:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Synetic
[2009/07/25 12:26:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TechSmith
[2011/01/04 04:12:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2010/12/15 09:13:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Test Drive Unlimited
[2009/04/25 00:38:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TmForever
[2009/04/25 22:09:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TrackMania
[2010/12/19 22:36:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TuneUp Software
[2009/07/27 16:27:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Ubisoft
[2009/08/03 15:54:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Ulead Systems
[2010/12/28 23:47:49 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\{1EB63B4B-5639-4477-8E24-05C31B5F8019}
[2010/12/19 22:33:23 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Application Data\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
[2010/02/26 19:12:46 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Application Data\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
[2010/12/02 02:22:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\.minecraft
[2009/11/12 22:57:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\AVG10
[2010/12/27 02:06:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Bierbuden Autoupdate
[2011/01/04 04:31:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\BitTorrent
[2009/10/31 01:17:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Braid
[2011/01/02 02:30:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\DAEMON Tools
[2009/10/22 17:31:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\DAEMON Tools Lite
[2011/01/02 02:50:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\DAEMON Tools Pro
[2010/12/14 09:36:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Dealio
[2010/12/11 02:12:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Disk Cleaner
[2010/11/16 04:07:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\EurekaLog
[2010/12/24 00:38:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\flightgear.org
[2010/12/20 01:42:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\FOG Downloader
[2010/12/28 01:45:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Foxit Software
[2009/11/09 05:44:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\GetRightToGo
[2009/10/30 21:28:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Hothead Games
[2009/10/23 16:28:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\id Software
[2009/10/26 05:56:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Leadertech
[2010/12/16 05:02:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\MusicFrost
[2010/12/25 12:45:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\OnLive App
[2009/10/30 23:36:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Opera
[2010/12/03 06:53:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Search Settings
[2009/10/20 20:18:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Sony
[2011/01/01 23:38:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\SystemRequirementsLab
[2010/12/28 02:43:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\TBB
[2010/12/19 22:33:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\TuneUp Software
[2010/12/27 11:16:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Ubisoft
[2009/10/23 10:19:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\URSoft
[2011/01/02 07:24:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\uTorrent
[2009/10/26 05:52:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Youtube Downloader HD
[2009/10/25 18:00:00 | 000,000,436 | ---- | M] () -- C:\windows\Tasks\ParetoLogic Registration3.job
[2010/12/27 03:37:00 | 000,000,410 | ---- | M] () -- C:\windows\Tasks\ParetoLogic Update Version3.job
[2010/12/31 04:15:00 | 000,000,350 | ---- | M] () -- C:\windows\Tasks\PC Health Advisor.job
[2011/01/04 01:45:39 | 000,000,390 | ---- | M] () -- C:\windows\Tasks\RegCure Program Check.job
[2011/01/04 01:45:38 | 000,000,372 | ---- | M] () -- C:\windows\Tasks\RegCure.job

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 177 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:ECF54A0E
@Alternate Data Stream - 175 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:1CE11B51
@Alternate Data Stream - 156 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:9D03192E
@Alternate Data Stream - 147 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:94A19129
@Alternate Data Stream - 142 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:63238B95
@Alternate Data Stream - 129 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:05EE1EEF
@Alternate Data Stream - 128 bytes -> C:\WINDOWS:nlsPreferences
@Alternate Data Stream - 118 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:9AEE100C
@Alternate Data Stream - 100 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:ADF211B1

< End of report >
[2011/01/04 06:28:00 | 000,000,886 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA1ca4fe567ff5fd8.job
[2011/01/04 06:23:10 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Snake\Desktop\OTL.exe
[2011/01/04 06:15:48 | 000,000,882 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore1ca4fe5677779ce.job
[2011/01/04 06:15:41 | 000,002,048 | --S- | M] () -- C:\windows\bootstat.dat
[2011/01/04 05:58:25 | 000,045,404 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\Dump.zip
[2011/01/04 05:43:15 | 000,000,855 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\BlueScreenView.cfg
[2011/01/04 04:28:18 | 000,001,524 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\AVG Free 8.5.lnk
[2011/01/04 03:58:56 | 000,000,000 | ---- | M] () -- C:\windows\MEMORY.DMP
[2011/01/04 03:27:40 | 000,000,520 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\Rds.lnk
[2011/01/04 02:01:41 | 000,000,791 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\CleanMyPC - Registry Cleaner.lnk
[2011/01/04 01:45:39 | 000,000,390 | ---- | M] () -- C:\windows\tasks\RegCure Program Check.job
[2011/01/04 01:45:38 | 000,000,372 | ---- | M] () -- C:\windows\tasks\RegCure.job
[2011/01/04 01:31:13 | 000,102,400 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\Mini010411-02.dmp
[2011/01/04 01:27:05 | 000,102,400 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\Mini010411-01.dmp
[2011/01/03 23:20:51 | 000,001,711 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\SUPERAntiSpyware Free Edition.lnk
[2011/01/03 23:19:43 | 009,953,832 | ---- | M] (SUPERAntiSpyware.com) -- C:\Documents and Settings\Snake\Desktop\SUPERAntiSpyware.exe
[2011/01/03 22:45:31 | 000,002,148 | ---- | M] () -- C:\Documents and Settings\Snake\Local
[2011/01/03 04:16:10 | 000,000,777 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\MirrorsEdge.lnk
[2011/01/02 09:26:59 | 000,000,615 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\OnLive.lnk
[2011/01/02 08:28:29 | 000,000,320 | ---- | M] () -- C:\Documents and Settings\Snake\My Documents\PropertyHandler.reg
[2011/01/02 01:33:11 | 000,000,621 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\GT Legends.lnk
[2011/01/02 01:33:05 | 000,000,657 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\Trine.lnk
[2010/12/31 04:15:00 | 000,000,350 | ---- | M] () -- C:\windows\tasks\PC Health Advisor.job
[2010/12/30 10:43:58 | 000,000,116 | ---- | M] () -- C:\windows\NeroDigital.ini
[2010/12/30 00:56:58 | 000,000,843 | ---- | M] () -- C:\Documents and Settings\Snake\Application Data\Microsoft\Internet Explorer\Quick Launch\Yahoo! Messenger.lnk
[2010/12/30 00:56:58 | 000,000,825 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Yahoo! Messenger.lnk
[2010/12/27 09:05:14 | 000,000,060 | ---- | M] () -- C:\windows\game.ini
[2010/12/27 08:53:03 | 000,001,776 | ---- | M] () -- C:\Documents and Settings\Snake\Application Data\Microsoft\Internet Explorer\Quick Launch\TuneUp Utilities 2011.lnk
[2010/12/27 03:37:00 | 000,000,410 | ---- | M] () -- C:\windows\tasks\ParetoLogic Update Version3.job
[2010/12/24 00:29:26 | 000,001,776 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\TuneUp Utilities 2011.lnk
[2010/12/23 13:27:40 | 000,017,470 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\BlueScreenView.chm
[2010/12/23 13:22:50 | 000,052,736 | ---- | M] (NirSoft) -- C:\Documents and Settings\Snake\Desktop\BlueScreenView.exe
[2010/12/23 07:48:12 | 000,000,621 | ---- | M] () -- C:\Documents and Settings\Snake\Application Data\Microsoft\Internet Explorer\Quick Launch\BitTorrent.lnk
[2010/12/23 07:48:07 | 000,000,621 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\BitTorrent.lnk
[2010/12/19 00:25:07 | 000,089,222 | ---- | M] () -- C:\Documents and Settings\Snake\My Documents\LOLCat.gif
[2010/12/17 11:33:36 | 000,000,010 | ---- | M] () -- C:\windows\WININIT.INI
[2010/12/17 05:56:11 | 000,000,609 | ---- | M] () -- C:\Documents and Settings\Snake\Desktop\Opera.lnk
[2010/12/14 06:04:16 | 000,006,144 | ---- | M] () -- C:\Documents and Settings\Snake\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/12/11 03:32:12 | 000,000,646 | ---- | M] () -- C:\Documents and Settings\Snake\My Documents\Camtasia Studio 7.lnk
[2010/12/11 00:10:00 | 000,000,647 | ---- | M] () -- C:\Documents and Settings\Snake\My Documents\µTorrent.lnk
[2 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]

========== LOP Check ==========

[2009/12/26 09:31:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\123C6
[2010/03/19 17:09:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\2DBoy
[2010/03/15 20:48:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Alwil Software
[2009/07/03 11:28:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Autodesk
[2009/07/18 11:54:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\BioWare
[2010/03/15 20:33:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\BitDefender
[2010/01/09 11:49:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\BVRP Software
[2010/12/14 02:25:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Chit Chat For Facebook
[2009/11/12 22:55:52 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\Common Files
[2010/03/16 15:44:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
[2010/02/25 13:00:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Pro
[2009/09/08 10:41:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DrivingSpeed2
[2010/11/17 06:46:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\EA Core
[2010/11/17 06:46:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Electronic Arts
[2009/12/16 12:37:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\EmailNotifier
[2010/02/25 16:07:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ESET
[2010/02/01 10:33:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Firefly Studios
[2010/02/28 20:52:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\FreeDownloadManager.ORG
[2009/10/23 16:27:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\id Software
[2009/08/03 16:05:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\InterVideo
[2011/01/03 05:26:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IObit
[2009/12/18 17:12:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\IsolatedStorage
[2009/05/23 03:54:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\LAG
[2010/01/28 21:06:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Martau
[2009/12/16 12:39:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Megaupload
[2011/01/03 11:38:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2009/05/29 21:57:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\NFS Underground
[2009/07/09 14:44:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Nitro PDF
[2009/11/11 04:17:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\OrbNetworks
[2009/06/30 23:00:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ParetoLogic
[2009/07/15 16:48:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PC Suite
[2009/10/26 06:26:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\pI3demoLicense
[2009/07/21 17:37:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PopCap Games
[2011/01/04 01:45:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\RegCure
[2009/05/29 02:45:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SEGA Corporation
[2009/11/11 04:07:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\SHOUTcast Radio Toolbar
[2010/11/30 10:18:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Solidshield
[2009/10/17 18:49:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Sony
[2009/04/28 08:41:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Stentec
[2009/05/08 04:33:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Synetic
[2009/07/25 12:26:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TechSmith
[2011/01/04 04:12:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2010/12/15 09:13:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Test Drive Unlimited
[2009/04/25 00:38:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TmForever
[2009/04/25 22:09:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TrackMania
[2010/12/19 22:36:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TuneUp Software
[2009/07/27 16:27:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Ubisoft
[2009/08/03 15:54:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Ulead Systems
[2010/12/28 23:47:49 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\{1EB63B4B-5639-4477-8E24-05C31B5F8019}
[2010/12/19 22:33:23 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Application Data\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
[2010/02/26 19:12:46 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Application Data\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
[2010/12/02 02:22:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\.minecraft
[2009/11/12 22:57:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\AVG10
[2010/12/27 02:06:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Bierbuden Autoupdate
[2011/01/04 04:31:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\BitTorrent
[2009/10/31 01:17:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Braid
[2011/01/02 02:30:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\DAEMON Tools
[2009/10/22 17:31:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\DAEMON Tools Lite
[2011/01/02 02:50:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\DAEMON Tools Pro
[2010/12/14 09:36:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Dealio
[2010/12/11 02:12:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Disk Cleaner
[2010/11/16 04:07:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\EurekaLog
[2010/12/24 00:38:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\flightgear.org
[2010/12/20 01:42:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\FOG Downloader
[2010/12/28 01:45:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Foxit Software
[2009/11/09 05:44:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\GetRightToGo
[2009/10/30 21:28:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Hothead Games
[2009/10/23 16:28:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\id Software
[2009/10/26 05:56:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Leadertech
[2010/12/16 05:02:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\MusicFrost
[2010/12/25 12:45:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\OnLive App
[2009/10/30 23:36:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Opera
[2010/12/03 06:53:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Search Settings
[2009/10/20 20:18:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Sony
[2011/01/01 23:38:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\SystemRequirementsLab
[2010/12/28 02:43:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\TBB
[2010/12/19 22:33:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\TuneUp Software
[2010/12/27 11:16:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Ubisoft
[2009/10/23 10:19:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\URSoft
[2011/01/02 07:24:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\uTorrent
[2009/10/26 05:52:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Snake\Application Data\Youtube Downloader HD
[2009/10/25 18:00:00 | 000,000,436 | ---- | M] () -- C:\windows\Tasks\ParetoLogic Registration3.job
[2010/12/27 03:37:00 | 000,000,410 | ---- | M] () -- C:\windows\Tasks\ParetoLogic Update Version3.job
[2010/12/31 04:15:00 | 000,000,350 | ---- | M] () -- C:\windows\Tasks\PC Health Advisor.job
[2011/01/04 01:45:39 | 000,000,390 | ---- | M] () -- C:\windows\Tasks\RegCure Program Check.job
[2011/01/04 01:45:38 | 000,000,372 | ---- | M] () -- C:\windows\Tasks\RegCure.job

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 177 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:ECF54A0E
@Alternate Data Stream - 175 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:1CE11B51
@Alternate Data Stream - 156 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:9D03192E
@Alternate Data Stream - 147 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:94A19129
@Alternate Data Stream - 142 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:63238B95
@Alternate Data Stream - 129 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:05EE1EEF
@Alternate Data Stream - 118 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:9AEE100C
@Alternate Data Stream - 100 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:ADF211B1

< End of report >



BTW the E: is a Cd i forgot to eject before the scan xD

Edited by NokiGP, 05 January 2011 - 07:44 AM.

  • 0

Advertisements







Similar Topics

1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP