I keep my windows updated and I also updated and tried in depth scans with windows security essentials, trustport total protection and advanced system care's malware scan but they found nothing. I'm not sure if it's required but I figured it might be relevant so I'll post two scans, the first bofore I start any game and the other one with a game started.
Here is the otl.txt scan i did without any game started and consequently without the rundll32.exe process running:
OTL logfile created on: 5/16/2011 8:11:15 AM - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\ionut\Downloads
64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 53.00% Memory free
6.00 Gb Paging File | 4.00 Gb Available in Paging File | 71.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 52.18 Gb Total Space | 27.13 Gb Free Space | 51.98% Space Free | Partition Type: NTFS
Drive D: | 149.04 Gb Total Space | 28.52 Gb Free Space | 19.13% Space Free | Partition Type: NTFS
Drive E: | 93.13 Gb Total Space | 27.71 Gb Free Space | 29.75% Space Free | Partition Type: NTFS
Computer Name: DUSMANU | User Name: ionut | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/05/16 07:58:57 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\ionut\Downloads\OTL.exe
PRC - [2011/05/15 00:52:13 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2011/05/09 09:05:38 | 000,404,040 | ---- | M] (TrustPort, a.s.) -- C:\Program Files (x86)\Common Files\TrustPort\bin\tpmgma.exe
PRC - [2011/05/09 09:02:00 | 000,266,512 | ---- | M] (TrustPort, a.s.) -- C:\Program Files (x86)\TrustPort\DataShredder\bin\wipesrv.exe
PRC - [2011/05/09 09:01:58 | 000,721,168 | ---- | M] () -- C:\Program Files (x86)\Common Files\TrustPort\bin\tptray.exe
PRC - [2011/05/09 09:01:50 | 000,217,360 | ---- | M] () -- C:\Program Files (x86)\TrustPort\DiskProtection\bin\tdwatch.exe
PRC - [2011/05/09 09:01:42 | 000,487,696 | ---- | M] (TrustPort, a.s.) -- C:\Program Files (x86)\TrustPort\Antivirus\bin\gozer.exe
PRC - [2011/05/09 09:01:34 | 000,291,088 | ---- | M] (TrustPort, a.s.) -- C:\Program Files (x86)\TrustPort\Antivirus\bin\avss.exe
PRC - [2011/05/09 09:01:30 | 000,774,416 | ---- | M] (TrustPort, a.s.) -- C:\Program Files (x86)\TrustPort\Antivirus\bin\avcom.exe
PRC - [2011/05/09 09:01:26 | 000,495,888 | ---- | M] (TrustPort, a.s.) -- C:\Program Files (x86)\TrustPort\Antivirus\bin\avas.exe
PRC - [2011/04/22 15:08:52 | 003,366,800 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\ASC.exe
PRC - [2011/04/22 15:08:52 | 000,801,680 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\PMonitor.exe
PRC - [2011/04/22 15:08:52 | 000,402,832 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\ASCTray.exe
PRC - [2011/04/22 15:08:52 | 000,352,656 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\ASCService.exe
PRC - [2011/04/10 17:29:14 | 001,646,936 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Smart Defrag 2\SmartDefrag.exe
PRC - [2011/02/24 15:46:24 | 000,427,864 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Game Booster\gbtray.exe
PRC - [2011/02/14 17:17:52 | 000,261,456 | ---- | M] () -- C:\Program Files (x86)\Join Air\AssistantServices.exe
PRC - [2011/02/14 17:17:52 | 000,139,088 | ---- | M] () -- C:\Program Files (x86)\Join Air\UIExec.exe
PRC - [2010/12/19 08:51:47 | 000,395,640 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe
========== Modules (SafeList) ==========
MOD - [2011/05/16 07:58:57 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\ionut\Downloads\OTL.exe
MOD - [2010/08/21 08:21:32 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll
========== Win32 Services (SafeList) ==========
SRV:64bit: - [2010/11/11 15:36:38 | 000,282,616 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe -- (NisSrv)
SRV:64bit: - [2010/11/11 15:36:38 | 000,012,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2009/07/14 04:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/07/14 04:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2011/05/09 09:05:38 | 000,404,040 | ---- | M] (TrustPort, a.s.) [Auto | Running] -- C:\Program Files (x86)\Common Files\TrustPort\bin\tpmgma.exe -- (tpmgma_service)
SRV - [2011/05/09 09:02:00 | 000,266,512 | ---- | M] (TrustPort, a.s.) [Auto | Running] -- C:\Program Files (x86)\TrustPort\DataShredder\bin\wipesrv.exe -- (wipesrv)
SRV - [2011/05/09 09:01:42 | 000,487,696 | ---- | M] (TrustPort, a.s.) [On_Demand | Running] -- C:\Program Files (x86)\TrustPort\Antivirus\bin\gozer.exe -- (gozer)
SRV - [2011/05/09 09:01:34 | 000,291,088 | ---- | M] (TrustPort, a.s.) [On_Demand | Running] -- C:\Program Files (x86)\TrustPort\Antivirus\bin\avss.exe -- (avss_service)
SRV - [2011/05/09 09:01:26 | 000,495,888 | ---- | M] (TrustPort, a.s.) [On_Demand | Running] -- C:\Program Files (x86)\TrustPort\Antivirus\bin\avas.exe -- (avas_service)
SRV - [2011/04/22 15:08:52 | 000,352,656 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\ASCService.exe -- (AdvancedSystemCareService)
SRV - [2011/02/14 17:17:52 | 000,261,456 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Join Air\AssistantServices.exe -- (UI Assistant Service)
SRV - [2010/03/18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/06/11 00:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2011/05/09 09:06:54 | 000,041,088 | ---- | M] (TrustPort, a.s.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\tpsec.sys -- (tpsec)
DRV:64bit: - [2011/05/09 09:05:10 | 000,050,960 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\tdifw.sys -- (tdifw)
DRV:64bit: - [2011/05/09 09:05:06 | 000,050,448 | ---- | M] (TrustPort, a.s.) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\avasdmft.sys -- (avasdmft) TrustPort Antivirus On-Access Scanner (W2K/XP)
DRV:64bit: - [2011/02/23 16:50:14 | 000,018,232 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SmartDefragDriver.sys -- (SmartDefragDriver)
DRV:64bit: - [2010/10/24 22:25:38 | 000,072,064 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:64bit: - [2010/09/27 20:11:22 | 000,303,616 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\atksgt.sys -- (atksgt)
DRV:64bit: - [2010/09/27 20:11:22 | 000,035,328 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\lirsgt.sys -- (lirsgt)
DRV:64bit: - [2010/09/19 18:54:59 | 000,834,544 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:64bit: - [2010/07/14 14:42:56 | 007,821,312 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NETwNs64.sys -- (NETwNs64) ___ Intel®
DRV:64bit: - [2010/02/03 16:56:56 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV:64bit: - [2009/10/10 05:41:20 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2009/09/27 09:53:54 | 000,119,680 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ZTEusbser6k.sys -- (ZTEusbser6k)
DRV:64bit: - [2009/09/27 09:53:54 | 000,119,680 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ZTEusbnmea.sys -- (ZTEusbnmea)
DRV:64bit: - [2009/09/27 09:53:54 | 000,119,680 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ZTEusbmdm6k.sys -- (ZTEusbmdm6k)
DRV:64bit: - [2009/09/27 09:53:54 | 000,011,776 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\massfilter.sys -- (massfilter)
DRV:64bit: - [2009/09/15 20:40:42 | 006,952,960 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NETw5s64.sys -- (NETw5s64) Intel®
DRV:64bit: - [2009/09/02 18:54:20 | 007,369,728 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2009/07/14 04:52:21 | 000,106,576 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2009/07/14 04:52:21 | 000,028,752 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2009/07/14 04:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/14 04:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/14 04:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2009/07/14 04:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/11 00:01:11 | 001,485,312 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VSTDPV6.SYS -- (SrvHsfV92)
DRV:64bit: - [2009/06/11 00:01:11 | 000,740,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS -- (SrvHsfWinac)
DRV:64bit: - [2009/06/11 00:01:11 | 000,292,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VSTAZL6.SYS -- (SrvHsfHDA)
DRV:64bit: - [2009/06/10 23:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\wbem\ntfs.mof -- (Ntfs)
DRV:64bit: - [2009/06/10 23:35:28 | 005,434,368 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netw5v64.sys -- (netw5v64) Intel®
DRV:64bit: - [2009/06/10 23:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 23:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 23:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 23:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/02/24 18:35:44 | 000,255,552 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mcdbus.sys -- (mcdbus)
DRV - [2011/05/09 09:05:12 | 000,033,552 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Program Files (x86)\TrustPort\PersonalFirewall\bin\tppfhook.sys -- (TPPFHOOK)
DRV - [2011/05/09 09:05:10 | 000,020,752 | ---- | M] () [Kernel | System | Running] -- C:\Program Files (x86)\TrustPort\PersonalFirewall\bin\tdimapper.sys -- (tdimapper)
DRV - [2011/05/09 09:05:08 | 000,061,200 | ---- | M] () [Kernel | Auto | Running] -- C:\Program Files (x86)\TrustPort\DiskProtection\bin\encdsk.sys -- (EncDisk)
DRV - [2011/05/09 09:05:08 | 000,020,240 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\TrustPort\bin\dsio.sys -- (dsio)
DRV - [2009/02/24 18:35:44 | 000,255,552 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\mcdbus.sys -- (mcdbus)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = ro
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 85 AB 7D AA 2A FD CB 01 [binary data]
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "http://www.google.com/"
FF - prefs.js..extensions.enabledItems: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.9.1
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: [email protected]:2.5.2
FF - prefs.js..network.proxy.type: 0
FF - HKLM\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/05/15 00:52:16 | 000,000,000 | ---D | M]
[2010/09/07 09:18:21 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ionut\AppData\Roaming\Mozilla\Extensions
[2011/05/15 00:52:20 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ionut\AppData\Roaming\Mozilla\Firefox\Profiles\6xj97pzz.default\extensions
[2011/04/22 09:28:49 | 000,000,000 | ---D | M] (Ghostery) -- C:\Users\ionut\AppData\Roaming\Mozilla\Firefox\Profiles\6xj97pzz.default\extensions\[email protected]
[2011/05/13 17:39:10 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
File not found (No name found) --
() (No name found) -- C:\USERS\IONUT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\6XJ97PZZ.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI
() (No name found) -- C:\USERS\IONUT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\6XJ97PZZ.DEFAULT\EXTENSIONS\{E4A8A97B-F2ED-450B-B12D-EE082BA24781}.XPI
() (No name found) -- C:\USERS\IONUT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\6XJ97PZZ.DEFAULT\EXTENSIONS\[email protected]
[2011/05/15 00:52:13 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll
[2010/01/01 11:00:00 | 000,001,538 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\amazon-en-GB.xml
[2010/01/01 11:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\bing.xml
[2010/01/01 11:00:00 | 000,000,947 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\chambers-en-GB.xml
[2010/01/01 11:00:00 | 000,001,180 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\eBay-en-GB.xml
[2010/01/01 11:00:00 | 000,001,135 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\yahoo-en-GB.xml
O1 HOSTS File: ([2009/06/11 00:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2 - BHO: (AskBar BHO) - {201f27d4-3704-41d6-89c1-aa35e39143ed} - Reg Error: Value error. File not found
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4 - HKLM..\Run: [AntivirusCommunicatorAgent] C:\Program Files (x86)\TrustPort\Antivirus\bin\avcom.exe (TrustPort, a.s.)
O4 - HKLM..\Run: [TrustPortDiskProtectionWatchDog] C:\Program Files (x86)\TrustPort\DiskProtection\bin\TDWatch.exe ()
O4 - HKLM..\Run: [TrustPortTray] C:\Program Files (x86)\Common Files\TrustPort\Bin\tptray.exe ()
O4 - HKLM..\Run: [UIExec] C:\Program Files (x86)\Join Air\UIExec.exe ()
O4 - HKCU..\Run: [Advanced SystemCare 4] C:\Program Files (x86)\IObit\Advanced SystemCare 4\ASCTray.exe (IObit)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Value error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 82.76.253.115 82.76.253.125
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:64bit: - Winlogon\Notify\igfxcui: DllName - Reg Error: Key error. - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/01/13 16:10:30 | 000,000,007 | -HS- | M] () - D:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{17a77801-7c58-11e0-9c17-001d72c31e96}\Shell - "" = AutoRun
O33 - MountPoints2\{17a77801-7c58-11e0-9c17-001d72c31e96}\Shell\AutoRun\command - "" = J:\Windows\AutoRun.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (SmartDefragBootTime.exe) - File not found
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/05/13 17:39:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2011/05/13 12:52:48 | 000,135,168 | ---- | C] (ZTE Corporation) -- C:\Windows\SysNative\drivers\ZTEusbnet.sys
[2011/05/13 12:52:48 | 000,119,680 | ---- | C] (ZTE Incorporated) -- C:\Windows\SysNative\drivers\ZTEusbser6k.sys
[2011/05/13 12:52:48 | 000,119,680 | ---- | C] (ZTE Incorporated) -- C:\Windows\SysNative\drivers\ZTEusbnmea.sys
[2011/05/13 12:52:47 | 000,119,680 | ---- | C] (ZTE Incorporated) -- C:\Windows\SysNative\drivers\ZTEusbmdm6k.sys
[2011/05/13 12:52:47 | 000,011,776 | ---- | C] (ZTE Incorporated) -- C:\Windows\SysNative\drivers\massfilter.sys
[2011/05/13 12:52:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Join Air
[2011/05/13 12:52:39 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\SupportAppCB
[2011/05/13 12:52:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Join Air
[2011/05/11 09:56:49 | 000,050,448 | ---- | C] (TrustPort, a.s.) -- C:\Windows\SysNative\drivers\avasdmft.sys
[2011/05/11 09:56:38 | 000,041,088 | ---- | C] (TrustPort, a.s.) -- C:\Windows\SysNative\drivers\tpsec.sys
[2011/05/06 09:13:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 4
[2011/05/04 21:14:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game Booster
[2011/05/02 18:51:56 | 000,000,000 | ---D | C] -- C:\Windows\Internet Logs
[2011/05/02 18:33:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TrustPort Total Protection
[2011/05/02 18:32:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TrustPort
[2011/05/02 18:32:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\TrustPort
[2011/05/02 13:13:08 | 000,000,000 | ---D | C] -- C:\ProgramData\CheckPoint
[2011/04/30 17:08:34 | 000,000,000 | ---D | C] -- C:\Users\ionut\AppData\Local\Oblivion
[2011/04/19 12:03:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag 2
[2011/04/17 14:32:01 | 000,000,000 | ---D | C] -- C:\Users\ionut\AppData\Roaming\PC Suite
[2011/04/17 14:32:01 | 000,000,000 | ---D | C] -- C:\ProgramData\PC Suite
[2011/04/17 14:32:01 | 000,000,000 | ---D | C] -- C:\Users\ionut\AppData\Roaming\Nokia
[2011/04/17 14:31:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nokia PC Suite
[2011/04/17 14:31:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\PCSuite
[2011/04/17 14:31:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Nokia
[2011/04/17 14:31:12 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX
[2011/04/17 14:30:35 | 000,057,856 | ---- | C] (Nokia) -- C:\Windows\SysNative\nmwcdclsX64.dll
[2011/04/17 14:30:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Nokia
[2011/04/17 14:29:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Installations
[1 C:\Windows\SysNative\drivers\*.tmp files -> C:\Windows\SysNative\drivers\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/05/16 06:59:50 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/05/15 00:52:25 | 000,002,052 | ---- | M] () -- C:\Users\ionut\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011/05/14 15:34:15 | 000,729,688 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011/05/14 15:34:15 | 000,626,278 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011/05/14 15:34:15 | 000,107,522 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011/05/14 07:02:38 | 000,016,944 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/05/14 07:02:38 | 000,016,944 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/05/14 06:54:57 | 2359,971,840 | -HS- | M] () -- C:\hiberfil.sys
[2011/05/13 12:52:45 | 000,001,913 | ---- | M] () -- C:\Users\Public\Desktop\Join Air.lnk
[2011/05/12 10:31:32 | 000,396,431 | ---- | M] () -- C:\Users\ionut\Desktop\Untitled.png
[2011/05/09 09:06:54 | 000,041,088 | ---- | M] (TrustPort, a.s.) -- C:\Windows\SysNative\drivers\tpsec.sys
[2011/05/09 09:05:10 | 000,050,960 | ---- | M] () -- C:\Windows\SysNative\drivers\tdifw.sys
[2011/05/09 09:05:06 | 000,050,448 | ---- | M] (TrustPort, a.s.) -- C:\Windows\SysNative\drivers\avasdmft.sys
[2011/05/06 22:19:17 | 000,000,218 | ---- | M] () -- C:\Users\ionut\.recently-used.xbel
[2011/05/06 11:44:37 | 000,293,840 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011/04/17 14:34:09 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_PCCSWpdDriver_01_09_00.Wdf
[1 C:\Windows\SysNative\drivers\*.tmp files -> C:\Windows\SysNative\drivers\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/05/13 12:52:45 | 000,001,913 | ---- | C] () -- C:\Users\Public\Desktop\Join Air.lnk
[2011/05/12 10:31:31 | 000,396,431 | ---- | C] () -- C:\Users\ionut\Desktop\Untitled.png
[2011/05/11 09:56:49 | 000,050,960 | ---- | C] () -- C:\Windows\SysNative\drivers\tdifw.sys
[2011/05/06 22:19:17 | 000,000,218 | ---- | C] () -- C:\Users\ionut\.recently-used.xbel
[2011/04/19 12:03:05 | 000,032,136 | ---- | C] () -- C:\Windows\SysNative\SmartDefragBootTime.exe
[2011/04/19 12:03:05 | 000,018,232 | ---- | C] () -- C:\Windows\SysNative\drivers\SmartDefragDriver.sys
[2011/04/17 14:34:09 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_PCCSWpdDriver_01_09_00.Wdf
[2011/01/27 15:19:55 | 000,735,230 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2010/12/14 21:01:12 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010/10/26 18:55:40 | 000,000,600 | ---- | C] () -- C:\Windows\Rtcw.INI
[2010/09/27 20:23:48 | 000,007,606 | ---- | C] () -- C:\Users\ionut\AppData\Local\Resmon.ResmonCfg
[2010/09/09 17:13:23 | 000,001,010 | ---- | C] () -- C:\Windows\War3Unin.dat
[2009/09/02 18:52:46 | 000,439,300 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng500.bin
[2009/07/14 08:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009/07/14 05:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009/07/14 05:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009/07/14 03:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009/07/14 02:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009/07/14 00:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009/06/11 00:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2009/06/03 18:14:52 | 000,982,220 | ---- | C] () -- C:\Windows\SysWow64\igkrng500.bin
[2009/06/03 18:14:52 | 000,134,592 | ---- | C] () -- C:\Windows\SysWow64\igfcg500.bin
[2009/06/03 18:14:52 | 000,092,216 | ---- | C] () -- C:\Windows\SysWow64\igfcg500m.bin
< End of report >
__________________________________________________________________________________________________
__________________________________________________________________________________________________
And here's a scan with a game started and the rundll32.exe at 50% cpu:
OTL logfile created on: 5/16/2011 8:53:56 AM - Run 1
OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\ionut\Downloads
64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
3.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 52.00% Memory free
6.00 Gb Paging File | 4.00 Gb Available in Paging File | 67.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 52.18 Gb Total Space | 27.12 Gb Free Space | 51.98% Space Free | Partition Type: NTFS
Drive D: | 149.04 Gb Total Space | 28.52 Gb Free Space | 19.13% Space Free | Partition Type: NTFS
Drive E: | 93.13 Gb Total Space | 27.71 Gb Free Space | 29.75% Space Free | Partition Type: NTFS
Computer Name: DUSMANU | User Name: ionut | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011/05/16 07:58:57 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\ionut\Downloads\OTL.exe
PRC - [2011/05/15 00:52:13 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2011/05/09 09:05:38 | 000,404,040 | ---- | M] (TrustPort, a.s.) -- C:\Program Files (x86)\Common Files\TrustPort\bin\tpmgma.exe
PRC - [2011/05/09 09:02:00 | 000,266,512 | ---- | M] (TrustPort, a.s.) -- C:\Program Files (x86)\TrustPort\DataShredder\bin\wipesrv.exe
PRC - [2011/05/09 09:01:58 | 000,721,168 | ---- | M] () -- C:\Program Files (x86)\Common Files\TrustPort\bin\tptray.exe
PRC - [2011/05/09 09:01:50 | 000,217,360 | ---- | M] () -- C:\Program Files (x86)\TrustPort\DiskProtection\bin\tdwatch.exe
PRC - [2011/05/09 09:01:42 | 000,487,696 | ---- | M] (TrustPort, a.s.) -- C:\Program Files (x86)\TrustPort\Antivirus\bin\gozer.exe
PRC - [2011/05/09 09:01:34 | 000,291,088 | ---- | M] (TrustPort, a.s.) -- C:\Program Files (x86)\TrustPort\Antivirus\bin\avss.exe
PRC - [2011/05/09 09:01:30 | 000,774,416 | ---- | M] (TrustPort, a.s.) -- C:\Program Files (x86)\TrustPort\Antivirus\bin\avcom.exe
PRC - [2011/05/09 09:01:26 | 000,495,888 | ---- | M] (TrustPort, a.s.) -- C:\Program Files (x86)\TrustPort\Antivirus\bin\avas.exe
PRC - [2011/04/22 15:08:52 | 003,366,800 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\ASC.exe
PRC - [2011/04/22 15:08:52 | 000,801,680 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\PMonitor.exe
PRC - [2011/04/22 15:08:52 | 000,402,832 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\ASCTray.exe
PRC - [2011/04/22 15:08:52 | 000,352,656 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\ASCService.exe
PRC - [2011/04/10 17:29:14 | 001,646,936 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Smart Defrag 2\SmartDefrag.exe
PRC - [2011/02/24 15:46:24 | 000,427,864 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Game Booster\gbtray.exe
PRC - [2011/02/14 17:17:52 | 000,261,456 | ---- | M] () -- C:\Program Files (x86)\Join Air\AssistantServices.exe
PRC - [2011/02/14 17:17:52 | 000,139,088 | ---- | M] () -- C:\Program Files (x86)\Join Air\UIExec.exe
PRC - [2010/12/19 08:51:47 | 000,395,640 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe
PRC - [2010/02/26 23:41:08 | 000,471,040 | ---- | M] (Blizzard Entertainment) -- d:\games\Warcraft3\war3.exe
PRC - [2008/08/23 22:29:18 | 000,274,432 | ---- | M] (Blizzard Entertainment) -- D:\games\Warcraft3\Frozen Throne.exe
========== Modules (SafeList) ==========
MOD - [2011/05/16 07:58:57 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\ionut\Downloads\OTL.exe
MOD - [2010/08/21 08:21:32 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll
========== Win32 Services (SafeList) ==========
SRV:64bit: - [2010/11/11 15:36:38 | 000,282,616 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe -- (NisSrv)
SRV:64bit: - [2010/11/11 15:36:38 | 000,012,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2009/07/14 04:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009/07/14 04:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2011/05/09 09:05:38 | 000,404,040 | ---- | M] (TrustPort, a.s.) [Auto | Running] -- C:\Program Files (x86)\Common Files\TrustPort\bin\tpmgma.exe -- (tpmgma_service)
SRV - [2011/05/09 09:02:00 | 000,266,512 | ---- | M] (TrustPort, a.s.) [Auto | Running] -- C:\Program Files (x86)\TrustPort\DataShredder\bin\wipesrv.exe -- (wipesrv)
SRV - [2011/05/09 09:01:42 | 000,487,696 | ---- | M] (TrustPort, a.s.) [On_Demand | Running] -- C:\Program Files (x86)\TrustPort\Antivirus\bin\gozer.exe -- (gozer)
SRV - [2011/05/09 09:01:34 | 000,291,088 | ---- | M] (TrustPort, a.s.) [On_Demand | Running] -- C:\Program Files (x86)\TrustPort\Antivirus\bin\avss.exe -- (avss_service)
SRV - [2011/05/09 09:01:26 | 000,495,888 | ---- | M] (TrustPort, a.s.) [On_Demand | Running] -- C:\Program Files (x86)\TrustPort\Antivirus\bin\avas.exe -- (avas_service)
SRV - [2011/04/22 15:08:52 | 000,352,656 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\ASCService.exe -- (AdvancedSystemCareService)
SRV - [2011/02/14 17:17:52 | 000,261,456 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Join Air\AssistantServices.exe -- (UI Assistant Service)
SRV - [2010/03/18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/06/11 00:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2011/05/09 09:06:54 | 000,041,088 | ---- | M] (TrustPort, a.s.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\tpsec.sys -- (tpsec)
DRV:64bit: - [2011/05/09 09:05:10 | 000,050,960 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\tdifw.sys -- (tdifw)
DRV:64bit: - [2011/05/09 09:05:06 | 000,050,448 | ---- | M] (TrustPort, a.s.) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\avasdmft.sys -- (avasdmft) TrustPort Antivirus On-Access Scanner (W2K/XP)
DRV:64bit: - [2011/02/23 16:50:14 | 000,018,232 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SmartDefragDriver.sys -- (SmartDefragDriver)
DRV:64bit: - [2010/10/24 22:25:38 | 000,072,064 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:64bit: - [2010/09/27 20:11:22 | 000,303,616 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\atksgt.sys -- (atksgt)
DRV:64bit: - [2010/09/27 20:11:22 | 000,035,328 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\lirsgt.sys -- (lirsgt)
DRV:64bit: - [2010/09/19 18:54:59 | 000,834,544 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:64bit: - [2010/07/14 14:42:56 | 007,821,312 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NETwNs64.sys -- (NETwNs64) ___ Intel®
DRV:64bit: - [2010/02/03 16:56:56 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV:64bit: - [2009/10/10 05:41:20 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2009/09/27 09:53:54 | 000,119,680 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ZTEusbser6k.sys -- (ZTEusbser6k)
DRV:64bit: - [2009/09/27 09:53:54 | 000,119,680 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ZTEusbnmea.sys -- (ZTEusbnmea)
DRV:64bit: - [2009/09/27 09:53:54 | 000,119,680 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ZTEusbmdm6k.sys -- (ZTEusbmdm6k)
DRV:64bit: - [2009/09/27 09:53:54 | 000,011,776 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\massfilter.sys -- (massfilter)
DRV:64bit: - [2009/09/15 20:40:42 | 006,952,960 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NETw5s64.sys -- (NETw5s64) Intel®
DRV:64bit: - [2009/09/02 18:54:20 | 007,369,728 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2009/07/14 04:52:21 | 000,106,576 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2009/07/14 04:52:21 | 000,028,752 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2009/07/14 04:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/14 04:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/14 04:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2009/07/14 04:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/11 00:01:11 | 001,485,312 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VSTDPV6.SYS -- (SrvHsfV92)
DRV:64bit: - [2009/06/11 00:01:11 | 000,740,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS -- (SrvHsfWinac)
DRV:64bit: - [2009/06/11 00:01:11 | 000,292,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VSTAZL6.SYS -- (SrvHsfHDA)
DRV:64bit: - [2009/06/10 23:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\wbem\ntfs.mof -- (Ntfs)
DRV:64bit: - [2009/06/10 23:35:28 | 005,434,368 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netw5v64.sys -- (netw5v64) Intel®
DRV:64bit: - [2009/06/10 23:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 23:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 23:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 23:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/02/24 18:35:44 | 000,255,552 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mcdbus.sys -- (mcdbus)
DRV - [2011/05/09 09:05:12 | 000,033,552 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Program Files (x86)\TrustPort\PersonalFirewall\bin\tppfhook.sys -- (TPPFHOOK)
DRV - [2011/05/09 09:05:10 | 000,020,752 | ---- | M] () [Kernel | System | Running] -- C:\Program Files (x86)\TrustPort\PersonalFirewall\bin\tdimapper.sys -- (tdimapper)
DRV - [2011/05/09 09:05:08 | 000,061,200 | ---- | M] () [Kernel | Auto | Running] -- C:\Program Files (x86)\TrustPort\DiskProtection\bin\encdsk.sys -- (EncDisk)
DRV - [2011/05/09 09:05:08 | 000,020,240 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\TrustPort\bin\dsio.sys -- (dsio)
DRV - [2009/02/24 18:35:44 | 000,255,552 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\mcdbus.sys -- (mcdbus)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = ro
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 85 AB 7D AA 2A FD CB 01 [binary data]
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "http://www.google.com/"
FF - prefs.js..extensions.enabledItems: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.9.1
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: [email protected]:2.5.2
FF - prefs.js..network.proxy.type: 0
FF - HKLM\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/05/15 00:52:16 | 000,000,000 | ---D | M]
[2010/09/07 09:18:21 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ionut\AppData\Roaming\Mozilla\Extensions
[2011/05/15 00:52:20 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ionut\AppData\Roaming\Mozilla\Firefox\Profiles\6xj97pzz.default\extensions
[2011/04/22 09:28:49 | 000,000,000 | ---D | M] (Ghostery) -- C:\Users\ionut\AppData\Roaming\Mozilla\Firefox\Profiles\6xj97pzz.default\extensions\[email protected]
[2011/05/13 17:39:10 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
File not found (No name found) --
() (No name found) -- C:\USERS\IONUT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\6XJ97PZZ.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI
() (No name found) -- C:\USERS\IONUT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\6XJ97PZZ.DEFAULT\EXTENSIONS\{E4A8A97B-F2ED-450B-B12D-EE082BA24781}.XPI
() (No name found) -- C:\USERS\IONUT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\6XJ97PZZ.DEFAULT\EXTENSIONS\[email protected]
[2011/05/15 00:52:13 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll
[2010/01/01 11:00:00 | 000,001,538 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\amazon-en-GB.xml
[2010/01/01 11:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\bing.xml
[2010/01/01 11:00:00 | 000,000,947 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\chambers-en-GB.xml
[2010/01/01 11:00:00 | 000,001,180 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\eBay-en-GB.xml
[2010/01/01 11:00:00 | 000,001,135 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\searchplugins\yahoo-en-GB.xml
O1 HOSTS File: ([2009/06/11 00:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2 - BHO: (AskBar BHO) - {201f27d4-3704-41d6-89c1-aa35e39143ed} - Reg Error: Value error. File not found
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4 - HKLM..\Run: [AntivirusCommunicatorAgent] C:\Program Files (x86)\TrustPort\Antivirus\bin\avcom.exe (TrustPort, a.s.)
O4 - HKLM..\Run: [TrustPortDiskProtectionWatchDog] C:\Program Files (x86)\TrustPort\DiskProtection\bin\TDWatch.exe ()
O4 - HKLM..\Run: [TrustPortTray] C:\Program Files (x86)\Common Files\TrustPort\Bin\tptray.exe ()
O4 - HKLM..\Run: [UIExec] C:\Program Files (x86)\Join Air\UIExec.exe ()
O4 - HKCU..\Run: [Advanced SystemCare 4] C:\Program Files (x86)\IObit\Advanced SystemCare 4\ASCTray.exe (IObit)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Value error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 82.76.253.115 82.76.253.125
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:64bit: - Winlogon\Notify\igfxcui: DllName - Reg Error: Key error. - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/01/13 16:10:30 | 000,000,007 | -HS- | M] () - D:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{17a77801-7c58-11e0-9c17-001d72c31e96}\Shell - "" = AutoRun
O33 - MountPoints2\{17a77801-7c58-11e0-9c17-001d72c31e96}\Shell\AutoRun\command - "" = J:\Windows\AutoRun.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (SmartDefragBootTime.exe) - File not found
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011/05/13 17:39:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2011/05/13 12:52:48 | 000,135,168 | ---- | C] (ZTE Corporation) -- C:\Windows\SysNative\drivers\ZTEusbnet.sys
[2011/05/13 12:52:48 | 000,119,680 | ---- | C] (ZTE Incorporated) -- C:\Windows\SysNative\drivers\ZTEusbser6k.sys
[2011/05/13 12:52:48 | 000,119,680 | ---- | C] (ZTE Incorporated) -- C:\Windows\SysNative\drivers\ZTEusbnmea.sys
[2011/05/13 12:52:47 | 000,119,680 | ---- | C] (ZTE Incorporated) -- C:\Windows\SysNative\drivers\ZTEusbmdm6k.sys
[2011/05/13 12:52:47 | 000,011,776 | ---- | C] (ZTE Incorporated) -- C:\Windows\SysNative\drivers\massfilter.sys
[2011/05/13 12:52:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Join Air
[2011/05/13 12:52:39 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\SupportAppCB
[2011/05/13 12:52:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Join Air
[2011/05/11 09:56:49 | 000,050,448 | ---- | C] (TrustPort, a.s.) -- C:\Windows\SysNative\drivers\avasdmft.sys
[2011/05/11 09:56:38 | 000,041,088 | ---- | C] (TrustPort, a.s.) -- C:\Windows\SysNative\drivers\tpsec.sys
[2011/05/06 09:13:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 4
[2011/05/04 21:14:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game Booster
[2011/05/02 18:51:56 | 000,000,000 | ---D | C] -- C:\Windows\Internet Logs
[2011/05/02 18:33:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TrustPort Total Protection
[2011/05/02 18:32:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TrustPort
[2011/05/02 18:32:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\TrustPort
[2011/05/02 13:13:08 | 000,000,000 | ---D | C] -- C:\ProgramData\CheckPoint
[2011/04/30 17:08:34 | 000,000,000 | ---D | C] -- C:\Users\ionut\AppData\Local\Oblivion
[2011/04/19 12:03:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag 2
[2011/04/17 14:32:01 | 000,000,000 | ---D | C] -- C:\Users\ionut\AppData\Roaming\PC Suite
[2011/04/17 14:32:01 | 000,000,000 | ---D | C] -- C:\ProgramData\PC Suite
[2011/04/17 14:32:01 | 000,000,000 | ---D | C] -- C:\Users\ionut\AppData\Roaming\Nokia
[2011/04/17 14:31:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nokia PC Suite
[2011/04/17 14:31:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\PCSuite
[2011/04/17 14:31:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Nokia
[2011/04/17 14:31:12 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX
[2011/04/17 14:30:35 | 000,057,856 | ---- | C] (Nokia) -- C:\Windows\SysNative\nmwcdclsX64.dll
[2011/04/17 14:30:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Nokia
[2011/04/17 14:29:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Installations
[1 C:\Windows\SysNative\drivers\*.tmp files -> C:\Windows\SysNative\drivers\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011/05/16 06:59:50 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/05/15 00:52:25 | 000,002,052 | ---- | M] () -- C:\Users\ionut\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011/05/14 15:34:15 | 000,729,688 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011/05/14 15:34:15 | 000,626,278 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011/05/14 15:34:15 | 000,107,522 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011/05/14 07:02:38 | 000,016,944 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/05/14 07:02:38 | 000,016,944 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/05/14 06:54:57 | 2359,971,840 | -HS- | M] () -- C:\hiberfil.sys
[2011/05/13 12:52:45 | 000,001,913 | ---- | M] () -- C:\Users\Public\Desktop\Join Air.lnk
[2011/05/12 10:31:32 | 000,396,431 | ---- | M] () -- C:\Users\ionut\Desktop\Untitled.png
[2011/05/09 09:06:54 | 000,041,088 | ---- | M] (TrustPort, a.s.) -- C:\Windows\SysNative\drivers\tpsec.sys
[2011/05/09 09:05:10 | 000,050,960 | ---- | M] () -- C:\Windows\SysNative\drivers\tdifw.sys
[2011/05/09 09:05:06 | 000,050,448 | ---- | M] (TrustPort, a.s.) -- C:\Windows\SysNative\drivers\avasdmft.sys
[2011/05/06 22:19:17 | 000,000,218 | ---- | M] () -- C:\Users\ionut\.recently-used.xbel
[2011/05/06 11:44:37 | 000,293,840 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011/04/17 14:34:09 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_PCCSWpdDriver_01_09_00.Wdf
[1 C:\Windows\SysNative\drivers\*.tmp files -> C:\Windows\SysNative\drivers\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011/05/13 12:52:45 | 000,001,913 | ---- | C] () -- C:\Users\Public\Desktop\Join Air.lnk
[2011/05/12 10:31:31 | 000,396,431 | ---- | C] () -- C:\Users\ionut\Desktop\Untitled.png
[2011/05/11 09:56:49 | 000,050,960 | ---- | C] () -- C:\Windows\SysNative\drivers\tdifw.sys
[2011/05/06 22:19:17 | 000,000,218 | ---- | C] () -- C:\Users\ionut\.recently-used.xbel
[2011/04/19 12:03:05 | 000,032,136 | ---- | C] () -- C:\Windows\SysNative\SmartDefragBootTime.exe
[2011/04/19 12:03:05 | 000,018,232 | ---- | C] () -- C:\Windows\SysNative\drivers\SmartDefragDriver.sys
[2011/04/17 14:34:09 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_PCCSWpdDriver_01_09_00.Wdf
[2011/01/27 15:19:55 | 000,735,230 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2010/12/14 21:01:12 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010/10/26 18:55:40 | 000,000,600 | ---- | C] () -- C:\Windows\Rtcw.INI
[2010/09/27 20:23:48 | 000,007,606 | ---- | C] () -- C:\Users\ionut\AppData\Local\Resmon.ResmonCfg
[2010/09/09 17:13:23 | 000,001,010 | ---- | C] () -- C:\Windows\War3Unin.dat
[2009/09/02 18:52:46 | 000,439,300 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng500.bin
[2009/07/14 08:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009/07/14 05:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009/07/14 05:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009/07/14 03:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009/07/14 02:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009/07/14 00:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009/06/11 00:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2009/06/03 18:14:52 | 000,982,220 | ---- | C] () -- C:\Windows\SysWow64\igkrng500.bin
[2009/06/03 18:14:52 | 000,134,592 | ---- | C] () -- C:\Windows\SysWow64\igfcg500.bin
[2009/06/03 18:14:52 | 000,092,216 | ---- | C] () -- C:\Windows\SysWow64\igfcg500m.bin
< End of report >
I will gladly provide any other information or scans required.
Thanks and cheers, Ionut.
Edited by pleoscalete, 22 May 2011 - 07:07 AM.