This is not a keyboard problem cause I have tested another. I have also runned scans from CA and from Malwarebytes antimalware and scan have returned nothing. I would like to know if this is malware related or if it ahs another source.
----------------
OTL Log:
OTL logfile created on: 10-07-2011 19:16:15 - Run 1
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\Miguel\Downloads
Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000816 | Country: Portugal | Language: PTG | Date Format: dd-MM-yyyy
3,00 Gb Total Physical Memory | 1,71 Gb Available Physical Memory | 56,97% Memory free
6,00 Gb Paging File | 4,62 Gb Available in Paging File | 77,11% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 178,85 Gb Total Space | 31,67 Gb Free Space | 17,71% Space Free | Partition Type: NTFS
Drive D: | 119,23 Gb Total Space | 43,00 Gb Free Space | 36,06% Space Free | Partition Type: NTFS
Computer Name: ARTHUR | User Name: Miguel | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2011-07-10 18:53:38 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\Miguel\Downloads\OTL.exe
PRC - [2011-06-24 13:19:14 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2011-05-25 21:07:14 | 024,176,560 | ---- | M] (Dropbox, Inc.) -- C:\Users\Miguel\AppData\Roaming\Dropbox\bin\Dropbox.exe
PRC - [2011-05-21 07:01:00 | 002,214,504 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
PRC - [2011-05-21 07:01:00 | 000,839,272 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
PRC - [2011-05-21 07:01:00 | 000,373,864 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
PRC - [2011-05-12 20:22:49 | 001,766,736 | ---- | M] (CA, Inc.) -- C:\Program Files\CA\CA Internet Security Suite\casc.exe
PRC - [2011-05-12 20:22:48 | 001,115,472 | ---- | M] (CA, Inc.) -- C:\Program Files\CA\CA Internet Security Suite\ccevtmgr.exe
PRC - [2011-05-12 20:22:48 | 000,251,216 | ---- | M] (CA, Inc.) -- C:\Program Files\CA\CA Internet Security Suite\ccprovsp.exe
PRC - [2011-05-12 20:22:48 | 000,206,160 | ---- | M] (Computer Associates International, Inc.) -- C:\Program Files\CA\CA Internet Security Suite\ccschedulersvc.exe
PRC - [2011-02-25 06:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2010-11-22 22:52:46 | 000,718,072 | ---- | M] (Tunngle.net GmbH) -- C:\Program Files\Tunngle\TnglCtrl.exe
PRC - [2010-11-20 13:17:47 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2010-11-12 17:37:48 | 000,212,992 | ---- | M] (Computer Associates International, Inc.) -- C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus Plus\isafe.exe
PRC - [2010-11-11 08:52:32 | 000,206,152 | ---- | M] (CA) -- C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus Plus\caamsvc.exe
PRC - [2010-09-22 19:11:26 | 000,640,440 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
PRC - [2010-09-17 13:21:00 | 000,301,648 | ---- | M] (CA) -- C:\Program Files\CA\SharedComponents\HIPSEngine\UmxPol.exe
PRC - [2010-08-24 13:07:34 | 000,740,160 | ---- | M] (CA) -- C:\Program Files\CA\SharedComponents\HIPSEngine\UmxCfg.exe
PRC - [2010-05-03 14:45:50 | 000,182,912 | ---- | M] (ASUS) -- C:\Program Files\ASUS\ATK Package\ATK Hotkey\HControl.exe
PRC - [2010-05-03 14:41:46 | 000,170,624 | ---- | M] (ASUS) -- C:\Program Files\ASUS\ATK Package\ATK Media\DMedia.exe
PRC - [2010-04-01 10:16:20 | 000,357,696 | ---- | M] (DT Soft Ltd) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe
PRC - [2010-02-04 14:05:32 | 007,350,912 | ---- | M] (ASUS) -- C:\Program Files\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
PRC - [2009-12-15 10:39:38 | 000,096,896 | ---- | M] (ASUS) -- C:\Program Files\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
PRC - [2009-08-04 11:42:18 | 000,887,288 | ---- | M] (CA) -- C:\Program Files\CA\SharedComponents\HIPSEngine\UmxAgent.exe
PRC - [2009-06-19 10:29:42 | 000,105,016 | ---- | M] (ASUS) -- C:\Program Files\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
PRC - [2009-06-19 10:29:26 | 002,488,888 | ---- | M] (ASUS) -- C:\Program Files\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
PRC - [2009-06-15 17:30:42 | 000,084,536 | ---- | M] (ASUS) -- C:\Program Files\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
PRC - [2008-12-22 17:15:34 | 000,174,648 | ---- | M] (ASUS) -- C:\Program Files\ASUS\ATK Package\ATK Hotkey\WDC.exe
PRC - [2007-11-16 12:33:06 | 000,172,032 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynAsus.exe
========== Modules (SafeList) ==========
MOD - [2011-07-10 18:53:38 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\Miguel\Downloads\OTL.exe
MOD - [2010-11-20 13:21:36 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wkscli.dll
MOD - [2010-11-20 12:55:09 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
========== Win32 Services (SafeList) ==========
SRV - [2011-05-21 07:01:00 | 002,214,504 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe -- (nvUpdatusService)
SRV - [2011-05-12 20:22:48 | 000,251,216 | ---- | M] (CA, Inc.) [On_Demand | Running] -- C:\Program Files\CA\CA Internet Security Suite\ccprovsp.exe -- (CaCCProvSP)
SRV - [2011-05-12 20:22:48 | 000,206,160 | ---- | M] (Computer Associates International, Inc.) [Auto | Running] -- C:\Program Files\CA\CA Internet Security Suite\ccschedulersvc.exe -- (ccSchedulerSVC)
SRV - [2010-11-22 22:52:46 | 000,718,072 | ---- | M] (Tunngle.net GmbH) [Auto | Running] -- C:\Program Files\Tunngle\TnglCtrl.exe -- (TunngleService)
SRV - [2010-11-12 17:37:48 | 000,212,992 | ---- | M] (Computer Associates International, Inc.) [Auto | Running] -- C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus Plus\isafe.exe -- (CAISafe)
SRV - [2010-11-11 08:52:32 | 000,206,152 | ---- | M] (CA) [Auto | Running] -- C:\Program Files\CA\CA Internet Security Suite\CA Anti-Virus Plus\caamsvc.exe -- (CAAMSvc)
SRV - [2010-11-09 04:12:49 | 000,651,720 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2010-09-17 13:21:00 | 000,301,648 | ---- | M] (CA) [Auto | Running] -- C:\Program Files\CA\SharedComponents\HIPSEngine\UmxPol.exe -- (UmxPol)
SRV - [2010-08-24 13:07:34 | 000,740,160 | ---- | M] (CA) [Auto | Running] -- C:\Program Files\CA\SharedComponents\HIPSEngine\UmxCfg.exe -- (UmxCfg)
SRV - [2010-07-23 16:42:54 | 001,343,400 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
SRV - [2009-12-15 10:39:38 | 000,096,896 | ---- | M] (ASUS) [Auto | Running] -- C:\Program Files\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe -- (ATKGFNEXSrv)
SRV - [2009-08-04 11:42:18 | 000,887,288 | ---- | M] (CA) [Auto | Running] -- C:\Program Files\CA\SharedComponents\HIPSEngine\UmxAgent.exe -- (UmxAgent)
SRV - [2009-07-14 02:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2009-07-14 02:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc)
SRV - [2009-07-14 02:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2009-06-15 17:30:42 | 000,084,536 | ---- | M] (ASUS) [Auto | Running] -- C:\Program Files\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe -- (ASLDRService)
========== Driver Services (SafeList) ==========
DRV - [2011-05-21 07:01:00 | 010,589,800 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2011-05-10 10:41:28 | 000,139,368 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvhda32v.sys -- (NVHDA)
DRV - [2010-11-20 13:30:15 | 000,175,360 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\drivers\vmbus.sys -- (vmbus)
DRV - [2010-11-20 13:30:15 | 000,040,704 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\drivers\vmstorfl.sys -- (storflt)
DRV - [2010-11-20 13:30:15 | 000,028,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\storvsc.sys -- (storvsc)
DRV - [2010-11-20 11:24:41 | 000,052,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2010-11-20 11:21:14 | 000,015,872 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV - [2010-11-20 10:14:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\VMBusHID.sys -- (VMBusHID)
DRV - [2010-11-20 10:14:41 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\vms3cap.sys -- (s3cap)
DRV - [2010-09-17 13:21:00 | 000,135,248 | ---- | M] (CA) [File_System | Boot | Running] -- C:\Windows\system32\DRIVERS\KmxAMRT.sys -- (KmxAMRT)
DRV - [2010-07-24 16:26:05 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\sptd.sys -- (sptd)
DRV - [2010-06-09 07:54:38 | 000,244,304 | ---- | M] (CA) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\KmxCfg.sys -- (KmxCfg)
DRV - [2010-03-22 14:58:42 | 000,079,864 | ---- | M] (CA) [File_System | System | Running] -- C:\Windows\System32\drivers\KmxAgent.sys -- (KmxAgent)
DRV - [2009-12-03 16:48:44 | 000,625,224 | ---- | M] (AuthenTec, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ATSwpWDF.sys -- (ATSwpWDF)
DRV - [2009-09-16 07:02:40 | 000,027,136 | ---- | M] (Tunngle.net) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\tap0901t.sys -- (tap0901t) TAP-Win32 Adapter V9 (Tunngle)
DRV - [2009-07-14 00:45:33 | 000,083,456 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\serial.sys -- (Serial)
DRV - [2009-07-13 23:13:48 | 001,035,776 | ---- | M] (LSI Corp) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AGRSM.sys -- (AgereSoftModem)
DRV - [2009-07-13 23:02:51 | 004,231,168 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\netw5v32.sys -- (netw5v32) Controlador de Placa de Ligação WiFi Intel®
DRV - [2009-07-02 17:36:10 | 000,013,880 | ---- | M] (ASUS) [Kernel | Auto | Running] -- C:\Program Files\ASUS\ATK Package\ATKGFNEX\ASMMAP.sys -- (ASMMAP)
DRV - [2009-05-13 09:06:48 | 000,014,392 | ---- | M] (ASUS) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ATKACPI.sys -- (MTsensor)
DRV - [2009-03-27 16:27:04 | 000,598,656 | ---- | M] (Computer Associates International, Inc.) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\KmxAMVet.sys -- (KmxAMVet)
DRV - [2009-03-18 17:35:40 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hamachi.sys -- (hamachi)
DRV - [2008-03-17 11:05:30 | 000,101,632 | R--- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ewusbmdm.sys -- (hwdatacard)
DRV - [2006-11-14 17:35:20 | 000,037,376 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rixdptsk.sys -- (rismxdp)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\..\URLSearchHook: {e0301295-ab3e-4af3-979f-3d453c5f9f48} - File not found
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.daemon-search.com/startpage
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://pt.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = pt
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 66 4F 7B 15 A2 2A CB 01 [binary data]
IE - HKCU\..\URLSearchHook: {e0301295-ab3e-4af3-979f-3d453c5f9f48} - File not found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "www.google.com"
FF - prefs.js..extensions.enabledItems: {AB2CE124-6272-4b12-94A9-7303C7397BD1}:5.0.0.6906
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: [email protected]:3.2.5.2
FF - prefs.js..extensions.enabledItems: {e0301295-ab3e-4af3-979f-3d453c5f9f48}:3.2.5.2
FF - prefs.js..network.proxy.autoconfig_url: "http://proxy.ist.utl...l.pt/peoxy.pac"
FF - prefs.js..network.proxy.http: "http://ciist.ist.utl.pt"
FF - prefs.js..network.proxy.http_port: 7
FF - prefs.js..network.proxy.type: 2
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Miguel\AppData\Local\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Miguel\AppData\Local\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011-06-24 13:19:15 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011-05-16 15:48:48 | 000,000,000 | ---D | M]
[2010-07-24 16:03:40 | 000,000,000 | -H-D | M] (No name found) -- C:\Users\Miguel\AppData\Roaming\Mozilla\Extensions
[2011-06-24 13:20:34 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Miguel\AppData\Roaming\Mozilla\Firefox\Profiles\eaomy32t.default\extensions
[2011-06-24 13:20:34 | 000,000,000 | ---D | M] (uTorrentBar_PT Community Toolbar) -- C:\Users\Miguel\AppData\Roaming\Mozilla\Firefox\Profiles\eaomy32t.default\extensions\{e0301295-ab3e-4af3-979f-3d453c5f9f48}
[2011-05-20 03:51:21 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Users\Miguel\AppData\Roaming\Mozilla\Firefox\Profiles\eaomy32t.default\extensions\[email protected]
[2010-07-24 16:26:42 | 000,002,059 | -H-- | M] () -- C:\Users\Miguel\AppData\Roaming\Mozilla\Firefox\Profiles\eaomy32t.default\searchplugins\daemon-search.xml
[2011-03-12 03:09:10 | 000,001,998 | -H-- | M] () -- C:\Users\Miguel\AppData\Roaming\Mozilla\Firefox\Profiles\eaomy32t.default\searchplugins\grooveshark.xml
[2011-06-27 17:03:24 | 000,001,001 | ---- | M] () -- C:\Users\Miguel\AppData\Roaming\Mozilla\Firefox\Profiles\eaomy32t.default\searchplugins\torrentz-search-1.xml
[2010-07-25 17:21:56 | 000,001,011 | -H-- | M] () -- C:\Users\Miguel\AppData\Roaming\Mozilla\Firefox\Profiles\eaomy32t.default\searchplugins\torrentz-search.xml
[2011-06-26 14:05:26 | 000,002,057 | ---- | M] () -- C:\Users\Miguel\AppData\Roaming\Mozilla\Firefox\Profiles\eaomy32t.default\searchplugins\youtube-video-search-1.xml
[2010-07-24 16:04:33 | 000,002,057 | -H-- | M] () -- C:\Users\Miguel\AppData\Roaming\Mozilla\Firefox\Profiles\eaomy32t.default\searchplugins\youtube-video-search.xml
[2011-06-17 22:12:33 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010-07-25 17:24:27 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010-08-26 13:43:59 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010-11-02 02:40:45 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
File not found (No name found) --
[2011-06-24 13:19:14 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2010-09-15 05:50:38 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2007-02-04 23:02:56 | 001,642,496 | ---- | M] (LizardTech) -- C:\Program Files\mozilla firefox\plugins\npdjvu.dll
[2011-05-05 23:39:14 | 000,001,538 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazon-en-GB.xml
[2011-05-05 23:39:14 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2011-05-05 23:39:14 | 000,000,947 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\chambers-en-GB.xml
[2011-05-05 23:39:14 | 000,001,180 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-en-GB.xml
[2011-05-05 23:39:14 | 000,001,135 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-en-GB.xml
O1 HOSTS File: ([2010-11-10 16:30:18 | 000,001,306 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: 127.0.0.1 practivate.adobe.com
O1 - Hosts: 127.0.0.1 ereg.adobe.com
O1 - Hosts: 127.0.0.1 activate.wip3.adobe.com
O1 - Hosts: 127.0.0.1 wip3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-3.adobe.com
O1 - Hosts: 127.0.0.1 ereg.wip3.adobe.com
O1 - Hosts: 127.0.0.1 activate-sea.adobe.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 activate-sjc0.adobe.com
O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (uTorrentBar_PT Toolbar) - {e0301295-ab3e-4af3-979f-3d453c5f9f48} - File not found
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (uTorrentBar_PT Toolbar) - {e0301295-ab3e-4af3-979f-3d453c5f9f48} - File not found
O3 - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKCU\..\Toolbar\WebBrowser: (uTorrentBar_PT Toolbar) - {E0301295-AB3E-4AF3-979F-3D453C5F9F48} - File not found
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Package\ATK Media\DMedia.exe (ASUS)
O4 - HKLM..\Run: [ATKOSD2] C:\Program Files\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (ASUS)
O4 - HKLM..\Run: [cctray] C:\Program Files\CA\CA Internet Security Suite\casc.exe (CA, Inc.)
O4 - HKLM..\Run: [HControlUser] C:\Program Files\ASUS\ATK Package\ATK Hotkey\HControlUser.exe (ASUS)
O4 - HKCU..\Run: [{1E013376-6464-D1D6-51DE-5517C920BA6A}] C:\Users\Miguel\Laeky\ipsev.exe ()
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - Startup: C:\Users\Miguel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Miguel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 91 00 00 00 [binary data]
O8 - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append to Existing PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert Link Target to Adobe PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\System32\VetRedir.dll (Computer Associates International, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\System32\VetRedir.dll (Computer Associates International, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\Windows\System32\VetRedir.dll (Computer Associates International, Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D} http://content.syste...ri_4.4.26.0.cab (SysInfo Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O20 - AppInit_DLLs: (acaptuser32.dll) - C:\Windows\System32\acaptuser32.dll (Adobe Systems Incorporated)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - Winlogon\Notify\PFW: DllName - UmxWnp.Dll - C:\Windows\System32\UmxWNP.dll (CA)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009-06-10 22:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{20853aa0-a6ef-11df-a90b-002215280373}\Shell - "" = AutoRun
O33 - MountPoints2\{20853aa0-a6ef-11df-a90b-002215280373}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\{526d3996-b6bc-11df-a8dc-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{526d3996-b6bc-11df-a8dc-806e6f6e6963}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\{8b19caa9-a57f-11df-a7dc-002215280373}\Shell - "" = AutoRun
O33 - MountPoints2\{8b19caa9-a57f-11df-a7dc-002215280373}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\{e638c5fb-a559-11df-a82e-002215280373}\Shell - "" = AutoRun
O33 - MountPoints2\{e638c5fb-a559-11df-a82e-002215280373}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\{e638c60b-a559-11df-a82e-002215280373}\Shell - "" = AutoRun
O33 - MountPoints2\{e638c60b-a559-11df-a82e-002215280373}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\G\Shell - "" = AutoRun
O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\AutoRun.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2011-07-09 19:01:16 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update
[2011-07-04 01:11:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
[2011-06-28 19:19:29 | 000,000,000 | ---D | C] -- C:\Windows\System32\SPReview
[2011-06-28 17:56:20 | 000,000,000 | ---D | C] -- C:\b2dd27b48c081d7037b479
[2011-06-27 18:45:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Riot Games
[2011-06-24 02:24:53 | 000,093,696 | ---- | C] (Windows ® Codename Longhorn DDK provider) -- C:\Windows\System32\fms.dll
[2011-06-21 17:15:37 | 000,000,000 | ---D | C] -- C:\Users\Miguel\Documents\The Witcher 2
[2011-06-19 19:40:46 | 000,000,000 | ---D | C] -- C:\Users\Miguel\AppData\Roaming\NVIDIA
[2011-06-19 18:52:51 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation
[2011-06-19 18:52:19 | 000,057,960 | ---- | C] (Khronos Group) -- C:\Windows\System32\OpenCL.dll
[2011-06-19 18:51:43 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
[2011-06-19 18:51:21 | 000,000,000 | ---D | C] -- C:\NVIDIA
[2011-06-18 01:10:34 | 000,000,000 | ---D | C] -- C:\Users\Miguel\Documents\Witcher 2
[2011-06-18 01:10:34 | 000,000,000 | ---D | C] -- C:\Users\Miguel\AppData\Local\The Witcher 2
[2011-06-18 01:07:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Witcher 2
[2011-06-17 20:14:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2011-06-14 20:44:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hero Editor
[2011-06-14 20:43:57 | 000,000,000 | ---D | C] -- C:\Program Files\Hero Editor
[2011-06-11 18:42:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2011-06-11 18:42:13 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2011-06-11 18:42:13 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2011-06-10 20:55:07 | 000,026,176 | -H-- | C] (LogMeIn, Inc.) -- C:\Windows\System32\hamachi.sys
[3 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2011-07-10 19:18:39 | 000,006,416 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011-07-10 19:18:39 | 000,006,416 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011-07-10 19:10:38 | 2415,222,784 | -HS- | M] () -- C:\hiberfil.sys
[2011-07-10 19:05:42 | 000,005,099 | ---- | M] () -- C:\Windows\System32\drivers\kmxcfg.u2k0
[2011-07-10 19:05:42 | 000,000,213 | ---- | M] () -- C:\Windows\System32\drivers\kmxcfg.u2k1
[2011-07-10 19:05:42 | 000,000,085 | ---- | M] () -- C:\Windows\System32\drivers\kmxcfg.u2k7
[2011-07-10 19:05:42 | 000,000,085 | ---- | M] () -- C:\Windows\System32\drivers\kmxcfg.u2k6
[2011-07-10 19:05:42 | 000,000,085 | ---- | M] () -- C:\Windows\System32\drivers\kmxcfg.u2k5
[2011-07-10 19:05:42 | 000,000,085 | ---- | M] () -- C:\Windows\System32\drivers\kmxcfg.u2k4
[2011-07-10 19:05:42 | 000,000,085 | ---- | M] () -- C:\Windows\System32\drivers\kmxcfg.u2k3
[2011-07-10 19:05:42 | 000,000,085 | ---- | M] () -- C:\Windows\System32\drivers\kmxcfg.u2k2
[2011-07-10 19:05:42 | 000,000,049 | ---- | M] () -- C:\Windows\System32\drivers\kmxzone.u2k7
[2011-07-10 19:05:42 | 000,000,049 | ---- | M] () -- C:\Windows\System32\drivers\kmxzone.u2k6
[2011-07-10 19:05:42 | 000,000,049 | ---- | M] () -- C:\Windows\System32\drivers\kmxzone.u2k5
[2011-07-10 19:05:42 | 000,000,049 | ---- | M] () -- C:\Windows\System32\drivers\kmxzone.u2k4
[2011-07-10 19:05:42 | 000,000,049 | ---- | M] () -- C:\Windows\System32\drivers\kmxzone.u2k3
[2011-07-10 19:05:42 | 000,000,049 | ---- | M] () -- C:\Windows\System32\drivers\kmxzone.u2k2
[2011-07-10 19:05:42 | 000,000,049 | ---- | M] () -- C:\Windows\System32\drivers\kmxzone.u2k1
[2011-07-10 19:05:42 | 000,000,049 | ---- | M] () -- C:\Windows\System32\drivers\kmxzone.u2k0
[2011-07-10 19:05:33 | 000,000,000 | ---- | M] () -- C:\Windows\System32\Access.dat
[2011-07-10 18:54:00 | 000,001,026 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-165933177-3365085090-1107631620-1001UA.job
[2011-07-10 17:54:03 | 000,000,974 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-165933177-3365085090-1107631620-1001Core.job
[2011-07-04 01:11:18 | 000,001,031 | ---- | M] () -- C:\Users\Public\Desktop\VLC media player.lnk
[2011-06-29 14:43:14 | 000,434,352 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2011-06-27 18:48:48 | 000,001,043 | ---- | M] () -- C:\Users\Public\Desktop\Play League of Legends.lnk
[2011-06-24 13:20:40 | 000,002,001 | ---- | M] () -- C:\Users\Miguel\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011-06-21 17:50:13 | 000,000,509 | ---- | M] () -- C:\Users\Public\Desktop\Start The Witcher 2.lnk
[2011-06-17 20:14:16 | 000,002,503 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2011-06-11 18:42:59 | 000,001,760 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2011-06-10 20:54:17 | 337,862,732 | ---- | M] () -- C:\Windows\MEMORY.DMP
[3 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2011-07-10 19:05:42 | 000,005,099 | ---- | C] () -- C:\Windows\System32\drivers\kmxcfg.u2k0
[2011-07-10 19:05:42 | 000,000,213 | ---- | C] () -- C:\Windows\System32\drivers\kmxcfg.u2k1
[2011-07-10 19:05:42 | 000,000,085 | ---- | C] () -- C:\Windows\System32\drivers\kmxcfg.u2k7
[2011-07-10 19:05:42 | 000,000,085 | ---- | C] () -- C:\Windows\System32\drivers\kmxcfg.u2k6
[2011-07-10 19:05:42 | 000,000,085 | ---- | C] () -- C:\Windows\System32\drivers\kmxcfg.u2k5
[2011-07-10 19:05:42 | 000,000,085 | ---- | C] () -- C:\Windows\System32\drivers\kmxcfg.u2k4
[2011-07-10 19:05:42 | 000,000,085 | ---- | C] () -- C:\Windows\System32\drivers\kmxcfg.u2k3
[2011-07-10 19:05:42 | 000,000,085 | ---- | C] () -- C:\Windows\System32\drivers\kmxcfg.u2k2
[2011-07-10 19:05:42 | 000,000,049 | ---- | C] () -- C:\Windows\System32\drivers\kmxzone.u2k7
[2011-07-10 19:05:42 | 000,000,049 | ---- | C] () -- C:\Windows\System32\drivers\kmxzone.u2k6
[2011-07-10 19:05:42 | 000,000,049 | ---- | C] () -- C:\Windows\System32\drivers\kmxzone.u2k5
[2011-07-10 19:05:42 | 000,000,049 | ---- | C] () -- C:\Windows\System32\drivers\kmxzone.u2k4
[2011-07-10 19:05:42 | 000,000,049 | ---- | C] () -- C:\Windows\System32\drivers\kmxzone.u2k3
[2011-07-10 19:05:42 | 000,000,049 | ---- | C] () -- C:\Windows\System32\drivers\kmxzone.u2k2
[2011-07-10 19:05:42 | 000,000,049 | ---- | C] () -- C:\Windows\System32\drivers\kmxzone.u2k1
[2011-07-10 19:05:42 | 000,000,049 | ---- | C] () -- C:\Windows\System32\drivers\kmxzone.u2k0
[2011-07-10 19:05:33 | 000,000,000 | ---- | C] () -- C:\Windows\System32\Access.dat
[2011-07-10 18:41:24 | 000,006,416 | -H-- | C] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011-07-10 18:41:24 | 000,006,416 | -H-- | C] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011-07-04 01:11:18 | 000,001,031 | ---- | C] () -- C:\Users\Public\Desktop\VLC media player.lnk
[2011-06-27 18:48:48 | 000,001,043 | ---- | C] () -- C:\Users\Public\Desktop\Play League of Legends.lnk
[2011-06-24 02:26:41 | 000,080,896 | ---- | C] () -- C:\Windows\System32\RDVGHelper.exe
[2011-06-24 02:26:17 | 000,146,852 | ---- | C] () -- C:\Windows\System32\systemsf.ebd
[2011-06-24 02:24:23 | 000,066,048 | ---- | C] () -- C:\Windows\System32\PrintBrmUi.exe
[2011-06-24 02:24:15 | 000,010,429 | ---- | C] () -- C:\Windows\System32\ScavengeSpace.xml
[2011-06-24 02:23:51 | 000,105,559 | ---- | C] () -- C:\Windows\System32\RacRules.xml
[2011-06-21 17:50:13 | 000,000,509 | ---- | C] () -- C:\Users\Public\Desktop\Start The Witcher 2.lnk
[2011-06-19 18:52:19 | 000,004,364 | ---- | C] () -- C:\Windows\System32\nvinfo.pb
[2011-06-17 20:14:16 | 000,002,503 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk
[2011-06-11 18:42:59 | 000,001,760 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk
[2011-04-09 18:55:28 | 000,179,261 | ---- | C] () -- C:\Windows\System32\xlive.dll.cat
[2010-08-11 20:41:08 | 019,461,015 | ---- | C] () -- C:\Program Files\vlc-1.1.2-win32.exe
[2010-07-24 17:39:29 | 000,000,048 | -H-- | C] () -- C:\Windows\System32\ezsidmv.dat
[2009-12-02 19:39:02 | 020,317,504 | ---- | C] () -- C:\Windows\System32\TrueSuiteCoInst02020000.dll
[2009-07-14 09:31:02 | 000,336,656 | ---- | C] () -- C:\Windows\System32\prfi0816.dat
[2009-07-14 09:31:02 | 000,040,548 | ---- | C] () -- C:\Windows\System32\prfd0816.dat
[2009-07-14 05:33:53 | 000,434,352 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2009-07-14 03:05:48 | 000,291,294 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2009-07-14 03:05:48 | 000,031,548 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2009-07-14 03:05:05 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2009-07-14 03:04:11 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2009-07-14 00:55:01 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009-07-14 00:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
[2009-07-14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
[2009-06-10 22:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2006-03-09 09:58:00 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll
[2005-05-06 19:06:00 | 000,016,480 | ---- | C] () -- C:\Windows\System32\rixdicon.dll
========== LOP Check ==========
[2011-05-20 03:48:32 | 000,000,000 | ---D | M] -- C:\Users\Miguel\AppData\Roaming\.minecraft
[2011-05-20 03:51:20 | 000,000,000 | ---D | M] -- C:\Users\Miguel\AppData\Roaming\Azureus
[2010-07-24 20:12:40 | 000,000,000 | -H-D | M] -- C:\Users\Miguel\AppData\Roaming\DAEMON Tools Lite
[2011-05-20 03:51:20 | 000,000,000 | ---D | M] -- C:\Users\Miguel\AppData\Roaming\Dev-Cpp
[2011-07-10 19:11:29 | 000,000,000 | ---D | M] -- C:\Users\Miguel\AppData\Roaming\Dropbox
[2011-05-19 16:02:48 | 000,000,000 | -H-D | M] -- C:\Users\Miguel\AppData\Roaming\Lionhead Studios
[2010-07-24 19:02:29 | 000,000,000 | -H-D | M] -- C:\Users\Miguel\AppData\Roaming\LolClient
[2011-05-20 03:48:40 | 000,000,000 | ---D | M] -- C:\Users\Miguel\AppData\Roaming\Sports Interactive
[2011-05-20 03:51:22 | 000,000,000 | ---D | M] -- C:\Users\Miguel\AppData\Roaming\SystemRequirementsLab
[2011-04-22 14:33:06 | 000,000,000 | -H-D | M] -- C:\Users\Miguel\AppData\Roaming\The Creative Assembly
[2011-02-16 23:19:12 | 000,000,000 | -H-D | M] -- C:\Users\Miguel\AppData\Roaming\TS3Client
[2011-06-17 01:41:17 | 000,000,000 | ---D | M] -- C:\Users\Miguel\AppData\Roaming\Tunngle
[2011-07-10 02:54:28 | 000,000,000 | ---D | M] -- C:\Users\Miguel\AppData\Roaming\uTorrent
[2011-06-18 15:22:10 | 000,032,568 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 76 bytes -> C:\Users\Miguel\Documents\soliton.jpg:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\Miguel\Documents\Sevilha.JPG:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\Miguel\Documents\serie_de_spins.dat:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\Miguel\Documents\posicao2.dat:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\Miguel\Documents\posicao.dat:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\Miguel\Documents\polimero.dat:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\Miguel\Documents\obstaculo1.wmv:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\Miguel\Documents\jogo.JPG:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\Miguel\Documents\image200811130004.jpg:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\Miguel\Documents\IcebergTotal.jpg:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\Miguel\Documents\Faith_No_More_-_I_Started_The_Joke.mp3:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\Miguel\Documents\eu.bmp:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\Miguel\Documents\dados.dat:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\Miguel\Documents\angulos2.dat:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\Miguel\Documents\angulos.dat:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\Miguel\Documents\19102008.jpg:Roxio EMC Stream
< End of report >