Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Random crashes


  • Please log in to reply

#1
omer681

omer681

    Member

  • Member
  • PipPip
  • 13 posts
My computer randomlly crashes (mostly during the night).
I opened a thread about it in the Operating Systems > Windows Vista™ and Windows 7™ forum, and I was asked to open a thread here.
The thread can be found here.
OTL log:

OTL logfile created on: 14/08/2011 20:46:44 - Run 1
OTL by OldTimer - Version 3.2.26.2 Folder = C:\Users\Omer\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 0000040d | Country: ישראל | Language: HEB | Date Format: dd/MM/yyyy

4.00 Gb Total Physical Memory | 1.02 Gb Available Physical Memory | 25.52% Memory free
9.99 Gb Paging File | 5.57 Gb Available in Paging File | 55.72% Paging File free
Paging file location(s): k:\pagefile.sys 6141 10000 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 117.19 Gb Total Space | 49.35 Gb Free Space | 42.11% Space Free | Partition Type: NTFS
Drive E: | 29.29 Gb Total Space | 2.56 Gb Free Space | 8.74% Space Free | Partition Type: NTFS
Drive H: | 259.48 Gb Total Space | 37.56 Gb Free Space | 14.48% Space Free | Partition Type: NTFS
Drive K: | 814.32 Gb Total Space | 260.38 Gb Free Space | 31.97% Space Free | Partition Type: NTFS

Computer Name: OMER-PC | User Name: Omer | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/08/14 20:45:42 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Users\Omer\Downloads\OTL.exe
PRC - [2011/08/13 12:03:42 | 000,411,432 | ---- | M] (Valve Corporation) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe
PRC - [2011/08/04 14:34:50 | 001,955,208 | ---- | M] (LogMeIn Inc.) -- K:\Program Files\Hamachi\hamachi-2-ui.exe
PRC - [2011/08/02 10:35:44 | 001,242,448 | ---- | M] (Valve Corporation) -- H:\Program Files\Steam\Steam.exe
PRC - [2011/07/23 00:37:10 | 026,766,648 | ---- | M] (Electronic Arts) -- K:\Program Files\Origin\Origin.exe
PRC - [2011/06/24 09:19:35 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2011/03/25 07:48:57 | 000,399,736 | ---- | M] (BitTorrent, Inc.) -- K:\uTorrent\uTorrent.exe
PRC - [2011/03/16 23:26:08 | 020,759,392 | ---- | M] (Microsoft Corporation) -- K:\Utility Programs\Microsoft Office\Office14\EXCEL.EXE
PRC - [2010/12/10 19:03:51 | 000,075,136 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2010/11/29 16:39:26 | 000,363,520 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\FlashDevelop.exe
PRC - [2010/05/28 16:12:01 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysWOW64\java.exe
PRC - [2010/04/26 17:57:20 | 016,426,728 | ---- | M] (BioWare) -- K:\Program Files\Games\Mass Effect™ 2\Binaries\MassEffect2.exe
PRC - [2010/03/12 19:29:22 | 000,311,680 | ---- | M] (Kaspersky Lab) -- C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\avp.exe
PRC - [2010/03/06 04:04:24 | 000,310,224 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
PRC - [2009/12/23 12:09:20 | 000,116,016 | ---- | M] (Electronic Arts) -- K:\Program Files\Games\Mass Effect™ 2\Binaries\EACoreServer.exe
PRC - [2006/11/23 18:45:34 | 002,076,672 | ---- | M] (mIRC Co. Ltd.) -- K:\Xscript\mirc.exe


========== Modules (SafeList) ==========

MOD - [2011/08/14 20:45:42 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Users\Omer\Downloads\OTL.exe
MOD - [2011/08/13 12:03:46 | 000,296,744 | ---- | M] (Valve Corporation) -- H:\Program Files\Steam\crashhandler.dll
MOD - [2011/08/13 12:03:44 | 006,297,384 | ---- | M] (Valve Corporation) -- H:\Program Files\Steam\steamclient.dll
MOD - [2011/08/13 12:03:44 | 000,444,200 | ---- | M] (Valve Corporation) -- H:\Program Files\Steam\vstdlib_s.dll
MOD - [2011/08/13 12:03:44 | 000,288,552 | ---- | M] (Valve Corporation) -- H:\Program Files\Steam\tier0_s.dll
MOD - [2011/08/13 12:03:44 | 000,122,864 | ---- | M] (Valve) -- H:\Program Files\Steam\CSERHelper.dll
MOD - [2011/08/13 12:03:42 | 014,407,976 | ---- | M] () -- H:\Program Files\Steam\bin\libcef.dll
MOD - [2011/08/13 12:03:42 | 010,899,456 | ---- | M] (IBM Corporation and others) -- H:\Program Files\Steam\bin\icudt42.dll
MOD - [2011/08/13 12:03:42 | 001,677,096 | ---- | M] (Valve Corporation) -- h:\Program Files\Steam\bin\friendsUI.dll
MOD - [2011/08/13 12:03:42 | 001,107,752 | ---- | M] (Valve Corporation) -- h:\Program Files\Steam\bin\ServerBrowser.dll
MOD - [2011/08/13 12:03:42 | 000,988,968 | ---- | M] (Valve Corporation) -- H:\Program Files\Steam\bin\SteamService.dll
MOD - [2011/08/13 12:03:42 | 000,702,248 | ---- | M] (Valve Corporation) -- H:\Program Files\Steam\bin\vgui2_s.dll
MOD - [2011/08/13 12:03:42 | 000,454,952 | ---- | M] (RAD Game Tools, Inc.) -- H:\Program Files\Steam\bin\mss32.dll
MOD - [2011/08/13 12:03:42 | 000,214,528 | ---- | M] () -- H:\Program Files\Steam\bin\mssvoice.asi
MOD - [2011/08/13 12:03:42 | 000,190,248 | ---- | M] () -- H:\Program Files\Steam\bin\chromehtml.dll
MOD - [2011/08/13 12:03:42 | 000,186,152 | ---- | M] (Valve Corporation) -- H:\Program Files\Steam\bin\FileSystem_Steam.dll
MOD - [2011/08/13 12:03:42 | 000,095,744 | ---- | M] () -- H:\Program Files\Steam\bin\mssmp3.asi
MOD - [2011/08/13 12:03:41 | 003,442,472 | ---- | M] (Valve Corporation) -- H:\Program Files\Steam\SteamUI.dll
MOD - [2011/08/13 12:03:41 | 002,958,672 | ---- | M] (Valve Corporation) -- H:\Program Files\Steam\Steam.dll
MOD - [2011/08/13 12:03:41 | 001,039,192 | ---- | M] (Microsoft Corporation) -- H:\Program Files\Steam\dbghelp.dll
MOD - [2011/08/13 12:03:41 | 000,914,216 | ---- | M] () -- H:\Program Files\Steam\bin\avcodec-52.dll
MOD - [2011/08/13 12:03:41 | 000,155,432 | ---- | M] () -- H:\Program Files\Steam\bin\avformat-52.dll
MOD - [2011/08/13 12:03:41 | 000,091,432 | ---- | M] () -- H:\Program Files\Steam\bin\avutil-50.dll
MOD - [2011/08/11 11:59:57 | 011,819,520 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\33b601c8e2cf4993e68d763389246197\System.Web.ni.dll
MOD - [2011/08/11 11:59:49 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\e3e3b399b69c569ab1ed3b0ace2c8c20\System.Runtime.Remoting.ni.dll
MOD - [2011/08/11 11:59:20 | 012,433,408 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\0d43c5e77ee7b8466700b16d7e7d4bb7\System.Windows.Forms.ni.dll
MOD - [2011/08/11 11:59:12 | 001,587,200 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\9e87dd8fe5d0f925d80a6a6eaf74fdb9\System.Drawing.ni.dll
MOD - [2011/08/11 11:58:51 | 005,453,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\16d2854bf69d59d94e64a918365705f1\System.Xml.ni.dll
MOD - [2011/08/11 11:58:46 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\36d0ed3f2a65b9d67933ed46dfcd2ccb\System.Configuration.ni.dll
MOD - [2011/08/11 11:58:44 | 007,963,648 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\3da7c6c1a0f26ae91883fd8b03ec192d\System.ni.dll
MOD - [2011/08/11 03:14:14 | 011,490,304 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\16b68fcaff063835ae0ee348a1201f2a\mscorlib.ni.dll
MOD - [2011/08/04 14:34:50 | 001,955,208 | ---- | M] (LogMeIn Inc.) -- K:\Program Files\Hamachi\hamachi-2-ui.exe
MOD - [2011/08/03 00:13:53 | 006,378,144 | R--- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\Flash10t.ocx
MOD - [2011/08/02 10:35:44 | 001,242,448 | ---- | M] (Valve Corporation) -- H:\Program Files\Steam\Steam.exe
MOD - [2011/07/24 10:18:03 | 006,271,648 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
MOD - [2011/07/23 00:40:08 | 001,106,432 | ---- | M] (The OpenSSL Project, http://www.openssl.org/) -- K:\Program Files\Origin\libeay32.dll
MOD - [2011/07/23 00:40:08 | 000,237,056 | ---- | M] (The OpenSSL Project, http://www.openssl.org/) -- K:\Program Files\Origin\ssleay32.dll
MOD - [2011/07/23 00:37:10 | 026,766,648 | ---- | M] (Electronic Arts) -- K:\Program Files\Origin\Origin.exe
MOD - [2011/07/23 00:31:48 | 000,490,280 | ---- | M] (Electronic Arts) -- K:\Program Files\Origin\IGO32.dll
MOD - [2011/07/23 00:23:42 | 009,154,560 | ---- | M] (Electronic Arts) -- K:\Program Files\Origin\EACore.dll
MOD - [2011/07/22 05:54:43 | 001,797,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\jscript9.dll
MOD - [2011/07/14 03:11:36 | 016,846,848 | R--- | M] () -- K:\Program Files\Origin\QtWebKit4.dll
MOD - [2011/07/14 03:08:30 | 000,312,320 | R--- | M] () -- K:\Program Files\Origin\imageformats\qtiff4.dll
MOD - [2011/07/14 03:08:30 | 000,264,192 | R--- | M] () -- K:\Program Files\Origin\imageformats\qmng4.dll
MOD - [2011/07/14 03:08:30 | 000,211,456 | R--- | M] () -- K:\Program Files\Origin\imageformats\qjpeg4.dll
MOD - [2011/07/14 03:08:30 | 000,032,256 | R--- | M] () -- K:\Program Files\Origin\imageformats\qico4.dll
MOD - [2011/07/14 03:08:30 | 000,028,672 | R--- | M] () -- K:\Program Files\Origin\imageformats\qgif4.dll
MOD - [2011/07/14 03:08:28 | 000,172,544 | R--- | M] () -- K:\Program Files\Origin\codecs\qjpcodecs4.dll
MOD - [2011/07/14 03:08:28 | 000,158,208 | R--- | M] () -- K:\Program Files\Origin\codecs\qtwcodecs4.dll
MOD - [2011/07/14 03:08:28 | 000,143,872 | R--- | M] () -- K:\Program Files\Origin\codecs\qcncodecs4.dll
MOD - [2011/07/14 03:08:28 | 000,079,872 | R--- | M] () -- K:\Program Files\Origin\codecs\qkrcodecs4.dll
MOD - [2011/07/14 03:07:32 | 000,327,680 | R--- | M] () -- K:\Program Files\Origin\phonon4.dll
MOD - [2011/07/14 03:07:30 | 000,413,184 | R--- | M] () -- K:\Program Files\Origin\QtXml4.dll
MOD - [2011/07/14 03:07:28 | 009,440,256 | R--- | M] () -- K:\Program Files\Origin\QtGui4.dll
MOD - [2011/07/14 03:07:28 | 001,152,512 | R--- | M] () -- K:\Program Files\Origin\QtNetwork4.dll
MOD - [2011/07/14 03:07:26 | 002,694,144 | R--- | M] () -- K:\Program Files\Origin\QtCore4.dll
MOD - [2011/07/08 06:29:44 | 000,689,152 | ---- | M] (ATI Technologies Inc. ) -- C:\Windows\SysWOW64\aticfx32.dll
MOD - [2011/07/08 06:19:50 | 004,275,712 | ---- | M] (ATI Technologies Inc. ) -- C:\Windows\SysWOW64\atidxx32.dll
MOD - [2011/07/08 06:00:34 | 004,367,360 | ---- | M] (ATI Technologies Inc. ) -- C:\Windows\SysWOW64\atiumdag.dll
MOD - [2011/07/08 05:55:56 | 004,039,680 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWOW64\atiumdva.dll
MOD - [2011/07/08 05:46:14 | 000,031,744 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWOW64\atiuxpag.dll
MOD - [2011/07/08 05:45:58 | 000,029,184 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\SysWOW64\atiu9pag.dll
MOD - [2011/06/24 09:19:35 | 014,232,536 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\xul.dll
MOD - [2011/06/24 09:19:35 | 001,850,328 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2011/06/24 09:19:35 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
MOD - [2011/06/24 09:19:35 | 000,781,272 | ---- | M] (sqlite.org) -- C:\Program Files (x86)\Mozilla Firefox\mozsqlite3.dll
MOD - [2011/06/24 09:19:35 | 000,719,832 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\mozcpp19.dll
MOD - [2011/06/24 09:19:35 | 000,715,736 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\mozcrt19.dll
MOD - [2011/06/24 09:19:35 | 000,646,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\nss3.dll
MOD - [2011/06/24 09:19:35 | 000,343,000 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\nssckbi.dll
MOD - [2011/06/24 09:19:35 | 000,269,272 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\freebl3.dll
MOD - [2011/06/24 09:19:35 | 000,203,736 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\nspr4.dll
MOD - [2011/06/24 09:19:35 | 000,166,872 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\softokn3.dll
MOD - [2011/06/24 09:19:35 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\ssl3.dll
MOD - [2011/06/24 09:19:35 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll
MOD - [2011/06/24 09:19:35 | 000,105,432 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\smime3.dll
MOD - [2011/06/24 09:19:35 | 000,105,432 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\nssdbm3.dll
MOD - [2011/06/24 09:19:35 | 000,089,048 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\nssutil3.dll
MOD - [2011/06/24 09:19:35 | 000,021,976 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\plc4.dll
MOD - [2011/06/24 09:19:35 | 000,019,416 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\xpcom.dll
MOD - [2011/06/24 09:19:35 | 000,018,904 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\plds4.dll
MOD - [2011/06/24 09:19:35 | 000,015,832 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\Mozilla Firefox\mozalloc.dll
MOD - [2011/06/17 03:03:25 | 000,653,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcr90.dll
MOD - [2011/06/17 03:03:25 | 000,569,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcp90.dll
MOD - [2011/06/17 03:03:23 | 000,159,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.vc90.atl_1fc8b3b9a1e18e3b_9.0.30729.6161_none_51cd0a7abbe4e19b\ATL90.dll
MOD - [2011/06/17 03:02:17 | 000,632,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcr80.dll
MOD - [2011/06/17 03:02:17 | 000,554,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcp80.dll
MOD - [2011/05/24 13:40:05 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\devrtl.dll
MOD - [2011/05/13 07:46:04 | 000,220,232 | ---- | M] (ManyCam LLC) -- K:\Program Files\ManyCam\Bin\VideoSrcggj.dll
MOD - [2011/05/13 07:46:02 | 000,498,760 | ---- | M] () -- K:\Program Files\ManyCam\Bin\cximagecrt.dll
MOD - [2011/05/04 07:32:02 | 000,666,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\mssvp.dll
MOD - [2011/04/26 14:25:50 | 000,942,384 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\avpgui.ppl
MOD - [2011/03/30 01:33:49 | 005,924,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
MOD - [2011/03/30 01:33:48 | 000,363,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
MOD - [2011/03/25 07:48:57 | 000,399,736 | ---- | M] (BitTorrent, Inc.) -- K:\uTorrent\uTorrent.exe
MOD - [2011/03/18 17:22:45 | 000,353,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dxtmsft.dll
MOD - [2011/03/18 17:22:45 | 000,223,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dxtrans.dll
MOD - [2011/03/18 17:22:45 | 000,161,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msls31.dll
MOD - [2011/03/16 23:26:08 | 020,759,392 | ---- | M] (Microsoft Corporation) -- K:\Utility Programs\Microsoft Office\Office14\EXCEL.EXE
MOD - [2011/03/15 07:13:46 | 004,254,560 | ---- | M] () -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
MOD - [2011/03/11 08:33:59 | 001,137,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\mfc42.dll
MOD - [2011/02/19 09:30:51 | 001,076,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\DWrite.dll
MOD - [2011/02/19 09:30:50 | 000,739,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\d2d1.dll
MOD - [2011/02/14 14:10:26 | 000,679,936 | ---- | M] (Intel Corporation.) -- K:\Program Files\ManyCam\Bin\cv099.dll
MOD - [2011/02/14 14:09:44 | 000,929,792 | ---- | M] (Intel Corporation.) -- K:\Program Files\ManyCam\Bin\cxcore099.dll
MOD - [2011/01/17 08:47:13 | 000,161,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\d3d10_1.dll
MOD - [2011/01/07 15:39:22 | 000,768,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msvcr100.dll
MOD - [2011/01/07 15:39:22 | 000,421,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msvcp100.dll
MOD - [2010/12/01 17:44:20 | 000,170,584 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\prloader.dll
MOD - [2010/12/01 17:44:20 | 000,096,856 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\nfio.ppl
MOD - [2010/12/01 17:44:20 | 000,024,664 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\ushata.dll
MOD - [2010/11/29 16:39:26 | 000,363,520 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\FlashDevelop.exe
MOD - [2010/11/29 16:39:26 | 000,044,032 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\SourceControl.dll
MOD - [2010/11/29 16:39:24 | 000,376,320 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\FlashDebugger.dll
MOD - [2010/11/29 16:39:24 | 000,055,296 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\FlashViewer.dll
MOD - [2010/11/29 16:39:24 | 000,046,592 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\CodeRefactor.dll
MOD - [2010/11/29 16:39:24 | 000,031,232 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\FileExplorer.dll
MOD - [2010/11/29 16:39:24 | 000,026,112 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\ResultsPanel.dll
MOD - [2010/11/29 16:39:24 | 000,016,896 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\OutputPanel.dll
MOD - [2010/11/29 16:39:24 | 000,012,800 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\CodeAnalyzer.dll
MOD - [2010/11/29 16:39:22 | 000,037,376 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\ASClassWizard.dll
MOD - [2010/11/29 16:39:22 | 000,035,840 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\HaXeContext.dll
MOD - [2010/11/29 16:39:22 | 000,020,992 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\TaskListPanel.dll
MOD - [2010/11/29 16:39:22 | 000,020,480 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\FlashLogViewer.dll
MOD - [2010/11/29 16:39:22 | 000,019,456 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\MacroManager.dll
MOD - [2010/11/29 16:39:22 | 000,018,432 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\BookmarkPanel.dll
MOD - [2010/11/29 16:39:22 | 000,017,920 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\StartPage.dll
MOD - [2010/11/29 16:39:22 | 000,014,848 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\LayoutManager.dll
MOD - [2010/11/29 16:39:22 | 000,007,680 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\DataEncoder.dll
MOD - [2010/11/29 16:39:20 | 000,471,552 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\ASCompletion.dll
MOD - [2010/11/29 16:39:20 | 000,269,824 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\ProjectManager.dll
MOD - [2010/11/29 16:39:20 | 000,158,720 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\XMLCompletion.dll
MOD - [2010/11/29 16:39:20 | 000,117,248 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\AS3Context.dll
MOD - [2010/11/29 16:39:20 | 000,035,328 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\AS2Context.dll
MOD - [2010/11/29 16:39:20 | 000,018,432 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\PHPContext.dll
MOD - [2010/11/29 16:39:20 | 000,012,288 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\Plugins\FlashConnect.dll
MOD - [2010/11/29 16:39:18 | 001,353,216 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\PluginCore.dll
MOD - [2010/11/20 15:21:39 | 000,040,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wtsapi32.dll
MOD - [2010/11/20 15:21:36 | 000,172,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wintrust.dll
MOD - [2010/11/20 15:21:36 | 000,156,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\winsta.dll
MOD - [2010/11/20 15:21:36 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wkscli.dll
MOD - [2010/11/20 15:21:35 | 000,381,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wer.dll
MOD - [2010/11/20 15:21:35 | 000,314,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\webio.dll
MOD - [2010/11/20 15:21:33 | 000,206,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\upnp.dll
MOD - [2010/11/20 15:21:32 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\twext.dll
MOD - [2010/11/20 15:21:28 | 000,505,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\taskschd.dll
MOD - [2010/11/20 15:21:27 | 000,159,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\syncui.dll
MOD - [2010/11/20 15:21:03 | 000,473,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\riched20.dll
MOD - [2010/11/20 15:21:03 | 000,037,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\rtutils.dll
MOD - [2010/11/20 15:20:55 | 000,547,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\PortableDeviceApi.dll
MOD - [2010/11/20 15:20:51 | 000,236,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\pdh.dll
MOD - [2010/11/20 15:20:48 | 000,573,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\odbc32.dll
MOD - [2010/11/20 15:20:46 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ntlanman.dll
MOD - [2010/11/20 15:20:29 | 002,494,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\netshell.dll
MOD - [2010/11/20 15:19:48 | 002,341,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msi.dll
MOD - [2010/11/20 15:19:46 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msdmo.dll
MOD - [2010/11/20 15:19:45 | 000,481,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\mscms.dll
MOD - [2010/11/20 15:19:39 | 000,213,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\MMDevAPI.dll
MOD - [2010/11/20 15:19:32 | 000,076,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\mapi32.dll
MOD - [2010/11/20 15:19:23 | 000,103,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\IPHLPAPI.DLL
MOD - [2010/11/20 15:19:21 | 000,155,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\imagehlp.dll
MOD - [2010/11/20 15:19:05 | 002,576,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\gameux.dll
MOD - [2010/11/20 15:19:03 | 000,216,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\FWPUCLNT.DLL
MOD - [2010/11/20 15:19:02 | 000,320,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\Faultrep.dll
MOD - [2010/11/20 15:19:01 | 001,493,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ExplorerFrame.dll
MOD - [2010/11/20 15:18:38 | 000,128,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\EhStorAPI.dll
MOD - [2010/11/20 15:18:36 | 000,508,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dxgi.dll
MOD - [2010/11/20 15:18:36 | 000,210,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dxdiagn.dll
MOD - [2010/11/20 15:18:27 | 000,854,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dbghelp.dll
MOD - [2010/11/20 15:18:26 | 000,080,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\davclnt.dll
MOD - [2010/11/20 15:18:25 | 001,828,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\d3d9.dll
MOD - [2010/11/20 15:18:25 | 001,171,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\d3d10warp.dll
MOD - [2010/11/20 15:18:25 | 001,003,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cryptui.dll
MOD - [2010/11/20 15:18:25 | 000,522,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\d3d11.dll
MOD - [2010/11/20 15:18:25 | 000,219,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\d3d10_1core.dll
MOD - [2010/11/20 15:18:23 | 000,530,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_ec83dffa859149af\comctl32.dll
MOD - [2010/11/20 15:18:09 | 000,073,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cabinet.dll
MOD - [2010/11/20 15:18:05 | 000,195,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\AudioSes.dll
MOD - [2010/11/20 15:18:01 | 000,562,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\AppPatch\AcLayers.dll
MOD - [2010/11/20 15:16:52 | 000,193,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ksproxy.ax
MOD - [2010/11/20 15:16:52 | 000,107,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\Kswdmcap.ax
MOD - [2010/11/20 14:55:09 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
MOD - [2010/11/20 14:55:08 | 001,624,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17514_none_72d18a4386696c80\GdiPlus.dll
MOD - [2010/10/22 11:15:18 | 000,520,704 | ---- | M] (scite.net.ru) -- K:\Utility Programs\FlashDevelop\SciLexer.dll
MOD - [2010/10/22 11:15:18 | 000,145,920 | ---- | M] () -- K:\Utility Programs\FlashDevelop\Aga.dll
MOD - [2010/10/22 11:15:18 | 000,097,280 | ---- | M] (FlashDevelop.org) -- K:\Utility Programs\FlashDevelop\SwfOp.dll
MOD - [2010/05/28 16:12:01 | 002,641,920 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\Java\jre6\bin\client\jvm.dll
MOD - [2010/05/28 16:12:01 | 000,348,160 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Java\jre6\bin\msvcr71.dll
MOD - [2010/05/28 16:12:01 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\Windows\SysWOW64\java.exe
MOD - [2010/05/28 16:12:01 | 000,126,976 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\Java\jre6\bin\java.dll
MOD - [2010/05/28 16:12:01 | 000,077,824 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\Java\jre6\bin\net.dll
MOD - [2010/05/28 16:12:01 | 000,046,592 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\Java\jre6\bin\zip.dll
MOD - [2010/05/28 16:12:01 | 000,031,744 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\Java\jre6\bin\verify.dll
MOD - [2010/05/28 16:12:01 | 000,015,872 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\Java\jre6\bin\hpi.dll
MOD - [2010/04/26 17:57:20 | 016,426,728 | ---- | M] (BioWare) -- K:\Program Files\Games\Mass Effect™ 2\Binaries\MassEffect2.exe
MOD - [2010/03/25 10:25:22 | 004,222,864 | ---- | M] (Microsoft Corporation) -- K:\Utility Programs\Microsoft Office\Office14\GROOVEEX.DLL
MOD - [2010/03/24 21:17:36 | 008,794,464 | ---- | M] () -- K:\Utility Programs\Microsoft Office\Office14\1033\GrooveIntlResource.dll
MOD - [2010/03/23 11:03:04 | 000,034,200 | ---- | M] (Microsoft Corporation) -- K:\Utility Programs\Microsoft Office\Office14\MSOSTYLE.DLL
MOD - [2010/03/19 14:02:22 | 000,358,240 | ---- | M] (Microsoft Corporation) -- k:\Utility Programs\Microsoft Visual Studio 10.0\Common7\IDE\PrivateAssemblies\TFSOfficeAdd-in.dll
MOD - [2010/03/19 03:11:54 | 000,250,208 | ---- | M] (Microsoft Corporation) -- k:\Utility Programs\Microsoft Visual Studio 10.0\Visual Studio Tools for Office\x86\VSTOExcelAdaptor.dll
MOD - [2010/03/18 13:16:28 | 000,413,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
MOD - [2010/03/15 11:28:22 | 000,141,824 | ---- | M] () -- C:\Program Files\WinRAR\RarExt32.dll
MOD - [2010/03/13 15:08:22 | 020,516,712 | ---- | M] (Microsoft Corporation) -- K:\Utility Programs\Microsoft Office\Office14\OART.DLL
MOD - [2010/03/12 19:29:22 | 000,311,680 | ---- | M] (Kaspersky Lab) -- C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\avp.exe
MOD - [2010/03/12 19:29:10 | 000,033,880 | ---- | M] (Kaspersky Lab) -- C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\winreg.ppl
MOD - [2010/03/12 19:29:06 | 000,026,712 | ---- | M] (Kaspersky Lab) -- C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\thpimpl.ppl
MOD - [2010/03/12 19:29:02 | 000,031,320 | ---- | M] (Kaspersky Lab) -- C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\pxstub.ppl
MOD - [2010/03/12 19:29:00 | 000,485,976 | ---- | M] (Kaspersky Lab) -- C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\params.ppl
MOD - [2010/03/12 19:28:58 | 000,048,728 | ---- | M] (Kaspersky Lab) -- C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\mkavio.ppl
MOD - [2010/03/12 19:28:54 | 000,019,544 | ---- | M] (Kaspersky Lab) -- C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\fsdrvplg.ppl
MOD - [2010/03/12 19:28:52 | 000,825,944 | ---- | M] (Kaspersky Lab) -- C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\basegui.ppl
MOD - [2010/03/12 19:28:46 | 000,096,856 | ---- | M] (Kaspersky Lab) -- C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\prremote.dll
MOD - [2010/03/12 19:28:46 | 000,072,280 | ---- | M] (Kaspersky Lab) -- C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\shellex.dll
MOD - [2010/03/12 19:28:42 | 000,068,184 | ---- | M] (Kaspersky Lab) -- C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\fssync.dll
MOD - [2010/03/12 19:28:42 | 000,016,472 | ---- | M] (Kaspersky Lab) -- C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\clldr.dll
MOD - [2010/03/06 04:04:24 | 000,310,224 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
MOD - [2010/03/06 03:44:34 | 002,191,344 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updatercore.dll
MOD - [2010/03/06 03:44:34 | 000,552,896 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\LogSession.dll
MOD - [2010/03/01 05:08:16 | 001,746,280 | ---- | M] (Microsoft Corporation) -- K:\Utility Programs\Microsoft Office\Office14\GFX.DLL
MOD - [2010/02/17 21:42:38 | 000,051,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\VBAME.DLL
MOD - [2010/01/09 21:21:18 | 000,061,824 | ---- | M] (Microsoft Corporation) -- k:\Utility Programs\Microsoft Office\Office14\MSOHEVI.DLL
MOD - [2009/12/23 12:27:18 | 000,606,208 | ---- | M] (Electronic Arts, Inc.) -- K:\Program Files\Games\Mass Effect™ 2\Binaries\awc.dll
MOD - [2009/12/23 12:15:04 | 010,341,160 | ---- | M] (Electronic Arts) -- K:\Program Files\Games\Mass Effect™ 2\Binaries\EACore.dll
MOD - [2009/12/23 12:09:20 | 000,116,016 | ---- | M] (Electronic Arts) -- K:\Program Files\Games\Mass Effect™ 2\Binaries\EACoreServer.exe
MOD - [2009/11/12 13:50:16 | 000,071,008 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common\PhysXLoader.dll
MOD - [2009/10/29 15:07:34 | 000,197,912 | ---- | M] () -- C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common\physxcudart_20.dll
MOD - [2009/08/25 18:34:48 | 000,166,992 | ---- | M] () -- K:\Program Files\Games\Mass Effect™ 2\Binaries\PhysXExtensions.dll
MOD - [2009/08/25 18:25:04 | 000,385,024 | ---- | M] (AGEIA Technologies, Inc.) -- K:\Program Files\Games\Mass Effect™ 2\Binaries\NxCooking.dll
MOD - [2009/07/14 04:17:54 | 000,249,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\bcryptprimitives.dll
MOD - [2009/07/14 04:16:20 | 000,308,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\Wpc.dll
MOD - [2009/07/14 04:16:20 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wsock32.dll
MOD - [2009/07/14 04:16:20 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wship6.dll
MOD - [2009/07/14 04:16:20 | 000,009,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\WSHTCPIP.DLL
MOD - [2009/07/14 04:16:19 | 000,081,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wlanapi.dll
MOD - [2009/07/14 04:16:19 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\winnsi.dll
MOD - [2009/07/14 04:16:19 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wlanutil.dll
MOD - [2009/07/14 04:16:18 | 000,262,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wevtapi.dll
MOD - [2009/07/14 04:16:18 | 000,192,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\WindowsCodecsExt.dll
MOD - [2009/07/14 04:16:18 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\winbrand.dll
MOD - [2009/07/14 04:16:15 | 000,126,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\IME\SPTIP.DLL
MOD - [2009/07/14 04:16:15 | 000,078,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\synceng.dll
MOD - [2009/07/14 04:16:15 | 000,039,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ssdpapi.dll
MOD - [2009/07/14 04:16:14 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shfolder.dll
MOD - [2009/07/14 04:16:13 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\SensApi.dll
MOD - [2009/07/14 04:16:12 | 000,791,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\opengl32.dll
MOD - [2009/07/14 04:16:12 | 000,325,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\rasapi32.dll
MOD - [2009/07/14 04:16:12 | 000,159,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\PortableDeviceTypes.dll
MOD - [2009/07/14 04:16:12 | 000,145,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\powrprof.dll
MOD - [2009/07/14 04:16:12 | 000,103,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\oledlg.dll
MOD - [2009/07/14 04:16:12 | 000,076,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\rasman.dll
MOD - [2009/07/14 04:16:12 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\rasadhlp.dll
MOD - [2009/07/14 04:16:11 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\npmproxy.dll
MOD - [2009/07/14 04:16:02 | 000,219,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ncrypt.dll
MOD - [2009/07/14 04:15:48 | 000,035,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\mssprxy.dll
MOD - [2009/07/14 04:15:44 | 000,031,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msimtf.dll
MOD - [2009/07/14 04:15:42 | 000,072,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msacm32.dll
MOD - [2009/07/14 04:15:41 | 000,054,784 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Windows Defender\MpOAV.dll
MOD - [2009/07/14 04:15:40 | 000,177,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\mlang.dll
MOD - [2009/07/14 04:15:35 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ksuser.dll
MOD - [2009/07/14 04:15:27 | 000,215,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\icm32.dll
MOD - [2009/07/14 04:15:24 | 000,288,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\hnetcfg.dll
MOD - [2009/07/14 04:15:24 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\hid.dll
MOD - [2009/07/14 04:15:22 | 000,130,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\glu32.dll
MOD - [2009/07/14 04:15:22 | 000,079,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\gpapi.dll
MOD - [2009/07/14 04:15:21 | 000,462,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\FirewallAPI.dll
MOD - [2009/07/14 04:15:20 | 000,035,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\feclient.dll
MOD - [2009/07/14 04:15:13 | 000,717,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dui70.dll
MOD - [2009/07/14 04:15:13 | 000,453,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dsound.dll
MOD - [2009/07/14 04:15:13 | 000,181,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\duser.dll
MOD - [2009/07/14 04:15:13 | 000,088,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dxva2.dll
MOD - [2009/07/14 04:15:13 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\drprov.dll
MOD - [2009/07/14 04:15:11 | 000,145,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dinput8.dll
MOD - [2009/07/14 04:15:11 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dhcpcsvc6.dll
MOD - [2009/07/14 04:15:10 | 000,531,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ddraw.dll
MOD - [2009/07/14 04:15:10 | 000,066,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\devenum.dll
MOD - [2009/07/14 04:15:10 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ddrawex.dll
MOD - [2009/07/14 04:15:09 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dciman32.dll
MOD - [2009/07/14 04:15:08 | 001,036,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\d3d8.dll
MOD - [2009/07/14 04:15:08 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\davhlpr.dll
MOD - [2009/07/14 04:15:08 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\d3d8thk.dll
MOD - [2009/07/14 04:15:07 | 001,030,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\d3d10.dll
MOD - [2009/07/14 04:15:07 | 000,190,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\d3d10core.dll
MOD - [2009/07/14 04:14:58 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\avrt.dll
MOD - [2009/07/14 04:14:11 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\vidcap.ax
MOD - [2009/07/14 04:11:20 | 000,080,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\bcrypt.dll
MOD - [2009/07/14 04:09:14 | 000,229,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\odbcint.dll
MOD - [2009/07/14 04:09:00 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\normaliz.dll
MOD - [2009/04/28 09:46:28 | 000,390,424 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\PhysX\Engine\v2.8.0\PhysXCooking.dll
MOD - [2009/04/28 09:46:24 | 004,359,448 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\PhysX\Engine\v2.8.0\PhysXCore.dll
MOD - [2009/04/02 17:47:28 | 000,171,008 | ---- | M] (RAD Game Tools, Inc.) -- K:\Program Files\Games\Mass Effect™ 2\Binaries\binkw32.dll
MOD - [2009/02/04 12:30:28 | 000,782,336 | ---- | M] (Umbra Software Ltd.) -- K:\Program Files\Games\Mass Effect™ 2\Binaries\umbra.dll
MOD - [2008/08/20 13:59:04 | 000,204,800 | ---- | M] (NVIDIA Corporation) -- K:\Program Files\Games\Mass Effect™ 2\Binaries\nvtt.dll
MOD - [2008/08/20 11:28:46 | 000,167,936 | ---- | M] () -- K:\Program Files\Games\Mass Effect™ 2\Binaries\cudart.dll
MOD - [2008/07/30 16:32:02 | 000,247,832 | ---- | M] (Microsoft Corporation) -- k:\Utility Programs\Microsoft Visual Studio 9.0\Visual Studio Tools for Office\VSTOExcel2007Adaptor.dll
MOD - [2008/07/12 09:18:52 | 003,851,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\D3DX9_39.dll
MOD - [2008/07/12 08:18:52 | 000,467,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\d3dx10_39.dll
MOD - [2007/11/08 08:19:22 | 000,242,712 | ---- | M] (Microsoft Corporation) -- k:\Utility Programs\Microsoft Visual Studio 9.0\Visual Studio Tools for Office\VSTOExcel2003Adaptor.dll
MOD - [2007/04/04 19:53:42 | 000,081,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\xinput1_3.dll
MOD - [2006/11/23 18:45:34 | 002,076,672 | ---- | M] (mIRC Co. Ltd.) -- K:\Xscript\mirc.exe
MOD - [2005/01/19 08:15:34 | 000,221,184 | ---- | M] () -- K:\Xscript\system\dlls\nickLUST3.dll
MOD - [2003/08/31 15:34:08 | 000,049,152 | ---- | M] () -- K:\Xscript\system\dlls\RebaR.dll
MOD - [2003/08/20 15:00:18 | 000,058,880 | ---- | M] () -- K:\Xscript\system\dlls\MPopup.dll
MOD - [2003/07/12 09:30:52 | 000,077,824 | ---- | M] () -- K:\seRapid\SEStart.dll
MOD - [2003/04/23 21:18:18 | 000,030,720 | ---- | M] () -- K:\Xscript\system\dlls\dmu.dll
MOD - [2002/06/17 01:09:14 | 000,053,760 | ---- | M] (DragonZap) -- K:\Xscript\system\dlls\VIEWS.MDX
MOD - [2002/06/17 01:09:08 | 000,026,112 | ---- | M] (DragonZap) -- K:\Xscript\system\dlls\BARS.MDX
MOD - [2002/06/17 01:09:04 | 000,042,496 | ---- | M] (DragonZap) -- K:\Xscript\system\dlls\MDX.DLL
MOD - [2001/11/10 12:24:04 | 000,028,672 | ---- | M] () -- K:\Xscript\system\dlls\ProcInfo.dll
MOD - [2001/06/29 14:35:54 | 000,016,896 | ---- | M] () -- K:\Xscript\system\dlls\SZ.DLL


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2011/07/08 06:25:02 | 000,204,288 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2010/11/20 16:24:49 | 000,015,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\inetsrv\inetinfo.exe -- (IISADMIN)
SRV:64bit: - [2010/01/30 00:18:20 | 000,357,456 | ---- | M] (Logitech, Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\LogiShrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV:64bit: - [2009/10/07 01:47:10 | 000,191,000 | ---- | M] (Logitech Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe -- (LVPrcS64)
SRV:64bit: - [2009/07/14 04:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2008/07/29 14:20:28 | 004,737,024 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x64\msvsmon.exe -- (msvsmon90)
SRV - [2011/08/13 12:03:42 | 000,411,432 | ---- | M] (Valve Corporation) [Auto | Running] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2011/08/04 14:34:48 | 002,329,480 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- K:\Program Files\Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2010/12/10 19:03:51 | 000,075,136 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2010/11/20 15:19:20 | 000,397,824 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (WAS)
SRV - [2010/11/20 15:19:20 | 000,397,824 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (W3SVC)
SRV - [2010/11/20 15:18:03 | 000,061,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\apphostsvc.dll -- (AppHostSvc)
SRV - [2010/03/25 10:25:22 | 030,969,208 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- K:\Utility Programs\Microsoft Office\Office14\GROOVE.EXE -- (Microsoft SharePoint Workspace Audit Service)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/03/12 19:29:22 | 000,311,680 | ---- | M] (Kaspersky Lab) [Auto | Running] -- C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\avp.exe -- (AVP)
SRV - [2010/02/19 13:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [Disabled | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009/09/23 21:59:36 | 001,037,824 | ---- | M] (Hewlett-Packard Co.) [Auto | Running] -- C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL -- (HPSLPSVC)
SRV - [2009/06/11 00:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2011/07/08 07:20:48 | 000,203,320 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudmdm.sys -- (ssudmdm) SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.)
DRV:64bit: - [2011/07/08 07:20:46 | 000,095,416 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ssudbus.sys -- (dg_ssudbus) SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.)
DRV:64bit: - [2011/07/08 07:15:50 | 009,884,672 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag)
DRV:64bit: - [2011/07/08 07:15:50 | 009,884,672 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2011/07/08 05:47:04 | 000,307,712 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2011/06/16 13:01:48 | 000,027,736 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\klim6.sys -- (KLIM6)
DRV:64bit: - [2011/03/30 21:46:44 | 000,114,704 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2011/03/11 09:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 09:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/01/21 07:36:02 | 000,413,800 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2011/01/01 11:12:24 | 000,097,040 | ---- | M] (MotioninJoy) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\MijXfilt.sys -- (MotioninJoyXFilter)
DRV:64bit: - [2010/12/01 17:44:20 | 000,268,376 | ---- | M] (Kaspersky Lab) [File_System | System | Running] -- C:\Windows\SysNative\drivers\klif.sys -- (KLIF)
DRV:64bit: - [2010/11/20 16:34:02 | 000,360,832 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcvmm.sys -- (vpcvmm)
DRV:64bit: - [2010/11/20 16:34:02 | 000,194,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpchbus.sys -- (vpcbus)
DRV:64bit: - [2010/11/20 16:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 14:35:32 | 000,095,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpcusb.sys -- (vpcusb)
DRV:64bit: - [2010/11/20 14:35:20 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcnfltr.sys -- (vpcnfltr)
DRV:64bit: - [2010/11/20 14:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/09/08 16:42:16 | 000,295,272 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\VMM.sys -- (vmm)
DRV:64bit: - [2010/08/19 20:24:34 | 000,074,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xusb21.sys -- (xusb21)
DRV:64bit: - [2010/06/25 09:23:13 | 000,834,544 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:64bit: - [2010/05/06 12:21:46 | 000,125,456 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2010/04/03 11:30:40 | 000,313,696 | ---- | M] (Microsoft Corporation) [File_System | Disabled | Stopped] -- C:\Windows\SysNative\drivers\RsFx0150.sys -- (RsFx0150)
DRV:64bit: - [2009/12/01 15:49:52 | 000,038,992 | ---- | M] (Screaming Bee LLC) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ScreamingBAudio64.sys -- (ScreamBAudioSvc)
DRV:64bit: - [2009/11/11 14:30:52 | 000,157,712 | ---- | M] (Kaspersky Lab) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\kl1.sys -- (kl1)
DRV:64bit: - [2009/11/10 14:53:40 | 000,040,976 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LUsbFilt.sys -- (LUsbFilt)
DRV:64bit: - [2009/11/10 14:53:16 | 000,058,384 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LMouFilt.Sys -- (LMouFilt)
DRV:64bit: - [2009/11/10 14:53:00 | 000,056,336 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LHidFilt.Sys -- (LHidFilt)
DRV:64bit: - [2009/10/07 01:45:50 | 000,030,232 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2Mon)
DRV:64bit: - [2009/10/07 01:45:50 | 000,030,232 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2M64)
DRV:64bit: - [2009/09/03 15:24:28 | 000,030,736 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\klfltdev.sys -- (KLFLTDEV)
DRV:64bit: - [2009/07/14 04:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/14 04:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/14 04:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/07/14 03:39:20 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice)
DRV:64bit: - [2009/07/14 03:35:32 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\serscan.sys -- (StillCam)
DRV:64bit: - [2009/06/10 23:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 23:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 23:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 23:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/05/01 02:01:34 | 000,327,576 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lvrs64.sys -- (LVRS64)
DRV:64bit: - [2009/05/01 01:55:56 | 002,755,096 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LV302V64.SYS -- (PID_PEPI) Logitech QuickCam IM(PID_PEPI)
DRV:64bit: - [2009/05/01 01:55:46 | 000,015,896 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lv302a64.sys -- (lvpepf64)
DRV:64bit: - [2009/04/29 16:28:30 | 000,030,208 | ---- | M] (Windows ® Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\KMWDFILTER.sys -- (KMWDFILTER)
DRV:64bit: - [2009/03/18 17:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV:64bit: - [2008/07/26 15:26:34 | 000,050,072 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LVUSBS64.sys -- (LVUSBS64)
DRV:64bit: - [2008/03/13 10:46:00 | 000,027,136 | ---- | M] (ManyCam LLC.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ManyCam_x64.sys -- (ManyCam)
DRV:64bit: - [2008/01/17 16:51:44 | 000,018,816 | ---- | M] (Razer USA Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Lycosa.sys -- (Lycosa)
DRV:64bit: - [2007/06/28 12:47:14 | 000,173,056 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nmwcdx64.sys -- (nmwcdx64)
DRV - [2010/05/26 20:30:09 | 000,025,640 | ---- | M] (Windows ® Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\gdrv.sys -- (gdrv)
DRV - [2010/03/17 23:34:36 | 000,068,440 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- k:\Utility Programs\Microsoft Visual Studio 10.0\Team Tools\Performance Tools\x64\VSPerfDrv100.sys -- (VSPerfDrv100)
DRV - [2007/09/04 16:53:34 | 000,071,024 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- k:\Utility Programs\Microsoft Visual Studio 9.0\Team Tools\Performance Tools\x64\VSPerfDrv90.sys -- (VSPerfDrv90)
DRV - [2007/02/07 21:27:46 | 000,014,104 | ---- | M] (Windows ® Server 2003 DDK provider) [Kernel | Boot | Running] -- C:\Windows\SysWOW64\speedfan.sys -- (speedfan)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://il.msn.com/?rd=1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = B2 83 82 C6 64 58 CC 01 [binary data]
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = proxy.telewest.co.uk:8080

========== FireFox ==========

FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3
FF - prefs.js..extensions.enabledItems: [email protected]:0.9.8.0
FF - prefs.js..extensions.enabledItems: {5384767E-00D9-40E9-B72F-9CC39D655D6F}:1.4.1.0
FF - prefs.js..keyword.URL: "http://www.google.co...ient&gfns=1&q="

FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: K:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/wpi,version=1.3: C:\Program Files\Microsoft\Web Platform Installer\\npwpidetector.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@gametap.com/npdd,version=1.0: K:\DownloaderGamesPlanet\npdd.dll (Metaboli)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: K:\UTILIT~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: K:\UTILIT~1\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/wpi,version=1.3: C:\Program Files\Microsoft\Web Platform Installer\\npwpidetector.dll ()
FF - HKLM\Software\MozillaPlugins\@onlive.com/OlGameDetect,version=1.1.0.70351: C:\Program Files (x86)\OnLive\FirefoxPlugin\npolgdet.dll (OnLive)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@wolfram.com/Mathematica: C:\Program Files (x86)\Common Files\Wolfram Research\Browser\8.0.0.1802959\npmathplugin.dll (Wolfram Research, Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\Omer\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/07/22 11:12:59 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/06/24 09:19:36 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/06/19 21:23:44 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010/07/22 11:12:59 | 000,000,000 | ---D | M]

[2010/05/26 10:08:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Omer\AppData\Roaming\Mozilla\Extensions
[2011/07/28 14:16:59 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Omer\AppData\Roaming\Mozilla\Firefox\Profiles\yawzf6wy.default\extensions
[2011/03/07 21:32:07 | 000,000,000 | ---D | M] (EPUBReader) -- C:\Users\Omer\AppData\Roaming\Mozilla\Firefox\Profiles\yawzf6wy.default\extensions\{5384767E-00D9-40E9-B72F-9CC39D655D6F}
[2011/03/18 17:26:55 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2010/05/28 16:12:13 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
File not found (No name found) --
() (No name found) -- C:\USERS\OMER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YAWZF6WY.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI
() (No name found) -- C:\USERS\OMER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YAWZF6WY.DEFAULT\EXTENSIONS\[email protected]
() (No name found) -- C:\USERS\OMER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YAWZF6WY.DEFAULT\EXTENSIONS\[email protected]
() (No name found) -- C:\USERS\OMER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\YAWZF6WY.DEFAULT\EXTENSIONS\[email protected]
[2011/06/24 09:19:35 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2010/05/28 16:12:01 | 000,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2010/01/01 11:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml

O1 HOSTS File: ([2010/04/30 14:56:09 | 000,001,798 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: 127.0.0.1 practivate.adobe.com
O1 - Hosts: 127.0.0.1 ereg.adobe.com
O1 - Hosts: 127.0.0.1 activate.wip3.adobe.com
O1 - Hosts: 127.0.0.1 wip3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-3.adobe.com
O1 - Hosts: 127.0.0.1 ereg.wip3.adobe.com
O1 - Hosts: 127.0.0.1 activate-sea.adobe.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 activate-sjc0.adobe.com
O1 - Hosts: 127.0.0.1 adobe.activate.com
O1 - Hosts: 127.0.0.1 adobeereg.com
O1 - Hosts: 127.0.0.1 www.adobeereg.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 125.252.224.90
O1 - Hosts: 127.0.0.1 125.252.224.91
O1 - Hosts: 127.0.0.1 hl2rcv.adobe.com
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - K:\Utility Programs\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - k:\Utility Programs\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (Microsoft Web Test Recorder 10.0 Helper) - {DDA57003-0068-4ed2-9D32-4D1EC707D94D} - k:\Utility Programs\Microsoft Visual Studio 10.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll (Microsoft Corporation)
O2 - BHO: (Microsoft Web Test Recorder 9.0 Helper) - {E31CE47F-C268-41ba-897B-B415E613947D} - k:\Utility Programs\Microsoft Visual Studio 9.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO90.dll (Microsoft Corporation)
O4 - HKLM..\Run: [AVP] C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\avp.exe (Kaspersky Lab)
O4 - HKLM..\Run: [LogMeIn Hamachi Ui] K:\Program Files\Hamachi\hamachi-2-ui.exe (LogMeIn Inc.)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKCU..\Run: [Steam] H:\Program Files\Steam\steam.exe (Valve Corporation)
O4 - HKCU..\Run: [uTorrent] K:\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun_KL_notset = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8:64bit: - Extra context menu item: Add to Anti-Banner - C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\ie_banner_deny.htm ()
O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - K:\Utility Programs\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation)
O8:64bit: - Extra context menu item: Se&nd to OneNote - K:\Utility Programs\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\ie_banner_deny.htm ()
O8 - Extra context menu item: E&xport to Microsoft Excel - K:\Utility Programs\Microsoft Office\Office14\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Se&nd to OneNote - K:\Utility Programs\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9:64bit: - Extra Button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\x64\scieplgn.dll (Kaspersky Lab)
O9 - Extra Button: Web Anti-Virus statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\scieplgn.dll (Kaspersky Lab)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - K:\Utility Programs\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - K:\Utility Programs\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - k:\Utility Programs\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - k:\Utility Programs\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {16A017B9-6CB4-47C7-8E81-6E9396FAC2B6} http://72.68.67.14/NSIDVRCtrlX.ocx (IDVRCtrlX Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D} http://content.syste...ri_4.4.16.0.cab (SysInfo Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.138
O18:64bit: - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\KASPER~1.0\x64\kloehk.dll) - C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\x64\kloehk.dll (Kaspersky Lab ZAO)
O20:64bit: - AppInit_DLLs: (C:\PROGRA~2\KASPER~1.0\x64\adialhk.dll) - C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\x64\adialhk.dll (Kaspersky Lab ZAO)
O20 - AppInit_DLLs: (C:\PROGRA~2\KASPER~1.0\adialhk.dll) - C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\adialhk.dll (Kaspersky Lab ZAO)
O20 - AppInit_DLLs: (C:\PROGRA~2\KASPER~1.0\kloehk.dll) - C:\Program Files (x86)\Kaspersky Anti-Virus 6.0\kloehk.dll (Kaspersky Lab ZAO)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:64bit: - Winlogon\Notify\LBTWlgn: DllName - Reg Error: Key error. - c:\Program Files\Common Files\LogiShrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - K:\Utility Programs\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/08/14 16:39:08 | 000,000,000 | ---D | C] -- C:\Users\Omer\AppData\Local\EA Core
[2011/08/14 16:35:35 | 000,000,000 | ---D | C] -- C:\Users\Omer\AppData\Local\RCW
[2011/08/12 02:20:23 | 000,000,000 | ---D | C] -- C:\Users\Omer\AppData\Roaming\Auslogics
[2011/08/12 02:20:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics
[2011/08/12 00:01:09 | 000,000,000 | ---D | C] -- C:\Users\Omer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
[2011/08/12 00:01:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
[2011/08/12 00:01:07 | 000,000,000 | ---D | C] -- C:\Users\Omer\AppData\Roaming\Notepad++
[2011/08/12 00:01:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Notepad++
[2011/08/11 13:13:15 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2011/08/11 13:13:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD APP
[2011/08/11 13:12:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
[2011/08/11 13:09:59 | 000,485,376 | ---- | C] (AMD) -- C:\Windows\SysNative\atieclxx.exe
[2011/08/11 13:09:59 | 000,204,288 | ---- | C] (AMD) -- C:\Windows\SysNative\atiesrxx.exe
[2011/08/11 13:09:59 | 000,120,320 | ---- | C] (AMD) -- C:\Windows\SysNative\atitmm64.dll
[2011/08/11 13:09:59 | 000,016,384 | ---- | C] (AMD) -- C:\Windows\SysNative\atimuixx.dll
[2011/08/10 19:17:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Electronic Arts
[2011/08/10 14:07:01 | 000,000,000 | ---D | C] -- C:\Users\Omer\AppData\Roaming\Origin
[2011/08/09 11:02:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hamachi
[2011/08/07 14:24:34 | 000,000,000 | ---D | C] -- C:\Users\Omer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ManyCam
[2011/08/07 14:23:33 | 000,000,000 | ---D | C] -- C:\Users\Omer\AppData\Local\ManyCam
[2011/08/07 14:23:32 | 000,000,000 | ---D | C] -- C:\Users\Omer\AppData\Roaming\ManyCam
[2011/08/06 11:19:58 | 000,000,000 | ---D | C] -- C:\Users\Omer\Documents\Bioshock
[2011/08/06 11:19:58 | 000,000,000 | ---D | C] -- C:\Users\Omer\AppData\Roaming\Bioshock
[2011/08/06 10:59:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\2K Games
[2011/08/05 15:27:55 | 000,178,800 | ---- | C] (Sony DADC Austria AG.) -- C:\Windows\SysWow64\CmdLineExt_x64.dll
[2011/08/04 20:30:32 | 000,000,000 | ---D | C] -- C:\Users\Omer\Desktop\UT99
[2011/08/02 14:39:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2011/07/29 18:24:49 | 000,000,000 | ---D | C] -- C:\Users\Omer\Documents\Crayon Physics Deluxe
[2011/07/29 18:23:15 | 000,000,000 | ---D | C] -- C:\Users\Omer\AppData\Roaming\Crayon Physics Deluxe
[2011/07/27 13:30:06 | 000,000,000 | ---D | C] -- C:\Users\Omer\AppData\Roaming\Lazy 8 Studios
[2011/07/27 13:28:35 | 000,000,000 | ---D | C] -- C:\Users\Omer\AppData\Local\Lazy 8 Studios
[2011/07/27 13:22:56 | 000,000,000 | ---D | C] -- C:\Users\Omer\AppData\Roaming\Broken Rules
[2011/07/24 19:56:30 | 000,000,000 | ---D | C] -- C:\Users\Omer\AppData\Local\ArmA 2 Free
[2011/07/24 19:56:30 | 000,000,000 | ---D | C] -- C:\Users\Omer\Documents\ArmA 2
[2011/07/24 19:56:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive
[2011/07/24 19:56:03 | 000,000,000 | ---D | C] -- C:\Users\Omer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive
[2011/07/24 09:53:42 | 000,000,000 | ---D | C] -- C:\Users\Omer\AppData\Local\{2BCF0E69-DDAD-4C33-849A-CADFF3E75B89}
[3 C:\Users\Omer\Documents\*.tmp files -> C:\Users\Omer\Documents\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/08/14 16:05:53 | 000,000,600 | ---- | M] () -- C:\Users\Omer\AppData\Local\PUTTY.RND
[2011/08/14 14:40:34 | 000,000,087 | ---- | M] () -- C:\Users\Omer\mm.cfg
[2011/08/14 09:36:18 | 000,023,072 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/08/14 09:36:18 | 000,023,072 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/08/14 09:26:49 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/08/14 09:26:34 | 3220,037,632 | -HS- | M] () -- C:\hiberfil.sys
[2011/08/13 18:56:34 | 000,234,536 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.xtr
[2011/08/13 18:56:34 | 000,234,536 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2011/08/12 12:44:42 | 000,029,938 | ---- | M] () -- C:\Users\Omer\AppData\Local\Temp20.html
[2011/08/12 12:44:32 | 000,001,892 | ---- | M] () -- C:\Users\Omer\AppData\Local\Temp1.html
[2011/08/12 12:35:47 | 490,892,833 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2011/08/12 01:15:21 | 000,029,954 | ---- | M] () -- C:\Users\Omer\AppData\Local\Temp38.html
[2011/08/11 03:14:17 | 001,818,934 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011/08/11 03:14:17 | 001,078,026 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011/08/11 03:14:17 | 000,008,144 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2011/08/11 03:14:04 | 000,008,144 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011/08/10 14:06:55 | 000,000,672 | ---- | M] () -- C:\Users\Public\Desktop\Origin.lnk
[2011/08/06 10:59:17 | 000,000,995 | ---- | M] () -- C:\Users\Public\Desktop\Bioshock.lnk
[2011/08/05 15:34:08 | 000,170,966 | ---- | M] () -- C:\AnalysisLog.sr0
[2011/08/05 15:27:55 | 000,178,800 | ---- | M] (Sony DADC Austria AG.) -- C:\Windows\SysWow64\CmdLineExt_x64.dll
[2011/08/04 15:58:39 | 000,234,536 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.ex0
[2011/08/02 14:39:35 | 000,002,545 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2011/07/27 13:22:55 | 000,004,096 | ---- | M] () -- C:\Windows\d3dx.dat
[2011/07/26 20:44:28 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_WinUsb_01007.Wdf
[3 C:\Users\Omer\Documents\*.tmp files -> C:\Users\Omer\Documents\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/08/12 12:44:42 | 000,029,938 | ---- | C] () -- C:\Users\Omer\AppData\Local\Temp20.html
[2011/08/12 01:15:21 | 000,029,954 | ---- | C] () -- C:\Users\Omer\AppData\Local\Temp38.html
[2011/08/11 13:09:59 | 001,133,888 | ---- | C] () -- C:\Windows\SysWow64\atiumdva.cap
[2011/08/11 13:09:59 | 001,133,888 | ---- | C] () -- C:\Windows\SysNative\atiumd6a.cap
[2011/08/11 13:09:59 | 000,234,142Q | ---- | C] () -- C:\Windows\SysNative\atiicdxx.dat
[2011/08/11 13:09:59 | 000,172,040 | ---- | C] () -- C:\Windows\SysNative\atiapfxx.blb
[2011/08/11 13:09:59 | 000,033,342 | ---- | C] () -- C:\Windows\atiogl.xml
[2011/08/06 10:59:17 | 000,000,995 | ---- | C] () -- C:\Users\Public\Desktop\Bioshock.lnk
[2011/08/05 15:33:34 | 000,170,966 | ---- | C] () -- C:\AnalysisLog.sr0
[2011/07/27 13:22:55 | 000,004,096 | ---- | C] () -- C:\Windows\d3dx.dat
[2011/07/26 20:44:28 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_WinUsb_01007.Wdf
[2011/06/27 16:23:20 | 000,053,760 | ---- | C] () -- C:\Windows\SysWow64\OVDecode.dll
[2011/06/22 23:13:19 | 000,000,023 | ---- | C] () -- C:\Windows\BlendSettings.ini
[2011/06/04 18:52:10 | 000,000,054 | ---- | C] () -- C:\Windows\Composer.INI
[2011/05/25 23:44:19 | 000,001,536 | ---- | C] () -- C:\Users\Omer\AppData\Roaming\Sketchpad 5 Preferences.dat
[2011/05/18 14:20:10 | 000,003,929 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2011/05/11 22:00:45 | 000,446,258 | ---- | C] () -- C:\Windows\AutoKMS.exe
[2011/04/10 15:32:02 | 000,000,600 | ---- | C] () -- C:\Users\Omer\AppData\Local\PUTTY.RND
[2011/04/10 15:19:45 | 000,000,840 | ---- | C] () -- C:\Users\Omer\AppData\Local\omerg-ssh-private.ppk
[2011/04/09 18:55:28 | 000,179,261 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2011/01/09 21:45:56 | 000,003,584 | ---- | C] () -- C:\Users\Omer\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/12/26 15:47:08 | 000,794,408 | ---- | C] () -- C:\Windows\SysWow64\Pbsvc.exe
[2010/12/13 16:15:28 | 000,001,411 | ---- | C] () -- C:\Windows\seRapid.INI
[2010/11/21 22:34:49 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2010/10/04 16:43:54 | 002,601,752 | ---- | C] () -- C:\Windows\SysWow64\pbsvc_moh.exe
[2010/09/26 12:18:15 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2010/09/24 18:08:11 | 000,000,092 | ---- | C] () -- C:\Users\Omer\AppData\Local\fusioncache.dat
[2010/09/18 17:07:43 | 000,234,536 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2010/08/10 16:27:50 | 002,427,248 | ---- | C] () -- C:\Windows\SysWow64\pbsvc_heroes.exe
[2010/08/04 17:17:42 | 000,000,411 | ---- | C] () -- C:\Windows\hpwmdl14.dat.temp
[2010/07/22 11:07:13 | 000,241,919 | ---- | C] () -- C:\Windows\hpwins14.dat
[2010/07/22 11:07:13 | 000,000,411 | ---- | C] () -- C:\Windows\hpwmdl14.dat
[2010/07/13 15:33:28 | 000,000,320 | ---- | C] () -- C:\Windows\game.ini
[2010/07/09 22:00:32 | 000,041,872 | ---- | C] () -- C:\Windows\SysWow64\xfcodec.dll
[2010/06/26 12:35:35 | 002,434,856 | ---- | C] () -- C:\Windows\SysWow64\pbsvc_bc2.exe
[2010/06/26 12:35:35 | 000,075,136 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2010/06/12 12:01:52 | 000,007,606 | ---- | C] () -- C:\Users\Omer\AppData\Local\resmon.resmoncfg
[2010/06/07 16:04:25 | 000,000,056 | -H-- | C] () -- C:\Windows\SysWow64\ezsidmv.dat
[2010/06/07 15:28:48 | 000,301,936 | -H-- | C] () -- C:\Windows\SysWow64\mlfcache.dat
[2010/05/30 19:45:34 | 000,000,172 | ---- | C] () -- C:\Windows\ODBC.INI
[2010/05/27 17:54:19 | 000,008,144 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2010/05/26 13:54:17 | 000,001,892 | ---- | C] () -- C:\Users\Omer\AppData\Local\Temp1.html
[2009/07/14 08:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009/07/14 05:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009/07/14 05:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009/07/14 03:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009/07/14 02:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009/07/14 00:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009/06/11 00:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2002/09/18 00:45:00 | 000,119,808 | ---- | C] () -- C:\Windows\lsb_un20.exe

========== LOP Check ==========

[2011/08/05 16:27:39 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\.minecraft
[2011/04/21 17:13:11 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\.Nitrous
[2011/04/16 00:32:35 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\Atari
[2011/08/10 22:44:27 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\Audacity
[2011/08/12 02:20:23 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\Auslogics
[2011/08/14 13:12:17 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\Bioshock
[2010/12/30 22:07:27 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\Braid
[2011/07/27 13:22:56 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\Broken Rules
[2011/05/30 23:17:36 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\ChaosPro
[2011/05/30 23:21:33 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\ChaosPro 4.0
[2010/08/02 16:55:11 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\CodeRush for VS .NET
[2011/07/29 18:39:10 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\Crayon Physics Deluxe
[2010/06/25 09:43:20 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\DAEMON Tools Lite
[2011/04/02 09:05:36 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\DarksporeData
[2010/09/25 21:53:34 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\FileZilla
[2010/06/17 14:48:48 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\[email protected]
[2010/10/16 21:59:24 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\gamesport
[2011/03/14 19:36:09 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\gtk-2.0
[2011/07/27 13:30:06 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\Lazy 8 Studios
[2010/05/31 17:53:38 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\Leadertech
[2011/05/03 18:45:13 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\LolClient
[2011/08/07 14:24:44 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\ManyCam
[2010/09/18 12:49:47 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\MotioninJoy
[2010/10/18 21:38:13 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\mts
[2010/06/09 15:08:25 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\My Games
[2011/08/12 00:01:56 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\Notepad++
[2010/12/26 00:02:36 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\OnLive App
[2011/08/10 14:07:01 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\Origin
[2011/03/14 21:06:02 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\Planetside Software
[2011/04/30 14:51:45 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\RayV
[2011/05/14 10:00:07 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\RIFT
[2011/04/29 18:35:12 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\Screaming Bee
[2011/01/24 15:38:58 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\Subversion
[2011/04/17 18:29:36 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\SystemRequirementsLab
[2011/04/12 16:27:27 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\TeamViewer
[2011/06/09 10:36:55 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\TerrariaWorldViewer
[2011/02/26 11:48:45 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\The Creative Assembly
[2010/09/24 18:08:29 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\Turbine
[2011/01/16 13:38:17 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\Ubisoft
[2011/03/14 21:06:03 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\uk.co.planetside
[2011/05/30 22:36:02 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\Ultra Fractal 5
[2010/09/27 21:59:24 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\Unity
[2011/08/14 20:52:48 | 000,000,000 | ---D | M] -- C:\Users\Omer\AppData\Roaming\uTorrent
[2011/03/25 04:30:06 | 000,032,620 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



< End of report >


I'll hope you'll be able to help me.
Thanks, Omer.

Edited by SweetTech, 15 August 2011 - 11:32 AM.
removed code tags.--ST

  • 0

Advertisements







Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP