Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Can't remove 7picUploader, ginoplayer


  • Please log in to reply

#1
Souley16

Souley16

    Member

  • Member
  • PipPip
  • 23 posts
I've tried a number of ways to remove these 2 programs but they keep coming back. I've used uninstaller which helped me remove the programs and then did a registry scan to remove any traces. My guess is that there is another program on my pc that keeps reinstalling the 2 culprits. I also ran hijack this and checked the log but I can't seem to find anything, the executable files are gpl.exe and 7p.exe (did a search online and found mixed results about the legitimacy of the two files). I would glady appreciate it if someone helped me get rid of them

Here is the OTL log:

OTL logfile created on: 9/16/2011 1:04:41 PM - Run 1
OTL by OldTimer - Version 3.2.28.0 Folder = C:\Users\PSD\Desktop\Security, Viruses
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

4.00 Gb Total Physical Memory | 1.27 Gb Available Physical Memory | 31.68% Memory free
8.00 Gb Paging File | 4.62 Gb Available in Paging File | 57.82% Paging File free
Paging file location(s): e:\pagefile.sys 0 0 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 58.50 Gb Total Space | 6.79 Gb Free Space | 11.60% Space Free | Partition Type: NTFS
Drive D: | 94.82 Gb Total Space | 22.68 Gb Free Space | 23.92% Space Free | Partition Type: NTFS
Drive E: | 853.38 Gb Total Space | 8.90 Gb Free Space | 1.04% Space Free | Partition Type: NTFS
Drive G: | 87.90 Gb Total Space | 41.45 Gb Free Space | 47.16% Space Free | Partition Type: NTFS
Drive H: | 96.68 Gb Total Space | 28.66 Gb Free Space | 29.65% Space Free | Partition Type: NTFS
Drive L: | 309.57 Gb Total Space | 38.32 Gb Free Space | 12.38% Space Free | Partition Type: NTFS
Drive M: | 309.76 Gb Total Space | 28.08 Gb Free Space | 9.07% Space Free | Partition Type: NTFS
Drive O: | 312.18 Gb Total Space | 2.82 Gb Free Space | 0.90% Space Free | Partition Type: NTFS
Drive R: | 698.64 Gb Total Space | 10.73 Gb Free Space | 1.54% Space Free | Partition Type: NTFS

Computer Name: PSD-PC | User Name: PSD | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/09/16 12:54:46 | 000,581,632 | ---- | M] (OldTimer Tools) -- C:\Users\PSD\Desktop\Security, Viruses\OTL.exe
PRC - [2011/09/15 22:19:42 | 000,101,774 | ---- | M] () -- C:\Users\PSD\AppData\Local\Temp\ex.exe
PRC - [2011/09/14 01:04:01 | 000,789,392 | ---- | M] (Lavasoft) -- C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
PRC - [2011/09/14 01:04:00 | 001,181,328 | ---- | M] (Lavasoft) -- C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe
PRC - [2011/09/12 22:00:24 | 000,057,857 | ---- | M] () -- C:\Users\PSD\AppData\Roaming\WS32.exe
PRC - [2011/09/12 22:00:24 | 000,057,857 | ---- | M] () -- C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WS32.exe
PRC - [2011/09/12 21:19:32 | 000,061,952 | ---- | M] () -- C:\Users\PSD\AppData\Roaming\wsock32.exe
PRC - [2011/09/12 21:19:32 | 000,061,952 | ---- | M] () -- C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\wsock32.exe
PRC - [2011/09/12 21:19:10 | 000,028,672 | ---- | M] () -- C:\Users\PSD\AppData\Local\Temp\sevenps.exe
PRC - [2011/09/12 01:15:25 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2011/09/08 00:29:46 | 000,140,952 | ---- | M] (Google Inc.) -- C:\Users\PSD\AppData\Local\Google\Update\1.3.21.69\GoogleCrashHandler.exe
PRC - [2011/09/07 16:03:56 | 000,028,672 | ---- | M] () -- C:\Users\PSD\AppData\Local\Temp\gps.exe
PRC - [2011/08/26 22:56:26 | 000,639,864 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe
PRC - [2011/08/25 05:08:58 | 000,020,480 | ---- | M] () -- C:\Users\PSD\AppData\Local\Temp\firefox.exe
PRC - [2011/08/03 03:31:42 | 000,379,496 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2011/07/14 08:21:10 | 000,108,032 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
PRC - [2011/07/06 19:52:38 | 000,449,584 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2011/07/06 19:52:38 | 000,366,640 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2011/04/21 16:54:40 | 000,402,832 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\ASCTray.exe
PRC - [2011/04/21 16:54:38 | 003,366,800 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\ASC.exe
PRC - [2011/04/21 16:54:38 | 000,801,680 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\PMonitor.exe
PRC - [2011/04/21 16:54:38 | 000,352,656 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\ASCService.exe
PRC - [2011/04/10 17:29:14 | 001,646,936 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Smart Defrag 2\SmartDefrag.exe
PRC - [2011/03/31 11:45:18 | 000,375,872 | ---- | M] (Ralink Technology, Corp.) -- C:\Program Files (x86)\Ralink\Common\RaRegistry.exe
PRC - [2011/03/30 09:12:18 | 000,310,944 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
PRC - [2011/03/23 11:42:52 | 001,516,888 | ---- | M] (Logitech©) -- C:\Program Files (x86)\Logitech\G930\G930.exe
PRC - [2011/02/24 15:46:26 | 000,427,864 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Game Booster\gbtray.exe
PRC - [2010/03/04 23:38:00 | 000,071,096 | ---- | M] () -- C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe
PRC - [2010/03/03 19:39:40 | 002,598,760 | ---- | M] (Symantec Corporation) -- C:\Program Files (x86)\Norton Ghost\Agent\VProTray.exe
PRC - [2010/03/03 19:39:38 | 004,590,432 | ---- | M] (Symantec Corporation) -- C:\Program Files (x86)\Norton Ghost\Agent\VProSvc.exe
PRC - [2010/02/16 07:37:36 | 001,528,616 | ---- | M] (Cisco Systems, Inc.) -- C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe
PRC - [2010/02/02 17:31:56 | 000,279,296 | ---- | M] (Motorola) -- C:\Program Files (x86)\Motorola\MotoConnectService\MotoConnect.exe
PRC - [2010/01/27 11:37:22 | 000,091,392 | ---- | M] () -- C:\Program Files (x86)\Motorola\MotoConnectService\MotoConnectService.exe
PRC - [2010/01/03 13:27:58 | 000,026,248 | ---- | M] () -- C:\Program Files (x86)\TCB Networks\StrokeIt\strokeit.exe
PRC - [2009/09/11 22:14:54 | 000,026,826 | ---- | M] () -- C:\Program Files\Sun\SDK\lib\appservService.exe
PRC - [2009/09/11 22:14:37 | 000,139,264 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Sun\SDK\jdk\bin\java.exe
PRC - [2009/09/04 01:54:25 | 000,066,872 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2009/08/29 02:00:12 | 000,966,656 | ---- | M] () -- C:\Users\PSD\Local Settings\Apps\F.lux\flux.exe
PRC - [2009/07/20 04:00:00 | 000,077,824 | ---- | M] () -- C:\Program Files\Logitech\SetPoint\x86\SetPoint32.exe
PRC - [2009/07/06 08:59:38 | 000,020,480 | ---- | M] (AG Interactive) -- C:\Program Files (x86)\AGI\core\3.1\AGCoreService.exe
PRC - [2009/06/05 12:12:44 | 000,315,392 | -H-- | M] (DeviceVM, Inc.) -- C:\ASUS.SYS\config\DVMExportService.exe
PRC - [2009/03/23 10:47:10 | 003,458,376 | ---- | M] (Webshots.com) -- C:\Program Files (x86)\Webshots\3.1.5.7613\Webshots.scr
PRC - [2009/03/12 21:18:48 | 000,602,624 | ---- | M] () -- C:\Program Files (x86)\Everything\Everything.exe
PRC - [2009/01/26 15:31:10 | 001,153,368 | ---- | M] (Safer Networking Ltd.) -- C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
PRC - [2008/06/24 02:26:16 | 000,668,912 | ---- | M] () -- C:\Program Files (x86)\Dell V305\dldtmon.exe
PRC - [2008/05/02 00:15:46 | 000,015,872 | ---- | M] () -- C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe
PRC - [2008/03/18 20:31:20 | 004,742,184 | ---- | M] (Yahoo! Inc.) -- C:\Program Files (x86)\Yahoo!\Widgets\YahooWidgets.exe
PRC - [2008/01/27 22:02:08 | 004,333,568 | ---- | M] (Gabest) -- C:\Users\PSD\Desktop\mplayerc.exe
PRC - [2008/01/20 03:05:37 | 000,217,088 | ---- | M] (PowerISO Computing, Inc.) -- C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
PRC - [2006/03/23 01:13:46 | 001,591,808 | ---- | M] (YourWare Solutions ™) -- C:\Program Files (x86)\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe


========== Modules (No Company Name) ==========

MOD - [2011/09/15 22:20:16 | 000,011,264 | ---- | M] () -- C:\Users\PSD\AppData\Local\Temp\nsv3DFC.tmp\System.dll
MOD - [2011/09/15 22:20:16 | 000,011,264 | ---- | M] () -- C:\Users\PSD\AppData\Local\Temp\nsv3DFB.tmp\System.dll
MOD - [2011/09/15 22:20:13 | 000,011,264 | ---- | M] () -- C:\Users\PSD\AppData\Local\Temp\nsk318C.tmp\System.dll
MOD - [2011/09/15 22:20:13 | 000,011,264 | ---- | M] () -- C:\Users\PSD\AppData\Local\Temp\nsa319C.tmp\System.dll
MOD - [2011/09/15 22:19:44 | 000,011,264 | ---- | M] () -- C:\Users\PSD\AppData\Local\Temp\nsvBEED.tmp\System.dll
MOD - [2011/09/15 22:19:42 | 000,101,774 | ---- | M] () -- C:\Users\PSD\AppData\Local\Temp\ex.exe
MOD - [2011/09/12 22:00:24 | 000,057,857 | ---- | M] () -- C:\Users\PSD\AppData\Roaming\WS32.exe
MOD - [2011/09/12 22:00:24 | 000,057,857 | ---- | M] () -- C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WS32.exe
MOD - [2011/09/12 21:19:32 | 000,061,952 | ---- | M] () -- C:\Users\PSD\AppData\Roaming\wsock32.exe
MOD - [2011/09/12 21:19:32 | 000,061,952 | ---- | M] () -- C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\wsock32.exe
MOD - [2011/09/12 21:19:10 | 000,028,672 | ---- | M] () -- C:\Users\PSD\AppData\Local\Temp\sevenps.exe
MOD - [2011/09/12 01:15:25 | 001,833,944 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2011/09/07 16:03:56 | 000,028,672 | ---- | M] () -- C:\Users\PSD\AppData\Local\Temp\gps.exe
MOD - [2011/08/25 05:08:58 | 000,020,480 | ---- | M] () -- C:\Users\PSD\AppData\Local\Temp\firefox.exe
MOD - [2011/08/15 11:16:18 | 006,277,280 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
MOD - [2011/08/03 03:31:28 | 000,255,592 | ---- | M] () -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\Nv3DVStreaming.dll
MOD - [2011/07/14 08:21:22 | 001,712,128 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libvorbis_plugin.dll
MOD - [2011/07/14 08:21:22 | 001,137,664 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libxml_plugin.dll
MOD - [2011/07/14 08:21:22 | 001,108,992 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libtaglib_plugin.dll
MOD - [2011/07/14 08:21:22 | 000,368,640 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libtheora_plugin.dll
MOD - [2011/07/14 08:21:22 | 000,325,120 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libswscale_plugin.dll
MOD - [2011/07/14 08:21:22 | 000,078,848 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libzip_plugin.dll
MOD - [2011/07/14 08:21:22 | 000,046,592 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libwaveout_plugin.dll
MOD - [2011/07/14 08:21:22 | 000,040,448 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libyuy2_i420_plugin.dll
MOD - [2011/07/14 08:21:22 | 000,038,912 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libvout_wrapper_plugin.dll
MOD - [2011/07/14 08:21:22 | 000,036,864 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libyuy2_i422_plugin.dll
MOD - [2011/07/14 08:21:22 | 000,036,864 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libwav_plugin.dll
MOD - [2011/07/14 08:21:22 | 000,033,792 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libtta_plugin.dll
MOD - [2011/07/14 08:21:22 | 000,032,256 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libtrivial_channel_mixer_plugin.dll
MOD - [2011/07/14 08:21:22 | 000,031,232 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libyuvp_plugin.dll
MOD - [2011/07/14 08:21:22 | 000,031,232 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libugly_resampler_plugin.dll
MOD - [2011/07/14 08:21:20 | 011,496,448 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libqt4_plugin.dll
MOD - [2011/07/14 08:21:20 | 002,169,856 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libskins2_plugin.dll
MOD - [2011/07/14 08:21:20 | 001,013,248 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libschroedinger_plugin.dll
MOD - [2011/07/14 08:21:20 | 000,130,048 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libspeex_plugin.dll
MOD - [2011/07/14 08:21:20 | 000,080,896 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libsap_plugin.dll
MOD - [2011/07/14 08:21:20 | 000,052,224 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libreal_plugin.dll
MOD - [2011/07/14 08:21:20 | 000,036,864 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libsmf_plugin.dll
MOD - [2011/07/14 08:21:20 | 000,036,864 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libscaletempo_plugin.dll
MOD - [2011/07/14 08:21:20 | 000,036,864 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\librawvid_plugin.dll
MOD - [2011/07/14 08:21:20 | 000,034,304 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libstream_filter_rar_plugin.dll
MOD - [2011/07/14 08:21:20 | 000,033,792 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libsimple_channel_mixer_plugin.dll
MOD - [2011/07/14 08:21:20 | 000,031,744 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libscale_plugin.dll
MOD - [2011/07/14 08:21:20 | 000,031,232 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libstream_filter_record_plugin.dll
MOD - [2011/07/14 08:21:18 | 001,231,872 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libmkv_plugin.dll
MOD - [2011/07/14 08:21:18 | 000,237,568 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libpng_plugin.dll
MOD - [2011/07/14 08:21:18 | 000,194,048 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libmp4_plugin.dll
MOD - [2011/07/14 08:21:18 | 000,128,000 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libmpgatofixed32_plugin.dll
MOD - [2011/07/14 08:21:18 | 000,108,032 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libplaylist_plugin.dll
MOD - [2011/07/14 08:21:18 | 000,093,184 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libmpc_plugin.dll
MOD - [2011/07/14 08:21:18 | 000,089,600 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libogg_plugin.dll
MOD - [2011/07/14 08:21:18 | 000,040,960 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libnuv_plugin.dll
MOD - [2011/07/14 08:21:18 | 000,038,912 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libmono_plugin.dll
MOD - [2011/07/14 08:21:18 | 000,037,888 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libpodcast_plugin.dll
MOD - [2011/07/14 08:21:18 | 000,037,888 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libmpeg_audio_plugin.dll
MOD - [2011/07/14 08:21:16 | 001,776,128 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\liblibass_plugin.dll
MOD - [2011/07/14 08:21:16 | 001,085,440 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\liblive555_plugin.dll
MOD - [2011/07/14 08:21:16 | 000,338,432 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\liblua_plugin.dll
MOD - [2011/07/14 08:21:16 | 000,135,680 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libi420_rgb_sse2_plugin.dll
MOD - [2011/07/14 08:21:16 | 000,073,728 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libi420_rgb_mmx_plugin.dll
MOD - [2011/07/14 08:21:16 | 000,052,224 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libi420_rgb_plugin.dll
MOD - [2011/07/14 08:21:16 | 000,048,640 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libi420_yuy2_sse2_plugin.dll
MOD - [2011/07/14 08:21:16 | 000,046,592 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libhotkeys_plugin.dll
MOD - [2011/07/14 08:21:16 | 000,046,080 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libi422_yuy2_sse2_plugin.dll
MOD - [2011/07/14 08:21:16 | 000,039,936 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libi420_yuy2_mmx_plugin.dll
MOD - [2011/07/14 08:21:16 | 000,038,400 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libi420_yuy2_plugin.dll
MOD - [2011/07/14 08:21:16 | 000,037,888 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libi422_yuy2_mmx_plugin.dll
MOD - [2011/07/14 08:21:16 | 000,036,352 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libi422_yuy2_plugin.dll
MOD - [2011/07/14 08:21:16 | 000,035,840 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libmediadirs_plugin.dll
MOD - [2011/07/14 08:21:16 | 000,035,840 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\liblpcm_plugin.dll
MOD - [2011/07/14 08:21:16 | 000,033,792 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libmemcpymmxext_plugin.dll
MOD - [2011/07/14 08:21:16 | 000,033,792 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libglobalhotkeys_plugin.dll
MOD - [2011/07/14 08:21:16 | 000,032,768 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libi422_i420_plugin.dll
MOD - [2011/07/14 08:21:16 | 000,032,768 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libgrey_yuv_plugin.dll
MOD - [2011/07/14 08:21:14 | 000,652,800 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libfreetype_plugin.dll
MOD - [2011/07/14 08:21:14 | 000,309,760 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libfaad_plugin.dll
MOD - [2011/07/14 08:21:14 | 000,265,216 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libflac_plugin.dll
MOD - [2011/07/14 08:21:14 | 000,258,048 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libfluidsynth_plugin.dll
MOD - [2011/07/14 08:21:14 | 000,231,424 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libdvdnav_plugin.dll
MOD - [2011/07/14 08:21:14 | 000,210,944 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libdshow_plugin.dll
MOD - [2011/07/14 08:21:14 | 000,178,176 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libdtstofloat32_plugin.dll
MOD - [2011/07/14 08:21:14 | 000,067,072 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libdirectx_plugin.dll
MOD - [2011/07/14 08:21:14 | 000,061,440 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libdirect3d_plugin.dll
MOD - [2011/07/14 08:21:14 | 000,041,984 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libflacsys_plugin.dll
MOD - [2011/07/14 08:21:14 | 000,041,472 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libes_plugin.dll
MOD - [2011/07/14 08:21:14 | 000,039,424 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libfilesystem_plugin.dll
MOD - [2011/07/14 08:21:14 | 000,039,424 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libdts_plugin.dll
MOD - [2011/07/14 08:21:14 | 000,037,888 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libexport_plugin.dll
MOD - [2011/07/14 08:21:14 | 000,037,376 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libfake_plugin.dll
MOD - [2011/07/14 08:21:14 | 000,032,256 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libdtstospdif_plugin.dll
MOD - [2011/07/14 08:21:14 | 000,032,256 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libdolby_surround_decoder_plugin.dll
MOD - [2011/07/14 08:21:14 | 000,031,744 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libfloat32_mixer_plugin.dll
MOD - [2011/07/14 08:21:14 | 000,031,232 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libdrawable_plugin.dll
MOD - [2011/07/14 08:21:12 | 008,248,320 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libavcodec_plugin.dll
MOD - [2011/07/14 08:21:12 | 000,088,064 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libavi_plugin.dll
MOD - [2011/07/14 08:21:12 | 000,072,192 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libasf_plugin.dll
MOD - [2011/07/14 08:21:12 | 000,057,856 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libblend_plugin.dll
MOD - [2011/07/14 08:21:12 | 000,046,592 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libaout_directx_plugin.dll
MOD - [2011/07/14 08:21:12 | 000,045,568 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libaraw_plugin.dll
MOD - [2011/07/14 08:21:12 | 000,041,472 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libaudio_format_plugin.dll
MOD - [2011/07/14 08:21:12 | 000,034,304 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libcdg_plugin.dll
MOD - [2011/07/14 08:21:12 | 000,033,280 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libaes3_plugin.dll
MOD - [2011/07/14 08:21:12 | 000,032,768 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libconverter_fixed_plugin.dll
MOD - [2011/07/14 08:21:10 | 002,263,552 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\libvlccore.dll
MOD - [2011/07/14 08:21:10 | 000,108,032 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
MOD - [2011/07/14 08:21:10 | 000,101,376 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\libvlc.dll
MOD - [2011/07/14 08:21:10 | 000,090,112 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libaccess_bd_plugin.dll
MOD - [2011/07/14 08:21:10 | 000,065,536 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\liba52tofloat32_plugin.dll
MOD - [2011/07/14 08:21:10 | 000,036,352 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\liba52_plugin.dll
MOD - [2011/07/14 08:21:10 | 000,030,720 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\liba52tospdif_plugin.dll
MOD - [2011/04/21 16:54:42 | 000,561,184 | ---- | M] () -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\sqlite3.dll
MOD - [2011/04/21 16:54:42 | 000,267,664 | ---- | M] () -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\Scan.dll
MOD - [2011/04/21 16:54:40 | 000,596,368 | ---- | M] () -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\DiskMap.dll
MOD - [2011/04/21 16:54:40 | 000,347,024 | ---- | M] () -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\madexcept_.bpl
MOD - [2011/04/21 16:54:40 | 000,179,088 | ---- | M] () -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\madbasic_.bpl
MOD - [2011/04/21 16:54:40 | 000,055,184 | ---- | M] () -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\NtfsData.dll
MOD - [2011/04/21 16:54:40 | 000,046,480 | ---- | M] () -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\maddisAsm_.bpl
MOD - [2011/04/10 17:28:46 | 000,047,960 | ---- | M] () -- C:\Program Files (x86)\IObit\Smart Defrag 2\NtfsData.dll
MOD - [2011/02/24 15:47:48 | 000,511,384 | ---- | M] () -- C:\Program Files (x86)\IObit\Game Booster\sqlite3.dll
MOD - [2010/01/21 01:34:10 | 008,793,952 | ---- | M] () -- C:\Program Files (x86)\Microsoft Office\Office14\1033\GrooveIntlResource.dll
MOD - [2010/01/09 20:18:18 | 004,254,560 | ---- | M] () -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
MOD - [2010/01/03 13:28:02 | 000,016,520 | ---- | M] () -- C:\Program Files (x86)\TCB Networks\StrokeIt\Plugins\exec.dll
MOD - [2010/01/03 13:28:02 | 000,013,448 | ---- | M] () -- C:\Program Files (x86)\TCB Networks\StrokeIt\Plugins\msg.dll
MOD - [2010/01/03 13:28:02 | 000,012,936 | ---- | M] () -- C:\Program Files (x86)\TCB Networks\StrokeIt\Plugins\OSD.dll
MOD - [2010/01/03 13:28:00 | 000,018,056 | ---- | M] () -- C:\Program Files (x86)\TCB Networks\StrokeIt\Plugins\keys.dll
MOD - [2010/01/03 13:28:00 | 000,016,520 | ---- | M] () -- C:\Program Files (x86)\TCB Networks\StrokeIt\Plugins\win.dll
MOD - [2010/01/03 13:28:00 | 000,013,960 | ---- | M] () -- C:\Program Files (x86)\TCB Networks\StrokeIt\Plugins\utilities.dll
MOD - [2010/01/03 13:28:00 | 000,013,448 | ---- | M] () -- C:\Program Files (x86)\TCB Networks\StrokeIt\Plugins\multimon.dll
MOD - [2010/01/03 13:28:00 | 000,010,376 | ---- | M] () -- C:\Program Files (x86)\TCB Networks\StrokeIt\Plugins\siControl.dll
MOD - [2010/01/03 13:27:58 | 000,026,248 | ---- | M] () -- C:\Program Files (x86)\TCB Networks\StrokeIt\strokeit.exe
MOD - [2010/01/03 13:27:58 | 000,011,912 | ---- | M] () -- C:\Program Files (x86)\TCB Networks\StrokeIt\mhook.dll
MOD - [2009/09/15 18:20:52 | 000,177,152 | ---- | M] () -- C:\Program Files (x86)\IObit\Smart Defrag 2\madbasic_.bpl
MOD - [2009/09/15 18:20:52 | 000,177,152 | ---- | M] () -- C:\Program Files (x86)\IObit\Game Booster\madbasic_.bpl
MOD - [2009/09/15 18:20:52 | 000,044,544 | ---- | M] () -- C:\Program Files (x86)\IObit\Smart Defrag 2\maddisAsm_.bpl
MOD - [2009/09/15 18:20:52 | 000,044,544 | ---- | M] () -- C:\Program Files (x86)\IObit\Game Booster\maddisAsm_.bpl
MOD - [2009/09/15 18:20:46 | 000,345,088 | ---- | M] () -- C:\Program Files (x86)\IObit\Smart Defrag 2\madexcept_.bpl
MOD - [2009/09/15 18:20:46 | 000,345,088 | ---- | M] () -- C:\Program Files (x86)\IObit\Game Booster\madexcept_.bpl
MOD - [2009/08/29 02:00:12 | 000,966,656 | ---- | M] () -- C:\Users\PSD\Local Settings\Apps\F.lux\flux.exe
MOD - [2009/07/20 04:00:00 | 000,077,824 | ---- | M] () -- C:\Program Files\Logitech\SetPoint\x86\SetPoint32.exe
MOD - [2009/03/12 21:18:48 | 000,602,624 | ---- | M] () -- C:\Program Files (x86)\Everything\Everything.exe
MOD - [2008/06/24 02:26:16 | 000,668,912 | ---- | M] () -- C:\Program Files (x86)\Dell V305\dldtmon.exe
MOD - [2008/05/02 00:15:46 | 000,015,872 | ---- | M] () -- C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe
MOD - [2008/05/02 00:15:35 | 000,004,608 | ---- | M] () -- C:\Program Files (x86)\Unlocker\UnlockerHook.dll
MOD - [2008/03/18 20:21:48 | 000,094,208 | ---- | M] () -- C:\Program Files (x86)\Yahoo!\Widgets\jsd.dll
MOD - [2008/03/18 20:21:20 | 000,512,000 | ---- | M] () -- C:\Program Files (x86)\Yahoo!\Widgets\js32.dll
MOD - [2008/03/18 18:05:05 | 000,782,336 | ---- | M] () -- C:\Program Files (x86)\Dell V305\dldtdrs.dll
MOD - [2008/03/18 18:04:20 | 000,380,928 | ---- | M] () -- C:\Program Files (x86)\Dell V305\dldtscw.dll
MOD - [2008/02/19 18:25:56 | 000,081,920 | ---- | M] () -- C:\Program Files (x86)\Dell V305\dldtcaps.dll
MOD - [2008/02/19 18:18:58 | 000,151,552 | ---- | M] () -- C:\Program Files (x86)\Dell V305\dldtmonr.dll
MOD - [2008/01/21 22:05:12 | 000,077,906 | ---- | M] () -- C:\Program Files (x86)\Dell V305\DLDTcfg.dll
MOD - [2008/01/08 18:50:10 | 000,349,147 | ---- | M] () -- C:\Program Files (x86)\Yahoo!\Widgets\sqlite3.dll
MOD - [2007/11/13 15:13:09 | 000,069,632 | ---- | M] () -- C:\Program Files (x86)\Dell V305\dldtcnv4.dll
MOD - [2007/05/29 03:39:08 | 000,589,824 | ---- | M] () -- C:\Program Files (x86)\Dell V305\dldtdatr.dll


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2011/06/26 13:53:42 | 000,376,352 | ---- | M] (Soluto) [Auto | Running] -- C:\Program Files\Soluto\SolutoService.exe -- (SolutoService)
SRV:64bit: - [2009/09/11 22:14:54 | 000,026,826 | ---- | M] () [Auto | Running] -- C:\Program Files\Sun\SDK\lib\appservService.exe -- (AppServer9PE)
SRV:64bit: - [2009/08/18 03:36:20 | 000,203,264 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2009/07/20 12:36:14 | 000,160,784 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV:64bit: - [2009/07/13 21:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV:64bit: - [2009/07/09 18:48:28 | 000,033,448 | ---- | M] () [Auto | Stopped] -- C:\Windows\SysNative\spool\DRIVERS\x64\3\\dldtserv.exe -- (dldtCATSCustConnectService)
SRV:64bit: - [2008/08/06 11:34:54 | 000,291,296 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\Macrium\Reflect\ReflectService.exe -- (ReflectService)
SRV:64bit: - [2008/07/10 18:21:14 | 000,530,944 | ---- | M] (CSR, plc) [Auto | Running] -- C:\Windows\SysNative\HFGService.dll -- (HFGService)
SRV:64bit: - [2008/02/25 12:38:24 | 001,045,232 | ---- | M] ( ) [Auto | Running] -- C:\Windows\SysNative\dldtcoms.exe -- (dldt_device)
SRV - [2011/09/14 01:04:00 | 001,181,328 | ---- | M] (Lavasoft) [Auto | Running] -- C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service)
SRV - [2011/08/05 01:03:53 | 000,651,720 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2011/08/03 07:50:00 | 002,255,464 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe -- (nvUpdatusService)
SRV - [2011/08/03 03:31:42 | 000,379,496 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2011/07/18 11:42:27 | 000,147,336 | ---- | M] (LogMeIn, Inc.) [Auto | Running] -- C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe -- (LMIMaint)
SRV - [2011/07/18 11:42:19 | 000,375,176 | ---- | M] (LogMeIn, Inc.) [Auto | Running] -- C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe -- (LMIGuardianSvc)
SRV - [2011/07/06 19:52:38 | 000,366,640 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2011/04/21 16:54:38 | 000,352,656 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files (x86)\IObit\Advanced SystemCare 4\ASCService.exe -- (AdvancedSystemCareService)
SRV - [2011/04/14 18:47:38 | 000,103,336 | ---- | M] (stumbleupon.com) [On_Demand | Stopped] -- C:\Program Files (x86)\StumbleUpon\StumbleUponUpdateService.exe -- (StumbleUponUpdateService)
SRV - [2011/03/31 11:45:56 | 000,454,208 | ---- | M] (Ralink Technology, Corp.) [Auto | Running] -- C:\Program Files (x86)\Ralink\Common\RaRegistry64.exe -- (RalinkRegistryWriter64)
SRV - [2011/03/31 11:45:18 | 000,375,872 | ---- | M] (Ralink Technology, Corp.) [Auto | Running] -- C:\Program Files (x86)\Ralink\Common\RaRegistry.exe -- (RalinkRegistryWriter)
SRV - [2011/03/04 18:34:06 | 000,621,632 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files (x86)\Ralink\Common\RaMediaServer.exe -- (RaMediaServer)
SRV - [2010/11/08 12:04:18 | 000,407,424 | ---- | M] (LogMeIn, Inc.) [Auto | Running] -- C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe -- (LogMeIn)
SRV - [2010/07/24 03:27:01 | 000,407,336 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/03/04 23:38:00 | 000,071,096 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe -- (NMSAccess)
SRV - [2010/03/03 19:39:38 | 004,590,432 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Norton Ghost\Agent\VProSvc.exe -- (Norton Ghost)
SRV - [2010/02/19 13:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2010/02/16 07:37:36 | 001,528,616 | ---- | M] (Cisco Systems, Inc.) [Auto | Running] -- C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe -- (CVPND)
SRV - [2010/02/12 07:09:18 | 002,227,216 | ---- | M] (Symantec) [On_Demand | Stopped] -- C:\Program Files (x86)\Norton Ghost\Shared\Drivers\GenericMountHelperx64.exe -- (GenericMount Helper Service)
SRV - [2010/01/27 11:37:22 | 000,091,392 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Motorola\MotoConnectService\MotoConnectService.exe -- (MotoConnect Service)
SRV - [2010/01/12 10:57:44 | 000,185,640 | ---- | M] (TeamViewer GmbH) [On_Demand | Stopped] -- C:\Program Files (x86)\TeamViewer\Version5\TeamViewer_Service.exe -- (TeamViewer5)
SRV - [2009/09/21 20:19:22 | 002,963,960 | ---- | M] (Symantec) [On_Demand | Running] -- C:\Program Files (x86)\Norton Ghost\Shared\Drivers\SymSnapServicex64.exe -- (SymSnapService)
SRV - [2009/09/04 01:54:25 | 000,066,872 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2009/07/06 08:59:38 | 000,020,480 | ---- | M] (AG Interactive) [Auto | Running] -- C:\Program Files (x86)\AGI\core\3.1\AGCoreService.exe -- (AGCoreService)
SRV - [2009/06/10 17:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009/06/05 12:12:44 | 000,315,392 | -H-- | M] (DeviceVM, Inc.) [Auto | Running] -- C:\ASUS.SYS\config\DVMExportService.exe -- (DvmMDES)
SRV - [2009/01/26 15:31:10 | 001,153,368 | ---- | M] (Safer Networking Ltd.) [Auto | Running] -- C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe -- (SBSDWSCService)
SRV - [2008/02/25 12:38:12 | 000,595,184 | ---- | M] ( ) [Auto | Running] -- C:\Windows\SysWow64\dldtcoms.exe -- (dldt_device)
SRV - [2007/12/06 17:03:41 | 000,660,768 | ---- | M] (ABBYY (BIT Software)) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe -- (ABBYY.Licensing.FineReader.Professional.9.0)
SRV - [2007/01/09 14:38:50 | 000,045,056 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files (x86)\Invisible Browsing\servers\IBService.exe -- (IBService)
SRV - [2007/01/09 14:38:50 | 000,045,056 | ---- | M] () [Disabled | Stopped] -- C:\Program Files (x86)\Easy-Hide-IP\services\EasyHideIp.exe -- (EasyHideIP)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2011/09/14 01:04:20 | 000,093,360 | ---- | M] (Sunbelt Software) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\SBREDrv.sys -- (SBRE)
DRV:64bit: - [2011/09/12 00:24:32 | 000,526,392 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:64bit: - [2011/07/25 14:29:54 | 000,026,200 | ---- | M] (JMicron Technology Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\johci.sys -- (johci)
DRV:64bit: - [2011/07/18 11:42:20 | 000,087,456 | ---- | M] (LogMeIn, Inc.) [File_System | Disabled | Stopped] -- C:\Windows\SysNative\LMIRfsClientNP.dll -- (LMIRfsClientNP)
DRV:64bit: - [2011/07/06 19:52:42 | 000,025,912 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2011/06/26 13:34:52 | 000,054,728 | ---- | M] (Soluto LTD.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\Soluto.sys -- (Soluto)
DRV:64bit: - [2011/06/17 02:24:12 | 000,056,408 | ---- | M] (NCH Software) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stdriver64.sys -- (stdriver)
DRV:64bit: - [2011/06/10 14:34:52 | 000,539,240 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2011/04/19 11:32:50 | 001,488,448 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\netr28x.sys -- (netr28x)
DRV:64bit: - [2011/03/18 17:20:22 | 000,410,184 | ---- | M] (Logitech) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ladfBakerCamd64.sys -- (LADF_BakerCOnly)
DRV:64bit: - [2011/03/18 14:33:48 | 000,335,688 | ---- | M] (Logitech) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ladfBakerRamd64.sys -- (LADF_BakerROnly)
DRV:64bit: - [2011/03/11 02:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 02:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/02/23 16:50:14 | 000,018,232 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SmartDefragDriver.sys -- (SmartDefragDriver)
DRV:64bit: - [2011/02/18 16:36:58 | 000,051,712 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2010/12/15 23:06:46 | 000,047,232 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbfilter.sys -- (usbfilter)
DRV:64bit: - [2010/11/20 09:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 07:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010/11/20 07:03:42 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2010/11/09 15:35:24 | 000,021,992 | ---- | M] (CPUID) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\cpuz135_x64.sys -- (cpuz135)
DRV:64bit: - [2010/06/17 05:15:36 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie64.sys -- (AtiPcie) AMD PCI Express (3GIO)
DRV:64bit: - [2010/02/16 07:44:28 | 000,304,784 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CVPNDRVA.sys -- (CVPNDRVA)
DRV:64bit: - [2010/02/12 07:10:12 | 000,066,608 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GenericMount.sys -- (GenericMount)
DRV:64bit: - [2010/02/08 08:32:00 | 000,014,992 | ---- | M] (Cisco Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\CVirtA64.sys -- (CVirtA)
DRV:64bit: - [2009/12/21 11:43:36 | 000,052,224 | ---- | M] (CSR, plc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BthAudioHF.sys -- (BthAudioHF)
DRV:64bit: - [2009/11/12 14:48:56 | 000,005,504 | ---- | M] () [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\StarOpen.sys -- (StarOpen)
DRV:64bit: - [2009/10/27 12:10:18 | 000,030,208 | ---- | M] (Motorola) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\motmodem.sys -- (motmodem)
DRV:64bit: - [2009/10/01 22:03:40 | 000,154,168 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WimFltr.sys -- (WimFltr)
DRV:64bit: - [2009/09/30 03:04:54 | 001,307,648 | ---- | M] (C-Media Electronics Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\CM10664.sys -- (USBMULCD)
DRV:64bit: - [2009/09/23 08:55:23 | 000,069,152 | ---- | M] (Lavasoft AB) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\Lbd.sys -- (Lbd)
DRV:64bit: - [2009/09/21 20:40:14 | 000,020,528 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vproeventmonitor.sys -- (VProEventMonitor)
DRV:64bit: - [2009/09/21 20:20:42 | 000,170,032 | ---- | M] (StorageCraft) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\symsnap.sys -- (symsnap)
DRV:64bit: - [2009/08/18 04:48:48 | 006,037,504 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag)
DRV:64bit: - [2009/07/22 18:22:43 | 000,358,144 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcvmm.sys -- (vpcvmm)
DRV:64bit: - [2009/07/22 18:22:41 | 000,066,304 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcnfltr.sys -- (vpcnfltr)
DRV:64bit: - [2009/07/22 18:20:23 | 000,187,904 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpchbus.sys -- (vpcbus)
DRV:64bit: - [2009/07/22 18:20:23 | 000,095,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpcusb.sys -- (vpcusb)
DRV:64bit: - [2009/07/19 11:05:48 | 000,019,912 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\pwdrvio.sys -- (pwdrvio)
DRV:64bit: - [2009/07/19 11:05:46 | 000,013,264 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\pwdspio.sys -- (pwdspio)
DRV:64bit: - [2009/07/16 11:38:40 | 000,015,416 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ASACPI.sys -- (MTsensor)
DRV:64bit: - [2009/07/13 21:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 21:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 21:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/07/13 20:39:20 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice)
DRV:64bit: - [2009/07/13 20:10:47 | 000,011,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rootmdm.sys -- (ROOTMODEM)
DRV:64bit: - [2009/06/17 12:54:30 | 000,057,872 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LMouFilt.Sys -- (LMouFilt)
DRV:64bit: - [2009/06/17 12:54:22 | 000,055,312 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LHidFilt.Sys -- (LHidFilt)
DRV:64bit: - [2009/06/17 12:54:14 | 000,013,328 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LHidEqd.sys -- (LHidEqd)
DRV:64bit: - [2009/06/17 12:54:06 | 000,074,256 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LEqdUsb.sys -- (LEqdUsb)
DRV:64bit: - [2009/06/17 12:53:34 | 000,030,736 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\L8042Kbd.sys -- (L8042Kbd)
DRV:64bit: - [2009/06/10 16:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 16:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 16:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 16:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/05/18 15:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2009/01/09 15:02:08 | 000,031,744 | ---- | M] (Research in Motion Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RimSerial_AMD64.sys -- (RimVSerPort)
DRV:64bit: - [2008/11/16 18:39:44 | 000,157,968 | ---- | M] (Deterministic Networks, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\dne64x.sys -- (DNE)
DRV:64bit: - [2008/08/11 12:40:58 | 000,072,216 | ---- | M] (LogMeIn, Inc.) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\LMIRfsDriver.sys -- (LMIRfsDriver)
DRV:64bit: - [2008/08/11 12:40:32 | 000,011,552 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lmimirr.sys -- (lmimirr)
DRV:64bit: - [2008/01/20 04:06:35 | 000,057,776 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\scdemu.sys -- (SCDEmu)
DRV:64bit: - [2007/08/31 17:05:30 | 012,528,768 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\snp2sxp.sys -- (SNP2STD) USB2.0 PC Camera (SNP2STD)
DRV:64bit: - [2007/03/28 20:29:10 | 000,055,096 | ---- | M] (Symantec Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\v2imount.sys -- (v2imount)
DRV - [2011/04/02 01:49:10 | 000,015,664 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV - [2011/03/18 12:08:56 | 000,029,592 | ---- | M] (Almico Software) [Kernel | Boot | Running] -- C:\Windows\SysWOW64\speedfan.sys -- (speedfan)
DRV - [2009/11/12 14:48:56 | 000,007,168 | ---- | M] () [File_System | On_Demand | Stopped] -- C:\Windows\SysWow64\drivers\StarOpen.sys -- (StarOpen)
DRV - [2009/07/13 21:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2009/02/28 19:40:18 | 000,146,928 | ---- | M] (CyberLink Corp.) [2009/09/13 00:08:14] [Kernel | Auto | Running] -- C:\Program Files (x86)\CyberLink\PowerDVD9\000.fcl -- ({B154377D-700F-42cc-9474-23858FBDF4BD})
DRV - [2008/09/10 20:09:26 | 000,004,096 | ---- | M] () [Kernel | On_Demand | Stopped] -- E:\Incoming\GAMES\360 TOOLS\JungleFlasher v0.1.73 Beta (108)\portio64.sys -- (PORTIO)
DRV - [2008/08/11 12:41:00 | 000,015,928 | ---- | M] (LogMeIn, Inc.) [Kernel | Auto | Running] -- C:\Program Files (x86)\LogMeIn\x64\rainfo.sys -- (LMIInfo)
DRV - [2008/02/15 16:30:48 | 000,015,192 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\MSI\Live Update 4\LU4\Flashsys64.sys -- (FLASHSYS)
DRV - [2007/08/31 17:03:28 | 012,212,864 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\snp2sxp.sys -- (SNP2STD) USB2.0 PC Camera (SNP2STD)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKLM\..\URLSearchHook: {b54561db-0bbb-41b4-a814-df8301fe0a8e} - Reg Error: No CLSID value found. File not found

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default Download Directory = C:\Users\PSD\Desktop
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://mystart.incre...08?a=6R84DghnBE
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,XMLHTTP_UUID_Default = 74 2D 86 00 E7 0E 45 4F 99 10 27 15 0C 10 5D 4C [binary data]
IE - HKCU\..\URLSearchHook: {0BC6E3FA-78EF-4886-842C-5A1258C4455A} - Reg Error: No CLSID value found. File not found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..extensions.enabledItems: {b01bf10c-302a-11da-b67b-000d60ca027b}:2.5.2
FF - prefs.js..network.proxy.no_proxies_on: ""

FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX,Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Content Upload Plugin,version=1.0.0: C:\Program Files (x86)\DivX\DivX Content Uploader\npUpload.dll File not found
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: C:\Program Files (x86)\DivX\DivX Player\npDivxPlayerPlugin.dll (DivX, Inc)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.732: C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=1.0.3.732: C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=1.0.0.0: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.732: C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.69\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.69\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\[email protected]/YahooActiveXPluginBridge;version=1.0.0.1: C:\Program Files (x86)\Yahoo!\Common\npyaxmpb.dll (Yahoo! Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\PSD\AppData\Local\Google\Update\1.3.21.69\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\PSD\AppData\Local\Google\Update\1.3.21.69\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@yahoo.com/BrowserPlus,version=2.9.8: C:\Users\PSD\AppData\Local\Yahoo!\BrowserPlus\2.9.8\Plugins\npybrowserplus_2.9.8.dll (Yahoo! Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Aurora 8.0a2\extensions\\Components: C:\Program Files (x86)\Aurora\components [2011/09/02 20:35:50 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Aurora 8.0a2\extensions\\Plugins: C:\Program Files (x86)\Aurora\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files (x86)\AutocompletePro\[email protected]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Flock 2.5.2\extensions\\Components: C:\Program Files (x86)\Flock\components [2011/08/26 22:53:35 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Flock 2.5.2\extensions\\Plugins: C:\Program Files (x86)\Flock\plugins [2011/08/26 22:53:35 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 7.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/09/12 01:15:25 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 7.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/08/26 22:53:35 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\[email protected]: C:\Windows\vf_hip\ [2009/09/15 13:38:37 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{9764bb84-7272-11dd-8eb6-20d155d89550}: C:\Users\PSD\AppData\Roaming\Hide IP NG\firefox_plugin\ [2009/09/15 22:30:42 | 000,000,000 | ---D | M]

[2010/04/01 02:25:13 | 000,000,000 | ---D | M] (No name found) -- C:\Users\PSD\AppData\Roaming\Mozilla\Extensions
[2009/09/18 02:18:59 | 000,000,000 | ---D | M] (No name found) -- C:\Users\PSD\AppData\Roaming\Mozilla\Extensions\{a463f10c-3994-11da-9945-000d60ca027b}
[2010/04/01 02:25:13 | 000,000,000 | ---D | M] (No name found) -- C:\Users\PSD\AppData\Roaming\Mozilla\Extensions\[email protected]
[2009/11/18 01:40:52 | 000,000,000 | ---D | M] (No name found) -- C:\Users\PSD\AppData\Roaming\Mozilla\Extensions\[email protected]
[2011/09/16 12:40:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\jmx1cem9.souley16\extensions
[2011/09/11 01:43:10 | 000,000,000 | ---D | M] (ShopToWin3) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\jmx1cem9.souley16\extensions\{174177db-5df0-480c-92cf-e0e29e3f3d43}
[2011/08/26 22:56:39 | 000,000,000 | ---D | M] (uTorrentBar2 Community Toolbar) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\jmx1cem9.souley16\extensions\{b54561db-0bbb-41b4-a814-df8301fe0a8e}
[2011/09/08 03:31:18 | 000,000,000 | ---D | M] (No name found) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions
[2010/03/26 21:46:31 | 000,000,000 | ---D | M] (Screengrab) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\{02450954-cdd9-410f-b1da-db804e18c671}
[2011/07/15 16:45:47 | 000,000,000 | ---D | M] (Forecastfox) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\{0538E3E3-7E9B-4d49-8831-A227C80A7AD3}
[2011/05/06 23:31:31 | 000,000,000 | ---D | M] (TV-Fox) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\{2f17f610-5e97-4fed-828f-9940b7b577a4}
[2010/08/18 01:22:46 | 000,000,000 | ---D | M] (Aero Fox XL) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66}
[2010/04/13 01:46:30 | 000,000,000 | ---D | M] (Tor-Proxy.NET Toolbar) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\{9815d32d-08c2-42ca-a8c6-43e501a4512f}
[2011/07/14 12:53:45 | 000,000,000 | ---D | M] (Hyperwords) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\{9A752782-D706-479b-98F8-3F66BF921692}
[2010/02/14 14:49:30 | 000,000,000 | ---D | M] ("Gmail Space") -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\{B9C8BE50-7105-4ec6-8FB4-4935C0671648}
[2009/09/03 06:00:04 | 000,000,000 | ---D | M] (Adobe DLM (powered by getPlus®)) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\{CF40ACC5-E1BB-4aff-AC72-04C2F616BCA7}
[2010/04/20 01:44:43 | 000,000,000 | ---D | M] (Torbutton) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\{e0204bd5-9d31-402b-a99d-a6aa8ffebdca}
[2011/06/04 13:36:43 | 000,000,000 | ---D | M] (Memory Fox) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\{E173B749-DB5B-4fd2-BA0E-94ECEA0CA55B}
[2011/07/17 23:24:58 | 000,000,000 | ---D | M] (PhZilla) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\[email protected]
[2009/09/03 05:59:55 | 000,000,000 | ---D | M] (Ask Chrome Search Engine) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\[email protected]
[2010/05/21 22:41:14 | 000,000,000 | ---D | M] ("Better Gmail 2") -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\[email protected]
[2011/08/04 22:54:57 | 000,000,000 | ---D | M] (Blank Tab Multivariate Test Addon) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\blanktab_multivaritate_test_testpilot@jetpack
[2011/03/28 00:10:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\[email protected]
[2011/07/24 18:01:53 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\[email protected]
[2010/08/18 01:22:53 | 000,000,000 | ---D | M] (Virtus Search Opt-in) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\[email protected]
[2009/09/03 05:59:56 | 000,000,000 | ---D | M] (meebo) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\[email protected]
[2011/06/19 01:12:47 | 000,000,000 | ---D | M] ("Xmarks") -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\[email protected]
[2011/07/17 11:51:06 | 000,000,000 | ---D | M] (HTTPS-Everywhere) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\[email protected]
[2009/09/15 04:42:07 | 000,000,000 | ---D | M] (LogMeIn, Inc. Remote Access Plugin) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\[email protected]
[2011/03/28 00:10:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\[email protected]
[2011/07/12 14:32:52 | 000,000,000 | ---D | M] (Yontoo Layers) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\[email protected]
[2011/06/26 02:34:24 | 000,000,000 | ---D | M] (Search Toolbar) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\[email protected]
[2010/03/13 00:36:22 | 000,000,000 | ---D | M] (SkipScreen) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\SkipScreen@SkipScreen
[2010/01/23 01:43:35 | 000,000,000 | ---D | M] (Taboo) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\[email protected]
[2011/03/28 00:10:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\[email protected]
[2010/08/18 01:22:52 | 000,000,000 | ---D | M] (No name found) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\[email protected]\__MACOSX
[2010/08/18 01:22:52 | 000,000,000 | ---D | M] (No name found) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\[email protected]\chrome
[2010/08/18 01:22:52 | 000,000,000 | ---D | M] (No name found) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\[email protected]\defaults
[2010/08/18 01:22:46 | 000,000,000 | ---D | M] (No name found) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66}\chrome\mac\mozapps\extensions
[2010/08/18 01:22:46 | 000,000,000 | ---D | M] (No name found) -- C:\Users\PSD\AppData\Roaming\Mozilla\Firefox\Profiles\zr72lmhe.default\extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66}\chrome\win\mozapps\extensions
[2011/09/11 01:47:19 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2011/08/26 22:55:45 | 000,000,000 | ---D | M] (Click to call with Skype) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2010/04/28 12:49:06 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2011/09/11 01:47:19 | 000,000,000 | ---D | M] ("Babylon Spelling and Proofreading") -- C:\Program Files (x86)\Mozilla Firefox\extensions\[email protected]
[2011/09/11 01:43:11 | 000,000,000 | ---D | M] (Babylon) -- C:\Program Files (x86)\Mozilla Firefox\extensions\[email protected]
[2011/09/11 01:47:19 | 000,000,000 | ---D | M] (Babylon OCR) -- C:\Program Files (x86)\Mozilla Firefox\extensions\[email protected]
[2011/09/12 01:15:25 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\distribution\extensions
[2011/09/12 01:15:25 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2010/04/12 17:29:19 | 000,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll
[2010/06/29 00:01:22 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll
[2011/09/11 01:47:07 | 000,002,226 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\babylon.xml
[2011/09/11 02:08:04 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml

O1 HOSTS File: ([2011/09/12 02:31:16 | 000,000,027 | R--- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (HelperObject Class) - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files (x86)\TechSmith\SnagIt 8\x64\SnagItBHO64.dll (TechSmith Corporation)
O2:64bit: - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (HelperObject Class) - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files (x86)\TechSmith\SnagIt 8\SnagItBHO.dll (TechSmith Corporation)
O2 - BHO: (StumbleUpon Launcher) - {145B29F4-A56B-4b90-BBAC-45784EBEBBB7} - C:\Program Files (x86)\StumbleUpon\StumbleUponIEBar.dll (stumbleupon.com)
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3:64bit: - HKLM\..\Toolbar: (SnagIt) - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files (x86)\TechSmith\SnagIt 8\x64\SnagItIEAddin64.dll (TechSmith Corporation)
O3 - HKLM\..\Toolbar: (StumbleUpon Toolbar) - {5093EB4C-3E93-40AB-9266-B607BA87BDC8} - C:\Program Files (x86)\StumbleUpon\StumbleUponIEBar.dll (stumbleupon.com)
O3 - HKLM\..\Toolbar: (SnagIt) - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files (x86)\TechSmith\SnagIt 8\SnagItIEAddin.dll (TechSmith Corporation)
O3:64bit: - HKCU\..\Toolbar\WebBrowser - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [dldtamon] C:\Program Files (x86)\Dell V305\dldtamon.exe ()
O4:64bit: - HKLM..\Run: [dldtmon.exe] C:\Program Files (x86)\Dell V305\dldtmon.exe ()
O4:64bit: - HKLM..\Run: [Kernel and Hardware Abstraction Layer] C:\Windows\KHALMNPR.Exe (Logitech, Inc.)
O4:64bit: - HKLM..\Run: [LogMeIn GUI] C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe (LogMeIn, Inc.)
O4 - HKLM..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin File not found
O4 - HKLM..\Run: [Athan] C:\Program Files (x86)\Athan\Athan.exe (www.IslamicFinder.org)
O4 - HKLM..\Run: [Drivers Update] C:\Users\PSD\AppData\Roaming\WS32.exe ()
O4 - HKLM..\Run: [Everything] C:\Program Files (x86)\Everything\Everything.exe ()
O4 - HKLM..\Run: [Logitech G930] C:\Program Files (x86)\Logitech\G930\G930.exe (Logitech©)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [Norton Ghost 15.0] C:\Program Files (x86)\Norton Ghost\Agent\VProTray.exe (Symantec Corporation)
O4 - HKLM..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE (PowerISO Computing, Inc.)
O4 - HKLM..\Run: [QuickTime Task] C:\Program Files (x86)\QT Lite\QTTask.exe (Apple Inc.)
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [UnlockerAssistant] C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe ()
O4 - HKLM..\Run: [Winsock Update] C:\Users\PSD\AppData\Roaming\wsock32.exe ()
O4 - HKCU..\Run: [Advanced SystemCare 4] C:\Program Files (x86)\IObit\Advanced SystemCare 4\ASCTray.exe (IObit)
O4 - HKCU..\Run: [F.lux] C:\Users\PSD\Local Settings\Apps\F.lux\flux.exe ()
O4 - HKCU..\Run: [FreeRAM XP] C:\Program Files (x86)\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe (YourWare Solutions ™)
O4 - HKCU..\Run: [StrokeIt] C:\Program Files (x86)\TCB Networks\StrokeIt\strokeit.exe ()
O4 - HKCU..\RunOnce: [AutoLaunch] C:\Program Files (x86)\Lavasoft\Ad-Aware\AutoLaunch.exe ()
O4 - HKLM..\RunOnceEx: [Flags] Reg Error: Invalid data type. File not found
O4 - HKLM..\RunOnceEx: [Title] UnHackMe Rootkit Check File not found
O4 - Startup: C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Webshots.lnk = C:\Program Files (x86)\Webshots\3.1.5.7613\Launcher.exe (Webshots.com)
O4 - Startup: C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WS32.exe ()
O4 - Startup: C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\wsock32.exe ()
O4 - Startup: C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Yahoo! Widgets.lnk = C:\Program Files (x86)\Yahoo!\Widgets\YahooWidgets.exe (Yahoo! Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O8:64bit: - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Append the content of the link to existing PDF file - res://C:\Program Files (x86)\Nuance\PDF Create 5\Bin\ZeonIEFavClient.dll/ZeonIEAppend.HTML File not found
O8:64bit: - Extra context menu item: Append the content of the selected links to existing PDF file - res://C:\Program Files (x86)\Nuance\PDF Create 5\Bin\ZeonIEFavClient.dll/ZeonIEAppendSelLinks.HTML File not found
O8:64bit: - Extra context menu item: Append to existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Append to existing PDF file - res://C:\Program Files (x86)\Nuance\PDF Create 5\Bin\ZeonIEFavClient.dll/ZeonIEAppend.HTML File not found
O8:64bit: - Extra context menu item: Convert link target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert link target to existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Create PDF file - res://C:\Program Files (x86)\Nuance\PDF Create 5\Bin\ZeonIEFavClient.dll/ZeonIECapture.HTML File not found
O8:64bit: - Extra context menu item: Create PDF file from the content of the link - res://C:\Program Files (x86)\Nuance\PDF Create 5\Bin\ZeonIEFavClient.dll/ZeonIECapture.HTML File not found
O8:64bit: - Extra context menu item: Create PDF files from the selected links - res://C:\Program Files (x86)\Nuance\PDF Create 5\Bin\ZeonIEFavClient.dll/ZeonIECaptureSelLinks.HTML File not found
O8:64bit: - Extra context menu item: Download with ImTOO iPhone Transfer Platinum - C:\Program Files (x86)\ImTOO\iPhone Transfer Platinum\upod_link.HTM ()
O8:64bit: - Extra context menu item: Translate this web page with Babylon - res://C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm File not found
O8:64bit: - Extra context menu item: Translate with Babylon - res://C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Action.htm File not found
O8 - Extra context menu item: Append Link Target to Existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append the content of the link to existing PDF file - res://C:\Program Files (x86)\Nuance\PDF Create 5\Bin\ZeonIEFavClient.dll/ZeonIEAppend.HTML File not found
O8 - Extra context menu item: Append the content of the selected links to existing PDF file - res://C:\Program Files (x86)\Nuance\PDF Create 5\Bin\ZeonIEFavClient.dll/ZeonIEAppendSelLinks.HTML File not found
O8 - Extra context menu item: Append to existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append to existing PDF file - res://C:\Program Files (x86)\Nuance\PDF Create 5\Bin\ZeonIEFavClient.dll/ZeonIEAppend.HTML File not found
O8 - Extra context menu item: Convert link target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert link target to existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Create PDF file - res://C:\Program Files (x86)\Nuance\PDF Create 5\Bin\ZeonIEFavClient.dll/ZeonIECapture.HTML File not found
O8 - Extra context menu item: Create PDF file from the content of the link - res://C:\Program Files (x86)\Nuance\PDF Create 5\Bin\ZeonIEFavClient.dll/ZeonIECapture.HTML File not found
O8 - Extra context menu item: Create PDF files from the selected links - res://C:\Program Files (x86)\Nuance\PDF Create 5\Bin\ZeonIEFavClient.dll/ZeonIECaptureSelLinks.HTML File not found
O8 - Extra context menu item: Download with ImTOO iPhone Transfer Platinum - C:\Program Files (x86)\ImTOO\iPhone Transfer Platinum\upod_link.HTM ()
O8 - Extra context menu item: Translate this web page with Babylon - res://C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm File not found
O8 - Extra context menu item: Translate with Babylon - res://C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Action.htm File not found
O9 - Extra Button: Click to call with Skype - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Click to call with Skype - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O9 - Extra Button: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - res://C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm File not found
O9 - Extra 'Tools' menuitem : Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - res://C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm File not found
O10:64bit: - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O1364bit: - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: localhost ([]http in Local intranet)
O15 - HKCU\..Trusted Ranges: GD ([http] in Local intranet)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.0.0)
O16 - DPF: {CAFEEFAC-0017-0000-0000-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.7.0)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Reg Error: Key error.)
O16 - DPF: {40F576AD-8680-4F9E-9490-99D069CD665F} http://srtest-cdn.sy...eqlabdetect.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_20)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D5EC0414-7666-4BBA-8843-26F04944B49A}: DhcpNameServer = 192.168.0.1
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Program Files\Soluto\soluto.exe /userinit) - C:\Program Files\Soluto\soluto.exe (Soluto)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:64bit: - Winlogon\Notify\LBTWlgn: DllName - (c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll) - c:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O22:64bit: - SharedTaskScheduler: {EC654325-1273-C2A9-2B7C-45D29BCE68FB} - Deskscapes - C:\Program Files (x86)\Stardock\Object Desktop\DeskScapes\deskscapes.dll (Stardock Corporation)
O22:64bit: - SharedTaskScheduler: {EC654325-1273-C2A9-2B7C-45D29BCE68FD} - Stardock Vista ControlPanel Extension - C:\Program Files (x86)\Stardock\Object Desktop\DeskScapes\DesktopControlPanel.dll (Stardock)
O22:64bit: - SharedTaskScheduler: {EC654325-1273-C2A9-2B7C-45D29BCE68FF} - StardockDreamController - C:\Program Files (x86)\Stardock\Object Desktop\DeskScapes\DreamControl.dll (Stardock)
O24 - Desktop Components:0 () -
O24 - Desktop Components:1 (My Current Home Page) - About:Home
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O35 - HKCU\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/09/16 13:06:18 | 000,000,000 | ---D | C] -- C:\Users\PSD\Documents\Stardock
[2011/09/16 02:04:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Stardock
[2011/09/16 02:04:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stardock
[2011/09/16 02:04:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Stardock
[2011/09/15 23:34:39 | 000,000,000 | ---D | C] -- C:\Users\PSD\Desktop\Wallpapers
[2011/09/15 23:33:12 | 000,000,000 | ---D | C] -- C:\Users\PSD\Desktop\Windows 7 Boot screens
[2011/09/15 23:25:49 | 000,658,944 | ---- | C] (Coder for Life) -- C:\Users\PSD\Desktop\Win7BootUpdater.exe
[2011/09/15 22:29:12 | 000,000,000 | ---D | C] -- C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GinoPlayer
[2011/09/15 22:29:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\GinoPlayer
[2011/09/15 22:21:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\7PicUploader
[2011/09/15 22:21:06 | 000,000,000 | ---D | C] -- C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\7Pic
[2011/09/15 12:52:59 | 000,000,000 | ---D | C] -- C:\Users\PSD\AppData\Roaming\Systweak
[2011/09/15 12:52:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Systweak
[2011/09/15 12:46:21 | 000,000,000 | ---D | C] -- C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Migo Software
[2011/09/15 12:39:05 | 000,000,000 | ---D | C] -- C:\Users\PSD\Desktop\SPC_Report
[2011/09/14 02:14:52 | 000,000,000 | ---D | C] -- C:\Users\PSD\AppData\Local\IM
[2011/09/14 02:14:37 | 000,000,000 | ---D | C] -- C:\ProgramData\IncrediMail
[2011/09/14 02:14:37 | 000,000,000 | ---D | C] -- C:\ProgramData\IM
[2011/09/14 01:46:30 | 000,000,000 | ---D | C] -- C:\Users\PSD\AppData\Roaming\AVG
[2011/09/14 01:39:44 | 000,000,000 | ---D | C] -- C:\Users\PSD\AppData\Roaming\Uniblue
[2011/09/14 01:39:32 | 000,000,000 | -H-D | C] -- C:\ProgramData\~0
[2011/09/14 01:39:23 | 000,000,000 | ---D | C] -- C:\Users\PSD\AppData\Local\PackageAware
[2011/09/14 01:34:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC Tuneup 2011
[2011/09/14 01:05:34 | 000,000,000 | ---D | C] -- C:\Users\PSD\AppData\Local\Sunbelt Software
[2011/09/14 01:04:26 | 000,069,152 | ---- | C] (Lavasoft AB) -- C:\Windows\SysNative\drivers\Lbd.sys
[2011/09/14 01:04:20 | 000,093,360 | ---- | C] (Sunbelt Software) -- C:\Windows\SysNative\drivers\SBREDrv.sys
[2011/09/14 01:02:25 | 000,000,000 | ---D | C] -- C:\Users\PSD\AppData\Roaming\DiskAid
[2011/09/14 01:01:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DiskAid
[2011/09/14 01:01:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DigiDNA
[2011/09/14 00:59:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
[2011/09/14 00:59:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Lavasoft
[2011/09/14 00:56:28 | 000,000,000 | -H-D | C] -- C:\ProgramData\{42E04EE4-AB57-407A-9691-3FFA8B8FEBBE}
[2011/09/13 11:25:29 | 000,039,192 | ---- | C] (Greatis Software) -- C:\Windows\SysNative\Partizan.exe
[2011/09/13 01:28:51 | 000,000,000 | ---D | C] -- C:\Users\PSD\Documents\RegRun2
[2011/09/13 01:28:50 | 000,012,808 | ---- | C] (Greatis Software, LLC.) -- C:\Windows\SysWow64\drivers\UnHackMeDrv.sys
[2011/09/13 01:28:50 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\regruninfo
[2011/09/13 01:28:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\UnHackMe
[2011/09/12 04:01:31 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2011/09/12 02:23:54 | 000,000,000 | ---D | C] -- C:\Windows\pss
[2011/09/12 02:06:33 | 000,000,000 | ---D | C] -- C:\ComboFix
[2011/09/12 00:22:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DAEMON Tools Pro
[2011/09/12 00:20:31 | 000,000,000 | ---D | C] -- C:\Users\PSD\AppData\Roaming\DAEMON Tools Pro
[2011/09/12 00:20:31 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Pro
[2011/09/11 01:50:59 | 000,000,000 | ---D | C] -- C:\Users\PSD\AppData\Local\Babylon
[2011/09/11 01:47:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Babylon
[2011/09/11 01:47:18 | 000,000,000 | ---D | C] -- C:\Program Files\Babylon
[2011/09/11 01:45:08 | 000,000,000 | ---D | C] -- C:\Users\PSD\Documents\DownVision
[2011/09/11 01:45:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DownVision
[2011/09/11 01:43:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Trymedia
[2011/09/11 01:43:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameHouse
[2011/09/11 01:43:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Babylon
[2011/09/11 01:43:04 | 000,000,000 | ---D | C] -- C:\Users\PSD\AppData\Roaming\Babylon
[2011/09/11 00:24:54 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Deterministic Networks
[2011/09/11 00:24:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco Systems VPN Client
[2011/09/11 00:24:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Cisco Systems
[2011/09/10 20:38:27 | 000,000,000 | ---D | C] -- C:\Users\PSD\AppData\Roaming\NVIDIA
[2011/09/10 01:41:43 | 000,000,000 | ---D | C] -- C:\Users\PSD\Desktop\Portable Solar Charger and Battery 12000mAh Samsung i9100 Galaxy S2 -AGM00013 __files
[2011/09/10 00:04:18 | 000,170,032 | ---- | C] (StorageCraft) -- C:\Windows\SysNative\drivers\symsnap.sys
[2011/09/10 00:03:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Ghost
[2011/09/10 00:03:54 | 000,020,528 | ---- | C] (Symantec Corporation) -- C:\Windows\SysNative\drivers\vproeventmonitor.sys
[2011/09/10 00:03:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Norton Ghost
[2011/09/10 00:03:36 | 000,000,000 | ---D | C] -- C:\ProgramData\{1C6FDDD8-FC9E-4C12-9FA5-1AAD377097B3}
[2011/09/09 00:39:34 | 000,000,000 | ---D | C] -- C:\Users\PSD\Desktop\a-new-look-at-the-wall_files
[2011/09/08 03:20:11 | 000,000,000 | ---D | C] -- C:\Users\PSD\Desktop\Security, Viruses
[2011/09/08 03:12:33 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2011/09/08 03:12:33 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2011/09/08 03:12:33 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2011/09/08 03:12:27 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2011/09/08 03:12:21 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011/09/02 18:28:21 | 000,000,000 | -HSD | C] -- C:\Windows\SysWow64\%APPDATA%
[2011/09/02 17:56:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011/08/28 23:44:33 | 000,000,000 | ---D | C] -- C:\Users\PSD\AppData\Roaming\Dell Imaging Toolbox
[2011/08/28 03:50:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy
[2011/08/28 03:50:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy
[2011/08/28 03:50:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Spybot - Search & Destroy
[2011/08/28 03:45:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
[2011/08/28 03:45:12 | 000,237,568 | ---- | C] (www.helixcommunity.org) -- C:\Windows\SysWow64\yv12vfw.dll
[2011/08/28 03:45:12 | 000,151,552 | ---- | C] (fccHandler) -- C:\Windows\SysWow64\ac3acm.acm
[2011/08/28 03:24:05 | 000,000,000 | ---D | C] -- C:\Users\PSD\AppData\Roaming\Camfrog
[2011/08/28 03:23:38 | 000,000,000 | ---D | C] -- C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Camfrog Video Chat 6.1
[2011/08/28 03:23:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Camfrog
[2011/08/28 01:46:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Dl_cats
[2011/08/28 01:45:19 | 000,000,000 | ---D | C] -- C:\logs
[2011/08/28 01:41:59 | 000,000,000 | ---D | C] -- C:\Program Files\Dell V305
[2011/08/28 01:41:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell Printers
[2011/08/28 01:41:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Dell V305
[2011/08/28 01:41:52 | 000,364,544 | ---- | C] ( ) -- C:\Windows\SysWow64\dldtinpa.dll
[2011/08/28 01:41:52 | 000,339,968 | ---- | C] ( ) -- C:\Windows\SysWow64\dldtiesc.dll
[2011/08/28 01:41:51 | 000,647,168 | ---- | C] ( ) -- C:\Windows\SysWow64\dldtpmui.dll
[2011/08/28 01:41:48 | 001,105,920 | ---- | C] ( ) -- C:\Windows\SysWow64\dldtserv.dll
[2011/08/28 01:41:48 | 000,843,776 | ---- | C] ( ) -- C:\Windows\SysWow64\dldtusb1.dll
[2011/08/28 01:41:47 | 000,569,344 | ---- | C] ( ) -- C:\Windows\SysWow64\dldtlmpm.dll
[2011/08/28 01:41:47 | 000,320,752 | ---- | C] ( ) -- C:\Windows\SysWow64\dldtih.exe
[2011/08/28 01:41:47 | 000,053,248 | ---- | C] ( ) -- C:\Windows\SysWow64\dldtprox.dll
[2011/08/28 01:41:46 | 000,663,552 | ---- | C] ( ) -- C:\Windows\SysWow64\dldthbn3.dll
[2011/08/28 01:41:46 | 000,595,184 | ---- | C] ( ) -- C:\Windows\SysWow64\dldtcoms.exe
[2011/08/28 01:41:45 | 000,851,968 | ---- | C] ( ) -- C:\Windows\SysWow64\dldtcomc.dll
[2011/08/28 01:41:45 | 000,376,832 | ---- | C] ( ) -- C:\Windows\SysWow64\dldtcomm.dll
[2011/08/28 01:41:45 | 000,365,808 | ---- | C] ( ) -- C:\Windows\SysWow64\dldtcfg.exe
[2011/08/28 01:41:34 | 000,675,328 | ---- | C] ( ) -- C:\Windows\SysNative\DLDThcp.dll
[2011/08/28 01:41:34 | 000,545,792 | ---- | C] ( ) -- C:\Windows\SysNative\dldtinpa.dll
[2011/08/28 01:41:33 | 001,734,144 | ---- | C] ( ) -- C:\Windows\SysNative\dldtserv.dll
[2011/08/28 01:41:33 | 001,319,936 | ---- | C] ( ) -- C:\Windows\SysNative\dldtusb1.dll
[2011/08/28 01:41:33 | 000,509,952 | ---- | C] ( ) -- C:\Windows\SysNative\dldtiesc.dll
[2011/08/28 01:41:32 | 000,977,920 | ---- | C] ( ) -- C:\Windows\SysNative\dldtpmui.dll
[2011/08/28 01:41:32 | 000,884,736 | ---- | C] ( ) -- C:\Windows\SysNative\dldtlmpm.dll
[2011/08/28 01:41:32 | 000,047,104 | ---- | C] ( ) -- C:\Windows\SysNative\dldtprox.dll
[2011/08/28 01:41:31 | 001,070,080 | ---- | C] ( ) -- C:\Windows\SysNative\dldthbn3.dll
[2011/08/28 01:41:31 | 000,519,408 | ---- | C] ( ) -- C:\Windows\SysNative\dldtih.exe
[2011/08/28 01:41:30 | 001,472,512 | ---- | C] ( ) -- C:\Windows\SysNative\dldtcomc.dll
[2011/08/28 01:41:30 | 001,045,232 | ---- | C] ( ) -- C:\Windows\SysNative\dldtcoms.exe
[2011/08/28 01:41:30 | 000,578,560 | ---- | C] ( ) -- C:\Windows\SysNative\dldtcomm.dll
[2011/08/28 01:41:29 | 000,603,888 | ---- | C] ( ) -- C:\Windows\SysNative\dldtcfg.exe
[2011/08/27 02:56:55 | 000,000,000 | -H-D | C] -- C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup-Disabled
[2011/08/27 02:56:37 | 000,000,000 | ---D | C] -- C:\Users\PSD\AppData\Roaming\GlarySoft
[2011/08/26 22:56:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Conduit
[2011/08/26 22:55:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpeedFan
[2011/08/26 22:55:26 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype
[2011/08/26 22:55:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2011/08/26 22:54:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2011/08/26 22:54:28 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2011/08/26 22:54:28 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2011/08/26 22:53:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
[2011/08/26 22:52:05 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2011/08/26 22:52:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bonjour
[2011/08/26 22:51:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Pidgin
[2011/08/26 22:49:34 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2011/08/26 22:47:44 | 000,021,992 | ---- | C] (CPUID) -- C:\Windows\SysNative\drivers\cpuz135_x64.sys
[2011/08/26 22:47:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
[2011/08/26 22:44:03 | 000,000,000 | ---D | C] -- C:\Program Files\CDBurnerXP
[2011/08/26 22:41:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeZ Online TV
[2011/08/26 22:41:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FreeZ Online TV
[2011/08/26 02:39:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\JMicron
[2011/08/26 02:39:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Ralink
[2011/08/26 02:39:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ralink Wireless
[2011/08/26 02:39:01 | 001,488,448 | ---- | C] (Ralink Technology, Corp.) -- C:\Windows\SysNative\drivers\netr28x.sys
[2011/08/26 02:39:01 | 000,327,008 | ---- | C] (Ralink Technology, Inc.) -- C:\Windows\SysNative\RaCoInstx.dll
[2011/08/26 02:39:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Ralink Driver
[2011/08/26 02:38:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Cisco
[2011/08/26 02:38:46 | 002,403,392 | ---- | C] (Ralink Technology, Corp.) -- C:\Windows\SysNative\RaCertMgr.dll
[2011/08/26 02:38:46 | 001,608,768 | ---- | C] (Ralink Technology, Corp.) -- C:\Windows\SysWow64\RaCertMgr.dll
[2011/08/26 02:38:46 | 001,121,856 | ---- | C] (Ralink Technology, Corp.) -- C:\Windows\SysWow64\RAIHV.dll
[2011/08/26 02:38:46 | 001,121,856 | ---- | C] (Ralink Technology, Corp.) -- C:\Windows\SysNative\RAIHV.dll
[2011/08/26 02:38:46 | 000,128,864 | ---- | C] (Ralink Technology, Corp.) -- C:\Windows\SysWow64\RAEXTUI.dll
[2011/08/26 02:38:46 | 000,128,864 | ---- | C] (Ralink Technology, Corp.) -- C:\Windows\SysNative\RAEXTUI.dll
[2011/08/26 02:38:46 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\RaLanguages
[2011/08/26 02:38:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Ralink
[2011/08/26 02:37:36 | 000,539,240 | ---- | C] (Realtek ) -- C:\Windows\SysNative\drivers\Rt64win7.sys
[2011/08/26 02:33:32 | 000,067,176 | ---- | C] (Khronos Group) -- C:\Windows\SysNative\OpenCL.dll
[2011/08/26 02:33:32 | 000,057,960 | ---- | C] (Khronos Group) -- C:\Windows\SysWow64\OpenCL.dll
[2011/08/26 02:32:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
[2011/08/26 02:32:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Logitech
[2011/08/26 02:30:01 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM
[2011/08/26 02:30:01 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2011/08/26 02:29:44 | 002,604,376 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\WavesGUILib.dll
[2011/08/26 02:29:44 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll
[2011/08/26 02:29:44 | 000,220,512 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFNHK64.dll
[2011/08/26 02:29:44 | 000,211,184 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSH64.dll
[2011/08/26 02:29:44 | 000,198,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSHP64.dll
[2011/08/26 02:29:44 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll
[2011/08/26 02:29:44 | 000,081,248 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFCOM64.dll
[2011/08/26 02:29:44 | 000,078,176 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFAPO64.dll
[2011/08/26 02:29:44 | 000,074,064 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysWow64\SFCOM.dll
[2011/08/26 02:29:43 | 000,375,128 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEP64A.dll
[2011/08/26 02:29:43 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll
[2011/08/26 02:29:43 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll
[2011/08/26 02:29:43 | 000,204,120 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEED64A.dll
[2011/08/26 02:29:43 | 000,101,208 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEL64A.dll
[2011/08/26 02:29:43 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEG64A.dll
[2011/08/26 02:29:42 | 003,768,152 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioRealtek.dll
[2011/08/26 02:29:42 | 003,308,376 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEP64A.dll
[2011/08/26 02:29:42 | 002,132,824 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioEQ.dll
[2011/08/26 02:29:42 | 000,603,984 | ---- | C] (Knowles Acoustics ) -- C:\Windows\SysNative\KAAPORT64.dll
[2011/08/26 02:29:42 | 000,426,328 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EED64A.dll
[2011/08/26 02:29:42 | 000,341,336 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO30.dll
[2011/08/26 02:29:42 | 000,334,680 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxVolumeSDAPO.dll
[2011/08/26 02:29:42 | 000,318,808 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO20.dll
[2011/08/26 02:29:42 | 000,136,024 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEL64A.dll
[2011/08/26 02:29:42 | 000,118,104 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEA64A.dll
[2011/08/26 02:29:42 | 000,074,072 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEG64A.dll
[2011/08/26 02:29:40 | 002,085,440 | ---- | C] (Fortemedia Corporation) -- C:\Windows\SysNative\FMAPO64.dll
[2011/08/26 02:29:40 | 001,756,264 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2SpeakerDLL64.dll
[2011/08/26 02:29:40 | 001,568,360 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2HeadphoneDLL64.dll
[2011/08/26 02:29:40 | 001,486,952 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBoostDLL64.dll
[2011/08/26 02:29:40 | 000,728,680 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBassEnhancementDLL64.dll
[2011/08/26 02:29:40 | 000,712,296 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSSymmetryDLL64.dll
[2011/08/26 02:29:40 | 000,693,352 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSVoiceClarityDLL64.dll
[2011/08/26 02:29:40 | 000,527,872 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PLFX64.dll
[2011/08/26 02:29:40 | 000,515,584 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PGFX64.dll
[2011/08/26 02:29:40 | 000,491,112 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSNeoPCDLL64.dll
[2011/08/26 02:29:40 | 000,439,808 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PREC64.dll
[2011/08/26 02:29:40 | 000,432,744 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLimiterDLL64.dll
[2011/08/26 02:29:40 | 000,428,648 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGainCompensatorDLL64.dll
[2011/08/26 02:29:40 | 000,242,792 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLFXAPO64.dll
[2011/08/26 02:29:40 | 000,242,792 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPO64.dll
[2011/08/26 02:29:40 | 000,241,768 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPONS64.dll
[2011/08/26 02:29:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Realtek
[2011/08/26 02:29:35 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Temp
[2011/08/26 02:27:40 | 000,000,000 | ---D | C] -- C:\ATI
[2011/08/26 02:08:10 | 000,000,000 | ---D | C] -- C:\Users\PSD\Documents\DriverGenius
[2011/08/26 02:07:00 | 000,000,000 | ---D | C] -- C:\Program Files\Driver-Soft
[2011/08/26 02:05:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Genius Professional Edition
[2011/08/26 02:05:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Driver-Soft
[2011/08/20 19:13:56 | 000,000,000 | ---D | C] -- C:\Users\PSD\Desktop\Scanned Pics
[2011/08/20 19:09:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Hewlett-Packard
[2010/03/02 00:57:11 | 000,151,552 | ---- | C] ( ) -- C:\Windows\SysWow64\rsnp2std.dll
[2009/10/11 21:06:41 | 003,550,592 | ---- | C] (Sysinternals - www.sysinternals.com) -- C:\Program Files\procexp.exe
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Users\PSD\Desktop\*.tmp files -> C:\Users\PSD\Desktop\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/09/16 13:10:52 | 000,022,848 | ---- | M] () -- C:\Users\PSD\Desktop\Stardock_full_suite472454240922_119.torrent
[2011/09/16 12:34:00 | 000,000,900 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1748087980-35093528-1059694367-1001UA.job
[2011/09/16 12:13:00 | 000,000,892 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/09/16 02:56:22 | 000,022,528 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/09/16 02:56:22 | 000,022,528 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/09/16 02:32:03 | 000,802,492 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011/09/16 02:32:03 | 000,678,790 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011/09/16 02:32:03 | 000,127,442 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011/09/16 02:22:38 | 000,031,368 | ---- | M] () -- C:\Users\PSD\Desktop\VLC DESKTOP.xspf
[2011/09/16 02:04:30 | 000,001,338 | ---- | M] () -- C:\Users\PSD\Desktop\LogonStudio Vista.lnk
[2011/09/16 00:47:09 | 000,000,848 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1748087980-35093528-1059694367-1001Core.job
[2011/09/15 23:33:48 | 000,001,144 | ---- | M] () -- C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Webshots.lnk
[2011/09/15 23:25:50 | 000,658,944 | ---- | M] (Coder for Life) -- C:\Users\PSD\Desktop\Win7BootUpdater.exe
[2011/09/15 22:50:45 | 000,023,999 | ---- | M] () -- C:\Users\PSD\Desktop\Radiant_Silvergun_XBLA_XBOX360-XBLAplus.torrent
[2011/09/15 22:50:14 | 000,031,323 | ---- | M] () -- C:\Users\PSD\Desktop\Astro.Boy.BDRip.XviD-DiAMOND.torrent
[2011/09/15 22:49:48 | 000,031,724 | ---- | M] () -- C:\Users\PSD\Desktop\Ninjas.VS.Vampires.2010.DVDRiP.XViD-TASTE.torrent
[2011/09/15 22:45:16 | 000,014,483 | ---- | M] () -- C:\Users\PSD\Desktop\The.Lying.Game.S01E05.Over.Exposed.HDTV.XviD-FQM.[eztv].torrent
[2011/09/15 22:42:45 | 000,007,495 | ---- | M] () -- C:\Users\PSD\Desktop\Ringer.1x01.(HDTV-LOL)[VTV].torrent
[2011/09/15 22:29:28 | 000,000,173 | -H-- | M] () -- C:\dvmexp.idx
[2011/09/15 22:21:46 | 000,019,104 | ---- | M] () -- C:\Windows\SysNative\.rsp
[2011/09/15 22:21:46 | 000,002,057 | ---- | M] () -- C:\Windows\SysNative\.lck
[2011/09/15 22:19:29 | 000,000,888 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/09/15 22:19:24 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/09/15 22:19:17 | 3220,525,056 | -HS- | M] () -- C:\hiberfil.sys
[2011/09/15 22:16:34 | 000,000,322 | ---- | M] () -- C:\Windows\tasks\At2.job
[2011/09/15 22:16:18 | 000,000,322 | ---- | M] () -- C:\Windows\tasks\At1.job
[2011/09/15 12:26:25 | 000,004,096 | -HS- | M] () -- C:\VSNAP.IDX
[2011/09/14 22:20:23 | 000,015,484 | ---- | M] () -- C:\Users\PSD\Desktop\Fast_and_Furious_5_DVDRip.torrent
[2011/09/14 01:22:23 | 000,798,470 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2011/09/14 01:04:20 | 000,093,360 | ---- | M] (Sunbelt Software) -- C:\Windows\SysNative\drivers\SBREDrv.sys
[2011/09/14 01:04:17 | 000,015,880 | ---- | M] () -- C:\Windows\SysNative\lsdelete.exe
[2011/09/14 01:01:22 | 000,001,041 | ---- | M] () -- C:\Users\Public\Desktop\DiskAid.lnk
[2011/09/14 00:59:02 | 000,001,172 | ---- | M] () -- C:\Users\PSD\Application Data\Microsoft\Internet Explorer\Quick Launch\Ad-Aware.lnk
[2011/09/13 23:55:17 | 000,116,736 | ---- | M] () -- C:\Users\PSD\AppData\Roaming\chrtmp
[2011/09/13 11:25:29 | 000,039,192 | ---- | M] (Greatis Software) -- C:\Windows\SysNative\Partizan.exe
[2011/09/13 01:28:54 | 000,000,002 | RHS- | M] () -- C:\Windows\winstart.bat
[2011/09/13 01:28:54 | 000,000,002 | RHS- | M] () -- C:\Windows\SysWow64\AUTOEXEC.NT
[2011/09/12 22:00:24 | 000,057,857 | ---- | M] () -- C:\Users\PSD\AppData\Roaming\WS32.exe
[2011/09/12 22:00:24 | 000,057,857 | ---- | M] () -- C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WS32.exe
[2011/09/12 21:19:32 | 000,061,952 | ---- | M] () -- C:\Users\PSD\AppData\Roaming\wsock32.exe
[2011/09/12 21:19:32 | 000,061,952 | ---- | M] () -- C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\wsock32.exe
[2011/09/12 16:03:30 | 000,049,566 | ---- | M] () -- C:\Users\PSD\AppData\Roaming\UpdateDrv.exe
[2011/09/12 02:31:16 | 000,000,027 | R--- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2011/09/12 01:15:26 | 000,002,054 | ---- | M] () -- C:\Users\PSD\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011/09/12 00:24:32 | 000,526,392 | ---- | M] () -- C:\Windows\SysNative\drivers\sptd.sys
[2011/09/11 22:47:08 | 000,031,570 | ---- | M] () -- C:\Users\PSD\Desktop\Van.Wilder.2.UNRATED.DVDRip.XviD-DiAMOND.torrent
[2011/09/11 15:48:53 | 000,001,852 | ---- | M] () -- C:\Users\PSD\Desktop\Firefox Sync Key.html
[2011/09/11 12:40:10 | 000,000,410 | -H-- | M] () -- C:\Windows\tasks\My BlackB Mreflect Backup xml.job
[2011/09/11 01:42:38 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_GenericMount_01009.Wdf
[2011/09/11 00:25:51 | 000,001,593 | ---- | M] () -- C:\Windows\VPNInstall.MIF
[2011/09/11 00:04:55 | 005,296,556 | ---- | M] () -- C:\Users\PSD\Desktop\Eternal_Champions_Immortal_Souls_OC_ReMix.mp3
[2011/09/10 01:41:44 | 000,069,844 | ---- | M] () -- C:\Users\PSD\Desktop\Portable Solar Charger and Battery 12000mAh Samsung i9100 Galaxy S2 -AGM00013 _.htm
[2011/09/09 00:39:38 | 000,078,833 | ---- | M] () -- C:\Users\PSD\Desktop\a-new-look-at-the-wall.htm
[2011/09/08 12:21:27 | 000,000,146 | ---- | M] () -- C:\Windows\SysWow64\989574310
[2011/09/08 03:10:47 | 000,000,139 | ---- | M] () -- C:\ProgramData\10d5a4d6
[2011/09/03 22:32:41 | 000,012,977 | ---- | M] () -- C:\Users\PSD\Desktop\Shaolin_2011_720p_BRRip_x264_AC3_5_1_MYSTiC__maxxcrime___h33t_.torrent
[2011/09/03 22:30:19 | 000,002,395 | ---- | M] () -- C:\Users\PSD\Desktop\Google Chrome.lnk
[2011/09/02 17:56:19 | 000,001,133 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/09/02 03:41:34 | 001,729,757 | ---- | M] () -- C:\Users\PSD\Desktop\Cobra Starship - You make me Feel ft Sabi.m4a.mp3
[2011/08/30 23:56:50 | 000,000,129 | ---- | M] () -- C:\Windows\wininit.ini
[2011/08/28 23:00:11 | 000,000,162 | -H-- | M] () -- C:\Users\PSD\Desktop\~$cument.rtf
[2011/08/28 04:05:44 | 000,438,167 | R--- | M] () -- C:\Windows\SysNative\drivers\etc\hosts.20110830-235715.backup
[2011/08/28 03:23:38 | 000,002,233 | ---- | M] () -- C:\Users\PSD\Application Data\Microsoft\Internet Explorer\Quick Launch\Camfrog Video Chat 6.1.lnk
[2011/08/28 03:23:38 | 000,002,209 | ---- | M] () -- C:\Users\PSD\Desktop\Camfrog Video Chat 6.1.lnk
[2011/08/28 02:23:35 | 005,057,087 | ---- | M] () -- C:\Users\PSD\Desktop\Blow Coxx - Je suis pas timide.mp3
[2011/08/28 01:54:51 | 000,001,001 | ---- | M] () -- C:\Users\Public\Desktop\Dell Imaging Toolbox - V305.LNK
[2011/08/28 01:45:24 | 000,084,333 | ---- | M] () -- C:\Windows\SysNative\LexFiles.ulf
[2011/08/26 22:58:03 | 000,001,140 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2011/08/26 22:57:46 | 000,001,041 | ---- | M] () -- C:\Users\Public\Desktop\foobar2000.lnk
[2011/08/26 22:56:26 | 000,000,973 | ---- | M] () -- C:\Users\PSD\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk
[2011/08/26 22:56:26 | 000,000,949 | ---- | M] () -- C:\Users\Public\Desktop\µTorrent.lnk
[2011/08/26 22:55:30 | 000,000,045 | ---- | M] () -- C:\Windows\SysWow64\initdebug.nfo
[2011/08/26 22:41:36 | 000,001,031 | ---- | M] () -- C:\Users\Public\Desktop\FreeZ Online TV v1.42.lnk
[2011/08/26 00:17:17 | 003,230,033 | ---- | M] () -- C:\Users\PSD\Desktop\Maroon 5 feat. Christina Aguilera - Move Like Jagger.mp3
[2011/08/22 03:18:20 | 000,002,031 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts.20110828-040544.backup
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Users\PSD\Desktop\*.tmp files -> C:\Users\PSD\Desktop\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/09/16 02:04:30 | 000,001,338 | ---- | C] () -- C:\Users\PSD\Desktop\LogonStudio Vista.lnk
[2011/09/15 22:50:44 | 000,023,999 | ---- | C] () -- C:\Users\PSD\Desktop\Radiant_Silvergun_XBLA_XBOX360-XBLAplus.torrent
[2011/09/15 22:50:13 | 000,031,323 | ---- | C] () -- C:\Users\PSD\Desktop\Astro.Boy.BDRip.XviD-DiAMOND.torrent
[2011/09/15 22:49:46 | 000,031,724 | ---- | C] () -- C:\Users\PSD\Desktop\Ninjas.VS.Vampires.2010.DVDRiP.XViD-TASTE.torrent
[2011/09/15 22:45:16 | 000,014,483 | ---- | C] () -- C:\Users\PSD\Desktop\The.Lying.Game.S01E05.Over.Exposed.HDTV.XviD-FQM.[eztv].torrent
[2011/09/15 22:42:45 | 000,007,495 | ---- | C] () -- C:\Users\PSD\Desktop\Ringer.1x01.(HDTV-LOL)[VTV].torrent
[2011/09/15 12:58:02 | 000,015,880 | ---- | C] () -- C:\Windows\SysNative\lsdelete.exe
[2011/09/14 22:20:22 | 000,015,484 | ---- | C] () -- C:\Users\PSD\Desktop\Fast_and_Furious_5_DVDRip.torrent
[2011/09/14 01:01:22 | 000,001,041 | ---- | C] () -- C:\Users\Public\Desktop\DiskAid.lnk
[2011/09/14 00:59:02 | 000,001,172 | ---- | C] () -- C:\Users\PSD\Application Data\Microsoft\Internet Explorer\Quick Launch\Ad-Aware.lnk
[2011/09/14 00:53:34 | 000,116,736 | ---- | C] () -- C:\Users\PSD\AppData\Roaming\chrtmp
[2011/09/13 01:28:54 | 000,000,002 | RHS- | C] () -- C:\Windows\winstart.bat
[2011/09/13 01:28:54 | 000,000,002 | RHS- | C] () -- C:\Windows\SysWow64\AUTOEXEC.NT
[2011/09/12 22:00:24 | 000,057,857 | ---- | C] () -- C:\Users\PSD\AppData\Roaming\WS32.exe
[2011/09/12 22:00:24 | 000,057,857 | ---- | C] () -- C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WS32.exe
[2011/09/12 21:19:32 | 000,061,952 | ---- | C] () -- C:\Users\PSD\AppData\Roaming\wsock32.exe
[2011/09/12 21:19:32 | 000,061,952 | ---- | C] () -- C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\wsock32.exe
[2011/09/12 16:03:30 | 000,049,566 | ---- | C] () -- C:\Users\PSD\AppData\Roaming\UpdateDrv.exe
[2011/09/11 22:46:02 | 000,031,570 | ---- | C] () -- C:\Users\PSD\Desktop\Van.Wilder.2.UNRATED.DVDRip.XviD-DiAMOND.torrent
[2011/09/11 15:48:53 | 000,001,852 | ---- | C] () -- C:\Users\PSD\Desktop\Firefox Sync Key.html
[2011/09/11 01:42:38 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_GenericMount_01009.Wdf
[2011/09/11 00:24:50 | 000,001,593 | ---- | C] () -- C:\Windows\VPNInstall.MIF
[2011/09/11 00:04:44 | 005,296,556 | ---- | C] () -- C:\Users\PSD\Desktop\Eternal_Champions_Immortal_Souls_OC_ReMix.mp3
[2011/09/10 01:41:43 | 000,069,844 | ---- | C] () -- C:\Users\PSD\Desktop\Portable Solar Charger and Battery 12000mAh Samsung i9100 Galaxy S2 -AGM00013 _.htm
[2011/09/09 00:39:34 | 000,078,833 | ---- | C] () -- C:\Users\PSD\Desktop\a-new-look-at-the-wall.htm
[2011/09/08 09:51:55 | 000,004,096 | -HS- | C] () -- C:\VSNAP.IDX
[2011/09/08 03:12:33 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2011/09/08 03:12:33 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2011/09/08 03:12:33 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2011/09/08 03:12:33 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2011/09/08 03:12:33 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011/09/03 22:32:39 | 000,012,977 | ---- | C] () -- C:\Users\PSD\Desktop\Shaolin_2011_720p_BRRip_x264_AC3_5_1_MYSTiC__maxxcrime___h33t_.torrent
[2011/09/02 03:41:31 | 001,729,757 | ---- | C] () -- C:\Users\PSD\Desktop\Cobra Starship - You make me Feel ft Sabi.m4a.mp3
[2011/08/30 23:56:50 | 000,000,129 | ---- | C] () -- C:\Windows\wininit.ini
[2011/08/28 23:00:11 | 000,000,162 | -H-- | C] () -- C:\Users\PSD\Desktop\~$cument.rtf
[2011/08/28 03:45:12 | 000,650,752 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2011/08/28 03:45:12 | 000,243,200 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2011/08/28 03:45:12 | 000,074,752 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2011/08/28 03:45:12 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.ini
[2011/08/28 03:23:38 | 000,002,209 | ---- | C] () -- C:\Users\PSD\Desktop\Camfrog Video Chat 6.1.lnk
[2011/08/28 03:23:37 | 000,002,233 | ---- | C] () -- C:\Users\PSD\Application Data\Microsoft\Internet Explorer\Quick Launch\Camfrog Video Chat 6.1.lnk
[2011/08/28 02:23:26 | 005,057,087 | ---- | C] () -- C:\Users\PSD\Desktop\Blow Coxx - Je suis pas timide.mp3
[2011/08/28 01:54:51 | 000,001,001 | ---- | C] () -- C:\Users\Public\Desktop\Dell Imaging Toolbox - V305.LNK
[2011/08/28 01:45:04 | 000,072,625 | ---- | C] () -- C:\Windows\SysNative\dldtprpr.chm
[2011/08/28 01:42:00 | 000,110,080 | ---- | C] () -- C:\Windows\SysNative\dldtwupd.dll
[2011/08/28 01:42:00 | 000,016,112 | ---- | C] () -- C:\Windows\SysNative\dldtwupd.exe
[2011/08/28 01:41:52 | 000,348,160 | ---- | C] () -- C:\Windows\SysWow64\DLDTinst.dll
[2011/08/28 01:41:52 | 000,335,872 | ---- | C] () -- C:\Windows\SysWow64\dldtcomx.dll
[2011/08/28 01:41:51 | 000,520,192 | ---- | C] () -- C:\Windows\SysWow64\dldtutil.dll
[2011/08/28 01:41:51 | 000,143,360 | ---- | C] () -- C:\Windows\SysWow64\dldtjswr.dll
[2011/08/28 01:41:51 | 000,106,496 | ---- | C] () -- C:\Windows\SysWow64\dldtinsr.dll
[2011/08/28 01:41:51 | 000,036,864 | ---- | C] () -- C:\Windows\SysWow64\dldtcur.dll
[2011/08/28 01:41:50 | 000,180,224 | ---- | C] () -- C:\Windows\SysWow64\dldtinsb.dll
[2011/08/28 01:41:50 | 000,176,128 | ---- | C] () -- C:\Windows\SysWow64\dldtins.dll
[2011/08/28 01:41:49 | 000,086,016 | ---- | C] () -- C:\Windows\SysWow64\dldtcub.dll
[2011/08/28 01:41:49 | 000,077,824 | ---- | C] () -- C:\Windows\SysWow64\dldtcu.dll
[2011/08/28 01:41:45 | 000,077,906 | ---- | C] () -- C:\Windows\SysWow64\DLDTcfg.dll
[2011/08/28 01:41:44 | 000,001,955 | ---- | C] () -- C:\Windows\SysWow64\dldt.loc
[2011/08/28 01:41:34 | 000,530,432 | ---- | C] () -- C:\Windows\SysNative\DLDTinst.dll
[2011/08/28 01:41:29 | 000,084,333 | ---- | C] () -- C:\Windows\SysNative\LexFiles.ulf
[2011/08/28 01:41:29 | 000,065,536 | ---- | C] () -- C:\Windows\SysNative\DLDTcfg.dll
[2011/08/28 01:41:29 | 000,001,955 | ---- | C] () -- C:\Windows\SysNative\dldt.loc
[2011/08/26 22:58:03 | 000,001,140 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2011/08/26 22:56:26 | 000,000,973 | ---- | C] () -- C:\Users\PSD\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk
[2011/08/26 22:51:51 | 000,000,997 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pidgin.lnk
[2011/08/26 22:44:04 | 000,001,700 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDBurnerXP.lnk
[2011/08/26 22:41:36 | 000,001,031 | ---- | C] () -- C:\Users\Public\Desktop\FreeZ Online TV v1.42.lnk
[2011/08/26 02:39:01 | 000,014,119 | ---- | C] () -- C:\Windows\SysWow64\RaCoInst.dat
[2011/08/26 02:39:01 | 000,014,119 | ---- | C] () -- C:\Windows\SysNative\RaCoInst.dat
[2011/08/26 02:38:46 | 000,792,416 | ---- | C] () -- C:\Windows\SysWow64\DiagFunc.dll
[2011/08/26 02:38:46 | 000,792,416 | ---- | C] () -- C:\Windows\SysNative\DiagFunc.dll
[2011/08/26 02:38:46 | 000,000,451 | ---- | C] () -- C:\Windows\SysWow64\DiagFunc.ini
[2011/08/26 02:38:46 | 000,000,451 | ---- | C] () -- C:\Windows\SysNative\DiagFunc.ini
[2011/08/26 02:37:36 | 000,074,272 | ---- | C] () -- C:\Windows\SysNative\RtNicProp64.dll
[2011/08/26 00:17:12 | 003,230,033 | ---- | C] () -- C:\Users\PSD\Desktop\Maroon 5 feat. Christina Aguilera - Move Like Jagger.mp3
[2011/08/17 22:25:30 | 000,000,139 | ---- | C] () -- C:\ProgramData\10d5a4d6
[2011/08/17 21:11:54 | 000,047,553 | ---- | C] () -- C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UpdateDrv.exe
[2011/08/03 03:31:54 | 000,311,912 | ---- | C] () -- C:\Windows\SysWow64\nvStreaming.exe
[2011/08/02 04:52:03 | 000,003,584 | ---- | C] () -- C:\Users\PSD\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/06/11 04:38:19 | 000,242,653 | ---- | C] () -- C:\Users\PSD\AppData\Roaming\25345-utorrent.b1ea.dmp
[2011/06/08 01:31:29 | 000,268,958 | ---- | C] () -- C:\Users\PSD\AppData\Roaming\25345-utorrent.93c5.dmp
[2011/06/06 01:23:14 | 000,205,240 | ---- | C] () -- C:\Users\PSD\AppData\Roaming\25345-utorrent.c3cf.dmp
[2011/05/24 01:53:33 | 000,205,279 | ---- | C] () -- C:\Users\PSD\AppData\Roaming\25309-utorrent.7576.dmp
[2011/05/19 03:28:12 | 002,243,529 | ---- | C] () -- C:\Users\PSD\AppData\Roaming\25303-utorrent.1456.dmp
[2011/05/17 02:07:36 | 002,121,666 | ---- | C] () -- C:\Users\PSD\AppData\Roaming\25277-utorrent.42f1.dmp
[2011/05/16 23:18:34 | 002,136,255 | ---- | C] () -- C:\Users\PSD\AppData\Roaming\25277-utorrent.178b.dmp
[2011/04/29 00:50:57 | 000,000,268 | ---- | C] () -- C:\Windows\{789289CA-F73A-4A16-A331-54D498CE069F}_WiseFW.ini
[2011/04/05 03:18:51 | 000,000,054 | ---- | C] () -- C:\Windows\cdplayer.ini
[2010/12/06 09:58:56 | 002,496,715 | ---- | C] () -- C:\Windows\SysWow64\abgx360.exe
[2010/08/18 18:21:48 | 000,007,168 | ---- | C] () -- C:\Windows\SysWow64\drivers\StarOpen.sys
[2010/08/02 03:26:35 | 000,000,193 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc
[2010/06/20 02:02:56 | 000,000,591 | ---- | C] () -- C:\Windows\kaillera.ini
[2010/06/06 01:59:14 | 000,175,616 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2010/05/09 23:21:53 | 000,000,220 | ---- | C] () -- C:\Windows\iepreview.ini
[2010/03/14 20:44:06 | 000,000,256 | ---- | C] () -- C:\Windows\SysWow64\pool.bin
[2010/03/03 18:48:14 | 000,215,144 | R--- | C] () -- C:\Windows\pw32a.dll
[2010/03/03 18:48:14 | 000,215,144 | R--- | C] () -- C:\Windows\patchw32.dll
[2010/03/02 00:57:15 | 000,020,480 | ---- | C] () -- C:\Windows\FixCamera.exe
[2010/03/02 00:57:14 | 000,270,336 | ---- | C] () -- C:\Windows\tsnp2std.exe
[2010/03/02 00:57:14 | 000,015,497 | ---- | C] () -- C:\Windows\snp2std.ini
[2010/03/02 00:57:12 | 012,212,864 | ---- | C] () -- C:\Windows\SysWow64\drivers\snp2sxp.sys
[2010/03/02 00:57:12 | 000,025,472 | ---- | C] () -- C:\Windows\SysWow64\drivers\sncamd.sys
[2010/02/20 14:16:00 | 000,000,116 | ---- | C] () -- C:\Windows\vlb.INI
[2009/10/08 00:09:41 | 000,798,470 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2009/09/19 00:09:54 | 000,000,760 | ---- | C] () -- C:\Users\PSD\AppData\Roaming\setup_ldm.iss
[2009/09/18 02:18:59 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2009/09/15 13:33:21 | 000,000,358 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2009/09/15 13:32:45 | 000,000,403 | ---- | C] () -- C:\Windows\MAXLINK.INI
[2009/09/15 13:20:40 | 000,000,150 | ---- | C] () -- C:\Windows\Readiris.ini
[2009/09/15 03:10:56 | 000,000,068 | ---- | C] () -- C:\Windows\MyProg.ini
[2009/09/13 18:34:26 | 000,000,056 | -H-- | C] () -- C:\Windows\SysWow64\ezsidmv.dat
[2009/09/13 00:50:38 | 000,007,597 | ---- | C] () -- C:\Users\PSD\AppData\Local\Resmon.ResmonCfg
[2009/09/11 03:16:58 | 000,110,602 | ---- | C] () -- C:\Windows\SysWow64\xcdsfx32.bin
[2009/09/10 20:00:34 | 000,041,872 | ---- | C] () -- C:\Windows\SysWow64\xfcodec.dll
[2009/09/09 23:06:30 | 000,061,850 | ---- | C] () -- C:\Windows\War3Unin.dat
[2009/09/05 22:33:58 | 000,001,236 | ---- | C] () -- C:\Windows\eReg.dat
[2009/09/05 20:54:31 | 000,000,297 | ---- | C] () -- C:\Windows\SIERRA.INI
[2009/09/04 23:14:17 | 000,217,088 | ---- | C] () -- C:\Windows\NVGfxOgl.dll
[2009/09/04 01:54:26 | 000,103,736 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2009/09/04 01:54:25 | 000,669,184 | ---- | C] () -- C:\Windows\SysWow64\pbsvc.exe
[2009/09/04 01:54:25 | 000,066,872 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2009/09/04 01:36:09 | 000,024,576 | ---- | C] () -- C:\Windows\SysWow64\AsIO.dll
[2009/09/04 01:36:09 | 000,013,368 | ---- | C] () -- C:\Windows\SysWow64\drivers\AsUpIO.sys
[2009/09/04 01:36:08 | 000,013,368 | ---- | C] () -- C:\Windows\SysWow64\drivers\AsIO.sys
[2009/09/03 05:07:24 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini
[2009/07/23 16:41:04 | 000,782,336 | ---- | C] () -- C:\Windows\SysWow64\dldtdrs.dll
[2009/07/14 01:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009/07/13 22:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2009/07/13 22:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2009/07/13 20:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009/07/13 19:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009/07/13 17:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009/06/10 17:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2009/05/14 13:57:38 | 000,081,920 | ---- | C] () -- C:\Windows\SysWow64\dldtcaps.dll
[2009/04/21 15:40:42 | 000,353,792 | ---- | C] () -- C:\Windows\SysWow64\pythoncom26.dll
[2009/04/21 15:40:42 | 000,107,520 | ---- | C] () -- C:\Windows\SysWow64\pywintypes26.dll
[2008/12/01 18:32:32 | 000,362,029 | ---- | C] () -- C:\Windows\SysWow64\sqlite3.dll
[2008/04/25 00:07:51 | 000,000,108 | RHS- | C] () -- C:\Windows\neoqaz2.dll
[2007/11/13 15:13:09 | 000,069,632 | ---- | C] () -- C:\Windows\SysWow64\dldtcnv4.dll
[2007/02/15 15:28:50 | 000,696,320 | ---- | C] () -- C:\Windows\SysWow64\Twingly Screensaver.exe
[2007/02/15 14:41:52 | 000,020,423 | ---- | C] () -- C:\Windows\SysWow64\Twingly Screensaver.exe.config
[2006/07/24 07:37:06 | 000,061,440 | ---- | C] () -- C:\Windows\SysWow64\Tao.Platform.Windows.dll
[2006/07/24 07:36:26 | 002,441,216 | ---- | C] () -- C:\Windows\SysWow64\Tao.OpenGl.dll
[2006/04/03 09:41:06 | 000,032,768 | ---- | C] () -- C:\Windows\SysWow64\Zip.dll
[2004/02/20 00:51:36 | 000,110,592 | ---- | C] () -- C:\Windows\SysWow64\AegisI5.exe
[2003/07/17 18:02:16 | 000,651,264 | R--- | C] () -- C:\Windows\SysWow64\libeay32.dll
[2003/07/17 18:02:16 | 000,147,456 | R--- | C] () -- C:\Windows\SysWow64\ssleay32.dll
[2003/03/11 17:02:46 | 000,028,672 | ---- | C] () -- C:\Windows\SysWow64\2012CM.dll
[2003/02/12 17:50:06 | 000,110,592 | ---- | C] () -- C:\Windows\SysWow64\RM_ABG.exe
[2002/12/05 14:18:56 | 000,184,320 | ---- | C] () -- C:\Windows\SysWow64\Set_ABG.exe
[2002/01/01 01:04:17 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin

========== LOP Check ==========

[2011/04/07 23:40:13 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\abgx360
[2009/09/13 20:57:42 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\AGI
[2010/09/26 03:28:03 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Amazon
[2011/09/14 02:27:11 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\AVG
[2011/09/11 01:56:18 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Babylon
[2011/06/07 01:30:31 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\BitComet
[2011/04/02 16:37:00 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\BitTorrent
[2011/06/26 03:10:00 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\BSD
[2011/08/28 03:24:05 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Camfrog
[2010/08/18 18:21:57 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Canneverbe Limited
[2011/08/14 20:25:43 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\com.adobe.dmp.contentviewer
[2011/09/12 02:24:53 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\DAEMON Tools Pro
[2011/09/14 01:04:26 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\DiskAid
[2009/10/02 23:14:00 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Elluminate
[2009/09/18 02:18:53 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Flock
[2011/09/02 21:03:05 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\foobar2000
[2009/09/14 04:58:19 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Gearbox Software
[2011/08/06 01:48:05 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\GetRightToGo
[2011/08/27 02:56:37 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\GlarySoft
[2010/03/29 01:34:00 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\gtk-2.0
[2009/09/15 22:31:04 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Hide IP NG
[2009/09/19 21:25:01 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Highresolution Enterprises
[2009/09/30 23:38:46 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\ImgBurn
[2011/07/22 01:31:10 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\ImTOO
[2011/07/24 17:11:22 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\IObit
[2009/09/14 04:15:59 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\JAM Software
[2009/09/19 00:10:00 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Leadertech
[2010/09/17 17:14:12 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\LimeWire
[2010/08/25 17:18:04 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Logia
[2009/09/13 17:31:44 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\LucasArts
[2009/10/06 00:14:34 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\MessengerDiscovery 2
[2011/06/24 02:24:30 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\NCH Swift Sound
[2009/09/15 13:32:49 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Nuance
[2009/12/26 03:48:38 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Opera
[2010/02/20 14:04:57 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Participatory Culture Foundation
[2010/03/29 02:33:35 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\PCF-VLC
[2009/09/06 01:43:53 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Petroglyph
[2010/07/25 04:44:29 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Raptr
[2009/09/10 01:23:41 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Red Alert 3
[2009/09/15 13:57:02 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\ScanSoft
[2011/04/02 16:55:35 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Soluto
[2009/11/18 01:40:44 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Songbird2
[2011/05/07 02:53:50 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\SoundSpectrum
[2009/09/10 03:40:25 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\SPORE
[2009/10/09 23:56:23 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\SystemRequirementsLab
[2011/09/16 12:47:25 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Systweak
[2010/04/09 00:01:28 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\TCB Networks
[2010/01/23 19:31:07 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\TeamViewer
[2009/09/13 20:57:55 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Temp
[2011/09/16 13:08:05 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\TeraCopy
[2009/09/27 16:45:40 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Touchstone
[2009/09/12 00:58:57 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Ubisoft
[2011/09/14 01:39:44 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Uniblue
[2011/09/16 13:04:18 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\uTorrent
[2009/09/13 01:17:33 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\VersionTracker Pro
[2009/09/03 04:34:30 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Webshots
[2009/09/04 02:36:42 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\X-Setup Pro
[2010/08/24 17:40:31 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Xilisoft
[2010/08/07 03:01:03 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Xtranormal
[2009/09/15 13:45:03 | 000,000,000 | ---D | M] -- C:\Users\PSD\AppData\Roaming\Zeon
[2011/09/15 22:16:18 | 000,000,322 | ---- | M] () -- C:\Windows\Tasks\At1.job
[2011/09/15 22:16:34 | 000,000,322 | ---- | M] () -- C:\Windows\Tasks\At2.job
[2011/09/11 12:40:10 | 000,000,410 | -H-- | M] () -- C:\Windows\Tasks\My BlackB Mreflect Backup xml.job
[2011/09/12 02:48:35 | 000,032,528 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



========== Alternate Data Streams ==========

@Alternate Data Stream - 76 bytes -> C:\Users\PSD\Documents\yipppppppppp.txt:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\PSD\Documents\Redev last iPayStatementsServ - Copy - Copy2222.rtf:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\PSD\Documents\Redev last iPayStatementsServ - Copy - Copy.rtf:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\PSD\Documents\Redev 1st iPayStatementsServ word03.rtf:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\PSD\Documents\raven_ToneBee.mp3:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\PSD\Documents\GOLDEN-EE62CB94_©_analysis_VolumeMap.BMP:Roxio EMC Stream
@Alternate Data Stream - 76 bytes -> C:\Users\PSD\Documents\chksc2.rtf:Roxio EMC Stream
@Alternate Data Stream - 138 bytes -> C:\ProgramData\Temp:0B4227B4
@Alternate Data Stream - 135 bytes -> C:\ProgramData\Temp:9B013599
@Alternate Data Stream - 126 bytes -> C:\ProgramData\Temp:FED912DB
@Alternate Data Stream - 108 bytes -> C:\Windows:

< End of report >

Thanks :) :unsure: :yes: :) ;) :)
  • 0

Advertisements


#2
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP
Copy the text in the code box by highlighting and Ctrl + c


:processes
killallprocesses

:OTL
O4 - HKLM..\Run: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin File not found
O4 - HKLM..\Run: [Drivers Update] C:\Users\PSD\AppData\Roaming\WS32.exe ()
O4 - HKLM..\Run: [Winsock Update] C:\Users\PSD\AppData\Roaming\wsock32.exe ()
O4 - HKLM..\RunOnceEx: [Flags] Reg Error: Invalid data type. File not found
O4 - HKLM..\RunOnceEx: [Title] UnHackMe Rootkit Check File not found
O4 - Startup: C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WS32.exe ()
O4 - Startup: C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\wsock32.exe ()
O4 - HKLM..\Run: [Drivers Update] C:\Users\PSD\AppData\Roaming\WS32.exe ()
O4 - HKLM..\Run: [Everything] C:\Program Files (x86)\Everything\Everything.exe ()
O4 - HKLM..\Run: [Winsock Update] C:\Users\PSD\AppData\Roaming\wsock32.exe ()
O4 - HKLM..\RunOnceEx: [Flags] Reg Error: Invalid data type. File not found
O4 - HKLM..\RunOnceEx: [Title] UnHackMe Rootkit Check File not found
O4 - Startup: C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WS32.exe ()
O4 - Startup: C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\wsock32.exe ()
[2011/09/13 01:28:54 | 000,000,002 | RHS- | M] () -- C:\Windows\winstart.bat
[2011/09/13 01:28:54 | 000,000,002 | RHS- | M] () -- C:\Windows\SysWow64\AUTOEXEC.NT
[2011/09/12 22:00:24 | 000,057,857 | ---- | M] () -- C:\Users\PSD\AppData\Roaming\WS32.exe
[2011/09/12 22:00:24 | 000,057,857 | ---- | M] () -- C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WS32.exe
[2011/09/12 21:19:32 | 000,061,952 | ---- | M] () -- C:\Users\PSD\AppData\Roaming\wsock32.exe
[2011/09/12 21:19:32 | 000,061,952 | ---- | M] () -- C:\Users\PSD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\wsock32.exe
[2011/09/12 16:03:30 | 000,049,566 | ---- | M] () -- C:\Users\PSD\AppData\Roaming\UpdateDrv.exe
[2011/09/15 22:16:18 | 000,000,322 | ---- | M] () -- C:\Windows\Tasks\At1.job
[2011/09/15 22:16:34 | 000,000,322 | ---- | M] () -- C:\Windows\Tasks\At2.job
@Alternate Data Stream - 138 bytes -> C:\ProgramData\Temp:0B4227B4
@Alternate Data Stream - 135 bytes -> C:\ProgramData\Temp:9B013599
@Alternate Data Stream - 126 bytes -> C:\ProgramData\Temp:FED912DB
@Alternate Data Stream - 108 bytes -> C:\Windows:

:files
xcopy %Temp%\smtmp\1 "%AllUsersProfile%\Start Menu" /H /I /S /Y /C
xcopy %Temp%\smtmp\2 "%UserProfile%\Application Data\Microsoft\Internet Explorer\Quick Launch" /H /I /S /Y /C
xcopy %Temp%\smtmp\3 "%AppData%\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar" /H /I /S /Y /C
xcopy %Temp%\smtmp\4 "%AllUsersProfile%\Desktop" /H /I /S /Y /C
C:\Windows\Tasks\At*.job
C:\Users\PSD\AppData\Local\Temp\*.exe
C:\Users\PSD\AppData\Local\Temp\*.dll

:Commands
[purity]
[Reboot]


then Rightclick on OTL and select Run As Administrator to start. Under the Custom Scans/Fixes box at the bottom, paste (ctrl +v) the text. Verify that you got it all and Then click the RUN FIX button (NOT THE QUICK SCAN button!) at the top
Let the program run unhindered, OTL will reboot the PC when it is done.


If one of the following will not run then just skip to the next one then go back and try the things that wouldn't run again after finishing the others.

Malwarebytes' Anti-Malware
:!: If you have a previous version of MalwareBytes', remove it via Add or Remove Programs and download a fresh copy. :!:

http://www.malwarebytes.org/mbam.php

SAVE Malwarebytes' Anti-Malware to your desktop.

Rightclick on Malwarebytes' Anti-Malware and select Run As Administrator and follow the prompts to install the program.
* At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
* If an update is found, it will download and install the latest version.

* Once the program has loaded, select Perform Quick scan, then click Scan.
* When the scan is complete, click OK, then Show Results to view the results.

* Be sure that everything is checked, and click Remove Selected.

* When completed, a log will open in Notepad. Please save it to a convenient location.
* The log can also be found here:
C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-date (time).txt
* Post that log back here.



ComboFix

:!: It must be saved to your desktop, do not run it from your browser:!:

:!: Disable your Antivirus software when downloading or running Combofix. If it has Script Blocking features, please disable these as well. See: http://www.bleepingc...opic114351.html


Download and Save this file -- to your Desktop -- from either of these two sources:
http://download.blee...Bs/ComboFix.exe
http://subs.geekstogo.com/ComboFix.exe

Rightclick on ComboFix and select Run As Administrator to start the program.



* :!: Important: Have no other programs running. Your Task Bar should be clear of any program entries including your Browser.


* A window may open with a series of Disclaimers. Accept the Disclaimers to start the fix. Allow it to install the Recovery Console then Continue. When the scan completes Notepad will open with with your results log open. Do a File, Exit and answer 'Yes' to save changes.


A caution - Do not run Combofix more than once. Do not touch your mouse/keyboard until the scan has completed, as this may cause the process to stall or your computer to lock. The scan will temporarily disable your desktop, and if interrupted may leave your desktop disabled. If this occurs, please reboot to restore the desktop. Even when ComboFix appears to be doing nothing, look at your Drive light. If it is flashing, Combofix is still at work.

A file will be created at => C:\Combofix.txt. I'll need to see that in your reply.


Download TDSSKiller:
http://support.kaspe.../tdsskiller.exe
Save it to your desktop then right click and Run as Administrator

If TDSSKiller alerts you that the system needs to reboot, please consent.
When done, a log file should be created on your C: drive named "TDSSKiller.txt" please copy and paste the contents in your next reply.

Download aswMBR.exe ( 511KB ) to your desktop.
Double click the aswMBR.exe to run it
change the a-v scan to None.
uncheck trace disk IO calls
Click the "Scan" button to start scan
On completion of the scan (Note if the Fix button is enabled (not the FixMBR button) and tell me) click save log, save it to your desktop and post in your next reply

Right click on (My) Computer and select Manage (Continue) Then the Event Viewer. Next select Windows Logs. Right click on System and Clear Log, Clear. Repeat for Application. Reboot.


Open OTL again and select the All option in the Extra Registry group then the Run Scan button. Post the two logs it produces in your next reply.

Ron
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP