Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Whenever I browse with Firefox a new window with four tabs comes


  • Please log in to reply

#1
Cozmiq

Cozmiq

    New Member

  • Member
  • Pip
  • 4 posts
OTL logfile created on: 10/17/2011 13:29:54 - Run 2
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\poytrrrrrrrrrrrrrrrr\Downloads
Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.49 Gb Total Physical Memory | 2.40 Gb Available Physical Memory | 68.68% Memory free
6.98 Gb Paging File | 5.82 Gb Available in Paging File | 83.43% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 97.56 Gb Total Space | 81.66 Gb Free Space | 83.71% Space Free | Partition Type: NTFS
Drive D: | 200.43 Gb Total Space | 28.51 Gb Free Space | 14.22% Space Free | Partition Type: NTFS
Drive G: | 21.85 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS

Computer Name: COZMIQ | User Name: poytrrrrrrrrrrrrrrrr | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/10/17 13:29:29 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\poytrrrrrrrrrrrrrrrr\Downloads\OTL.exe
PRC - [2011/10/12 09:18:01 | 004,615,552 | ---- | M] (SUPERAntiSpyware.com) -- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
PRC - [2011/09/23 06:31:50 | 002,404,704 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgtray.exe
PRC - [2011/09/21 19:53:12 | 000,973,152 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgemcx.exe
PRC - [2011/09/13 06:32:40 | 001,227,616 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgnsx.exe
PRC - [2011/09/12 06:23:46 | 005,265,248 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe
PRC - [2011/09/08 20:53:26 | 000,743,264 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgrsx.exe
PRC - [2011/08/15 06:21:40 | 000,337,760 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgcsrvx.exe
PRC - [2011/08/11 16:38:07 | 000,116,608 | ---- | M] (SUPERAntiSpyware.com) -- C:\Program Files\SUPERAntiSpyware\SASCore.exe
PRC - [2011/08/02 06:09:08 | 000,192,776 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgwdsvc.exe
PRC - [2011/07/08 00:16:28 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2011/06/14 23:19:14 | 000,307,200 | ---- | M] (PowerISO Computing, Inc.) -- C:\Program Files\PowerISO\PWRISOVM.EXE
PRC - [2010/08/04 12:48:48 | 003,118,512 | ---- | M] (Tonec Inc.) -- C:\Program Files\Internet Download Manager\IDMan.exe
PRC - [2009/10/15 00:51:52 | 000,263,600 | ---- | M] (Tonec Inc.) -- C:\Program Files\Internet Download Manager\IEMonitor.exe
PRC - [2009/07/13 18:14:42 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2009/07/13 18:14:28 | 000,646,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\osk.exe
PRC - [2009/07/13 18:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2009/07/13 18:14:15 | 000,271,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe
PRC - [2009/04/27 09:41:32 | 000,114,688 | ---- | M] () -- C:\Program Files\Mobile Partner\Mobile Partner.exe
PRC - [2008/03/03 14:36:48 | 001,207,376 | ---- | M] (Dell Inc.) -- C:\Program Files\Dell\QuickSet\quickset.exe
PRC - [2008/02/29 04:37:16 | 001,053,944 | ---- | M] (AuthenTec, Inc.) -- C:\Program Files\Fingerprint Sensor\AtService.exe
PRC - [2008/02/28 01:01:20 | 000,221,239 | ---- | M] (IDT, Inc.) -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_122dcab4e479a3bf\stacsv.exe
PRC - [2008/02/28 00:58:34 | 000,442,433 | ---- | M] (IDT, Inc.) -- C:\Program Files\IDT\WDM\sttray.exe
PRC - [2008/02/13 09:05:54 | 000,073,728 | ---- | M] (Andrea Electronics Corporation) -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_122dcab4e479a3bf\AEstSrv.exe
PRC - [2007/10/11 22:49:14 | 000,163,840 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\Apoint.exe
PRC - [2007/09/02 13:58:52 | 000,495,616 | ---- | M] () -- C:\Program Files\RocketDock\RocketDock.exe
PRC - [2007/06/06 16:44:44 | 000,049,152 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\ApntEx.exe
PRC - [2006/09/08 15:10:22 | 000,040,960 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\hidfind.exe


========== Modules (No Company Name) ==========

MOD - [2011/10/17 12:34:45 | 000,063,488 | ---- | M] () -- C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10006.dll
MOD - [2011/10/17 12:34:45 | 000,052,736 | ---- | M] () -- C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10007.dll
MOD - [2011/10/16 22:37:15 | 000,117,760 | ---- | M] () -- C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
MOD - [2011/10/16 22:37:15 | 000,052,224 | ---- | M] () -- C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll
MOD - [2011/07/08 00:16:28 | 001,850,328 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2009/04/27 09:41:32 | 000,159,744 | ---- | M] () -- C:\Program Files\Mobile Partner\SMSPlugin.dll
MOD - [2009/04/27 09:41:32 | 000,114,688 | ---- | M] () -- C:\Program Files\Mobile Partner\Mobile Partner.exe
MOD - [2009/04/27 09:41:32 | 000,061,440 | ---- | M] () -- C:\Program Files\Mobile Partner\XCodec.dll
MOD - [2009/04/27 09:41:30 | 000,860,160 | ---- | M] () -- C:\Program Files\Mobile Partner\NDISAPI.dll
MOD - [2009/04/27 09:41:30 | 000,552,960 | ---- | M] () -- C:\Program Files\Mobile Partner\atcomm.dll
MOD - [2009/04/27 09:41:30 | 000,159,744 | ---- | M] () -- C:\Program Files\Mobile Partner\DeviceMgrUIPlugin.dll
MOD - [2009/04/27 09:41:30 | 000,151,552 | ---- | M] () -- C:\Program Files\Mobile Partner\DetectDev.dll
MOD - [2009/04/27 09:41:30 | 000,135,168 | ---- | M] () -- C:\Program Files\Mobile Partner\LocaleMgrPlugin.dll
MOD - [2009/04/27 09:41:30 | 000,118,784 | ---- | M] () -- C:\Program Files\Mobile Partner\NetInfoPlugin.dll
MOD - [2009/04/27 09:41:30 | 000,098,304 | ---- | M] () -- C:\Program Files\Mobile Partner\DeviceMgrPlugin.dll
MOD - [2009/04/27 09:41:30 | 000,090,112 | ---- | M] () -- C:\Program Files\Mobile Partner\FileManager.dll
MOD - [2009/04/27 09:41:30 | 000,090,112 | ---- | M] () -- C:\Program Files\Mobile Partner\DialUpPlugin.dll
MOD - [2009/04/27 09:41:30 | 000,061,440 | ---- | M] () -- C:\Program Files\Mobile Partner\DeviceOperate.dll
MOD - [2009/04/27 09:41:30 | 000,057,344 | ---- | M] () -- C:\Program Files\Mobile Partner\ConfigFilePlugin.dll
MOD - [2009/04/27 09:41:30 | 000,032,768 | ---- | M] () -- C:\Program Files\Mobile Partner\NotifyServicePlugin.dll
MOD - [2009/04/27 09:41:30 | 000,014,848 | ---- | M] () -- C:\Program Files\Mobile Partner\isaputrace.dll
MOD - [2007/09/02 13:58:52 | 000,495,616 | ---- | M] () -- C:\Program Files\RocketDock\RocketDock.exe
MOD - [2007/09/02 13:57:36 | 000,069,632 | ---- | M] () -- C:\Program Files\RocketDock\RocketDock.dll


========== Win32 Services (SafeList) ==========

SRV - [2011/10/16 14:09:02 | 001,343,400 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
SRV - [2011/09/12 06:23:46 | 005,265,248 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe -- (AVGIDSAgent)
SRV - [2011/08/11 16:38:07 | 000,116,608 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- C:\Program Files\SUPERAntiSpyware\SASCORE.EXE -- (!SASCORE)
SRV - [2011/08/02 06:09:08 | 000,192,776 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2012\avgwdsvc.exe -- (avgwd)
SRV - [2009/07/13 18:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2009/07/13 18:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc)
SRV - [2009/07/13 18:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2008/02/29 04:37:16 | 001,053,944 | ---- | M] (AuthenTec, Inc.) [Auto | Running] -- C:\Program Files\Fingerprint Sensor\AtService.exe -- (ATService)
SRV - [2008/02/28 01:01:20 | 000,221,239 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_122dcab4e479a3bf\stacsv.exe -- (STacSV)
SRV - [2008/02/13 09:05:54 | 000,073,728 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_122dcab4e479a3bf\AEstSrv.exe -- (AESTFilters)


========== Driver Services (SafeList) ==========

DRV - [2011/09/13 06:30:10 | 000,032,592 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\system32\DRIVERS\avgrkx86.sys -- (Avgrkx86)
DRV - [2011/08/08 06:08:58 | 000,040,016 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\System32\drivers\avgmfx86.sys -- (Avgmfx86)
DRV - [2011/07/22 09:27:02 | 000,012,880 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV)
DRV - [2011/07/12 14:55:22 | 000,067,664 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL)
DRV - [2011/07/11 01:14:38 | 000,295,248 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgtdix.sys -- (Avgtdix)
DRV - [2011/07/11 01:14:16 | 000,016,720 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AVGIDSShim.sys -- (AVGIDSShim)
DRV - [2011/07/11 01:14:14 | 000,024,272 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AVGIDSFilter.sys -- (AVGIDSFilter)
DRV - [2011/07/11 01:14:12 | 000,134,736 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AVGIDSDriver.sys -- (AVGIDSDriver)
DRV - [2011/07/11 01:14:12 | 000,023,120 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\AVGIDSEH.Sys -- (AVGIDSEH)
DRV - [2011/07/11 01:13:46 | 000,229,840 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgldx86.sys -- (Avgldx86)
DRV - [2011/06/15 01:23:56 | 000,060,156 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Running] -- C:\Windows\System32\drivers\scdemu.sys -- (SCDEmu)
DRV - [2009/07/13 18:19:10 | 000,175,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vmbus.sys -- (vmbus)
DRV - [2009/07/13 18:19:10 | 000,040,896 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\vmstorfl.sys -- (storflt)
DRV - [2009/07/13 18:19:10 | 000,028,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\storvsc.sys -- (storvsc)
DRV - [2009/07/13 16:28:47 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vms3cap.sys -- (s3cap)
DRV - [2009/07/13 16:28:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\VMBusHID.sys -- (VMBusHID)
DRV - [2009/06/22 19:38:24 | 000,102,912 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ewusbmdm.sys -- (hwdatacard)
DRV - [2009/06/22 19:26:06 | 000,100,736 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ewusbdev.sys -- (hwusbdev)
DRV - [2008/02/29 10:15:58 | 000,548,352 | ---- | M] (AuthenTec, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ATSwpWDF.sys -- (ATSwpWDF)
DRV - [2008/02/28 01:06:32 | 000,374,784 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\stwrt.sys -- (STHDA)
DRV - [2008/02/16 01:00:00 | 000,277,624 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\OA001Vid.sys -- (OA001Vid)
DRV - [2008/02/15 18:01:18 | 000,046,592 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimmptsk.sys -- (rimmptsk)
DRV - [2008/01/31 15:37:04 | 000,149,208 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\OA001Ufd.sys -- (OA001Ufd)
DRV - [2008/01/29 20:08:46 | 000,203,264 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\k57nd60x.sys -- (k57nd60x) Broadcom NetLink ™
DRV - [2007/12/12 18:01:30 | 000,164,400 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Apfiltr.sys -- (ApfiltrService)
DRV - [2007/07/30 11:54:02 | 000,038,400 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rixdptsk.sys -- (rismxdp)
DRV - [2007/07/30 10:42:58 | 000,043,008 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimsptsk.sys -- (rimsptsk)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========


IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 51 42 88 39 02 8D CC 01 [binary data]
IE - HKCU\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "http://www.google.com.jm/"
FF - prefs.js..network.proxy.type: 0

FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files\AVG\AVG2012\Firefox4\ [2011/10/16 16:45:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/10/16 16:47:57 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\[email protected]: C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\IDM\idmmzcc3 [2011/10/17 09:39:19 | 000,000,000 | ---D | M]

[2011/10/16 16:53:21 | 000,000,000 | ---D | M] (No name found) -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\mozilla\Extensions
[2011/10/17 12:56:21 | 000,000,000 | ---D | M] (No name found) -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\mozilla\Firefox\Profiles\khkkh1n3.default\extensions
[2011/10/16 16:47:56 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2011/10/16 16:45:00 | 000,000,000 | ---D | M] (AVG Safe Search) -- C:\PROGRAM FILES\AVG\AVG2012\FIREFOX4
[2011/07/08 00:16:28 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2010/01/01 01:00:00 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml

O1 HOSTS File: ([2011/10/17 00:32:21 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll (Tonec Inc.)
O2 - BHO: (&Yahoo! Toolbar Helper) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG2012\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (SingleInstance Class) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll (Yahoo! Inc)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O4 - HKLM..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe (Alps Electric Co., Ltd.)
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG2012\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE (PowerISO Computing, Inc.)
O4 - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe (IDT, Inc.)
O4 - HKCU..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe (Tonec Inc.)
O4 - HKCU..\Run: [RocketDock] C:\Program Files\RocketDock\RocketDock.exe ()
O4 - HKCU..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware.com)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Download all links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm ()
O8 - Extra context menu item: Download FLV video content with IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm ()
O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm ()
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{66E6F9B0-F9B8-446E-BD0B-C66830FF9A7F}: NameServer = 200.10.152.232 200.10.152.152
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll (AVG Technologies CZ, s.r.o.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) -C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/06/10 14:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2009/01/21 02:22:18 | 000,126,976 | R--- | M] (Huawei Technologies Co., Ltd.) - G:\AutoRun.exe -- [ CDFS ]
O32 - AutoRun File - [2009/04/27 18:41:54 | 000,000,047 | R--- | M] () - G:\AUTORUN.INF -- [ CDFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG2012\avgrsx.exe /sync /restart)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/10/17 12:18:14 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell Inc
[2011/10/17 12:16:00 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Local\Apps
[2011/10/17 12:15:59 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Local\Deployment
[2011/10/17 02:15:23 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2011/10/17 02:15:23 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Local\temp
[2011/10/17 02:07:42 | 000,000,000 | --SD | C] -- C:\ComboFix
[2011/10/17 00:54:46 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Desktop\SmitfraudFix
[2011/10/17 00:53:03 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2011/10/16 23:22:18 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2011/10/16 23:22:18 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2011/10/16 23:22:18 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2011/10/16 23:22:10 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2011/10/16 23:21:38 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011/10/16 22:37:09 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\SUPERAntiSpyware.com
[2011/10/16 22:36:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
[2011/10/16 22:36:39 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
[2011/10/16 22:36:39 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2011/10/16 20:32:44 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\IDM
[2011/10/16 20:32:44 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Documents\Downloads
[2011/10/16 20:32:44 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\DMCache
[2011/10/16 20:32:42 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
[2011/10/16 20:32:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
[2011/10/16 20:32:40 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Download Manager
[2011/10/16 16:48:05 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Mozilla
[2011/10/16 16:48:05 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Local\Mozilla
[2011/10/16 16:47:56 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2011/10/16 16:45:34 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\AVG2012
[2011/10/16 16:45:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2012
[2011/10/16 16:44:48 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG2012
[2011/10/16 16:44:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\AVG
[2011/10/16 16:44:23 | 000,000,000 | ---D | C] -- C:\Program Files\AVG
[2011/10/16 15:02:53 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Sony Creative Software Inc
[2011/10/16 14:55:49 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Publish Providers
[2011/10/16 14:52:47 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Local\Sony
[2011/10/16 14:47:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
[2011/10/16 14:47:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Sony
[2011/10/16 14:47:28 | 000,000,000 | ---D | C] -- C:\Program Files\Sony
[2011/10/16 14:46:22 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Sony
[2011/10/16 14:45:58 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Local\Adobe
[2011/10/16 14:42:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO
[2011/10/16 14:42:41 | 000,000,000 | ---D | C] -- C:\Program Files\PowerISO
[2011/10/16 14:38:43 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Virtual DJ
[2011/10/16 14:38:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual DJ
[2011/10/16 14:38:37 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Documents\VirtualDJ
[2011/10/16 14:38:37 | 000,000,000 | ---D | C] -- C:\Program Files\VirtualDJ
[2011/10/16 14:37:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Yahoo! Companion
[2011/10/16 14:37:15 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Yahoo!
[2011/10/16 14:37:15 | 000,000,000 | ---D | C] -- C:\Program Files\Yahoo!
[2011/10/16 14:37:14 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner
[2011/10/16 14:37:13 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011/10/16 14:34:50 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR
[2011/10/16 14:34:49 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Macromedia
[2011/10/16 14:34:49 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Adobe
[2011/10/16 14:33:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2011/10/16 14:33:51 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2011/10/16 14:33:51 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2011/10/16 14:31:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mobile Partner
[2011/10/16 14:31:38 | 000,112,128 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ewusbnet.sys
[2011/10/16 14:31:38 | 000,102,912 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ewusbmdm.sys
[2011/10/16 14:31:38 | 000,100,736 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ewusbdev.sys
[2011/10/16 14:31:38 | 000,023,424 | ---- | C] (Huawei Tech. Co., Ltd.) -- C:\Windows\System32\drivers\ewdcsc.sys
[2011/10/16 14:31:30 | 000,000,000 | ---D | C] -- C:\Program Files\Mobile Partner
[2011/10/16 14:28:51 | 000,000,000 | -H-D | C] -- C:\ProgramData\Common Files
[2011/10/16 14:28:39 | 000,000,000 | ---D | C] -- C:\ProgramData\MFAData
[2011/10/16 14:27:19 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX
[2011/10/16 14:27:13 | 000,000,000 | ---D | C] -- C:\Program Files\Fingerprint Sensor
[2011/10/16 14:25:56 | 000,000,000 | ---D | C] -- C:\Program Files\Broadcom
[2011/10/16 14:24:36 | 000,172,032 | ---- | C] (Ricoh Company,Ltd) -- C:\Windows\System32\rixdicon.dll
[2011/10/16 14:24:36 | 000,046,592 | ---- | C] (REDC) -- C:\Windows\System32\drivers\rimmptsk.sys
[2011/10/16 14:24:36 | 000,043,008 | ---- | C] (REDC) -- C:\Windows\System32\drivers\rimsptsk.sys
[2011/10/16 14:24:36 | 000,038,400 | ---- | C] (REDC) -- C:\Windows\System32\drivers\rixdptsk.sys
[2011/10/16 14:23:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RocketDock
[2011/10/16 14:23:22 | 000,000,000 | ---D | C] -- C:\Program Files\RocketDock
[2011/10/16 14:17:27 | 005,234,753 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\idtcpl.cpl
[2011/10/16 14:17:27 | 002,285,568 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\stlang.dll
[2011/10/16 14:17:27 | 000,512,000 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\idtmini1.exe
[2011/10/16 14:16:40 | 000,540,160 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\stapo.dll
[2011/10/16 14:16:40 | 000,398,848 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\stapi32.dll
[2011/10/16 14:16:40 | 000,374,784 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\drivers\stwrt.sys
[2011/10/16 14:16:40 | 000,342,528 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\stcplx.dll
[2011/10/16 14:16:40 | 000,150,016 | ---- | C] (IDT, Inc.) -- C:\Windows\System32\st325881.dll
[2011/10/16 14:16:39 | 000,000,000 | ---D | C] -- C:\Program Files\IDT
[2011/10/16 14:15:48 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2011/10/16 14:15:47 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2011/10/16 14:15:25 | 000,000,000 | ---D | C] -- C:\Program Files\DellTPad
[2011/10/16 14:15:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Dell
[2011/10/16 14:15:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell QuickSet
[2011/10/16 14:14:27 | 000,000,000 | ---D | C] -- C:\dell
[2011/10/16 14:13:36 | 000,000,000 | ---D | C] -- C:\Windows\System32\vmm32
[2011/10/16 14:13:36 | 000,000,000 | ---D | C] -- C:\Program Files\Dell
[2011/10/16 14:13:15 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2011/10/16 14:09:02 | 000,000,000 | ---D | C] -- C:\Windows\System32\Wat
[2011/10/16 14:02:44 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\WinRAR
[2011/10/16 14:01:47 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2011/10/16 14:01:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2011/10/16 14:01:42 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2011/10/16 14:00:17 | 000,000,000 | R--D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2011/10/16 14:00:17 | 000,000,000 | R--D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Searches
[2011/10/16 14:00:17 | 000,000,000 | R--D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2011/10/16 14:00:17 | 000,000,000 | -H-D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Application Data\Microsoft\Internet Explorer\Quick Launch\User Pinned
[2011/10/16 14:00:08 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Identities
[2011/10/16 14:00:07 | 000,000,000 | R--D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Contacts
[2011/10/16 13:59:59 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Local\VirtualStore
[2011/10/16 13:59:57 | 000,000,000 | --SD | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Microsoft
[2011/10/16 13:59:57 | 000,000,000 | R--D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Videos
[2011/10/16 13:59:57 | 000,000,000 | R--D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Saved Games
[2011/10/16 13:59:57 | 000,000,000 | R--D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Pictures
[2011/10/16 13:59:57 | 000,000,000 | R--D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Music
[2011/10/16 13:59:57 | 000,000,000 | R--D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2011/10/16 13:59:57 | 000,000,000 | R--D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Links
[2011/10/16 13:59:57 | 000,000,000 | R--D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Favorites
[2011/10/16 13:59:57 | 000,000,000 | R--D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Downloads
[2011/10/16 13:59:57 | 000,000,000 | R--D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Documents
[2011/10/16 13:59:57 | 000,000,000 | R--D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Desktop
[2011/10/16 13:59:57 | 000,000,000 | R--D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2011/10/16 13:59:57 | 000,000,000 | -HSD | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Local\Temporary Internet Files
[2011/10/16 13:59:57 | 000,000,000 | -HSD | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Templates
[2011/10/16 13:59:57 | 000,000,000 | -HSD | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Start Menu
[2011/10/16 13:59:57 | 000,000,000 | -HSD | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\SendTo
[2011/10/16 13:59:57 | 000,000,000 | -HSD | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Recent
[2011/10/16 13:59:57 | 000,000,000 | -HSD | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\PrintHood
[2011/10/16 13:59:57 | 000,000,000 | -HSD | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\NetHood
[2011/10/16 13:59:57 | 000,000,000 | -HSD | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Documents\My Videos
[2011/10/16 13:59:57 | 000,000,000 | -HSD | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Documents\My Pictures
[2011/10/16 13:59:57 | 000,000,000 | -HSD | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Documents\My Music
[2011/10/16 13:59:57 | 000,000,000 | -HSD | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\My Documents
[2011/10/16 13:59:57 | 000,000,000 | -HSD | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Local Settings
[2011/10/16 13:59:57 | 000,000,000 | -HSD | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Local\History
[2011/10/16 13:59:57 | 000,000,000 | -HSD | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Cookies
[2011/10/16 13:59:57 | 000,000,000 | -HSD | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\Application Data
[2011/10/16 13:59:57 | 000,000,000 | -HSD | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Local\Application Data
[2011/10/16 13:59:57 | 000,000,000 | -H-D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData
[2011/10/16 13:59:57 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Local\Microsoft
[2011/10/16 13:59:57 | 000,000,000 | ---D | C] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Media Center Programs
[2011/10/16 13:59:45 | 000,000,000 | -HSD | C] -- C:\Recovery
[2011/10/16 13:00:54 | 000,000,000 | ---D | C] -- C:\Windows\Panther
[2011/10/16 12:04:11 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2011/10/16 12:02:05 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
[2011/10/16 12:01:19 | 000,000,000 | -HSD | C] -- C:\System Volume Information

========== Files - Modified Within 30 Days ==========

[2011/10/17 12:38:01 | 000,615,360 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011/10/17 12:38:01 | 000,103,702 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011/10/17 12:34:27 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/10/17 12:34:23 | 2810,687,488 | -HS- | M] () -- C:\hiberfil.sys
[2011/10/17 12:22:21 | 000,001,411 | ---- | M] () -- C:\Users\poytrrrrrrrrrrrrrrrr\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011/10/17 11:01:09 | 000,014,016 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/10/17 11:01:09 | 000,014,016 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/10/17 01:45:08 | 069,591,602 | ---- | M] () -- C:\Windows\System32\drivers\AVG\incavi.avm
[2011/10/17 00:32:21 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts
[2011/10/16 23:22:46 | 000,001,201 | ---- | M] () -- C:\Users\poytrrrrrrrrrrrrrrrr\Desktop\ComboFix - Shortcut.lnk
[2011/10/16 23:14:35 | 001,872,472 | ---- | M] () -- C:\Users\poytrrrrrrrrrrrrrrrr\Desktop\SmitfraudFix.exe
[2011/10/16 22:36:42 | 000,001,965 | ---- | M] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2011/10/16 17:49:04 | 000,001,730 | ---- | M] () -- C:\Windows\System32\drivers\AVG\iavichjg.avm
[2011/10/16 16:49:57 | 002,816,272 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2011/10/16 16:47:57 | 000,001,100 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2011/10/16 16:45:00 | 000,000,935 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2012.lnk
[2011/10/16 15:02:36 | 000,002,600 | ---- | M] () -- C:\Users\poytrrrrrrrrrrrrrrrr\Documents\Register DVD Architect Pro.htm
[2011/10/16 14:55:22 | 000,002,600 | ---- | M] () -- C:\Users\poytrrrrrrrrrrrrrrrr\Documents\Register Vegas Pro.htm
[2011/10/16 14:31:40 | 000,001,041 | ---- | M] () -- C:\Users\Public\Desktop\Mobile Partner.lnk
[2011/10/16 14:27:18 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_ATSwpWDF_01005.Wdf
[2011/10/16 14:15:28 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_Apfiltr_01005.Wdf
[2011/10/16 14:15:01 | 000,002,020 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\QuickSet.lnk
[2011/10/16 12:05:08 | 000,042,045 | ---- | M] () -- C:\Windows\System32\license.rtf
[2011/10/16 12:03:21 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf

========== Files Created - No Company Name ==========

[2011/10/17 12:22:21 | 000,001,411 | ---- | C] () -- C:\Users\poytrrrrrrrrrrrrrrrr\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011/10/17 01:45:08 | 069,591,602 | ---- | C] () -- C:\Windows\System32\drivers\AVG\incavi.avm
[2011/10/16 23:22:46 | 000,001,201 | ---- | C] () -- C:\Users\poytrrrrrrrrrrrrrrrr\Desktop\ComboFix - Shortcut.lnk
[2011/10/16 23:22:18 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2011/10/16 23:22:18 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2011/10/16 23:22:18 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2011/10/16 23:22:18 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2011/10/16 23:22:18 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011/10/16 23:15:43 | 000,040,960 | ---- | C] () -- C:\Windows\System32\swsc.exe
[2011/10/16 23:02:30 | 001,872,472 | ---- | C] () -- C:\Users\poytrrrrrrrrrrrrrrrr\Desktop\SmitfraudFix.exe
[2011/10/16 22:36:42 | 000,001,965 | ---- | C] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
[2011/10/16 17:49:04 | 000,001,730 | ---- | C] () -- C:\Windows\System32\drivers\AVG\iavichjg.avm
[2011/10/16 16:47:57 | 000,001,112 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2011/10/16 16:47:57 | 000,001,100 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2011/10/16 16:45:00 | 000,000,935 | ---- | C] () -- C:\Users\Public\Desktop\AVG 2012.lnk
[2011/10/16 15:02:36 | 000,002,600 | ---- | C] () -- C:\Users\poytrrrrrrrrrrrrrrrr\Documents\Register DVD Architect Pro.htm
[2011/10/16 14:55:22 | 000,002,600 | ---- | C] () -- C:\Users\poytrrrrrrrrrrrrrrrr\Documents\Register Vegas Pro.htm
[2011/10/16 14:34:58 | 000,000,979 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat.com.lnk
[2011/10/16 14:33:56 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader 9.lnk
[2011/10/16 14:31:40 | 000,001,041 | ---- | C] () -- C:\Users\Public\Desktop\Mobile Partner.lnk
[2011/10/16 14:27:18 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_ATSwpWDF_01005.Wdf
[2011/10/16 14:15:45 | 000,057,656 | ---- | C] () -- C:\Windows\System32\drivers\OA001PC.bmp
[2011/10/16 14:15:45 | 000,022,951 | ---- | C] () -- C:\Windows\System32\drivers\OA001PC.jpg
[2011/10/16 14:15:45 | 000,005,356 | ---- | C] () -- C:\Windows\OA001.uns
[2011/10/16 14:15:28 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_Apfiltr_01005.Wdf
[2011/10/16 14:15:01 | 000,002,020 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\QuickSet.lnk
[2011/10/16 14:00:18 | 000,001,417 | ---- | C] () -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2011/10/16 13:59:57 | 000,000,290 | ---- | C] () -- C:\Users\poytrrrrrrrrrrrrrrrr\Application Data\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk
[2011/10/16 13:59:57 | 000,000,272 | ---- | C] () -- C:\Users\poytrrrrrrrrrrrrrrrr\Application Data\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk
[2011/10/16 12:05:04 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
[2011/10/16 12:04:57 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
[2011/10/16 12:03:21 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2011/10/16 12:01:19 | 2810,687,488 | -HS- | C] () -- C:\hiberfil.sys
[2009/07/13 21:57:37 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2009/07/13 21:33:53 | 002,816,272 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2009/07/13 19:05:48 | 000,615,360 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2009/07/13 19:05:48 | 000,291,294 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2009/07/13 19:05:48 | 000,103,702 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2009/07/13 19:05:48 | 000,031,548 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2009/07/13 19:05:05 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2009/07/13 19:04:11 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2009/07/13 17:19:49 | 000,066,048 | ---- | C] () -- C:\Windows\System32\PrintBrmUi.exe
[2009/07/13 16:55:01 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2009/07/13 16:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
[2009/07/13 16:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
[2009/07/13 15:09:19 | 001,498,564 | ---- | C] () -- C:\Windows\System32\igkrng400.bin
[2009/06/10 14:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat

========== LOP Check ==========

[2011/10/16 16:45:34 | 000,000,000 | ---D | M] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\AVG2012
[2011/10/17 12:34:36 | 000,000,000 | ---D | M] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\DMCache
[2011/10/17 09:39:18 | 000,000,000 | ---D | M] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\IDM
[2011/10/16 14:55:49 | 000,000,000 | ---D | M] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Publish Providers
[2011/10/16 15:02:16 | 000,000,000 | ---D | M] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Sony
[2011/10/16 15:02:53 | 000,000,000 | ---D | M] -- C:\Users\poytrrrrrrrrrrrrrrrr\AppData\Roaming\Sony Creative Software Inc
[2009/07/13 21:53:46 | 000,005,682 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



< End of report >

Attached Files

  • Attached File  OTL.Txt   82.2KB   107 downloads

  • 0

Advertisements


#2
WhiteHat

WhiteHat

    Trusted Helper

  • Retired Staff
  • 1,925 posts
Hello and welcome to GeeksToGo :)

I'm GLeobas and I'm going to help you fix your problem.

Please note that I'm currently in training and my posts have to be approved by an expert before I reply.
  • Please do not attach any log files to your replies unless I specifically ask you. Instead please copy and paste so as to include the log in your reply. You can do this in separate posts if it's easier for you.
  • Please do not try to fix anything without being asked
  • I suggest you print or save any instructions I give you for easy reference. We may be using Safe mode and you will not always be able to access this thread.
  • I am currently reviewing your logs.

  • 0

#3
WhiteHat

WhiteHat

    Trusted Helper

  • Retired Staff
  • 1,925 posts
Please do not re-run ComboFix without supervision of an analyst in malware removal. Combofix is a powerful tool if not used carefully can seriously damage your computer.

1. Go to C:\ComboFix.txt and post the ComboFix.txt log.
  • 0

#4
Cozmiq

Cozmiq

    New Member

  • Topic Starter
  • Member
  • Pip
  • 4 posts
for some reason the scan with combofix was not completed, it stopped at a point & went to standby mode.
  • 0

#5
WhiteHat

WhiteHat

    Trusted Helper

  • Retired Staff
  • 1,925 posts
# Step 1 #

Download aswMBR.exe ( 1.8mB ) to your desktop.

Double click the aswMBR.exe to run it

Click the "Scan" button to start scan
Posted Image

On completion of the scan click save log, save it to your desktop and post in your next reply
Posted Image

# Step 2 #

Please download Malwarebytes' Anti-Malware

Double Click mbam-setup.exe to install the application.
  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Full scan", then click Scan.
  • The scan may take some time to finish, so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be
    prompted to Restart.(See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy&Paste the entire report in your next reply.


Extra Note:
If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2
prompts, click OK to either and let MBAM proceed with the disinfection process, if asked to restart the computer, please do so immediately.

  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP