Issue1:
Whenever I wake up my computer from sleep, the computer is very slow. Infact windows explorer almost freezes. No new applications can be started, task manager does not start and I can't even shut down my computer using the Start--->Shutdown procedure.
If the browser is up, then can surf the internet but that is it. Anything else I click in Windwows Explorer does not open. The only way to get everything back to normal is to press and hold the power button of the laptop computer and restart.
Issue 2:
I use a software called HitMan Pro. Its a pretty good one at detecting and removing malware. It has detected stuff that even BitDefender Total Seccurity Suite failed to detect. However, of late when it is scanning my computer, mid way, I get a Blue Screen of Death and the computer restarts.
The error messages in the BSOD are of two types:
1. Page Faulat in Non-Paged Area
or
2. IRQ Not less then Equal
I have scanned my system fully and also using Microsoft Defender Offline in boot mode and it did detect and remove a backdoor but the two issues still persist. I also have scanned my system using MBAM and it too detected stuff that should not have been on my system and cleaned it but not the issues.
Here is the log file:
OTL logfile created on: 11/3/2012 4:26:16 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = D:\
Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy
3.00 Gb Total Physical Memory | 1.77 Gb Available Physical Memory | 58.96% Memory free
5.99 Gb Paging File | 4.07 Gb Available in Paging File | 67.89% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 111.44 Gb Total Space | 20.74 Gb Free Space | 18.61% Space Free | Partition Type: NTFS
Drive D: | 107.90 Gb Total Space | 10.02 Gb Free Space | 9.28% Space Free | Partition Type: NTFS
Computer Name: VANQUISHER-PC | User Name: Vanquisher | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012/11/03 16:26:01 | 000,602,112 | ---- | M] (OldTimer Tools) -- D:\OTL.exe
PRC - [2012/10/27 14:59:22 | 000,917,984 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2012/10/26 16:27:22 | 000,105,832 | ---- | M] (SurfRight B.V.) -- C:\Program Files\HitmanPro\hmpsched.exe
PRC - [2012/10/24 20:08:18 | 000,055,544 | ---- | M] (Bitdefender) -- C:\Program Files\BitDefender\Bitdefender 2013\updatesrv.exe
PRC - [2012/10/24 20:05:52 | 001,335,840 | ---- | M] (Bitdefender) -- C:\Program Files\BitDefender\Bitdefender 2013\vsserv.exe
PRC - [2012/10/24 19:51:14 | 001,609,272 | ---- | M] (Bitdefender) -- C:\Program Files\BitDefender\Bitdefender 2013\bdagent.exe
PRC - [2012/10/16 22:37:01 | 004,762,496 | ---- | M] (SUPERAntiSpyware.com) -- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
PRC - [2012/10/09 18:37:25 | 001,807,800 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_11_4_402_287.exe
PRC - [2012/10/03 03:50:00 | 001,258,856 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
PRC - [2012/10/03 00:59:14 | 000,864,616 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
PRC - [2012/09/17 11:56:40 | 001,869,152 | ---- | M] (TuneUp Software) -- C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesApp32.exe
PRC - [2012/09/17 11:56:38 | 001,699,680 | ---- | M] (TuneUp Software) -- C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe
PRC - [2012/09/13 01:44:42 | 000,196,112 | ---- | M] (Nitro PDF Software) -- C:\Program Files\Nitro PDF\Reader 2\NitroPDFReaderDriverService2.exe
PRC - [2012/09/09 23:50:53 | 000,045,056 | ---- | M] () -- C:\Windows\System32\UTSCSI.EXE
PRC - [2012/08/16 20:51:56 | 000,152,576 | ---- | M] (CrashPlan) -- C:\Program Files\CrashPlan\CrashPlanService.exe
PRC - [2012/07/12 00:24:49 | 000,116,608 | ---- | M] (SUPERAntiSpyware.com) -- C:\Program Files\SUPERAntiSpyware\SASCore.exe
PRC - [2012/07/04 19:08:08 | 001,607,040 | ---- | M] (IObit) -- C:\Program Files\IObit\Smart Defrag 2\SmartDefrag.exe
PRC - [2012/06/25 18:45:14 | 000,082,824 | ---- | M] (Bitdefender) -- C:\Program Files\BitDefender\Bitdefender Safebox\safeboxservice.exe
PRC - [2012/03/04 21:57:28 | 001,027,544 | ---- | M] (Crystal Dew World) -- C:\Program Files\CrystalDiskInfo\DiskInfo.exe
PRC - [2011/02/25 11:00:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2011/02/15 21:31:48 | 000,019,968 | ---- | M] (Fork Ltd.) -- C:\Program Files\Prey\platform\windows\cronsvc.exe
PRC - [2010/11/20 17:47:47 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2009/12/16 00:41:48 | 001,115,728 | ---- | M] (Dritek System Inc.) -- C:\Program Files\Launch Manager\LManager.exe
PRC - [2009/11/20 15:34:08 | 000,200,704 | ---- | M] () -- C:\Windows\PLFSetI.exe
PRC - [2009/09/05 21:46:54 | 003,452,928 | ---- | M] (Egis Technology Inc.) -- C:\Program Files\Acer Bio Protection\BASVC.exe
PRC - [2009/09/05 21:46:40 | 003,407,360 | ---- | M] (Egis Technology Inc.) -- C:\Program Files\Acer Bio Protection\CompPtcVUI.exe
PRC - [2009/08/29 11:30:12 | 000,966,656 | RHS- | M] () -- C:\Users\Vanquisher\Local Settings\Apps\F.lux\flux.exe
PRC - [2009/08/24 03:11:16 | 001,528,624 | ---- | M] (Cisco Systems, Inc.) -- C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
PRC - [2009/07/14 06:44:41 | 000,354,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\StikyNot.exe
PRC - [2009/06/05 00:33:06 | 000,354,840 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
PRC - [2009/06/03 07:42:50 | 000,599,344 | ---- | M] (Validity Sensors, Inc.) -- C:\Windows\System32\vfsFPService.exe
PRC - [2007/12/11 16:45:04 | 000,012,800 | ---- | M] (Agere Systems) -- C:\Windows\System32\agrsmsvc.exe
PRC - [2007/05/25 09:38:20 | 000,537,520 | ---- | M] ( ) -- C:\Windows\System32\lxdccoms.exe
PRC - [2005/12/01 03:04:18 | 000,068,608 | ---- | M] () -- C:\Program Files\ClipX\clipx.exe
========== Modules (No Company Name) ==========
MOD - [2012/10/27 14:59:21 | 002,295,264 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2012/10/24 19:55:00 | 000,203,840 | ---- | M] () -- C:\Program Files\BitDefender\Bitdefender 2013\txmlutil.dll
MOD - [2012/10/09 18:37:24 | 009,814,968 | ---- | M] () -- C:\Windows\System32\Macromed\Flash\NPSWF32_11_4_402_287.dll
MOD - [2012/07/18 01:32:20 | 000,970,240 | ---- | M] () -- C:\Users\Vanquisher\AppData\Roaming\Mozilla\Firefox\Profiles\7l6q5dm8.default-1351026847965\extensions\[email protected]\platform\WINNT_x86-msvc\components\lpxpcom.dll
MOD - [2012/04/27 16:08:08 | 000,092,600 | ---- | M] () -- C:\Program Files\BitDefender\Bitdefender 2013\bdmetrics.dll
MOD - [2011/08/19 16:33:28 | 000,047,960 | ---- | M] () -- C:\Program Files\IObit\Smart Defrag 2\NtfsData.dll
MOD - [2010/01/21 06:04:10 | 008,793,952 | ---- | M] () -- C:\Program Files\Microsoft Office\Office14\1033\GrooveIntlResource.dll
MOD - [2010/01/10 00:48:18 | 004,254,560 | ---- | M] () -- C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
MOD - [2009/11/20 15:34:08 | 000,200,704 | ---- | M] () -- C:\Windows\PLFSetI.exe
MOD - [2009/08/29 11:30:12 | 000,966,656 | RHS- | M] () -- C:\Users\Vanquisher\Local Settings\Apps\F.lux\flux.exe
MOD - [2008/11/18 16:40:30 | 000,270,336 | ---- | M] () -- C:\Program Files\S2 PCSync\PCExplorer.dll
MOD - [2008/11/18 16:40:14 | 000,245,760 | ---- | M] () -- C:\Program Files\S2 PCSync\VCard.dll
MOD - [2008/11/18 16:40:02 | 000,258,048 | ---- | M] () -- C:\Program Files\S2 PCSync\VCalendar.dll
MOD - [2008/11/18 16:40:00 | 000,753,664 | ---- | M] () -- C:\Program Files\S2 PCSync\PCSuiteProcess.dll
MOD - [2008/11/18 16:39:52 | 000,065,536 | ---- | M] () -- C:\Program Files\S2 PCSync\HandlerManager.dll
MOD - [2008/11/18 16:39:52 | 000,049,152 | ---- | M] () -- C:\Program Files\S2 PCSync\StringResource.dll
MOD - [2008/11/18 16:39:50 | 000,057,344 | ---- | M] () -- C:\Program Files\S2 PCSync\ShareFileManager.dll
MOD - [2005/12/01 03:04:18 | 000,068,608 | ---- | M] () -- C:\Program Files\ClipX\clipx.exe
========== Services (SafeList) ==========
SRV - [2012/10/27 14:59:21 | 000,115,168 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012/10/26 16:27:22 | 000,105,832 | ---- | M] (SurfRight B.V.) [Auto | Stopped] -- C:\Program Files\HitmanPro\hmpsched.exe -- (HitmanProScheduler)
SRV - [2012/10/24 20:08:18 | 000,055,544 | ---- | M] (Bitdefender) [Auto | Running] -- C:\Program Files\Bitdefender\Bitdefender 2013\updatesrv.exe -- (Updatesrv)
SRV - [2012/10/24 20:07:35 | 000,059,152 | ---- | M] (Bitdefender) [Disabled | Stopped] -- C:\Program Files\BitDefender\Bitdefender 2013\bdparentalservice.exe -- (BdDesktopParental)
SRV - [2012/10/24 20:05:52 | 001,335,840 | ---- | M] (Bitdefender) [Auto | Running] -- C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe -- (vsserv)
SRV - [2012/10/10 06:30:44 | 000,250,808 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012/10/03 03:50:00 | 001,258,856 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2012/09/17 11:56:38 | 001,699,680 | ---- | M] (TuneUp Software) [Auto | Running] -- C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesService32.exe -- (TuneUp.UtilitiesSvc)
SRV - [2012/09/13 01:44:42 | 000,196,112 | ---- | M] (Nitro PDF Software) [Auto | Running] -- C:\Program Files\Nitro PDF\Reader 2\NitroPDFReaderDriverService2.exe -- (NitroReaderDriverReadSpool2)
SRV - [2012/09/09 23:50:53 | 000,045,056 | ---- | M] () [Auto | Running] -- C:\Windows\System32\UTSCSI.EXE -- (UTSCSI)
SRV - [2012/08/31 19:32:02 | 002,754,984 | ---- | M] (TeamViewer GmbH) [Disabled | Stopped] -- C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe -- (TeamViewer7)
SRV - [2012/08/18 01:21:32 | 001,045,256 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2012/08/16 20:51:56 | 000,152,576 | ---- | M] (CrashPlan) [Auto | Running] -- C:\Program Files\CrashPlan\CrashPlanService.exe -- (CrashPlanService)
SRV - [2012/08/13 13:33:30 | 003,064,000 | ---- | M] (Skype Technologies S.A.) [Disabled | Stopped] -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service)
SRV - [2012/07/13 13:28:36 | 000,160,944 | R--- | M] (Skype Technologies) [Disabled | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012/07/12 00:24:49 | 000,116,608 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- C:\Program Files\SUPERAntiSpyware\SASCore.exe -- (!SASCORE)
SRV - [2012/06/25 18:45:14 | 000,082,824 | ---- | M] (Bitdefender) [Auto | Running] -- C:\Program Files\BitDefender\Bitdefender Safebox\safeboxservice.exe -- (SafeBox)
SRV - [2012/06/19 16:21:24 | 001,646,608 | ---- | M] (Rosetta Stone Ltd.) [Disabled | Stopped] -- C:\Program Files\RosettaStoneLtdServices\RosettaStoneDaemon.exe -- (RosettaStoneDaemon)
SRV - [2012/05/30 00:16:46 | 000,029,024 | ---- | M] (TuneUp Software) [Auto | Running] -- C:\Windows\System32\uxtuneup.dll -- (UxTuneUp)
SRV - [2012/04/05 15:48:02 | 000,255,376 | ---- | M] (Acer Incorporated) [Disabled | Stopped] -- C:\Program Files\Acer\Acer Updater\UpdaterService.exe -- (Live Updater Service)
SRV - [2012/01/04 07:39:09 | 000,419,624 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2011/08/08 03:10:00 | 003,804,120 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\Windows\System32\GameMon.des -- (npggsvc)
SRV - [2011/07/15 06:33:00 | 000,021,488 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\Roxio\BackOnTrack\App\BService.exe -- (BOT4Service)
SRV - [2011/07/13 13:11:52 | 000,340,976 | ---- | M] (Rovi Corporation) [Disabled | Stopped] -- C:\Program Files\Common Files\Roxio Shared\13.0\SharedCOM\RoxWatch13.exe -- (RoxWatch12)
SRV - [2011/07/13 13:11:30 | 001,095,664 | ---- | M] (Rovi Corporation) [Disabled | Stopped] -- C:\Program Files\Common Files\Roxio Shared\13.0\SharedCOM\RoxMediaDB13.exe -- (RoxMediaDB13)
SRV - [2011/05/29 01:54:28 | 000,135,168 | ---- | M] (Airytec) [Auto | Stopped] -- C:\Program Files\Airytec\Switch Off\swoff.exe -- (SwOffWeb)
SRV - [2011/05/29 01:54:28 | 000,135,168 | ---- | M] (Airytec) [Auto | Stopped] -- C:\Program Files\Airytec\Switch Off\swoff.exe -- (SwOffScheduler)
SRV - [2011/02/15 21:31:48 | 000,019,968 | ---- | M] (Fork Ltd.) [Auto | Running] -- C:\Program Files\Prey\platform\windows\cronsvc.exe -- (CronService)
SRV - [2011/02/09 23:06:58 | 000,457,200 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\Roxio\BackOnTrack\App\SaibSVC.exe -- (9734BF6A-2DCD-40f0-BAB0-5AAFEEBE1269)
SRV - [2010/07/14 11:53:42 | 000,008,192 | ---- | M] () [Auto | Stopped] -- C:\Windows\System32\srvany.exe -- (KMService)
SRV - [2010/04/30 04:23:41 | 001,343,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
SRV - [2010/01/21 22:21:12 | 030,963,576 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Microsoft Office\Office14\GROOVE.EXE -- (Microsoft SharePoint Workspace Audit Service)
SRV - [2009/09/05 21:46:54 | 003,452,928 | ---- | M] (Egis Technology Inc.) [Auto | Running] -- C:\Program Files\Acer Bio Protection\BASVC.exe -- (IGBASVC)
SRV - [2009/08/24 22:16:36 | 000,406,016 | ---- | M] (mst software GmbH, Germany) [On_Demand | Stopped] -- C:\Program Files\Ashampoo\Ashampoo WinOptimizer 2012\DfSdkS.exe -- (DfSdkS)
SRV - [2009/08/24 03:11:16 | 001,528,624 | ---- | M] (Cisco Systems, Inc.) [Auto | Running] -- C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe -- (CVPND)
SRV - [2009/07/14 06:46:15 | 000,016,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\StorSvc.dll -- (StorSvc)
SRV - [2009/07/14 06:46:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2009/07/14 06:46:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc)
SRV - [2009/07/14 06:45:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2009/06/05 00:33:06 | 000,354,840 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON)
SRV - [2009/06/03 07:42:50 | 000,599,344 | ---- | M] (Validity Sensors, Inc.) [Auto | Running] -- C:\Windows\System32\vfsFPService.exe -- (vfsFPService)
SRV - [2008/03/21 17:52:52 | 000,024,576 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\Acer\Empowering Technology\Service\ETService.exe -- (ETService)
SRV - [2007/12/11 16:45:04 | 000,012,800 | ---- | M] (Agere Systems) [Auto | Running] -- C:\Windows\System32\agrsmsvc.exe -- (AgereModemAudio)
SRV - [2007/05/25 09:38:20 | 000,537,520 | ---- | M] ( ) [Auto | Running] -- C:\Windows\System32\lxdccoms.exe -- (lxdc_device)
========== Driver Services (SafeList) ==========
DRV - File not found [File_System | Auto | Stopped] -- C:\Program Files\IObit\Protected Folder\pffilter.sys -- (PfFilter)
DRV - File not found [Kernel | Boot | Unknown] -- system32\drivers\Partizan.sys -- (Partizan)
DRV - File not found [Kernel | Auto | Stopped] -- C:\Program Files\LogMeIn\x86\RaInfo.sys -- (LMIInfo)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\JiaoCap.sys -- (JiaoCap)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\EagleNT.sys -- (EagleNT)
DRV - File not found [Kernel | System | Stopped] -- C:\Program Files\Launch Manager\DPortIO.sys -- (DritekPortIO)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Users\VANQUI~1\AppData\Local\Temp\catchme.sys -- (catchme)
DRV - [2012/11/03 14:52:57 | 000,027,976 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hitmanpro36.sys -- (hitmanpro36)
DRV - [2012/11/01 05:14:42 | 000,040,776 | ---- | M] (Malwarebytes Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\mbamswissarmy.sys -- (MBAMSwissArmy)
DRV - [2012/10/24 20:07:47 | 000,622,616 | ---- | M] (BitDefender) [File_System | Boot | Running] -- C:\Windows\System32\drivers\avc3.sys -- (avc3)
DRV - [2012/10/24 19:50:29 | 000,066,392 | ---- | M] (BitDefender SRL) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\bdsandbox.sys -- (BDSandBox)
DRV - [2012/10/24 19:49:59 | 000,481,464 | ---- | M] (BitDefender) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\avckf.sys -- (avckf)
DRV - [2012/10/24 19:49:05 | 000,134,136 | ---- | M] (BitDefender LLC) [Kernel | System | Running] -- C:\Program Files\BitDefender\Bitdefender 2013\bdselfpr.sys -- (bdselfpr)
DRV - [2012/10/18 11:19:38 | 000,051,144 | ---- | M] (Soluto LTD.) [File_System | Boot | Stopped] -- C:\Windows\System32\drivers\Soluto.sys -- (Soluto)
DRV - [2012/10/15 16:32:12 | 000,147,768 | ---- | M] (JMicron Technology Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\jmcr.sys -- (JMCR)
DRV - [2012/10/03 03:50:00 | 010,837,352 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2012/08/29 18:24:08 | 000,161,312 | ---- | M] (BitDefender LLC) [File_System | Boot | Running] -- C:\Windows\System32\drivers\gzflt.sys -- (gzflt)
DRV - [2012/08/29 16:42:28 | 000,010,088 | ---- | M] (TuneUp Software) [Kernel | On_Demand | Running] -- C:\Program Files\TuneUp Utilities 2013\TuneUpUtilitiesDriver32.sys -- (TuneUpUtilitiesDrv)
DRV - [2012/08/23 20:14:32 | 000,014,848 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV - [2012/08/23 20:10:25 | 000,049,664 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2012/07/06 15:13:12 | 000,077,192 | ---- | M] (BitDefender LLC) [Kernel | System | Running] -- c:\Program Files\Common Files\BitDefender\Bitdefender Firewall\bdfndisf6.sys -- (BdfNdisf)
DRV - [2012/07/03 20:55:17 | 000,149,352 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvhda32v.sys -- (NVHDA)
DRV - [2012/07/02 22:08:46 | 000,609,760 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\timntr.sys -- (timounter)
DRV - [2012/07/02 22:08:28 | 000,084,512 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vsflt58.sys -- (vidsflt58)
DRV - [2012/07/02 22:08:18 | 000,076,768 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\fltsrv.sys -- (fltsrv)
DRV - [2012/07/02 15:21:35 | 000,343,456 | ---- | M] (BitDefender S.R.L.) [File_System | Boot | Running] -- C:\Windows\System32\drivers\trufos.sys -- (trufos)
DRV - [2012/04/17 14:40:22 | 000,072,704 | ---- | M] (BitDefender) [Kernel | System | Running] -- C:\Windows\System32\drivers\bdvedisk.sys -- (BDVEDISK)
DRV - [2012/03/05 10:35:43 | 000,126,112 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vididr.sys -- (vididr)
DRV - [2012/02/22 16:04:36 | 000,022,400 | ---- | M] (ManyCam LLC) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\mcaudrv.sys -- (mcaudrv_simple)
DRV - [2012/01/24 03:13:06 | 007,523,840 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\NETwNs32.sys -- (NETwNs32)
DRV - [2012/01/11 11:41:20 | 000,032,000 | ---- | M] (ManyCam LLC) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\mcvidrv.sys -- (ManyCam)
DRV - [2011/12/07 23:52:16 | 000,083,360 | ---- | M] (LogMeIn, Inc.) [File_System | Disabled | Stopped] -- C:\Windows\System32\LMIRfsClientNP.dll -- (LMIRfsClientNP)
DRV - [2011/11/25 19:29:40 | 000,240,184 | ---- | M] (BitDefender) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\avchv.sys -- (avchv)
DRV - [2011/11/14 20:16:27 | 000,090,704 | ---- | M] (BitDefender LLC) [Kernel | System | Running] -- C:\Program Files\Common Files\BitDefender\Bitdefender Firewall\bdfwfpf.sys -- (bdfwfpf)
DRV - [2011/09/21 15:55:34 | 000,021,992 | ---- | M] (CPUID) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\cpuz135_x32.sys -- (cpuz135)
DRV - [2011/09/16 19:40:50 | 000,047,640 | ---- | M] (LogMeIn, Inc.) [File_System | Auto | Running] -- C:\Windows\System32\drivers\LMIRfsDriver.sys -- (LMIRfsDriver)
DRV - [2011/08/19 07:16:06 | 000,026,112 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tapoas.sys -- (tapoas)
DRV - [2011/07/22 21:57:02 | 000,012,880 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV)
DRV - [2011/07/13 03:25:22 | 000,067,664 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL)
DRV - [2011/06/02 11:08:34 | 000,011,336 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\SystemRequirementsLab\cpudrv.sys -- (cpudrv)
DRV - [2011/04/27 18:49:28 | 000,020,032 | ---- | M] (Devguru Co., Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\dgderdrv.sys -- (dgderdrv)
DRV - [2011/03/22 11:10:56 | 000,023,656 | ---- | M] (ITE Tech. Inc. ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ITECIRfilter.sys -- (ITECIRfilter)
DRV - [2011/02/09 06:30:00 | 000,025,584 | ---- | M] (Sonic Solutions) [Kernel | System | Running] -- C:\Windows\System32\drivers\SaibVd32.sys -- (SaibVd32)
DRV - [2011/02/09 06:30:00 | 000,021,488 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\SahdIa32.sys -- (SahdIa32)
DRV - [2011/02/09 06:30:00 | 000,015,856 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\SaibIa32.sys -- (SaibIa32)
DRV - [2011/01/03 14:08:36 | 000,136,680 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadmdm.sys -- (ssadmdm)
DRV - [2011/01/03 14:08:36 | 000,121,192 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadbus.sys -- (ssadbus)
DRV - [2011/01/03 14:08:36 | 000,114,152 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadserd.sys -- (ssadserd)
DRV - [2011/01/03 14:08:36 | 000,012,776 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadmdfl.sys -- (ssadmdfl)
DRV - [2010/12/21 11:25:02 | 000,132,424 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\sscdmdm.sys -- (sscdmdm)
DRV - [2010/12/21 11:25:02 | 000,104,648 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\sscdbus.sys -- (sscdbus)
DRV - [2010/12/21 11:25:02 | 000,030,312 | ---- | M] (Google Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadadb.sys -- (androidusb)
DRV - [2010/12/21 11:25:02 | 000,014,920 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\sscdmdfl.sys -- (sscdmdfl)
DRV - [2010/11/26 18:02:20 | 000,015,672 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\drivers\SmartDefragDriver.sys -- (SmartDefragDriver)
DRV - [2010/11/20 18:00:17 | 000,296,064 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\vpcvmm.sys -- (vpcvmm)
DRV - [2010/11/20 18:00:17 | 000,172,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\vpchbus.sys -- (vpcbus)
DRV - [2010/11/20 18:00:15 | 000,175,360 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vmbus.sys -- (vmbus)
DRV - [2010/11/20 18:00:15 | 000,040,704 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vmstorfl.sys -- (storflt)
DRV - [2010/11/20 18:00:15 | 000,028,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\storvsc.sys -- (storvsc)
DRV - [2010/11/20 16:20:38 | 000,078,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vpcusb.sys -- (vpcusb)
DRV - [2010/11/20 16:20:37 | 000,048,128 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\vpcnfltr.sys -- (vpcnfltr)
DRV - [2010/11/20 15:29:44 | 000,035,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\winusb.sys -- (WinUSB)
DRV - [2010/11/20 14:44:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VMBusHID.sys -- (VMBusHID)
DRV - [2010/11/20 14:44:41 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vms3cap.sys -- (s3cap)
DRV - [2010/11/09 10:36:02 | 007,265,792 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\NETwNv32.sys -- (NETwNv32)
DRV - [2010/11/01 06:08:46 | 000,014,416 | ---- | M] (OpenLibSys.org) [File_System | On_Demand | Stopped] -- C:\Program Files\IObit\Game Booster\Driver\WinRing0.sys -- (WinRing0_1_2_0)
DRV - [2010/07/13 14:26:36 | 000,065,640 | ---- | M] (ITE Tech. Inc. ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\itecir.sys -- (itecir)
DRV - [2010/07/09 18:48:56 | 000,020,328 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\cpuz134_x32.sys -- (cpuz134)
DRV - [2010/05/24 01:17:08 | 000,081,904 | ---- | M] (Sonic Solutions) [File_System | Boot | Running] -- C:\Windows\System32\drivers\syscow32v.sys -- (SysCow)
DRV - [2010/03/29 11:15:36 | 000,055,848 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\L1E62x86.sys -- (L1E)
DRV - [2010/02/25 23:21:02 | 000,025,216 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tap0901.sys -- (tap0901)
DRV - [2010/01/19 17:19:48 | 000,105,088 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ZTEusbser6k.sys -- (ZTEusbser6k)
DRV - [2010/01/19 17:19:48 | 000,105,088 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ZTEusbnmea.sys -- (ZTEusbnmea)
DRV - [2010/01/19 17:19:48 | 000,105,088 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ZTEusbmdm6k.sys -- (ZTEusbmdm6k)
DRV - [2010/01/19 17:19:48 | 000,009,216 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\massfilter.sys -- (massfilter)
DRV - [2009/12/30 11:21:18 | 000,027,192 | ---- | M] (VS Revo Group) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\revoflt.sys -- (Revoflt)
DRV - [2009/09/16 01:10:18 | 006,114,816 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\NETw5s32.sys -- (NETw5s32)
DRV - [2009/08/24 03:10:32 | 000,308,859 | ---- | M] (Cisco Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\CVPNDRVA.sys -- (CVPNDRVA)
DRV - [2009/07/14 05:22:10 | 000,014,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\vwifimp.sys -- (vwifimp)
DRV - [2009/07/14 05:15:33 | 000,083,456 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\serial.sys -- (Serial)
DRV - [2009/07/14 03:32:51 | 004,231,168 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\netw5v32.sys -- (netw5v32)
DRV - [2009/03/18 22:05:40 | 000,026,176 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hamachi.sys -- (hamachi)
DRV - [2009/02/24 18:42:14 | 000,116,736 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\mcdbus.sys -- (mcdbus)
DRV - [2009/02/03 21:06:58 | 000,059,000 | ---- | M] (Protection Technology (StarForce)) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\sfdrv01.sys -- (sfdrv01)
DRV - [2008/11/17 00:09:44 | 000,131,984 | ---- | M] (Deterministic Networks, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\dne2000.sys -- (DNE)
DRV - [2008/08/26 13:56:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2008/03/21 15:18:24 | 000,015,392 | ---- | M] (Acer, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\int15.sys -- (int15)
DRV - [2008/03/20 09:41:52 | 000,103,680 | ---- | M] (AMOI Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\S2usbser.sys -- (S2usbser)
DRV - [2008/02/29 20:43:38 | 001,202,560 | ---- | M] (Agere Systems) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AGRSM.sys -- (AgereSoftModem)
DRV - [2008/01/25 14:42:34 | 000,025,088 | ---- | M] (TeamViewer GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\teamviewervpn.sys -- (teamviewervpn)
DRV - [2007/01/19 01:58:02 | 000,005,275 | ---- | M] (Cisco Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\CVirtA.sys -- (CVirtA)
DRV - [2006/06/14 20:26:56 | 000,013,680 | ---- | M] (Protection Technology (StarForce)) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\sfhlp02.sys -- (sfhlp02)
DRV - [2005/01/31 14:50:04 | 000,211,712 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\LV561AV.SYS -- (PID_0928)
DRV - [2005/01/31 14:42:46 | 000,022,016 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LVUSBSta.sys -- (LVUSBSta)
DRV - [2004/03/24 07:42:34 | 000,017,280 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\nsndis5.sys -- (NSNDIS5)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = Reg Error: Value error.
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = Reg Error: Value error.
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,bProtector Start Page = http://search.babylo...0000022fa0e5887
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://g.msn.com/1me10IE9ENUS/110
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.claro-sea...0000022fa0e5887
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-gb
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://search.autoco...?si=7981&bi=400
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Search Page = http://search.autoco...?si=7981&bi=400
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKCU\..\SearchScopes,DefaultScope = {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
IE - HKCU\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://www.claro-sea...0000022fa0e5887
IE - HKCU\..\SearchScopes\{D6ABDD7C-AEE2-4EA4-92D6-B767ED049473}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "http://search.babylo...000022fa0e5887"
FF - prefs.js..extensions.enabledAddons: {64161300-e22b-11db-8314-0800200c9a66}:0.9.6.10
FF - prefs.js..extensions.enabledAddons: [email protected]:0.4
FF - prefs.js..extensions.enabledAddons: {1018e4d6-728f-4b20-ad56-37578a4de76b}:4.2.2
FF - prefs.js..extensions.enabledAddons: {4BBDD651-70CF-4821-84F8-2B918CF89CA3}:7.0.3.5
FF - prefs.js..extensions.enabledAddons: [email protected]:2.0.0
FF - prefs.js..extensions.enabledAddons: [email protected]:2.7.7
FF - prefs.js..extensions.enabledAddons: {19503e42-ca3c-4c27-b1e2-9cdb2170ee34}:1.4.8.5
FF - prefs.js..extensions.enabledAddons: {210249CE-F888-11DD-B868-4CB456D89593}:3.2.2
FF - prefs.js..extensions.enabledAddons: [email protected]:2.8.3
FF - prefs.js..extensions.enabledAddons: [email protected]:2.2.1.611
FF - prefs.js..extensions.enabledAddons: {37fa1426-b82d-11db-8314-0800200c9a66}:3.0
FF - prefs.js..extensions.enabledAddons: [email protected]:2.1.0.3
FF - prefs.js..extensions.enabledAddons: {23fcfd51-4958-4f00-80a3-ae97e717ed8b}:2.1.2.145
FF - prefs.js..network.proxy.type: 0
FF - user.js..browser.search.openintab: false
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_11_4_402_287.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw_1167637.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: File not found
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.7.2: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MIF5BA~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.4: C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MIF5BA~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nexon.net/NxGame: C:\ProgramData\NexonUS\NGM\npNxGameUS.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@ngm.nexoneu.com/NxGame: C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@nitropdf.com/NitroPDF: C:\Program Files\Nitro PDF\Reader 2\npnitromozilla.dll ( )
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.609: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=1.0.5: File not found
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.4: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKCU\Software\MozillaPlugins\@facebook.com/FBPlugin,version=1.0.3: C:\Users\Vanquisher\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll ( )
FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: File not found
FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Users\Vanquisher\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Users\Vanquisher\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Vanquisher\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Vanquisher\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2011/12/26 08:07:42 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 16.0.2\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/10/27 14:59:22 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 16.0.2\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012/10/27 14:59:04 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\[email protected]: C:\Program Files\Bitdefender\Bitdefender 2013\bdtbext [2012/10/11 23:51:54 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{b64982b1-d112-42b5-b1e4-d3867c4533f8}: C:\ProgramData\Browser Manager\2.3.796.11\{16cdff19-861d-48e3-a751-d99a27784753}\FirefoxExtension [2012/11/02 20:32:06 | 000,000,000 | ---D | M]
[2012/10/17 21:58:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Vanquisher\AppData\Roaming\Mozilla\Extensions
[2012/10/29 13:23:21 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Vanquisher\AppData\Roaming\Mozilla\Firefox\Profiles\7l6q5dm8.default-1351026847965\extensions
[2012/10/24 10:41:28 | 000,000,000 | ---D | M] (Flagfox) -- C:\Users\Vanquisher\AppData\Roaming\Mozilla\Firefox\Profiles\7l6q5dm8.default-1351026847965\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}
[2012/10/24 20:01:57 | 000,000,000 | ---D | M] (OpenDownload²) -- C:\Users\Vanquisher\AppData\Roaming\Mozilla\Firefox\Profiles\7l6q5dm8.default-1351026847965\extensions\{210249CE-F888-11DD-B868-4CB456D89593}
[2012/10/24 10:41:28 | 000,000,000 | ---D | M] (FEBE) -- C:\Users\Vanquisher\AppData\Roaming\Mozilla\Firefox\Profiles\7l6q5dm8.default-1351026847965\extensions\{4BBDD651-70CF-4821-84F8-2B918CF89CA3}
[2012/10/24 11:07:41 | 000,000,000 | ---D | M] (QuickFox Notes) -- C:\Users\Vanquisher\AppData\Roaming\Mozilla\Firefox\Profiles\7l6q5dm8.default-1351026847965\extensions\[email protected]
[2012/10/25 00:50:48 | 000,000,000 | ---D | M] (DoNotTrackPlus) -- C:\Users\Vanquisher\AppData\Roaming\Mozilla\Firefox\Profiles\7l6q5dm8.default-1351026847965\extensions\[email protected]
[2012/10/25 00:50:51 | 000,000,000 | ---D | M] (Ghostery) -- C:\Users\Vanquisher\AppData\Roaming\Mozilla\Firefox\Profiles\7l6q5dm8.default-1351026847965\extensions\[email protected]
[2012/10/24 10:53:42 | 000,000,000 | ---D | M] (LastPass) -- C:\Users\Vanquisher\AppData\Roaming\Mozilla\Firefox\Profiles\7l6q5dm8.default-1351026847965\extensions\[email protected]
[2012/11/02 20:37:56 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Vanquisher\AppData\Roaming\Mozilla\Firefox\Profiles\jbpabe9m.default-1351026400281\extensions
[2012/10/24 10:41:23 | 000,109,964 | ---- | M] () (No name found) -- C:\Users\Vanquisher\AppData\Roaming\Mozilla\Firefox\Profiles\7l6q5dm8.default-1351026847965\extensions\[email protected]
[2012/10/28 14:14:16 | 000,060,290 | ---- | M] () (No name found) -- C:\Users\Vanquisher\AppData\Roaming\Mozilla\Firefox\Profiles\7l6q5dm8.default-1351026847965\extensions\[email protected]
[2012/10/24 12:50:51 | 000,340,272 | ---- | M] () (No name found) -- C:\Users\Vanquisher\AppData\Roaming\Mozilla\Firefox\Profiles\7l6q5dm8.default-1351026847965\extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}.xpi
[2012/10/27 18:30:39 | 000,194,530 | ---- | M] () (No name found) -- C:\Users\Vanquisher\AppData\Roaming\Mozilla\Firefox\Profiles\7l6q5dm8.default-1351026847965\extensions\{37fa1426-b82d-11db-8314-0800200c9a66}.xpi
[2012/10/24 09:46:10 | 000,281,285 | ---- | M] () (No name found) -- C:\Users\Vanquisher\AppData\Roaming\Mozilla\Firefox\Profiles\7l6q5dm8.default-1351026847965\extensions\{64161300-e22b-11db-8314-0800200c9a66}.xpi
[2012/10/24 12:05:35 | 000,199,396 | ---- | M] () (No name found) -- C:\Users\Vanquisher\AppData\Roaming\Mozilla\Firefox\Profiles\7l6q5dm8.default-1351026847965\extensions\{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}.xpi
[2012/10/24 10:25:07 | 000,741,958 | ---- | M] () (No name found) -- C:\Users\Vanquisher\AppData\Roaming\Mozilla\Firefox\Profiles\7l6q5dm8.default-1351026847965\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2012/06/12 00:02:25 | 000,007,915 | ---- | M] () (No name found) -- C:\Users\Vanquisher\AppData\Roaming\Mozilla\Firefox\Profiles\7l6q5dm8.default-1351026847965\extensions\[email protected]\chrome\content\ff\view_expiry.js
[2012/11/02 20:33:04 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2012/11/02 20:33:04 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions\[email protected]
[2011/12/26 08:07:42 | 000,000,000 | ---D | M] (DivX Plus Web Player HTML5 <video>) -- C:\PROGRAM FILES\DIVX\DIVX PLUS WEB PLAYER\FIREFOX\DIVXHTML5
[2012/11/02 20:32:06 | 000,000,000 | ---D | M] (Browser Manager) -- C:\PROGRAMDATA\BROWSER MANAGER\2.3.796.11\{16CDFF19-861D-48E3-A751-D99A27784753}\FIREFOXEXTENSION
[2012/10/27 14:59:22 | 000,261,600 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2012/10/12 14:56:50 | 000,225,360 | ---- | M] (Cisco WebEx LLC) -- C:\Program Files\mozilla firefox\plugins\npatgpc.dll
[2011/07/12 03:18:12 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\mozilla firefox\plugins\npwachk.dll
[2012/10/14 10:14:28 | 000,001,525 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazon-en-GB.xml
[2012/11/02 20:32:39 | 000,006,520 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml
[2012/10/14 10:14:28 | 000,002,465 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2012/10/14 10:14:28 | 000,000,935 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\chambers-en-GB.xml
[2012/10/14 10:14:28 | 000,001,166 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-en-GB.xml
[2012/10/14 10:14:28 | 000,002,058 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\twitter.xml
[2012/10/14 10:14:28 | 000,001,121 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-en-GB.xml
========== Chrome ==========
CHR - homepage: http://www.google.com/
CHR - default_search_provider: Claro Search (Enabled)
CHR - default_search_provider: search_url = http://www.claro-sea...0000022fa0e5887
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}
CHR - homepage: http://www.google.com/
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Vanquisher\AppData\Local\Google\Chrome\Application\21.0.1180.89\PepperFlash\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Vanquisher\AppData\Local\Google\Chrome\Application\22.0.1229.94\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32_11_4_402_265.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\Vanquisher\AppData\Local\Google\Chrome\Application\22.0.1229.94\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Disabled) = C:\Users\Vanquisher\AppData\Local\Google\Chrome\Application\22.0.1229.94\pdf.dll
CHR - plugin: Skype Click to Call (Enabled) = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.2.0.10687_0\npSkypeChromePlugin.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll
CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7.2 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: Winamp Application Detector (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npwachk.dll
CHR - plugin: Google Talk Plugin (Enabled) = C:\Users\Vanquisher\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll
CHR - plugin: Google Talk Plugin Video Accelerator (Enabled) = C:\Users\Vanquisher\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~1\MIF5BA~1\Office14\NPAUTHZ.DLL
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~1\MIF5BA~1\Office14\NPSPWRAP.DLL
CHR - plugin: Microsoft Office Live Plug-in for Firefox (Enabled) = C:\Program Files\Microsoft\Office Live\npOLW.dll
CHR - plugin: DivX VOD Helper Plug-in (Enabled) = C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll
CHR - plugin: DivX Plus Web Player (Enabled) = C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll
CHR - plugin: Java Deployment Toolkit 7.0.70.10 (Enabled) = C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll
CHR - plugin: Java Platform SE 7 U7 (Enabled) = C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
CHR - plugin: VLC Web Plugin (Enabled) = C:\Program Files\VideoLAN\VLC\npvlc.dll
CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Nexon Game Controller (Enabled) = C:\ProgramData\NexonEU\NGM\npNxGameeu.dll
CHR - plugin: Nexon Game Controller (Enabled) = C:\ProgramData\NexonUS\NGM\npNxGameUS.dll
CHR - plugin: RealPlayer HTML5VideoShim Plug-In (32-bit) (Enabled) = C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
CHR - plugin: Facebook Plugin (Enabled) = C:\Users\Vanquisher\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Windows\system32\Adobe\Director\np32dsw_1166636.dll
CHR - plugin: Windows Activation Technologies (Enabled) = C:\Windows\system32\Wat\npWatWeb.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll
CHR - Extension: YouTube = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Webmail Ad Blocker = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbhfdchmklhpcngcgjmpdbjakdggkkjp\3.1_0\
CHR - Extension: X-notifier (for Gmail\u2122,Hotmail,Yahoo,AOL...) = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdfjbkbddpfnoplfhceolpopfoepleco\3.0.6_0\
CHR - Extension: Adblock Plus = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.3_0\
CHR - Extension: Google Search = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Flag for Chrome = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbpojpfdiliekbbiplijcphappgcgjfn\0.4.1_0\
CHR - Extension: Do Not Track Plus = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\epanfjkfahimkgomnigadpkobaefekcd\2.2.0.510_0\
CHR - Extension: AdBlock = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.5.46_0\
CHR - Extension: LastPass = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd\2.0.14_0\
CHR - Extension: Speed Dial 2 = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpfpebmajhhopeonhlcgidhclcccjcik\1.6.1.3_0\
CHR - Extension: Best Video Downloader = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\magllcifjcllaafcdplnajmobccbcdlo\2.5.0.0_0\
CHR - Extension: Quick Note = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\mijlebbfndhelmdpmllgcfadlkankhok\1.4.2_0\
CHR - Extension: Ghostery = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij\4.0.0_0\
CHR - Extension: Yontoo = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\niapdbllcanepiiimjjndipklodoedlc\1.0.3_0\
CHR - Extension: Settings Protector = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgafcinpmmpklohkojmllohdhomoefph\1.0_0\
CHR - Extension: Gmail = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
CHR - Extension: YouTube = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Webmail Ad Blocker = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbhfdchmklhpcngcgjmpdbjakdggkkjp\3.1_0\
CHR - Extension: X-notifier (for Gmail\u2122,Hotmail,Yahoo,AOL...) = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdfjbkbddpfnoplfhceolpopfoepleco\3.0.6_0\
CHR - Extension: Adblock Plus = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.3_0\
CHR - Extension: Google Search = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Flag for Chrome = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbpojpfdiliekbbiplijcphappgcgjfn\0.4.1_0\
CHR - Extension: Do Not Track Plus = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\epanfjkfahimkgomnigadpkobaefekcd\2.2.0.510_0\
CHR - Extension: AdBlock = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.5.46_0\
CHR - Extension: LastPass = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd\2.0.14_0\
CHR - Extension: Speed Dial 2 = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpfpebmajhhopeonhlcgidhclcccjcik\1.6.1.3_0\
CHR - Extension: Best Video Downloader = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\magllcifjcllaafcdplnajmobccbcdlo\2.5.0.0_0\
CHR - Extension: Quick Note = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\mijlebbfndhelmdpmllgcfadlkankhok\1.4.2_0\
CHR - Extension: Ghostery = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij\4.0.0_0\
CHR - Extension: Yontoo = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\niapdbllcanepiiimjjndipklodoedlc\1.0.3_0\
CHR - Extension: Settings Protector = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgafcinpmmpklohkojmllohdhomoefph\1.0_0\
CHR - Extension: Gmail = C:\Users\Vanquisher\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
O1 HOSTS File: ([2012/10/22 21:13:07 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (no name) - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - No CLSID value found.
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
O2 - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
O2 - BHO: (Free Download Manager) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll ()
O2 - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (no name) - {E0FEFE40-FBF9-42AE-BA58-794CA7E3FB53} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKCU\..\Toolbar\ShellBrowser: (no name) - {5CBE3B7C-1E47-477E-A7DD-396DB0476E29} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.
O4 - HKLM..\Run: [Bdagent] C:\Program Files\BitDefender\Bitdefender 2013\bdagent.exe (Bitdefender)
O4 - HKLM..\Run: [eAudio] C:\Program Files\Acer\Empowering Technology\eAudio\eAudio.exe (Acer Incorporated)
O4 - HKLM..\Run: [ePower_DMC] C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe (Acer Inc.)
O4 - HKLM..\Run: [LManager] C:\Program Files\Launch Manager\LManager.exe (Dritek System Inc.)
O4 - HKLM..\Run: [PLFSetI] C:\Windows\PLFSetI.exe ()
O4 - HKCU..\Run: [F.lux] C:\Users\Vanquisher\Local Settings\Apps\F.lux\flux.exe ()
O4 - HKCU..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe (Microsoft Corporation)
O4 - HKCU..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware.com)
O4 - Startup: C:\Users\Vanquisher\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\clipx.lnk = C:\Program Files\ClipX\clipx.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 181
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutorunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoPropertiesMyComputer = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoViewContextMenu = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFileAssociate = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoClose = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: StartMenuLogoff = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SynchronousUserGroupPolicy = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SynchronousMachineGroupPolicy = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: VerboseStatus = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispCPL = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispBackgroundPage = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispSettingsPage = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispScrSavPage = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: TaskbarNoThumbnail = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O9 - Extra 'Tools' menuitem : &Gears Settings - {09C04DA7-5B76-4EBC-BBEE-B25EAC5965F5} - Reg Error: Key error. File not found
O9 - Extra Button: Quick-Launch Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer Bio Protection\PwdBank.exe (Egis Technology Inc.)
O9 - Extra 'Tools' menuitem : Quick-Launch Area - {10954C80-4F0F-11d3-B17C-00C0DFE39736} - C:\Program Files\Acer Bio Protection\PwdBank.exe (Egis Technology Inc.)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files\Paltalk Messenger\paltalk.exe (AVM Software Inc.)
O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{4D562BFB-A1F7-441A-B359-4EA9D929F803}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{4D562BFB-A1F7-441A-B359-4EA9D929F803}: NameServer = 4.2.2.2,4.2.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{DE5A9892-8B4C-49D1-AD01-271DD9DFCEB7}: NameServer = 8.8.8.8,8.8.4.4
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/06/11 03:12:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2012/10/19 22:07:26 | 000,000,000 | ---D | M] - D:\Autoruns -- [ NTFS ]
O32 - AutoRun File - [2012/10/19 22:05:58 | 000,540,921 | ---- | M] () - D:\Autoruns.zip -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (SmartDefragBootTime.exe)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2012/11/03 15:25:22 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\temp
[2012/11/03 10:43:04 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\Documents\Calibre Library
[2012/11/03 10:42:59 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Roaming\calibre
[2012/11/03 10:42:38 | 000,000,000 | ---D | C] -- C:\Program Files\Calibre2
[2012/11/03 09:20:09 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\Desktop\Games
[2012/11/02 21:45:44 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Local\Microsoft Help
[2012/11/02 20:32:09 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Browser Manager
[2012/11/02 20:32:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Browser Manager
[2012/11/02 20:30:35 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Roaming\Babylon
[2012/11/02 20:30:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Babylon
[2012/11/02 20:30:18 | 000,000,000 | ---D | C] -- C:\Program Files\Yontoo
[2012/11/02 01:59:14 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Roaming\InstallShield
[2012/11/01 19:44:42 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ashampoo
[2012/11/01 19:44:33 | 000,028,160 | ---- | C] (mst software GmbH, Germany) -- C:\Windows\System32\DfSdkBt.exe
[2012/11/01 19:44:26 | 000,000,000 | ---D | C] -- C:\Program Files\Ashampoo
[2012/11/01 19:41:09 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Local\Programs
[2012/11/01 17:30:44 | 000,021,768 | ---- | C] (Sysinternals - www.sysinternals.com) -- C:\Windows\System32\drivers\PROCEXP141.SYS
[2012/11/01 05:10:15 | 000,040,776 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2012/11/01 02:43:12 | 000,000,000 | ---D | C] -- C:\Program Files\JMicron
[2012/11/01 02:40:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\SDA
[2012/11/01 02:40:23 | 000,203,352 | ---- | C] (JMicron Technology Corporation) -- C:\Windows\System32\jmcricon.dll
[2012/11/01 02:40:23 | 000,147,768 | ---- | C] (JMicron Technology Corporation) -- C:\Windows\System32\drivers\jmcr.sys
[2012/11/01 01:27:22 | 000,061,440 | ---- | C] (PcWinTech.com) -- C:\Windows\System32\CleanMem.exe
[2012/11/01 01:27:20 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CleanMem
[2012/11/01 01:27:16 | 000,000,000 | ---D | C] -- C:\Windows\CleanMem
[2012/11/01 01:27:16 | 000,000,000 | ---D | C] -- C:\Program Files\CleanMem
[2012/11/01 01:19:07 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2012/11/01 01:08:09 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RAM Def
[2012/11/01 01:08:09 | 000,000,000 | ---D | C] -- C:\Program Files\RAM Def
[2012/10/30 20:33:05 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\Desktop\Tools
[2012/10/30 20:28:40 | 000,000,000 | ---D | C] -- C:\Program Files\Roadkil.Net
[2012/10/30 19:44:31 | 000,000,000 | ---D | C] -- C:\ProgramData\RegRun
[2012/10/30 13:34:36 | 000,000,000 | ---D | C] -- C:\bd_logs
[2012/10/30 12:45:05 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Local\ElevatedDiagnostics
[2012/10/30 12:04:32 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Local\ShamurShamur
[2012/10/29 16:49:57 | 000,000,000 | ---D | C] -- C:\Windows\Microsoft Antimalware
[2012/10/29 12:41:55 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Roaming\enchant
[2012/10/28 23:20:49 | 000,000,000 | ---D | C] -- C:\Windows\en
[2012/10/28 23:18:04 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SkyDrive
[2012/10/28 23:18:02 | 000,000,000 | R--D | C] -- C:\Users\Vanquisher\SkyDrive
[2012/10/28 23:17:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft SkyDrive
[2012/10/27 18:10:51 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Roaming\cspa
[2012/10/27 17:54:17 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MagicDisc
[2012/10/27 17:53:48 | 000,116,736 | ---- | C] (MagicISO, Inc.) -- C:\Windows\System32\drivers\mcdbus.sys
[2012/10/27 17:53:47 | 000,000,000 | ---D | C] -- C:\Program Files\MagicDisc
[2012/10/27 14:58:50 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2012/10/26 15:58:08 | 000,062,312 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvshext.dll
[2012/10/26 15:58:06 | 002,557,288 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvsvcr.dll
[2012/10/26 15:58:05 | 003,965,288 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcpl.dll
[2012/10/26 15:58:05 | 002,853,224 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvsvc.dll
[2012/10/26 15:58:05 | 000,108,392 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvmctray.dll
[2012/10/26 15:56:26 | 000,052,584 | ---- | C] (Khronos Group) -- C:\Windows\System32\OpenCL.dll
[2012/10/26 15:56:07 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation
[2012/10/26 15:53:28 | 000,884,072 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvhdagenco3220103.dll
[2012/10/26 15:53:28 | 000,149,352 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvhda32v.sys
[2012/10/26 15:53:28 | 000,067,432 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvapo32v.dll
[2012/10/26 15:53:28 | 000,028,008 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvhdap32.dll
[2012/10/26 15:53:24 | 012,501,352 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvwgf2um.dll
[2012/10/26 15:53:22 | 019,906,920 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvoglv32.dll
[2012/10/26 15:53:22 | 010,837,352 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvlddmkm.sys
[2012/10/26 15:53:21 | 006,127,464 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvopencl.dll
[2012/10/26 15:53:21 | 000,888,168 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvdispgenco32.dll
[2012/10/26 15:53:18 | 001,009,512 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvdispco32.dll
[2012/10/26 15:53:16 | 015,309,160 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvd3dum.dll
[2012/10/26 15:53:16 | 002,574,696 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvid.dll
[2012/10/26 15:53:16 | 001,867,112 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvenc.dll
[2012/10/26 15:53:15 | 007,697,768 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuda.dll
[2012/10/26 15:53:09 | 017,559,912 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcompiler.dll
[2012/10/26 15:53:09 | 002,428,776 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvapi.dll
[2012/10/26 15:40:20 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TsUsbRedirectionGroupPolicyControl.exe
[2012/10/26 15:40:18 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\rdpvideominiport.sys
[2012/10/26 15:40:17 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TsUsbRedirectionGroupPolicyExtension.dll
[2012/10/26 15:40:16 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RdpGroupPolicyExtension.dll
[2012/10/26 15:40:14 | 000,049,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\TsUsbFlt.sys
[2012/10/26 15:40:10 | 000,269,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\aaclient.dll
[2012/10/26 15:40:10 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpudd.dll
[2012/10/26 15:40:10 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TSWbPrxy.exe
[2012/10/26 15:40:10 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MsRdpWebAccess.dll
[2012/10/26 15:40:10 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tsgqec.dll
[2012/10/26 15:40:10 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TsUsbGDCoInstaller.dll
[2012/10/26 15:40:10 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wksprtPS.dll
[2012/10/26 15:40:09 | 000,317,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wksprt.exe
[2012/10/26 15:40:09 | 000,192,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpendp_winip.dll
[2012/10/26 15:40:06 | 002,739,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpcorets.dll
[2012/10/26 14:41:31 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ncrypt.dll
[2012/10/25 22:47:46 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Roaming\SUPERAntiSpyware.com
[2012/10/25 22:47:27 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
[2012/10/25 22:47:21 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
[2012/10/25 22:47:21 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2012/10/25 20:19:02 | 000,000,000 | ---D | C] -- C:\Windows\Sun
[2012/10/24 23:46:15 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Local\Paint.NET
[2012/10/24 21:42:50 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
[2012/10/24 20:51:33 | 000,000,000 | ---D | C] -- C:\Program Files\HitmanPro
[2012/10/24 20:51:29 | 000,000,000 | ---D | C] -- C:\ProgramData\HitmanPro
[2012/10/24 20:15:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Soluto
[2012/10/24 20:07:47 | 000,622,616 | ---- | C] (BitDefender) -- C:\Windows\System32\drivers\avc3.sys
[2012/10/24 20:07:41 | 000,448,512 | ---- | C] (OldTimer Tools) -- C:\Users\Vanquisher\Desktop\TFC.exe
[2012/10/24 19:58:47 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2012/10/24 15:36:29 | 000,000,000 | -HSD | C] -- C:\Boot
[2012/10/22 21:10:11 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Local\temp
[2012/10/22 14:06:09 | 000,000,000 | R--D | C] -- C:\Users\Vanquisher\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2012/10/22 14:05:30 | 000,000,000 | ---D | C] -- C:\Windows\erdnt
[2012/10/22 10:20:15 | 000,174,056 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\javaw.exe
[2012/10/22 10:20:15 | 000,174,056 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\java.exe
[2012/10/22 10:20:15 | 000,093,672 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\WindowsAccessBridge.dll
[2012/10/22 10:04:13 | 000,082,696 | ---- | C] (Microsoft Corporation.) -- C:\Windows\System32\lmdimon8.dll
[2012/10/22 10:03:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Applications
[2012/10/20 12:13:28 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\Tracing
[2012/10/19 18:10:02 | 000,051,144 | ---- | C] (Soluto LTD.) -- C:\Windows\System32\drivers\Soluto.sys
[2012/10/19 17:08:01 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Local\Apple
[2012/10/19 14:07:09 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Roaming\Nitro PDF
[2012/10/19 14:06:27 | 000,027,152 | ---- | C] (Nitro PDF Software) -- C:\Windows\System32\nitrolocalmon2.dll
[2012/10/19 14:06:27 | 000,018,448 | ---- | C] (Nitro PDF Software) -- C:\Windows\System32\nitrolocalui2.dll
[2012/10/19 14:06:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Nitro PDF
[2012/10/19 14:06:14 | 000,000,000 | ---D | C] -- C:\Program Files\Nitro PDF
[2012/10/19 14:06:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Nitro PDF
[2012/10/19 13:40:57 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Roaming\OpenCandy
[2012/10/19 13:40:56 | 000,000,000 | ---D | C] -- C:\Program Files\IZArc
[2012/10/19 12:48:26 | 000,000,000 | ---D | C] -- C:\Program Files\Activision
[2012/10/18 00:10:16 | 000,000,000 | ---D | C] -- C:\Program Files\gs
[2012/10/17 22:01:02 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Local\Macromedia
[2012/10/17 18:12:25 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Local\daulat.raikar
[2012/10/16 11:35:18 | 000,000,000 | ---D | C] -- C:\Windows\M Y! Banner Killer
[2012/10/15 13:25:29 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\Documents\RegRun2
[2012/10/14 21:44:26 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Roaming\Malwarebytes
[2012/10/14 21:44:11 | 000,022,856 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2012/10/14 21:44:11 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2012/10/14 10:59:58 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Roaming\Thunderbird
[2012/10/14 10:59:58 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Local\Thunderbird
[2012/10/12 14:56:50 | 000,000,000 | ---D | C] -- C:\ProgramData\WebEx
[2012/10/11 23:52:46 | 000,072,704 | ---- | C] (BitDefender) -- C:\Windows\System32\drivers\bdvedisk.sys
[2012/10/11 23:49:33 | 000,077,192 | ---- | C] (BitDefender LLC) -- C:\Windows\System32\drivers\BdfNdisf6.sys
[2012/10/11 23:49:30 | 000,066,392 | ---- | C] (BitDefender SRL) -- C:\Windows\System32\drivers\bdsandbox.sys
[2012/10/11 23:49:24 | 000,481,464 | ---- | C] (BitDefender) -- C:\Windows\System32\drivers\avckf.sys
[2012/10/11 22:00:39 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Roaming\Bitdefender
[2012/10/11 21:30:39 | 000,161,312 | ---- | C] (BitDefender LLC) -- C:\Windows\System32\drivers\gzflt.sys
[2012/10/11 21:30:36 | 000,343,456 | ---- | C] (BitDefender S.R.L.) -- C:\Windows\System32\drivers\trufos.sys
[2012/10/10 17:33:49 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll
[2012/10/10 17:33:40 | 000,271,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe
[2012/10/10 17:33:40 | 000,169,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winsrv.dll
[2012/10/10 17:33:40 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll
[2012/10/10 17:33:40 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll
[2012/10/10 17:33:40 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll
[2012/10/10 17:33:40 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll
[2012/10/10 17:33:40 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll
[2012/10/10 17:33:40 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll
[2012/10/10 17:33:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll
[2012/10/10 17:33:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll
[2012/10/10 17:33:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll
[2012/10/10 17:33:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2012/10/10 17:33:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll
[2012/10/10 17:33:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll
[2012/10/10 17:33:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll
[2012/10/10 17:33:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll
[2012/10/10 17:33:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll
[2012/10/10 17:33:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll
[2012/10/10 17:33:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll
[2012/10/10 17:33:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll
[2012/10/10 17:33:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll
[2012/10/10 17:33:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll
[2012/10/10 17:33:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll
[2012/10/10 17:33:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll
[2012/10/10 17:33:39 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll
[2012/10/10 17:33:39 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll
[2012/10/10 17:33:39 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll
[2012/10/10 17:33:39 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll
[2012/10/10 17:33:39 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll
[2012/10/10 17:33:39 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll
[2012/10/10 17:33:18 | 003,914,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
[2012/10/10 17:33:17 | 003,968,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
[2012/10/10 12:28:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Bitdefender
[2012/10/09 18:10:46 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Roaming\liQeNSoft
[2012/10/09 18:10:46 | 000,000,000 | ---D | C] -- C:\Users\Vanquisher\AppData\Local\liQeNSoft
[2012/10/07 07:45:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Logs
[2012/10/07 07:45:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Licenses
========== Files - Modified Within 30 Days ==========
[2012/11/03 16:32:36 | 000,000,029 | ---- | M] () -- C:\Windows\System32\TempWmicBatchFile.bat
[2012/11/03 16:22:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012/11/03 15:10:15 | 000,025,216 | ---- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012/11/03 15:10:15 | 000,025,216 | ---- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012/11/03 15:01:33 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012/11/03 14:52:57 | 000,027,976 | ---- | M] () -- C:\Windows\System32\drivers\hitmanpro36.sys
[2012/11/03 14:47:00 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task a46e60f9-0999-4b9a-a64d-eccd56caa16f.job
[2012/11/03 12:02:10 | 000,001,242 | ---- | M] () -- C:\Windows\System32\.crusader
[2012/11/03 10:42:51 | 000,000,894 | ---- | M] () -- C:\Users\Public\Desktop\calibre - E-book management.lnk
[2012/11/03 02:00:00 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 44915f6c-598a-49a7-bc77-23d2d8aeeccb.job
[2012/11/02 23:21:21 | 000,034,880 | ---- | M] () -- C:\Users\Vanquisher\Desktop\zpro2.jpg
[2012/11/02 23:06:37 | 000,043,068 | ---- | M] () -- C:\Users\Vanquisher\Desktop\zpro.jpg
[2012/11/02 14:46:21 | 000,007,603 | ---- | M] () -- C:\Users\Vanquisher\AppData\Local\Resmon.ResmonCfg
[2012/11/02 13:07:28 | 000,670,082 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2012/11/02 13:07:28 | 000,127,716 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2012/11/01 19:44:43 | 000,002,192 | ---- | M] () -- C:\Users\Vanquisher\Desktop\One-Click-Optimizer (WO2012).lnk
[2012/11/01 19:44:43 | 000,001,178 | ---- | M] () -- C:\Users\Vanquisher\Desktop\Ashampoo WinOptimizer 2012.lnk
[2012/11/01 17:30:45 | 000,021,768 | ---- | M] (Sysinternals - www.sysinternals.com) -- C:\Windows\System32\drivers\PROCEXP141.SYS
[2012/11/01 05:14:42 | 000,040,776 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2012/11/01 01:27:50 | 000,000,022 | ---- | M] () -- C:\Windows\cmm.dat
[2012/11/01 01:08:10 | 000,001,790 | ---- | M] () -- C:\Users\Vanquisher\Desktop\RAM Def 26XT (silent).lnk
[2012/11/01 01:08:10 | 000,001,786 | ---- | M] () -- C:\Users\Vanquisher\Desktop\RAM Def 26XT (tray).lnk
[2012/11/01 01:08:10 | 000,001,774 | ---- | M] () -- C:\Users\Vanquisher\Desktop\RAM Def 26XT.lnk
[2012/10/30 19:44:15 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt
[2012/10/30 19:44:15 | 000,001,688 | ---- | M] () -- C:\Windows\System32\autoexec.nt
[2012/10/30 19:44:15 | 000,000,002 | RHS- | M] () -- C:\Windows\winstart.bat
[2012/10/30 12:40:28 | 372,629,449 | ---- | M] () -- C:\Windows\System32\UKRPBRQ
[2012/10/30 10:41:10 | 002,664,400 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2012/10/28 23:18:00 | 000,002,141 | ---- | M] () -- C:\Users\Vanquisher\Desktop\Microsoft SkyDrive.lnk
[2012/10/28 20:21:52 | 000,000,565 | ---- | M] () -- C:\Windows\Spidey.ini
[2012/10/28 00:21:56 | 000,000,552 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2012/10/27 20:23:40 | 000,001,238 | ---- | M] () -- C:\Users\Vanquisher\Application Data\Microsoft\Internet Explorer\Quick Launch\Revo Uninstaller Pro.lnk
[2012/10/27 20:23:40 | 000,001,214 | ---- | M] () -- C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk
[2012/10/25 22:47:28 | 000,001,929 | ---- | M] () -- C:\Users\Vanquisher\Desktop\SUPERAntiSpyware Professional.lnk
[2012/10/25 20:19:16 | 000,060,304 | ---- | M] () -- C:\Users\Vanquisher\g2mdlhlpx.exe
[2012/10/24 20:53:29 | 000,001,861 | ---- | M] () -- C:\Users\Public\Desktop\HitmanPro.lnk
[2012/10/24 20:07:49 | 000,448,512 | ---- | M] (OldTimer Tools) -- C:\Users\Vanquisher\Desktop\TFC.exe
[2012/10/24 20:07:47 | 000,622,616 | ---- | M] (BitDefender) -- C:\Windows\System32\drivers\avc3.sys
[2012/10/24 19:50:29 | 000,066,392 | ---- | M] (BitDefender SRL) -- C:\Windows\System32\drivers\bdsandbox.sys
[2012/10/24 19:49:59 | 000,481,464 | ---- | M] (BitDefender) -- C:\Windows\System32\drivers\avckf.sys
[2012/10/22 21:13:07 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts
[2012/10/19 18:10:16 | 000,000,098 | ---- | M] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
[2012/10/18 11:19:38 | 000,051,144 | ---- | M] (Soluto LTD.) -- C:\Windows\System32\drivers\Soluto.sys
[2012/10/18 00:28:23 | 000,001,053 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/10/15 16:32:12 | 000,147,768 | ---- | M] (JMicron Technology Corporation) -- C:\Windows\System32\drivers\jmcr.sys
[2012/10/13 14:36:03 | 000,047,685 | ---- | M] () -- C:\Users\Vanquisher\Desktop\fbemotions.jpg
[2012/10/11 23:55:47 | 000,253,404 | -H-- | M] () -- C:\bdr-ld01
[2012/10/11 23:55:47 | 000,009,216 | -H-- | M] () -- C:\bdr-ld01.mbr
[2012/10/11 23:55:47 | 000,000,308 | -H-- | M] () -- C:\bdr-cf01
[2012/10/10 08:34:33 | 000,040,181 | ---- | M] () -- C:\Program Files\message.wav
[2012/10/10 06:30:27 | 000,696,760 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe
[2012/10/10 06:30:26 | 000,073,656 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
========== Files Created - No Company Name ==========
[2012/11/03 14:52:57 | 000,027,976 | ---- | C] () -- C:\Windows\System32\drivers\hitmanpro36.sys
[2012/11/03 10:42:51 | 000,000,894 | ---- | C] () -- C:\Users\Public\Desktop\calibre - E-book management.lnk
[2012/11/02 23:19:46 | 000,034,880 | ---- | C] () -- C:\Users\Vanquisher\Desktop\zpro2.jpg
[2012/11/02 23:06:36 | 000,043,068 | ---- | C] () -- C:\Users\Vanquisher\Desktop\zpro.jpg
[2012/11/02 01:59:41 | 000,020,480 | ---- | C] () -- C:\Windows\USB_VIDEO_REG.exe
[2012/11/01 19:44:43 | 000,002,192 | ---- | C] () -- C:\Users\Vanquisher\Desktop\One-Click-Optimizer (WO2012).lnk
[2012/11/01 19:44:43 | 000,001,178 | ---- | C] () -- C:\Users\Vanquisher\Desktop\Ashampoo WinOptimizer 2012.lnk
[2012/11/01 01:27:50 | 000,000,022 | ---- | C] () -- C:\Windows\cmm.dat
[2012/11/01 01:27:22 | 000,000,187 | ---- | C] () -- C:\Windows\System32\CleanMem.ini
[2012/11/01 01:08:10 | 000,001,790 | ---- | C] () -- C:\Users\Vanquisher\Desktop\RAM Def 26XT (silent).lnk
[2012/11/01 01:08:10 | 000,001,786 | ---- | C] () -- C:\Users\Vanquisher\Desktop\RAM Def 26XT (tray).lnk
[2012/11/01 01:08:10 | 000,001,774 | ---- | C] () -- C:\Users\Vanquisher\Desktop\RAM Def 26XT.lnk
[2012/10/30 12:27:06 | 372,629,449 | ---- | C] () -- C:\Windows\System32\UKRPBRQ
[2012/10/29 11:15:43 | 000,002,141 | ---- | C] () -- C:\Users\Vanquisher\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk
[2012/10/28 23:17:59 | 000,002,141 | ---- | C] () -- C:\Users\Vanquisher\Desktop\Microsoft SkyDrive.lnk
[2012/10/27 20:23:40 | 000,001,238 | ---- | C] () -- C:\Users\Vanquisher\Application Data\Microsoft\Internet Explorer\Quick Launch\Revo Uninstaller Pro.lnk
[2012/10/26 15:53:17 | 000,012,865 | ---- | C] () -- C:\Windows\System32\nvinfo.pb
[2012/10/25 22:47:50 | 000,000,520 | ---- | C] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task a46e60f9-0999-4b9a-a64d-eccd56caa16f.job
[2012/10/25 22:47:49 | 000,000,520 | ---- | C] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 44915f6c-598a-49a7-bc77-23d2d8aeeccb.job
[2012/10/25 22:47:28 | 000,001,929 | ---- | C] () -- C:\Users\Vanquisher\Desktop\SUPERAntiSpyware Professional.lnk
[2012/10/25 20:19:14 | 000,060,304 | ---- | C] () -- C:\Users\Vanquisher\g2mdlhlpx.exe
[2012/10/25 20:08:25 | 000,001,242 | ---- | C] () -- C:\Windows\System32\.crusader
[2012/10/24 20:53:29 | 000,001,861 | ---- | C] () -- C:\Users\Public\Desktop\HitmanPro.lnk
[2012/10/22 10:22:19 | 000,000,029 | ---- | C] () -- C:\Windows\System32\TempWmicBatchFile.bat
[2012/10/19 18:10:16 | 000,000,098 | ---- | C] () -- C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
[2012/10/19 12:47:54 | 000,000,565 | ---- | C] () -- C:\Windows\Spidey.ini
[2012/10/18 00:28:23 | 000,001,053 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012/10/15 13:25:32 | 000,000,002 | RHS- | C] () -- C:\Windows\winstart.bat
[2012/10/13 14:36:02 | 000,047,685 | ---- | C] () -- C:\Users\Vanquisher\Desktop\fbemotions.jpg
[2012/10/11 23:55:47 | 000,000,308 | -H-- | C] () -- C:\bdr-cf01
[2012/10/11 22:00:24 | 035,188,281 | -H-- | C] () -- C:\bdr-im01.gz
[2012/10/11 22:00:24 | 002,294,848 | -H-- | C] () -- C:\bdr-bz01
[2012/10/11 22:00:24 | 000,253,404 | -H-- | C] () -- C:\bdr-ld01
[2012/10/11 22:00:24 | 000,009,216 | -H-- | C] () -- C:\bdr-ld01.mbr
[2012/10/10 08:34:33 | 000,040,181 | ---- | C] () -- C:\Program Files\message.wav
[2012/10/09 18:24:04 | 002,664,400 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2012/10/01 02:29:35 | 000,001,536 | ---- | C] () -- C:\Windows\System32\bcevent.dll
[2012/09/22 13:18:33 | 000,002,248 | ---- | C] () -- C:\Windows\System32\ASOROSet.bin
[2012/09/09 23:50:53 | 000,045,056 | ---- | C] () -- C:\Windows\System32\UTSCSI.EXE
[2012/09/01 16:44:43 | 000,015,672 | ---- | C] () -- C:\Windows\System32\drivers\SmartDefragDriver.sys
[2012/08/19 03:55:24 | 000,001,463 | ---- | C] () -- C:\Users\Vanquisher\AppData\Local\recently-used.xbel
[2012/08/03 10:37:43 | 000,000,089 | ---- | C] () -- C:\Windows\ob1.INI
[2012/08/02 17:52:29 | 000,112,640 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll
[2012/08/02 17:18:11 | 000,645,632 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2012/08/02 17:18:10 | 000,240,640 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2012/07/27 05:39:26 | 000,293,889 | ---- | C] () -- C:\Windows\System32\drivers\RTAIODAT.DAT
[2012/07/26 14:50:41 | 000,110,602 | ---- | C] () -- C:\Windows\System32\xcdsfx32.bin
[2012/02/17 10:22:31 | 000,000,533 | ---- | C] () -- C:\Windows\eReg.dat
[2012/01/27 16:51:00 | 000,011,200 | ---- | C] () -- C:\Users\Vanquisher\aufnahme.raw
[2012/01/27 16:46:17 | 000,000,017 | ---- | C] () -- C:\Users\Vanquisher\.javafx_ping_sent
[2012/01/27 16:46:15 | 000,000,000 | ---- | C] () -- C:\Users\Vanquisher\.javafx_eula_accepted
[2012/01/14 18:23:20 | 000,000,039 | ---- | C] () -- C:\Windows\KeplerAstrology.INI
[2012/01/05 03:41:58 | 000,234,768 | ---- | C] () -- C:\Windows\System32\PnkBstrB.exe
[2011/08/01 07:03:39 | 000,000,510 | ---- | C] () -- C:\Windows\wininit.ini
[2011/07/19 14:01:31 | 000,009,728 | ---- | C] () -- C:\Windows\System32\BASSMOD.dll
[2011/07/15 06:08:38 | 000,081,920 | ---- | C] () -- C:\Windows\System32\v3shrtkgn.dll
[2011/07/14 08:10:55 | 000,000,062 | ---- | C] () -- C:\Windows\MyProg.ini
[2011/06/29 14:10:32 | 000,074,703 | ---- | C] () -- C:\Windows\System32\mfc45.dll
[2011/06/07 09:55:25 | 000,578,611 | ---- | C] () -- C:\Windows\System32\adb.exe
[2011/06/04 07:58:58 | 000,040,123 | ---- | C] () -- C:\Program Files\New_Message.mp3
[2011/06/04 04:01:15 | 000,167,276 | -H-- | C] () -- C:\Windows\System32\mlfcache.dat
[2011/06/01 16:31:52 | 000,000,121 | ---- | C] () -- C:\Windows\bdagent.INI
[2011/06/01 07:21:28 | 000,917,874 | ---- | C] () -- C:\ProgramData\bdinstall.bin
[2011/06/01 01:42:41 | 000,000,022 | ---- | C] () -- C:\Windows\clofghls.dll
[2011/05/31 05:22:08 | 000,000,020 | ---- | C] () -- C:\Windows\mafosav.INI
[2011/05/16 12:11:13 | 000,487,424 | ---- | C] () -- C:\Windows\System32\INT15.dll
[2011/04/27 18:49:32 | 000,030,568 | ---- | C] () -- C:\Windows\MusiccityDownload.exe
[2011/04/27 18:49:30 | 000,974,848 | ---- | C] () -- C:\Windows\System32\cis-2.4.dll
[2011/04/27 18:49:30 | 000,081,920 | ---- | C] () -- C:\Windows\System32\issacapi_bs-2.3.dll
[2011/04/27 18:49:30 | 000,065,536 | ---- | C] () -- C:\Windows\System32\issacapi_pe-2.3.dll
[2011/04/27 18:49:30 | 000,057,344 | ---- | C] () -- C:\Windows\System32\issacapi_se-2.3.dll
[2011/04/25 18:02:47 | 000,000,038 | ---- | C] () -- C:\Windows\System32\defragboot.ini
[2011/04/25 17:15:16 | 000,000,201 | ---- | C] () -- C:\Windows\w32demo8.ini
[2011/04/16 15:25:57 | 000,000,056 | ---- | C] () -- C:\Windows\System32\ezsidmv.dat
[2011/04/15 08:35:37 | 000,333,288 | ---- | C] () -- C:\Windows\System32\sqlite3.dll
[2011/04/05 09:44:49 | 000,007,603 | ---- | C] () -- C:\Users\Vanquisher\AppData\Local\Resmon.ResmonCfg
[2011/03/28 21:43:58 | 003,220,992 | ---- | C] () -- C:\Windows\System32\x264vfw.dll
[2011/03/06 05:55:48 | 000,066,048 | ---- | C] () -- C:\Windows\System32\PrintBrmUi.exe
[2011/03/05 17:17:16 | 000,122,368 | ---- | C] ( ) -- C:\Windows\System32\lagarith.dll
[2011/01/10 09:13:15 | 000,000,001 | ---- | C] () -- C:\Windows\pvc11.dll
[2011/01/10 08:51:16 | 000,000,065 | ---- | C] () -- C:\Windows\videotoaudio.ini
[2011/01/10 08:48:54 | 000,000,005 | ---- | C] () -- C:\Windows\System32\SySVid.dat
[2011/01/10 08:47:48 | 000,237,568 | ---- | C] () -- C:\Windows\System32\lame_enc.dll
[2010/07/15 13:09:12 | 000,129,024 | ---- | C] () -- C:\Users\Vanquisher\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/04/21 02:58:38 | 000,138,056 | ---- | C] () -- C:\Users\Vanquisher\AppData\Roaming\PnkBstrK.sys
[2010/02/15 09:13:50 | 000,000,440 | RHS- | C] () -- C:\Users\Vanquisher\ntuser.pol
[2010/02/10 00:25:51 | 000,000,025 | ---- | C] () -- C:\Users\Vanquisher\AppData\Roaming\bdfvconp.ini
[2010/02/05 00:23:13 | 000,000,005 | ---- | C] () -- C:\Users\Vanquisher\AppData\Roaming\closedListSW.awt
[2010/02/01 03:04:05 | 000,011,111 | ---- | C] () -- C:\Users\Vanquisher\AppData\Roaming\closedList.awt
[2010/02/01 03:04:05 | 000,000,005 | ---- | C] () -- C:\Users\Vanquisher\AppData\Roaming\openList.awt
[2010/01/08 07:50:47 | 000,000,552 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2009/11/11 01:00:46 | 000,002,955 | ---- | C] () -- C:\Users\Vanquisher\AppData\Roaming\SAS7_000.DAT
========== ZeroAccess Check ==========
[2009/07/14 10:12:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012/06/09 10:11:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 17:49:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/14 06:46:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
< End of report >