For a little more than a week now my computer have not been working properly.
From what i've picked up the problem (I believe it to be a virus, but I'm not completely sure either, i apologize for this) is affecting my connection to the Internet.
When I try to download torrents it takes excessive amount of time for them to first connect to peers, and the download itself is very limited. Uploading doesn't work at all. When trying to play online games, mainly World of Warcraft and Leauge of Legends I have immense troubles signing in. In the case of WoW, it takes about 5-10 minutes of trying to logg on only to get the "unable to connect" message, I estimate it usually takes around 40 tries for one to suddently work out normally and establish a connection. In LoL it's similar, I get unable to connect and can try to logg in for hours until it finally just works. Internet browsing most of the time works out somewhat as usual, though at a bit slower rate. When opening a new tab or switching websites I sometimes get "unable to connect" but after refreshing a few times it works out.
I tried turning off my firewall and antivirus but none of them are conflicting with my connection.
Now this definitely sounds like a problem with my Internet connection, but all the other computers in the household work perfectly fine at all times and did on my main computer for a long time before that.
What i have tried so far:
Resetted router, switched Internet cables back and forth with no sucess.
Scanned computer with avast! antivirus (free version), scan showed no infections.
Ran a registry clean with "Wise Registry Cleaner"
Ran CC cleaner.
Tried running Combofix - it starts up but without any notice combofix just shuts down without completing the fix.
Tried all of the above (except for router reset) in failsafe mode, with no better/different results.
I am using windows 7 64 bit.
Thanks in advance!
OTL logg below:
OTL logfile created on: 2012-11-04 16:58:35 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\ragnar\Downloads
64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 0000041d | Country: Sverige | Language: SVE | Date Format: yyyy-MM-dd
4,00 Gb Total Physical Memory | 1,46 Gb Available Physical Memory | 36,50% Memory free
8,00 Gb Paging File | 4,49 Gb Available in Paging File | 56,22% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 1863,01 Gb Total Space | 808,69 Gb Free Space | 43,41% Space Free | Partition Type: NTFS
Drive D: | 6,03 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive E: | 465,75 Gb Total Space | 52,19 Gb Free Space | 11,21% Space Free | Partition Type: NTFS
Computer Name: RAGNAR-PC | User Name: ragnar | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012-11-04 16:58:22 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\ragnar\Downloads\OTL.exe
PRC - [2012-10-26 17:34:22 | 007,880,664 | ---- | M] (Spotify Ltd) -- C:\Users\ragnar\AppData\Roaming\Spotify\spotify.exe
PRC - [2012-10-26 17:34:21 | 001,199,576 | ---- | M] (Spotify Ltd) -- C:\Users\ragnar\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
PRC - [2012-10-23 12:17:40 | 004,297,136 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2012-10-23 12:17:40 | 000,044,808 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2012-09-07 17:40:32 | 000,104,560 | ---- | M] (SumRando) -- C:\Program Files (x86)\SumRando\SumRando\misc\vpnmanagesvc.exe
PRC - [2012-07-27 21:51:26 | 000,063,960 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2012-05-15 01:21:40 | 000,382,272 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2012-04-19 23:04:06 | 000,076,888 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2012-04-17 13:44:12 | 001,333,144 | ---- | M] (Technology Nexus AB) -- C:\Program Files (x86)\Personal\bin\Personal.exe
PRC - [2009-10-14 12:36:56 | 002,793,304 | ---- | M] () -- C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe
PRC - [2009-10-14 12:34:18 | 000,560,472 | ---- | M] () -- C:\Program Files (x86)\Common Files\LogiShrd\LQCVFX\COCIManager.exe
PRC - [2009-10-07 00:47:22 | 000,125,464 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\LVPrS64H.exe
PRC - [2009-07-30 17:10:04 | 000,380,928 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files (x86)\ASUS\GamerOSD\GamerOSD.exe
PRC - [2009-07-27 10:13:28 | 000,061,440 | ---- | M] () -- C:\Windows\SysWOW64\ASDR.exe
PRC - [2002-01-11 20:44:44 | 001,310,720 | ---- | M] (ASUSTeK Inc.) -- C:\Program Files (x86)\ASUS\SmartDoctor\SmartDoctor.exe
========== Modules (No Company Name) ==========
MOD - [2012-10-26 17:34:22 | 020,220,376 | ---- | M] () -- C:\Users\ragnar\AppData\Roaming\Spotify\Data\libcef.dll
MOD - [2012-10-10 11:06:15 | 000,460,312 | ---- | M] () -- C:\Users\ragnar\AppData\Local\Google\Chrome\Application\22.0.1229.94\ppgooglenaclpluginchrome.dll
MOD - [2012-10-10 11:06:13 | 012,435,992 | ---- | M] () -- C:\Users\ragnar\AppData\Local\Google\Chrome\Application\22.0.1229.94\PepperFlash\pepflashplayer.dll
MOD - [2012-10-10 11:06:12 | 004,005,912 | ---- | M] () -- C:\Users\ragnar\AppData\Local\Google\Chrome\Application\22.0.1229.94\pdf.dll
MOD - [2012-10-10 11:04:57 | 000,578,072 | ---- | M] () -- C:\Users\ragnar\AppData\Local\Google\Chrome\Application\22.0.1229.94\libglesv2.dll
MOD - [2012-10-10 11:04:55 | 000,123,928 | ---- | M] () -- C:\Users\ragnar\AppData\Local\Google\Chrome\Application\22.0.1229.94\libegl.dll
MOD - [2012-10-10 11:04:44 | 000,156,712 | ---- | M] () -- C:\Users\ragnar\AppData\Local\Google\Chrome\Application\22.0.1229.94\avutil-51.dll
MOD - [2012-10-10 11:04:43 | 000,275,496 | ---- | M] () -- C:\Users\ragnar\AppData\Local\Google\Chrome\Application\22.0.1229.94\avformat-54.dll
MOD - [2012-10-10 11:04:42 | 002,168,360 | ---- | M] () -- C:\Users\ragnar\AppData\Local\Google\Chrome\Application\22.0.1229.94\avcodec-54.dll
MOD - [2009-10-14 12:36:56 | 002,793,304 | ---- | M] () -- C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe
MOD - [2009-10-14 12:34:18 | 000,560,472 | ---- | M] () -- C:\Program Files (x86)\Common Files\LogiShrd\LQCVFX\COCIManager.exe
MOD - [2009-04-29 19:46:20 | 001,077,248 | ---- | M] () -- C:\Program Files (x86)\ASUS\GamerOSD\ImageTransform.dll
MOD - [2009-02-17 17:22:16 | 000,184,320 | ---- | M] () -- C:\Program Files (x86)\ASUS\GamerOSD\AudioOnVistaDLL.dll
MOD - [2007-03-13 15:46:50 | 000,007,168 | ---- | M] () -- C:\Program Files (x86)\ASUS\SmartDoctor\VOV32.dll
MOD - [2007-02-28 17:34:04 | 000,643,142 | ---- | M] () -- C:\Program Files (x86)\ASUS\SmartDoctor\aticlocklib.dll
========== Services (SafeList) ==========
SRV:64bit: - [2012-10-23 12:17:40 | 000,044,808 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:64bit: - [2009-12-01 13:22:58 | 000,063,488 | ---- | M] (ASUSTeK COMPUTER INC.) [Auto | Running] -- C:\Windows\SysNative\ATKFUSService.exe -- (ATKFUSService)
SRV:64bit: - [2009-10-07 00:47:10 | 000,191,000 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe -- (LVPrcS64)
SRV:64bit: - [2009-07-14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009-07-14 02:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2012-10-27 20:58:56 | 000,250,808 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2012-10-24 18:50:38 | 000,115,168 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012-09-07 17:40:32 | 000,104,560 | ---- | M] (SumRando) [Auto | Running] -- C:\Program Files (x86)\SumRando\SumRando\misc\vpnmanagesvc.exe -- (SumRandoVPNService)
SRV - [2012-07-27 21:51:26 | 000,063,960 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2012-07-19 17:08:04 | 000,738,152 | ---- | M] (Tunngle.net GmbH) [On_Demand | Stopped] -- C:\Program Files (x86)\Tunngle\TnglCtrl.exe -- (TunngleService)
SRV - [2012-05-15 11:48:00 | 001,262,400 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2012-05-15 01:21:40 | 000,382,272 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2012-04-21 00:16:31 | 000,131,912 | ---- | M] (Desura Pty Ltd) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Desura\desura_service.exe -- (Desura Install Service)
SRV - [2012-04-19 23:04:06 | 000,076,888 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2012-02-29 07:50:48 | 000,158,856 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012-02-23 19:54:02 | 000,489,256 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2010-03-18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009-07-27 10:13:28 | 000,061,440 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\ASDR.exe -- (ASDR)
SRV - [2009-06-10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2012-10-23 12:18:31 | 000,984,144 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
DRV:64bit: - [2012-10-23 12:18:31 | 000,364,096 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP)
DRV:64bit: - [2012-10-23 12:18:31 | 000,059,728 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswTdi.sys -- (aswTdi)
DRV:64bit: - [2012-10-23 12:18:30 | 000,071,600 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:64bit: - [2012-10-23 12:18:30 | 000,025,232 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV:64bit: - [2012-10-15 18:59:28 | 000,054,072 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
DRV:64bit: - [2012-04-18 18:08:03 | 000,188,736 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:64bit: - [2011-11-17 19:44:32 | 000,035,056 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tun3325.sys -- (tun3325)
DRV:64bit: - [2011-09-30 21:12:07 | 000,016,384 | ---- | M] (ASUSTeK Computer Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\EIO64.sys -- (EIO64)
DRV:64bit: - [2011-06-15 09:30:46 | 000,093,240 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\scdemu.sys -- (SCDEmu)
DRV:64bit: - [2011-03-11 07:22:41 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011-03-11 07:22:40 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010-02-22 14:46:36 | 000,023,680 | ---- | M] (ASUSTeK Computer Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IOMap64.sys -- (IOMap)
DRV:64bit: - [2009-10-07 00:45:50 | 000,030,232 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2Mon)
DRV:64bit: - [2009-10-07 00:45:50 | 000,030,232 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2M64)
DRV:64bit: - [2009-09-16 07:02:42 | 000,031,232 | ---- | M] (Tunngle.net) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tap0901t.sys -- (tap0901t)
DRV:64bit: - [2009-07-14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009-07-14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009-07-14 02:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2009-07-14 02:47:48 | 000,023,104 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2009-07-14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009-07-14 01:01:09 | 000,679,936 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xnacc.sys -- (xnacc)
DRV:64bit: - [2009-06-10 21:35:42 | 000,187,392 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2009-06-10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009-06-10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009-06-10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009-06-10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009-05-01 00:01:34 | 000,327,576 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lvrs64.sys -- (LVRS64)
DRV:64bit: - [2009-04-30 23:55:56 | 002,755,096 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LV302V64.SYS -- (PID_PEPI)
DRV:64bit: - [2009-04-30 23:55:46 | 000,015,896 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lv302a64.sys -- (lvpepf64)
DRV:64bit: - [2009-02-17 17:22:22 | 000,039,424 | ---- | M] (ASUSTeK Computer Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ATKDispLowFilter.sys -- (atkdisplf)
DRV:64bit: - [2009-02-17 17:22:22 | 000,017,792 | ---- | M] (ASUSTeK Computer Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\asusgsb.sys -- (asusgsb)
DRV:64bit: - [2007-09-29 06:30:46 | 000,091,648 | ---- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\jraid.sys -- (JRAID)
DRV - [2011-09-30 18:36:46 | 000,020,544 | ---- | M] (Windows ® Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\gdrv.sys -- (gdrv)
DRV - [2009-07-14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\URLSearchHook: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll (Conduit Ltd.)
IE - HKLM\..\SearchScopes,DefaultScope = {afdbddaa-5d3f-42ee-b79c-185a7020515b}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.condui...&ctid=CT3220468
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.condui...&ctid=CT3220468
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://se.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = sv
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = DB 33 43 25 3E 97 CC 01 [binary data]
IE - HKCU\..\URLSearchHook: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll (Conduit Ltd.)
IE - HKCU\..\SearchScopes,DefaultScope = {afdbddaa-5d3f-42ee-b79c-185a7020515b}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.condui...&ctid=CT3220468
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..extensions.enabledAddons: [email protected]:6.0.1367
FF - user.js - File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_4_402_287.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_287.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX,Inc.)
FF - HKLM\Software\MozillaPlugins\@esn.me/esnsonar,version=0.70.0: File not found
FF - HKLM\Software\MozillaPlugins\@esn.me/esnsonar,version=0.70.4: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=1.102.0: File not found
FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=1.118.0: C:\Program Files (x86)\Battlelog Web Plugins\1.118.0\npesnlaunch.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.6.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.6.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.0.61118.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@se.nexus/Personal: C:\Program Files (x86)\Personal\bin\np_prsnl.dll (Technology Nexus AB)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\ragnar\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\ragnar\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\AVAST Software\Avast\WebRep\FF [2012-10-30 16:47:56 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 16.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012-10-27 20:07:59 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 16.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
[2012-10-27 20:08:38 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ragnar\AppData\Roaming\Mozilla\Extensions
[2012-10-29 12:00:56 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ragnar\AppData\Roaming\Mozilla\Firefox\Profiles\c1s5lane.default\extensions
[2012-10-29 12:01:00 | 000,000,000 | ---D | M] (uTorrentControl_v2) -- C:\Users\ragnar\AppData\Roaming\Mozilla\Firefox\Profiles\c1s5lane.default\extensions\{7473b6bd-4691-4744-a82b-7854eb3d70b6}
[2012-10-27 20:07:58 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2012-10-30 16:47:56 | 000,000,000 | ---D | M] (avast! WebRep) -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF
[2012-10-24 18:50:58 | 000,261,600 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2012-10-24 18:50:17 | 000,002,465 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2012-10-24 18:50:17 | 000,002,058 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\twitter.xml
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\ragnar\AppData\Local\Google\Chrome\Application\22.0.1229.94\PepperFlash\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_287.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\ragnar\AppData\Local\Google\Chrome\Application\22.0.1229.94\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\ragnar\AppData\Local\Google\Chrome\Application\22.0.1229.94\pdf.dll
CHR - plugin: Skype Toolbars (Enabled) = C:\Users\ragnar\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.9.0.9216_0\npSkypeChromePlugin.dll
CHR - plugin: Conduit Chrome Plugin (Enabled) = C:\Users\ragnar\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejpbbhjlbipncjklfjjaedaieimbmdda\2.3.15.10_0\plugins/ConduitChromeApiPlugin.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: ESN Launch Mozilla Plugin (Enabled) = C:\Program Files (x86)\Battlelog Web Plugins\1.118.0\npesnlaunch.dll
CHR - plugin: ESN Sonar API (Enabled) = C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll
CHR - plugin: DivX Web Player (Enabled) = C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll
CHR - plugin: Java Platform SE 7 U6 (Enabled) = C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
CHR - plugin: Java Deployment Toolkit 7.0.60.24 (Enabled) = C:\Windows\SysWOW64\npDeployJava1.dll
CHR - plugin: NVIDIA 3D Vision (Enabled) = C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
CHR - plugin: NVIDIA 3D VISION (Enabled) = C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
CHR - plugin: Pando Web Plugin (Enabled) = C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
CHR - plugin: Nexus Personal (Enabled) = C:\Program Files (x86)\Personal\bin\np_prsnl.dll
CHR - plugin: Google Update (Enabled) = C:\Users\ragnar\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\5.0.61118.0\npctrl.dll
CHR - Extension: AdBlock = C:\Users\ragnar\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.5.46_0\
CHR - Extension: avast! WebRep = C:\Users\ragnar\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\7.0.1473_0\
O1 HOSTS File: ([2009-06-10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2 - BHO: (uTorrentControl_v2 Toolbar) - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll (Conduit Ltd.)
O2 - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3:64bit: - HKLM\..\Toolbar: (avast! WebRep) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (uTorrentControl_v2 Toolbar) - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - C:\Program Files (x86)\uTorrentControl_v2\prxtbuTor.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe (AMD)
O4 - HKLM..\Run: [ASUSGamerOSD] C:\Program Files (x86)\ASUS\GamerOSD\GamerOSD.exe (ASUSTeK Computer Inc.)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe ()
O4 - HKLM..\Run: [LogitechQuickCamRibbon] C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe ()
O4 - HKLM..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE (PowerISO Computing, Inc.)
O4 - HKCU..\Run: [Spotify] C:\Users\ragnar\AppData\Roaming\Spotify\spotify.exe (Spotify Ltd)
O4 - HKCU..\Run: [Spotify Web Helper] C:\Users\ragnar\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Spotify Ltd)
O4 - HKCU..\Run: [Steam] C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation)
O4 - Startup: C:\Users\ragnar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Logitech . Produktregistrering.lnk = C:\Program Files\Logitech\Logitech WebCam Software\eReg.exe (Leader Technologies/Logitech)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 221
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Windows\SysNative\sslsp104.dll (SumRando)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Windows\SysNative\sslsp104.dll (SumRando)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000013 - C:\Windows\SysNative\sslsp104.dll (SumRando)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\SysWow64\sslsp104.dll (SumRando)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\SysWow64\sslsp104.dll (SumRando)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Windows\SysWow64\sslsp104.dll (SumRando)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Reg Error: Value error.)
O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_29)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.6.2)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.m...ash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{29541B7C-518B-411B-9713-5C1A68C72F36}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3100E656-70A5-4048-8EF6-028DD9447C60}: DhcpNameServer = 7.254.254.254
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009-06-10 22:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2007-10-24 23:38:50 | 000,000,000 | ---D | M] - D:\autorun -- [ CDFS ]
O32 - AutoRun File - [2007-07-19 15:53:44 | 000,000,058 | R--- | M] () - D:\Autorun.inf -- [ CDFS ]
O32 - AutoRun File - [2007-10-24 23:11:40 | 004,318,432 | R--- | M] (Crytek) - D:\AutoRunCD.exe -- [ CDFS ]
O32 - AutoRun File - [2009-11-13 06:59:48 | 000,000,000 | ---- | M] () - E:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{19ddb860-eb87-11e0-a2ac-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{19ddb860-eb87-11e0-a2ac-806e6f6e6963}\Shell\AutoRun\command - "" = D:\CheckID.exe
O33 - MountPoints2\{1da96f42-007e-11e1-9883-001a4d546427}\Shell - "" = AutoRun
O33 - MountPoints2\{1da96f42-007e-11e1-9883-001a4d546427}\Shell\AutoRun\command - "" = I:\LaunchU3.exe -a
O33 - MountPoints2\{72b5d6a8-41d0-11e1-9935-001a4d546427}\Shell - "" = AutoRun
O33 - MountPoints2\{72b5d6a8-41d0-11e1-9935-001a4d546427}\Shell\AutoRun\command - "" = F:\Startme.exe
O33 - MountPoints2\{73777fcd-eddf-11e0-a400-001a4d546427}\Shell - "" = AutoRun
O33 - MountPoints2\{73777fcd-eddf-11e0-a400-001a4d546427}\Shell\AutoRun\command - "" = F:\LaunchU3.exe -a
O33 - MountPoints2\F\Shell - "" = AutoRun
O33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\FalloutLauncher.exe
O33 - MountPoints2\H\Shell - "" = AutoRun
O33 - MountPoints2\H\Shell\AutoRun\command - "" = H:\OblivionLauncher.exe
O33 - MountPoints2\I\Shell - "" = AutoRun
O33 - MountPoints2\I\Shell\AutoRun\command - "" = I:\INSTALL.EXE
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2012-11-02 21:12:48 | 004,994,057 | R--- | C] (Swearware) -- C:\Users\ragnar\Desktop\Combo-Fix.exe
[2012-11-02 20:51:12 | 000,000,000 | ---D | C] -- C:\Qoobox
[2012-11-02 20:50:42 | 000,000,000 | ---D | C] -- C:\Windows\erdnt
[2012-11-02 20:50:34 | 000,000,000 | --SD | C] -- C:\32788R22FWJFW
[2012-10-30 16:47:57 | 000,054,072 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
[2012-10-29 12:01:01 | 000,000,000 | ---D | C] -- C:\Users\ragnar\AppData\Local\CRE
[2012-10-29 12:00:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Conduit
[2012-10-29 12:00:54 | 000,000,000 | ---D | C] -- C:\Users\ragnar\AppData\Local\Conduit
[2012-10-29 12:00:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\uTorrentControl_v2
[2012-10-29 12:00:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\uTorrent
[2012-10-29 12:00:04 | 000,000,000 | ---D | C] -- C:\Users\ragnar\AppData\Roaming\uTorrent
[2012-10-27 22:03:40 | 000,000,000 | ---D | C] -- C:\Users\ragnar\AppData\Local\LogiShrd
[2012-10-27 21:58:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Logitech
[2012-10-27 21:58:28 | 000,000,000 | ---D | C] -- C:\Users\ragnar\AppData\Roaming\Leadertech
[2012-10-27 21:56:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
[2012-10-27 21:56:46 | 000,000,000 | ---D | C] -- C:\Program Files\Logitech
[2012-10-27 21:56:46 | 000,000,000 | ---D | C] -- C:\ProgramData\LogiShrd
[2012-10-27 20:58:16 | 009,575,864 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerInstaller.exe
[2012-10-27 20:12:44 | 000,000,000 | ---D | C] -- C:\Users\ragnar\AppData\Local\Macromedia
[2012-10-27 20:11:01 | 000,696,760 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2012-10-27 20:10:45 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Macromed
[2012-10-27 20:08:16 | 000,000,000 | ---D | C] -- C:\Users\ragnar\AppData\Local\Mozilla
[2012-10-27 20:08:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
[2012-10-27 20:08:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2012-10-27 20:07:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2012-10-27 18:52:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\LogiShrd
[2012-10-27 18:52:30 | 002,755,096 | ---- | C] (Logitech Inc.) -- C:\Windows\SysNative\drivers\LV302V64.SYS
[2012-10-27 18:52:30 | 000,764,952 | ---- | C] (Logitech Inc.) -- C:\Windows\SysNative\LVUI64.dll
[2012-10-27 18:52:30 | 000,559,640 | ---- | C] (Logitech Inc.) -- C:\Windows\SysNative\LVUIRC64.dll
[2012-10-27 18:52:30 | 000,539,160 | ---- | C] (Logitech Inc.) -- C:\Windows\SysWow64\LVUI2RC.dll
[2012-10-27 18:52:30 | 000,539,160 | ---- | C] (Logitech Inc.) -- C:\Windows\SysWow64\LVUI2.dll
[2012-10-27 18:52:30 | 000,416,280 | ---- | C] (Logitech Inc.) -- C:\Windows\SysWow64\lvcodec2.dll
[2012-10-27 18:52:30 | 000,398,360 | ---- | C] (Logitech Inc.) -- C:\Windows\SysNative\lvcod64.dll
[2012-10-27 18:52:30 | 000,327,576 | ---- | C] (Logitech Inc.) -- C:\Windows\SysNative\drivers\lvrs64.sys
[2012-10-27 18:52:30 | 000,266,776 | ---- | C] (Logitech Inc.) -- C:\Windows\SysNative\lvco1201278.dll
[2012-10-27 18:52:30 | 000,015,896 | ---- | C] (Logitech Inc.) -- C:\Windows\SysNative\drivers\lv302a64.sys
[2012-10-27 18:52:27 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\LogiShrd
[2012-10-17 23:45:38 | 000,000,000 | ---D | C] -- C:\Users\ragnar\Desktop\dollhouse
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2012-11-04 16:58:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012-11-04 16:51:11 | 000,016,848 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012-11-04 16:51:11 | 000,016,848 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012-11-04 16:28:00 | 000,001,008 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1922681404-1561175744-2858419983-1001UA.job
[2012-11-04 13:20:58 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012-11-04 13:20:53 | 3220,037,632 | -HS- | M] () -- C:\hiberfil.sys
[2012-11-03 14:01:07 | 000,792,914 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012-11-03 14:01:07 | 000,661,146 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012-11-03 14:01:07 | 000,125,232 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012-11-03 12:28:00 | 000,000,956 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1922681404-1561175744-2858419983-1001Core.job
[2012-11-02 21:13:41 | 004,994,057 | R--- | M] (Swearware) -- C:\Users\ragnar\Desktop\Combo-Fix.exe
[2012-10-30 16:47:57 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\config.nt
[2012-10-29 22:11:55 | 000,001,029 | ---- | M] () -- C:\Users\ragnar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Logitech . Produktregistrering.lnk
[2012-10-29 12:00:36 | 000,000,971 | ---- | M] () -- C:\Users\ragnar\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk
[2012-10-29 12:00:36 | 000,000,947 | ---- | M] () -- C:\Users\Public\Desktop\µTorrent.lnk
[2012-10-27 22:08:21 | 000,002,009 | ---- | M] () -- C:\Users\Public\Desktop\Logitech Vid HD.lnk
[2012-10-27 21:56:54 | 000,002,083 | ---- | M] () -- C:\Users\Public\Desktop\Logitech Webcam Software.lnk
[2012-10-27 20:58:55 | 000,696,760 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2012-10-27 20:58:55 | 000,073,656 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2012-10-27 20:58:16 | 009,575,864 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerInstaller.exe
[2012-10-27 20:08:08 | 000,001,151 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2012-10-23 12:18:31 | 000,984,144 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2012-10-23 12:18:31 | 000,364,096 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys
[2012-10-23 12:18:31 | 000,059,728 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswTdi.sys
[2012-10-23 12:18:30 | 000,071,600 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2012-10-23 12:18:30 | 000,025,232 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswFsBlk.sys
[2012-10-23 12:17:48 | 000,041,224 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2012-10-23 12:17:38 | 000,227,648 | ---- | M] (AVAST Software) -- C:\Windows\SysWow64\aswBoot.exe
[2012-10-23 12:17:13 | 000,285,328 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2012-10-15 18:59:28 | 000,054,072 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
[2012-10-10 22:32:04 | 000,002,493 | ---- | M] () -- C:\Users\ragnar\Desktop\Google Chrome.lnk
[2012-10-10 16:40:10 | 000,002,427 | ---- | M] () -- C:\Users\Public\Desktop\Dishonored.lnk
[2012-10-07 18:42:56 | 000,603,797 | ---- | M] () -- C:\Users\ragnar\Desktop\mattestuff 033.JPG
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files Created - No Company Name ==========
[2012-10-29 22:11:55 | 000,001,029 | ---- | C] () -- C:\Users\ragnar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Logitech . Produktregistrering.lnk
[2012-10-29 12:00:36 | 000,000,971 | ---- | C] () -- C:\Users\ragnar\Application Data\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk
[2012-10-29 12:00:36 | 000,000,947 | ---- | C] () -- C:\Users\Public\Desktop\µTorrent.lnk
[2012-10-27 22:08:21 | 000,002,009 | ---- | C] () -- C:\Users\Public\Desktop\Logitech Vid HD.lnk
[2012-10-27 21:56:54 | 000,002,083 | ---- | C] () -- C:\Users\Public\Desktop\Logitech Webcam Software.lnk
[2012-10-27 20:11:03 | 000,000,830 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2012-10-27 20:08:08 | 000,001,151 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2012-10-27 20:08:07 | 000,001,163 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2012-10-27 18:52:30 | 000,082,289 | ---- | C] () -- C:\Windows\SysNative\lvcoin64.ini
[2012-10-27 18:52:30 | 000,034,068 | ---- | C] () -- C:\Windows\SysNative\Repository.reg
[2012-10-10 16:40:10 | 000,002,427 | ---- | C] () -- C:\Users\Public\Desktop\Dishonored.lnk
[2012-10-07 18:42:59 | 000,603,797 | ---- | C] () -- C:\Users\ragnar\Desktop\mattestuff 033.JPG
[2012-09-20 16:13:09 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\Access.dat
[2012-05-15 01:21:50 | 000,423,744 | ---- | C] () -- C:\Windows\SysWow64\nvStreaming.exe
[2012-02-25 18:33:35 | 000,000,128 | ---- | C] () -- C:\Users\ragnar\.java.policy
[2011-10-30 17:08:19 | 000,282,696 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2011-10-30 17:08:11 | 000,076,888 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2011-09-30 22:50:28 | 000,778,382 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2011-09-30 21:11:17 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\asrussian.dll
[2011-09-30 21:11:17 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\askorean.dll
[2011-09-30 21:11:17 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\asjapan.dll
[2011-09-30 21:11:17 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\asgerman.dll
[2011-09-30 21:11:17 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\asfrench.dll
[2011-09-30 21:11:17 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\aseng.dll
[2011-09-30 21:11:17 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\ASCHT.dll
[2011-09-30 21:11:17 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\aschs.dll
[2011-09-30 21:11:16 | 000,761,856 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2011-09-30 21:11:16 | 000,180,224 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2011-09-30 18:36:44 | 000,000,010 | ---- | C] () -- C:\Windows\GSetup.ini
[2011-09-28 17:44:14 | 000,179,271 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
========== ZeroAccess Check ==========
[2012-07-21 13:21:49 | 000,002,880 | ---- | M] () -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\meshes\architecture\urban\signage\l.nif
[2012-07-21 13:21:49 | 000,004,544 | ---- | M] () -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\meshes\architecture\urban\signage\n.nif
[2012-07-21 13:21:49 | 000,009,120 | ---- | M] () -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\meshes\architecture\urban\signage\u.nif
[2012-08-14 14:00:56 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\fst\dlc05spaceboots\walk\l
[2012-08-14 14:04:45 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\npc\antqueen\foot\run\l
[2012-08-14 14:04:46 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\npc\antqueen\foot\walk\l
[2012-08-14 14:04:51 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\npc\brahmin\foot\pack\l
[2012-08-14 14:04:58 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\npc\deathclaw\foot\run\l
[2012-08-14 14:04:58 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\npc\deathclaw\foot\walk\l
[2012-08-14 14:04:59 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\npc\dlc05abomination\foot\l
[2012-08-14 14:04:59 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\npc\dlc05alien\foot\run\l
[2012-08-14 14:04:59 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\npc\dlc05alien\foot\walk\l
[2012-08-14 14:05:45 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\npc\minespider\foot\l
[2012-08-14 14:05:54 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\npc\radscorpion\foot\l
[2012-08-14 14:06:03 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\npc\trog\foot\run\l
[2012-08-14 14:06:04 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\npc\trog\foot\walk\l
[2012-08-14 14:06:40 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\phy\barrel\l
[2012-08-14 14:06:42 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\phy\bottle\l
[2012-08-14 14:06:43 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\phy\cansoda\l
[2012-08-14 14:25:57 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\phy\generic\cloth\l
[2012-08-14 14:06:45 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\phy\generic\conc\medium\l
[2012-08-14 14:06:45 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\phy\generic\metal\heavy\l
[2012-08-14 14:06:46 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\phy\generic\metal\medium\l
[2012-08-14 14:06:46 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\phy\generic\metal\small\l
[2012-08-14 14:06:53 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\phy\lunchbox\l
[2012-08-14 14:06:54 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\phy\shoppingcart\l
[2012-08-14 14:06:56 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\phy\weapon\pistol\l
[2012-08-14 14:06:57 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\phy\weapon\rifle\l
[2012-08-14 14:06:54 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\phy\vehicle\metal\body\l
[2012-08-14 14:06:55 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\phy\vehicle\metal\hollow\l
[2012-08-14 14:06:55 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\sound\fx\phy\vehicle\metal\solid\l
[2012-08-14 14:21:05 | 000,000,000 | ---D | M] -- C:\$Recycle.bin\S-1-5-21-1922681404-1561175744-2858419983-1001\$RTG12O6.Edition-KaOs\Data\textures\interface\icons\pipboyimages\s.p.e.c.i.a.l
[2009-07-14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2010-07-27 15:59:11 | 014,162,944 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2010-07-27 15:03:24 | 012,867,584 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009-07-14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2009-07-14 02:15:20 | 000,605,696 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009-07-14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
< End of report >