OTL logfile created on: 19.10.2011 18:26:20 - Run 1 OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Seso\Desktop Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.13) Locale: 00000402 | Country: Bulgaria | Language: BGR | Date Format: dd.MM.yyyy 2.00 Gb Total Physical Memory | 0.82 Gb Available Physical Memory | 40.93% Memory free 3.85 Gb Paging File | 2.78 Gb Available in Paging File | 72.30% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 14.64 Gb Total Space | 1.28 Gb Free Space | 8.72% Space Free | Partition Type: NTFS Drive D: | 9.77 Gb Total Space | 0.67 Gb Free Space | 6.82% Space Free | Partition Type: NTFS Drive E: | 14.65 Gb Total Space | 2.93 Gb Free Space | 20.00% Space Free | Partition Type: NTFS Drive F: | 150.86 Gb Total Space | 8.19 Gb Free Space | 5.43% Space Free | Partition Type: NTFS Computer Name: 01-PC | User Name: Seso | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Quick Scan Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011.10.19 18:26:03 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Seso\Desktop\OTL.exe PRC - [2011.10.17 20:18:23 | 004,615,552 | ---- | M] (SUPERAntiSpyware.com) -- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe PRC - [2011.08.12 02:38:07 | 000,116,608 | ---- | M] (SUPERAntiSpyware.com) -- C:\Program Files\SUPERAntiSpyware\SASCore.exe PRC - [2011.06.29 06:06:36 | 000,947,056 | ---- | M] (Opera Software) -- C:\Program Files\Opera\opera.exe PRC - [2010.06.07 16:16:56 | 003,887,480 | ---- | M] (Sysinternals - www.sysinternals.com) -- C:\Documents and Settings\Seso\Desktop\processexplorer.exe PRC - [2010.01.06 18:23:32 | 000,142,648 | ---- | M] (FSPro Labs) -- C:\WINDOWS\system32\fsproflt.exe PRC - [2009.02.18 20:27:04 | 001,072,288 | ---- | M] (FSPro Labs) -- C:\Program Files\My Lockbox\mylbx.exe PRC - [2009.02.06 14:23:36 | 000,727,720 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe PRC - [2009.02.06 14:23:12 | 002,021,400 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe PRC - [2008.07.11 20:00:06 | 000,080,392 | ---- | M] () -- C:\Program Files\GIGABYTE\EnergySaver\GSvr.exe PRC - [2008.06.18 13:01:56 | 000,077,824 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\SoundMan.exe PRC - [2008.02.20 05:46:06 | 001,119,624 | ---- | M] (CANON INC.) -- C:\WINDOWS\system32\spool\drivers\w32x86\3\CNAB8SWK.EXE PRC - [2008.02.20 05:44:24 | 000,181,624 | ---- | M] (CANON INC.) -- C:\WINDOWS\system32\spool\drivers\w32x86\3\CNAP2RPK.EXE PRC - [2007.09.06 02:48:00 | 000,406,944 | ---- | M] (CANON INC.) -- C:\WINDOWS\system32\spool\drivers\w32x86\3\CNAP2LAK.EXE PRC - [2004.08.04 15:00:00 | 001,032,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2000.12.30 13:39:58 | 000,151,552 | ---- | M] () -- C:\WINDOWS\Datecs\Flex2K.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2011.10.19 18:14:07 | 000,063,488 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10006.dll MOD - [2011.10.19 18:14:07 | 000,052,736 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10007.dll MOD - [2011.10.19 17:58:06 | 000,117,760 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL MOD - [2011.10.19 17:58:06 | 000,052,224 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll MOD - [2011.06.01 00:18:15 | 006,271,136 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll MOD - [2011.03.15 02:18:43 | 012,509,184 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\67cfb70213562afe2ca9b9066764af3a\System.Web.ni.dll MOD - [2011.03.15 02:18:09 | 001,011,712 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\eee9b48577689e92db5a7b5c5de98d9b\System.Configuration.ni.dll MOD - [2011.03.15 01:52:05 | 000,027,136 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Accessibility\c6772fd12a581ad3be49e3f2a80b5622\Accessibility.ni.dll MOD - [2011.03.15 00:40:49 | 005,771,264 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\c98cb65a79cfccb44ea727ebe4593ede\System.Xml.ni.dll MOD - [2011.03.15 00:40:45 | 013,193,216 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\3d8c79c45aa674e43f075e2e66b8caf5\System.Windows.Forms.ni.dll MOD - [2011.03.15 00:40:35 | 001,667,072 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\0e83aac37b2623f1a24c70979f31dd56\System.Drawing.ni.dll MOD - [2011.03.15 00:39:19 | 008,265,728 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\ba0e3a22211ba7343e0116b051f2965a\System.ni.dll MOD - [2011.03.15 00:37:38 | 011,722,752 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\32e6f703c114f3a971cbe706586e3655\mscorlib.ni.dll MOD - [2011.03.14 23:51:26 | 000,299,008 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll MOD - [2010.07.05 00:32:38 | 000,010,752 | ---- | M] () -- C:\Program Files\Unlocker\UnlockerCOM.dll MOD - [2009.11.25 01:41:48 | 000,266,240 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Runtime\2.0.3134.39961__90ba9c70f846762e\CLI.Caste.Graphics.Runtime.dll MOD - [2009.11.25 01:41:48 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Wizard\2.0.3134.39999__90ba9c70f846762e\CLI.Caste.Graphics.Wizard.dll MOD - [2009.11.25 01:41:47 | 001,691,648 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysManager.Graphics.Wizard\2.0.3134.40006__90ba9c70f846762e\CLI.Aspect.DisplaysManager.Graphics.Wizard.dll MOD - [2009.11.25 01:41:47 | 000,364,544 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Wizard\2.0.3134.40169__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Wizard.dll MOD - [2009.11.25 01:41:47 | 000,204,800 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.InfoCentre.Graphics.Wizard\2.0.3134.40009__90ba9c70f846762e\CLI.Aspect.InfoCentre.Graphics.Wizard.dll MOD - [2009.11.25 01:41:47 | 000,077,824 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Runtime\2.0.3134.40160__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Runtime.dll MOD - [2009.11.25 01:41:47 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.HotkeysHandling.Graphics.Runtime\2.0.3134.39983__90ba9c70f846762e\CLI.Aspect.HotkeysHandling.Graphics.Runtime.dll MOD - [2009.11.25 01:41:46 | 000,688,128 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceCV.Graphics.Wizard\2.0.3134.40143__90ba9c70f846762e\CLI.Aspect.DeviceCV.Graphics.Wizard.dll MOD - [2009.11.25 01:41:46 | 000,483,328 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.TransCode.Graphics.Wizard\2.0.3134.40198__90ba9c70f846762e\CLI.Aspect.TransCode.Graphics.Wizard.dll MOD - [2009.11.25 01:41:46 | 000,065,536 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceCV.Graphics.Runtime\2.0.3134.40125__90ba9c70f846762e\CLI.Aspect.DeviceCV.Graphics.Runtime.dll MOD - [2009.11.25 01:41:46 | 000,036,864 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceProperty.Graphics.Runtime\2.0.3134.40096__90ba9c70f846762e\CLI.Aspect.DeviceProperty.Graphics.Runtime.dll MOD - [2009.11.25 01:41:02 | 000,135,168 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.Welcome.Graphics.Dashboard\2.0.3134.40199__90ba9c70f846762e\CLI.Aspect.Welcome.Graphics.Dashboard.dll MOD - [2009.11.25 01:41:02 | 000,073,728 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Dashboard\2.0.3134.39977__90ba9c70f846762e\CLI.Caste.Graphics.Dashboard.dll MOD - [2009.11.25 01:41:01 | 000,356,352 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Dashboard\2.0.3134.40134__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Dashboard.dll MOD - [2009.11.25 01:41:01 | 000,106,496 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.VPURecover.Graphics.Dashboard\2.0.3134.40008__90ba9c70f846762e\CLI.Aspect.VPURecover.Graphics.Dashboard.dll MOD - [2009.11.25 01:41:01 | 000,090,112 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Wizard\2.0.3134.40135__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Wizard.dll MOD - [2009.11.25 01:41:01 | 000,061,440 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Runtime\2.0.3134.40133__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Runtime.dll MOD - [2009.11.25 01:41:01 | 000,028,672 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.VPURecover.Graphics.Runtime\2.0.3134.40007__90ba9c70f846762e\CLI.Aspect.VPURecover.Graphics.Runtime.dll MOD - [2009.11.25 01:40:59 | 000,471,040 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.OverDrive5.Graphics.Dashboard\2.0.3134.40224__90ba9c70f846762e\CLI.Aspect.OverDrive5.Graphics.Dashboard.dll MOD - [2009.11.25 01:40:59 | 000,073,728 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.OverDrive5.Graphics.Runtime\2.0.3134.40222__90ba9c70f846762e\CLI.Aspect.OverDrive5.Graphics.Runtime.dll MOD - [2009.11.25 01:40:56 | 000,811,008 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.MMVideo.Graphics.Dashboard\2.0.3134.40100__90ba9c70f846762e\CLI.Aspect.MMVideo.Graphics.Dashboard.dll MOD - [2009.11.25 01:40:56 | 000,405,504 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.MMVideo.Graphics.Wizard\2.0.3134.40149__90ba9c70f846762e\CLI.Aspect.MMVideo.Graphics.Wizard.dll MOD - [2009.11.25 01:40:56 | 000,225,280 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.InfoCentre.Graphics.Dashboard\2.0.3134.40010__90ba9c70f846762e\CLI.Aspect.InfoCentre.Graphics.Dashboard.dll MOD - [2009.11.25 01:40:56 | 000,118,784 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysOptions.Graphics.Dashboard\2.0.3134.40119__90ba9c70f846762e\CLI.Aspect.DisplaysOptions.Graphics.Dashboard.dll MOD - [2009.11.25 01:40:56 | 000,077,824 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.MMVideo.Graphics.Runtime\2.0.3134.40099__90ba9c70f846762e\CLI.Aspect.MMVideo.Graphics.Runtime.dll MOD - [2009.11.25 01:40:55 | 000,794,624 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Dashboard\2.0.3134.40162__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Dashboard.dll MOD - [2009.11.25 01:40:55 | 000,585,728 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysColour2.Graphics.Dashboard\2.0.3134.40011__90ba9c70f846762e\CLI.Aspect.DisplaysColour2.Graphics.Dashboard.dll MOD - [2009.11.25 01:40:55 | 000,438,272 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysManager.Graphics.Dashboard\2.0.3134.39985__90ba9c70f846762e\CLI.Aspect.DisplaysManager.Graphics.Dashboard.dll MOD - [2009.11.25 01:40:55 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysColour2.Graphics.Runtime\2.0.3134.40017__90ba9c70f846762e\CLI.Aspect.DisplaysColour2.Graphics.Runtime.dll MOD - [2009.11.25 01:40:55 | 000,036,864 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysOptions.Graphics.Runtime\2.0.3134.40118__90ba9c70f846762e\CLI.Aspect.DisplaysOptions.Graphics.Runtime.dll MOD - [2009.11.25 01:40:54 | 000,671,744 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceCV.Graphics.Dashboard\2.0.3134.40127__90ba9c70f846762e\CLI.Aspect.DeviceCV.Graphics.Dashboard.dll MOD - [2009.11.25 01:40:54 | 000,450,560 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceDFP.Graphics.Dashboard\2.0.3134.40089__90ba9c70f846762e\CLI.Aspect.DeviceDFP.Graphics.Dashboard.dll MOD - [2009.11.25 01:40:54 | 000,376,832 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceCRT.Graphics.Dashboard\2.0.3134.40098__90ba9c70f846762e\CLI.Aspect.DeviceCRT.Graphics.Dashboard.dll MOD - [2009.11.25 01:40:54 | 000,061,440 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceDFP.Graphics.Runtime\2.0.3134.40097__90ba9c70f846762e\CLI.Aspect.DeviceDFP.Graphics.Runtime.dll MOD - [2009.11.25 01:40:54 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceCRT.Graphics.Runtime\2.0.3134.40098__90ba9c70f846762e\CLI.Aspect.DeviceCRT.Graphics.Runtime.dll MOD - [2009.11.25 01:40:54 | 000,032,768 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceLCD.Graphics.Runtime\2.0.3134.40121__90ba9c70f846762e\CLI.Aspect.DeviceLCD.Graphics.Runtime.dll MOD - [2009.11.25 01:40:54 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.Hotkeys.Shared\2.0.3119.30092__90ba9c70f846762e\AEM.Plugin.Hotkeys.Shared.dll MOD - [2009.11.25 01:40:54 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Actions.CCAA.Shared\2.0.3119.30081__90ba9c70f846762e\AEM.Actions.CCAA.Shared.dll MOD - [2009.11.25 01:40:54 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.WinMessages.Shared\2.0.3119.30104__90ba9c70f846762e\AEM.Plugin.WinMessages.Shared.dll MOD - [2009.11.25 01:40:53 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.EEU.Shared\2.0.3119.30120__90ba9c70f846762e\AEM.Plugin.EEU.Shared.dll MOD - [2009.11.25 01:40:52 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.GD.Shared\2.0.3119.30177__90ba9c70f846762e\AEM.Plugin.GD.Shared.dll MOD - [2009.11.25 01:40:51 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.DPPE.Shared\2.0.3119.30176__90ba9c70f846762e\AEM.Plugin.DPPE.Shared.dll MOD - [2009.11.25 01:40:51 | 000,006,656 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\atixclib\1.0.0.0__90ba9c70f846762e\atixclib.dll MOD - [2009.11.25 01:40:47 | 000,032,768 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\LOG.Foundation\2.0.3119.30063__90ba9c70f846762e\LOG.Foundation.dll MOD - [2009.11.25 01:40:47 | 000,028,672 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\NEWAEM.Foundation\2.0.3119.30065__90ba9c70f846762e\NEWAEM.Foundation.dll MOD - [2009.11.25 01:40:47 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\MOM.Foundation\2.0.3119.30117__90ba9c70f846762e\MOM.Foundation.dll MOD - [2009.11.25 01:40:46 | 000,045,056 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.Graphics.I0601\2.0.2573.17685__90ba9c70f846762e\DEM.Graphics.I0601.dll MOD - [2009.11.25 01:40:46 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.OS.I0602\2.0.3119.30127__90ba9c70f846762e\DEM.OS.I0602.dll MOD - [2009.11.25 01:40:46 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.Graphics.I0703\2.0.2651.18802__90ba9c70f846762e\DEM.Graphics.I0703.dll MOD - [2009.11.25 01:40:46 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.OS\2.0.3119.30171__90ba9c70f846762e\DEM.OS.dll MOD - [2009.11.25 01:40:46 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.Graphics.I0706\2.0.2743.23304__90ba9c70f846762e\DEM.Graphics.I0706.dll MOD - [2009.11.25 01:40:46 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.Graphics\2.0.3119.30128__90ba9c70f846762e\DEM.Graphics.dll MOD - [2009.11.25 01:40:45 | 000,053,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Foundation\2.0.3119.30067__90ba9c70f846762e\CLI.Foundation.dll MOD - [2009.11.25 01:40:45 | 000,053,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Shared\2.0.3119.30096__90ba9c70f846762e\CLI.Caste.Graphics.Shared.dll MOD - [2009.11.25 01:40:45 | 000,028,672 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Foundation.XManifest\2.0.3119.30232__90ba9c70f846762e\CLI.Foundation.XManifest.dll MOD - [2009.11.25 01:40:45 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Wizard.Shared\2.0.3119.30100__90ba9c70f846762e\CLI.Component.Wizard.Shared.dll MOD - [2009.11.25 01:40:45 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Dashboard.Shared\2.0.3119.30089__90ba9c70f846762e\CLI.Component.Dashboard.Shared.dll MOD - [2009.11.25 01:40:45 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Client.Shared\2.0.3119.30082__90ba9c70f846762e\CLI.Component.Client.Shared.dll MOD - [2009.11.25 01:40:45 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.Foundation\2.0.2573.17684__90ba9c70f846762e\DEM.Foundation.dll MOD - [2009.11.25 01:40:45 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Runtime.Shared\2.0.3119.30094__90ba9c70f846762e\CLI.Component.Runtime.Shared.dll MOD - [2009.11.25 01:40:45 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Wizard.Shared\2.0.3119.30139__90ba9c70f846762e\CLI.Caste.Graphics.Wizard.Shared.dll MOD - [2009.11.25 01:40:45 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Dashboard.Shared\2.0.3119.30129__90ba9c70f846762e\CLI.Caste.Graphics.Dashboard.Shared.dll MOD - [2009.11.25 01:40:44 | 000,053,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Shared\2.0.3119.30148__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Shared.dll MOD - [2009.11.25 01:40:44 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.TransCode.Graphics.Shared\2.0.3119.30169__90ba9c70f846762e\CLI.Aspect.TransCode.Graphics.Shared.dll MOD - [2009.11.25 01:40:44 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.VPURecover.Graphics.Shared\2.0.3119.30140__90ba9c70f846762e\CLI.Aspect.VPURecover.Graphics.Shared.dll MOD - [2009.11.25 01:40:43 | 000,061,440 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.OverDrive5.Graphics.Shared\2.0.3119.30169__90ba9c70f846762e\CLI.Aspect.OverDrive5.Graphics.Shared.dll MOD - [2009.11.25 01:40:42 | 000,053,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.MMVideo.Graphics.Shared\2.0.3119.30145__90ba9c70f846762e\CLI.Aspect.MMVideo.Graphics.Shared.dll MOD - [2009.11.25 01:40:41 | 000,065,536 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceTV.Graphics.Shared\2.0.3119.30149__90ba9c70f846762e\CLI.Aspect.DeviceTV.Graphics.Shared.dll MOD - [2009.11.25 01:40:41 | 000,032,768 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceProperty.Graphics.Shared\2.0.3119.30118__90ba9c70f846762e\CLI.Aspect.DeviceProperty.Graphics.Shared.dll MOD - [2009.11.25 01:40:41 | 000,028,672 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysColour2.Graphics.Shared\2.0.3119.30141__90ba9c70f846762e\CLI.Aspect.DisplaysColour2.Graphics.Shared.dll MOD - [2009.11.25 01:40:41 | 000,028,672 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceLCD.Graphics.Shared\2.0.3119.30130__90ba9c70f846762e\CLI.Aspect.DeviceLCD.Graphics.Shared.dll MOD - [2009.11.25 01:40:41 | 000,024,576 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysOptions.Graphics.Shared\2.0.3119.30146__90ba9c70f846762e\CLI.Aspect.DisplaysOptions.Graphics.Shared.dll MOD - [2009.11.25 01:40:41 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.HotkeysHandling.Graphics.Shared\2.0.3119.30130__90ba9c70f846762e\CLI.Aspect.HotkeysHandling.Graphics.Shared.dll MOD - [2009.11.25 01:40:40 | 000,053,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceCRT.Graphics.Shared\2.0.3119.30144__90ba9c70f846762e\CLI.Aspect.DeviceCRT.Graphics.Shared.dll MOD - [2009.11.25 01:40:40 | 000,049,152 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceDFP.Graphics.Shared\2.0.3119.30144__90ba9c70f846762e\CLI.Aspect.DeviceDFP.Graphics.Shared.dll MOD - [2009.11.25 01:40:40 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DeviceCV.Graphics.Shared\2.0.3119.30148__90ba9c70f846762e\CLI.Aspect.DeviceCV.Graphics.Shared.dll MOD - [2009.11.25 01:40:40 | 000,028,672 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.CustomFormats.Graphics.Shared\2.0.3119.30122__90ba9c70f846762e\CLI.Aspect.CustomFormats.Graphics.Shared.dll MOD - [2009.11.25 01:40:40 | 000,024,576 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\ACE.Graphics.DisplaysManager.Shared\2.0.2573.17685__90ba9c70f846762e\ACE.Graphics.DisplaysManager.Shared.dll MOD - [2009.11.25 01:40:40 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\APM.Foundation\2.0.3119.30119__90ba9c70f846762e\APM.Foundation.dll MOD - [2009.11.25 01:40:40 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Server.Shared\2.0.3119.30093__90ba9c70f846762e\AEM.Server.Shared.dll MOD - [2009.11.25 01:40:15 | 000,045,056 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.Source.Kit.Server\2.0.3134.40215__90ba9c70f846762e\AEM.Plugin.Source.Kit.Server.dll MOD - [2009.11.25 01:40:15 | 000,011,264 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\LOCALIZATION.Foundation.Implementation\2.0.3134.40228__90ba9c70f846762e\LOCALIZATION.Foundation.Implementation.dll MOD - [2009.11.25 01:40:14 | 000,106,496 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\MOM.Implementation\2.0.3134.40186__90ba9c70f846762e\MOM.Implementation.dll MOD - [2009.11.25 01:40:14 | 000,032,768 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\LOG.Foundation.Private\2.0.3119.30085__90ba9c70f846762e\LOG.Foundation.Private.dll MOD - [2009.11.25 01:40:14 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\LOG.Foundation.Implementation.Private\2.0.3119.30121__90ba9c70f846762e\LOG.Foundation.Implementation.Private.dll MOD - [2009.11.25 01:40:14 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\LOCALIZATION.Foundation.Private\2.0.3119.30074__90ba9c70f846762e\LOCALIZATION.Foundation.Private.dll MOD - [2009.11.25 01:40:14 | 000,014,848 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AxInterop.WBOCXLib\1.0.0.0__90ba9c70f846762e\AxInterop.WBOCXLib.dll MOD - [2009.11.25 01:40:14 | 000,013,312 | ---- | M] () -- C:\WINDOWS\assembly\GAC\Interop.WBOCXLib\1.0.0.0__90ba9c70f846762e\Interop.WBOCXLib.dll MOD - [2009.11.25 01:40:14 | 000,007,168 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Runtime.Extension.EEU\2.0.3134.39948__90ba9c70f846762e\CLI.Component.Runtime.Extension.EEU.dll MOD - [2009.11.25 01:40:13 | 000,061,440 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\LOG.Foundation.Implementation\2.0.3134.40183__90ba9c70f846762e\LOG.Foundation.Implementation.dll MOD - [2009.11.25 01:40:13 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Foundation.Private\2.0.3119.30076__90ba9c70f846762e\CLI.Foundation.Private.dll MOD - [2009.11.25 01:40:12 | 000,417,792 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Systemtray\2.0.3134.40175__90ba9c70f846762e\CLI.Component.Systemtray.dll MOD - [2009.11.25 01:40:12 | 000,397,312 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Wizard\2.0.3134.39992__90ba9c70f846762e\CLI.Component.Wizard.dll MOD - [2009.11.25 01:40:12 | 000,053,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.SkinFactory\2.0.3134.39953__90ba9c70f846762e\CLI.Component.SkinFactory.dll MOD - [2009.11.25 01:40:12 | 000,053,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Runtime\2.0.3134.39951__90ba9c70f846762e\CLI.Component.Runtime.dll MOD - [2009.11.25 01:40:12 | 000,045,056 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Runtime.Shared.Private\2.0.3119.30123__90ba9c70f846762e\CLI.Component.Runtime.Shared.Private.dll MOD - [2009.11.25 01:40:12 | 000,024,576 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Wizard.Shared.Private\2.0.3119.30121__90ba9c70f846762e\CLI.Component.Wizard.Shared.Private.dll MOD - [2009.11.25 01:40:11 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Dashboard.Shared.Private\2.0.3119.30113__90ba9c70f846762e\CLI.Component.Dashboard.Shared.Private.dll MOD - [2009.11.25 01:40:10 | 000,999,424 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Dashboard\2.0.3134.39970__90ba9c70f846762e\CLI.Component.Dashboard.dll MOD - [2009.11.25 01:40:10 | 000,069,632 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\ATIDEMOS\2.0.3134.39952__90ba9c70f846762e\ATIDEMOS.dll MOD - [2009.11.25 01:40:10 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Client.Shared.Private\2.0.3119.30101__90ba9c70f846762e\CLI.Component.Client.Shared.Private.dll MOD - [2009.11.25 01:40:10 | 000,032,768 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\ATICCCom\2.0.0.0__90ba9c70f846762e\ATICCCom.dll MOD - [2009.11.25 01:40:10 | 000,028,672 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CCC.Implementation\2.0.3134.40186__90ba9c70f846762e\CCC.Implementation.dll MOD - [2009.11.25 01:40:10 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Runtime.Shared.Private\2.0.3119.30150__90ba9c70f846762e\CLI.Caste.Graphics.Runtime.Shared.Private.dll MOD - [2009.11.25 01:40:09 | 000,057,344 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\APM.Server\2.0.3134.39950__90ba9c70f846762e\APM.Server.dll MOD - [2009.11.25 01:40:09 | 000,045,056 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Server\2.0.3134.39948__90ba9c70f846762e\AEM.Server.dll MOD - [2009.11.04 03:14:04 | 000,054,272 | ---- | M] () -- C:\Program Files\Notepad++\NppShell_01.dll MOD - [2008.07.11 20:00:06 | 000,080,392 | ---- | M] () -- C:\Program Files\GIGABYTE\EnergySaver\GSvr.exe MOD - [2008.06.23 14:58:36 | 000,016,384 | R--- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Branding\Branding.dll MOD - [2007.12.07 15:24:56 | 000,117,256 | ---- | M] () -- C:\Program Files\GIGABYTE\EnergySaver\ycc.dll MOD - [2004.12.26 21:34:38 | 000,121,344 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll MOD - [2004.08.04 15:00:00 | 001,287,680 | ---- | M] () -- C:\WINDOWS\system32\quartz.dll MOD - [2000.12.30 13:39:58 | 000,151,552 | ---- | M] () -- C:\WINDOWS\Datecs\Flex2K.exe MOD - [2000.12.13 01:55:40 | 000,028,672 | ---- | M] () -- C:\WINDOWS\system32\newdll.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Disabled | Stopped] -- -- (HidServ) SRV - [2011.08.12 02:38:07 | 000,116,608 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- C:\Program Files\SUPERAntiSpyware\SASCORE.EXE -- (!SASCORE) SRV - [2010.01.06 18:23:32 | 000,142,648 | ---- | M] (FSPro Labs) [Auto | Running] -- C:\WINDOWS\system32\fsproflt.exe -- (fsproflt) SRV - [2009.02.06 14:27:06 | 000,020,680 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe -- (EhttpSrv) SRV - [2009.02.06 14:23:36 | 000,727,720 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe -- (ekrn) SRV - [2008.07.11 20:00:06 | 000,080,392 | ---- | M] () [Auto | Running] -- C:\Program Files\GIGABYTE\EnergySaver\GSvr.exe -- (GEST Service) SRV - [2007.11.07 09:58:18 | 003,004,416 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x86\msvsmon.exe -- (msvsmon90) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2011.10.19 18:11:36 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\gdrv.sys -- (gdrv) DRV - [2011.07.22 19:27:02 | 000,012,880 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv.sys -- (SASDIFSV) DRV - [2011.07.13 00:55:22 | 000,067,664 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS -- (SASKUTIL) DRV - [2010.03.11 12:17:14 | 000,025,088 | ---- | M] (TeamViewer GmbH) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\teamviewervpn.sys -- (teamviewervpn) DRV - [2009.12.22 20:28:55 | 000,010,368 | ---- | M] (Padus, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pfc.sys -- (pfc) DRV - [2009.12.15 22:04:14 | 000,721,904 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd) DRV - [2009.02.06 14:24:24 | 000,093,336 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\epfwtdir.sys -- (epfwtdir) DRV - [2009.02.06 14:23:18 | 000,106,208 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ehdrv.sys -- (ehdrv) DRV - [2009.02.06 14:19:52 | 000,113,448 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\eamon.sys -- (eamon) DRV - [2008.08.01 09:38:20 | 003,266,560 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag) DRV - [2008.06.27 06:24:56 | 004,742,656 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2008.06.16 10:08:42 | 000,109,184 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2008.06.05 19:37:54 | 000,043,792 | ---- | M] (FSPro Labs) [File_System | Boot | Running] -- C:\WINDOWS\System32\Drivers\FSPFltd.sys -- (FSProFilter) DRV - [2007.09.20 18:03:46 | 000,177,280 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\cam1690.sys -- (CAM1690) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.bg/ IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.update: false FF - prefs.js..browser.startup.homepage: "www.google.com" FF - prefs.js..extensions.enabledItems: firebug@software.joehewitt.com:1.4.5 FF - prefs.js..extensions.enabledItems: {DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}:1.0 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..network.proxy.type: 2 FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=8: C:\Documents and Settings\Seso\Local Settings\Application Data\Google\Update\1.2.183.39\npGoogleOneClick8.dll (Google Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.5.8\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011.02.17 04:16:17 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.5.8\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011.01.13 18:22:51 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2011.10.19 14:21:46 | 000,000,000 | ---D | M] [2009.11.25 03:51:34 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Seso\Application Data\Mozilla\Extensions [2011.05.18 13:31:49 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Seso\Application Data\Mozilla\Firefox\Profiles\i8d00m0p.default\extensions [2011.02.17 20:16:45 | 000,000,000 | ---D | M] (flashget3 Extension) -- C:\Documents and Settings\Seso\Application Data\Mozilla\Firefox\Profiles\i8d00m0p.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A} [2010.03.13 01:21:42 | 000,000,000 | ---D | M] (FacePAD: Facebook Photo Album Downloader) -- C:\Documents and Settings\Seso\Application Data\Mozilla\Firefox\Profiles\i8d00m0p.default\extensions\facepad@lazyrussian.com [2009.12.09 22:13:42 | 000,000,000 | ---D | M] (Firebug) -- C:\Documents and Settings\Seso\Application Data\Mozilla\Firefox\Profiles\i8d00m0p.default\extensions\firebug@software.joehewitt.com [2011.05.04 00:18:41 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2009.11.25 23:40:58 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF [color=#E56717]========== Chrome ==========[/color] CHR - default_search_provider: Google (Enabled) CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}sourceid=chrome&ie={inputEncoding}&q={searchTerms} CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?client=chrome&hl={language}&q={searchTerms} CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\Seso\Local Settings\Application Data\Google\Chrome\Application\8.0.552.224\pdf.dll CHR - plugin: Google Gears 0.5.33.0 (Enabled) = C:\Documents and Settings\Seso\Local Settings\Application Data\Google\Chrome\Application\8.0.552.224\gears.dll CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\Seso\Local Settings\Application Data\Google\Chrome\Application\8.0.552.224\gcswf32.dll CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll CHR - plugin: Java Deployment Toolkit 6.0.170.4 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeploytk.dll CHR - plugin: Java(TM) Platform SE 6 U17 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll CHR - plugin: QuickTime Plug-in 7.6.8 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll CHR - plugin: QuickTime Plug-in 7.6.8 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll CHR - plugin: QuickTime Plug-in 7.6.8 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll CHR - plugin: QuickTime Plug-in 7.6.8 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll CHR - plugin: QuickTime Plug-in 7.6.8 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll CHR - plugin: QuickTime Plug-in 7.6.8 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll CHR - plugin: QuickTime Plug-in 7.6.8 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\Seso\Local Settings\Application Data\Google\Update\1.2.183.39\npGoogleOneClick8.dll CHR - plugin: Shockwave for Director (Enabled) = C:\WINDOWS\system32\Adobe\Director\np32dsw.dll CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll CHR - plugin: Default Plug-in (Enabled) = default_plugin CHR - Extension: Speed Dial = C:\Documents and Settings\Seso\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\dgpdioedihjhncjafcpgbbjdpbbkikmi\2.1_0\ O1 HOSTS File: ([2010.04.08 13:18:43 | 004,827,222 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - No CLSID value found. O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found. O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [AlcWzrd] C:\WINDOWS\alcwzrd.exe (RealTek Semicoductor Corp.) O4 - HKLM..\Run: [CNAP2 Launcher] C:\WINDOWS\system32\spool\drivers\w32x86\3\CNAP2LAK.EXE (CANON INC.) O4 - HKLM..\Run: [D_V_T] C:\\dvt.exe /S \C:\\d_v_t.reg\ File not found O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET) O4 - HKLM..\Run: [HKLM] C:\WINDOWS\system32\install\svchost.exe () O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation) O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe () O4 - HKLM..\Run: [mylbx] C:\Program Files\My Lockbox\mylbx.exe (FSPro Labs) O4 - HKLM..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe (Ahead Software Gmbh) O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation) O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation) O4 - HKLM..\Run: [SMSTray] C:\Program Files\Samsung\Samsung Media Studio 5\SMSTray.exe (SAMSUNG ELECTRONICS) O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\SoundMan.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.) O4 - HKCU..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware.com) O4 - HKCU..\Run: [Windows Session Manager] C:\WINDOWS\system32\Run\smss.exe File not found O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\FlexType 2K.lnk = C:\WINDOWS\Datecs\Flex2K.exe () O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: 使用快车3下载 - C:\Documents and Settings\Seso\Application Data\FlashGetBHO\GetUrl.htm () O8 - Extra context menu item: 使用快车3下载全部链接 - C:\Documents and Settings\Seso\Application Data\FlashGetBHO\GetAllUrl.htm () O9 - Extra Button: ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe (ICQ, LLC.) O9 - Extra 'Tools' menuitem : ICQ7 - {88EB38EF-4D2C-436D-ABD3-56B232674062} - C:\Program Files\ICQ7.0\ICQ.exe (ICQ, LLC.) O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} http://download.microsoft.com/download/C/B/F/CBF23A2C-3E55-4664-BC5C-762780D79BA0/OGAControl.cab (Office Genuine Advantage Validation Tool) O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab (Windows Genuine Advantage Validation Tool) O16 - DPF: {1E3F1348-4370-4BBE-A67A-CC7ED824CA85} http://download.microsoft.com/download/7/4/9/749b0dc5-2175-4d5b-a6dd-9c4bc923683e/Selfhelpcontrol.cab (Microsoft Genuine Advantage Self Support Tool) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7D1EE808-7E31-4B91-8273-C62F0DB98943}: NameServer = 78.142.37.193,193.24.240.25 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: TaskMan - (C:\Documents and Settings\Seso\Application Data\uapss.exe) - File not found O20 - Winlogon\Notify\!SASWinLogon: DllName - (C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL) - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com) O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.) O20 - Winlogon\Notify\WgaLogon: DllName - (Reg Error: Value error.) - Reg Error: Value error. File not found O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009.11.25 01:27:59 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O33 - MountPoints2\{4dbc7225-d9fc-11de-b87d-001fd0930e1f}\Shell\AutoRun\command - "" = I:\pokazemo//samosvima.exe O33 - MountPoints2\{4dbc7225-d9fc-11de-b87d-001fd0930e1f}\Shell\Explore\command - "" = I:\pokazemo//samosvima.exe O33 - MountPoints2\{4dbc7225-d9fc-11de-b87d-001fd0930e1f}\Shell\Open\command - "" = I:\pokazemo//samosvima.exe O33 - MountPoints2\{ce1d4f67-e8fb-11de-b881-001fd0930e1f}\Shell\AutoRun\command - "" = I:\setup.exe O33 - MountPoints2\{f4bf0662-e9ac-11de-b884-001fd0930e1f}\Shell - "" = AutoRun O33 - MountPoints2\{f4bf0662-e9ac-11de-b884-001fd0930e1f}\Shell\AutoRun - "" = Auto&Play O33 - MountPoints2\{f4bf0662-e9ac-11de-b884-001fd0930e1f}\Shell\AutoRun\command - "" = J:\StartCD.exe O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011.10.19 18:25:58 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Seso\Desktop\OTL.exe [2011.10.19 18:16:56 | 000,000,000 | ---D | C] -- C:\WINDOWS\Install [2011.10.19 18:15:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall [2011.10.19 18:14:50 | 000,000,000 | ---D | C] -- C:\WINDOWS\LastGood [2011.10.19 17:57:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Seso\Application Data\SUPERAntiSpyware.com [2011.10.19 17:57:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\SUPERAntiSpyware [2011.10.19 17:57:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com [2011.10.19 17:57:28 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware [2011.10.19 15:21:42 | 003,887,480 | ---- | C] (Sysinternals - www.sysinternals.com) -- C:\Documents and Settings\Seso\Desktop\processexplorer.exe [2011.10.19 15:16:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\ESET [2011.10.19 14:29:34 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Seso\Recent [2011.10.19 14:23:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Seso\Local Settings\Application Data\ESET [2011.10.19 14:21:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\ESET [2011.10.19 14:21:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\ESET [2011.10.19 14:16:08 | 000,000,000 | ---D | C] -- C:\z2w [2011.10.04 11:44:36 | 000,000,000 | ---D | C] -- C:\My Music [2011.09.30 14:20:40 | 000,000,000 | ---D | C] -- C:\Program Files\ADLSoft UnCompressor [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [16 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011.10.19 18:33:02 | 004,292,767 | -H-- | M] () -- C:\Documents and Settings\Seso\Application Data\cglogs.dat [2011.10.19 18:26:03 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Seso\Desktop\OTL.exe [2011.10.19 18:20:20 | 000,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2011.10.19 18:16:03 | 000,002,284 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2011.10.19 18:14:24 | 000,000,211 | -HS- | M] () -- C:\boot.ini [2011.10.19 18:11:16 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2011.10.19 17:57:34 | 000,001,678 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\SUPERAntiSpyware Free Edition.lnk [2011.10.19 15:15:46 | 000,633,987 | ---- | M] () -- C:\Documents and Settings\Seso\Application Data\data.dat [2011.10.19 14:16:45 | 000,000,012 | ---- | M] () -- C:\Documents and Settings\All Users\Application Data\ReminderNextRun [2011.10.18 16:30:28 | 000,118,272 | ---- | M] () -- C:\Documents and Settings\Seso\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011.10.18 02:21:36 | 000,118,234 | ---- | M] () -- C:\Documents and Settings\Seso\Desktop\1 (1).jpg [2011.10.16 17:10:41 | 000,436,503 | ---- | M] () -- C:\Documents and Settings\Seso\Desktop\maimunki.jpg [2011.10.12 15:08:11 | 004,563,516 | ---- | M] () -- C:\Documents and Settings\Seso\Desktop\03 - Big Pun - Twinz (Feat. Fat Joe).mp3 [2011.10.12 15:03:50 | 008,273,609 | ---- | M] () -- C:\Documents and Settings\Seso\Desktop\Bat Venci Goodslav Buch And 100 KILA - Kradi Kradi.mp3 [2011.10.12 15:02:25 | 005,938,704 | ---- | M] () -- C:\Documents and Settings\Seso\Desktop\Sarafa i Spens - Az ne sym.mp3 [2011.10.12 11:13:17 | 015,095,220 | ---- | M] () -- C:\Documents and Settings\Seso\Desktop\Matteo Vanti - Frame (Original Mix).mp3 [2011.10.11 20:43:14 | 002,293,760 | ---- | M] () -- C:\Documents and Settings\Seso\My Documents\DatabaseTest.mdf [2011.10.11 20:43:14 | 000,573,440 | ---- | M] () -- C:\Documents and Settings\Seso\My Documents\DatabaseTest_log.LDF [2011.10.10 23:28:02 | 000,001,348 | ---- | M] () -- C:\Documents and Settings\Seso\Desktop\chillout.pls [2011.10.10 19:09:40 | 003,894,575 | ---- | M] () -- C:\Documents and Settings\Seso\Desktop\FABER_DRIVE_-_'When_I'm_With_You'_Video-Song to My Angel and me.mp3 [2011.10.09 14:23:30 | 000,002,257 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Skype.lnk [2011.09.27 02:00:12 | 000,188,897 | ---- | M] () -- C:\Documents and Settings\Seso\Desktop\Snapshot of me 1.png [2011.09.21 00:41:46 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2011.09.20 07:59:31 | 020,801,664 | ---- | M] () -- C:\Documents and Settings\Seso\Desktop\Nic Chagall feat. Jonathan Mendelsohn - This Moment (Prog Mix).mp3 [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [16 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011.10.19 18:15:56 | 000,001,393 | ---- | C] () -- C:\WINDOWS\imsins.BAK [2011.10.19 17:57:34 | 000,001,678 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\SUPERAntiSpyware Free Edition.lnk [2011.10.18 02:21:36 | 000,118,234 | ---- | C] () -- C:\Documents and Settings\Seso\Desktop\1 (1).jpg [2011.10.16 17:10:41 | 000,436,503 | ---- | C] () -- C:\Documents and Settings\Seso\Desktop\maimunki.jpg [2011.10.12 15:08:11 | 004,563,516 | ---- | C] () -- C:\Documents and Settings\Seso\Desktop\03 - Big Pun - Twinz (Feat. Fat Joe).mp3 [2011.10.12 15:03:50 | 008,273,609 | ---- | C] () -- C:\Documents and Settings\Seso\Desktop\Bat Venci Goodslav Buch And 100 KILA - Kradi Kradi.mp3 [2011.10.12 15:02:25 | 005,938,704 | ---- | C] () -- C:\Documents and Settings\Seso\Desktop\Sarafa i Spens - Az ne sym.mp3 [2011.10.12 11:13:04 | 015,095,220 | ---- | C] () -- C:\Documents and Settings\Seso\Desktop\Matteo Vanti - Frame (Original Mix).mp3 [2011.10.11 20:14:19 | 002,293,760 | ---- | C] () -- C:\Documents and Settings\Seso\My Documents\DatabaseTest.mdf [2011.10.11 20:14:19 | 000,573,440 | ---- | C] () -- C:\Documents and Settings\Seso\My Documents\DatabaseTest_log.LDF [2011.10.10 23:28:02 | 000,001,348 | ---- | C] () -- C:\Documents and Settings\Seso\Desktop\chillout.pls [2011.10.07 14:51:25 | 003,894,575 | ---- | C] () -- C:\Documents and Settings\Seso\Desktop\FABER_DRIVE_-_'When_I'm_With_You'_Video-Song to My Angel and me.mp3 [2011.09.27 02:00:12 | 000,188,897 | ---- | C] () -- C:\Documents and Settings\Seso\Desktop\Snapshot of me 1.png [2011.09.20 07:59:14 | 020,801,664 | ---- | C] () -- C:\Documents and Settings\Seso\Desktop\Nic Chagall feat. Jonathan Mendelsohn - This Moment (Prog Mix).mp3 [2011.09.19 11:12:21 | 000,007,900 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2011.09.17 02:34:10 | 000,633,987 | ---- | C] () -- C:\Documents and Settings\Seso\Application Data\data.dat [2011.09.07 18:37:51 | 000,164,352 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2011.09.07 18:37:50 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini [2011.07.22 12:33:08 | 000,000,012 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\ReminderNextRun [2011.05.17 18:52:04 | 000,001,441 | ---- | C] () -- C:\WINDOWS\NavZapl.INI [2011.05.10 01:34:20 | 000,059,261 | ---- | C] () -- C:\Documents and Settings\Seso\Application Data\SQLite3.dll [2011.03.14 23:53:27 | 000,351,080 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat [2011.02.17 04:17:08 | 000,000,204 | ---- | C] () -- C:\WINDOWS\System32\secustat.dat [2011.02.17 04:16:19 | 000,000,025 | ---- | C] () -- C:\WINDOWS\libem.INI [2011.02.15 07:02:13 | 000,000,062 | ---- | C] () -- C:\WINDOWS\hw.ini [2011.02.03 02:13:31 | 000,000,412 | ---- | C] () -- C:\WINDOWS\3gptoavi3.INI [2011.02.03 01:26:27 | 000,000,067 | ---- | C] () -- C:\WINDOWS\Easy MOV Converter.INI [2011.02.03 01:15:52 | 000,000,365 | ---- | C] () -- C:\WINDOWS\ULEAD32.INI [2011.01.09 18:49:15 | 000,001,901 | ---- | C] () -- C:\WINDOWS\panose.bin [2011.01.09 18:47:43 | 000,210,944 | ---- | C] () -- C:\WINDOWS\System32\MSVCRT10.DLL [2010.11.09 22:43:52 | 000,004,100 | ---- | C] () -- C:\WINDOWS\System32\hdvirffo.dll [2010.10.27 02:05:13 | 000,000,071 | ---- | C] () -- C:\WINDOWS\EurekaLog.ini [2010.09.15 13:27:10 | 000,000,736 | ---- | C] () -- C:\WINDOWS\SamsungMaster.INI [2010.09.15 13:25:47 | 000,008,704 | ---- | C] () -- C:\WINDOWS\System32\vidccleaner.exe [2010.09.15 13:22:16 | 000,004,990 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\mtbjfghn.xbe [2010.04.19 02:27:40 | 000,153,088 | ---- | C] () -- C:\WINDOWS\System32\UNRAR3.dll [2010.04.19 02:27:40 | 000,075,264 | ---- | C] () -- C:\WINDOWS\System32\unacev2.dll [2009.12.22 20:58:02 | 008,892,928 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\atscie.msi [2009.12.22 15:35:15 | 000,000,065 | ---- | C] () -- C:\WINDOWS\FISHUI.INI [2009.12.22 15:06:39 | 000,921,600 | ---- | C] () -- C:\WINDOWS\System32\vorbisenc.dll [2009.12.22 15:06:39 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll [2009.12.22 15:06:39 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll [2009.12.22 15:06:39 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\Ogg.dll [2009.12.13 19:35:00 | 000,010,752 | ---- | C] () -- C:\WINDOWS\System32\BASSMOD.dll [2009.11.26 23:57:19 | 000,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2009.11.25 04:53:23 | 000,118,272 | ---- | C] () -- C:\Documents and Settings\Seso\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009.11.25 03:51:19 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2009.11.25 03:39:58 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat [2009.11.25 03:18:47 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2009.11.25 03:16:00 | 000,224,816 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2009.11.25 02:33:22 | 000,000,520 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2009.11.25 02:33:18 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\newdll.dll [2009.11.25 02:26:09 | 000,000,000 | ---- | C] () -- C:\WINDOWS\PROTOCOL.INI [2009.11.25 01:57:56 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe [2009.11.25 01:43:14 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ativpsrm.bin [2009.11.25 01:34:58 | 000,593,920 | ---- | C] () -- C:\WINDOWS\System32\ati2sgag.exe [2009.11.25 01:34:51 | 000,887,724 | R--- | C] () -- C:\WINDOWS\System32\ativva6x.dat [2009.11.25 01:34:50 | 003,107,788 | R--- | C] () -- C:\WINDOWS\System32\ativva5x.dat [2009.11.25 01:34:49 | 003,107,788 | R--- | C] () -- C:\WINDOWS\System32\ativvaxx.dat [2009.11.25 01:34:49 | 000,174,820 | R--- | C] () -- C:\WINDOWS\System32\atiicdxx.dat [2009.11.25 01:30:06 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2009.11.25 01:25:03 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2009.08.03 15:07:42 | 000,403,816 | ---- | C] () -- C:\WINDOWS\System32\OGACheckControl.DLL [2008.08.06 15:12:46 | 000,000,008 | RHS- | C] () -- C:\WINDOWS\neoqaz2.dll [2007.10.19 21:55:28 | 000,065,217 | ---- | C] () -- C:\WINDOWS\cam1690a.ini [2007.10.09 12:39:40 | 000,065,527 | ---- | C] () -- C:\WINDOWS\cam1690b.ini [2007.10.08 10:12:14 | 000,130,965 | ---- | C] () -- C:\WINDOWS\cam1690.ini [2007.09.20 18:03:46 | 000,177,280 | ---- | C] () -- C:\WINDOWS\System32\drivers\cam1690.sys [2007.09.19 21:11:52 | 000,041,472 | ---- | C] () -- C:\WINDOWS\System32\cam1690.dll [2007.08.29 15:40:38 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\cam1690m.dll [2007.08.22 00:51:16 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\ATIODE.exe [2007.08.21 22:36:12 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\ATIODCLI.exe [2007.03.23 16:34:42 | 001,597,440 | ---- | C] () -- C:\WINDOWS\stic1690.exe [2006.03.04 14:15:55 | 004,292,700 | -H-- | C] () -- C:\Documents and Settings\Seso\Application Data\cglogs.dat [2004.08.04 15:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin [2004.08.04 15:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat [2004.08.04 15:00:00 | 000,479,700 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat [2004.08.04 15:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat [2004.08.04 15:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat [2004.08.04 15:00:00 | 000,085,338 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat [2004.08.04 15:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin [2004.08.04 15:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat [2004.08.04 15:00:00 | 000,027,440 | ---- | C] () -- C:\WINDOWS\System32\drivers\secdrv.sys [2004.08.04 15:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat [2004.08.04 15:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat [2004.08.04 15:00:00 | 000,001,788 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin [2004.08.04 15:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat [color=#E56717]========== LOP Check ==========[/color] [2009.11.25 02:24:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ACD Systems [2009.12.15 22:06:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite [2010.04.19 22:02:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Easy CD-DA Extractor [2011.10.19 14:21:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ESET [2010.10.14 23:03:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ParetoLogic [2011.03.15 00:03:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\PreEmptive Solutions [2010.09.24 16:13:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP [2009.11.25 02:26:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\ACD Systems [2010.09.10 16:06:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\Awem [2011.10.11 20:43:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\BETONINTELECT [2011.02.17 04:17:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\BITS [2010.09.15 13:22:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\Carambis [2011.03.14 02:48:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\DAEMON Tools [2011.03.14 02:54:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\DAEMON Tools Lite [2011.03.14 02:48:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\DAEMON Tools Pro [2009.12.22 15:06:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\DataCast [2010.05.25 01:16:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\DC++ [2010.11.17 15:26:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\Dev-Cpp [2011.02.17 04:15:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\FlashGet [2011.02.17 04:15:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\FlashGetBHO [2011.01.21 22:16:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\gepixApp [2011.03.14 22:19:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\GetRightToGo [2011.02.17 04:24:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\GrabPro [2010.06.01 19:23:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\GSplit [2010.10.20 15:59:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\ICQ [2010.04.21 00:17:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\microOLAP [2010.10.06 20:41:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\Mp3tag [2009.12.04 18:56:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\Notepad++ [2009.11.25 03:14:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\Opera [2011.02.17 04:38:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\Orbit [2010.10.14 23:01:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\ParetoLogic [2011.02.17 04:24:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\ProgSense [2010.02.08 16:38:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\Publish Providers [2010.02.08 16:47:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\Sony [2011.10.16 14:28:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\TeamViewer [2011.10.18 17:03:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Seso\Application Data\uTorrent [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 8 bytes -> C:\WINDOWS: @Alternate Data Stream - 141 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:A7AC1352 @Alternate Data Stream - 137 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:70E897B5 @Alternate Data Stream - 117 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:268BA8AB < End of report >