Pitmaster utworzono 2 lutego 2010 utworzono 2 lutego 2010 Mam laptopa Samsung, nowiutki, z zainstalowanym upgrade Windows 7 i od samego początku pojawia się problem zacinajacej sie myszki i dzwieku. Są okresy że ten problem zanika i potem znowu wraca. Może to wina updatów od MicroSoftu... Gdy skanuje kompa GMER to po kilku minutach robi się niebieski obraz z białymi literkami i komputer pada. Strasznie mnie ta sytuacja denerwuje, nie da się spokojnie pracować... Proszę o pomoc. Zdjęcie z programu Process Explorer. Log programu OTL. [log] OTL logfile created on: 2/3/2010 12:38:33 AM - Run 2 OTL by OldTimer - Version 3.1.27.1 Folder = C:\Users\Pitmaster\Documents\Downloads Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 3.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 64.00% Memory free 6.00 Gb Paging File | 5.00 Gb Available in Paging File | 84.00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 151.24 Gb Total Space | 121.93 Gb Free Space | 80.62% Space Free | Partition Type: NTFS Drive D: | 68.64 Gb Total Space | 44.44 Gb Free Space | 64.75% Space Free | Partition Type: NTFS E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: PITMASTER-PC Current User Name: Pitmaster Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: On Skip Microsoft Files: On File Age = 30 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010/02/03 00:13:51 | 000,548,864 | ---- | M] (OldTimer Tools) -- C:\Users\Pitmaster\My Documents\Downloads\OTL.exe PRC - [2010/02/02 23:54:15 | 001,181,328 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe PRC - [2010/02/02 23:54:15 | 000,788,880 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe PRC - [2010/01/21 08:24:00 | 000,527,344 | ---- | M] (Google Inc.) -- C:\Users\Pitmaster\AppData\Local\Google\Chrome\Application\chrome.exe PRC - [2009/12/02 14:19:02 | 000,707,704 | ---- | M] () -- C:\Program Files\Lavasoft\Ad-Aware\AAWWSC.exe PRC - [2009/10/31 06:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2009/10/28 07:17:59 | 000,285,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\winlogon.exe PRC - [2009/08/23 13:47:34 | 000,716,800 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files\Samsung\EasySpeedUpManager\EasySpeedUpManager.exe PRC - [2009/07/14 02:14:50 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wuauclt.exe PRC - [2009/07/14 02:14:47 | 001,121,280 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Media Player\wmpnetwk.exe PRC - [2009/07/14 02:14:47 | 000,254,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wbem\WmiPrvSE.exe PRC - [2009/07/14 02:14:45 | 000,096,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wininit.exe PRC - [2009/07/14 02:14:43 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wbem\unsecapp.exe PRC - [2009/07/14 02:14:42 | 000,190,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskeng.exe PRC - [2009/07/14 02:14:42 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe PRC - [2009/07/14 02:14:41 | 000,316,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spoolsv.exe PRC - [2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009/07/14 02:14:39 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\smss.exe PRC - [2009/07/14 02:14:36 | 000,259,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\services.exe PRC - [2009/07/14 02:14:35 | 000,428,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SearchIndexer.exe PRC - [2009/07/14 02:14:35 | 000,164,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SearchProtocolHost.exe PRC - [2009/07/14 02:14:35 | 000,086,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SearchFilterHost.exe PRC - [2009/07/14 02:14:29 | 003,179,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\sppsvc.exe PRC - [2009/07/14 02:14:23 | 000,261,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lsm.exe PRC - [2009/07/14 02:14:23 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lsass.exe PRC - [2009/07/14 02:14:16 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\csrss.exe PRC - [2009/07/02 17:36:52 | 000,017,904 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft Security Essentials\MsMpEng.exe PRC - [2009/06/24 16:47:58 | 000,700,416 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files\Samsung\Easy Display Manager\dmhkcore.exe PRC - [2006/10/26 13:40:34 | 000,335,872 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\microsoft shared\VS7DEBUG\mdm.exe [color=#E56717]========== Modules (All) ==========[/color] MOD - [2010/02/03 00:13:51 | 000,548,864 | ---- | M] (OldTimer Tools) -- C:\Users\Pitmaster\My Documents\Downloads\OTL.exe MOD - [2009/07/14 02:17:51 | 001,286,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntdll.dll MOD - [2009/07/14 02:16:19 | 000,268,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\Wldap32.dll MOD - [2009/07/14 02:16:17 | 001,123,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\vssapi.dll MOD - [2009/07/14 02:16:17 | 000,811,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\user32.dll MOD - [2009/07/14 02:16:17 | 000,627,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\usp10.dll MOD - [2009/07/14 02:16:17 | 000,249,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\uxtheme.dll MOD - [2009/07/14 02:16:17 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\vsstrace.dll MOD - [2009/07/14 02:16:17 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\version.dll MOD - [2009/07/14 02:16:15 | 000,171,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spp.dll MOD - [2009/07/14 02:16:15 | 000,099,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\sspicli.dll MOD - [2009/07/14 02:16:15 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\srclient.dll MOD - [2009/07/14 02:16:14 | 012,866,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shell32.dll MOD - [2009/07/14 02:16:14 | 001,668,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\setupapi.dll MOD - [2009/07/14 02:16:14 | 000,350,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shlwapi.dll MOD - [2009/07/14 02:16:14 | 000,179,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shdocvw.dll MOD - [2009/07/14 02:16:13 | 000,652,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\rpcrt4.dll MOD - [2009/07/14 02:16:13 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\sechost.dll MOD - [2009/07/14 02:16:13 | 000,060,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\samlib.dll MOD - [2009/07/14 02:16:13 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\samcli.dll MOD - [2009/07/14 02:16:13 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\secur32.dll MOD - [2009/07/14 02:16:12 | 001,412,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ole32.dll MOD - [2009/07/14 02:16:12 | 000,988,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\propsys.dll MOD - [2009/07/14 02:16:12 | 000,571,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\oleaut32.dll MOD - [2009/07/14 02:16:12 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\olepro32.dll MOD - [2009/07/14 02:16:12 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\profapi.dll MOD - [2009/07/14 02:16:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\psapi.dll MOD - [2009/07/14 02:16:11 | 000,121,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntmarta.dll MOD - [2009/07/14 02:16:03 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\netutils.dll MOD - [2009/07/14 02:15:50 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msvcrt.dll MOD - [2009/07/14 02:15:43 | 000,828,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msctf.dll MOD - [2009/07/14 02:15:36 | 000,026,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lpk.dll MOD - [2009/07/14 02:15:35 | 000,857,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\kernel32.dll MOD - [2009/07/14 02:15:35 | 000,288,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\KernelBase.dll MOD - [2009/07/14 02:15:32 | 000,118,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\imm32.dll MOD - [2009/07/14 02:15:22 | 000,304,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\gdi32.dll MOD - [2009/07/14 02:15:13 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dwmapi.dll MOD - [2009/07/14 02:15:11 | 000,064,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\devobj.dll MOD - [2009/07/14 02:15:07 | 000,486,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\comdlg32.dll MOD - [2009/07/14 02:15:07 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\cryptbase.dll MOD - [2009/07/14 02:15:03 | 000,522,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\clbcatq.dll MOD - [2009/07/14 02:15:02 | 000,145,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\cfgmgr32.dll MOD - [2009/07/14 02:14:57 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\atl.dll MOD - [2009/07/14 02:14:53 | 000,640,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\advapi32.dll MOD - [2009/07/14 02:14:53 | 000,292,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\apphelp.dll MOD - [2009/07/14 02:14:08 | 000,319,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\winspool.drv MOD - [2009/07/14 02:03:50 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2010/02/02 23:54:15 | 001,181,328 | ---- | M] (Lavasoft) [Auto | Running] -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service) SRV - [2009/07/14 02:16:21 | 000,185,856 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wwansvc.dll -- (WwanSvc) SRV - [2009/07/14 02:16:17 | 000,151,552 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wbiosrvc.dll -- (WbioSrvc) SRV - [2009/07/14 02:16:17 | 000,119,808 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\umpo.dll -- (Power) SRV - [2009/07/14 02:16:16 | 000,037,376 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\themeservice.dll -- (Themes) SRV - [2009/07/14 02:16:15 | 000,053,760 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sppuinotify.dll -- (sppuinotify) SRV - [2009/07/14 02:16:13 | 000,043,520 | ---- | M] (Microsoft Corporation) [Unknown | Running] -- C:\Windows\System32\RpcEpMap.dll -- (RpcEptMapper) SRV - [2009/07/14 02:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc) SRV - [2009/07/14 02:16:12 | 000,269,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\pnrpsvc.dll -- (PNRPsvc) SRV - [2009/07/14 02:16:12 | 000,269,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\pnrpsvc.dll -- (p2pimsvc) SRV - [2009/07/14 02:16:12 | 000,165,376 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\provsvc.dll -- (HomeGroupProvider) SRV - [2009/07/14 02:16:12 | 000,020,480 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\pnrpauto.dll -- (PNRPAutoReg) SRV - [2009/07/14 02:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2009/07/14 02:15:36 | 000,194,560 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\ListSvc.dll -- (HomeGroupListener) SRV - [2009/07/14 02:15:21 | 000,797,696 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\FntCache.dll -- (FontCache) SRV - [2009/07/14 02:15:11 | 000,253,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\dhcpcore.dll -- (Dhcp) SRV - [2009/07/14 02:15:10 | 000,218,624 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\defragsvc.dll -- (defragsvc) SRV - [2009/07/14 02:14:59 | 000,076,800 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\System32\bdesvc.dll -- (BDESVC) SRV - [2009/07/14 02:14:58 | 000,088,064 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\AxInstSv.dll -- (AxInstSV) ActiveX Installer (AxInstSV) SRV - [2009/07/14 02:14:53 | 000,027,648 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\appidsvc.dll -- (AppIDSvc) SRV - [2009/07/14 02:14:29 | 003,179,520 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\sppsvc.exe -- (sppsvc) SRV - [2009/07/02 17:36:52 | 000,017,904 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Essentials\MsMpEng.exe -- (MsMpSvc) SRV - [2008/11/04 01:06:28 | 000,441,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv) SRV - [2006/10/26 13:03:08 | 000,145,184 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE -- (ose) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2009/12/02 14:19:06 | 000,064,288 | ---- | M] (Lavasoft AB) [File_System | Boot | Running] -- C:\Windows\system32\DRIVERS\Lbd.sys -- (Lbd) DRV - [2009/07/14 02:26:21 | 000,015,952 | ---- | M] (CMD Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\cmdide.sys -- (cmdide) DRV - [2009/07/14 02:26:17 | 000,297,552 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\adpahci.sys -- (adpahci) DRV - [2009/07/14 02:26:15 | 000,422,976 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\adp94xx.sys -- (adp94xx) DRV - [2009/07/14 02:26:15 | 000,159,312 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\amdsbs.sys -- (amdsbs) DRV - [2009/07/14 02:26:15 | 000,146,512 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\adpu320.sys -- (adpu320) DRV - [2009/07/14 02:26:15 | 000,086,608 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\arcsas.sys -- (arcsas) DRV - [2009/07/14 02:26:15 | 000,079,952 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\amdsata.sys -- (amdsata) DRV - [2009/07/14 02:26:15 | 000,076,368 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\arc.sys -- (arc) DRV - [2009/07/14 02:26:15 | 000,023,616 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\amdxata.sys -- (amdxata) DRV - [2009/07/14 02:26:15 | 000,014,400 | ---- | M] (Acer Laboratories Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\aliide.sys -- (aliide) DRV - [2009/07/14 02:20:44 | 000,142,416 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\nvstor.sys -- (nvstor) DRV - [2009/07/14 02:20:44 | 000,117,312 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\nvraid.sys -- (nvraid) DRV - [2009/07/14 02:20:44 | 000,044,624 | ---- | M] (IBM Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\nfrd960.sys -- (nfrd960) DRV - [2009/07/14 02:20:37 | 000,089,168 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_sas.sys -- (LSI_SAS) DRV - [2009/07/14 02:20:36 | 000,332,352 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\iaStorV.sys -- (iaStorV) DRV - [2009/07/14 02:20:36 | 000,235,584 | ---- | M] (LSI Corporation, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\MegaSR.sys -- (MegaSR) DRV - [2009/07/14 02:20:36 | 000,133,200 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\ksecpkg.sys -- (KSecPkg) DRV - [2009/07/14 02:20:36 | 000,096,848 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_scsi.sys -- (LSI_SCSI) DRV - [2009/07/14 02:20:36 | 000,095,824 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_fc.sys -- (LSI_FC) DRV - [2009/07/14 02:20:36 | 000,054,864 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_sas2.sys -- (LSI_SAS2) DRV - [2009/07/14 02:20:36 | 000,041,040 | ---- | M] (Intel Corp./ICP vortex GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\iirsp.sys -- (iirsp) DRV - [2009/07/14 02:20:36 | 000,030,800 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\megasas.sys -- (megasas) DRV - [2009/07/14 02:20:36 | 000,013,904 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\hwpolicy.sys -- (hwpolicy) DRV - [2009/07/14 02:20:28 | 000,453,712 | ---- | M] (Emulex) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\elxstor.sys -- (elxstor) DRV - [2009/07/14 02:20:28 | 000,070,720 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\djsvs.sys -- (aic78xx) DRV - [2009/07/14 02:20:28 | 000,067,152 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\HpSAMD.sys -- (HpSAMD) DRV - [2009/07/14 02:20:28 | 000,046,160 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\fsdepends.sys -- (FsDepends) DRV - [2009/07/14 02:19:11 | 000,141,904 | ---- | M] (VIA Technologies Inc.,Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vsmraid.sys -- (vsmraid) DRV - [2009/07/14 02:19:10 | 000,159,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vhdmp.sys -- (vhdmp) DRV - [2009/07/14 02:19:10 | 000,032,832 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\vdrvroot.sys -- (vdrvroot) DRV - [2009/07/14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\wimmount.sys -- (WIMMount) DRV - [2009/07/14 02:19:10 | 000,016,976 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\viaide.sys -- (viaide) DRV - [2009/07/14 02:19:04 | 001,383,488 | ---- | M] (QLogic Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\ql2300.sys -- (ql2300) DRV - [2009/07/14 02:19:04 | 000,173,648 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\rdyboost.sys -- (rdyboost) DRV - [2009/07/14 02:19:04 | 000,106,064 | ---- | M] (QLogic Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\ql40xx.sys -- (ql40xx) DRV - [2009/07/14 02:19:04 | 000,077,888 | ---- | M] (Silicon Integrated Systems) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\sisraid4.sys -- (SiSRaid4) DRV - [2009/07/14 02:19:04 | 000,043,088 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\pcw.sys -- (pcw) DRV - [2009/07/14 02:19:04 | 000,040,016 | ---- | M] (Silicon Integrated Systems Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\SiSRaid2.sys -- (SiSRaid2) DRV - [2009/07/14 02:19:04 | 000,021,072 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\stexstor.sys -- (stexstor) DRV - [2009/07/14 02:17:54 | 000,369,568 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\cng.sys -- (CNG) DRV - [2009/07/14 01:57:25 | 000,272,128 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\Brserid.sys -- (Brserid) Brother MFC Serial Port Interface Driver (WDM) DRV - [2009/07/14 01:02:41 | 000,018,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\rdpbus.sys -- (rdpbus) DRV - [2009/07/14 01:01:41 | 000,007,168 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\RDPREFMP.sys -- (RDPREFMP) DRV - [2009/07/14 00:55:00 | 000,049,152 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\agilevpn.sys -- (RasAgileVpn) WAN Miniport (IKEv2) DRV - [2009/07/14 00:53:51 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\wfplwf.sys -- (WfpLwf) DRV - [2009/07/14 00:52:44 | 000,027,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ndiscap.sys -- (NdisCap) DRV - [2009/07/14 00:52:02 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vwifibus.sys -- (vwifibus) DRV - [2009/07/14 00:52:00 | 000,163,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\1394ohci.sys -- (1394ohci) DRV - [2009/07/14 00:51:35 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\umpass.sys -- (UmPass) DRV - [2009/07/14 00:51:08 | 000,004,096 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\mshidkmdf.sys -- (mshidkmdf) DRV - [2009/07/14 00:46:55 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\MTConfig.sys -- (MTConfig) DRV - [2009/07/14 00:45:26 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CompositeBus.sys -- (CompositeBus) DRV - [2009/07/14 00:36:52 | 000,050,176 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\appid.sys -- (AppID) DRV - [2009/07/14 00:33:50 | 000,026,624 | ---- | M] (Microsoft Corporation) [Kernel | Unknown | Stopped] -- C:\Windows\System32\drivers\scfilter.sys -- (scfilter) DRV - [2009/07/14 00:24:05 | 000,032,256 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\discache.sys -- (discache) DRV - [2009/07/14 00:19:21 | 000,021,504 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\HidBatt.sys -- (HidBatt) DRV - [2009/07/14 00:16:36 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\acpipmi.sys -- (AcpiPmi) DRV - [2009/07/14 00:11:04 | 000,052,736 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\amdppm.sys -- (AmdPPM) DRV - [2009/07/13 23:54:14 | 000,026,624 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\hcw85cir.sys -- (hcw85cir) DRV - [2009/07/13 23:53:33 | 000,012,160 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\BrUsbMdm.sys -- (BrUsbMdm) DRV - [2009/07/13 23:53:33 | 000,011,904 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\BrUsbSer.sys -- (BrUsbSer) DRV - [2009/07/13 23:53:32 | 000,062,336 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\BrSerWdm.sys -- (BrSerWdm) DRV - [2009/07/13 23:53:28 | 000,013,568 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\BrFiltLo.sys -- (BrFiltLo) DRV - [2009/07/13 23:53:28 | 000,005,248 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\BrFiltUp.sys -- (BrFiltUp) DRV - [2009/07/13 23:02:52 | 000,139,776 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Rt86win7.sys -- (RTL8167) DRV - [2009/07/13 23:02:49 | 000,229,888 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\b57nd60x.sys -- (b57nd60x) DRV - [2009/07/13 23:02:48 | 003,100,160 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\evbdx.sys -- (ebdrv) DRV - [2009/07/13 23:02:48 | 000,430,080 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\bxvbdx.sys -- (b06bdrv) DRV - [2009/07/13 21:50:20 | 000,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\secdrv.sys -- (secdrv) DRV - [2009/07/10 11:19:36 | 002,660,896 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\RTKVHDA.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2009/06/18 18:48:04 | 000,142,832 | ---- | M] (Microsoft Corporation) [File_System | System | Running] -- C:\Windows\System32\drivers\MpFilter.sys -- (MpFilter) DRV - [2009/06/18 18:48:04 | 000,042,480 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\MpNWMon.sys -- (MpNWMon) DRV - [2009/06/10 22:19:30 | 004,756,480 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\igdkmd32.sys -- (igfx) DRV - [2009/05/28 15:38:12 | 000,010,752 | ---- | M] (SAMSUNG ELECTRONICS) [Kernel | System | Running] -- C:\Windows\System32\drivers\SABI.sys -- (SABI) DRV - [2009/04/22 11:27:12 | 001,129,472 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\athr.sys -- (athr) DRV - [2008/08/28 04:52:52 | 000,199,344 | ---- | M] (Synaptics, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\SynTP.sys -- (SynTP) DRV - [2008/08/12 11:03:20 | 000,013,312 | ---- | M] (SAMSUNG ELECTRONICS CO., LTD.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\KMDFMEMIO.sys -- (KMDFMEMIO) DRV - [2003/12/17 09:50:00 | 000,070,801 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\lmouflt2.sys -- (LMouFlt2) DRV - [2003/12/17 09:50:00 | 000,037,887 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LHIDUSB.SYS -- (LHidUsb) DRV - [2003/12/17 09:50:00 | 000,025,505 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LHIDFLT2.SYS -- (LHidFlt2) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/ IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = C7 19 17 9F 32 A1 CA 01 [binary data] IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 O1 HOSTS File: ([2009/06/10 22:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O13 - gopher Prefix: missing O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab (Reg Error: Key error.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18) O16 - DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 172.16.1.2 172.16.1.3 O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O30 - LSA: Security Packages - (pku2u) - C:\Windows\System32\pku2u.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009/06/10 22:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - comfile [open] -- "%1" %* O35 - exefile [open] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2010/02/03 00:32:53 | 000,000,000 | ---D | C] -- C:\Windows\Minidump [2010/02/02 23:54:48 | 000,064,288 | ---- | C] (Lavasoft AB) -- C:\Windows\System32\drivers\Lbd.sys [2010/02/02 23:54:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\DRVSTORE [2010/02/02 23:53:18 | 000,000,000 | -H-D | C] -- C:\ProgramData\{BC9FCCF7-E686-494B-8C9B-55C9A39A7CA9} [2010/02/02 23:53:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Lavasoft [2010/02/02 23:53:01 | 000,000,000 | ---D | C] -- C:\Program Files\Lavasoft [2010/02/02 22:38:00 | 000,345,600 | ---- | C] (Samsung Electronics Co., Ltd.) -- C:\Windows\SetLCDStretchMode.exe [2010/02/02 22:33:44 | 000,010,752 | ---- | C] (SAMSUNG ELECTRONICS) -- C:\Windows\System32\drivers\SABI.sys [2010/02/02 21:47:19 | 000,016,896 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\LMOUSE32.DLL [2010/02/02 21:47:19 | 000,003,568 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\LMOUSE16.DLL [2010/02/02 21:47:19 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Logitech [2010/02/02 21:47:16 | 000,070,801 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\drivers\lmouflt2.sys [2010/02/02 21:47:16 | 000,051,729 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\drivers\L8042PR2.SYS [2010/02/02 21:47:16 | 000,037,887 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\drivers\LHIDUSB.SYS [2010/02/02 21:47:16 | 000,025,505 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\drivers\LHIDFLT2.SYS [2010/02/02 21:47:16 | 000,023,375 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\LCOINST.DLL [2010/02/02 21:47:16 | 000,014,095 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\drivers\LCCFLTR.SYS [2010/02/02 21:47:16 | 000,000,000 | ---D | C] -- C:\Program Files\Logitech [2010/02/02 19:41:37 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\.oanda [2010/02/02 17:46:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun [2010/02/02 17:46:56 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java [2010/02/02 17:45:52 | 000,000,000 | ---D | C] -- C:\Program Files\Java [2010/02/01 23:50:41 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\Office Genuine Advantage [2010/02/01 17:06:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Office Genuine Advantage [2010/02/01 16:47:13 | 000,000,000 | ---D | C] -- C:\ProgramData\CyberLink [2010/02/01 16:46:49 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\Documents\Youcam [2010/02/01 16:36:59 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\skypePM [2010/02/01 16:32:54 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\Skype [2010/02/01 16:32:48 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype [2010/02/01 16:32:43 | 000,000,000 | R--D | C] -- C:\Program Files\Skype [2010/02/01 16:32:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype [2010/02/01 16:10:27 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\Desktop\SDU [2010/01/31 21:44:54 | 000,000,000 | ---D | C] -- C:\Program Files\gretl [2010/01/31 18:37:54 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Local\Diagnostics [2010/01/31 00:38:11 | 000,000,000 | ---D | C] -- C:\ProgramData\ALLPlayer [2010/01/31 00:38:10 | 000,892,928 | ---- | C] (Free Software Foundation) -- C:\Windows\System32\iconv.dll [2010/01/31 00:38:01 | 000,000,000 | ---D | C] -- C:\Program Files\ALLPlayer [2010/01/31 00:27:27 | 000,000,000 | ---D | C] -- C:\Program Files\SubEdit-Player [2010/01/30 08:04:50 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution [2010/01/30 08:02:36 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch [2010/01/30 08:00:36 | 000,000,000 | ---D | C] -- C:\Windows\Panther [2010/01/30 07:52:16 | 000,000,000 | ---D | C] -- C:\Windows.old [2010/01/30 06:56:30 | 000,000,000 | -HSD | C] -- C:\Boot [2010/01/30 04:25:07 | 000,000,000 | ---D | C] -- C:\$INPLACE.~TR [2010/01/30 02:34:29 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\WinRAR [2010/01/30 02:34:04 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR [2010/01/30 01:18:30 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Security Essentials [2010/01/30 00:52:28 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Works [2010/01/30 00:52:03 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio [2010/01/30 00:52:02 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER [2010/01/30 00:51:41 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH [2010/01/30 00:51:40 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET [2010/01/30 00:49:37 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Local\Microsoft Help [2010/01/30 00:49:34 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office [2010/01/30 00:49:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help [2010/01/30 00:48:22 | 000,000,000 | RH-D | C] -- C:\MSOCache [2010/01/30 00:41:27 | 000,000,000 | ---D | C] -- C:\Program Files\CyberLink [2010/01/30 00:41:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Temp [2010/01/30 00:41:00 | 000,000,000 | ---D | C] -- C:\ProgramData\SAMSUNG [2010/01/30 00:39:53 | 000,000,000 | ---D | C] -- C:\Program Files\Samsung [2010/01/30 00:17:09 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee [2010/01/30 00:13:32 | 000,013,312 | ---- | C] (SAMSUNG ELECTRONICS CO., LTD.) -- C:\Windows\System32\drivers\KMDFMEMIO.sys [2010/01/30 00:13:11 | 000,000,000 | ---D | C] -- C:\ProgramData\WinClon [2010/01/30 00:12:29 | 002,821,120 | ---- | C] (Askey Computer Corporation.) -- C:\Windows\System32\AInst3141.exe [2010/01/30 00:12:28 | 001,129,472 | ---- | C] (Atheros Communications, Inc.) -- C:\Windows\System32\drivers\athr.sys [2010/01/30 00:12:28 | 000,000,000 | ---D | C] -- C:\Program Files\Atheros WLAN Client [2010/01/30 00:12:02 | 000,000,000 | ---D | C] -- C:\ProgramData\WLAN [2010/01/30 00:11:53 | 000,000,000 | ---D | C] -- C:\Program Files\Synaptics [2010/01/30 00:10:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\SRSLabs [2010/01/30 00:10:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\RTCOM [2010/01/30 00:10:41 | 001,784,352 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\WavesLib.dll [2010/01/30 00:10:41 | 000,339,968 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSTSXT.dll [2010/01/30 00:10:41 | 000,185,776 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSTSHD.dll [2010/01/30 00:10:41 | 000,167,936 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSHP360.dll [2010/01/30 00:10:41 | 000,135,168 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSWOW.dll [2010/01/30 00:10:40 | 001,933,312 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioEQ.dll [2010/01/30 00:10:40 | 000,290,304 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RP3DHT32.dll [2010/01/30 00:10:40 | 000,290,304 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RP3DAA32.dll [2010/01/30 00:10:40 | 000,159,744 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPO20.dll [2010/01/30 00:10:40 | 000,126,976 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPO.dll [2010/01/30 00:10:39 | 000,160,256 | ---- | C] (Fortemedia Corporation) -- C:\Windows\System32\FMAPO.dll [2010/01/30 00:10:39 | 000,000,000 | -H-D | C] -- C:\Program Files\Temp [2010/01/30 00:10:39 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information [2010/01/30 00:10:39 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek [2010/01/30 00:10:35 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield [2010/01/30 00:10:24 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\Windows\System32\CSVer.dll [2010/01/30 00:10:24 | 000,000,000 | ---D | C] -- C:\Program Files\Intel [2010/01/29 23:56:15 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\Adobe [2010/01/29 23:55:56 | 000,000,000 | ---D | C] -- C:\Windows\System32\Macromed [2010/01/29 23:55:13 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Local\Adobe [2010/01/29 23:54:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe [2010/01/29 23:54:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe [2010/01/29 23:54:53 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe [2010/01/29 23:54:17 | 000,000,000 | -HSD | C] -- C:\Windows\Installer [2010/01/29 23:49:25 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\Documents\Downloads [2010/01/29 23:47:12 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Local\Google [2010/01/29 23:47:01 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Local\Deployment [2010/01/29 23:47:01 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Local\Apps [2010/01/29 23:36:25 | 000,000,000 | ---D | C] -- C:\Program Files\uTorrent [2010/01/29 23:35:39 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\uTorrent [2010/01/29 23:35:08 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Local\cache [2010/01/29 23:35:07 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\Macromedia [2010/01/29 23:35:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Gadu-Gadu 10 [2010/01/29 23:33:40 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\Media Player Classic [2010/01/29 23:28:49 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\Gadu-Gadu 10 [2010/01/29 23:27:50 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\Documents\gretl [2010/01/29 23:27:50 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\gretl [2010/01/29 23:23:36 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Searches [2010/01/29 23:23:24 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\Identities [2010/01/29 23:23:23 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Contacts [2010/01/29 23:23:15 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Local\VirtualStore [2010/01/29 23:23:13 | 000,000,000 | --SD | C] -- C:\Users\Pitmaster\AppData\Roaming\Microsoft [2010/01/29 23:23:13 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Videos [2010/01/29 23:23:13 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Saved Games [2010/01/29 23:23:13 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Pictures [2010/01/29 23:23:13 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Music [2010/01/29 23:23:13 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Links [2010/01/29 23:23:13 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Favorites [2010/01/29 23:23:13 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Downloads [2010/01/29 23:23:13 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Documents [2010/01/29 23:23:13 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Desktop [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\AppData\Local\Temporary Internet Files [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\Templates [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\Start Menu [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\SendTo [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\Recent [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\PrintHood [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\NetHood [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\Documents\My Videos [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\Documents\My Pictures [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\Documents\My Music [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\My Documents [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\Local Settings [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\AppData\Local\History [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\Cookies [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\Application Data [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\AppData\Local\Application Data [2010/01/29 23:23:13 | 000,000,000 | -H-D | C] -- C:\Users\Pitmaster\AppData [2010/01/29 23:23:13 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Local\Temp [2010/01/29 23:23:13 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Local\Microsoft [2010/01/29 23:23:13 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\Media Center Programs [2010/01/29 23:22:54 | 000,000,000 | -HSD | C] -- C:\Recovery [2010/01/29 18:13:20 | 000,000,000 | ---D | C] -- C:\samsung [2010/01/29 17:06:00 | 000,000,000 | ---D | C] -- C:\SEU [2010/01/27 23:32:45 | 000,000,000 | -HSD | C] -- C:\Config.Msi [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2010/02/03 00:36:29 | 000,014,608 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2010/02/03 00:36:29 | 000,014,608 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2010/02/03 00:34:34 | 000,000,370 | ---- | M] () -- C:\Windows\tasks\Ad-Aware Update (Weekly).job [2010/02/03 00:34:34 | 000,000,370 | ---- | M] () -- C:\Windows\tasks\Ad-Aware Update (Daily 4).job [2010/02/03 00:34:34 | 000,000,370 | ---- | M] () -- C:\Windows\tasks\Ad-Aware Update (Daily 3).job [2010/02/03 00:34:34 | 000,000,370 | ---- | M] () -- C:\Windows\tasks\Ad-Aware Update (Daily 2).job [2010/02/03 00:34:34 | 000,000,370 | ---- | M] () -- C:\Windows\tasks\Ad-Aware Update (Daily 1).job [2010/02/03 00:33:58 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT [2010/02/03 00:33:48 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2010/02/03 00:33:42 | 2384,941,056 | -HS- | M] () -- C:\hiberfil.sys [2010/02/03 00:32:35 | 291,593,798 | ---- | M] () -- C:\Windows\MEMORY.DMP [2010/02/03 00:30:20 | 001,310,720 | -HS- | M] () -- C:\Users\Pitmaster\NTUSER.DAT [2010/02/03 00:09:19 | 000,002,432 | ---- | M] () -- C:\Users\Pitmaster\AppData\Local\TempVK3992.html [2010/02/03 00:09:19 | 000,002,089 | ---- | M] () -- C:\Users\Pitmaster\AppData\Local\Tempow3992.html [2010/02/02 23:54:53 | 003,319,457 | -H-- | M] () -- C:\Users\Pitmaster\AppData\Local\IconCache.db [2010/02/02 23:53:16 | 000,001,100 | ---- | M] () -- C:\Users\Public\Desktop\Ad-Aware.lnk [2010/02/02 23:52:01 | 000,001,074 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-885135248-2290267611-3300115028-1001UA.job [2010/02/02 23:52:01 | 000,001,022 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-885135248-2290267611-3300115028-1001Core.job [2010/02/02 22:33:45 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_SABI_01009.Wdf [2010/02/01 16:44:32 | 000,335,636 | ---- | M] () -- C:\Users\Pitmaster\Desktop\4.png [2010/02/01 16:37:00 | 000,000,056 | -H-- | M] () -- C:\ProgramData\ezsidmv.dat [2010/02/01 16:32:48 | 000,002,503 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk [2010/02/01 15:21:24 | 000,393,983 | ---- | M] () -- C:\Users\Pitmaster\Desktop\3.png [2010/02/01 15:20:48 | 000,489,246 | ---- | M] () -- C:\Users\Pitmaster\Desktop\2.png [2010/02/01 15:19:55 | 000,440,136 | ---- | M] () -- C:\Users\Pitmaster\Desktop\1.png [2010/02/01 10:44:46 | 000,713,888 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI [2010/02/01 10:44:46 | 000,615,360 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2010/02/01 10:44:46 | 000,103,702 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2010/02/01 10:44:18 | 000,000,375 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts.ics [2010/01/31 21:50:53 | 000,084,512 | ---- | M] () -- C:\Users\Pitmaster\AppData\Local\GDIPFONTCACHEV1.DAT [2010/01/31 21:50:37 | 000,339,808 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2010/01/31 21:45:05 | 000,000,940 | ---- | M] () -- C:\Users\Pitmaster\Desktop\gretl.lnk [2010/01/30 21:25:52 | 000,000,478 | ---- | M] () -- C:\Windows\win.ini [2010/01/30 21:25:08 | 000,002,432 | ---- | M] () -- C:\Users\Pitmaster\AppData\Local\TempkE1372.html [2010/01/30 21:25:08 | 000,002,089 | ---- | M] () -- C:\Users\Pitmaster\AppData\Local\TempET1372.html [2010/01/30 12:51:26 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf [2010/01/30 08:06:04 | 000,039,252 | ---- | M] () -- C:\Windows\System32\license.rtf [2010/01/30 08:00:22 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK [2010/01/30 02:37:21 | 000,001,050 | ---- | M] () -- C:\Users\Pitmaster\Desktop\Chrome.lnk [2010/01/30 01:58:39 | 000,000,904 | ---- | M] () -- C:\Users\Pitmaster\Desktop\Moje dokumenty - Shortcut.lnk [2010/01/30 01:58:23 | 000,000,473 | ---- | M] () -- C:\Users\Pitmaster\Desktop\TEMP_PART01 (D) - Shortcut.lnk [2010/01/30 01:18:31 | 000,001,031 | ---- | M] () -- C:\Users\Public\Desktop\Microsoft Security Essentials.lnk [2010/01/30 00:42:03 | 000,003,700 | ---- | M] () -- C:\Windows\HotFixList.ini [2010/01/30 00:33:23 | 000,524,288 | -HS- | M] () -- C:\Users\Pitmaster\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms [2010/01/30 00:33:23 | 000,524,288 | -HS- | M] () -- C:\Users\Pitmaster\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms [2010/01/30 00:33:23 | 000,065,536 | -HS- | M] () -- C:\Users\Pitmaster\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf [2010/01/30 00:33:21 | 000,002,432 | ---- | M] () -- C:\Users\Pitmaster\AppData\Local\TempbO2948.html [2010/01/30 00:33:21 | 000,002,089 | ---- | M] () -- C:\Users\Pitmaster\AppData\Local\Tempkt2948.html [2010/01/30 00:13:37 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_KMDFMEMIO_01005.Wdf [2010/01/30 00:11:57 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_SynTP_01000.Wdf [2010/01/30 00:01:48 | 000,000,892 | ---- | M] () -- C:\Users\Pitmaster\Desktop\Downloads - Shortcut.lnk [2010/01/29 23:48:44 | 000,002,275 | ---- | M] () -- C:\Users\Pitmaster\Desktop\Google Chrome.lnk [2010/01/29 23:36:25 | 000,000,913 | ---- | M] () -- C:\Users\Public\Desktop\µTorrent.lnk [2010/01/29 23:32:50 | 000,001,341 | ---- | M] () -- C:\Users\Pitmaster\Desktop\Broco.lnk [2010/01/29 23:23:13 | 000,000,020 | -HS- | M] () -- C:\Users\Pitmaster\ntuser.ini [2010/01/29 21:03:38 | 000,000,002 | ---- | M] () -- C:\$UpgDrv$ [2010/01/11 15:54:11 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2010/01/11 15:54:11 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010/02/03 00:32:35 | 291,593,798 | ---- | C] () -- C:\Windows\MEMORY.DMP [2010/02/03 00:06:35 | 000,002,432 | ---- | C] () -- C:\Users\Pitmaster\AppData\Local\TempVK3992.html [2010/02/03 00:06:35 | 000,002,089 | ---- | C] () -- C:\Users\Pitmaster\AppData\Local\Tempow3992.html [2010/02/02 23:57:09 | 000,000,370 | ---- | C] () -- C:\Windows\tasks\Ad-Aware Update (Weekly).job [2010/02/02 23:57:09 | 000,000,370 | ---- | C] () -- C:\Windows\tasks\Ad-Aware Update (Daily 4).job [2010/02/02 23:57:09 | 000,000,370 | ---- | C] () -- C:\Windows\tasks\Ad-Aware Update (Daily 3).job [2010/02/02 23:57:09 | 000,000,370 | ---- | C] () -- C:\Windows\tasks\Ad-Aware Update (Daily 2).job [2010/02/02 23:57:08 | 000,000,370 | ---- | C] () -- C:\Windows\tasks\Ad-Aware Update (Daily 1).job [2010/02/02 23:53:16 | 000,001,100 | ---- | C] () -- C:\Users\Public\Desktop\Ad-Aware.lnk [2010/02/02 22:33:45 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_SABI_01009.Wdf [2010/02/01 16:44:32 | 000,335,636 | ---- | C] () -- C:\Users\Pitmaster\Desktop\4.png [2010/02/01 16:37:00 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat [2010/02/01 16:32:48 | 000,002,503 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk [2010/02/01 15:21:24 | 000,393,983 | ---- | C] () -- C:\Users\Pitmaster\Desktop\3.png [2010/02/01 15:20:48 | 000,489,246 | ---- | C] () -- C:\Users\Pitmaster\Desktop\2.png [2010/02/01 15:17:54 | 000,440,136 | ---- | C] () -- C:\Users\Pitmaster\Desktop\1.png [2010/01/31 21:45:05 | 000,000,940 | ---- | C] () -- C:\Users\Pitmaster\Desktop\gretl.lnk [2010/01/31 00:38:10 | 000,881,664 | ---- | C] () -- C:\Windows\System32\xvidcore.dll [2010/01/31 00:38:10 | 000,797,184 | ---- | C] () -- C:\Windows\System32\ac3filter.ax [2010/01/30 21:18:29 | 000,002,432 | ---- | C] () -- C:\Users\Pitmaster\AppData\Local\TempkE1372.html [2010/01/30 21:18:29 | 000,002,089 | ---- | C] () -- C:\Users\Pitmaster\AppData\Local\TempET1372.html [2010/01/30 12:51:26 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf [2010/01/30 08:01:22 | 2384,941,056 | -HS- | C] () -- C:\hiberfil.sys [2010/01/30 02:37:21 | 000,001,050 | ---- | C] () -- C:\Users\Pitmaster\Desktop\Chrome.lnk [2010/01/30 01:58:43 | 000,000,904 | ---- | C] () -- C:\Users\Pitmaster\Desktop\Moje dokumenty - Shortcut.lnk [2010/01/30 01:58:23 | 000,000,473 | ---- | C] () -- C:\Users\Pitmaster\Desktop\TEMP_PART01 (D) - Shortcut.lnk [2010/01/30 01:18:31 | 000,001,031 | ---- | C] () -- C:\Users\Public\Desktop\Microsoft Security Essentials.lnk [2010/01/30 00:40:58 | 000,000,135 | R--- | C] () -- C:\Windows\System32\lngEng.ini [2010/01/30 00:40:58 | 000,000,117 | ---- | C] () -- C:\Windows\System32\lngKor.ini [2010/01/30 00:16:11 | 000,000,804 | ---- | C] () -- C:\Windows\rdsetup.iss [2010/01/30 00:13:37 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_KMDFMEMIO_01005.Wdf [2010/01/30 00:12:29 | 000,000,874 | ---- | C] () -- C:\Windows\System32\WLL3141.cfgx [2010/01/30 00:11:59 | 000,003,700 | ---- | C] () -- C:\Windows\HotFixList.ini [2010/01/30 00:11:59 | 000,000,589 | ---- | C] () -- C:\Windows\dsetup.iss [2010/01/30 00:11:57 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_SynTP_01000.Wdf [2010/01/30 00:01:48 | 000,000,892 | ---- | C] () -- C:\Users\Pitmaster\Desktop\Downloads - Shortcut.lnk [2010/01/29 23:48:44 | 000,002,275 | ---- | C] () -- C:\Users\Pitmaster\Desktop\Google Chrome.lnk [2010/01/29 23:47:14 | 000,001,074 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-885135248-2290267611-3300115028-1001UA.job [2010/01/29 23:47:13 | 000,001,022 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-885135248-2290267611-3300115028-1001Core.job [2010/01/29 23:36:25 | 000,000,913 | ---- | C] () -- C:\Users\Public\Desktop\µTorrent.lnk [2010/01/29 23:35:07 | 000,002,432 | ---- | C] () -- C:\Users\Pitmaster\AppData\Local\TempbO2948.html [2010/01/29 23:35:07 | 000,002,089 | ---- | C] () -- C:\Users\Pitmaster\AppData\Local\Tempkt2948.html [2010/01/29 23:32:50 | 000,001,341 | ---- | C] () -- C:\Users\Pitmaster\Desktop\Broco.lnk [2010/01/29 23:23:13 | 001,310,720 | -HS- | C] () -- C:\Users\Pitmaster\NTUSER.DAT [2010/01/29 23:23:13 | 000,524,288 | -HS- | C] () -- C:\Users\Pitmaster\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms [2010/01/29 23:23:13 | 000,524,288 | -HS- | C] () -- C:\Users\Pitmaster\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms [2010/01/29 23:23:13 | 000,065,536 | -HS- | C] () -- C:\Users\Pitmaster\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf [2010/01/29 23:23:13 | 000,000,020 | -HS- | C] () -- C:\Users\Pitmaster\ntuser.ini [2010/01/29 21:25:40 | 000,383,562 | RHS- | C] () -- C:\bootmgr [2010/01/29 18:50:00 | 000,000,002 | ---- | C] () -- C:\$UpgDrv$ [2010/01/11 15:54:11 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS [2010/01/11 15:54:11 | 000,000,000 | RHS- | C] () -- C:\IO.SYS [2009/08/20 09:25:04 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll [2009/08/03 15:07:42 | 000,403,816 | ---- | C] () -- C:\Windows\System32\OGACheckControl.dll [2009/07/14 00:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll [2009/07/14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll [color=#E56717]========== LOP Check ==========[/color] [2010/01/30 00:33:21 | 000,000,000 | ---D | M] -- C:\Users\Pitmaster\AppData\Roaming\Gadu-Gadu 10 [2010/01/31 21:48:54 | 000,000,000 | ---D | M] -- C:\Users\Pitmaster\AppData\Roaming\gretl [2010/02/02 21:57:48 | 000,000,000 | ---D | M] -- C:\Users\Pitmaster\AppData\Roaming\uTorrent [2010/02/03 00:34:34 | 000,000,370 | ---- | M] () -- C:\Windows\Tasks\Ad-Aware Update (Daily 1).job [2010/02/03 00:34:34 | 000,000,370 | ---- | M] () -- C:\Windows\Tasks\Ad-Aware Update (Daily 2).job [2010/02/03 00:34:34 | 000,000,370 | ---- | M] () -- C:\Windows\Tasks\Ad-Aware Update (Daily 3).job [2010/02/03 00:34:34 | 000,000,370 | ---- | M] () -- C:\Windows\Tasks\Ad-Aware Update (Daily 4).job [2010/02/03 00:34:34 | 000,000,370 | ---- | M] () -- C:\Windows\Tasks\Ad-Aware Update (Weekly).job [2009/07/14 05:53:46 | 000,006,360 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [color=#E56717]========== Purity Check ==========[/color] < End of report > [/log]
Psycholandia komentarz 3 lutego 2010 komentarz 3 lutego 2010 W okienko OTL wklej poniższy skrypt i klik na Run Fix: [code]:Processes explorer.exe :OTL O13 - gopher Prefix: missing O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset...lineScanner.cab (Reg Error: Key error.) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O34 - HKLM BootExecute: (autocheck autochk *) - File not found :Commands [emptytemp] [start explorer] [Reboot][/code] Przeskanuj komputer tym: [url="http://www.programosy.pl/program,malwarebytes-anti-malware.html"]Malware[/url] usuń wszystko co znajdzie i daj loga po kasowaniu (loga z Malware)
Pitmaster komentarz 3 lutego 2010 Autor komentarz 3 lutego 2010 [quote name='Andziorka' date='03 luty 2010 - 01:01' timestamp='1265155315' post='966076'] W okienko OTL wklej poniższy skrypt i klik na Run Fix: [code]:Processes explorer.exe :OTL O13 - gopher Prefix: missing O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset...lineScanner.cab (Reg Error: Key error.) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O34 - HKLM BootExecute: (autocheck autochk *) - File not found :Commands [emptytemp] [start explorer] [Reboot][/code] Przeskanuj komputer tym: [url="http://www.programosy.pl/program,malwarebytes-anti-malware.html"]Malware[/url] usuń wszystko co znajdzie i daj loga po kasowaniu (loga z Malware) [/quote] Prosze bardzo... OTL.txt: [log]OTL logfile created on: 2/3/2010 1:10:32 AM - Run 3 OTL by OldTimer - Version 3.1.27.1 Folder = C:\Users\Pitmaster\Documents\Downloads Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 3.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 64.00% Memory free 6.00 Gb Paging File | 5.00 Gb Available in Paging File | 83.00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 151.24 Gb Total Space | 122.00 Gb Free Space | 80.67% Space Free | Partition Type: NTFS Drive D: | 68.64 Gb Total Space | 44.44 Gb Free Space | 64.75% Space Free | Partition Type: NTFS E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: PITMASTER-PC Current User Name: Pitmaster Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: On Skip Microsoft Files: On File Age = 30 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010/02/03 00:13:51 | 000,548,864 | ---- | M] (OldTimer Tools) -- C:\Users\Pitmaster\My Documents\Downloads\OTL.exe PRC - [2010/02/02 23:54:15 | 001,181,328 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe PRC - [2010/02/02 23:54:15 | 000,788,880 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe PRC - [2010/01/21 08:24:00 | 000,527,344 | ---- | M] (Google Inc.) -- C:\Users\Pitmaster\AppData\Local\Google\Chrome\Application\chrome.exe PRC - [2009/12/02 14:19:02 | 000,707,704 | ---- | M] () -- C:\Program Files\Lavasoft\Ad-Aware\AAWWSC.exe PRC - [2009/10/31 06:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2009/10/28 07:17:59 | 000,285,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\winlogon.exe PRC - [2009/08/23 13:47:34 | 000,716,800 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files\Samsung\EasySpeedUpManager\EasySpeedUpManager.exe PRC - [2009/07/14 02:14:50 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wuauclt.exe PRC - [2009/07/14 02:14:47 | 001,121,280 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Media Player\wmpnetwk.exe PRC - [2009/07/14 02:14:47 | 000,254,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wbem\WmiPrvSE.exe PRC - [2009/07/14 02:14:45 | 000,096,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wininit.exe PRC - [2009/07/14 02:14:43 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wbem\unsecapp.exe PRC - [2009/07/14 02:14:42 | 000,190,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskeng.exe PRC - [2009/07/14 02:14:42 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe PRC - [2009/07/14 02:14:41 | 000,316,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spoolsv.exe PRC - [2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009/07/14 02:14:39 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\smss.exe PRC - [2009/07/14 02:14:36 | 000,259,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\services.exe PRC - [2009/07/14 02:14:35 | 000,428,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SearchIndexer.exe PRC - [2009/07/14 02:14:23 | 000,261,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lsm.exe PRC - [2009/07/14 02:14:23 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lsass.exe PRC - [2009/07/14 02:14:16 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\csrss.exe PRC - [2009/07/02 17:36:52 | 000,017,904 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft Security Essentials\MsMpEng.exe PRC - [2009/06/24 16:47:58 | 000,700,416 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files\Samsung\Easy Display Manager\dmhkcore.exe PRC - [2006/10/26 13:40:34 | 000,335,872 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\microsoft shared\VS7DEBUG\mdm.exe [color=#E56717]========== Modules (All) ==========[/color] MOD - [2010/02/03 00:13:51 | 000,548,864 | ---- | M] (OldTimer Tools) -- C:\Users\Pitmaster\My Documents\Downloads\OTL.exe MOD - [2009/07/14 02:17:51 | 001,286,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntdll.dll MOD - [2009/07/14 02:16:19 | 000,268,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\Wldap32.dll MOD - [2009/07/14 02:16:17 | 001,123,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\vssapi.dll MOD - [2009/07/14 02:16:17 | 000,811,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\user32.dll MOD - [2009/07/14 02:16:17 | 000,627,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\usp10.dll MOD - [2009/07/14 02:16:17 | 000,249,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\uxtheme.dll MOD - [2009/07/14 02:16:17 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\vsstrace.dll MOD - [2009/07/14 02:16:17 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\version.dll MOD - [2009/07/14 02:16:15 | 000,171,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spp.dll MOD - [2009/07/14 02:16:15 | 000,099,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\sspicli.dll MOD - [2009/07/14 02:16:15 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\srclient.dll MOD - [2009/07/14 02:16:14 | 012,866,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shell32.dll MOD - [2009/07/14 02:16:14 | 001,668,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\setupapi.dll MOD - [2009/07/14 02:16:14 | 000,350,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shlwapi.dll MOD - [2009/07/14 02:16:14 | 000,179,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shdocvw.dll MOD - [2009/07/14 02:16:13 | 000,652,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\rpcrt4.dll MOD - [2009/07/14 02:16:13 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\sechost.dll MOD - [2009/07/14 02:16:13 | 000,060,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\samlib.dll MOD - [2009/07/14 02:16:13 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\samcli.dll MOD - [2009/07/14 02:16:13 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\secur32.dll MOD - [2009/07/14 02:16:12 | 001,412,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ole32.dll MOD - [2009/07/14 02:16:12 | 000,988,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\propsys.dll MOD - [2009/07/14 02:16:12 | 000,571,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\oleaut32.dll MOD - [2009/07/14 02:16:12 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\olepro32.dll MOD - [2009/07/14 02:16:12 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\profapi.dll MOD - [2009/07/14 02:16:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\psapi.dll MOD - [2009/07/14 02:16:11 | 000,121,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntmarta.dll MOD - [2009/07/14 02:16:03 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\netutils.dll MOD - [2009/07/14 02:15:50 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msvcrt.dll MOD - [2009/07/14 02:15:43 | 000,828,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msctf.dll MOD - [2009/07/14 02:15:36 | 000,026,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lpk.dll MOD - [2009/07/14 02:15:35 | 000,857,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\kernel32.dll MOD - [2009/07/14 02:15:35 | 000,288,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\KernelBase.dll MOD - [2009/07/14 02:15:32 | 000,118,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\imm32.dll MOD - [2009/07/14 02:15:22 | 000,304,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\gdi32.dll MOD - [2009/07/14 02:15:13 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dwmapi.dll MOD - [2009/07/14 02:15:11 | 000,064,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\devobj.dll MOD - [2009/07/14 02:15:07 | 000,486,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\comdlg32.dll MOD - [2009/07/14 02:15:07 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\cryptbase.dll MOD - [2009/07/14 02:15:03 | 000,522,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\clbcatq.dll MOD - [2009/07/14 02:15:02 | 000,145,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\cfgmgr32.dll MOD - [2009/07/14 02:14:57 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\atl.dll MOD - [2009/07/14 02:14:53 | 000,640,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\advapi32.dll MOD - [2009/07/14 02:14:53 | 000,292,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\apphelp.dll MOD - [2009/07/14 02:14:08 | 000,319,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\winspool.drv MOD - [2009/07/14 02:03:50 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2010/02/02 23:54:15 | 001,181,328 | ---- | M] (Lavasoft) [Auto | Running] -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service) SRV - [2009/07/14 02:16:21 | 000,185,856 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wwansvc.dll -- (WwanSvc) SRV - [2009/07/14 02:16:17 | 000,151,552 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wbiosrvc.dll -- (WbioSrvc) SRV - [2009/07/14 02:16:17 | 000,119,808 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\umpo.dll -- (Power) SRV - [2009/07/14 02:16:16 | 000,037,376 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\themeservice.dll -- (Themes) SRV - [2009/07/14 02:16:15 | 000,053,760 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sppuinotify.dll -- (sppuinotify) SRV - [2009/07/14 02:16:13 | 000,043,520 | ---- | M] (Microsoft Corporation) [Unknown | Running] -- C:\Windows\System32\RpcEpMap.dll -- (RpcEptMapper) SRV - [2009/07/14 02:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc) SRV - [2009/07/14 02:16:12 | 000,269,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\pnrpsvc.dll -- (PNRPsvc) SRV - [2009/07/14 02:16:12 | 000,269,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\pnrpsvc.dll -- (p2pimsvc) SRV - [2009/07/14 02:16:12 | 000,165,376 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\provsvc.dll -- (HomeGroupProvider) SRV - [2009/07/14 02:16:12 | 000,020,480 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\pnrpauto.dll -- (PNRPAutoReg) SRV - [2009/07/14 02:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2009/07/14 02:15:36 | 000,194,560 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\ListSvc.dll -- (HomeGroupListener) SRV - [2009/07/14 02:15:21 | 000,797,696 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\FntCache.dll -- (FontCache) SRV - [2009/07/14 02:15:11 | 000,253,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\dhcpcore.dll -- (Dhcp) SRV - [2009/07/14 02:15:10 | 000,218,624 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\defragsvc.dll -- (defragsvc) SRV - [2009/07/14 02:14:59 | 000,076,800 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\System32\bdesvc.dll -- (BDESVC) SRV - [2009/07/14 02:14:58 | 000,088,064 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\AxInstSv.dll -- (AxInstSV) ActiveX Installer (AxInstSV) SRV - [2009/07/14 02:14:53 | 000,027,648 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\appidsvc.dll -- (AppIDSvc) SRV - [2009/07/14 02:14:29 | 003,179,520 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\sppsvc.exe -- (sppsvc) SRV - [2009/07/02 17:36:52 | 000,017,904 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Essentials\MsMpEng.exe -- (MsMpSvc) SRV - [2008/11/04 01:06:28 | 000,441,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv) SRV - [2006/10/26 13:03:08 | 000,145,184 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE -- (ose) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2009/12/02 14:19:06 | 000,064,288 | ---- | M] (Lavasoft AB) [File_System | Boot | Running] -- C:\Windows\system32\DRIVERS\Lbd.sys -- (Lbd) DRV - [2009/07/14 02:26:21 | 000,015,952 | ---- | M] (CMD Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\cmdide.sys -- (cmdide) DRV - [2009/07/14 02:26:17 | 000,297,552 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\adpahci.sys -- (adpahci) DRV - [2009/07/14 02:26:15 | 000,422,976 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\adp94xx.sys -- (adp94xx) DRV - [2009/07/14 02:26:15 | 000,159,312 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\amdsbs.sys -- (amdsbs) DRV - [2009/07/14 02:26:15 | 000,146,512 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\adpu320.sys -- (adpu320) DRV - [2009/07/14 02:26:15 | 000,086,608 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\arcsas.sys -- (arcsas) DRV - [2009/07/14 02:26:15 | 000,079,952 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\amdsata.sys -- (amdsata) DRV - [2009/07/14 02:26:15 | 000,076,368 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\arc.sys -- (arc) DRV - [2009/07/14 02:26:15 | 000,023,616 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\amdxata.sys -- (amdxata) DRV - [2009/07/14 02:26:15 | 000,014,400 | ---- | M] (Acer Laboratories Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\aliide.sys -- (aliide) DRV - [2009/07/14 02:20:44 | 000,142,416 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\nvstor.sys -- (nvstor) DRV - [2009/07/14 02:20:44 | 000,117,312 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\nvraid.sys -- (nvraid) DRV - [2009/07/14 02:20:44 | 000,044,624 | ---- | M] (IBM Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\nfrd960.sys -- (nfrd960) DRV - [2009/07/14 02:20:37 | 000,089,168 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_sas.sys -- (LSI_SAS) DRV - [2009/07/14 02:20:36 | 000,332,352 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\iaStorV.sys -- (iaStorV) DRV - [2009/07/14 02:20:36 | 000,235,584 | ---- | M] (LSI Corporation, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\MegaSR.sys -- (MegaSR) DRV - [2009/07/14 02:20:36 | 000,133,200 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\ksecpkg.sys -- (KSecPkg) DRV - [2009/07/14 02:20:36 | 000,096,848 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_scsi.sys -- (LSI_SCSI) DRV - [2009/07/14 02:20:36 | 000,095,824 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_fc.sys -- (LSI_FC) DRV - [2009/07/14 02:20:36 | 000,054,864 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_sas2.sys -- (LSI_SAS2) DRV - [2009/07/14 02:20:36 | 000,041,040 | ---- | M] (Intel Corp./ICP vortex GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\iirsp.sys -- (iirsp) DRV - [2009/07/14 02:20:36 | 000,030,800 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\megasas.sys -- (megasas) DRV - [2009/07/14 02:20:36 | 000,013,904 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\hwpolicy.sys -- (hwpolicy) DRV - [2009/07/14 02:20:28 | 000,453,712 | ---- | M] (Emulex) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\elxstor.sys -- (elxstor) DRV - [2009/07/14 02:20:28 | 000,070,720 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\djsvs.sys -- (aic78xx) DRV - [2009/07/14 02:20:28 | 000,067,152 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\HpSAMD.sys -- (HpSAMD) DRV - [2009/07/14 02:20:28 | 000,046,160 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\fsdepends.sys -- (FsDepends) DRV - [2009/07/14 02:19:11 | 000,141,904 | ---- | M] (VIA Technologies Inc.,Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vsmraid.sys -- (vsmraid) DRV - [2009/07/14 02:19:10 | 000,159,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vhdmp.sys -- (vhdmp) DRV - [2009/07/14 02:19:10 | 000,032,832 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\vdrvroot.sys -- (vdrvroot) DRV - [2009/07/14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\wimmount.sys -- (WIMMount) DRV - [2009/07/14 02:19:10 | 000,016,976 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\viaide.sys -- (viaide) DRV - [2009/07/14 02:19:04 | 001,383,488 | ---- | M] (QLogic Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\ql2300.sys -- (ql2300) DRV - [2009/07/14 02:19:04 | 000,173,648 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\rdyboost.sys -- (rdyboost) DRV - [2009/07/14 02:19:04 | 000,106,064 | ---- | M] (QLogic Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\ql40xx.sys -- (ql40xx) DRV - [2009/07/14 02:19:04 | 000,077,888 | ---- | M] (Silicon Integrated Systems) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\sisraid4.sys -- (SiSRaid4) DRV - [2009/07/14 02:19:04 | 000,043,088 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\pcw.sys -- (pcw) DRV - [2009/07/14 02:19:04 | 000,040,016 | ---- | M] (Silicon Integrated Systems Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\SiSRaid2.sys -- (SiSRaid2) DRV - [2009/07/14 02:19:04 | 000,021,072 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\stexstor.sys -- (stexstor) DRV - [2009/07/14 02:17:54 | 000,369,568 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\cng.sys -- (CNG) DRV - [2009/07/14 01:57:25 | 000,272,128 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\Brserid.sys -- (Brserid) Brother MFC Serial Port Interface Driver (WDM) DRV - [2009/07/14 01:02:41 | 000,018,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\rdpbus.sys -- (rdpbus) DRV - [2009/07/14 01:01:41 | 000,007,168 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\RDPREFMP.sys -- (RDPREFMP) DRV - [2009/07/14 00:55:00 | 000,049,152 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\agilevpn.sys -- (RasAgileVpn) WAN Miniport (IKEv2) DRV - [2009/07/14 00:53:51 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\wfplwf.sys -- (WfpLwf) DRV - [2009/07/14 00:52:44 | 000,027,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ndiscap.sys -- (NdisCap) DRV - [2009/07/14 00:52:02 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vwifibus.sys -- (vwifibus) DRV - [2009/07/14 00:52:00 | 000,163,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\1394ohci.sys -- (1394ohci) DRV - [2009/07/14 00:51:35 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\umpass.sys -- (UmPass) DRV - [2009/07/14 00:51:08 | 000,004,096 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\mshidkmdf.sys -- (mshidkmdf) DRV - [2009/07/14 00:46:55 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\MTConfig.sys -- (MTConfig) DRV - [2009/07/14 00:45:26 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CompositeBus.sys -- (CompositeBus) DRV - [2009/07/14 00:36:52 | 000,050,176 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\appid.sys -- (AppID) DRV - [2009/07/14 00:33:50 | 000,026,624 | ---- | M] (Microsoft Corporation) [Kernel | Unknown | Stopped] -- C:\Windows\System32\drivers\scfilter.sys -- (scfilter) DRV - [2009/07/14 00:24:05 | 000,032,256 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\discache.sys -- (discache) DRV - [2009/07/14 00:19:21 | 000,021,504 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\HidBatt.sys -- (HidBatt) DRV - [2009/07/14 00:16:36 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\acpipmi.sys -- (AcpiPmi) DRV - [2009/07/14 00:11:04 | 000,052,736 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\amdppm.sys -- (AmdPPM) DRV - [2009/07/13 23:54:14 | 000,026,624 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\hcw85cir.sys -- (hcw85cir) DRV - [2009/07/13 23:53:33 | 000,012,160 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\BrUsbMdm.sys -- (BrUsbMdm) DRV - [2009/07/13 23:53:33 | 000,011,904 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\BrUsbSer.sys -- (BrUsbSer) DRV - [2009/07/13 23:53:32 | 000,062,336 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\BrSerWdm.sys -- (BrSerWdm) DRV - [2009/07/13 23:53:28 | 000,013,568 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\BrFiltLo.sys -- (BrFiltLo) DRV - [2009/07/13 23:53:28 | 000,005,248 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\BrFiltUp.sys -- (BrFiltUp) DRV - [2009/07/13 23:02:52 | 000,139,776 | ---- | M] (Realtek Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Rt86win7.sys -- (RTL8167) DRV - [2009/07/13 23:02:49 | 000,229,888 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\b57nd60x.sys -- (b57nd60x) DRV - [2009/07/13 23:02:48 | 003,100,160 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\evbdx.sys -- (ebdrv) DRV - [2009/07/13 23:02:48 | 000,430,080 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\bxvbdx.sys -- (b06bdrv) DRV - [2009/07/13 21:50:20 | 000,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\secdrv.sys -- (secdrv) DRV - [2009/07/10 11:19:36 | 002,660,896 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\RTKVHDA.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2009/06/18 18:48:04 | 000,142,832 | ---- | M] (Microsoft Corporation) [File_System | System | Running] -- C:\Windows\System32\drivers\MpFilter.sys -- (MpFilter) DRV - [2009/06/18 18:48:04 | 000,042,480 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\MpNWMon.sys -- (MpNWMon) DRV - [2009/06/10 22:19:30 | 004,756,480 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\igdkmd32.sys -- (igfx) DRV - [2009/05/28 15:38:12 | 000,010,752 | ---- | M] (SAMSUNG ELECTRONICS) [Kernel | System | Running] -- C:\Windows\System32\drivers\SABI.sys -- (SABI) DRV - [2009/04/22 11:27:12 | 001,129,472 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\athr.sys -- (athr) DRV - [2008/08/28 04:52:52 | 000,199,344 | ---- | M] (Synaptics, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\SynTP.sys -- (SynTP) DRV - [2008/08/12 11:03:20 | 000,013,312 | ---- | M] (SAMSUNG ELECTRONICS CO., LTD.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\KMDFMEMIO.sys -- (KMDFMEMIO) DRV - [2003/12/17 09:50:00 | 000,070,801 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\lmouflt2.sys -- (LMouFlt2) DRV - [2003/12/17 09:50:00 | 000,037,887 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LHIDUSB.SYS -- (LHidUsb) DRV - [2003/12/17 09:50:00 | 000,025,505 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LHIDFLT2.SYS -- (LHidFlt2) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/ IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = C7 19 17 9F 32 A1 CA 01 [binary data] IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 O1 HOSTS File: ([2009/06/10 22:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O13 - gopher Prefix: missing O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab (Reg Error: Key error.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18) O16 - DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab (Java Plug-in 1.6.0_18) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 172.16.1.2 172.16.1.3 O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O30 - LSA: Security Packages - (pku2u) - C:\Windows\System32\pku2u.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009/06/10 22:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - comfile [open] -- "%1" %* O35 - exefile [open] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2010/02/03 00:32:53 | 000,000,000 | ---D | C] -- C:\Windows\Minidump [2010/02/02 23:54:48 | 000,064,288 | ---- | C] (Lavasoft AB) -- C:\Windows\System32\drivers\Lbd.sys [2010/02/02 23:54:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\DRVSTORE [2010/02/02 23:53:18 | 000,000,000 | -H-D | C] -- C:\ProgramData\{BC9FCCF7-E686-494B-8C9B-55C9A39A7CA9} [2010/02/02 23:53:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Lavasoft [2010/02/02 23:53:01 | 000,000,000 | ---D | C] -- C:\Program Files\Lavasoft [2010/02/02 22:38:00 | 000,345,600 | ---- | C] (Samsung Electronics Co., Ltd.) -- C:\Windows\SetLCDStretchMode.exe [2010/02/02 22:33:44 | 000,010,752 | ---- | C] (SAMSUNG ELECTRONICS) -- C:\Windows\System32\drivers\SABI.sys [2010/02/02 21:47:19 | 000,016,896 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\LMOUSE32.DLL [2010/02/02 21:47:19 | 000,003,568 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\LMOUSE16.DLL [2010/02/02 21:47:19 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Logitech [2010/02/02 21:47:16 | 000,070,801 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\drivers\lmouflt2.sys [2010/02/02 21:47:16 | 000,051,729 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\drivers\L8042PR2.SYS [2010/02/02 21:47:16 | 000,037,887 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\drivers\LHIDUSB.SYS [2010/02/02 21:47:16 | 000,025,505 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\drivers\LHIDFLT2.SYS [2010/02/02 21:47:16 | 000,023,375 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\LCOINST.DLL [2010/02/02 21:47:16 | 000,014,095 | ---- | C] (Logitech, Inc.) -- C:\Windows\System32\drivers\LCCFLTR.SYS [2010/02/02 21:47:16 | 000,000,000 | ---D | C] -- C:\Program Files\Logitech [2010/02/02 19:41:37 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\.oanda [2010/02/02 17:46:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun [2010/02/02 17:46:56 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java [2010/02/02 17:45:52 | 000,000,000 | ---D | C] -- C:\Program Files\Java [2010/02/01 23:50:41 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\Office Genuine Advantage [2010/02/01 17:06:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Office Genuine Advantage [2010/02/01 16:47:13 | 000,000,000 | ---D | C] -- C:\ProgramData\CyberLink [2010/02/01 16:46:49 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\Documents\Youcam [2010/02/01 16:36:59 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\skypePM [2010/02/01 16:32:54 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\Skype [2010/02/01 16:32:48 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype [2010/02/01 16:32:43 | 000,000,000 | R--D | C] -- C:\Program Files\Skype [2010/02/01 16:32:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype [2010/02/01 16:10:27 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\Desktop\SDU [2010/01/31 21:44:54 | 000,000,000 | ---D | C] -- C:\Program Files\gretl [2010/01/31 18:37:54 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Local\Diagnostics [2010/01/31 00:38:11 | 000,000,000 | ---D | C] -- C:\ProgramData\ALLPlayer [2010/01/31 00:38:10 | 000,892,928 | ---- | C] (Free Software Foundation) -- C:\Windows\System32\iconv.dll [2010/01/31 00:38:01 | 000,000,000 | ---D | C] -- C:\Program Files\ALLPlayer [2010/01/31 00:27:27 | 000,000,000 | ---D | C] -- C:\Program Files\SubEdit-Player [2010/01/30 08:04:50 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution [2010/01/30 08:02:36 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch [2010/01/30 08:00:36 | 000,000,000 | ---D | C] -- C:\Windows\Panther [2010/01/30 07:52:16 | 000,000,000 | ---D | C] -- C:\Windows.old [2010/01/30 06:56:30 | 000,000,000 | -HSD | C] -- C:\Boot [2010/01/30 04:25:07 | 000,000,000 | ---D | C] -- C:\$INPLACE.~TR [2010/01/30 02:34:29 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\WinRAR [2010/01/30 02:34:04 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR [2010/01/30 01:18:30 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Security Essentials [2010/01/30 00:52:28 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Works [2010/01/30 00:52:03 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio [2010/01/30 00:52:02 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER [2010/01/30 00:51:41 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH [2010/01/30 00:51:40 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET [2010/01/30 00:49:37 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Local\Microsoft Help [2010/01/30 00:49:34 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office [2010/01/30 00:49:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help [2010/01/30 00:48:22 | 000,000,000 | RH-D | C] -- C:\MSOCache [2010/01/30 00:41:27 | 000,000,000 | ---D | C] -- C:\Program Files\CyberLink [2010/01/30 00:41:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Temp [2010/01/30 00:41:00 | 000,000,000 | ---D | C] -- C:\ProgramData\SAMSUNG [2010/01/30 00:39:53 | 000,000,000 | ---D | C] -- C:\Program Files\Samsung [2010/01/30 00:17:09 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee [2010/01/30 00:13:32 | 000,013,312 | ---- | C] (SAMSUNG ELECTRONICS CO., LTD.) -- C:\Windows\System32\drivers\KMDFMEMIO.sys [2010/01/30 00:13:11 | 000,000,000 | ---D | C] -- C:\ProgramData\WinClon [2010/01/30 00:12:29 | 002,821,120 | ---- | C] (Askey Computer Corporation.) -- C:\Windows\System32\AInst3141.exe [2010/01/30 00:12:28 | 001,129,472 | ---- | C] (Atheros Communications, Inc.) -- C:\Windows\System32\drivers\athr.sys [2010/01/30 00:12:28 | 000,000,000 | ---D | C] -- C:\Program Files\Atheros WLAN Client [2010/01/30 00:12:02 | 000,000,000 | ---D | C] -- C:\ProgramData\WLAN [2010/01/30 00:11:53 | 000,000,000 | ---D | C] -- C:\Program Files\Synaptics [2010/01/30 00:10:55 | 000,000,000 | ---D | C] -- C:\Windows\System32\SRSLabs [2010/01/30 00:10:54 | 000,000,000 | ---D | C] -- C:\Windows\System32\RTCOM [2010/01/30 00:10:41 | 001,784,352 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\WavesLib.dll [2010/01/30 00:10:41 | 000,339,968 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSTSXT.dll [2010/01/30 00:10:41 | 000,185,776 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSTSHD.dll [2010/01/30 00:10:41 | 000,167,936 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSHP360.dll [2010/01/30 00:10:41 | 000,135,168 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSWOW.dll [2010/01/30 00:10:40 | 001,933,312 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioEQ.dll [2010/01/30 00:10:40 | 000,290,304 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RP3DHT32.dll [2010/01/30 00:10:40 | 000,290,304 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RP3DAA32.dll [2010/01/30 00:10:40 | 000,159,744 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPO20.dll [2010/01/30 00:10:40 | 000,126,976 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPO.dll [2010/01/30 00:10:39 | 000,160,256 | ---- | C] (Fortemedia Corporation) -- C:\Windows\System32\FMAPO.dll [2010/01/30 00:10:39 | 000,000,000 | -H-D | C] -- C:\Program Files\Temp [2010/01/30 00:10:39 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information [2010/01/30 00:10:39 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek [2010/01/30 00:10:35 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield [2010/01/30 00:10:24 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\Windows\System32\CSVer.dll [2010/01/30 00:10:24 | 000,000,000 | ---D | C] -- C:\Program Files\Intel [2010/01/29 23:56:15 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\Adobe [2010/01/29 23:55:56 | 000,000,000 | ---D | C] -- C:\Windows\System32\Macromed [2010/01/29 23:55:13 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Local\Adobe [2010/01/29 23:54:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe [2010/01/29 23:54:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe [2010/01/29 23:54:53 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe [2010/01/29 23:54:17 | 000,000,000 | -HSD | C] -- C:\Windows\Installer [2010/01/29 23:49:25 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\Documents\Downloads [2010/01/29 23:47:12 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Local\Google [2010/01/29 23:47:01 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Local\Deployment [2010/01/29 23:47:01 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Local\Apps [2010/01/29 23:36:25 | 000,000,000 | ---D | C] -- C:\Program Files\uTorrent [2010/01/29 23:35:39 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\uTorrent [2010/01/29 23:35:08 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Local\cache [2010/01/29 23:35:07 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\Macromedia [2010/01/29 23:35:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Gadu-Gadu 10 [2010/01/29 23:33:40 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\Media Player Classic [2010/01/29 23:28:49 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\Gadu-Gadu 10 [2010/01/29 23:27:50 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\Documents\gretl [2010/01/29 23:27:50 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\gretl [2010/01/29 23:23:36 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Searches [2010/01/29 23:23:24 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\Identities [2010/01/29 23:23:23 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Contacts [2010/01/29 23:23:15 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Local\VirtualStore [2010/01/29 23:23:13 | 000,000,000 | --SD | C] -- C:\Users\Pitmaster\AppData\Roaming\Microsoft [2010/01/29 23:23:13 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Videos [2010/01/29 23:23:13 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Saved Games [2010/01/29 23:23:13 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Pictures [2010/01/29 23:23:13 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Music [2010/01/29 23:23:13 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Links [2010/01/29 23:23:13 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Favorites [2010/01/29 23:23:13 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Downloads [2010/01/29 23:23:13 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Documents [2010/01/29 23:23:13 | 000,000,000 | R--D | C] -- C:\Users\Pitmaster\Desktop [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\AppData\Local\Temporary Internet Files [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\Templates [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\Start Menu [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\SendTo [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\Recent [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\PrintHood [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\NetHood [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\Documents\My Videos [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\Documents\My Pictures [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\Documents\My Music [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\My Documents [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\Local Settings [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\AppData\Local\History [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\Cookies [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\Application Data [2010/01/29 23:23:13 | 000,000,000 | -HSD | C] -- C:\Users\Pitmaster\AppData\Local\Application Data [2010/01/29 23:23:13 | 000,000,000 | -H-D | C] -- C:\Users\Pitmaster\AppData [2010/01/29 23:23:13 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Local\Temp [2010/01/29 23:23:13 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Local\Microsoft [2010/01/29 23:23:13 | 000,000,000 | ---D | C] -- C:\Users\Pitmaster\AppData\Roaming\Media Center Programs [2010/01/29 23:22:54 | 000,000,000 | -HSD | C] -- C:\Recovery [2010/01/29 18:13:20 | 000,000,000 | ---D | C] -- C:\samsung [2010/01/29 17:06:00 | 000,000,000 | ---D | C] -- C:\SEU [2010/01/27 23:32:45 | 000,000,000 | -HSD | C] -- C:\Config.Msi [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2010/02/03 01:11:07 | 001,310,720 | -HS- | M] () -- C:\Users\Pitmaster\NTUSER.DAT [2010/02/03 00:55:12 | 000,014,608 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2010/02/03 00:55:12 | 000,014,608 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2010/02/03 00:52:00 | 000,001,074 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-885135248-2290267611-3300115028-1001UA.job [2010/02/03 00:48:01 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT [2010/02/03 00:47:54 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2010/02/03 00:47:49 | 210,652,742 | ---- | M] () -- C:\Windows\MEMORY.DMP [2010/02/03 00:47:48 | 2384,941,056 | -HS- | M] () -- C:\hiberfil.sys [2010/02/03 00:44:09 | 000,200,762 | ---- | M] () -- C:\Users\Pitmaster\Desktop\process explorer.jpg [2010/02/03 00:09:19 | 000,002,432 | ---- | M] () -- C:\Users\Pitmaster\AppData\Local\TempVK3992.html [2010/02/03 00:09:19 | 000,002,089 | ---- | M] () -- C:\Users\Pitmaster\AppData\Local\Tempow3992.html [2010/02/02 23:54:53 | 003,319,457 | -H-- | M] () -- C:\Users\Pitmaster\AppData\Local\IconCache.db [2010/02/02 23:53:16 | 000,001,100 | ---- | M] () -- C:\Users\Public\Desktop\Ad-Aware.lnk [2010/02/02 23:52:01 | 000,001,022 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-885135248-2290267611-3300115028-1001Core.job [2010/02/02 22:33:45 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_SABI_01009.Wdf [2010/02/01 16:44:32 | 000,335,636 | ---- | M] () -- C:\Users\Pitmaster\Desktop\4.png [2010/02/01 16:37:00 | 000,000,056 | -H-- | M] () -- C:\ProgramData\ezsidmv.dat [2010/02/01 16:32:48 | 000,002,503 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk [2010/02/01 15:21:24 | 000,393,983 | ---- | M] () -- C:\Users\Pitmaster\Desktop\3.png [2010/02/01 15:20:48 | 000,489,246 | ---- | M] () -- C:\Users\Pitmaster\Desktop\2.png [2010/02/01 15:19:55 | 000,440,136 | ---- | M] () -- C:\Users\Pitmaster\Desktop\1.png [2010/02/01 10:44:46 | 000,713,888 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI [2010/02/01 10:44:46 | 000,615,360 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2010/02/01 10:44:46 | 000,103,702 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2010/02/01 10:44:18 | 000,000,375 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts.ics [2010/01/31 21:50:53 | 000,084,512 | ---- | M] () -- C:\Users\Pitmaster\AppData\Local\GDIPFONTCACHEV1.DAT [2010/01/31 21:50:37 | 000,339,808 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2010/01/31 21:45:05 | 000,000,940 | ---- | M] () -- C:\Users\Pitmaster\Desktop\gretl.lnk [2010/01/30 21:25:52 | 000,000,478 | ---- | M] () -- C:\Windows\win.ini [2010/01/30 21:25:08 | 000,002,432 | ---- | M] () -- C:\Users\Pitmaster\AppData\Local\TempkE1372.html [2010/01/30 21:25:08 | 000,002,089 | ---- | M] () -- C:\Users\Pitmaster\AppData\Local\TempET1372.html [2010/01/30 12:51:26 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf [2010/01/30 08:06:04 | 000,039,252 | ---- | M] () -- C:\Windows\System32\license.rtf [2010/01/30 08:00:22 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK [2010/01/30 02:37:21 | 000,001,050 | ---- | M] () -- C:\Users\Pitmaster\Desktop\Chrome.lnk [2010/01/30 01:58:39 | 000,000,904 | ---- | M] () -- C:\Users\Pitmaster\Desktop\Moje dokumenty - Shortcut.lnk [2010/01/30 01:58:23 | 000,000,473 | ---- | M] () -- C:\Users\Pitmaster\Desktop\TEMP_PART01 (D) - Shortcut.lnk [2010/01/30 01:18:31 | 000,001,031 | ---- | M] () -- C:\Users\Public\Desktop\Microsoft Security Essentials.lnk [2010/01/30 00:42:03 | 000,003,700 | ---- | M] () -- C:\Windows\HotFixList.ini [2010/01/30 00:33:23 | 000,524,288 | -HS- | M] () -- C:\Users\Pitmaster\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms [2010/01/30 00:33:23 | 000,524,288 | -HS- | M] () -- C:\Users\Pitmaster\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms [2010/01/30 00:33:23 | 000,065,536 | -HS- | M] () -- C:\Users\Pitmaster\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf [2010/01/30 00:33:21 | 000,002,432 | ---- | M] () -- C:\Users\Pitmaster\AppData\Local\TempbO2948.html [2010/01/30 00:33:21 | 000,002,089 | ---- | M] () -- C:\Users\Pitmaster\AppData\Local\Tempkt2948.html [2010/01/30 00:13:37 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_KMDFMEMIO_01005.Wdf [2010/01/30 00:11:57 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_SynTP_01000.Wdf [2010/01/30 00:01:48 | 000,000,892 | ---- | M] () -- C:\Users\Pitmaster\Desktop\Downloads - Shortcut.lnk [2010/01/29 23:48:44 | 000,002,275 | ---- | M] () -- C:\Users\Pitmaster\Desktop\Google Chrome.lnk [2010/01/29 23:36:25 | 000,000,913 | ---- | M] () -- C:\Users\Public\Desktop\µTorrent.lnk [2010/01/29 23:32:50 | 000,001,341 | ---- | M] () -- C:\Users\Pitmaster\Desktop\Broco.lnk [2010/01/29 23:23:13 | 000,000,020 | -HS- | M] () -- C:\Users\Pitmaster\ntuser.ini [2010/01/29 21:03:38 | 000,000,002 | ---- | M] () -- C:\$UpgDrv$ [2010/01/11 15:54:11 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2010/01/11 15:54:11 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010/02/03 00:44:09 | 000,200,762 | ---- | C] () -- C:\Users\Pitmaster\Desktop\process explorer.jpg [2010/02/03 00:32:35 | 210,652,742 | ---- | C] () -- C:\Windows\MEMORY.DMP [2010/02/03 00:06:35 | 000,002,432 | ---- | C] () -- C:\Users\Pitmaster\AppData\Local\TempVK3992.html [2010/02/03 00:06:35 | 000,002,089 | ---- | C] () -- C:\Users\Pitmaster\AppData\Local\Tempow3992.html [2010/02/02 23:53:16 | 000,001,100 | ---- | C] () -- C:\Users\Public\Desktop\Ad-Aware.lnk [2010/02/02 22:33:45 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_SABI_01009.Wdf [2010/02/01 16:44:32 | 000,335,636 | ---- | C] () -- C:\Users\Pitmaster\Desktop\4.png [2010/02/01 16:37:00 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat [2010/02/01 16:32:48 | 000,002,503 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk [2010/02/01 15:21:24 | 000,393,983 | ---- | C] () -- C:\Users\Pitmaster\Desktop\3.png [2010/02/01 15:20:48 | 000,489,246 | ---- | C] () -- C:\Users\Pitmaster\Desktop\2.png [2010/02/01 15:17:54 | 000,440,136 | ---- | C] () -- C:\Users\Pitmaster\Desktop\1.png [2010/01/31 21:45:05 | 000,000,940 | ---- | C] () -- C:\Users\Pitmaster\Desktop\gretl.lnk [2010/01/31 00:38:10 | 000,881,664 | ---- | C] () -- C:\Windows\System32\xvidcore.dll [2010/01/31 00:38:10 | 000,797,184 | ---- | C] () -- C:\Windows\System32\ac3filter.ax [2010/01/30 21:18:29 | 000,002,432 | ---- | C] () -- C:\Users\Pitmaster\AppData\Local\TempkE1372.html [2010/01/30 21:18:29 | 000,002,089 | ---- | C] () -- C:\Users\Pitmaster\AppData\Local\TempET1372.html [2010/01/30 12:51:26 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf [2010/01/30 08:01:22 | 2384,941,056 | -HS- | C] () -- C:\hiberfil.sys [2010/01/30 02:37:21 | 000,001,050 | ---- | C] () -- C:\Users\Pitmaster\Desktop\Chrome.lnk [2010/01/30 01:58:43 | 000,000,904 | ---- | C] () -- C:\Users\Pitmaster\Desktop\Moje dokumenty - Shortcut.lnk [2010/01/30 01:58:23 | 000,000,473 | ---- | C] () -- C:\Users\Pitmaster\Desktop\TEMP_PART01 (D) - Shortcut.lnk [2010/01/30 01:18:31 | 000,001,031 | ---- | C] () -- C:\Users\Public\Desktop\Microsoft Security Essentials.lnk [2010/01/30 00:40:58 | 000,000,135 | R--- | C] () -- C:\Windows\System32\lngEng.ini [2010/01/30 00:40:58 | 000,000,117 | ---- | C] () -- C:\Windows\System32\lngKor.ini [2010/01/30 00:16:11 | 000,000,804 | ---- | C] () -- C:\Windows\rdsetup.iss [2010/01/30 00:13:37 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_KMDFMEMIO_01005.Wdf [2010/01/30 00:12:29 | 000,000,874 | ---- | C] () -- C:\Windows\System32\WLL3141.cfgx [2010/01/30 00:11:59 | 000,003,700 | ---- | C] () -- C:\Windows\HotFixList.ini [2010/01/30 00:11:59 | 000,000,589 | ---- | C] () -- C:\Windows\dsetup.iss [2010/01/30 00:11:57 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_SynTP_01000.Wdf [2010/01/30 00:01:48 | 000,000,892 | ---- | C] () -- C:\Users\Pitmaster\Desktop\Downloads - Shortcut.lnk [2010/01/29 23:48:44 | 000,002,275 | ---- | C] () -- C:\Users\Pitmaster\Desktop\Google Chrome.lnk [2010/01/29 23:47:14 | 000,001,074 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-885135248-2290267611-3300115028-1001UA.job [2010/01/29 23:47:13 | 000,001,022 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-885135248-2290267611-3300115028-1001Core.job [2010/01/29 23:36:25 | 000,000,913 | ---- | C] () -- C:\Users\Public\Desktop\µTorrent.lnk [2010/01/29 23:35:07 | 000,002,432 | ---- | C] () -- C:\Users\Pitmaster\AppData\Local\TempbO2948.html [2010/01/29 23:35:07 | 000,002,089 | ---- | C] () -- C:\Users\Pitmaster\AppData\Local\Tempkt2948.html [2010/01/29 23:32:50 | 000,001,341 | ---- | C] () -- C:\Users\Pitmaster\Desktop\Broco.lnk [2010/01/29 23:23:13 | 001,310,720 | -HS- | C] () -- C:\Users\Pitmaster\NTUSER.DAT [2010/01/29 23:23:13 | 000,524,288 | -HS- | C] () -- C:\Users\Pitmaster\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms [2010/01/29 23:23:13 | 000,524,288 | -HS- | C] () -- C:\Users\Pitmaster\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms [2010/01/29 23:23:13 | 000,065,536 | -HS- | C] () -- C:\Users\Pitmaster\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf [2010/01/29 23:23:13 | 000,000,020 | -HS- | C] () -- C:\Users\Pitmaster\ntuser.ini [2010/01/29 21:25:40 | 000,383,562 | RHS- | C] () -- C:\bootmgr [2010/01/29 18:50:00 | 000,000,002 | ---- | C] () -- C:\$UpgDrv$ [2010/01/11 15:54:11 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS [2010/01/11 15:54:11 | 000,000,000 | RHS- | C] () -- C:\IO.SYS [2009/08/20 09:25:04 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll [2009/08/03 15:07:42 | 000,403,816 | ---- | C] () -- C:\Windows\System32\OGACheckControl.dll [2009/07/14 00:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll [2009/07/14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll [color=#E56717]========== LOP Check ==========[/color] [2010/01/30 00:33:21 | 000,000,000 | ---D | M] -- C:\Users\Pitmaster\AppData\Roaming\Gadu-Gadu 10 [2010/01/31 21:48:54 | 000,000,000 | ---D | M] -- C:\Users\Pitmaster\AppData\Roaming\gretl [2010/02/02 21:57:48 | 000,000,000 | ---D | M] -- C:\Users\Pitmaster\AppData\Roaming\uTorrent [2009/07/14 05:53:46 | 000,006,610 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< :Processes >[/color] [color=#A23BEC]< explorer.exe >[/color] [color=#A23BEC]< >[/color] [color=#A23BEC]< :OTL >[/color] [color=#A23BEC]< O13 - gopher Prefix: missing >[/color] [color=#A23BEC]< O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset...lineScanner.cab (Reg Error: Key error.) >[/color] Invalid Switch: download.eset...lineScanner.cab (Reg Error: Key error.) [color=#A23BEC]< O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found >[/color] Invalid Switch: pagefile) - File not found [color=#A23BEC]< O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. >[/color] [color=#A23BEC]< O34 - HKLM BootExecute: (autocheck autochk *) - File not found >[/color] [color=#A23BEC]< >[/color] [color=#A23BEC]< :Commands >[/color] [color=#A23BEC]< [emptytemp] >[/color] [color=#A23BEC]< [start explorer] >[/color] [color=#A23BEC]< [Reboot] >[/color] < End of report > [/log] OTL [extras.txt]: [log] OTL Extras logfile created on: 2/3/2010 1:10:32 AM - Run 3 OTL by OldTimer - Version 3.1.27.1 Folder = C:\Users\Pitmaster\Documents\Downloads Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 3.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 64.00% Memory free 6.00 Gb Paging File | 5.00 Gb Available in Paging File | 83.00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 151.24 Gb Total Space | 122.00 Gb Free Space | 80.67% Space Free | Partition Type: NTFS Drive D: | 68.64 Gb Total Space | 44.44 Gb Free Space | 64.75% Space Free | Partition Type: NTFS E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: PITMASTER-PC Current User Name: Pitmaster Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: On Skip Microsoft Files: On File Age = 30 Days Output = Standard [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>] .html [@ = ChromeHTML] -- C:\Users\Pitmaster\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam "{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}" = Samsung Recovery Solution III "{17283B95-21A8-4996-97DA-547A48DB266F}" = Easy Display Manager "{26A24AE4-039D-4CA4-87B4-2F83216018FF}" = Java(TM) 6 Update 18 "{3832FA99-2EDD-41E0-94AD-FBF9FABAFEF9}" = Atheros WLAN Client "{48B3FB4D-CE22-488C-8E9F-24EBB77EAC0F}" = Microsoft Security Essentials "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{5809E7CF-4DCF-11D4-9875-00105ACE7734}" = Logitech MouseWare 9.79.1 "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{E9EA2604-8AC9-47D2-8F4B-6BF60787A357}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581) "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{A0A77CDC-2419-4D5C-AD2C-E09E5926B806}" = Microsoft Antimalware "{AC76BA86-7AD7-1033-7B44-A93000000001}" = Adobe Reader 9.3 "{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0 "{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.1 "{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}" = Ad-Aware "{EF367AA4-070B-493C-9575-85BE59D789C9}" = Easy SpeedUp Manager "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "Ad-Aware" = Ad-Aware "Adobe Flash Player ActiveX" = Adobe Flash Player ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "ALLPlayer_is1" = ALLPlayer V4.X "ENTERPRISE" = Microsoft Office Enterprise 2007 "gretl_is1" = gretl version 1.8.7cvs "InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam "Microsoft Security Essentials" = Microsoft Security Essentials "SynTPDeinstKey" = Synaptics Pointing Device Driver "uTorrent" = µTorrent "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Google Chrome" = Google Chrome [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 1/30/2010 7:36:00 PM | Computer Name = Pitmaster-PC | Source = Application Error | ID = 1000 Description = Faulting application name: divx-2.0.exe, version: 0.0.0.0, time stamp: 0x423c3000 Faulting module name: ntdll.dll, version: 6.1.7600.16385, time stamp: 0x4a5bdadb Exception code: 0xc0000005 Fault offset: 0x00051ffe Faulting process id: 0xb74 Faulting application start time: 0x01caa204f2710a27 Faulting application path: C:\Users\Pitmaster\Documents\Downloads\divx-2.0.exe Faulting module path: C:\Windows\SYSTEM32\ntdll.dll Report Id: 383ee89a-0df8-11df-b51d-0024540e79dc Error - 1/31/2010 4:52:05 PM | Computer Name = Pitmaster-PC | Source = Google Update | ID = 20 Description = Error - 2/1/2010 9:19:19 AM | Computer Name = Pitmaster-PC | Source = Google Update | ID = 20 Description = Error - 2/2/2010 11:36:07 AM | Computer Name = Pitmaster-PC | Source = Google Update | ID = 20 Description = Error - 2/2/2010 4:38:58 PM | Computer Name = Pitmaster-PC | Source = Application Error | ID = 1000 Description = Faulting application name: MSetup.exe, version: 1.0.0.6, time stamp: 0x4a42ff94 Faulting module name: MSetup.exe, version: 1.0.0.6, time stamp: 0x4a42ff94 Exception code: 0x40000015 Fault offset: 0x0002f9a5 Faulting process id: 0x774 Faulting application start time: 0x01caa447bcaacafe Faulting application path: C:\Windows.old\Windows\MSetup\MSetup.exe Faulting module path: C:\Windows.old\Windows\MSetup\MSetup.exe Report Id: fc7294ff-103a-11df-b513-0024540e79dc Error - 2/2/2010 4:39:17 PM | Computer Name = Pitmaster-PC | Source = Application Error | ID = 1000 Description = Faulting application name: MSetup.exe, version: 1.0.0.6, time stamp: 0x4a42ff94 Faulting module name: MSetup.exe, version: 1.0.0.6, time stamp: 0x4a42ff94 Exception code: 0x40000015 Fault offset: 0x0002f9a5 Faulting process id: 0xaa8 Faulting application start time: 0x01caa447c7b0c229 Faulting application path: C:\Windows.old\Windows\MSetup\MSetup.exe Faulting module path: C:\Windows.old\Windows\MSetup\MSetup.exe Report Id: 0818e31c-103b-11df-b513-0024540e79dc Error - 2/2/2010 6:53:27 PM | Computer Name = Pitmaster-PC | Source = Lavasoft Ad-Aware Service | ID = 0 Description = Error - 2/2/2010 7:34:35 PM | Computer Name = Pitmaster-PC | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Program Files\Lavasoft\Ad-Aware\ShellExt.dll". Dependent Assembly Microsoft.VC90.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 2/2/2010 7:40:50 PM | Computer Name = Pitmaster-PC | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Program Files\Lavasoft\Ad-Aware\ShellExt.dll". Dependent Assembly Microsoft.VC90.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8" could not be found. Please use sxstrace.exe for detailed diagnosis. Error - 2/2/2010 7:49:45 PM | Computer Name = Pitmaster-PC | Source = SideBySide | ID = 16842785 Description = Activation context generation failed for "C:\Program Files\Lavasoft\Ad-Aware\ShellExt.dll". Dependent Assembly Microsoft.VC90.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8" could not be found. Please use sxstrace.exe for detailed diagnosis. [ System Events ] Error - 2/2/2010 8:05:40 PM | Computer Name = Pitmaster-PC | Source = Service Control Manager | ID = 7001 Description = The Computer Browser service depends on the Server service which failed to start because of the following error: %%1068 Error - 2/2/2010 8:05:40 PM | Computer Name = Pitmaster-PC | Source = Service Control Manager | ID = 7001 Description = The Server service depends on the Security Accounts Manager service which failed to start because of the following error: %%1058 Error - 2/2/2010 8:05:40 PM | Computer Name = Pitmaster-PC | Source = Service Control Manager | ID = 7001 Description = The Computer Browser service depends on the Server service which failed to start because of the following error: %%1068 Error - 2/2/2010 8:05:40 PM | Computer Name = Pitmaster-PC | Source = Service Control Manager | ID = 7001 Description = The Server service depends on the Security Accounts Manager service which failed to start because of the following error: %%1058 Error - 2/2/2010 8:05:40 PM | Computer Name = Pitmaster-PC | Source = Service Control Manager | ID = 7001 Description = The Computer Browser service depends on the Server service which failed to start because of the following error: %%1068 Error - 2/2/2010 8:07:48 PM | Computer Name = Pitmaster-PC | Source = Service Control Manager | ID = 7001 Description = The Server service depends on the Security Accounts Manager service which failed to start because of the following error: %%1058 Error - 2/2/2010 8:07:48 PM | Computer Name = Pitmaster-PC | Source = Service Control Manager | ID = 7001 Description = The Computer Browser service depends on the Server service which failed to start because of the following error: %%1068 Error - 2/2/2010 8:07:48 PM | Computer Name = Pitmaster-PC | Source = Service Control Manager | ID = 7001 Description = The Server service depends on the Security Accounts Manager service which failed to start because of the following error: %%1058 Error - 2/2/2010 8:07:48 PM | Computer Name = Pitmaster-PC | Source = Service Control Manager | ID = 7001 Description = The Computer Browser service depends on the Server service which failed to start because of the following error: %%1068 Error - 2/2/2010 8:07:48 PM | Computer Name = Pitmaster-PC | Source = Service Control Manager | ID = 7001 Description = The Server service depends on the Security Accounts Manager service which failed to start because of the following error: %%1058 < End of report > [/log] mbam log: [log] Malwarebytes' Anti-Malware 1.44 Wersja bazy definicji: 3681 Windows 6.1.7600 Internet Explorer 8.0.7600.16385 2/3/2010 9:12:34 AM mbam-log-2010-02-03 (09-12-34).txt Typ skanowania: Pe³ne skanowanie (C:\|D:\|) Przeskanowane obiekty: 185566 Up³ynê³o: 56 minute(s), 8 second(s) Zainfekowane procesy w pamiêci: 0 Zainfekowane modu³y pamiêci: 0 Zainfekowane klucze rejestru: 0 Zainfekowane wartoœci rejestru: 0 Zainfekowane pliki rejestru: 0 Zainfekowane foldery: 0 Zainfekowane pliki: 0 Zainfekowane procesy w pamiêci: (Nie wykryto groŸnych plików) Zainfekowane modu³y pamiêci: (Nie wykryto groŸnych plików) Zainfekowane klucze rejestru: (Nie wykryto groŸnych plików) Zainfekowane wartoœci rejestru: (Nie wykryto groŸnych plików) Zainfekowane pliki rejestru: (Nie wykryto groŸnych plików) Zainfekowane foldery: (Nie wykryto groŸnych plików) Zainfekowane pliki: (Nie wykryto groŸnych plików) [/log]
Pitmaster komentarz 3 lutego 2010 Autor komentarz 3 lutego 2010 Dziękuje za pomoc... czyli jaka może być przyczyna tego zacinania ...? Sprawy związane z hardware ? Bo na touchpadzie mam tak samo więc to nie jest wina myszki ;/Co jest interesujace ... problem ten wystepuje tylko w domu w moim pokoju...gdy jestem na uczelni to nie ma zadnych problemow. Wiec jaka moze byc tego przyczyna?
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.