Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- OTL logfile created on: 11/27/2011 10:09:49 AM - Run 2
- OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Oliver Tran\Desktop\New folder
- 64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
- Internet Explorer (Version = 9.0.8112.16421)
- Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
- 3.75 Gb Total Physical Memory | 2.03 Gb Available Physical Memory | 54.27% Memory free
- 7.49 Gb Paging File | 5.32 Gb Available in Paging File | 70.94% Paging File free
- Paging file location(s): ?:\pagefile.sys [binary data]
- %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
- Drive C: | 250.63 Gb Total Space | 45.68 Gb Free Space | 18.22% Space Free | Partition Type: NTFS
- Drive D: | 47.46 Gb Total Space | 35.53 Gb Free Space | 74.86% Space Free | Partition Type: NTFS
- Computer Name: OLIVERS-PC | User Name: Oliver Tran | Logged in as Administrator.
- Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
- Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
- [color=#E56717]========== Processes (SafeList) ==========[/color]
- PRC - C:\Users\Oliver Tran\Desktop\New folder\OTL.exe (OldTimer Tools)
- PRC - C:\Users\Oliver Tran\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe (Google)
- PRC - C:\Program Files (x86)\IObit\Advanced SystemCare 5\ASCTray.exe (IObit)
- PRC - C:\Program Files (x86)\IObit\Advanced SystemCare 5\ASCService.exe (IObit)
- PRC - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\ATH.exe (Apple Inc.)
- PRC - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\SyncServer.exe (Apple Inc.)
- PRC - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
- PRC - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe (ESET)
- PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
- PRC - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
- PRC - C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe (TeamViewer GmbH)
- PRC - C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe (WIBU-SYSTEMS AG)
- PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
- PRC - C:\Windows\qnote.exe (The High Roller © Inc.)
- PRC - C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (Microsoft Corporation)
- PRC - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe (Adobe Systems Incorporated)
- PRC - C:\Program Files (x86)\MagicDisc\MagicDisc.exe (MagicISO, Inc.)
- PRC - C:\Program Files (x86)\SMINST\BLService.exe ()
- [color=#E56717]========== Modules (No Company Name) ==========[/color]
- MOD - C:\Users\Oliver Tran\AppData\Local\Google\Chrome\Application\15.0.874.121\ppgooglenaclpluginchrome.dll ()
- MOD - C:\Users\Oliver Tran\AppData\Local\Google\Chrome\Application\15.0.874.121\pdf.dll ()
- MOD - C:\Users\Oliver Tran\AppData\Local\Google\Chrome\Application\15.0.874.121\avutil-51.dll ()
- MOD - C:\Users\Oliver Tran\AppData\Local\Google\Chrome\Application\15.0.874.121\avformat-53.dll ()
- MOD - C:\Users\Oliver Tran\AppData\Local\Google\Chrome\Application\15.0.874.121\avcodec-53.dll ()
- MOD - C:\Users\Oliver Tran\AppData\Local\Google\Chrome\Application\15.0.874.121\gcswf32.dll ()
- MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\32f68764be7200d3796b55e377311245\Microsoft.VisualBasic.ni.dll ()
- MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\b2622080e047040fa044dd21a04ff10d\System.Runtime.Remoting.ni.dll ()
- MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\6e592e424a204aafeadbe22b6b31b9db\System.Windows.Forms.ni.dll ()
- MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\3b2cfd85528a27eb71dc41d8067359a1\System.Drawing.ni.dll ()
- MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\130ad4d9719e566ca933ac7158a04203\System.Xml.ni.dll ()
- MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\2d5bcbeb9475ef62189f605bcca1cec6\System.Configuration.ni.dll ()
- MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\System\abab08afa60a6f06bdde0fcc9649c379\System.ni.dll ()
- MOD - C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\a1a82db68b3badc7c27ea1f6579d22c5\mscorlib.ni.dll ()
- MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll ()
- MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll ()
- [color=#E56717]========== Win32 Services (SafeList) ==========[/color]
- SRV:[b]64bit:[/b] - (ekrn) -- C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe (ESET)
- SRV:[b]64bit:[/b] - (!SASCORE) -- C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE (SUPERAntiSpyware.com)
- SRV:[b]64bit:[/b] - (hpsrv) -- C:\Windows\SysNative\hpservice.exe (Hewlett-Packard Company)
- SRV:[b]64bit:[/b] - (UxTuneUp) -- C:\Windows\SysNative\uxtuneup.dll (TuneUp Software)
- SRV:[b]64bit:[/b] - (STacSV) -- C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\stacsv64.exe (IDT, Inc.)
- SRV:[b]64bit:[/b] - (AMD External Events Utility) -- C:\Windows\SysNative\atiesrxx.exe (AMD)
- SRV:[b]64bit:[/b] - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
- SRV:[b]64bit:[/b] - (AppMgmt) -- C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
- SRV:[b]64bit:[/b] - (AESTFilters) -- C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe (Andrea Electronics Corporation)
- SRV:[b]64bit:[/b] - (AgereModemAudio) -- C:\Program Files\LSI SoftModem\agr64svc.exe (Agere Systems)
- SRV - (AdvancedSystemCareService5) -- C:\Program Files (x86)\IObit\Advanced SystemCare 5\ASCService.exe (IObit)
- SRV - (IHA_MessageCenter) -- C:\Program Files (x86)\Verizon\IHA_MessageCenter\Bin\Verizon_IHAMessageCenter.exe (Verizon)
- SRV - (MBAMService) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
- SRV - (TeamViewer6) -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe (TeamViewer GmbH)
- SRV - (CodeMeter.exe) -- C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe (WIBU-SYSTEMS AG)
- SRV - (cmdagent) -- C:\Program Files (x86)\COMODO\COMODO Internet Security\cmdagent.exe (COMODO)
- SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
- SRV - (UxTuneUp) -- C:\Windows\SysWOW64\uxtuneup.dll (TuneUp Software)
- SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
- SRV - (SwitchBoard) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
- SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
- SRV - (Recovery Service for Windows) -- C:\Program Files (x86)\SMINST\BLService.exe ()
- SRV - (TVCapSvc) TV Background Capture Service (TVBCS) -- C:\Program Files (x86)\Hewlett-Packard\Media\TV\Kernel\TV\TVCapSvc.exe ()
- SRV - (TVSched) TV Task Scheduler (TVTS) -- C:\Program Files (x86)\Hewlett-Packard\Media\TV\Kernel\TV\TVSched.exe ()
- [color=#E56717]========== Driver Services (SafeList) ==========[/color]
- DRV:[b]64bit:[/b] - (MBAMProtector) -- C:\Windows\SysNative\drivers\mbam.sys (Malwarebytes Corporation)
- DRV:[b]64bit:[/b] - (eamonm) -- C:\Windows\SysNative\drivers\eamonm.sys (ESET)
- DRV:[b]64bit:[/b] - (epfw) -- C:\Windows\SysNative\drivers\epfw.sys (ESET)
- DRV:[b]64bit:[/b] - (ehdrv) -- C:\Windows\SysNative\drivers\ehdrv.sys (ESET)
- DRV:[b]64bit:[/b] - (epfwwfp) -- C:\Windows\SysNative\drivers\epfwwfp.sys (ESET)
- DRV:[b]64bit:[/b] - (EpfwLWF) -- C:\Windows\SysNative\drivers\EpfwLWF.sys (ESET)
- DRV:[b]64bit:[/b] - (Point64) -- C:\Windows\SysNative\drivers\point64.sys (Microsoft Corporation)
- DRV:[b]64bit:[/b] - (SASDIFSV) -- C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys (SUPERAdBlocker.com and SUPERAntiSpyware.com)
- DRV:[b]64bit:[/b] - (SASKUTIL) -- C:\Program Files\SUPERAntiSpyware\saskutil64.sys (SUPERAdBlocker.com and SUPERAntiSpyware.com)
- DRV:[b]64bit:[/b] - (hpdskflt) -- C:\Windows\SysNative\drivers\hpdskflt.sys (Hewlett-Packard Company)
- DRV:[b]64bit:[/b] - (Accelerometer) -- C:\Windows\SysNative\drivers\Accelerometer.sys (Hewlett-Packard Company)
- DRV:[b]64bit:[/b] - (USBAAPL64) -- C:\Windows\SysNative\drivers\usbaapl64.sys (Apple, Inc.)
- DRV:[b]64bit:[/b] - (IDMWFP) -- C:\Windows\SysNative\drivers\idmwfp.sys (Tonec Inc.)
- DRV:[b]64bit:[/b] - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
- DRV:[b]64bit:[/b] - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
- DRV:[b]64bit:[/b] - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
- DRV:[b]64bit:[/b] - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
- DRV:[b]64bit:[/b] - (RdpVideoMiniport) -- C:\Windows\SysNative\drivers\rdpvideominiport.sys (Microsoft Corporation)
- DRV:[b]64bit:[/b] - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek )
- DRV:[b]64bit:[/b] - (hcwhdpvr) -- C:\Windows\SysNative\drivers\hcwhdpvr.sys (Hauppauge, Inc.)
- DRV:[b]64bit:[/b] - (SynTP) -- C:\Windows\SysNative\drivers\SynTP.sys (Synaptics Incorporated)
- DRV:[b]64bit:[/b] - (SCDEmu) -- C:\Windows\SysNative\drivers\scdemu.sys (PowerISO Computing, Inc.)
- DRV:[b]64bit:[/b] - (STHDA) -- C:\Windows\SysNative\drivers\stwrt64.sys (IDT, Inc.)
- DRV:[b]64bit:[/b] - (athr) -- C:\Windows\SysNative\drivers\athrx.sys (Atheros Communications, Inc.)
- DRV:[b]64bit:[/b] - (atikmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (ATI Technologies Inc.)
- DRV:[b]64bit:[/b] - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
- DRV:[b]64bit:[/b] - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
- DRV:[b]64bit:[/b] - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
- DRV:[b]64bit:[/b] - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
- DRV:[b]64bit:[/b] - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
- DRV:[b]64bit:[/b] - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
- DRV:[b]64bit:[/b] - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
- DRV:[b]64bit:[/b] - (HpqKbFiltr) -- C:\Windows\SysNative\drivers\HpqKbFiltr.sys (Hewlett-Packard Development Company, L.P.)
- DRV:[b]64bit:[/b] - (mcdbus) -- C:\Windows\SysNative\drivers\mcdbus.sys (MagicISO, Inc.)
- DRV:[b]64bit:[/b] - (AgereSoftModem) -- C:\Windows\SysNative\drivers\agrsm64.sys (Agere Systems)
- DRV:[b]64bit:[/b] - (USBModem) -- C:\Windows\SysNative\drivers\lgx64modem.sys (LG Electronics Inc.)
- DRV:[b]64bit:[/b] - (UsbDiag) -- C:\Windows\SysNative\drivers\lgx64diag.sys (LG Electronics Inc.)
- DRV:[b]64bit:[/b] - (usbbus) -- C:\Windows\SysNative\drivers\lgx64bus.sys (LG Electronics Inc.)
- DRV:[b]64bit:[/b] - (RTL8169) -- C:\Windows\SysNative\drivers\Rtlh64.sys (Realtek Corporation )
- DRV:[b]64bit:[/b] - (JMCR) -- C:\Windows\SysNative\drivers\jmcr.sys (JMicron Technology Corporation)
- DRV:[b]64bit:[/b] - (usbfilter) -- C:\Windows\SysNative\drivers\usbfilter.sys (Advanced Micro Devices Inc.)
- DRV:[b]64bit:[/b] - (AtiPcie) ATI PCI Express (3GIO) -- C:\Windows\SysNative\drivers\AtiPcie.sys (ATI Technologies Inc.)
- DRV:[b]64bit:[/b] - (GEARAspiWDM) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys (GEAR Software Inc.)
- DRV:[b]64bit:[/b] - (enecir) -- C:\Windows\SysNative\drivers\enecir.sys (ENE TECHNOLOGY INC.)
- DRV:[b]64bit:[/b] - (PinnacleMarvinAVS) -- C:\Windows\SysNative\drivers\MarvinAVS64.sys (Pinnacle a division of Avid Technology, Inc.)
- DRV:[b]64bit:[/b] - (MarvinBus) -- C:\Windows\SysNative\drivers\MarvinBus64.sys (Pinnacle Systems GmbH)
- DRV - (TuneUpUtilitiesDrv) -- C:\Program Files (x86)\TuneUp Utilities 2010\TuneUpUtilitiesDriver64.sys (TuneUp Software)
- DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)
- DRV - (mcdbus) -- C:\Windows\SysWOW64\drivers\mcdbus.sys (MagicISO, Inc.)
- DRV - ({55662437-DA8C-40c0-AADA-2C816A897A49}) -- C:\Program Files (x86)\Hewlett-Packard\Media\DVD\000.fcl (CyberLink Corp.)
- [color=#E56717]========== Standard Registry (SafeList) ==========[/color]
- [color=#E56717]========== Internet Explorer ==========[/color]
- IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb
- IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=91&bd=Pavilion&pf=cnnb
- IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.poony.info/
- IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.supportforums.net/
- IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
- IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
- IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
- [color=#E56717]========== FireFox ==========[/color]
- FF - prefs.js..browser.startup.homepage: "http://www.supportforums.net/index.php"
- FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
- FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
- FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
- FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
- FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
- FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
- FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
- FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
- FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
- FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
- FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
- FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Users\Oliver Tran\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
- FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Users\Oliver Tran\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
- FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Oliver Tran\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
- FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Oliver Tran\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
- 64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\PROGRAM FILES\ESET\ESET SMART SECURITY\MOZILLA THUNDERBIRD [2011/11/11 19:13:38 | 000,000,000 | ---D | M]
- FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2011/11/11 19:13:38 | 000,000,000 | ---D | M]
- FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\mozilla_cc@internetdownloadmanager.com: C:\Users\Oliver Tran\AppData\Roaming\IDM\idmmzcc3 [2011/05/13 18:43:25 | 000,000,000 | ---D | M]
- FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey\Extensions\\mozilla_cc@internetdownloadmanager.com: C:\Users\Oliver Tran\AppData\Roaming\IDM\idmmzcc3 [2011/05/13 18:43:25 | 000,000,000 | ---D | M]
- [2010/09/07 15:16:12 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Oliver Tran\AppData\Roaming\Mozilla\Extensions
- [2010/09/07 15:16:12 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Oliver Tran\AppData\Roaming\Mozilla\Extensions\mozswing@mozswing.org
- [2011/03/29 19:34:35 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Oliver Tran\AppData\Roaming\Mozilla\Firefox\Profiles\g3iha29a.default\extensions
- () (No name found) -- C:\USERS\OLIVER TRAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G3IHA29A.DEFAULT\EXTENSIONS\{19503E42-CA3C-4C27-B1E2-9CDB2170EE34}.XPI
- () (No name found) -- C:\USERS\OLIVER TRAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G3IHA29A.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI
- () (No name found) -- C:\USERS\OLIVER TRAN\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\G3IHA29A.DEFAULT\EXTENSIONS\ADBLOCKPOPUPS@JESSEHAKANEN.NET.XPI
- [2010/09/07 00:51:40 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION
- [color=#E56717]========== Chrome ==========[/color]
- CHR - default_search_provider: Google (Enabled)
- CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
- CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
- CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Oliver Tran\AppData\Local\Google\Chrome\Application\15.0.874.121\gcswf32.dll
- CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32.dll
- CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll
- CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll
- CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll
- CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll
- CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll
- CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll
- CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll
- CHR - plugin: Java Deployment Toolkit 6.0.240.7 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
- CHR - plugin: Java(TM) Platform SE 6 U24 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
- CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
- CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrl.dll
- CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\PFiles\Plugins\np-mswmp.dll
- CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
- CHR - plugin: Native Client (Enabled) = C:\Users\Oliver Tran\AppData\Local\Google\Chrome\Application\15.0.874.121\ppGoogleNaClPluginChrome.dll
- CHR - plugin: Chrome PDF Viewer (Disabled) = C:\Users\Oliver Tran\AppData\Local\Google\Chrome\Application\15.0.874.121\pdf.dll
- CHR - plugin: Google Talk Plugin (Enabled) = C:\Users\Oliver Tran\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll
- CHR - plugin: Google Talk Plugin Video Accelerator (Enabled) = C:\Users\Oliver Tran\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll
- CHR - plugin: Windows Live\u0099 Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
- CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
- CHR - plugin: Google Update (Enabled) = C:\Users\Oliver Tran\AppData\Local\Google\Update\1.3.21.69\npGoogleUpdate3.dll
- CHR - plugin: Windows Presentation Foundation (Enabled) = c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
- CHR - plugin: Default Plug-in (Enabled) = default_plugin
- CHR - Extension: AdBlock = C:\Users\Oliver Tran\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.4.30_0\
- O1 HOSTS File: ([2011/07/16 16:20:11 | 000,000,635 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
- O1 - Hosts: 127.0.0.1 activate.adobe.com
- O1 - Hosts: 127.0.0.1 practivate.adobe.com
- O1 - Hosts: 127.0.0.1 ereg.adobe.com
- O1 - Hosts: 127.0.0.1 activate.wip3.adobe.com
- O1 - Hosts: 127.0.0.1 wip3.adobe.com
- O1 - Hosts: 127.0.0.1 3dns-3.adobe.com
- O1 - Hosts: 127.0.0.1 3dns-2.adobe.com
- O1 - Hosts: 127.0.0.1 adobe-dns.adobe.com
- O1 - Hosts: 127.0.0.1 adobe-dns-2.adobe.com
- O1 - Hosts: 127.0.0.1 adobe-dns-3.adobe.com
- O1 - Hosts: 127.0.0.1 ereg.wip3.adobe.com
- O1 - Hosts: 127.0.0.1 activate-sea.adobe.com
- O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
- O1 - Hosts: 127.0.0.1 activate-sjc0.adobe.com
- O1 - Hosts: 127.0.0.1 hl2rcv.adobe.com
- O1 - Hosts: 127.0.0.1 adobeereg.com
- O1 - Hosts: 127.0.0.1 adeactivate.adobe.com
- O1 - Hosts: 127.0.0.1 125.252.224.90
- O1 - Hosts: 127.0.0.1 125.252.224.91
- O2:[b]64bit:[/b] - BHO: (no name) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - No CLSID value found.
- O4:[b]64bit:[/b] - HKLM..\Run: [COMODO Internet Security] C:\Program Files (x86)\COMODO\COMODO Internet Security\cfp.exe (COMODO)
- O4:[b]64bit:[/b] - HKLM..\Run: [egui] C:\Program Files\ESET\ESET Smart Security\egui.exe (ESET)
- O4:[b]64bit:[/b] - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
- O4 - HKLM..\Run: [HP Health Check Scheduler] c:\Program Files (x86)\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe (Hewlett-Packard)
- O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
- O4 - HKLM..\Run: [Malwarebytes' Anti-Malware (reboot)] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
- O4 - HKCU..\Run: [Advanced SystemCare 5] C:\Program Files (x86)\IObit\Advanced SystemCare 5\ASCTray.exe (IObit)
- O4 - HKCU..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE (SUPERAntiSpyware.com)
- O4 - Startup: C:\Users\Oliver Tran\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MagicDisc.lnk = C:\Program Files (x86)\MagicDisc\MagicDisc.exe (MagicISO, Inc.)
- O4 - Startup: C:\Users\Oliver Tran\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\NoteStryker!.exe (MaiTriCks Inc.)
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableStatusMessages = 0
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: VerboseStatus = 0
- O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = [binary data]
- O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
- O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoViewContextMenu = 0
- O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoTrayItemsDisplay = 0
- O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoDispSettingsPage = 0
- O8:[b]64bit:[/b] - Extra context menu item: Download all links with IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm File not found
- O8:[b]64bit:[/b] - Extra context menu item: Download with IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm File not found
- O8:[b]64bit:[/b] - Extra context menu item: Download with Mipony - C:\Program Files (x86)\MiPony\Browser\IEContext.htm ()
- O8 - Extra context menu item: Download all links with IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm File not found
- O8 - Extra context menu item: Download with IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm File not found
- O8 - Extra context menu item: Download with Mipony - C:\Program Files (x86)\MiPony\Browser\IEContext.htm ()
- O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000010 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
- O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
- O13[b]64bit:[/b] - gopher Prefix: missing
- O13 - gopher Prefix: missing
- O15 - HKCU\..Trusted Ranges: Range1 ([http] in Local intranet)
- O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
- O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07)
- O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
- O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
- O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
- O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{67C5332F-FEFE-4899-9937-36649AED0A3D}: NameServer = 156.154.70.22,156.154.71.22
- O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6B377D2E-9A1F-4AA8-8AA0-EFF5DB8A58B7}: DhcpNameServer = 192.168.1.1
- O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6B377D2E-9A1F-4AA8-8AA0-EFF5DB8A58B7}: NameServer = 156.154.70.22,156.154.71.22
- O18:[b]64bit:[/b] - Protocol\Handler\grooveLocalGWS - No CLSID value found
- O18:[b]64bit:[/b] - Protocol\Handler\ms-help - No CLSID value found
- O18:[b]64bit:[/b] - Protocol\Handler\wlpg - No CLSID value found
- O20:[b]64bit:[/b] - AppInit_DLLs: (C:\Windows\system32\guard64.dll) - C:\Windows\SysNative\guard64.dll (COMODO)
- O20 - AppInit_DLLs: (C:\Windows\SysWOW64\guard32.dll) -C:\Windows\SysWOW64\guard32.dll (COMODO)
- O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
- O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
- O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
- O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found
- O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
- O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
- O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
- O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
- O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
- O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\Bronze1.jpg
- O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\Bronze1.jpg
- O32 - HKLM CDRom: AutoRun - 1
- O33 - MountPoints2\{68e7189e-0bd2-11e0-962a-00235a313bef}\Shell - "" = AutoRun
- O33 - MountPoints2\{68e7189e-0bd2-11e0-962a-00235a313bef}\Shell\AutoRun\command - "" = F:\LaunchU3.exe -a
- O33 - MountPoints2\{7d443675-1847-11e1-a4e7-00235a313bef}\Shell - "" = AutoRun
- O33 - MountPoints2\{7d443675-1847-11e1-a4e7-00235a313bef}\Shell\AutoRun\command - "" = F:\autorun.exe
- O33 - MountPoints2\F\Shell - "" = AutoRun
- O33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\autorun.exe
- O33 - MountPoints2\G\Shell - "" = AutoRun
- O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\LaunchU3.exe -a
- O34 - HKLM BootExecute: (autocheck autochk *)
- O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
- O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
- O35 - HKLM\..comfile [open] -- "%1" %*
- O35 - HKLM\..exefile [open] -- "%1" %*
- O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
- O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
- O37 - HKLM\...com [@ = comfile] -- "%1" %*
- O37 - HKLM\...exe [@ = exefile] -- "%1" %*
- NetSvcs:[b]64bit:[/b] UxTuneUp - C:\Windows\SysNative\uxtuneup.dll (TuneUp Software)
- NetSvcs:[b]64bit:[/b] AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
- MsConfig:64bit - State: "bootini" - Reg Error: Key error.
- MsConfig:64bit - State: "startup" - Reg Error: Key error.
- MsConfig:64bit - State: "services" - Reg Error: Key error.
- SafeBootMin:[b]64bit:[/b] !SASCORE - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE (SUPERAntiSpyware.com)
- SafeBootMin:[b]64bit:[/b] AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
- SafeBootMin:[b]64bit:[/b] Base - Driver Group
- SafeBootMin:[b]64bit:[/b] Boot Bus Extender - Driver Group
- SafeBootMin:[b]64bit:[/b] Boot file system - Driver Group
- SafeBootMin:[b]64bit:[/b] File system - Driver Group
- SafeBootMin:[b]64bit:[/b] Filter - Driver Group
- SafeBootMin:[b]64bit:[/b] HelpSvc - Service
- SafeBootMin:[b]64bit:[/b] MCODS - Reg Error: Value error.
- SafeBootMin:[b]64bit:[/b] PCI Configuration - Driver Group
- SafeBootMin:[b]64bit:[/b] PNP Filter - Driver Group
- SafeBootMin:[b]64bit:[/b] Primary disk - Driver Group
- SafeBootMin:[b]64bit:[/b] sacsvr - Service
- SafeBootMin:[b]64bit:[/b] SCSI Class - Driver Group
- SafeBootMin:[b]64bit:[/b] System Bus Extender - Driver Group
- SafeBootMin:[b]64bit:[/b] vmms - Service
- SafeBootMin:[b]64bit:[/b] WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
- SafeBootMin:[b]64bit:[/b] {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
- SafeBootMin:[b]64bit:[/b] {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
- SafeBootMin:[b]64bit:[/b] {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
- SafeBootMin:[b]64bit:[/b] {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
- SafeBootMin:[b]64bit:[/b] {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
- SafeBootMin:[b]64bit:[/b] {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
- SafeBootMin:[b]64bit:[/b] {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
- SafeBootMin:[b]64bit:[/b] {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
- SafeBootMin:[b]64bit:[/b] {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
- SafeBootMin:[b]64bit:[/b] {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
- SafeBootMin:[b]64bit:[/b] {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
- SafeBootMin:[b]64bit:[/b] {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
- SafeBootMin:[b]64bit:[/b] {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
- SafeBootMin:[b]64bit:[/b] {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
- SafeBootMin:[b]64bit:[/b] {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
- SafeBootMin:[b]64bit:[/b] {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
- SafeBootMin:[b]64bit:[/b] {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
- SafeBootMin: Base - Driver Group
- SafeBootMin: Boot Bus Extender - Driver Group
- SafeBootMin: Boot file system - Driver Group
- SafeBootMin: File system - Driver Group
- SafeBootMin: Filter - Driver Group
- SafeBootMin: HelpSvc - Service
- SafeBootMin: MCODS - Reg Error: Value error.
- SafeBootMin: PCI Configuration - Driver Group
- SafeBootMin: PNP Filter - Driver Group
- SafeBootMin: Primary disk - Driver Group
- SafeBootMin: sacsvr - Service
- SafeBootMin: SCSI Class - Driver Group
- SafeBootMin: System Bus Extender - Driver Group
- SafeBootMin: vmms - Service
- SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
- SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
- SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
- SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
- SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
- SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
- SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
- SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
- SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
- SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
- SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
- SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
- SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
- SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
- SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
- SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
- SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
- SafeBootNet:[b]64bit:[/b] !SASCORE - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE (SUPERAntiSpyware.com)
- SafeBootNet:[b]64bit:[/b] AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
- SafeBootNet:[b]64bit:[/b] Base - Driver Group
- SafeBootNet:[b]64bit:[/b] Boot Bus Extender - Driver Group
- SafeBootNet:[b]64bit:[/b] Boot file system - Driver Group
- SafeBootNet:[b]64bit:[/b] File system - Driver Group
- SafeBootNet:[b]64bit:[/b] Filter - Driver Group
- SafeBootNet:[b]64bit:[/b] HelpSvc - Service
- SafeBootNet:[b]64bit:[/b] Messenger - Service
- SafeBootNet:[b]64bit:[/b] NDIS Wrapper - Driver Group
- SafeBootNet:[b]64bit:[/b] NetBIOSGroup - Driver Group
- SafeBootNet:[b]64bit:[/b] NetDDEGroup - Driver Group
- SafeBootNet:[b]64bit:[/b] Network - Driver Group
- SafeBootNet:[b]64bit:[/b] NetworkProvider - Driver Group
- SafeBootNet:[b]64bit:[/b] PCI Configuration - Driver Group
- SafeBootNet:[b]64bit:[/b] PNP Filter - Driver Group
- SafeBootNet:[b]64bit:[/b] PNP_TDI - Driver Group
- SafeBootNet:[b]64bit:[/b] Primary disk - Driver Group
- SafeBootNet:[b]64bit:[/b] rdsessmgr - Service
- SafeBootNet:[b]64bit:[/b] sacsvr - Service
- SafeBootNet:[b]64bit:[/b] SCSI Class - Driver Group
- SafeBootNet:[b]64bit:[/b] Streams Drivers - Driver Group
- SafeBootNet:[b]64bit:[/b] System Bus Extender - Driver Group
- SafeBootNet:[b]64bit:[/b] TDI - Driver Group
- SafeBootNet:[b]64bit:[/b] vmms - Service
- SafeBootNet:[b]64bit:[/b] WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
- SafeBootNet:[b]64bit:[/b] WudfUsbccidDriver - Driver
- SafeBootNet:[b]64bit:[/b] {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
- SafeBootNet:[b]64bit:[/b] {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
- SafeBootNet:[b]64bit:[/b] {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
- SafeBootNet:[b]64bit:[/b] {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
- SafeBootNet:[b]64bit:[/b] {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
- SafeBootNet:[b]64bit:[/b] {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
- SafeBootNet:[b]64bit:[/b] {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
- SafeBootNet:[b]64bit:[/b] {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
- SafeBootNet:[b]64bit:[/b] {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
- SafeBootNet:[b]64bit:[/b] {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
- SafeBootNet:[b]64bit:[/b] {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
- SafeBootNet:[b]64bit:[/b] {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
- SafeBootNet:[b]64bit:[/b] {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
- SafeBootNet:[b]64bit:[/b] {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
- SafeBootNet:[b]64bit:[/b] {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
- SafeBootNet:[b]64bit:[/b] {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
- SafeBootNet:[b]64bit:[/b] {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
- SafeBootNet:[b]64bit:[/b] {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
- SafeBootNet:[b]64bit:[/b] {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
- SafeBootNet:[b]64bit:[/b] {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
- SafeBootNet:[b]64bit:[/b] {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
- SafeBootNet:[b]64bit:[/b] {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
- SafeBootNet: Base - Driver Group
- SafeBootNet: Boot Bus Extender - Driver Group
- SafeBootNet: Boot file system - Driver Group
- SafeBootNet: File system - Driver Group
- SafeBootNet: Filter - Driver Group
- SafeBootNet: HelpSvc - Service
- SafeBootNet: Messenger - Service
- SafeBootNet: NDIS Wrapper - Driver Group
- SafeBootNet: NetBIOSGroup - Driver Group
- SafeBootNet: NetDDEGroup - Driver Group
- SafeBootNet: Network - Driver Group
- SafeBootNet: NetworkProvider - Driver Group
- SafeBootNet: PCI Configuration - Driver Group
- SafeBootNet: PNP Filter - Driver Group
- SafeBootNet: PNP_TDI - Driver Group
- SafeBootNet: Primary disk - Driver Group
- SafeBootNet: rdsessmgr - Service
- SafeBootNet: sacsvr - Service
- SafeBootNet: SCSI Class - Driver Group
- SafeBootNet: Streams Drivers - Driver Group
- SafeBootNet: System Bus Extender - Driver Group
- SafeBootNet: TDI - Driver Group
- SafeBootNet: vmms - Service
- SafeBootNet: WudfUsbccidDriver - Driver
- SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
- SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
- SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
- SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
- SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
- SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
- SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
- SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
- SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
- SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
- SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
- SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
- SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
- SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
- SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
- SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
- SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
- SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
- SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
- SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
- SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
- SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
- ActiveX:[b]64bit:[/b] {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0
- ActiveX:[b]64bit:[/b] {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
- ActiveX:[b]64bit:[/b] {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
- ActiveX:[b]64bit:[/b] {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
- ActiveX:[b]64bit:[/b] {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
- ActiveX:[b]64bit:[/b] {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
- ActiveX:[b]64bit:[/b] {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
- ActiveX:[b]64bit:[/b] {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
- ActiveX:[b]64bit:[/b] {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
- ActiveX:[b]64bit:[/b] {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
- ActiveX:[b]64bit:[/b] {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
- ActiveX:[b]64bit:[/b] {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
- ActiveX:[b]64bit:[/b] {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
- ActiveX:[b]64bit:[/b] {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\System32\ie4uinit.exe -BaseSettings
- ActiveX:[b]64bit:[/b] {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\system32\Rundll32.exe C:\Windows\system32\mscories.dll,Install
- ActiveX:[b]64bit:[/b] {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
- ActiveX:[b]64bit:[/b] {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
- ActiveX:[b]64bit:[/b] {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
- ActiveX:[b]64bit:[/b] {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
- ActiveX:[b]64bit:[/b] {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4} - .NET Framework
- ActiveX:[b]64bit:[/b] {FEBEF00C-046D-438D-8A88-BF94A6C9E703} - .NET Framework
- ActiveX:[b]64bit:[/b] >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP
- ActiveX:[b]64bit:[/b] >{26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\System32\ie4uinit.exe -UserIconConfig
- ActiveX:[b]64bit:[/b] >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
- ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Microsoft VM
- ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0
- ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
- ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
- ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles(x86)%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
- ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
- ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
- ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
- ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
- ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
- ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
- ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
- ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
- ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} - .NET Framework
- ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
- ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\SysWOW64\ie4uinit.exe -BaseSettings
- ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
- ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
- ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
- ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
- ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
- ActiveX: {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4} - .NET Framework
- ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP
- ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\SysWOW64\ie4uinit.exe -UserIconConfig
- ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\Windows\SysWOW64\rundll32.exe" "C:\Windows\SysWOW64\iedkcs32.dll",BrandIEActiveSetup SIGNUP
- Drivers32:[b]64bit:[/b] msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
- Drivers32:[b]64bit:[/b] VIDC.FPS1 - frapsv64.dll (Beepa P/L)
- Drivers32:[b]64bit:[/b] vidc.tscc - C:\Windows\SysWOW64\tsccvid64.dll (TechSmith Corporation)
- Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
- Drivers32: msacm.l3codecp - C:\Windows\SysWow64\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
- Drivers32: msacm.vorbis - C:\Windows\SysWow64\vorbis.acm (HMS http://hp.vector.co.jp/authors/VA012897/)
- Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
- Drivers32: vidc.tscc - C:\Windows\SysWOW64\tsccvid.dll (TechSmith Corporation)
- CREATERESTOREPOINT
- Restore point Set: OTL Restore Point
- [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
- [2011/11/27 10:06:43 | 000,000,000 | ---D | C] -- C:\Users\Oliver Tran\AppData\Local\Adobe
- [2011/11/26 17:10:57 | 000,000,000 | ---D | C] -- C:\Users\Oliver Tran\AppData\Local\Apple Computer
- [2011/11/26 14:29:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 5
- [2011/11/26 01:47:01 | 000,000,000 | ---D | C] -- C:\Users\Oliver Tran\Desktop\Untitled
- [2011/11/26 01:08:05 | 000,000,000 | ---D | C] -- C:\Users\Oliver Tran\Desktop\New folder
- [2011/11/25 13:04:33 | 000,000,000 | ---D | C] -- C:\Users\Oliver Tran\Desktop\Everything
- [2011/11/25 12:21:10 | 000,406,528 | ---- | C] (Propellerhead Software AB) -- C:\Windows\SysWow64\ReWire.dll
- [2011/11/25 12:21:10 | 000,338,432 | ---- | C] (Propellerhead Software AB) -- C:\Windows\SysWow64\REX Shared Library.dll
- [2011/11/25 11:59:40 | 000,000,000 | ---D | C] -- C:\Users\Oliver Tran\Desktop\True Reason
- [2011/11/25 10:50:36 | 000,000,000 | ---D | C] -- C:\Users\Oliver Tran\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MagicDisc
- [2011/11/25 10:50:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MagicDisc
- [2011/11/25 10:48:35 | 000,255,552 | ---- | C] (MagicISO, Inc.) -- C:\Windows\SysWow64\drivers\mcdbus.sys
- [2011/11/25 10:48:35 | 000,255,552 | ---- | C] (MagicISO, Inc.) -- C:\Windows\SysNative\drivers\mcdbus.sys
- [2011/11/25 10:48:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MagicDisc
- [2011/11/24 19:09:04 | 000,000,000 | ---D | C] -- C:\Users\Oliver Tran\AppData\Roaming\vlc
- [2011/11/24 19:08:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
- [2011/11/24 19:08:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VideoLAN
- [2011/11/21 21:31:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
- [2011/11/21 21:27:59 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
- [2011/11/11 22:47:20 | 000,000,000 | ---D | C] -- C:\Users\Oliver Tran\AppData\Roaming\Mael
- [2011/11/11 22:41:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HxD Hex Editor
- [2011/11/11 22:41:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\HxD
- [2011/11/11 22:33:53 | 000,000,000 | -HSD | C] -- C:\Config.Msi
- [2011/11/11 19:13:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
- [2011/11/11 19:13:08 | 000,000,000 | ---D | C] -- C:\ProgramData\ESET
- [2011/11/11 19:13:08 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
- [2011/11/11 18:08:26 | 000,000,000 | ---D | C] -- C:\Users\Oliver Tran\AppData\Local\XboxMB
- [2011/11/11 18:08:16 | 000,000,000 | ---D | C] -- C:\Users\Oliver Tran\AppData\Local\Xenocode
- [2011/11/02 19:41:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
- [2011/10/30 10:53:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WCF RIA Services V1.0 SP1
- [2011/10/30 10:53:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 4 SDK
- [2011/10/28 21:13:55 | 000,000,000 | ---D | C] -- C:\Users\Oliver Tran\Documents\Aiseesoft Studio
- [2011/10/28 21:13:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Aiseesoft Studio
- [2011/10/28 21:11:17 | 000,000,000 | ---D | C] -- C:\Users\Oliver Tran\AppData\Local\{77ED989B-A646-4A89-AC29-91392AB3F4CB}
- [color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
- [2011/11/27 10:04:46 | 000,013,136 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
- [2011/11/27 10:04:46 | 000,013,136 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
- [2011/11/27 10:02:49 | 000,660,530 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
- [2011/11/27 10:02:49 | 000,121,426 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
- [2011/11/27 10:02:48 | 000,779,266 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
- [2011/11/27 09:56:07 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
- [2011/11/27 09:55:53 | 3018,190,848 | -HS- | M] () -- C:\hiberfil.sys
- [2011/11/26 20:09:34 | 007,708,986 | ---- | M] () -- C:\Users\Oliver Tran\Desktop\Blood Sugar - Pendulum (HQ).mp3
- [2011/11/26 19:54:01 | 000,000,932 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3942442562-1150499698-2605017499-1001UA.job
- [2011/11/26 19:27:00 | 000,000,522 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task f6a5f60f-5c82-488f-bd8d-47964c146d50.job
- [2011/11/26 18:50:42 | 000,001,176 | ---- | M] () -- C:\Users\Public\Desktop\Paint.NET.lnk
- [2011/11/26 15:54:01 | 000,000,880 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3942442562-1150499698-2605017499-1001Core.job
- [2011/11/26 14:29:40 | 000,001,247 | ---- | M] () -- C:\Users\Public\Desktop\Quick Care.lnk
- [2011/11/26 14:29:40 | 000,001,225 | ---- | M] () -- C:\Users\Public\Desktop\Advanced SystemCare 5.lnk
- [2011/11/26 14:13:14 | 000,005,632 | ---- | M] () -- C:\Users\Oliver Tran\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
- [2011/11/26 08:45:59 | 001,294,838 | ---- | M] () -- C:\Users\Oliver Tran\Desktop\somethin.rns
- [2011/11/26 02:26:01 | 000,172,454 | ---- | M] () -- C:\Users\Oliver Tran\Desktop\Sleek.rns
- [2011/11/26 02:00:07 | 000,000,522 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 91f24d16-24a6-44d0-9238-ce7e5f72d1c7.job
- [2011/11/25 19:10:34 | 038,400,124 | ---- | M] () -- C:\Users\Oliver Tran\Desktop\Sleek.wav
- [2011/11/25 16:51:39 | 000,327,766 | ---- | M] () -- C:\Users\Oliver Tran\Desktop\On The Eigth Day.rns
- [2011/11/25 15:29:48 | 003,072,124 | ---- | M] () -- C:\Users\Oliver Tran\Desktop\Document 1.wav
- [2011/11/25 12:21:10 | 000,406,528 | ---- | M] (Propellerhead Software AB) -- C:\Windows\SysWow64\ReWire.dll
- [2011/11/25 12:21:10 | 000,338,432 | ---- | M] (Propellerhead Software AB) -- C:\Windows\SysWow64\REX Shared Library.dll
- [2011/11/25 12:18:14 | 000,001,061 | ---- | M] () -- C:\Users\Public\Desktop\Reason.lnk
- [2011/11/25 10:50:37 | 000,000,993 | ---- | M] () -- C:\Users\Oliver Tran\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MagicDisc.lnk
- [2011/11/11 17:59:09 | 005,220,624 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
- [color=#E56717]========== Files Created - No Company Name ==========[/color]
- [2011/11/26 20:10:04 | 007,708,986 | ---- | C] () -- C:\Users\Oliver Tran\Desktop\Blood Sugar - Pendulum (HQ).mp3
- [2011/11/26 18:50:42 | 000,001,176 | ---- | C] () -- C:\Users\Public\Desktop\Paint.NET.lnk
- [2011/11/26 14:29:40 | 000,001,247 | ---- | C] () -- C:\Users\Public\Desktop\Quick Care.lnk
- [2011/11/26 14:29:40 | 000,001,225 | ---- | C] () -- C:\Users\Public\Desktop\Advanced SystemCare 5.lnk
- [2011/11/26 08:45:55 | 001,294,838 | ---- | C] () -- C:\Users\Oliver Tran\Desktop\somethin.rns
- [2011/11/25 19:10:15 | 038,400,124 | ---- | C] () -- C:\Users\Oliver Tran\Desktop\Sleek.wav
- [2011/11/25 19:07:38 | 000,172,454 | ---- | C] () -- C:\Users\Oliver Tran\Desktop\Sleek.rns
- [2011/11/25 16:51:38 | 000,327,766 | ---- | C] () -- C:\Users\Oliver Tran\Desktop\On The Eigth Day.rns
- [2011/11/25 15:29:42 | 003,072,124 | ---- | C] () -- C:\Users\Oliver Tran\Desktop\Document 1.wav
- [2011/11/25 12:18:14 | 000,001,061 | ---- | C] () -- C:\Users\Public\Desktop\Reason.lnk
- [2011/11/25 10:50:36 | 000,000,993 | ---- | C] () -- C:\Users\Oliver Tran\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MagicDisc.lnk
- [2011/06/19 22:22:57 | 000,026,962 | ---- | C] () -- C:\Users\Oliver Tran\AppData\Roaming\UserTile.png
- [2011/04/16 14:30:18 | 000,214,237 | ---- | C] () -- C:\Users\Oliver Tran\AppData\Local\debuggee.mdmp
- [2011/04/02 11:24:16 | 000,005,632 | ---- | C] () -- C:\Users\Oliver Tran\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
- [2011/03/05 22:59:26 | 000,000,406 | RHS- | C] () -- C:\ProgramData\ntuser.pol
- [2011/01/12 18:51:00 | 000,001,048 | ---- | C] () -- C:\Users\Oliver Tran\AppData\Local\Local.lnk
- [2010/12/29 22:33:19 | 000,065,536 | ---- | C] () -- C:\Windows\SysWow64\dmcrypto.dll
- [2010/12/29 22:32:01 | 000,002,336 | ---- | C] () -- C:\Windows\HCWPNP.INI
- [2010/12/20 11:24:01 | 000,231,424 | ---- | C] () -- C:\Users\Oliver Tran\AppData\Roaming\chrtmp
- [2010/09/30 18:19:48 | 000,000,132 | ---- | C] () -- C:\Users\Oliver Tran\AppData\Roaming\Adobe PNG Format CS5 Prefs
- [2010/09/07 14:05:35 | 000,773,482 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
- [2010/09/07 00:31:41 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
- [2010/09/05 21:21:32 | 000,117,248 | ---- | C] () -- C:\Windows\SysWow64\EhStorAuthn.dll
- [2009/10/24 12:06:04 | 000,079,360 | ---- | C] () -- C:\Windows\SysWow64\Eziriz.bin
- [2009/07/13 21:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
- [2009/07/13 18:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
- [2009/07/13 18:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
- [2009/07/13 16:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
- [2009/07/13 15:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
- [2009/07/13 13:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
- [2009/06/10 13:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
- [2009/04/07 23:04:50 | 000,000,012 | ---- | C] () -- C:\Windows\bthservsdp.dat
- [2007/04/27 10:43:58 | 000,120,200 | ---- | C] () -- C:\Windows\SysWow64\DLLDEV32i.dll
- [color=#E56717]========== Custom Scans ==========[/color]
- [color=#A23BEC]< %systemroot%\*. /mp /s >[/color]
- [color=#A23BEC]< %systemroot%\system32\*.dll /lockedfiles >[/color]
- [color=#A23BEC]< %systemroot%\system32\*.exe /lockedfiles >[/color]
- [color=#A23BEC]< %systemroot%\Tasks\*.job /lockedfiles >[/color]
- [color=#A23BEC]< %systemroot%\system32\drivers\*.sys /lockedfiles >[/color]
- [color=#A23BEC]< %systemroot%\System32\config\*.sav >[/color]
- [color=#A23BEC]< %systemroot%\system32\*.sys >[/color]
- [color=#A23BEC]< %systemroot%\system32\drivers\*.dll >[/color]
- [color=#A23BEC]< %systemroot%\system32\drivers\*.ini >[/color]
- [color=#A23BEC]< %systemroot%\system32\drivers\*.exe >[/color]
- [color=#A23BEC]< %SYSTEMDRIVE%\*.* >[/color]
- [2010/11/20 04:40:07 | 000,383,786 | RHS- | M] () -- C:\bootmgr
- [2010/09/07 01:25:27 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK
- [2010/09/07 09:25:40 | 000,438,840 | RHS- | M] () -- C:\bootxez
- [2011/04/30 23:08:19 | 000,243,208 | -HS- | M] () -- C:\Help_MKWD_AssetId.H1W
- [2011/04/30 23:08:20 | 000,206,316 | -HS- | M] () -- C:\Help_MKWD_BestBet.H1W
- [2011/04/30 23:08:22 | 000,503,152 | -HS- | M] () -- C:\Help_MTOC_help.H1H
- [2011/04/30 23:08:22 | 000,014,832 | -HS- | M] () -- C:\Help_MValidator.H1D
- [2011/11/27 09:55:53 | 3018,190,848 | -HS- | M] () -- C:\hiberfil.sys
- [2010/09/20 20:12:27 | 000,399,415 | RHS- | M] () -- C:\KGRBZ
- [2006/12/01 22:37:14 | 000,904,704 | ---- | M] (Microsoft Corporation) -- C:\msdia80.dll
- [2011/11/27 09:55:58 | 4024,258,560 | -HS- | M] () -- C:\pagefile.sys
- [2010/11/06 17:52:09 | 000,000,000 | ---- | M] () -- C:\user.js
- [2010/09/20 20:12:28 | 000,000,020 | RHS- | M] () -- C:\win7.ld
- [color=#A23BEC]< %PROGRAMFILES%\*. >[/color]
- [2011/09/13 17:55:58 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Adobe
- [2011/04/05 17:41:39 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Adobe Media Player
- [2011/10/28 21:13:39 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Aiseesoft Studio
- [2010/09/07 00:37:37 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\AMD
- [2011/10/22 14:55:02 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\AnvSoft
- [2011/07/16 15:18:50 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Apple Software Update
- [2011/01/17 14:48:10 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\ArcSoft
- [2010/10/09 17:47:24 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\ASIO4ALL v2
- [2010/09/07 00:37:38 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Atheros
- [2010/09/07 00:37:38 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\ATI Technologies
- [2011/04/21 10:55:00 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Audacity 1.3 Beta (Unicode)
- [2011/04/01 07:48:05 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Auslogics
- [2011/09/17 10:20:19 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Auto Clicker
- [2011/10/11 13:46:53 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Bonjour
- [2010/12/22 16:45:59 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\CardRecovery
- [2011/10/22 08:27:38 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\CCleaner
- [2010/09/07 00:37:56 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Cisco
- [2011/10/02 10:42:50 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\CodeMeter
- [2011/11/24 17:23:25 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Common Files
- [2011/05/07 15:07:16 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\COMODO
- [2011/04/01 09:02:57 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\CyberLink
- [2011/07/29 20:05:21 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Datel
- [2011/10/21 21:16:42 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\DigiDNA
- [2011/04/23 17:20:24 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Eazfuscator.NET
- [2011/04/29 17:56:05 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\epson
- [2011/04/30 15:39:45 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\FFmpeg for Audacity
- [2010/10/01 22:50:36 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\FinalUninstaller
- [2010/09/07 00:48:49 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Hewlett-Packard
- [2010/09/07 00:49:35 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Hewlett-Packard Company
- [2010/09/07 00:49:36 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Hp
- [2010/09/07 14:23:07 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\HTML Help Workshop
- [2011/11/11 22:41:50 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\HxD
- [2011/10/11 14:11:18 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Hyperdesktop
- [2010/09/07 21:47:39 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\IcoFX 1.6
- [2010/10/28 17:26:00 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Icon Generator Pro
- [2011/11/26 14:57:18 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\iExplorer
- [2010/09/07 14:40:23 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\IIS
- [2011/10/21 21:24:02 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Image-Line
- [2010/10/02 08:48:57 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\ImgBurn
- [2011/04/01 09:03:08 | 000,000,000 | -H-D | M] -- C:\Program Files (x86)\InstallShield Installation Information
- [2011/05/14 07:28:33 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Internet Download Manager
- [2011/10/11 18:05:01 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Internet Explorer
- [2011/11/26 14:29:19 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\IObit
- [2011/11/21 21:30:54 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\iTunes
- [2011/02/22 18:46:34 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Java
- [2010/09/07 18:27:27 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Lame for Audacity
- [2010/09/07 18:24:32 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\LG Electronics
- [2011/05/14 14:42:13 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\LibUSB-Win32
- [2010/11/06 11:13:23 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\LimeWire
- [2011/04/09 22:31:55 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\LogicNP Software
- [2011/11/25 15:15:52 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\MagicDisc
- [2011/09/13 17:22:37 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
- [2010/09/07 14:40:35 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft ASP.NET
- [2010/09/07 14:26:38 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft F#
- [2010/12/01 18:32:02 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft Office
- [2010/11/27 16:56:32 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft Office 2010
- [2011/10/30 10:53:41 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft SDKs
- [2011/10/11 18:04:51 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft Silverlight
- [2010/09/07 14:57:17 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft SQL Server
- [2011/04/18 15:09:22 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
- [2010/10/25 08:35:21 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft Sync Framework
- [2010/09/07 14:55:31 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft Synchronization Services
- [2010/12/01 18:31:53 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft Visual Studio
- [2010/09/07 14:48:20 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft Visual Studio 10.0
- [2010/12/01 18:26:26 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft Visual Studio 8
- [2010/09/07 14:13:31 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft Visual Studio 9.0
- [2011/04/01 08:56:02 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft Works
- [2010/09/07 10:51:46 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Microsoft.NET
- [2011/04/30 19:13:13 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\MiPony
- [2010/12/01 18:32:09 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\MSBuild
- [2011/09/11 20:09:46 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\mSeven Software
- [2010/09/05 17:47:08 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\MSXML 4.0
- [2011/03/26 10:37:31 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\OllyDbg
- [2010/10/08 20:01:18 | 000,000,000 | R--D | M] -- C:\Program Files (x86)\Online Services
- [2010/10/09 17:44:40 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Outsim
- [2011/05/07 22:23:34 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Pingdom
- [2011/11/24 17:23:25 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Pinnacle
- [2010/09/07 08:01:21 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\PowerISO
- [2011/11/25 12:16:33 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Propellerhead
- [2011/11/02 19:41:45 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\QuickTime
- [2010/09/07 00:50:36 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Realtek
- [2009/07/13 21:32:38 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Reference Assemblies
- [2011/04/18 13:58:19 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Reflector
- [2010/09/07 10:03:06 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Sling Media
- [2011/04/12 18:43:12 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\SMINST
- [2011/01/01 20:37:48 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Sony
- [2011/04/30 15:27:49 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Team Viewer
- [2011/08/01 19:11:57 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\TeamViewer
- [2011/03/20 10:48:09 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\TechSmith
- [2011/04/21 19:51:37 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Trend Micro
- [2010/09/22 16:39:18 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\TuneUp Utilities 2010
- [2009/07/13 20:57:06 | 000,000,000 | -H-D | M] -- C:\Program Files (x86)\Uninstall Information
- [2011/02/12 09:45:07 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\uTorrent
- [2011/04/16 07:02:19 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Verizon
- [2011/11/24 19:08:22 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\VideoLAN
- [2011/05/13 19:30:52 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\VstPlugins
- [2010/09/07 00:50:41 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Windows Calendar
- [2008/01/20 19:09:47 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Windows Collaboration
- [2009/07/13 21:37:47 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Windows Defender
- [2011/04/18 15:09:07 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Windows Live
- [2011/04/09 15:55:21 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Windows Mail
- [2011/04/09 15:55:21 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Windows Media Player
- [2009/07/13 21:32:38 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Windows NT
- [2010/09/07 00:50:41 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Windows Photo Gallery
- [2011/04/09 15:55:21 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Windows Photo Viewer
- [2011/04/09 15:55:21 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Windows Portable Devices
- [2011/04/09 15:55:21 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Windows Sidebar
- [2010/09/07 00:50:45 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\winrar
- [2010/09/07 21:53:22 | 000,000,000 | ---D | M] -- C:\Program Files (x86)\Xilisoft
- [color=#A23BEC]< %appdata%\*.* >[/color]
- [2011/10/14 19:13:25 | 000,000,132 | ---- | M] () -- C:\Users\Oliver Tran\AppData\Roaming\Adobe PNG Format CS5 Prefs
- [2010/12/20 11:01:11 | 000,231,424 | ---- | M] () -- C:\Users\Oliver Tran\AppData\Roaming\chrtmp
- [2011/06/19 22:22:57 | 000,026,962 | ---- | M] () -- C:\Users\Oliver Tran\AppData\Roaming\UserTile.png
- [color=#A23BEC]< MD5 for: AGP440.SYS >[/color]
- [2009/07/13 17:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\drivers\AGP440.sys
- [2009/07/13 17:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_a2f120466549d68b\AGP440.sys
- [2009/07/13 17:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_1607dee2d861e021\AGP440.sys
- [2009/07/13 17:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_1838f2aad55063bb\AGP440.sys
- [color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
- [2009/07/13 17:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
- [2009/07/13 17:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_aad30bdeec04ea5e\atapi.sys
- [2009/07/13 17:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys
- [2009/07/13 17:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_3b5e2d89382958dd\atapi.sys
- [color=#A23BEC]< MD5 for: CNGAUDIT.DLL >[/color]
- [2009/07/13 17:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\SysWOW64\cngaudit.dll
- [2009/07/13 17:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll
- [2009/07/13 17:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\SysNative\cngaudit.dll
- [2009/07/13 17:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\winsxs\amd64_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_4458dccc49458461\cngaudit.dll
- [color=#A23BEC]< MD5 for: DISK.SYS >[/color]
- [2009/07/13 17:47:48 | 000,073,280 | ---- | M] (Microsoft Corporation) MD5=9819EEE8B5EA3784EC4AF3B137A5244C -- C:\Windows\SysNative\drivers\disk.sys
- [2009/07/13 17:47:48 | 000,073,280 | ---- | M] (Microsoft Corporation) MD5=9819EEE8B5EA3784EC4AF3B137A5244C -- C:\Windows\SysNative\DriverStore\FileRepository\disk.inf_amd64_neutral_10ce25bbc5a9cc43\disk.sys
- [2009/07/13 17:47:48 | 000,073,280 | ---- | M] (Microsoft Corporation) MD5=9819EEE8B5EA3784EC4AF3B137A5244C -- C:\Windows\winsxs\amd64_disk.inf_31bf3856ad364e35_6.1.7600.16385_none_55bb738b8ddd8a01\disk.sys
- [color=#A23BEC]< MD5 for: IASTORV.SYS >[/color]
- [2010/11/20 05:33:38 | 000,410,496 | ---- | M] (Intel Corporation) MD5=3DF4395A7CF8B7A72A5F4606366B8C2D -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_668286aa35d55928\iaStorV.sys
- [2010/11/20 05:33:38 | 000,410,496 | ---- | M] (Intel Corporation) MD5=3DF4395A7CF8B7A72A5F4606366B8C2D -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.17514_none_0d3757e79e6784d0\iaStorV.sys
- [2011/03/10 22:19:16 | 000,410,496 | ---- | M] (Intel Corporation) MD5=5B3DE7208E5000D5B451B9D290D2579C -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.21680_none_0d714416b7c182d5\iaStorV.sys
- [2011/03/10 22:41:26 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\SysNative\drivers\iaStorV.sys
- [2011/03/10 22:41:26 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_0bcee2057afcc090\iaStorV.sys
- [2011/03/10 22:41:26 | 000,410,496 | ---- | M] (Intel Corporation) MD5=AAAF44DB3BD0B9D1FB6969B23ECC8366 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7601.17577_none_0cf9793d9e95787b\iaStorV.sys
- [2011/03/10 22:23:00 | 000,410,496 | ---- | M] (Intel Corporation) MD5=B75E45C564E944A2657167D197AB29DA -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7600.16778_none_0b141c81a16e25e6\iaStorV.sys
- [2011/03/10 22:25:49 | 000,410,496 | ---- | M] (Intel Corporation) MD5=BFDC9D75698800CFE4D1698BF2750EA2 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7600.20921_none_0bccc8c8ba6985c1\iaStorV.sys
- [2009/07/13 17:48:04 | 000,410,688 | ---- | M] (Intel Corporation) MD5=D83EFB6FD45DF9D55E9A1AFC63640D50 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7600.16385_none_0b06441fa1790136\iaStorV.sys
- [color=#A23BEC]< MD5 for: NETLOGON.DLL >[/color]
- [2009/07/13 17:41:52 | 000,692,736 | ---- | M] (Microsoft Corporation) MD5=956D030D375F207B22FB111E06EF9C35 -- C:\Windows\winsxs\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_59aca8ea51aaeefe\netlogon.dll
- [2010/11/20 05:27:22 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\SysNative\netlogon.dll
- [2010/11/20 05:27:22 | 000,695,808 | ---- | M] (Microsoft Corporation) MD5=AA339DD8BB128EF66660DFBBB59043D3 -- C:\Windows\winsxs\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_5bddbcb24e997298\netlogon.dll
- [2010/11/20 04:20:28 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\SysWOW64\netlogon.dll
- [2010/11/20 04:20:28 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\winsxs\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_6632670482fa3493\netlogon.dll
- [2009/07/13 17:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\winsxs\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_6401533c860bb0f9\netlogon.dll
- [color=#A23BEC]< MD5 for: NVSTOR.SYS >[/color]
- [2009/07/13 17:45:45 | 000,167,488 | ---- | M] (NVIDIA Corporation) MD5=477DC4D6DEB99BE37084C9AC6D013DA1 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.16385_none_95cfb4ced8afab0e\nvstor.sys
- [2011/03/10 22:23:06 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=6C1D5F70E7A6A3FD1C90D840EDC048B9 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.16778_none_95dd8d30d8a4cfbe\nvstor.sys
- [2011/03/10 22:25:53 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=AE274836BA56518E279087363A781214 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.20921_none_96963977f1a02f99\nvstor.sys
- [2011/03/10 22:19:21 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=D23C7E8566DA2B8A7C0DBBB761D54888 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.21680_none_983ab4c5eef82cad\nvstor.sys
- [2011/03/10 22:41:34 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\SysNative\drivers\nvstor.sys
- [2011/03/10 22:41:34 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_0276fc3b3ea60d41\nvstor.sys
- [2011/03/10 22:41:34 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=DAB0E87525C10052BF65F06152F37E4A -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17577_none_97c2e9ecd5cc2253\nvstor.sys
- [2010/11/20 05:33:48 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=F7CD50FE7139F07E77DA8AC8033D1832 -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_dd659ed032d28a14\nvstor.sys
- [2010/11/20 05:33:48 | 000,166,272 | ---- | M] (NVIDIA Corporation) MD5=F7CD50FE7139F07E77DA8AC8033D1832 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7601.17514_none_9800c896d59e2ea8\nvstor.sys
- [color=#A23BEC]< MD5 for: SCECLI.DLL >[/color]
- [2009/07/13 17:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
- [2009/07/13 17:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll
- [2010/11/20 04:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\SysWOW64\scecli.dll
- [2010/11/20 04:21:04 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_a088921d241bbb4e\scecli.dll
- [2010/11/20 05:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\SysNative\scecli.dll
- [2010/11/20 05:27:25 | 000,232,960 | ---- | M] (Microsoft Corporation) MD5=ED78427259134C63ED69804D2132B86C -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_9633e7caefbaf953\scecli.dll
- [color=#A23BEC]< MD5 for: USBSTOR.SYS >[/color]
- [2009/07/13 16:06:34 | 000,089,600 | ---- | M] (Microsoft Corporation) MD5=080D3820DA6C046BE82FC8B45A893E83 -- C:\Windows\winsxs\amd64_usbstor.inf_31bf3856ad364e35_6.1.7600.16385_none_a47b405db18421ea\USBSTOR.SYS
- [2011/03/10 20:21:50 | 000,091,648 | ---- | M] (Microsoft Corporation) MD5=36106AC439EDFBB7B8BDBF99079C7590 -- C:\Windows\winsxs\amd64_usbstor.inf_31bf3856ad364e35_6.1.7601.21680_none_a6e64054c7cca389\USBSTOR.SYS
- [2011/03/10 20:29:51 | 000,091,136 | ---- | M] (Microsoft Corporation) MD5=3A6CB8C3B8904F01E73D10081B7D0EC7 -- C:\Windows\winsxs\amd64_usbstor.inf_31bf3856ad364e35_6.1.7600.20921_none_a541c506ca74a675\USBSTOR.SYS
- [2010/11/20 02:44:05 | 000,091,648 | ---- | M] (Microsoft Corporation) MD5=D76510CFA0FC09023077F22C2F979D86 -- C:\Windows\SysNative\DriverStore\FileRepository\usbstor.inf_amd64_neutral_0725c2806a159a9d\USBSTOR.SYS
- [2010/11/20 02:44:05 | 000,091,648 | ---- | M] (Microsoft Corporation) MD5=D76510CFA0FC09023077F22C2F979D86 -- C:\Windows\winsxs\amd64_usbstor.inf_31bf3856ad364e35_6.1.7601.17514_none_a6ac5425ae72a584\USBSTOR.SYS
- [2011/03/10 20:31:17 | 000,091,136 | ---- | M] (Microsoft Corporation) MD5=F39983647BC1F3E6100778DDFE9DCE29 -- C:\Windows\winsxs\amd64_usbstor.inf_31bf3856ad364e35_6.1.7600.16778_none_a48918bfb179469a\USBSTOR.SYS
- [2011/03/10 20:37:16 | 000,091,648 | ---- | M] (Microsoft Corporation) MD5=FED648B01349A3C8395A5169DB5FB7D6 -- C:\Windows\SysNative\drivers\USBSTOR.SYS
- [2011/03/10 20:37:16 | 000,091,648 | ---- | M] (Microsoft Corporation) MD5=FED648B01349A3C8395A5169DB5FB7D6 -- C:\Windows\SysNative\DriverStore\FileRepository\usbstor.inf_amd64_neutral_26b33263a639795d\USBSTOR.SYS
- [2011/03/10 20:37:16 | 000,091,648 | ---- | M] (Microsoft Corporation) MD5=FED648B01349A3C8395A5169DB5FB7D6 -- C:\Windows\winsxs\amd64_usbstor.inf_31bf3856ad364e35_6.1.7601.17577_none_a66e757baea0992f\USBSTOR.SYS
- [color=#A23BEC]< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >[/color]
- [color=#E56717]========== Alternate Data Streams ==========[/color]
- @Alternate Data Stream - 131 bytes -> C:\ProgramData\Temp:07BF512B
- < End of report >
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement