Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- OTL logfile created on: 2011-06-18 10:36:39 - Run 1
- OTL by OldTimer - Version 3.2.24.1 Folder = C:\Users\Artur\Downloads
- Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
- Internet Explorer (Version = 7.0.6001.18000)
- Locale: 00000415 | Country: Poland | Language: PLK | Date Format: yyyy-MM-dd
- 2,87 Gb Total Physical Memory | 1,57 Gb Available Physical Memory | 54,66% Memory free
- 5,95 Gb Paging File | 4,53 Gb Available in Paging File | 76,20% Paging File free
- Paging file location(s): ?:\pagefile.sys [binary data]
- %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
- Drive C: | 39,48 Gb Total Space | 11,68 Gb Free Space | 29,60% Space Free | Partition Type: NTFS
- Drive D: | 620,40 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
- Drive E: | 106,68 Gb Total Space | 65,00 Gb Free Space | 60,93% Space Free | Partition Type: NTFS
- Drive F: | 85,26 Gb Total Space | 62,44 Gb Free Space | 73,24% Space Free | Partition Type: NTFS
- Drive K: | 3,25 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
- Computer Name: ARTUR-PC | User Name: Artur | Logged in as Administrator.
- Boot Mode: Normal | Scan Mode: All users
- Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
- [color=#E56717]========== Processes (SafeList) ==========[/color]
- PRC - [2011-06-18 10:34:03 | 000,579,072 | ---- | M] (OldTimer Tools) -- C:\Users\Artur\Downloads\OTL.exe
- PRC - [2011-06-14 13:22:52 | 009,030,656 | ---- | M] (Creative Team S.A.) -- C:\Program Files\WapSter\WapSter AQQ\AQQ.exe
- PRC - [2011-05-14 13:50:12 | 000,269,480 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe
- PRC - [2011-05-14 13:50:12 | 000,136,360 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe
- PRC - [2011-04-14 18:59:13 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
- PRC - [2011-03-22 08:36:20 | 002,421,384 | ---- | M] (mobile concepts GmbH) -- C:\Program Files\S.A.D\CyberGhost VPN\CGVPNCliService.exe
- PRC - [2011-02-23 21:53:38 | 002,003,968 | ---- | M] () -- C:\Program Files\foobar2000\foobar2000.exe
- PRC - [2011-02-18 14:06:41 | 000,421,032 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe
- PRC - [2011-02-14 10:39:07 | 000,539,304 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avfwsvc.exe
- PRC - [2011-02-14 10:39:07 | 000,339,624 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avmailc.exe
- PRC - [2011-02-14 10:39:07 | 000,281,768 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
- PRC - [2011-01-13 12:28:44 | 000,377,152 | ---- | M] (DT Soft Ltd) -- C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe
- PRC - [2010-01-14 21:09:40 | 000,076,968 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
- PRC - [2009-01-26 16:31:10 | 001,153,368 | ---- | M] (Safer Networking Ltd.) -- C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
- PRC - [2008-08-04 23:46:22 | 000,046,392 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA Service Station\TMachInfo.exe
- PRC - [2008-07-18 21:39:30 | 000,083,312 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe
- PRC - [2008-07-11 03:35:30 | 000,188,416 | ---- | M] (CyberLink) -- C:\Program Files\CyberLink\PowerCinema for TOSHIBA\Kernel\CLML\CLMLSvc.exe
- PRC - [2008-07-11 02:58:40 | 000,040,960 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\ConfigFree\CFSvcs.exe
- PRC - [2008-05-01 05:41:12 | 000,815,104 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe
- PRC - [2008-05-01 05:10:10 | 000,466,944 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
- PRC - [2008-04-24 22:03:12 | 000,430,080 | ---- | M] (TOSHIBA) -- C:\Program Files\Toshiba\TOSCDSPD\TOSCDSPD.exe
- PRC - [2008-04-11 20:57:14 | 000,124,264 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
- PRC - [2008-03-19 23:35:44 | 000,716,800 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\FlashCards\TCrdMain.exe
- PRC - [2008-02-06 23:52:52 | 000,431,456 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\Power Saver\TPwrMain.exe
- PRC - [2008-02-06 23:52:40 | 000,431,456 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
- PRC - [2008-01-21 04:24:24 | 002,927,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
- PRC - [2008-01-21 04:24:13 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conime.exe
- PRC - [2007-12-14 04:52:00 | 000,143,360 | ---- | M] (CyberLink Corp.) -- C:\Program Files\CyberLink\PowerCinema for TOSHIBA\PCMAgent.exe
- PRC - [2007-12-04 03:03:52 | 000,126,976 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\SMARTLogService\TosIPCSrv.exe
- PRC - [2007-11-21 18:23:32 | 000,129,632 | ---- | M] (TOSHIBA Corporation) -- C:\Windows\System32\TODDSrv.exe
- PRC - [2007-06-16 07:01:58 | 000,448,080 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files\Toshiba\SmoothView\SmoothView.exe
- PRC - [2006-08-24 01:39:48 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
- [color=#E56717]========== Modules (SafeList) ==========[/color]
- MOD - [2011-06-18 10:34:03 | 000,579,072 | ---- | M] (OldTimer Tools) -- C:\Users\Artur\Downloads\OTL.exe
- MOD - [2008-01-21 04:23:44 | 001,684,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6001.18000_none_5cdbaa5a083979cc\comctl32.dll
- [color=#E56717]========== Win32 Services (SafeList) ==========[/color]
- SRV - File not found [Disabled | Stopped] -- -- (Desura Install Service)
- SRV - [2011-05-28 13:54:40 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
- SRV - [2011-05-14 13:50:12 | 000,269,480 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
- SRV - [2011-05-14 13:50:12 | 000,136,360 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
- SRV - [2011-03-22 08:36:20 | 002,421,384 | ---- | M] (mobile concepts GmbH) [On_Demand | Running] -- C:\Program Files\S.A.D\CyberGhost VPN\CGVPNCliService.exe -- (CGVPNCliSrvc)
- SRV - [2011-02-25 16:04:56 | 000,407,336 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Steam\SteamService.exe -- (Steam Client Service)
- SRV - [2011-02-18 14:06:41 | 000,421,032 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE -- (AntiVirWebService)
- SRV - [2011-02-14 10:39:07 | 000,539,304 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avfwsvc.exe -- (AntiVirFirewallService)
- SRV - [2011-02-14 10:39:07 | 000,339,624 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avmailc.exe -- (AntiVirMailService)
- SRV - [2009-01-26 16:31:10 | 001,153,368 | ---- | M] (Safer Networking Ltd.) [Auto | Running] -- C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe -- (SBSDWSCService)
- SRV - [2008-08-04 23:46:22 | 000,046,392 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\Toshiba\TOSHIBA Service Station\TMachInfo.exe -- (TMachInfo)
- SRV - [2008-07-18 21:39:30 | 000,083,312 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe -- (TNaviSrv)
- SRV - [2008-07-11 02:58:40 | 000,040,960 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe -- (ConfigFree Service)
- SRV - [2008-05-01 05:41:12 | 000,815,104 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng)
- SRV - [2008-05-01 05:10:10 | 000,466,944 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc)
- SRV - [2008-04-11 20:57:14 | 000,124,264 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe -- (TOSHIBA Bluetooth Service)
- SRV - [2008-02-06 23:52:40 | 000,431,456 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe -- (TosCoSrv)
- SRV - [2008-01-21 04:24:45 | 000,376,832 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- winhttp.dll -- (WinHttpAutoProxySvc)
- SRV - [2008-01-21 04:23:32 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
- SRV - [2007-12-04 03:03:52 | 000,126,976 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exe -- (TOSHIBA SMART Log Service)
- SRV - [2007-11-21 18:23:32 | 000,129,632 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Windows\System32\TODDSrv.exe -- (TODDSrv)
- SRV - [2006-08-24 01:39:48 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper)
- [color=#E56717]========== Driver Services (SafeList) ==========[/color]
- DRV - File not found [Kernel | On_Demand | Running] -- -- (GGSAFERDriver)
- DRV - [2011-05-14 13:50:12 | 000,137,656 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\System32\drivers\avipbb.sys -- (avipbb)
- DRV - [2011-03-26 10:59:53 | 000,234,016 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Rtlh86.sys -- (RTL8169)
- DRV - [2011-03-26 10:59:10 | 006,628,352 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\NETw5v32.sys -- (NETw5v32) Intel(R)
- DRV - [2011-03-26 10:52:17 | 000,068,608 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimsptsk.sys -- (rimsptsk)
- DRV - [2011-03-25 07:34:10 | 000,218,688 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\System32\drivers\dtsoftbus01.sys -- (dtsoftbus01)
- DRV - [2011-02-14 10:39:34 | 000,102,856 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\System32\drivers\avfwot.sys -- (avfwot)
- DRV - [2011-02-14 10:39:34 | 000,061,960 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\Windows\System32\drivers\avgntflt.sys -- (avgntflt)
- DRV - [2010-07-15 09:44:20 | 000,014,216 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\epmntdrv.sys -- (epmntdrv)
- DRV - [2010-07-15 09:44:20 | 000,008,456 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\EuGdiDrv.sys -- (EuGdiDrv)
- DRV - [2010-06-17 14:23:06 | 000,079,432 | ---- | M] (Avira GmbH) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\avfwim.sys -- (avfwim)
- DRV - [2010-06-17 14:23:04 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\System32\drivers\ssmdrv.sys -- (ssmdrv)
- DRV - [2010-02-25 16:51:02 | 000,025,216 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\tap0901.sys -- (tap0901)
- DRV - [2008-07-18 19:52:16 | 000,279,376 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\tos_sps32.sys -- (tos_sps32)
- DRV - [2008-02-16 03:01:18 | 000,046,592 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimmptsk.sys -- (rimmptsk)
- DRV - [2007-12-14 12:53:24 | 000,024,200 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\tdcmdpst.sys -- (tdcmdpst)
- DRV - [2007-11-10 00:00:52 | 000,023,640 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\TVALZ_O.SYS -- (TVALZ)
- DRV - [2007-07-30 20:54:02 | 000,038,400 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rixdptsk.sys -- (rismxdp)
- DRV - [2006-11-29 01:11:00 | 001,161,888 | ---- | M] (Agere Systems) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AGRSM.sys -- (AgereSoftModem)
- DRV - [2006-11-20 23:11:14 | 000,007,168 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\FwLnk.sys -- (FwLnk)
- DRV - [2006-11-09 08:32:00 | 000,219,264 | ---- | M] (TOSHIBA CORPORATION) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\kr10i.sys -- (KR10I)
- DRV - [2006-11-09 08:31:00 | 000,211,072 | ---- | M] (TOSHIBA CORPORATION) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\kr10n.sys -- (KR10N)
- DRV - [2006-10-24 01:32:20 | 000,009,216 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tosrfec.sys -- (tosrfec)
- DRV - [2006-07-24 17:05:00 | 000,005,632 | ---- | M] () [File_System | System | Running] -- C:\Windows\System32\drivers\StarOpen.sys -- (StarOpen)
- [color=#E56717]========== Standard Registry (SafeList) ==========[/color]
- [color=#E56717]========== Internet Explorer ==========[/color]
- IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.toshibadirect.com/dpdstart
- IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
- IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
- IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
- IE - HKU\S-1-5-21-1878759303-2680575527-101672516-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.toshibadirect.com/dpdstart
- IE - HKU\S-1-5-21-1878759303-2680575527-101672516-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.toshibadirect.com/dpdstart
- IE - HKU\S-1-5-21-1878759303-2680575527-101672516-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
- [color=#E56717]========== FireFox ==========[/color]
- FF - prefs.js..browser.startup.homepage: "pajacyk.pl/zlicz.php"
- FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
- FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
- FF - prefs.js..extensions.enabledItems: cacaoweb@cacaoweb.org:1.0.12
- FF - HKLM\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011-05-05 14:49:10 | 000,000,000 | ---D | M]
- FF - HKLM\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011-06-16 21:22:26 | 000,000,000 | ---D | M]
- FF - HKLM\software\mozilla\Mozilla Thunderbird 3.1.10\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2011-05-17 17:05:27 | 000,000,000 | ---D | M]
- FF - HKLM\software\mozilla\Mozilla Thunderbird 3.1.10\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins
- [2011-03-03 19:35:04 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Artur\AppData\Roaming\mozilla\Extensions
- [2011-03-03 19:35:04 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Artur\AppData\Roaming\mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
- [2011-05-06 15:06:58 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Artur\AppData\Roaming\mozilla\Firefox\Profiles\ik1ukhp6.default\extensions
- [2011-04-16 14:58:12 | 000,000,000 | ---D | M] (cacaoweb) -- C:\Users\Artur\AppData\Roaming\mozilla\Firefox\Profiles\ik1ukhp6.default\extensions\cacaoweb@cacaoweb.org
- [2011-05-05 19:01:04 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
- [2011-05-05 19:01:04 | 000,000,000 | ---D | M] (Skype extension) -- C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
- [2011-02-26 20:33:41 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
- [2011-03-12 12:49:58 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
- File not found (No name found) --
- [2011-04-14 18:59:14 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browsercomps.dll
- [2010-08-24 11:31:30 | 000,773,120 | ---- | M] (BitComet) -- C:\Program Files\Mozilla Firefox\plugins\npBitCometAgent.dll
- [2011-02-02 22:40:24 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
- [2010-01-01 10:00:00 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml
- [2010-01-01 10:00:00 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml
- [2010-01-01 10:00:00 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml
- [2010-01-01 10:00:00 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml
- [2010-01-01 10:00:00 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml
- [2010-01-01 10:00:00 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml
- O1 HOSTS File: ([2011-05-10 18:18:04 | 000,430,119 | R--- | M]) - C:\Windows\System32\drivers\etc\hosts
- O1 - Hosts: 127.0.0.1 localhost
- O1 - Hosts: ::1 localhost
- O1 - Hosts: 127.0.0.1 www.007guard.com
- O1 - Hosts: 127.0.0.1 007guard.com
- O1 - Hosts: 127.0.0.1 008i.com
- O1 - Hosts: 127.0.0.1 www.008k.com
- O1 - Hosts: 127.0.0.1 008k.com
- O1 - Hosts: 127.0.0.1 www.00hq.com
- O1 - Hosts: 127.0.0.1 00hq.com
- O1 - Hosts: 127.0.0.1 010402.com
- O1 - Hosts: 127.0.0.1 www.032439.com
- O1 - Hosts: 127.0.0.1 032439.com
- O1 - Hosts: 127.0.0.1 www.0scan.com
- O1 - Hosts: 127.0.0.1 0scan.com
- O1 - Hosts: 127.0.0.1 1000gratisproben.com
- O1 - Hosts: 127.0.0.1 www.1000gratisproben.com
- O1 - Hosts: 127.0.0.1 1001namen.com
- O1 - Hosts: 127.0.0.1 www.1001namen.com
- O1 - Hosts: 127.0.0.1 100888290cs.com
- O1 - Hosts: 127.0.0.1 www.100888290cs.com
- O1 - Hosts: 127.0.0.1 www.100sexlinks.com
- O1 - Hosts: 127.0.0.1 100sexlinks.com
- O1 - Hosts: 127.0.0.1 10sek.com
- O1 - Hosts: 127.0.0.1 www.10sek.com
- O1 - Hosts: 127.0.0.1 www.1-2005-search.com
- O1 - Hosts: 14808 more lines...
- O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
- O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
- O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - No CLSID value found.
- O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
- O4 - HKLM..\Run: [00TCrdMain] C:\Program Files\Toshiba\FlashCards\TCrdMain.exe (TOSHIBA Corporation)
- O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
- O4 - HKLM..\Run: [cfFncEnabler.exe] File not found
- O4 - HKLM..\Run: [CLMLServer] C:\Program Files\CyberLink\PowerCinema for TOSHIBA\Kernel\CLML\CLMLSvc.exe (CyberLink)
- O4 - HKLM..\Run: [HSON] C:\Program Files\Toshiba\TBS\HSON.exe (TOSHIBA Corporation)
- O4 - HKLM..\Run: [JOM Start] C:\Program Files\JOM\JOM.exe ()
- O4 - HKLM..\Run: [NDSTray.exe] File not found
- O4 - HKLM..\Run: [PCMAgent] C:\Program Files\CyberLink\PowerCinema for TOSHIBA\PCMAgent.exe (CyberLink Corp.)
- O4 - HKLM..\Run: [SmoothView] C:\Program Files\Toshiba\SmoothView\SmoothView.exe (TOSHIBA Corporation)
- O4 - HKLM..\Run: [ToshibaServiceStation] C:\Program Files\TOSHIBA\TOSHIBA Service Station\TSS.exe (TOSHIBA Corporation)
- O4 - HKLM..\Run: [TPwrMain] C:\Program Files\Toshiba\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
- O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
- O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
- O4 - HKU\S-1-5-21-1878759303-2680575527-101672516-1000..\Run: [AQQ] C:\Program Files\WapSter\WapSter AQQ\AQQ.exe (Creative Team S.A.)
- O4 - HKU\S-1-5-21-1878759303-2680575527-101672516-1000..\Run: [DAEMON Tools Pro Agent] C:\Program Files\DAEMON Tools Pro\DTAgent.exe (DT Soft Ltd)
- O4 - HKU\S-1-5-21-1878759303-2680575527-101672516-1000..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer Networking Limited)
- O4 - HKU\S-1-5-21-1878759303-2680575527-101672516-1000..\Run: [TOSCDSPD] File not found
- O4 - HKU\S-1-5-21-1878759303-2680575527-101672516-1000..\Run: [uTorrent] E:\Program Files\Torrent\uTorrent.exe (BitTorrent, Inc.)
- O4 - HKU\S-1-5-21-1878759303-2680575527-101672516-1000..\RunOnce: [FlashPlayerUpdate] C:\Windows\System32\Macromed\Flash\FlashUtil10s_Plugin.exe (Adobe Systems, Inc.)
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
- O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
- O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
- O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
- O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira GmbH)
- O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira GmbH)
- O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Program Files\Avira\AntiVir Desktop\avsda.dll (Avira GmbH)
- O13 - gopher Prefix: missing
- O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
- O16 - DPF: {CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_06-windows-i586.cab (Java Plug-in 1.6.0_06)
- O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} Reg Error: Value error. (Java Plug-in 1.6.0_22)
- O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
- O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
- O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 0.0.0.0
- O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
- O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
- O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
- O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
- O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
- O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
- O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - igfxdev.dll (Intel Corporation)
- O24 - Desktop WallPaper: C:\Users\Artur\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
- O24 - Desktop BackupWallPaper: C:\Users\Artur\AppData\Roaming\Microsoft\Windows Photo Gallery\Windows Photo Gallery Wallpaper.jpg
- O29 - HKLM SecurityProviders - (credssp.dll) - credssp.dll (Microsoft Corporation)
- O32 - HKLM CDRom: AutoRun - 1
- O32 - AutoRun File - [2006-09-18 23:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
- O32 - AutoRun File - [1998-12-13 09:43:32 | 000,000,040 | R--- | M] () - D:\AUTORUN.INF -- [ CDFS ]
- O32 - AutoRun File - [2008-10-15 17:30:14 | 000,000,041 | R--- | M] () - K:\Autorun.inf -- [ CDFS ]
- O33 - MountPoints2\{1ad93dae-408a-11e0-81eb-806e6f6e6963}\Shell - "" = AutoRun
- O33 - MountPoints2\{1ad93dae-408a-11e0-81eb-806e6f6e6963}\Shell\AutoRun\command - "" = D:\SETUP.EXE -- [1998-12-01 07:04:40 | 000,025,600 | R--- | M] ()
- O33 - MountPoints2\{57d2a3eb-57da-11e0-b6f6-001e3363fc0c}\Shell - "" = AutoRun
- O33 - MountPoints2\{57d2a3eb-57da-11e0-b6f6-001e3363fc0c}\Shell\AutoRun\command - "" = K:\Setup.exe -- [2008-10-15 17:28:32 | 001,564,672 | R--- | M] (Blizzard Entertainment )
- O34 - HKLM BootExecute: (autocheck autochk *) - File not found
- O35 - HKLM\..comfile [open] -- "%1" %*
- O35 - HKLM\..exefile [open] -- "%1" %*
- O37 - HKLM\...com [@ = comfile] -- "%1" %*
- O37 - HKLM\...exe [@ = exefile] -- "%1" %*
- [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
- [2011-06-17 10:02:21 | 000,000,000 | ---D | C] -- C:\Users\Artur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BSQL Hacker
- [2011-06-17 10:02:21 | 000,000,000 | ---D | C] -- C:\Program Files\BSQL Hacker
- [2011-06-17 09:49:29 | 000,000,000 | ---D | C] -- C:\Users\Artur\AppData\Local\HackerzHub_&_Hac.kers.ME
- [2011-06-17 08:02:30 | 000,000,000 | ---D | C] -- C:\Users\Artur\l
- [2011-06-17 08:00:09 | 000,000,000 | ---D | C] -- C:\Users\Artur\Documents\Gygan Downloads
- [2011-06-17 07:59:52 | 000,000,000 | ---D | C] -- C:\Program Files\Gygan BETA
- [2011-06-16 21:21:58 | 000,000,000 | -HSD | C] -- C:\Config.Msi
- [2011-06-16 21:21:58 | 000,000,000 | -HSD | C] -- \Config.Msi
- [2011-06-16 19:54:05 | 000,000,000 | ---D | C] -- C:\Users\Artur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Garena
- [2011-06-16 19:54:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garena
- [2011-06-16 19:53:58 | 000,000,000 | ---D | C] -- C:\Program Files\Garena
- [2011-06-15 14:05:12 | 000,000,000 | ---D | C] -- C:\Users\Artur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Irssi Console IRC Client
- [2011-06-15 14:05:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Irssi Console IRC Client
- [2011-06-15 14:05:12 | 000,000,000 | ---D | C] -- C:\Users\Artur\AppData\Roaming\Irssi
- [2011-06-15 14:05:12 | 000,000,000 | ---D | C] -- C:\Program Files\Irssi
- [2011-06-14 18:09:53 | 000,094,208 | ---- | C] (Blizzard Entertainment) -- C:\Windows\ScUnin.exe
- [2011-06-14 18:09:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Starcraft
- [2011-06-14 17:36:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\JIIVVP
- [2011-06-14 16:21:41 | 000,000,000 | ---D | C] -- C:\Users\Artur\Desktop\wrzucac na pendrive
- [2011-06-14 15:21:40 | 000,000,000 | ---D | C] -- C:\Users\Artur\AppData\Roaming\EurekaLog
- [2011-06-14 07:40:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ardamax Keylogger 3.8
- [2011-06-13 21:39:14 | 000,000,000 | -HSD | C] -- C:\Windows\System32\VMADPD
- [2011-06-13 17:49:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\IAYRVF
- [2011-06-13 17:33:40 | 000,000,000 | ---D | C] -- C:\Program Files\JOM
- [2011-06-11 10:04:18 | 000,000,000 | ---D | C] -- C:\Users\Artur\AppData\Roaming\TickTack
- [2011-06-10 20:13:04 | 000,295,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationHost.exe
- [2011-06-10 20:13:04 | 000,099,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationHostProxy.dll
- [2011-06-10 20:13:04 | 000,049,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netfxperf.dll
- [2011-06-10 20:12:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\S.A.D
- [2011-06-10 20:12:08 | 000,025,216 | ---- | C] (The OpenVPN Project) -- C:\Windows\System32\drivers\tap0901.sys
- [2011-06-10 20:12:05 | 000,000,000 | ---D | C] -- C:\Program Files\S.A.D
- [2011-06-09 18:28:01 | 000,000,000 | ---D | C] -- C:\Users\Artur\AppData\Roaming\FileZilla
- [2011-06-09 18:27:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
- [2011-06-09 18:27:56 | 000,000,000 | ---D | C] -- C:\Program Files\FileZilla FTP Client
- [2011-06-06 21:26:02 | 000,000,000 | ---D | C] -- C:\Users\Artur\Desktop\Tools
- [2011-06-05 21:14:38 | 024,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\imageres.dll
- [2011-06-05 21:05:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Stardock
- [2011-06-05 21:05:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stardock
- [2011-06-05 21:05:50 | 000,000,000 | ---D | C] -- C:\Program Files\Stardock
- [2011-05-29 22:21:25 | 000,000,000 | ---D | C] -- C:\Users\Artur\AppData\Roaming\OpenOffice.org
- [2011-05-29 22:20:36 | 000,000,000 | --SD | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.3
- [2011-05-29 22:19:36 | 000,000,000 | ---D | C] -- C:\Program Files\OpenOffice.org 3
- [2011-05-28 14:14:04 | 000,000,000 | ---D | C] -- C:\ProgramData\FLEXnet
- [2011-05-28 13:59:11 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe Media Player
- [2011-05-28 13:59:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe
- [2011-05-28 13:54:40 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Macrovision Shared
- [2011-05-27 21:48:12 | 000,000,000 | ---D | C] -- C:\Users\Artur\AppData\Roaming\.minecraft
- [2011-05-23 17:09:59 | 000,000,000 | ---D | C] -- C:\Users\Artur\AppData\Roaming\TS3Client
- [2011-05-23 17:09:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
- [2011-05-23 17:09:03 | 000,000,000 | ---D | C] -- C:\Program Files\TeamSpeak 3 Client
- [2011-05-20 18:17:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Havij 1.14 Pro
- [2011-05-20 18:17:50 | 000,000,000 | ---D | C] -- C:\Program Files\Havij 1.14 Pro
- [2011-05-20 15:15:57 | 000,404,640 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
- [2011-05-19 14:37:04 | 000,000,000 | ---D | C] -- C:\Windows\XSxS
- [2011-05-19 14:37:04 | 000,000,000 | ---D | C] -- C:\Users\Artur\AppData\Local\Xenocode
- [2011-05-19 14:37:04 | 000,000,000 | ---D | C] -- C:\Program Files\Xenocode
- [2011-02-11 12:40:40 | 000,004,096 | ---- | C] ( ) -- C:\Windows\System32\IGFXDEVLib.dll
- [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
- [color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
- [2011-06-18 10:11:40 | 000,003,616 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
- [2011-06-18 10:11:39 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
- [2011-06-18 10:11:39 | 000,003,616 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
- [2011-06-17 13:18:53 | 000,045,202 | ---- | M] () -- C:\Users\Artur\AppData\Roaming\room_v3.dat
- [2011-06-17 09:56:44 | 000,010,240 | ---- | M] () -- C:\Users\Artur\Documents\Defacement-Index.html
- [2011-06-16 21:22:26 | 000,001,858 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 8.lnk
- [2011-06-16 21:19:03 | 000,631,636 | ---- | M] () -- C:\Windows\System32\perfh009.dat
- [2011-06-16 21:19:03 | 000,118,262 | ---- | M] () -- C:\Windows\System32\perfc009.dat
- [2011-06-16 21:12:35 | 3082,813,440 | -HS- | M] () -- C:\hiberfil.sys
- [2011-06-16 19:54:05 | 000,000,747 | ---- | M] () -- C:\Users\Artur\Desktop\Garena.lnk
- [2011-06-14 18:18:28 | 000,094,208 | ---- | M] (Blizzard Entertainment) -- C:\Windows\ScUnin.exe
- [2011-06-14 18:18:28 | 000,041,527 | ---- | M] () -- C:\Windows\scunin.dat
- [2011-06-14 18:18:28 | 000,000,967 | ---- | M] () -- C:\Windows\ScUnin.pif
- [2011-06-14 18:18:28 | 000,000,859 | ---- | M] () -- C:\Users\Artur\Desktop\Starcraft - Brood War.lnk
- [2011-06-14 18:05:45 | 000,000,987 | ---- | M] () -- C:\Users\Artur\Desktop\GameRanger.lnk
- [2011-06-14 18:05:45 | 000,000,967 | ---- | M] () -- C:\Users\Artur\Application Data\Microsoft\Internet Explorer\Quick Launch\GameRanger.lnk
- [2011-06-14 16:52:27 | 000,000,626 | ---- | M] () -- C:\Users\Artur\Desktop\HackTheGame - Shortcut.lnk
- [2011-06-14 16:06:33 | 000,000,062 | RH-- | M] () -- C:\Users\Artur\Desktop\autorun.ini
- [2011-06-10 20:12:10 | 000,000,935 | ---- | M] () -- C:\Users\Public\Desktop\CyberGhost VPN.lnk
- [2011-06-10 19:52:59 | 000,000,104 | ---- | M] () -- C:\Users\Artur\Application Data\Microsoft\Internet Explorer\Quick Launch\Internet - Shortcut.lnk
- [2011-06-10 19:24:50 | 000,000,811 | ---- | M] () -- C:\Windows\WVS_InstDBLogFile.csv
- [2011-06-10 19:23:56 | 000,000,016 | ---- | M] () -- C:\Windows\System32\ptlx55.dat.{5728B11F-B697-47AA-9C1B-8ECB545B5193}
- [2011-06-09 15:10:41 | 000,005,632 | ---- | M] () -- C:\Users\Artur\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
- [2011-06-08 20:48:53 | 000,666,495 | ---- | M] () -- C:\Users\Artur\Desktop\quadra.jpg
- [2011-06-06 16:39:42 | 000,002,565 | ---- | M] () -- C:\Users\Artur\Desktop\HiJackThis.lnk
- [2011-06-06 14:33:42 | 000,404,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
- [2011-06-05 21:14:38 | 024,025,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\imageres.dll
- [2011-05-30 18:18:23 | 002,322,560 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
- [2011-05-29 22:20:36 | 000,001,023 | ---- | M] () -- C:\Users\Public\Desktop\OpenOffice.org 3.3.lnk
- [2011-05-28 14:13:52 | 000,000,803 | ---- | M] () -- C:\Users\Artur\Desktop\Photoshop - Shortcut.lnk
- [2011-05-27 21:48:08 | 000,270,142 | ---- | M] () -- C:\Users\Artur\Desktop\Minecraft.exe
- [2011-05-23 17:09:08 | 000,000,930 | ---- | M] () -- C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
- [2011-05-21 10:21:51 | 278,133,955 | ---- | M] () -- C:\Windows\MEMORY.DMP
- [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
- [color=#E56717]========== Files Created - No Company Name ==========[/color]
- [2011-06-17 09:50:00 | 000,010,240 | ---- | C] () -- C:\Users\Artur\Documents\Defacement-Index.html
- [2011-06-16 21:22:26 | 000,001,858 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader 8.lnk
- [2011-06-16 21:22:26 | 000,001,804 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader 8.lnk
- [2011-06-16 21:10:23 | 000,045,202 | ---- | C] () -- C:\Users\Artur\AppData\Roaming\room_v3.dat
- [2011-06-16 19:54:05 | 000,000,747 | ---- | C] () -- C:\Users\Artur\Desktop\Garena.lnk
- [2011-06-14 18:18:28 | 000,000,859 | ---- | C] () -- C:\Users\Artur\Desktop\Starcraft - Brood War.lnk
- [2011-06-14 18:09:53 | 000,041,527 | ---- | C] () -- C:\Windows\scunin.dat
- [2011-06-14 18:09:53 | 000,000,967 | ---- | C] () -- C:\Windows\ScUnin.pif
- [2011-06-14 18:05:45 | 000,000,987 | ---- | C] () -- C:\Users\Artur\Desktop\GameRanger.lnk
- [2011-06-14 18:05:45 | 000,000,973 | ---- | C] () -- C:\Users\Artur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameRanger.lnk
- [2011-06-14 18:05:45 | 000,000,967 | ---- | C] () -- C:\Users\Artur\Application Data\Microsoft\Internet Explorer\Quick Launch\GameRanger.lnk
- [2011-06-14 16:52:27 | 000,000,626 | ---- | C] () -- C:\Users\Artur\Desktop\HackTheGame - Shortcut.lnk
- [2011-06-14 16:06:33 | 000,000,062 | RH-- | C] () -- C:\Users\Artur\Desktop\autorun.ini
- [2011-06-10 20:12:10 | 000,000,935 | ---- | C] () -- C:\Users\Public\Desktop\CyberGhost VPN.lnk
- [2011-06-10 19:52:59 | 000,000,104 | ---- | C] () -- C:\Users\Artur\Application Data\Microsoft\Internet Explorer\Quick Launch\Internet - Shortcut.lnk
- [2011-06-10 19:23:56 | 000,000,811 | ---- | C] () -- C:\Windows\WVS_InstDBLogFile.csv
- [2011-06-10 19:23:56 | 000,000,016 | ---- | C] () -- C:\Windows\System32\ptlx55.dat.{5728B11F-B697-47AA-9C1B-8ECB545B5193}
- [2011-06-08 20:48:53 | 000,666,495 | ---- | C] () -- C:\Users\Artur\Desktop\quadra.jpg
- [2011-05-29 22:20:36 | 000,001,023 | ---- | C] () -- C:\Users\Public\Desktop\OpenOffice.org 3.3.lnk
- [2011-05-28 14:13:54 | 000,000,803 | ---- | C] () -- C:\Users\Artur\Desktop\Photoshop - Shortcut.lnk
- [2011-05-28 14:01:26 | 000,000,773 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS4.lnk
- [2011-05-28 14:00:41 | 000,000,747 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS4.lnk
- [2011-05-28 14:00:07 | 000,001,264 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Drive CS4.lnk
- [2011-05-28 13:58:21 | 000,000,810 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Device Central CS4.lnk
- [2011-05-28 13:55:24 | 000,000,867 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS4.lnk
- [2011-05-28 13:55:08 | 000,001,239 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS4.lnk
- [2011-05-23 17:09:08 | 000,000,930 | ---- | C] () -- C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
- [2011-05-23 16:45:16 | 000,270,142 | ---- | C] () -- C:\Users\Artur\Desktop\Minecraft.exe
- [2011-05-21 10:21:15 | 278,133,955 | ---- | C] () -- C:\Windows\MEMORY.DMP
- [2011-05-18 15:20:29 | 000,000,000 | ---- | C] () -- \ŰileZill§ť±eÁentÁe± e±ÁÁxml
- [2011-05-18 15:20:29 | 000,000,000 | ---- | C] () -- \FiąeZillaŃsi‡emanage˙.xml
- [2011-05-13 20:28:45 | 000,150,480 | -H-- | C] () -- C:\Windows\System32\mlfcache.dat
- [2011-05-07 08:20:45 | 000,038,332 | ---- | C] () -- C:\Windows\DIIUnin.dat
- [2011-05-05 14:48:35 | 000,000,064 | ---- | C] () -- \pwsafe.key
- [2011-04-12 13:21:50 | 000,000,552 | ---- | C] () -- C:\Users\Artur\AppData\Local\d3d8caps.dat
- [2011-04-01 20:28:48 | 000,005,632 | ---- | C] () -- C:\Users\Artur\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
- [2011-03-26 11:24:57 | 000,140,288 | ---- | C] () -- C:\Windows\System32\igfxtvcx.dll
- [2011-03-26 11:24:32 | 3082,813,440 | -HS- | C] () --
- [2011-03-26 11:18:11 | 000,006,756 | ---- | C] () -- C:\Users\Artur\AppData\Local\d3d9caps.dat
- [2011-03-26 11:14:14 | 000,080,416 | ---- | C] () -- C:\Windows\System32\RtNicProp32.dll
- [2011-03-26 11:11:41 | 000,000,151 | ---- | C] () -- C:\Windows\System32\GfxUI.exe.config
- [2011-03-25 07:17:50 | 000,000,000 | ---- | C] () -- C:\Windows\ToDisc.INI
- [2011-03-03 19:35:04 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
- [2011-02-26 21:37:13 | 000,005,632 | ---- | C] () -- C:\Windows\System32\drivers\StarOpen.sys
- [2011-02-25 15:20:50 | 000,014,848 | ---- | C] () -- C:\Windows\System32\EuEpmGdi.dll
- [2011-02-25 15:20:49 | 002,336,384 | ---- | C] () -- C:\Windows\System32\BootMan.exe
- [2011-02-25 15:20:49 | 000,086,408 | ---- | C] () -- C:\Windows\System32\setupempdrv03.exe
- [2011-02-25 15:20:49 | 000,014,216 | ---- | C] () -- C:\Windows\System32\epmntdrv.sys
- [2011-02-25 15:20:49 | 000,008,456 | ---- | C] () -- C:\Windows\System32\EuGdiDrv.sys
- [2011-02-25 05:15:10 | 000,000,006 | RHS- | C] () -- C:\Windows\System32\drivers\taishop.sys
- [2011-02-25 04:56:40 | 000,128,113 | ---- | C] () -- C:\Windows\System32\csellang.ini
- [2011-02-25 04:56:40 | 000,045,056 | ---- | C] () -- C:\Windows\System32\csellang.dll
- [2011-02-25 04:56:40 | 000,010,150 | ---- | C] () -- C:\Windows\System32\tosmreg.ini
- [2011-02-25 04:56:40 | 000,007,671 | ---- | C] () -- C:\Windows\System32\cseltbl.ini
- [2011-02-25 04:38:33 | 000,000,852 | ---- | C] () -- C:\Windows\System32\drivers\RTKHDRC1.dat
- [2011-02-25 04:38:33 | 000,000,852 | ---- | C] () -- C:\Windows\System32\drivers\RTKHDRC0.dat
- [2011-02-25 04:38:33 | 000,000,520 | ---- | C] () -- C:\Windows\System32\drivers\RTEQEX1.dat
- [2011-02-25 04:38:33 | 000,000,520 | ---- | C] () -- C:\Windows\System32\drivers\RTEQEX0.dat
- [2011-02-25 04:38:33 | 000,000,176 | ---- | C] () -- C:\Windows\System32\drivers\RTHDAEQ1.dat
- [2011-02-25 04:38:33 | 000,000,176 | ---- | C] () -- C:\Windows\System32\drivers\RTHDAEQ0.dat
- [2011-02-25 04:15:47 | 3396,612,096 | -HS- | C] () --
- [2011-02-24 05:15:11 | 000,000,016 | RHS- | C] () -- C:\Windows\System32\drivers\fbd.sys
- [2011-02-11 13:10:52 | 000,439,308 | ---- | C] () -- C:\Windows\System32\igcompkrng500.bin
- [2011-02-11 13:10:50 | 000,982,240 | ---- | C] () -- C:\Windows\System32\igkrng500.bin
- [2011-02-11 13:10:50 | 000,092,356 | ---- | C] () -- C:\Windows\System32\igfcg500m.bin
- [2008-08-14 21:48:20 | 000,000,000 | ---- | C] () -- C:\Windows\NDSTray.INI
- [2008-08-14 21:28:30 | 000,204,800 | ---- | C] () -- C:\Windows\System32\IVIresizeW7.dll
- [2008-08-14 21:28:30 | 000,200,704 | ---- | C] () -- C:\Windows\System32\IVIresizeA6.dll
- [2008-08-14 21:28:30 | 000,192,512 | ---- | C] () -- C:\Windows\System32\IVIresizeP6.dll
- [2008-08-14 21:28:30 | 000,192,512 | ---- | C] () -- C:\Windows\System32\IVIresizeM6.dll
- [2008-08-14 21:28:30 | 000,188,416 | ---- | C] () -- C:\Windows\System32\IVIresizePX.dll
- [2008-08-14 21:28:30 | 000,020,480 | ---- | C] () -- C:\Windows\System32\IVIresize.dll
- [2008-08-14 21:02:18 | 000,257,053 | ---- | C] () -- C:\Windows\WOLSET.exe
- [2008-08-14 21:02:02 | 000,008,192 | R-S- | C] () -- \BOOTSECT.BAK
- [2008-08-14 21:02:00 | 000,333,203 | RHS- | C] () -- \bootmgr
- [2008-06-13 04:59:22 | 000,147,456 | ---- | C] () -- C:\Windows\System32\igfxCoIn_v1502.dll
- [2008-01-21 04:24:14 | 000,100,043 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
- [2007-12-22 01:46:32 | 000,118,784 | ---- | C] () -- C:\Windows\System32\TosBtAcc.dll
- [2006-11-02 14:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
- [2006-11-02 14:47:37 | 002,322,560 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
- [2006-11-02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
- [2006-11-02 12:33:01 | 000,631,636 | ---- | C] () -- C:\Windows\System32\perfh009.dat
- [2006-11-02 12:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
- [2006-11-02 12:33:01 | 000,118,262 | ---- | C] () -- C:\Windows\System32\perfc009.dat
- [2006-11-02 12:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
- [2006-11-02 12:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
- [2006-11-02 12:23:09 | 000,000,024 | ---- | C] () -- \autoexec.bat
- [2006-11-02 10:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
- [2006-11-02 10:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
- [2006-11-02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
- [2006-11-02 09:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
- [2006-11-02 09:22:43 | 000,018,271 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
- [2006-11-02 08:25:08 | 000,000,010 | ---- | C] () -- \config.sys
- [2006-03-09 18:58:00 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll
- [2005-07-23 06:30:18 | 000,065,536 | ---- | C] () -- C:\Windows\System32\TosCommAPI.dll
- [color=#E56717]========== LOP Check ==========[/color]
- [2011-06-17 16:58:49 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\.minecraft
- [2011-05-06 19:29:42 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\AutoPowerOn
- [2011-05-06 15:10:10 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\BitComet
- [2011-06-06 15:26:29 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\cacaoweb
- [2011-03-25 07:35:17 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\DAEMON Tools Pro
- [2011-06-14 15:21:42 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\EurekaLog
- [2011-06-16 21:23:53 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\FileZilla
- [2011-06-18 10:28:58 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\foobar2000
- [2011-06-14 18:05:45 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\GameRanger
- [2011-03-30 19:37:13 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\ImgBurn
- [2011-02-26 10:53:28 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\IrfanView
- [2011-06-15 14:05:12 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\Irssi
- [2011-05-05 14:48:48 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\KeePass
- [2011-02-25 18:59:12 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\LolClient
- [2011-04-28 18:56:42 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\Moje pliki Bitwy o Śródziemie™ II
- [2011-05-29 22:21:25 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\OpenOffice.org
- [2011-02-24 22:09:50 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\Qrix
- [2011-04-28 15:05:59 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\Samsung
- [2011-03-03 19:35:04 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\Thunderbird
- [2011-06-11 10:04:19 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\TickTack
- [2011-06-09 15:03:34 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\Toshiba
- [2011-05-23 17:18:34 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\TS3Client
- [2011-06-16 21:15:21 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\uTorrent
- [2011-02-25 15:08:53 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\WinBatch
- [2011-04-12 11:04:53 | 000,000,000 | ---D | M] -- C:\Users\Artur\AppData\Roaming\WinMount
- [2011-06-16 21:11:32 | 000,019,926 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
- [color=#E56717]========== Purity Check ==========[/color]
- < End of report >
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement