wklejto.pl

Dodane przez: ~Anonim (2010-09-05 23:08) -> text
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
16.
17.
18.
19.
20.
21.
22.
23.
24.
25.
26.
27.
28.
29.
30.
31.
32.
33.
34.
35.
36.
37.
38.
39.
40.
41.
42.
43.
44.
45.
46.
47.
48.
49.
50.
51.
52.
53.
54.
55.
56.
57.
58.
59.
60.
61.
62.
63.
64.
65.
66.
67.
68.
69.
70.
71.
72.
73.
74.
75.
76.
77.
78.
79.
80.
81.
82.
83.
84.
85.
86.
87.
88.
89.
90.
91.
92.
93.
94.
95.
96.
97.
98.
99.
100.
101.
102.
103.
104.
105.
106.
107.
108.
109.
110.
111.
112.
113.
114.
115.
116.
117.
118.
119.
120.
121.
122.
123.
124.
125.
126.
127.
128.
129.
130.
131.
132.
133.
134.
135.
136.
137.
138.
139.
140.
141.
142.
143.
144.
145.
146.
147.
148.
149.
150.
151.
152.
153.
154.
155.
156.
157.
158.
159.
160.
161.
162.
163.
164.
165.
166.
167.
168.
169.
170.
171.
172.
173.
174.
175.
176.
177.
178.
179.
180.
181.
182.
183.
184.
185.
186.
187.
188.
189.
190.
191.
192.
193.
194.
195.
196.
197.
198.
199.
200.
201.
202.
203.
204.
205.
206.
207.
208.
209.
210.
211.
212.
213.
214.
215.
216.
217.
218.
219.
220.
221.
222.
223.
224.
225.
226.
227.
228.
229.
230.
231.
232.
233.
234.
235.
236.
237.
238.
239.
240.
241.
242.
243.
244.
245.
246.
247.
248.
249.
250.
251.
252.
253.
254.
255.
256.
257.
258.
259.
260.
261.
262.
263.
264.
265.
266.
267.
268.
269.
270.
271.
272.
273.
274.
275.
276.
277.
278.
279.
280.
281.
282.
283.
284.
285.
286.
287.
288.
289.
290.
291.
292.
293.
294.
295.
296.
297.
298.
299.
300.
301.
302.
303.
304.
305.
306.
307.
308.
309.
310.
311.
312.
313.
314.
315.
316.
317.
318.
319.
320.
321.
322.
323.
324.
325.
326.
327.
328.
329.
330.
331.
332.
333.
334.
335.
336.
337.
338.
339.
340.
341.
342.
343.
344.
345.
346.
347.
348.
349.
350.
351.
352.
353.
354.
355.
356.
357.
358.
359.
360.
361.
362.
363.
364.
365.
366.
367.
368.
369.
370.
371.
372.
373.
374.
375.
376.
377.
378.
379.
380.
381.
382.
383.
384.
385.
386.
387.
388.
389.
390.
391.
392.
393.
394.
395.
396.
397.
398.
399.
400.
401.
402.
403.
404.
405.
406.
407.
408.
409.
410.
411.
412.
413.
414.
415.
416.
417.
418.
419.
420.
421.
422.
423.
424.
425.
426.
427.
428.
429.
430.
431.
432.
433.
434.
435.
436.
437.
438.
439.
440.
441.
442.
443.
444.
445.
446.
447.
448.
449.
450.
451.
452.
453.
454.
455.
456.
457.
458.
459.
460.
461.
462.
463.
464.
465.
466.
467.
468.
469.
470.
471.
472.
473.
474.
475.
476.
477.
478.
479.
480.
481.
OTL logfile created on: 2010-09-05 22:54:54 - Run 3
OTL by OldTimer - Version 3.2.11.0     Folder = C:\\Users\\Kabak\\Desktop
64bit- Ultimate Edition  (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
 
3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 64,00% Memory free
6,00 Gb Paging File | 5,00 Gb Available in Paging File | 80,00% Paging File free
Paging file location(s): ?:\\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\\Windows | %ProgramFiles% = C:\\Program Files (x86)
Drive C: | 68,35 Gb Total Space | 28,86 Gb Free Space | 42,23% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Drive M: | 117,95 Gb Total Space | 4,98 Gb Free Space | 4,22% Space Free | Partition Type: NTFS
 
Computer Name: KABAK-KOMPUTER
Current User Name: Kabak
Logged in as Administrator.
 
Current Boot Mode: Normal
Scan Mode: Current user
Include 64bit Scans
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
 
[color=#E56717]========== Processes (All) ==========[/color]
 
PRC - [2010-09-04 16:48:42 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\\Users\\Kabak\\Desktop\\OTL.exe
PRC - [2010-08-27 21:47:07 | 000,202,256 | ---- | M] (RealNetworks, Inc.) -- C:\\Program Files (x86)\\Common Files\\Real\\Update_OB\\realsched.exe
PRC - [2010-08-09 15:27:06 | 000,836,464 | ---- | M] (Opera Software) -- C:\\Program Files (x86)\\Opera\\opera.exe
PRC - [2010-06-28 12:38:11 | 000,218,464 | ---- | M] () -- C:\\Windows\\SysWOW64\\PnkBstrB.exe
PRC - [2010-06-27 10:34:25 | 000,075,064 | ---- | M] () -- C:\\Windows\\SysWOW64\\PnkBstrA.exe
PRC - [2010-06-09 10:06:33 | 000,976,832 | ---- | M] (Adobe Systems Incorporated) -- C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe
PRC - [2010-03-19 10:49:20 | 000,144,672 | ---- | M] (Apple Inc.) -- C:\\Program Files (x86)\\Common Files\\Apple\\Mobile Device Support\\AppleMobileDeviceService.exe
PRC - [2010-02-26 02:21:50 | 000,126,392 | R--- | M] (Symantec Corporation) -- C:\\Program Files (x86)\\Norton Internet Security\\Engine\\17.7.0.12\\ccSvcHst.exe
PRC - [2010-02-12 11:46:12 | 000,345,376 | ---- | M] (Apple Inc.) -- C:\\Program Files (x86)\\Bonjour\\mDNSResponder.exe
PRC - [2009-10-08 11:31:44 | 000,112,592 | ---- | M] (Threat Expert Ltd.) -- C:\\Program Files (x86)\\Spyware Doctor\\BDT\\BDTUpdateService.exe
PRC - [2009-03-02 15:06:16 | 000,068,136 | ---- | M] () -- C:\\Program Files (x86)\\Gigabyte\\EasySaver\\ESSVR.EXE
 
 
[color=#E56717]========== Modules (All) ==========[/color]
 
MOD - [2010-09-04 16:48:42 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\\Users\\Kabak\\Desktop\\OTL.exe
MOD - [2010-08-27 21:47:22 | 000,040,960 | ---- | M] () -- C:\\ProgramData\\Real\\RealPlayer\\BrowserRecordPlugin\\Chrome\\Hook\\rpchromebrowserrecordhelper.dll
MOD - [2010-08-27 21:47:07 | 000,499,712 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\msvcp71.dll
MOD - [2010-08-27 21:47:07 | 000,348,160 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\msvcr71.dll
MOD - [2009-07-14 03:17:51 | 001,289,712 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\ntdll.dll
MOD - [2009-07-14 03:16:19 | 000,268,800 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\Wldap32.dll
MOD - [2009-07-14 03:16:17 | 001,123,328 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\vssapi.dll
MOD - [2009-07-14 03:16:17 | 000,627,200 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\usp10.dll
MOD - [2009-07-14 03:16:17 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\vsstrace.dll
MOD - [2009-07-14 03:16:17 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\version.dll
MOD - [2009-07-14 03:16:15 | 000,171,008 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\spp.dll
MOD - [2009-07-14 03:16:15 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\srclient.dll
MOD - [2009-07-14 03:16:14 | 012,866,560 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\shell32.dll
MOD - [2009-07-14 03:16:14 | 001,668,608 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\setupapi.dll
MOD - [2009-07-14 03:16:14 | 000,350,208 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\shlwapi.dll
MOD - [2009-07-14 03:16:14 | 000,179,712 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\shdocvw.dll
MOD - [2009-07-14 03:16:13 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\sechost.dll
MOD - [2009-07-14 03:16:13 | 000,060,928 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\samlib.dll
MOD - [2009-07-14 03:16:13 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\samcli.dll
MOD - [2009-07-14 03:16:13 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\secur32.dll
MOD - [2009-07-14 03:16:12 | 001,412,608 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\ole32.dll
MOD - [2009-07-14 03:16:12 | 000,988,160 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\propsys.dll
MOD - [2009-07-14 03:16:12 | 000,571,904 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\oleaut32.dll
MOD - [2009-07-14 03:16:12 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\olepro32.dll
MOD - [2009-07-14 03:16:12 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\profapi.dll
MOD - [2009-07-14 03:16:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\psapi.dll
MOD - [2009-07-14 03:16:11 | 000,121,856 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\ntmarta.dll
MOD - [2009-07-14 03:16:03 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\netutils.dll
MOD - [2009-07-14 03:15:50 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\msvcrt.dll
MOD - [2009-07-14 03:15:43 | 000,828,928 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\msctf.dll
MOD - [2009-07-14 03:15:13 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\dwmapi.dll
MOD - [2009-07-14 03:15:11 | 000,064,512 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\devobj.dll
MOD - [2009-07-14 03:15:07 | 000,486,912 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\comdlg32.dll
MOD - [2009-07-14 03:15:07 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\cryptbase.dll
MOD - [2009-07-14 03:15:03 | 000,522,240 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\clbcatq.dll
MOD - [2009-07-14 03:15:02 | 000,145,920 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\cfgmgr32.dll
MOD - [2009-07-14 03:14:57 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\atl.dll
MOD - [2009-07-14 03:14:53 | 000,640,000 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\advapi32.dll
MOD - [2009-07-14 03:14:53 | 000,292,352 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\apphelp.dll
MOD - [2009-07-14 03:14:10 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\msscript.ocx
MOD - [2009-07-14 03:14:08 | 000,319,488 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\winspool.drv
MOD - [2009-07-14 03:11:24 | 000,833,024 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\user32.dll
MOD - [2009-07-14 03:11:24 | 000,245,760 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\uxtheme.dll
MOD - [2009-07-14 03:11:24 | 000,096,768 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\sspicli.dll
MOD - [2009-07-14 03:11:23 | 000,836,608 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\kernel32.dll
MOD - [2009-07-14 03:11:23 | 000,662,528 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\rpcrt4.dll
MOD - [2009-07-14 03:11:23 | 000,269,824 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\KernelBase.dll
MOD - [2009-07-14 03:11:23 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\lpk.dll
MOD - [2009-07-14 03:11:21 | 000,310,784 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\gdi32.dll
MOD - [2009-07-14 03:11:21 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWOW64\\imm32.dll
MOD - [2009-07-14 03:03:50 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\winsxs\\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\\comctl32.dll
 
 
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
 
SRV:[b]64bit:[/b] - File not found [Auto | Running] -- C:\\Windows\\SysNative\\PnkBstrB.exe -- (PnkBstrB)
SRV:[b]64bit:[/b] - File not found [Auto | Running] -- C:\\Windows\\SysNative\\PnkBstrA.exe -- (PnkBstrA)
SRV:[b]64bit:[/b] - [2010-04-07 04:12:18 | 000,202,752 | ---- | M] (AMD) [Auto | Running] -- C:\\Windows\\SysNative\\atiesrxx.exe -- (AMD External Events Utility)
SRV:[b]64bit:[/b] - [2009-07-14 03:41:56 | 000,195,072 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\\Windows\\SysNative\\umrdp.dll -- (UmRdpService)
SRV:[b]64bit:[/b] - [2009-07-14 03:41:53 | 001,361,920 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\\Windows\\SysNative\\PeerDistSvc.dll -- (PeerDistSvc)
SRV:[b]64bit:[/b] - [2009-07-14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\\Program Files\\Windows Defender\\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2009-07-14 03:40:24 | 000,689,152 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\\Windows\\SysNative\\cscsvc.dll -- (CscService)
SRV:[b]64bit:[/b] - [2009-07-14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\\Windows\\SysNative\\appmgmts.dll -- (AppMgmt)
SRV - [2010-06-28 12:38:11 | 000,218,464 | ---- | M] () [Auto | Running] -- C:\\Windows\\SysWOW64\\PnkBstrB.exe -- (PnkBstrB)
SRV - [2010-06-27 10:34:25 | 000,075,064 | ---- | M] () [Auto | Running] -- C:\\Windows\\SysWOW64\\PnkBstrA.exe -- (PnkBstrA)
SRV - [2010-05-22 15:12:47 | 000,395,048 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\\Program Files (x86)\\Common Files\\Steam\\SteamService.exe -- (Steam Client Service)
SRV - [2010-03-19 10:49:20 | 000,144,672 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\\Program Files (x86)\\Common Files\\Apple\\Mobile Device Support\\AppleMobileDeviceService.exe -- (Apple Mobile Device)
SRV - [2010-02-26 02:21:50 | 000,126,392 | R--- | M] (Symantec Corporation) [Unknown | Running] -- C:\\Program Files (x86)\\Norton Internet Security\\Engine\\17.7.0.12\\ccSvcHst.exe -- (NIS)
SRV - [2009-10-08 11:31:44 | 000,112,592 | ---- | M] (Threat Expert Ltd.) [Auto | Running] -- C:\\Program Files (x86)\\Spyware Doctor\\BDT\\BDTUpdateService.exe -- (Browser Defender Update Service)
SRV - [2009-09-23 13:33:42 | 001,141,200 | ---- | M] (PC Tools) [On_Demand | Stopped] -- C:\\Program Files (x86)\\Spyware Doctor\\pctsSvc.exe -- (sdCoreService)
SRV - [2009-09-23 12:17:22 | 000,358,600 | ---- | M] (PC Tools) [On_Demand | Stopped] -- C:\\Program Files (x86)\\Spyware Doctor\\pctsAuxs.exe -- (sdAuxService)
SRV - [2009-03-02 15:06:16 | 000,068,136 | ---- | M] () [Auto | Running] -- C:\\Program Files (x86)\\Gigabyte\\EasySaver\\ESSVR.EXE -- (ES lite Service)
 
 
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
 
DRV:[b]64bit:[/b] - [2010-09-03 23:08:15 | 000,173,104 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\SYMEVENT64x86.SYS -- (SymEvent)
DRV:[b]64bit:[/b] - [2010-05-06 06:01:59 | 000,451,120 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symtdiv.sys -- (SYMTDIv)
DRV:[b]64bit:[/b] - [2010-04-29 07:03:51 | 000,150,064 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\ironx64.sys -- (SymIRON)
DRV:[b]64bit:[/b] - [2010-04-22 05:02:20 | 000,221,232 | ---- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symefa64.sys -- (SymEFA)
DRV:[b]64bit:[/b] - [2010-04-22 04:29:51 | 000,505,392 | ---- | M] (Symantec Corporation) [File_System | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\srtsp64.sys -- (SRTSP)
DRV:[b]64bit:[/b] - [2010-04-22 04:29:51 | 000,032,304 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\srtspx64.sys -- (SRTSPX) Symantec Real Time Storage Protection (PEL)
DRV:[b]64bit:[/b] - [2010-04-07 04:44:06 | 006,659,072 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\atikmdag.sys -- (atikmdag)
DRV:[b]64bit:[/b] - [2010-04-07 04:44:06 | 006,659,072 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\atikmdag.sys -- (amdkmdag)
DRV:[b]64bit:[/b] - [2010-04-07 03:23:30 | 000,195,584 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\atikmpag.sys -- (amdkmdap)
DRV:[b]64bit:[/b] - [2010-04-03 03:28:28 | 000,894,592 | ---- | M] (Line 6) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\L6PODX3LV64.sys -- (L6PODX3LV)
DRV:[b]64bit:[/b] - [2010-03-09 12:21:42 | 000,123,408 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\AtiHdmi.sys -- (AtiHdmiService)
DRV:[b]64bit:[/b] - [2010-02-26 02:22:52 | 000,615,040 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\cchpx64.sys -- (ccHP)
DRV:[b]64bit:[/b] - [2010-02-03 14:56:56 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\hamachi.sys -- (hamachi)
DRV:[b]64bit:[/b] - [2009-09-23 16:10:04 | 000,218,056 | ---- | M] (PC Tools) [Kernel | Boot | Running] -- C:\\Windows\\SysNative\\drivers\\PCTCore64.sys -- (PCTCore)
DRV:[b]64bit:[/b] - [2009-08-30 02:17:18 | 000,433,200 | R--- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symds64.sys -- (SymDS)
DRV:[b]64bit:[/b] - [2009-07-14 03:52:21 | 000,106,576 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2009-07-14 03:52:21 | 000,028,752 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\\Windows\\SysNative\\drivers\\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009-07-14 03:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,200,272 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\vmbus.sys -- (vmbus)
DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,046,672 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\\Windows\\SysNative\\drivers\\vmstorfl.sys -- (storflt)
DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,034,896 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\storvsc.sys -- (storvsc)
DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009-07-14 01:42:58 | 000,006,656 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\vms3cap.sys -- (s3cap)
DRV:[b]64bit:[/b] - [2009-07-14 01:42:44 | 000,021,760 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\VMBusHID.sys -- (VMBusHID)
DRV:[b]64bit:[/b] - [2009-07-14 01:24:27 | 000,514,048 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\\Windows\\SysNative\\drivers\\csc.sys -- (CSC)
DRV:[b]64bit:[/b] - [2009-06-10 22:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\\Windows\\SysNative\\wbem\\ntfs.mof -- (Ntfs)
DRV:[b]64bit:[/b] - [2009-06-10 22:35:42 | 000,187,392 | ---- | M] (Realtek Corporation                                            ) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\Rt64win7.sys -- (RTL8167)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\\Windows\\SysNative\\drivers\\hcw85cir.sys -- (hcw85cir)
DRV:[b]64bit:[/b] - [2009-03-27 02:23:54 | 000,019,432 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | Auto | Running] -- C:\\Windows\\SysNative\\drivers\\cpuz132_x64.sys -- (cpuz132)
DRV:[b]64bit:[/b] - [2009-02-24 19:35:44 | 000,255,552 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\\Windows\\SysNative\\drivers\\mcdbus.sys -- (mcdbus)
DRV - [2010-09-05 22:48:47 | 000,025,640 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\\Windows\\gdrv.sys -- (gdrv)
DRV - [2010-09-03 23:31:19 | 001,791,536 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\\ProgramData\\Norton\\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\\NIS_17.0.0.136\\Definitions\\VirusDefs\\20100904.003\\EX64.SYS -- (NAVEX15)
DRV - [2010-09-03 23:31:19 | 000,475,696 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\\Program Files (x86)\\Common Files\\Symantec Shared\\EENGINE\\eeCtrl64.sys -- (eeCtrl)
DRV - [2010-09-03 23:31:19 | 000,132,656 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\\Program Files (x86)\\Common Files\\Symantec Shared\\EENGINE\\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
DRV - [2010-09-03 23:31:19 | 000,117,808 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\\ProgramData\\Norton\\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\\NIS_17.0.0.136\\Definitions\\VirusDefs\\20100904.003\\ENG64.SYS -- (NAVENG)
DRV - [2010-09-01 20:04:32 | 000,463,408 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\\ProgramData\\Norton\\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\\NIS_17.0.0.136\\Definitions\\IPSDefs\\20100903.003\\IDSviA64.sys -- (IDSVia64)
DRV - [2010-08-10 01:16:24 | 000,945,200 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\\ProgramData\\Norton\\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\\NIS_17.0.0.136\\Definitions\\BASHDefs\\20100810.004\\BHDrvx64.sys -- (BHDrvx64)
DRV - [2009-08-22 20:25:00 | 000,012,288 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\\Program Files (x86)\\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\\RivaTuner64.sys -- (RivaTuner64)
DRV - [2009-02-24 19:35:44 | 000,255,552 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\\Windows\\SysWOW64\\drivers\\mcdbus.sys -- (mcdbus)
DRV - [2009-02-10 18:23:10 | 000,115,600 | ---- | M] (EZB Systems, Inc.) [File_System | System | Running] -- C:\\Program Files (x86)\\UltraISO\\drivers\\ISODrv64.sys -- (ISODrive)
 
 
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
 
 
[color=#E56717]========== Internet Explorer ==========[/color]
 
IE - HKLM\\SOFTWARE\\Microsoft\\Internet Explorer\\Main,Local Page = C:\\Windows\\SysWOW64\\blank.htm
 
IE - HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings: \"ProxyEnable\" = 0
IE - HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings: \"ProxyOverride\" = plimus.com,www.plimus.com,regnow.com,www.regnow.com,;*.local
IE - HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Internet Settings: \"ProxyServer\" = socks=
 
FF - HKLM\\software\\mozilla\\Firefox\\Extensions\\\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\\ProgramData\\Real\\RealPlayer\\BrowserRecordPlugin\\Firefox\\Ext [2010-08-27 21:47:22 | 000,000,000 | ---D | M]
FF - HKLM\\software\\mozilla\\Firefox\\Extensions\\\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\\ProgramData\\Norton\\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\\NIS_17.0.0.136\\IPSFFPlgn\\ [2010-09-04 18:03:37 | 000,000,000 | ---D | M]
FF - HKLM\\software\\mozilla\\Firefox\\Extensions\\\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\\ProgramData\\Norton\\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\\NIS_17.0.0.136\\coFFPlgn\\ [2010-09-04 16:37:31 | 000,000,000 | ---D | M]
 
[2009-03-27 15:08:01 | 000,000,000 | ---D | M] -- C:\\Program Files (x86)\\mozilla firefox\\extensions
[2010-03-31 10:57:14 | 000,120,296 | ---- | M] ( ) -- C:\\Program Files (x86)\\mozilla firefox\\plugins\\npganymedenet.dll
[2010-01-14 00:46:00 | 000,063,488 | ---- | M] (Nullsoft, Inc.) -- C:\\Program Files (x86)\\mozilla firefox\\plugins\\npwachk.dll
 
O1 HOSTS File: ([2010-05-16 10:29:39 | 000,001,078 | R--- | M]) - C:\\Windows\\SysNative\\drivers\\etc\\hosts
O1 - Hosts: 127.0.0.1       static3.cdn.ubi.com
O1 - Hosts: 127.0.0.1       ubisoft-orbit.s3.amazonaws.com
O1 - Hosts: 127.0.0.1       onlineconfigservice.ubi.com
O1 - Hosts: 127.0.0.1       orbitservice.ubi.com
O1 - Hosts: 127.0.0.1       ubisoft-orbit-savegames.s3.amazonaws.com
O2 - BHO: (PC Tools Browser Guard BHO) - {2A0F3D1B-0909-4FF4-B272-609CCE6054E7} - C:\\Program Files (x86)\\Spyware Doctor\\BDT\\PCTBrowserDefender.dll (Threat Expert Ltd.)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\\ProgramData\\Real\\RealPlayer\\BrowserRecordPlugin\\IE\\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (Symantec NCO BHO) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\\Program Files (x86)\\Norton Internet Security\\Engine\\17.7.0.12\\coIEPlg.dll (Symantec Corporation)
O2 - BHO: (Symantec Intrusion Prevention) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\\Program Files (x86)\\Norton Internet Security\\Engine\\17.7.0.12\\IPSBHO.DLL (Symantec Corporation)
O3 - HKLM\\..\\Toolbar: (PC Tools Browser Guard) - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\\Program Files (x86)\\Spyware Doctor\\BDT\\PCTBrowserDefender.dll (Threat Expert Ltd.)
O3 - HKLM\\..\\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\\Program Files (x86)\\Norton Internet Security\\Engine\\17.7.0.12\\coIEPlg.dll (Symantec Corporation)
O3 - HKCU\\..\\Toolbar\\WebBrowser: (PC Tools Browser Guard) - {472734EA-242A-422B-ADF8-83D1E48CC825} - C:\\Program Files (x86)\\Spyware Doctor\\BDT\\PCTBrowserDefender.dll (Threat Expert Ltd.)
O3 - HKCU\\..\\Toolbar\\WebBrowser: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\\Program Files (x86)\\Norton Internet Security\\Engine\\17.7.0.12\\coIEPlg.dll (Symantec Corporation)
O4 - HKLM..\\Run: [amd_dc_opt] C:\\Program Files (x86)\\AMD\\Dual-Core Optimizer\\amd_dc_opt.exe (AMD)
O4 - HKLM..\\Run: [StartCCC] C:\\Program Files (x86)\\ATI Technologies\\ATI.ACE\\Core-Static\\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\\Run: [svchot.exe] C:\\Users\\Kabak\\AppData\\Roaming\\svhost\\svchot.exe File not found
O4 - HKLM..\\Run: [TkBellExe] C:\\Program Files (x86)\\Common Files\\Real\\Update_OB\\realsched.exe (RealNetworks, Inc.)
O4 - HKCU..\\Run: [ALLUpdate] C:\\Program Files (x86)\\ALLPlayer\\ALLUpdate.exe File not found
O4 - Startup: C:\\Users\\Kabak\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\EarthDesk.lnk = C:\\Program Files (x86)\\XericDesign\\EarthDesk\\earthdesk.exe File not found
O4 - Startup: C:\\Users\\Kabak\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\MagicDisc.lnk = C:\\Program Files (x86)\\MagicDisc\\MagicDisc.exe (MagicISO, Inc.)
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer: NoActiveDesktop = 1 [2010-09-04 17:25:55 | 000,000,000 | R--D | M]
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer: NoActiveDesktopChanges = 1 [2010-09-04 17:25:55 | 000,000,000 | R--D | M]
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer\\Run: Policies = C:\\Users\\Kabak\\AppData\\Roaming\\svhost\\svchot.exe File not found
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: EnableInstallerDetection = 1 [2010-09-04 17:25:55 | 000,000,000 | R--D | M]
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: EnableLUA = 0
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: EnableSecureUIAPaths = 1 [2010-09-04 17:25:55 | 000,000,000 | R--D | M]
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: EnableVirtualization = 1 [2010-09-04 17:25:55 | 000,000,000 | R--D | M]
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: PromptOnSecureDesktop = 0
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: shutdownwithoutlogon = 1 [2010-09-04 17:25:55 | 000,000,000 | R--D | M]
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System: undockwithoutlogon = 1 [2010-09-04 17:25:55 | 000,000,000 | R--D | M]
O6 - HKLM\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\System\\UIPI\\Clipboard\\ExceptionFormats: CF_TEXT = 1 [2010-09-04 17:25:55 | 000,000,000 | R--D | M]
O7 - HKCU\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer: NoDriveTypeAutoRun = 149
O7 - HKCU\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\policies\\Explorer\\Run: Policies = C:\\Users\\Kabak\\AppData\\Roaming\\svhost\\svchot.exe File not found
O8:[b]64bit:[/b] - Extra context menu item: Pobierz z &BitSpirit - C:\\Program Files (x86)\\BitSpirit\\bsurl.htm ()
O8 - Extra context menu item: Pobierz z &BitSpirit - C:\\Program Files (x86)\\BitSpirit\\bsurl.htm ()
O9 - Extra Button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\\PROGRA~2\\MICROS~1\\OFFICE11\\REFIEBAR.DLL (Microsoft Corporation)
O10:[b]64bit:[/b] - NameSpace_Catalog5\\Catalog_Entries\\000000000007 [] - C:\\Program Files (x86)\\Bonjour\\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\\Catalog_Entries\\000000000007 [] - C:\\Program Files (x86)\\Bonjour\\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKCU\\..Trusted Domains: line6.net ([]* in Trusted sites)
O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab (MksSkanerOnline Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15)
O17 - HKLM\\System\\CCS\\Services\\Tcpip\\Parameters: DhcpNameServer = 192.168.1.254
O18:[b]64bit:[/b] - Protocol\\Handler\\http\\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\\Handler\\http\\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\\Handler\\https\\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\\Handler\\https\\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\\Handler\\msdaipp - No CLSID value found
O18:[b]64bit:[/b] - Protocol\\Handler\\msdaipp\\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\\Handler\\msdaipp\\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\\Handler\\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - Reg Error: Key error. File not found
O18:[b]64bit:[/b] - Protocol\\Handler\\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - Reg Error: Key error. File not found
O18 - Protocol\\Handler\\http\\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\\Program Files (x86)\\Common Files\\SYSTEM\\OLE DB\\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\\Handler\\http\\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\\Program Files (x86)\\Common Files\\SYSTEM\\OLE DB\\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\\Handler\\https\\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\\Program Files (x86)\\Common Files\\SYSTEM\\OLE DB\\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\\Handler\\https\\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\\Program Files (x86)\\Common Files\\SYSTEM\\OLE DB\\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\\Handler\\msdaipp\\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\\Program Files (x86)\\Common Files\\SYSTEM\\OLE DB\\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\\Handler\\msdaipp\\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\\Program Files (x86)\\Common Files\\SYSTEM\\OLE DB\\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\\Handler\\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\\PROGRA~2\\COMMON~1\\MICROS~1\\WEBCOM~1\\10\\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\\Handler\\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\\PROGRA~2\\COMMON~1\\MICROS~1\\WEBCOM~1\\11\\OWC11.DLL (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\\Filter\\text/xml {807553E5-5146-11D5-A672-00B0D022E945} - Reg Error: Key error. File not found
O18 - Protocol\\Filter\\text/xml {807553E5-5146-11D5-A672-00B0D022E945} - C:\\Program Files (x86)\\Common Files\\Microsoft Shared\\OFFICE11\\MSOXMLMF.DLL (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\\Windows\\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\\Windows\\SysNative\\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\\Windows\\SysWow64\\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\\Windows\\SysWow64\\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) -  File not found
O20 - HKCU Winlogon: Shell - (Explorer.exe) - C:\\Windows\\SysWow64\\explorer.exe (Microsoft Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) -  File not found
O35:[b]64bit:[/b] - HKLM\\..comfile [open] -- \"%1\" %*
O35:[b]64bit:[/b] - HKLM\\..exefile [open] -- \"%1\" %*
O35 - HKLM\\..comfile [open] -- \"%1\" %*
O35 - HKLM\\..exefile [open] -- \"%1\" %*
O37:[b]64bit:[/b] - HKLM\\...com [@ = comfile] -- \"%1\" %*
O37:[b]64bit:[/b] - HKLM\\...exe [@ = exefile] -- \"%1\" %*
O37 - HKLM\\...com [@ = comfile] -- \"%1\" %*
O37 - HKLM\\...exe [@ = exefile] -- \"%1\" %*
 
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
 
[2010-09-05 21:47:36 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Local\\Threat Expert
[2010-09-04 19:17:08 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Team 17
[2010-09-04 18:35:18 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\DoctorWeb
[2010-09-04 17:15:42 | 000,000,000 | ---D | C] -- C:\\Program Files\\MailShare
[2010-09-04 16:56:45 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Roaming\\Malwarebytes
[2010-09-04 16:56:40 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\\Windows\\SysWow64\\drivers\\mbamswissarmy.sys
[2010-09-04 16:56:39 | 000,024,664 | ---- | C] (Malwarebytes Corporation) -- C:\\Windows\\SysNative\\drivers\\mbam.sys
[2010-09-04 16:56:39 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Malwarebytes\' Anti-Malware
[2010-09-04 16:56:39 | 000,000,000 | ---D | C] -- C:\\ProgramData\\Malwarebytes
[2010-09-04 16:48:51 | 000,000,000 | ---D | C] -- C:\\_OTL
[2010-09-04 16:48:24 | 000,574,976 | ---- | C] (OldTimer Tools) -- C:\\Users\\Kabak\\Desktop\\OTL.exe
[2010-09-04 13:10:41 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\trend micro
[2010-09-04 12:59:02 | 001,636,304 | ---- | C] (Threat Expert Ltd.) -- C:\\Windows\\PCTBDCore.dll
[2010-09-04 12:59:02 | 000,165,840 | ---- | C] (Threat Expert Ltd.) -- C:\\Windows\\PCTBDRes.dll
[2010-09-04 12:59:02 | 000,149,456 | ---- | C] (PC Tools) -- C:\\Windows\\SGDetectionTool.dll
[2010-09-04 12:43:46 | 000,304,576 | ---- | C] (PC Tools) -- C:\\Windows\\SysNative\\drivers\\pctgntdi64.sys
[2010-09-04 12:43:46 | 000,132,048 | ---- | C] (PC Tools) -- C:\\Windows\\SysNative\\drivers\\pctwfpfilter64.sys
[2010-09-04 12:43:43 | 000,218,056 | ---- | C] (PC Tools) -- C:\\Windows\\SysNative\\drivers\\PCTCore64.sys
[2010-09-04 12:43:34 | 000,092,896 | ---- | C] (PC Tools) -- C:\\Windows\\SysNative\\drivers\\pctplsg64.sys
[2010-09-04 12:43:29 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Spyware Doctor
[2010-09-04 12:43:29 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Roaming\\PC Tools
[2010-09-04 12:43:29 | 000,000,000 | ---D | C] -- C:\\ProgramData\\PC Tools
[2010-09-04 12:43:29 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Common Files\\PC Tools
[2010-09-04 11:09:27 | 000,615,040 | ---- | C] (Symantec Corporation) -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\cchpx64.sys
[2010-09-04 11:09:27 | 000,505,392 | ---- | C] (Symantec Corporation) -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\srtsp64.sys
[2010-09-04 11:09:27 | 000,451,120 | ---- | C] (Symantec Corporation) -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symtdiv.sys
[2010-09-04 11:09:27 | 000,433,200 | R--- | C] (Symantec Corporation) -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symds64.sys
[2010-09-04 11:09:27 | 000,221,232 | ---- | C] (Symantec Corporation) -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symefa64.sys
[2010-09-04 11:09:27 | 000,150,064 | ---- | C] (Symantec Corporation) -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\ironx64.sys
[2010-09-04 11:09:27 | 000,032,304 | ---- | C] (Symantec Corporation) -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\srtspx64.sys
[2010-09-04 11:09:13 | 000,000,000 | ---D | C] -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C
[2010-09-03 23:08:17 | 000,173,104 | ---- | C] (Symantec Corporation) -- C:\\Windows\\SysNative\\drivers\\SYMEVENT64x86.SYS
[2010-09-03 23:08:15 | 000,000,000 | ---D | C] -- C:\\Program Files\\Common Files\\Symantec Shared
[2010-09-03 23:08:15 | 000,000,000 | ---D | C] -- C:\\Program Files\\Symantec
[2010-09-03 23:07:49 | 000,000,000 | ---D | C] -- C:\\Windows\\SysNative\\drivers\\NISx64
[2010-09-03 23:07:47 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Norton Internet Security
[2010-09-03 23:07:13 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\NortonInstaller
[2010-08-29 22:04:15 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\NVIDIA Corporation
[2010-08-29 22:03:39 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Common Files\\Wise Installation Wizard
[2010-08-28 15:58:05 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Magic Workstation
[2010-08-27 21:49:37 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Local\\Real
[2010-08-27 21:47:13 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Common Files\\xing shared
[2010-08-27 21:47:07 | 000,000,000 | ---D | C] -- C:\\ProgramData\\Real
[2010-08-27 21:47:07 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Real
[2010-08-27 21:47:07 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Common Files\\Real
[2010-08-27 21:22:52 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Roaming\\Real
[2010-08-27 21:21:28 | 000,000,000 | ---D | C] -- C:\\Windows\\SysWow64\\WatchTV
[2010-08-27 19:37:54 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\Documents\\KONAMI
[2010-08-27 19:31:04 | 000,000,000 | ---D | C] -- C:\\ProgramData\\KONAMI
[2010-08-26 19:25:19 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Local\\Apple Computer
[2010-08-26 19:25:18 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Roaming\\Apple Computer
[2010-08-26 19:24:54 | 000,000,000 | ---D | C] -- C:\\ProgramData\\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
[2010-08-26 19:24:23 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\QuickTime
[2010-08-26 19:24:23 | 000,000,000 | ---D | C] -- C:\\ProgramData\\Apple Computer
[2010-08-26 19:24:15 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Apple Software Update
[2010-08-26 19:24:15 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Local\\Apple
[2010-08-26 19:24:06 | 000,000,000 | ---D | C] -- C:\\Program Files\\Common Files\\Apple
[2010-08-26 19:23:59 | 000,000,000 | ---D | C] -- C:\\Program Files\\Bonjour
[2010-08-26 19:23:59 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Bonjour
[2010-08-26 19:23:56 | 000,000,000 | ---D | C] -- C:\\ProgramData\\Apple
[2010-08-26 19:23:56 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Common Files\\Apple
[2010-08-11 16:02:18 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Roaming\\Ashampoo
[2010-08-11 16:01:44 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Local\\ashampoo
[2010-08-11 16:01:44 | 000,000,000 | ---D | C] -- C:\\ProgramData\\ashampoo
[2010-08-11 16:01:42 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Ashampoo
[2010-08-10 22:45:04 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\AppData\\Local\\2K Games
[2010-08-10 22:44:47 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\XAudio2_7.dll
[2010-08-10 22:44:47 | 000,518,488 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\XAudio2_7.dll
[2010-08-10 22:44:47 | 000,077,656 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\XAPOFX1_5.dll
[2010-08-10 22:44:47 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\XAPOFX1_5.dll
[2010-08-10 22:44:46 | 002,526,056 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\D3DCompiler_43.dll
[2010-08-10 22:44:46 | 002,401,112 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\D3DX9_43.dll
[2010-08-10 22:44:46 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\D3DCompiler_43.dll
[2010-08-10 22:44:46 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\D3DX9_43.dll
[2010-08-10 22:44:46 | 001,907,552 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\d3dcsx_43.dll
[2010-08-10 22:44:46 | 001,868,128 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\d3dcsx_43.dll
[2010-08-10 22:44:46 | 000,511,328 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\d3dx10_43.dll
[2010-08-10 22:44:46 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\d3dx10_43.dll
[2010-08-10 22:44:46 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\d3dx11_43.dll
[2010-08-10 22:44:46 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\d3dx11_43.dll
[2010-08-10 22:44:46 | 000,239,960 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\xactengine3_7.dll
[2010-08-10 22:44:46 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\\Windows\\SysNative\\xactengine3_7.dll
[2010-08-08 11:23:49 | 000,000,000 | ---D | C] -- C:\\Users\\Kabak\\Documents\\StarCraft II
[2010-08-08 11:23:49 | 000,000,000 | ---D | C] -- C:\\ProgramData\\Blizzard Entertainment
[2010-08-08 11:23:49 | 000,000,000 | ---D | C] -- C:\\Program Files (x86)\\Common Files\\Blizzard Entertainment
 
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
 
[2055-09-19 08:29:11 | 000,002,012 | ---- | M] () -- C:\\Windows\\SysWow64\\NAV_75_cltDynam.dat
[2010-09-05 22:57:12 | 002,883,584 | ---- | M] () -- C:\\Users\\Kabak\\NTUSER.DAT
[2010-09-05 22:57:03 | 000,002,432 | ---- | M] () -- C:\\Users\\Kabak\\AppData\\Local\\TempKW4808.html
[2010-09-05 22:57:03 | 000,002,089 | ---- | M] () -- C:\\Users\\Kabak\\AppData\\Local\\TempjJ4808.html
[2010-09-05 22:54:05 | 000,001,046 | ---- | M] () -- C:\\Windows\\tasks\\GoogleUpdateTaskMachineUA.job
[2010-09-05 22:53:53 | 000,016,160 | -H-- | M] () -- C:\\Windows\\SysNative\\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2010-09-05 22:53:53 | 000,016,160 | -H-- | M] () -- C:\\Windows\\SysNative\\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2010-09-05 22:53:31 | 001,048,792 | ---- | M] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\Cat.DB
[2010-09-05 22:48:49 | 000,001,042 | ---- | M] () -- C:\\Windows\\tasks\\GoogleUpdateTaskMachineCore.job
[2010-09-05 22:48:47 | 000,025,640 | ---- | M] (Windows (R) Server 2003 DDK provider) -- C:\\Windows\\gdrv.sys
[2010-09-05 22:48:44 | 000,000,006 | -H-- | M] () -- C:\\Windows\\tasks\\SA.DAT
[2010-09-05 22:48:41 | 000,067,584 | --S- | M] () -- C:\\Windows\\bootstat.dat
[2010-09-05 22:48:36 | 2414,731,264 | -HS- | M] () -- C:\\hiberfil.sys
[2010-09-05 22:47:50 | 001,628,365 | -H-- | M] () -- C:\\Users\\Kabak\\AppData\\Local\\IconCache.db
[2010-09-04 19:19:59 | 001,542,928 | ---- | M] () -- C:\\Windows\\SysNative\\perfh015.dat
[2010-09-04 19:19:59 | 000,899,944 | ---- | M] () -- C:\\Windows\\SysNative\\perfh009.dat
[2010-09-04 19:19:59 | 000,419,030 | ---- | M] () -- C:\\Windows\\SysNative\\perfc015.dat
[2010-09-04 19:19:59 | 000,381,014 | ---- | M] () -- C:\\Windows\\SysNative\\perfc009.dat
[2010-09-04 19:19:59 | 000,004,748 | ---- | M] () -- C:\\Windows\\SysNative\\PerfStringBackup.INI
[2010-09-04 19:19:40 | 000,002,112 | ---- | M] () -- C:\\Users\\Public\\Desktop\\\'Worms Reloaded\'.lnk
[2010-09-04 17:11:37 | 049,018,712 | ---- | M] () -- C:\\Users\\Kabak\\Desktop\\launch.exe
[2010-09-04 16:56:43 | 000,001,005 | ---- | M] () -- C:\\Users\\Public\\Desktop\\Malwarebytes\' Anti-Malware.lnk
[2010-09-04 16:48:42 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\\Users\\Kabak\\Desktop\\OTL.exe
[2010-09-04 16:48:06 | 000,020,074 | -H-- | M] () -- C:\\Users\\Kabak\\AppData\\Roaming\\Kabaklog.dat
[2010-09-04 16:36:44 | 000,002,489 | ---- | M] () -- C:\\Users\\Public\\Desktop\\Norton Internet Security.lnk
[2010-09-04 14:37:23 | 000,002,432 | ---- | M] () -- C:\\Users\\Kabak\\AppData\\Local\\Tempvw4172.html
[2010-09-04 13:18:22 | 000,293,376 | ---- | M] () -- C:\\Users\\Kabak\\Desktop\\50z9mfr4.exe
[2010-09-04 12:43:39 | 000,001,988 | ---- | M] () -- C:\\Users\\Public\\Desktop\\Spyware Doctor.lnk
[2010-09-03 23:21:18 | 000,002,432 | ---- | M] () -- C:\\Users\\Kabak\\AppData\\Local\\Tempkm4672.html
[2010-09-03 23:08:15 | 000,173,104 | ---- | M] (Symantec Corporation) -- C:\\Windows\\SysNative\\drivers\\SYMEVENT64x86.SYS
[2010-09-03 23:08:15 | 000,007,440 | ---- | M] () -- C:\\Windows\\SysNative\\drivers\\SYMEVENT64x86.CAT
[2010-09-03 23:08:15 | 000,000,854 | ---- | M] () -- C:\\Windows\\SysNative\\drivers\\SYMEVENT64x86.INF
[2010-08-29 22:01:34 | 000,000,998 | ---- | M] () -- C:\\Users\\Public\\Desktop\\Mafia II.lnk
[2010-08-28 23:41:54 | 000,001,024 | ---- | M] () -- C:\\Users\\Kabak\\Desktop\\Magic Workstation.lnk
[2010-08-27 21:47:21 | 000,185,920 | ---- | M] (RealNetworks, Inc.) -- C:\\Windows\\SysWow64\\rmoc3260.dll
[2010-08-27 21:47:19 | 000,006,656 | ---- | M] (RealNetworks, Inc.) -- C:\\Windows\\SysWow64\\pndx5016.dll
[2010-08-27 21:47:19 | 000,005,632 | ---- | M] (RealNetworks, Inc.) -- C:\\Windows\\SysWow64\\pndx5032.dll
[2010-08-27 21:47:07 | 000,499,712 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\msvcp71.dll
[2010-08-27 21:47:07 | 000,348,160 | ---- | M] (Microsoft Corporation) -- C:\\Windows\\SysWow64\\msvcr71.dll
[2010-08-27 21:47:07 | 000,278,528 | ---- | M] (Real Networks, Inc) -- C:\\Windows\\SysWow64\\pncrt.dll
[2010-08-27 19:38:00 | 000,000,600 | ---- | M] () -- C:\\Users\\Kabak\\Desktop\\Pro Evolution Soccer 2010 — skrót.lnk
[2010-08-08 11:45:15 | 000,000,782 | ---- | M] () -- C:\\Users\\Public\\Desktop\\StarCraft II.lnk
 
[color=#E56717]========== Files Created - No Company Name ==========[/color]
 
[2010-09-04 19:19:40 | 000,002,112 | ---- | C] () -- C:\\Users\\Public\\Desktop\\\'Worms Reloaded\'.lnk
[2010-09-04 16:56:43 | 000,001,005 | ---- | C] () -- C:\\Users\\Public\\Desktop\\Malwarebytes\' Anti-Malware.lnk
[2010-09-04 16:55:08 | 049,018,712 | ---- | C] () -- C:\\Users\\Kabak\\Desktop\\launch.exe
[2010-09-04 16:36:00 | 001,048,792 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\Cat.DB
[2010-09-04 13:18:22 | 000,293,376 | ---- | C] () -- C:\\Users\\Kabak\\Desktop\\50z9mfr4.exe
[2010-09-04 12:59:02 | 001,152,470 | ---- | C] () -- C:\\Windows\\UDB.zip
[2010-09-04 12:59:02 | 000,767,952 | ---- | C] () -- C:\\Windows\\BDTSupport.dll
[2010-09-04 12:59:02 | 000,000,882 | ---- | C] () -- C:\\Windows\\RegSDImport.xml
[2010-09-04 12:59:02 | 000,000,880 | ---- | C] () -- C:\\Windows\\RegISSImport.xml
[2010-09-04 12:59:02 | 000,000,131 | ---- | C] () -- C:\\Windows\\IDB.zip
[2010-09-04 12:43:46 | 000,007,357 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\pctgntdi64.cat
[2010-09-04 12:43:43 | 000,007,353 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\pctcore64.cat
[2010-09-04 12:43:39 | 000,001,988 | ---- | C] () -- C:\\Users\\Public\\Desktop\\Spyware Doctor.lnk
[2010-09-04 12:43:35 | 000,007,353 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\pctplsg64.cat
[2010-09-04 11:57:21 | 000,002,432 | ---- | C] () -- C:\\Users\\Kabak\\AppData\\Local\\Tempvw4172.html
[2010-09-04 11:09:27 | 000,007,829 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symefa64.cat
[2010-09-04 11:09:27 | 000,007,787 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symnetv64.cat
[2010-09-04 11:09:27 | 000,007,414 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\srtspx64.cat
[2010-09-04 11:09:27 | 000,007,410 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\srtsp64.cat
[2010-09-04 11:09:27 | 000,007,406 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symds64.cat
[2010-09-04 11:09:27 | 000,007,402 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\iron.cat
[2010-09-04 11:09:27 | 000,007,368 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symnet64.cat
[2010-09-04 11:09:27 | 000,007,358 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\cchpx64.cat
[2010-09-04 11:09:27 | 000,003,373 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symefa.inf
[2010-09-04 11:09:27 | 000,002,793 | R--- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symds.inf
[2010-09-04 11:09:27 | 000,001,838 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\cchpx64.inf
[2010-09-04 11:09:27 | 000,001,473 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symnetv.inf
[2010-09-04 11:09:27 | 000,001,445 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\symnet.inf
[2010-09-04 11:09:27 | 000,001,437 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\srtsp64.inf
[2010-09-04 11:09:27 | 000,001,421 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\srtspx64.inf
[2010-09-04 11:09:27 | 000,000,771 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\iron.inf
[2010-09-04 11:09:13 | 000,000,172 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\NISx64\\1107000.00C\\isolate.ini
[2010-09-03 23:18:40 | 000,002,432 | ---- | C] () -- C:\\Users\\Kabak\\AppData\\Local\\Tempkm4672.html
[2010-09-03 23:08:17 | 000,007,440 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\SYMEVENT64x86.CAT
[2010-09-03 23:08:17 | 000,000,854 | ---- | C] () -- C:\\Windows\\SysNative\\drivers\\SYMEVENT64x86.INF
[2010-09-03 23:08:05 | 000,002,489 | ---- | C] () -- C:\\Users\\Public\\Desktop\\Norton Internet Security.lnk
[2010-08-29 22:01:34 | 000,000,998 | ---- | C] () -- C:\\Users\\Public\\Desktop\\Mafia II.lnk
[2010-08-28 23:41:54 | 000,001,024 | ---- | C] () -- C:\\Users\\Kabak\\Desktop\\Magic Workstation.lnk
[2010-08-27 21:49:30 | 000,001,046 | ---- | C] () -- C:\\Windows\\tasks\\GoogleUpdateTaskMachineUA.job
[2010-08-27 21:49:28 | 000,001,042 | ---- | C] () -- C:\\Windows\\tasks\\GoogleUpdateTaskMachineCore.job
[2010-08-27 19:38:00 | 000,000,600 | ---- | C] () -- C:\\Users\\Kabak\\Desktop\\Pro Evolution Soccer 2010 — skrót.lnk
[2010-08-08 11:23:49 | 000,000,782 | ---- | C] () -- C:\\Users\\Public\\Desktop\\StarCraft II.lnk
[2010-06-23 23:46:54 | 000,165,376 | ---- | C] () -- C:\\Windows\\SysWow64\\unrar.dll
[2010-06-23 23:46:54 | 000,000,038 | ---- | C] () -- C:\\Windows\\avisplitter.ini
[2010-06-23 23:46:53 | 000,108,032 | ---- | C] () -- C:\\Windows\\SysWow64\\ff_vfw.dll
[2010-06-23 23:46:53 | 000,000,547 | ---- | C] () -- C:\\Windows\\SysWow64\\ff_vfw.dll.manifest
[2010-06-04 20:29:28 | 000,000,359 | ---- | C] () -- C:\\Windows\\GearBox.ini
[2010-03-04 20:59:00 | 000,000,010 | ---- | C] () -- C:\\Windows\\GSetup.ini
[2010-03-04 20:51:08 | 009,936,457 | ---- | C] () -- C:\\Program Files\\07.Long & Junior - Marzenia ( Extended ).mp3
[2009-08-07 19:51:34 | 000,178,430 | ---- | C] () -- C:\\Windows\\SysWow64\\xlive.dll.cat
[2009-07-14 01:42:10 | 000,064,000 | ---- | C] () -- C:\\Windows\\SysWow64\\BWContextHandler.dll
[2009-07-13 23:03:59 | 000,364,544 | ---- | C] () -- C:\\Windows\\SysWow64\\msjetoledb40.dll
[2009-04-20 19:50:44 | 000,005,120 | ---- | C] () -- C:\\Users\\Kabak\\AppData\\Local\\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009-04-20 19:49:22 | 008,676,883 | ---- | C] () -- C:\\Windows\\SysWow64\\NCMedia2.dll
[2009-04-20 19:49:22 | 000,205,824 | ---- | C] () -- C:\\Windows\\SysWow64\\xvidvfw.dll
[2009-03-28 21:04:34 | 000,004,746 | ---- | C] () -- C:\\Windows\\SysWow64\\PerfStringBackup.INI
[2009-03-07 20:44:22 | 000,000,412 | ---- | C] () -- C:\\Windows\\ODBC.INI
[2005-04-08 04:16:43 | 000,020,074 | -H-- | C] () -- C:\\Users\\Kabak\\AppData\\Roaming\\Kabaklog.dat
[2003-04-08 12:40:22 | 000,005,679 | ---- | C] () -- C:\\Windows\\SysWow64\\OUTLPERF.INI
 
[color=#E56717]========== Alternate Data Streams ==========[/color]
 
@Alternate Data Stream - 195 bytes -> C:\\ProgramData\\TEMP:DFC5A2B2
@Alternate Data Stream - 114 bytes -> C:\\ProgramData\\TEMP:A8ADE5D8
@Alternate Data Stream - 113 bytes -> C:\\ProgramData\\TEMP:05EE1EEF
< End of report >
 
Wygenerowano w 0.360s, przy pomocy GeSHi 1.0.8
'
Podziel się na Facebook Podziel się na BLIP Podziel się na Twitter Podziel się na Buzz Podziel się na Flaker Dodaj zakładkę Google Podziel się na Delicious Wykop to! Poinformuj znajomych przez E-mail

Nowy Komentarz:

Komentarze:

Brak Komentarzy!