OTL logfile created on: 2011-11-22 13:46:09 - Run 1 OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\x\Desktop Windows Vista Home Basic Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 7.0.6002.18005) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,96 Gb Total Physical Memory | 1,40 Gb Available Physical Memory | 71,64% Memory free 4,15 Gb Paging File | 3,80 Gb Available in Paging File | 91,64% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 137,82 Gb Total Space | 68,63 Gb Free Space | 49,80% Space Free | Partition Type: NTFS Drive D: | 3,73 Gb Total Space | 0,29 Gb Free Space | 7,85% Space Free | Partition Type: FAT32 Drive Q: | 9,77 Gb Total Space | 3,73 Gb Free Space | 38,18% Space Free | Partition Type: NTFS Drive S: | 1,46 Gb Total Space | 0,65 Gb Free Space | 44,46% Space Free | Partition Type: NTFS Computer Name: X-PC | User Name: x | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011-10-16 14:22:40 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\x\Desktop\OTL.exe PRC - [2009-04-11 07:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2007-06-18 16:28:44 | 000,056,056 | ---- | M] () -- C:\Windows\System32\DLAAPI_W.DLL [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Auto | Stopped] -- -- (TwonkyMedia) SRV - File not found [Auto | Stopped] -- -- (TVT Scheduler) SRV - File not found [Auto | Stopped] -- -- (TVT Backup Service) SRV - File not found [Auto | Stopped] -- -- (TVT Backup Protection Service) SRV - File not found [Auto | Stopped] -- -- (TPHKSVC) SRV - File not found [Auto | Stopped] -- -- (SUService) SRV - File not found [Auto | Stopped] -- -- (SessionLauncher) SRV - File not found [On_Demand | Stopped] -- -- (ServiceLayer) SRV - File not found [Auto | Stopped] -- -- (RegSrvc) SRV - File not found [Auto | Stopped] -- -- (PMSveH) SRV - File not found [Auto | Stopped] -- -- (FNF5SVC) SRV - File not found [Auto | Stopped] -- -- (EvtEng) SRV - File not found [Auto | Stopped] -- -- (AcPrfMgrSvc) SRV - [2011-11-22 13:22:40 | 000,644,408 | ---- | M] (Lenovo Group Limited) [Auto | Stopped] -- c:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe -- (ThinkVantage Registry Monitor Service) SRV - [2011-11-22 13:20:58 | 000,112,152 | ---- | M] (InterVideo) [Auto | Stopped] -- C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe -- (IviRegMgr) SRV - [2011-11-22 13:19:32 | 000,522,792 | ---- | M] (Broadcom Corporation.) [Auto | Stopped] -- C:\Program Files\Lenovo\Bluetooth Software\bin\btwdins.exe -- (btwdins) SRV - [2011-11-22 13:18:50 | 000,030,312 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe -- (BcmSqlStartupSvc) SRV - [2011-11-22 13:18:07 | 000,558,368 | ---- | M] (Lenovo) [Auto | Stopped] -- C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe -- (AcSvc) SRV - [2011-10-28 19:35:26 | 002,152,152 | ---- | M] () [Auto | Stopped] -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service) SRV - [2008-05-24 15:28:20 | 000,253,952 | ---- | M] (Lenovo Group Limited) [Auto | Stopped] -- C:\Program Files\Lenovo\Rescue and Recovery\UpdateMonitor.exe -- (TVT_UpdateMonitor) SRV - [2008-04-25 08:18:10 | 000,362,992 | ---- | M] (Sonic Solutions) [Auto | Stopped] -- C:\Program Files\Roxio\Digital Home 10\RoxioUpnpService10.exe -- (Roxio Upnp Server 10) SRV - [2008-04-25 08:18:02 | 000,313,840 | ---- | M] (Sonic Solutions) [On_Demand | Stopped] -- C:\Program Files\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe -- (Roxio UPnP Renderer 10) SRV - [2008-04-25 08:16:04 | 000,309,744 | ---- | M] (Sonic Solutions) [Auto | Stopped] -- C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe -- (RoxLiveShare10) SRV - [2008-04-25 08:15:58 | 000,166,384 | ---- | M] (Sonic Solutions) [Auto | Stopped] -- C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatch10.exe -- (RoxWatch10) SRV - [2008-04-25 08:15:24 | 001,120,752 | ---- | M] (Sonic Solutions) [On_Demand | Stopped] -- C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe -- (RoxMediaDB10) SRV - [2008-01-21 03:33:00 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2011-10-28 19:35:28 | 000,064,512 | ---- | M] (Lavasoft AB) [File_System | Boot | Running] -- C:\Windows\system32\DRIVERS\Lbd.sys -- (Lbd) DRV - [2009-02-25 05:34:23 | 000,038,784 | ---- | M] (Axesstel) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\Axtmvprt.sys -- (Axtmvprt) DRV - [2009-02-25 05:34:12 | 000,040,064 | ---- | M] (Axesstel) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\Axtmvmdm.sys -- (Axtmvmdm) DRV - [2009-02-25 05:33:58 | 000,003,456 | ---- | M] (Axesstel) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\Axtmvflt.sys -- (Axtmvflt) DRV - [2008-12-13 11:28:31 | 000,030,144 | ---- | M] (Lenovo (United States) Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\psadd.sys -- (psadd) DRV - [2008-08-20 15:55:34 | 000,025,896 | ---- | M] (COMPAL ELECTRONIC INC.) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\LPCFilter.sys -- (LPCFilter) DRV - [2008-08-07 10:01:44 | 000,097,536 | ---- | M] (JMicron Technology Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\jmcr.sys -- (JMCR) DRV - [2008-06-30 19:26:46 | 000,974,336 | ---- | M] (Vimicro Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vm331avs.sys -- (vm331avs) DRV - [2008-06-29 22:52:26 | 000,112,128 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\IntcHdmi.sys -- (IntcHdmiAddService) Intel(R) DRV - [2008-05-24 15:28:22 | 000,048,192 | ---- | M] (Lenovo) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\tvtumon.sys -- (tvtumon) DRV - [2008-05-21 16:35:24 | 000,220,160 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\CHDRT32.sys -- (CnxtHdAudService) DRV - [2008-05-12 10:04:04 | 000,013,480 | ---- | M] (Lenovo Group Limited) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\smiif32.sys -- (lenovo.smi) DRV - [2008-04-28 06:29:26 | 003,658,752 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\NETw5v32.sys -- (NETw5v32) Sterownik karty Intel(R) DRV - [2008-04-18 16:40:24 | 000,128,104 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\WimFltr.sys -- (WimFltr) DRV - [2008-03-14 14:23:12 | 000,169,008 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Apfiltr.sys -- (ApfiltrService) DRV - [2008-02-22 15:54:40 | 000,037,312 | ---- | M] (Lenovo (United States) Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tvti2c.sys -- (TVTI2C) DRV - [2008-01-21 08:56:22 | 000,028,224 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\PCAMp50.sys -- (PCAMp50) DRV - [2008-01-21 08:56:22 | 000,027,072 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\PCASp50.sys -- (PCASp50) DRV - [2008-01-21 03:32:52 | 000,045,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tpm.sys -- (TPM) DRV - [2008-01-21 03:32:51 | 000,220,672 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\e1e6032.sys -- (e1express) Intel(R) DRV - [2008-01-21 03:32:47 | 000,016,896 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\WSDPrint.sys -- (WSDPrintDevice) DRV - [2007-11-29 10:39:52 | 000,008,064 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2007-11-29 10:39:42 | 000,016,896 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2007-11-29 10:39:42 | 000,008,064 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2007-11-29 10:39:40 | 000,019,328 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2007-10-18 08:36:54 | 000,008,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Stopped] -- C:\Windows\System32\drivers\XAudio.sys -- (XAudio) DRV - [2007-09-17 15:53:26 | 000,021,632 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2007-08-08 12:07:42 | 000,101,504 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ewusbmdm.sys -- (hwdatacard) DRV - [2007-06-18 16:29:56 | 000,009,400 | ---- | M] (Roxio) [File_System | Auto | Stopped] -- C:\Windows\System32\DLA\DLADResM.SYS -- (DLADResM) DRV - [2007-06-18 16:29:10 | 000,035,064 | ---- | M] (Roxio) [File_System | Auto | Stopped] -- C:\Windows\System32\DLA\DLABMFSM.SYS -- (DLABMFSM) DRV - [2007-06-18 16:29:08 | 000,093,752 | ---- | M] (Roxio) [File_System | Auto | Stopped] -- C:\Windows\System32\DLA\DLAUDFAM.SYS -- (DLAUDFAM) DRV - [2007-06-18 16:29:06 | 000,098,136 | ---- | M] (Roxio) [File_System | Auto | Stopped] -- C:\Windows\System32\DLA\DLAUDF_M.SYS -- (DLAUDF_M) DRV - [2007-06-18 16:29:04 | 000,026,744 | ---- | M] (Roxio) [File_System | Auto | Stopped] -- C:\Windows\System32\DLA\DLAOPIOM.SYS -- (DLAOPIOM) DRV - [2007-06-18 16:28:58 | 000,032,472 | ---- | M] (Roxio) [File_System | Auto | Stopped] -- C:\Windows\System32\DLA\DLABOIOM.SYS -- (DLABOIOM) DRV - [2007-06-18 16:28:54 | 000,014,520 | ---- | M] (Roxio) [File_System | Auto | Stopped] -- C:\Windows\System32\DLA\DLAPoolM.SYS -- (DLAPoolM) DRV - [2007-06-18 16:28:52 | 000,105,048 | ---- | M] (Roxio) [File_System | Auto | Stopped] -- C:\Windows\System32\DLA\DLAIFS_M.SYS -- (DLAIFS_M) DRV - [2007-02-08 20:05:30 | 000,028,120 | ---- | M] (Roxio) [File_System | System | Running] -- C:\Windows\System32\drivers\DLARTL_M.SYS -- (DLARTL_M) DRV - [2007-02-08 20:05:30 | 000,012,856 | ---- | M] (Roxio) [File_System | System | Running] -- C:\Windows\System32\drivers\DLACDBHM.SYS -- (DLACDBHM) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-2432683531-2990122382-1468029114-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com/welcome/3000notebook [binary data] IE - HKU\S-1-5-21-2432683531-2990122382-1468029114-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ IE - HKU\S-1-5-21-2432683531-2990122382-1468029114-1003\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1 IE - HKU\S-1-5-21-2432683531-2990122382-1468029114-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-2432683531-2990122382-1468029114-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll () FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.448: C:\Program Files\VistaCodecPack\rm\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: C:\Program Files\VistaCodecPack\rm\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2011-06-23 14:01:13 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{27182e60-b5f3-411c-b545-b44205977502}: C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension\ [2011-07-20 06:41:36 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}: C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DMExtension\ [2011-07-20 06:41:52 | 000,000,000 | ---D | M] FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2011-06-23 14:01:13 | 000,000,000 | ---D | M] O1 HOSTS File: ([2011-11-22 13:28:14 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll (Sun Microsystems, Inc.) O4 - HKLM..\Run: [ACTray] C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe (Lenovo) O4 - HKLM..\Run: [ACWlIcon] C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe (Lenovo) O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.) O4 - HKLM..\Run: [CameraApplicationLauncher] C:\Program Files\Lenovo\Camera Center\bin\CameraApplicationLaunchPadLauncher.exe () O4 - HKLM..\Run: [LPManager] C:\Program Files\Lenovo\LenovoCare\LPMGR.EXE (Lenovo Group Limited) O4 - HKLM..\Run: [PMHandler] C:\Program Files\Lenovo\PM Driver\PMHandler.exe (Lenovo) O4 - HKLM..\Run: [RoxioDragToDisc] C:\Program Files\Lenovo\Drag-to-Disc\DrgToDsc.exe (Roxio) O4 - HKLM..\Run: [RoxWatchTray] C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatchTray10.exe (Sonic Solutions) O4 - HKLM..\Run: [SmartAudio] C:\Program Files\CONEXANT\SMARTAUDIO\SMAUDIO.EXE (Conexant) O4 - HKLM..\Run: [SNM] C:\Program Files\SpyNoMore\SNM.exe () O4 - HKLM..\Run: [TPFNF7] C:\Program Files\Lenovo\NPDIRECT\TPFNF7SP.exe (Lenovo Group Limited) O4 - HKLM..\Run: [TPWAUDAP] C:\Program Files\Lenovo\HOTKEY\TpWAudAp.exe (Lenovo Group Limited) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\control panel present O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\control panel present O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\control panel present O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\control panel present O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\control panel present O7 - HKU\S-1-5-21-2432683531-2990122382-1468029114-1003\Software\Policies\Microsoft\Internet Explorer\control panel present O7 - HKU\S-1-5-21-2432683531-2990122382-1468029114-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\npjpi160_07.dll (Sun Microsystems, Inc.) O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm () O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm () O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.) O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab (MksSkanerOnline Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07) O16 - DPF: {92ECE6FA-AC2E-4042-BFAE-0C8608E52A43} https://www.bph.pl/sezam/components/SignActivX.cab (SignActivX Control) O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{753AF268-743E-482F-8344-3DF7A1867481}: DhcpNameServer = 95.160.170.92 88.156.222.92 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F3DC5C57-2BE4-4B6A-ACC4-1C651F3ADBB4}: DhcpNameServer = 192.168.0.1 O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\System32\userinit.exe (Microsoft Corporation) O24 - Desktop WallPaper: C:\Users\x\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta z Galerii fotografii systemu Windows.jpg O24 - Desktop BackupWallPaper: C:\Users\x\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta z Galerii fotografii systemu Windows.jpg O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2006-09-18 22:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] File not found -- C:\Windows\System32\drivers\ [2011-11-22 13:45:03 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Users\x\Desktop\OTL.exe [2011-11-22 13:28:22 | 000,000,000 | ---D | C] -- C:\$RECYCLE.BIN [2011-11-22 13:24:48 | 000,000,000 | ---D | C] -- C:\Windows\temp [2011-11-22 13:24:48 | 000,000,000 | ---D | C] -- C:\Users\x\AppData\Local\temp [2011-11-22 13:05:36 | 000,000,000 | ---D | C] -- C:\ComboFix [2011-11-22 12:44:58 | 004,303,750 | R--- | C] (Swearware) -- C:\Users\x\Desktop\ComboFix.exe [2011-11-22 12:40:21 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe [2011-11-22 12:40:21 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe [2011-11-22 12:40:21 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe [2011-11-22 12:40:15 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT [2011-11-22 12:40:12 | 000,000,000 | ---D | C] -- C:\Qoobox [2011-11-06 14:21:05 | 000,101,720 | ---- | C] (Sunbelt Software) -- C:\Windows\System32\drivers\SBREDrv.sys [2011-11-03 14:02:26 | 000,000,000 | ---D | C] -- C:\Users\x\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyNoMore [2011-11-03 14:02:26 | 000,000,000 | ---D | C] -- C:\Program Files\SpyNoMore [2011-11-03 12:55:43 | 000,064,512 | ---- | C] (Lavasoft AB) -- C:\Windows\System32\drivers\Lbd.sys [2011-11-03 12:55:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft [2011-11-03 12:55:36 | 000,000,000 | ---D | C] -- C:\Program Files\Lavasoft [2011-11-03 12:55:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Lavasoft [2011-11-03 12:25:32 | 004,776,814 | ---- | C] (Digital River) -- C:\Users\x\Desktop\Spynomore.exe [2011-11-03 12:24:56 | 000,000,000 | ---D | C] -- C:\Users\x\AppData\Roaming\GetRightToGo [2011-11-03 12:05:57 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\iS3 [2011-11-03 12:05:56 | 000,000,000 | ---D | C] -- C:\ProgramData\STOPzilla! [2011-11-03 10:23:27 | 000,000,000 | ---D | C] -- C:\Program Files\SkanerOnline [2011-10-30 20:49:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime [2011-10-30 20:48:46 | 000,000,000 | ---D | C] -- C:\Program Files\QuickTime [2011-10-30 20:04:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes [2011-10-30 20:03:11 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes [2011-10-30 14:20:18 | 000,000,000 | -HSD | C] -- C:\Users\x\AppData\Local\3e3851e3 [2011-10-24 14:29:02 | 000,094,208 | ---- | C] (Apple Inc.) -- C:\Windows\System32\QuickTimeVR.qtx [2011-10-24 14:29:02 | 000,069,632 | ---- | C] (Apple Inc.) -- C:\Windows\System32\QuickTime.qts [2010-08-25 18:59:08 | 000,004,096 | ---- | C] ( ) -- C:\Windows\System32\IGFXDEVLib.dll [2008-12-13 10:59:14 | 000,131,072 | ---- | C] ( ) -- C:\Windows\vm331Rmv.exe [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] File not found -- C:\Windows\System32\drivers\ [2011-11-22 13:45:09 | 003,145,728 | -HS- | M] () -- C:\Users\x\NTUSER.DAT [2011-11-22 13:28:30 | 000,000,215 | ---- | M] () -- C:\Windows\system.ini [2011-11-22 13:28:14 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts [2011-11-22 13:27:59 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2011-11-22 13:27:40 | 213,017,966 | ---- | M] () -- C:\Windows\MEMORY.DMP [2011-11-22 13:26:28 | 000,003,616 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 [2011-11-22 13:26:28 | 000,003,616 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 [2011-11-22 13:26:17 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT [2011-11-22 13:25:14 | 000,524,288 | -HS- | M] () -- C:\Users\x\NTUSER.DAT{d8932e6d-6a6f-11db-b6ab-a038f15a5785}.TMContainer00000000000000000001.regtrans-ms [2011-11-22 13:25:14 | 000,065,536 | -HS- | M] () -- C:\Users\x\NTUSER.DAT{d8932e6d-6a6f-11db-b6ab-a038f15a5785}.TM.blf [2011-11-22 12:06:39 | 001,635,122 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI [2011-11-22 12:06:39 | 000,722,196 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2011-11-22 12:06:39 | 000,645,608 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2011-11-22 12:06:39 | 000,149,294 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2011-11-22 12:06:39 | 000,122,436 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2011-11-22 11:46:42 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2011-11-22 11:46:42 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [2011-11-22 11:20:42 | 000,001,356 | ---- | M] () -- C:\Users\x\AppData\Local\d3d9caps.dat [2011-11-22 05:49:20 | 004,303,750 | R--- | M] (Swearware) -- C:\Users\x\Desktop\ComboFix.exe [2011-11-16 19:06:19 | 000,001,732 | ---- | M] () -- C:\tvtpktfilter.dat [2011-11-16 17:54:40 | 000,003,204 | ---- | M] () -- C:\Windows\bthservsdp.dat [2011-11-06 14:21:05 | 000,101,720 | ---- | M] (Sunbelt Software) -- C:\Windows\System32\drivers\SBREDrv.sys [2011-11-03 15:15:43 | 000,416,624 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2011-11-03 14:03:52 | 000,000,101 | ---- | M] () -- C:\Users\x\Desktop\SNM Manual Registration.url [2011-11-03 14:02:26 | 000,000,790 | ---- | M] () -- C:\Users\x\Desktop\SpyNoMore.lnk [2011-11-03 12:55:45 | 000,000,947 | ---- | M] () -- C:\Users\Public\Desktop\Ad-Aware.lnk [2011-11-03 12:29:59 | 000,001,152 | ---- | M] () -- C:\Windows\System32\windrv.sys [2011-11-03 12:26:02 | 004,776,814 | ---- | M] (Digital River) -- C:\Users\x\Desktop\Spynomore.exe [2011-11-03 10:20:45 | 000,000,000 | ---- | M] () -- C:\Windows\System32\AclanProfile.xml [2011-10-30 20:49:03 | 000,001,736 | ---- | M] () -- C:\Users\Public\Desktop\QuickTime Player.lnk [2011-10-30 20:04:11 | 000,001,674 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk [2011-10-28 19:35:28 | 000,064,512 | ---- | M] (Lavasoft AB) -- C:\Windows\System32\drivers\Lbd.sys [2011-10-24 14:29:02 | 000,094,208 | ---- | M] (Apple Inc.) -- C:\Windows\System32\QuickTimeVR.qtx [2011-10-24 14:29:02 | 000,069,632 | ---- | M] (Apple Inc.) -- C:\Windows\System32\QuickTime.qts [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011-11-22 12:40:21 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe [2011-11-22 12:40:21 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe [2011-11-22 12:40:21 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe [2011-11-22 12:40:21 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe [2011-11-22 12:40:21 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe [2011-11-22 11:46:42 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS [2011-11-22 11:46:42 | 000,000,000 | RHS- | C] () -- C:\IO.SYS [2011-11-16 19:06:19 | 000,001,732 | ---- | C] () -- C:\tvtpktfilter.dat [2011-11-03 14:03:52 | 000,000,101 | ---- | C] () -- C:\Users\x\Desktop\SNM Manual Registration.url [2011-11-03 14:02:26 | 000,000,790 | ---- | C] () -- C:\Users\x\Desktop\SpyNoMore.lnk [2011-11-03 12:55:45 | 000,000,947 | ---- | C] () -- C:\Users\Public\Desktop\Ad-Aware.lnk [2011-11-03 12:29:59 | 000,001,152 | ---- | C] () -- C:\Windows\System32\windrv.sys [2011-10-30 20:49:03 | 000,001,736 | ---- | C] () -- C:\Users\Public\Desktop\QuickTime Player.lnk [2011-10-30 20:04:11 | 000,001,674 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk [2011-06-23 13:47:14 | 000,212,551 | ---- | C] () -- C:\Windows\hpoins56.dat [2010-08-25 19:30:02 | 000,439,308 | ---- | C] () -- C:\Windows\System32\igcompkrng500.bin [2010-08-25 19:30:00 | 000,982,240 | ---- | C] () -- C:\Windows\System32\igkrng500.bin [2010-08-25 19:30:00 | 000,092,356 | ---- | C] () -- C:\Windows\System32\igfcg500m.bin [2010-08-25 18:57:00 | 000,000,151 | ---- | C] () -- C:\Windows\System32\GfxUI.exe.config [2010-08-25 18:52:00 | 000,208,896 | ---- | C] () -- C:\Windows\System32\iglhsip32.dll [2010-08-25 18:52:00 | 000,143,360 | ---- | C] () -- C:\Windows\System32\iglhcp32.dll [2010-06-15 16:39:05 | 000,000,118 | ---- | C] () -- C:\Windows\System32\MRT.INI [2010-05-27 09:57:27 | 000,000,552 | ---- | C] () -- C:\Windows\hpomdl56.dat [2010-03-17 07:56:56 | 000,001,356 | ---- | C] () -- C:\Users\x\AppData\Local\d3d9caps.dat [2009-09-15 08:27:15 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll [2009-09-15 08:27:15 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin [2009-09-15 08:26:55 | 000,368,640 | ---- | C] () -- C:\Windows\System32\msjetoledb40.dll [2009-05-30 00:37:40 | 000,205,824 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll [2009-05-30 00:31:52 | 000,881,664 | ---- | C] () -- C:\Windows\System32\xvidcore.dll [2009-05-10 09:41:53 | 000,000,583 | ---- | C] () -- C:\Windows\PowerReg.dat [2009-02-04 20:03:22 | 000,161,280 | ---- | C] () -- C:\Users\x\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009-02-04 13:26:16 | 000,116,264 | ---- | C] () -- C:\Users\x\AppData\Local\GDIPFONTCACHEV1.DAT [2008-12-13 19:33:15 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin [2008-12-13 19:29:56 | 000,016,896 | ---- | C] () -- C:\Windows\Eventclr.exe [2008-12-13 11:22:45 | 000,204,800 | ---- | C] () -- C:\Windows\System32\IVIresizeW7.dll [2008-12-13 11:22:45 | 000,200,704 | ---- | C] () -- C:\Windows\System32\IVIresizeA6.dll [2008-12-13 11:22:45 | 000,192,512 | ---- | C] () -- C:\Windows\System32\IVIresizeP6.dll [2008-12-13 11:22:45 | 000,192,512 | ---- | C] () -- C:\Windows\System32\IVIresizeM6.dll [2008-12-13 11:22:45 | 000,188,416 | ---- | C] () -- C:\Windows\System32\IVIresizePX.dll [2008-12-13 11:22:45 | 000,020,480 | ---- | C] () -- C:\Windows\System32\IVIresize.dll [2008-12-13 11:20:16 | 000,056,056 | ---- | C] () -- C:\Windows\System32\DLAAPI_W.DLL [2008-12-13 11:20:16 | 000,000,120 | ---- | C] () -- C:\Windows\wininit.ini [2008-12-13 11:09:02 | 000,004,608 | ---- | C] () -- C:\Windows\System32\HdmiCoin.dll [2008-12-13 11:09:01 | 000,147,456 | ---- | C] () -- C:\Windows\System32\igfxCoIn_v1518.dll [2008-12-13 11:09:00 | 000,147,172 | ---- | C] () -- C:\Windows\System32\igfcg550.bin [2008-12-13 10:59:14 | 000,001,291 | ---- | C] () -- C:\Windows\vm331Rmv.ini [2008-12-13 10:53:19 | 000,003,204 | ---- | C] () -- C:\Windows\bthservsdp.dat [2008-08-26 12:54:12 | 000,057,344 | ---- | C] () -- C:\Windows\System32\BtwNamespaceExt2.dll [2008-04-18 18:15:48 | 001,635,122 | ---- | C] () -- C:\Windows\System32\PerfStringBackup.INI [2008-04-18 18:14:54 | 000,332,832 | ---- | C] () -- C:\Windows\System32\perfi015.dat [2008-04-18 18:14:53 | 000,722,196 | ---- | C] () -- C:\Windows\System32\perfh015.dat [2008-04-18 18:14:53 | 000,149,294 | ---- | C] () -- C:\Windows\System32\perfc015.dat [2008-04-18 18:14:53 | 000,037,468 | ---- | C] () -- C:\Windows\System32\perfd015.dat [2008-01-21 03:34:22 | 000,060,124 | ---- | C] () -- C:\Windows\System32\tcpmon.ini [2007-09-04 10:56:10 | 000,164,352 | ---- | C] () -- C:\Windows\System32\unrar.dll [2007-04-16 03:24:16 | 000,023,752 | ---- | C] () -- C:\Windows\System32\providers.bin [2007-02-05 18:05:26 | 000,000,038 | ---- | C] () -- C:\Windows\AviSplitter.INI [2006-11-02 13:53:49 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat [2006-11-02 13:44:53 | 000,416,624 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT [2006-11-02 11:33:01 | 000,645,608 | ---- | C] () -- C:\Windows\System32\perfh009.dat [2006-11-02 11:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat [2006-11-02 11:33:01 | 000,122,436 | ---- | C] () -- C:\Windows\System32\perfc009.dat [2006-11-02 11:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat [2006-11-02 11:24:31 | 000,001,405 | ---- | C] () -- C:\Windows\msdfmap.ini [2006-11-02 11:23:31 | 000,000,254 | ---- | C] () -- C:\Windows\win.ini [2006-11-02 11:23:31 | 000,000,215 | ---- | C] () -- C:\Windows\system.ini [2006-11-02 11:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat [2006-11-02 09:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin [2006-11-02 09:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT [2006-11-02 08:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini [2006-11-02 08:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat [2006-11-02 08:10:37 | 000,053,536 | ---- | C] () -- C:\Windows\System32\dosx.exe [2006-11-02 08:10:02 | 000,000,718 | ---- | C] () -- C:\Windows\System32\mscdexnt.exe [2006-11-02 08:10:00 | 000,002,842 | ---- | C] () -- C:\Windows\System32\redir.exe [2006-11-02 08:09:59 | 000,069,886 | ---- | C] () -- C:\Windows\System32\edit.com [2006-11-02 08:09:59 | 000,019,694 | ---- | C] () -- C:\Windows\System32\GRAPHICS.COM [2006-11-02 08:09:59 | 000,000,882 | ---- | C] () -- C:\Windows\System32\share.exe [2006-11-02 08:09:59 | 000,000,882 | ---- | C] () -- C:\Windows\System32\fastopen.exe [2006-11-02 08:09:57 | 000,014,710 | ---- | C] () -- C:\Windows\System32\KB16.COM [2006-11-02 08:09:56 | 000,007,052 | ---- | C] () -- C:\Windows\System32\nlsfunc.exe [2006-11-02 08:09:55 | 000,039,274 | ---- | C] () -- C:\Windows\System32\mem.exe [2006-11-02 08:09:55 | 000,001,131 | ---- | C] () -- C:\Windows\System32\LOADFIX.COM [2006-11-02 08:09:53 | 000,011,753 | ---- | C] () -- C:\Windows\System32\setver.exe [2006-11-02 08:09:52 | 000,020,634 | ---- | C] () -- C:\Windows\System32\debug.exe [2006-11-02 08:09:51 | 000,008,424 | ---- | C] () -- C:\Windows\System32\exe2bin.exe [2006-11-02 08:09:50 | 000,012,642 | ---- | C] () -- C:\Windows\System32\edlin.exe [2006-11-02 08:09:49 | 000,050,648 | ---- | C] () -- C:\Windows\System32\COMMAND.COM [2006-11-02 08:09:49 | 000,012,498 | ---- | C] () -- C:\Windows\System32\append.exe [2006-11-02 08:09:45 | 000,027,097 | ---- | C] () -- C:\Windows\System32\country.sys [2006-11-02 08:09:44 | 000,042,809 | ---- | C] () -- C:\Windows\System32\KEY01.SYS [2006-11-02 08:09:44 | 000,042,537 | ---- | C] () -- C:\Windows\System32\KEYBOARD.SYS [2006-11-02 08:09:42 | 000,009,029 | ---- | C] () -- C:\Windows\System32\ANSI.SYS [2006-11-02 08:09:41 | 000,004,768 | ---- | C] () -- C:\Windows\System32\HIMEM.SYS [2006-11-02 08:09:40 | 000,029,274 | ---- | C] () -- C:\Windows\System32\NTDOS412.SYS [2006-11-02 08:09:38 | 000,029,370 | ---- | C] () -- C:\Windows\System32\NTDOS411.SYS [2006-11-02 08:09:35 | 000,029,146 | ---- | C] () -- C:\Windows\System32\NTDOS404.SYS [2006-11-02 08:09:31 | 000,029,146 | ---- | C] () -- C:\Windows\System32\NTDOS804.SYS [2006-11-02 08:09:29 | 000,027,866 | ---- | C] () -- C:\Windows\System32\NTDOS.SYS [2006-11-02 08:09:26 | 000,035,536 | ---- | C] () -- C:\Windows\System32\NTIO412.SYS [2006-11-02 08:09:24 | 000,035,776 | ---- | C] () -- C:\Windows\System32\NTIO411.SYS [2006-11-02 08:09:23 | 000,034,672 | ---- | C] () -- C:\Windows\System32\NTIO404.SYS [2006-11-02 08:09:22 | 000,034,672 | ---- | C] () -- C:\Windows\System32\NTIO804.SYS [2006-11-02 08:09:20 | 000,033,952 | ---- | C] () -- C:\Windows\System32\NTIO.SYS [2006-11-02 07:25:08 | 000,013,312 | ---- | C] () -- C:\Windows\System32\win87em.dll [2001-11-14 13:56:00 | 001,802,240 | ---- | C] () -- C:\Windows\System32\lcppn21.dll [color=#E56717]========== LOP Check ==========[/color] [2009-08-09 12:19:33 | 000,000,000 | ---D | M] -- C:\Users\x\AppData\Roaming\.szafir [2009-03-01 21:19:38 | 000,000,000 | ---D | M] -- C:\Users\x\AppData\Roaming\Datalayer [2011-11-03 12:26:28 | 000,000,000 | ---D | M] -- C:\Users\x\AppData\Roaming\GetRightToGo [2009-10-11 17:12:04 | 000,000,000 | ---D | M] -- C:\Users\x\AppData\Roaming\InterVideo [2009-08-09 11:55:47 | 000,000,000 | ---D | M] -- C:\Users\x\AppData\Roaming\KIR [2009-02-14 17:33:48 | 000,000,000 | ---D | M] -- C:\Users\x\AppData\Roaming\Leadertech [2011-10-22 18:58:07 | 000,000,000 | ---D | M] -- C:\Users\x\AppData\Roaming\MyFelix [2011-02-06 14:57:13 | 000,000,000 | ---D | M] -- C:\Users\x\AppData\Roaming\Nokia [2010-01-31 14:40:29 | 000,000,000 | ---D | M] -- C:\Users\x\AppData\Roaming\Nokia Multimedia Player [2009-03-01 21:21:36 | 000,000,000 | ---D | M] -- C:\Users\x\AppData\Roaming\PC Suite [2011-03-06 15:31:09 | 000,000,000 | ---D | M] -- C:\Users\x\AppData\Roaming\PITy2010 [2010-05-09 17:21:25 | 000,000,000 | ---D | M] -- C:\Users\x\AppData\Roaming\VistaCodecs [2011-11-16 17:54:40 | 000,032,594 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [2010-12-19 10:26:42 | 000,000,410 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{C6E9670C-FBCF-447B-8539-1CD3DFAA980C}.job [color=#E56717]========== Purity Check ==========[/color] < End of report >