OTL logfile created on: 2012-03-04 17:31:33 - Run 1 OTL by OldTimer - Version 3.2.33.2 Folder = C:\Users\Administrator\Desktop Windows Vista Server Standard Edition (full installation) Service Pack 2 (Version = 6.0.6002) - Type = NTServer Internet Explorer (Version = 7.0.6002.18005) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,75 Gb Total Physical Memory | 1,08 Gb Available Physical Memory | 61,84% Memory free 3,76 Gb Paging File | 3,14 Gb Available in Paging File | 83,47% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 48,83 Gb Total Space | 38,69 Gb Free Space | 79,24% Space Free | Partition Type: NTFS Drive D: | 62,95 Gb Total Space | 3,37 Gb Free Space | 5,36% Space Free | Partition Type: NTFS Computer Name: WIN-TIT899W5KN4 | User Name: Administrator | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2012-02-22 21:41:54 | 000,583,680 | ---- | M] (OldTimer Tools) -- C:\Users\Administrator\Desktop\OTL.exe PRC - [2011-01-11 11:07:02 | 001,771,288 | ---- | M] (COMODO) -- C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe PRC - [2011-01-10 14:01:14 | 002,548,040 | ---- | M] (COMODO) -- C:\Program Files\COMODO\COMODO Internet Security\cfp.exe PRC - [2009-09-24 06:50:10 | 003,520,256 | ---- | M] (Ghisler Software GmbH) -- C:\wincmd\TOTALCMD.EXE PRC - [2009-04-11 13:57:20 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2008-07-08 18:48:16 | 000,204,800 | ---- | M] (S3 Graphics Co., Ltd.) -- C:\Windows\System32\s3trayp.exe PRC - [2008-03-05 17:12:24 | 000,102,400 | ---- | M] (S3 Graphics Co., Ltd.) -- C:\Windows\System32\S3Funkey.exe PRC - [2007-01-24 11:18:56 | 003,461,120 | ---- | M] () -- C:\Program Files\HotKey_Driver\HotKeyDriver.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2007-01-24 11:18:56 | 003,461,120 | ---- | M] () -- C:\Program Files\HotKey_Driver\HotKeyDriver.exe [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2011-01-11 11:07:02 | 001,771,288 | ---- | M] (COMODO) [Auto | Running] -- C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe -- (cmdAgent) SRV - [2009-04-11 13:57:42 | 000,078,336 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\rsopprov.exe -- (RSoPProv) SRV - [2008-01-19 12:23:32 | 000,013,312 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sacsvr.dll -- (sacsvr) SRV - [2008-01-19 12:23:31 | 000,022,016 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\FCRegSvc.dll -- (FCRegSvc) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2011-01-06 17:36:48 | 000,080,064 | ---- | M] (COMODO) [Kernel | System | Running] -- C:\Windows\System32\drivers\inspect.sys -- (inspect) DRV - [2011-01-06 17:36:46 | 000,236,600 | ---- | M] (COMODO) [File_System | System | Running] -- C:\Windows\System32\drivers\cmdGuard.sys -- (cmdGuard) DRV - [2011-01-06 17:36:46 | 000,034,744 | ---- | M] (COMODO) [Kernel | System | Running] -- C:\Windows\System32\drivers\cmdhlp.sys -- (cmdHlp) DRV - [2011-01-06 17:36:44 | 000,017,256 | ---- | M] (COMODO) [File_System | System | Running] -- C:\Windows\System32\drivers\cmderd.sys -- (cmderd) DRV - [2009-05-05 09:59:02 | 000,022,168 | ---- | M] (VIA Technologies,Inc) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\xfilt.sys -- (xfilt) DRV - [2009-05-05 09:58:30 | 000,013,976 | ---- | M] (VIA Technologies, Inc.) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\videX32.sys -- (videX32) DRV - [2009-04-11 13:57:01 | 000,185,320 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\vmbus.sys -- (vmbus) DRV - [2009-04-11 13:57:01 | 000,035,304 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\storvsc.sys -- (storvsc) DRV - [2009-01-12 15:50:40 | 000,814,592 | ---- | M] (S3 Graphics Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\VTGKModeDX32.sys -- (S3GIGP) DRV - [2008-01-19 12:23:32 | 000,088,632 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\system32\DRIVERS\sacdrv.sys -- (sacdrv) DRV - [2008-01-19 12:23:25 | 000,042,440 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\drivers\storflt.sys -- (storflt) DRV - [2008-01-19 12:23:25 | 000,031,232 | ---- | M] (Intel Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\qd26032.sys -- (ioatdma) Intel(R) DRV - [2008-01-19 12:23:25 | 000,015,816 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\s3cap.sys -- (s3cap) DRV - [2007-06-01 12:07:48 | 000,252,416 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\RTL8187B.sys -- (RTL8187B) DRV - [2007-04-23 10:50:50 | 000,025,896 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | System | Running] -- C:\Windows\System32\drivers\RtlProt.sys -- (RtlProt) DRV - [2006-11-02 08:41:49 | 001,010,560 | ---- | M] (Motorola Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\smserial.sys -- (smserial) DRV - [2006-07-19 14:18:30 | 000,180,480 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\RTL8187.sys -- (RTLWUSB) DRV - [2006-07-19 14:18:30 | 000,180,480 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\RTL8187.sys -- (RTL8187) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-4013617045-3506206116-1533852936-500\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = res://iesetup.dll/HardAdmin.htm IE - HKU\S-1-5-21-4013617045-3506206116-1533852936-500\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = IE - HKU\S-1-5-21-4013617045-3506206116-1533852936-500\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = res://iesetup.dll/HardAdmin.htm IE - HKU\S-1-5-21-4013617045-3506206116-1533852936-500\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = IE - HKU\S-1-5-21-4013617045-3506206116-1533852936-500\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = res://iesetup.dll/HardAdmin.htm IE - HKU\S-1-5-21-4013617045-3506206116-1533852936-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 O1 HOSTS File: ([2006-09-18 22:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O4 - HKLM..\Run: [COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cfp.exe (COMODO) O4 - HKLM..\Run: [S3Funkey] C:\Windows\System32\S3Funkey.exe (S3 Graphics Co., Ltd.) O4 - HKLM..\Run: [S3Trayp] C:\Windows\System32\s3trayp.exe (S3 Graphics Co., Ltd.) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: ShowSuperHidden = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: disablecad = 0 O7 - HKU\S-1-5-21-4013617045-3506206116-1533852936-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149 O7 - HKU\S-1-5-21-4013617045-3506206116-1533852936-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoInplaceSharing = 0 O13 - gopher Prefix: missing O20 - AppInit_DLLs: (C:\Windows\system32\guard32.dll) - C:\Windows\System32\guard32.dll (COMODO) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2006-09-18 22:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2012-03-04 17:26:44 | 000,583,680 | ---- | C] (OldTimer Tools) -- C:\Users\Administrator\Desktop\OTL.exe [2012-03-04 16:48:57 | 000,000,000 | ---D | C] -- C:\Users\Administrator\AppData\Roaming\foobar2000 [2012-03-04 16:48:48 | 000,000,000 | ---D | C] -- C:\Program Files\foobar2000 [2012-03-03 23:22:31 | 000,000,000 | ---D | C] -- C:\Users\Administrator\AppData\Local\COMODO [2012-03-03 23:21:24 | 000,000,000 | -H-D | C] -- C:\VritualRoot [2012-03-03 23:17:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\COMODO [2012-03-03 23:17:49 | 000,000,000 | ---D | C] -- C:\Program Files\COMODO [2012-03-03 23:17:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Comodo [2012-03-03 23:11:32 | 001,974,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_42.dll [2012-03-03 23:11:32 | 000,515,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_5.dll [2012-03-03 23:11:32 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_5.dll [2012-03-03 23:11:31 | 005,501,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dcsx_42.dll [2012-03-03 23:11:31 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_42.dll [2012-03-03 23:11:31 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_42.dll [2012-03-03 23:11:31 | 000,235,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx11_42.dll [2012-03-03 23:11:30 | 004,178,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_41.dll [2012-03-03 23:11:30 | 001,846,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_41.dll [2012-03-03 23:11:30 | 000,517,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_4.dll [2012-03-03 23:11:30 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_41.dll [2012-03-03 23:11:30 | 000,069,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_3.dll [2012-03-03 23:11:29 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_40.dll [2012-03-03 23:11:29 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_40.dll [2012-03-03 23:11:29 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_40.dll [2012-03-03 23:11:29 | 000,235,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_4.dll [2012-03-03 23:11:29 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_6.dll [2012-03-03 23:11:28 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_39.dll [2012-03-03 23:11:28 | 000,514,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_3.dll [2012-03-03 23:11:28 | 000,509,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_2.dll [2012-03-03 23:11:28 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_39.dll [2012-03-03 23:11:28 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_2.dll [2012-03-03 23:11:28 | 000,235,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_3.dll [2012-03-03 23:11:28 | 000,070,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_2.dll [2012-03-03 23:11:28 | 000,068,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_1.dll [2012-03-03 23:11:28 | 000,023,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_5.dll [2012-03-03 23:11:27 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_39.dll [2012-03-03 23:11:27 | 000,507,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_1.dll [2012-03-03 23:11:27 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_1.dll [2012-03-03 23:11:27 | 000,065,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAPOFX1_0.dll [2012-03-03 23:11:26 | 003,850,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_38.dll [2012-03-03 23:11:26 | 001,491,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_38.dll [2012-03-03 23:11:26 | 000,479,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XAudio2_0.dll [2012-03-03 23:11:26 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_38.dll [2012-03-03 23:11:26 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_4.dll [2012-03-03 23:11:25 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_37.dll [2012-03-03 23:11:25 | 001,420,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_37.dll [2012-03-03 23:11:25 | 000,462,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_37.dll [2012-03-03 23:11:25 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine3_0.dll [2012-03-03 23:11:25 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_3.dll [2012-03-03 23:11:24 | 003,734,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_36.dll [2012-03-03 23:11:24 | 001,374,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_36.dll [2012-03-03 23:11:24 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_36.dll [2012-03-03 23:11:24 | 000,267,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_10.dll [2012-03-03 23:11:23 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_35.dll [2012-03-03 23:11:23 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_35.dll [2012-03-03 23:11:23 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_35.dll [2012-03-03 23:11:23 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_9.dll [2012-03-03 23:11:22 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_34.dll [2012-03-03 23:11:22 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_34.dll [2012-03-03 23:11:22 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_34.dll [2012-03-03 23:11:22 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_8.dll [2012-03-03 23:11:22 | 000,081,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_3.dll [2012-03-03 23:11:22 | 000,017,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\X3DAudio1_2.dll [2012-03-03 23:11:21 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_33.dll [2012-03-03 23:11:21 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_33.dll [2012-03-03 23:11:21 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_33.dll [2012-03-03 23:11:21 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_7.dll [2012-03-03 23:11:21 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_6.dll [2012-03-03 23:11:21 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_5.dll [2012-03-03 23:11:20 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_32.dll [2012-03-03 23:11:20 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_31.dll [2012-03-03 23:11:20 | 000,440,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10.dll [2012-03-03 23:11:20 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_4.dll [2012-03-03 23:11:20 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\x3daudio1_1.dll [2012-03-03 23:11:19 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_3.dll [2012-03-03 23:11:19 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_2.dll [2012-03-03 23:11:19 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_1.dll [2012-03-03 23:11:19 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_2.dll [2012-03-03 23:11:19 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xinput1_1.dll [2012-03-03 23:11:15 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_30.dll [2012-03-03 23:11:15 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_29.dll [2012-03-03 23:11:15 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_28.dll [2012-03-03 23:11:15 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\xactengine2_0.dll [2012-03-03 23:11:15 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\x3daudio1_0.dll [2012-03-03 23:11:14 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_25.dll [2012-03-03 23:11:14 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_27.dll [2012-03-03 23:11:14 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_26.dll [2012-03-03 23:11:13 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx9_24.dll [2012-03-03 21:19:14 | 000,000,000 | ---D | C] -- C:\Windows\System32\restore [2012-03-03 19:25:16 | 001,081,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSCOMCTL.OCX [2012-03-03 19:25:16 | 000,662,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSCOMCT2.OCX [2012-03-03 19:25:16 | 000,416,528 | ---- | C] (Microsoft Corporation ) -- C:\Windows\System32\COMCT332.OCX [2012-03-03 19:25:16 | 000,152,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\comdlg32.ocx [2012-03-03 19:25:16 | 000,103,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSCOMM32.OCX [2012-03-03 19:25:16 | 000,067,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SYSINFO.OCX [2012-03-03 19:25:16 | 000,005,120 | ---- | C] (Windows (R) 2000 DDK provider) -- C:\Windows\System32\CLEVOMOF.dll [2012-03-03 19:25:16 | 000,000,000 | ---D | C] -- C:\Program Files\HotKey_Driver [2012-03-03 19:24:25 | 000,180,480 | ---- | C] (Realtek Semiconductor Corporation ) -- C:\Windows\System32\drivers\RTL8187.sys [2012-03-03 19:22:30 | 000,000,000 | ---D | C] -- C:\Users\Administrator\AppData\Roaming\Opera [2012-03-03 19:22:30 | 000,000,000 | ---D | C] -- C:\Users\Administrator\AppData\Local\Opera [2012-03-03 19:22:27 | 000,000,000 | ---D | C] -- C:\Program Files\Opera [2012-03-03 19:09:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REALTEK USB Wireless LAN Utility [2012-03-03 19:09:05 | 000,252,416 | ---- | C] (Realtek Semiconductor Corporation ) -- C:\Windows\System32\drivers\RTL8187B.sys [2012-03-03 19:09:04 | 000,000,000 | ---D | C] -- C:\Windows\System32\REALTEK USB Wireless LAN Driver and Utility [2012-03-03 19:09:02 | 000,000,000 | ---D | C] -- C:\Users\Administrator\AppData\Roaming\InstallShield [2012-03-03 19:07:23 | 000,025,896 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\System32\drivers\RtlProt.sys [2012-03-03 19:06:35 | 000,000,000 | ---D | C] -- C:\Users\Administrator\Desktop\wlan [2012-03-03 19:02:12 | 000,000,000 | ---D | C] -- C:\Program Files\S3 [2012-03-03 19:01:52 | 004,475,904 | ---- | C] (S3 Graphics, Inc.) -- C:\Windows\System32\VTGOGL32.DLL [2012-03-03 19:01:52 | 003,610,624 | ---- | C] (S3 Graphics Co., Ltd.) -- C:\Windows\System32\VTGUModeDX32.dll [2012-03-03 19:01:51 | 000,814,592 | ---- | C] (S3 Graphics Co., Ltd.) -- C:\Windows\System32\drivers\VTGKModeDX32.sys [2012-03-03 19:01:51 | 000,602,112 | ---- | C] (S3 Graphics Co., Ltd.) -- C:\Windows\System32\S3ovrlay.dll [2012-03-03 19:01:51 | 000,393,216 | ---- | C] (S3 Graphics Co., Ltd.) -- C:\Windows\System32\S3iset32.dll [2012-03-03 19:01:51 | 000,352,256 | ---- | C] (S3 Graphics Co., Ltd.) -- C:\Windows\System32\S3Info2.dll [2012-03-03 19:01:51 | 000,303,104 | ---- | C] (S3 Graphics Co., Ltd.) -- C:\Windows\System32\S3minset.exe [2012-03-03 19:01:51 | 000,204,800 | ---- | C] (S3 Graphics Co., Ltd.) -- C:\Windows\System32\s3trayp.exe [2012-03-03 19:01:51 | 000,172,032 | ---- | C] (S3 Graphics Co., Ltd.) -- C:\Windows\System32\drivers\ucb_lh32.sys [2012-03-03 19:01:50 | 000,737,280 | ---- | C] (S3 Graphics Co., Ltd.) -- C:\Windows\System32\S3Disply.dll [2012-03-03 19:01:50 | 000,528,384 | ---- | C] (S3 Graphics Co., Ltd.) -- C:\Windows\System32\S3Gamma2.dll [2012-03-03 19:01:50 | 000,446,464 | ---- | C] (S3 Graphics Co., Ltd.) -- C:\Windows\System32\S3Cfg3d.dll [2012-03-03 19:01:50 | 000,238,592 | ---- | C] (S3 Graphics) -- C:\Windows\System32\S3Clone.dll [2012-03-03 19:01:50 | 000,102,400 | ---- | C] (S3 Graphics Co., Ltd.) -- C:\Windows\System32\S3Funkey.exe [2012-03-03 18:57:05 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information [2012-03-03 18:56:04 | 000,331,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\difxapi.dll [2012-03-03 18:56:04 | 000,000,000 | ---D | C] -- C:\Program Files\VIA [2012-03-03 18:55:41 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield [2012-03-03 18:55:40 | 000,000,000 | -HSD | C] -- C:\Windows\Installer [2012-03-03 18:55:00 | 000,000,000 | ---D | C] -- C:\Users\Administrator\AppData\Local\GHISLER [2012-03-03 18:54:37 | 000,000,000 | ---D | C] -- C:\Users\Administrator\AppData\Roaming\GHISLER [2012-03-03 18:53:51 | 000,000,000 | ---D | C] -- C:\wincmd [2012-03-03 18:42:20 | 000,000,000 | R--D | C] -- C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup [2012-03-03 18:42:20 | 000,000,000 | R--D | C] -- C:\Users\Administrator\Searches [2012-03-03 18:42:20 | 000,000,000 | R--D | C] -- C:\Users\Administrator\Contacts [2012-03-03 18:42:20 | 000,000,000 | R--D | C] -- C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools [2012-03-03 18:42:07 | 000,000,000 | -HSD | C] -- C:\Users\Administrator\Ustawienia lokalne [2012-03-03 18:42:07 | 000,000,000 | -HSD | C] -- C:\Users\Administrator\AppData\Local\Temporary Internet Files [2012-03-03 18:42:07 | 000,000,000 | -HSD | C] -- C:\Users\Administrator\Szablony [2012-03-03 18:42:07 | 000,000,000 | -HSD | C] -- C:\Users\Administrator\SendTo [2012-03-03 18:42:07 | 000,000,000 | -HSD | C] -- C:\Users\Administrator\Recent [2012-03-03 18:42:07 | 000,000,000 | -HSD | C] -- C:\Users\Administrator\PrintHood [2012-03-03 18:42:07 | 000,000,000 | -HSD | C] -- C:\Users\Administrator\NetHood [2012-03-03 18:42:07 | 000,000,000 | -HSD | C] -- C:\Users\Administrator\Documents\Moje wideo [2012-03-03 18:42:07 | 000,000,000 | -HSD | C] -- C:\Users\Administrator\Documents\Moje obrazy [2012-03-03 18:42:07 | 000,000,000 | -HSD | C] -- C:\Users\Administrator\Moje dokumenty [2012-03-03 18:42:07 | 000,000,000 | -HSD | C] -- C:\Users\Administrator\Documents\Moja muzyka [2012-03-03 18:42:07 | 000,000,000 | -HSD | C] -- C:\Users\Administrator\Menu Start [2012-03-03 18:42:07 | 000,000,000 | -HSD | C] -- C:\Users\Administrator\AppData\Local\Historia [2012-03-03 18:42:07 | 000,000,000 | -HSD | C] -- C:\Users\Administrator\Dane aplikacji [2012-03-03 18:42:07 | 000,000,000 | -HSD | C] -- C:\Users\Administrator\AppData\Local\Dane aplikacji [2012-03-03 18:42:07 | 000,000,000 | -HSD | C] -- C:\Users\Administrator\Cookies [2012-03-03 18:42:06 | 000,000,000 | --SD | C] -- C:\Users\Administrator\AppData\Roaming\Microsoft [2012-03-03 18:42:06 | 000,000,000 | R--D | C] -- C:\Users\Administrator\Videos [2012-03-03 18:42:06 | 000,000,000 | R--D | C] -- C:\Users\Administrator\Saved Games [2012-03-03 18:42:06 | 000,000,000 | R--D | C] -- C:\Users\Administrator\Pictures [2012-03-03 18:42:06 | 000,000,000 | R--D | C] -- C:\Users\Administrator\Music [2012-03-03 18:42:06 | 000,000,000 | R--D | C] -- C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance [2012-03-03 18:42:06 | 000,000,000 | R--D | C] -- C:\Users\Administrator\Links [2012-03-03 18:42:06 | 000,000,000 | R--D | C] -- C:\Users\Administrator\Favorites [2012-03-03 18:42:06 | 000,000,000 | R--D | C] -- C:\Users\Administrator\Downloads [2012-03-03 18:42:06 | 000,000,000 | R--D | C] -- C:\Users\Administrator\Documents [2012-03-03 18:42:06 | 000,000,000 | R--D | C] -- C:\Users\Administrator\Desktop [2012-03-03 18:42:06 | 000,000,000 | R--D | C] -- C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories [2012-03-03 18:42:06 | 000,000,000 | -H-D | C] -- C:\Users\Administrator\AppData [2012-03-03 18:42:06 | 000,000,000 | ---D | C] -- C:\Users\Administrator\AppData\Local\Temp [2012-03-03 18:42:06 | 000,000,000 | ---D | C] -- C:\Users\Administrator\AppData\Local\Microsoft [2012-03-03 18:41:41 | 000,000,000 | -HSD | C] -- C:\ProgramData\Ulubione [2012-03-03 18:41:41 | 000,000,000 | -HSD | C] -- C:\ProgramData\Szablony [2012-03-03 18:41:41 | 000,000,000 | -HSD | C] -- C:\ProgramData\Pulpit [2012-03-03 18:41:41 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje wideo [2012-03-03 18:41:41 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje obrazy [2012-03-03 18:41:41 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moja muzyka [2012-03-03 18:41:41 | 000,000,000 | -HSD | C] -- C:\ProgramData\Menu Start [2012-03-03 18:41:41 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumenty [2012-03-03 18:41:41 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dane aplikacji [2012-03-03 18:41:31 | 000,000,000 | ---D | C] -- C:\Windows\Debug [2012-03-03 18:35:34 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution [2012-03-03 18:31:34 | 000,000,000 | -HSD | C] -- C:\System Volume Information [2012-03-03 18:30:31 | 000,000,000 | ---D | C] -- C:\Windows\Panther [2012-03-03 18:30:13 | 000,000,000 | -HSD | C] -- C:\Boot [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2012-03-04 17:26:53 | 000,518,672 | ---- | M] () -- C:\Windows\System32\drivers\sfi.dat [2012-03-04 16:48:52 | 000,000,739 | ---- | M] () -- C:\Users\Public\Desktop\foobar2000.lnk [2012-03-04 15:51:37 | 000,599,598 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2012-03-04 15:51:37 | 000,527,806 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2012-03-04 15:51:37 | 000,108,602 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2012-03-04 15:51:37 | 000,085,254 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2012-03-04 15:47:41 | 000,000,320 | ---- | M] () -- C:\Windows\tasks\RtlVistaStart.job [2012-03-04 15:47:32 | 000,003,872 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 [2012-03-04 15:47:32 | 000,003,872 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 [2012-03-04 15:47:11 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2012-03-04 15:47:00 | 1877,131,264 | -HS- | M] () -- C:\hiberfil.sys [2012-03-03 23:17:57 | 000,001,753 | ---- | M] () -- C:\Users\Public\Desktop\COMODO Internet Security.lnk [2012-03-03 21:34:01 | 000,000,444 | RHS- | M] () -- C:\Users\Administrator\ntuser.pol [2012-03-03 19:25:16 | 000,000,597 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HotKeyDriver.lnk [2012-03-03 19:22:29 | 000,001,535 | ---- | M] () -- C:\Users\Public\Desktop\Opera.lnk [2012-03-03 19:00:03 | 000,000,680 | ---- | M] () -- C:\Users\Administrator\AppData\Local\d3d9caps.dat [2012-03-03 18:38:49 | 000,075,505 | ---- | M] () -- C:\Windows\System32\license.rtf [2012-03-03 18:33:06 | 000,229,024 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2012-03-03 18:30:16 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK [2012-02-22 21:41:54 | 000,583,680 | ---- | M] (OldTimer Tools) -- C:\Users\Administrator\Desktop\OTL.exe [color=#E56717]========== Files Created - No Company Name ==========[/color] [2012-03-04 16:48:52 | 000,000,821 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\foobar2000.lnk [2012-03-04 16:48:52 | 000,000,739 | ---- | C] () -- C:\Users\Public\Desktop\foobar2000.lnk [2012-03-03 23:20:05 | 000,518,672 | ---- | C] () -- C:\Windows\System32\drivers\sfi.dat [2012-03-03 23:17:57 | 000,001,753 | ---- | C] () -- C:\Users\Public\Desktop\COMODO Internet Security.lnk [2012-03-03 21:34:01 | 000,000,444 | RHS- | C] () -- C:\Users\Administrator\ntuser.pol [2012-03-03 19:25:16 | 000,000,597 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HotKeyDriver.lnk [2012-03-03 19:22:29 | 000,001,547 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk [2012-03-03 19:22:29 | 000,001,535 | ---- | C] () -- C:\Users\Public\Desktop\Opera.lnk [2012-03-03 19:09:15 | 000,000,320 | ---- | C] () -- C:\Windows\tasks\RtlVistaStart.job [2012-03-03 19:01:52 | 001,769,472 | ---- | C] () -- C:\Windows\System32\VTROM.bin [2012-03-03 19:01:51 | 000,059,798 | ---- | C] () -- C:\Windows\System32\S3ovrlay.cfg [2012-03-03 19:01:51 | 000,051,124 | ---- | C] () -- C:\Windows\System32\S3Trayp.cfg [2012-03-03 19:01:51 | 000,044,076 | ---- | C] () -- C:\Windows\System32\S3Info2.cfg [2012-03-03 19:01:51 | 000,037,162 | ---- | C] () -- C:\Windows\System32\S3Trayp2.cfg [2012-03-03 19:01:51 | 000,034,375 | ---- | C] () -- C:\Windows\System32\S3Ovrly2.cfg [2012-03-03 19:01:50 | 000,072,732 | ---- | C] () -- C:\Windows\System32\S3Disply.cfg [2012-03-03 19:01:50 | 000,057,570 | ---- | C] () -- C:\Windows\System32\S3Displ2.cfg [2012-03-03 19:01:50 | 000,052,029 | ---- | C] () -- C:\Windows\System32\S3Displ3.cfg [2012-03-03 19:01:50 | 000,050,215 | ---- | C] () -- C:\Windows\System32\S3Gamma2.cfg [2012-03-03 19:01:50 | 000,043,390 | ---- | C] () -- C:\Windows\System32\S3Cfg3d.cfg [2012-03-03 19:01:50 | 000,036,546 | ---- | C] () -- C:\Windows\System32\S3Gama_2.cfg [2012-03-03 18:42:24 | 000,000,855 | ---- | C] () -- C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk [2012-03-03 18:42:15 | 000,000,680 | ---- | C] () -- C:\Users\Administrator\AppData\Local\d3d9caps.dat [2012-03-03 18:40:05 | 1877,131,264 | -HS- | C] () -- C:\hiberfil.sys [2012-03-03 18:30:16 | 000,008,192 | R-S- | C] () -- C:\BOOTSECT.BAK [2012-03-03 18:30:14 | 000,333,257 | RHS- | C] () -- C:\bootmgr [color=#E56717]========== LOP Check ==========[/color] [2012-03-04 16:59:24 | 000,000,000 | ---D | M] -- C:\Users\Administrator\AppData\Roaming\foobar2000 [2012-03-03 18:54:37 | 000,000,000 | ---D | M] -- C:\Users\Administrator\AppData\Roaming\GHISLER [2012-03-03 19:22:30 | 000,000,000 | ---D | M] -- C:\Users\Administrator\AppData\Roaming\Opera [2012-03-04 15:47:41 | 000,000,320 | ---- | M] () -- C:\Windows\Tasks\RtlVistaStart.job [2012-03-03 23:23:22 | 000,007,410 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [color=#E56717]========== Purity Check ==========[/color] < End of report >