OTL logfile created on: 2012-08-07 10:07:48 - Run 3 OTL by OldTimer - Version 3.2.56.0 Folder = C:\Users\Artek\Downloads 64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,75 Gb Total Physical Memory | 2,57 Gb Available Physical Memory | 68,53% Memory free 7,50 Gb Paging File | 6,42 Gb Available in Paging File | 85,68% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 48,73 Gb Total Space | 7,47 Gb Free Space | 15,34% Space Free | Partition Type: NTFS Drive D: | 416,93 Gb Total Space | 416,61 Gb Free Space | 99,92% Space Free | Partition Type: NTFS Drive F: | 7,26 Gb Total Space | 7,26 Gb Free Space | 100,00% Space Free | Partition Type: FAT32 Computer Name: ARTEK-KOMPUTER | User Name: Artek | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - File not found -- PRC - [2012-08-07 09:36:50 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Artek\Downloads\OTL (1).exe PRC - [2012-08-05 15:46:46 | 000,023,552 | RHS- | M] () -- C:\Users\Artek\M-10-8754-86589-55555\windogz.exe PRC - [2011-03-22 20:38:10 | 001,596,032 | ---- | M] (Nullsoft, Inc.) -- D:\Winamp\winamp.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2012-08-07 09:35:51 | 000,257,024 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\winamp.lng MOD - [2012-08-07 09:35:51 | 000,161,792 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\vis_milk2.lng MOD - [2012-08-07 09:35:51 | 000,087,552 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\vis_avs.lng MOD - [2012-08-07 09:35:51 | 000,054,272 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\ml_local.lng MOD - [2012-08-07 09:35:51 | 000,047,616 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\ml_disc.lng MOD - [2012-08-07 09:35:51 | 000,046,080 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\ml_pmp.lng MOD - [2012-08-07 09:35:51 | 000,041,984 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\pmp_wifi.lng MOD - [2012-08-07 09:35:51 | 000,036,864 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\ombrowser.lng MOD - [2012-08-07 09:35:51 | 000,016,896 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\out_ds.lng MOD - [2012-08-07 09:35:51 | 000,014,848 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\in_wm.lng MOD - [2012-08-07 09:35:51 | 000,014,336 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\ml_wire.lng MOD - [2012-08-07 09:35:51 | 000,014,336 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\ml_online.lng MOD - [2012-08-07 09:35:51 | 000,013,312 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\ml_playlists.lng MOD - [2012-08-07 09:35:51 | 000,012,800 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\ml_plg.lng MOD - [2012-08-07 09:35:51 | 000,011,264 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\in_vorbis.lng MOD - [2012-08-07 09:35:51 | 000,010,752 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\pmp_usb.lng MOD - [2012-08-07 09:35:51 | 000,010,752 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\pmp_android.lng MOD - [2012-08-07 09:35:51 | 000,009,216 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\ml_downloads.lng MOD - [2012-08-07 09:35:51 | 000,008,704 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\ml_history.lng MOD - [2012-08-07 09:35:51 | 000,008,704 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\ml_devices.lng MOD - [2012-08-07 09:35:51 | 000,008,192 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\ml_transcode.lng MOD - [2012-08-07 09:35:51 | 000,007,680 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\vis_nsfs.lng MOD - [2012-08-07 09:35:51 | 000,007,168 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\out_wave.lng MOD - [2012-08-07 09:35:51 | 000,007,168 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\ml_autotag.lng MOD - [2012-08-07 09:35:51 | 000,006,656 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\pmp_ipod.lng MOD - [2012-08-07 09:35:51 | 000,006,144 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\tagz.lng MOD - [2012-08-07 09:35:51 | 000,006,144 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\out_disk.lng MOD - [2012-08-07 09:35:51 | 000,005,632 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\ml_rg.lng MOD - [2012-08-07 09:35:51 | 000,005,632 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\in_wave.lng MOD - [2012-08-07 09:35:51 | 000,005,120 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\ml_impex.lng MOD - [2012-08-07 09:35:51 | 000,005,120 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\ml_bookmarks.lng MOD - [2012-08-07 09:35:51 | 000,004,608 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\pmp_activesync.lng MOD - [2012-08-07 09:35:51 | 000,004,096 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\pmp_p4s.lng MOD - [2012-08-07 09:35:51 | 000,004,096 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\ml_orb.lng MOD - [2012-08-07 09:35:51 | 000,003,584 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\winampa.lng MOD - [2012-08-07 09:35:51 | 000,003,584 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\pmp_njb.lng MOD - [2012-08-07 09:35:51 | 000,003,584 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\ml_nowplaying.lng MOD - [2012-08-07 09:35:51 | 000,003,584 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\ml_addons.lng MOD - [2012-08-07 09:35:51 | 000,003,584 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\in_swf.lng MOD - [2012-08-07 09:35:51 | 000,003,072 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\playlist.lng MOD - [2012-08-07 09:35:50 | 000,066,560 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\burnlib.lng MOD - [2012-08-07 09:35:50 | 000,040,448 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\gen_jumpex.lng MOD - [2012-08-07 09:35:50 | 000,022,528 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\in_mp3.lng MOD - [2012-08-07 09:35:50 | 000,022,016 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\gen_ff.lng MOD - [2012-08-07 09:35:50 | 000,021,504 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\gen_ml.lng MOD - [2012-08-07 09:35:50 | 000,020,992 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\in_midi.lng MOD - [2012-08-07 09:35:50 | 000,018,432 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\in_mod.lng MOD - [2012-08-07 09:35:50 | 000,013,312 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\in_cdda.lng MOD - [2012-08-07 09:35:50 | 000,012,800 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\dsp_sps.lng MOD - [2012-08-07 09:35:50 | 000,011,264 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\in_nsv.lng MOD - [2012-08-07 09:35:50 | 000,011,264 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\gen_hotkeys.lng MOD - [2012-08-07 09:35:50 | 000,011,264 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\auth.lng MOD - [2012-08-07 09:35:50 | 000,010,240 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\enc_aacplus.lng MOD - [2012-08-07 09:35:50 | 000,007,680 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\gen_tray.lng MOD - [2012-08-07 09:35:50 | 000,007,168 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\in_dshow.lng MOD - [2012-08-07 09:35:50 | 000,007,168 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\gen_orgler.lng MOD - [2012-08-07 09:35:50 | 000,007,168 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\gen_crasher.lng MOD - [2012-08-07 09:35:50 | 000,006,144 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\in_flac.lng MOD - [2012-08-07 09:35:50 | 000,006,144 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\enc_wma.lng MOD - [2012-08-07 09:35:50 | 000,005,632 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\enc_lame.lng MOD - [2012-08-07 09:35:50 | 000,005,120 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\in_avi.lng MOD - [2012-08-07 09:35:50 | 000,004,608 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\in_mp4.lng MOD - [2012-08-07 09:35:50 | 000,004,608 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\in_mkv.lng MOD - [2012-08-07 09:35:50 | 000,004,096 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\enc_wav.lng MOD - [2012-08-07 09:35:50 | 000,004,096 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\enc_flac.lng MOD - [2012-08-07 09:35:50 | 000,003,584 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\in_linein.lng MOD - [2012-08-07 09:35:50 | 000,003,584 | ---- | M] () -- C:\Users\Artek\AppData\Local\Temp\WLZA751.tmp\in_flv.lng MOD - [2012-08-05 15:46:46 | 000,023,552 | RHS- | M] () -- C:\Users\Artek\M-10-8754-86589-55555\windogz.exe MOD - [2012-07-31 07:36:14 | 000,442,392 | ---- | M] () -- C:\Users\Artek\AppData\Local\Google\Chrome\Application\21.0.1180.60\ppGoogleNaClPluginChrome.dll MOD - [2012-07-31 07:36:13 | 012,235,288 | ---- | M] () -- C:\Users\Artek\AppData\Local\Google\Chrome\Application\21.0.1180.60\PepperFlash\pepflashplayer.dll MOD - [2012-07-31 07:36:12 | 003,997,720 | ---- | M] () -- C:\Users\Artek\AppData\Local\Google\Chrome\Application\21.0.1180.60\pdf.dll MOD - [2012-07-31 07:34:45 | 000,144,424 | ---- | M] () -- C:\Users\Artek\AppData\Local\Google\Chrome\Application\21.0.1180.60\avutil-51.dll MOD - [2012-07-31 07:34:43 | 000,266,792 | ---- | M] () -- C:\Users\Artek\AppData\Local\Google\Chrome\Application\21.0.1180.60\avformat-54.dll MOD - [2012-07-31 07:34:42 | 002,480,680 | ---- | M] () -- C:\Users\Artek\AppData\Local\Google\Chrome\Application\21.0.1180.60\avcodec-54.dll MOD - [2011-11-16 09:44:34 | 000,623,616 | ---- | M] () -- D:\Winamp\System\jnetlib.w5s MOD - [2011-11-16 09:44:34 | 000,154,624 | ---- | M] () -- D:\Winamp\System\jpeg.w5s MOD - [2011-11-16 09:44:34 | 000,103,936 | ---- | M] () -- D:\Winamp\System\png.w5s MOD - [2011-11-16 09:44:34 | 000,090,112 | ---- | M] () -- D:\Winamp\System\xml.w5s MOD - [2011-11-16 09:44:34 | 000,084,480 | ---- | M] () -- D:\Winamp\System\playlist.w5s MOD - [2011-11-16 09:44:34 | 000,083,968 | ---- | M] () -- D:\Winamp\tataki.dll MOD - [2011-11-16 09:44:34 | 000,047,616 | ---- | M] () -- D:\Winamp\zlib.dll MOD - [2011-11-16 09:44:34 | 000,035,328 | ---- | M] () -- D:\Winamp\System\timer.w5s MOD - [2011-11-16 09:44:34 | 000,021,504 | ---- | M] () -- D:\Winamp\System\tagz.w5s MOD - [2011-11-16 09:44:34 | 000,013,824 | ---- | M] () -- D:\Winamp\System\primo.w5s MOD - [2011-11-16 09:44:33 | 001,737,728 | ---- | M] () -- D:\Winamp\Plugins\gen_ff.dll MOD - [2011-11-16 09:44:33 | 000,410,624 | ---- | M] () -- D:\Winamp\nsutil.dll MOD - [2011-11-16 09:44:33 | 000,340,992 | ---- | M] () -- D:\Winamp\Plugins\freeform\wacs\freetype\freetype.wac MOD - [2011-11-16 09:44:33 | 000,313,344 | ---- | M] () -- D:\Winamp\Plugins\in_wm.dll MOD - [2011-11-16 09:44:33 | 000,312,832 | ---- | M] () -- D:\Winamp\Plugins\gen_ml.dll MOD - [2011-11-16 09:44:33 | 000,293,888 | ---- | M] () -- D:\Winamp\Plugins\ml_local.dll MOD - [2011-11-16 09:44:33 | 000,288,768 | ---- | M] () -- D:\Winamp\Plugins\in_mp3.dll MOD - [2011-11-16 09:44:33 | 000,253,440 | ---- | M] () -- D:\Winamp\libsndfile.dll MOD - [2011-11-16 09:44:33 | 000,252,416 | ---- | M] () -- D:\Winamp\Plugins\in_vorbis.dll MOD - [2011-11-16 09:44:33 | 000,250,368 | ---- | M] () -- D:\Winamp\Plugins\ml_devices.dll MOD - [2011-11-16 09:44:33 | 000,240,640 | ---- | M] () -- D:\Winamp\Plugins\ml_pmp.dll MOD - [2011-11-16 09:44:33 | 000,200,704 | ---- | M] () -- D:\Winamp\Plugins\ml_disc.dll MOD - [2011-11-16 09:44:33 | 000,183,808 | ---- | M] () -- D:\Winamp\Plugins\gen_jumpex.dll MOD - [2011-11-16 09:44:33 | 000,174,080 | ---- | M] () -- D:\Winamp\System\auth.w5s MOD - [2011-11-16 09:44:33 | 000,171,008 | ---- | M] () -- D:\Winamp\Plugins\pmp_ipod.dll MOD - [2011-11-16 09:44:33 | 000,165,376 | ---- | M] () -- D:\Winamp\Plugins\in_mod.dll MOD - [2011-11-16 09:44:33 | 000,126,464 | ---- | M] () -- D:\Winamp\Plugins\ml_online.dll MOD - [2011-11-16 09:44:33 | 000,118,272 | ---- | M] () -- D:\Winamp\Plugins\pmp_p4s.dll MOD - [2011-11-16 09:44:33 | 000,113,152 | ---- | M] () -- D:\Winamp\Plugins\pmp_wifi.dll MOD - [2011-11-16 09:44:33 | 000,109,568 | ---- | M] () -- D:\Winamp\Plugins\in_midi.dll MOD - [2011-11-16 09:44:33 | 000,102,400 | ---- | M] () -- D:\Winamp\Plugins\in_cdda.dll MOD - [2011-11-16 09:44:33 | 000,083,456 | ---- | M] () -- D:\Winamp\Plugins\ml_plg.dll MOD - [2011-11-16 09:44:33 | 000,082,944 | ---- | M] () -- D:\Winamp\Plugins\ml_playlists.dll MOD - [2011-11-16 09:44:33 | 000,079,360 | ---- | M] () -- D:\Winamp\nde.dll MOD - [2011-11-16 09:44:33 | 000,074,752 | ---- | M] () -- D:\Winamp\Plugins\in_nsv.dll MOD - [2011-11-16 09:44:33 | 000,072,192 | ---- | M] () -- D:\Winamp\Plugins\in_dshow.dll MOD - [2011-11-16 09:44:33 | 000,068,608 | ---- | M] () -- D:\Winamp\Plugins\in_avi.dll MOD - [2011-11-16 09:44:33 | 000,060,928 | ---- | M] () -- D:\Winamp\Plugins\pmp_android.dll MOD - [2011-11-16 09:44:33 | 000,060,928 | ---- | M] () -- D:\Winamp\Plugins\in_flac.dll MOD - [2011-11-16 09:44:33 | 000,057,344 | ---- | M] () -- D:\Winamp\Plugins\ml_impex.dll MOD - [2011-11-16 09:44:33 | 000,057,344 | ---- | M] () -- D:\Winamp\Plugins\gen_orgler.dll MOD - [2011-11-16 09:44:33 | 000,053,760 | ---- | M] () -- D:\Winamp\Plugins\pmp_usb.dll MOD - [2011-11-16 09:44:33 | 000,052,224 | ---- | M] () -- D:\Winamp\Plugins\out_ds.dll MOD - [2011-11-16 09:44:33 | 000,052,224 | ---- | M] () -- D:\Winamp\Plugins\ml_history.dll MOD - [2011-11-16 09:44:33 | 000,050,688 | ---- | M] () -- D:\Winamp\Plugins\in_mp4.dll MOD - [2011-11-16 09:44:33 | 000,049,152 | ---- | M] () -- D:\Winamp\Plugins\in_mkv.dll MOD - [2011-11-16 09:44:33 | 000,044,544 | ---- | M] () -- D:\Winamp\System\devices.w5s MOD - [2011-11-16 09:44:33 | 000,043,008 | ---- | M] () -- D:\Winamp\Plugins\in_flv.dll MOD - [2011-11-16 09:44:33 | 000,033,792 | ---- | M] () -- D:\Winamp\Plugins\ml_rg.dll MOD - [2011-11-16 09:44:33 | 000,031,744 | ---- | M] () -- D:\Winamp\Plugins\ml_transcode.dll MOD - [2011-11-16 09:44:33 | 000,028,672 | ---- | M] () -- D:\Winamp\Plugins\ml_autotag.dll MOD - [2011-11-16 09:44:33 | 000,027,648 | ---- | M] () -- D:\Winamp\Plugins\ml_bookmarks.dll MOD - [2011-11-16 09:44:33 | 000,027,648 | ---- | M] () -- D:\Winamp\Plugins\gen_hotkeys.dll MOD - [2011-11-16 09:44:33 | 000,025,600 | ---- | M] () -- D:\Winamp\Plugins\gen_tray.dll MOD - [2011-11-16 09:44:33 | 000,023,552 | ---- | M] () -- D:\Winamp\Plugins\in_swf.dll MOD - [2011-11-16 09:44:33 | 000,023,040 | ---- | M] () -- D:\Winamp\System\albumart.w5s MOD - [2011-11-16 09:44:33 | 000,022,528 | ---- | M] () -- D:\Winamp\Plugins\out_disk.dll MOD - [2011-11-16 09:44:33 | 000,020,480 | ---- | M] () -- D:\Winamp\Plugins\pmp_njb.dll MOD - [2011-11-16 09:44:33 | 000,019,456 | ---- | M] () -- D:\Winamp\System\gif.w5s MOD - [2011-11-16 09:44:33 | 000,019,456 | ---- | M] () -- D:\Winamp\System\bmp.w5s MOD - [2011-11-16 09:44:33 | 000,018,432 | ---- | M] () -- D:\Winamp\Plugins\out_wave.dll MOD - [2011-11-16 09:44:33 | 000,016,896 | ---- | M] () -- D:\Winamp\Plugins\in_wave.dll MOD - [2011-11-16 09:44:33 | 000,016,896 | ---- | M] () -- D:\Winamp\System\dlmgr.w5s MOD - [2011-11-16 09:44:33 | 000,016,384 | ---- | M] () -- D:\Winamp\System\gracenote.w5s MOD - [2011-11-16 09:44:33 | 000,014,336 | ---- | M] () -- D:\Winamp\System\filereader.w5s MOD - [2011-11-16 09:44:33 | 000,007,168 | ---- | M] () -- D:\Winamp\Plugins\in_linein.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV:[b]64bit:[/b] - [2009-07-14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV:[b]64bit:[/b] - [2009-07-14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt) SRV - [2012-08-02 21:19:26 | 000,250,056 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2012-01-18 14:38:28 | 000,155,320 | ---- | M] (Avanquest Software) [On_Demand | Stopped] -- C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe -- (Sony PC Companion) SRV - [2011-11-15 18:36:59 | 000,079,360 | ---- | M] (Creative Labs) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe -- (Creative ALchemy AL6 Licensing Service) SRV - [2011-11-15 18:36:27 | 000,079,360 | ---- | M] (Creative Labs) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe -- (Creative Audio Engine Licensing Service) SRV - [2011-11-15 18:36:05 | 000,079,360 | ---- | M] (Creative Labs) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\XMBLicensing.exe -- (Sound Blaster X-Fi MB Licensing Service) SRV - [2011-10-01 08:30:22 | 000,219,496 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe -- (sftvsa) SRV - [2011-10-01 08:30:18 | 000,508,776 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe -- (sftlist) SRV - [2009-07-14 13:28:00 | 000,239,648 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service) SRV - [2009-06-10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) SRV - [2009-02-23 05:43:56 | 000,307,200 | ---- | M] (Creative Technology Ltd) [Auto | Stopped] -- C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe -- (CTAudSvcService) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV:[b]64bit:[/b] - [2012-03-01 08:54:38 | 000,022,896 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec) DRV:[b]64bit:[/b] - [2012-02-17 22:48:34 | 000,027,176 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ggsemc.sys -- (ggsemc) DRV:[b]64bit:[/b] - [2012-02-17 22:48:34 | 000,013,352 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ggflt.sys -- (ggflt) DRV:[b]64bit:[/b] - [2011-12-02 13:20:06 | 000,031,808 | ---- | M] (FNet Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\FNETTBOH_305.SYS -- (FNETTBOH_305) DRV:[b]64bit:[/b] - [2011-11-15 18:34:21 | 000,015,936 | ---- | M] (FNet Co., Ltd.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\FNETURPX.SYS -- (FNETURPX) DRV:[b]64bit:[/b] - [2011-10-01 08:30:22 | 000,022,376 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Sftvollh.sys -- (Sftvol) DRV:[b]64bit:[/b] - [2011-10-01 08:30:18 | 000,268,648 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Sftplaylh.sys -- (Sftplay) DRV:[b]64bit:[/b] - [2011-10-01 08:30:18 | 000,025,960 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Sftredirlh.sys -- (Sftredir) DRV:[b]64bit:[/b] - [2011-10-01 08:30:10 | 000,764,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Sftfslh.sys -- (Sftfs) DRV:[b]64bit:[/b] - [2010-06-11 15:37:14 | 000,015,368 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\AsrAppCharger.sys -- (AsrAppCharger) DRV:[b]64bit:[/b] - [2009-09-17 13:04:18 | 001,250,816 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\viahduaa.sys -- (VIAHdAudAddService) DRV:[b]64bit:[/b] - [2009-07-14 03:52:21 | 000,106,576 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata) DRV:[b]64bit:[/b] - [2009-07-14 03:52:21 | 000,028,752 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata) DRV:[b]64bit:[/b] - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs) DRV:[b]64bit:[/b] - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2) DRV:[b]64bit:[/b] - [2009-07-14 03:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD) DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor) DRV:[b]64bit:[/b] - [2009-06-10 22:35:35 | 000,408,960 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nvm62x64.sys -- (NVENETFD) DRV:[b]64bit:[/b] - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv) DRV:[b]64bit:[/b] - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv) DRV:[b]64bit:[/b] - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a) DRV:[b]64bit:[/b] - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir) DRV:[b]64bit:[/b] - [2009-04-30 07:06:58 | 000,339,360 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvmf6264.sys -- (NVNET) DRV - [2012-04-24 15:13:10 | 000,138,360 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11122.sys -- (EraserUtilDrv11122) DRV - [2009-07-14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = pl.v9.com/idg/idg_1333659030_296276 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://startsear.ch/?aff=2&cf=78806ad6-8e44-11e1-9dab-0025229ce03c IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKLM\..\SearchScopes\{68DBA213-C78C-413E-9D76-791072C61F6F}: "URL" = http://startsear.ch/?aff=2&src=sp&cf=78806ad6-8e44-11e1-9dab-0025229ce03c&q={searchTerms} IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = pl.v9.com/idg/idg_1334907922_711681 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/?babsrc=HP_Prot IE - HKCU\..\SearchScopes,DefaultScope = {68DBA213-C78C-413E-9D76-791072C61F6F} IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC IE - HKCU\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/?q={searchTerms}&AF=100482&babsrc=SP_ss&mntrId=cc76eaba0000000000000025229ce03c IE - HKCU\..\SearchScopes\{68DBA213-C78C-413E-9D76-791072C61F6F}: "URL" = http://startsear.ch/?aff=2&src=sp&cf=78806ad6-8e44-11e1-9dab-0025229ce03c&q={searchTerms} IE - HKCU\..\SearchScopes\{73964DED-BAC2-467F-B6FF-D0E555EAC6A8}: "URL" = http://start.funmoods.com/results.php?f=4&a=ironto&q={searchTerms} IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.5.1: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.5.1: C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Artek\AppData\Local\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.) FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Artek\AppData\Local\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2012-01-22 19:10:42 | 000,000,000 | ---D | M] [2012-04-05 22:46:54 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions [color=#E56717]========== Chrome ==========[/color] CHR - homepage: http://startsear.ch/?aff=2&cf=78806ad6-8e44-11e1-9dab-0025229ce03c CHR - default_search_provider: Search the web (Babylon) (Enabled) CHR - default_search_provider: search_url = http://search.babylon.com/?q={searchTerms}&AF=100482&babsrc=SP_ss&mntrId=cc76eaba0000000000000025229ce03c CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms} CHR - homepage: http://startsear.ch/?aff=2&cf=78806ad6-8e44-11e1-9dab-0025229ce03c CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer CHR - plugin: Native Client (Enabled) = C:\Users\Artek\AppData\Local\Google\Chrome\Application\21.0.1180.60\ppGoogleNaClPluginChrome.dll CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Artek\AppData\Local\Google\Chrome\Application\21.0.1180.60\pdf.dll CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Artek\AppData\Local\Google\Chrome\Application\21.0.1180.60\gcswf32.dll CHR - plugin: Shockwave Flash (Disabled) = C:\Users\Artek\AppData\Local\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32.dll CHR - plugin: LiveVDO plug-in (Enabled) = C:\Users\Artek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbiamblgmkgbcgbcgejjgebalncpmhnp\1.3_0\chvsharetvplg.dll CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll CHR - plugin: QuickTime Plug-in 7.6.2 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll CHR - plugin: QuickTime Plug-in 7.6.2 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll CHR - plugin: QuickTime Plug-in 7.6.2 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll CHR - plugin: QuickTime Plug-in 7.6.2 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll CHR - plugin: QuickTime Plug-in 7.6.2 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll CHR - plugin: QuickTime Plug-in 7.6.2 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll CHR - plugin: QuickTime Plug-in 7.6.2 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL CHR - plugin: DivX VOD Helper Plug-in (Enabled) = C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll CHR - plugin: DivX Plus Web Player (Enabled) = C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll CHR - plugin: Java(TM) Platform SE 6 U31 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll CHR - plugin: Google Update (Enabled) = C:\Users\Artek\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll CHR - Extension: YouTube = C:\Users\Artek\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\ CHR - Extension: Szukaj w Google = C:\Users\Artek\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\ CHR - Extension: Complitly plugin for chrome = C:\Users\Artek\AppData\Local\Google\Chrome\User Data\Default\Extensions\defdhglnppeioeflggkmglipcecffkhk\1.1_0\ CHR - Extension: DealPly = C:\Users\Artek\AppData\Local\Google\Chrome\User Data\Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje\3.0.7.2_0\ CHR - Extension: DivX Plus Web Player HTML5 video = C:\Users\Artek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\ CHR - Extension: LiveVDO plugin = C:\Users\Artek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbiamblgmkgbcgbcgejjgebalncpmhnp\1.3_0\ CHR - Extension: Gmail = C:\Users\Artek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\ O1 HOSTS File: ([2012-08-05 15:47:14 | 000,001,392 | RHS- | M]) - C:\Windows\SysNative\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O1 - Hosts: 78.46.61.26 www.google-analytics.com. O1 - Hosts: 78.46.61.26 ad-emea.doubleclick.net. O1 - Hosts: 78.46.61.26 www.statcounter.com. O1 - Hosts: 108.163.215.51 www.google-analytics.com. O1 - Hosts: 108.163.215.51 ad-emea.doubleclick.net. O1 - Hosts: 108.163.215.51 www.statcounter.com. O2:[b]64bit:[/b] - BHO: (Complitly) - {D27FC31C-6E3D-4305-8D53-ACDAEFA5F862} - C:\Users\Artek\AppData\Roaming\Complitly\64\Complitly64.dll (SimplyGen) O2 - BHO: (Babylon toolbar helper) - {2EECD738-5844-4a99-B4B6-146BF802613B} - C:\Program Files (x86)\BabylonToolbar\BabylonToolbar\1.5.3.17\bh\BabylonToolbar.dll (Babylon BHO) O2 - BHO: (DivX Plus Web Player HTML5