OTL logfile created on: 2011-01-28 22:31:49 - Run 3 OTL by OldTimer - Version 3.2.20.6 Folder = C:\Users\Soob\Desktop 64bit- An unknown product (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 4,00 Gb Total Physical Memory | 3,00 Gb Available Physical Memory | 66,00% Memory free 8,00 Gb Paging File | 6,00 Gb Available in Paging File | 82,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 58,50 Gb Total Space | 23,91 Gb Free Space | 40,87% Space Free | Partition Type: NTFS Drive D: | 407,17 Gb Total Space | 372,67 Gb Free Space | 91,53% Space Free | Partition Type: NTFS Computer Name: SOOB-PC | User Name: Soob | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 60 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011-01-28 22:24:59 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Users\Soob\Desktop\OTL.exe PRC - [2011-01-13 09:47:34 | 003,396,624 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe PRC - [2011-01-13 09:47:33 | 000,040,384 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe PRC - [2010-12-24 09:27:32 | 008,790,016 | ---- | M] (Creative Team S.A.) -- C:\Program Files (x86)\WapSter\WapSter AQQ\AQQ.exe PRC - [2010-12-10 21:51:52 | 000,912,344 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe PRC - [2010-12-10 21:51:52 | 000,016,856 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe PRC - [2010-12-09 11:45:58 | 000,074,752 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\Winamp\winampa.exe PRC - [2010-02-04 00:28:07 | 000,107,176 | ---- | M] (Lexmark International Inc.) -- C:\Program Files (x86)\Lexmark 3600-4600 Series\ezprint.exe PRC - [2010-02-04 00:27:55 | 000,672,424 | ---- | M] () -- C:\Program Files (x86)\Lexmark 3600-4600 Series\lxdxmon.exe PRC - [2009-08-06 06:51:20 | 000,065,536 | R--- | M] () -- C:\Windows\SysWOW64\XSrvSetup.exe PRC - [2009-08-04 16:29:54 | 000,219,360 | ---- | M] (DeviceVM, Inc.) -- C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe PRC - [2009-08-04 16:29:52 | 000,346,320 | ---- | M] (DeviceVM, Inc.) -- C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2011-01-28 22:24:59 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Users\Soob\Desktop\OTL.exe MOD - [2011-01-20 12:57:46 | 000,189,728 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\snxhk.dll MOD - [2010-08-21 06:21:32 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV:[b]64bit:[/b] - [2011-01-13 09:47:33 | 000,040,384 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus) SRV:[b]64bit:[/b] - [2010-02-03 23:44:10 | 001,039,872 | ---- | M] ( ) [Auto | Running] -- C:\Windows\SysNative\lxdxcoms.exe -- (lxdx_device) SRV:[b]64bit:[/b] - [2009-11-04 16:45:14 | 000,202,752 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility) SRV:[b]64bit:[/b] - [2009-10-16 17:00:54 | 000,029,184 | ---- | M] () [Auto | Stopped] -- C:\Windows\SysNative\spool\DRIVERS\x64\3\\lxdxserv.exe -- (lxdxCATSCustConnectService) SRV:[b]64bit:[/b] - [2009-07-14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV:[b]64bit:[/b] - [2009-07-14 02:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt) SRV - [2010-03-18 12:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32) SRV - [2010-02-03 23:43:56 | 000,589,824 | ---- | M] ( ) [Auto | Running] -- C:\Windows\SysWow64\lxdxcoms.exe -- (lxdx_device) SRV - [2009-08-06 06:51:20 | 000,065,536 | R--- | M] () [Auto | Running] -- C:\Windows\SysWOW64\XSrvSetup.exe -- (JMB36X) SRV - [2009-08-04 16:29:54 | 000,219,360 | ---- | M] (DeviceVM, Inc.) [Auto | Running] -- C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe -- (BCUService) SRV - [2009-06-10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) SRV - [2005-11-17 13:18:52 | 001,527,900 | ---- | M] (MAGIX®) [On_Demand | Stopped] -- C:\Program Files (x86)\MAGIX\Common\Database\bin\fbserver.exe -- (FirebirdServerMAGIXInstance) SRV - [2005-11-14 00:06:04 | 000,069,632 | ---- | M] (Macrovision Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe -- (IDriverT) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV:[b]64bit:[/b] - [2011-01-13 09:37:23 | 000,062,032 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt) DRV:[b]64bit:[/b] - [2010-10-08 15:52:38 | 000,144,784 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VBoxNetAdp.sys -- (VBoxNetAdp) DRV:[b]64bit:[/b] - [2010-09-28 15:44:52 | 000,051,712 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64) DRV:[b]64bit:[/b] - [2010-08-19 05:39:21 | 000,027,176 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ggsemc.sys -- (ggsemc) DRV:[b]64bit:[/b] - [2010-08-19 05:39:21 | 000,013,352 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ggflt.sys -- (ggflt) DRV:[b]64bit:[/b] - [2010-08-19 05:37:02 | 000,034,032 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\seehcri.sys -- (seehcri) DRV:[b]64bit:[/b] - [2010-07-18 10:06:43 | 000,828,912 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd) DRV:[b]64bit:[/b] - [2010-03-01 09:35:20 | 000,020,520 | ---- | M] () [Kernel | System | Running] -- C:\Windows\SysNative\drivers\AppleCharger.sys -- (AppleCharger) DRV:[b]64bit:[/b] - [2009-12-01 19:14:40 | 000,040,528 | ---- | M] (ArcaBit) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\abndis.sys -- (ABndisMP) DRV:[b]64bit:[/b] - [2009-12-01 19:14:40 | 000,040,528 | ---- | M] (ArcaBit) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\abndis.sys -- (ABndis) DRV:[b]64bit:[/b] - [2009-11-27 10:45:06 | 000,295,424 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167) DRV:[b]64bit:[/b] - [2009-11-04 17:17:30 | 006,088,192 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag) DRV:[b]64bit:[/b] - [2009-10-29 09:14:38 | 000,115,824 | ---- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\jraid.sys -- (JRAID) DRV:[b]64bit:[/b] - [2009-09-30 15:34:30 | 000,121,872 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService) DRV:[b]64bit:[/b] - [2009-07-14 02:52:21 | 000,106,576 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata) DRV:[b]64bit:[/b] - [2009-07-14 02:52:21 | 000,028,752 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata) DRV:[b]64bit:[/b] - [2009-07-14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs) DRV:[b]64bit:[/b] - [2009-07-14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2) DRV:[b]64bit:[/b] - [2009-07-14 02:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD) DRV:[b]64bit:[/b] - [2009-07-14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor) DRV:[b]64bit:[/b] - [2009-07-14 01:09:15 | 000,145,920 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\rmcast.sys -- (RMCAST) DRV:[b]64bit:[/b] - [2009-06-10 21:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\wbem\ntfs.mof -- (Ntfs) DRV:[b]64bit:[/b] - [2009-06-10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv) DRV:[b]64bit:[/b] - [2009-06-10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv) DRV:[b]64bit:[/b] - [2009-06-10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a) DRV:[b]64bit:[/b] - [2009-06-10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir) DRV:[b]64bit:[/b] - [2009-05-18 13:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM) DRV:[b]64bit:[/b] - [2009-02-24 17:35:44 | 000,255,552 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mcdbus.sys -- (mcdbus) DRV - [2009-02-24 18:35:44 | 000,255,552 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\mcdbus.sys -- (mcdbus) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-268685592-1164845389-3330084532-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = IE - HKU\S-1-5-21-268685592-1164845389-3330084532-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = IE - HKU\S-1-5-21-268685592-1164845389-3330084532-1000\..\URLSearchHook: {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll (DeviceVM, Inc.) IE - HKU\S-1-5-21-268685592-1164845389-3330084532-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-268685592-1164845389-3330084532-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultengine: "" FF - prefs.js..browser.search.defaultthis.engineName: "" FF - prefs.js..browser.search.defaulturl: "" FF - prefs.js..browser.search.selectedEngine: "YouTube" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "google.pl" FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3 FF - prefs.js..extensions.enabledItems: smartbookmarksbar@remy.juteau:1.4.3 FF - prefs.js..extensions.enabledItems: youtube2mp3@mondayx.de:1.0.7 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23 FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011-01-10 00:38:28 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2010-12-24 21:43:11 | 000,000,000 | ---D | M] [2010-07-17 19:21:42 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Soob\AppData\Roaming\mozilla\Extensions [2011-01-28 18:37:06 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Soob\AppData\Roaming\mozilla\Firefox\Profiles\nrmqzzwj.default\extensions [2010-12-24 15:47:57 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Users\Soob\AppData\Roaming\mozilla\Firefox\Profiles\nrmqzzwj.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} [2010-10-15 11:43:56 | 000,000,000 | ---D | M] (Smart Bookmarks Bar) -- C:\Users\Soob\AppData\Roaming\mozilla\Firefox\Profiles\nrmqzzwj.default\extensions\smartbookmarksbar@remy.juteau [2010-12-25 21:44:05 | 000,000,000 | ---D | M] (YouTube to MP3) -- C:\Users\Soob\AppData\Roaming\mozilla\Firefox\Profiles\nrmqzzwj.default\extensions\youtube2mp3@mondayx.de [2010-07-18 04:17:51 | 000,001,330 | ---- | M] () -- C:\Users\Soob\AppData\Roaming\Mozilla\Firefox\Profiles\nrmqzzwj.default\searchplugins\wikipedia-en.xml [2010-07-18 03:12:36 | 000,004,140 | ---- | M] () -- C:\Users\Soob\AppData\Roaming\Mozilla\Firefox\Profiles\nrmqzzwj.default\searchplugins\youtube.xml [2011-01-28 18:36:59 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions [2011-01-13 15:03:28 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} [2010-11-12 18:53:06 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll [2010-12-09 11:47:06 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll [2010-06-26 08:59:22 | 000,002,767 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\allegro-pl.xml [2010-12-18 00:46:37 | 000,002,226 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\babylon.xml [2010-06-26 08:59:22 | 000,001,406 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\fbc-pl.xml [2010-06-26 08:59:22 | 000,000,917 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\merlin-pl.xml [2010-06-26 08:59:22 | 000,000,858 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\pwn-pl.xml [2010-06-26 08:59:22 | 000,001,183 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-pl.xml [2010-06-26 08:59:22 | 000,001,683 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2011-01-28 22:25:29 | 000,000,098 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O4:[b]64bit:[/b] - HKLM..\Run: [EzPrint] C:\Program Files (x86)\Lexmark 3600-4600 Series\ezprint.exe (Lexmark International Inc.) O4:[b]64bit:[/b] - HKLM..\Run: [lxdxmon.exe] C:\Program Files (x86)\Lexmark 3600-4600 Series\lxdxmon.exe () O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [BCU] C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe (DeviceVM, Inc.) O4 - HKLM..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe () O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.) O4 - HKLM..\Run: [WinampAgent] C:\Program Files (x86)\Winamp\winampa.exe (Nullsoft, Inc.) O4 - HKU\S-1-5-21-268685592-1164845389-3330084532-1000..\Run: [AQQ] C:\PROGRA~2\WapSter\WAPSTE~1\AQQ.exe (Creative Team S.A.) O4 - Startup: C:\Users\Soob\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\avast! Free Antivirus.lnk = File not found O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = [binary data] O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = [binary data] O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-268685592-1164845389-3330084532-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-268685592-1164845389-3330084532-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-268685592-1164845389-3330084532-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O9:[b]64bit:[/b] - Extra Button: ArcaVir >> - {40525A66-DB98-480D-BCF9-7AF88C1AF438} - Reg Error: Key error. File not found O9:[b]64bit:[/b] - Extra 'Tools' menuitem : ArcaVir >> - {40525A66-DB98-480D-BCF9-7AF88C1AF438} - Reg Error: Key error. File not found O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - File not found O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - File not found O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23) O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 172.20.0.4 195.137.161.2 213.172.186.4 O18:[b]64bit:[/b] - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - Reg Error: Key error. File not found O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found O32 - HKLM CDRom: AutoRun - 1 O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %* O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...com [@ = ComFile] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2011-01-28 22:25:27 | 000,000,000 | ---D | C] -- C:\_OTL [2011-01-28 22:24:54 | 000,602,624 | ---- | C] (OldTimer Tools) -- C:\Users\Soob\Desktop\OTL.exe [2011-01-28 18:13:28 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN [2011-01-28 18:08:19 | 000,031,232 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe [2011-01-28 18:07:50 | 000,212,480 | ---- | C] (SteelWerX) -- C:\Windows\SWXCACLS.exe [2011-01-28 17:54:11 | 000,161,792 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe [2011-01-28 17:54:11 | 000,136,704 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe [2011-01-28 17:50:44 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT [2011-01-28 17:36:04 | 000,000,000 | ---D | C] -- C:\Qoobox [2011-01-28 16:21:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Emsisoft Anti-Malware [2011-01-28 02:00:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Kaspersky Lab Setup Files [2011-01-25 19:11:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Deluxe Ski Jump 4 [2011-01-25 01:03:34 | 000,000,000 | ---D | C] -- C:\Users\Soob\Documents\Deluxe Ski Jump 4 [2011-01-24 16:31:01 | 000,000,000 | ---D | C] -- C:\Program Files\Deluxe Ski Jump 3 [2011-01-24 16:30:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Deluxe Ski Jump 3 [2011-01-24 16:15:34 | 000,000,000 | ---D | C] -- C:\Users\Soob\Documents\Deluxe Ski Jump 3 [2011-01-24 16:15:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Deluxe Ski Jump 3 [2011-01-16 16:10:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\WMV To VCD DVD MPEG Converter Pro [2011-01-16 15:50:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VobSub [2011-01-16 15:50:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Gabest [2011-01-16 15:40:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SubEdit-Player [2011-01-15 08:46:48 | 000,237,168 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe [2011-01-14 20:09:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn [2011-01-11 16:48:25 | 000,000,000 | ---D | C] -- C:\Config.Msi [2011-01-10 17:38:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Drumsite [2011-01-10 17:38:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Drumsite [2011-01-10 17:03:09 | 000,000,000 | ---D | C] -- C:\Temp [2011-01-10 17:02:59 | 000,000,000 | ---D | C] -- C:\Users\Soob\Application Data [2011-01-10 17:02:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cool Edit Pro 2.0 [2011-01-10 17:01:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\coolpro2 [2011-01-08 13:27:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySpace Grab [2011-01-02 01:23:49 | 000,000,000 | ---D | C] -- C:\Users\Soob\AppData\Roaming\RDRM [2010-12-24 21:43:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes [2010-12-24 21:43:38 | 000,000,000 | ---D | C] -- C:\Program Files\iPod [2010-12-24 21:43:37 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes [2010-12-24 21:43:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes [2010-12-24 21:43:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime [2010-12-24 21:43:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\QuickTime [2010-12-24 21:24:04 | 000,000,000 | ---D | C] -- C:\Users\Soob\AppData\Roaming\ImTOO [2010-12-24 21:23:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iPhone Transfer [2010-12-24 21:23:31 | 000,000,000 | ---D | C] -- C:\ProgramData\ImTOO [2010-12-24 21:23:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ImTOO [2010-12-23 00:05:09 | 000,000,000 | ---D | C] -- C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001} [2010-12-18 00:46:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Babylon [2010-12-12 15:01:18 | 000,000,000 | ---D | C] -- C:\Users\Soob\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Virtual DJ [2010-12-12 15:01:15 | 000,000,000 | ---D | C] -- C:\Users\Soob\Documents\VirtualDJ [2010-12-12 15:01:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VirtualDJ [2010-12-12 14:15:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Antimalware [2010-12-10 20:48:49 | 000,000,000 | ---D | C] -- C:\Users\Soob\Desktop\Pobrane do sprawdzenia [2010-12-07 20:42:03 | 000,000,000 | ---D | C] -- C:\Users\Soob\Desktop\Teksty [2010-12-04 23:37:18 | 000,000,000 | ---D | C] -- C:\Users\Soob\Desktop\Kajrys [2010-12-04 20:27:57 | 000,000,000 | -H-D | C] -- C:\ProgramData\{3FC66E2C-85B6-4398-82FB-C13C51DE9DD8} [2010-12-04 03:39:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe [2010-12-04 03:37:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe AIR [2010-12-04 03:36:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\McAfee Security Scan [2010-12-04 03:36:13 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee [2010-12-03 19:13:48 | 000,000,000 | ---D | C] -- C:\Users\Soob\AppData\Roaming\Malwarebytes [2010-12-03 19:13:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2010-12-03 19:13:42 | 000,024,152 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys [2010-12-03 19:13:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware [2010-12-02 22:17:00 | 000,000,000 | ---D | C] -- C:\ProgramData\ArcaBit [2010-12-02 22:08:06 | 000,040,528 | ---- | C] (ArcaBit) -- C:\Windows\SysNative\drivers\abndis.sys [2010-12-02 22:06:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcaVir [2010-12-02 22:06:33 | 000,000,000 | ---D | C] -- C:\Program Files\ArcaBit [2010-12-02 22:06:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Wise Installation Wizard [2010-11-30 14:33:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office [2010-11-30 14:33:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSECache [2010-10-30 19:42:23 | 000,082,816 | ---- | C] (VSO Software) -- C:\Users\Soob\AppData\Roaming\pcouffin.sys [2010-10-30 12:08:12 | 001,105,920 | ---- | C] ( ) -- C:\Windows\SysWow64\lxdxserv.dll [2010-10-30 12:08:12 | 000,843,776 | ---- | C] ( ) -- C:\Windows\SysWow64\lxdxusb1.dll [2010-10-30 12:08:12 | 000,647,168 | ---- | C] ( ) -- C:\Windows\SysWow64\lxdxpmui.dll [2010-10-30 12:08:12 | 000,569,344 | ---- | C] ( ) -- C:\Windows\SysWow64\lxdxlmpm.dll [2010-10-30 12:08:12 | 000,364,544 | ---- | C] ( ) -- C:\Windows\SysWow64\lxdxinpa.dll [2010-10-30 12:08:12 | 000,339,968 | ---- | C] ( ) -- C:\Windows\SysWow64\lxdxiesc.dll [2010-10-30 12:08:12 | 000,053,248 | ---- | C] ( ) -- C:\Windows\SysWow64\lxdxprox.dll [2010-10-30 12:08:11 | 000,851,968 | ---- | C] ( ) -- C:\Windows\SysWow64\lxdxcomc.dll [2010-10-30 12:08:11 | 000,663,552 | ---- | C] ( ) -- C:\Windows\SysWow64\lxdxhbn3.dll [2010-10-30 12:08:11 | 000,376,832 | ---- | C] ( ) -- C:\Windows\SysWow64\lxdxcomm.dll [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2011-01-28 22:33:51 | 000,014,976 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2011-01-28 22:33:51 | 000,014,976 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2011-01-28 22:31:10 | 007,902,048 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat [2011-01-28 22:31:10 | 003,087,358 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2011-01-28 22:31:10 | 002,577,282 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat [2011-01-28 22:31:10 | 002,466,186 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2011-01-28 22:31:10 | 000,005,222 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2011-01-28 22:26:30 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2011-01-28 22:25:29 | 000,000,098 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\Hosts [2011-01-28 22:24:59 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Users\Soob\Desktop\OTL.exe [2011-01-28 18:18:10 | 000,002,023 | ---- | M] () -- C:\Users\Soob\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\avast! Free Antivirus.lnk [2011-01-28 17:55:15 | 000,061,667 | ---- | M] () -- C:\Users\Soob\.recently-used.xbel [2011-01-28 04:53:30 | 000,007,607 | ---- | M] () -- C:\Users\Soob\AppData\Local\resmon.resmoncfg [2011-01-24 16:30:52 | 000,000,924 | ---- | M] () -- C:\Users\Soob\Desktop\DSJ3.lnk [2011-01-23 14:01:17 | 000,000,939 | ---- | M] () -- C:\Users\Public\Desktop\Mp3tag.lnk [2011-01-16 16:11:21 | 000,000,096 | ---- | M] () -- C:\Windows\NeroDigital.ini [2011-01-15 08:46:48 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\config.nt [2011-01-13 21:29:03 | 000,000,683 | ---- | M] () -- C:\Users\Soob\Desktop\Projekty.lnk [2011-01-13 09:47:35 | 000,038,848 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr [2011-01-13 09:47:32 | 000,188,216 | ---- | M] (AVAST Software) -- C:\Windows\SysWow64\aswBoot.exe [2011-01-13 09:47:23 | 000,237,168 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe [2011-01-13 09:41:44 | 000,273,488 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys [2011-01-13 09:40:20 | 000,051,792 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswTdi.sys [2011-01-13 09:37:34 | 000,029,264 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr.sys [2011-01-13 09:37:23 | 000,062,032 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys [2011-01-13 09:37:12 | 000,020,560 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswFsBlk.sys [2011-01-10 17:02:56 | 000,001,007 | ---- | M] () -- C:\Users\Public\Desktop\Cool Edit Pro 2.0.lnk [2010-12-20 18:08:40 | 000,024,152 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys [2010-12-20 13:04:09 | 000,341,568 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT [2010-12-12 15:01:18 | 000,001,044 | ---- | M] () -- C:\Users\Soob\Desktop\Virtual DJ Home.lnk [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011-01-28 17:55:15 | 000,061,667 | ---- | C] () -- C:\Users\Soob\.recently-used.xbel [2011-01-28 17:54:12 | 000,089,088 | ---- | C] () -- C:\Windows\MBR.exe [2011-01-28 17:54:11 | 000,256,512 | ---- | C] () -- C:\Windows\PEV.exe [2011-01-28 17:54:11 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe [2011-01-28 17:54:11 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe [2011-01-28 17:54:11 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe [2011-01-24 16:30:52 | 000,000,924 | ---- | C] () -- C:\Users\Soob\Desktop\DSJ3.lnk [2011-01-14 20:09:50 | 000,001,877 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn.lnk [2011-01-13 21:28:49 | 000,000,683 | ---- | C] () -- C:\Users\Soob\Desktop\Projekty.lnk [2011-01-10 17:02:56 | 000,001,007 | ---- | C] () -- C:\Users\Public\Desktop\Cool Edit Pro 2.0.lnk [2010-12-12 15:01:18 | 000,001,044 | ---- | C] () -- C:\Users\Soob\Desktop\Virtual DJ Home.lnk [2010-12-04 03:39:53 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk [2010-11-30 14:33:46 | 000,002,735 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Word Viewer 2003.lnk [2010-11-15 17:27:06 | 000,815,104 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll [2010-11-15 17:27:06 | 000,180,224 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll [2010-10-30 19:42:23 | 000,007,859 | ---- | C] () -- C:\Users\Soob\AppData\Roaming\pcouffin.cat [2010-10-30 19:42:23 | 000,001,167 | ---- | C] () -- C:\Users\Soob\AppData\Roaming\pcouffin.inf [2010-10-30 19:42:23 | 000,000,055 | ---- | C] () -- C:\Users\Soob\AppData\Roaming\pcouffin.log [2010-10-30 19:29:52 | 000,000,216 | ---- | C] () -- C:\Windows\Ulead32.ini [2010-10-30 12:08:18 | 000,000,252 | ---- | C] () -- C:\ProgramData\FastPics.log [2010-10-30 12:08:12 | 000,348,160 | ---- | C] () -- C:\Windows\SysWow64\LXDXinst.dll [2010-10-30 12:08:12 | 000,335,872 | ---- | C] () -- C:\Windows\SysWow64\lxdxcomx.dll [2010-10-30 11:32:34 | 000,782,336 | ---- | C] () -- C:\Windows\SysWow64\lxdxdrs.dll [2010-10-30 11:32:34 | 000,081,920 | ---- | C] () -- C:\Windows\SysWow64\lxdxcaps.dll [2010-10-30 11:32:34 | 000,069,632 | ---- | C] () -- C:\Windows\SysWow64\lxdxcnv4.dll [2010-10-16 11:41:54 | 000,000,106 | ---- | C] () -- C:\Windows\wininit.ini [2010-10-04 14:33:34 | 000,000,028 | ---- | C] () -- C:\Windows\Robota.INI [2010-10-04 14:32:52 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\mgxasio2.dll [2010-10-04 14:32:17 | 000,120,200 | ---- | C] () -- C:\Windows\SysWow64\DLLDEV32i.dll [2010-10-04 14:32:05 | 000,006,211 | ---- | C] () -- C:\Windows\mgxoschk.ini [2010-07-25 19:49:50 | 000,007,607 | ---- | C] () -- C:\Users\Soob\AppData\Local\resmon.resmoncfg [2010-07-22 18:11:51 | 000,000,018 | ---- | C] () -- C:\Windows\avi2divx.INI [2010-07-21 18:22:47 | 000,000,096 | ---- | C] () -- C:\Windows\NeroDigital.ini [2010-07-17 14:50:15 | 000,000,010 | ---- | C] () -- C:\Windows\GSetup.ini [2009-07-14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll [2009-07-13 22:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll [2009-01-28 19:50:44 | 000,153,088 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll [2000-07-27 00:13:02 | 000,027,648 | ---- | C] () -- C:\Windows\SysWow64\zlib.dll [color=#E56717]========== LOP Check ==========[/color] [2010-08-14 00:08:47 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\BinarySense [2010-08-17 04:13:22 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\ChemTable Software [2010-08-07 17:06:07 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\DAEMON Tools Lite [2010-09-01 20:08:59 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\DDevExtensions [2010-08-21 13:52:27 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\DesktopPlayer [2010-11-06 23:35:35 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\DVDVideoSoftIEHelpers [2010-11-13 04:49:51 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\GetRightToGo [2010-09-01 20:08:59 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\GExperts [2010-11-09 00:55:53 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\GHISLER [2011-01-28 17:55:15 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\gtk-2.0 [2010-07-18 05:06:15 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\ImgBurn [2010-12-24 21:24:04 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\ImTOO [2011-01-02 01:35:05 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\ipla [2010-10-04 14:33:26 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\MAGIX [2010-11-01 01:51:08 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\Mp3tag [2010-08-29 11:09:08 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\NetMedia Providers [2010-12-03 17:04:02 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\Notepad++ [2010-10-09 11:21:03 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\Panda Security [2010-08-29 11:09:08 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\Publish Providers [2011-01-02 01:23:49 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\RDRM [2010-08-27 13:08:42 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\Renoise [2010-08-29 11:09:07 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\Sony [2010-10-09 11:20:47 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\SurfSecret Privacy Suite [2011-01-25 00:45:23 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\uTorrent [2010-10-30 19:42:23 | 000,000,000 | ---D | M] -- C:\Users\Soob\AppData\Roaming\VSO [2011-01-05 13:51:29 | 000,032,608 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT < End of report >