Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-08-2013 Ran by Adam (administrator) on 26-08-2013 18:14:46 Running from C:\Users\Adam\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: Polish Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Microsoft Corporation) C:\Windows\SYSTEM32\WISPTIS.EXE (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Microsoft Corporation) C:\Windows\system32\WLANExt.exe (Microsoft Corporation) C:\Windows\SYSTEM32\WISPTIS.EXE (Adobe Systems Incorporated) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe (IObit) C:\Program Files (x86)\IObit\Smart Defrag 2\SmartDefrag.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x86\QuickGesture.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x64\QuickGesture64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (BitTorrent Inc.) C:\Users\Adam\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.) C:\Users\Adam\AppData\Roaming\BitTorrent\BitTorrent.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (Microsoft Corporation) C:\Windows\SysWOW64\schtasks.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Razer USA Ltd) C:\Program Files (x86)\Razer\Razer Game Booster\gbtray.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe (Opera Software) C:\Program Files (x86)\Opera\opera.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12448872 2012-02-14] (Realtek Semiconductor) HKCU\...\Run: [uTorrent] - C:\Users\Adam\AppData\Roaming\uTorrent\uTorrent.exe [888152 2013-08-19] (BitTorrent Inc.) HKCU\...\Run: [BitTorrent] - C:\Users\Adam\AppData\Roaming\BitTorrent\BitTorrent.exe [884576 2013-08-19] (BitTorrent Inc.) HKLM-x32\...\Run: [ASUSPRP] - C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3331312 2012-02-24] (ASUSTek Computer Inc.) HKLM-x32\...\Run: [ATKOSD2] - C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [322176 2012-02-16] (ASUSTek Computer Inc.) HKLM-x32\...\Run: [ATKMEDIA] - C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [174720 2011-10-25] (ASUS) HKLM-x32\...\Run: [HControlUser] - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS) HKLM-x32\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-05-09] (AVAST Software) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2255184 2013-06-28] (LogMeIn Inc.) HKLM-x32\...\Run: [ACMON] - C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [102568 2012-02-21] (ASUS) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.bing.com StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKCU - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL = BHO: avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations) BHO-x32: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) BHO-x32: Free Download Manager - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files (x86)\Free Download Manager\iefdm2.dll (FreeDownloadManager.ORG) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Toolbar: HKLM-x32 - avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) DPF: HKLM-x32 {00BC5049-C7F3-4AC9-92AE-1991C76608B0} http://weblogin.talesrunner.com.hk/TRLauncher.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) ==================== Services (Whitelisted) ================= S4 AdvancedSystemCareService6; C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe [465216 2013-01-15] (IObit) S4 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2012-03-29] (Advanced Micro Devices, Inc.) S4 ASUS InstantOn; C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe [277120 2012-02-17] (ASUS) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-05-09] (AVAST Software) S4 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [393032 2013-04-19] (BlueStack Systems, Inc.) S4 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [384840 2013-04-19] (BlueStack Systems, Inc.) S4 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [821592 2012-01-09] (IObit) S4 MsgPlusService; C:\Program Files (x86)\Yuna Software\Messenger Plus! for Skype\MsgPlusForSkypeService.exe [125952 2013-01-23] (Yuna Software) R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-06-28] () S4 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2365792 2012-10-15] (TuneUp Software) S4 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [158880 2011-11-30] (Atheros) ==================== Drivers (Whitelisted) ==================== R3 AiCharger; C:\Windows\SysWow64\DRIVERS\AiCharger.sys [17152 2012-02-29] (ASUSTek Computer Inc.) R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [31872 2012-02-01] (Advanced Micro Devices, Inc.) R2 AODDriver4.1; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [55936 2011-11-13] (Advanced Micro Devices) R3 AsusVBus; C:\Windows\System32\DRIVERS\AsusVBus.sys [35968 2011-12-21] (Windows (R) Win 7 DDK provider) R3 AsusVTouch; C:\Windows\System32\DRIVERS\AsusVTouch.sys [16512 2011-11-08] (Windows (R) Win 7 DDK provider) R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-05-09] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-05-09] (AVAST Software) R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [72016 2013-05-09] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-05-09] () R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1030952 2013-06-28] (AVAST Software) R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [378944 2013-06-28] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-05-09] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [189936 2013-06-28] () R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [70984 2013-04-19] (BlueStack Systems) R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [70984 2013-04-19] (BlueStack Systems) S3 FileMonitor; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [21384 2012-01-05] (IObit) S3 FileMonitor; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [21384 2012-01-05] (IObit) R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( ) R3 MsgPlusDriver; C:\Windows\System32\DRIVERS\MsgPlusDriver.sys [102160 2012-07-23] (Yune Software) S3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [33224 2012-07-05] (IObit.com) S3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [33224 2012-07-05] (IObit.com) R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [17720 2010-11-26] () S3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [11880 2012-09-19] (TuneUp Software) S3 UrlFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [21904 2012-07-05] (IObit.com) S3 UrlFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [21904 2012-07-05] (IObit.com) R3 WinRing0_1_2_0; C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [14544 2012-08-01] (OpenLibSys.org) R3 WinRing0_1_2_0; C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [14544 2012-08-01] (OpenLibSys.org) S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x] S3 X6va003; \??\C:\Users\Adam\AppData\Local\Temp\003ECEE.tmp [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-26 15:04 - 2013-08-26 15:05 - 01577068 _____ (Farbar) C:\Users\Adam\Desktop\FRST64.exe 2013-08-26 14:52 - 2013-08-26 14:56 - 00000000 ____D C:\AdwCleaner 2013-08-26 14:51 - 2013-08-26 14:51 - 00994642 _____ C:\Users\Adam\Desktop\AdwCleaner.exe 2013-08-26 14:47 - 2013-08-26 18:09 - 00000352 _____ C:\Users\Adam\AppData\Roaming\sp_data.sys 2013-08-26 14:43 - 2013-08-26 14:43 - 00000000 ____D C:\_OTL 2013-08-19 18:03 - 2013-08-19 18:03 - 00000000 ____D C:\Users\Adam\AppData\Local\Google 2013-08-19 14:02 - 2013-08-19 14:02 - 00000000 ____D C:\Users\Adam\AppData\Roaming\Adobe 2013-08-19 14:02 - 2013-08-19 14:02 - 00000000 ____D C:\Users\Adam\AppData\Local\Adobe 2013-08-05 04:35 - 2013-08-05 04:35 - 00005284 _____ C:\Windows\AsRecoveryHD.log 2013-08-04 21:30 - 2013-08-04 21:31 - 00000000 ____D C:\Users\Adam\AppData\Local\{8C44C1EA-DD95-4D4A-916B-6AE54C586B7A} 2013-08-04 16:31 - 2013-08-04 16:32 - 00000242 _____ C:\Users\Adam\Desktop\defogger_enable.log 2013-08-04 16:31 - 2013-08-04 16:32 - 00000000 _____ C:\Users\Adam\defogger_reenable 2013-08-04 16:28 - 2013-08-04 17:02 - 00000000 ____D C:\Users\Adam\Desktop\logi 2013-08-04 16:27 - 2013-08-04 16:31 - 00000000 ____D C:\Users\Adam\Desktop\Nowy folder (2) 2013-08-04 16:24 - 2013-08-04 16:24 - 00050477 _____ C:\Users\Adam\Desktop\Defogger.exe 2013-08-04 16:13 - 2013-08-04 16:13 - 00377856 _____ C:\Users\Adam\Desktop\085zi9me.exe 2013-08-04 15:53 - 2013-08-04 15:53 - 00602112 _____ (OldTimer Tools) C:\Users\Adam\Desktop\OTL.exe 2013-08-04 15:02 - 2013-08-04 15:02 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2013-08-04 13:30 - 2013-08-04 13:30 - 00000000 ____D C:\Users\Adam\AppData\LocalGoogle 2013-08-04 12:47 - 2013-08-04 12:47 - 00014342 _____ C:\Users\Adam\Documents\[www.tnt24.info] Pokemon Black & White Rival Destinies - 1507 - Scraggy and the Demanding Gothita! .avi.torrent 2013-08-01 14:13 - 2013-08-01 14:13 - 00002517 _____ C:\Users\Public\Desktop\Skype.lnk 2013-07-28 20:04 - 2013-07-28 20:04 - 00000000 ____D C:\Users\Adam\AppData\Local\Gaijin Games 2013-07-28 20:00 - 2013-07-28 20:01 - 00000000 ____D C:\Program Files (x86)\Runner 2 Future Legend of Rhythm Alien ==================== One Month Modified Files and Folders ======= 2013-08-26 18:14 - 2013-08-26 18:14 - 00000000 ____D C:\FRST 2013-08-26 18:14 - 2013-07-08 14:03 - 00000000 ____D C:\Users\Adam\AppData\Roaming\BitTorrent 2013-08-26 18:14 - 2013-07-08 13:50 - 00000000 ____D C:\Users\Adam\AppData\Roaming\uTorrent 2013-08-26 18:11 - 2013-07-04 17:44 - 00003094 _____ C:\Windows\System32\Tasks\Game_Booster_Startup 2013-08-26 18:09 - 2013-08-26 14:47 - 00000352 _____ C:\Users\Adam\AppData\Roaming\sp_data.sys 2013-08-26 18:09 - 2013-07-03 17:57 - 00003168 _____ C:\autoupdate.log 2013-08-26 18:09 - 2013-03-29 15:47 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2013-08-26 18:09 - 2013-02-20 21:25 - 00000000 ____D C:\Users\Adam\AppData\Local\LogMeIn Hamachi 2013-08-26 18:09 - 2012-11-21 17:42 - 00000095 _____ C:\Users\Adam\.accessibility.properties 2013-08-26 18:09 - 2012-11-10 11:30 - 00000000 ____D C:\Users\Adam 2013-08-26 18:09 - 2012-02-24 13:40 - 00001058 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-08-26 18:09 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-08-26 18:08 - 2013-07-01 16:15 - 00008254 _____ C:\Windows\setupact.log 2013-08-26 15:14 - 2012-04-27 13:05 - 01483339 _____ C:\Windows\WindowsUpdate.log 2013-08-26 15:06 - 2009-07-14 06:45 - 00009920 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-08-26 15:06 - 2009-07-14 06:45 - 00009920 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-08-26 15:05 - 2013-08-26 15:04 - 01577068 _____ (Farbar) C:\Users\Adam\Desktop\FRST64.exe 2013-08-26 14:56 - 2013-08-26 14:52 - 00000000 ____D C:\AdwCleaner 2013-08-26 14:56 - 2012-11-10 11:33 - 00000997 _____ C:\Users\Adam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2013-08-26 14:56 - 2012-11-10 11:32 - 00001184 _____ C:\Users\Adam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-08-26 14:51 - 2013-08-26 14:51 - 00994642 _____ C:\Users\Adam\Desktop\AdwCleaner.exe 2013-08-26 14:45 - 2013-07-05 14:32 - 00025532 _____ C:\Windows\PFRO.log 2013-08-26 14:43 - 2013-08-26 14:43 - 00000000 ____D C:\_OTL 2013-08-26 14:43 - 2012-11-10 12:46 - 00000000 ____D C:\Users\Adam\AppData\Roaming\Mozilla 2013-08-26 14:20 - 2012-02-24 13:40 - 00001062 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-08-19 18:03 - 2013-08-19 18:03 - 00000000 ____D C:\Users\Adam\AppData\Local\Google 2013-08-19 14:02 - 2013-08-19 14:02 - 00000000 ____D C:\Users\Adam\AppData\Roaming\Adobe 2013-08-19 14:02 - 2013-08-19 14:02 - 00000000 ____D C:\Users\Adam\AppData\Local\Adobe 2013-08-05 04:35 - 2013-08-05 04:35 - 00005284 _____ C:\Windows\AsRecoveryHD.log 2013-08-05 04:35 - 2009-07-29 07:20 - 00000000 ____D C:\Windows\Log 2013-08-04 21:31 - 2013-08-04 21:30 - 00000000 ____D C:\Users\Adam\AppData\Local\{8C44C1EA-DD95-4D4A-916B-6AE54C586B7A} 2013-08-04 17:11 - 2012-11-11 20:26 - 00000000 ____D C:\Users\Adam\AppData\Roaming\Skype 2013-08-04 17:02 - 2013-08-04 16:28 - 00000000 ____D C:\Users\Adam\Desktop\logi 2013-08-04 16:32 - 2013-08-04 16:31 - 00000242 _____ C:\Users\Adam\Desktop\defogger_enable.log 2013-08-04 16:32 - 2013-08-04 16:31 - 00000000 _____ C:\Users\Adam\defogger_reenable 2013-08-04 16:31 - 2013-08-04 16:27 - 00000000 ____D C:\Users\Adam\Desktop\Nowy folder (2) 2013-08-04 16:24 - 2013-08-04 16:24 - 00050477 _____ C:\Users\Adam\Desktop\Defogger.exe 2013-08-04 16:13 - 2013-08-04 16:13 - 00377856 _____ C:\Users\Adam\Desktop\085zi9me.exe 2013-08-04 15:53 - 2013-08-04 15:53 - 00602112 _____ (OldTimer Tools) C:\Users\Adam\Desktop\OTL.exe 2013-08-04 15:02 - 2013-08-04 15:02 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2013-08-04 13:30 - 2013-08-04 13:30 - 00000000 ____D C:\Users\Adam\AppData\LocalGoogle 2013-08-04 13:27 - 2012-11-10 12:17 - 00000000 ____D C:\Users\Adam\AppData\Local\CrashDumps 2013-08-04 13:08 - 2009-07-14 09:44 - 00000000 ___RD C:\Users\Public\Recorded TV 2013-08-04 12:55 - 2012-02-24 13:40 - 00000000 ____D C:\Program Files (x86)\Google 2013-08-04 12:47 - 2013-08-04 12:47 - 00014342 _____ C:\Users\Adam\Documents\[www.tnt24.info] Pokemon Black & White Rival Destinies - 1507 - Scraggy and the Demanding Gothita! .avi.torrent 2013-08-02 17:16 - 2013-07-02 09:38 - 00000000 ____D C:\Users\Adam\AppData\Roaming\.minecraftzyczu 2013-08-01 16:21 - 2012-11-11 18:04 - 00000000 ____D C:\Users\Adam\AppData\Roaming\.minecraft 2013-08-01 14:14 - 2013-03-02 14:51 - 00000000 ____D C:\Users\Adam\AppData\Roaming\Free Download Manager 2013-08-01 14:13 - 2013-08-01 14:13 - 00002517 _____ C:\Users\Public\Desktop\Skype.lnk 2013-08-01 14:13 - 2012-11-11 20:26 - 00000000 ____D C:\ProgramData\Skype 2013-08-01 14:12 - 2012-11-11 20:26 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-07-30 13:54 - 2013-02-21 13:12 - 00000000 ____D C:\Program Files (x86)\Talesrunner 2013-07-28 20:04 - 2013-07-28 20:04 - 00000000 ____D C:\Users\Adam\AppData\Local\Gaijin Games 2013-07-28 20:04 - 2013-02-05 22:45 - 00000000 ____D C:\Users\Adam\AppData\Local\SKIDROW 2013-07-28 20:01 - 2013-07-28 20:00 - 00000000 ____D C:\Program Files (x86)\Runner 2 Future Legend of Rhythm Alien Files to move or delete: ==================== C:\Users\Adam\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-04 15:27 ==================== End Of Log ============================