Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-01-2014 01 Ran by OTS (administrator) on OTS-KOMPUTER on 12-01-2014 21:48:02 Running from C:\Users\OTS\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: Polish Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe () C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe (Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Acer Incorporated) C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe () C:\Windows\SysWOW64\srvany.exe () C:\Windows\KMService.exe (Acer Incorporated) C:\Program Files\Acer\Acer Updater\UpdaterService.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe (Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe () C:\Users\OTS\AppData\Local\fst_pl_30\upfst_pl_30.exe (CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe (CyberLink) C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (ACD Systems) C:\Program Files\ACD Systems\ACDSee Pro\7.0\acdIDInTouch2.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe (Dolby Laboratories Inc.) C:\DOLBY PCEE4\pcee4.exe (CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe () C:\Program Files (x86)\fst_pl_30\fst_pl_30.exe (Acer Incorporated) C:\Program Files\Acer\Acer PowerSmart Manager\ePowerTray.exe (Acer Incorporated) C:\Program Files\Acer\Acer PowerSmart Manager\ePowerEvent.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\PmmUpdate.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\EgisUpdate.exe (McAfee, Inc.) C:\Program Files\mcafee\msm\McSmtFwk.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Intel Corporation) C:\Windows\System32\igfxext.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\Platform\McUICnt.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (McAfee, Inc.) C:\Program Files\mcafee\virusscan\mcods.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [IntelTBRunOnce] - C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs [4526 2010-11-29] () HKLM\...\Run: [AtherosBtStack] - C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [961184 2011-08-02] (Atheros Communications) HKLM\...\Run: [AthBtTray] - C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [798880 2011-08-02] (Atheros Commnucations) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2538280 2011-01-13] (Synaptics Incorporated) HKLM\...\Run: [Power Management] - C:\Program Files\Acer\Acer PowerSmart Manager\ePowerTrayLauncher.exe [499304 2011-03-28] (Acer Incorporated) HKLM\...\Run: [ACPW07EN] - C:\Program Files\ACD Systems\ACDSee Pro\7.0\acdIDInTouch2.exe [1739080 2013-09-25] (ACD Systems) HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation) HKLM-x32\...\Run: [mcui_exe] - C:\Program Files\McAfee.com\Agent\mcagent.exe [537512 2013-09-24] (McAfee, Inc.) HKLM-x32\...\Run: [SuiteTray] - C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [341360 2011-06-21] (Egis Technology Inc.) HKLM-x32\...\Run: [Norton Online Backup] - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [1155928 2010-06-01] (Symantec Corporation) HKLM-x32\...\Run: [BackupManagerTray] - C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [297280 2011-04-24] (NTI Corporation) HKLM-x32\...\Run: [LManager] - C:\Program Files (x86)\Launch Manager\LManager.exe [1103440 2011-07-01] (Dritek System Inc.) HKLM-x32\...\Run: [Dolby Home Theater v4] - C:\Dolby PCEE4\pcee4.exe [506712 2011-02-03] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [ArcadeMovieService] - C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe [177448 2011-05-09] (CyberLink Corp.) HKLM-x32\...\Run: [SwitchBoard] - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) HKLM-x32\...\Run: [AdobeCS6ServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-12-11] (Samsung Electronics Co., Ltd.) HKLM-x32\...\Run: [mcpltui_exe] - C:\Program Files\McAfee.com\Agent\mcagent.exe [537512 2013-09-24] (McAfee, Inc.) HKLM-x32\...\Run: [fst_pl_30] - C:\Program Files (x86)\fst_pl_30\fst_pl_30.exe [4001224 2014-01-02] () HKLM-x32\...\RunOnce: [upfst_pl_30.exe] - C:\Users\OTS\AppData\Local\fst_pl_30\upfst_pl_30.exe -runonce [3153904 2014-01-02] () Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKCU\...\Run: [CONNMGRTRAY] - C:\Program Files\Acer\Acer 3G Connection Manager\ConnMgrLauncher.exe [363112 2011-08-01] () HKCU\...\Run: [AdobeBridge] - [x] HKCU\...\Run: [EPSON6B0DF3 (Epson Stylus Office BX525WD)] - C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIGAU.EXE [224768 2010-01-12] (SEIKO EPSON CORPORATION) HKCU\...\Run: [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe [1564528 2013-12-11] (Samsung) HKCU\...\Run: [KiesAirMessage] - C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup HKCU\...\Run: [NextLive] - C:\Users\OTS\AppData\Roaming\newnext.me\nengine.dll [1283584 2014-01-06] (NewNextDotMe) HKCU\...\RunOnce: [East-Tec Eraser 2012] - "C:\Program Files (x86)\East-Tec Eraser 2012\etsecureerase.exe" "/R:C:\Users\OTS\AppData\Roaming\EAST Technologies\East-Tec Eraser" [960112 2012-03-15] (EAST Technologies) MountPoints2: {d694f284-4c6b-11e3-a9f1-b870f4e72338} - F:\SETUP.EXE MountPoints2: {e41cf776-4de4-11e3-b77e-b870f4e72338} - G:\EPSETUP.EXE HKU\Default\...\Run: [CONNMGRTRAY] - C:\Program Files\Acer\Acer 3G Connection Manager\ConnMgrLauncher.exe [363112 2011-08-01] () HKU\Default\...\RunOnce: [ScrSav] - C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe [154144 2010-07-29] () HKU\Default User\...\Run: [CONNMGRTRAY] - C:\Program Files\Acer\Acer 3G Connection Manager\ConnMgrLauncher.exe [363112 2011-08-01] () HKU\Default User\...\RunOnce: [ScrSav] - C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe [154144 2010-07-29] () AppInit_DLLs: C:\Windows\system32\nvinitx.dll [226920 2011-02-21] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll [192616 2011-02-21] (NVIDIA Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://acer.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com URLSearchHook: HKCU - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) URLSearchHook: HKCU - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations) BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Acer\Acer VCM\Skype4COM.dll (Skype Technologies) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files\mcafee\msc\McSnIePl64.dll (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files (x86)\McAfee\msc\McSnIePl.dll (McAfee, Inc.) Tcpip\Parameters: [DhcpNameServer] 213.156.98.141 150.254.173.3 FireFox: ======== FF ProfilePath: C:\Users\OTS\AppData\Roaming\Mozilla\Firefox\Profiles\7o73n90k.default FF user.js: detected! => C:\Users\OTS\AppData\Roaming\Mozilla\Firefox\Profiles\7o73n90k.default\user.js FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_6_602_168.dll () FF Plugin: @mcafee.com/MSC,version=10 - c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL () FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_168.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/MSC,version=10 - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL () FF Plugin-x32: @mcafee.com/SAFFPlugin - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.1.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2011-08-04] FF HKLM-x32\...\Firefox\Extensions: [{D19CA586-DD6C-4a0a-96F8-14644F340D60}] - C:\Program Files (x86)\Common Files\McAfee\SystemCore FF Extension: McAfee ScriptScan for Firefox - C:\Program Files (x86)\Common Files\McAfee\SystemCore [2011-08-04] FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2011-08-04] Chrome: ======= CHR Extension: (Google Docs) - C:\Users\OTS\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0 [2014-01-11] CHR Extension: (Google Drive) - C:\Users\OTS\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0 [2014-01-11] CHR Extension: (YouTube) - C:\Users\OTS\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 [2014-01-11] CHR Extension: (Google Search) - C:\Users\OTS\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 [2014-01-11] CHR Extension: (SiteAdvisor) - C:\Users\OTS\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.6.4.1311_0 [2014-01-11] CHR Extension: (Google Wallet) - C:\Users\OTS\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0 [2014-01-11] CHR Extension: (Gmail) - C:\Users\OTS\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1 [2014-01-11] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2014-01-10] ==================== Services (Whitelisted) ================= R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65640 2013-09-03] () R2 ePowerSvc; C:\Program Files\Acer\Acer PowerSmart Manager\ePowerSvc.exe [799848 2011-03-28] (Acer Incorporated) R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 KMService; C:\Windows\SysWOW64\srvany.exe [8192 2013-11-13] () R2 McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [249936 2011-01-28] (McAfee, Inc.) R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178048 2013-11-28] (McAfee, Inc.) S3 McAWFwk; C:\Program Files\mcafee\msc\McAWFwk.exe [224704 2011-03-09] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [602944 2013-08-02] (McAfee, Inc.) S4 McOobeSv; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [249936 2011-01-28] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [199304 2012-05-25] (McAfee, Inc.) R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1025232 2013-11-26] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219272 2013-11-04] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [182752 2013-11-04] (McAfee, Inc.) R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 MSSQL$FAKTURABYMARCIO; c:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation) R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation) R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256832 2011-04-24] (NTI Corporation) R2 RS_Service; C:\Program Files (x86)\Acer\Acer VCM\RS_Service.exe [260640 2010-01-30] (Acer Incorporated) ==================== Drivers (Whitelisted) ==================== R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70112 2013-11-04] (McAfee, Inc.) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.) R2 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [179792 2013-11-04] (McAfee, Inc.) U3 mfeapfk01; No ImagePath R2 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [311120 2013-11-04] (McAfee, Inc.) U3 mfeavfk01; No ImagePath R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [519576 2013-11-04] (McAfee, Inc.) R2 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [782360 2013-11-04] (McAfee, Inc.) R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [411944 2013-11-26] (McAfee, Inc.) S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [96112 2013-11-26] (McAfee, Inc.) S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [100912 2012-02-22] (McAfee, Inc.) R2 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [343696 2013-11-04] (McAfee, Inc.) U5 ew_hwusbdev; C:\Windows\System32\Drivers\ew_hwusbdev.sys [117248 2010-07-27] (Huawei Technologies Co., Ltd.) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-12 21:48 - 2014-01-12 21:48 - 00023312 _____ C:\Users\OTS\Desktop\FRST.txt 2014-01-12 21:46 - 2014-01-12 21:46 - 00000000 ____D C:\FRST 2014-01-12 21:43 - 2014-01-12 21:43 - 02075136 _____ (Farbar) C:\Users\OTS\Desktop\FRST64.exe 2014-01-12 21:42 - 2014-01-12 21:42 - 00098252 _____ C:\Users\OTS\Desktop\Extras.Txt 2014-01-12 21:41 - 2014-01-12 21:41 - 00125786 _____ C:\Users\OTS\Desktop\OTL.Txt 2014-01-12 19:01 - 2014-01-12 19:01 - 00098576 _____ C:\Users\OTS\Downloads\Extras.Txt 2014-01-12 19:00 - 2014-01-12 19:00 - 00121200 _____ C:\Users\OTS\Downloads\OTL.Txt 2014-01-12 18:38 - 2014-01-12 18:38 - 00602112 _____ (OldTimer Tools) C:\Users\OTS\Desktop\OTL.exe 2014-01-12 11:48 - 2014-01-12 16:33 - 00000112 _____ C:\Windows\setupact.log 2014-01-12 11:48 - 2014-01-12 11:48 - 00000000 _____ C:\Windows\setuperr.log 2014-01-11 20:49 - 2014-01-12 20:54 - 00001048 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cf0f0643ca6f47.job 2014-01-11 20:49 - 2014-01-11 20:49 - 00004044 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA1cf0f0643ca6f47 2014-01-11 20:49 - 2014-01-11 20:49 - 00000000 ____D C:\Users\OTS\Desktop\cv i pracujpl 2014-01-11 20:48 - 2014-01-11 20:50 - 00000000 ____D C:\Users\OTS\Desktop\android 2014-01-11 20:48 - 2014-01-11 20:49 - 00000000 ____D C:\Users\OTS\Desktop\photo 2014-01-11 20:44 - 2014-01-12 20:54 - 00001038 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-11 20:44 - 2014-01-11 20:49 - 00003786 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-01-11 14:33 - 2014-01-11 14:33 - 00000218 _____ C:\Users\OTS\AppData\Local\recently-used.xbel 2014-01-11 14:12 - 2014-01-11 14:13 - 00000000 ____D C:\Users\OTS\AppData\Roaming\Thinstall 2014-01-11 14:04 - 2014-01-11 14:04 - 01751600 _____ (Bandoo Media Inc) C:\Users\OTS\Downloads\iLividSetup-r0-n-bc.exe 2014-01-11 14:04 - 2014-01-11 14:04 - 00005740 _____ C:\Users\OTS\Downloads\[kickass.to]portable.data.doctor.recovery.pro.14in1.kickass.torrents.rpt.torrent 2014-01-11 14:03 - 2014-01-11 14:03 - 00000000 ____D C:\Users\OTS\AppData\Roaming\Python-Eggs 2014-01-11 14:02 - 2014-01-11 14:33 - 00000000 ____D C:\Users\OTS\AppData\Roaming\BitLord 2014-01-11 14:00 - 2014-01-11 16:12 - 00000000 ____D C:\Program Files (x86)\BitLord 2 2014-01-11 14:00 - 2014-01-11 14:04 - 00000000 ____D C:\Users\OTS\Documents\BitLord 2014-01-11 13:58 - 2014-01-11 13:58 - 00716896 _____ C:\Users\OTS\Downloads\portable-datadoctorrecoverypro-14in1-7bkickasstorrents7d7brpt7d_BitLord.exe 2014-01-11 13:58 - 2014-01-11 13:58 - 00716896 _____ C:\Users\OTS\Downloads\portable-datadoctorrecoverypro-14in1-7bkickasstorrents7d7brpt7d_BitLord (1).exe 2014-01-11 13:57 - 2014-01-11 13:57 - 02600664 _____ (Visicom Media Inc.) C:\Users\OTS\Downloads\z_downloader.exe 2014-01-11 13:57 - 2014-01-11 13:57 - 02600664 _____ (Visicom Media Inc.) C:\Users\OTS\Downloads\z_downloader (3).exe 2014-01-11 13:57 - 2014-01-11 13:57 - 02600664 _____ (Visicom Media Inc.) C:\Users\OTS\Downloads\z_downloader (2).exe 2014-01-11 13:57 - 2014-01-11 13:57 - 02600664 _____ (Visicom Media Inc.) C:\Users\OTS\Downloads\z_downloader (1).exe 2014-01-11 13:54 - 2014-01-11 13:54 - 00452204 _____ C:\Users\OTS\Downloads\SimRecovery.rar 2014-01-11 13:50 - 2014-01-11 13:50 - 00503878 _____ (Pro Data Doctor Pvt. Ltd. ) C:\Users\OTS\Downloads\SimRecovery.exe 2014-01-11 13:42 - 2014-01-11 13:42 - 00000216 _____ C:\Users\OTS\Downloads\serial.txt 2014-01-11 13:38 - 2014-01-11 13:37 - 01579880 _____ (Pro Data Doctor Pvt. Ltd. ) C:\Users\OTS\Downloads\sim-card.exe 2014-01-11 13:37 - 2014-01-11 13:37 - 00679552 _____ C:\Users\OTS\Downloads\sim-card-reader-software.exe 2014-01-11 13:36 - 2014-01-11 13:36 - 08724480 _____ C:\Users\OTS\Downloads\GSM SIM Utility 5.15 - Simcard Editing Software.iso 2014-01-11 13:29 - 2014-01-11 13:29 - 00000000 ____D C:\sim_scan 2014-01-11 13:29 - 2014-01-11 13:29 - 00000000 ____D C:\Program Files (x86)\GSM SIM Utility 9.0 2014-01-11 13:28 - 2014-01-11 13:28 - 15663984 _____ C:\Users\OTS\Downloads\drivers_1359098913_06149.rar 2014-01-11 13:10 - 2014-01-12 18:22 - 00000000 ____D C:\Users\OTS\AppData\Local\fst_pl_30 2014-01-11 13:10 - 2014-01-12 17:48 - 00000000 ____D C:\Users\OTS\AppData\Roaming\newnext.me 2014-01-11 13:10 - 2014-01-11 19:35 - 00000000 ____D C:\Program Files (x86)\VLC Player GPU+ 2014-01-11 13:10 - 2014-01-11 14:26 - 00000000 ____D C:\Users\OTS\AppData\Local\Mobogenie 2014-01-11 13:10 - 2014-01-11 13:18 - 00000000 ____D C:\Users\OTS\AppData\Local\genienext 2014-01-11 13:10 - 2014-01-11 13:10 - 00000000 ____D C:\Users\OTS\Documents\Mobogenie 2014-01-11 13:10 - 2014-01-11 13:10 - 00000000 ____D C:\Users\OTS\AppData\Local\cache 2014-01-11 13:10 - 2014-01-11 13:10 - 00000000 ____D C:\Users\OTS\.android 2014-01-11 13:10 - 2014-01-11 13:10 - 00000000 ____D C:\Program Files (x86)\fst_pl_30 2014-01-11 13:10 - 2014-01-11 13:10 - 00000000 _____ C:\Users\OTS\daemonprocess.txt 2014-01-11 13:09 - 2014-01-12 21:11 - 00000930 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-11 13:09 - 2014-01-11 14:37 - 00000000 ____D C:\Program Files (x86)\Mobogenie 2014-01-11 13:09 - 2014-01-11 13:31 - 00027378 _____ C:\Users\OTS\DSIMCard2.log 2014-01-11 13:09 - 2014-01-11 13:09 - 00003868 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-01-11 13:09 - 2014-01-11 13:09 - 00000000 ____D C:\Users\OTS\AppData\Roaming\Dekart 2014-01-11 13:08 - 2014-01-10 13:37 - 00824400 _____ (AnyProtect.com) C:\Users\OTS\AppData\Local\AnyProtectScannerSetup.exe 2014-01-11 13:07 - 2014-01-11 16:11 - 00000000 ____D C:\Program Files (x86)\Dekart 2014-01-11 13:04 - 2014-01-11 13:04 - 00576544 _____ C:\Users\OTS\Downloads\Setup.exe 2014-01-11 13:03 - 2014-01-11 13:04 - 04222288 _____ (Dekart) C:\Users\OTS\Downloads\SIMManager.exe 2014-01-10 23:31 - 2014-01-10 23:31 - 00000000 ____D C:\Users\OTS\AppData\Local\GHISLER 2014-01-10 23:20 - 2014-01-10 23:20 - 00000650 _____ C:\Users\OTS\Desktop\Total Commander 64 bit.lnk 2014-01-10 23:20 - 2014-01-10 23:20 - 00000000 ____D C:\Users\OTS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander 2014-01-10 23:20 - 2014-01-10 23:20 - 00000000 ____D C:\Users\OTS\AppData\Roaming\GHISLER 2014-01-10 23:20 - 2014-01-10 23:20 - 00000000 ____D C:\totalcmd 2014-01-10 23:19 - 2014-01-10 23:19 - 04329488 _____ (Ghisler Software GmbH) C:\Users\OTS\Downloads\tcmd801x64.exe 2014-01-10 23:19 - 2014-01-10 23:19 - 04329488 _____ (Ghisler Software GmbH) C:\Users\OTS\Downloads\tcmd801x64 (1).exe 2014-01-09 22:54 - 2014-01-09 22:54 - 00000283 _____ C:\Users\OTS\Documents\M.txt 2014-01-07 13:46 - 2014-01-07 13:46 - 01424452 _____ C:\Users\OTS\Downloads\FExplorer Pro v2.5 S60v3v5 S^3 Anna Belle Signed.sisx 2014-01-07 13:40 - 2014-01-07 13:40 - 00542420 _____ C:\Users\OTS\Downloads\FExplorer.Pro.Final.v2.00.S60v3.S60v5.Symbian9..sis 2014-01-06 10:46 - 2014-01-06 10:46 - 00000000 ____D C:\Users\OTS\Desktop\bajki 2014-01-04 16:09 - 2014-01-06 22:45 - 00000000 ____D C:\Users\OTS\Downloads\ChomikBox 2014-01-04 16:08 - 2014-01-10 11:06 - 00000000 ____D C:\Users\OTS\AppData\Local\ChomikBox 2014-01-04 16:08 - 2014-01-10 10:55 - 00000000 ____D C:\Users\OTS\.gstreamer-0.10 2014-01-04 16:08 - 2014-01-04 16:08 - 00000000 ____D C:\Program Files (x86)\ChomikBox 2014-01-04 16:06 - 2014-01-04 16:06 - 28002816 _____ C:\Users\OTS\Downloads\ChomikBox.msi 2014-01-04 01:11 - 2014-01-04 01:11 - 03236196 _____ C:\Users\OTS\Downloads\GTalkTegraCM10.zip 2014-01-03 15:32 - 2014-01-03 15:32 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01007.Wdf 2014-01-03 15:25 - 2014-01-03 15:25 - 00204376 _____ C:\Users\OTS\Downloads\Odin3_v1.85.zip 2014-01-01 14:41 - 2013-09-23 13:49 - 00197704 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\HipShieldK.sys 2013-12-29 22:02 - 2013-12-29 22:02 - 00889416 _____ (Microsoft Corporation) C:\Users\OTS\Downloads\dotNetFx40_Full_setup.exe 2013-12-29 21:30 - 2013-12-29 21:30 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ssadadb_01005.Wdf 2013-12-29 21:28 - 2013-12-29 21:28 - 00000000 ____D C:\Program Files\SAMSUNG 2013-12-29 21:26 - 2013-12-29 21:27 - 19531504 _____ (SAMSUNG Electronics Co., Ltd.) C:\Users\OTS\Downloads\SAMSUNG_USB_Driver_for_Mobile_Phones.exe 2013-12-29 21:23 - 2013-12-29 21:23 - 00000000 ____D C:\Users\Public\Documents\NativeFus_Log 2013-12-29 21:23 - 2013-12-29 21:23 - 00000000 ____D C:\Users\OTS\Documents\samsung 2013-12-29 21:23 - 2013-12-29 21:23 - 00000000 ____D C:\Users\OTS\AppData\Roaming\Samsung 2013-12-29 21:23 - 2013-12-29 21:23 - 00000000 ____D C:\Users\OTS\AppData\Local\Samsung 2013-12-29 21:22 - 2013-08-21 05:31 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01007.dll 2013-12-29 21:22 - 2013-08-21 05:31 - 00708168 _____ (Microsoft Corporation) C:\Windows\system32\WinUSBCoInstaller.dll 2013-12-29 21:22 - 2013-08-21 05:31 - 00204568 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudmdm.sys 2013-12-29 21:22 - 2013-08-21 05:31 - 00103576 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudbus.sys 2013-12-29 21:10 - 2013-10-30 12:13 - 04659712 _____ (Dmitry Streblechenko) C:\Windows\SysWOW64\Redemption.dll 2013-12-29 21:10 - 2013-10-30 12:06 - 00821824 _____ (Devguru Co., Ltd.) C:\Windows\SysWOW64\dgderapi.dll 2013-12-29 21:09 - 2013-12-29 21:22 - 00000000 ____D C:\ProgramData\Samsung 2013-12-29 21:09 - 2013-12-29 21:22 - 00000000 ____D C:\Program Files (x86)\Samsung 2013-12-29 20:59 - 2013-12-29 21:02 - 70015304 _____ (Samsung Electronics Co., Ltd. ) C:\Users\OTS\Downloads\KiesSetup.exe 2013-12-29 20:59 - 2013-12-29 20:59 - 38825784 _____ (Samsung Electronics Co., Ltd. ) C:\Users\OTS\Downloads\Kies3Setup.exe 2013-12-29 20:57 - 2013-12-29 20:57 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2013-12-27 21:52 - 2013-12-27 21:52 - 00002023 _____ C:\Users\Public\Desktop\Adobe Reader X.lnk 2013-12-26 00:23 - 2013-12-26 00:23 - 00000019 _____ C:\Users\OTS\Documents\kik.txt 2013-12-23 00:20 - 2013-12-23 00:20 - 00000000 ____D C:\Windows\Sun 2013-12-23 00:20 - 2013-12-23 00:20 - 00000000 ____D C:\ProgramData\Oracle 2013-12-23 00:20 - 2013-10-08 07:46 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-12-23 00:19 - 2013-12-23 00:19 - 00004746 _____ C:\Windows\SysWOW64\jupdate-1.7.0_45-b18.log 2013-12-23 00:19 - 2013-10-08 07:50 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-12-23 00:19 - 2013-10-08 07:46 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-12-23 00:19 - 2013-10-08 07:46 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-12-21 19:04 - 2013-09-04 13:12 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2013-12-21 19:04 - 2013-09-04 13:11 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2013-12-21 19:04 - 2013-09-04 13:11 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2013-12-21 19:04 - 2013-09-04 13:11 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2013-12-21 19:04 - 2013-09-04 13:11 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2013-12-21 19:04 - 2013-09-04 13:11 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2013-12-21 19:04 - 2013-09-04 13:11 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2013-12-17 14:28 - 2013-12-17 14:28 - 00000000 ____D C:\Users\OTS\AppData\Roaming\EAST Technologies 2013-12-17 14:28 - 2013-12-17 14:28 - 00000000 ____D C:\Program Files (x86)\East-Tec Eraser 2012 2013-12-17 09:37 - 2014-01-12 18:18 - 00000000 ____D C:\Users\OTS\AppData\Roaming\vlc 2013-12-17 09:35 - 2013-12-17 09:35 - 00001070 _____ C:\Users\Public\Desktop\VLC media player.lnk 2013-12-17 09:35 - 2013-12-17 09:35 - 00000000 ____D C:\Program Files (x86)\VideoLAN ==================== One Month Modified Files and Folders ======= 2014-01-12 21:48 - 2014-01-12 21:48 - 00023312 _____ C:\Users\OTS\Desktop\FRST.txt 2014-01-12 21:46 - 2014-01-12 21:46 - 00000000 ____D C:\FRST 2014-01-12 21:43 - 2014-01-12 21:43 - 02075136 _____ (Farbar) C:\Users\OTS\Desktop\FRST64.exe 2014-01-12 21:42 - 2014-01-12 21:42 - 00098252 _____ C:\Users\OTS\Desktop\Extras.Txt 2014-01-12 21:41 - 2014-01-12 21:41 - 00125786 _____ C:\Users\OTS\Desktop\OTL.Txt 2014-01-12 21:13 - 2013-11-13 15:21 - 00000000 ____D C:\Users\OTS\AppData\Roaming\DAEMON Tools Lite 2014-01-12 21:13 - 2013-11-13 15:20 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite 2014-01-12 21:11 - 2014-01-11 13:09 - 00000930 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-01-12 20:54 - 2014-01-11 20:49 - 00001048 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cf0f0643ca6f47.job 2014-01-12 20:54 - 2014-01-11 20:44 - 00001038 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-12 20:52 - 2013-11-12 21:51 - 01784587 _____ C:\Windows\WindowsUpdate.log 2014-01-12 19:01 - 2014-01-12 19:01 - 00098576 _____ C:\Users\OTS\Downloads\Extras.Txt 2014-01-12 19:00 - 2014-01-12 19:00 - 00121200 _____ C:\Users\OTS\Downloads\OTL.Txt 2014-01-12 18:38 - 2014-01-12 18:38 - 00602112 _____ (OldTimer Tools) C:\Users\OTS\Desktop\OTL.exe 2014-01-12 18:22 - 2014-01-11 13:10 - 00000000 ____D C:\Users\OTS\AppData\Local\fst_pl_30 2014-01-12 18:22 - 2013-11-13 15:31 - 00000000 ____D C:\Users\OTS\Documents\Pliki programu Outlook 2014-01-12 18:18 - 2013-12-17 09:37 - 00000000 ____D C:\Users\OTS\AppData\Roaming\vlc 2014-01-12 17:48 - 2014-01-11 13:10 - 00000000 ____D C:\Users\OTS\AppData\Roaming\newnext.me 2014-01-12 16:33 - 2014-01-12 11:48 - 00000112 _____ C:\Windows\setupact.log 2014-01-12 11:48 - 2014-01-12 11:48 - 00000000 _____ C:\Windows\setuperr.log 2014-01-11 20:51 - 2013-11-13 19:47 - 00000000 ___RD C:\Users\OTS\Desktop\spark promotions 2014-01-11 20:50 - 2014-01-11 20:48 - 00000000 ____D C:\Users\OTS\Desktop\android 2014-01-11 20:49 - 2014-01-11 20:49 - 00004044 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA1cf0f0643ca6f47 2014-01-11 20:49 - 2014-01-11 20:49 - 00000000 ____D C:\Users\OTS\Desktop\cv i pracujpl 2014-01-11 20:49 - 2014-01-11 20:48 - 00000000 ____D C:\Users\OTS\Desktop\photo 2014-01-11 20:49 - 2014-01-11 20:44 - 00003786 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-01-11 20:45 - 2013-11-13 09:19 - 00000000 ____D C:\Users\OTS\AppData\Local\Google 2014-01-11 20:44 - 2013-11-13 09:19 - 00000000 ____D C:\Program Files (x86)\Google 2014-01-11 20:44 - 2013-11-13 09:18 - 00000000 ____D C:\Users\OTS\AppData\Local\Deployment 2014-01-11 20:44 - 2013-11-13 09:17 - 00000000 ____D C:\Users\OTS\AppData\Local\CrashDumps 2014-01-11 19:35 - 2014-01-11 13:10 - 00000000 ____D C:\Program Files (x86)\VLC Player GPU+ 2014-01-11 18:23 - 2009-07-14 05:45 - 00016976 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-01-11 18:23 - 2009-07-14 05:45 - 00016976 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-01-11 18:17 - 2013-11-12 23:02 - 00000000 ____D C:\ProgramData\clear.fi 2014-01-11 18:16 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2014-01-11 16:12 - 2014-01-11 14:00 - 00000000 ____D C:\Program Files (x86)\BitLord 2 2014-01-11 16:11 - 2014-01-11 13:07 - 00000000 ____D C:\Program Files (x86)\Dekart 2014-01-11 15:19 - 2011-08-04 05:01 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2014-01-11 14:37 - 2014-01-11 13:09 - 00000000 ____D C:\Program Files (x86)\Mobogenie 2014-01-11 14:33 - 2014-01-11 14:33 - 00000218 _____ C:\Users\OTS\AppData\Local\recently-used.xbel 2014-01-11 14:33 - 2014-01-11 14:02 - 00000000 ____D C:\Users\OTS\AppData\Roaming\BitLord 2014-01-11 14:26 - 2014-01-11 13:10 - 00000000 ____D C:\Users\OTS\AppData\Local\Mobogenie 2014-01-11 14:13 - 2014-01-11 14:12 - 00000000 ____D C:\Users\OTS\AppData\Roaming\Thinstall 2014-01-11 14:04 - 2014-01-11 14:04 - 01751600 _____ (Bandoo Media Inc) C:\Users\OTS\Downloads\iLividSetup-r0-n-bc.exe 2014-01-11 14:04 - 2014-01-11 14:04 - 00005740 _____ C:\Users\OTS\Downloads\[kickass.to]portable.data.doctor.recovery.pro.14in1.kickass.torrents.rpt.torrent 2014-01-11 14:04 - 2014-01-11 14:00 - 00000000 ____D C:\Users\OTS\Documents\BitLord 2014-01-11 14:03 - 2014-01-11 14:03 - 00000000 ____D C:\Users\OTS\AppData\Roaming\Python-Eggs 2014-01-11 13:58 - 2014-01-11 13:58 - 00716896 _____ C:\Users\OTS\Downloads\portable-datadoctorrecoverypro-14in1-7bkickasstorrents7d7brpt7d_BitLord.exe 2014-01-11 13:58 - 2014-01-11 13:58 - 00716896 _____ C:\Users\OTS\Downloads\portable-datadoctorrecoverypro-14in1-7bkickasstorrents7d7brpt7d_BitLord (1).exe 2014-01-11 13:57 - 2014-01-11 13:57 - 02600664 _____ (Visicom Media Inc.) C:\Users\OTS\Downloads\z_downloader.exe 2014-01-11 13:57 - 2014-01-11 13:57 - 02600664 _____ (Visicom Media Inc.) C:\Users\OTS\Downloads\z_downloader (3).exe 2014-01-11 13:57 - 2014-01-11 13:57 - 02600664 _____ (Visicom Media Inc.) C:\Users\OTS\Downloads\z_downloader (2).exe 2014-01-11 13:57 - 2014-01-11 13:57 - 02600664 _____ (Visicom Media Inc.) C:\Users\OTS\Downloads\z_downloader (1).exe 2014-01-11 13:54 - 2014-01-11 13:54 - 00452204 _____ C:\Users\OTS\Downloads\SimRecovery.rar 2014-01-11 13:50 - 2014-01-11 13:50 - 00503878 _____ (Pro Data Doctor Pvt. Ltd. ) C:\Users\OTS\Downloads\SimRecovery.exe 2014-01-11 13:42 - 2014-01-11 13:42 - 00000216 _____ C:\Users\OTS\Downloads\serial.txt 2014-01-11 13:37 - 2014-01-11 13:38 - 01579880 _____ (Pro Data Doctor Pvt. Ltd. ) C:\Users\OTS\Downloads\sim-card.exe 2014-01-11 13:37 - 2014-01-11 13:37 - 00679552 _____ C:\Users\OTS\Downloads\sim-card-reader-software.exe 2014-01-11 13:36 - 2014-01-11 13:36 - 08724480 _____ C:\Users\OTS\Downloads\GSM SIM Utility 5.15 - Simcard Editing Software.iso 2014-01-11 13:31 - 2014-01-11 13:09 - 00027378 _____ C:\Users\OTS\DSIMCard2.log 2014-01-11 13:29 - 2014-01-11 13:29 - 00000000 ____D C:\sim_scan 2014-01-11 13:29 - 2014-01-11 13:29 - 00000000 ____D C:\Program Files (x86)\GSM SIM Utility 9.0 2014-01-11 13:28 - 2014-01-11 13:28 - 15663984 _____ C:\Users\OTS\Downloads\drivers_1359098913_06149.rar 2014-01-11 13:18 - 2014-01-11 13:10 - 00000000 ____D C:\Users\OTS\AppData\Local\genienext 2014-01-11 13:10 - 2014-01-11 13:10 - 00000000 ____D C:\Users\OTS\Documents\Mobogenie 2014-01-11 13:10 - 2014-01-11 13:10 - 00000000 ____D C:\Users\OTS\AppData\Local\cache 2014-01-11 13:10 - 2014-01-11 13:10 - 00000000 ____D C:\Users\OTS\.android 2014-01-11 13:10 - 2014-01-11 13:10 - 00000000 ____D C:\Program Files (x86)\fst_pl_30 2014-01-11 13:10 - 2014-01-11 13:10 - 00000000 _____ C:\Users\OTS\daemonprocess.txt 2014-01-11 13:10 - 2013-11-12 22:50 - 00000000 ____D C:\Users\OTS 2014-01-11 13:09 - 2014-01-11 13:09 - 00003868 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-01-11 13:09 - 2014-01-11 13:09 - 00000000 ____D C:\Users\OTS\AppData\Roaming\Dekart 2014-01-11 13:09 - 2013-11-28 16:25 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-01-11 13:09 - 2013-11-28 16:25 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-01-11 13:04 - 2014-01-11 13:04 - 00576544 _____ C:\Users\OTS\Downloads\Setup.exe 2014-01-11 13:04 - 2014-01-11 13:03 - 04222288 _____ (Dekart) C:\Users\OTS\Downloads\SIMManager.exe 2014-01-10 23:31 - 2014-01-10 23:31 - 00000000 ____D C:\Users\OTS\AppData\Local\GHISLER 2014-01-10 23:20 - 2014-01-10 23:20 - 00000650 _____ C:\Users\OTS\Desktop\Total Commander 64 bit.lnk 2014-01-10 23:20 - 2014-01-10 23:20 - 00000000 ____D C:\Users\OTS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander 2014-01-10 23:20 - 2014-01-10 23:20 - 00000000 ____D C:\Users\OTS\AppData\Roaming\GHISLER 2014-01-10 23:20 - 2014-01-10 23:20 - 00000000 ____D C:\totalcmd 2014-01-10 23:19 - 2014-01-10 23:19 - 04329488 _____ (Ghisler Software GmbH) C:\Users\OTS\Downloads\tcmd801x64.exe 2014-01-10 23:19 - 2014-01-10 23:19 - 04329488 _____ (Ghisler Software GmbH) C:\Users\OTS\Downloads\tcmd801x64 (1).exe 2014-01-10 15:44 - 2013-11-12 22:51 - 00000000 ____D C:\Users\OTS\AppData\Local\VirtualStore 2014-01-10 13:37 - 2014-01-11 13:08 - 00824400 _____ (AnyProtect.com) C:\Users\OTS\AppData\Local\AnyProtectScannerSetup.exe 2014-01-10 11:06 - 2014-01-04 16:08 - 00000000 ____D C:\Users\OTS\AppData\Local\ChomikBox 2014-01-10 10:55 - 2014-01-04 16:08 - 00000000 ____D C:\Users\OTS\.gstreamer-0.10 2014-01-10 07:11 - 2013-11-13 06:40 - 00784900 _____ C:\Windows\system32\perfh015.dat 2014-01-10 07:11 - 2013-11-13 06:40 - 00172790 _____ C:\Windows\system32\perfc015.dat 2014-01-10 07:11 - 2009-07-14 06:13 - 01795440 _____ C:\Windows\system32\PerfStringBackup.INI 2014-01-09 22:54 - 2014-01-09 22:54 - 00000283 _____ C:\Users\OTS\Documents\M.txt 2014-01-07 13:46 - 2014-01-07 13:46 - 01424452 _____ C:\Users\OTS\Downloads\FExplorer Pro v2.5 S60v3v5 S^3 Anna Belle Signed.sisx 2014-01-07 13:40 - 2014-01-07 13:40 - 00542420 _____ C:\Users\OTS\Downloads\FExplorer.Pro.Final.v2.00.S60v3.S60v5.Symbian9..sis 2014-01-06 22:45 - 2014-01-04 16:09 - 00000000 ____D C:\Users\OTS\Downloads\ChomikBox 2014-01-06 10:46 - 2014-01-06 10:46 - 00000000 ____D C:\Users\OTS\Desktop\bajki 2014-01-04 16:08 - 2014-01-04 16:08 - 00000000 ____D C:\Program Files (x86)\ChomikBox 2014-01-04 16:06 - 2014-01-04 16:06 - 28002816 _____ C:\Users\OTS\Downloads\ChomikBox.msi 2014-01-04 01:11 - 2014-01-04 01:11 - 03236196 _____ C:\Users\OTS\Downloads\GTalkTegraCM10.zip 2014-01-03 21:39 - 2011-08-04 05:49 - 00000000 ____D C:\ProgramData\McAfee 2014-01-03 21:39 - 2011-08-04 05:49 - 00000000 ____D C:\Program Files\Common Files\mcafee 2014-01-03 15:32 - 2014-01-03 15:32 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01007.Wdf 2014-01-03 15:25 - 2014-01-03 15:25 - 00204376 _____ C:\Users\OTS\Downloads\Odin3_v1.85.zip 2014-01-01 14:41 - 2011-08-04 05:49 - 00000000 ____D C:\Program Files\mcafee 2014-01-01 14:41 - 2011-08-04 05:49 - 00000000 ____D C:\Program Files (x86)\McAfee 2013-12-31 10:35 - 2013-11-13 15:40 - 01770850 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-12-29 22:02 - 2013-12-29 22:02 - 00889416 _____ (Microsoft Corporation) C:\Users\OTS\Downloads\dotNetFx40_Full_setup.exe 2013-12-29 21:30 - 2013-12-29 21:30 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ssadadb_01005.Wdf 2013-12-29 21:28 - 2013-12-29 21:28 - 00000000 ____D C:\Program Files\SAMSUNG 2013-12-29 21:27 - 2013-12-29 21:26 - 19531504 _____ (SAMSUNG Electronics Co., Ltd.) C:\Users\OTS\Downloads\SAMSUNG_USB_Driver_for_Mobile_Phones.exe 2013-12-29 21:23 - 2013-12-29 21:23 - 00000000 ____D C:\Users\Public\Documents\NativeFus_Log 2013-12-29 21:23 - 2013-12-29 21:23 - 00000000 ____D C:\Users\OTS\Documents\samsung 2013-12-29 21:23 - 2013-12-29 21:23 - 00000000 ____D C:\Users\OTS\AppData\Roaming\Samsung 2013-12-29 21:23 - 2013-12-29 21:23 - 00000000 ____D C:\Users\OTS\AppData\Local\Samsung 2013-12-29 21:22 - 2013-12-29 21:09 - 00000000 ____D C:\ProgramData\Samsung 2013-12-29 21:22 - 2013-12-29 21:09 - 00000000 ____D C:\Program Files (x86)\Samsung 2013-12-29 21:05 - 2013-11-13 18:14 - 00000000 ____D C:\Users\OTS\AppData\Local\Downloaded Installations 2013-12-29 21:02 - 2013-12-29 20:59 - 70015304 _____ (Samsung Electronics Co., Ltd. ) C:\Users\OTS\Downloads\KiesSetup.exe 2013-12-29 20:59 - 2013-12-29 20:59 - 38825784 _____ (Samsung Electronics Co., Ltd. ) C:\Users\OTS\Downloads\Kies3Setup.exe 2013-12-29 20:57 - 2013-12-29 20:57 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2013-12-27 21:52 - 2013-12-27 21:52 - 00002023 _____ C:\Users\Public\Desktop\Adobe Reader X.lnk 2013-12-26 00:23 - 2013-12-26 00:23 - 00000019 _____ C:\Users\OTS\Documents\kik.txt 2013-12-25 16:25 - 2013-11-13 18:21 - 00000000 ____D C:\Users\OTS\AppData\Local\ACD Systems 2013-12-23 00:20 - 2013-12-23 00:20 - 00000000 ____D C:\Windows\Sun 2013-12-23 00:20 - 2013-12-23 00:20 - 00000000 ____D C:\ProgramData\Oracle 2013-12-23 00:19 - 2013-12-23 00:19 - 00004746 _____ C:\Windows\SysWOW64\jupdate-1.7.0_45-b18.log 2013-12-23 00:19 - 2013-12-12 14:16 - 00000000 ____D C:\Program Files (x86)\Java 2013-12-23 00:10 - 2013-11-17 17:07 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-12-23 00:10 - 2013-11-15 12:16 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-12-17 14:28 - 2013-12-17 14:28 - 00000000 ____D C:\Users\OTS\AppData\Roaming\EAST Technologies 2013-12-17 14:28 - 2013-12-17 14:28 - 00000000 ____D C:\Program Files (x86)\East-Tec Eraser 2012 2013-12-17 09:35 - 2013-12-17 09:35 - 00001070 _____ C:\Users\Public\Desktop\VLC media player.lnk 2013-12-17 09:35 - 2013-12-17 09:35 - 00000000 ____D C:\Program Files (x86)\VideoLAN Some content of TEMP: ==================== C:\Users\OTS\AppData\Local\Temp\nss167.tmp.exe C:\Users\OTS\AppData\Local\Temp\OpenCL.dll C:\Users\OTS\AppData\Local\Temp\prefetch.exe C:\Users\OTS\AppData\Local\Temp\Setup1.exe C:\Users\OTS\AppData\Local\Temp\Uninstall.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-09 13:52 ==================== End Of Log ============================