Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:17-05-2014 Ran by Azrael (administrator) on AZRAEL-KOMPUTER on 28-05-2014 11:14:58 Running from C:\Users\Azrael\Downloads Platform: Microsoft Windows 7 Home Premium (X86) OS Language: Polish Internet Explorer Version 8 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Creative Technology Ltd) C:\Program Files\Creative\Shared Files\CTAudSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe () C:\Program Files\Winamp\winampa.exe (Adobe Systems Incorporated) C:\Program Files\Adobe\Reader 11.0\Reader\reader_sl.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [P17RunE] => C:\Windows\system32\P17RunE.dll [14848 2008-03-28] (Creative Technology Ltd.) HKLM\...\Run: [WinampAgent] => C:\Program Files\Winamp\winampa.exe [33792 2004-12-20] () HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [93208 2007-09-26] (Logitech Inc.) HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [926896 2012-09-23] (Adobe Systems Incorporated) HKU\S-1-5-21-3856002315-2591469919-3196671771-1000\...\MountPoints2: F - F:\Autorun.exe Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\rvlkl.lnk ShortcutTarget: rvlkl.lnk -> C:\ProgramData\rvlkl\rvlkl.exe (Logixoft) ==================== Internet (Whitelisted) ==================== BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) Winsock: Catalog9 000000000100 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000101 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000102 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000103 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000104 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000105 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000106 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000107 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000108 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000109 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000110 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000111 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000112 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000113 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000114 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000115 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000116 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000117 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000118 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000119 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000120 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000121 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000122 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000123 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000124 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000125 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000126 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000127 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000128 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000129 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000130 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000131 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000132 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000133 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000134 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000135 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000136 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000137 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000138 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000139 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000140 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000141 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000142 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000143 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000144 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000145 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000146 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000147 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000148 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000149 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000150 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000151 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000152 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000153 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000154 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000155 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000156 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000157 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000158 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000159 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000160 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000161 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000162 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000163 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000164 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000165 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000166 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000167 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000168 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000169 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000170 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000171 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000172 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000173 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000174 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000175 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000176 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000177 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000178 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000179 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000180 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000181 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000182 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000183 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000184 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000185 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000186 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000187 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000188 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000189 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000190 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000191 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000192 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000193 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000194 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000195 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000196 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000197 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000198 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000199 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000200 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000201 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000202 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000203 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000204 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000205 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000206 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000207 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000208 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000209 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000210 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000211 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000212 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000213 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000214 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000215 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000216 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000217 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000218 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000219 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000220 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000221 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000222 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000223 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000224 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000225 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000226 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000227 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000228 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000229 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000230 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000231 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000232 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000233 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000234 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000235 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000236 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000237 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000238 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000239 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000240 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000241 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000242 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000243 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000244 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000245 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000246 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000247 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000248 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000249 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000250 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000251 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000252 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000253 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000254 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000255 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000256 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000257 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000258 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000259 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000260 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000261 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000262 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000263 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000264 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000265 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000266 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000267 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000268 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000269 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000270 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000271 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000272 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000273 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000274 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000275 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000276 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000277 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000278 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000279 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000280 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000281 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000282 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000283 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000284 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000285 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000286 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000287 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000288 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000289 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000290 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000291 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000292 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000293 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000294 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000295 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000296 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000297 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000298 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000299 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000300 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000301 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000302 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000303 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000304 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000305 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000306 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000307 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000308 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000309 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000310 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000311 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000312 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000313 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000314 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000315 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000316 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000317 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000318 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000319 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000320 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000321 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000322 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000323 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000324 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000325 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000326 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000327 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000328 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000329 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000330 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000331 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000332 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000333 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000334 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000335 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000336 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000337 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000338 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000339 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000340 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000341 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000342 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000343 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000344 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000345 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000346 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000347 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) Winsock: Catalog9 000000000348 %SystemRoot%\system32\mswsock.dll [232448] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\Azrael\AppData\Roaming\Mozilla\Firefox\Profiles\z14qmwsz.default FF Homepage: hxxp://www.google.pl/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Extension: BPH Sign Plugin - C:\Users\Azrael\AppData\Roaming\Mozilla\Firefox\Profiles\z14qmwsz.default\Extensions\SignPlugin@bph.pl [2013-05-06] ========================== Services (Whitelisted) ================= ==================== Drivers (Whitelisted) ==================== S2 E4LOADER; C:\Windows\System32\Drivers\e4ldr.sys [69656 2007-01-04] (Analog Deivces) R3 e4usbaw; C:\Windows\System32\DRIVERS\e4usbaw.sys [104344 2007-01-04] (Analog Devices Inc.) S3 FsUsbExDisk; C:\Windows\system32\FsUsbExDisk.SYS [36608 2009-03-31] () R0 giveio; C:\Windows\System32\giveio.sys [5248 1996-04-03] () R1 ISODrive; C:\Program Files\UltraISO\drivers\ISODrive.sys [82168 2013-11-21] (EZB Systems, Inc.) S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [107736 2014-05-19] (Malwarebytes Corporation) S3 MotioninJoyXFilter; C:\Windows\System32\DRIVERS\MijXfilt.sys [95304 2011-11-10] (MotioninJoy) R3 P17; C:\Windows\System32\drivers\P17.sys [1147392 2009-04-21] (Creative Technology Ltd.) R0 speedfan; C:\Windows\System32\speedfan.sys [24184 2012-12-29] (Almico Software) S3 ss_bbus; C:\Windows\System32\DRIVERS\ss_bbus.sys [98432 2012-06-27] (MCCI) S3 ss_bmdfl; C:\Windows\System32\DRIVERS\ss_bmdfl.sys [14848 2012-06-27] (MCCI Corporation) S3 ss_bmdm; C:\Windows\System32\DRIVERS\ss_bmdm.sys [123648 2012-06-27] (MCCI Corporation) R3 WmBEnum; C:\Windows\System32\drivers\WmBEnum.sys [19352 2007-09-14] (Logitech Inc.) S3 WmFilter; C:\Windows\System32\drivers\WmFilter.sys [29976 2007-09-14] (Logitech Inc.) S3 WmHidLo; C:\Windows\System32\drivers\WmHidLo.sys [29208 2007-09-14] (Logitech Inc.) S3 WmVirHid; C:\Windows\System32\drivers\WmVirHid.sys [14744 2007-09-14] (Logitech Inc.) R3 WmXlCore; C:\Windows\System32\drivers\WmXlCore.sys [51608 2007-09-14] (Logitech Inc.) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-05-28 09:41 - 2014-05-28 09:41 - 00448512 _____ (OldTimer Tools) C:\Users\Azrael\Downloads\TFC.exe 2014-05-27 16:01 - 2014-05-27 16:01 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2014-05-27 16:01 - 2014-05-27 16:01 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2014-05-27 09:55 - 2014-05-27 09:55 - 00000000 ____D () C:\ProgramData\McAfee 2014-05-27 09:45 - 2014-05-27 09:45 - 00000000 ____D () C:\ProgramData\Mozilla 2014-05-27 09:45 - 2014-05-27 09:45 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-05-23 15:40 - 2014-05-23 15:50 - 00044551 _____ () C:\Users\Azrael\Downloads\GMER.txt 2014-05-23 15:33 - 2014-05-23 15:33 - 00380416 _____ () C:\Users\Azrael\Downloads\w74b9sff.exe 2014-05-20 09:10 - 2014-05-20 09:10 - 00040072 _____ () C:\Users\Azrael\Downloads\Extras.Txt 2014-05-20 09:08 - 2014-05-20 09:08 - 00050036 _____ () C:\Users\Azrael\Downloads\OTL.Txt 2014-05-20 08:52 - 2014-05-20 08:52 - 00034516 _____ () C:\Users\Azrael\Downloads\Shortcut.txt 2014-05-20 08:52 - 2014-05-20 08:52 - 00019878 _____ () C:\Users\Azrael\Downloads\Addition.txt 2014-05-20 08:51 - 2014-05-28 11:15 - 00029273 _____ () C:\Users\Azrael\Downloads\FRST.txt 2014-05-20 08:51 - 2014-05-28 11:14 - 00000000 ____D () C:\FRST 2014-05-19 17:50 - 2014-05-19 17:50 - 01056768 _____ (Farbar) C:\Users\Azrael\Downloads\FRST.exe 2014-05-19 17:50 - 2014-05-19 17:50 - 00602112 _____ (OldTimer Tools) C:\Users\Azrael\Downloads\OTL.exe 2014-05-19 15:52 - 2014-05-19 17:34 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-05-19 15:52 - 2014-05-19 15:52 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-19 13:18 - 2014-05-19 13:18 - 00000000 ____D () C:\Users\Azrael\Documents\SavedGames 2014-05-19 13:15 - 2014-05-19 13:15 - 00000000 ____D () C:\Users\Azrael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The Sun At Night 2014-05-19 13:15 - 2014-05-19 13:15 - 00000000 ____D () C:\Program Files\Microsoft XNA 2014-05-17 11:46 - 2014-05-17 11:46 - 00000000 ____D () C:\Users\Azrael\AppData\Roaming\NVIDIA 2014-05-14 14:10 - 2014-05-14 14:10 - 00000000 ___RD () C:\Users\Azrael\Podcasts 2014-05-14 14:06 - 2014-05-14 14:08 - 00000000 ____D () C:\Program Files\Zune 2014-05-14 14:06 - 2014-05-14 14:06 - 00000000 ____D () C:\Windows\PCHEALTH 2014-05-14 14:06 - 2014-05-14 14:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zune 2014-05-14 14:05 - 2009-09-11 07:54 - 00547840 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceApi.dll ==================== One Month Modified Files and Folders ======= 2014-05-28 11:15 - 2014-05-20 08:51 - 00029273 _____ () C:\Users\Azrael\Downloads\FRST.txt 2014-05-28 11:14 - 2014-05-20 08:51 - 00000000 ____D () C:\FRST 2014-05-28 11:14 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-05-28 11:14 - 2009-07-14 06:39 - 00154647 _____ () C:\Windows\setupact.log 2014-05-28 11:08 - 2013-04-19 11:10 - 02012635 _____ () C:\Windows\WindowsUpdate.log 2014-05-28 11:08 - 2009-07-14 06:34 - 00021920 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-05-28 11:08 - 2009-07-14 06:34 - 00021920 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-05-28 09:50 - 2013-04-19 11:13 - 00000000 ____D () C:\Users\Azrael 2014-05-28 09:41 - 2014-05-28 09:41 - 00448512 _____ (OldTimer Tools) C:\Users\Azrael\Downloads\TFC.exe 2014-05-27 16:01 - 2014-05-27 16:01 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2014-05-27 16:01 - 2014-05-27 16:01 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2014-05-27 09:55 - 2014-05-27 09:55 - 00000000 ____D () C:\ProgramData\McAfee 2014-05-27 09:54 - 2013-04-19 12:10 - 00000000 ____D () C:\Users\Azrael\AppData\Local\Adobe 2014-05-27 09:45 - 2014-05-27 09:45 - 00000000 ____D () C:\ProgramData\Mozilla 2014-05-27 09:45 - 2014-05-27 09:45 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-05-27 09:45 - 2013-04-19 11:52 - 00000000 ____D () C:\Users\Azrael\AppData\Local\Mozilla 2014-05-27 09:45 - 2013-04-19 11:52 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-05-25 09:20 - 2013-04-19 11:17 - 01661232 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-05-25 09:20 - 2009-07-14 10:07 - 00737242 _____ () C:\Windows\system32\perfh015.dat 2014-05-25 09:20 - 2009-07-14 10:07 - 00153930 _____ () C:\Windows\system32\perfc015.dat 2014-05-23 16:05 - 2014-03-22 16:55 - 00000000 ____D () C:\Program Files\SpeedFan 2014-05-23 15:50 - 2014-05-23 15:40 - 00044551 _____ () C:\Users\Azrael\Downloads\GMER.txt 2014-05-23 15:33 - 2014-05-23 15:33 - 00380416 _____ () C:\Users\Azrael\Downloads\w74b9sff.exe 2014-05-20 09:10 - 2014-05-20 09:10 - 00040072 _____ () C:\Users\Azrael\Downloads\Extras.Txt 2014-05-20 09:08 - 2014-05-20 09:08 - 00050036 _____ () C:\Users\Azrael\Downloads\OTL.Txt 2014-05-20 08:52 - 2014-05-20 08:52 - 00034516 _____ () C:\Users\Azrael\Downloads\Shortcut.txt 2014-05-20 08:52 - 2014-05-20 08:52 - 00019878 _____ () C:\Users\Azrael\Downloads\Addition.txt 2014-05-20 06:33 - 2013-04-22 10:39 - 00000000 ____D () C:\Users\Azrael\AppData\Roaming\ipla 2014-05-19 17:51 - 2009-07-14 06:53 - 00032608 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-05-19 17:50 - 2014-05-19 17:50 - 01056768 _____ (Farbar) C:\Users\Azrael\Downloads\FRST.exe 2014-05-19 17:50 - 2014-05-19 17:50 - 00602112 _____ (OldTimer Tools) C:\Users\Azrael\Downloads\OTL.exe 2014-05-19 17:37 - 2013-11-13 15:19 - 00000000 ____D () C:\ProgramData\rvlkl 2014-05-19 17:37 - 2013-04-19 12:10 - 00000000 ____D () C:\Users\Azrael\Desktop\Inne 2014-05-19 17:34 - 2014-05-19 15:52 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-05-19 16:00 - 2013-04-19 11:25 - 00013836 _____ () C:\Windows\PFRO.log 2014-05-19 15:52 - 2014-05-19 15:52 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-19 13:18 - 2014-05-19 13:18 - 00000000 ____D () C:\Users\Azrael\Documents\SavedGames 2014-05-19 13:15 - 2014-05-19 13:15 - 00000000 ____D () C:\Users\Azrael\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The Sun At Night 2014-05-19 13:15 - 2014-05-19 13:15 - 00000000 ____D () C:\Program Files\Microsoft XNA 2014-05-19 13:15 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-05-17 11:46 - 2014-05-17 11:46 - 00000000 ____D () C:\Users\Azrael\AppData\Roaming\NVIDIA 2014-05-15 05:51 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET 2014-05-14 14:10 - 2014-05-14 14:10 - 00000000 ___RD () C:\Users\Azrael\Podcasts 2014-05-14 14:08 - 2014-05-14 14:06 - 00000000 ____D () C:\Program Files\Zune 2014-05-14 14:06 - 2014-05-14 14:06 - 00000000 ____D () C:\Windows\PCHEALTH 2014-05-14 14:06 - 2014-05-14 14:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zune 2014-05-10 08:01 - 2013-04-22 10:39 - 00000000 ____D () C:\ProgramData\ipla 2014-05-03 16:09 - 2013-06-17 16:01 - 00000000 ____D () C:\Users\Azrael\Documents\Euro Truck Simulator 2 ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\system32\winlogon.exe => MD5 is legit C:\Windows\system32\wininit.exe => MD5 is legit C:\Windows\system32\svchost.exe => MD5 is legit C:\Windows\system32\services.exe => MD5 is legit C:\Windows\system32\User32.dll => MD5 is legit C:\Windows\system32\userinit.exe => MD5 is legit C:\Windows\system32\rpcss.dll => MD5 is legit C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-05-20 14:30 ==================== End Of Log ============================