. DDS (Ver_11-03-05.01) - NTFS_AMD64 Run by REMIK at 17:04:10,75 on 2011-04-29 Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_24 Microsoft Windows 7 Home Premium 6.1.7600.0.1250.48.1045.18.2933.1881 [GMT 2:00] . SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . ============== Running Processes =============== . C:\Windows\system32\wininit.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k NetworkService C:\Program Files\Alwil Software\Avast5\AvastSvc.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\System32\spoolsv.exe C:\Windows\system32\taskeng.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Windows\system32\taskhost.exe C:\Windows\system32\rundll32.exe C:\Windows\SysWOW64\rundll32.exe C:\Windows\system32\taskeng.exe C:\Program Files (x86)\Samsung\Samsung Support Center\SSCKbdHk.exe C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe C:\Program Files (x86)\Samsung\Samsung Recovery Solution 4\WCScheduler.exe C:\Program Files\Autodesk\3ds Max 2010\mentalray\satellite\raysat_3dsmax2010_64server.exe C:\Program Files (x86)\blueconnect\BackgroundService\ServiceManager.exe C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Windows\system32\WUDFHost.exe C:\Windows\system32\igfxext.exe C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe C:\Windows\system32\igfxsrvc.exe C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe C:\Program Files\Elantech\ETDCtrl.exe C:\Windows\System32\igfxtray.exe C:\Windows\System32\igfxpers.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files (x86)\RocketDock\RocketDock.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\system32\SearchIndexer.exe C:\Program Files\Elantech\ETDCtrlHelper.exe C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe C:\Program Files (x86)\blueconnect\BackgroundService\ModemListener.exe C:\Program Files\Alwil Software\Avast5\AvastUI.exe C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe C:\Program Files (x86)\CyberLink\Shared files\brs.exe C:\Program Files (x86)\blueconnect\ModemApplication.exe C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Program Files (x86)\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe C:\Program Files (x86)\Nero\Update\NASvc.exe C:\Users\REMIK\Downloads\OTL.com C:\Windows\notepad.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe C:\Users\REMIK\Downloads\dds.com C:\Windows\system32\conhost.exe C:\Windows\system32\wbem\wmiprvse.exe . ============== Pseudo HJT Report =============== . uDefault_Page_URL = hxxp://samsung.msn.com uWindow Title = mStart Page = hxxp://samsung.msn.com mWinlogon: Userinit=userinit.exe, BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll BHO: Windows Live Messenger Companion Helper: {9fdde16b-836f-4806-ab1f-1455cbeff289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll BHO: Bing Bar BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll BHO: SMTTB2009 Class: {fcbccb87-9224-4b8d-b117-f56d924beb18} - C:\Program Files (x86)\Burn4Free DB Toolbar\tbcore3.dll TB: @C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll,-100: {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll TB: Burn4Free DB Toolbar: {338b4dfe-2e2c-4338-9e41-e176d497299e} - C:\Program Files (x86)\Burn4Free DB Toolbar\tbcore3.dll uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun uRun: [RocketDock] "C:\Program Files (x86)\RocketDock\RocketDock.exe" uRun: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe uRun: [AlSrvN] C:\Program Files (x86)\Alcohol Soft\Alcohol 120\Plugins\Helper\AlSrvN.exe uRun: [AlcoholAutomount] "C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount mRun: [Microsoft Default Manager] "C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" mRun: [UCam_Menu] "C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\2.0" mRun: [ERA_SEPANG ModemListener] C:\Program Files (x86)\blueconnect\BackgroundService\ModemListener.exe start mRun: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui mRun: [RemoteControl9] "C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe" mRun: [PDVD9LanguageShortcut] "C:\Program Files (x86)\CyberLink\PowerDVD9\Language\Language.exe" mRun: [BDRegion] C:\Program Files (x86)\Cyberlink\Shared Files\brs.exe mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\ADOBEG~1.LNK - C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe mPolicies-explorer: NoActiveDesktop = 1 (0x1) mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1) mPolicies-explorer: NoResolveTrack = 0 (0x0) mPolicies-explorer: NoFileAssociate = 0 (0x0) mPolicies-system: EnableUIADesktopToggle = 0 (0x0) mPolicies-system: EnableLinkedConnections = 1 (0x1) mPolicies-system: NoDispSettingsPage = 0 (0x0) mPolicies-system: EnableLUA = 0 (0x0) mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0) mPolicies-system: PromptOnSecureDesktop = 0 (0x0) IE: Add to Google Photos Screensa&ver - C:\Windows\system32\GPhotos.scr/200 IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll Trusted Zone: clonewarsadventures.com Trusted Zone: freerealms.com Trusted Zone: soe.com Trusted Zone: sony.com DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab TCP: {6AB8A053-718B-417B-B4E6-DC1136682707} = 213.158.199.1 213.158.199.5 Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll {9030D464-4C02-4ABF-8ECC-5164760863C6} TB-X64: {338B4DFE-2E2C-4338-9E41-E176D497299E} - No File mRun-x64: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s mRun-x64: [ETDWare] %ProgramFiles%\Elantech\ETDCtrl.exe mRun-x64: [IgfxTray] C:\Windows\system32\igfxtray.exe mRun-x64: [HotKeysCmds] C:\Windows\system32\hkcmd.exe mRun-x64: [Persistence] C:\Windows\system32\igfxpers.exe . ================= FIREFOX =================== . FF - ProfilePath - C:\Users\REMIK\AppData\Roaming\Mozilla\Firefox\Profiles\kxlex6l6.default\ FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll FF - plugin: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.53\npGoogleUpdate3.dll FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\4.0.60310.0\npctrlui.dll FF - plugin: C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll . ---- FIREFOX POLICIES ---- FF - user.js: browser.blink_allowed - true FF - user.js: network.prefetch-next - true FF - user.js: nglayout.initialpaint.delay - 250 FF - user.js: layout.spellcheckDefault - 1 FF - user.js: browser.urlbar.autoFill - false FF - user.js: browser.search.openintab - false FF - user.js: browser.tabs.closeButtons - 1 FF - user.js: browser.tabs.opentabfor.middleclick - true FF - user.js: browser.tabs.tabMinWidth - 100 FF - user.js: browser.urlbar.hideGoButton - false . ============= SERVICES / DRIVERS =============== . R1 aswSP;aswSP;C:\Windows\System32\drivers\aswSP.sys [2011-4-18 121936] R1 SABI;SAMSUNG Kernel Driver For Windows 7;C:\Windows\System32\drivers\SABI.sys [2010-11-8 13824] R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\System32\drivers\vwififlt.sys [2009-7-14 59904] R2 {B154377D-700F-42cc-9474-23858FBDF4BD};Power Control [2011/04/20 18:52:18];C:\Program Files (x86)\CyberLink\PowerDVD9\000.fcl [2009-2-28 146928] R2 aswFsBlk;aswFsBlk;C:\Windows\System32\drivers\aswFsBlk.sys [2011-4-18 20048] R2 aswMonFlt;aswMonFlt;C:\Windows\System32\drivers\aswMonFlt.sys [2011-4-18 61008] R2 avast! Antivirus;avast! Antivirus;C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2011-4-18 40384] R2 mi-raysat_3dsmax2010_64;mental ray 3.7 Satellite for Autodesk 3ds Max 2010 64-bit 64-bit;C:\Program Files\Autodesk\3ds Max 2010\mentalray\satellite\raysat_3dsmax2010_64server.exe [2009-3-12 86016] R2 Modem Device Helper;Modem Device Helper;C:\Program Files (x86)\blueconnect\BackgroundService\ServiceManager.exe -start --> C:\Program Files (x86)\blueconnect\BackgroundService\ServiceManager.exe -start [?] R2 NAUpdate;Nero Update;C:\Program Files (x86)\Nero\Update\NASvc.exe [2010-3-25 490280] R3 avast! Mail Scanner;avast! Mail Scanner;C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2011-4-18 40384] R3 avast! Web Scanner;avast! Web Scanner;C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2011-4-18 40384] R3 ETD;ELAN PS/2 Port Input Device;C:\Windows\System32\drivers\ETD.sys [2010-11-8 136192] R3 Impcd;Impcd;C:\Windows\System32\drivers\Impcd.sys [2010-11-8 158976] R3 IntcDAud;Intel(R) Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2010-11-8 271872] R3 jrdusbser;Mobile Connector Device for Legacy Serial Communication;C:\Windows\System32\drivers\jrdusbser.sys [2011-4-19 119680] R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\System32\drivers\yk62x64.sys [2009-9-28 395264] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576] S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-4-18 136176] S3 DfSdkS;Defragmentation-Service;C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 7\DfSdkS.exe [2011-4-26 544768] S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2011-4-20 1030600] S3 gupdatem;Usługa Google Update (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-4-18 136176] S3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2009-6-10 187392] S3 WatAdminSvc;Usługa Technologie aktywacji systemu Windows;C:\Windows\System32\Wat\WatAdminSvc.exe [2011-4-27 1255736] S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184] . =============== Created Last 30 ================ . 2011-04-29 07:20:11 -------- d-----w- C:\Users\REMIK\DoctorWeb 2011-04-28 08:14:31 -------- d-----w- C:\Program Files (x86)\Spybot - Search & Destroy 2011-04-28 08:14:31 -------- d-----w- C:\PROGRA~3\Spybot - Search & Destroy 2011-04-28 05:58:23 -------- d-----w- C:\Windows\SysWow64\wbem\pt-PT 2011-04-28 05:58:20 -------- d-----w- C:\Windows\SysWow64\wbem\es-ES 2011-04-28 05:58:09 -------- d-----w- C:\Windows\System32\wbem\pt-PT 2011-04-28 05:58:07 -------- d-----w- C:\Windows\System32\wbem\es-ES 2011-04-28 05:57:18 176144 ----a-w- C:\Windows\System32\drivers\Mpfp.sys 2011-04-28 05:57:17 49480 ----a-w- C:\Windows\System32\drivers\mfesmfk.sys 2011-04-28 05:57:17 40904 ----a-w- C:\Windows\System32\drivers\mferkdk.sys 2011-04-28 05:57:17 307400 ----a-w- C:\Windows\System32\drivers\mfehidk.sys 2011-04-28 05:57:17 102600 ----a-w- C:\Windows\System32\drivers\mfeavfk.sys 2011-04-27 20:19:55 -------- d-----w- C:\Program Files (x86)\MSXML 4.0 2011-04-27 19:21:45 -------- d-----w- C:\_OTL 2011-04-27 19:13:45 -------- d-----w- C:\Users\REMIK\AppData\Roaming\QuickScan 2011-04-27 12:53:10 -------- d-----w- C:\Windows\SysWow64\AGEIA 2011-04-27 12:52:57 -------- d-----w- C:\Program Files (x86)\Common Files\Wise Installation Wizard 2011-04-27 12:24:24 -------- d-----w- C:\Windows\SysWow64\xlive 2011-04-27 12:24:24 -------- d-----w- C:\Program Files (x86)\Microsoft Games for Windows - LIVE 2011-04-27 12:23:20 -------- d-----w- C:\Users\REMIK\AppData\Roaming\Batman Arkham Asylum 2011-04-27 12:04:17 -------- d-----w- C:\Program Files (x86)\R.G. Mechanics 2011-04-27 11:51:57 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Wtyczki\npqtplugin7.dll 2011-04-27 11:51:57 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Wtyczki\npqtplugin6.dll 2011-04-27 11:51:57 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Wtyczki\npqtplugin5.dll 2011-04-27 11:51:57 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Wtyczki\npqtplugin4.dll 2011-04-27 11:51:57 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Wtyczki\npqtplugin3.dll 2011-04-27 11:51:57 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Wtyczki\npqtplugin2.dll 2011-04-27 11:51:57 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Wtyczki\npqtplugin.dll 2011-04-27 10:44:02 -------- d-----w- C:\Users\REMIK\AppData\Roaming\Malwarebytes 2011-04-27 10:43:53 38224 ----a-w- C:\Windows\SysWow64\drivers\mbamswissarmy.sys 2011-04-27 10:43:52 -------- d-----w- C:\PROGRA~3\Malwarebytes 2011-04-27 10:43:50 24152 ----a-w- C:\Windows\System32\drivers\mbam.sys 2011-04-27 10:43:49 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware 2011-04-27 10:30:34 -------- d-----w- C:\Windows\SysWow64\Wat 2011-04-27 10:30:34 -------- d-----w- C:\Windows\System32\Wat 2011-04-27 10:14:20 2870272 ----a-w- C:\Windows\explorer.exe 2011-04-27 10:14:20 2614784 ----a-w- C:\Windows\SysWow64\explorer.exe 2011-04-27 10:13:49 320512 ----a-w- C:\Windows\System32\d3d10_1core.dll 2011-04-27 10:13:49 218624 ----a-w- C:\Windows\SysWow64\d3d10_1core.dll 2011-04-27 10:13:49 197120 ----a-w- C:\Windows\System32\d3d10_1.dll 2011-04-27 10:13:49 161792 ----a-w- C:\Windows\SysWow64\d3d10_1.dll 2011-04-27 10:13:40 31232 ----a-w- C:\Windows\System32\prevhost.exe 2011-04-27 10:13:39 31232 ----a-w- C:\Windows\SysWow64\prevhost.exe 2011-04-27 08:46:23 122880 --sha-r- C:\Windows\SysWow64\autoplay3.dll 2011-04-27 00:02:21 8802128 ----a-w- C:\PROGRA~3\Microsoft\Windows Defender\Definition Updates\{596897B0-6C44-43E1-B459-F86183269ADD}\mpengine.dll 2011-04-26 17:21:30 -------- d-----w- C:\Program Files (x86)\F2 spolszczenie 2011-04-26 11:25:23 -------- d-----w- C:\Program Files (x86)\Acclaim Entertainment 2011-04-26 11:25:22 816264 ----a-r- C:\Windows\SysWow64\wmvdmod.dll 2011-04-26 11:25:22 760968 ----a-r- C:\Windows\SysWow64\wmsdmod.dll 2011-04-26 11:25:22 486536 ----a-r- C:\Windows\SysWow64\SET52C5.tmp 2011-04-26 11:25:22 410248 ----a-r- C:\Windows\SysWow64\SET5236.tmp 2011-04-26 11:25:22 384512 ----a-r- C:\Windows\SysWow64\mp4sdmod.dll 2011-04-26 11:25:22 316040 ----a-r- C:\Windows\SysWow64\mp43dmod.dll 2011-04-26 11:25:22 241664 ----a-r- C:\Windows\SysWow64\mpg4dmod.dll 2011-04-26 10:53:19 -------- d-----w- C:\Program Files (x86)\Anomaly - Warzone Earth 2011-04-26 09:15:03 -------- d-----w- C:\Program Files (x86)\SimBin 2011-04-26 08:08:12 -------- d-----w- C:\Program Files (x86)\Anomaly Warzone Earth 2011-04-26 07:47:12 -------- d-----w- C:\Program Files (x86)\Portal 2011-04-26 05:42:47 -------- d-----w- C:\Program Files (x86)\GOG.com 2011-04-26 01:43:22 8802128 ----a-w- C:\PROGRA~3\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll 2011-04-25 20:50:59 -------- d-----w- C:\Program Files (x86)\Codemasters 2011-04-25 18:59:23 -------- d-----w- C:\Users\REMIK\AppData\Local\TW2CD_DATA 2011-04-25 18:58:45 -------- d-----w- C:\Program Files (x86)\Reality Pump 2011-04-25 18:58:44 466456 ----a-w- C:\Windows\System32\wrap_oal.dll 2011-04-25 18:58:44 444952 ----a-w- C:\Windows\SysWow64\wrap_oal.dll 2011-04-25 18:58:44 122904 ----a-w- C:\Windows\System32\OpenAL32.dll 2011-04-25 18:58:44 109080 ----a-w- C:\Windows\SysWow64\OpenAL32.dll 2011-04-25 18:58:44 -------- d-----w- C:\Program Files (x86)\OpenAL 2011-04-25 18:20:20 -------- d-----w- C:\Program Files (x86)\SystemRequirementsLab 2011-04-25 17:58:24 -------- d-----w- C:\Users\REMIK\SystemRequirementsLab 2011-04-25 16:36:50 -------- d-----w- C:\Program Files (x86)\Silver Style Entertainment 2011-04-25 14:38:41 -------- d-----w- C:\Program Files (x86)\Gift 2011-04-25 10:03:34 -------- d-----w- C:\Program Files (x86)\THQ 2011-04-22 22:03:43 -------- d-----w- C:\PROGRA~3\Arcade Lab 2011-04-22 21:56:30 -------- d-----w- C:\Users\REMIK\AppData\Roaming\Windows Live Writer 2011-04-22 21:56:30 -------- d-----w- C:\Users\REMIK\AppData\Local\Windows Live Writer 2011-04-21 22:06:35 -------- d-----w- C:\PROGRA~3\Xfire 2011-04-21 22:06:34 -------- d-----w- C:\Program Files (x86)\Xfire 2011-04-21 18:37:38 -------- d-----w- C:\Program Files (x86)\Atari 2011-04-21 18:17:29 207872 ----a-w- C:\Windows\System32\drivers\ithsgt.sys 2011-04-21 18:17:19 21504 ----a-w- C:\Windows\System32\drivers\lilsgt.sys 2011-04-21 17:14:51 -------- d-----w- C:\Users\REMIK\AppData\Local\Samsung 2011-04-21 10:07:32 48648 ----a-w- C:\PROGRA~3\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\Markup.dll 2011-04-21 07:52:16 438272 ----a-r- C:\Windows\SysWow64\vp6vfw.dll 2011-04-21 07:52:16 327680 ----a-w- C:\Windows\SysWow64\vp6dec.ax 2011-04-21 07:51:53 77824 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\ctor.dll 2011-04-21 07:51:53 32768 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\objectps.dll 2011-04-21 07:51:53 225280 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\IScript\iscript.dll 2011-04-21 07:51:53 176128 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\iuser.dll 2011-04-21 07:51:52 614532 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\IKernel.exe 2011-04-20 20:54:45 -------- d-----w- C:\Windows\SysWow64\Do not install 2011-04-20 20:54:44 -------- d-----w- C:\Program Files (x86)\3DRipperDX 2011-04-20 20:42:08 -------- d-----w- C:\Program Files\Common Files\Macrovision Shared 2011-04-20 20:41:33 -------- d-----w- C:\Program Files (x86)\Common Files\Autodesk Shared 2011-04-20 20:41:32 -------- d-----w- C:\Program Files\Common Files\Autodesk Shared 2011-04-20 20:40:51 -------- d-----w- C:\Program Files\Autodesk 2011-04-20 20:40:09 -------- d-----w- C:\Program Files (x86)\Autodesk 2011-04-20 20:39:53 540688 ----a-w- C:\Windows\System32\d3dx10_39.dll 2011-04-20 20:39:53 467984 ----a-w- C:\Windows\SysWow64\d3dx10_39.dll 2011-04-20 20:39:53 1942552 ----a-w- C:\Windows\System32\D3DCompiler_39.dll 2011-04-20 20:39:53 1493528 ----a-w- C:\Windows\SysWow64\D3DCompiler_39.dll 2011-04-20 20:39:50 4992520 ----a-w- C:\Windows\System32\D3DX9_39.dll 2011-04-20 20:39:50 3851784 ----a-w- C:\Windows\SysWow64\D3DX9_39.dll 2011-04-20 19:56:11 -------- d-----w- C:\Program Files (x86)\Makehuman 2011-04-20 19:49:10 -------- d-----w- C:\Program Files (x86)\Burn4Free DB Toolbar 2011-04-20 19:48:52 -------- d-----w- C:\Program Files (x86)\b4ficons 2011-04-20 19:48:46 -------- d-----w- C:\Program Files (x86)\Burn4Free 2011-04-20 19:44:40 -------- d-----w- C:\Program Files (x86)\DDS Converter 2 2011-04-20 19:30:40 -------- d-----w- C:\Program Files (x86)\Spiral Graphics 2011-04-20 19:07:01 -------- d-----w- C:\Program Files\Spiral Graphics 2011-04-20 19:07:01 -------- d-----w- C:\PROGRA~3\Spiral Graphics 2011-04-20 18:59:36 307200 ----a-w- C:\Windows\IsUn0415.exe 2011-04-20 18:55:32 -------- d-----w- C:\Program Files (x86)\HyperSnap 6 2011-04-20 18:12:05 34308 ----a-w- C:\PROGRA~3\mazuki.dll 2011-04-20 18:10:39 34304 ----a-w- C:\Windows\System32\DfSdkBt.exe 2011-04-20 18:10:39 28160 ----a-w- C:\Windows\SysWow64\DfSdkBt32.exe 2011-04-20 18:10:34 -------- d-----w- C:\Program Files (x86)\Ashampoo 2011-04-20 18:04:08 -------- d-----w- C:\Program Files (x86)\Elaborate Bytes 2011-04-20 17:52:03 -------- d-----w- C:\Program Files (x86)\Common Files\CyberLink 2011-04-20 17:50:30 505128 ----a-w- C:\Windows\SysWow64\msvcp71.dll 2011-04-20 17:50:30 29480 ----a-w- C:\Windows\SysWow64\msxml3a.dll 2011-04-20 17:01:04 616600 ----a-w- C:\Windows\SysWow64\FontInstaller.dll 2011-04-20 17:01:00 -------- d-----w- C:\Program Files (x86)\High-Logic FontCreator 2011-04-20 16:15:25 -------- d-----w- C:\PROGRA~3\ASGVIS 2011-04-20 15:56:39 -------- d-----w- C:\Program Files\Blender Foundation 2011-04-20 15:55:40 -------- d-----w- C:\Python32 2011-04-20 15:01:53 -------- d-----w- C:\Users\REMIK\.thumbnails 2011-04-20 14:43:53 -------- d-----w- C:\PROGRA~3\licensecb 2011-04-20 14:43:04 49152 ----a-w- C:\Windows\System32\XXMKLINK.EXE 2011-04-20 14:43:04 436 ----a-w- C:\Windows\System32\START.bat 2011-04-20 14:43:04 168 ----a-w- C:\Windows\System32\CrazyBump Licence Reset.reg 2011-04-20 14:41:50 -------- d-----w- C:\PROGRA~3\CrazyBump 2011-04-20 14:39:31 -------- d-----w- C:\Program Files (x86)\Crazybump 2011-04-20 12:48:35 -------- d-----w- C:\Program Files\MAXON 2011-04-20 11:54:06 -------- d-----w- C:\Program Files (x86)\Luxology 2011-04-20 11:40:14 -------- d-----w- C:\Users\REMIK\AppData\Roaming\.minecraft 2011-04-20 11:34:03 472808 ----a-w- C:\Windows\SysWow64\deployJava1.dll 2011-04-20 11:13:21 -------- d-----w- C:\Program Files (x86)\SyrenkaRacer 2011-04-20 10:52:23 86016 ----a-w- C:\Windows\unvise32.exe 2011-04-20 10:52:03 -------- d-----w- C:\Program Files (x86)\wolf_pol 2011-04-20 10:41:47 -------- d-----w- C:\Program Files (x86)\Return To Castle Wolfenstein PL 2011-04-20 09:39:48 -------- d-----w- C:\Program Files (x86)\EA Games 2011-04-20 08:36:06 -------- d-----w- C:\Program Files (x86)\Fox Interactive 2011-04-20 07:41:30 -------- d-----w- C:\Program Files (x86)\JoWooD 2011-04-19 21:42:45 -------- d-----w- C:\PROGRA~3\Trymedia 2011-04-19 21:40:27 131072 ----a-r- C:\Windows\SysWow64\eax.dll 2011-04-19 21:38:36 73728 ----a-w- C:\Windows\SysWow64\ISUSPM.cpl 2011-04-19 21:38:35 81920 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe 2011-04-19 21:38:35 368640 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\UpdateService\_isusres.dll 2011-04-19 21:38:35 368640 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\UpdateService\_ispmres.dll 2011-04-19 21:38:35 249856 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe 2011-04-19 21:38:34 278528 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISDM.exe 2011-04-19 21:38:33 618496 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\UpdateService\agent.exe 2011-04-19 20:12:47 -------- d-----w- C:\Windows\SysWow64\directx 2011-04-19 19:56:50 -------- d-----w- C:\Program Files (x86)\Bunkspeed 2011-04-19 19:56:50 -------- d-----w- C:\PROGRA~3\Bunkspeed 2011-04-19 19:31:08 -------- d-----w- C:\Program Files (x86)\KeyShot2 2011-04-19 19:08:33 -------- d-----w- C:\Program Files (x86)\Nitro PDF 2011-04-19 18:48:22 -------- d-----w- C:\PROGRA~3\Poser 2011-04-19 18:30:43 -------- d-----w- C:\Program Files (x86)\Smith Micro 2011-04-19 17:11:44 -------- d-----w- C:\PROGRA~3\Nero 2011-04-19 17:11:10 -------- d-----w- C:\Program Files (x86)\Nero 2011-04-19 16:42:17 385024 ----a-w- C:\Windows\SysWow64\xvid.ax 2011-04-19 16:41:40 -------- d-----w- C:\AirborneTroops 2011-04-19 11:09:14 3690496 ----a-w- C:\Windows\SysWow64\tv3d65.dll 2011-04-19 11:06:57 -------- d-----w- C:\Program Files (x86)\Play 2011-04-19 07:54:08 -------- dc----w- C:\Users\REMIK\AppData\Local\MigWiz 2011-04-19 07:21:24 367104 ----a-w- C:\Windows\System32\wcncsvc.dll 2011-04-19 07:21:24 276992 ----a-w- C:\Windows\SysWow64\wcncsvc.dll 2011-04-19 07:13:33 99176 ----a-w- C:\Windows\SysWow64\PresentationHostProxy.dll 2011-04-19 07:13:33 49472 ----a-w- C:\Windows\SysWow64\netfxperf.dll 2011-04-19 07:13:33 48960 ----a-w- C:\Windows\System32\netfxperf.dll 2011-04-19 07:13:33 444752 ----a-w- C:\Windows\System32\mscoree.dll 2011-04-19 07:13:33 320352 ----a-w- C:\Windows\System32\PresentationHost.exe 2011-04-19 07:13:33 297808 ----a-w- C:\Windows\SysWow64\mscoree.dll 2011-04-19 07:13:33 295264 ----a-w- C:\Windows\SysWow64\PresentationHost.exe 2011-04-19 07:13:33 1942856 ----a-w- C:\Windows\System32\dfshim.dll 2011-04-19 07:13:33 1130824 ----a-w- C:\Windows\SysWow64\dfshim.dll 2011-04-19 07:13:33 109912 ----a-w- C:\Windows\System32\PresentationHostProxy.dll 2011-04-19 07:13:19 294912 ----a-w- C:\Windows\System32\browserchoice.exe 2011-04-19 07:10:56 243712 ----a-w- C:\Windows\System32\drivers\ks.sys 2011-04-19 07:10:56 184832 ----a-w- C:\Windows\System32\drivers\usbvideo.sys 2011-04-19 06:47:13 714752 ----a-w- C:\Windows\System32\kerberos.dll 2011-04-19 06:47:13 541184 ----a-w- C:\Windows\SysWow64\kerberos.dll 2011-04-19 06:47:11 2048 ----a-w- C:\Windows\SysWow64\tzres.dll 2011-04-19 06:47:11 2048 ----a-w- C:\Windows\System32\tzres.dll 2011-04-19 06:45:57 558592 ----a-w- C:\Windows\System32\spoolsv.exe 2011-04-19 06:44:59 738816 ----a-w- C:\Windows\SysWow64\wmpmde.dll 2011-04-19 06:41:02 48648 ----a-w- C:\PROGRA~3\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll 2011-04-19 06:40:59 686400 ----a-w- C:\PROGRA~3\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll 2011-04-18 22:58:55 119680 ----a-w- C:\Windows\System32\drivers\jrdusbser.sys 2011-04-18 22:58:52 1724416 ----a-w- C:\Windows\SysWow64\GdiPlus.dll 2011-04-18 22:58:52 -------- d-----w- C:\Program Files (x86)\blueconnect 2011-04-18 22:26:16 -------- d-----w- C:\Users\REMIK\AppData\Local\Microsoft Games 2011-04-18 22:23:20 -------- d-----w- C:\Users\REMIK\AppData\Local\JollyBear 2011-04-18 22:23:20 -------- d-----w- C:\PROGRA~3\JollyBear 2011-04-18 21:40:14 -------- d-----w- C:\Users\REMIK\AppData\Local\VirtualStore 2011-04-18 21:31:55 -------- d-----w- C:\Users\REMIK\AppData\Local\ElevatedDiagnostics 2011-04-18 21:28:24 -------- d-----w- C:\PROGRA~3\OberonGameConsole 2011-04-18 21:23:34 131368 ----a-w- C:\PROGRA~3\FullRemove.exe 2011-04-18 21:23:32 -------- d-----w- C:\Program Files (x86)\Common Files\Oberon Media 2011-04-18 21:23:14 -------- d-----w- C:\Program Files (x86)\Game Pack 2011-04-18 21:22:46 -------- d-----w- C:\Users\REMIK\AppData\Local\Adobe 2011-04-18 21:20:14 -------- d-sh--w- C:\Recovery 2011-04-18 19:11:35 -------- d-----w- C:\Users\REMIK\AppData\Local\Google 2011-04-18 18:46:43 -------- d-----w- C:\Program Files (x86)\uTorrent 2011-04-18 18:46:01 -------- d-----w- C:\Users\REMIK\AppData\Roaming\uTorrent 2011-04-18 18:29:21 -------- d-----w- C:\Program Files (x86)\RocketDock 2011-04-18 17:06:16 270720 ------w- C:\Windows\System32\MpSigStub.exe 2011-04-18 16:53:40 61008 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys 2011-04-18 16:53:22 38848 ----a-w- C:\Windows\avastSS.scr 2011-04-18 16:53:20 -------- d-----w- C:\PROGRA~3\Alwil Software 2011-04-18 16:23:16 -------- d-----w- C:\Users\REMIK\AppData\Local\Mozilla 2011-04-17 19:57:54 41872 ----a-w- C:\Windows\SysWow64\xfcodec.dll 2011-04-17 19:57:54 27536 ----a-w- C:\Windows\System32\xfcodec64.dll 2011-04-05 21:11:11 -------- d-----w- C:\Users\REMIK\AppData\Roaming\runic games 2011-04-05 19:42:42 -------- d-----w- C:\Users\REMIK\AppData\Roaming\ProtectDISC 2011-04-03 12:45:30 -------- d-----w- C:\Users\REMIK\AppData\Local\Rebellion 2011-04-02 16:07:40 -------- d-----w- C:\Users\REMIK\AppData\Roaming\Win7codecs . ==================== Find3M ==================== . 2011-03-25 23:48:06 4284416 ----a-w- C:\Windows\SysWow64\GPhotos.scr 2011-03-12 12:03:46 662528 ----a-w- C:\Windows\System32\XpsPrint.dll 2011-03-12 11:31:58 442880 ----a-w- C:\Windows\SysWow64\XpsPrint.dll 2011-03-11 06:23:13 187264 ----a-w- C:\Windows\System32\drivers\storport.sys 2011-03-11 06:23:06 166272 ----a-w- C:\Windows\System32\drivers\nvstor.sys 2011-03-11 06:23:06 1657216 ----a-w- C:\Windows\System32\drivers\ntfs.sys 2011-03-11 06:23:06 148352 ----a-w- C:\Windows\System32\drivers\nvraid.sys 2011-03-11 06:23:00 410496 ----a-w- C:\Windows\System32\drivers\iaStorV.sys 2011-03-11 06:22:41 107904 ----a-w- C:\Windows\System32\drivers\amdsata.sys 2011-03-11 06:22:40 27008 ----a-w- C:\Windows\System32\drivers\amdxata.sys 2011-03-11 06:19:26 1395712 ----a-w- C:\Windows\System32\mfc42.dll 2011-03-11 06:19:26 1359872 ----a-w- C:\Windows\System32\mfc42u.dll 2011-03-11 06:18:20 2566144 ----a-w- C:\Windows\System32\esent.dll 2011-03-11 06:15:54 96768 ----a-w- C:\Windows\System32\fsutil.exe 2011-03-11 05:40:24 1164288 ----a-w- C:\Windows\SysWow64\mfc42u.dll 2011-03-11 05:40:24 1137664 ----a-w- C:\Windows\SysWow64\mfc42.dll 2011-03-11 05:39:35 1686016 ----a-w- C:\Windows\SysWow64\esent.dll 2011-03-11 05:37:34 74240 ----a-w- C:\Windows\SysWow64\fsutil.exe 2011-03-08 06:14:30 976896 ----a-w- C:\Windows\System32\inetcomm.dll 2011-03-08 05:38:13 740864 ----a-w- C:\Windows\SysWow64\inetcomm.dll 2011-03-04 06:17:25 135168 ----a-w- C:\Windows\apppatch\AppPatch64\AcXtrnal.dll 2011-03-04 06:17:24 347648 ----a-w- C:\Windows\apppatch\AppPatch64\AcLayers.dll 2011-03-03 06:17:10 182272 ----a-w- C:\Windows\System32\dnsrslvr.dll 2011-03-03 06:14:38 30208 ----a-w- C:\Windows\System32\dnscacheugc.exe 2011-03-03 05:27:30 28672 ----a-w- C:\Windows\SysWow64\dnscacheugc.exe 2011-03-03 03:58:32 3133440 ----a-w- C:\Windows\System32\win32k.sys 2011-02-24 06:30:00 476160 ----a-w- C:\Windows\System32\XpsGdiConverter.dll 2011-02-24 06:29:15 1197056 ----a-w- C:\Windows\System32\wininet.dll 2011-02-24 06:24:57 57856 ----a-w- C:\Windows\System32\licmgr10.dll 2011-02-24 05:32:52 288256 ----a-w- C:\Windows\SysWow64\XpsGdiConverter.dll 2011-02-24 05:32:44 981504 ----a-w- C:\Windows\SysWow64\wininet.dll 2011-02-24 05:30:16 44544 ----a-w- C:\Windows\SysWow64\licmgr10.dll 2011-02-24 05:05:13 482816 ----a-w- C:\Windows\System32\html.iec 2011-02-24 04:24:04 1638912 ----a-w- C:\Windows\System32\mshtml.tlb 2011-02-24 04:23:48 386048 ----a-w- C:\Windows\SysWow64\html.iec 2011-02-24 03:50:26 1638912 ----a-w- C:\Windows\SysWow64\mshtml.tlb 2011-02-23 05:16:28 461312 ----a-w- C:\Windows\System32\drivers\srv.sys 2011-02-23 05:16:01 401920 ----a-w- C:\Windows\System32\drivers\srv2.sys 2011-02-23 05:15:50 161792 ----a-w- C:\Windows\System32\drivers\srvnet.sys 2011-02-23 05:15:27 157696 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys 2011-02-23 05:15:14 286720 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys 2011-02-23 05:15:13 126464 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys 2011-02-23 05:15:06 90624 ----a-w- C:\Windows\System32\drivers\bowser.sys 2011-02-20 20:30:14 2868224 ----a-w- C:\Windows\System32\python32.dll 2011-02-19 06:36:13 46080 ----a-w- C:\Windows\System32\atmlib.dll 2011-02-19 05:32:08 34304 ----a-w- C:\Windows\SysWow64\atmlib.dll 2011-02-19 04:13:39 367104 ----a-w- C:\Windows\System32\atmfd.dll 2011-02-19 03:37:02 294912 ----a-w- C:\Windows\SysWow64\atmfd.dll 2011-02-18 06:37:05 612352 ----a-w- C:\Windows\System32\vbscript.dll 2011-02-18 05:36:26 428032 ----a-w- C:\Windows\SysWow64\vbscript.dll 2011-02-12 06:14:41 267776 ----a-w- C:\Windows\System32\FXSCOVER.exe 2011-02-05 12:41:43 556928 ----a-w- C:\Windows\System32\winresume.efi 2011-02-05 12:41:35 640896 ----a-w- C:\Windows\System32\winload.efi 2011-02-05 12:41:24 20352 ----a-w- C:\Windows\System32\kdusb.dll 2011-02-05 12:41:24 19328 ----a-w- C:\Windows\System32\kd1394.dll 2011-02-05 12:41:23 17792 ----a-w- C:\Windows\System32\kdcom.dll 2011-02-05 12:39:21 603976 ----a-w- C:\Windows\System32\winload.exe 2011-02-05 12:39:21 518160 ----a-w- C:\Windows\System32\winresume.exe . ============= FINISH: 17:04:58,29 ===============