OTL logfile created on: 2015-11-08 11:28:46 - Run 2 OTL by OldTimer - Version 3.2.17.3 Folder = C:\Users\Hoszi.Hoszi-Komputer\Desktop 64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 8,00 Gb Total Physical Memory | 7,00 Gb Available Physical Memory | 89,00% Memory free 16,00 Gb Paging File | 15,00 Gb Available in Paging File | 95,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 199,90 Gb Total Space | 174,93 Gb Free Space | 87,51% Space Free | Partition Type: NTFS Drive D: | 731,51 Gb Total Space | 662,86 Gb Free Space | 90,62% Space Free | Partition Type: NTFS Computer Name: HOSZI-KOMPUTER | User Name: Hoszi | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2015-11-08 11:08:44 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\Hoszi.Hoszi-Komputer\Desktop\OTL_3.2.17.3.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2015-11-08 11:08:44 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\Hoszi.Hoszi-Komputer\Desktop\OTL_3.2.17.3.exe MOD - [2010-11-21 04:23:55 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll MOD - [2009-07-14 02:09:00 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\normaliz.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV:[b]64bit:[/b] - [2009-07-14 02:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt) SRV - [2010-03-18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32) SRV - [2009-06-10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV:[b]64bit:[/b] - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdvgkmd.sys -- (VGPU) DRV:[b]64bit:[/b] - [2011-10-31 18:45:23 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata) DRV:[b]64bit:[/b] - [2011-10-31 18:45:23 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata) DRV:[b]64bit:[/b] - [2011-05-02 11:41:22 | 000,040,744 | ---- | M] (Dawicontrol GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\DC600e.sys -- (DC600e) DRV:[b]64bit:[/b] - [2011-05-02 11:41:14 | 000,049,752 | ---- | M] (Dawicontrol GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\DC324e.sys -- (DC324e) DRV:[b]64bit:[/b] - [2011-05-02 11:41:06 | 000,040,344 | ---- | M] (Dawicontrol GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\DC300e.sys -- (DC300e) DRV:[b]64bit:[/b] - [2011-05-02 11:40:56 | 000,048,328 | ---- | M] (Dawicontrol GmbH) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\DC3410.sys -- (DC3410) DRV:[b]64bit:[/b] - [2011-05-02 11:40:50 | 000,048,360 | ---- | M] (Dawicontrol GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\DC4300.sys -- (DC4300) DRV:[b]64bit:[/b] - [2011-05-02 11:40:42 | 000,048,136 | ---- | M] (Dawicontrol GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\DC154.sys -- (DC154) DRV:[b]64bit:[/b] - [2011-05-02 11:40:32 | 000,039,832 | ---- | M] (Dawicontrol GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\DC150.sys -- (DC150) DRV:[b]64bit:[/b] - [2011-05-02 11:40:20 | 000,039,320 | ---- | M] (Dawicontrol GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\DC133.sys -- (DC133) DRV:[b]64bit:[/b] - [2011-03-07 10:01:46 | 000,313,136 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mvs91xx.sys -- (mvs91xx) DRV:[b]64bit:[/b] - [2011-03-04 12:46:10 | 000,078,976 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amd_sata.sys -- (amd_sata) DRV:[b]64bit:[/b] - [2011-03-04 12:46:10 | 000,032,896 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_xata.sys -- (amd_xata) DRV:[b]64bit:[/b] - [2011-03-02 17:58:58 | 000,036,448 | ---- | M] (Asmedia Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\asahci64.sys -- (asahci64) DRV:[b]64bit:[/b] - [2011-02-14 07:08:24 | 000,024,880 | ---- | M] (Marvell Semiconductor Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mv91cons.sys -- (mv91cons) DRV:[b]64bit:[/b] - [2011-02-14 07:08:22 | 000,310,064 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\mv91xx.sys -- (mv91xx) DRV:[b]64bit:[/b] - [2011-02-09 14:26:50 | 000,026,712 | ---- | M] (JMicron Technology Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\johci.sys -- (johci) DRV:[b]64bit:[/b] - [2010-12-02 18:23:46 | 000,161,904 | ---- | M] (VIA Technologies Inc.,Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\viamrx64.sys -- (viamrx64) DRV:[b]64bit:[/b] - [2010-11-25 12:27:40 | 000,120,408 | ---- | M] (JMicron Technology Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\jraid.sys -- (JRAID) DRV:[b]64bit:[/b] - [2010-11-21 04:24:43 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport) DRV:[b]64bit:[/b] - [2010-11-21 04:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt) DRV:[b]64bit:[/b] - [2010-11-21 04:23:48 | 000,117,248 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tsusbhub.sys -- (tsusbhub) DRV:[b]64bit:[/b] - [2010-11-21 04:23:48 | 000,088,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Synth3dVsc.sys -- (Synth3dVsc) DRV:[b]64bit:[/b] - [2010-11-21 04:23:48 | 000,071,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc) DRV:[b]64bit:[/b] - [2010-11-21 04:23:48 | 000,034,816 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\terminpt.sys -- (terminpt) DRV:[b]64bit:[/b] - [2010-11-21 04:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD) DRV:[b]64bit:[/b] - [2010-11-21 04:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD) DRV:[b]64bit:[/b] - [2010-11-06 08:45:46 | 000,438,808 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor) DRV:[b]64bit:[/b] - [2010-10-26 17:42:24 | 000,181,040 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mv61xx.sys -- (mv61xx) DRV:[b]64bit:[/b] - [2010-09-23 16:48:52 | 000,264,272 | ---- | M] (Advanced Micro Devices, Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ahcix64.sys -- (ahcix64) DRV:[b]64bit:[/b] - [2010-06-15 01:09:18 | 000,465,488 | ---- | M] (LSI Corporation, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\MegaSR1.sys -- (MegaSR1) DRV:[b]64bit:[/b] - [2010-02-11 13:01:20 | 000,026,776 | ---- | M] (VIA Technologies, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\xfiltx64.sys -- (xfiltx64) DRV:[b]64bit:[/b] - [2010-02-11 13:00:22 | 000,015,000 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\videX64.sys -- (videX64) DRV:[b]64bit:[/b] - [2009-12-31 18:37:56 | 000,168,032 | ---- | M] (HighPoint Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rr2522.sys -- (rr2522) DRV:[b]64bit:[/b] - [2009-12-31 18:23:58 | 000,162,400 | ---- | M] (HighPoint Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rr2340.sys -- (rr2340) DRV:[b]64bit:[/b] - [2009-12-21 14:56:12 | 000,155,232 | ---- | M] (HighPoint Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rr62x.sys -- (rr62x) DRV:[b]64bit:[/b] - [2009-11-09 03:24:12 | 000,052,768 | ---- | M] (ARECA Technology Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\arcm_a64.sys -- (arcm_a64) DRV:[b]64bit:[/b] - [2009-07-14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs) DRV:[b]64bit:[/b] - [2009-07-14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2) DRV:[b]64bit:[/b] - [2009-07-14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor) DRV:[b]64bit:[/b] - [2009-07-07 23:56:56 | 000,226,616 | ---- | M] (Advanced Micro Devices, Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ahcix64s.sys -- (ahcix64s) DRV:[b]64bit:[/b] - [2009-06-12 11:28:24 | 000,170,528 | ---- | M] (HighPoint Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\2310_00.sys -- (2310_00) DRV:[b]64bit:[/b] - [2009-06-10 21:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\wbem\ntfs.mof -- (Ntfs) DRV:[b]64bit:[/b] - [2009-06-10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv) DRV:[b]64bit:[/b] - [2009-06-10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv) DRV:[b]64bit:[/b] - [2009-06-10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a) DRV:[b]64bit:[/b] - [2009-06-10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir) DRV:[b]64bit:[/b] - [2009-05-25 17:56:54 | 000,017,440 | ---- | M] (HighPoint Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hptiop.sys -- (hptiop) DRV:[b]64bit:[/b] - [2009-02-09 10:25:04 | 000,333,864 | ---- | M] (Silicon Image, Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Si3531.sys -- (Si3531) DRV:[b]64bit:[/b] - [2008-05-15 22:23:21 | 000,028,208 | ---- | M] (VMware, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmci.sys -- (vmci) DRV:[b]64bit:[/b] - [2008-05-05 17:49:08 | 000,152,096 | ---- | M] (HighPoint Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rr232x.sys -- (rr232x) DRV:[b]64bit:[/b] - [2007-11-13 15:47:18 | 000,080,424 | ---- | M] (Silicon Image, Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\PnP680.sys -- (Pnp680) DRV:[b]64bit:[/b] - [2007-11-01 14:21:14 | 000,152,096 | ---- | M] (HighPoint Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hptmv6.sys -- (hptmv6) DRV:[b]64bit:[/b] - [2007-11-01 14:20:10 | 000,153,632 | ---- | M] (HighPoint Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rr2210.sys -- (rr2210) DRV:[b]64bit:[/b] - [2007-11-01 14:19:44 | 000,159,264 | ---- | M] (HighPoint Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rr174x.sys -- (rr174x) DRV:[b]64bit:[/b] - [2007-11-01 14:19:04 | 000,124,448 | ---- | M] (HighPoint Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rr172x.sys -- (rr172x) DRV:[b]64bit:[/b] - [2007-10-03 15:51:00 | 000,022,056 | ---- | M] (Silicon Image, Inc) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SiWinAcc.sys -- (SiFilter) DRV:[b]64bit:[/b] - [2007-10-03 15:50:52 | 000,017,448 | ---- | M] (Silicon Image, Inc) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SiRemFil.sys -- (SiRemFil) DRV:[b]64bit:[/b] - [2007-10-03 15:50:26 | 000,090,664 | ---- | M] (Silicon Image, Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SI3132.sys -- (SI3132) DRV:[b]64bit:[/b] - [2007-04-11 15:02:42 | 000,163,632 | ---- | M] (Silicon Image, Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SI3114r.sys -- (SI3114r) DRV:[b]64bit:[/b] - [2007-02-01 16:53:08 | 000,164,656 | ---- | M] (Silicon Image, Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SI3112r.sys -- (SI3112r) DRV:[b]64bit:[/b] - [2006-11-10 11:48:48 | 000,099,120 | ---- | M] (Silicon Image, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SI3114.sys -- (SI3114) DRV:[b]64bit:[/b] - [2006-11-02 16:25:04 | 000,113,456 | ---- | M] (Silicon Image, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SI3124.sys -- (SI3124) DRV:[b]64bit:[/b] - [2006-09-20 11:38:28 | 000,334,640 | ---- | M] (Silicon Image, Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Si3124r5.sys -- (Si3124r5) DRV:[b]64bit:[/b] - [2006-09-18 14:26:04 | 000,093,472 | ---- | M] (HighPoint Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hptmv.sys -- (hptmv) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKU\S-1-5-21-4077477395-1464909123-579422615-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.rtwincustomize.net IE - HKU\S-1-5-21-4077477395-1464909123-579422615-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 O1 HOSTS File: ([2009-06-10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O2:[b]64bit:[/b] - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\SysWow64\mctadmin.exe File not found O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\SysWow64\mctadmin.exe File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 0 O7 - HKU\S-1-5-21-4077477395-1464909123-579422615-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O13 - gopher Prefix: missing O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinstall-1_7_0-windows-i586.cab (Java Plug-in 10.0.0) O16 - DPF: {CAFEEFAC-0017-0000-0000-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0-windows-i586.cab (Java Plug-in 1.7.0) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0-windows-i586.cab (Java Plug-in 1.7.0) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinstall-1_7_0-windows-i586.cab (Java Plug-in 10.0.0) O16 - DPF: {CAFEEFAC-0017-0000-0000-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0-windows-i586.cab (Java Plug-in 1.7.0) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0-windows-i586.cab (Java Plug-in 1.7.0) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 172.31.79.142 172.31.79.144 157.54.104.75 157.54.14.146 157.54.14.162 157.54.80.10 O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O32 - HKLM CDRom: AutoRun - 1 O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %* O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2015-11-08 11:13:09 | 000,575,488 | ---- | C] (OldTimer Tools) -- C:\Users\Hoszi.Hoszi-Komputer\Desktop\OTL_3.2.17.3.exe [2015-11-08 10:46:17 | 000,000,000 | ---D | C] -- C:\Windows\pss [2015-11-08 10:20:05 | 000,000,000 | ---D | C] -- C:\Users\Hoszi.Hoszi-Komputer\AppData\Local\ElevatedDiagnostics [2015-11-08 09:49:44 | 000,000,000 | R--D | C] -- C:\Users\Hoszi.Hoszi-Komputer\Searches [2015-11-08 09:49:37 | 000,000,000 | ---D | C] -- C:\Users\Hoszi.Hoszi-Komputer\AppData\Roaming\Identities [2015-11-08 09:49:35 | 000,000,000 | R--D | C] -- C:\Users\Hoszi.Hoszi-Komputer\Contacts [2015-11-08 09:49:16 | 000,000,000 | -HSD | C] -- C:\Users\Hoszi.Hoszi-Komputer\Ustawienia lokalne [2015-11-08 09:49:16 | 000,000,000 | -HSD | C] -- C:\Users\Hoszi.Hoszi-Komputer\AppData\Local\Temporary Internet Files [2015-11-08 09:49:16 | 000,000,000 | -HSD | C] -- C:\Users\Hoszi.Hoszi-Komputer\Szablony [2015-11-08 09:49:16 | 000,000,000 | -HSD | C] -- C:\Users\Hoszi.Hoszi-Komputer\SendTo [2015-11-08 09:49:16 | 000,000,000 | -HSD | C] -- C:\Users\Hoszi.Hoszi-Komputer\Recent [2015-11-08 09:49:16 | 000,000,000 | -HSD | C] -- C:\Users\Hoszi.Hoszi-Komputer\PrintHood [2015-11-08 09:49:16 | 000,000,000 | -HSD | C] -- C:\Users\Hoszi.Hoszi-Komputer\NetHood [2015-11-08 09:49:16 | 000,000,000 | -HSD | C] -- C:\Users\Hoszi.Hoszi-Komputer\Documents\Moje wideo [2015-11-08 09:49:16 | 000,000,000 | -HSD | C] -- C:\Users\Hoszi.Hoszi-Komputer\Documents\Moje obrazy [2015-11-08 09:49:16 | 000,000,000 | -HSD | C] -- C:\Users\Hoszi.Hoszi-Komputer\Moje dokumenty [2015-11-08 09:49:16 | 000,000,000 | -HSD | C] -- C:\Users\Hoszi.Hoszi-Komputer\Documents\Moja muzyka [2015-11-08 09:49:16 | 000,000,000 | -HSD | C] -- C:\Users\Hoszi.Hoszi-Komputer\Menu Start [2015-11-08 09:49:16 | 000,000,000 | -HSD | C] -- C:\Users\Hoszi.Hoszi-Komputer\AppData\Local\Historia [2015-11-08 09:49:16 | 000,000,000 | -HSD | C] -- C:\Users\Hoszi.Hoszi-Komputer\Dane aplikacji [2015-11-08 09:49:16 | 000,000,000 | -HSD | C] -- C:\Users\Hoszi.Hoszi-Komputer\AppData\Local\Dane aplikacji [2015-11-08 09:49:16 | 000,000,000 | -HSD | C] -- C:\Users\Hoszi.Hoszi-Komputer\Cookies [2015-11-08 09:49:15 | 000,000,000 | --SD | C] -- C:\Users\Hoszi.Hoszi-Komputer\AppData\Roaming\Microsoft [2015-11-08 09:49:15 | 000,000,000 | R--D | C] -- C:\Users\Hoszi.Hoszi-Komputer\Videos [2015-11-08 09:49:15 | 000,000,000 | R--D | C] -- C:\Users\Hoszi.Hoszi-Komputer\Saved Games [2015-11-08 09:49:15 | 000,000,000 | R--D | C] -- C:\Users\Hoszi.Hoszi-Komputer\Pictures [2015-11-08 09:49:15 | 000,000,000 | R--D | C] -- C:\Users\Hoszi.Hoszi-Komputer\Music [2015-11-08 09:49:15 | 000,000,000 | R--D | C] -- C:\Users\Hoszi.Hoszi-Komputer\Links [2015-11-08 09:49:15 | 000,000,000 | R--D | C] -- C:\Users\Hoszi.Hoszi-Komputer\Favorites [2015-11-08 09:49:15 | 000,000,000 | R--D | C] -- C:\Users\Hoszi.Hoszi-Komputer\Downloads [2015-11-08 09:49:15 | 000,000,000 | R--D | C] -- C:\Users\Hoszi.Hoszi-Komputer\Documents [2015-11-08 09:49:15 | 000,000,000 | R--D | C] -- C:\Users\Hoszi.Hoszi-Komputer\Desktop [2015-11-08 09:49:15 | 000,000,000 | -H-D | C] -- C:\Users\Hoszi.Hoszi-Komputer\AppData [2015-11-08 09:49:15 | 000,000,000 | ---D | C] -- C:\Users\Hoszi.Hoszi-Komputer\AppData\Local\Temp [2015-11-08 09:49:15 | 000,000,000 | ---D | C] -- C:\Users\Hoszi.Hoszi-Komputer\AppData\Local\Microsoft [2015-10-12 17:03:32 | 000,000,000 | ---D | C] -- C:\Program Files\TAP-Windows [2015-10-12 17:03:27 | 000,000,000 | ---D | C] -- C:\Program Files\CyberGhost 5 [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2015-11-08 11:28:38 | 000,786,432 | -H-- | M] () -- C:\Users\Hoszi.Hoszi-Komputer\NTUSER.DAT [2015-11-08 11:28:08 | 000,003,892 | ---- | M] () -- C:\Windows\notepad.ini [2015-11-08 11:16:22 | 001,662,556 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2015-11-08 11:16:22 | 000,737,730 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat [2015-11-08 11:16:22 | 000,651,938 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2015-11-08 11:16:22 | 000,154,418 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat [2015-11-08 11:16:22 | 000,120,870 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2015-11-08 11:12:59 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf [2015-11-08 11:12:05 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT [2015-11-08 11:12:02 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2015-11-08 11:10:43 | 000,016,832 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2015-11-08 11:10:43 | 000,016,832 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2015-11-08 11:08:44 | 000,575,488 | ---- | M] (OldTimer Tools) -- C:\Users\Hoszi.Hoszi-Komputer\Desktop\OTL_3.2.17.3.exe [2015-11-08 10:46:25 | 001,257,760 | -H-- | M] () -- C:\Users\Hoszi.Hoszi-Komputer\AppData\Local\IconCache.db [2015-11-08 09:50:51 | 000,524,288 | -HS- | M] () -- C:\Users\Hoszi.Hoszi-Komputer\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000002.regtrans-ms [2015-11-08 09:50:51 | 000,524,288 | -HS- | M] () -- C:\Users\Hoszi.Hoszi-Komputer\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000001.regtrans-ms [2015-11-08 09:50:51 | 000,065,536 | -HS- | M] () -- C:\Users\Hoszi.Hoszi-Komputer\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TM.blf [2015-11-08 09:49:29 | 000,045,008 | ---- | M] () -- C:\Users\Hoszi.Hoszi-Komputer\AppData\Local\GDIPFONTCACHEV1.DAT [2015-11-08 09:49:16 | 000,000,020 | -HS- | M] () -- C:\Users\Hoszi.Hoszi-Komputer\ntuser.ini [color=#E56717]========== Files Created - No Company Name ==========[/color] [2015-11-08 11:12:59 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf [2015-11-08 09:50:50 | 001,257,760 | -H-- | C] () -- C:\Users\Hoszi.Hoszi-Komputer\AppData\Local\IconCache.db [2015-11-08 09:49:29 | 000,045,008 | ---- | C] () -- C:\Users\Hoszi.Hoszi-Komputer\AppData\Local\GDIPFONTCACHEV1.DAT [2015-11-08 09:49:16 | 000,524,288 | -HS- | C] () -- C:\Users\Hoszi.Hoszi-Komputer\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000002.regtrans-ms [2015-11-08 09:49:16 | 000,524,288 | -HS- | C] () -- C:\Users\Hoszi.Hoszi-Komputer\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000001.regtrans-ms [2015-11-08 09:49:16 | 000,262,144 | -HS- | C] () -- C:\Users\Hoszi.Hoszi-Komputer\ntuser.dat.LOG1 [2015-11-08 09:49:16 | 000,065,536 | -HS- | C] () -- C:\Users\Hoszi.Hoszi-Komputer\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TM.blf [2015-11-08 09:49:16 | 000,000,020 | -HS- | C] () -- C:\Users\Hoszi.Hoszi-Komputer\ntuser.ini [2015-11-08 09:49:16 | 000,000,000 | -HS- | C] () -- C:\Users\Hoszi.Hoszi-Komputer\ntuser.dat.LOG2 [2015-11-08 09:49:15 | 000,786,432 | -H-- | C] () -- C:\Users\Hoszi.Hoszi-Komputer\NTUSER.DAT [2015-10-05 18:02:15 | 000,001,250 | ---- | C] () -- C:\ProgramData\hpzinstall.log [2015-10-03 01:14:05 | 001,637,078 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2011-10-08 09:49:46 | 000,003,892 | ---- | C] () -- C:\Windows\notepad.ini [2009-07-14 05:54:24 | 000,000,174 | -HS- | C] () -- C:\Program Files\desktop.ini [2009-07-14 05:54:24 | 000,000,174 | -HS- | C] () -- C:\Program Files (x86)\desktop.ini [2009-07-14 03:35:42 | 000,001,405 | ---- | C] () -- C:\Windows\msdfmap.ini [2009-07-14 03:34:57 | 000,000,403 | ---- | C] () -- C:\Windows\win.ini [2009-07-14 03:34:57 | 000,000,219 | ---- | C] () -- C:\Windows\system.ini [2009-07-14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll [2009-07-13 22:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll [color=#E56717]========== LOP Check ==========[/color] [2015-10-04 19:43:15 | 000,000,000 | ---D | M] -- C:\Users\Hoszi\AppData\Roaming\Guild Wars 2 [2015-10-16 16:08:35 | 000,000,000 | ---D | M] -- C:\Users\Hoszi\AppData\Roaming\Mumble [2015-11-08 09:48:11 | 000,000,000 | ---D | M] -- C:\Users\Hoszi\AppData\Roaming\Spotify [2015-10-12 16:53:15 | 000,000,000 | ---D | M] -- C:\Users\Hoszi\AppData\Roaming\TeamViewer [2015-11-07 14:59:22 | 000,000,000 | ---D | M] -- C:\Users\Hoszi\AppData\Roaming\TS3Client [2015-11-08 09:48:11 | 000,000,000 | ---D | M] -- C:\Users\Hoszi\AppData\Roaming\uTorrent [2009-07-14 06:08:49 | 000,005,062 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [color=#E56717]========== Purity Check ==========[/color] < End of report >