[code] OTS logfile created on: 2011-07-28 14:51:32 - Run 1 OTS by OldTimer - Version 3.1.44.0 Folder = C:\Users\PRZEMEK\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 8.0.7601.17514) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 4,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 59,00% Memory free 8,00 Gb Paging File | 6,00 Gb Available in Paging File | 74,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 452,67 Gb Total Space | 51,99 Gb Free Space | 11,48% Space Free | Partition Type: NTFS Drive D: | 12,80 Gb Total Space | 2,12 Gb Free Space | 16,59% Space Free | Partition Type: NTFS E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: PRZEMEK-PRZEMEK Current User Name: PRZEMEK Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Include 64bit Scans Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days [Processes - Safe List] ots.scr -> C:\Users\PRZEMEK\Downloads\OTS.scr -> [2011-07-28 14:49:20 | 000,645,120 | ---- | M] (OldTimer Tools) firefox.exe -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe -> [2011-07-08 09:50:28 | 000,924,632 | ---- | M] (Mozilla Corporation) hamachi-2-ui.exe -> C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe -> [2011-05-25 17:29:54 | 001,951,112 | ---- | M] (LogMeIn Inc.) gg.exe -> C:\Program Files (x86)\Gadu-Gadu 10\gg.exe -> [2011-05-05 14:44:38 | 013,345,376 | ---- | M] (GG Network S.A.) tomtomhomeservice.exe -> C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe -> [2011-04-22 14:21:10 | 000,092,592 | ---- | M] (TomTom) utorrent.exe -> C:\Program Files (x86)\uTorrent\uTorrent.exe -> [2011-03-29 14:59:26 | 000,399,736 | ---- | M] (BitTorrent, Inc.) hpdrvmntsvc.exe -> C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe -> [2011-01-25 17:40:22 | 000,092,216 | ---- | M] (Hewlett-Packard Company) modemlistener.exe -> C:\Program Files (x86)\blueconnect\BackgroundService\ModemListener.exe -> [2010-12-07 10:17:08 | 000,102,400 | ---- | M] () avgcsrvx.exe -> C:\Program Files (x86)\AVG\AVG9\avgcsrvx.exe -> [2010-11-24 15:31:20 | 000,725,344 | ---- | M] (AVG Technologies CZ, s.r.o.) dcshelper.exe -> C:\ProgramData\DatacardService\DCSHelper.exe -> [2010-11-16 15:37:30 | 000,230,912 | ---- | M] (Huawei Technologies Co., Ltd.) servicemanager.exe -> C:\Program Files (x86)\blueconnect\BackgroundService\ServiceManager.exe -> [2010-07-23 09:45:26 | 000,045,056 | ---- | M] () avgemc.exe -> C:\Program Files (x86)\AVG\AVG9\avgemc.exe -> [2010-07-21 10:12:08 | 000,921,952 | ---- | M] (AVG Technologies CZ, s.r.o.) avgwdsvc.exe -> C:\Program Files (x86)\AVG\AVG9\avgwdsvc.exe -> [2010-07-17 11:00:30 | 000,308,136 | ---- | M] (AVG Technologies CZ, s.r.o.) starwindserviceae.exe -> C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -> [2009-12-23 23:34:20 | 000,370,688 | ---- | M] (StarWind Software) dphostw.exe -> C:\Program Files (x86)\DigitalPersona\Bin\DpHostW.exe -> [2009-12-01 14:37:48 | 000,322,624 | ---- | M] (DigitalPersona, Inc.) ftrtsvc.exe -> C:\Program Files (x86)\Common Files\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe -> [2009-10-14 16:44:38 | 000,090,112 | ---- | M] (France Telecom SA) tvcapsvc.exe -> c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\TVCapSvc.exe -> [2009-07-24 19:24:14 | 000,275,840 | ---- | M] () tvagent.exe -> c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe -> [2009-07-24 19:24:02 | 000,427,304 | ---- | M] (CyberLink Corp.) dvdagent.exe -> c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe -> [2009-07-23 21:45:52 | 000,128,296 | ---- | M] (CyberLink Corp.) clmlsvc.exe -> c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe -> [2009-07-23 12:37:16 | 000,206,120 | ---- | M] (CyberLink) ouc.exe -> C:\Users\PRZEMEK\AppData\Roaming\PLAY ONLINE\ouc.exe -> [2009-04-14 21:28:46 | 000,110,592 | R--- | M] (Huawei Technologies Co., Ltd.) [Modules - Safe List] ots.scr -> C:\Users\PRZEMEK\Downloads\OTS.scr -> [2011-07-28 14:49:20 | 000,645,120 | ---- | M] (OldTimer Tools) comctl32.dll -> C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll -> [2010-11-20 13:55:09 | 001,680,896 | ---- | M] (Microsoft Corporation) [Win32 Services - Safe List] 64bit-(SolutoService) [Auto | Running] -> C:\Program Files\Soluto\SolutoService.exe -> [2011-07-07 08:49:42 | 000,376,352 | ---- | M] (Soluto) 64bit-(cFosSpeedS) [On_Demand | Running] -> C:\Program Files\cFosSpeed\spd.exe -> [2010-12-02 16:47:56 | 000,460,984 | R--- | M] (cFos Software GmbH) 64bit-(wlcrasvc) [Disabled | Stopped] -> C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -> [2010-09-22 18:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) 64bit-(STacSV) [Auto | Running] -> C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\stacsv64.exe -> [2010-03-23 14:53:06 | 000,247,808 | ---- | M] (IDT, Inc.) 64bit-(WinDefend) [On_Demand | Stopped] -> C:\Program Files\Windows Defender\MpSvc.dll -> [2009-07-14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) 64bit-(vcsFPService) [Auto | Running] -> C:\Windows\SysNative\vcsFPService.exe -> [2009-07-12 23:18:24 | 001,924,400 | ---- | M] (Validity Sensors, Inc.) 64bit-(hpsrv) [Auto | Running] -> C:\Windows\SysNative\hpservice.exe -> [2009-07-08 14:49:02 | 000,030,520 | ---- | M] (Hewlett-Packard) 64bit-(AMD External Events Utility) [Auto | Running] -> C:\Windows\SysNative\atiesrxx.exe -> [2009-07-02 20:16:06 | 000,203,264 | ---- | M] (AMD) 64bit-(btwdins) [On_Demand | Running] -> C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe -> [2009-07-01 19:54:02 | 000,864,032 | ---- | M] (Broadcom Corporation.) 64bit-(AESTFilters) [On_Demand | Running] -> C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_960c1f056a541068\AESTSr64.exe -> [2009-03-02 18:42:58 | 000,089,600 | ---- | M] (Andrea Electronics Corporation) (Steam Client Service) Steam Client Service [On_Demand | Stopped] -> C:\Program Files (x86)\Common Files\Steam\SteamService.exe -> [2011-06-04 16:02:14 | 000,403,240 | ---- | M] (Valve Corporation) (Hamachi2Svc) LogMeIn Hamachi 2.0 Tunneling Engine [Auto | Running] -> C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe -> [2011-05-25 17:29:52 | 002,275,720 | ---- | M] (LogMeIn Inc.) (TomTomHOMEService) TomTomHOMEService [Auto | Running] -> C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe -> [2011-04-22 14:21:10 | 000,092,592 | ---- | M] (TomTom) (HPDrvMntSvc.exe) HP Quick Synchronization Service [Auto | Running] -> C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe -> [2011-01-25 17:40:22 | 000,092,216 | ---- | M] (Hewlett-Packard Company) (npggsvc) nProtect GameGuard Service [On_Demand | Stopped] -> C:\Windows\SysWow64\GameMon.des -> [2010-11-30 18:03:00 | 004,023,760 | ---- | M] (INCA Internet Co., Ltd.) (GamesAppService) GamesAppService [On_Demand | Stopped] -> C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe -> [2010-10-12 19:59:12 | 000,206,072 | ---- | M] (WildTangent, Inc.) (Modem Device Helper) Modem Device Helper [Auto | Running] -> C:\Program Files (x86)\blueconnect\BackgroundService\ServiceManager.exe -> [2010-07-23 09:45:26 | 000,045,056 | ---- | M] () (avg9emc) AVG Free E-mail Scanner [Auto | Running] -> C:\Program Files (x86)\AVG\AVG9\avgemc.exe -> [2010-07-21 10:12:08 | 000,921,952 | ---- | M] (AVG Technologies CZ, s.r.o.) (avg9wd) AVG Free WatchDog [Auto | Running] -> C:\Program Files (x86)\AVG\AVG9\avgwdsvc.exe -> [2010-07-17 11:00:30 | 000,308,136 | ---- | M] (AVG Technologies CZ, s.r.o.) (clr_optimization_v4.0.30319_32) Microsoft .NET Framework NGEN v4.0.30319_X86 [Auto | Stopped] -> C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -> [2010-03-18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) (StarWindServiceAE) StarWind AE Service [Auto | Running] -> C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -> [2009-12-23 23:34:20 | 000,370,688 | ---- | M] (StarWind Software) (DpHost) Biometric Authentication Service [On_Demand | Running] -> C:\Program Files (x86)\DigitalPersona\Bin\DpHostW.exe -> [2009-12-01 14:37:48 | 000,322,624 | ---- | M] (DigitalPersona, Inc.) (FTRTSVC) France Telecom Routing Table Service [Auto | Running] -> C:\Program Files (x86)\Common Files\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe -> [2009-10-14 16:44:38 | 000,090,112 | ---- | M] (France Telecom SA) (TVCapSvc) TV Background Capture Service (TVBCS) [On_Demand | Running] -> c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\TVCapSvc.exe -> [2009-07-24 19:24:14 | 000,275,840 | ---- | M] () (vcsFPService) Validity VCS Fingerprint Service [Auto | Running] -> C:\Windows\SysWOW64\vcsFPService.exe -> [2009-07-12 23:04:26 | 001,656,112 | ---- | M] (Validity Sensors, Inc.) (clr_optimization_v2.0.50727_32) Microsoft .NET Framework NGEN v2.0.50727_X86 [Disabled | Stopped] -> C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -> [2009-06-10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Driver Services - Safe List] 64bit-(Soluto) Soluto [File_System | Boot | Running] -> C:\Windows\SysNative\drivers\Soluto.sys -> [2011-07-07 08:34:08 | 000,054,728 | ---- | M] (Soluto LTD.) 64bit-(USBAAPL64) Apple Mobile USB Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\usbaapl64.sys -> [2011-05-10 08:06:08 | 000,051,712 | ---- | M] (Apple, Inc.) 64bit-(AvgTdiA) AVG Free Network Redirector x64 [Kernel | System | Running] -> C:\Windows\SysNative\drivers\avgtdia.sys -> [2011-05-06 11:41:56 | 000,317,520 | ---- | M] (AVG Technologies CZ, s.r.o.) 64bit-(amdsata) amdsata [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\amdsata.sys -> [2011-03-11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) 64bit-(amdxata) amdxata [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\amdxata.sys -> [2011-03-11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) 64bit-(sptd) sptd [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\sptd.sys -> [2011-01-12 17:19:07 | 000,503,352 | ---- | M] () 64bit-(cFosSpeed) cFosSpeed for faster Internet connections (NDIS 6) [Kernel | System | Running] -> C:\Windows\SysNative\drivers\cfosspeed6.sys -> [2010-12-02 16:48:04 | 001,352,376 | ---- | M] (cFos Software GmbH) 64bit-(HpSAMD) HpSAMD [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\HpSAMD.sys -> [2010-11-20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) 64bit-(TsUsbFlt) TsUsbFlt [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\TsUsbFlt.sys -> [2010-11-20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) 64bit-(sdbus) sdbus [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\sdbus.sys -> [2010-11-20 11:37:42 | 000,109,056 | ---- | M] (Microsoft Corporation) 64bit-(huawei_enumerator) huawei_enumerator [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\ew_jubusenum.sys -> [2010-10-09 14:49:52 | 000,085,504 | ---- | M] (Huawei Technologies Co., Ltd.) 64bit-(fssfltr) fssfltr [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\fssfltr.sys -> [2010-09-23 00:36:48 | 000,048,488 | ---- | M] (Microsoft Corporation) 64bit-(ewusbnet) HUAWEI USB-NDIS miniport [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\ewusbnet.sys -> [2010-08-31 18:09:00 | 000,256,000 | ---- | M] (Huawei Technologies Co., Ltd.) 64bit-(hwdatacard) Huawei DataCard USB Modem and USB Serial [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\ewusbmdm.sys -> [2010-08-07 17:49:04 | 000,121,600 | ---- | M] (Huawei Technologies Co., Ltd.) 64bit-(ew_hwusbdev) Huawei MobileBroadband USB PNP Device [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\ew_hwusbdev.sys -> [2010-07-27 09:52:16 | 000,117,248 | ---- | M] (Huawei Technologies Co., Ltd.) 64bit-(jrdusbser) Mobile Connector Device for Legacy Serial Communication [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\jrdusbser.sys -> [2010-07-23 09:45:28 | 000,119,680 | ---- | M] (TCT International Mobile Ltd) 64bit-(AvgLdx64) AVG Free AVI Loader Driver x64 [Kernel | System | Running] -> C:\Windows\SysNative\drivers\avgldx64.sys -> [2010-07-17 11:00:04 | 000,269,904 | ---- | M] (AVG Technologies CZ, s.r.o.) 64bit-(AvgMfx64) AVG Free On-access Scanner Minifilter Driver x64 [File_System | System | Running] -> C:\Windows\SysNative\drivers\avgmfx64.sys -> [2010-06-03 13:52:01 | 000,035,536 | ---- | M] (AVG Technologies CZ, s.r.o.) 64bit-(SynTP) Synaptics TouchPad Driver [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\SynTP.sys -> [2010-05-27 22:32:56 | 000,320,560 | ---- | M] (Synaptics Incorporated) 64bit-(STHDA) IDT High Definition Audio CODEC [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\stwrt64.sys -> [2010-03-23 14:53:06 | 000,505,344 | ---- | M] (IDT, Inc.) 64bit-(athr) Atheros Extensible Wireless LAN device driver [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\athrx.sys -> [2009-09-22 03:47:14 | 001,484,800 | ---- | M] (Atheros Communications, Inc.) 64bit-(JMCR) JMCR [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\jmcr.sys -> [2009-07-21 05:39:22 | 000,140,712 | ---- | M] (JMicron Technology Corporation) 64bit-(btwrchid) btwrchid [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\btwrchid.sys -> [2009-07-17 22:58:30 | 000,021,160 | ---- | M] (Broadcom Corporation.) 64bit-(btwl2cap) Bluetooth L2CAP Service [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\btwl2cap.sys -> [2009-07-17 22:58:24 | 000,035,104 | ---- | M] (Broadcom Corporation.) 64bit-(btwavdt) Bluetooth AVDT Service [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\btwavdt.sys -> [2009-07-17 22:58:22 | 000,132,648 | ---- | M] (Broadcom Corporation.) 64bit-(btwaudio) Urz¹dzenie dŸwiêkowe Bluetooth [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\btwaudio.sys -> [2009-07-17 22:58:18 | 000,098,344 | ---- | M] (Broadcom Corporation.) 64bit-(amdsbs) amdsbs [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\amdsbs.sys -> [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) 64bit-(LSI_SAS2) LSI_SAS2 [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\lsi_sas2.sys -> [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) 64bit-(stexstor) stexstor [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\stexstor.sys -> [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) 64bit-(hpdskflt) HP Filter [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\hpdskflt.sys -> [2009-07-08 14:49:08 | 000,030,008 | ---- | M] (Hewlett-Packard) 64bit-(Accelerometer) HP Accelerometer [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\Accelerometer.sys -> [2009-07-08 14:48:50 | 000,041,272 | ---- | M] (Hewlett-Packard) 64bit-(atikmdag) atikmdag [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\atikmdag.sys -> [2009-07-02 20:51:30 | 006,036,480 | ---- | M] (ATI Technologies Inc.) 64bit-(enecir) ENE CIR Receiver [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\enecir.sys -> [2009-06-29 20:17:00 | 000,070,656 | ---- | M] (ENE TECHNOLOGY INC.) 64bit-(SrvHsfV92) SrvHsfV92 [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\VSTDPV6.SYS -> [2009-06-10 23:01:11 | 001,485,312 | ---- | M] (Conexant Systems, Inc.) 64bit-(SrvHsfWinac) SrvHsfWinac [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\VSTCNXT6.SYS -> [2009-06-10 23:01:11 | 000,740,864 | ---- | M] (Conexant Systems, Inc.) 64bit-(SrvHsfHDA) SrvHsfHDA [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\VSTAZL6.SYS -> [2009-06-10 23:01:11 | 000,292,864 | ---- | M] (Conexant Systems, Inc.) 64bit-(AgereSoftModem) Agere Systems Soft Modem [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\agrsm64.sys -> [2009-06-10 23:01:06 | 001,146,880 | ---- | M] (LSI Corp) 64bit-(Ntfs) Ntfs [File_System | On_Demand | Running] -> C:\Windows\SysNative\wbem\ntfs.mof -> [2009-06-10 22:38:56 | 000,000,308 | ---- | M] () 64bit-(igfx) igfx [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\igdkmd64.sys -> [2009-06-10 22:37:05 | 006,108,416 | ---- | M] (Intel Corporation) 64bit-(yukonw7) NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\yk62x64.sys -> [2009-06-10 22:35:33 | 000,389,120 | ---- | M] (Marvell) 64bit-(netw5v64) Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\netw5v64.sys -> [2009-06-10 22:35:28 | 005,434,368 | ---- | M] (Intel Corporation) 64bit-(ebdrv) Broadcom NetXtreme II 10 GigE VBD [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\evbda.sys -> [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) 64bit-(b06bdrv) Broadcom NetXtreme II VBD [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\bxvbda.sys -> [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) 64bit-(b57nd60a) Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0 [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\b57nd60a.sys -> [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) 64bit-(hcw85cir) Hauppauge Consumer Infrared Receiver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\hcw85cir.sys -> [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) 64bit-(AtiHdmiService) ATI Service for HD Audio Codec [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\AtiHdmi.sys -> [2009-06-05 12:20:26 | 000,114,192 | ---- | M] (ATI Research Inc.) 64bit-(RTL8167) Realtek 8167 NT Driver [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\Rt64win7.sys -> [2009-05-23 08:52:30 | 000,215,040 | ---- | M] (Realtek ) 64bit-(AVerAF15) HP DVB-T TV Tuner [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\AVerAF15.sys -> [2009-05-22 08:32:52 | 000,311,424 | ---- | M] (AVerMedia TECHNOLOGIES, Inc.) 64bit-(GEARAspiWDM) GEAR ASPI Filter Driver [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\GEARAspiWDM.sys -> [2009-05-18 13:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) 64bit-(AtiPcie) AMD PCI Express (3GIO) Filter [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\AtiPcie.sys -> [2009-05-05 07:30:28 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) 64bit-(HpqKbFiltr) HpqKbFilter Driver [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\HpqKbFiltr.sys -> [2009-04-29 08:48:32 | 000,018,432 | ---- | M] (Hewlett-Packard Development Company, L.P.) 64bit-(hamachi) Hamachi Network Interface [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\hamachi.sys -> [2009-03-18 17:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) 64bit-(usbfilter) AMD USB Filter Driver [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\usbfilter.sys -> [2009-03-09 07:49:08 | 000,036,408 | ---- | M] (Advanced Micro Devices) 64bit-(ElbyCDIO) ElbyCDIO Driver [Kernel | System | Running] -> C:\Windows\SysNative\drivers\ElbyCDIO.sys -> [2009-02-17 19:11:25 | 000,031,400 | ---- | M] (Elaborate Bytes AG) 64bit-(ElbyCDFL) ElbyCDFL [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\ElbyCDFL.sys -> [2007-02-16 02:57:06 | 000,040,648 | ---- | M] (SlySoft, Inc.) (ElbyCDFL) ElbyCDFL [Kernel | On_Demand | Running] -> C:\Windows\SysWOW64\drivers\ElbyCDFL.sys -> [2007-02-16 02:57:06 | 000,040,648 | ---- | M] (SlySoft, Inc.) (NPPTNT2) NPPTNT2 [Kernel | On_Demand | Stopped] -> C:\Windows\SysWOW64\npptNT2.sys -> [2004-12-30 23:43:08 | 000,004,682 | ---- | M] (INCA Internet Co., Ltd.) [Registry - Safe List] < 64bit-Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> -> HKEY_LOCAL_MACHINE\: Main\\"Start Page" -> http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=pl_PL&c=94&bd=Pavilion&pf=cnnb -> < Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> -> HKEY_LOCAL_MACHINE\: Main\\"Start Page" -> http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=pl_PL&c=94&bd=Pavilion&pf=cnnb -> < Internet Explorer Settings [HKEY_USERS\.DEFAULT\] > -> -> HKEY_USERS\.DEFAULT\: "ProxyEnable" -> 0 -> < Internet Explorer Settings [HKEY_USERS\S-1-5-18\] > -> -> HKEY_USERS\S-1-5-18\: "ProxyEnable" -> 0 -> < Internet Explorer Settings [HKEY_USERS\S-1-5-19\] > -> -> < Internet Explorer Settings [HKEY_USERS\S-1-5-20\] > -> -> < Internet Explorer Settings [HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\] > -> -> HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\: Main\\"Default_Page_URL" -> http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=pl_PL&c=94&bd=Pavilion&pf=cnnb -> HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\: Main\\"Start Page" -> http://www.qooqlle.com/ -> HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\: URLSearchHooks\\"{942cd1d4-9cc1-4d31-876a-ea8f489f7a59}" [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\: "ProxyEnable" -> 0 -> < FireFox Settings [Prefs.js] > -> C:\Users\PRZEMEK\AppData\Roaming\Mozilla\FireFox\Profiles\ga9is2g2.default\prefs.js -> browser.search.selectedEngine -> "qooqlle" -> browser.search.useDBForOrder -> true -> browser.startup.homepage -> "http://www.qooqlle.com/" -> extensions.enabledItems -> jqs@sun.com:1.0 -> extensions.enabledItems -> {888d99e7-e8b5-46a3-851e-1ec45da1e644}:4.0.0 -> extensions.enabledItems -> {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.2.2 -> extensions.enabledItems -> cssreloader@kenneth.io:1.0.2 -> extensions.enabledItems -> {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.8.20100408.6 -> keyword.URL -> "http://www.google.com/cse?cx=partner-pub-5462406484424654%3A8q0sn8-w2ss&ie=ISO-8859-1&q=" -> network.proxy.backup.ftp -> "127.0.0.1" -> network.proxy.backup.ftp_port -> 9666 -> network.proxy.backup.gopher -> "127.0.0.1" -> network.proxy.backup.gopher_port -> 9666 -> network.proxy.backup.socks -> "127.0.0.1" -> network.proxy.backup.socks_port -> 9666 -> network.proxy.backup.ssl -> "127.0.0.1" -> network.proxy.backup.ssl_port -> 9666 -> network.proxy.ftp -> "127.0.0.1" -> network.proxy.ftp_port -> 9666 -> network.proxy.gopher -> "127.0.0.1" -> network.proxy.gopher_port -> 9666 -> network.proxy.http -> "127.0.0.1" -> network.proxy.http_port -> 9666 -> network.proxy.share_proxy_settings -> true -> network.proxy.socks -> "127.0.0.1" -> network.proxy.socks_port -> 9666 -> network.proxy.ssl -> "127.0.0.1" -> network.proxy.ssl_port -> 9666 -> network.proxy.type -> 0 -> < FireFox Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla HKLM\software\mozilla\Firefox\Extensions -> -> HKLM\software\mozilla\Firefox\Extensions\\otis@digitalpersona.com -> C:\PROGRAM FILES (X86)\DIGITALPERSONA\BIN\FIREFOXEXT\ [C:\PROGRAM FILES (X86)\DIGITALPERSONA\BIN\FIREFOXEXT\] -> [2010-03-05 07:54:55 | 000,000,000 | ---D | M] HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758} -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [C:\PROGRAMDATA\REAL\REALPLAYER\BROWSERRECORDPLUGIN\FIREFOX\EXT] -> [2011-04-20 00:14:02 | 000,000,000 | ---D | M] HKLM\software\mozilla\Mozilla Firefox 5.0.1\extensions -> -> HKLM\software\mozilla\Mozilla Firefox 5.0.1\extensions\\Components -> C:\Program Files (x86)\Mozilla Firefox\components [C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\COMPONENTS] -> [2011-07-28 14:20:00 | 000,000,000 | ---D | M] HKLM\software\mozilla\Mozilla Firefox 5.0.1\extensions\\Plugins -> C:\Program Files (x86)\Mozilla Firefox\plugins [C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\PLUGINS] -> [2011-07-23 14:51:13 | 000,000,000 | ---D | M] < FireFox Extensions [User Folders] > -> -> C:\Users\PRZEMEK\AppData\Roaming\mozilla\Extensions -> [2010-08-10 15:17:39 | 000,000,000 | ---D | M] -> C:\Users\PRZEMEK\AppData\Roaming\mozilla\Extensions\home2@tomtom.com -> [2010-08-10 15:17:39 | 000,000,000 | ---D | M] -> C:\Users\PRZEMEK\AppData\Roaming\mozilla\Firefox\Profiles\extensions -> [2011-07-26 00:45:08 | 000,000,000 | ---D | M] -> C:\Users\PRZEMEK\AppData\Roaming\mozilla\Firefox\Profiles\extensions\support@lastpass.com -> [2011-07-26 00:44:35 | 000,000,000 | ---D | M] -> C:\Users\PRZEMEK\AppData\Roaming\mozilla\Firefox\Profiles\ga9is2g2.default\extensions -> [2011-07-26 16:21:40 | 000,000,000 | ---D | M] < FireFox SearchPlugins [User Folders] > -> daemon-search.xml -> C:\Users\PRZEMEK\AppData\Roaming\Mozilla\FireFox\Profiles\ga9is2g2.default\searchplugins\daemon-search.xml -> [2010-08-02 15:54:20 | 000,002,059 | ---- | M] () search.xml -> C:\Users\PRZEMEK\AppData\Roaming\Mozilla\FireFox\Profiles\ga9is2g2.default\searchplugins\search.xml -> [2011-07-28 12:05:09 | 000,001,860 | ---- | M] () < FireFox Extensions [Program Folders] > -> -> C:\Program Files (x86)\Mozilla Firefox\extensions -> [2011-07-28 14:20:00 | 000,000,000 | ---D | M] Skype extension for Firefox -> C:\Program Files (x86)\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1} -> [2010-07-11 12:58:33 | 000,000,000 | ---D | M] Java Console -> C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} -> [2010-06-02 14:03:46 | 000,000,000 | ---D | M] Java Console -> C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} -> [2010-10-01 23:35:52 | 000,000,000 | ---D | M] Java Console -> C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} -> [2010-12-03 19:10:10 | 000,000,000 | ---D | M] Java Console -> C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} -> [2011-01-03 01:09:00 | 000,000,000 | ---D | M] Java Console -> C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} -> [2011-02-17 22:28:02 | 000,000,000 | ---D | M] Java Console -> C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} -> [2011-06-22 11:49:05 | 000,000,000 | ---D | M] No name found -> -> File not found < HOSTS File > ([2011-01-24 16:05:34 | 000,000,808 | ---- | M] - 22 lines) -> C:\Windows\SysNative\Drivers\etc\hosts -> Reset Hosts < 64bit-BHO's [HKEY_LOCAL_MACHINE] > -> 64bit-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ -> {395610AE-C624-4f58-B89E-23733EA00F9A} [HKLM] -> C:\Program Files\DigitalPersona\Bin\DpOtsPluginIe8.dll [DigitalPersona Personal Extension] -> [2009-12-01 14:38:00 | 001,889,856 | ---- | M] (DigitalPersona, Inc.) {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} [HKLM] -> C:\Program Files (x86)\AVG\AVG9\avgssiea.dll [AVG Safe Search] -> [2010-11-24 15:31:56 | 002,334,560 | ---- | M] (AVG Technologies CZ, s.r.o.) < BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ -> {3049C3E9-B461-4BC5-8870-4C09146192CA} [HKLM] -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [RealPlayer Download and Record Plugin for Internet Explorer] -> [2011-04-14 11:53:34 | 000,386,776 | ---- | M] (RealPlayer) {395610AE-C624-4f58-B89E-23733EA00F9A} [HKLM] -> C:\Program Files (x86)\DigitalPersona\Bin\DpOtsPluginIe8.dll [DigitalPersona Personal Extension] -> [2009-12-01 14:37:48 | 001,256,512 | ---- | M] (DigitalPersona, Inc.) {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} [HKLM] -> C:\Program Files (x86)\AVG\AVG9\avgssie.dll [AVG Safe Search] -> [2010-11-24 15:31:56 | 001,623,392 | ---- | M] (AVG Technologies CZ, s.r.o.) {95D9ECF5-2A4D-4550-BE49-70D42F71296E} [HKLM] -> C:\Program Files (x86)\LastPass\LPBar.dll [LastPass Browser Helper Object] -> [2011-07-26 00:44:23 | 007,454,760 | ---- | M] (LastPass) {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} [HKLM] -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [Skype add-on for Internet Explorer] -> [2010-02-08 13:28:14 | 000,804,136 | ---- | M] (Skype Technologies S.A.) {d2ce3e00-f94a-4740-988e-03dc2f38c34f} [HKLM] -> C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [Bing Bar BHO] -> [2010-09-22 13:19:36 | 000,612,616 | ---- | M] (Microsoft Corporation) {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} [HKLM] -> C:\Program Files (x86)\ALLPlayer\Iplex\IplexToALLPlayer.dll [IplexToALLPlayer] -> [2011-02-09 20:29:08 | 000,400,384 | ---- | M] (ALLCinema Ltd.) < 64bit-Internet Explorer ToolBars [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar -> "{32099AAC-C132-4136-9E9A-4E364A424E17}" [HKLM] -> [DAEMON Tools Toolbar] -> File not found < Internet Explorer ToolBars [HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\] > -> HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\Software\Microsoft\Internet Explorer\Toolbar\ -> WebBrowser\\"{942CD1D4-9CC1-4D31-876A-EA8F489F7A59}" [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found < Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> "csrs" -> C:\ProgramData\csrs.exe [%ALLUSERSPROFILE%\csrs.exe] -> [2011-07-23 14:39:29 | 000,339,968 | RHS- | M] (Created with WinAutomation (http://www.WinAutomation.com)) "ERA_SEPANG ModemListener" -> C:\Program Files (x86)\blueconnect\BackgroundService\ModemListener.exe [C:\Program Files (x86)\blueconnect\BackgroundService\ModemListener.exe start] -> [2010-12-07 10:17:08 | 000,102,400 | ---- | M] () "LogMeIn Hamachi Ui" -> C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe ["C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start] -> [2011-05-25 17:29:54 | 001,951,112 | ---- | M] (LogMeIn Inc.) "svhost" -> C:\Program Files (x86)\Common Files\svhost.exe [%COMMONPROGRAMFILES%\svhost.exe] -> [2011-07-23 14:39:29 | 006,855,168 | RHS- | M] () "winloqon" -> C:\ProgramData\winloqon.exe [%ALLUSERSPROFILE%\winloqon.exe] -> [2011-07-23 14:39:29 | 000,331,776 | RHS- | M] (Created with WinAutomation (http://www.WinAutomation.com)) < Run [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> "Sidebar" -> C:\Program Files (x86)\Windows Sidebar\Sidebar.exe [%ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun] -> [2010-11-20 14:17:41 | 001,174,016 | ---- | M] (Microsoft Corporation) < RunOnce [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce -> "mctadmin" -> [C:\Windows\System32\mctadmin.exe] -> File not found < Run [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> "Sidebar" -> C:\Program Files (x86)\Windows Sidebar\Sidebar.exe [%ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun] -> [2010-11-20 14:17:41 | 001,174,016 | ---- | M] (Microsoft Corporation) < RunOnce [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce -> "mctadmin" -> [C:\Windows\System32\mctadmin.exe] -> File not found < Run [HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\] > -> HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> "ALLUpdate" -> C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe ["C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe" "sleep"] -> [2011-02-08 01:44:16 | 001,362,944 | ---- | M] () "ccleaner" -> C:\Program Files (x86)\CCleaner\ccleaner.exe ["C:\Program Files (x86)\CCleaner\ccleaner.exe" /AUTO] -> [2011-06-24 21:53:16 | 002,423,608 | ---- | M] (Piriform Ltd) "TomTomHOME.exe" -> C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe ["C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe" -s] -> [2011-04-22 14:21:10 | 000,247,728 | ---- | M] (TomTom) < CurrentVersion Policy Settings - Explorer [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer \\"NoActiveDesktop" -> [1] -> File not found \\"NoDriveTypeAutoRun" -> [255] -> File not found < CurrentVersion Policy Settings - System [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System \\"ConsentPromptBehaviorAdmin" -> [0] -> File not found \\"ConsentPromptBehaviorUser" -> [3] -> File not found \\"EnableLUA" -> [0] -> File not found \\"PromptOnSecureDesktop" -> [0] -> File not found HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats < CurrentVersion Policy Settings [HKEY_USERS\.DEFAULT] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System \\"WallpaperStyle" -> [2] -> File not found < CurrentVersion Policy Settings [HKEY_USERS\S-1-5-18] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System \\"WallpaperStyle" -> [2] -> File not found < CurrentVersion Policy Settings [HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000] > -> HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer -> HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer \\"NoDriveTypeAutoRun" -> [255] -> File not found < CurrentVersion Policy Settings [HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000] > -> HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System -> HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System \\"WallpaperStyle" -> [2] -> File not found < 64bit-Internet Explorer Menu Extensions [HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\] > -> HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\Software\Microsoft\Internet Explorer\MenuExt\ -> Wyślij obraz do urządzenia &Bluetooth... -> C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm [C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm] -> [2008-12-10 12:36:32 | 000,001,430 | ---- | M] () Wyślij stronę do urządzenia &Bluetooth... -> C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm [C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm] -> [2008-12-10 12:36:32 | 000,003,989 | ---- | M] () < Internet Explorer Menu Extensions [HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\] > -> HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\Software\Microsoft\Internet Explorer\MenuExt\ -> LastPass -> [file://C:\Program Files (x86)\LastPass\context.html?cmd=lastpass] -> File not found Wypełnij formularze LastPass -> [file://C:\Program Files (x86)\LastPass\context.html?cmd=fillforms] -> File not found Wyślij obraz do urządzenia &Bluetooth... -> C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm [C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm] -> [2008-12-10 12:36:32 | 000,001,430 | ---- | M] () Wyślij stronę do urządzenia &Bluetooth... -> C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm [C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm] -> [2008-12-10 12:36:32 | 000,003,989 | ---- | M] () < 64bit-Internet Explorer Extensions [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ -> {CCA281CA-C863-46ef-9331-5C8D4460577F}:C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm [HKLM] -> C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm [Button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015] -> [2008-12-10 12:36:32 | 000,003,989 | ---- | M] () {CCA281CA-C863-46ef-9331-5C8D4460577F}:C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm [HKLM] -> C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm [Menu: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650] -> [2008-12-10 12:36:32 | 000,003,989 | ---- | M] () < Internet Explorer Extensions [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ -> {43699cd0-e34f-11de-8a39-0800200c9a66}:{95D9ECF5-2A4D-4550-BE49-70D42F71296E} [HKLM] -> C:\Program Files (x86)\LastPass\LPBar.dll [Button: LastPass] -> [2011-07-26 00:44:23 | 007,454,760 | ---- | M] (LastPass) {898EA8C8-E7FF-479B-8935-AEC46303B9E5}:{898EA8C8-E7FF-479B-8935-AEC46303B9E5} [HKLM] -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [Button: Skype add-on for Internet Explorer] -> [2010-02-08 13:28:14 | 000,804,136 | ---- | M] (Skype Technologies S.A.) {898EA8C8-E7FF-479B-8935-AEC46303B9E5}:{898EA8C8-E7FF-479B-8935-AEC46303B9E5} [HKLM] -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [Menu: Skype add-on for Internet Explorer] -> [2010-02-08 13:28:14 | 000,804,136 | ---- | M] (Skype Technologies S.A.) {CCA281CA-C863-46ef-9331-5C8D4460577F}:C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm [HKLM] -> C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm [Button: Wyślij do interfejsu Bluetooth] -> [2008-12-10 12:36:32 | 000,003,989 | ---- | M] () {CCA281CA-C863-46ef-9331-5C8D4460577F}:C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm [HKLM] -> C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm [Menu: Wyślij do urządzenia &Bluetooth...] -> [2008-12-10 12:36:32 | 000,003,989 | ---- | M] () < Internet Explorer Extensions [HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\] > -> HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\Software\Microsoft\Internet Explorer\Extensions\ -> 64bit-CmdMapping\\"{CCA281CA-C863-46ef-9331-5C8D4460577F}" [HKLM] -> [@C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015;Wyślij do interfejsu Bluetooth] -> File not found CmdMapping\\"{CCA281CA-C863-46ef-9331-5C8D4460577F}" [HKLM] -> @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 [Wyślij do interfejsu Bluetooth;@C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015;Wyślij do interfejsu Bluetooth] -> File not found < 64bit-Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix "" -> http:// < Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix "" -> http:// < 64bit-Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. -> < 64bit-Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. -> < Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < Trusted Sites Domains [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. -> < Trusted Sites Ranges [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < Trusted Sites Domains [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. -> < Trusted Sites Ranges [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < Trusted Sites Domains [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. -> < Trusted Sites Ranges [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < Trusted Sites Domains [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. -> < Trusted Sites Ranges [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < Trusted Sites Domains [HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\] > -> HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. -> < Trusted Sites Ranges [HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\] > -> HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < 64bit-Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ -> {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab [Reg Error: Key error.] -> < Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ -> {8AD9C840-044E-11D1-B3E9-00805F499D93} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab [Java Plug-in 1.6.0_26] -> {C345E174-3E87-4F41-A01C-B066A90A49B4} [HKLM] -> http://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework/microsoft/wrc32.ocx [Reg Error: Key error.] -> {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab [Java Plug-in 1.6.0_26] -> {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab [Java Plug-in 1.6.0_26] -> < Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\ -> DhcpNameServer -> 192.168.2.1 -> < Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ -> {3065FA2C-E233-483C-81FC-5A73AD10EEE5}\\DhcpNameServer -> 192.168.2.1 (Atheros AR9285 802.11b/g/n WiFi Adapter) -> {877FC55A-768E-4C8A-B76E-E979D3DE741A}\\NameServer -> 89.108.195.20 217.17.34.10 (HUAWEI Mobile Connect - 3G Network Card) -> {CC5CE77D-8F17-4561-94B1-A7C4AE089AB5}\\NameServer -> 89.108.195.20 217.17.34.10 (HUAWEI Mobile Connect - 3G Network Card) -> {D16A5FC7-D620-4913-B977-71C02E853F03}\\NameServer -> 89.108.195.20 217.17.34.10 (HUAWEI Mobile Connect - 3G Network Card) -> {D4EE3D43-E29F-485F-928B-2733B3DA4D1E}\\NameServer -> 192.168.1.1,194.204.152.34 (Realtek PCIe GBE Family Controller) -> {EE8D725B-2B26-4B79-9551-C447AC9D274E}\\NameServer -> 89.108.195.20 217.17.34.10 (HUAWEI Mobile Connect - 3G Network Card) -> < 64bit-AppInit_DLLs [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs -> 64bit-*AppInit_DLLs* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_Dlls -> avgrssta.dll -> C:\Windows\SysNative\avgrssta.dll -> [2010-07-17 11:00:33 | 000,013,048 | ---- | M] (AVG Technologies CZ, s.r.o.) *MultiFile Done* -> -> < 64bit-Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon -> 64bit-*Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell -> explorer.exe -> C:\Windows\explorer.exe -> [2011-02-25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) *MultiFile Done* -> -> 64bit-*UserInit* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\UserInit -> C:\Program Files\Soluto\soluto.exe /userinit -> C:\Program Files\Soluto\soluto.exe -> [2011-07-07 08:49:40 | 001,706,544 | ---- | M] (Soluto) *MultiFile Done* -> -> 64bit-*VMApplet* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet -> SystemPropertiesPerformance.exe -> C:\Windows\SysNative\SystemPropertiesPerformance.exe -> [2009-07-14 03:39:47 | 000,082,432 | ---- | M] (Microsoft Corporation) /pagefile -> -> File not found *MultiFile Done* -> -> < Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon -> *Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell -> explorer.exe -> C:\Windows\SysWow64\explorer.exe -> [2011-02-25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) *MultiFile Done* -> -> *VMApplet* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet -> /pagefile -> -> File not found *MultiFile Done* -> -> < 64bit-SSODL [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad -> "{E6FB5E20-DE35-11CF-9C87-00AA005127ED}" [HKLM] -> Reg Error: Key error. [WebCheck] -> File not found < SSODL [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad -> "{E6FB5E20-DE35-11CF-9C87-00AA005127ED}" [HKLM] -> Reg Error: Key error. [WebCheck] -> File not found < Vista Active Firewall Rules > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules -> {023221C3-2CC5-47AC-8512-BE979C552D2C} -> lport=rpc | profile=private | protocol=6 | dir=in | action=allow | name=@firewallapi.dll,-28535 | app=%systemroot%\system32\spoolsv.exe | svc=spooler | {1474625E-B10F-4CC5-9969-2BB7166FBA84} -> lport=2869 | protocol=6 | dir=in | action=allow | name=windows live communications platform (upnp) | {1A257DC3-0E0C-4E5C-AA36-B4BF1233416E} -> lport=137 | profile=private | protocol=17 | dir=in | action=allow | name=@firewallapi.dll,-28519 | app=system | {1E7BCF7A-99BE-4711-918A-FF0691A33CF5} -> rport=139 | profile=private | protocol=6 | dir=out | action=allow | name=@firewallapi.dll,-28507 | app=system | {26C00828-DC9B-41F3-9E03-8E3512AB78D7} -> lport=1900 | protocol=17 | dir=in | action=allow | name=windows live communications platform (ssdp) | {287B6955-826A-4FA0-8688-83E20DE8E7BE} -> lport=1900 | protocol=17 | dir=in | action=allow | name=windows live messenger (ssdp-in) | app=svchost.exe | svc=ssdpsrv | {3F733B96-FA8D-4411-A08C-CF6F8E9D905F} -> lport=5355 | profile=private | protocol=17 | dir=in | action=allow | name=@firewallapi.dll,-28548 | app=%systemroot%\system32\svchost.exe | svc=dnscache | {45B91870-03B3-4C40-BEC4-3345FA6A2E66} -> lport=2869 | protocol=6 | dir=in | action=allow | name=windows live messenger (upnp-in) | app=system | {4F8D834E-0C28-4FA1-90AB-53ED5F865D8D} -> lport=445 | profile=private | protocol=6 | dir=in | action=allow | name=@firewallapi.dll,-28511 | app=system | {51D6EE4D-EAED-4314-88FE-0F5C24FE07B1} -> rport=5355 | profile=private | protocol=17 | dir=out | action=allow | name=@firewallapi.dll,-28550 | app=%systemroot%\system32\svchost.exe | svc=dnscache | {600FD7DA-17F5-46E1-AE50-39C5853E001C} -> rport=138 | profile=private | protocol=17 | dir=out | action=allow | name=@firewallapi.dll,-28531 | app=system | {7276BBFE-4644-4585-9864-2F6B746663CB} -> lport=139 | profile=private | protocol=6 | dir=in | action=allow | name=@firewallapi.dll,-28503 | app=system | {C0751596-3DE0-45ED-8228-0BCE9F4BD619} -> rport=445 | profile=private | protocol=6 | dir=out | action=allow | name=@firewallapi.dll,-28515 | app=system | {C2CB7403-F445-4B4C-8BF4-6B88EFB93F4E} -> lport=rpc-epmap | profile=private | protocol=6 | dir=in | action=allow | name=@firewallapi.dll,-28539 | svc=rpcss | {D00B0BE7-CEED-4183-850A-5A234579F14E} -> rport=137 | profile=private | protocol=17 | dir=out | action=allow | name=@firewallapi.dll,-28523 | app=system | {F080FE52-22E8-4D78-807B-3A25CDEA9226} -> lport=138 | profile=private | protocol=17 | dir=in | action=allow | name=@firewallapi.dll,-28527 | app=system | < Vista Active Application Exception Rules > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules -> {08C55830-D8D9-4935-9BB5-E6610E175C02} -> profile=public | protocol=17 | dir=in | action=allow | name=microsoft office onenote | app=c:\program files (x86)\microsoft office\office12\onenote.exe | {095FB1B2-6775-4AD7-B95C-B27874746543} -> protocol=17 | dir=in | action=allow | name=μtorrent (udp-in) | app=c:\program files (x86)\utorrent\utorrent.exe | {0ECFAA01-5E4B-44EE-9861-CE4C9B366CC2} -> dir=in | action=allow | name=hp mediasmart dvd | app=c:\program files (x86)\hewlett-packard\media\dvd\hpdvdsmart.exe | {120F8703-230E-4BDD-BF35-23F79DD8D50B} -> profile=public | protocol=17 | dir=in | action=allow | name=steam | app=c:\program files (x86)\valve\steam\steam.exe | {16F422A2-7D2F-4FA2-AB47-478A08DF3712} -> profile=public | dir=in | action=allow | name=avgemc.exe | app=c:\program files (x86)\avg\avg9\avgemc.exe | {1F3DDAFF-1990-4093-9E70-A845FA3C078B} -> profile=public | dir=in | action=allow | name=avgupd.exe | app=c:\program files (x86)\avg\avg9\avgupd.exe | {223D7215-4535-47D4-BE41-E917E9C60E05} -> profile=public | protocol=17 | dir=in | action=allow | name=soluto tray | app=c:\program files\soluto\soluto.exe | {230D7615-6211-446A-9BA4-760AA8B1E8B8} -> profile=public | protocol=17 | dir=in | action=allow | name=soluto update service | app=c:\program files\soluto\solutoupdateservice.exe | {27A40DC4-88A1-4224-AA1A-78E27660F8CB} -> profile=domain | protocol=17 | dir=in | action=allow | name=program startowy dragon age ii | app=c:\program files (x86)\dragon age 2\dragonage2launcher.exe | {2CE3CF0F-41D4-4D07-887C-09DAC8D8793B} -> dir=in | action=allow | name=hp touchsmart video | app=c:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartvideo.exe | {36B461F7-AD2D-4456-A198-9F7E60E24288} -> profile=domain | protocol=17 | dir=in | action=allow | name=dragon age ii | app=c:\program files (x86)\dragon age 2\bin_ship\dragonage2.exe | {3DF6DB6A-9113-439E-914D-D0597C40EAE4} -> dir=in | action=allow | name=cyberlink media service | app=c:\program files (x86)\hewlett-packard\touchsmart\media\kernel\clml\clmlsvc.exe | {43CBB697-6AFE-4990-9FEC-50B73AAFD059} -> profile=domain | protocol=6 | dir=in | action=allow | name=dragon age ii | app=c:\program files (x86)\dragon age 2\bin_ship\dragonage2.exe | {4D2F6D47-8441-42ED-9E51-6DB948F44DD7} -> protocol=6 | dir=in | action=allow | name=μtorrent (tcp-in) | app=c:\program files (x86)\utorrent\utorrent.exe | {555DD9F3-C32D-451B-98C5-D6DBFA10D6E4} -> profile=public | protocol=17 | dir=in | action=allow | name=usługa bonjour | app=c:\program files (x86)\bonjour\mdnsresponder.exe | {6759A318-6610-4F49-9232-97765F583ABE} -> profile=public | protocol=6 | dir=in | action=allow | name=microsoft office onenote | app=c:\program files (x86)\microsoft office\office12\onenote.exe | {69237369-31CF-46AD-8C80-DEB0BF5DD088} -> profile=private | protocol=1 | dir=in | action=allow | name=@firewallapi.dll,-28543 | {7FE32996-067E-4687-A7CC-C1AF0C94B382} -> profile=public | protocol=6 | dir=in | action=allow | name=soluto update service | app=c:\program files\soluto\solutoupdateservice.exe | {820B83D9-7F5C-4D39-AB6E-2E6875E7FA06} -> dir=in | action=allow | name=skype | app=c:\program files (x86)\skype\phone\skype.exe | {910AA09D-156E-48A8-8723-0517EBB265FD} -> profile=public | protocol=17 | dir=in | action=allow | name=soluto console | app=c:\program files\soluto\solutoconsole.exe | {9257EBDE-53B5-4AB6-9CD0-BF405A09CBD2} -> protocol=6 | dir=in | action=allow | name=μtorrent (tcp-in) | app=c:\program files (x86)\utorrent\utorrent.exe | {985D4812-EB33-45B5-B9E0-EA7E498C3C72} -> profile=public | protocol=17 | dir=in | action=allow | name=soluto service | app=c:\program files\soluto\solutoservice.exe | {9FC9E00F-AD75-4AC8-82CF-387A37491042} -> dir=in | action=allow | name=windows live mesh | app=c:\program files (x86)\windows live\mesh\moe.exe | {A282EA53-E4C8-476B-AB8C-438E95B434B5} -> profile=public | protocol=6 | dir=in | action=allow | name=soluto console | app=c:\program files\soluto\solutoconsole.exe | {A8093BCE-F574-4D60-BE12-8E4E90852D3C} -> profile=domain | protocol=6 | dir=in | action=allow | name=program startowy dragon age ii | app=c:\program files (x86)\dragon age 2\dragonage2launcher.exe | {A9959198-D60F-427F-9B08-EF591DA4E721} -> profile=private | protocol=58 | dir=out | action=allow | name=@firewallapi.dll,-28546 | {A9E020B5-4D97-4430-83A5-4DB214C1E2FA} -> dir=in | action=allow | name=hp touchsmart music | app=c:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartmusic.exe | {B06FDDF8-DCE3-4F85-8B01-29B6BF2EBC1E} -> dir=in | action=allow | name=hp touchsmart photo | app=c:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartphoto.exe | {B0F662DA-EA6F-4102-8779-47FD71794C0A} -> protocol=17 | dir=in | action=allow | name=μtorrent (udp-in) | app=c:\program files (x86)\utorrent\utorrent.exe | {B91B2C05-789C-4F8A-9E60-03B51284B42F} -> profile=public | protocol=6 | dir=in | action=allow | name=steam | app=c:\program files (x86)\valve\steam\steam.exe | {B9E79A2B-98D7-4A73-9125-AFBF53D12DB2} -> profile=private | protocol=1 | dir=out | action=allow | name=@firewallapi.dll,-28544 | {BB26CCE3-1ABE-42AF-9DD4-6F780FD0CFE9} -> profile=public | protocol=17 | dir=in | action=allow | name=counter-strike | app=c:\program files (x86)\valve\steam\steamapps\aadriaan17\counter-strike\hl.exe | {BB74624D-A191-48CE-9A7B-95D6AEB2AFD3} -> profile=public | protocol=6 | dir=in | action=allow | name=soluto tray | app=c:\program files\soluto\soluto.exe | {BF73B80A-7B47-4532-8401-FAB4610E1086} -> dir=in | action=allow | name=windows live communications platform | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | {C2485A67-0958-4E68-ACC9-D44ADE5BEC60} -> profile=public | protocol=6 | dir=in | action=allow | name=soluto service | app=c:\program files\soluto\solutoservice.exe | {C3A36774-EE6E-4640-A59E-9B82DB37CA66} -> profile=public | protocol=6 | dir=in | action=allow | name=counter-strike | app=c:\program files (x86)\valve\steam\steamapps\aadriaan17\counter-strike\hl.exe | {C5C26D7D-74B2-4369-841D-9534F8A806EE} -> protocol=6 | dir=in | action=allow | name=μtorrent (tcp-in) | app=c:\program files (x86)\utorrent\utorrent.exe | {C6F4A216-DF33-4157-A186-E4C851081638} -> dir=in | action=allow | name=cyberlink powerdirector | app=c:\program files (x86)\cyberlink\powerdirector\pdr.exe | {CC2B90AF-71D5-4F77-BB9D-588D51970F16} -> profile=private | protocol=17 | dir=in | action=allow | name=itunes | app=c:\program files (x86)\itunes\itunes.exe | {CD394B39-E6B0-4C53-AA76-131A6C492B61} -> profile=public | protocol=17 | dir=in | action=allow | name=counter-strike: condition zero | app=c:\program files (x86)\valve\steam\steamapps\aadriaan17\condition zero\hl.exe | {CF635B37-A0ED-43F0-B585-1B2EBA5302B2} -> profile=public | dir=in | action=allow | name=avgnsa.exe | app=c:\program files (x86)\avg\avg9\avgnsa.exe | {DF3D42A2-9539-4540-9A90-41AF5D9CBF63} -> profile=public | protocol=6 | dir=in | action=allow | name=counter-strike: condition zero | app=c:\program files (x86)\valve\steam\steamapps\aadriaan17\condition zero\hl.exe | {E2A9F24D-FBD9-44A5-9DA0-469E8BC54DA6} -> profile=private | protocol=6 | dir=in | action=allow | name=itunes | app=c:\program files (x86)\itunes\itunes.exe | {E42F3A49-2E50-49F3-B956-93FC1DA337A7} -> dir=in | action=allow | name=windows live messenger | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe | {ED27AA5D-6212-48E4-8F9B-28FA32D2B540} -> profile=private | protocol=58 | dir=in | action=allow | name=@firewallapi.dll,-28545 | {EDBD08E5-F4EA-4C2E-8974-082735651560} -> profile=private | protocol=17 | dir=in | action=allow | name=usługa bonjour | app=c:\program files (x86)\bonjour\mdnsresponder.exe | {EE06EDE1-17CC-4A66-B900-B7D14CD5C066} -> dir=in | action=allow | name=hp touchsmart media resident program | app=c:\program files (x86)\hewlett-packard\touchsmart\media\tsmagent.exe | {EF16454F-149D-4540-8364-311642A4765A} -> profile=private | protocol=6 | dir=in | action=allow | name=usługa bonjour | app=c:\program files (x86)\bonjour\mdnsresponder.exe | {F8211E48-E4BF-4E69-BD82-67B895FEF9A5} -> profile=public | protocol=6 | dir=in | action=allow | name=usługa bonjour | app=c:\program files (x86)\bonjour\mdnsresponder.exe | TCP Query User{33AE856C-87C0-4C40-B484-960BE6D4B3D5}C:\program files (x86)\winamp\winamp.exe -> profile=public | protocol=6 | dir=in | action=block | name=winamp | app=c:\program files (x86)\winamp\winamp.exe | TCP Query User{57FEB192-0E9A-465A-A545-839AA42E474C}C:\program files (x86)\itunes\itunes.exe -> profile=public | protocol=6 | dir=in | action=allow | name=itunes | app=c:\program files (x86)\itunes\itunes.exe | TCP Query User{6549A0CE-B810-4089-9AE2-F6C2AF82348D}E:\quake3\quake3.exe -> profile=public | protocol=6 | dir=in | action=allow | name=quake3 | app=e:\quake3\quake3.exe | TCP Query User{9EB201C2-127B-4D05-AF47-C6AE96C6A476}C:\program files (x86)\gadu-gadu 10\gg.exe -> profile=public | protocol=6 | dir=in | action=block | name=gadu-gadu 10 | app=c:\program files (x86)\gadu-gadu 10\gg.exe | TCP Query User{BEA56A94-C5B6-491F-8F74-44B6C60C8BCA}C:\games\dirt 3\dirt3_game.exe -> profile=private | protocol=6 | dir=in | action=allow | name=dirt3 executable | app=c:\games\dirt 3\dirt3_game.exe | TCP Query User{C2C8F463-A276-45BD-90B0-6F8F03D765DF}C:\program files (x86)\tlen.pl\tlen.exe -> profile=public | protocol=6 | dir=in | action=allow | name=komunikator tlen.pl | app=c:\program files (x86)\tlen.pl\tlen.exe | TCP Query User{C97FC842-9F81-43EA-B06F-F527EA80D141}C:\program files (x86)\ubisoft\heroes of might and magic iii - zlota edycja\heroes3.exe -> profile=public | protocol=6 | dir=in | action=allow | name=heroes of might and magic® iii (cdp) | app=c:\program files (x86)\ubisoft\heroes of might and magic iii - zlota edycja\heroes3.exe | TCP Query User{CABC0F64-8A8E-4BAA-86A2-CE11A56CC155}C:\windows\syswow64\dplaysvr.exe -> profile=public | protocol=6 | dir=in | action=block | name=pomoc programu microsoft directplay | app=c:\windows\syswow64\dplaysvr.exe | TCP Query User{D4E2CDF8-21F1-4B5C-8049-79F987BE060B}C:\program files (x86)\gadu-gadu 10\gg.exe -> profile=private | protocol=6 | dir=in | action=allow | name=gadu-gadu 10 | app=c:\program files (x86)\gadu-gadu 10\gg.exe | TCP Query User{DFB49E94-323C-4256-A449-F4440ABF45E8}C:\windows\syswow64\javaw.exe -> profile=private | protocol=6 | dir=in | action=allow | name=java(tm) platform se binary | app=c:\windows\syswow64\javaw.exe | TCP Query User{F0209B58-4F75-4115-8193-0D4400F91804}C:\program files (x86)\valve\steam\steamapps\aadriaan17\condition zero deleted scenes\hl.exe -> profile=public | protocol=6 | dir=in | action=block | name=half-life launcher | app=c:\program files (x86)\valve\steam\steamapps\aadriaan17\condition zero deleted scenes\hl.exe | UDP Query User{046A9DC4-68F3-40A4-BAA6-1600E2D3FAD4}C:\windows\syswow64\javaw.exe -> profile=private | protocol=17 | dir=in | action=allow | name=java(tm) platform se binary | app=c:\windows\syswow64\javaw.exe | UDP Query User{253A566C-245C-492D-8307-759AB57C193B}C:\program files (x86)\winamp\winamp.exe -> profile=public | protocol=17 | dir=in | action=block | name=winamp | app=c:\program files (x86)\winamp\winamp.exe | UDP Query User{40C2CF3A-5AFF-4AFB-949A-54F73D40B836}C:\program files (x86)\valve\steam\steamapps\aadriaan17\condition zero deleted scenes\hl.exe -> profile=public | protocol=17 | dir=in | action=block | name=half-life launcher | app=c:\program files (x86)\valve\steam\steamapps\aadriaan17\condition zero deleted scenes\hl.exe | UDP Query User{7B5A14E9-A74E-4F32-AAF9-9DC016FC7BC6}C:\program files (x86)\ubisoft\heroes of might and magic iii - zlota edycja\heroes3.exe -> profile=public | protocol=17 | dir=in | action=allow | name=heroes of might and magic® iii (cdp) | app=c:\program files (x86)\ubisoft\heroes of might and magic iii - zlota edycja\heroes3.exe | UDP Query User{953DDDA6-3E55-428A-B9C5-F25449A19F73}C:\windows\syswow64\dplaysvr.exe -> profile=public | protocol=17 | dir=in | action=block | name=pomoc programu microsoft directplay | app=c:\windows\syswow64\dplaysvr.exe | UDP Query User{B0000732-7319-4CCB-B2DB-B3961F1D3B1A}C:\program files (x86)\tlen.pl\tlen.exe -> profile=public | protocol=17 | dir=in | action=allow | name=komunikator tlen.pl | app=c:\program files (x86)\tlen.pl\tlen.exe | UDP Query User{C15FC83B-30A6-439E-BC19-F2CB6C64C989}C:\games\dirt 3\dirt3_game.exe -> profile=private | protocol=17 | dir=in | action=allow | name=dirt3 executable | app=c:\games\dirt 3\dirt3_game.exe | UDP Query User{C4529DF5-3B66-4661-A8C2-AEB36C48D75F}E:\quake3\quake3.exe -> profile=public | protocol=17 | dir=in | action=allow | name=quake3 | app=e:\quake3\quake3.exe | UDP Query User{CEA73384-1957-4F95-B71C-B9A7F5070DAB}C:\program files (x86)\gadu-gadu 10\gg.exe -> profile=public | protocol=17 | dir=in | action=block | name=gadu-gadu 10 | app=c:\program files (x86)\gadu-gadu 10\gg.exe | UDP Query User{EDC14285-8E41-45F7-8454-DDE9FA41CFB4}C:\program files (x86)\gadu-gadu 10\gg.exe -> profile=private | protocol=17 | dir=in | action=allow | name=gadu-gadu 10 | app=c:\program files (x86)\gadu-gadu 10\gg.exe | < Standard Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List -> "C:\Program Files (x86)\OrangeBS\BEWInternet-PL\Connectivity\ConnectivityManager.exe" -> [C:\Program Files (x86)\OrangeBS\BEWInternet-PL\Connectivity\ConnectivityManager.exe:*:enabled:CSS] -> File not found < SafeBoot AlternateShell [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot -> < CDROM Autorun Setting [HKEY_LOCAL_MACHINE]> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom -> "AutoRun" -> 1 -> "DisplayName" -> Sterownik stacji dysków CD-ROM -> "ImagePath" -> C:\Windows\SysNative\drivers\cdrom.sys [system32\DRIVERS\cdrom.sys] -> [2010-11-20 11:19:21 | 000,147,456 | ---- | M] (Microsoft Corporation) < MountPoints2 [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2 -> \{274d8cf0-6c28-11e0-b249-0027133b1f9b} HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{274d8cf0-6c28-11e0-b249-0027133b1f9b}\shell \{274d8cf0-6c28-11e0-b249-0027133b1f9b}\shell\\"" -> [AutoRun] -> File not found HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{274d8cf0-6c28-11e0-b249-0027133b1f9b}\shell\AutoRun\command \{274d8cf0-6c28-11e0-b249-0027133b1f9b}\shell\AutoRun\command\\"" -> [K:\AutoRun.exe] -> File not found \{297c6686-6fef-11e0-85c3-0027133b1f9b} HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{297c6686-6fef-11e0-85c3-0027133b1f9b}\shell \{297c6686-6fef-11e0-85c3-0027133b1f9b}\shell\\"" -> [AutoRun] -> File not found HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{297c6686-6fef-11e0-85c3-0027133b1f9b}\shell\AutoRun\command \{297c6686-6fef-11e0-85c3-0027133b1f9b}\shell\AutoRun\command\\"" -> [K:\AutoRun.exe] -> File not found \{73c63cf3-b131-11e0-a469-0027133b1f9b} HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{73c63cf3-b131-11e0-a469-0027133b1f9b}\shell \{73c63cf3-b131-11e0-a469-0027133b1f9b}\shell\\"" -> [AutoRun] -> File not found HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{73c63cf3-b131-11e0-a469-0027133b1f9b}\shell\AutoRun\command \{73c63cf3-b131-11e0-a469-0027133b1f9b}\shell\AutoRun\command\\"" -> [K:\autorun.exe] -> File not found \{c8d78b8f-7358-11e0-8ed8-0027133b1f9b} HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c8d78b8f-7358-11e0-8ed8-0027133b1f9b}\shell \{c8d78b8f-7358-11e0-8ed8-0027133b1f9b}\shell\\"" -> [AutoRun] -> File not found HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c8d78b8f-7358-11e0-8ed8-0027133b1f9b}\shell\AutoRun\command \{c8d78b8f-7358-11e0-8ed8-0027133b1f9b}\shell\AutoRun\command\\"" -> [K:\AutoRun.exe] -> File not found \{d3ea472e-9e3d-11df-8fbc-0027133b1f9b} HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d3ea472e-9e3d-11df-8fbc-0027133b1f9b}\shell \{d3ea472e-9e3d-11df-8fbc-0027133b1f9b}\shell\\"" -> [AutoRun] -> File not found HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d3ea472e-9e3d-11df-8fbc-0027133b1f9b}\shell\AutoRun\command \{d3ea472e-9e3d-11df-8fbc-0027133b1f9b}\shell\AutoRun\command\\"" -> [F:\autorun.exe] -> File not found \{d447178f-6d98-11e0-b7a3-0027133b1f9b} HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d447178f-6d98-11e0-b7a3-0027133b1f9b}\shell \{d447178f-6d98-11e0-b7a3-0027133b1f9b}\shell\\"" -> [AutoRun] -> File not found HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d447178f-6d98-11e0-b7a3-0027133b1f9b}\shell\AutoRun\command \{d447178f-6d98-11e0-b7a3-0027133b1f9b}\shell\AutoRun\command\\"" -> [K:\AutoRun.exe] -> File not found \{d692f2f0-c7ec-11df-ae7d-0027133b1f9b} HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d692f2f0-c7ec-11df-ae7d-0027133b1f9b}\shell \{d692f2f0-c7ec-11df-ae7d-0027133b1f9b}\shell\\"" -> [AutoRun] -> File not found HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d692f2f0-c7ec-11df-ae7d-0027133b1f9b}\shell\AutoRun\command \{d692f2f0-c7ec-11df-ae7d-0027133b1f9b}\shell\AutoRun\command\\"" -> [G:\_AUTORUN\AUTORUN.EXE] -> File not found \{e6d41c14-6bf3-11e0-8443-0027133b1f9b} HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e6d41c14-6bf3-11e0-8443-0027133b1f9b}\shell \{e6d41c14-6bf3-11e0-8443-0027133b1f9b}\shell\\"" -> [AutoRun] -> File not found HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e6d41c14-6bf3-11e0-8443-0027133b1f9b}\shell\AutoRun\command \{e6d41c14-6bf3-11e0-8443-0027133b1f9b}\shell\AutoRun\command\\"" -> [K:\AutoRun.exe] -> File not found \{e6d41c1b-6bf3-11e0-8443-0027133b1f9b} HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e6d41c1b-6bf3-11e0-8443-0027133b1f9b}\shell \{e6d41c1b-6bf3-11e0-8443-0027133b1f9b}\shell\\"" -> [AutoRun] -> File not found HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e6d41c1b-6bf3-11e0-8443-0027133b1f9b}\shell\AutoRun\command \{e6d41c1b-6bf3-11e0-8443-0027133b1f9b}\shell\AutoRun\command\\"" -> [K:\AutoRun.exe] -> File not found \{e6d41c22-6bf3-11e0-8443-0027133b1f9b} HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e6d41c22-6bf3-11e0-8443-0027133b1f9b}\shell \{e6d41c22-6bf3-11e0-8443-0027133b1f9b}\shell\\"" -> [AutoRun] -> File not found HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e6d41c22-6bf3-11e0-8443-0027133b1f9b}\shell\AutoRun\command \{e6d41c22-6bf3-11e0-8443-0027133b1f9b}\shell\AutoRun\command\\"" -> [K:\AutoRun.exe] -> File not found \{ed49c0cc-77d1-11df-bd57-00269e7dd799} HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ed49c0cc-77d1-11df-bd57-00269e7dd799}\shell \{ed49c0cc-77d1-11df-bd57-00269e7dd799}\shell\\"" -> [AutoRun] -> File not found HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ed49c0cc-77d1-11df-bd57-00269e7dd799}\shell\AutoRun\command \{ed49c0cc-77d1-11df-bd57-00269e7dd799}\shell\AutoRun\command\\"" -> [F:\MicroLauncher.exe] -> File not found < Registry Shell Spawning - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command -> 64bit-comfile [open] -> "%1" %* -> File not found 64bit-exefile [open] -> "%1" %* -> File not found comfile [open] -> "%1" %* -> exefile [open] -> "%1" %* -> < 64bit-File Associations - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\ -> .com [@ = comfile] -> "%1" %* -> .exe [@ = exefile] -> "%1" %* -> < File Associations - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\ -> .com [@ = comfile] -> "%1" %* -> .exe [@ = exefile] -> "%1" %* -> [Registry - Additional Scans - Safe List] < 64bit-ActiveX StubPath [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\ -> {08B0E5C0-4FCB-11CF-AAA5-00401C608500} [KeyFileName] -> Reg Error: Value error. [(default): Java (Sun); IsInstalled: 1] -> File not found {2C7339CF-2B09-4501-B3F3-F3508C9228ED} [StubPath] -> %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll [(default): Themes Setup; IsInstalled: 1] -> {3af36230-a269-11d1-b5bf-0000f8051515} [HKLM] -> Reg Error: Key error. [(default): Offline Browsing Pack; IsInstalled: 1] -> File not found {44BBA840-CC51-11CF-AAFA-00AA00B6015C} [StubPath] -> "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE [(default): Microsoft Windows; IsInstalled: 1] -> {44BBA855-CC51-11CF-AAFA-00AA00B6015F} [HKLM] -> Reg Error: Key error. [(default): DirectDrawEx; IsInstalled: 1] -> File not found {45ea75a0-a269-11d1-b5bf-0000f8051515} [HKLM] -> Reg Error: Key error. [(default): Internet Explorer Help; IsInstalled: 1] -> File not found {4f645220-306d-11d2-995d-00c04f98bbc9} [HKLM] -> Reg Error: Key error. [(default): Microsoft Windows Script 5.6; IsInstalled: 1] -> File not found {5fd399c0-a70a-11d1-9948-00c04f98bbc9} [HKLM] -> Reg Error: Key error. [(default): Internet Explorer Setup Tools; IsInstalled: 1] -> File not found {630b1da0-b465-11d1-9948-00c04f98bbc9} [KeyFileName] -> Reg Error: Value error. [(default): Browsing Enhancements; IsInstalled: 1] -> File not found {6fab99d0-bab8-11d1-994a-00c04f98bbc9} [HKLM] -> Reg Error: Key error. [(default): MSN Site Access; IsInstalled: 1] -> File not found {7790769C-0471-11d2-AF11-00C04FA35D02} [HKLM] -> Reg Error: Key error. [(default): Address Book 7; IsInstalled: 1] -> File not found {89820200-ECBD-11cf-8B85-00AA005B4340} [StubPath] -> regsvr32.exe /s /n /i:U shell32.dll [(default): Windows Desktop Update; IsInstalled: 1] -> {89820200-ECBD-11cf-8B85-00AA005B4383} [StubPath] -> C:\Windows\System32\ie4uinit.exe -BaseSettings [(default): Web Platform Customizations; IsInstalled: 1] -> {89B4C1CD-B018-4511-B0A1-5476DBF70820} [StubPath] -> C:\Windows\system32\Rundll32.exe C:\Windows\system32\mscories.dll,Install [ComponentID: DOTNETFRAMEWORKS; IsInstalled: 1] -> {9381D8F2-0288-11D0-9501-00AA00B911A5} [HKLM] -> Reg Error: Key error. [(default): Dynamic HTML Data Binding; IsInstalled: 1] -> File not found {C9E9A340-D1F1-11D0-821E-444553540600} [HKLM] -> Reg Error: Key error. [(default): Internet Explorer Core Fonts; IsInstalled: 1] -> File not found {de5aed00-a4bf-11d1-9948-00c04f98bbc9} [HKLM] -> Reg Error: Key error. [(default): HTML Help; IsInstalled: 1] -> File not found {E92B03AB-B707-11d2-9CBD-0000F87A369E} [HKLM] -> Reg Error: Key error. [(default): Active Directory Service Interface; IsInstalled: 1] -> File not found {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4} [HKLM] -> Reg Error: Key error. [(default): .NET Framework] -> File not found {FEBEF00C-046D-438D-8A88-BF94A6C9E703} [HKLM] -> Reg Error: Key error. [(default): .NET Framework] -> File not found >{26923b43-4d38-484f-9b9e-de460746276c} [StubPath] -> C:\Windows\System32\ie4uinit.exe -UserIconConfig [(default): Internet Explorer; IsInstalled: 0] -> >{60B49E34-C7CC-11D0-8953-00A0C90347FF} [StubPath] -> "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP [(default): Browser Customizations; IsInstalled: 1] -> < ActiveX StubPath [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\ -> {08B0E5C0-4FCB-11CF-AAA5-00401C608500} [KeyFileName] -> C:\Program Files (x86)\Java\jre6\bin\regutils.dll [(default): Java (Sun); IsInstalled: 1] -> [2011-05-04 06:23:10 | 000,278,528 | ---- | M] (Sun Microsystems, Inc.) {10880D85-AAD9-4558-ABDC-2AB1552D831F} [StubPath] -> "C:\Program Files (x86)\Common Files\LightScribe\LSRunOnce.exe" [(default): LightScribe Control Panel] -> {2C7339CF-2B09-4501-B3F3-F3508C9228ED} [StubPath] -> %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll [(default): Themes Setup; IsInstalled: 1] -> {3af36230-a269-11d1-b5bf-0000f8051515} [HKLM] -> Reg Error: Key error. [(default): Offline Browsing Pack; IsInstalled: 1] -> File not found {44BBA840-CC51-11CF-AAFA-00AA00B6015C} [StubPath] -> "%ProgramFiles(x86)%\Windows Mail\WinMail.exe" OCInstallUserConfigOE [(default): Microsoft Windows; IsInstalled: 1] -> {44BBA855-CC51-11CF-AAFA-00AA00B6015F} [HKLM] -> Reg Error: Key error. [(default): DirectDrawEx; IsInstalled: 1] -> File not found {45ea75a0-a269-11d1-b5bf-0000f8051515} [HKLM] -> Reg Error: Key error. [(default): Internet Explorer Help; IsInstalled: 1] -> File not found {4f645220-306d-11d2-995d-00c04f98bbc9} [HKLM] -> Reg Error: Key error. [(default): Microsoft Windows Script 5.6; IsInstalled: 1] -> File not found {5fd399c0-a70a-11d1-9948-00c04f98bbc9} [HKLM] -> Reg Error: Key error. [(default): Internet Explorer Setup Tools; IsInstalled: 1] -> File not found {630b1da0-b465-11d1-9948-00c04f98bbc9} [KeyFileName] -> C:\Windows\SysWOW64\msieftp.dll [(default): Browsing Enhancements; IsInstalled: 1] -> [2010-11-20 14:19:48 | 000,301,568 | ---- | M] (Microsoft Corporation) {6fab99d0-bab8-11d1-994a-00c04f98bbc9} [HKLM] -> Reg Error: Key error. [(default): MSN Site Access; IsInstalled: 1] -> File not found {7790769C-0471-11d2-AF11-00C04FA35D02} [HKLM] -> Reg Error: Key error. [(default): Address Book 7; IsInstalled: 1] -> File not found {7C028AF8-F614-47B3-82DA-BA94E41B1089} [HKLM] -> Reg Error: Key error. [(default): .NET Framework] -> File not found {89820200-ECBD-11cf-8B85-00AA005B4340} [StubPath] -> regsvr32.exe /s /n /i:U shell32.dll [(default): Windows Desktop Update; IsInstalled: 1] -> {89820200-ECBD-11cf-8B85-00AA005B4383} [StubPath] -> C:\Windows\SysWOW64\ie4uinit.exe -BaseSettings [(default): Web Platform Customizations; IsInstalled: 1] -> {89B4C1CD-B018-4511-B0A1-5476DBF70820} [StubPath] -> C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install [ComponentID: DOTNETFRAMEWORKS; IsInstalled: 1] -> {9381D8F2-0288-11D0-9501-00AA00B911A5} [HKLM] -> Reg Error: Key error. [(default): Dynamic HTML Data Binding; IsInstalled: 1] -> File not found {C9E9A340-D1F1-11D0-821E-444553540600} [HKLM] -> Reg Error: Key error. [(default): Internet Explorer Core Fonts; IsInstalled: 1] -> File not found {D27CDB6E-AE6D-11CF-96B8-444553540000} [HKLM] -> C:\Windows\SysWOW64\Macromed\Flash\Flash10b.ocx [(default): Macromedia Shockwave Flash; IsInstalled: 01 00 00 00 [binary data]] -> [2009-02-03 04:07:18 | 003,866,528 | R--- | M] (Adobe Systems, Inc.) {de5aed00-a4bf-11d1-9948-00c04f98bbc9} [HKLM] -> Reg Error: Key error. [(default): HTML Help; IsInstalled: 1] -> File not found {E92B03AB-B707-11d2-9CBD-0000F87A369E} [HKLM] -> Reg Error: Key error. [(default): Active Directory Service Interface; IsInstalled: 1] -> File not found {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4} [HKLM] -> Reg Error: Key error. [(default): .NET Framework] -> File not found >{26923b43-4d38-484f-9b9e-de460746276c} [StubPath] -> C:\Windows\SysWOW64\ie4uinit.exe -UserIconConfig [(default): Internet Explorer; IsInstalled: 0] -> >{60B49E34-C7CC-11D0-8953-00A0C90347FF} [StubPath] -> "C:\Windows\SysWOW64\rundll32.exe" "C:\Windows\SysWOW64\iedkcs32.dll",BrandIEActiveSetup SIGNUP [(default): Browser Customizations; IsInstalled: 1] -> < ActiveX StubPath [HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\] > -> HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\SOFTWARE\Microsoft\Active Setup\Installed Components\ -> {2C7339CF-2B09-4501-B3F3-F3508C9228ED} [HKLM] -> Reg Error: Key error. [(no name)] -> File not found {44BBA840-CC51-11CF-AAFA-00AA00B6015C} [HKLM] -> Reg Error: Key error. [(no name)] -> File not found {6BF52A52-394A-11d3-B153-00C04F79FAA6} [HKLM] -> Reg Error: Key error. [(no name)] -> File not found {89820200-ECBD-11cf-8B85-00AA005B4340} [HKLM] -> Reg Error: Key error. [(no name)] -> File not found {89820200-ECBD-11cf-8B85-00AA005B4383} [HKLM] -> Reg Error: Key error. [(no name)] -> File not found {89B4C1CD-B018-4511-B0A1-5476DBF70820} [HKLM] -> Reg Error: Key error. [(no name)] -> File not found >{60B49E34-C7CC-11D0-8953-00A0C90347FF} [HKLM] -> Reg Error: Key error. [(no name)] -> File not found < 64bit-App Paths [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\ -> AcroRd32.exe -> C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe [C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe] -> [2011-06-08 06:02:34 | 000,357,808 | ---- | M] (Adobe Systems Incorporated) Alcohol.exe -> C:\Program Files (x86)\Alcohol Soft\Alcohol 120\Alcohol.exe [C:\Program Files (x86)\Alcohol Soft\Alcohol 120\alcohol.exe] -> [2010-09-17 14:50:34 | 001,812,832 | ---- | M] (Alcohol Soft Development Team) AVGSE.DLL -> C:\Program Files (x86)\AVG\AVG9\avgsea.dll [C:\Program Files (x86)\AVG\AVG9\avgsea.dll] -> [2010-07-17 11:00:31 | 000,187,232 | ---- | M] (AVG Technologies CZ, s.r.o.) AxShlExHlper.exe -> C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxShlExHlper.exe [C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxShlExHlper.exe] -> [2010-09-17 14:51:00 | 000,255,328 | ---- | M] (Alcohol Soft Development Team) ccleaner.exe -> C:\Program Files (x86)\CCleaner\CCleaner64.exe [C:\Program Files (x86)\CCleaner\CCleaner64.exe] -> [2011-06-24 21:53:18 | 003,994,424 | ---- | M] (Piriform Ltd) chrome.exe -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [C:\Program Files (x86)\Google\Chrome\Application\chrome.exe] -> [2011-07-09 06:51:19 | 001,012,792 | ---- | M] (Google Inc.) CloneCD.exe -> C:\Program Files (x86)\SlySoft\CloneCD\CloneCD.exe [C:\Program Files (x86)\SlySoft\CloneCD\CloneCD.exe] -> [2009-03-15 23:43:34 | 001,431,040 | ---- | M] (SlySoft, Inc.) CloneCDTray.exe -> C:\Program Files (x86)\SlySoft\CloneCD\CloneCDTray.exe [C:\Program Files (x86)\SlySoft\CloneCD\CloneCDTray.exe] -> [2009-01-30 00:20:49 | 000,057,344 | ---- | M] (SlySoft, Inc.) cmmgr32.exe -> Reg Error: Value error. [Reg Error: Value error.] -> File not found DVDPS.exe -> C:\Program Files (x86)\Ulead Systems\Ulead CD & DVD PictureShow 4\DVDPS.exe [C:\Program Files (x86)\Ulead Systems\Ulead CD & DVD PictureShow 4\DVDPS.exe] -> [2005-06-28 13:58:04 | 000,114,688 | ---- | M] (Ulead Systems, Inc.) firefox.exe -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe [C:\Program Files (x86)\Mozilla Firefox\firefox.exe] -> [2011-07-08 09:50:28 | 000,924,632 | ---- | M] (Mozilla Corporation) fsquirt.exe -> Reg Error: Value error. [Reg Error: Value error.] -> File not found gimp-2.6.exe -> [C:\Program Files (x86)\GIMP-2.0\bin\gimp-2.6.exe] -> File not found Heroes3.exe -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic III - Zlota Edycja\Heroes3.exe [C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic III - Zlota Edycja\Heroes3.exe] -> [2004-06-28 20:55:56 | 002,744,320 | ---- | M] (The 3DO Company) HPTouchSmartMusic.exe -> c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartMusic.exe [c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartMusic.exe] -> [2009-07-23 12:37:50 | 000,162,360 | ---- | M] (CyberLink Corp.) HPTouchSmartPhoto.exe -> c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartPhoto.exe [c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartPhoto.exe] -> [2009-07-23 12:37:50 | 000,199,224 | ---- | M] (CyberLink Corp.) HPTouchSmartVideo.exe -> c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartVideo.exe [c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartVideo.exe] -> [2009-07-23 12:37:52 | 000,231,992 | ---- | M] (CyberLink Corp.) install.exe -> Reg Error: Value error. [Reg Error: Value error.] -> File not found javaws.exe -> C:\Windows\SysNative\javaws.exe [C:\Windows\system32\javaws.exe] -> [2009-09-21 16:27:42 | 000,181,760 | ---- | M] (Sun Microsystems, Inc.) LabelPrint -> C:\Program Files (x86)\CyberLink\LabelPrint\LabelPrint.exe [C:\Program Files (x86)\CyberLink\LabelPrint\LabelPrint.exe] -> [2009-07-13 15:11:08 | 000,628,008 | ---- | M] (CyberLink Corp.) LabelPrint.exe -> C:\Program Files (x86)\CyberLink\LabelPrint\LabelPrint.exe [C:\Program Files (x86)\CyberLink\LabelPrint\LabelPrint.exe] -> [2009-07-13 15:11:08 | 000,628,008 | ---- | M] (CyberLink Corp.) mbam.exe -> C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe [C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe] -> [2011-07-06 19:52:38 | 001,047,656 | ---- | M] (Malwarebytes Corporation) MediaSmart DVD -> c:\Program Files (x86)\Hewlett-Packard\Media\DVD\HPDVDSmart.exe [c:\Program Files (x86)\Hewlett-Packard\Media\DVD\HPDVDSmart.exe] -> [2009-07-23 21:45:54 | 000,316,712 | ---- | M] (CyberLink Corp.) MediaSmart Internet TV -> c:\Program Files (x86)\Hewlett-Packard\Media\iTV\HPiTV.exe [c:\Program Files (x86)\Hewlett-Packard\Media\iTV\HPiTV.exe] -> [2009-07-16 16:09:44 | 000,304,424 | ---- | M] (CyberLink Corp.) MediaSmart Live TV -> c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\HPTV.exe [c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\HPTV.exe] -> [2009-07-24 19:24:00 | 000,308,520 | ---- | M] (CyberLink Corp.) MediaSmartWebcam -> c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\HPMediaSmartWebcam.exe [c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\HPMediaSmartWebcam.exe] -> [2009-07-13 20:30:34 | 000,263,464 | ---- | M] (CyberLink Corp.) MsoHtmEd.exe -> Reg Error: Value error. [Reg Error: Value error.] -> File not found msworks.exe -> C:\Program Files (x86)\Microsoft Works\MSWorks.exe [C:\Program Files (x86)\Microsoft Works\msworks.exe] -> [2007-06-21 14:04:26 | 000,628,064 | ---- | M] (Microsoft® Corporation) Neffy.exe -> C:\Program Files (x86)\Neffy\AquaDownloader.exe [C:\Program Files (x86)\Neffy\AquaDownloader.exe] -> [2010-04-01 13:12:04 | 001,242,656 | ---- | M] (CDNetworks) None -> C:\Program Files (x86)\CyberLink\DVD Suite\PowerStarter.exe [C:\Program Files (x86)\CyberLink\DVD Suite\PowerStarter.exe] -> [2009-07-02 19:55:18 | 000,337,192 | ---- | M] (CyberLink) pbrush.exe -> C:\Windows\SysNative\mspaint.exe [%SystemRoot%\System32\mspaint.exe] -> [2009-07-14 03:39:24 | 006,676,480 | ---- | M] (Microsoft Corporation) PictureViewer.exe -> C:\Program Files (x86)\QuickTime\PictureViewer.exe [C:\Program Files (x86)\QuickTime\PictureViewer.exe] -> [2010-11-29 18:38:06 | 000,561,152 | ---- | M] (Apple Inc.) PLAY ONLINE.exe -> C:\Program Files (x86)\PLAY ONLINE\PLAY ONLINE.exe [C:\Program Files (x86)\PLAY ONLINE\PLAY ONLINE.exe] -> [2011-04-21 14:42:58 | 000,114,688 | ---- | M] () Power2Go -> C:\Program Files (x86)\CyberLink\Power2Go\Power2Go.exe [C:\Program Files (x86)\CyberLink\Power2Go\Power2Go.exe] -> [2009-07-01 18:42:54 | 002,499,880 | ---- | M] (CyberLink Corp.) Power2Go.exe -> C:\Program Files (x86)\CyberLink\Power2Go\Power2Go.exe [C:\Program Files (x86)\CyberLink\Power2Go\Power2Go.exe] -> [2009-07-01 18:42:54 | 002,499,880 | ---- | M] (CyberLink Corp.) Power2GoExpress.exe -> C:\Program Files (x86)\CyberLink\Power2Go\Power2GoExpress.exe [C:\Program Files (x86)\CyberLink\Power2Go\Power2GoExpress.exe] -> [2009-07-01 18:43:34 | 002,667,816 | ---- | M] (CyberLink Corp.) PowerDirector -> C:\Program Files (x86)\CyberLink\PowerDirector\PDR.exe [C:\Program Files (x86)\CyberLink\PowerDirector\PDR.exe] -> [2009-07-01 11:20:06 | 006,055,208 | ---- | M] (CyberLink Corp.) PowerShell.exe -> C:\Windows\SysNative\WindowsPowerShell\v1.0\powershell.exe [%SystemRoot%\system32\WindowsPowerShell\v1.0\PowerShell.exe] -> [2009-07-14 03:39:20 | 000,473,600 | ---- | M] (Microsoft Corporation) PowerStarter -> C:\Program Files (x86)\CyberLink\DVD Suite\PowerStarter.exe [C:\Program Files (x86)\CyberLink\DVD Suite\PowerStarter.exe] -> [2009-07-02 19:55:18 | 000,337,192 | ---- | M] (CyberLink) PowerStarter.exe -> C:\Program Files (x86)\CyberLink\DVD Suite\PowerStarter.exe [C:\Program Files (x86)\CyberLink\DVD Suite\PowerStarter.exe] -> [2009-07-02 19:55:18 | 000,337,192 | ---- | M] (CyberLink) QuickTimePlayer.exe -> C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe [C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe] -> [2010-11-29 19:19:36 | 001,234,224 | ---- | M] (Apple Inc.) RealPlay.exe -> C:\Program Files (x86)\Real\RealPlayer\realplay.exe [C:\Program Files (x86)\Real\RealPlayer\realplay.exe] -> [2011-04-14 11:53:13 | 000,490,112 | ---- | M] (RealNetworks, Inc.) RealUpgrade.exe -> C:\Program Files (x86)\Real\RealUpgrade\realupgrade.exe [C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe] -> [2011-03-29 10:47:46 | 000,170,624 | ---- | M] (RealNetworks, Inc.) RegCloneCD -> C:\Program Files (x86)\SlySoft\CloneCD\RegCloneCD.exe [C:\Program Files (x86)\SlySoft\CloneCD\RegCloneCD.exe] -> [2007-05-21 21:24:11 | 000,089,288 | ---- | M] (SlySoft, Inc.) rnxproc.exe -> C:\Program Files (x86)\Real\RealPlayer\Update\rnxproc.exe [C:\Program Files (x86)\Real\RealPlayer\Update\rnxproc.exe] -> [2011-04-14 11:53:09 | 000,059,048 | ---- | M] (RealNetworks, Inc.) setup.exe -> Reg Error: Value error. [Reg Error: Value error.] -> File not found SnippingTool.exe -> C:\Windows\SysNative\SnippingTool.exe [%SystemRoot%\system32\SnippingTool.exe] -> [2009-07-14 03:39:41 | 000,431,104 | ---- | M] (Microsoft Corporation) table30.exe -> Reg Error: Value error. [Reg Error: Value error.] -> File not found TouchSmart Media -> c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartMusic.exe [c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartMusic.exe] -> [2009-07-23 12:37:50 | 000,162,360 | ---- | M] (CyberLink Corp.) wab.exe -> C:\Program Files\Windows Mail\wab.exe [%ProgramFiles%\Windows Mail\wab.exe] -> [2010-11-20 15:25:27 | 000,516,096 | ---- | M] (Microsoft Corporation) wabmig.exe -> C:\Program Files\Windows Mail\wabmig.exe [%ProgramFiles%\Windows Mail\wabmig.exe] -> [2009-07-14 03:39:50 | 000,067,584 | ---- | M] (Microsoft Corporation) winamp.exe -> C:\Program Files (x86)\Winamp\winamp.exe [C:\Program Files (x86)\Winamp\winamp.exe] -> [2010-12-09 12:47:04 | 001,595,744 | ---- | M] (Nullsoft, Inc.) WinRAR.exe -> C:\Program Files\WinRAR\WinRAR.exe [C:\Program Files\WinRAR\WinRAR.exe] -> [2010-01-09 17:52:12 | 001,095,168 | ---- | M] (Alexander Roshal) WKSAB.EXE -> C:\Program Files (x86)\Microsoft Works\wksab.exe [C:\Program Files (x86)\Microsoft Works\WKSAB.exe] -> [2007-06-21 14:04:54 | 000,020,832 | ---- | M] (Microsoft® Corporation) wkscal.exe -> C:\Program Files (x86)\Microsoft Works\WksCal.exe [C:\PROGRA~2\MICROS~2\WksCal.exe] -> [2007-06-21 14:04:54 | 000,709,984 | ---- | M] (Microsoft® Corporation) wksdb.exe -> C:\Program Files (x86)\Microsoft Works\wksdb.exe [C:\Program Files (x86)\Microsoft Works\wksdb.exe] -> [2007-06-21 14:04:54 | 001,242,464 | ---- | M] (Microsoft® Corporation) WKSSB.EXE -> C:\Program Files (x86)\Microsoft Works\WksSb.exe [C:\Program Files (x86)\Microsoft Works\WKSSB.exe] -> [2007-06-21 14:04:54 | 001,099,104 | ---- | M] (Microsoft® Corporation) wksss.exe -> C:\Program Files (x86)\Microsoft Works\wksss.exe [C:\Program Files (x86)\Microsoft Works\wksss.exe] -> [2007-06-21 14:04:54 | 000,947,552 | ---- | M] (Microsoft® Corporation) wkswp.exe -> C:\Program Files (x86)\Microsoft Works\WksWP.exe [C:\Program Files (x86)\Microsoft Works\wkswp.exe] -> [2007-06-21 14:04:56 | 000,693,600 | ---- | M] (Microsoft® Corporation) WORDPAD.EXE -> C:\Program Files\Windows NT\Accessories\WORDPAD.EXE ["%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE"] -> [2010-11-20 15:25:35 | 004,583,424 | ---- | M] (Microsoft Corporation) WRITE.EXE -> C:\Program Files\Windows NT\Accessories\WORDPAD.EXE ["%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE"] -> [2010-11-20 15:25:35 | 004,583,424 | ---- | M] (Microsoft Corporation) < App Paths [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\ -> AcroRd32.exe -> C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe [C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe] -> [2011-06-08 06:02:34 | 000,357,808 | ---- | M] (Adobe Systems Incorporated) Alcohol.exe -> C:\Program Files (x86)\Alcohol Soft\Alcohol 120\Alcohol.exe [C:\Program Files (x86)\Alcohol Soft\Alcohol 120\alcohol.exe] -> [2010-09-17 14:50:34 | 001,812,832 | ---- | M] (Alcohol Soft Development Team) AVGSE.DLL -> C:\Program Files (x86)\AVG\AVG9\avgsea.dll [C:\Program Files (x86)\AVG\AVG9\avgsea.dll] -> [2010-07-17 11:00:31 | 000,187,232 | ---- | M] (AVG Technologies CZ, s.r.o.) AxShlExHlper.exe -> C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxShlExHlper.exe [C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxShlExHlper.exe] -> [2010-09-17 14:51:00 | 000,255,328 | ---- | M] (Alcohol Soft Development Team) ccleaner.exe -> C:\Program Files (x86)\CCleaner\CCleaner64.exe [C:\Program Files (x86)\CCleaner\CCleaner64.exe] -> [2011-06-24 21:53:18 | 003,994,424 | ---- | M] (Piriform Ltd) chrome.exe -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [C:\Program Files (x86)\Google\Chrome\Application\chrome.exe] -> [2011-07-09 06:51:19 | 001,012,792 | ---- | M] (Google Inc.) CloneCD.exe -> C:\Program Files (x86)\SlySoft\CloneCD\CloneCD.exe [C:\Program Files (x86)\SlySoft\CloneCD\CloneCD.exe] -> [2009-03-15 23:43:34 | 001,431,040 | ---- | M] (SlySoft, Inc.) CloneCDTray.exe -> C:\Program Files (x86)\SlySoft\CloneCD\CloneCDTray.exe [C:\Program Files (x86)\SlySoft\CloneCD\CloneCDTray.exe] -> [2009-01-30 00:20:49 | 000,057,344 | ---- | M] (SlySoft, Inc.) cmmgr32.exe -> Reg Error: Value error. [Reg Error: Value error.] -> File not found DVDPS.exe -> C:\Program Files (x86)\Ulead Systems\Ulead CD & DVD PictureShow 4\DVDPS.exe [C:\Program Files (x86)\Ulead Systems\Ulead CD & DVD PictureShow 4\DVDPS.exe] -> [2005-06-28 13:58:04 | 000,114,688 | ---- | M] (Ulead Systems, Inc.) firefox.exe -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe [C:\Program Files (x86)\Mozilla Firefox\firefox.exe] -> [2011-07-08 09:50:28 | 000,924,632 | ---- | M] (Mozilla Corporation) fsquirt.exe -> Reg Error: Value error. [Reg Error: Value error.] -> File not found gimp-2.6.exe -> [C:\Program Files (x86)\GIMP-2.0\bin\gimp-2.6.exe] -> File not found Heroes3.exe -> C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic III - Zlota Edycja\Heroes3.exe [C:\Program Files (x86)\Ubisoft\Heroes of Might and Magic III - Zlota Edycja\Heroes3.exe] -> [2004-06-28 20:55:56 | 002,744,320 | ---- | M] (The 3DO Company) HPTouchSmartMusic.exe -> c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartMusic.exe [c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartMusic.exe] -> [2009-07-23 12:37:50 | 000,162,360 | ---- | M] (CyberLink Corp.) HPTouchSmartPhoto.exe -> c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartPhoto.exe [c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartPhoto.exe] -> [2009-07-23 12:37:50 | 000,199,224 | ---- | M] (CyberLink Corp.) HPTouchSmartVideo.exe -> c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartVideo.exe [c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartVideo.exe] -> [2009-07-23 12:37:52 | 000,231,992 | ---- | M] (CyberLink Corp.) install.exe -> Reg Error: Value error. [Reg Error: Value error.] -> File not found javaws.exe -> C:\Windows\SysWOW64\javaws.exe [C:\Windows\system32\javaws.exe] -> [2011-05-04 04:52:34 | 000,157,472 | ---- | M] (Sun Microsystems, Inc.) LabelPrint -> C:\Program Files (x86)\CyberLink\LabelPrint\LabelPrint.exe [C:\Program Files (x86)\CyberLink\LabelPrint\LabelPrint.exe] -> [2009-07-13 15:11:08 | 000,628,008 | ---- | M] (CyberLink Corp.) LabelPrint.exe -> C:\Program Files (x86)\CyberLink\LabelPrint\LabelPrint.exe [C:\Program Files (x86)\CyberLink\LabelPrint\LabelPrint.exe] -> [2009-07-13 15:11:08 | 000,628,008 | ---- | M] (CyberLink Corp.) mbam.exe -> C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe [C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe] -> [2011-07-06 19:52:38 | 001,047,656 | ---- | M] (Malwarebytes Corporation) MediaSmart DVD -> c:\Program Files (x86)\Hewlett-Packard\Media\DVD\HPDVDSmart.exe [c:\Program Files (x86)\Hewlett-Packard\Media\DVD\HPDVDSmart.exe] -> [2009-07-23 21:45:54 | 000,316,712 | ---- | M] (CyberLink Corp.) MediaSmart Internet TV -> c:\Program Files (x86)\Hewlett-Packard\Media\iTV\HPiTV.exe [c:\Program Files (x86)\Hewlett-Packard\Media\iTV\HPiTV.exe] -> [2009-07-16 16:09:44 | 000,304,424 | ---- | M] (CyberLink Corp.) MediaSmart Live TV -> c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\HPTV.exe [c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\HPTV.exe] -> [2009-07-24 19:24:00 | 000,308,520 | ---- | M] (CyberLink Corp.) MediaSmartWebcam -> c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\HPMediaSmartWebcam.exe [c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\HPMediaSmartWebcam.exe] -> [2009-07-13 20:30:34 | 000,263,464 | ---- | M] (CyberLink Corp.) MsoHtmEd.exe -> Reg Error: Value error. [Reg Error: Value error.] -> File not found msworks.exe -> C:\Program Files (x86)\Microsoft Works\MSWorks.exe [C:\Program Files (x86)\Microsoft Works\msworks.exe] -> [2007-06-21 14:04:26 | 000,628,064 | ---- | M] (Microsoft® Corporation) Neffy.exe -> C:\Program Files (x86)\Neffy\AquaDownloader.exe [C:\Program Files (x86)\Neffy\AquaDownloader.exe] -> [2010-04-01 13:12:04 | 001,242,656 | ---- | M] (CDNetworks) None -> C:\Program Files (x86)\CyberLink\DVD Suite\PowerStarter.exe [C:\Program Files (x86)\CyberLink\DVD Suite\PowerStarter.exe] -> [2009-07-02 19:55:18 | 000,337,192 | ---- | M] (CyberLink) pbrush.exe -> C:\Windows\SysWOW64\mspaint.exe [%SystemRoot%\System32\mspaint.exe] -> [2009-07-14 03:14:26 | 006,376,960 | ---- | M] (Microsoft Corporation) PictureViewer.exe -> C:\Program Files (x86)\QuickTime\PictureViewer.exe [C:\Program Files (x86)\QuickTime\PictureViewer.exe] -> [2010-11-29 18:38:06 | 000,561,152 | ---- | M] (Apple Inc.) PLAY ONLINE.exe -> C:\Program Files (x86)\PLAY ONLINE\PLAY ONLINE.exe [C:\Program Files (x86)\PLAY ONLINE\PLAY ONLINE.exe] -> [2011-04-21 14:42:58 | 000,114,688 | ---- | M] () Power2Go -> C:\Program Files (x86)\CyberLink\Power2Go\Power2Go.exe [C:\Program Files (x86)\CyberLink\Power2Go\Power2Go.exe] -> [2009-07-01 18:42:54 | 002,499,880 | ---- | M] (CyberLink Corp.) Power2Go.exe -> C:\Program Files (x86)\CyberLink\Power2Go\Power2Go.exe [C:\Program Files (x86)\CyberLink\Power2Go\Power2Go.exe] -> [2009-07-01 18:42:54 | 002,499,880 | ---- | M] (CyberLink Corp.) Power2GoExpress.exe -> C:\Program Files (x86)\CyberLink\Power2Go\Power2GoExpress.exe [C:\Program Files (x86)\CyberLink\Power2Go\Power2GoExpress.exe] -> [2009-07-01 18:43:34 | 002,667,816 | ---- | M] (CyberLink Corp.) PowerDirector -> C:\Program Files (x86)\CyberLink\PowerDirector\PDR.exe [C:\Program Files (x86)\CyberLink\PowerDirector\PDR.exe] -> [2009-07-01 11:20:06 | 006,055,208 | ---- | M] (CyberLink Corp.) PowerShell.exe -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe [%SystemRoot%\system32\WindowsPowerShell\v1.0\PowerShell.exe] -> [2009-07-14 03:14:24 | 000,452,608 | ---- | M] (Microsoft Corporation) PowerStarter -> C:\Program Files (x86)\CyberLink\DVD Suite\PowerStarter.exe [C:\Program Files (x86)\CyberLink\DVD Suite\PowerStarter.exe] -> [2009-07-02 19:55:18 | 000,337,192 | ---- | M] (CyberLink) PowerStarter.exe -> C:\Program Files (x86)\CyberLink\DVD Suite\PowerStarter.exe [C:\Program Files (x86)\CyberLink\DVD Suite\PowerStarter.exe] -> [2009-07-02 19:55:18 | 000,337,192 | ---- | M] (CyberLink) QuickTimePlayer.exe -> C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe [C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe] -> [2010-11-29 19:19:36 | 001,234,224 | ---- | M] (Apple Inc.) RealPlay.exe -> C:\Program Files (x86)\Real\RealPlayer\realplay.exe [C:\Program Files (x86)\Real\RealPlayer\realplay.exe] -> [2011-04-14 11:53:13 | 000,490,112 | ---- | M] (RealNetworks, Inc.) RealUpgrade.exe -> C:\Program Files (x86)\Real\RealUpgrade\realupgrade.exe [C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe] -> [2011-03-29 10:47:46 | 000,170,624 | ---- | M] (RealNetworks, Inc.) RegCloneCD -> C:\Program Files (x86)\SlySoft\CloneCD\RegCloneCD.exe [C:\Program Files (x86)\SlySoft\CloneCD\RegCloneCD.exe] -> [2007-05-21 21:24:11 | 000,089,288 | ---- | M] (SlySoft, Inc.) rnxproc.exe -> C:\Program Files (x86)\Real\RealPlayer\Update\rnxproc.exe [C:\Program Files (x86)\Real\RealPlayer\Update\rnxproc.exe] -> [2011-04-14 11:53:09 | 000,059,048 | ---- | M] (RealNetworks, Inc.) setup.exe -> Reg Error: Value error. [Reg Error: Value error.] -> File not found sidebar.exe -> C:\Program Files (x86)\Windows Sidebar\sidebar.exe ["%ProgramFiles%\Windows Sidebar\sidebar.exe"] -> [2010-11-20 14:17:41 | 001,174,016 | ---- | M] (Microsoft Corporation) SnippingTool.exe -> [%SystemRoot%\system32\SnippingTool.exe] -> File not found table30.exe -> Reg Error: Value error. [Reg Error: Value error.] -> File not found TouchSmart Media -> c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartMusic.exe [c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\HPTouchSmartMusic.exe] -> [2009-07-23 12:37:50 | 000,162,360 | ---- | M] (CyberLink Corp.) wab.exe -> C:\Program Files (x86)\Windows Mail\wab.exe [%ProgramFiles%\Windows Mail\wab.exe] -> [2010-11-20 14:17:51 | 000,516,096 | ---- | M] (Microsoft Corporation) wabmig.exe -> C:\Program Files (x86)\Windows Mail\wabmig.exe [%ProgramFiles%\Windows Mail\wabmig.exe] -> [2009-07-14 03:14:44 | 000,065,536 | ---- | M] (Microsoft Corporation) winamp.exe -> C:\Program Files (x86)\Winamp\winamp.exe [C:\Program Files (x86)\Winamp\winamp.exe] -> [2010-12-09 12:47:04 | 001,595,744 | ---- | M] (Nullsoft, Inc.) WinRAR.exe -> C:\Program Files\WinRAR\WinRAR.exe [C:\Program Files\WinRAR\WinRAR.exe] -> [2010-01-09 17:52:12 | 001,095,168 | ---- | M] (Alexander Roshal) WKSAB.EXE -> C:\Program Files (x86)\Microsoft Works\wksab.exe [C:\Program Files (x86)\Microsoft Works\WKSAB.exe] -> [2007-06-21 14:04:54 | 000,020,832 | ---- | M] (Microsoft® Corporation) wkscal.exe -> C:\Program Files (x86)\Microsoft Works\WksCal.exe [C:\PROGRA~2\MICROS~2\WksCal.exe] -> [2007-06-21 14:04:54 | 000,709,984 | ---- | M] (Microsoft® Corporation) wksdb.exe -> C:\Program Files (x86)\Microsoft Works\wksdb.exe [C:\Program Files (x86)\Microsoft Works\wksdb.exe] -> [2007-06-21 14:04:54 | 001,242,464 | ---- | M] (Microsoft® Corporation) WKSSB.EXE -> C:\Program Files (x86)\Microsoft Works\WksSb.exe [C:\Program Files (x86)\Microsoft Works\WKSSB.exe] -> [2007-06-21 14:04:54 | 001,099,104 | ---- | M] (Microsoft® Corporation) wksss.exe -> C:\Program Files (x86)\Microsoft Works\wksss.exe [C:\Program Files (x86)\Microsoft Works\wksss.exe] -> [2007-06-21 14:04:54 | 000,947,552 | ---- | M] (Microsoft® Corporation) wkswp.exe -> C:\Program Files (x86)\Microsoft Works\WksWP.exe [C:\Program Files (x86)\Microsoft Works\wkswp.exe] -> [2007-06-21 14:04:56 | 000,693,600 | ---- | M] (Microsoft® Corporation) WORDPAD.EXE -> C:\Program Files (x86)\Windows NT\Accessories\WORDPAD.EXE ["%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE"] -> [2010-11-20 14:17:57 | 004,247,040 | ---- | M] (Microsoft Corporation) WRITE.EXE -> C:\Program Files (x86)\Windows NT\Accessories\WORDPAD.EXE ["%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE"] -> [2010-11-20 14:17:57 | 004,247,040 | ---- | M] (Microsoft Corporation) < 64bit-Approved Shell Extensions [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved -> "{00C6D95F-329C-409a-81D7-C46C66EA7F33}" [HKLM] -> C:\Windows\SysNative\shdocvw.dll [] -> [2010-11-20 15:27:25 | 000,196,608 | ---- | M] (Microsoft Corporation) "{2F603045-309F-11CF-9774-0020AFD0CFF6}" [HKLM] -> C:\Program Files\Synaptics\SynTP\SynTPCpl.dll [Synaptics Control Panel] -> [2010-05-27 22:29:44 | 001,794,344 | ---- | M] (Synaptics Incorporated) "{5E2121EE-0300-11D4-8D3B-444553540000}" [HKLM] -> C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [Catalyst Context Menu extension] -> [2009-07-02 13:33:52 | 000,871,936 | ---- | M] (Advanced Micro Devices, Inc.) "{5FCD4425-CA3A-48F4-A57C-B8A75C32ACB1}" [HKLM] -> C:\Program Files (x86)\Hewlett-Packard\Recovery\Protect.dll [NSE_WithSubFld] -> [2009-07-23 14:47:32 | 000,404,776 | ---- | M] () "{7842554E-6BED-11D2-8CDB-B05550C10000}" [HKLM] -> C:\Program Files\WIDCOMM\Bluetooth Software\BTNCopy.dll [Monitor] -> [2009-07-01 19:54:06 | 000,555,296 | ---- | M] (Broadcom Corporation.) "{80009818-f38f-4af1-87b5-eadab9433e58}" [HKLM] -> C:\Windows\SysNative\mf.dll [MF ADTS Property Handler] -> [2010-11-20 15:26:51 | 004,120,064 | ---- | M] (Microsoft Corporation) "{83238FAE-D346-4E12-8734-D42F7554B3E6}" [HKLM] -> C:\Program Files\DivX\DivX Plus Media Foundation Components\DivXThumbnailProvider.dll [DivX Thumbnail Provider] -> [2010-12-08 20:35:06 | 000,058,880 | ---- | M] (DivX, Inc.) "{872A9397-E0D6-4e28-B64D-52B8D0A7EA35}" [HKLM] -> C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiama64.dll [Display CPL Extension] -> [2009-07-02 13:33:18 | 000,279,552 | ---- | M] (Advanced Micro Devices, Inc.) "{9F97547E-4609-42C5-AE0C-81C61FFAEBC3}" [HKLM] -> C:\Program Files (x86)\AVG\AVG9\avgsea.dll [AVG Shell Extension] -> [2010-07-17 11:00:31 | 000,187,232 | ---- | M] (AVG Technologies CZ, s.r.o.) "{9F97547E-460A-42C5-AE0C-81C61FFAEBC3}" [HKLM] -> Reg Error: Key error. [AVG Find Extension] -> File not found "{B41DB860-64E4-11D2-9906-E49FADC173CA}" [HKLM] -> C:\Program Files\WinRAR\RarExt.dll [WinRAR shell extension] -> [2010-01-09 17:52:03 | 000,166,912 | ---- | M] (Alexander Roshal) "{B41DB860-8EE4-11D2-9906-E49FADC173CA}" [HKLM] -> Reg Error: Key error. [WinRAR shell extension] -> File not found "{B9E1D2CB-CCFF-4AA6-9579-D7A4754030EF}" [HKLM] -> C:\Program Files\iTunes\iTunesMiniPlayer.dll [iTunes] -> [2011-06-07 17:51:16 | 000,141,096 | ---- | M] (Apple Inc.) "{D8D1CE8C-B1EB-4E95-B63B-1531BA60E992}" [HKLM] -> C:\Program Files\DivX\DivX Plus Media Foundation Components\DivXPropertyHandler.dll [DivX Property Handler] -> [2010-12-08 20:36:08 | 001,822,720 | ---- | M] (DivX, Inc.) < Approved Shell Extensions [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved -> "{0563DB41-F538-4B37-A92D-4659049B7766}" [HKLM] -> Reg Error: Key error. [WLMD Message Handler] -> File not found "{5E2121EE-0300-11D4-8D3B-444553540000}" [HKLM] -> Reg Error: Key error. [Catalyst Context Menu extension] -> File not found "{72923739-5A47-40A3-9895-25AF0DFBB9E4}" [HKLM] -> Reg Error: Key error. [Glary Utilities Context Menu Shell Extension] -> File not found "{80009818-f38f-4af1-87b5-eadab9433e58}" [HKLM] -> C:\Windows\SysWOW64\mf.dll [MF ADTS Property Handler] -> [2010-11-20 14:19:33 | 003,207,680 | ---- | M] (Microsoft Corporation) "{83238FAE-D346-4E12-8734-D42F7554B3E6}" [HKLM] -> C:\Program Files (x86)\DivX\DivX Plus Media Foundation Components\DivXThumbnailProvider.dll [DivX Thumbnail Provider] -> [2010-12-08 20:32:44 | 000,065,536 | ---- | M] (DivX, Inc.) "{9F97547E-4609-42C5-AE0C-81C61FFAEBC3}" [HKLM] -> C:\Program Files (x86)\AVG\AVG9\avgse.dll [AVG Shell Extension] -> [2010-07-17 11:00:30 | 000,125,280 | ---- | M] (AVG Technologies CZ, s.r.o.) "{9F97547E-460A-42C5-AE0C-81C61FFAEBC3}" [HKLM] -> Reg Error: Key error. [AVG Find Extension] -> File not found "{D8D1CE8C-B1EB-4E95-B63B-1531BA60E992}" [HKLM] -> C:\Program Files (x86)\DivX\DivX Plus Media Foundation Components\DivXPropertyHandler.dll [DivX Property Handler] -> [2010-12-08 20:33:40 | 001,269,760 | ---- | M] (DivX, Inc.) "{F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4}" [HKLM] -> C:\Program Files (x86)\Real\RealPlayer\rpshell.dll [Shell Extensions for RealOne Player] -> [2011-04-14 11:53:19 | 000,064,672 | ---- | M] (RealNetworks, Inc.) < 64bit-Disabled MSConfig Folder Items [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\ -> C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth.lnk -> -> File not found < 64bit-Disabled MSConfig Registry Items [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ -> AlcoholAutomount hkey=HKCU key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe -> [2010-08-20 13:03:08 | 000,033,120 | ---- | M] (Alcohol Soft Development Team) ALLUpdate hkey=HKCU key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe -> [2011-02-08 01:44:16 | 001,362,944 | ---- | M] () AVG9_TRAY hkey=HKLM key=SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\AVG\AVG9\avgtray.exe -> [2011-03-15 12:57:25 | 002,071,904 | ---- | M] (AVG Technologies CZ, s.r.o.) cFosSpeed hkey=HKLM key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files\cFosSpeed\cfosspeed.exe -> [2010-12-02 16:47:52 | 001,527,992 | R--- | M] (cFos Software GmbH) CloneCDTray hkey=HKLM key=SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\SlySoft\CloneCD\CloneCDTray.exe -> [2009-01-30 00:20:49 | 000,057,344 | ---- | M] (SlySoft, Inc.) DAEMON Tools Lite hkey=HKCU key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe -> [2010-04-01 11:16:20 | 000,357,696 | ---- | M] (DT Soft Ltd) DivXUpdate hkey=HKLM key=SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe -> [2011-03-21 20:56:16 | 001,230,704 | ---- | M] () DpAgent hkey=HKLM key=SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\DigitalPersona\Bin\DpAgent.exe -> [2009-12-01 14:37:46 | 000,842,816 | ---- | M] (DigitalPersona, Inc.) HP Software Update hkey=HKLM key=SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe -> [2008-12-08 14:50:04 | 000,054,576 | ---- | M] (Hewlett-Packard) HPADVISOR hkey=HKCU key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe -> [2009-07-15 17:51:42 | 001,668,664 | ---- | M] (Hewlett-Packard) HPCam_Menu hkey=HKLM key=SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run -> c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe -> [2009-02-25 15:40:48 | 000,218,408 | ---- | M] (CyberLink Corp.) HW_OPENEYE_OUC_PLAY ONLINE hkey=HKCU key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\PLAY ONLINE\UpdateDog\ouc.exe -> [2009-04-14 21:28:46 | 000,110,592 | R--- | M] (Huawei Technologies Co., Ltd.) iTunesHelper hkey=HKLM key=SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\iTunes\iTunesHelper.exe -> [2011-06-07 17:51:12 | 000,421,160 | ---- | M] (Apple Inc.) Komunikator hkey=HKCU key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\Tlen.pl\tlen.exe -> [2009-01-17 16:48:08 | 005,853,672 | ---- | M] (o2.pl Sp. z o.o.) LightScribe Control Panel hkey=HKCU key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -> [2009-06-17 13:13:36 | 002,363,392 | ---- | M] (Hewlett-Packard Company) LogMeIn Hamachi Ui hkey=HKLM key=SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe -> [2011-05-25 17:29:54 | 001,951,112 | ---- | M] (LogMeIn Inc.) msnmsgr hkey=HKCU key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe -> [2010-11-10 02:54:18 | 004,240,760 | ---- | M] (Microsoft Corporation) QlbCtrl.exe hkey=HKLM key=SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe -> [2010-02-25 14:19:48 | 000,323,640 | ---- | M] ( Hewlett-Packard Development Company, L.P.) QuickTime Task hkey=HKLM key=SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\QuickTime\QTTask.exe -> [2010-11-29 18:38:18 | 000,421,888 | ---- | M] (Apple Inc.) SmartMenu hkey=HKLM key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe -> [2009-07-21 11:34:12 | 000,610,872 | ---- | M] () StartCCC hkey=HKLM key=SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe -> [2009-07-02 13:32:20 | 000,098,304 | ---- | M] (Advanced Micro Devices, Inc.) Steam hkey=HKCU key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\Valve\Steam\steam.exe -> [2011-01-24 16:39:04 | 001,242,448 | ---- | M] (Valve Corporation) SunJavaUpdateSched hkey=HKLM key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files\Java\jre6\bin\jusched.exe -> [2009-09-21 16:27:42 | 000,171,520 | ---- | M] (Sun Microsystems, Inc.) SynTPEnh hkey=HKLM key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files\Synaptics\SynTP\SynTPEnh.exe -> [2010-05-27 22:29:18 | 002,096,424 | ---- | M] (Synaptics Incorporated) SysTrayApp hkey=HKLM key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files\IDT\WDM\sttray64.exe -> [2010-03-23 14:53:06 | 000,487,424 | ---- | M] (IDT, Inc.) TkBellExe hkey=HKLM key=SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe -> [2011-04-14 11:53:09 | 000,273,544 | ---- | M] (RealNetworks, Inc.) TomTomHOME.exe hkey=HKCU key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe -> [2011-04-22 14:21:10 | 000,247,728 | ---- | M] (TomTom) Ulead AutoDetector v2 hkey=HKLM key=SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\Common Files\Ulead Systems\Autodetector\Monitor.exe -> [2005-05-23 09:57:42 | 000,090,112 | ---- | M] (Ulead Systems, Inc.) UpdatePRCShortCut hkey=HKLM key=SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe -> [2009-05-19 22:16:16 | 000,222,504 | ---- | M] (CyberLink Corp.) uTorrent hkey=HKCU key=SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\uTorrent\uTorrent.exe -> [2011-03-29 14:59:26 | 000,399,736 | ---- | M] (BitTorrent, Inc.) WinampAgent hkey=HKLM key=SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run -> C:\Program Files (x86)\Winamp\winampa.exe -> [2010-12-09 12:45:58 | 000,074,752 | ---- | M] (Nullsoft, Inc.) < 64bit-Disabled MSConfig State [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\state -> "startup" -> 2 -> < 64bit-Drivers32 [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32 -> "msacm.l3acm" -> C:\Windows\SysNative\l3codeca.acm [C:\Windows\System32\l3codeca.acm] -> [2009-07-14 03:38:53 | 000,081,408 | ---- | M] (Fraunhofer Institut Integrierte Schaltungen IIS) "VIDC.FPS1" -> C:\Windows\SysNative\frapsv64.dll [frapsv64.dll] -> [2010-06-15 04:16:22 | 000,084,992 | ---- | M] (Beepa P/L) < Drivers32 [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32 -> "msacm.ac3acm" -> C:\Windows\SysWow64\ac3acm.acm [ac3acm.acm] -> [2010-01-17 17:18:08 | 000,151,552 | ---- | M] (fccHandler) "msacm.l3acm" -> C:\Windows\SysWOW64\l3codeca.acm [C:\Windows\SysWOW64\l3codeca.acm] -> [2009-07-14 03:14:10 | 000,064,000 | ---- | M] (Fraunhofer Institut Integrierte Schaltungen IIS) "msacm.l3codecp" -> C:\Windows\SysWow64\l3codecp.acm [l3codecp.acm] -> [2009-07-14 03:14:10 | 000,220,672 | ---- | M] (Fraunhofer Institut Integrierte Schaltungen IIS) "msacm.lameacm" -> C:\Windows\SysWow64\lameACM.acm [lameACM.acm] -> [2008-09-24 20:41:12 | 000,839,680 | ---- | M] (http://www.mp3dev.org/) "vidc.cvid" -> C:\Windows\SysWow64\iccvid.dll [iccvid.dll] -> [2010-11-20 14:19:17 | 000,082,944 | ---- | M] (Radius Inc.) "vidc.DIVX" -> C:\Windows\SysWow64\DivX.dll [DivX.dll] -> [2010-02-19 21:27:36 | 000,720,384 | ---- | M] (DivX, Inc.) "VIDC.FPS1" -> C:\Windows\SysWow64\frapsvid.dll [frapsvid.dll] -> [2010-06-15 04:16:24 | 000,086,016 | ---- | M] (Beepa P/L) "VIDC.XVID" -> C:\Windows\SysWow64\xvidvfw.dll [xvidvfw.dll] -> [2010-06-08 18:10:50 | 000,134,144 | ---- | M] () "VIDC.YV12" -> C:\Windows\SysWow64\DivX.dll [DivX.dll] -> [2010-02-19 21:27:36 | 000,720,384 | ---- | M] (DivX, Inc.) < 64bit-Ext (PreApproved) - [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\ -> {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {166B1BCA-3F9C-11CF-8075-444553540000} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {19916E01-B44E-4E31-94A4-4696DF46157B} [HKLM] -> C:\Windows\SysNative\icardie.dll [InformationCardSigninHelper Class] -> [2009-07-14 03:41:05 | 000,084,480 | ---- | M] (Microsoft Corporation) {233C1507-6A77-46A4-9443-F871F945D258} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {3050F819-98B5-11CF-BB82-00AA00BDCE0B} [HKLM] -> C:\Windows\SysNative\mshtmled.dll [HtmlDlgSafeHelper Class] -> [2010-11-20 15:27:02 | 000,097,280 | ---- | M] (Microsoft Corporation) {333C7BC4-460F-11D0-BC04-0080C7055A83} [HKLM] -> C:\Windows\SysNative\tdc.ocx [Tabular Data Control] -> [2009-07-14 03:38:53 | 000,078,336 | ---- | M] (Microsoft Corporation) {3E4D4F1C-2AEE-11D1-9D3D-00C04FC30DF6} [HKLM] -> C:\Windows\SysNative\oleprn.dll [oleprn Class] -> [2009-07-14 03:41:53 | 000,129,536 | ---- | M] (Microsoft Corporation) {4063BE15-3B08-470D-A0D5-B37161CFFD69} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {435899C9-44AB-11D1-AF00-080036234103} [HKLM] -> C:\Windows\SysNative\oleprn.dll [DSPrintQueue Class] -> [2009-07-14 03:41:53 | 000,129,536 | ---- | M] (Microsoft Corporation) {4F664F91-FF01-11D0-8AED-00C04FD7B597} [HKLM] -> C:\Windows\SysNative\oleprn.dll [OleSNMP Class] -> [2009-07-14 03:41:53 | 000,129,536 | ---- | M] (Microsoft Corporation) {5852F5ED-8BF4-11D4-A245-0080C6F74284} [HKLM] -> C:\Program Files\Java\jre6\bin\wsdetect.dll [isInstalled Class] -> [2009-09-21 16:27:42 | 000,120,832 | ---- | M] (Sun Microsystems, Inc.) {65303443-AD66-11D1-9D65-00C04FC30DF6} [HKLM] -> C:\Windows\SysNative\oleprn.dll [OleCvt Class] -> [2009-07-14 03:41:53 | 000,129,536 | ---- | M] (Microsoft Corporation) {67DABFBF-D0AB-41FA-9C46-CC0F21721616} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {6BF52A52-394A-11d3-B153-00C04F79FAA6} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {760C4B83-E211-11D2-BF3E-00805FBE84A6} [HKLM] -> C:\Windows\SysNative\msnetobj.dll [Windows Media Services DRM Storage object] -> [2010-11-20 15:27:04 | 000,325,632 | ---- | M] (Microsoft Corporation) {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {884e2049-217d-11da-b2a4-000e7bbb2b09} [HKLM] -> C:\Windows\SysNative\CertEnrollCtrl.exe [X509 Enrollment WebClassFactory] -> [2009-07-14 03:38:58 | 000,070,144 | ---- | M] (Microsoft Corporation) {884e2051-217d-11da-b2a4-000e7bbb2b09} [HKLM] -> C:\Windows\SysNative\CertEnroll.dll [X509 Machine Enrollment Factory] -> [2010-11-20 15:25:48 | 001,975,296 | ---- | M] (Microsoft Corporation) {88d969c0-f192-11d4-a65f-0040963251e5} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {88d969c1-f192-11d4-a65f-0040963251e5} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {88d969c2-f192-11d4-a65f-0040963251e5} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {88d969c3-f192-11d4-a65f-0040963251e5} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {88d969c4-f192-11d4-a65f-0040963251e5} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {88d969c5-f192-11d4-a65f-0040963251e5} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {8AD9C840-044E-11D1-B3E9-00805F499D93} [HKLM] -> C:\Program Files\Java\jre6\bin\jp2iexp.dll [Java Plug-in 1.6.0_14] -> [2009-09-21 16:27:42 | 000,102,400 | ---- | M] () {8E4062D9-FE1B-4b9e-AA16-5E8EEF68F48E} [HKLM] -> C:\Windows\SysNative\RegCtrl.dll [Registration Control] -> [2009-07-14 03:41:53 | 000,049,152 | ---- | M] (Microsoft Corporation) {92337A8C-E11D-11D0-BE48-00C04FC30DF6} [HKLM] -> C:\Windows\SysNative\oleprn.dll [prturl Class] -> [2009-07-14 03:41:53 | 000,129,536 | ---- | M] (Microsoft Corporation) {A9FC132B-096D-460B-B7D5-1DB0FAE0C062} [HKLM] -> C:\Windows\SysNative\msnetobj.dll [RMGetLicense Class] -> [2010-11-20 15:27:04 | 000,325,632 | ---- | M] (Microsoft Corporation) {C3701884-B39B-11D1-9D68-00C04FC30DF6} [HKLM] -> C:\Windows\SysNative\oleprn.dll [OleInstall Class] -> [2009-07-14 03:41:53 | 000,129,536 | ---- | M] (Microsoft Corporation) {C6E31427-FD7E-4C53-B568-124B191E5DC4} [HKLM] -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [DivX VOD Helper Plug-in] -> [2011-05-06 17:51:00 | 000,496,960 | ---- | M] (DivX, LLC.) {CA8A9780-280D-11CF-A24D-444553540000} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} [HKLM] -> C:\Program Files\Java\jre6\bin\jp2iexp.dll [Java Plug-in 1.6.0_14] -> [2009-09-21 16:27:42 | 000,102,400 | ---- | M] () {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBB} [HKLM] -> C:\Program Files\Java\jre6\bin\jp2iexp.dll [Java Plug-in 1.6.0_14] -> [2009-09-21 16:27:42 | 000,102,400 | ---- | M] () {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBC} [HKLM] -> C:\Program Files\Java\jre6\bin\jp2iexp.dll [Java Plug-in 1.6.0_14] -> [2009-09-21 16:27:42 | 000,102,400 | ---- | M] () {CAFEEFAC-DEC7-0000-0000-ABCDEFFEDCBA} [HKLM] -> C:\Windows\SysNative\deploytk.dll [Deployment Toolkit] -> [2009-09-21 16:27:42 | 000,455,680 | ---- | M] (Sun Microsystems, Inc.) {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBC} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {CFCDAA03-8BE4-11cf-B84B-0020AFBBCCFA} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {D27CDB6E-AE6D-11cf-96B8-444553540000} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {EE09B103-97E0-11CF-978F-00A02463E06F} [HKLM] -> C:\Windows\SysNative\scrrun.dll [Scripting.Dictionary] -> [2009-07-14 03:41:53 | 000,202,752 | ---- | M] (Microsoft Corporation) < Ext (PreApproved) - [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\ -> {02BCC737-B171-4746-94C9-0D8A0B2C0089} [HKLM] -> C:\Program Files (x86)\Microsoft Office\Office12\IEAWSDC.DLL [Microsoft Office Template and Media Control] -> [2008-10-25 07:18:50 | 000,172,880 | ---- | M] () {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} [HKLM] -> C:\Program Files (x86)\QuickTime\QTPlugin.ocx [QuickTime Object] -> [2010-11-29 19:19:36 | 000,800,048 | ---- | M] (Apple Inc.) {166B1BCA-3F9C-11CF-8075-444553540000} [HKLM] -> C:\Windows\SysWOW64\Adobe\Director\SwDir.dll [Shockwave ActiveX Control] -> [2010-08-18 08:22:14 | 000,213,272 | ---- | M] (Adobe Systems, Inc.) {19916E01-B44E-4E31-94A4-4696DF46157B} [HKLM] -> C:\Windows\SysWOW64\icardie.dll [InformationCardSigninHelper Class] -> [2009-07-14 03:15:26 | 000,061,952 | ---- | M] (Microsoft Corporation) {233C1507-6A77-46A4-9443-F871F945D258} [HKLM] -> C:\Windows\SysWOW64\Adobe\Director\SwDir.dll [Shockwave ActiveX Control] -> [2010-08-18 08:22:14 | 000,213,272 | ---- | M] (Adobe Systems, Inc.) {3050F819-98B5-11CF-BB82-00AA00BDCE0B} [HKLM] -> C:\Windows\SysWOW64\mshtmled.dll [HtmlDlgSafeHelper Class] -> [2010-11-20 14:19:47 | 000,067,072 | ---- | M] (Microsoft Corporation) {31261F21-2B16-45EE-BEAB-07C4CFA18B65} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {333C7BC4-460F-11D0-BC04-0080C7055A83} [HKLM] -> C:\Windows\SysWOW64\tdc.ocx [Tabular Data Control] -> [2009-07-14 03:14:10 | 000,066,560 | ---- | M] (Microsoft Corporation) {3760D689-C63B-4422-9A1D-31CA856CD5C1} [HKLM] -> C:\ProgramData\Gadu-Gadu 10\_userdata\ggbho.4.dll [GGClass Class] -> [2010-09-08 09:48:34 | 000,406,112 | ---- | M] (GG Network S.A.) {3E4D4F1C-2AEE-11D1-9D3D-00C04FC30DF6} [HKLM] -> C:\Windows\SysWOW64\oleprn.dll [oleprn Class] -> [2009-07-14 03:16:12 | 000,107,008 | ---- | M] (Microsoft Corporation) {4063BE15-3B08-470D-A0D5-B37161CFFD69} [HKLM] -> C:\Program Files (x86)\QuickTime\QTPlugin.ocx [QuickTime Object] -> [2010-11-29 19:19:36 | 000,800,048 | ---- | M] (Apple Inc.) {4169044D-6BA4-4661-B7D6-E29274F1F458} [HKLM] -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\wtapp_PresenceDetector.dll [WildTangent WTApp Namespace Detector] -> [2010-12-08 03:48:22 | 000,134,376 | ---- | M] (WildTangent, Inc.) {435899C9-44AB-11D1-AF00-080036234103} [HKLM] -> C:\Windows\SysWOW64\oleprn.dll [DSPrintQueue Class] -> [2009-07-14 03:16:12 | 000,107,008 | ---- | M] (Microsoft Corporation) {4F664F91-FF01-11D0-8AED-00C04FD7B597} [HKLM] -> C:\Windows\SysWOW64\oleprn.dll [OleSNMP Class] -> [2009-07-14 03:16:12 | 000,107,008 | ---- | M] (Microsoft Corporation) {5852F5ED-8BF4-11D4-A245-0080C6F74284} [HKLM] -> C:\Program Files (x86)\Java\jre6\bin\wsdetect.dll [isInstalled Class] -> [2011-05-04 04:52:25 | 000,112,416 | ---- | M] (Sun Microsystems, Inc.) {65303443-AD66-11D1-9D65-00C04FC30DF6} [HKLM] -> C:\Windows\SysWOW64\oleprn.dll [OleCvt Class] -> [2009-07-14 03:16:12 | 000,107,008 | ---- | M] (Microsoft Corporation) {6BF52A52-394A-11d3-B153-00C04F79FAA6} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {760C4B83-E211-11D2-BF3E-00805FBE84A6} [HKLM] -> C:\Windows\SysWOW64\msnetobj.dll [Windows Media Services DRM Storage object] -> [2010-11-20 14:19:51 | 000,265,216 | ---- | M] (Microsoft Corporation) {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {884e2049-217d-11da-b2a4-000e7bbb2b09} [HKLM] -> C:\Windows\SysWOW64\CertEnrollCtrl.exe [X509 Enrollment WebClassFactory] -> [2009-07-14 03:14:13 | 000,067,072 | ---- | M] (Microsoft Corporation) {884e2051-217d-11da-b2a4-000e7bbb2b09} [HKLM] -> C:\Windows\SysWOW64\CertEnroll.dll [X509 Machine Enrollment Factory] -> [2010-11-20 14:18:11 | 001,334,272 | ---- | M] (Microsoft Corporation) {88d969c0-f192-11d4-a65f-0040963251e5} [HKLM] -> c:\Windows\SysWOW64\msxml4.dll [XML DOM Document 4.0] -> [2009-07-21 01:05:40 | 001,348,432 | ---- | M] (Microsoft Corporation) {88d969c1-f192-11d4-a65f-0040963251e5} [HKLM] -> c:\Windows\SysWOW64\msxml4.dll [Free Threaded XML DOM Document 4.0] -> [2009-07-21 01:05:40 | 001,348,432 | ---- | M] (Microsoft Corporation) {88d969c2-f192-11d4-a65f-0040963251e5} [HKLM] -> c:\Windows\SysWOW64\msxml4.dll [XML Schema Cache 4.0] -> [2009-07-21 01:05:40 | 001,348,432 | ---- | M] (Microsoft Corporation) {88d969c3-f192-11d4-a65f-0040963251e5} [HKLM] -> c:\Windows\SysWOW64\msxml4.dll [XSL Template 4.0] -> [2009-07-21 01:05:40 | 001,348,432 | ---- | M] (Microsoft Corporation) {88d969c4-f192-11d4-a65f-0040963251e5} [HKLM] -> c:\Windows\SysWOW64\msxml4.dll [XML Data Source Object 4.0] -> [2009-07-21 01:05:40 | 001,348,432 | ---- | M] (Microsoft Corporation) {88d969c5-f192-11d4-a65f-0040963251e5} [HKLM] -> c:\Windows\SysWOW64\msxml4.dll [XML HTTP 4.0] -> [2009-07-21 01:05:40 | 001,348,432 | ---- | M] (Microsoft Corporation) {8AD9C840-044E-11D1-B3E9-00805F499D93} [HKLM] -> C:\Program Files (x86)\Java\jre6\bin\jp2iexp.dll [Java Plug-in 1.6.0_26] -> [2011-05-04 04:52:24 | 000,112,416 | ---- | M] () {8E4062D9-FE1B-4b9e-AA16-5E8EEF68F48E} [HKLM] -> C:\Windows\SysWOW64\RegCtrl.dll [Registration Control] -> [2009-07-14 03:16:13 | 000,041,472 | ---- | M] (Microsoft Corporation) {92337A8C-E11D-11D0-BE48-00C04FC30DF6} [HKLM] -> C:\Windows\SysWOW64\oleprn.dll [prturl Class] -> [2009-07-14 03:16:12 | 000,107,008 | ---- | M] (Microsoft Corporation) {9F9C4924-C3F3-4459-A396-9E9E0D8B83D1} [HKLM] -> Reg Error: Key error. [SharePoint OpenDocuments Class] -> File not found {A9FC132B-096D-460B-B7D5-1DB0FAE0C062} [HKLM] -> C:\Windows\SysWOW64\msnetobj.dll [RMGetLicense Class] -> [2010-11-20 14:19:51 | 000,265,216 | ---- | M] (Microsoft Corporation) {BDEADEF2-C265-11D0-BCED-00A0C90AB50F} [HKLM] -> Reg Error: Key error. [SharePoint OpenDocuments Class] -> File not found {BDEADEF4-C265-11D0-BCED-00A0C90AB50F} [HKLM] -> Reg Error: Key error. [SharePoint Stssync Handler] -> File not found {C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D} [HKLM] -> C:\Program Files (x86)\Google\Update\1.3.21.57\npGoogleUpdate3.dll [Google Update Plugin] -> [2011-06-06 14:04:59 | 000,235,672 | ---- | M] (Google Inc.) {C3701884-B39B-11D1-9D68-00C04FC30DF6} [HKLM] -> C:\Windows\SysWOW64\oleprn.dll [OleInstall Class] -> [2009-07-14 03:16:12 | 000,107,008 | ---- | M] (Microsoft Corporation) {C414535E-B440-4A15-B8A5-0926A76699A5} [HKLM] -> C:\Program Files (x86)\LastPass\LPIEHome.ocx [LPIEHome Control] -> [2011-07-26 00:44:23 | 000,974,376 | ---- | M] (LastPass) {C442AC41-9200-4770-8CC0-7CDB4F245C55} [HKLM] -> C:\Program Files (x86)\Google\Update\1.3.21.57\npGoogleUpdate3.dll [Google Update Plugin] -> [2011-06-06 14:04:59 | 000,235,672 | ---- | M] (Google Inc.) {C6E31427-FD7E-4C53-B568-124B191E5DC4} [HKLM] -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [DivX VOD Helper Plug-in] -> [2011-05-06 17:48:54 | 000,398,656 | ---- | M] (DivX, LLC.) {CA8A9780-280D-11CF-A24D-444553540000} [HKLM] -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroPDF.dll [Adobe PDF Reader] -> [2011-06-07 21:30:47 | 000,660,912 | ---- | M] (Adobe Systems, Inc.) {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} [HKLM] -> C:\Program Files (x86)\Java\jre6\bin\jp2iexp.dll [Java Plug-in 1.6.0_26] -> [2011-05-04 04:52:24 | 000,112,416 | ---- | M] () {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBB} [HKLM] -> C:\Program Files (x86)\Java\jre6\bin\jp2iexp.dll [Java Plug-in 1.6.0_26] -> [2011-05-04 04:52:24 | 000,112,416 | ---- | M] () {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBC} [HKLM] -> C:\Program Files (x86)\Java\jre6\bin\jp2iexp.dll [Java Plug-in 1.6.0_26] -> [2011-05-04 04:52:24 | 000,112,416 | ---- | M] () {CAFEEFAC-DEC7-0000-0000-ABCDEFFEDCBA} [HKLM] -> C:\Windows\SysWOW64\deployJava1.dll [Deployment Toolkit] -> [2011-05-04 04:52:22 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) {CAFEEFAC-DEC7-0000-0001-ABCDEFFEDCBA} [HKLM] -> C:\Windows\SysWOW64\deployJava1.dll [Deployment Toolkit] -> [2011-05-04 04:52:22 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBC} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {CB927D12-4FF7-4A9E-A169-56E4B8A75598} [HKLM] -> C:\Program Files (x86)\QuickTime\QTPlugin.ocx [Behavior Object] -> [2010-11-29 19:19:36 | 000,800,048 | ---- | M] (Apple Inc.) {CFCDAA03-8BE4-11cf-B84B-0020AFBBCCFA} [HKLM] -> C:\Windows\SysWOW64\rmoc3260.dll [RealPlayer G2 Control] -> [2008-09-10 21:56:28 | 000,185,920 | ---- | M] (RealNetworks, Inc.) {D27CDB6E-AE6D-11cf-96B8-444553540000} [HKLM] -> C:\Windows\SysWOW64\Macromed\Flash\Flash10b.ocx [Shockwave Flash Object] -> [2009-02-03 04:07:18 | 003,866,528 | R--- | M] (Adobe Systems, Inc.) {D719897A-B07A-4C0C-AEA9-9B663A28DFCB} [HKLM] -> C:\Program Files (x86)\iTunes\ITDetector.ocx [iTunesDetector Class] -> [2011-06-07 17:51:04 | 000,111,904 | ---- | M] (Apple Inc.) {DFEAF541-F3E1-4c24-ACAC-99C30715084A} [HKLM] -> c:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll [Microsoft Silverlight] -> [2011-05-30 23:32:12 | 001,025,864 | ---- | M] ( Microsoft Corporation) {E7339A62-0E31-4A5E-BA3D-F2FEDFBF8BE5} [HKLM] -> C:\Program Files (x86)\Common Files\microsoft shared\Portal\PortalConnectCore.dll [PersonalSite Class] -> [2008-10-26 06:42:16 | 000,482,656 | ---- | M] () {EE09B103-97E0-11CF-978F-00A02463E06F} [HKLM] -> C:\Windows\SysWOW64\scrrun.dll [Scripting.Dictionary] -> [2009-07-14 03:16:13 | 000,163,840 | ---- | M] (Microsoft Corporation) < Ext (Settings) - [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\ -> 64bit-{32099AAC-C132-4136-9E9A-4E364A424E17} [HKLM] -> [DAEMON Tools Toolbar] -> File not found {32099AAC-C132-4136-9E9A-4E364A424E17} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found 64bit-{395610AE-C624-4F58-B89E-23733EA00F9A} [HKLM] -> C:\Program Files\DigitalPersona\Bin\DpOtsPluginIe8.dll [DigitalPersona Personal Extension] -> [2009-12-01 14:38:00 | 001,889,856 | ---- | M] (DigitalPersona, Inc.) {395610AE-C624-4F58-B89E-23733EA00F9A} [HKLM] -> C:\Program Files (x86)\DigitalPersona\Bin\DpOtsPluginIe8.dll [DigitalPersona Personal Extension] -> [2009-12-01 14:37:48 | 001,256,512 | ---- | M] (DigitalPersona, Inc.) 64bit-{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} [HKLM] -> C:\Program Files (x86)\AVG\AVG9\avgssiea.dll [AVG Safe Search] -> [2010-11-24 15:31:56 | 002,334,560 | ---- | M] (AVG Technologies CZ, s.r.o.) {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} [HKLM] -> C:\Program Files (x86)\AVG\AVG9\avgssie.dll [AVG Safe Search] -> [2010-11-24 15:31:56 | 001,623,392 | ---- | M] (AVG Technologies CZ, s.r.o.) {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {8DCB7100-DF86-4384-8842-8FA844297B3F} [HKLM] -> C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [@C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100] -> [2010-09-22 13:19:36 | 000,612,616 | ---- | M] (Microsoft Corporation) {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} [HKLM] -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [Skype add-on for Internet Explorer] -> [2010-02-08 13:28:14 | 000,804,136 | ---- | M] (Skype Technologies S.A.) {C345E174-3E87-4F41-A01C-B066A90A49B4} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {D27CDB6E-AE6D-11CF-96B8-444553540000} [HKLM] -> C:\Windows\SysWOW64\Macromed\Flash\Flash10b.ocx [Shockwave Flash Object] -> [2009-02-03 04:07:18 | 003,866,528 | R--- | M] (Adobe Systems, Inc.) {D2CE3E00-F94A-4740-988E-03DC2F38C34F} [HKLM] -> C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [Bing Bar BHO] -> [2010-09-22 13:19:36 | 000,612,616 | ---- | M] (Microsoft Corporation) {DE9C389F-3316-41A7-809B-AA305ED9D922} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found < Ext (Stats) - [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\ -> {0000036B-C524-4050-81A0-243669A86B9F} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKLM] -> Reg Error: Key error. [Reg Error: Value error.] -> File not found {166B1BCA-3F9C-11CF-8075-444553540000} [HKLM] -> C:\Windows\SysWOW64\Adobe\Director\SwDir.dll [Shockwave ActiveX Control] -> [2010-08-18 08:22:14 | 000,213,272 | ---- | M] (Adobe Systems, Inc.) {219C3416-8CB2-491A-A3C7-D9FCDDC9D600} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {2670000A-7350-4F3C-8081-5663EE0C6C49} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found 64bit-{32099AAC-C132-4136-9E9A-4E364A424E17} [HKLM] -> [DAEMON Tools Toolbar] -> File not found {32099AAC-C132-4136-9E9A-4E364A424E17} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {3760D689-C63B-4422-9A1D-31CA856CD5C1} [HKLM] -> C:\ProgramData\Gadu-Gadu 10\_userdata\ggbho.4.dll [GGClass Class] -> [2010-09-08 09:48:34 | 000,406,112 | ---- | M] (GG Network S.A.) 64bit-{395610AE-C624-4F58-B89E-23733EA00F9A} [HKLM] -> C:\Program Files\DigitalPersona\Bin\DpOtsPluginIe8.dll [DigitalPersona Personal Extension] -> [2009-12-01 14:38:00 | 001,889,856 | ---- | M] (DigitalPersona, Inc.) {395610AE-C624-4F58-B89E-23733EA00F9A} [HKLM] -> C:\Program Files (x86)\DigitalPersona\Bin\DpOtsPluginIe8.dll [DigitalPersona Personal Extension] -> [2009-12-01 14:37:48 | 001,256,512 | ---- | M] (DigitalPersona, Inc.) 64bit-{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} [HKLM] -> C:\Program Files (x86)\AVG\AVG9\avgssiea.dll [AVG Safe Search] -> [2010-11-24 15:31:56 | 002,334,560 | ---- | M] (AVG Technologies CZ, s.r.o.) {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} [HKLM] -> C:\Program Files (x86)\AVG\AVG9\avgssie.dll [AVG Safe Search] -> [2010-11-24 15:31:56 | 001,623,392 | ---- | M] (AVG Technologies CZ, s.r.o.) {4063BE15-3B08-470D-A0D5-B37161CFFD69} [HKLM] -> C:\Program Files (x86)\QuickTime\QTPlugin.ocx [QuickTime Object] -> [2010-11-29 19:19:36 | 000,800,048 | ---- | M] (Apple Inc.) {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {6D53EC84-6AAE-4787-AEEE-F4628F01010C} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {80EAE3FD-31C3-4A57-9EF4-D481E8CE34EB} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {898EA8C8-E7FF-479B-8935-AEC46303B9E5} [HKLM] -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [Skype add-on for Internet Explorer (toolbar button)] -> [2010-02-08 13:28:14 | 000,804,136 | ---- | M] (Skype Technologies S.A.) {8DCB7100-DF86-4384-8842-8FA844297B3F} [HKLM] -> C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [@C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100] -> [2010-09-22 13:19:36 | 000,612,616 | ---- | M] (Microsoft Corporation) {92780B25-18CC-41C8-B9BE-3C9C571A8263} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} [HKLM] -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [Skype add-on for Internet Explorer] -> [2010-02-08 13:28:14 | 000,804,136 | ---- | M] (Skype Technologies S.A.) {B8DC3C1D-7C89-4F61-9C0F-F461DE99435B} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {C345E174-3E87-4F41-A01C-B066A90A49B4} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {CCA281CA-C863-46EF-9331-5C8D4460577F} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {D27CDB6E-AE6D-11CF-96B8-444553540000} [HKLM] -> C:\Windows\SysWOW64\Macromed\Flash\Flash10b.ocx [Shockwave Flash Object] -> [2009-02-03 04:07:18 | 003,866,528 | R--- | M] (Adobe Systems, Inc.) {D2CE3E00-F94A-4740-988E-03DC2F38C34F} [HKLM] -> C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll [Bing Bar BHO] -> [2010-09-22 13:19:36 | 000,612,616 | ---- | M] (Microsoft Corporation) {DE9C389F-3316-41A7-809B-AA305ED9D922} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found {DFEAF541-F3E1-4C24-ACAC-99C30715084A} [HKLM] -> c:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrl.dll [Microsoft Silverlight] -> [2011-05-30 23:32:12 | 001,025,864 | ---- | M] ( Microsoft Corporation) {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found < 64bit-File Associations - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\ -> .bat [@ = batfile] -> "%1" %* -> .cmd [@ = cmdfile] -> "%1" %* -> .com [@ = comfile] -> "%1" %* -> .exe [@ = exefile] -> "%1" %* -> .html [@ = ChromeHTML] -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe -> [2011-07-09 06:51:19 | 001,012,792 | ---- | M] (Google Inc.) .url [@ = InternetShortcut] -> C:\Windows\SysNative\rundll32.exe -> [2009-07-14 03:39:31 | 000,045,568 | ---- | M] (Microsoft Corporation) .pif [@ = piffile] -> "%1" %* -> .scr [@ = scrfile] -> "%1" /S -> < File Associations - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\ -> .bat [@ = batfile] -> "%1" %* -> .cmd [@ = cmdfile] -> "%1" %* -> .com [@ = comfile] -> "%1" %* -> .cpl [@ = cplfile] -> C:\Windows\SysWow64\control.exe -> [2009-07-14 03:14:15 | 000,113,152 | ---- | M] (Microsoft Corporation) .exe [@ = exefile] -> "%1" %* -> .html [@ = ChromeHTML] -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe -> [2011-07-09 06:51:19 | 001,012,792 | ---- | M] (Google Inc.) .pif [@ = piffile] -> "%1" %* -> .scr [@ = scrfile] -> "%1" /S -> < File Associations - Select to Repair > -> HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\SOFTWARE\Classes\\ -> .html [@ = FirefoxHTML] -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe -> [2011-07-08 09:50:28 | 000,924,632 | ---- | M] (Mozilla Corporation) < 64bit-Protocol Handlers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ -> linkscanner:{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} [HKLM] -> C:\Program Files (x86)\AVG\AVG9\avgppa.dll[XPLPPFilter Class] -> [2010-07-17 11:00:32 | 000,095,584 | ---- | M] (AVG Technologies CZ, s.r.o.) livecall:{828030A1-22C1-4009-854F-8E305202313F} [HKLM] -> Reg Error: Key error.[Reg Error: Key error.] -> File not found ms-help:{314111c7-a502-11d2-bbca-00c04f8ec294} [HKLM] -> Reg Error: Key error.[Reg Error: Key error.] -> File not found ms-itss:{0A9007C0-4076-11D3-8789-0000F8105754} [HKLM] -> Reg Error: Key error.[Reg Error: Key error.] -> File not found msnim:{828030A1-22C1-4009-854F-8E305202313F} [HKLM] -> Reg Error: Key error.[Reg Error: Key error.] -> File not found skype4com:{FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} [HKLM] -> Reg Error: Key error.[Reg Error: Key error.] -> File not found skype-ie-addon-data:{91774881-D725-4E58-B298-07617B9B86A8} [HKLM] -> Reg Error: Key error.[Reg Error: Key error.] -> File not found wlmailhtml:{03C514A3-1EFB-4856-9F99-10D7BE1653C0} [HKLM] -> Reg Error: Key error.[Reg Error: Key error.] -> File not found wlpg:{E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} [HKLM] -> Reg Error: Key error.[Reg Error: Key error.] -> File not found < Protocol Handlers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ -> linkscanner:{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} [HKLM] -> C:\Program Files (x86)\AVG\AVG9\avgpp.dll[XPLPPFilter Class] -> [2010-07-17 11:00:32 | 000,091,488 | ---- | M] (AVG Technologies CZ, s.r.o.) skype4com:{FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} [HKLM] -> C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll[IEProtocolHandler Class] -> [2010-05-13 16:12:42 | 002,135,336 | R--- | M] (Skype Technologies) skype-ie-addon-data:{91774881-D725-4E58-B298-07617B9B86A8} [HKLM] -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll[Skype IE add-on Pluggable Protocol] -> [2010-02-08 13:28:14 | 000,804,136 | ---- | M] (Skype Technologies S.A.) < 64bit-SafeBoot-Minimal Settings > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ -> {36FC9E60-C465-11CF-8056-444553540000} -> Universal Serial Bus controllers {4D36E965-E325-11CE-BFC1-08002BE10318} -> CD-ROM Drive {4D36E967-E325-11CE-BFC1-08002BE10318} -> DiskDrive {4D36E969-E325-11CE-BFC1-08002BE10318} -> Standard floppy disk controller {4D36E96A-E325-11CE-BFC1-08002BE10318} -> Hdc {4D36E96B-E325-11CE-BFC1-08002BE10318} -> Keyboard {4D36E96F-E325-11CE-BFC1-08002BE10318} -> Mouse {4D36E977-E325-11CE-BFC1-08002BE10318} -> PCMCIA Adapters {4D36E97B-E325-11CE-BFC1-08002BE10318} -> SCSIAdapter {4D36E97D-E325-11CE-BFC1-08002BE10318} -> System {4D36E980-E325-11CE-BFC1-08002BE10318} -> Floppy disk drive {533C5B84-EC70-11D2-9505-00C04F79DEAF} -> Volume shadow copy {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} -> IEEE 1394 Bus host controllers {71A27CDD-812A-11D0-BEC7-08002BE2092F} -> Volume {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} -> Human Interface Devices {D48179BE-EC20-11D1-B6B8-00C04FA372A7} -> SBP2 IEEE 1394 Devices {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} -> SecurityDevices AppMgmt -> Service Base -> Driver Group Boot Bus Extender -> Driver Group Boot file system -> Driver Group File system -> Driver Group Filter -> Driver Group HelpSvc -> Service NTDS -> 32bit -> File not found PCI Configuration -> Driver Group PNP Filter -> Driver Group Primary disk -> Driver Group sacsvr -> Service SCSI Class -> Driver Group SolutoService -> C:\Program Files\Soluto\SolutoService.exe -> [2011-07-07 08:49:42 | 000,376,352 | ---- | M] (Soluto) System Bus Extender -> Driver Group TrustedInstaller -> 32bit -> File not found vmms -> Service WinDefend -> C:\Program Files\Windows Defender\MpSvc.dll -> [2009-07-14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) < SafeBoot-Minimal Settings > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ -> {36FC9E60-C465-11CF-8056-444553540000} -> Universal Serial Bus controllers {4D36E965-E325-11CE-BFC1-08002BE10318} -> CD-ROM Drive {4D36E967-E325-11CE-BFC1-08002BE10318} -> DiskDrive {4D36E969-E325-11CE-BFC1-08002BE10318} -> Standard floppy disk controller {4D36E96A-E325-11CE-BFC1-08002BE10318} -> Hdc {4D36E96B-E325-11CE-BFC1-08002BE10318} -> Keyboard {4D36E96F-E325-11CE-BFC1-08002BE10318} -> Mouse {4D36E977-E325-11CE-BFC1-08002BE10318} -> PCMCIA Adapters {4D36E97B-E325-11CE-BFC1-08002BE10318} -> SCSIAdapter {4D36E97D-E325-11CE-BFC1-08002BE10318} -> System {4D36E980-E325-11CE-BFC1-08002BE10318} -> Floppy disk drive {533C5B84-EC70-11D2-9505-00C04F79DEAF} -> Volume shadow copy {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} -> IEEE 1394 Bus host controllers {71A27CDD-812A-11D0-BEC7-08002BE2092F} -> Volume {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} -> Human Interface Devices {D48179BE-EC20-11D1-B6B8-00C04FA372A7} -> SBP2 IEEE 1394 Devices {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} -> SecurityDevices AppInfo -> 64bit -> File not found AppMgmt -> Service Base -> Driver Group Boot Bus Extender -> Driver Group Boot file system -> Driver Group DcomLaunch -> 64bit -> File not found EFS -> 64bit -> File not found EventLog -> 64bit -> File not found File system -> Driver Group Filter -> Driver Group HelpSvc -> Service KeyIso -> 64bit -> File not found Netlogon -> 64bit -> File not found NTDS -> 64bit -> File not found PCI Configuration -> Driver Group PlugPlay -> 64bit -> File not found PNP Filter -> Driver Group Power -> 64bit -> File not found Primary disk -> Driver Group ProfSvc -> 64bit -> File not found RpcEptMapper -> 64bit -> File not found RpcSs -> 64bit -> File not found sacsvr -> Service SCSI Class -> Driver Group sermouse.sys -> 64bit -> File not found SolutoService -> 64bit -> File not found SWPRV -> 64bit -> File not found System Bus Extender -> Driver Group TabletInputService -> 64bit -> File not found TBS -> 64bit -> File not found VDS -> 64bit -> File not found vga.sys -> 64bit -> File not found vgasave.sys -> 64bit -> File not found vmms -> Service volmgr.sys -> 64bit -> File not found volmgrx.sys -> 64bit -> File not found Wdf01000.sys -> 64bit -> File not found WinDefend -> 64bit -> File not found WinMgmt -> 64bit -> File not found WudfPf -> 64bit -> File not found WudfRd -> 64bit -> File not found WudfSvc -> 64bit -> File not found < 64bit-SafeBoot-Network Settings > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ -> {36FC9E60-C465-11CF-8056-444553540000} -> Universal Serial Bus controllers {4D36E965-E325-11CE-BFC1-08002BE10318} -> CD-ROM Drive {4D36E967-E325-11CE-BFC1-08002BE10318} -> DiskDrive {4D36E969-E325-11CE-BFC1-08002BE10318} -> Standard floppy disk controller {4D36E96A-E325-11CE-BFC1-08002BE10318} -> Hdc {4D36E96B-E325-11CE-BFC1-08002BE10318} -> Keyboard {4D36E96F-E325-11CE-BFC1-08002BE10318} -> Mouse {4D36E972-E325-11CE-BFC1-08002BE10318} -> Net {4D36E973-E325-11CE-BFC1-08002BE10318} -> NetClient {4D36E974-E325-11CE-BFC1-08002BE10318} -> NetService {4D36E975-E325-11CE-BFC1-08002BE10318} -> NetTrans {4D36E977-E325-11CE-BFC1-08002BE10318} -> PCMCIA Adapters {4D36E97B-E325-11CE-BFC1-08002BE10318} -> SCSIAdapter {4D36E97D-E325-11CE-BFC1-08002BE10318} -> System {4D36E980-E325-11CE-BFC1-08002BE10318} -> Floppy disk drive {50DD5230-BA8A-11D1-BF5D-0000F805F530} -> Smart card readers {533C5B84-EC70-11D2-9505-00C04F79DEAF} -> Volume shadow copy {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} -> IEEE 1394 Bus host controllers {71A27CDD-812A-11D0-BEC7-08002BE2092F} -> Volume {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} -> Human Interface Devices {D48179BE-EC20-11D1-B6B8-00C04FA372A7} -> SBP2 IEEE 1394 Devices {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} -> SecurityDevices AppMgmt -> Service Base -> Driver Group Boot Bus Extender -> Driver Group Boot file system -> Driver Group File system -> Driver Group Filter -> Driver Group Hamachi2Svc -> 32bit -> File not found HelpSvc -> Service Messenger -> Service NDIS Wrapper -> Driver Group NetBIOSGroup -> Driver Group NetDDEGroup -> Driver Group Network -> Driver Group NetworkProvider -> Driver Group NTDS -> 32bit -> File not found PCI Configuration -> Driver Group PNP Filter -> Driver Group PNP_TDI -> Driver Group Primary disk -> Driver Group rdsessmgr -> Service sacsvr -> Service SCSI Class -> Driver Group SolutoService -> C:\Program Files\Soluto\SolutoService.exe -> [2011-07-07 08:49:42 | 000,376,352 | ---- | M] (Soluto) Streams Drivers -> Driver Group System Bus Extender -> Driver Group TDI -> Driver Group TrustedInstaller -> 32bit -> File not found vmms -> Service WinDefend -> C:\Program Files\Windows Defender\MpSvc.dll -> [2009-07-14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) WudfUsbccidDriver -> Driver < SafeBoot-Network Settings > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ -> {36FC9E60-C465-11CF-8056-444553540000} -> Universal Serial Bus controllers {4D36E965-E325-11CE-BFC1-08002BE10318} -> CD-ROM Drive {4D36E967-E325-11CE-BFC1-08002BE10318} -> DiskDrive {4D36E969-E325-11CE-BFC1-08002BE10318} -> Standard floppy disk controller {4D36E96A-E325-11CE-BFC1-08002BE10318} -> Hdc {4D36E96B-E325-11CE-BFC1-08002BE10318} -> Keyboard {4D36E96F-E325-11CE-BFC1-08002BE10318} -> Mouse {4D36E972-E325-11CE-BFC1-08002BE10318} -> Net {4D36E973-E325-11CE-BFC1-08002BE10318} -> NetClient {4D36E974-E325-11CE-BFC1-08002BE10318} -> NetService {4D36E975-E325-11CE-BFC1-08002BE10318} -> NetTrans {4D36E977-E325-11CE-BFC1-08002BE10318} -> PCMCIA Adapters {4D36E97B-E325-11CE-BFC1-08002BE10318} -> SCSIAdapter {4D36E97D-E325-11CE-BFC1-08002BE10318} -> System {4D36E980-E325-11CE-BFC1-08002BE10318} -> Floppy disk drive {50DD5230-BA8A-11D1-BF5D-0000F805F530} -> Smart card readers {533C5B84-EC70-11D2-9505-00C04F79DEAF} -> Volume shadow copy {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} -> IEEE 1394 Bus host controllers {71A27CDD-812A-11D0-BEC7-08002BE2092F} -> Volume {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} -> Human Interface Devices {D48179BE-EC20-11D1-B6B8-00C04FA372A7} -> SBP2 IEEE 1394 Devices {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} -> SecurityDevices AFD -> 64bit -> File not found AppInfo -> 64bit -> File not found AppMgmt -> Service Base -> Driver Group BFE -> 64bit -> File not found Boot Bus Extender -> Driver Group Boot file system -> Driver Group bowser -> 64bit -> File not found Browser -> 64bit -> File not found DcomLaunch -> 64bit -> File not found dfsc -> 64bit -> File not found DnsCache -> 64bit -> File not found Dot3Svc -> 64bit -> File not found Eaphost -> 64bit -> File not found EFS -> 64bit -> File not found EventLog -> 64bit -> File not found File system -> Driver Group Filter -> Driver Group Hamachi2Svc -> C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe -> [2011-05-25 17:29:52 | 002,275,720 | ---- | M] (LogMeIn Inc.) HelpSvc -> Service IKEEXT -> 64bit -> File not found ipnat.sys -> 64bit -> File not found KeyIso -> 64bit -> File not found LanmanServer -> 64bit -> File not found LanmanWorkstation -> 64bit -> File not found LmHosts -> 64bit -> File not found Messenger -> Service MPSDrv -> 64bit -> File not found MPSSvc -> 64bit -> File not found mrxsmb -> 64bit -> File not found mrxsmb10 -> 64bit -> File not found mrxsmb20 -> 64bit -> File not found NativeWifiP -> 64bit -> File not found NDIS -> 64bit -> File not found NDIS Wrapper -> Driver Group ndiscap -> 64bit -> File not found Ndisuio -> 64bit -> File not found NetBIOS -> 64bit -> File not found NetBIOSGroup -> Driver Group NetBT -> 64bit -> File not found NetDDEGroup -> Driver Group Netlogon -> 64bit -> File not found NetMan -> 64bit -> File not found Network -> Driver Group NetworkProvider -> Driver Group NlaSvc -> 64bit -> File not found Nsi -> 64bit -> File not found nsiproxy.sys -> 64bit -> File not found NTDS -> 64bit -> File not found PCI Configuration -> Driver Group PlugPlay -> 64bit -> File not found PNP Filter -> Driver Group PNP_TDI -> Driver Group PolicyAgent -> 64bit -> File not found Power -> 64bit -> File not found Primary disk -> Driver Group ProfSvc -> 64bit -> File not found rdbss -> 64bit -> File not found rdpencdd.sys -> 64bit -> File not found rdsessmgr -> Service RpcEptMapper -> 64bit -> File not found RpcSs -> 64bit -> File not found sacsvr -> Service SCardSvr -> 64bit -> File not found SCSI Class -> Driver Group sermouse.sys -> 64bit -> File not found SharedAccess -> 64bit -> File not found SolutoService -> 64bit -> File not found Streams Drivers -> Driver Group SWPRV -> 64bit -> File not found System Bus Extender -> Driver Group TabletInputService -> 64bit -> File not found TBS -> 64bit -> File not found Tcpip -> 64bit -> File not found TDI -> Driver Group VaultSvc -> 64bit -> File not found VDS -> 64bit -> File not found vga.sys -> 64bit -> File not found vgasave.sys -> 64bit -> File not found vmms -> Service volmgr.sys -> 64bit -> File not found volmgrx.sys -> 64bit -> File not found Wdf01000.sys -> 64bit -> File not found WinDefend -> 64bit -> File not found WinMgmt -> 64bit -> File not found Wlansvc -> 64bit -> File not found WudfPf -> 64bit -> File not found WudfRd -> 64bit -> File not found WudfSvc -> 64bit -> File not found WudfUsbccidDriver -> Driver < 64bit-Security Center Settings > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center -> 64bit-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center \\"cval" -> [1] -> File not found 64bit-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ -> -> 64bit-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\ -> -> 64bit-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc \Svc\\"VistaSp1" -> [28 4D B2 76 41 04 CA 01 [binary data]] -> File not found \Svc\\"AntiVirusOverride" -> [0] -> File not found \Svc\\"AntiSpywareOverride" -> [0] -> File not found \Svc\\"FirewallOverride" -> [0] -> File not found 64bit-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol\ -> -> < Security Center Settings > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\ -> -> < Windows DomainProfile Firewall Policy Settings > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile \\"DisableNotifications" -> [0] -> File not found \\"EnableFirewall" -> [1] -> File not found HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\Logging\ -> -> < Windows StandardProfile Firewall Policy Settings > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile \\"DisableNotifications" -> [0] -> File not found \\"EnableFirewall" -> [1] -> File not found HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\ -> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\Logging\ -> -> < Session Manager Settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager -> *BootExecute* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\\BootExecute -> autocheck autochk * -> -> File not found *MultiFile Done* -> -> "ExcludeFromKnownDlls" -> [binary data] -> 64bit-*ObjectDirectories* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\\ObjectDirectories -> \Windows -> \Windows -> [2011-07-26 01:03:15 | 000,000,000 | ---D | M] \RPC Control -> -> File not found *MultiFile Done* -> -> *ObjectDirectories* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\\ObjectDirectories -> \Windows -> \Windows -> [2011-07-26 01:03:15 | 000,000,000 | ---D | M] \RPC Control -> -> File not found *MultiFile Done* -> -> 64bit-*PendingFileRenameOperations* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\\PendingFileRenameOperations -> \??\C:\Users\PRZEMEK\AppData\Local\Temp\i4jdel0.exe [\??\C:\Users\PRZEMEK\AppData\Local\Temp\i4jdel0.exe] -> C:\Users\PRZEMEK\AppData\Local\Temp\i4jdel0.exe [C:\Users\PRZEMEK\AppData\Local\Temp\i4jdel0.exe] -> [2011-07-28 14:45:51 | 000,027,411 | ---- | M] () *MultiFile Done* -> -> *PendingFileRenameOperations* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\\PendingFileRenameOperations -> \??\C:\Users\PRZEMEK\AppData\Local\Temp\i4jdel0.exe [\??\C:\Users\PRZEMEK\AppData\Local\Temp\i4jdel0.exe] -> C:\Users\PRZEMEK\AppData\Local\Temp\i4jdel0.exe [C:\Users\PRZEMEK\AppData\Local\Temp\i4jdel0.exe] -> [2011-07-28 14:45:51 | 000,027,411 | ---- | M] () *MultiFile Done* -> -> < Session Manager Environment Settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Environment -> 64bit-"ComSpec" -> C:\Windows\SysNative\cmd.exe -> [2010-11-20 15:24:33 | 000,345,088 | ---- | M] (Microsoft Corporation) "ComSpec" -> C:\Windows\SysWOW64\cmd.exe -> [2010-11-20 14:17:00 | 000,302,592 | ---- | M] (Microsoft Corporation) "TEMP" -> C:\Windows\Temp -> [2011-07-28 14:50:20 | 000,000,000 | ---D | M] "TMP" -> C:\Windows\Temp -> [2011-07-28 14:50:20 | 000,000,000 | ---D | M] "windir" -> C:\Windows -> [2011-07-26 01:03:15 | 000,000,000 | ---D | M] 64bit-*Path* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files\Common Files\Microsoft Shared\Windows Live -> C:\Program Files\Common Files\Microsoft Shared\Windows Live -> [2010-10-21 17:34:52 | 000,000,000 | ---D | M] C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live -> C:\Program Files (x86)\Common Files\microsoft shared\Windows Live -> [2010-10-21 17:34:52 | 000,000,000 | ---D | M] C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common -> C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common -> [2010-09-26 13:12:40 | 000,000,000 | ---D | M] %SystemRoot%\system32 -> C:\Windows\SysNative -> File not found %SystemRoot% -> C:\Windows -> [2011-07-26 01:03:15 | 000,000,000 | ---D | M] %SystemRoot%\System32\Wbem -> C:\Windows\SysNative\wbem -> [2011-04-20 00:15:51 | 000,000,000 | ---D | M] %SYSTEMROOT%\System32\WindowsPowerShell\v1.0\ -> C:\Windows\SysNative\WindowsPowerShell\v1.0\ -> [2011-03-20 18:49:03 | 000,000,000 | ---D | M] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static -> C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static -> [2010-01-23 20:49:47 | 000,000,000 | ---D | M] C:\Program Files\WIDCOMM\Bluetooth Software\ -> C:\Program Files\WIDCOMM\Bluetooth Software\ -> [2010-01-23 20:50:08 | 000,000,000 | ---D | M] C:\Program Files\WIDCOMM\Bluetooth Software\syswow64 -> C:\Program Files\WIDCOMM\Bluetooth Software\syswow64 -> [2010-01-23 20:46:45 | 000,000,000 | ---D | M] C:\Program Files (x86)\Common Files\Ulead Systems\MPEG -> C:\Program Files (x86)\Common Files\Ulead Systems\MPEG -> [2010-08-02 16:21:58 | 000,000,000 | ---D | M] C:\Program Files (x86)\Windows Live\Shared -> C:\Program Files (x86)\Windows Live\Shared -> [2011-03-30 16:05:28 | 000,000,000 | ---D | M] C:\Program Files (x86)\QuickTime\QTSystem\ -> C:\Program Files (x86)\QuickTime\QTSystem\ -> [2010-12-12 17:34:23 | 000,000,000 | ---D | M] *MultiFile Done* -> -> *Path* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files\Common Files\Microsoft Shared\Windows Live -> C:\Program Files\Common Files\Microsoft Shared\Windows Live -> [2010-10-21 17:34:52 | 000,000,000 | ---D | M] C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live -> C:\Program Files (x86)\Common Files\microsoft shared\Windows Live -> [2010-10-21 17:34:52 | 000,000,000 | ---D | M] C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common -> C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common -> [2010-09-26 13:12:40 | 000,000,000 | ---D | M] %SystemRoot%\system32 -> C:\Windows\SysWOW64 -> [2011-07-26 17:53:02 | 000,000,000 | ---D | M] %SystemRoot% -> C:\Windows -> [2011-07-26 01:03:15 | 000,000,000 | ---D | M] %SystemRoot%\System32\Wbem -> C:\Windows\SysWOW64\wbem -> [2011-03-20 18:50:00 | 000,000,000 | ---D | M] %SYSTEMROOT%\System32\WindowsPowerShell\v1.0\ -> C:\Windows\SysWow64\WindowsPowerShell\v1.0\ -> [2011-03-20 18:50:01 | 000,000,000 | ---D | M] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static -> C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static -> [2010-01-23 20:49:47 | 000,000,000 | ---D | M] C:\Program Files\WIDCOMM\Bluetooth Software\ -> C:\Program Files\WIDCOMM\Bluetooth Software\ -> [2010-01-23 20:50:08 | 000,000,000 | ---D | M] C:\Program Files\WIDCOMM\Bluetooth Software\syswow64 -> C:\Program Files\WIDCOMM\Bluetooth Software\syswow64 -> [2010-01-23 20:46:45 | 000,000,000 | ---D | M] C:\Program Files (x86)\Common Files\Ulead Systems\MPEG -> C:\Program Files (x86)\Common Files\Ulead Systems\MPEG -> [2010-08-02 16:21:58 | 000,000,000 | ---D | M] C:\Program Files (x86)\Windows Live\Shared -> C:\Program Files (x86)\Windows Live\Shared -> [2011-03-30 16:05:28 | 000,000,000 | ---D | M] C:\Program Files (x86)\QuickTime\QTSystem\ -> C:\Program Files (x86)\QuickTime\QTSystem\ -> [2010-12-12 17:34:23 | 000,000,000 | ---D | M] *MultiFile Done* -> -> *PATHEXT* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Environment\\PATHEXT -> .COM -> -> File not found .EXE -> -> File not found .BAT -> -> File not found .CMD -> -> File not found .VBS -> -> File not found .VBE -> -> File not found .JS -> -> File not found .JSE -> -> File not found .WSF -> -> File not found .WSH -> -> File not found .MSC -> -> File not found *MultiFile Done* -> -> < Session Manager FileRenameOperations Settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\FileRenameOperations -> < Session Manager KnownDlls Settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDlls -> 64bit-"advapi32" -> C:\Windows\SysNative\advapi32.dll -> [2009-07-14 03:40:01 | 000,877,056 | ---- | M] (Microsoft Corporation) 64bit-"clbcatq" -> C:\Windows\SysNative\clbcatq.dll -> [2009-07-14 03:40:15 | 000,607,744 | ---- | M] (Microsoft Corporation) 64bit-"COMDLG32" -> C:\Windows\SysNative\comdlg32.dll -> [2010-11-20 15:25:58 | 000,594,432 | ---- | M] (Microsoft Corporation) 64bit-"DifxApi" -> C:\Windows\SysNative\difxapi.dll -> [2009-07-14 03:40:30 | 000,504,320 | ---- | M] (Microsoft Corporation) 64bit-"DllDirectory" -> C:\Windows\SysNative -> File not found 64bit-"DllDirectory32" -> C:\Windows\SysWOW64 -> [2011-07-26 17:53:02 | 000,000,000 | ---D | M] 64bit-"gdi32" -> C:\Windows\SysNative\gdi32.dll -> [2010-11-20 15:26:25 | 000,403,968 | ---- | M] (Microsoft Corporation) 64bit-"IERTUTIL" -> C:\Windows\SysNative\iertutil.dll -> [2011-04-29 07:51:45 | 002,443,776 | ---- | M] (Microsoft Corporation) 64bit-"IMAGEHLP" -> C:\Windows\SysNative\imagehlp.dll -> [2010-11-20 15:26:36 | 000,076,800 | ---- | M] (Microsoft Corporation) 64bit-"IMM32" -> C:\Windows\SysNative\imm32.dll -> [2009-07-14 03:41:09 | 000,167,424 | ---- | M] (Microsoft Corporation) 64bit-"kernel32" -> C:\Windows\SysNative\kernel32.dll -> [2011-05-14 09:20:00 | 001,162,752 | ---- | M] (Microsoft Corporation) 64bit-"LPK" -> C:\Windows\SysNative\lpk.dll -> [2009-07-14 03:41:19 | 000,041,984 | ---- | M] (Microsoft Corporation) 64bit-"MSCTF" -> C:\Windows\SysNative\msctf.dll -> [2009-07-14 03:41:28 | 001,067,008 | ---- | M] (Microsoft Corporation) 64bit-"MSVCRT" -> C:\Windows\SysNative\msvcrt.dll -> [2009-07-14 03:41:32 | 000,634,880 | ---- | M] (Microsoft Corporation) 64bit-"NORMALIZ" -> C:\Windows\SysNative\normaliz.dll -> [2009-07-14 03:31:40 | 000,002,560 | ---- | M] (Microsoft Corporation) 64bit-"NSI" -> C:\Windows\SysNative\nsi.dll -> [2009-07-14 03:41:53 | 000,013,824 | ---- | M] (Microsoft Corporation) 64bit-"ole32" -> C:\Windows\SysNative\ole32.dll -> [2010-11-20 15:27:23 | 002,086,912 | ---- | M] (Microsoft Corporation) 64bit-"OLEAUT32" -> C:\Windows\SysNative\oleaut32.dll -> [2011-02-25 08:22:22 | 000,861,696 | ---- | M] (Microsoft Corporation) 64bit-"PSAPI" -> C:\Windows\SysNative\psapi.dll -> [2009-07-14 03:41:53 | 000,009,216 | ---- | M] (Microsoft Corporation) 64bit-"rpcrt4" -> C:\Windows\SysNative\rpcrt4.dll -> [2010-11-20 15:27:24 | 001,219,584 | ---- | M] (Microsoft Corporation) 64bit-"sechost" -> C:\Windows\SysNative\sechost.dll -> [2009-07-14 03:41:53 | 000,113,664 | ---- | M] (Microsoft Corporation) 64bit-"Setupapi" -> C:\Windows\SysNative\setupapi.dll -> [2010-11-20 15:27:25 | 001,900,544 | ---- | M] (Microsoft Corporation) 64bit-"SHELL32" -> C:\Windows\SysNative\shell32.dll -> [2010-11-20 15:27:25 | 014,174,208 | ---- | M] (Microsoft Corporation) 64bit-"SHLWAPI" -> C:\Windows\SysNative\shlwapi.dll -> [2010-11-20 15:27:25 | 000,448,512 | ---- | M] (Microsoft Corporation) 64bit-"URLMON" -> C:\Windows\SysNative\urlmon.dll -> [2011-04-23 00:08:14 | 001,492,992 | ---- | M] (Microsoft Corporation) 64bit-"user32" -> C:\Windows\SysNative\user32.dll -> [2010-11-20 15:27:27 | 001,008,128 | ---- | M] (Microsoft Corporation) 64bit-"USP10" -> C:\Windows\SysNative\usp10.dll -> [2010-11-20 15:27:27 | 000,800,256 | ---- | M] (Microsoft Corporation) 64bit-"WININET" -> C:\Windows\SysNative\wininet.dll -> [2011-04-23 00:08:29 | 001,188,864 | ---- | M] (Microsoft Corporation) 64bit-"WLDAP32" -> C:\Windows\SysNative\Wldap32.dll -> [2010-11-20 15:27:28 | 000,312,832 | ---- | M] (Microsoft Corporation) 64bit-"WS2_32" -> C:\Windows\SysNative\ws2_32.dll -> [2010-11-20 15:27:29 | 000,297,984 | ---- | M] (Microsoft Corporation) "advapi32" -> C:\Windows\SysWow64\advapi32.dll -> [2010-11-20 14:18:02 | 000,640,512 | ---- | M] (Microsoft Corporation) "clbcatq" -> C:\Windows\SysWow64\clbcatq.dll -> [2009-07-14 03:15:03 | 000,522,240 | ---- | M] (Microsoft Corporation) "COMDLG32" -> C:\Windows\SysWow64\comdlg32.dll -> [2010-11-20 14:18:23 | 000,485,888 | ---- | M] (Microsoft Corporation) "DifxApi" -> C:\Windows\SysWow64\difxapi.dll -> [2009-07-14 03:15:11 | 000,315,904 | ---- | M] (Microsoft Corporation) "DllDirectory" -> C:\Windows\SysWOW64 -> [2011-07-26 17:53:02 | 000,000,000 | ---D | M] "DllDirectory32" -> C:\Windows\SysWOW64 -> [2011-07-26 17:53:02 | 000,000,000 | ---D | M] "gdi32" -> C:\Windows\SysWow64\gdi32.dll -> [2010-11-20 14:08:51 | 000,311,296 | ---- | M] (Microsoft Corporation) "IERTUTIL" -> C:\Windows\SysWow64\iertutil.dll -> [2011-04-29 06:54:14 | 002,064,384 | ---- | M] (Microsoft Corporation) "IMAGEHLP" -> C:\Windows\SysWow64\imagehlp.dll -> [2010-11-20 14:19:21 | 000,155,136 | ---- | M] (Microsoft Corporation) "IMM32" -> C:\Windows\SysWow64\imm32.dll -> [2010-11-20 14:08:51 | 000,119,808 | ---- | M] (Microsoft Corporation) "kernel32" -> C:\Windows\SysWow64\kernel32.dll -> [2011-05-14 08:22:22 | 000,837,632 | ---- | M] (Microsoft Corporation) "LPK" -> C:\Windows\SysWow64\lpk.dll -> [2009-07-14 03:11:23 | 000,025,600 | ---- | M] (Microsoft Corporation) "MSCTF" -> C:\Windows\SysWow64\msctf.dll -> [2009-07-14 03:15:43 | 000,828,928 | ---- | M] (Microsoft Corporation) "MSVCRT" -> C:\Windows\SysWow64\msvcrt.dll -> [2009-07-14 03:15:50 | 000,690,688 | ---- | M] (Microsoft Corporation) "NORMALIZ" -> C:\Windows\SysWow64\normaliz.dll -> [2009-07-14 03:09:00 | 000,002,048 | ---- | M] (Microsoft Corporation) "NSI" -> C:\Windows\SysWow64\nsi.dll -> [2009-07-14 03:16:11 | 000,008,704 | ---- | M] (Microsoft Corporation) "ole32" -> C:\Windows\SysWow64\ole32.dll -> [2010-11-20 14:20:49 | 001,414,144 | ---- | M] (Microsoft Corporation) "OLEAUT32" -> C:\Windows\SysWow64\oleaut32.dll -> [2011-02-25 07:34:36 | 000,571,904 | ---- | M] (Microsoft Corporation) "PSAPI" -> C:\Windows\SysWow64\psapi.dll -> [2009-07-14 03:16:12 | 000,006,144 | ---- | M] (Microsoft Corporation) "rpcrt4" -> C:\Windows\SysWow64\rpcrt4.dll -> [2010-11-20 14:08:57 | 000,663,040 | ---- | M] (Microsoft Corporation) "sechost" -> C:\Windows\SysWow64\sechost.dll -> [2009-07-14 03:16:13 | 000,092,160 | ---- | M] (Microsoft Corporation) "Setupapi" -> C:\Windows\SysWow64\setupapi.dll -> [2010-11-20 14:21:14 | 001,667,584 | ---- | M] (Microsoft Corporation) "SHELL32" -> C:\Windows\SysWow64\shell32.dll -> [2010-11-20 14:21:19 | 012,872,192 | ---- | M] (Microsoft Corporation) "SHLWAPI" -> C:\Windows\SysWow64\shlwapi.dll -> [2010-11-20 14:21:19 | 000,350,208 | ---- | M] (Microsoft Corporation) "URLMON" -> C:\Windows\SysWow64\urlmon.dll -> [2011-04-22 21:09:57 | 001,230,848 | ---- | M] (Microsoft Corporation) "user32" -> C:\Windows\SysWow64\user32.dll -> [2010-11-20 14:08:57 | 000,833,024 | ---- | M] (Microsoft Corporation) "USP10" -> C:\Windows\SysWow64\usp10.dll -> [2010-11-20 14:21:33 | 000,626,176 | ---- | M] (Microsoft Corporation) "WININET" -> C:\Windows\SysWow64\wininet.dll -> [2011-04-22 21:10:01 | 000,981,504 | ---- | M] (Microsoft Corporation) "WLDAP32" -> C:\Windows\SysWow64\Wldap32.dll -> [2010-11-20 14:21:36 | 000,269,824 | ---- | M] (Microsoft Corporation) "WS2_32" -> C:\Windows\SysWow64\ws2_32.dll -> [2010-11-20 14:21:38 | 000,206,848 | ---- | M] (Microsoft Corporation) < Registry Shell Spawning - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command -> 64bit-batfile [open] -> "%1" %* -> File not found 64bit-cmdfile [open] -> "%1" %* -> File not found 64bit-comfile [open] -> "%1" %* -> File not found 64bit-exefile [open] -> "%1" %* -> File not found 64bit-http [open] -> "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" -> [2011-07-09 06:51:19 | 001,012,792 | ---- | M] (Google Inc.) 64bit-https [open] -> "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" -> [2011-07-09 06:51:19 | 001,012,792 | ---- | M] (Google Inc.) 64bit-inffile [install] -> %SystemRoot%\System32\InfDefaultInstall.exe "%1" -> [2009-07-14 03:39:13 | 000,010,240 | ---- | M] (Microsoft Corporation) 64bit-InternetShortcut [open] -> "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l -> [2009-07-14 03:39:31 | 000,045,568 | ---- | M] (Microsoft Corporation) 64bit-InternetShortcut [print] -> "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" -> [2009-07-14 03:39:31 | 000,045,568 | ---- | M] (Microsoft Corporation) 64bit-piffile [open] -> "%1" %* -> File not found 64bit-scrfile [config] -> "%1" -> File not found 64bit-scrfile [install] -> rundll32.exe desk.cpl,InstallScreenSaver %l -> File not found 64bit-scrfile [open] -> "%1" /S -> File not found 64bit-Unknown [openas] -> %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 -> File not found 64bit-Directory [Browse with &IrfanView] -> "C:\Program Files (x86)\IrfanView\i_view32.exe" "%1 /thumbs" -> [2011-06-20 16:03:58 | 000,531,456 | ---- | M] (Irfan Skiljan) 64bit-Directory [cmd] -> cmd.exe /s /k pushd "%V" -> [2010-11-20 15:24:33 | 000,345,088 | ---- | M] (Microsoft Corporation) 64bit-Directory [find] -> %SystemRoot%\Explorer.exe -> [2011-02-25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) 64bit-Directory [Winamp.Bookmark] -> "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" -> [2010-12-09 12:47:04 | 001,595,744 | ---- | M] (Nullsoft, Inc.) 64bit-Directory [Winamp.Enqueue] -> "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" -> [2010-12-09 12:47:04 | 001,595,744 | ---- | M] (Nullsoft, Inc.) 64bit-Directory [Winamp.Play] -> "C:\Program Files (x86)\Winamp\winamp.exe" "%1" -> [2010-12-09 12:47:04 | 001,595,744 | ---- | M] (Nullsoft, Inc.) 64bit-Folder [open] -> %SystemRoot%\Explorer.exe -> [2011-02-25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) 64bit-Drive [find] -> %SystemRoot%\Explorer.exe -> [2011-02-25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) batfile [open] -> "%1" %* -> cmdfile [open] -> "%1" %* -> comfile [open] -> "%1" %* -> cplfile [cplopen] -> %SystemRoot%\System32\control.exe "%1",%* -> [2009-07-14 03:14:15 | 000,113,152 | ---- | M] (Microsoft Corporation) exefile [open] -> "%1" %* -> http [open] -> "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" -> [2011-07-09 06:51:19 | 001,012,792 | ---- | M] (Google Inc.) https [open] -> "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" -> [2011-07-09 06:51:19 | 001,012,792 | ---- | M] (Google Inc.) inffile [install] -> %SystemRoot%\System32\InfDefaultInstall.exe "%1" -> [2009-07-14 03:14:21 | 000,009,216 | ---- | M] (Microsoft Corporation) piffile [open] -> "%1" %* -> scrfile [config] -> "%1" -> scrfile [install] -> rundll32.exe desk.cpl,InstallScreenSaver %l -> scrfile [open] -> "%1" /S -> Unknown [openas] -> %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 -> Directory [Browse with &IrfanView] -> "C:\Program Files (x86)\IrfanView\i_view32.exe" "%1 /thumbs" -> [2011-06-20 16:03:58 | 000,531,456 | ---- | M] (Irfan Skiljan) Directory [cmd] -> cmd.exe /s /k pushd "%V" -> [2010-11-20 14:17:00 | 000,302,592 | ---- | M] (Microsoft Corporation) Directory [find] -> %SystemRoot%\Explorer.exe -> [2011-02-25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) Directory [Winamp.Bookmark] -> "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" -> [2010-12-09 12:47:04 | 001,595,744 | ---- | M] (Nullsoft, Inc.) Directory [Winamp.Enqueue] -> "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" -> [2010-12-09 12:47:04 | 001,595,744 | ---- | M] (Nullsoft, Inc.) Directory [Winamp.Play] -> "C:\Program Files (x86)\Winamp\winamp.exe" "%1" -> [2010-12-09 12:47:04 | 001,595,744 | ---- | M] (Nullsoft, Inc.) Folder [open] -> %SystemRoot%\Explorer.exe -> [2011-02-25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) Drive [find] -> %SystemRoot%\Explorer.exe -> [2011-02-25 08:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) < Winsock2 Catalogs [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\ -> 64bit-NameSpace_Catalog5\Catalog_Entries\000000000010 [mdnsNSP] -> C:\Program Files (x86)\Bonjour\mdnsNSP.dll -> [2011-04-06 16:20:16 | 000,152,864 | ---- | M] (Apple Inc.) NameSpace_Catalog5\Catalog_Entries\000000000010 [mdnsNSP] -> C:\Program Files (x86)\Bonjour\mdnsNSP.dll -> [2011-04-06 16:20:16 | 000,152,864 | ---- | M] (Apple Inc.) < Default Protocols [HKEY_LOCAL_MACHINE\] - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults -> ldap -> 4 = Restricted sites (Not a Default Protocol) -> news -> 4 = Restricted sites (Not a Default Protocol) -> nntp -> 4 = Restricted sites (Not a Default Protocol) -> oecmd -> 4 = Restricted sites (Not a Default Protocol) -> snews -> 4 = Restricted sites (Not a Default Protocol) -> < Default Protocols [HKEY_USERS\S-1-5-19\] - Select to Repair > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults -> @ivt -> @ivt protocol not assigned -> file -> file protocol not assigned -> ftp -> ftp protocol not assigned -> http -> http protocol not assigned -> https -> https protocol not assigned -> shell -> shell protocol not assigned -> < Default Protocols [HKEY_USERS\S-1-5-20\] - Select to Repair > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults -> @ivt -> @ivt protocol not assigned -> file -> file protocol not assigned -> ftp -> ftp protocol not assigned -> http -> http protocol not assigned -> https -> https protocol not assigned -> shell -> shell protocol not assigned -> < 64bit-Uninstall List [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ -> {071c9b48-7c32-4621-a0ac-3f809523288f} -> Microsoft Visual C++ 2005 Redistributable (x64) {0E543634-7E25-4B8F-8D5B-97880E5E5088} -> Bonjour {1B8ABA62-74F0-47ED-B18C-A43128E591B8} -> Windows Live ID Sign-in Assistant {2426E29F-9E8C-4C0B-97FC-0DB690C1ED98} -> Windows Live Remote Client Resources {26A24AE4-039D-4CA4-87B4-2F86416014FF} -> Java(TM) 6 Update 14 (64-bit) {28D73032-5DAA-4F83-B154-85105DBCCB92} -> iTunes {33B18075-C7DF-4839-8517-C6E9338D84F2} -> HP 3D DriveGuard {439760BC-7737-4386-9B1D-A90A3E8A22EA} -> Apple Mobile Device Support {46A5FBE9-ADB3-4493-A1CC-B4CFFD24D26A} -> Windows Live Family Safety {480F28F0-8BCE-404A-A52E-0DBB7D1CE2EF} -> Windows Live Remote Service Resources {4B6C7001-C7D6-3710-913E-5BC23FCE91E6} -> Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 {5EB6F3CB-46F4-451F-A028-7F6D8D35D7D0} -> Windows Live Language Selector {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} -> Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 {62A20ECA-920E-4052-BF77-88C78DD20FAA} -> Validity Sensors DDK {6C47240C-016E-03B5-D13E-AECAED09F2E3} -> ATI Catalyst Install Manager {8338783A-0968-3B85-AFC7-BAAE0A63DC50} -> Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 {88E60521-1E4E-4785-B9F1-1798A4BD0C30} -> HP MediaSmart SmartMenu {90120000-002A-0000-1000-0000000FF1CE} -> Microsoft Office Office 64-bit Components 2007 {90120000-002A-0415-1000-0000000FF1CE} -> Microsoft Office Shared 64-bit MUI (Polish) 2007 {95120000-00B9-0409-1000-0000000FF1CE} -> Microsoft Application Error Reporting {9E9D49A4-1DF4-4138-B7DB-5D87A893088E} -> HP Integrated Module with Bluetooth wireless technology {A49402DD-2781-3782-B0CF-52BDA349E3F3} -> Microsoft .NET Framework 4 Client Profile PLK Language Pack {aac9fcc4-dd9e-4add-901c-b5496a07ab2e} -> Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 {ad8a2fa1-06e7-4b0d-927d-6e54b3d31028} -> Microsoft Visual C++ 2005 Redistributable (x64) {ADEB3402-CFBD-00E2-0EE6-F6A3F1AFACF0} -> ccc-utility64 {AF4CD5A3-7D69-445E-B0C0-A6A575793B94} -> Soluto {B6E3757B-5E77-3915-866A-CCFC4B8D194C} -> Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 {C02C2C22-2EB1-47C8-B74F-8AB1A62FAE31} -> Windows Live Family Safety {DA54F80E-261C-41A2-A855-549A144F2F59} -> Windows Live MIME IFilter {DF6D988A-EEA0-4277-AAB8-158E086E439B} -> Windows Live Remote Client {E02A6548-6FDE-40E2-8ED9-119D7D7E641F} -> Windows Live Remote Service {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4} -> Microsoft .NET Framework 4 Client Profile {F74D69E5-ECFD-45D1-A87A-341208ADD7CC} -> DigitalPersona Personal 4.11 CCleaner -> CCleaner cFosSpeed -> cFosSpeed v6.10 FFE7D41DF3C645075BB149E21988B63996C34187 -> ENE CIR Receiver Driver Microsoft .NET Framework 4 Client Profile -> Microsoft .NET Framework 4 Client Profile Microsoft .NET Framework 4 Client Profile PLK Language Pack -> Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile SynTPDeinstKey -> Synaptics Pointing Device Driver WinRAR archiver -> Archiwizator WinRAR < Uninstall List [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ -> {002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C} -> Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 {01FB4998-33C4-4431-85ED-079E3EEFE75D} -> HP MediaSmart Webcam {048298C9-A4D3-490B-9FF9-AB023A9238F3} -> Steam(TM) {0654EA5D-308A-4196-882B-5C09744A5D81} -> Windows Live Photo Common {07FA4960-B038-49EB-891B-9F95930AA544} -> HP Customer Experience Enhancements {08234a0d-cf39-4dca-99f0-0c5cb496da81} -> Bing Bar {09CC0D0E-061D-3C7B-3881-D2EB53A8AAFC} -> CCC Help Polish {0B0F231F-CE6A-483D-AA23-77B364F75917} -> Windows Live Installer {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} -> Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 {1F6199F9-9BED-4B43-9E5C-8495086EE714} -> Ulead CD & DVD PictureShow 4 {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} -> Junk Mail filter update {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} -> CyberLink DVD Suite {200FEC62-3C34-4D60-9CE8-EC372E01C08F} -> Windows Live SOXE Definitions {254C37AA-6B72-4300-84F6-98A82419187E} -> ActiveCheck component for HP Active Support Library {26604C7E-A313-4D12-867F-7C6E7820BE4C} -> JMicron Flash Media Controller Driver {26606D8F-3133-DBE2-8AF5-AB28F300860A} -> CCC Help Chinese Standard {266D0EEA-E5A6-4A08-A0EE-5391D4EA44A7} -> Catalyst Control Center - Branding {26A24AE4-039D-4CA4-87B4-2F83216022FF} -> Java(TM) 6 Update 26 {26E3C07C-7FF7-4362-9E99-9E49E383CF16} -> Windows Live Writer Resources {28C2DED6-325B-4CC7-983A-1777C8F7FBAB} -> RealUpgrade 1.1 {2C7E8AA1-9C03-4606-BF34-5D99D07964DA} -> Windows Live Messenger {2EBA8202-FBD5-4004-81EA-BDC38C054CE2} -> HP User Guides 0153 {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App -> Update Installer for WildTangent Games App {2FDBBCEA-62DB-45F4-B6E5-0E1FB2A1F29D} -> Visual C++ 8.0 Runtime Setup Package (x64) {3023EBDA-BF1B-4831-B347-E5018555F26E} -> HP MediaSmart Movie Themes {306B39C9-3AB1-4161-8567-9C7E50B41AE3} -> Microsoft Works {31B2448E-7DF0-11DE-B3C1-5B8B55D89593}_is1 -> Angielskie Słówka {3336F667-9049-4D46-98B6-4C743EEBC5B1} -> Windows Live Photo Gallery {33C17B75-EA9C-0687-9CED-03D92637B042} -> CCC Help Hungarian {34D2AB40-150D-475D-AE32-BD23FB5EE355} -> HP Quick Launch Buttons {3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA} -> NVIDIA PhysX {3FBDB7B8-7472-E895-2E5D-99D190B2D1B6} -> Catalyst Control Center InstallProxy {40BF1E83-20EB-11D8-97C5-0009C5020658} -> Power2Go {44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5} -> PowerRecover {46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB} -> Adobe AIR {4A03706F-666A-4037-7777-5F2748764D10} -> Java Auto Updater {4CB0307C-565E-4441-86BE-0DF2E4FB828C} -> Microsoft Games for Windows Marketplace {4CBABDFD-49F8-47FD-BE7D-ECDE7270525A} -> Windows Live PIMT Platform {4E432692-A736-4F77-AF77-F9078CF88D31} -> HP Wireless Assistant {5271C0D4-24E4-4C3D-A782-C012033FD3CF} -> AMD USB Filter Driver {543E6ACA-51B7-4283-82F2-57C0582A53C5} -> Windows Live UX Platform Language Pack {546937C5-0529-333E-0D5E-FE3C53108806} -> CCC Help Japanese {55C70B62-5EF1-D527-7CAB-E50D8B3B4990} -> Catalyst Control Center Graphics Full New {57752979-A1C9-4C02-856B-FBB27AC4E02C} -> QuickTime {577ED77E-25D9-1A76-4EF0-773B9C173758} -> CCC Help Portuguese {5DB4EA68-A509-D408-585C-C9D045FADF72} -> Catalyst Control Center Graphics Previews Vista {5EE7D259-D137-4438-9A5F-42F432EC0421} -> VC80CRTRedist - 8.0.50727.4053 {64376910-1860-4CEF-8B34-AA5D205FC5F1} -> Poczta usługi Windows Live {65C0025A-2CDE-43C5-82D0-C7A56EF0DB39} -> Bing Bar Platform {669D4A35-146B-4314-89F1-1AC3D7B88367} -> HPAsset component for HP Active Support Library {67626E09-5366-4480-8F1E-93FADF50CA15} -> HP MediaSmart Live TV {682B3E4F-696A-42DE-A41C-4C07EA1678B4} -> Windows Live SOXE {69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4} -> Windows Media Player Firefox Plugin {6D335F78-1F4F-7826-56DD-4F350EA6EADD} -> CCC Help Greek {6EF04EAE-0354-9919-E757-F1203E6F422B} -> CCC Help Italian {7028B245-30A2-BD8C-31B9-6008216FBDC2} -> CCC Help French {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp -> WildTangent Games App (HP Games) {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} -> Microsoft Visual C++ 2005 Redistributable {770657D0-A123-3C07-8E44-1C83EC895118} -> Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 {7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA} -> RealNetworks - Microsoft Visual C++ 2008 Runtime {779D3256-84D0-936F-18F9-A154DC85B4B4} -> Catalyst Control Center Localization All {78A96B4C-A643-4D0F-98C2-A8E16A6669F9} -> Windows Live Messenger Companion Core {7A9D47BA-6D50-4087-866F-0800D8B89383} -> Podstawowe programy Windows Live {7F4DA5B8-6884-47F2-AEBA-D9111E420C63} -> CCC Help Danish {7F9A8D27-A1B9-164F-FCB1-0B64C88629CF} -> CCC Help Norwegian {803263F7-8CAC-DC6D-3288-8128865A7472} -> CCC Help German {82EF29B1-9B60-4142-A155-0599216DD053} -> LightScribe System Software {8833FFB6-5B0C-4764-81AA-06DFEED9A476} -> Realtek 8136 8168 8169 Ethernet Driver {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} -> Microsoft Silverlight {8B743AA0-53B2-11D2-808A-00600895FB43} -> Heroes of Might and Magic III - Złota Edycja {8C6D6116-B724-4810-8F2D-D047E6B7D68E} -> Mesh Runtime {8CC47AA0-5774-61FC-6A59-7E1C936DB753} -> ccc-core-static {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} -> MSVCRT {8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533} -> TomTom HOME Visual Studio Merge Modules {90120000-0016-0415-0000-0000000FF1CE} -> Microsoft Office Excel MUI (Polish) 2007 {90120000-0016-0415-0000-0000000FF1CE}_HOMESTUDENTR_{79EB535E-76E4-4356-8146-A24EE55AB69D} -> Microsoft Office 2007 Service Pack 2 (SP2) {90120000-0018-0415-0000-0000000FF1CE} -> Microsoft Office PowerPoint MUI (Polish) 2007 {90120000-0018-0415-0000-0000000FF1CE}_HOMESTUDENTR_{79EB535E-76E4-4356-8146-A24EE55AB69D} -> Microsoft Office 2007 Service Pack 2 (SP2) {90120000-001B-0415-0000-0000000FF1CE} -> Microsoft Office Word MUI (Polish) 2007 {90120000-001B-0415-0000-0000000FF1CE}_HOMESTUDENTR_{79EB535E-76E4-4356-8146-A24EE55AB69D} -> Microsoft Office 2007 Service Pack 2 (SP2) {90120000-001F-0407-0000-0000000FF1CE} -> Microsoft Office Proof (German) 2007 {90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{A0516415-ED61-419A-981D-93596DA74165} -> Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) {90120000-001F-0409-0000-0000000FF1CE} -> Microsoft Office Proof (English) 2007 {90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045} -> Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) {90120000-001F-0415-0000-0000000FF1CE} -> Microsoft Office Proof (Polish) 2007 {90120000-001F-0415-0000-0000000FF1CE}_HOMESTUDENTR_{E9EA2604-8AC9-47D2-8F4B-6BF60787A357} -> Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) {90120000-0020-0415-0000-0000000FF1CE} -> Pakiet zgodności dla systemu Office 2007 {90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{E64BA721-2310-4B55-BE5A-2925F9706192} -> Microsoft Office 2007 Service Pack 2 (SP2) {90120000-002A-0415-1000-0000000FF1CE}_HOMESTUDENTR_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6} -> Microsoft Office 2007 Service Pack 2 (SP2) {90120000-002C-0415-0000-0000000FF1CE} -> Microsoft Office Proofing (Polish) 2007 {90120000-006E-0415-0000-0000000FF1CE} -> Microsoft Office Shared MUI (Polish) 2007 {90120000-006E-0415-0000-0000000FF1CE}_HOMESTUDENTR_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6} -> Microsoft Office 2007 Service Pack 2 (SP2) {90120000-00A1-0415-0000-0000000FF1CE} -> Microsoft Office OneNote MUI (Polish) 2007 {90120000-00A1-0415-0000-0000000FF1CE}_HOMESTUDENTR_{79EB535E-76E4-4356-8146-A24EE55AB69D} -> Microsoft Office 2007 Service Pack 2 (SP2) {90140000-2005-0000-0000-0000000FF1CE} -> Microsoft Office File Validation Add-In {910F4A29-1134-49E0-AD8B-56E4A3152BD1} -> The Sims™ 3 Kariera {91120000-002F-0000-0000-0000000FF1CE} -> Microsoft Office Home and Student 2007 {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B} -> Microsoft Office 2007 Service Pack 2 (SP2) {91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF} -> Security Update for Microsoft Office system 2007 (972581) {92606477-9366-4D3B-8AE3-6BE4B29727AB} -> League of Legends {92EA4134-10D1-418A-91E1-5A0453131A38} -> Windows Live Movie Maker {95120000-00AF-0415-0000-0000000FF1CE} -> Microsoft Office PowerPoint Viewer 2007 (Polish) {981029E0-7FC9-4CF3-AB39-6F133621921A} -> Skype Toolbars {9A25302D-30C0-39D9-BD6F-21E6EC160475} -> Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 {9A28867B-109A-5BBF-85C0-FC1BAA98CA1C} -> CCC Help Russian {9BE518E6-ECC6-35A9-88E4-87755C07200F} -> Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 {9D56775A-93F3-44A3-8092-840E3826DE30} -> Windows Live Mail {A6C11493-C2E4-4240-A59F-5DC804071DA6} -> Hemera Photo-Objects 1000 {A726AE06-AAA3-43D1-87E3-70F510314F04} -> Windows Live Writer {A8BCC9E4-9036-3029-F2BC-AA73A62DA73D} -> CCC Help Turkish {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} -> Google Update Helper {A9BDCA6B-3653-467B-AC83-94367DA3BFE3} -> Windows Live Photo Common {AAAFC670-569B-4A2F-82B4-42945E0DE3EF} -> Windows Live Writer {AC76BA86-7AD7-1045-7B44-A94000000001} -> Adobe Reader 9.4.5 - Polish {B04A0E2F-1E4C-4E61-B18E-3B2BD6779CA7} -> Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych {B2EE25B9-5B00-4ACF-94F0-92433C28C39E} -> HP MediaSmart Music/Photo/Video {B3575D00-27EF-49C2-B9E0-14B3D954E992} -> Apple Application Support {B53E61D7-7C80-40DF-82D2-CF5390D6D20A} -> HP Advisor {B5C746E6-D961-445C-3768-5B6FAF6A1A31} -> CCC Help Spanish {BD8DA595-F501-4ABE-85A0-5C23E82472A0} -> Pomocnik Messenger {BEWINTERNET-PL}.UninstallSuite -> Business Everywhere {BF35168D-F6F9-4202-BA87-86B5E3C9BF7A} -> Windows Live Mesh {C05D8CDB-417D-4335-A38C-A0659EDFD6B8} -> The Sims™ 3 {C0769946-2CF1-9E8D-009B-5C413B3F01D1} -> CCC Help Czech {C3A32068-8AB1-4327-BB16-BED9C6219DC7} -> Atheros Driver Installation Program {C4F7EEE5-3D99-8552-7483-B2F412838B2A} -> Catalyst Control Center Graphics Previews Common {C59C179C-668D-49A9-B6EA-0121CCFC1243} -> LabelPrint {C6579A65-9CAE-4B31-8B6B-3306E0630A66} -> Apple Software Update {CB099890-1D5F-11D5-9EA9-0050BAE317E1} -> PowerDirector {CB3F59BB-7858-41A1-A7EA-4B8A6FC7D431} -> Galeria fotografii usługi Windows Live {CE95A79E-E4FC-4FFF-8A75-29F04B942FF2} -> Windows Live UX Platform {CFF8B8E8-E086-4DE0-935F-FE22CAB54F80} -> Microsoft Search Enhancement Pack {D0B44725-3666-492D-BEF6-587A14BD9BD9} -> MSVCRT_amd64 {D103C4BA-F905-437A-8049-DB24763BBE36} -> Skype™ 4.2 {D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1 -> Rapture3D 2.4.8 Game {D45240D3-B6B3-4FF9-B243-54ECE3E10066} -> Windows Live Communications Platform {D46D081B-F60E-467E-A7C4-117B70D76731} -> HP Update {D4C41D27-A2D5-94C6-1D08-3D470A12EAF0} -> CCC Help Swedish {D9D6A848-1BFD-592B-5F9D-0BA8692FDF0B} -> CCC Help Finnish {DCCAD079-F92C-44DA-B258-624FC6517A5A} -> HP MediaSmart DVD {DCD91C2F-3A86-B328-59A0-5EED6190D983} -> Catalyst Control Center Graphics Full Existing {DECDCB7C-58CC-4865-91AF-627F9798FE48} -> Windows Live Mesh {DF5A03CC-D5AA-43D8-B948-D9903F2AF94A} -> Counter-Strike(TM) {E09C4DB7-630C-4F06-A631-8EA7239923AF} -> D3DX10 {E17141A6-211D-5854-61D9-69827A430D82} -> EA Download Manager UI {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001} -> IDT Audio {E3E71D07-CD27-46CB-8448-16D4FB29AA13} -> Microsoft WSE 3.0 Runtime {E50AE784-FABE-46DA-A1F8-7B6B56DCB22E} -> Microsoft Office Suite Activation Assistant {E553760D-D7F7-48BF-BD8B-C7E23BA04CB5} -> HP MediaSmart Internet TV {E55E0C35-AC3C-4683-BA2F-834348577B80} -> Windows Live Writer {E5B77685-3AEB-432D-8F73-29FEEEE89613} -> Twierdza Krzyżowiec {E5F5CAA5-84ED-DE41-40D0-8926FE7E5F4D} -> Catalyst Control Center Graphics Light {E6CE345D-BF83-1242-9E4D-3D60A5036D87} -> CCC Help English {E92D47A1-D27D-430A-8368-0BAFD956507D} -> HP Support Assistant {EB4DF488-AAEF-406F-A341-CB2AAA315B90} -> Windows Live Messenger {EC155897-712F-5637-A5DA-6C7CE7CB5521} -> CCC Help Korean {EEF985E8-8B36-4230-B174-117A2381C17F} -> LogMeIn Hamachi {F0580F64-44A1-C607-9364-887912B74F4D} -> CCC Help Thai {F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8} -> Microsoft SQL Server 2005 Compact Edition [ENU] {F1D7AC58-554A-4A58-B784-B61558B1449A} -> QLBCASL {F2508213-9989-4E85-A078-72BE483917EF} -> Microsoft Games for Windows - LIVE Redistributable {F2E23139-3404-4E3C-9855-7724415D62A5} -> Dragon Age II {F3B912F5-EB57-45AA-B3D1-EB532BCF6EF8} -> HP Setup {F3F9A4E5-CD9F-4657-CF99-5CE3F7729909} -> Catalyst Control Center Core Implementation {F5B1D41A-05B9-98E2-C350-E69D4A444CB4} -> CCC Help Chinese Traditional {F80E5450-3EF3-4270-B26C-6AC53BEC5E76} -> Windows Live Movie Maker {FCF0F615-6E70-B949-028F-88D32C55C2BC} -> CCC Help Dutch {FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4} -> Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 Adobe AIR -> Adobe AIR Adobe Flash Player ActiveX -> Adobe Flash Player 10 ActiveX Adobe Flash Player Plugin -> Adobe Flash Player 10 Plugin Adobe Shockwave Player -> Adobe Shockwave Player 11.5 ALLPlayer_is1 -> ALLPlayer V4.X AVerMedia TV Tuner Card -> AVerMedia TV Tuner Card 1.0.0.3 AVG9Uninstall -> AVG Free 9.0 blueconnect_is1 -> blueconnect CloneCD -> CloneCD com.ea.Vault.919CACB699904AC5D41B606703500DD39747C02D.1 -> EA Download Manager UI DivX Setup.divx.com -> DivX Setup EA Download Manager -> EA Download Manager Gadu-Gadu 10 -> Gadu-Gadu 10 GameSpy Arcade -> GameSpy Arcade Google Chrome -> Google Chrome HOMESTUDENTR -> Microsoft Office Home and Student 2007 ImgBurn -> ImgBurn InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} -> HP MediaSmart Webcam InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} -> CyberLink DVD Suite InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E} -> HP MediaSmart Movie Themes InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} -> Power2Go InstallShield_{67626E09-5366-4480-8F1E-93FADF50CA15} -> HP MediaSmart Live TV InstallShield_{A6C11493-C2E4-4240-A59F-5DC804071DA6} -> Hemera Photo-Objects 1000 InstallShield_{B2EE25B9-5B00-4ACF-94F0-92433C28C39E} -> HP MediaSmart Music/Photo/Video InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} -> LabelPrint InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1} -> PowerDirector InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A} -> HP MediaSmart DVD InstallShield_{E553760D-D7F7-48BF-BD8B-C7E23BA04CB5} -> HP MediaSmart Internet TV IrfanView -> IrfanView (remove only) KLiteCodecPack_is1 -> K-Lite Codec Pack 6.1.0 (Full) LogMeIn Hamachi -> LogMeIn Hamachi Malwarebytes' Anti-Malware_is1 -> Malwarebytes' Anti-Malware wersja 1.51.1.1800 Mozilla Firefox 5.0.1 (x86 pl) -> Mozilla Firefox 5.0.1 (x86 pl) NapiProjekt_is1 -> NapiProjekt 1.0.6.9 Neffy -> Neffy 1,3,29,0 OpenAL -> OpenAL PLAY ONLINE -> PLAY ONLINE RealAlt_is1 -> Real Alternative 1.9.0 Lite RealPlayer 12.0 -> RealPlayer Software Informer_is1 -> Software Informer 1.0 BETA SystemRequirementsLab -> System Requirements Lab Tlen.pl -> Tlen.pl TomTom HOME -> TomTom HOME 2.8.2.2264 Totalcmd -> Total Commander (Remove or Repair) uTorrent -> µTorrent WildTangent hp Master Uninstall -> HP Games Winamp -> Winamp WinLiveSuite -> Podstawowe programy Windows Live WinX DVD Player_is1 -> WinX DVD Player 3.0 < Uninstall List [HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\] > -> HKEY_USERS\S-1-5-21-747343813-4282703018-2026807040-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ -> LastPass -> LastPass (deinstalacja) Winamp Detect -> Detektor Winampa < EventViewer Logs - Last 10 Errors > -> Event Information -> Description Application [ Error ] 2011-02-15 18:07:30 Computer Name = PRZEMEK-PRZEMEK | Source = Bonjour Service | ID = 100 -> Description = Task Scheduling Error: m->NextScheduledEvent 1201 Application [ Error ] 2011-02-15 18:07:30 Computer Name = PRZEMEK-PRZEMEK | Source = Bonjour Service | ID = 100 -> Description = Task Scheduling Error: m->NextScheduledSPRetry 1201 Application [ Error ] 2011-02-16 20:51:06 Computer Name = PRZEMEK-PRZEMEK | Source = Bonjour Service | ID = 100 -> Description = Task Scheduling Error: Continuously busy for more than a second Application [ Error ] 2011-02-16 20:51:06 Computer Name = PRZEMEK-PRZEMEK | Source = Bonjour Service | ID = 100 -> Description = Task Scheduling Error: m->NextScheduledEvent 1092 Application [ Error ] 2011-02-16 20:51:06 Computer Name = PRZEMEK-PRZEMEK | Source = Bonjour Service | ID = 100 -> Description = Task Scheduling Error: m->NextScheduledSPRetry 1092 Application [ Error ] 2011-02-16 20:51:07 Computer Name = PRZEMEK-PRZEMEK | Source = Bonjour Service | ID = 100 -> Description = Task Scheduling Error: Continuously busy for more than a second Application [ Error ] 2011-02-16 20:51:07 Computer Name = PRZEMEK-PRZEMEK | Source = Bonjour Service | ID = 100 -> Description = Task Scheduling Error: m->NextScheduledEvent 2153 Application [ Error ] 2011-02-16 20:51:07 Computer Name = PRZEMEK-PRZEMEK | Source = Bonjour Service | ID = 100 -> Description = Task Scheduling Error: m->NextScheduledSPRetry 2153 Application [ Error ] 2011-02-17 16:27:01 Computer Name = PRZEMEK-PRZEMEK | Source = Microsoft-Windows-CAPI2 | ID = 513 -> Description = Przetwarzanie wywołania OnIdentity() w obiekcie System Writer przez Usługi kryptograficzne nie powiodło się. Details: AddLegacyDriverFiles: Unable to back up image of binary Symantec Eraser Control driver. System Error: Nie można odnaleźć określonego pliku. . Application [ Error ] 2011-02-20 14:00:00 Computer Name = PRZEMEK-PRZEMEK | Source = Windows Backup | ID = 4103 -> Description = Hewlett-Packard [ Error ] 2010-12-02 13:26:45 Computer Name = PRZEMEK-PRZEMEK | Source = Hewlett-Packard | ID = 0 -> Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\121002062642.xml File not created by asset agent Hewlett-Packard [ Error ] 2010-12-12 16:57:55 Computer Name = PRZEMEK-PRZEMEK | Source = Hewlett-Packard | ID = 0 -> Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\121012095752.xml File not created by asset agent Hewlett-Packard [ Error ] 2011-01-06 11:48:06 Computer Name = PRZEMEK-PRZEMEK | Source = Hewlett-Packard | ID = 0 -> Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\011106044757.xml File not created by asset agent Hewlett-Packard [ Error ] 2011-02-03 11:25:05 Computer Name = PRZEMEK-PRZEMEK | Source = Hewlett-Packard | ID = 0 -> Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\021103042457.xml File not created by asset agent Hewlett-Packard [ Error ] 2011-02-03 11:25:07 Computer Name = PRZEMEK-PRZEMEK | Source = Hewlett-Packard | ID = 0 -> Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\021103042505.xml File not created by asset agent Hewlett-Packard [ Error ] 2011-03-03 11:38:05 Computer Name = PRZEMEK-PRZEMEK | Source = Hewlett-Packard | ID = 0 -> Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\031103043756.xml File not created by asset agent Hewlett-Packard [ Error ] 2011-03-10 11:35:22 Computer Name = PRZEMEK-PRZEMEK | Source = Hewlett-Packard | ID = 0 -> Description = pl-PL Zgłoszono wyjątek typu 'System.Exception'. HP.SupportFramework w HP.SupportFramework.HPSFReporting.Reporting..ctor() w HP.ActiveSupportLibrary.Issues.HPSFSession..ctor(LaunchPoint lp) w HPAssistant.HPAMain.Window_Loaded(Object sender, RoutedEventArgs e) w System.Windows.RoutedEventHandlerInfo.InvokeHandler(Object target, RoutedEventArgs routedEventArgs) w System.Windows.EventRoute.InvokeHandlersImpl(Object source, RoutedEventArgs args, Boolean reRaised) w System.Windows.UIElement.RaiseEventImpl(DependencyObject sender, RoutedEventArgs args) w System.Windows.UIElement.RaiseEvent(RoutedEventArgs e) w System.Windows.BroadcastEventHelper.BroadcastEvent(DependencyObject root, RoutedEvent routedEvent) w System.Windows.BroadcastEventHelper.BroadcastLoadedEvent(Object root) w MS.Internal.LoadedOrUnloadedOperation.DoWork() w System.Windows.Media.MediaContext.FireLoadedPendingCallbacks() w System.Windows.Media.MediaContext.FireInvokeOnRenderCallbacks() w System.Windows.Media.MediaContext.RenderMessageHandlerCore(Object resizedCompositionTarget) w System.Windows.Media.MediaContext.RenderMessageHandler(Object resizedCompositionTarget) w System.Windows.Media.MediaContext.Resize(ICompositionTarget resizedCompositionTarget) w System.Windows.Interop.HwndTarget.OnResize() w System.Windows.Interop.HwndTarget.HandleMessage(Int32 msg, IntPtr wparam, IntPtr lparam) w System.Windows.Interop.HwndSource.HwndTargetFilterMessage(IntPtr hwnd, Int32 msg, IntPtr wParam, IntPtr lParam, Boolean& handled) w MS.Win32.HwndWrapper.WndProc(IntPtr hwnd, Int32 msg, IntPtr wParam, IntPtr lParam, Boolean& handled) w MS.Win32.HwndSubclass.DispatcherCallbackOperation(Object o) w System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Boolean isSingleParameter) w System.Windows.Threading.ExceptionWrapper.TryCatchWhen(Object source, Delegate callback, Object args, Boolean isSingleParameter, Delegate catchHandler) Hewlett-Packard [ Error ] 2011-03-17 11:42:53 Computer Name = PRZEMEK-PRZEMEK | Source = Hewlett-Packard | ID = 0 -> Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\031117044247.xml File not created by asset agent Hewlett-Packard [ Error ] 2011-05-12 10:34:18 Computer Name = PRZEMEK-PRZEMEK | Source = Hewlett-Packard | ID = 0 -> Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\051112043416.xml File not created by asset agent Hewlett-Packard [ Error ] 2011-06-30 11:36:16 Computer Name = PRZEMEK-PRZEMEK | Source = Hewlett-Packard | ID = 0 -> Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\061130053613.xml File not created by asset agent System [ Error ] 2011-07-27 19:19:23 Computer Name = PRZEMEK-PRZEMEK | Source = Service Control Manager | ID = 7000 -> Description = Nie można uruchomić usługi Soluto PCGenome Core Service z powodu następującego błędu: %%1053 System [ Error ] 2011-07-28 05:55:36 Computer Name = PRZEMEK-PRZEMEK | Source = EventLog | ID = 6008 -> Description = Poprzednie zamknięcie systemu przy 01:26:06 na ?2011-?07-?28 było nieoczekiwane. System [ Error ] 2011-07-28 05:57:00 Computer Name = PRZEMEK-PRZEMEK | Source = Service Control Manager | ID = 7022 -> Description = Usługa Audio Service zawiesiła się podczas uruchamiania. System [ Error ] 2011-07-28 05:57:54 Computer Name = PRZEMEK-PRZEMEK | Source = Service Control Manager | ID = 7009 -> Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Soluto PCGenome Core Service. System [ Error ] 2011-07-28 05:57:54 Computer Name = PRZEMEK-PRZEMEK | Source = Service Control Manager | ID = 7000 -> Description = Nie można uruchomić usługi Soluto PCGenome Core Service z powodu następującego błędu: %%1053 System [ Error ] 2011-07-28 05:58:01 Computer Name = PRZEMEK-PRZEMEK | Source = Service Control Manager | ID = 7031 -> Description = Usługa AVG Free WatchDog niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. W przeciągu 0 milisekund zostanie podjęta następująca czynność korekcyjna: Uruchom usługę ponownie. System [ Error ] 2011-07-28 06:03:03 Computer Name = PRZEMEK-PRZEMEK | Source = EventLog | ID = 6008 -> Description = Poprzednie zamknięcie systemu przy 12:00:56 na ?2011-?07-?28 było nieoczekiwane. System [ Error ] 2011-07-28 06:04:30 Computer Name = PRZEMEK-PRZEMEK | Source = Service Control Manager | ID = 7022 -> Description = Usługa Audio Service zawiesiła się podczas uruchamiania. System [ Error ] 2011-07-28 06:05:22 Computer Name = PRZEMEK-PRZEMEK | Source = Service Control Manager | ID = 7009 -> Description = Upłynął limit czasu (30000 ms) podczas oczekiwania na połączenie się z usługą Soluto PCGenome Core Service. System [ Error ] 2011-07-28 06:05:22 Computer Name = PRZEMEK-PRZEMEK | Source = Service Control Manager | ID = 7000 -> Description = Nie można uruchomić usługi Soluto PCGenome Core Service z powodu następującego błędu: %%1053 [Files/Folders - Created Within 30 Days] minecraft -> C:\Users\PRZEMEK\Desktop\minecraft -> [2011-07-28 00:02:08 | 000,000,000 | ---D | C] OTL.exe -> C:\Users\PRZEMEK\Desktop\OTL.exe -> [2011-07-26 18:16:29 | 000,579,584 | ---- | C] (OldTimer Tools) OTH.scr -> C:\Users\PRZEMEK\Desktop\OTH.scr -> [2011-07-26 18:14:08 | 000,258,560 | ---- | C] (OldTimer Tools) Malwarebytes -> C:\Users\PRZEMEK\AppData\Roaming\Malwarebytes -> [2011-07-26 17:51:11 | 000,000,000 | ---D | C] mbamswissarmy.sys -> C:\Windows\SysWow64\drivers\mbamswissarmy.sys -> [2011-07-26 17:50:38 | 000,041,272 | ---- | C] (Malwarebytes Corporation) Malwarebytes' Anti-Malware -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware -> [2011-07-26 17:50:38 | 000,000,000 | ---D | C] Malwarebytes -> C:\ProgramData\Malwarebytes -> [2011-07-26 17:50:37 | 000,000,000 | ---D | C] mbam.sys -> C:\Windows\SysNative\drivers\mbam.sys -> [2011-07-26 17:50:34 | 000,025,912 | ---- | C] (Malwarebytes Corporation) Malwarebytes' Anti-Malware -> C:\Program Files (x86)\Malwarebytes' Anti-Malware -> [2011-07-26 17:50:34 | 000,000,000 | ---D | C] GooredFix Backups -> C:\Users\PRZEMEK\Desktop\GooredFix Backups -> [2011-07-26 17:41:32 | 000,000,000 | ---D | C] TDSSKiller_Quarantine -> C:\TDSSKiller_Quarantine -> [2011-07-26 17:39:58 | 000,000,000 | ---D | C] trend micro -> C:\Program Files\trend micro -> [2011-07-26 16:54:01 | 000,000,000 | ---D | C] rsit -> C:\rsit -> [2011-07-26 16:54:00 | 000,000,000 | ---D | C] Profiles -> C:\Windows\Profiles -> [2011-07-26 01:00:29 | 000,000,000 | ---D | C] LastPass -> C:\Users\PRZEMEK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LastPass -> [2011-07-26 00:44:20 | 000,000,000 | ---D | C] LastPass -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LastPass -> [2011-07-26 00:44:12 | 000,000,000 | ---D | C] lpuninstall.exe -> C:\Program Files (x86)\Common Files\lpuninstall.exe -> [2011-07-24 14:42:28 | 009,478,184 | ---- | C] (LastPass) LastPass -> C:\Program Files (x86)\LastPass -> [2011-07-24 14:42:17 | 000,000,000 | ---D | C] ALLPlayer -> C:\Users\PRZEMEK\AppData\Local\ALLPlayer -> [2011-07-23 14:47:20 | 000,000,000 | ---D | C] ALLPlayerPL.exe -> C:\Users\PRZEMEK\Desktop\ALLPlayerPL.exe -> [2011-07-23 14:46:03 | 022,404,148 | ---- | C] (ALLPlayer ) winloqon.exe -> C:\ProgramData\winloqon.exe -> [2011-07-23 14:39:30 | 000,331,776 | RHS- | C] (Created with WinAutomation (http://www.WinAutomation.com)) csrs.exe -> C:\ProgramData\csrs.exe -> [2011-07-23 14:39:29 | 000,339,968 | RHS- | C] (Created with WinAutomation (http://www.WinAutomation.com)) EliteKingdoms -> C:\Program Files (x86)\EliteKingdoms -> [2011-07-22 14:27:40 | 000,000,000 | ---D | C] jrdusbser.sys -> C:\Windows\SysNative\drivers\jrdusbser.sys -> [2011-07-18 13:43:56 | 000,119,680 | ---- | C] (TCT International Mobile Ltd) blueconnect -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\blueconnect -> [2011-07-18 13:43:56 | 000,000,000 | ---D | C] GdiPlus.dll -> C:\Windows\SysWow64\GdiPlus.dll -> [2011-07-18 13:43:54 | 001,724,416 | ---- | C] (Microsoft Corporation) blueconnect -> C:\Program Files (x86)\blueconnect -> [2011-07-18 13:43:54 | 000,000,000 | ---D | C] Originals -> C:\Users\PRZEMEK\Desktop\Originals -> [2011-07-17 23:14:07 | 000,000,000 | ---D | C] PhotoScape -> C:\Users\PRZEMEK\AppData\Roaming\PhotoScape -> [2011-07-17 23:09:53 | 000,000,000 | ---D | C] DEBKI -> C:\Users\PRZEMEK\Desktop\DEBKI -> [2011-07-16 16:14:24 | 000,000,000 | ---D | C] 8db930be1b241bf78d94760960c4 -> C:\8db930be1b241bf78d94760960c4 -> [2011-07-14 11:44:40 | 000,000,000 | ---D | C] Soluto -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Soluto -> [2011-07-13 14:01:02 | 000,000,000 | ---D | C] Soluto -> C:\Program Files\Soluto -> [2011-07-13 14:01:02 | 000,000,000 | ---D | C] KernelBase.dll -> C:\Windows\SysNative\KernelBase.dll -> [2011-07-13 12:36:11 | 000,421,888 | ---- | C] (Microsoft Corporation) api-ms-win-core-libraryloader-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll -> [2011-07-13 12:36:10 | 000,003,584 | -H-- | C] (Microsoft Corporation) api-ms-win-core-libraryloader-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll -> [2011-07-13 12:36:10 | 000,003,584 | -H-- | C] (Microsoft Corporation) api-ms-win-security-base-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-security-base-l1-1-0.dll -> [2011-07-13 12:36:09 | 000,006,144 | -H-- | C] (Microsoft Corporation) api-ms-win-core-file-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll -> [2011-07-13 12:36:09 | 000,005,120 | -H-- | C] (Microsoft Corporation) api-ms-win-core-file-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-file-l1-1-0.dll -> [2011-07-13 12:36:09 | 000,005,120 | -H-- | C] (Microsoft Corporation) api-ms-win-core-threadpool-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll -> [2011-07-13 12:36:09 | 000,004,608 | -H-- | C] (Microsoft Corporation) api-ms-win-core-processthreads-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll -> [2011-07-13 12:36:09 | 000,004,608 | -H-- | C] (Microsoft Corporation) api-ms-win-core-sysinfo-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll -> [2011-07-13 12:36:09 | 000,004,096 | -H-- | C] (Microsoft Corporation) api-ms-win-core-synch-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll -> [2011-07-13 12:36:09 | 000,004,096 | -H-- | C] (Microsoft Corporation) api-ms-win-core-localregistry-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll -> [2011-07-13 12:36:09 | 000,004,096 | -H-- | C] (Microsoft Corporation) api-ms-win-core-rtlsupport-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll -> [2011-07-13 12:36:09 | 000,003,584 | -H-- | C] (Microsoft Corporation) api-ms-win-core-interlocked-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll -> [2011-07-13 12:36:09 | 000,003,584 | -H-- | C] (Microsoft Corporation) api-ms-win-core-heap-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-heap-l1-1-0.dll -> [2011-07-13 12:36:09 | 000,003,584 | -H-- | C] (Microsoft Corporation) api-ms-win-core-processthreads-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll -> [2011-07-13 12:36:08 | 000,004,608 | -H-- | C] (Microsoft Corporation) api-ms-win-core-misc-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll -> [2011-07-13 12:36:08 | 000,004,096 | -H-- | C] (Microsoft Corporation) api-ms-win-core-localregistry-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll -> [2011-07-13 12:36:08 | 000,004,096 | -H-- | C] (Microsoft Corporation) api-ms-win-core-processenvironment-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll -> [2011-07-13 12:36:08 | 000,003,584 | -H-- | C] (Microsoft Corporation) api-ms-win-core-namedpipe-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll -> [2011-07-13 12:36:08 | 000,003,584 | -H-- | C] (Microsoft Corporation) api-ms-win-core-misc-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-misc-l1-1-0.dll -> [2011-07-13 12:36:08 | 000,003,584 | -H-- | C] (Microsoft Corporation) api-ms-win-core-memory-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-memory-l1-1-0.dll -> [2011-07-13 12:36:08 | 000,003,584 | -H-- | C] (Microsoft Corporation) api-ms-win-core-heap-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll -> [2011-07-13 12:36:08 | 000,003,584 | -H-- | C] (Microsoft Corporation) api-ms-win-core-interlocked-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll -> [2011-07-13 12:36:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-handle-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll -> [2011-07-13 12:36:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-handle-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-handle-l1-1-0.dll -> [2011-07-13 12:36:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-fibers-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll -> [2011-07-13 12:36:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-fibers-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll -> [2011-07-13 12:36:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-errorhandling-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll -> [2011-07-13 12:36:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-errorhandling-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll -> [2011-07-13 12:36:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-delayload-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll -> [2011-07-13 12:36:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-delayload-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll -> [2011-07-13 12:36:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-debug-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll -> [2011-07-13 12:36:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-debug-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-debug-l1-1-0.dll -> [2011-07-13 12:36:08 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-security-base-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,006,144 | -H-- | C] (Microsoft Corporation) api-ms-win-core-threadpool-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,004,608 | -H-- | C] (Microsoft Corporation) api-ms-win-core-sysinfo-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,004,096 | -H-- | C] (Microsoft Corporation) api-ms-win-core-synch-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-synch-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,004,096 | -H-- | C] (Microsoft Corporation) api-ms-win-core-localization-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-localization-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,004,096 | -H-- | C] (Microsoft Corporation) api-ms-win-core-xstate-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,003,584 | -H-- | C] (Microsoft Corporation) api-ms-win-core-processenvironment-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,003,584 | -H-- | C] (Microsoft Corporation) api-ms-win-core-namedpipe-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,003,584 | -H-- | C] (Microsoft Corporation) api-ms-win-core-memory-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,003,584 | -H-- | C] (Microsoft Corporation) api-ms-win-core-xstate-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-util-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-util-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-util-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-string-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-string-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-string-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-rtlsupport-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-profile-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-profile-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-profile-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-io-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-io-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-io-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-datetime-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-datetime-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll -> [2011-07-13 12:36:07 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-localization-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll -> [2011-07-13 12:36:06 | 000,004,096 | -H-- | C] (Microsoft Corporation) api-ms-win-core-console-l1-1-0.dll -> C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll -> [2011-07-13 12:36:06 | 000,003,072 | -H-- | C] (Microsoft Corporation) api-ms-win-core-console-l1-1-0.dll -> C:\Windows\SysNative\api-ms-win-core-console-l1-1-0.dll -> [2011-07-13 12:36:06 | 000,003,072 | -H-- | C] (Microsoft Corporation) kernel32.dll -> C:\Windows\SysNative\kernel32.dll -> [2011-07-13 12:34:18 | 001,162,752 | ---- | C] (Microsoft Corporation) wow64win.dll -> C:\Windows\SysNative\wow64win.dll -> [2011-07-13 12:34:18 | 000,362,496 | ---- | C] (Microsoft Corporation) conhost.exe -> C:\Windows\SysNative\conhost.exe -> [2011-07-13 12:34:18 | 000,338,944 | ---- | C] (Microsoft Corporation) winsrv.dll -> C:\Windows\SysNative\winsrv.dll -> [2011-07-13 12:34:18 | 000,214,528 | ---- | C] (Microsoft Corporation) wow64.dll -> C:\Windows\SysNative\wow64.dll -> [2011-07-13 12:34:17 | 000,243,200 | ---- | C] (Microsoft Corporation) setup16.exe -> C:\Windows\SysWow64\setup16.exe -> [2011-07-13 12:34:17 | 000,025,600 | ---- | C] (Microsoft Corporation) ntvdm64.dll -> C:\Windows\SysNative\ntvdm64.dll -> [2011-07-13 12:34:17 | 000,016,384 | ---- | C] (Microsoft Corporation) ntvdm64.dll -> C:\Windows\SysWow64\ntvdm64.dll -> [2011-07-13 12:34:17 | 000,014,336 | ---- | C] (Microsoft Corporation) wow64cpu.dll -> C:\Windows\SysNative\wow64cpu.dll -> [2011-07-13 12:34:17 | 000,013,312 | ---- | C] (Microsoft Corporation) instnm.exe -> C:\Windows\SysWow64\instnm.exe -> [2011-07-13 12:34:17 | 000,007,680 | ---- | C] (Microsoft Corporation) wow32.dll -> C:\Windows\SysWow64\wow32.dll -> [2011-07-13 12:34:17 | 000,005,120 | ---- | C] (Microsoft Corporation) user.exe -> C:\Windows\SysWow64\user.exe -> [2011-07-13 12:34:15 | 000,002,048 | ---- | C] (Microsoft Corporation) DragonAge2.exe -> C:\Users\PRZEMEK\Desktop\DragonAge2.exe -> [2011-07-07 01:37:31 | 011,395,072 | ---- | C] (BioWare) DRAGONICA -> C:\Users\PRZEMEK\DRAGONICA -> [2011-07-03 13:50:29 | 000,000,000 | ---D | C] BioWare -> C:\Users\PRZEMEK\Documents\BioWare -> [2011-07-01 15:49:48 | 000,000,000 | ---D | C] Nexon -> C:\ProgramData\Nexon -> [2011-07-01 15:35:39 | 000,000,000 | ---D | C] Dragonica -> C:\Users\PRZEMEK\Documents\Dragonica -> [2011-07-01 15:05:42 | 000,000,000 | ---D | C] DragonicaSCB -> C:\Users\PRZEMEK\AppData\Roaming\DragonicaSCB -> [2011-07-01 14:58:03 | 000,000,000 | ---D | C] Lavalon Dragonica -> C:\Windows\Lavalon Dragonica -> [2011-07-01 14:30:58 | 000,000,000 | ---D | C] Lavalon Dragonica -> C:\Program Files (x86)\Lavalon Dragonica -> [2011-07-01 14:30:57 | 000,000,000 | ---D | C] Dragon Age 2 -> C:\Program Files (x86)\Dragon Age 2 -> [2011-07-01 13:23:56 | 000,000,000 | ---D | C] {E91883C8-8CDC-46A4-A45F-CB40EB82ED60} -> C:\ProgramData\{E91883C8-8CDC-46A4-A45F-CB40EB82ED60} -> [2011-06-30 17:40:39 | 000,000,000 | ---D | C] Apple Software Update -> C:\Program Files (x86)\Apple Software Update -> [2011-06-30 15:50:09 | 000,000,000 | ---D | C] iTunes -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes -> [2011-06-30 15:49:41 | 000,000,000 | ---D | C] iPod -> C:\Program Files\iPod -> [2011-06-30 15:48:41 | 000,000,000 | ---D | C] iTunes -> C:\Program Files\iTunes -> [2011-06-30 15:48:40 | 000,000,000 | ---D | C] iTunes -> C:\Program Files (x86)\iTunes -> [2011-06-30 15:48:40 | 000,000,000 | ---D | C] drvinst.exe -> C:\Windows\SysWow64\drvinst.exe -> [2011-06-30 15:13:14 | 000,252,928 | ---- | C] (Microsoft Corporation) devrtl.dll -> C:\Windows\SysWow64\devrtl.dll -> [2011-06-30 15:13:14 | 000,044,544 | ---- | C] (Microsoft Corporation) [Files/Folders - Modified Within 30 Days] Mozilla Firefox.lnk -> C:\Users\Public\Desktop\Mozilla Firefox.lnk -> [2011-07-28 14:20:02 | 000,001,098 | ---- | M] () GoogleUpdateTaskMachineUA.job -> C:\Windows\tasks\GoogleUpdateTaskMachineUA.job -> [2011-07-28 14:10:00 | 000,001,050 | ---- | M] () 7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 -> C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 -> [2011-07-28 12:12:31 | 000,023,248 | -H-- | M] () 7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 -> C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 -> [2011-07-28 12:12:31 | 000,023,248 | -H-- | M] () incavi.avm -> C:\Windows\SysNative\drivers\Avg\incavi.avm -> [2011-07-28 12:10:44 | 082,562,667 | ---- | M] () PerfStringBackup.INI -> C:\Windows\SysNative\PerfStringBackup.INI -> [2011-07-28 12:09:34 | 001,488,734 | ---- | M] () perfh015.dat -> C:\Windows\SysNative\perfh015.dat -> [2011-07-28 12:09:34 | 000,675,688 | ---- | M] () perfh009.dat -> C:\Windows\SysNative\perfh009.dat -> [2011-07-28 12:09:34 | 000,594,964 | ---- | M] () perfc015.dat -> C:\Windows\SysNative\perfc015.dat -> [2011-07-28 12:09:34 | 000,126,042 | ---- | M] () perfc009.dat -> C:\Windows\SysNative\perfc009.dat -> [2011-07-28 12:09:34 | 000,099,334 | ---- | M] () .rsp -> C:\Windows\SysNative\.rsp -> [2011-07-28 12:06:29 | 000,007,288 | ---- | M] () .lck -> C:\Windows\SysNative\.lck -> [2011-07-28 12:06:29 | 000,004,341 | ---- | M] () bootstat.dat -> C:\Windows\bootstat.dat -> [2011-07-28 12:02:48 | 000,067,584 | --S- | M] () hiberfil.sys -> C:\hiberfil.sys -> [2011-07-28 12:02:27 | 3218,235,392 | -HS- | M] () OTL.exe -> C:\Users\PRZEMEK\Desktop\OTL.exe -> [2011-07-26 18:16:30 | 000,579,584 | ---- | M] (OldTimer Tools) OTH.scr -> C:\Users\PRZEMEK\Desktop\OTH.scr -> [2011-07-26 18:14:08 | 000,258,560 | ---- | M] (OldTimer Tools) Malwarebytes' Anti-Malware.lnk -> C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk -> [2011-07-26 17:50:38 | 000,001,069 | ---- | M] () Dr House - 01x01 - Pilot - ashlee.avi -> C:\Users\PRZEMEK\Desktop\Dr House - 01x01 - Pilot - ashlee.avi -> [2011-07-26 01:28:04 | 244,336,640 | ---- | M] () Dr House - 01x02 - Paternity - ashlee.avi -> C:\Users\PRZEMEK\Desktop\Dr House - 01x02 - Paternity - ashlee.avi -> [2011-07-26 01:23:14 | 253,556,224 | ---- | M] () lpuninstall.exe -> C:\Program Files (x86)\Common Files\lpuninstall.exe -> [2011-07-26 00:44:36 | 009,478,184 | ---- | M] (LastPass) My LastPass Vault.lnk -> C:\Users\Public\Desktop\My LastPass Vault.lnk -> [2011-07-26 00:44:20 | 000,001,192 | ---- | M] () FNTCACHE.DAT -> C:\Windows\SysNative\FNTCACHE.DAT -> [2011-07-25 14:19:46 | 000,564,200 | ---- | M] () HPCeeScheduleForPRZEMEK.job -> C:\Windows\tasks\HPCeeScheduleForPRZEMEK.job -> [2011-07-23 20:05:29 | 000,000,340 | ---- | M] () MY_AUDIO_072311_1.p2g -> C:\Users\PRZEMEK\Documents\MY_AUDIO_072311_1.p2g -> [2011-07-23 15:24:04 | 000,015,675 | ---- | M] () libFLAC.dll -> C:\Windows\SysWow64\libFLAC.dll -> [2011-07-23 14:52:25 | 000,258,048 | ---- | M] () mkzlib.dll -> C:\Windows\SysWow64\mkzlib.dll -> [2011-07-23 14:52:05 | 000,080,384 | ---- | M] () mkunicode.dll -> C:\Windows\SysWow64\mkunicode.dll -> [2011-07-23 14:52:02 | 000,024,576 | ---- | M] () Napi-projekt.lnk -> C:\Users\PRZEMEK\Desktop\Napi-projekt.lnk -> [2011-07-23 14:47:26 | 000,001,009 | ---- | M] () ALLPlayer V4.6.lnk -> C:\Users\PRZEMEK\Desktop\ALLPlayer V4.6.lnk -> [2011-07-23 14:47:25 | 000,000,979 | ---- | M] () ALLPlayerPL.exe -> C:\Users\PRZEMEK\Desktop\ALLPlayerPL.exe -> [2011-07-23 14:44:41 | 022,404,148 | ---- | M] (ALLPlayer ) svhost.exe -> C:\Program Files (x86)\Common Files\svhost.exe -> [2011-07-23 14:39:29 | 006,855,168 | RHS- | M] () csrs.exe -> C:\ProgramData\csrs.exe -> [2011-07-23 14:39:29 | 000,339,968 | RHS- | M] (Created with WinAutomation (http://www.WinAutomation.com)) winloqon.exe -> C:\ProgramData\winloqon.exe -> [2011-07-23 14:39:29 | 000,331,776 | RHS- | M] (Created with WinAutomation (http://www.WinAutomation.com)) Tiesto pres. Allure Feat JES - Show Me The Way (Radio Edit).mp3 -> C:\Users\PRZEMEK\Documents\Tiesto pres. Allure Feat JES - Show Me The Way (Radio Edit).mp3 -> [2011-07-23 14:01:50 | 008,703,469 | ---- | M] () Shakira ft. Pitbull - Rabiosa.mp3 -> C:\Users\PRZEMEK\Documents\Shakira ft. Pitbull - Rabiosa.mp3 -> [2011-07-23 14:01:46 | 007,003,625 | ---- | M] () Sean Paul Feat. Alexis Jordan - Got 2 Luv U (Prod. By Stargate) ( 2o11 ) [ www.MzHipHop.com ].mp3 -> C:\Users\PRZEMEK\Documents\Sean Paul Feat. Alexis Jordan - Got 2 Luv U (Prod. By Stargate) ( 2o11 ) [ www.MzHipHop.com ].mp3 -> [2011-07-23 14:01:45 | 008,505,267 | ---- | M] () Rihanna - California King Bed (Radio Edit).mp3 -> C:\Users\PRZEMEK\Documents\Rihanna - California King Bed (Radio Edit).mp3 -> [2011-07-23 14:01:35 | 008,177,318 | ---- | M] () Remady Feat Manu-L - The Way We Are (Radio Edit) BY WwW.RadioBlueEnerGy.Ro.mp3 -> C:\Users\PRZEMEK\Documents\Remady Feat Manu-L - The Way We Are (Radio Edit) BY WwW.RadioBlueEnerGy.Ro.mp3 -> [2011-07-23 14:01:20 | 002,913,219 | ---- | M] () Pitbull Ft Marc Anthony - Rain Over Me.mp3 -> C:\Users\PRZEMEK\Documents\Pitbull Ft Marc Anthony - Rain Over Me.mp3 -> [2011-07-23 14:01:11 | 003,515,531 | ---- | M] () Natasha Bedingfield-Pocketful Of Sunshine [musicworld.lt].mp3 -> C:\Users\PRZEMEK\Documents\Natasha Bedingfield-Pocketful Of Sunshine [musicworld.lt].mp3 -> [2011-07-23 14:01:04 | 005,005,351 | ---- | M] () Mischa Daniels - Where You Wanna Go feat. J-Son (Extended Mix) [mp3ray.ru].mp3 -> C:\Users\PRZEMEK\Documents\Mischa Daniels - Where You Wanna Go feat. J-Son (Extended Mix) [mp3ray.ru].mp3 -> [2011-07-23 14:00:59 | 008,257,536 | ---- | M] () Marcel Woods - Sunrise (Original Mix) [brazilhousemafia.wordpress.com].mp3 -> C:\Users\PRZEMEK\Documents\Marcel Woods - Sunrise (Original Mix) [brazilhousemafia.wordpress.com].mp3 -> [2011-07-23 13:57:02 | 016,027,230 | ---- | M] () Kalwi _ Remi feat. Amanda Wilson - You _ I (Radio Edit) TECHNOROCKER.INFO.mp3 -> C:\Users\PRZEMEK\Documents\Kalwi _ Remi feat. Amanda Wilson - You _ I (Radio Edit) TECHNOROCKER.INFO.mp3 -> [2011-07-23 13:56:53 | 008,704,170 | ---- | M] () Inna - Dancing Lambada ( 2o11 ) [ www.MzHipHop.com ].mp3 -> C:\Users\PRZEMEK\Documents\Inna - Dancing Lambada ( 2o11 ) [ www.MzHipHop.com ].mp3 -> [2011-07-23 13:56:31 | 005,011,974 | ---- | M] () Cobra Starship Feat. Sabi - You Make Me Feel (Disco Fries Remix) ( 2o11 ) [ www.MzHipHop.com ].mp3 -> C:\Users\PRZEMEK\Documents\Cobra Starship Feat. Sabi - You Make Me Feel (Disco Fries Remix) ( 2o11 ) [ www.MzHipHop.com ].mp3 -> [2011-07-23 13:56:18 | 008,221,213 | ---- | M] () Far East Movement feat. Snoop Dogg - If I Was You (OMG) (Real Full + NoShout).mp3 -> C:\Users\PRZEMEK\Documents\Far East Movement feat. Snoop Dogg - If I Was You (OMG) (Real Full + NoShout).mp3 -> [2011-07-23 13:56:18 | 004,990,108 | ---- | M] () 10 - sunrise avenue - hollywood hills (radio mix).mp3 -> C:\Users\PRZEMEK\Documents\10 - sunrise avenue - hollywood hills (radio mix).mp3 -> [2011-07-23 13:55:51 | 004,836,477 | ---- | M] () CCleaner.lnk -> C:\Users\Public\Desktop\CCleaner.lnk -> [2011-07-21 13:01:34 | 000,000,977 | ---- | M] () GoogleUpdateTaskMachineCore.job -> C:\Windows\tasks\GoogleUpdateTaskMachineCore.job -> [2011-07-20 13:54:00 | 000,001,046 | ---- | M] () MY_AUDIO_071911_1.p2g -> C:\Users\PRZEMEK\Documents\MY_AUDIO_071911_1.p2g -> [2011-07-19 15:23:25 | 000,015,223 | ---- | M] () blueconnect.lnk -> C:\Users\Public\Desktop\blueconnect.lnk -> [2011-07-18 13:43:56 | 000,001,904 | ---- | M] () DSCF1231.JPG -> C:\Users\PRZEMEK\Desktop\DSCF1231.JPG -> [2011-07-17 23:14:08 | 002,280,233 | ---- | M] () Google Chrome.lnk -> C:\Users\Public\Desktop\Google Chrome.lnk -> [2011-07-17 23:11:09 | 000,002,340 | ---- | M] () Soluto.sys -> C:\Windows\SysNative\drivers\Soluto.sys -> [2011-07-07 08:34:08 | 000,054,728 | ---- | M] (Soluto LTD.) mbamswissarmy.sys -> C:\Windows\SysWow64\drivers\mbamswissarmy.sys -> [2011-07-06 19:52:42 | 000,041,272 | ---- | M] (Malwarebytes Corporation) mbam.sys -> C:\Windows\SysNative\drivers\mbam.sys -> [2011-07-06 19:52:42 | 000,025,912 | ---- | M] (Malwarebytes Corporation) DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini -> C:\Users\PRZEMEK\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini -> [2011-07-03 22:01:52 | 000,004,608 | ---- | M] () bassmod.dll -> C:\Windows\SysWow64\bassmod.dll -> [2011-07-01 17:57:41 | 000,036,892 | ---- | M] () DragonAge2 — skrót.lnk -> C:\Users\PRZEMEK\Desktop\DragonAge2 — skrót.lnk -> [2011-07-01 17:52:27 | 000,001,665 | ---- | M] () HP Support Assistant.lnk -> C:\Users\Public\Desktop\HP Support Assistant.lnk -> [2011-06-30 17:42:52 | 000,002,139 | ---- | M] () GhostObjGAFix.xml -> C:\Users\PRZEMEK\AppData\Roaming\GhostObjGAFix.xml -> [2011-06-30 17:36:18 | 000,001,854 | ---- | M] () iTunes.lnk -> C:\Users\Public\Desktop\iTunes.lnk -> [2011-06-30 15:49:41 | 000,001,743 | ---- | M] () [Files - No Company Name] Malwarebytes' Anti-Malware.lnk -> C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk -> [2011-07-26 17:50:38 | 000,001,069 | ---- | C] () Dr House - 01x02 - Paternity - ashlee.avi -> C:\Users\PRZEMEK\Desktop\Dr House - 01x02 - Paternity - ashlee.avi -> [2011-07-26 01:23:16 | 253,556,224 | ---- | C] () Dr House - 01x01 - Pilot - ashlee.avi -> C:\Users\PRZEMEK\Desktop\Dr House - 01x01 - Pilot - ashlee.avi -> [2011-07-26 01:13:36 | 244,336,640 | ---- | C] () My LastPass Vault.lnk -> C:\Users\Public\Desktop\My LastPass Vault.lnk -> [2011-07-24 14:42:25 | 000,001,192 | ---- | C] () MY_AUDIO_072311_1.p2g -> C:\Users\PRZEMEK\Documents\MY_AUDIO_072311_1.p2g -> [2011-07-23 15:24:04 | 000,015,675 | ---- | C] () mkzlib.dll -> C:\Windows\SysWow64\mkzlib.dll -> [2011-07-23 14:52:05 | 000,080,384 | ---- | C] () mkunicode.dll -> C:\Windows\SysWow64\mkunicode.dll -> [2011-07-23 14:52:02 | 000,024,576 | ---- | C] () ALLPlayer V4.6.lnk -> C:\Users\PRZEMEK\Desktop\ALLPlayer V4.6.lnk -> [2011-07-23 14:47:25 | 000,000,979 | ---- | C] () svhost.exe -> C:\Program Files (x86)\Common Files\svhost.exe -> [2011-07-23 14:39:30 | 006,855,168 | RHS- | C] () Tiesto pres. Allure Feat JES - Show Me The Way (Radio Edit).mp3 -> C:\Users\PRZEMEK\Documents\Tiesto pres. Allure Feat JES - Show Me The Way (Radio Edit).mp3 -> [2011-07-23 14:01:34 | 008,703,469 | ---- | C] () Shakira ft. Pitbull - Rabiosa.mp3 -> C:\Users\PRZEMEK\Documents\Shakira ft. Pitbull - Rabiosa.mp3 -> [2011-07-23 14:01:30 | 007,003,625 | ---- | C] () Sean Paul Feat. Alexis Jordan - Got 2 Luv U (Prod. By Stargate) ( 2o11 ) [ www.MzHipHop.com ].mp3 -> C:\Users\PRZEMEK\Documents\Sean Paul Feat. Alexis Jordan - Got 2 Luv U (Prod. By Stargate) ( 2o11 ) [ www.MzHipHop.com ].mp3 -> [2011-07-23 14:01:24 | 008,505,267 | ---- | C] () Rihanna - California King Bed (Radio Edit).mp3 -> C:\Users\PRZEMEK\Documents\Rihanna - California King Bed (Radio Edit).mp3 -> [2011-07-23 14:01:19 | 008,177,318 | ---- | C] () Remady Feat Manu-L - The Way We Are (Radio Edit) BY WwW.RadioBlueEnerGy.Ro.mp3 -> C:\Users\PRZEMEK\Documents\Remady Feat Manu-L - The Way We Are (Radio Edit) BY WwW.RadioBlueEnerGy.Ro.mp3 -> [2011-07-23 14:01:14 | 002,913,219 | ---- | C] () Pitbull Ft Marc Anthony - Rain Over Me.mp3 -> C:\Users\PRZEMEK\Documents\Pitbull Ft Marc Anthony - Rain Over Me.mp3 -> [2011-07-23 14:01:05 | 003,515,531 | ---- | C] () Natasha Bedingfield-Pocketful Of Sunshine [musicworld.lt].mp3 -> C:\Users\PRZEMEK\Documents\Natasha Bedingfield-Pocketful Of Sunshine [musicworld.lt].mp3 -> [2011-07-23 14:00:56 | 005,005,351 | ---- | C] () Mischa Daniels - Where You Wanna Go feat. J-Son (Extended Mix) [mp3ray.ru].mp3 -> C:\Users\PRZEMEK\Documents\Mischa Daniels - Where You Wanna Go feat. J-Son (Extended Mix) [mp3ray.ru].mp3 -> [2011-07-23 14:00:49 | 008,257,536 | ---- | C] () Marcel Woods - Sunrise (Original Mix) [brazilhousemafia.wordpress.com].mp3 -> C:\Users\PRZEMEK\Documents\Marcel Woods - Sunrise (Original Mix) [brazilhousemafia.wordpress.com].mp3 -> [2011-07-23 13:56:41 | 016,027,230 | ---- | C] () Kalwi _ Remi feat. Amanda Wilson - You _ I (Radio Edit) TECHNOROCKER.INFO.mp3 -> C:\Users\PRZEMEK\Documents\Kalwi _ Remi feat. Amanda Wilson - You _ I (Radio Edit) TECHNOROCKER.INFO.mp3 -> [2011-07-23 13:56:39 | 008,704,170 | ---- | C] () Inna - Dancing Lambada ( 2o11 ) [ www.MzHipHop.com ].mp3 -> C:\Users\PRZEMEK\Documents\Inna - Dancing Lambada ( 2o11 ) [ www.MzHipHop.com ].mp3 -> [2011-07-23 13:56:21 | 005,011,974 | ---- | C] () Far East Movement feat. Snoop Dogg - If I Was You (OMG) (Real Full + NoShout).mp3 -> C:\Users\PRZEMEK\Documents\Far East Movement feat. Snoop Dogg - If I Was You (OMG) (Real Full + NoShout).mp3 -> [2011-07-23 13:56:08 | 004,990,108 | ---- | C] () Cobra Starship Feat. Sabi - You Make Me Feel (Disco Fries Remix) ( 2o11 ) [ www.MzHipHop.com ].mp3 -> C:\Users\PRZEMEK\Documents\Cobra Starship Feat. Sabi - You Make Me Feel (Disco Fries Remix) ( 2o11 ) [ www.MzHipHop.com ].mp3 -> [2011-07-23 13:56:02 | 008,221,213 | ---- | C] () 10 - sunrise avenue - hollywood hills (radio mix).mp3 -> C:\Users\PRZEMEK\Documents\10 - sunrise avenue - hollywood hills (radio mix).mp3 -> [2011-07-23 13:55:44 | 004,836,477 | ---- | C] () MY_AUDIO_071911_1.p2g -> C:\Users\PRZEMEK\Documents\MY_AUDIO_071911_1.p2g -> [2011-07-19 15:23:25 | 000,015,223 | ---- | C] () blueconnect.lnk -> C:\Users\Public\Desktop\blueconnect.lnk -> [2011-07-18 13:43:56 | 000,001,904 | ---- | C] () DSCF1231.JPG -> C:\Users\PRZEMEK\Desktop\DSCF1231.JPG -> [2011-07-17 23:07:49 | 002,280,233 | ---- | C] () bassmod.dll -> C:\Windows\SysWow64\bassmod.dll -> [2011-07-01 17:57:41 | 000,036,892 | ---- | C] () DragonAge2 — skrót.lnk -> C:\Users\PRZEMEK\Desktop\DragonAge2 — skrót.lnk -> [2011-07-01 15:55:02 | 000,001,665 | ---- | C] () HPCeeScheduleForPRZEMEK.job -> C:\Windows\tasks\HPCeeScheduleForPRZEMEK.job -> [2011-07-01 02:23:58 | 000,000,340 | ---- | C] () iTunes.lnk -> C:\Users\Public\Desktop\iTunes.lnk -> [2011-06-30 15:49:41 | 000,001,743 | ---- | C] () Shiver - On And On (Burn Edit) www.MusicDjsMp3.com.mp3 -> C:\Windows\SysWow64\Shiver - On And On (Burn Edit) www.MusicDjsMp3.com.mp3 -> [2011-06-10 19:15:47 | 000,000,000 | ---- | C] () jestertb.dll -> C:\Windows\jestertb.dll -> [2011-05-08 18:30:48 | 000,021,504 | ---- | C] () xlive.dll.cat -> C:\Windows\SysWow64\xlive.dll.cat -> [2011-04-09 18:55:28 | 000,179,261 | ---- | C] () tmpSKANOWANIE0004_WWW.PRZEKLEJ.PL.1 -> C:\Users\PRZEMEK\AppData\Local\tmpSKANOWANIE0004_WWW.PRZEKLEJ.PL.1 -> [2011-02-09 22:30:37 | 000,606,400 | ---- | C] () tmpSKANOWANIE0004_WWW.PRZEKLEJ.PL.JPG -> C:\Users\PRZEMEK\AppData\Local\tmpSKANOWANIE0004_WWW.PRZEKLEJ.PL.JPG -> [2011-02-09 22:30:36 | 000,601,349 | ---- | C] () tmpSKANOWANIE0004_WWW.PRZEKLEJ.PL.0 -> C:\Users\PRZEMEK\AppData\Local\tmpSKANOWANIE0004_WWW.PRZEKLEJ.PL.0 -> [2011-02-09 22:30:35 | 001,836,561 | ---- | C] () Microsoft.SqlServer.Compact.351.64.bc -> C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc -> [2011-02-08 17:08:56 | 000,000,193 | ---- | C] () GhostObjGAFix.xml -> C:\Users\PRZEMEK\AppData\Roaming\GhostObjGAFix.xml -> [2011-02-03 17:25:06 | 000,001,854 | ---- | C] () Resmon.ResmonCfg -> C:\Users\PRZEMEK\AppData\Local\Resmon.ResmonCfg -> [2011-01-24 18:16:07 | 000,007,597 | ---- | C] () libFLAC.dll -> C:\Windows\SysWow64\libFLAC.dll -> [2010-12-24 14:47:27 | 000,258,048 | ---- | C] () .zreglib -> C:\ProgramData\.zreglib -> [2010-10-26 15:06:16 | 000,000,041 | -HS- | C] () DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini -> C:\Users\PRZEMEK\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini -> [2010-10-21 17:48:09 | 000,004,608 | ---- | C] () ulead32.ini -> C:\Windows\ulead32.ini -> [2010-08-02 14:23:37 | 000,000,196 | ---- | C] () tmpSDC11132.3 -> C:\Users\PRZEMEK\AppData\Local\tmpSDC11132.3 -> [2010-07-23 23:20:19 | 001,452,636 | ---- | C] () tmpSDC11132.2 -> C:\Users\PRZEMEK\AppData\Local\tmpSDC11132.2 -> [2010-07-23 23:20:17 | 001,448,303 | ---- | C] () tmpSDC11132.1 -> C:\Users\PRZEMEK\AppData\Local\tmpSDC11132.1 -> [2010-07-23 23:20:15 | 001,450,199 | ---- | C] () tmpSDC11132.JPG -> C:\Users\PRZEMEK\AppData\Local\tmpSDC11132.JPG -> [2010-07-23 23:20:13 | 002,103,053 | ---- | C] () tmpSDC11132.0 -> C:\Users\PRZEMEK\AppData\Local\tmpSDC11132.0 -> [2010-07-23 23:20:13 | 002,103,053 | ---- | C] () ezsidmv.dat -> C:\ProgramData\ezsidmv.dat -> [2010-07-11 13:00:53 | 000,000,056 | -H-- | C] () avisplitter.ini -> C:\Windows\avisplitter.ini -> [2010-07-07 00:26:11 | 000,000,038 | ---- | C] () xvidcore.dll -> C:\Windows\SysWow64\xvidcore.dll -> [2010-07-07 00:26:10 | 000,810,496 | ---- | C] () xvidvfw.dll -> C:\Windows\SysWow64\xvidvfw.dll -> [2010-07-07 00:26:10 | 000,134,144 | ---- | C] () ff_vfw.dll -> C:\Windows\SysWow64\ff_vfw.dll -> [2010-07-07 00:26:10 | 000,108,032 | ---- | C] () tmp20100305155.JPG -> C:\Users\PRZEMEK\AppData\Local\tmp20100305155.JPG -> [2010-03-10 18:46:59 | 000,365,917 | ---- | C] () tmp20100305155.0 -> C:\Users\PRZEMEK\AppData\Local\tmp20100305155.0 -> [2010-03-10 18:46:26 | 000,429,001 | ---- | C] () tmp20100305157.3 -> C:\Users\PRZEMEK\AppData\Local\tmp20100305157.3 -> [2010-03-10 18:42:05 | 000,342,059 | ---- | C] () tmp20100305157.2 -> C:\Users\PRZEMEK\AppData\Local\tmp20100305157.2 -> [2010-03-10 18:42:03 | 000,342,048 | ---- | C] () tmp20100305157.1 -> C:\Users\PRZEMEK\AppData\Local\tmp20100305157.1 -> [2010-03-10 18:42:00 | 000,342,058 | ---- | C] () tmp20100305157.0 -> C:\Users\PRZEMEK\AppData\Local\tmp20100305157.0 -> [2010-03-10 18:41:48 | 000,402,532 | ---- | C] () tmp20100305157.JPG -> C:\Users\PRZEMEK\AppData\Local\tmp20100305157.JPG -> [2010-03-10 18:41:48 | 000,342,050 | ---- | C] () tmp20100305146.JPG -> C:\Users\PRZEMEK\AppData\Local\tmp20100305146.JPG -> [2010-03-10 18:37:10 | 000,611,377 | ---- | C] () tmp20100305146_navi.JPG -> C:\Users\PRZEMEK\AppData\Local\tmp20100305146_navi.JPG -> [2010-03-10 18:36:56 | 000,013,981 | ---- | C] () disney.ini -> C:\Windows\disney.ini -> [2010-01-02 13:46:37 | 000,000,042 | ---- | C] () unrar.dll -> C:\Windows\SysWow64\unrar.dll -> [2009-12-26 01:50:17 | 000,165,376 | ---- | C] () ativpsrm.bin -> C:\Windows\ativpsrm.bin -> [2009-09-21 15:02:16 | 000,000,000 | ---- | C] () LPRES.DLL -> C:\Windows\LPRES.DLL -> [2009-07-15 17:50:42 | 000,013,312 | ---- | C] () bootstat.dat -> C:\Windows\bootstat.dat -> [2009-07-14 07:38:36 | 000,067,584 | --S- | C] () NOISE.DAT -> C:\Windows\SysWow64\NOISE.DAT -> [2009-07-14 04:35:51 | 000,000,741 | ---- | C] () dssec.dat -> C:\Windows\SysWow64\dssec.dat -> [2009-07-14 04:34:42 | 000,215,943 | ---- | C] () mib.bin -> C:\Windows\mib.bin -> [2009-07-14 02:10:29 | 000,043,131 | ---- | C] () BWContextHandler.dll -> C:\Windows\SysWow64\BWContextHandler.dll -> [2009-07-14 01:42:10 | 000,064,000 | ---- | C] () igkrng400.bin -> C:\Windows\SysWow64\igkrng400.bin -> [2009-07-13 23:59:36 | 001,498,564 | ---- | C] () msjetoledb40.dll -> C:\Windows\SysWow64\msjetoledb40.dll -> [2009-07-13 23:03:59 | 000,364,544 | ---- | C] () mlang.dat -> C:\Windows\SysWow64\mlang.dat -> [2009-06-10 23:26:10 | 000,673,088 | ---- | C] () LFFPX7.DLL -> C:\Windows\SysWow64\LFFPX7.DLL -> [2000-04-12 21:24:10 | 000,338,944 | ---- | C] () LFKODAK.DLL -> C:\Windows\SysWow64\LFKODAK.DLL -> [1997-09-30 20:30:02 | 000,122,880 | ---- | C] () [File - Lop Check] .minecraft -> C:\Users\PRZEMEK\AppData\Roaming\.minecraft -> [2011-07-28 14:46:04 | 000,000,000 | ---D | M] abgx360 -> C:\Users\PRZEMEK\AppData\Roaming\abgx360 -> [2010-10-26 15:03:46 | 000,000,000 | ---D | M] Auslogics -> C:\Users\PRZEMEK\AppData\Roaming\Auslogics -> [2010-12-24 15:45:04 | 000,000,000 | ---D | M] AVG9 -> C:\Users\PRZEMEK\AppData\Roaming\AVG9 -> [2011-05-31 01:38:48 | 000,000,000 | ---D | M] BESTplayer -> C:\Users\PRZEMEK\AppData\Roaming\BESTplayer -> [2011-07-20 13:56:53 | 000,000,000 | ---D | M] DAEMON Tools Lite -> C:\Users\PRZEMEK\AppData\Roaming\DAEMON Tools Lite -> [2011-07-25 18:22:10 | 000,000,000 | ---D | M] DigitalPersona -> C:\Users\PRZEMEK\AppData\Roaming\DigitalPersona -> [2010-01-23 20:46:52 | 000,000,000 | ---D | M] DragonicaSCB -> C:\Users\PRZEMEK\AppData\Roaming\DragonicaSCB -> [2011-07-01 14:58:03 | 000,000,000 | ---D | M] Gadu-Gadu 10 -> C:\Users\PRZEMEK\AppData\Roaming\Gadu-Gadu 10 -> [2011-05-23 16:41:04 | 000,000,000 | ---D | M] Gamelab -> C:\Users\PRZEMEK\AppData\Roaming\Gamelab -> [2010-01-02 14:00:16 | 000,000,000 | ---D | M] GetRightToGo -> C:\Users\PRZEMEK\AppData\Roaming\GetRightToGo -> [2010-12-28 12:32:12 | 000,000,000 | ---D | M] GHISLER -> C:\Users\PRZEMEK\AppData\Roaming\GHISLER -> [2010-12-17 17:26:59 | 000,000,000 | ---D | M] GlarySoft -> C:\Users\PRZEMEK\AppData\Roaming\GlarySoft -> [2010-12-24 17:56:11 | 000,000,000 | ---D | M] GrabIt -> C:\Users\PRZEMEK\AppData\Roaming\GrabIt -> [2011-04-28 11:10:18 | 000,000,000 | ---D | M] gtk-2.0 -> C:\Users\PRZEMEK\AppData\Roaming\gtk-2.0 -> [2011-06-20 16:24:51 | 000,000,000 | ---D | M] Hemera -> C:\Users\PRZEMEK\AppData\Roaming\Hemera -> [2010-08-02 16:38:03 | 000,000,000 | ---D | M] ImgBurn -> C:\Users\PRZEMEK\AppData\Roaming\ImgBurn -> [2010-10-26 19:45:00 | 000,000,000 | ---D | M] IrfanView -> C:\Users\PRZEMEK\AppData\Roaming\IrfanView -> [2011-06-20 16:03:58 | 000,000,000 | ---D | M] Leadertech -> C:\Users\PRZEMEK\AppData\Roaming\Leadertech -> [2010-10-19 17:20:03 | 000,000,000 | ---D | M] LolClient -> C:\Users\PRZEMEK\AppData\Roaming\LolClient -> [2011-05-29 09:07:59 | 000,000,000 | ---D | M] OpenCandy -> C:\Users\PRZEMEK\AppData\Roaming\OpenCandy -> [2010-12-24 14:47:32 | 000,000,000 | ---D | M] OpenFM -> C:\Users\PRZEMEK\AppData\Roaming\OpenFM -> [2010-03-17 16:00:46 | 000,000,000 | ---D | M] PhotoScape -> C:\Users\PRZEMEK\AppData\Roaming\PhotoScape -> [2011-07-17 23:14:10 | 000,000,000 | ---D | M] PLAY ONLINE -> C:\Users\PRZEMEK\AppData\Roaming\PLAY ONLINE -> [2011-04-21 15:03:45 | 000,000,000 | ---D | M] PlayFirst -> C:\Users\PRZEMEK\AppData\Roaming\PlayFirst -> [2009-12-28 22:58:24 | 000,000,000 | ---D | M] Software Informer -> C:\Users\PRZEMEK\AppData\Roaming\Software Informer -> [2010-03-21 21:02:50 | 000,000,000 | ---D | M] Tlen.pl -> C:\Users\PRZEMEK\AppData\Roaming\Tlen.pl -> [2011-04-10 14:30:37 | 000,000,000 | ---D | M] TomTom -> C:\Users\PRZEMEK\AppData\Roaming\TomTom -> [2010-08-10 15:17:37 | 000,000,000 | ---D | M] URSoft -> C:\Users\PRZEMEK\AppData\Roaming\URSoft -> [2011-05-13 13:27:53 | 000,000,000 | ---D | M] uTorrent -> C:\Users\PRZEMEK\AppData\Roaming\uTorrent -> [2011-07-28 14:56:38 | 000,000,000 | ---D | M] Windows Live Writer -> C:\Users\PRZEMEK\AppData\Roaming\Windows Live Writer -> [2010-11-22 18:04:19 | 000,000,000 | ---D | M] SCHEDLGU.TXT -> C:\Windows\Tasks\SCHEDLGU.TXT -> [2011-07-07 10:04:23 | 000,032,604 | ---- | M] () [File - Purity Scan] [Alternate Data Streams] @Alternate Data Stream - 110 bytes -> C:\ProgramData\Temp:1CE11B51 @Alternate Data Stream - 142 bytes -> C:\ProgramData\Temp:07BF512B @Alternate Data Stream - 24 bytes -> C:\Windows:5A2EC2F2654B6231 < End of report > [/code]