przez djdavido 21 Paź 2009, 19:40
http://wklej.org/id/181653/
nooo to by bylo chyba to...
Dodano Dzisiaj, 18:37:
iiiiii????? ma ktos moze pojecie co jest z tym nie tak...? bo ja z infy jestem do kitu....
Dodano Dzisiaj, 12:10:
lllludzie noooo...... pls... pomocy... jak nie chcecie wchodzic na ta stronke to wam to wkleje normalnie na forum.....
1.OTL logfile created on: 2009-10-21 18:27:21 - Run 1
2.OTL by OldTimer - Version 3.0.21.0 Folder = E:\
3.Windows Vista Home Premium Edition Service Pack 1 (Version = 6.0.6001) - Type = NTWorkstation
4.Internet Explorer (Version = 8.0.6001.18828)
5.Locale: 00000415 | Country: Poland | Language: PLK | Date Format: yyyy-MM-dd
6.
7.2,00 Gb Total Physical Memory | 1,97 Gb Available Physical Memory | 98,46% Memory free
8.4,00 Gb Paging File | 4,00 Gb Available in Paging File | 100,00% Paging File free
9.Paging file location(s): ?:\pagefile.sys [binary data]
10.
11.%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
12.Drive C: | 111,44 Gb Total Space | 66,36 Gb Free Space | 59,55% Space Free | Partition Type: NTFS
13.Drive D: | 104,90 Gb Total Space | 104,42 Gb Free Space | 99,55% Space Free | Partition Type: NTFS
14.Drive E: | 963,70 Mb Total Space | 963,20 Mb Free Space | 99,95% Space Free | Partition Type: FAT
15.Drive F: | 3,13 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
16.G: Drive not present or media not loaded
17.H: Drive not present or media not loaded
18.I: Drive not present or media not loaded
19.
20.Computer Name: ROKSANA-PC
21.Current User Name: Roksana
22.Logged in as Administrator.
23.
24.Current Boot Mode: Normal
25.Scan Mode: Current user
26.Company Name Whitelist: On
27.Skip Microsoft Files: Off
28.File Age = 30 Days
29.Output = Standard
30.
31.========== Processes (SafeList) ==========
32.
33.PRC - [2009-10-21 19:21:54 | 00,521,216 | ---- | M] (OldTimer Tools) -- E:\OTL.exe
34.PRC - [2009-08-27 06:23:17 | 00,638,232 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Internet Explorer\iexplore.exe
35.PRC - [2009-06-16 06:36:04 | 00,068,856 | ---- | M] (Google Inc.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
36.PRC - [2009-03-30 07:12:41 | 03,485,696 | ---- | M] (Arachnoid Biometrics Identification Group Corp.) -- C:\Program Files\Acer\Acer Bio Protection\CompPtcVUI.exe
37.PRC - [2009-03-30 07:12:32 | 03,520,512 | ---- | M] () -- C:\Program Files\Acer\Acer Bio Protection\BASVC.exe
38.PRC - [2009-03-11 20:11:14 | 00,210,216 | ---- | M] () -- C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
39.PRC - [2009-03-03 03:16:04 | 00,247,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wbem\wmiprvse.exe
40.PRC - [2009-01-21 13:08:06 | 01,095,560 | ---- | M] (PC Tools) -- D:\Spyware Doctor\pctsSvc.exe
41.PRC - [2009-01-07 12:40:56 | 00,348,752 | ---- | M] (PC Tools) -- D:\Spyware Doctor\pctsAuxs.exe
42.PRC - [2008-12-08 13:33:48 | 01,173,384 | ---- | M] (PC Tools) -- D:\Spyware Doctor\pctsTray.exe
43.PRC - [2008-12-05 11:24:00 | 00,203,296 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvvsvc.exe
44.PRC - [2008-10-31 13:27:14 | 00,793,208 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\MSC\mcmscsvc.exe
45.PRC - [2008-10-31 13:27:14 | 00,641,208 | ---- | M] (McAfee, Inc.) -- c:\Program Files\McAfee.com\Agent\mcagent.exe
46.PRC - [2008-10-29 07:29:41 | 02,927,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\Explorer.EXE
47.PRC - [2008-09-27 05:00:32 | 00,144,704 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\VirusScan\Mcshield.exe
48.PRC - [2008-09-27 04:23:58 | 00,606,736 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\VirusScan\mcsysmon.exe
49.PRC - [2008-09-22 22:19:14 | 00,025,416 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\MSK\MskSrver.exe
50.PRC - [2008-09-13 01:54:58 | 00,884,360 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\MPF\MPFSrv.exe
51.PRC - [2008-09-12 19:19:02 | 02,482,848 | ---- | M] (McAfee, Inc.) -- c:\Program Files\Common Files\McAfee\MNA\McNASvc.exe
52.PRC - [2008-09-10 09:33:40 | 00,359,248 | ---- | M] (McAfee, Inc.) -- c:\Program Files\Common Files\McAfee\McProxy\McProxy.exe
53.PRC - [2008-07-30 02:53:00 | 00,500,784 | ---- | M] (Egis Incorporated) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
54.PRC - [2008-07-21 02:45:06 | 00,354,840 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
55.PRC - [2008-07-19 23:13:44 | 00,233,472 | ---- | M] (Acer Incorporated) -- C:\Program Files\Acer\Acer VCM\RS_Service.exe
56.PRC - [2008-06-02 18:25:40 | 00,024,576 | ---- | M] () -- C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
57.PRC - [2008-05-26 13:43:58 | 00,599,344 | ---- | M] (Validity Sensors, Inc.) -- C:\Windows\System32\vfsFPService.exe
58.PRC - [2008-05-01 04:41:12 | 00,815,104 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe
59.PRC - [2008-05-01 04:10:10 | 00,466,944 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
60.PRC - [2008-04-26 06:36:20 | 00,045,056 | ---- | M] (NewTech InfoSystems, Inc.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
61.PRC - [2008-04-26 06:36:02 | 00,131,072 | ---- | M] () -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
62.PRC - [2008-03-03 22:11:14 | 00,016,384 | ---- | M] (NewTech Infosystems, Inc.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
63.PRC - [2008-01-21 03:24:59 | 00,142,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\WUDFHost.exe
64.PRC - [2008-01-17 02:35:02 | 00,081,504 | ---- | M] () -- C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
65.PRC - [2007-12-11 04:15:04 | 00,012,800 | ---- | M] (Agere Systems) -- C:\Windows\System32\agrsmsvc.exe
66.PRC - [2007-12-07 01:15:28 | 00,110,592 | ---- | M] () -- C:\Acer\Mobility Center\MobilityService.exe
67.PRC - [2007-01-17 20:20:10 | 00,061,440 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe
68.PRC - [2007-01-09 18:25:30 | 00,272,024 | ---- | M] () -- C:\Program Files\Cyberlink\Shared files\RichVideo.exe
69.
70.========== Win32 Services (SafeList) ==========
71.
72.SRV - [2009-09-29 17:30:41 | 00,133,104 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Update\GoogleUpdate.exe -- (gupdate [Auto | Stopped])
73.SRV - [2009-06-16 20:08:04 | 00,182,768 | ---- | M] (Google) -- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe -- (gusvc [On_Demand | Stopped])
74.SRV - [2009-03-30 07:12:32 | 03,520,512 | ---- | M] () -- C:\Program Files\Acer\Acer Bio Protection\BASVC.exe -- (IGBASVC [Auto | Running])
75.SRV - [2009-03-11 20:11:14 | 00,210,216 | ---- | M] () -- C:\Program Files\McAfee\SiteAdvisor\McSACore.exe -- (McAfee SiteAdvisor Service [Auto | Running])
76.SRV - [2009-01-21 13:08:06 | 01,095,560 | ---- | M] (PC Tools) -- D:\Spyware Doctor\pctsSvc.exe -- (sdCoreService [Auto | Running])
77.SRV - [2009-01-13 07:48:17 | 00,030,192 | ---- | M] (Google) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe -- (GoogleDesktopManager-092308-165331 [On_Demand | Stopped])
78.SRV - [2009-01-07 12:40:56 | 00,348,752 | ---- | M] (PC Tools) -- D:\Spyware Doctor\pctsAuxs.exe -- (sdAuxService [Auto | Running])
79.SRV - [2008-12-05 11:24:00 | 00,203,296 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvvsvc.exe -- (nvsvc [Auto | Running])
80.SRV - [2008-10-31 13:27:14 | 00,793,208 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\MSC\mcmscsvc.exe -- (mcmscsvc [Auto | Running])
81.SRV - [2008-09-27 06:43:06 | 00,363,024 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\VirusScan\mcods.exe -- (McODS [On_Demand | Stopped])
82.SRV - [2008-09-27 05:00:32 | 00,144,704 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\VirusScan\Mcshield.exe -- (McShield [Unknown | Running])
83.SRV - [2008-09-27 04:23:58 | 00,606,736 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\VirusScan\mcsysmon.exe -- (McSysmon [On_Demand | Running])
84.SRV - [2008-09-22 22:19:14 | 00,025,416 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\MSK\MskSrver.exe -- (MSK80Service [Auto | Running])
85.SRV - [2008-09-13 01:54:58 | 00,884,360 | ---- | M] (McAfee, Inc.) -- C:\Program Files\McAfee\MPF\MPFSrv.exe -- (MpfService [Auto | Running])
86.SRV - [2008-09-12 19:19:02 | 02,482,848 | ---- | M] (McAfee, Inc.) -- c:\Program Files\Common Files\McAfee\MNA\McNASvc.exe -- (McNASvc [Auto | Running])
87.SRV - [2008-09-10 09:33:40 | 00,359,248 | ---- | M] (McAfee, Inc.) -- c:\Program Files\Common Files\McAfee\McProxy\McProxy.exe -- (McProxy [Auto | Running])
88.SRV - [2008-07-30 02:53:00 | 00,500,784 | ---- | M] (Egis Incorporated) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe -- (eDataSecurity Service [Auto | Running])
89.SRV - [2008-07-27 19:03:13 | 00,069,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32 [On_Demand | Stopped])
90.SRV - [2008-07-21 02:45:06 | 00,354,840 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe -- (IAANTMON [Auto | Running])
91.SRV - [2008-07-19 23:13:44 | 00,233,472 | ---- | M] (Acer Incorporated) -- C:\Program Files\Acer\Acer VCM\RS_Service.exe -- (RS_Service [Auto | Running])
92.SRV - [2008-06-20 02:14:44 | 00,046,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe -- (FontCache3.0.0.0 [On_Demand | Stopped])
93.SRV - [2008-06-20 02:14:31 | 00,881,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe -- (idsvc [Unknown | Stopped])
94.SRV - [2008-06-20 02:14:31 | 00,132,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe -- (NetTcpPortSharing [Disabled | Stopped])
95.SRV - [2008-06-02 18:25:40 | 00,024,576 | ---- | M] () -- C:\Program Files\Acer\Empowering Technology\Service\ETService.exe -- (ETService [Auto | Running])
96.SRV - [2008-05-26 13:43:58 | 00,599,344 | ---- | M] (Validity Sensors, Inc.) -- C:\Windows\System32\vfsFPService.exe -- (vfsFPService [Auto | Running])
97.SRV - [2008-05-01 04:41:12 | 00,815,104 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng [Auto | Running])
98.SRV - [2008-05-01 04:10:10 | 00,466,944 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc [Auto | Running])
99.SRV - [2008-04-26 06:36:20 | 00,045,056 | ---- | M] (NewTech InfoSystems, Inc.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe -- (NTIBackupSvc [Auto | Running])
100.SRV - [2008-04-26 06:36:02 | 00,131,072 | ---- | M] () -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe -- (NTISchedulerSvc [Auto | Running])
101.SRV - [2008-03-03 22:11:14 | 00,016,384 | ---- | M] (NewTech Infosystems, Inc.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe -- (BUNAgentSvc [Auto | Running])
102.SRV - [2008-01-21 03:25:33 | 00,896,512 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Media Player\wmpnetwk.exe -- (WMPNetworkSvc [On_Demand | Stopped])
103.SRV - [2008-01-21 03:25:09 | 00,292,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\ehome\ehRecvr.exe -- (ehRecvr [On_Demand | Stopped])
104.SRV - [2008-01-21 03:23:49 | 01,013,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wevtsvc.dll -- (Eventlog [Auto | Running])
105.SRV - [2008-01-21 03:23:32 | 00,272,952 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend [Auto | Stopped])
106.SRV - [2008-01-17 02:35:02 | 00,081,504 | ---- | M] () -- C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe -- (CLHNService [Auto | Running])
107.SRV - [2007-12-11 04:15:04 | 00,012,800 | ---- | M] (Agere Systems) -- C:\Windows\System32\agrsmsvc.exe -- (AgereModemAudio [Auto | Running])
108.SRV - [2007-12-07 01:15:28 | 00,110,592 | ---- | M] () -- C:\Acer\Mobility Center\MobilityService.exe -- (MobilityService [Auto | Running])
109.SRV - [2007-08-24 12:19:12 | 00,443,776 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv [On_Demand | Stopped])
110.SRV - [2007-01-17 20:20:10 | 00,061,440 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe -- (LightScribeService [Auto | Running])
111.SRV - [2007-01-09 18:25:30 | 00,272,024 | ---- | M] () -- C:\Program Files\Cyberlink\Shared files\RichVideo.exe -- (RichVideo [Auto | Running])
112.SRV - [2006-11-02 13:35:29 | 00,131,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\ehome\ehsched.exe -- (ehSched [On_Demand | Stopped])
113.SRV - [2006-11-02 13:35:29 | 00,013,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\ehome\ehstart.dll -- (ehstart [Auto | Stopped])
114.SRV - [2006-10-26 23:03:08 | 00,145,184 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE -- (ose [On_Demand | Stopped])
115.
116.========== Driver Services (SafeList) ==========
117.
118.DRV - [2009-06-16 07:29:06 | 00,017,801 | ---- | M] (Meetinghouse Data Communications) -- C:\Windows\System32\DRIVERS\AegisP.sys -- (AegisP [Auto | Running])
119.DRV - [2009-04-03 11:18:26 | 00,130,936 | ---- | M] (PC Tools) -- C:\Windows\system32\drivers\PCTCore.sys -- (PCTCore [Boot | Running])
120.DRV - [2009-03-30 07:12:29 | 00,043,184 | ---- | M] (Alfa Corporation) -- C:\Windows\system32\Drivers\AlfaFF.sys -- (AlfaFF [Boot | Running])
121.DRV - [2008-12-05 11:24:00 | 07,538,560 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\DRIVERS\nvlddmkm.sys -- (nvlddmkm [On_Demand | Running])
122.DRV - [2008-09-27 05:01:12 | 00,212,968 | ---- | M] (McAfee, Inc.) -- C:\Windows\System32\drivers\mfehidk.sys -- (mfehidk [System | Running])
123.DRV - [2008-09-27 05:01:12 | 00,079,272 | ---- | M] (McAfee, Inc.) -- C:\Windows\System32\drivers\mfeavfk.sys -- (mfeavfk [On_Demand | Running])
124.DRV - [2008-09-27 05:01:12 | 00,040,488 | ---- | M] (McAfee, Inc.) -- C:\Windows\System32\drivers\mfesmfk.sys -- (mfesmfk [On_Demand | Running])
125.DRV - [2008-09-27 05:01:12 | 00,035,240 | ---- | M] (McAfee, Inc.) -- C:\Windows\System32\drivers\mfebopk.sys -- (mfebopk [On_Demand | Running])
126.DRV - [2008-09-27 05:00:40 | 00,034,216 | ---- | M] (McAfee, Inc.) -- C:\Windows\System32\drivers\mferkdk.sys -- (mferkdk [On_Demand | Stopped])
127.DRV - [2008-09-24 22:39:48 | 00,045,600 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvhda32v.sys -- (NVHDA [On_Demand | Running])
128.DRV - [2008-08-26 22:51:36 | 00,130,424 | ---- | M] (McAfee, Inc.) -- C:\Windows\System32\Drivers\Mpfp.sys -- (MPFP [System | Running])
129.DRV - [2008-07-30 02:53:12 | 00,060,464 | ---- | M] (Egis Incorporated) -- C:\Windows\System32\DRIVERS\PSDVdisk.sys -- (psdvdisk [Auto | Running])
130.DRV - [2008-07-30 02:53:10 | 00,018,992 | ---- | M] (Egis Incorporated) -- C:\Windows\system32\DRIVERS\psdfilter.sys -- (PSDFilter [Boot | Running])
131.DRV - [2008-07-30 02:53:10 | 00,016,944 | ---- | M] (Egis Incorporated) -- C:\Windows\System32\DRIVERS\PSDNServ.sys -- (PSDNServ [Auto | Running])
132.DRV - [2008-07-21 02:44:44 | 00,324,120 | ---- | M] (Intel Corporation) -- C:\Windows\system32\DRIVERS\iaStor.sys -- (iaStor [Boot | Running])
133.DRV - [2008-07-19 00:05:10 | 00,061,424 | ---- | M] (Cyberlink Corp.) -- C:\Program Files\Acer Arcade Deluxe\PlayMovie\000.fcl -- ({49DE1C67-83F8-4102-99E0-C16DCC7EEC796} [Auto | Running])
134.DRV - [2008-05-26 13:44:14 | 00,040,752 | ---- | M] (Validity Sensors, Inc.) -- C:\Windows\System32\drivers\vfs101x.sys -- (vfs101x [On_Demand | Running])
135.DRV - [2008-05-19 17:23:00 | 00,047,104 | ---- | M] (Atheros Communications, Inc.) -- C:\Windows\System32\DRIVERS\L1E60x86.sys -- (L1E [On_Demand | Running])
136.DRV - [2008-05-07 12:22:50 | 02,134,424 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\System32\drivers\RTKVHDA.sys -- (IntcAzAudAddService [On_Demand | Running])
137.DRV - [2008-05-07 11:47:36 | 00,085,136 | ---- | M] (JMicron Technology Corp.) -- C:\Windows\System32\DRIVERS\jmcr.sys -- (JMCR [On_Demand | Stopped])
138.DRV - [2008-04-27 23:29:26 | 03,658,752 | ---- | M] (Intel Corporation) -- C:\Windows\System32\DRIVERS\NETw5v32.sys -- (NETw5v32 [On_Demand | Running])
139.DRV - [2008-04-04 10:26:56 | 00,196,784 | ---- | M] (Synaptics, Inc.) -- C:\Windows\System32\DRIVERS\SynTP.sys -- (SynTP [On_Demand | Running])
140.DRV - [2008-02-29 08:13:38 | 01,202,560 | ---- | M] (Agere Systems) -- C:\Windows\System32\DRIVERS\AGRSM.sys -- (AgereSoftModem [On_Demand | Running])
141.DRV - [2008-01-30 10:52:06 | 00,014,848 | ---- | M] (NewTech Infosystems, Inc.) -- C:\Windows\System32\DRIVERS\NTIDrvr.sys -- (NTIDrvr [On_Demand | Running])
142.DRV - [2008-01-30 10:51:50 | 00,013,824 | ---- | M] (NewTech Infosystems Corporation) -- C:\Windows\System32\drivers\UBHelper.sys -- (UBHelper [Boot | Running])
143.DRV - [2008-01-21 03:23:27 | 00,386,616 | ---- | M] (LSI Corporation, Inc.) -- C:\Windows\system32\drivers\megasr.sys -- (MegaSR [Disabled | Stopped])
144.DRV - [2008-01-21 03:23:27 | 00,149,560 | ---- | M] (Adaptec, Inc.) -- C:\Windows\system32\drivers\adpu320.sys -- (adpu320 [Disabled | Stopped])
145.DRV - [2008-01-21 03:23:27 | 00,031,288 | ---- | M] (LSI Corporation) -- C:\Windows\system32\drivers\megasas.sys -- (megasas [Disabled | Stopped])
146.DRV - [2008-01-21 03:23:26 | 00,101,432 | ---- | M] (Adaptec, Inc.) -- C:\Windows\system32\drivers\adpu160m.sys -- (adpu160m [Disabled | Stopped])
147.DRV - [2008-01-21 03:23:26 | 00,074,808 | ---- | M] (Silicon Integrated Systems) -- C:\Windows\system32\drivers\sisraid4.sys -- (SiSRaid4 [Disabled | Stopped])
148.DRV - [2008-01-21 03:23:26 | 00,040,504 | ---- | M] (Hewlett-Packard Company) -- C:\Windows\system32\drivers\hpcisss.sys -- (HpCISSs [Disabled | Stopped])
149.DRV - [2008-01-21 03:23:25 | 00,300,600 | ---- | M] (Adaptec, Inc.) -- C:\Windows\system32\drivers\adpahci.sys -- (adpahci [Disabled | Stopped])
150.DRV - [2008-01-21 03:23:25 | 00,089,656 | ---- | M] (LSI Logic) -- C:\Windows\system32\drivers\lsi_sas.sys -- (LSI_SAS [Disabled | Stopped])
151.DRV - [2008-01-21 03:23:24 | 01,122,360 | ---- | M] (QLogic Corporation) -- C:\Windows\system32\drivers\ql2300.sys -- (ql2300 [Disabled | Stopped])
152.DRV - [2008-01-21 03:23:24 | 00,118,784 | ---- | M] (Intel Corporation) -- C:\Windows\System32\DRIVERS\E1G60I32.sys -- (E1G60 [On_Demand | Stopped])
153.DRV - [2008-01-21 03:23:24 | 00,079,928 | ---- | M] (Adaptec, Inc.) -- C:\Windows\system32\drivers\arcsas.sys -- (arcsas [Disabled | Stopped])
154.DRV - [2008-01-21 03:23:23 | 00,235,064 | ---- | M] (Intel Corporation) -- C:\Windows\system32\drivers\iastorv.sys -- (iaStorV [Disabled | Stopped])
155.DRV - [2008-01-21 03:23:23 | 00,130,616 | ---- | M] (VIA Technologies Inc.,Ltd) -- C:\Windows\system32\drivers\vsmraid.sys -- (vsmraid [Disabled | Stopped])
156.DRV - [2008-01-21 03:23:23 | 00,115,816 | ---- | M] (Promise Technology, Inc.) -- C:\Windows\system32\drivers\ulsata2.sys -- (ulsata2 [Disabled | Stopped])
157.DRV - [2008-01-21 03:23:23 | 00,096,312 | ---- | M] (LSI Logic) -- C:\Windows\system32\drivers\lsi_scsi.sys -- (LSI_SCSI [Disabled | Stopped])
158.DRV - [2008-01-21 03:23:23 | 00,096,312 | ---- | M] (LSI Logic) -- C:\Windows\system32\drivers\lsi_fc.sys -- (LSI_FC [Disabled | Stopped])
159.DRV - [2008-01-21 03:23:23 | 00,079,416 | ---- | M] (Adaptec, Inc.) -- C:\Windows\system32\drivers\arc.sys -- (arc [Disabled | Stopped])
160.DRV - [2008-01-21 03:23:22 | 00,342,584 | ---- | M] (Emulex) -- C:\Windows\system32\drivers\elxstor.sys -- (elxstor [Disabled | Stopped])
161.DRV - [2008-01-21 03:23:21 | 00,422,968 | ---- | M] (Adaptec, Inc.) -- C:\Windows\system32\drivers\adp94xx.sys -- (adp94xx [Disabled | Stopped])
162.DRV - [2008-01-21 03:23:21 | 00,102,968 | ---- | M] (NVIDIA Corporation) -- C:\Windows\system32\drivers\nvraid.sys -- (nvraid [Disabled | Stopped])
163.DRV - [2008-01-21 03:23:21 | 00,045,112 | ---- | M] (NVIDIA Corporation) -- C:\Windows\system32\drivers\nvstor.sys -- (nvstor [Disabled | Stopped])
164.DRV - [2008-01-21 03:23:20 | 00,238,648 | ---- | M] (ULi Electronics Inc.) -- C:\Windows\system32\drivers\uliahci.sys -- (uliahci [Disabled | Stopped])
165.DRV - [2008-01-21 03:23:00 | 00,020,024 | ---- | M] (VIA Technologies, Inc.) -- C:\Windows\system32\drivers\viaide.sys -- (viaide [Disabled | Stopped])
166.DRV - [2008-01-21 03:23:00 | 00,019,000 | ---- | M] (CMD Technology, Inc.) -- C:\Windows\system32\drivers\cmdide.sys -- (cmdide [Disabled | Stopped])
167.DRV - [2008-01-21 03:23:00 | 00,017,464 | ---- | M] (Acer Laboratories Inc.) -- C:\Windows\system32\drivers\aliide.sys -- (aliide [Disabled | Stopped])
168.DRV - [2008-01-17 02:35:08 | 00,122,368 | ---- | M] (Cyberlink Corp.) -- C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\NTIPPKernel.sys -- (NTIPPKernel [Auto | Running])
169.DRV - [2007-12-19 01:12:12 | 00,054,784 | ---- | M] (ITE Tech. Inc. ) -- C:\Windows\System32\DRIVERS\itecir.sys -- (itecir [On_Demand | Running])
170.DRV - [2007-03-29 20:46:22 | 00,079,664 | ---- | M] (Broadcom Corporation.) -- C:\Windows\System32\drivers\btwaudio.sys -- (btwaudio [On_Demand | Stopped])
171.DRV - [2007-02-27 07:20:28 | 00,081,200 | ---- | M] (Broadcom Corporation.) -- C:\Windows\System32\drivers\btwavdt.sys -- (btwavdt [On_Demand | Stopped])
172.DRV - [2007-02-27 07:20:24 | 00,016,432 | ---- | M] (Broadcom Corporation.) -- C:\Windows\System32\DRIVERS\btwrchid.sys -- (btwrchid [On_Demand | Stopped])
173.DRV - [2007-01-26 07:32:18 | 00,069,632 | ---- | M] () -- C:\Windows\System32\drivers\int15.sys -- (int15 [Auto | Running])
174.DRV - [2006-11-02 14:29:36 | 00,021,264 | ---- | M] (Dritek System Inc.) -- C:\Windows\System32\DRIVERS\DKbFltr.sys -- (DKbFltr [On_Demand | Running])
175.DRV - [2006-11-02 14:27:34 | 00,020,112 | ---- | M] (Dritek System Inc.) -- C:\Program Files\Launch Manager\DPortIO.sys -- (DritekPortIO [System | Running])
176.DRV - [2006-11-02 10:50:35 | 00,106,088 | ---- | M] (QLogic Corporation) -- C:\Windows\system32\drivers\ql40xx.sys -- (ql40xx [Disabled | Stopped])
177.DRV - [2006-11-02 10:50:35 | 00,098,408 | ---- | M] (Promise Technology, Inc.) -- C:\Windows\system32\drivers\ulsata.sys -- (UlSata [Disabled | Stopped])
178.DRV - [2006-11-02 10:50:19 | 00,045,160 | ---- | M] (IBM Corporation) -- C:\Windows\system32\drivers\nfrd960.sys -- (nfrd960 [Disabled | Stopped])
179.DRV - [2006-11-02 10:50:17 | 00,041,576 | ---- | M] (Intel Corp./ICP vortex GmbH) -- C:\Windows\system32\drivers\iirsp.sys -- (iirsp [Disabled | Stopped])
180.DRV - [2006-11-02 10:50:11 | 00,071,272 | ---- | M] (Adaptec, Inc.) -- C:\Windows\system32\drivers\djsvs.sys -- (aic78xx [Disabled | Stopped])
181.DRV - [2006-11-02 10:50:09 | 00,035,944 | ---- | M] (Integrated Technology Express, Inc.) -- C:\Windows\system32\drivers\iteraid.sys -- (iteraid [Disabled | Stopped])
182.DRV - [2006-11-02 10:50:07 | 00,035,944 | ---- | M] (Integrated Technology Express, Inc.) -- C:\Windows\system32\drivers\iteatapi.sys -- (iteatapi [Disabled | Stopped])
183.DRV - [2006-11-02 10:50:05 | 00,035,944 | ---- | M] (LSI Logic) -- C:\Windows\system32\drivers\symc8xx.sys -- (Symc8xx [Disabled | Stopped])
184.DRV - [2006-11-02 10:50:03 | 00,034,920 | ---- | M] (LSI Logic) -- C:\Windows\system32\drivers\sym_u3.sys -- (Sym_u3 [Disabled | Stopped])
185.DRV - [2006-11-02 10:49:59 | 00,033,384 | ---- | M] (LSI Logic Corporation) -- C:\Windows\system32\drivers\mraid35x.sys -- (Mraid35x [Disabled | Stopped])
186.DRV - [2006-11-02 10:49:56 | 00,031,848 | ---- | M] (LSI Logic) -- C:\Windows\system32\drivers\sym_hi.sys -- (Sym_hi [Disabled | Stopped])
187.DRV - [2006-11-02 09:25:24 | 00,071,808 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\system32\drivers\brserid.sys -- (Brserid [Disabled | Stopped])
188.DRV - [2006-11-02 09:24:47 | 00,011,904 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\system32\drivers\brusbser.sys -- (BrUsbSer [On_Demand | Stopped])
189.DRV - [2006-11-02 09:24:46 | 00,005,248 | ---- | M] (Brother Industries, Ltd.) -- C:\Windows\system32\drivers\brfiltup.sys -- (BrFiltUp [On_Demand | Stopped])
190.DRV - [2006-11-02 09:24:45 | 00,013,568 | ---- | M] (Brother Industries, Ltd.) -- C:\Windows\system32\drivers\brfiltlo.sys -- (BrFiltLo [On_Demand | Stopped])
191.DRV - [2006-11-02 09:24:44 | 00,062,336 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\system32\drivers\brserwdm.sys -- (BrSerWdm [Disabled | Stopped])
192.DRV - [2006-11-02 09:24:44 | 00,012,160 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\system32\drivers\brusbmdm.sys -- (BrUsbMdm [Disabled | Stopped])
193.DRV - [2006-11-02 08:36:50 | 00,020,608 | ---- | M] (N-trig Innovative Technologies) -- C:\Windows\system32\drivers\ntrigdigi.sys -- (ntrigdigi [Disabled | Stopped])
194.DRV - [2006-11-02 07:37:21 | 00,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) -- C:\Windows\System32\drivers\secdrv.sys -- (secdrv [Auto | Running])
195.DRV - [2005-09-05 11:21:06 | 00,362,944 | ---- | M] (NETGEAR, Inc.) -- C:\Windows\System32\DRIVERS\WG11TND5.sys -- (AR5523 [On_Demand | Stopped])
196.
197.========== Standard Registry (SafeList) ==========
198.
199.
200.========== Internet Explorer ==========
201.
202.IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0c09&s=2&o=vp32&d=0309&m=aspire_6935
203.IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
204.IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
205.IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
206.IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
207.IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
208.IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
209.IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0c09&s=2&o=vp32&d=0309&m=aspire_6935
210.IE - HKLM\..\URLSearchHook: {57BCA5FA-5DBB-45a2-B558-1755C3F6253B} - C:\Program Files\Winamp Toolbar\winamptb.dll (AOL LLC.)
211.
212.IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm
213.IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Page_Transitions = 1
214.IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
215.IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
216.IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.pl/
217.IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
218.IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
219.IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
220.
221.FF - HKLM\software\mozilla\Firefox\Extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files\McAfee\SiteAdvisor [2009-09-07 10:49:47 | 00,000,000 | ---D | M]
222.FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009-08-07 22:44:54 | 00,000,000 | ---D | M]
223.
224.
225.O1 HOSTS File: (761 bytes) - C:\Windows\System32\drivers\etc\Hosts
226.O1 - Hosts: 127.0.0.1 localhost
227.O1 - Hosts: ::1 localhost
228.O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
229.O2 - BHO: (Winamp Toolbar Loader) - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:\Program Files\Winamp Toolbar\winamptb.dll (AOL LLC.)
230.O2 - BHO: (McAfee Phishing Filter) - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\Program Files\McAfee\MSK\mskapbho.dll ()
231.O2 - BHO: (BitComet Helper) - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - D:\BitComet\tools\BitCometBHO_1.3.3.2.dll (BitComet)
232.O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
233.O2 - BHO: (scriptproxy) - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll (McAfee, Inc.)
234.O2 - BHO: (ShowBarObj Class) - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll (Egis)
235.O2 - BHO: (Windows Live Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
236.O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
237.O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.3.4501.1418\swg.dll (Google Inc.)
238.O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll ()
239.O2 - BHO: (Google Dictionary Compression sdch) - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll (Google Inc.)
240.O2 - BHO: (IEPluginBHO Class) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - C:\Users\Roksana\AppData\Roaming\Nowe Gadu-Gadu\_userdata\ggbho.1.dll (GG Network S.A.)
241.O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll ()
242.O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
243.O3 - HKLM\..\Toolbar: (Acer eDataSecurity Management) - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll (Egis Incorporated.)
244.O3 - HKLM\..\Toolbar: (Winamp Toolbar) - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll (AOL LLC.)
245.O3 - HKCU\..\Toolbar\ShellBrowser: (Acer eDataSecurity Management) - {5CBE3B7C-1E47-477E-A7DD-396DB0476E29} - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll (Egis Incorporated.)
246.O3 - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
247.O3 - HKCU\..\Toolbar\WebBrowser: (Winamp Toolbar) - {EBF2BA02-9094-4C5A-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll (AOL LLC.)
248.O4 - HKLM..\Run: [eRecoveryService] File not found
249.O4 - HKLM..\Run: [ISTray] D:\Spyware Doctor\pctsTray.exe (PC Tools)
250.O4 - HKCU..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
251.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 2
252.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 1
253.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
254.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 1
255.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
256.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
257.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1
258.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
259.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
260.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
261.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
262.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0
263.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
264.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
265.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0
266.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0
267.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
268.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
269.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
270.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
271.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
272.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
273.O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
274.O9 - Extra Button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
275.O9 - Extra 'Tools' menuitem : &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
276.O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
277.O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
278.O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
279.O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
280.O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
281.O9 - Extra Button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - D:\BitComet\tools\BitCometBHO_1.3.3.2.dll (BitComet)
282.O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\System32\napinsp.dll (Microsoft Corporation)
283.O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
284.O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation)
285.O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Windows\System32\wshbth.dll (Microsoft Corporation)
286.O13 - gopher Prefix: missing
287.O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
288.O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
289.O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation)
290.O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
291.O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - c:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)
292.O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll (Microsoft Corporation)
293.O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll ()
294.O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
295.O18 - Protocol\Filter: - text/xml - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
296.O20 - AppInit_DLLs: (C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL) - C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll (Google)
297.O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
298.O20 - Winlogon\Notify\AWinNotifyVitaKey MC3000: DllName - C:\Program Files\Acer\Acer Bio Protection\WinNotify.dll - C:\Program Files\Acer\Acer Bio Protection\WinNotify.dll (Arachnoid Biometrics Identification Group Corp.)
299.O31 - SafeBoot: AlternateShell - cmd.exe
300.O32 - HKLM CDRom: AutoRun - 1
301.O32 - AutoRun File - [2006-09-18 22:43:36 | 00,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
302.O34 - HKLM BootExecute: (autocheck) - File not found
303.O34 - HKLM BootExecute: (autochk) - C:\Windows\System32\autochk.exe (Microsoft Corporation)
304.O34 - HKLM BootExecute: (*) - File not found
305.O35 - comfile [open] -- "%1" %* File not found
306.O35 - exefile [open] -- "%1" %* File not found
307.
308.========== Files/Folders - Created Within 30 Days ==========
309.
310.[2009-10-07 03:00:16 | 00,000,000 | ---D | C] -- C:\ProgramData\WindowsSearch
311.[2009-10-19 19:21:30 | 00,000,000 | ---D | C] -- C:\Users\Roksana\AppData\Roaming\Intel
312.[2009-10-01 14:16:38 | 00,000,000 | ---D | C] -- C:\Users\Roksana\AppData\Local\Mozilla
313.[2009-10-21 17:28:32 | 00,000,000 | ---D | C] -- C:\Program Files\trend micro
314.[2009-10-21 17:28:31 | 00,000,000 | ---D | C] -- C:\rsit
315.[2009-10-19 19:15:44 | 00,000,000 | ---D | C] -- C:\Windows\pss
316.[2009-10-15 18:15:05 | 00,213,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msv1_0.dll
317.[2009-10-15 18:15:04 | 01,256,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\lsasrv.dll
318.[2009-10-15 18:15:04 | 00,175,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wdigest.dll
319.[2009-10-15 18:15:03 | 00,439,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\ksecdd.sys
320.[2009-10-15 18:15:02 | 00,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\lsass.exe
321.[2009-10-15 18:15:01 | 00,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\secur32.dll
322.[2009-10-15 18:14:47 | 03,597,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
323.[2009-10-15 18:14:45 | 03,546,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
324.[2009-10-15 18:14:14 | 00,428,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\EncDec.dll
325.[2009-10-15 18:14:14 | 00,217,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\psisrndr.ax
326.[2009-10-15 18:14:11 | 00,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\psisdecd.dll
327.[2009-10-15 18:14:11 | 00,177,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mpg2splt.ax
328.[2009-10-15 18:14:10 | 00,080,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSNP.ax
329.[2009-10-15 18:13:49 | 05,940,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.dll
330.[2009-10-15 18:13:47 | 11,069,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieframe.dll
331.[2009-10-15 18:13:46 | 01,985,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iertutil.dll
332.[2009-10-15 18:13:46 | 01,208,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\urlmon.dll
333.[2009-10-15 18:13:45 | 00,916,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wininet.dll
334.[2009-10-15 18:13:45 | 00,594,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
335.[2009-10-15 18:13:45 | 00,387,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
336.[2009-10-15 18:13:45 | 00,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\occache.dll
337.[2009-10-15 18:13:44 | 01,469,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
338.[2009-10-15 18:13:43 | 00,184,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll
339.[2009-10-15 18:13:43 | 00,164,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
340.[2009-10-15 18:13:42 | 00,173,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe
341.[2009-10-15 18:13:42 | 00,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
342.[2009-10-15 18:13:42 | 00,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesysprep.dll
343.[2009-10-15 18:13:42 | 00,055,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
344.[2009-10-15 18:13:42 | 00,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
345.[2009-10-15 18:13:41 | 01,638,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
346.[2009-10-15 18:13:41 | 00,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll
347.[2009-10-15 18:13:41 | 00,055,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll
348.[2009-10-15 18:13:41 | 00,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedssync.exe
349.[2009-10-15 18:13:17 | 00,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msasn1.dll
350.[2009-10-15 18:13:10 | 00,144,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\srv2.sys
351.[2009-10-15 18:13:05 | 00,604,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMSPDMOD.DLL
352.[2009-10-03 18:05:23 | 00,053,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuauclt.exe
353.[2009-10-03 18:05:23 | 00,044,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups2.dll
354.[2009-10-03 18:05:22 | 02,421,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wucltux.dll
355.[2009-10-03 18:05:22 | 01,929,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuaueng.dll
356.[2009-10-03 18:04:52 | 00,575,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapi.dll
357.[2009-10-03 18:04:52 | 00,087,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wudriver.dll
358.[2009-10-03 18:04:52 | 00,035,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups.dll
359.[2009-10-03 18:04:41 | 00,171,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuwebv.dll
360.[2009-10-03 18:04:41 | 00,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapp.exe
361.[2009-09-29 17:51:35 | 00,000,000 | ---D | C] -- C:\Users\Roksana\Documents\Downloads
362.[2009-01-13 05:39:58 | 00,049,152 | ---- | C] ( ) -- C:\Windows\Interop.IWshRuntimeLibrary.dll
363.
364.========== Files - Modified Within 30 Days ==========
365.
366.[2009-10-21 18:10:00 | 00,015,301 | ---- | M] () -- C:\Windows\System32\Config.MPF
367.[2009-10-21 18:09:11 | 00,000,000 | ---- | M] () -- C:\Windows\System32\LogConfigTemp.xml
368.[2009-10-21 18:08:29 | 00,032,061 | ---- | M] () -- C:\ProgramData\nvModes.dat
369.[2009-10-21 18:08:29 | 00,032,061 | ---- | M] () -- C:\ProgramData\nvModes.001
370.[2009-10-21 18:08:23 | 00,001,034 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
371.[2009-10-21 18:08:08 | 00,003,216 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
372.[2009-10-21 18:08:08 | 00,003,216 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
373.[2009-10-21 18:08:04 | 00,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
374.[2009-10-21 18:07:58 | 00,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
375.[2009-10-21 18:07:57 | 00,000,000 | ---- | M] () -- C:\Windows\win32k.sys
376.[2009-10-21 18:07:54 | 32,180,42880 | -HS- | M] () -- C:\hiberfil.sys
377.[2009-10-21 18:07:06 | 00,000,012 | ---- | M] () -- C:\Windows\bthservsdp.dat
378.[2009-10-21 18:06:58 | 03,856,220 | -H-- | M] () -- C:\Users\Roksana\AppData\Local\IconCache.db
379.[2009-10-21 18:03:56 | 00,781,909 | ---- | M] () -- C:\Users\Roksana\Desktop\RSIT.exe
380.[2009-10-21 18:03:56 | 00,781,909 | ---- | M] () -- C:\Users\Roksana\Desktop\RSIT (2).exe
381.[2009-10-21 17:36:00 | 00,001,038 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
382.[2009-10-21 17:29:24 | 00,600,378 | ---- | M] () -- C:\Windows\System32\perfh009.dat
383.[2009-10-21 17:29:24 | 00,105,852 | ---- | M] () -- C:\Windows\System32\perfc009.dat
384.[2009-10-21 17:29:23 | 00,690,960 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
385.[2009-10-14 19:36:55 | 00,001,975 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
386.[2009-10-12 21:39:54 | 00,009,216 | ---- | M] () -- C:\Users\Roksana\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
387.[2009-10-02 19:01:57 | 25,198,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mrt.exe
388.[2009-10-01 14:16:56 | 00,000,000 | ---- | M] () -- C:\Windows\nsreg.dat
389.[2009-09-29 17:34:02 | 00,002,077 | ---- | M] () -- C:\Users\Public\Desktop\Google Earth.lnk
390.
391.========== Files - No Company Name ==========
392.[2009-10-21 18:27:21 | 00,781,909 | ---- | C] () -- C:\Users\Roksana\Desktop\RSIT (2).exe
393.[2009-10-21 17:32:31 | 00,781,909 | ---- | C] () -- C:\Users\Roksana\Desktop\RSIT.exe
394.[2009-10-19 09:47:43 | 00,000,000 | ---- | C] () -- C:\Windows\win32k.sys
395.[2009-10-01 14:16:56 | 00,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
396.[2009-09-29 17:34:29 | 00,001,975 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
397.[2009-09-29 17:34:02 | 00,002,077 | ---- | C] () -- C:\Users\Public\Desktop\Google Earth.lnk
398.[2009-09-29 17:31:01 | 00,001,038 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
399.[2009-09-29 17:31:00 | 00,001,034 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
400.[2009-07-31 09:35:47 | 00,795,648 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
401.[2009-06-26 23:07:26 | 00,009,216 | ---- | C] () -- C:\Users\Roksana\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
402.[2009-06-18 21:50:23 | 00,032,061 | ---- | C] () -- C:\ProgramData\nvModes.001
403.[2009-06-18 21:50:22 | 00,032,061 | ---- | C] () -- C:\ProgramData\nvModes.dat
404.[2009-06-16 21:07:08 | 00,663,552 | ---- | C] () -- C:\Windows\System32\libeay32_1-1-0_DDR.dll
405.[2009-06-16 21:07:08 | 00,532,594 | ---- | C] () -- C:\Windows\System32\xerces-c_1_40_0_DDR.dll
406.[2009-06-16 21:07:08 | 00,524,377 | ---- | C] () -- C:\Windows\System32\stlport_4_0_0_DDR.dll
407.[2009-06-16 21:07:08 | 00,307,329 | ---- | C] () -- C:\Windows\System32\BJBase_2-2-2_DDR.dll
408.[2009-06-16 21:07:08 | 00,159,744 | ---- | C] () -- C:\Windows\System32\ssleay32_1-1-0_DDR.dll
409.[2009-06-16 20:46:44 | 00,000,680 | ---- | C] () -- C:\Users\Roksana\AppData\Local\d3d9caps.dat
410.[2009-06-16 07:27:05 | 03,856,220 | -H-- | C] () -- C:\Users\Roksana\AppData\Local\IconCache.db
411.[2009-06-16 06:53:31 | 00,651,264 | ---- | C] () -- C:\Windows\System32\libeay32.dll
412.[2009-06-16 06:53:31 | 00,147,456 | ---- | C] () -- C:\Windows\System32\ssleay32.dll
413.[2009-06-16 06:37:46 | 00,071,280 | ---- | C] () -- C:\Users\Roksana\AppData\Local\GDIPFONTCACHEV1.DAT
414.[2009-03-30 07:24:14 | 00,006,048 | ---- | C] () -- C:\ProgramData\ArcadeDeluxe2.log
415.[2009-03-30 07:16:09 | 00,626,688 | ---- | C] () -- C:\Windows\Image.dll
416.[2009-03-30 07:16:09 | 00,000,036 | ---- | C] () -- C:\Windows\PidList.ini
417.[2009-03-30 07:12:53 | 00,118,784 | ---- | C] () -- C:\Windows\System32\VMC3KAPI.dll
418.[2009-01-13 08:15:04 | 00,001,024 | RH-- | C] () -- C:\Windows\System32\NTIOFM4.dll
419.[2009-01-13 08:15:04 | 00,001,024 | RH-- | C] () -- C:\Windows\System32\NTIBUN5.dll
420.[2009-01-13 07:42:01 | 00,487,424 | ---- | C] () -- C:\Windows\System32\INT15.dll
421.[2009-01-13 07:24:16 | 00,001,694 | ---- | C] () -- C:\Windows\RtDefLvl.ini
422.[2009-01-13 05:36:28 | 01,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll
423.[2007-11-15 00:17:34 | 00,204,800 | ---- | C] () -- C:\Windows\System32\CogentBioSDK.dll
424.[2007-04-25 02:32:56 | 00,389,120 | ---- | C] () -- C:\Windows\System32\btwhidcs.dll
425.[2007-01-26 07:32:18 | 00,069,632 | ---- | C] () -- C:\Windows\System32\drivers\int15.sys
426.[2006-11-02 13:50:50 | 00,000,174 | -HS- | C] () -- C:\Program Files\desktop.ini
427.[2006-11-02 13:35:32 | 00,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
428.[2006-11-02 11:23:31 | 00,000,219 | ---- | C] () -- C:\Windows\system.ini
429.[2006-11-02 11:23:31 | 00,000,144 | ---- | C] () -- C:\Windows\win.ini
430.[2006-11-02 09:43:04 | 00,061,952 | ---- | C] () -- C:\Windows\System32\cngaudit.dll
431.[2006-11-02 08:40:29 | 00,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
432.[2001-12-27 01:12:30 | 00,065,536 | ---- | C] () -- C:\Windows\System32\multiplex_vcd.dll
433.[2001-11-14 21:56:00 | 01,802,240 | ---- | C] () -- C:\Windows\System32\lcppn21.dll
434.[2001-09-04 08:46:38 | 00,110,592 | ---- | C] () -- C:\Windows\System32\Hmpg12.dll
435.[2001-07-31 01:33:56 | 00,118,784 | ---- | C] () -- C:\Windows\System32\HMPV2_ENC.dll
436.[2001-07-24 07:04:36 | 00,118,784 | ---- | C] () -- C:\Windows\System32\HMPV2_ENC_MMX.dll
437.
438.========== LOP Check ==========
439.
440.[2009-10-21 18:06:01 | 00,000,000 | ---D | M] -- C:\Users\Roksana\AppData\Roaming
441.[2009-06-17 20:43:32 | 00,000,000 | -HSD | M] -- C:\Users\Roksana\AppData\Roaming\.#
442.[2009-07-29 10:33:28 | 00,000,000 | ---D | M] -- C:\Users\Roksana\AppData\Roaming\Acer
443.[2009-01-13 08:00:29 | 00,000,000 | ---D | M] -- C:\Users\Roksana\AppData\Roaming\Acer GameZone Console
444.[2009-06-26 23:08:26 | 00,000,000 | ---D | M] -- C:\Users\Roksana\AppData\Roaming\CyberLink
445.[2009-06-27 22:14:56 | 00,000,000 | ---D | M] -- C:\Users\Roksana\AppData\Roaming\GetRightToGo
446.[2009-10-19 19:21:30 | 00,000,000 | ---D | M] -- C:\Users\Roksana\AppData\Roaming\Intel
447.[2006-11-02 13:37:34 | 00,000,000 | ---D | M] -- C:\Users\Roksana\AppData\Roaming\Media Center Programs
448.[2009-06-17 10:32:11 | 00,000,000 | ---D | M] -- C:\Users\Roksana\AppData\Roaming\Nowe Gadu-Gadu
449.[2009-07-29 20:04:30 | 00,000,000 | ---D | M] -- C:\Users\Roksana\AppData\Roaming\OpenFM
450.[2009-06-16 06:38:53 | 00,000,000 | ---D | M] -- C:\Users\Roksana\AppData\Roaming\Validity
451.[2009-10-21 18:08:23 | 00,001,034 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
452.[2009-10-21 17:36:00 | 00,001,038 | ---- | M] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
453.[2009-01-13 07:51:34 | 00,000,340 | ---- | M] () -- C:\Windows\Tasks\McDefragTask.job
454.[2009-01-13 07:51:34 | 00,000,348 | ---- | M] () -- C:\Windows\Tasks\McQcTask.job
455.[2009-10-21 18:08:04 | 00,000,006 | -H-- | M] () -- C:\Windows\Tasks\SA.DAT
456.[2009-10-21 18:07:06 | 00,032,614 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
457.
458.========== Purity Check ==========
459.
460.
461.
462.========== Alternate Data Streams ==========
463.
464.@Alternate Data Stream - 126 bytes -> C:\ProgramData\Temp:4D066AD2
465.@Alternate Data Stream - 123 bytes -> C:\ProgramData\Temp:4220A65C
466.@Alternate Data Stream - 112 bytes -> C:\ProgramData\Temp:DFC5A2B2
467.@Alternate Data Stream - 110 bytes -> C:\ProgramData\Temp:C99F6ECA
468.@Alternate Data Stream - 108 bytes -> C:\ProgramData\Temp:793F316E
469.@Alternate Data Stream - 101 bytes -> C:\ProgramData\Temp:753F86A9
470.< End of report >