Cudno ponasanje misa

Cudno ponasanje misa

offline
  • Pridružio: 19 Maj 2011
  • Poruke: 297

Napisano: 23 Jul 2012 19:04

Posto radim preko dana ostavio sam sestri da koristi racunar. Rekla je da koristi samo za fejsbuk.
I danas kad sam se vratio sa posla, racunar je bio upaljen, kad krenem desni klik u prazno na desktop na blic se pojavi kontext meni i momentalno nestane, i tako sam probao par puta isto se pojavi na blic pa nestane. Levi klik je isto nesto zezao kao da je dupli klik umesto "single". Uzmem restartujem komp i kad se ponovo digne ispoljava mi isti problem. Startujem task manager (ctrl-alt-del) i probam desni na desktop kad ono radi WTF?

Sistem:
Windows 7 x64 Ultimate (redovan apdejt)

Aktivni anti-maliciozni programi:
ESET Smart security 5.0.94.0 (redovan apdejt) MCShield 2.0.3.11

OTL logfile created on: 23.7.2012 18:46:43 - Run 1
OTL by OldTimer - Version 3.2.54.0 Folder = C:\Users\belphegor\Desktop
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 0000241A | Country: Serbia | Language: SRM | Date Format: d.M.yyyy

3,96 Gb Total Physical Memory | 2,24 Gb Available Physical Memory | 56,44% Memory free
7,92 Gb Paging File | 5,94 Gb Available in Paging File | 74,98% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 298,09 Gb Total Space | 109,21 Gb Free Space | 36,64% Space Free | Partition Type: NTFS
Drive D: | 465,76 Gb Total Space | 39,44 Gb Free Space | 8,47% Space Free | Partition Type: NTFS
Drive E: | 204,78 Gb Total Space | 204,68 Gb Free Space | 99,95% Space Free | Partition Type: NTFS

Computer Name: BELPHEGOR-PC | User Name: belphegor | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012.07.23 18:45:55 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\belphegor\Desktop\OTL.exe
PRC - [2012.07.19 05:38:27 | 000,913,888 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2012.07.17 05:34:31 | 001,536,712 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_3_300_265.exe
PRC - [2012.07.03 13:46:44 | 000,655,944 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2012.04.09 15:50:36 | 000,072,704 | ---- | M] (Autodesk) -- C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe
PRC - [2012.03.30 14:41:46 | 000,151,656 | ---- | M] (Microsoft Corp.) -- C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe
PRC - [2012.03.12 22:25:06 | 000,583,680 | ---- | M] (MyCity) -- C:\Program Files (x86)\MCShield\MCShieldRTM.exe
PRC - [2012.02.10 06:13:00 | 002,348,352 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
PRC - [2012.02.09 21:05:32 | 000,382,272 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2011.09.22 13:03:30 | 000,974,944 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
PRC - [2010.11.22 22:51:12 | 003,042,816 | ---- | M] (SoftPerfect Research) -- C:\Program Files (x86)\NetWorx\networx.exe
PRC - [2010.07.12 08:52:50 | 000,548,864 | ---- | M] () -- C:\Program Files (x86)\Greenshot\Greenshot.exe
PRC - [2010.04.12 10:40:16 | 000,180,224 | ---- | M] (PowerISO Computing, Inc.) -- C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
PRC - [2009.03.30 08:32:40 | 000,032,768 | R--- | M] () -- C:\Windows\DAODx.exe


========== Modules (No Company Name) ==========

MOD - [2012.07.19 05:38:27 | 002,003,424 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2012.07.17 05:34:30 | 009,465,032 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_265.dll
MOD - [2012.06.13 10:03:18 | 012,436,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\7b7fbe651c6e72f12099a298654c9594\System.Windows.Forms.ni.dll
MOD - [2012.06.13 10:03:13 | 001,591,808 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6bb439b3f87736d3248ae27d43e2c0d6\System.Drawing.ni.dll
MOD - [2012.05.15 12:54:16 | 000,070,536 | ---- | M] () -- C:\Program Files\TortoiseSVN\bin\libsasl32.dll
MOD - [2012.05.09 11:47:24 | 005,452,800 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ba3d70b651454c7d49b407b93663bfed\System.Xml.ni.dll
MOD - [2012.05.09 11:47:21 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\cfa9c506bfb9254c89dace7b83bc9f9d\System.Configuration.ni.dll
MOD - [2012.05.09 11:47:11 | 007,967,232 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\ce9ff6baf9053ed2ed673d948179195c\System.ni.dll
MOD - [2012.05.09 11:47:07 | 011,492,864 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\acfc1391e45fedd2a359778ea57d914c\mscorlib.ni.dll
MOD - [2010.07.12 08:52:50 | 000,548,864 | ---- | M] () -- C:\Program Files (x86)\Greenshot\Greenshot.exe
MOD - [2010.07.12 08:52:48 | 000,028,672 | ---- | M] () -- C:\Program Files (x86)\Greenshot\GreenshotPlugin.dll
MOD - [2010.04.25 11:48:04 | 000,459,264 | ---- | M] () -- C:\Program Files (x86)\NetWorx\sqlite.dll
MOD - [2010.01.21 02:34:10 | 008,793,952 | ---- | M] () -- C:\Program Files (x86)\Microsoft Office\Office14\1033\GrooveIntlResource.dll
MOD - [2010.01.09 21:18:18 | 004,254,560 | ---- | M] () -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
MOD - [2009.03.30 08:32:40 | 000,032,768 | R--- | M] () -- C:\Windows\DAODx.exe


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2011.09.22 13:03:30 | 000,974,944 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe -- (ekrn)
SRV:64bit: - [2009.07.14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009.07.14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2012.07.19 05:38:27 | 000,113,120 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012.07.03 13:46:44 | 000,655,944 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2012.04.09 15:50:36 | 000,072,704 | ---- | M] (Autodesk) [Auto | Running] -- C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe -- (Autodesk Licensing Service)
SRV - [2012.03.30 14:41:46 | 000,151,656 | ---- | M] (Microsoft Corp.) [Auto | Running] -- C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe -- (BingDesktopUpdate)
SRV - [2012.02.10 06:13:00 | 002,348,352 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2012.02.09 21:05:32 | 000,382,272 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2011.12.14 13:47:00 | 002,123,584 | ---- | M] (TuneUp Software) [Auto | Running] -- C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe -- (TuneUp.UtilitiesSvc)
SRV - [2011.08.05 01:25:50 | 000,091,984 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2011.03.16 11:42:06 | 000,407,336 | ---- | M] (Valve Corporation) [Disabled | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2010.02.19 14:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009.06.10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2006.09.29 12:48:06 | 000,065,536 | ---- | M] () [Auto | Stopped] -- C:\Program Files (x86)\Autodesk\3ds Max 9\mentalray\satellite\raysat_3dsmax9_32server.exe -- (mi-raysat_3dsmax9_32) mental ray 3.5 Satellite (32-bit)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2012.07.03 13:46:44 | 000,024,904 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2012.03.01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012.01.17 14:45:56 | 000,188,224 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:64bit: - [2012.01.11 14:04:19 | 000,053,312 | ---- | M] (microOLAP Technologies LTD) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\pssdk42.sys -- (PSSDK42)
DRV:64bit: - [2011.08.09 15:24:52 | 000,202,576 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\eamonm.sys -- (eamonm)
DRV:64bit: - [2011.08.04 10:20:38 | 000,187,632 | ---- | M] (ESET) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\epfw.sys -- (epfw)
DRV:64bit: - [2011.08.04 10:20:38 | 000,146,432 | ---- | M] (ESET) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ehdrv.sys -- (ehdrv)
DRV:64bit: - [2011.08.04 10:20:38 | 000,062,496 | ---- | M] (ESET) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\epfwwfp.sys -- (epfwwfp)
DRV:64bit: - [2011.08.04 10:20:38 | 000,038,288 | ---- | M] (ESET) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\EpfwLWF.sys -- (EpfwLWF)
DRV:64bit: - [2011.06.25 09:10:24 | 000,326,496 | ---- | M] (Microsoft Corporation) [File_System | Disabled | Stopped] -- C:\Windows\SysNative\drivers\RsFx0200.sys -- (RsFx0200)
DRV:64bit: - [2011.06.10 07:34:52 | 000,539,240 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2011.03.11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011.03.04 07:46:20 | 000,078,976 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_sata.sys -- (amd_sata)
DRV:64bit: - [2011.03.04 07:46:20 | 000,038,528 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_xata.sys -- (amd_xata)
DRV:64bit: - [2011.02.24 11:30:50 | 000,389,608 | ---- | M] (ASMedia Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\asmtxhci.sys -- (asmtxhci)
DRV:64bit: - [2011.02.24 11:30:50 | 000,126,952 | ---- | M] (ASMedia Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\asmthub3.sys -- (asmthub3)
DRV:64bit: - [2010.12.16 06:06:46 | 000,047,232 | R--- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbfilter.sys -- (usbfilter)
DRV:64bit: - [2010.11.20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.11.20 13:03:42 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2010.04.12 10:55:00 | 000,091,568 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\scdemu.sys -- (SCDEmu)
DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2012.05.06 17:56:27 | 000,003,026 | ---- | M] (Logix4u) [Kernel | System | Stopped] -- C:\Windows\SysWOW64\drivers\hwinterface.sys -- (hwinterface)
DRV - [2011.12.12 20:31:38 | 000,011,856 | ---- | M] (TuneUp Software) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys -- (TuneUpUtilitiesDrv)
DRV - [2011.07.19 15:35:30 | 000,067,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\Microsoft Visual Studio 11.0\Team Tools\Performance Tools\x64\VSPerfDrv110.sys -- (VSPerfDrv110)
DRV - [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = sr-rs
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 6C F7 A5 2A 39 D2 CC 01 [binary data]
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "https://www.google.com/"
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_3_300_265.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.2.1: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.2.1: C:\Program Files\Oracle\JavaFX 2.0 Runtime\bin\new_plugin\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MIF5BA~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/wpi,version=1.4: C:\Program Files\Microsoft\Web Platform Installer\\npwpidetector.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_265.dll ()
FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf: C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.5.1: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.5.1: C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MIF5BA~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MIF5BA~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/wpi,version=1.4: C:\Program Files\Microsoft\Web Platform Installer\\npwpidetector.dll ()
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\belphegor\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)

64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\PROGRAM FILES\ESET\ESET SMART SECURITY\MOZILLA THUNDERBIRD [2011.12.25 08:36:15 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012.07.19 05:38:27 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012.01.11 13:46:02 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 12.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2012.05.02 18:15:53 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2011.12.25 08:36:15 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey\Extensions\\mozilla_cc@internetdownloadmanager.com: C:\Users\belphegor\AppData\Roaming\IDM\idmmzcc3

[2011.12.25 10:18:17 | 000,000,000 | ---D | M] (No name found) -- C:\Users\belphegor\AppData\Roaming\Mozilla\Extensions
[2011.12.25 10:18:17 | 000,000,000 | ---D | M] (No name found) -- C:\Users\belphegor\AppData\Roaming\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2012.07.04 09:11:16 | 000,000,000 | ---D | M] (No name found) -- C:\Users\belphegor\AppData\Roaming\Mozilla\Firefox\Profiles\6mulit96.default\extensions
[2012.06.23 08:15:12 | 000,000,000 | ---D | M] ("Foxit PDF Creator Toolbar") -- C:\Users\belphegor\AppData\Roaming\Mozilla\Firefox\Profiles\6mulit96.default\extensions\toolbar@ask.com
[2011.12.25 09:49:44 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2012.07.19 05:38:27 | 000,136,672 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2011.12.21 06:30:41 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2011.12.21 06:30:41 | 000,002,040 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\twitter.xml

O1 HOSTS File: ([2009.06.10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Oracle\JavaFX 2.0 Runtime\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Microsoft Web Test Recorder 10.0 Helper) - {876d9f09-c6d6-4324-a2cc-04dd9a4de12f} - C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll (Microsoft Corporation)
O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask)
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [egui] C:\Program Files\ESET\ESET Smart Security\egui.exe (ESET)
O4:64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [TNOD UP] C:\Program Files (x86)\TNod User & Password Finder\TNODUP.exe (Tukero[X]Team)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [AdobeCS5ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [ApnUpdater] C:\Program Files (x86)\Ask.com\Updater\Updater.exe (Ask)
O4 - HKLM..\Run: [BingDesktop] C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe (Microsoft Corp.)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [NetWorx] C:\Program Files (x86)\NetWorx\networx.exe (SoftPerfect Research)
O4 - HKLM..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE (PowerISO Computing, Inc.)
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKCU..\Run: [Greenshot] C:\Program Files (x86)\Greenshot\Greenshot.exe ()
O4 - HKCU..\Run: [MCShield Monitor] C:\Program Files (x86)\MCShield\MCShieldRTM.exe (MyCity)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoInternetOpenWith = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoInternetOpenWith = 1
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinstall-1_7_0_02-windows-i586.cab (Java Plug-in 10.2.1)
O16:64bit: - DPF: {CAFEEFAC-0017-0000-0002-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_02-windows-i586.cab (Java Plug-in 1.7.0_02)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_02-windows-i586.cab (Java Plug-in 1.7.0_02)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{50FF75F7-C9C6-40AB-B051-6F9CE998C6D4}: DhcpNameServer = 192.168.1.1
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O27:64bit: - HKLM IFEO\excel.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\groove.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\infopath.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\msaccess.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\msoxmled.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\mspub.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\mstore.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\onenote.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\outlook.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\powerpnt.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\steam.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27:64bit: - HKLM IFEO\Winword.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\excel.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\groove.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\infopath.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\msaccess.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\msoxmled.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\mspub.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\mstore.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\onenote.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\outlook.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\powerpnt.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\steam.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O27 - HKLM IFEO\Winword.exe: Debugger - C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe (TuneUp Software)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2012.07.02 23:06:38 | 000,000,000 | ---D | M] - C:\Autodesk -- [ NTFS ]
O33 - MountPoints2\{912add4b-2efb-11e1-ac5e-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{912add4b-2efb-11e1-ac5e-806e6f6e6963}\Shell\AutoRun\command - "" = F:\.\Bin\ASSETUP.exe
O33 - MountPoints2\G\Shell - "" = AutoRun
O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\StartUp.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2012.07.23 18:45:54 | 000,596,480 | ---- | C] (OldTimer Tools) -- C:\Users\belphegor\Desktop\OTL.exe
[2012.07.23 17:07:31 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{9FE74F42-E007-4643-BA99-A7A3F3BAC5F4}
[2012.07.23 17:07:20 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{7719B8AB-6518-4FA7-A651-3C249D5B5F0C}
[2012.07.23 16:07:46 | 000,000,000 | ---D | C] -- C:\Users\belphegor\Desktop\SEVERINA
[2012.07.23 05:06:54 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{229C8C65-B981-4FDB-B0B5-72A3B19665F7}
[2012.07.23 05:06:43 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{50EC2E20-F963-4E79-A5F6-C2BAF7DF527F}
[2012.07.22 10:01:36 | 000,000,000 | ---D | C] -- C:\ProgramData\YTD Video Downloader
[2012.07.22 10:01:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTD Video Downloader
[2012.07.22 08:39:23 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{E77C3DD5-BE94-4920-84BB-C8953FF62584}
[2012.07.22 08:39:10 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{BD162874-9A72-4E7C-8A30-A9DA31B05B55}
[2012.07.21 17:17:48 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{AAD22633-1C6F-4DF6-8A76-F4A5F746BBFF}
[2012.07.21 17:17:37 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{DA733C1E-DE8F-4F0D-9902-F3B3556FFEE7}
[2012.07.21 05:17:11 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{2CD18C51-01B0-48B5-96D8-E9B042D1B6FF}
[2012.07.21 05:17:00 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{05FE0E95-A8C4-4F06-8505-9A8D8C7E0EC2}
[2012.07.20 18:11:11 | 000,000,000 | ---D | C] -- C:\UDK
[2012.07.20 05:17:42 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{8CA81A53-4576-4577-85DB-184DEF379C23}
[2012.07.20 05:17:30 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{541AF389-93F5-4D7D-B29A-5A29C02BC16E}
[2012.07.19 16:22:32 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{9BE28110-4EA4-4F34-AAD7-0B1746D6F0EB}
[2012.07.19 16:22:21 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{61F87C88-677C-4500-9620-DF1E3170E51C}
[2012.07.18 20:03:14 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{FF3B3B78-919D-4DAB-BBAC-5383EA65B522}
[2012.07.18 20:03:03 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{36DF0CE8-8B56-41F2-82FE-0BFFF833B0D9}
[2012.07.17 20:16:01 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{D0CF68EF-C9EC-488B-A01B-1CE204700390}
[2012.07.17 20:15:48 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{63DDDF96-8337-4FA4-ABC0-8D9A1E6C8CB9}
[2012.07.17 05:32:07 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{B56FB9A1-4D36-494E-A533-212C151990DC}
[2012.07.17 05:31:55 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{2018DC1D-E206-4A8B-A0BF-9BCBE92EAE92}
[2012.07.16 05:36:32 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{1F19CFF7-AF13-48E7-B511-63A58A3CB3CF}
[2012.07.16 05:36:21 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{9169AC64-338A-4D3B-8A6F-517168F1B603}
[2012.07.15 09:52:14 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{7D39C4E5-3D31-4270-84F8-029C942ABA62}
[2012.07.15 09:52:02 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{1C048043-F915-4461-B557-03A2DCC6AE23}
[2012.07.14 18:33:03 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{06DF2418-87DD-47D7-B6B6-DAC29EC7D644}
[2012.07.14 18:32:51 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{2E009DF0-6EB3-4851-84B6-25F2E734CF5A}
[2012.07.13 19:58:05 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{C3C12FD3-7E47-4127-9EB3-896621E6E2F4}
[2012.07.13 19:57:54 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{EBBAFD7C-E575-46E5-84F5-0BC15961902A}
[2012.07.12 20:30:52 | 000,000,000 | ---D | C] -- C:\Windows\Sun
[2012.07.12 20:30:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
[2012.07.12 20:30:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2012.07.12 20:30:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Oracle
[2012.07.12 20:29:54 | 000,772,504 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\npDeployJava1.dll
[2012.07.12 20:29:54 | 000,687,504 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\deployJava1.dll
[2012.07.12 20:29:54 | 000,227,720 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2012.07.12 20:29:49 | 000,174,064 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2012.07.12 20:29:49 | 000,174,064 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2012.07.12 20:29:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Java
[2012.07.12 18:52:00 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{B15B115D-9C35-4887-B3BF-00DE9C14B633}
[2012.07.12 18:51:48 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{575C1238-FBD4-41F7-A031-4F2F0ACEC92E}
[2012.07.12 05:35:28 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{A8926840-B1D8-4A10-A4EC-224D6BEB2024}
[2012.07.12 05:35:17 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{52D2F186-CF60-4EEF-B9EF-5F9C3AB4B9E2}
[2012.07.11 19:28:25 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{E1843D52-D1E3-458D-A884-517D14EBC43A}
[2012.07.11 19:28:13 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{8AB5A1E9-B2D8-4F2D-BD92-8260CA2F562D}
[2012.07.11 06:00:20 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{770A1CBF-3D08-478D-A99A-6E85834026D4}
[2012.07.11 06:00:08 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{74F055CB-BB28-43A1-B829-138F1C7019E5}
[2012.07.10 19:37:22 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{8E7042B0-3488-48C5-B5DB-E2B06289CA27}
[2012.07.10 19:31:11 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2012.07.10 19:31:11 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2012.07.10 19:31:10 | 000,248,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2012.07.10 19:31:10 | 000,237,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2012.07.10 19:31:10 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2012.07.10 19:31:10 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2012.07.10 19:31:10 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2012.07.10 19:31:09 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2012.07.10 19:31:08 | 002,311,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2012.07.10 19:31:08 | 001,494,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2012.07.10 19:31:08 | 001,427,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2012.07.10 19:31:08 | 000,818,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2012.07.10 19:31:08 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2012.07.10 19:30:16 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cdosys.dll
[2012.07.10 19:30:15 | 001,133,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdosys.dll
[2012.07.10 19:30:07 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2012.07.10 19:30:04 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml3r.dll
[2012.07.10 19:30:04 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msxml3r.dll
[2012.07.10 19:26:15 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{49583F38-6D94-43EC-B6B3-BE02AAB3B186}
[2012.07.09 19:13:44 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{85A87684-89E5-4186-AAE7-594658E7CD4A}
[2012.07.09 19:13:33 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{1EDB0360-94E6-487D-82DF-DBEFB150DB77}
[2012.07.09 05:29:05 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{DF5505BB-90DE-466E-8A61-75180B98768F}
[2012.07.09 05:28:53 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{08C80DFF-B787-4951-82CD-500E378E478B}
[2012.07.08 21:17:42 | 000,000,000 | ---D | C] -- C:\Users\belphegor\Desktop\MNewtonCharacterController20120708
[2012.07.08 20:42:31 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Roaming\YourFileDownloader
[2012.07.08 08:47:20 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{B5CFF918-1626-4E87-994B-058444063F67}
[2012.07.08 08:47:08 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{58E85D79-5FA6-44DE-940C-589C77817BD0}
[2012.07.07 07:53:36 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{645CACE4-D275-42EF-A497-D8D994BBFAF2}
[2012.07.07 07:53:25 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{21FCBBF6-B0E5-4B98-9E3C-BC61211920B0}
[2012.07.06 07:45:27 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{D184B351-65EF-4FF4-8AEF-ECD64E16FC9A}
[2012.07.06 07:45:16 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{78FE91E7-65A2-4D52-B59F-A9DB25FC3AD5}
[2012.07.05 09:43:35 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{A4655033-779A-4501-9142-B7099E54FEC5}
[2012.07.05 09:43:24 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{2FE17272-1CA3-4416-8BAC-22C9B351BF33}
[2012.07.05 09:29:59 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{3A46B676-7DFD-425C-BF36-0E657CE2622E}
[2012.07.05 09:29:47 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{2753AD72-D803-4180-8F66-91D2A81EC197}
[2012.07.05 01:59:18 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{59908489-976C-41D7-A4DF-AB2288733563}
[2012.07.04 09:07:48 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{4078AE35-0D2A-42B6-9DD2-62495E324E79}
[2012.07.04 09:07:36 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{C90E5D5C-244B-4FFD-BF44-6549DBB72CF0}
[2012.07.03 07:51:14 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{6B3AA287-ECD6-41E1-9B3F-2439F716DD5A}
[2012.07.03 07:51:01 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{46338851-AAD8-4505-A7DB-8DE2C235291C}
[2012.07.02 23:20:14 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
[2012.07.02 23:15:46 | 000,000,000 | ---D | C] -- C:\ProgramData\FLEXnet
[2012.07.02 23:15:44 | 000,000,000 | ---D | C] -- C:\Users\belphegor\Documents\Mudbox
[2012.07.02 23:09:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Autodesk Shared
[2012.07.02 23:07:52 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Roaming\Autodesk
[2012.07.02 16:32:47 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\TSVNCache
[2012.07.02 16:31:25 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Roaming\TortoiseSVN
[2012.07.02 16:26:21 | 000,000,000 | R--D | C] -- C:\Users\belphegor\Desktop\Newton SVN
[2012.07.02 16:26:17 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Roaming\Subversion
[2012.07.02 16:26:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TortoiseSVN
[2012.07.02 16:25:59 | 000,000,000 | ---D | C] -- C:\Program Files\TortoiseSVN
[2012.07.02 16:25:59 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\TortoiseOverlays
[2012.07.02 16:25:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\TortoiseOverlays
[2012.07.02 08:47:16 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{015099A3-EB15-46F5-9124-B1B52E35B717}
[2012.07.02 08:47:05 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{90545042-9A3B-4240-899F-33103E9185DB}
[2012.07.02 00:21:03 | 000,000,000 | ---D | C] -- C:\Users\belphegor\Desktop\PhysX-3.1.2_PC_VC10_SDK_Core
[2012.07.01 13:45:38 | 000,000,000 | ---D | C] -- C:\Users\belphegor\Desktop\C3DE_RagDoll
[2012.07.01 09:08:21 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{EFC8D8E6-289E-4140-9ED6-712DE01E780E}
[2012.06.29 21:55:56 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{619D8BB8-924A-48E9-83BA-97D4AF73FAB8}
[2012.06.29 21:55:44 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{18AAACD3-8877-4711-A506-E1EA1AF2756E}
[2012.06.29 11:45:11 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{B2FE340D-F9DA-45BC-B908-00E29D7EB246}
[2012.06.29 11:44:59 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{C64C6A6F-B293-42E2-A0FB-C6FA93AF854A}
[2012.06.29 06:59:55 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{09AE1CD4-3944-4DD9-97F6-DFE6DAE1E530}
[2012.06.29 06:59:44 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{498E3C4A-0718-47AC-AF34-E29C2518D02B}
[2012.06.28 09:22:07 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{CD8CE2F3-C9AC-4CFA-94F3-4FF163EDA905}
[2012.06.28 09:21:55 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{364A4899-6329-4FC0-B33F-930E2D555DE8}
[2012.06.27 14:01:56 | 000,000,000 | ---D | C] -- C:\Autodesk
[2012.06.27 08:05:12 | 000,000,000 | ---D | C] -- C:\Users\belphegor\Desktop\BulletBasicGeometry
[2012.06.27 05:41:09 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{6B467943-792D-4851-8290-941370642101}
[2012.06.27 05:40:57 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{814F824D-342B-4047-8C01-203380483439}
[2012.06.27 00:22:30 | 000,000,000 | ---D | C] -- C:\Users\belphegor\Desktop\bullet-2.80-rev2531
[2012.06.26 21:12:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NewtonSDK
[2012.06.26 21:12:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NewtonSDK
[2012.06.26 11:24:24 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{3DAB36A6-76A5-4C86-AFD3-1C80322D39F5}
[2012.06.26 11:24:12 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{EB17C962-BA68-43AF-8F56-01CDFEC530EA}
[2012.06.25 10:33:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSXML 4.0
[2012.06.25 10:30:00 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{2A4B263B-1DAD-476A-B5D6-25B4F909D146}
[2012.06.25 10:29:48 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{5CE9BF95-308E-431D-8084-CC58969544B6}
[2012.06.24 13:45:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Okino Computer Graphics
[2012.06.24 13:44:50 | 001,355,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSVBVM50.DLL
[2012.06.24 13:44:50 | 001,060,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc71.dll
[2012.06.24 13:44:50 | 001,044,480 | ---- | C] (eHelp Corporation.) -- C:\Windows\SysWow64\ROBOEX32.DLL
[2012.06.24 13:44:50 | 000,434,252 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msvcrtd.dll
[2012.06.24 13:44:50 | 000,085,504 | ---- | C] (Blue Sky Software Corporation.) -- C:\Windows\SysWow64\HTMLWH.DLL
[2012.06.24 13:44:50 | 000,049,152 | ---- | C] (Blue Sky Software Corporation.) -- C:\Windows\SysWow64\INETWH32.DLL
[2012.06.24 13:44:50 | 000,022,528 | ---- | C] (Adaptec) -- C:\Windows\SysWow64\wnaspi32.DLL
[2012.06.24 13:44:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\polytrans
[2012.06.24 12:17:29 | 000,000,000 | ---D | C] -- C:\Users\belphegor\Desktop\CoD4 EXPORT
[2012.06.24 11:42:00 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Diego Logic
[2012.06.24 11:41:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Diego Logic
[2012.06.24 11:26:33 | 000,000,000 | ---D | C] -- C:\Users\belphegor\Desktop\CoD4 RIP
[2012.06.24 11:03:37 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{CF2142E0-82E1-4547-875E-4350D28497EB}
[2012.06.24 11:03:26 | 000,000,000 | ---D | C] -- C:\Users\belphegor\AppData\Local\{08C4A9B8-1860-4CFC-A57D-F8F79302F9E4}
[1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2012.07.23 18:45:55 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\belphegor\Desktop\OTL.exe
[2012.07.23 18:39:17 | 000,019,888 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012.07.23 18:39:17 | 000,019,888 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012.07.23 18:33:56 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012.07.22 19:50:53 | 000,898,296 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012.07.22 19:50:53 | 000,747,682 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012.07.22 19:50:53 | 000,158,538 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012.07.17 05:34:30 | 000,426,184 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2012.07.17 05:34:30 | 000,070,344 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2012.07.15 20:27:59 | 000,000,132 | ---- | M] () -- C:\Users\belphegor\AppData\Roaming\Adobe Targa Format CS5 Prefs
[2012.07.12 20:29:43 | 000,174,064 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2012.07.12 20:29:43 | 000,174,064 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2012.07.10 19:36:18 | 004,970,104 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2012.07.03 13:46:44 | 000,024,904 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2012.07.02 00:16:28 | 131,301,622 | ---- | M] () -- C:\Users\belphegor\Desktop\PhysX-3.1.2_PC_VC10_SDK_Core.zip
[2012.06.30 16:45:50 | 015,362,715 | ---- | M] () -- C:\Users\belphegor\Desktop\GFX-Character.Animation.With.Direct3D.pdf
[2012.06.24 17:04:31 | 000,000,152 | ---- | M] () -- C:\Windows\MetroTimer.ini
[2012.06.24 14:02:12 | 000,007,778 | ---- | M] () -- C:\Windows\POLYTRAN.INI
[2012.06.24 13:49:28 | 000,000,263 | ---- | M] () -- C:\Windows\ui_bitmapviewer.ini
[2012.06.24 11:42:00 | 000,003,081 | ---- | M] () -- C:\Users\belphegor\Desktop\XModelExporter.lnk
[2012.06.24 11:42:00 | 000,003,081 | ---- | M] () -- C:\Users\belphegor\Desktop\IWI_X_DDS.lnk
[1 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2012.07.20 18:12:32 | 000,001,879 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Descent-Beta02.lnk
[2012.07.02 00:05:42 | 131,301,622 | ---- | C] () -- C:\Users\belphegor\Desktop\PhysX-3.1.2_PC_VC10_SDK_Core.zip
[2012.06.30 16:44:06 | 015,362,715 | ---- | C] () -- C:\Users\belphegor\Desktop\GFX-Character.Animation.With.Direct3D.pdf
[2012.06.24 13:49:28 | 000,000,263 | ---- | C] () -- C:\Windows\ui_bitmapviewer.ini
[2012.06.24 13:46:00 | 000,007,778 | ---- | C] () -- C:\Windows\POLYTRAN.INI
[2012.06.24 13:44:50 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\zlib.dll
[2012.06.24 11:42:00 | 000,003,081 | ---- | C] () -- C:\Users\belphegor\Desktop\XModelExporter.lnk
[2012.06.24 11:42:00 | 000,003,081 | ---- | C] () -- C:\Users\belphegor\Desktop\IWI_X_DDS.lnk
[2012.04.29 18:44:02 | 000,005,120 | ---- | C] () -- C:\Users\belphegor\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012.04.25 17:33:40 | 000,000,306 | ---- | C] () -- C:\Windows\game.ini
[2012.03.15 19:05:37 | 000,000,132 | ---- | C] () -- C:\Users\belphegor\AppData\Roaming\Adobe Targa Format CS5 Prefs
[2012.03.08 18:17:59 | 000,003,430 | ---- | C] () -- C:\Users\belphegor\.recently-used.xbel
[2012.03.08 13:43:53 | 000,011,833 | ---- | C] () -- C:\Users\belphegor\AppData\Local\recently-used.xbel
[2012.02.09 21:05:44 | 000,416,064 | ---- | C] () -- C:\Windows\SysWow64\nvStreaming.exe
[2012.01.31 15:26:55 | 000,000,152 | ---- | C] () -- C:\Windows\MetroTimer.ini
[2012.01.30 20:22:24 | 000,056,320 | ---- | C] () -- C:\Windows\SysWow64\iyvu9_32.dll
[2012.01.29 12:20:15 | 000,000,132 | ---- | C] () -- C:\Users\belphegor\AppData\Roaming\Adobe PNG Format CS5 Prefs
[2012.01.21 20:08:58 | 000,000,016 | ---- | C] () -- C:\Windows\popcinfo.dat
[2012.01.18 00:40:16 | 000,000,193 | ---- | C] () -- C:\Windows\WORDPAD.INI
[2012.01.03 18:16:36 | 000,000,132 | ---- | C] () -- C:\Users\belphegor\AppData\Roaming\Adobe BMP Format CS5 Prefs
[2011.12.27 18:45:23 | 000,061,440 | ---- | C] () -- C:\Windows\SysWow64\nvPhotoshopUtil.dll
[2011.12.27 18:45:23 | 000,040,960 | ---- | C] () -- C:\Windows\SysWow64\nvISWOW64.dll
[2011.12.25 10:34:10 | 000,907,134 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2011.12.25 10:18:17 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2011.12.25 06:36:56 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini
[2011.12.25 06:36:49 | 000,021,366 | ---- | C] () -- C:\Windows\Ascd_tmp.ini

========== Alternate Data Streams ==========

@Alternate Data Stream - 114 bytes -> C:\ProgramData\TEMP:A1EDB939

< End of report >


https://www.mycity.rs/must-login.png


Molio bih nekog ako ima vremena da mi izanalizira i da mi kaze da li sam mozda zarazen sa nekom gamadi.

Unapred hvala.

Dopuna: 23 Jul 2012 21:27

Sad sam primetio da je aktivna stavka "hide extensions for known file types" a bilo mi je decekirano, odnosno bilo je podeseno da mi uvek pokazuje extenzije fajlova. Sestra kaze da nije petljala oko podesavanja ionako ne bi znala kako.

offline
  • Pridružio: 09 Avg 2011
  • Poruke: 15879
  • Gde živiš: Beograd

Arrow Racunar je cist sto se malware-a tice Smile



Arrow Ukoliko i dalje imas problema otvori temu u Windows potforumu i tamo iznesi svoj problem, jer se u Ambulanti bavimo iskljucivo malware-om.



Arrow Ponovo pokreni OTL i klikni na dugme CleanUp.



Arrow Koristis piratski antivirus, a to i nije bas pametna ideja Wink
Procitaj ovaj tekst zasto bi trebao da izbegavas piratski zastitni softver http://www.digmlm.com/pirated-security-software

Pored toga i besmisleno je, jer postoji odlican izbor besplatnih zastitnih programa cijim kombinovanjem mozes dobiti odlicnu zastitu Smile. Vise o tome ovde http://www.mycity.rs/Zastitni-programi/Najbolji-besplatni-zastitni-softver.html

Jos jedan razlog je sto stalno i stalno postoje promocije za komercijalni zastitni softver tako da ukoliko preferiras komercijalnu zastitu mozes to i imati besplatno. Vise o tome ovde http://www.mycity.rs/Zastitni-programi/Promocije-k.....grama.html



Arrow Obavezno poseti temu "Testirajte da li vam je pretrazivac ranjiv",
procitaj i isprati link koji stoji u njoj.
Link do teme: http://www.mycity.rs/Web-browseri/Testirajte-da-li.....anjiv.html



TwinHeadedEagle (AMF Tim)

offline
  • Pridružio: 19 Maj 2011
  • Poruke: 297

Hvala na izdvojenom vremenu.

Sto se tice piratskog AV-a i dalje nisam razuveren ni jednom stavkom koje pisu na linku koji si postavio ("Top 5 Reasons Why You Should Not Install A Pirated Security Software").

offline
  • Pridružio: 09 Avg 2011
  • Poruke: 15879
  • Gde živiš: Beograd

Tvoja stvar sta ces koristiti, ja sam ti samo ukazao na to, da nema svrhe to raditi, a svakako mali rizik postoji Smile

Inace postoji poprilicno tekstova o tome
http://blog.zonealarm.com/2012/02/pc-software-piracy-and-security-concerns.html
http://www.siliconrepublic.com/strategy/item/26572-security-firm-warns-of-malw
http://us.norton.com/how-to-be-pirate-free/article

Ovde zavrsavamo diskusiju Smile

Ko je trenutno na forumu
 

Ukupno su 1205 korisnika na forumu :: 39 registrovanih, 5 sakrivenih i 1161 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: Areal84, cenejac111, crnitrn, deLacy, DonRumataEstorski, dragoljub11987, galerija, Gall, hyla, jackreacher011011, janbo, Joco Skljoco, JOntra, Karla, Krusarac, laurusri, Leonov, mercedesamg, MrNo, opt1, panonski mornar, pein, procesor, repac, Ripanjac, sasa87, Srle993, Stoilkovic, suton, Trpe Grozni, tubular, Tvrtko I, Valter071, Vladko, wizzardone, xpforswodniw, ZetaMan, zixmix, šumar bk2