Provera

Provera

offline
  • Robotteknik Automation
  • Pridružio: 23 Maj 2010
  • Poruke: 92
  • Gde živiš: Oskarshramn

Ako ste u mogucnosti sa vremenom,zamolio bih vas za proveru racunara-sistema.
Do sada nisam imao nikakvih problema sa racunarom sto se tice softvera osim sto nekada pri iskljucivanju mi se dogodi da moram sacekati nekih 15min.



OTL logfile created on: 2012-07-10 14:34:03 - Run 1
OTL by OldTimer - Version 3.2.53.1 Folder = C:\Users\NiNo\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 0000041d | Country: Sverige | Language: SVE | Date Format: yyyy-MM-dd

3,75 Gb Total Physical Memory | 1,95 Gb Available Physical Memory | 51,94% Memory free
7,49 Gb Paging File | 5,46 Gb Available in Paging File | 72,87% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 442,99 Gb Total Space | 283,79 Gb Free Space | 64,06% Space Free | Partition Type: NTFS
Drive D: | 22,47 Gb Total Space | 3,28 Gb Free Space | 14,59% Space Free | Partition Type: NTFS
Drive F: | 14,80 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive J: | 232,83 Gb Total Space | 50,33 Gb Free Space | 21,62% Space Free | Partition Type: FAT32

Computer Name: NINO-HP | User Name: NiNo | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2012-07-10 14:33:28 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\Users\NiNo\Downloads\OTL.exe
PRC - [2012-05-11 17:52:37 | 000,348,624 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
PRC - [2012-05-11 17:52:37 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
PRC - [2012-05-11 17:52:37 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
PRC - [2012-05-10 17:41:22 | 000,114,688 | ---- | M] () -- C:\Program Files (x86)\Telia mobile broadband\Telia mobile broadband.exe
PRC - [2012-04-04 15:56:40 | 000,654,408 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2012-04-04 15:56:38 | 000,981,680 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
PRC - [2012-03-12 22:25:06 | 000,583,680 | ---- | M] (MyCity) -- C:\Program Files (x86)\MCShield\MCShieldRTM.exe
PRC - [2011-03-28 17:07:50 | 000,094,264 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
PRC - [2010-08-19 10:52:14 | 000,241,664 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\ProgramData\DatacardService\DCSHelper.exe
PRC - [2010-08-19 10:52:04 | 000,229,376 | ---- | M] () -- C:\ProgramData\DatacardService\DCService.exe
PRC - [2010-06-30 04:00:08 | 000,027,192 | ---- | M] () -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
PRC - [2010-04-23 21:00:00 | 000,514,232 | ---- | M] (EasyBits Software AS) -- C:\Windows\SysWOW64\ezSharedSvcHost.exe
PRC - [2010-04-23 18:42:36 | 000,625,416 | ---- | M] (DigitalPersona, Inc.) -- C:\Program Files (x86)\DigitalPersona\Bin\DPAgent.exe


========== Modules (No Company Name) ==========

MOD - [2012-06-28 12:28:56 | 000,438,296 | ---- | M] () -- C:\Users\NiNo\AppData\Local\Google\Chrome\Application\20.0.1132.47\ppgooglenaclpluginchrome.dll
MOD - [2012-06-28 12:28:54 | 003,972,120 | ---- | M] () -- C:\Users\NiNo\AppData\Local\Google\Chrome\Application\20.0.1132.47\pdf.dll
MOD - [2012-06-28 12:27:40 | 000,554,520 | ---- | M] () -- C:\Users\NiNo\AppData\Local\Google\Chrome\Application\20.0.1132.47\libglesv2.dll
MOD - [2012-06-28 12:27:38 | 000,117,784 | ---- | M] () -- C:\Users\NiNo\AppData\Local\Google\Chrome\Application\20.0.1132.47\libegl.dll
MOD - [2012-06-28 12:27:29 | 000,140,328 | ---- | M] () -- C:\Users\NiNo\AppData\Local\Google\Chrome\Application\20.0.1132.47\avutil-51.dll
MOD - [2012-06-28 12:27:28 | 000,262,184 | ---- | M] () -- C:\Users\NiNo\AppData\Local\Google\Chrome\Application\20.0.1132.47\avformat-54.dll
MOD - [2012-06-28 12:27:26 | 002,386,984 | ---- | M] () -- C:\Users\NiNo\AppData\Local\Google\Chrome\Application\20.0.1132.47\avcodec-54.dll
MOD - [2012-06-28 10:27:26 | 009,252,040 | ---- | M] () -- C:\Users\NiNo\AppData\Local\Google\Chrome\Application\20.0.1132.47\gcswf32.dll
MOD - [2012-05-10 17:41:22 | 000,114,688 | ---- | M] () -- C:\Program Files (x86)\Telia mobile broadband\Telia mobile broadband.exe
MOD - [2010-04-26 14:37:36 | 000,159,744 | ---- | M] () -- C:\Program Files (x86)\Telia mobile broadband\SMSPlugin.dll
MOD - [2010-04-26 14:37:36 | 000,061,440 | ---- | M] () -- C:\Program Files (x86)\Telia mobile broadband\XCodec.dll
MOD - [2010-04-26 14:37:34 | 000,155,648 | ---- | M] () -- C:\Program Files (x86)\Telia mobile broadband\DetectDev.dll
MOD - [2010-04-26 14:37:34 | 000,139,264 | ---- | M] () -- C:\Program Files (x86)\Telia mobile broadband\LocaleMgrPlugin.dll
MOD - [2010-04-26 14:37:34 | 000,090,112 | ---- | M] () -- C:\Program Files (x86)\Telia mobile broadband\FileManager.dll
MOD - [2010-04-26 14:37:34 | 000,090,112 | ---- | M] () -- C:\Program Files (x86)\Telia mobile broadband\DialUpPlugin.dll
MOD - [2010-04-26 14:37:34 | 000,061,440 | ---- | M] () -- C:\Program Files (x86)\Telia mobile broadband\DeviceOperate.dll
MOD - [2010-04-26 14:37:34 | 000,057,344 | ---- | M] () -- C:\Program Files (x86)\Telia mobile broadband\ConfigFilePlugin.dll
MOD - [2010-04-26 14:37:34 | 000,032,768 | ---- | M] () -- C:\Program Files (x86)\Telia mobile broadband\NotifyServicePlugin.dll
MOD - [2010-04-26 14:37:34 | 000,014,848 | ---- | M] () -- C:\Program Files (x86)\Telia mobile broadband\isaputrace.dll
MOD - [2010-04-26 14:37:32 | 000,557,056 | ---- | M] () -- C:\Program Files (x86)\Telia mobile broadband\atcomm.dll
MOD - [2009-12-10 11:52:38 | 000,192,512 | ---- | M] () -- C:\Program Files (x86)\Telia mobile broadband\DeviceMgrUIPlugin.dll
MOD - [2009-12-10 11:51:36 | 000,114,688 | ---- | M] () -- C:\Program Files (x86)\Telia mobile broadband\DeviceMgrPlugin.dll
MOD - [2009-12-10 11:40:20 | 000,991,232 | ---- | M] () -- C:\Program Files (x86)\Telia mobile broadband\NDISAPI.dll
MOD - [2009-09-19 11:21:06 | 000,139,264 | ---- | M] () -- C:\Program Files (x86)\Telia mobile broadband\NetInfoPlugin.dll


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2011-05-13 18:58:10 | 000,030,520 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Windows\SysNative\hpservice.exe -- (hpsrv)
SRV:64bit: - [2010-09-20 01:56:00 | 000,203,264 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2010-06-19 01:26:18 | 000,103,992 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe -- (HP Wireless Assistant Service)
SRV:64bit: - [2010-06-09 11:06:18 | 000,258,048 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Program Files\IDT\WDM\stacsv64.exe -- (STacSV)
SRV:64bit: - [2010-04-23 18:42:40 | 000,445,192 | ---- | M] (DigitalPersona, Inc.) [Auto | Running] -- C:\Program Files\DigitalPersona\Bin\DpHostW.exe -- (DpHost)
SRV:64bit: - [2010-02-23 07:38:54 | 002,192,176 | ---- | M] (Validity Sensors, Inc.) [Auto | Running] -- C:\Windows\SysNative\vcsFPService.exe -- (vcsFPService)
SRV:64bit: - [2009-07-14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009-03-03 12:42:58 | 000,089,600 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Program Files\IDT\WDM\AESTSr64.exe -- (AESTFilters)
SRV - [2012-05-11 17:52:37 | 000,110,032 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2012-05-11 17:52:37 | 000,086,224 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2012-05-03 08:31:10 | 000,158,856 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012-04-04 15:56:40 | 000,654,408 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2012-01-18 14:38:28 | 000,155,320 | ---- | M] (Avanquest Software) [On_Demand | Stopped] -- C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe -- (Sony PC Companion)
SRV - [2011-09-09 17:10:28 | 000,086,072 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe -- (HP Support Assistant Service)
SRV - [2011-03-28 17:07:50 | 000,094,264 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe -- (HPDrvMntSvc.exe)
SRV - [2010-08-19 10:52:04 | 000,229,376 | ---- | M] () [Auto | Running] -- C:\ProgramData\DatacardService\DCService.exe -- (DCService.exe)
SRV - [2010-06-30 04:00:08 | 000,027,192 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe -- (HPWMISVC)
SRV - [2010-03-18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010-02-23 07:19:02 | 001,799,472 | ---- | M] (Validity Sensors, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\vcsFPService.exe -- (vcsFPService)
SRV - [2009-06-10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2012-05-11 17:52:37 | 000,132,832 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avipbb.sys -- (avipbb)
DRV:64bit: - [2012-05-11 17:52:37 | 000,098,848 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\avgntflt.sys -- (avgntflt)
DRV:64bit: - [2012-04-04 15:56:40 | 000,024,904 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2012-03-01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011-10-14 04:37:44 | 000,396,848 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2011-09-16 16:09:16 | 000,027,760 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avkmgr.sys -- (avkmgr)
DRV:64bit: - [2011-09-02 08:30:36 | 000,060,696 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LMouFilt.Sys -- (LMouFilt)
DRV:64bit: - [2011-09-02 08:30:24 | 000,066,840 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LHidFilt.Sys -- (LHidFilt)
DRV:64bit: - [2011-06-10 06:34:52 | 000,539,240 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2011-05-13 18:58:16 | 000,030,008 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\hpdskflt.sys -- (hpdskflt)
DRV:64bit: - [2011-05-13 18:57:58 | 000,043,320 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Accelerometer.sys -- (Accelerometer)
DRV:64bit: - [2011-03-11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011-03-11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010-11-20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010-11-20 13:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010-11-20 11:37:42 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2010-09-20 02:14:16 | 007,767,552 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2010-09-20 01:21:04 | 000,279,040 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2010-08-31 18:09:00 | 000,256,000 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ewusbnet.sys -- (ewusbnet)
DRV:64bit: - [2010-08-07 17:49:04 | 000,121,600 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ewusbmdm.sys -- (hwdatacard)
DRV:64bit: - [2010-07-27 15:26:34 | 000,086,016 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ew_jubusenum.sys -- (huawei_enumerator)
DRV:64bit: - [2010-07-27 09:52:16 | 000,117,248 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ew_hwusbdev.sys -- (ew_hwusbdev)
DRV:64bit: - [2010-06-24 22:32:52 | 000,032,880 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\clwvd.sys -- (clwvd)
DRV:64bit: - [2010-06-09 11:06:18 | 000,515,584 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stwrt64.sys -- (STHDA)
DRV:64bit: - [2010-05-06 15:21:00 | 000,125,456 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2010-03-02 16:45:24 | 001,594,368 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:64bit: - [2010-02-09 07:57:22 | 000,239,136 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:64bit: - [2009-12-22 02:26:36 | 000,038,456 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbfilter.sys -- (usbfilter)
DRV:64bit: - [2009-08-24 03:55:32 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie.sys -- (AtiPcie) AMD PCI Express (3GIO)
DRV:64bit: - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009-06-10 23:01:11 | 001,485,312 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTDPV6.SYS -- (SrvHsfV92)
DRV:64bit: - [2009-06-10 23:01:11 | 000,740,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS -- (SrvHsfWinac)
DRV:64bit: - [2009-06-10 23:01:11 | 000,292,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTAZL6.SYS -- (SrvHsfHDA)
DRV:64bit: - [2009-06-10 22:37:05 | 006,108,416 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2009-06-10 22:35:33 | 000,389,120 | ---- | M] (Marvell) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7)
DRV:64bit: - [2009-06-10 22:35:28 | 005,434,368 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netw5v64.sys -- (netw5v64) Intel(R)
DRV:64bit: - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2006-05-24 11:51:14 | 000,013,824 | ---- | M] (Razer (Asia-Pacific) Pte Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\copperhd.sys -- (copperhd)
DRV - [2009-07-14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = g.uk.msn.com/HPCON/11
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = g.uk.msn.com/HPCON/11
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {C7BC9A05-807E-4555-BD14-4F21C9FC251A}
IE:64bit: - HKLM\..\SearchScopes\{9B3429DD-8018-4B05-8FAB-04D7328A69A7}: "URL" = sv.wikipedia.org/wiki/Special:Search?search={searchTerms}
IE:64bit: - HKLM\..\SearchScopes\{9F396EEA-D8A5-4139-B75E-19DB1F579D2D}: "URL" = se.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
IE:64bit: - HKLM\..\SearchScopes\{C7BC9A05-807E-4555-BD14-4F21C9FC251A}: "URL" = bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = g.uk.msn.com/HPCON/11
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = g.uk.msn.com/HPCON/11
IE - HKLM\..\SearchScopes,DefaultScope = {C7BC9A05-807E-4555-BD14-4F21C9FC251A}
IE - HKLM\..\SearchScopes\{9B3429DD-8018-4B05-8FAB-04D7328A69A7}: "URL" = sv.wikipedia.org/wiki/Special:Search?search={searchTerms}
IE - HKLM\..\SearchScopes\{9F396EEA-D8A5-4139-B75E-19DB1F579D2D}: "URL" = se.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
IE - HKLM\..\SearchScopes\{C7BC9A05-807E-4555-BD14-4F21C9FC251A}: "URL" = bing.com/search?q={searchTerms}&form=HPNTDF&pc=HPNTDF&src=IE-SearchBox

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = g.uk.msn.com/HPCON/11
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = isearch.avg.com/?cid={63F6FFD6-913C-47A0-BE72-987484E7F218}&mid=12b370b18cd547d0b5d3b1a22f9de816-a02703f07077a19be9159f751d22ed12fb2a9109&lang=en&ds=gm011&pr=sa&d=2012-05-10 20:35:34&v=11.0.0.9&sap=hp
IE - HKCU\..\SearchScopes,DefaultScope = {95B7759C-8C7F-4BF1-B163-73684A933233}
IE - HKCU\..\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}: "URL" = isearch.avg.com/search?cid={63F6FFD6-913C-47A0-BE72-987484E7F218}&mid=12b370b18cd547d0b5d3b1a22f9de816-a02703f07077a19be9159f751d22ed12fb2a9109&lang=en&ds=gm011&pr=sa&d=2012-05-10 20:35:34&v=11.0.0.9&sap=dsp&q={searchTerms}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


========== FireFox ==========

FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.5.1: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.5.1: C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8117.0416: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\NiNo\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\NiNo\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\otis@digitalpersona.com: C:\Program Files (x86)\DigitalPersona\Bin\FirefoxExt\ [2011-08-01 21:34:34 | 000,000,000 | ---D | M]


========== Chrome ==========

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\NiNo\AppData\Local\Google\Chrome\Application\20.0.1132.47\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\NiNo\AppData\Local\Google\Chrome\Application\20.0.1132.47\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\NiNo\AppData\Local\Google\Chrome\Application\20.0.1132.47\gcswf32.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java(TM) Platform SE 6 U32 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll
CHR - plugin: Java Deployment Toolkit 6.0.320.5 (Enabled) = C:\Windows\SysWOW64\npdeployJava1.dll
CHR - plugin: Windows Live\u00AE Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Google Update (Enabled) = C:\Users\NiNo\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll
CHR - Extension: Turn Off the Lights = C:\Users\NiNo\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn\2.0.0.106_0\
CHR - Extension: YouTube = C:\Users\NiNo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Google \u043F\u0440\u0435\u0442\u0440\u0430\u0433\u0430 = C:\Users\NiNo\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Windows Media Player Extension for HTML5 = C:\Users\NiNo\AppData\Local\Google\Chrome\User Data\Default\Extensions\hokdglbhghcebcopdbanieangmcamaak\1.0_0\
CHR - Extension: Casey Reas = C:\Users\NiNo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nijljpbmaieiejfcgahimekneppldbha\2_0\
CHR - Extension: Gmail = C:\Users\NiNo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

O1 HOSTS File: ([2009-06-10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation)
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKCU..\Run: [MCShield Monitor] C:\Program Files (x86)\MCShield\MCShieldRTM.exe (MyCity)
O4 - Startup: C:\Users\NiNo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled [2012-06-26 14:24:03 | 000,000,000 | -H-D | M]
O4 - Startup: C:\Users\NiNo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\NiNo\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: EnableShellExecuteHooks = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16:64bit: - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (Java Plug-in 1.6.0_20)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 10.5.1)
O16 - DPF: {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA} java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 1.6.0_32)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 10.5.1)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1D464DB0-2875-4029-A9A0-4069A4268C82}: DhcpNameServer = 195.67.199.36 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{5C694A96-F632-408D-9859-DEA4C34A13D2}: NameServer = 195.67.199.18 195.67.199.19
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{8386D667-F34D-4328-8978-2B8CC7A14AAB}: DhcpNameServer = 195.67.199.36 195.67.199.37 195.67.199.38
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{BFDB3C69-D863-4418-A2E5-1CD474842D63}: NameServer = 195.67.199.18 195.67.199.19
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C1CE076B-6F67-467B-B9C9-6ABDF78EFDD4}: NameServer = 195.54.122.221 195.54.122.211
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{CB7E69B0-5848-44B4-8063-24FFB846C585}: NameServer = 195.67.199.18 195.67.199.19
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Program Files (x86)\DigitalPersona\Bin\DPAgent.exe) - C:\Program Files (x86)\DigitalPersona\Bin\DPAgent.exe (DigitalPersona, Inc.)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009-08-23 04:42:34 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.) - F:\AutoRun.exe -- [ CDFS ]
O32 - AutoRun File - [2008-09-18 03:12:34 | 000,000,045 | R--- | M] () - F:\AUTORUN.INF -- [ CDFS ]
O33 - MountPoints2\{010738d9-bf1e-11e1-9d64-001e101faa49}\Shell - "" = AutoRun
O33 - MountPoints2\{010738d9-bf1e-11e1-9d64-001e101faa49}\Shell\AutoRun\command - "" = F:\AutoRun.exe -- [2009-08-23 04:42:34 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\{22b2fad2-b4f4-11e1-9cd3-001e101fb681}\Shell - "" = AutoRun
O33 - MountPoints2\{22b2fad2-b4f4-11e1-9cd3-001e101fb681}\Shell\AutoRun\command - "" = H:\Startme.exe
O33 - MountPoints2\{22b2faf5-b4f4-11e1-9cd3-001e101fb681}\Shell - "" = AutoRun
O33 - MountPoints2\{22b2faf5-b4f4-11e1-9cd3-001e101fb681}\Shell\AutoRun\command - "" = H:\setup\rsrc\Autorun.exe
O33 - MountPoints2\{22b2faf5-b4f4-11e1-9cd3-001e101fb681}\Shell\dinstall\command - "" = H:\Directx\dxsetup.exe
O33 - MountPoints2\{2bd72bfb-9aea-11e1-bf52-4c0f6e35051c}\Shell - "" = AutoRun
O33 - MountPoints2\{2bd72bfb-9aea-11e1-bf52-4c0f6e35051c}\Shell\AutoRun\command - "" = F:\AutoRun.exe -- [2009-08-23 04:42:34 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\{43fb7bbc-9aeb-11e1-be51-001e101f859f}\Shell - "" = AutoRun
O33 - MountPoints2\{43fb7bbc-9aeb-11e1-be51-001e101f859f}\Shell\AutoRun\command - "" = F:\AutoRun.exe -- [2009-08-23 04:42:34 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\{44262f4a-9ab6-11e1-8af8-4c0f6e35051c}\Shell - "" = AutoRun
O33 - MountPoints2\{44262f4a-9ab6-11e1-8af8-4c0f6e35051c}\Shell\AutoRun\command - "" = F:\AutoRun.exe -- [2009-08-23 04:42:34 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\{44262f5a-9ab6-11e1-8af8-4c0f6e35051c}\Shell - "" = AutoRun
O33 - MountPoints2\{44262f5a-9ab6-11e1-8af8-4c0f6e35051c}\Shell\AutoRun\command - "" = F:\AutoRun.exe -- [2009-08-23 04:42:34 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\{c435a06e-adc0-11e1-8e8f-001e101f21c1}\Shell - "" = AutoRun
O33 - MountPoints2\{c435a06e-adc0-11e1-8e8f-001e101f21c1}\Shell\AutoRun\command - "" = F:\AutoRun.exe -- [2009-08-23 04:42:34 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\{cbd301ae-9f95-11e1-8689-001e101f21c1}\Shell - "" = AutoRun
O33 - MountPoints2\{cbd301ae-9f95-11e1-8689-001e101f21c1}\Shell\AutoRun\command - "" = F:\AutoRun.exe -- [2009-08-23 04:42:34 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O33 - MountPoints2\F\Shell - "" = AutoRun
O33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\AutoRun.exe -- [2009-08-23 04:42:34 | 000,143,360 | R--- | M] (Huawei Technologies Co., Ltd.)
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2012-07-04 15:18:57 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2012-07-04 13:44:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2012-07-04 13:44:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Oracle
[2012-07-04 13:43:48 | 000,227,720 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2012-07-02 00:36:03 | 000,000,000 | ---D | C] -- C:\Users\NiNo\AppData\Local\AirMouse
[2012-07-02 00:34:52 | 000,000,000 | ---D | C] -- C:\Users\NiNo\AppData\Local\Downloaded Installations
[2012-06-26 14:24:03 | 000,000,000 | -H-D | C] -- C:\Users\NiNo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled
[2012-06-26 01:32:54 | 000,000,000 | ---D | C] -- C:\Windows\Minidump
[2012-06-22 00:49:13 | 002,622,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll
[2012-06-22 00:49:13 | 000,057,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe
[2012-06-22 00:49:13 | 000,044,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll
[2012-06-22 00:48:58 | 000,701,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll
[2012-06-22 00:48:58 | 000,099,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll
[2012-06-22 00:48:58 | 000,038,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll
[2012-06-22 00:48:46 | 000,186,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuwebv.dll
[2012-06-22 00:48:46 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapp.exe
[2012-06-20 02:44:29 | 000,000,000 | ---D | C] -- C:\Users\NiNo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flux
[2012-06-19 00:58:08 | 000,000,000 | R--D | C] -- C:\Users\NiNo\Dropbox
[2012-06-19 00:55:54 | 000,000,000 | ---D | C] -- C:\Users\NiNo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
[2012-06-19 00:55:09 | 000,000,000 | ---D | C] -- C:\Users\NiNo\AppData\Roaming\Dropbox
[2012-06-16 19:23:36 | 000,000,000 | ---D | C] -- C:\Users\NiNo\AppData\Local\Activision
[2012-06-16 19:15:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Activision
[2012-06-16 18:43:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Sony Ericsson
[2012-06-16 18:43:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Sony Ericsson
[2012-06-16 18:40:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
[2012-06-16 18:40:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Sony
[2012-06-16 18:40:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Sony
[2012-06-13 02:48:29 | 000,000,000 | ---D | C] -- C:\Users\NiNo\AppData\Roaming\TS3Client
[2012-06-13 02:48:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
[2012-06-13 02:48:13 | 000,000,000 | ---D | C] -- C:\Program Files\TeamSpeak 3 Client
[2012-06-13 02:37:24 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2012-06-13 02:37:23 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2012-06-13 02:37:23 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2012-06-13 02:37:22 | 000,237,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2012-06-13 02:37:21 | 000,248,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2012-06-13 02:37:21 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2012-06-13 02:37:21 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2012-06-13 02:37:21 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2012-06-13 02:37:19 | 002,311,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2012-06-13 02:37:19 | 001,494,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2012-06-13 02:37:19 | 001,427,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2012-06-13 02:37:19 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2012-06-13 02:37:18 | 000,818,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2012-06-13 02:36:38 | 005,559,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2012-06-13 02:36:36 | 003,968,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2012-06-13 02:36:36 | 003,913,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2012-06-13 02:36:34 | 000,149,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorekmts.dll
[2012-06-13 02:36:34 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpwsx.dll
[2012-06-13 02:36:34 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdrmemptylst.exe
[2012-06-13 02:36:28 | 003,216,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msi.dll
[2012-06-13 02:35:18 | 001,462,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2012-06-13 02:35:18 | 000,140,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptnet.dll
[2012-06-11 22:21:25 | 000,000,000 | ---D | C] -- C:\Users\NiNo\AppData\Roaming\Telia mobile broadband
[2012-06-10 22:09:38 | 000,000,000 | ---D | C] -- C:\Windows\pss

========== Files - Modified Within 30 Days ==========

[2012-07-09 00:03:02 | 000,023,248 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012-07-09 00:03:02 | 000,023,248 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012-07-09 00:02:03 | 000,726,316 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012-07-09 00:02:03 | 000,616,008 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012-07-09 00:02:03 | 000,106,388 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012-07-08 23:55:28 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012-07-08 23:55:02 | 3015,888,896 | -HS- | M] () -- C:\hiberfil.sys
[2012-07-07 14:45:47 | 000,000,328 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForNiNo.job
[2012-07-04 13:43:31 | 000,174,064 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2012-07-04 13:43:31 | 000,174,064 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2012-07-04 02:22:54 | 001,025,347 | ---- | M] () -- C:\Users\NiNo\Documents\Root_Unroot_Sony_1.5.rar
[2012-06-27 13:16:49 | 000,001,010 | ---- | M] () -- C:\Users\NiNo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2012-06-26 01:32:33 | 451,469,554 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2012-06-19 00:58:08 | 000,001,000 | ---- | M] () -- C:\Users\NiNo\Desktop\Dropbox.lnk
[2012-06-13 03:08:20 | 000,278,320 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2012-06-13 02:48:18 | 000,000,967 | ---- | M] () -- C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk

========== Files Created - No Company Name ==========

[2012-07-04 02:22:44 | 001,025,347 | ---- | C] () -- C:\Users\NiNo\Documents\Root_Unroot_Sony_1.5.rar
[2012-06-27 13:16:49 | 000,001,010 | ---- | C] () -- C:\Users\NiNo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2012-06-26 01:32:33 | 451,469,554 | ---- | C] () -- C:\Windows\MEMORY.DMP
[2012-06-19 00:58:08 | 000,001,000 | ---- | C] () -- C:\Users\NiNo\Desktop\Dropbox.lnk
[2012-06-13 02:48:18 | 000,000,967 | ---- | C] () -- C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
[2012-05-11 12:19:04 | 000,000,549 | ---- | C] () -- C:\Windows\eReg.dat
[2012-05-10 20:37:56 | 000,175,616 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2011-08-01 21:13:07 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2011-08-01 21:05:45 | 000,000,299 | ---- | C] () -- C:\Windows\SysWow64\RStoneLog2.ini
[2011-08-01 21:05:45 | 000,000,240 | ---- | C] () -- C:\Windows\SysWow64\RStoneLog.ini
[2011-08-01 21:02:26 | 000,000,056 | -H-- | C] () -- C:\Windows\SysWow64\ezsidmv.dat
[2010-08-06 15:39:03 | 000,000,188 | ---- | C] () -- C:\Windows\SysWow64\HPWA.ini
[2010-08-06 14:46:38 | 000,009,988 | ---- | C] () -- C:\Windows\SysWow64\ezdigsgn.dat
[2010-08-06 14:36:21 | 000,000,186 | ---- | C] () -- C:\Windows\SysWow64\HP Documentation.ini

< End of report >

offline
  • Fil  Male
  • Legendarni građanin
  • Pridružio: 11 Jun 2009
  • Poruke: 16586

Pozdrav, na računaru nema aktivne infekcije.

Jedino što može da ti "smeta" je folder AutorunsDisabled (verovatno prazan) koji se otvara nakon logovanja na Windows.

Nalazi se na sledećoj putanji i može se obrisati:
C:\Users\NiNo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled

offline
  • Robotteknik Automation
  • Pridružio: 23 Maj 2010
  • Poruke: 92
  • Gde živiš: Oskarshramn

Folder obrisan.
Hvala najlepse na brzini i trudu...

Ko je trenutno na forumu
 

Ukupno su 1258 korisnika na forumu :: 45 registrovanih, 7 sakrivenih i 1206 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: A.R.Chafee.Jr., amaterSRB, Andrija357, aramis s, Buzdovan, cavatina, cifra, Denaya, DonRumataEstorski, dragoljub11987, Dukelander, FOX, goxin, ikan, Istman, ivica976, jackreacher011011, JOntra, Karla, kybonacci, ladro, M1los, mikrimaus, milenko crazy north, Mixelotti, nemkea71, nenad81, nextyamb, opt1, pein, Petarvu, royst33, sasa76, Sirius, slonic_tonic, solic, Srle993, Tvrtko I, vlvl, wolverined4, yrraf, YugoSlav, zziko, |_MeD_|, 1107