Download as txt, pdf, or txt
Download as txt, pdf, or txt
You are on page 1of 16

OTL logfile created on: 1.4.

2013 18:48:47 - Run 1


OTL by OldTimer - Version 3.2.48.0
Folder = G:\uklanjanje virusa i malvera
Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 0000141a | Country: Bosna i Hercegovina | Language: BSB | Date Format: d
.M.yyyy
2,00 Gb Total Physical Memory | 0,96 Gb Available Physical Memory | 48,07% Memor
y free
4,00 Gb Paging File | 2,62 Gb Available in Paging File | 65,45% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Fil
es
Drive C: | 75,81 Gb Total Space | 58,90 Gb Free Space | 77,70% Space Free | Part
ition Type: NTFS
Drive D: | 149,04 Gb Total Space | 31,74 Gb Free Space | 21,29% Space Free | Par
tition Type: NTFS
Drive E: | 100,00 Mb Total Space | 86,24 Mb Free Space | 86,25% Space Free | Par
tition Type: NTFS
Drive F: | 74,43 Gb Total Space | 74,34 Gb Free Space | 99,88% Space Free | Part
ition Type: NTFS
Drive G: | 73,14 Gb Total Space | 50,80 Gb Free Space | 69,45% Space Free | Part
ition Type: NTFS
Computer Name: ANADIN-PC | User Name: anadin | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitel
ist: On | File Age = 30 Days
[color=#E56717]========== Processes (SafeList) ==========[/color]
PRC - [2013.03.28 19:11:42 | 000,102,400 | ---- | M] (Samsung Electronics Co., L
td.) -- C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe
PRC - [2013.03.13 21:41:34 | 001,822,424 | ---- | M] (Adobe Systems, Inc.) -- C:
\Windows\System32\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
PRC - [2013.03.13 21:05:22 | 000,621,080 | ---- | M] () -- C:\ProgramData\IBUpda
terService\ibsvc.exe
PRC - [2013.03.07 16:30:42 | 000,917,400 | ---- | M] (Mozilla Corporation) -- C:
\Program Files\Mozilla Firefox\firefox.exe
PRC - [2013.02.23 20:16:58 | 001,297,728 | ---- | M] (Spigot, Inc.) -- C:\Progra
m Files\Common Files\Spigot\Search Settings\SearchSettings.exe
PRC - [2013.02.23 17:54:28 | 000,805,752 | ---- | M] (Spigot, Inc.) -- C:\Progra
m Files\Application Updater\ApplicationUpdater.exe
PRC - [2013.02.21 11:30:09 | 002,561,488 | ---- | M] () -- C:\ProgramData\Browse
rProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
PRC - [2012.12.18 21:08:28 | 000,065,192 | ---- | M] (Adobe Systems Incorporated
) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2012.11.06 12:46:42 | 002,611,328 | ---- | M] (DT Soft Ltd) -- C:\Program
Files\DAEMON Tools Lite\DTShellHlp.exe
PRC - [2012.09.09 01:05:42 | 000,195,256 | ---- | M] () -- C:\Users\anadin\AppDa
ta\Roaming\DRPSu\DrvUpdater.exe
PRC - [2012.06.11 15:26:00 | 000,596,480 | ---- | M] (OldTimer Tools) -- G:\ukla
njanje virusa i malvera\OTL.exe
PRC - [2012.03.12 22:25:06 | 000,583,680 | ---- | M] (MyCity) -- C:\Program File
s\MCShield\MCShieldRTM.exe
PRC - [2011.07.11 23:47:06 | 000,074,752 | ---- | M] (Nullsoft, Inc.) -- C:\Prog
ram Files\Winamp\winampa.exe
PRC - [2010.11.20 23:29:20 | 002,616,320 | ---- | M] (Microsoft Corporation) -C:\Windows\explorer.exe

PRC - [2010.11.20 23:29:19 | 000,049,152


C:\Windows\System32\taskhost.exe
PRC - [2010.11.20 23:29:07 | 000,100,864
C:\Windows\System32\audiodg.exe
PRC - [2010.02.01 10:54:30 | 000,340,339
\lsass.exe
PRC - [2009.03.31 10:39:36 | 000,233,472
tem32\FsUsbExService.Exe

| ---- | M] (Microsoft Corporation) -| ---- | M] (Microsoft Corporation) -| ---- | M] () -- C:\OptionalComponents


| ---- | M] (Teruten) -- C:\Windows\Sys

[color=#E56717]========== Modules (No Company Name) ==========[/color]


MOD - [2013.03.25 22:37:08 | 000,515,296 | ---- | M] () -- C:\Program Files\Sque
ekyChocolate, LLC\Smileys We Love Toolbar for IE\adxloader.dll
MOD - [2013.03.25 22:37:04 | 000,014,848 | ---- | M] () -- C:\Program Files\Sque
ekyChocolate, LLC\Smileys We Love Toolbar for IE\System.Net.Json.dll
MOD - [2013.03.13 21:41:33 | 014,717,144 | ---- | M] () -- C:\Windows\System32\M
acromed\Flash\NPSWF32_11_6_602_180.dll
MOD - [2013.03.13 21:14:11 | 000,016,288 | ---- | M] () -- C:\Program Files\Java
\jre7\bin\jp2native.dll
MOD - [2013.03.07 16:30:45 | 003,069,848 | ---- | M] () -- C:\Program Files\Mozi
lla Firefox\mozjs.dll
MOD - [2013.02.21 11:30:09 | 002,561,488 | ---- | M] () -- C:\ProgramData\Browse
rProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
MOD - [2013.02.21 11:28:52 | 002,231,248 | ---- | M] () -- c:\ProgramData\Browse
rProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.dll
MOD - [2012.09.09 01:05:42 | 000,195,256 | ---- | M] () -- C:\Users\anadin\AppDa
ta\Roaming\DRPSu\DrvUpdater.exe
MOD - [2012.02.17 21:55:35 | 000,166,912 | ---- | M] () -- C:\Program Files\WinR
AR\RarExt.dll
MOD - [2010.11.20 23:54:53 | 000,220,672 | ---- | M] () -- C:\Windows\assembly\N
ativeImages_v2.0.50727_32\CustomMarshalers\bf7e7494e75e32979c7824a07570a8a9\Cust
omMarshalers.ni.dll
MOD - [2010.11.20 23:52:34 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\N
ativeImages_v2.0.50727_32\System.Runtime.Remo#\5cae93d923c8378370758489e5535820\
System.Runtime.Remoting.ni.dll
MOD - [2010.11.20 23:52:10 | 012,432,896 | ---- | M] () -- C:\Windows\assembly\N
ativeImages_v2.0.50727_32\System.Windows.Forms\3afcd5168c7a6cb02eab99d7fd71e102\
System.Windows.Forms.ni.dll
MOD - [2010.11.20 23:52:03 | 001,587,200 | ---- | M] () -- C:\Windows\assembly\N
ativeImages_v2.0.50727_32\System.Drawing\dbfe8642a8ed7b2b103ad28e0c96418a\System
.Drawing.ni.dll
MOD - [2010.11.20 23:52:01 | 000,025,600 | ---- | M] () -- C:\Windows\assembly\N
ativeImages_v2.0.50727_32\Accessibility\9859a6e0562f64eacfb8ad76f260a2d6\Accessi
bility.ni.dll
MOD - [2010.11.20 23:50:41 | 005,453,312 | ---- | M] () -- C:\Windows\assembly\N
ativeImages_v2.0.50727_32\System.Xml\461d3b6b3f43e6fbe6c897d5936e17e4\System.Xml
.ni.dll
MOD - [2010.11.20 23:50:37 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\N
ativeImages_v2.0.50727_32\System.Configuration\bc09ad2d49d8535371845cd7532f9271\
System.Configuration.ni.dll
MOD - [2010.11.20 23:50:36 | 007,963,136 | ---- | M] () -- C:\Windows\assembly\N
ativeImages_v2.0.50727_32\System\9e0a3b9b9f457233a335d7fba8f95419\System.ni.dll
MOD - [2010.11.20 23:50:29 | 011,490,304 | ---- | M] () -- C:\Windows\assembly\N
ativeImages_v2.0.50727_32\mscorlib\62a0b3e4b40ec0e8c5cfaa0c8848e64a\mscorlib.ni.
dll
MOD - [2010.11.20 23:29:07 | 000,069,120 | ---- | M] () -- C:\Windows\assembly\G
AC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
MOD - [2010.02.01 10:54:30 | 000,340,339 | ---- | M] () -- C:\OptionalComponents
\lsass.exe

MOD - [2001.03.02 13:02:04 | 000,037,808 | ---- | M] () -- C:\Program Files\Adob


e\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
SRV - [2013.03.13 21:41:34 | 000,253,656 | ---- | M] (Adobe Systems Incorporated
) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateS
ervice.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013.03.13 21:05:22 | 000,621,080 | ---- | M] () [Auto | Running] -- C:\P
rogramData\IBUpdaterService\ibsvc.exe -- (IBUpdaterService)
SRV - [2013.03.13 20:33:40 | 001,343,400 | ---- | M] (Microsoft Corporation) [On
_Demand | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
SRV - [2013.03.07 16:30:44 | 000,115,608 | ---- | M] (Mozilla Foundation) [On_De
mand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservi
ce.exe -- (MozillaMaintenance)
SRV - [2013.02.23 17:54:28 | 000,805,752 | ---- | M] (Spigot, Inc.) [Auto | Runn
ing] -- C:\Program Files\Application Updater\ApplicationUpdater.exe -- (Applicat
ion Updater)
SRV - [2013.02.21 11:30:09 | 002,561,488 | ---- | M] () [Auto | Running] -- C:\P
rogramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\Bro
wserProtect.exe -- (BrowserProtect)
SRV - [2012.12.18 21:08:28 | 000,065,192 | ---- | M] (Adobe Systems Incorporated
) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -(AdobeARMservice)
SRV - [2009.07.14 03:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On
_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2009.07.14 03:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On
_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc)
SRV - [2009.07.14 03:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Au
to | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2009.03.31 10:39:36 | 000,233,472 | ---- | M] (Teruten) [Auto | Running]
-- C:\Windows\System32\FsUsbExService.Exe -- (FsUsbExService)
SRV - [2008.04.07 10:17:30 | 000,430,592 | ---- | M] (Nokia.) [On_Demand | Stopp
ed] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLay
er)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV - File not found [Kernel | On_Demand | Stopped] -- System32\drivers\rdvgkmd.
sys -- (VGPU)
DRV - [2013.03.26 21:14:14 | 000,242,240 | ---- | M] (DT Soft Ltd) [Kernel | Sys
tem | Running] -- C:\Windows\System32\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV - [2011.05.13 04:21:06 | 000,136,808 | ---- | M] (MCCI Corporation) [Kernel
| On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadmdm.sys -- (ssadmdm)
DRV - [2011.05.13 04:21:06 | 000,121,064 | ---- | M] (MCCI Corporation) [Kernel
| On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadbus.sys -- (ssadbus) S
AMSUNG Android USB Composite Device driver (WDM)
DRV - [2011.05.13 04:21:06 | 000,114,280 | ---- | M] (MCCI Corporation) [Kernel
| On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadserd.sys -- (ssadserd)
SAMSUNG Android USB Diagnostic Serial Port (WDM)
DRV - [2011.05.13 04:21:06 | 000,012,776 | ---- | M] (MCCI Corporation) [Kernel
| On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadmdfl.sys -- (ssadmdfl)
SAMSUNG Android USB Modem (Filter)
DRV - [2010.11.20 23:29:34 | 000,015,872 | ---- | M] (Microsoft Corporation) [Ke
rnel | On_Demand | Stopped] -- C:\Windows\System32\drivers\rdpvideominiport.sys
-- (RdpVideoMiniport)
DRV - [2010.11.20 23:29:24 | 000,052,224 | ---- | M] (Microsoft Corporation) [Ke
rnel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUs

bFlt)
DRV - [2010.11.20 23:29:03 | 000,175,360 | ---- | M] (Microsoft Corporation) [Ke
rnel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vmbus.sys -- (vmbus)
DRV - [2010.11.20 23:29:03 | 000,112,640 | ---- | M] (Microsoft Corporation) [Ke
rnel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tsusbhub.sys -- (tsus
bhub)
DRV - [2010.11.20 23:29:03 | 000,077,184 | ---- | M] (Microsoft Corporation) [Ke
rnel | On_Demand | Stopped] -- C:\Windows\System32\drivers\Synth3dVsc.sys -- (Sy
nth3dVsc)
DRV - [2010.11.20 23:29:03 | 000,062,464 | ---- | M] (Microsoft Corporation) [Ke
rnel | On_Demand | Stopped] -- C:\Windows\System32\drivers\dmvsc.sys -- (dmvsc)
DRV - [2010.11.20 23:29:03 | 000,040,704 | ---- | M] (Microsoft Corporation) [Ke
rnel | Boot | Running] -- C:\Windows\System32\drivers\vmstorfl.sys -- (storflt)
DRV - [2010.11.20 23:29:03 | 000,028,032 | ---- | M] (Microsoft Corporation) [Ke
rnel | On_Demand | Stopped] -- C:\Windows\System32\drivers\storvsc.sys -- (storv
sc)
DRV - [2010.11.20 23:29:03 | 000,027,264 | ---- | M] (Microsoft Corporation) [Ke
rnel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbGD.sys -- (TsUsb
GD)
DRV - [2010.11.20 23:29:03 | 000,025,600 | ---- | M] (Microsoft Corporation) [Ke
rnel | On_Demand | Stopped] -- C:\Windows\System32\drivers\terminpt.sys -- (term
inpt)
DRV - [2010.11.20 23:29:03 | 000,017,920 | ---- | M] (Microsoft Corporation) [Ke
rnel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VMBusHID.sys -- (VMBu
sHID)
DRV - [2010.11.20 23:29:03 | 000,005,632 | ---- | M] (Microsoft Corporation) [Ke
rnel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vms3cap.sys -- (s3cap
)
DRV - [2010.04.07 13:16:16 | 000,376,160 | ---- | M] (Ralink Technology, Corp.)
[Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\netr61.sys -- (rt6
1x86)
DRV - [2010.02.11 09:42:22 | 004,450,816 | ---- | M] (ATI Technologies Inc.) [Ke
rnel | On_Demand | Running] -- C:\Windows\System32\drivers\atikmdag.sys -- (atik
mdag)
DRV - [2009.07.14 01:45:33 | 000,083,456 | ---- | M] (Brother Industries Ltd.) [
Kernel | System | Running] -- C:\Windows\System32\drivers\serial.sys -- (Serial)
DRV - [2009.07.14 00:02:46 | 001,096,704 | ---- | M] (Atheros Communications, In
c.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\athr.sys -- (a
thr)
DRV - [2009.06.19 04:45:02 | 004,172,832 | ---- | M] (Realtek Semiconductor Corp
.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\RTKVAC.SYS -- (
ALCXWDM) Service for Realtek AC97 Audio (WDM)
DRV - [2009.03.31 10:39:36 | 000,036,608 | ---- | M] () [Kernel | On_Demand | Ru
nning] -- C:\Windows\System32\FsUsbExDisk.Sys -- (FsUsbExDisk)
DRV - [2007.09.17 16:53:26 | 000,021,632 | ---- | M] (Nokia) [Kernel | On_Demand
| Stopped] -- C:\Windows\System32\drivers\pccsmcfd.sys -- (pccsmcfd)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE - HKLM\..\URLSearchHook: {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Program
Files\uTorrentControl_v6\prxtbuTor.dll (Conduit Ltd.)
IE - HKLM\..\SearchScopes,DefaultScope = {8F5905FB-ADB1-4477-82FC-D397C1130E45}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http:/
/www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.c

onduit.com?SearchSource=10&CUI=UN18611710268783201&UM=1&ctid=CT3289075
IE - HKCU\..\URLSearchHook: {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Program
Files\uTorrentControl_v6\prxtbuTor.dll (Conduit Ltd.)
IE - HKCU\..\URLSearchHook: {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program
Files\YTD Toolbar\IE\7.0\ytdToolbarIE.dll (Spigot, Inc.)
IE - HKCU\..\SearchScopes,DefaultScope = {8F5905FB-ADB1-4477-82FC-D397C1130E45}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http:/
/www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{3F254C0D-8E3B-4BD9-B449-4465F3006693}: "URL" = http:/
/search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=937811&p={sear
chTerms}
IE - HKCU\..\SearchScopes\{8F5905FB-ADB1-4477-82FC-D397C1130E45}: "URL" = http:/
/search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT328907
5&CUI=UN18611710268783201&UM=1
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEna
ble" = 0
[color=#E56717]========== FireFox ==========[/color]
FF - prefs.js..browser.search.selectedEngine: "Search the web (Babylon)"
FF - prefs.js..browser.startup.homepage: "www.google.ba"
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Ma
cromed\Flash\NPSWF32_11_6_602_180.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.17.2: C:\Windows
\system32\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.17.2: C:\Progr
am Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not foun
d
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.5: C:\Program Fi
les\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11
.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\speedanalysis@Speed
Analysis.com: C:\Users\anadin\AppData\Roaming\Mozilla\Extensions\speedanalysis@S
peedAnalysis.com [2013.03.13 21:06:13 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 19.0.2\extensions\\Comp
onents: C:\Program Files\Mozilla Firefox\components [2013.03.25 14:33:34 | 000,0
00,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 19.0.2\extensions\\Plug
ins: C:\Program Files\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\speedanalysis@SpeedA
nalysis.com: C:\Users\anadin\AppData\Roaming\Mozilla\Extensions\speedanalysis@Sp
eedAnalysis.com [2013.03.13 21:06:13 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{0F827075-B026-42F3885D-98981EE7B1AE}: C:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5
c-a2f3-533ad2fec8e8}\FirefoxExtension [2013.03.13 21:07:29 | 000,000,000 | ---D
| M]
[2013.03.13 21:06:13 | 000,000,000 | ---D | M] (No name found) -- C:\Users\anadi
n\AppData\Roaming\Mozilla\Extensions
[2013.03.13 21:06:13 | 000,000,000 | ---D | M] (SpeedAnalysis.com) -- C:\Users\a
nadin\AppData\Roaming\Mozilla\Extensions\speedanalysis@SpeedAnalysis.com
[2013.03.26 21:24:41 | 000,000,000 | ---D | M] (No name found) -- C:\Users\anadi
n\AppData\Roaming\Mozilla\Firefox\Profiles\il2bo08n.default\extensions
[2013.03.26 21:24:41 | 000,000,000 | ---D | M] (No name found) -- C:\Users\anadi
n\AppData\Roaming\Mozilla\Firefox\Profiles\sx74n5fl.default\Extensions

[2013.03.25 14:33:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Fil


es\Mozilla Firefox\extensions
[2013.03.07 16:31:00 | 000,263,064 | ---- | M] (Mozilla Foundation) -- C:\Progra
m Files\mozilla firefox\components\browsercomps.dll
[2013.03.07 16:30:20 | 000,002,465 | ---- | M] () -- C:\Program Files\mozilla fi
refox\searchplugins\bing.xml
[2013.03.07 16:30:20 | 000,002,086 | ---- | M] () -- C:\Program Files\mozilla fi
refox\searchplugins\twitter.xml
O1 HOSTS File: ([2009.06.10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\Sys
tem32\drivers\etc\hosts
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
- C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (uTorrentControl_v6 Toolbar) - {96f454ea-9d38-474f-b504-56193e00c1a5}
- C:\Program Files\uTorrentControl_v6\prxtbuTor.dll (Conduit Ltd.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A
9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (SmileysWeLoveToolbar) - {e4ef8a64-0a30-48f5-b3fe-5fda978da775} - C:\P
rogram Files\SqueekyChocolate, LLC\Smileys We Love Toolbar for IE\adxloader.dll
()
O2 - BHO: (YTD Toolbar) - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C:\Program Fi
les\YTD Toolbar\IE\7.0\ytdToolbarIE.dll (Spigot, Inc.)
O3 - HKLM\..\Toolbar: (uTorrentControl_v6 Toolbar) - {96f454ea-9d38-474f-b504-56
193e00c1a5} - C:\Program Files\uTorrentControl_v6\prxtbuTor.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (SmileysWeLove) - {cf0f43ab-9c23-4d7b-8040-201b82844854} C:\Program Files\SqueekyChocolate, LLC\Smileys We Love Toolbar for IE\adxloader
.dll ()
O3 - HKLM\..\Toolbar: (YTD Toolbar) - {F3FEE66E-E034-436a-86E4-9690573BEE8A} - C
:\Program Files\YTD Toolbar\IE\7.0\ytdToolbarIE.dll (Spigot, Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (uTorrentControl_v6 Toolbar) - {96F454EA-9D38-4
74F-B504-56193E00C1A5} - C:\Program Files\uTorrentControl_v6\prxtbuTor.dll (Cond
uit Ltd.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [NPSStartup] File not found
O4 - HKLM..\Run: [SearchSettings] C:\Program Files\Common Files\Spigot\Search Se
ttings\SearchSettings.exe (Spigot, Inc.)
O4 - HKLM..\Run: [SoundMan] C:\Windows\SOUNDMAN.EXE ()
O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe (Nullsoft, In
c.)
O4 - HKCU..\Run: [AutoStartNPSAgent] C:\Program Files\Samsung\Samsung New PC Stu
dio\NPSAgent.exe (Samsung Electronics Co., Ltd.)
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.e
xe (DT Soft Ltd)
O4 - HKCU..\Run: [DrvUpdater] C:\Users\anadin\AppData\Roaming\DRPSu\DrvUpdater.e
xe ()
O4 - HKCU..\Run: [MCShield Monitor] C:\Program Files\MCShield\MCShieldRTM.exe (M
yCity)
O4 - Startup: C:\Users\anadin\AppData\Roaming\Microsoft\Windows\Start Menu\Progr
ams\Startup\configuration.lnk = C:\configuration\configuration.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentProm
ptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentProm
ptBehaviorUser = 3
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.20
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1DB722E4-DABE-4694-8
308-81DA2A63F66E}: DhcpNameServer = 192.168.1.20
O20 - AppInit_DLLs: (c:\progra~2\browse~1\261095~1.52\{c16c1~1\browse~1.dll) - c
:\ProgramData\BrowserProtect\2.6.1095.52\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\
BrowserProtect.dll ()

O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft


Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\
System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\S
ystem32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value
found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009.06.10 23:42:20 | 000,000,024 | ---- | M] () - C:\auto
exec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/col
or]
[2013.03.31 22:53:13 | 000,000,000
ins
[2013.03.31 22:53:13 | 000,000,000
[2013.03.29 19:27:14 | 000,000,000
-a
[2013.03.29 08:32:03 | 000,000,000
[2013.03.28 22:11:11 | 000,000,000
cije
[2013.03.28 19:14:16 | 000,000,000
[2013.03.28 19:14:15 | 000,000,000
g\PC Suite
[2013.03.28 19:12:42 | 000,000,000
tSAFER
[2013.03.28 18:52:09 | 000,090,624
wcdcls.dll
[2013.03.28 18:52:05 | 000,000,000
[2013.03.28 18:52:04 | 000,021,632
ivers\pccsmcfd.sys
[2013.03.28 18:52:01 | 000,000,000
[2013.03.28 18:50:24 | 000,000,000
B_Drivers
[2013.03.28 18:50:09 | 000,233,472
FsUsbExService.Exe
[2013.03.28 18:50:08 | 000,000,000
PS Files
[2013.03.28 18:49:45 | 000,000,000
g\Samsung
[2013.03.28 18:49:34 | 000,000,000
Installation Information
[2013.03.28 18:49:07 | 000,000,000
ws\Start Menu\Programs\Samsung New
[2013.03.28 18:49:03 | 000,000,000
[2013.03.28 18:49:01 | 000,000,000
ty Solution
[2013.03.28 18:48:42 | 000,000,000
[2013.03.28 18:44:59 | 000,000,000

| ---D | C] -- C:\Windows\System32\searchplug
| ---D | C] -- C:\Windows\System32\Extensions
| ---D | C] -- C:\Users\anadin\Desktop\sa mob
| ---D | C] -- C:\Users\anadin\Documents\NPS
| ---D | C] -- C:\Users\anadin\Desktop\aplika
| ---D | C] -- C:\ProgramData\PC Suite
| ---D | C] -- C:\Users\anadin\AppData\Roamin
| ---D | C] -- C:\Program Files\MarkAnyConten
| ---- | C] (Nokia) -- C:\Windows\System32\nm
| ---D | C] -- C:\Program Files\DIFX
| ---- | C] (Nokia) -- C:\Windows\System32\dr
| ---D | C] -- C:\Windows\System32\DRVSTORE
| ---D | C] -- C:\Windows\System32\Samsung_US
| ---- | C] (Teruten) -- C:\Windows\System32\
| ---D | C] -- C:\Users\anadin\Documents\My N
| ---D | C] -- C:\Users\anadin\AppData\Roamin
| ---D | C] -- C:\Program Files\InstallShield
| ---D | C] -- C:\ProgramData\Microsoft\Windo
PC Studio
| ---D | C] -- C:\Program Files\MarkAny
| ---D | C] -- C:\Program Files\PC Connectivi
| ---D | C] -- C:\Program Files\Samsung
| ---D | C] -- C:\Users\anadin\AppData\Local\

Downloaded Installations
[2013.03.26 22:07:35 | 000,000,000 | ---D | C]
g\Microsoft\Windows\Start Menu\Programs\NetTV+
[2013.03.26 22:07:35 | 000,000,000 | ---D | C]
ws\Start Menu\Programs\NetTV+ Player4
[2013.03.26 22:07:19 | 000,000,000 | ---D | C]
[2013.03.26 21:26:53 | 000,000,000 | ---D | C]
[2013.03.26 21:24:47 | 000,000,000 | ---D | C]
in Express
[2013.03.26 21:24:46 | 000,000,000 | ---D | C]
ate, LLC
[2013.03.26 21:24:46 | 000,000,000 | ---D | C]
ws\Start Menu\Programs\SmileysWeLove for IE
[2013.03.26 21:15:14 | 000,000,000 | ---D | C]
g\TuneUp Software
[2013.03.26 21:15:10 | 000,000,000 | ---D | C]
ies 2013
[2013.03.26 21:15:08 | 000,000,000 | ---D | C]
[2013.03.26 21:15:04 | 000,000,000 | -HSD | C]
42C9-BFFC-4A68511E9E4F}
[2013.03.26 21:15:04 | 000,000,000 | -H-D | C]
[2013.03.26 21:14:54 | 000,000,000 | ---D | C]
ws\Start Menu\Programs\DAEMON Tools Lite
[2013.03.26 21:14:14 | 000,242,240 | ---- | C]
m32\drivers\dtsoftbus01.sys
[2013.03.26 21:14:06 | 000,000,000 | ---D | C]
g\DAEMON Tools Lite
[2013.03.26 21:13:59 | 000,000,000 | ---D | C]
g\OpenCandy
[2013.03.26 21:13:59 | 000,000,000 | ---D | C]
Lite
[2013.03.26 21:13:06 | 000,000,000 | ---D | C]
te
[2013.03.25 14:33:35 | 000,000,000 | ---D | C]
enance Service
[2013.03.25 14:33:33 | 000,000,000 | ---D | C]
ox
[2013.03.21 18:35:47 | 000,000,000 | ---D | C]
g\GRETECH
[2013.03.20 22:24:08 | 000,000,000 | ---D | C]
ws\Start Menu\Programs\MCShield
[2013.03.20 22:24:08 | 000,000,000 | ---D | C]
[2013.03.20 22:24:08 | 000,000,000 | ---D | C]
[2013.03.20 18:02:51 | 000,000,000 | ---D | C]
g\LinkeSOFT
[2013.03.17 19:43:26 | 000,000,000 | ---D | C]
[2013.03.17 19:42:44 | 000,000,000 | RHSD | C]
I semestar
[2013.03.16 10:12:09 | 000,000,000 | ---D | C]
ws\Start Menu\Programs\Winamp
[2013.03.16 10:12:07 | 002,414,360 | ---- | C]
dows\System32\d3dx9_31.dll
[2013.03.16 10:12:07 | 001,892,184 | ---- | C]
dows\System32\D3DX9_42.dll
[2013.03.16 10:06:58 | 000,000,000 | ---D | C]
g\Microsoft\Windows\Start Menu\Programs\Winamp
[2013.03.16 10:06:58 | 000,000,000 | ---D | C]
[2013.03.16 10:06:50 | 000,000,000 | ---D | C]
PX Storage Engine
[2013.03.16 10:06:48 | 000,000,000 | ---D | C]

-- C:\Users\anadin\AppData\Roamin
Player4
-- C:\ProgramData\Microsoft\Windo
-- C:\Program Files\NETTV4
-- C:\Windows\Sun
-- C:\Users\anadin\Documents\Add-- C:\Program Files\SqueekyChocol
-- C:\ProgramData\Microsoft\Windo
-- C:\Users\anadin\AppData\Roamin
-- C:\Program Files\TuneUp Utilit
-- C:\ProgramData\TuneUp Software
-- C:\ProgramData\{C4ABDBC8-1C81-- C:\ProgramData\Common Files
-- C:\ProgramData\Microsoft\Windo
(DT Soft Ltd) -- C:\Windows\Syste
-- C:\Users\anadin\AppData\Roamin
-- C:\Users\anadin\AppData\Roamin
-- C:\Program Files\DAEMON Tools
-- C:\ProgramData\DAEMON Tools Li
-- C:\Program Files\Mozilla Maint
-- C:\Program Files\Mozilla Firef
-- C:\Users\anadin\AppData\Roamin
-- C:\ProgramData\Microsoft\Windo
-- C:\ProgramData\MCShield
-- C:\Program Files\MCShield
-- C:\Users\anadin\AppData\Roamin
-- C:\Users\anadin\Desktop\VI sem
-- C:\Users\anadin\Desktop\faks V
-- C:\ProgramData\Microsoft\Windo
(Microsoft Corporation) -- C:\Win
(Microsoft Corporation) -- C:\Win
-- C:\Users\anadin\AppData\Roamin
Detector Plug-in
-- C:\Program Files\Winamp Detect
-- C:\Program Files\Common Files\
-- C:\Users\anadin\AppData\Roamin

g\Winamp
[2013.03.16 10:06:48 | 000,000,000 | ---D | C] -- C:\Program Files\Winamp
[2013.03.14 18:32:58 | 000,000,000 | RHSD | C] -- C:\configuration
[2013.03.14 18:32:56 | 000,000,000 | RHSD | C] -- C:\OptionalComponents
[2013.03.14 18:26:28 | 000,000,000 | ---D | C] -- C:\Program Files\YTD Toolbar
[2013.03.14 18:26:28 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\
Spigot
[2013.03.14 18:26:28 | 000,000,000 | ---D | C] -- C:\Program Files\Application U
pdater
[2013.03.14 18:26:22 | 000,000,000 | ---D | C] -- C:\ProgramData\YTD Video Downl
oader
[2013.03.14 18:26:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windo
ws\Start Menu\Programs\YTD Video Downloader
[2013.03.14 18:24:46 | 000,000,000 | ---D | C] -- C:\ProgramData\YouTube Downloa
der
[2013.03.14 18:24:41 | 000,000,000 | ---D | C] -- C:\Program Files\YouTube Downl
oader
[2013.03.14 17:36:24 | 000,000,000 | ---D | C] -- C:\Users\anadin\AppData\Local\
CRE
[2013.03.14 17:35:54 | 000,000,000 | ---D | C] -- C:\Program Files\Conduit
[2013.03.14 17:35:46 | 000,000,000 | ---D | C] -- C:\Program Files\uTorrentContr
ol_v6
[2013.03.14 17:35:46 | 000,000,000 | ---D | C] -- C:\Users\anadin\AppData\Local\
Conduit
[2013.03.14 17:34:32 | 000,000,000 | ---D | C] -- C:\Program Files\uTorrent
[2013.03.14 17:34:14 | 000,000,000 | ---D | C] -- C:\Users\anadin\AppData\Roamin
g\uTorrent
[2013.03.14 17:33:34 | 000,000,000 | ---D | C] -- C:\Program Files\MSECache
[2013.03.14 05:06:05 | 000,000,000 | ---D | C] -- C:\Windows\Panther
[2013.03.14 00:31:04 | 000,000,000 | ---D | C] -- C:\Program Files\Sonic Foundry
Plug-Ins
[2013.03.14 00:31:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windo
ws\Start Menu\Programs\ExpressFX 2
[2013.03.14 00:28:39 | 000,000,000 | ---D | C] -- C:\Users\anadin\AppData\Roamin
g\Microsoft\Windows\Start Menu\Programs\Sonic Foundry
[2013.03.14 00:28:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windo
ws\Start Menu\Programs\Sonic Foundry
[2013.03.14 00:28:33 | 000,954,128 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\System32\temp.000
[2013.03.14 00:28:33 | 000,424,960 | ---- | C] (Voxware, Inc.) -- C:\Windows\Sys
tem32\msms001.vwp
[2013.03.14 00:28:33 | 000,281,600 | ---- | C] (Voxware, Inc.) -- C:\Windows\Sys
tem32\mvoice.vwp
[2013.03.14 00:28:33 | 000,278,016 | ---- | C] (Voxware, Inc.) -- C:\Windows\Sys
tem32\vct3216.dll
[2013.03.14 00:28:33 | 000,276,992 | ---- | C] (Fraunhofer Institut Integrierte
Schaltungen IIS) -- C:\Windows\System32\temp.001
[2013.03.14 00:28:33 | 000,089,088 | ---- | C] (Sipro Lab Telecom Inc.) -- C:\Wi
ndows\System32\sl_anet.acm
[2013.03.14 00:28:33 | 000,082,944 | ---- | C] (Voxware, Inc.) -- C:\Windows\Sys
tem32\vct3216.acm
[2013.03.14 00:28:33 | 000,058,938 | ---- | C] (Microsoft Corporation) -- C:\Win
dows\System32\atlu.dll
[2013.03.14 00:28:33 | 000,029,184 | ---- | C] (Blue Sky Software) -- C:\Windows
\System32\popup.ocx
[2013.03.14 00:28:33 | 000,000,000 | ---D | C] -- C:\Program Files\Sonic Foundry
[2013.03.14 00:28:06 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2013.03.14 00:27:46 | 000,306,688 | ---- | C] (InstallShield Software Corporati
on) -- C:\Windows\IsUninst.exe
[2013.03.13 22:29:20 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Win

dows\System32\mdimon.dll
[2013.03.13 22:27:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windo
ws\Start Menu\Programs\Microsoft Office
[2013.03.13 22:27:09 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\
L&H
[2013.03.13 22:26:49 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Act
iveSync
[2013.03.13 22:26:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\
DESIGNER
[2013.03.13 22:26:10 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Wor
ks
[2013.03.13 22:26:01 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Vis
ual Studio
[2013.03.13 22:25:28 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2013.03.13 22:25:28 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2013.03.13 22:25:28 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Off
ice
[2013.03.13 21:42:42 | 000,000,000 | ---D | C] -- C:\Users\anadin\AppData\Roamin
g\Macromedia
[2013.03.13 21:42:42 | 000,000,000 | ---D | C] -- C:\Users\anadin\AppData\Local\
Macromedia
[2013.03.13 21:41:34 | 000,693,976 | ---- | C] (Adobe Systems Incorporated) -- C
:\Windows\System32\FlashPlayerApp.exe
[2013.03.13 21:41:34 | 000,073,432 | ---- | C] (Adobe Systems Incorporated) -- C
:\Windows\System32\FlashPlayerCPLApp.cpl
[2013.03.13 21:41:32 | 000,000,000 | ---D | C] -- C:\Windows\System32\Macromed
[2013.03.13 21:37:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
[2013.03.13 21:37:00 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\
Java
[2013.03.13 21:14:26 | 000,861,088 | ---- | C] (Oracle Corporation) -- C:\Window
s\System32\npDeployJava1.dll
[2013.03.13 21:14:26 | 000,782,240 | ---- | C] (Oracle Corporation) -- C:\Window
s\System32\deployJava1.dll
[2013.03.13 21:14:26 | 000,262,560 | ---- | C] (Oracle Corporation) -- C:\Window
s\System32\javaws.exe
[2013.03.13 21:14:18 | 000,174,496 | ---- | C] (Oracle Corporation) -- C:\Window
s\System32\javaw.exe
[2013.03.13 21:14:18 | 000,174,496 | ---- | C] (Oracle Corporation) -- C:\Window
s\System32\java.exe
[2013.03.13 21:14:18 | 000,094,112 | ---- | C] (Oracle Corporation) -- C:\Window
s\System32\WindowsAccessBridge.dll
[2013.03.13 21:14:08 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2013.03.13 21:07:32 | 000,000,000 | ---D | C] -- C:\Users\anadin\AppData\Roamin
g\Microsoft\Windows\Start Menu\Programs\BrowserProtect
[2013.03.13 21:07:28 | 000,000,000 | ---D | C] -- C:\ProgramData\BrowserProtect
[2013.03.13 21:07:05 | 000,000,000 | ---D | C] -- C:\Program Files\BabylonToolba
r
[2013.03.13 21:06:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windo
ws\Start Menu\Programs\Haali Media Splitter
[2013.03.13 21:06:36 | 000,000,000 | ---D | C] -- C:\Users\anadin\AppData\Roamin
g\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter
[2013.03.13 21:06:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windo
ws\Start Menu\Programs\ffdshow
[2013.03.13 21:06:11 | 000,000,000 | ---D | C] -- C:\Users\anadin\AppData\Roamin
g\SpeedanAlysis
[2013.03.13 21:06:03 | 000,000,000 | ---D | C] -- C:\Users\anadin\AppData\Roamin
g\PerformerSoft
[2013.03.13 21:06:01 | 000,000,000 | ---D | C] -- C:\Users\anadin\AppData\Roamin
g\Babylon
[2013.03.13 21:06:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Babylon

[2013.03.13 21:05:58 | 000,018,096 | ---- | C]


\System32\roboot.exe
[2013.03.13 21:05:51 | 000,000,000 | ---D | C]
g\File Scout
[2013.03.13 21:05:50 | 000,000,000 | ---D | C]
e
[2013.03.13 20:56:27 | 000,000,000 | ---D | C]
[2013.03.13 20:55:20 | 000,000,000 | ---D | C]
g\DRPSu
[2013.03.13 20:55:08 | 000,000,000 | -HSD | C]
[2013.03.13 20:54:51 | 000,000,000 | ---D | C]
[2013.03.13 20:53:32 | 000,232,336 | ---- | C]
dows\System32\MpSigStub.exe
[2013.03.13 20:52:38 | 000,000,000 | ---D | C]
g\vlc
[2013.03.13 20:52:28 | 000,000,000 | ---D | C]
ws\Start Menu\Programs\VideoLAN
[2013.03.13 20:52:15 | 000,000,000 | ---D | C]
[2013.03.13 20:51:32 | 000,000,000 | ---D | C]
g\Mozilla
[2013.03.13 20:51:32 | 000,000,000 | ---D | C]
Mozilla
[2013.03.13 20:51:27 | 000,000,000 | ---D | C]
[2013.03.13 20:50:39 | 000,000,000 | ---D | C]
g\Adobe
[2013.03.13 20:50:39 | 000,000,000 | ---D | C]
Adobe
[2013.03.13 20:50:39 | 000,000,000 | ---D | C]
Adobe
[2013.03.13 20:50:18 | 000,000,000 | ---D | C]
ws\Start Menu\Programs\GOM Player
[2013.03.13 20:50:13 | 000,000,000 | ---D | C]
[2013.03.13 20:49:51 | 000,839,680 | ---- | C]
ndows\System32\lameACM.acm
[2013.03.13 20:49:51 | 000,000,000 | ---D | C]
ws\Start Menu\Programs\K-Lite Codec Pack
[2013.03.13 20:49:50 | 000,151,552 | ---- | C]
32\ac3acm.acm
[2013.03.13 20:49:45 | 000,000,000 | ---D | C]
Pack
[2013.03.13 20:48:02 | 000,000,000 | ---D | C]
g\WinRAR
[2013.03.13 20:48:02 | 000,000,000 | ---D | C]
g\Microsoft\Windows\Start Menu\Programs\WinRAR
[2013.03.13 20:48:02 | 000,000,000 | ---D | C]
ws\Start Menu\Programs\WinRAR
[2013.03.13 20:48:00 | 000,000,000 | ---D | C]
[2013.03.13 20:46:16 | 000,442,368 | ---- | C]
C:\Windows\System32\ATIDEMGX.dll
[2013.03.13 20:46:01 | 004,450,816 | ---- | C]
dows\System32\drivers\atikmdag.sys
[2013.03.13 20:46:00 | 000,118,784 | ---- | C]
C:\Windows\System32\atibrtmon.exe
[2013.03.13 20:45:59 | 000,274,432 | ---- | C]
ndows\System32\Oemdspif.dll
[2013.03.13 20:45:56 | 004,946,432 | ---- | C]
ndows\System32\atiumdva.dll
[2013.03.13 20:45:56 | 000,348,160 | ---- | C]
ndows\System32\atipdlxx.dll
[2013.03.13 20:45:55 | 011,513,856 | ---- | C]

(PerformerSoft LLC) -- C:\Windows


-- C:\Users\anadin\AppData\Roamin
-- C:\ProgramData\IBUpdaterServic
-- C:\Users\anadin\Desktop\net
-- C:\Users\anadin\AppData\Roamin
-- C:\Windows\Installer
-- C:\ProgramData\Adobe
(Microsoft Corporation) -- C:\Win
-- C:\Users\anadin\AppData\Roamin
-- C:\ProgramData\Microsoft\Windo
-- C:\Program Files\VideoLAN
-- C:\Users\anadin\AppData\Roamin
-- C:\Users\anadin\AppData\Local\
-- C:\ProgramData\Mozilla
-- C:\Users\anadin\AppData\Roamin
-- C:\Users\anadin\AppData\Local\
-- C:\Program Files\Common Files\
-- C:\ProgramData\Microsoft\Windo
-- C:\Program Files\GRETECH
(http://www.mp3dev.org/) -- C:\Wi
-- C:\ProgramData\Microsoft\Windo
(fccHandler) -- C:\Windows\System
-- C:\Program Files\K-Lite Codec
-- C:\Users\anadin\AppData\Roamin
-- C:\Users\anadin\AppData\Roamin
-- C:\ProgramData\Microsoft\Windo
-- C:\Program Files\WinRAR
(Advanced Micro Devices, Inc.) -(ATI Technologies Inc.) -- C:\Win
(Advanced Micro Devices, Inc.) -(ATI Technologies, Inc.) -- C:\Wi
(ATI Technologies Inc. ) -- C:\Wi
(ATI Technologies, Inc.) -- C:\Wi
(ATI Technologies Inc.) -- C:\Win

dows\System32\atioglxx.dll
[2013.03.13 20:45:55 | 000,053,248 | ---- | C] (Advanced Micro Devices Inc.) -C:\Windows\System32\aticalrt.dll
[2013.03.13 20:45:55 | 000,012,288 | ---- | C] (AMD) -- C:\Windows\System32\atim
uixx.dll
[2013.03.13 20:45:54 | 003,235,840 | ---- | C] (Advanced Micro Devices Inc.) -C:\Windows\System32\aticaldd.dll
[2013.03.13 20:45:54 | 000,278,528 | ---- | C] (ATI Technologies Inc.) -- C:\Win
dows\System32\Ati2evxx.dll
[2013.03.13 20:45:54 | 000,135,168 | ---- | C] (Advanced Micro Devices, Inc.) -C:\Windows\System32\atiadlxx.dll
[2013.03.13 20:45:54 | 000,053,248 | ---- | C] (ATI Technologies Inc.) -- C:\Win
dows\System32\drivers\ati2erec.dll
[2013.03.13 20:45:54 | 000,053,248 | ---- | C] (Advanced Micro Devices Inc.) -C:\Windows\System32\aticalcl.dll
[2013.03.13 20:45:54 | 000,051,712 | ---- | C] (Advanced Micro Devices, Inc. ) - C:\Windows\System32\amdpcom32.dll
[2013.03.13 20:45:54 | 000,043,520 | ---- | C] (ATI Technologies, Inc.) -- C:\Wi
ndows\System32\ati2edxx.dll
[2013.03.13 20:44:12 | 004,172,832 | ---- | C] (Realtek Semiconductor Corp.) -C:\Windows\System32\drivers\RTKVAC.SYS
[2013.03.13 20:43:56 | 000,223,776 | ---- | C] (Realtek Semiconductor Corp.) -C:\Windows\Alcrmv.exe
[2013.03.13 20:43:54 | 019,036,704 | ---- | C] (Realtek Semiconductor Corp.) -C:\Windows\System32\ALSNDMGR.CPL
[2013.03.13 20:35:32 | 000,000,000 | R--D | C] -- C:\Users\anadin\AppData\Roamin
g\Microsoft\Windows\Start Menu\Programs\Startup
[2013.03.13 20:35:32 | 000,000,000 | R--D | C] -- C:\Users\anadin\Searches
[2013.03.13 20:35:32 | 000,000,000 | R--D | C] -- C:\Users\anadin\AppData\Roamin
g\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2013.03.13 20:35:32 | 000,000,000 | -H-D | C] -- C:\Users\anadin\Application Da
ta\Microsoft\Internet Explorer\Quick Launch\User Pinned
[2013.03.13 20:35:23 | 000,000,000 | ---D | C] -- C:\Users\anadin\AppData\Roamin
g\Identities
[2013.03.13 20:35:20 | 000,000,000 | R--D | C] -- C:\Users\anadin\Contacts
[2013.03.13 20:35:10 | 000,000,000 | ---D | C] -- C:\Users\anadin\AppData\Local\
VirtualStore
[2013.03.13 20:35:05 | 000,000,000 | -HSD | C] -- C:\Users\anadin\AppData\Local\
Temporary Internet Files
[2013.03.13 20:35:05 | 000,000,000 | -HSD | C] -- C:\Users\anadin\Templates
[2013.03.13 20:35:05 | 000,000,000 | -HSD | C] -- C:\Users\anadin\Start Menu
[2013.03.13 20:35:05 | 000,000,000 | -HSD | C] -- C:\Users\anadin\SendTo
[2013.03.13 20:35:05 | 000,000,000 | -HSD | C] -- C:\Users\anadin\Recent
[2013.03.13 20:35:05 | 000,000,000 | -HSD | C] -- C:\Users\anadin\PrintHood
[2013.03.13 20:35:05 | 000,000,000 | -HSD | C] -- C:\Users\anadin\NetHood
[2013.03.13 20:35:05 | 000,000,000 | -HSD | C] -- C:\Users\anadin\Documents\My V
ideos
[2013.03.13 20:35:05 | 000,000,000 | -HSD | C] -- C:\Users\anadin\Documents\My P
ictures
[2013.03.13 20:35:05 | 000,000,000 | -HSD | C] -- C:\Users\anadin\Documents\My M
usic
[2013.03.13 20:35:05 | 000,000,000 | -HSD | C] -- C:\Users\anadin\My Documents
[2013.03.13 20:35:05 | 000,000,000 | -HSD | C] -- C:\Users\anadin\Local Settings
[2013.03.13 20:35:05 | 000,000,000 | -HSD | C] -- C:\Users\anadin\AppData\Local\
History
[2013.03.13 20:35:05 | 000,000,000 | -HSD | C] -- C:\Users\anadin\Cookies
[2013.03.13 20:35:05 | 000,000,000 | -HSD | C] -- C:\Users\anadin\Application Da
ta
[2013.03.13 20:35:05 | 000,000,000 | -HSD | C] -- C:\Users\anadin\AppData\Local\
Application Data

[2013.03.13 20:35:03 | 000,000,000 | --SD | C] -- C:\Users\anadin\AppData\Roamin


g\Microsoft
[2013.03.13 20:35:03 | 000,000,000 | R--D | C] -- C:\Users\anadin\Videos
[2013.03.13 20:35:03 | 000,000,000 | R--D | C] -- C:\Users\anadin\Saved Games
[2013.03.13 20:35:03 | 000,000,000 | R--D | C] -- C:\Users\anadin\Pictures
[2013.03.13 20:35:03 | 000,000,000 | R--D | C] -- C:\Users\anadin\Music
[2013.03.13 20:35:03 | 000,000,000 | R--D | C] -- C:\Users\anadin\AppData\Roamin
g\Microsoft\Windows\Start Menu\Programs\Maintenance
[2013.03.13 20:35:03 | 000,000,000 | R--D | C] -- C:\Users\anadin\Links
[2013.03.13 20:35:03 | 000,000,000 | R--D | C] -- C:\Users\anadin\Favorites
[2013.03.13 20:35:03 | 000,000,000 | R--D | C] -- C:\Users\anadin\Downloads
[2013.03.13 20:35:03 | 000,000,000 | R--D | C] -- C:\Users\anadin\Documents
[2013.03.13 20:35:03 | 000,000,000 | R--D | C] -- C:\Users\anadin\Desktop
[2013.03.13 20:35:03 | 000,000,000 | R--D | C] -- C:\Users\anadin\AppData\Roamin
g\Microsoft\Windows\Start Menu\Programs\Accessories
[2013.03.13 20:35:03 | 000,000,000 | -H-D | C] -- C:\Users\anadin\AppData
[2013.03.13 20:35:03 | 000,000,000 | ---D | C] -- C:\Users\anadin\AppData\Local\
Temp
[2013.03.13 20:35:03 | 000,000,000 | ---D | C] -- C:\Users\anadin\AppData\Local\
Microsoft
[2013.03.13 20:35:03 | 000,000,000 | ---D | C] -- C:\Users\anadin\AppData\Roamin
g\Media Center Programs
[2013.03.13 20:33:41 | 000,000,000 | ---D | C] -- C:\Windows\System32\Wat
[2013.03.13 20:33:03 | 000,000,000 | -HSD | C] -- C:\Recovery
[2013.03.13 20:11:49 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistributio
n
[2013.03.13 20:09:45 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
[2013.03.13 20:09:01 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
[2013.04.01 18:39:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flas
h Player Updater.job
[2013.04.01 18:26:15 | 000,606,992 | ---- | M] () -- C:\Windows\System32\perfh00
9.dat
[2013.04.01 18:26:15 | 000,103,370 | ---- | M] () -- C:\Windows\System32\perfc00
9.dat
[2013.04.01 16:47:20 | 000,001,989 | ---- | M] () -- C:\Users\Public\Desktop\Ado
be Reader XI.lnk
[2013.04.01 15:18:22 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013.04.01 15:18:17 | 1610,223,616 | -HS- | M] () -- C:\hiberfil.sys
[2013.03.29 22:11:14 | 000,078,085 | ---- | M] () -- C:\Users\anadin\Desktop\216
791_4819026675078_1272319201_n.jpg
[2013.03.28 22:35:28 | 000,020,640 | -H-- | M] () -- C:\Windows\System32\7B296FB
0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013.03.28 22:35:27 | 000,020,640 | -H-- | M] () -- C:\Windows\System32\7B296FB
0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013.03.28 19:12:59 | 000,002,112 | ---- | M] () -- C:\Users\anadin\Application
Data\Microsoft\Internet Explorer\Quick Launch\Samsung New PC Studio.lnk
[2013.03.28 19:11:29 | 000,005,632 | ---- | M] () -- C:\Windows\System32\drivers
\StarOpen.sys
[2013.03.28 18:49:08 | 000,002,116 | ---- | M] () -- C:\Users\Public\Desktop\Sam
sung New PC Studio.lnk
[2013.03.26 22:07:35 | 000,000,974 | ---- | M] () -- C:\Users\anadin\Desktop\Net
TV+ Player4.lnk
[2013.03.26 21:24:02 | 000,001,896 | ---- | M] () -- C:\Users\Public\Desktop\DAE
MON Tools Lite.lnk
[2013.03.26 21:14:14 | 000,242,240 | ---- | M] (DT Soft Ltd) -- C:\Windows\Syste
m32\drivers\dtsoftbus01.sys
[2013.03.25 14:33:37 | 000,001,105 | ---- | M] () -- C:\Users\Public\Desktop\Moz

illa Firefox.lnk
[2013.03.18 19:52:51 | 000,000,622 | ---- | M] () -- C:\Users\anadin\Documents\F
C.xspf
[2013.03.16 10:12:09 | 000,000,961 | ---- | M] () -- C:\Users\anadin\Application
Data\Microsoft\Internet Explorer\Quick Launch\Winamp.lnk
[2013.03.16 10:12:09 | 000,000,937 | ---- | M] () -- C:\Users\Public\Desktop\Win
amp.lnk
[2013.03.14 18:32:58 | 000,000,583 | ---- | M] () -- C:\Users\anadin\AppData\Roa
ming\Microsoft\Windows\Start Menu\Programs\Startup\configuration.lnk
[2013.03.14 18:26:14 | 000,001,004 | ---- | M] () -- C:\Users\Public\Desktop\YTD
Video Downloader.lnk
[2013.03.14 17:34:42 | 000,000,937 | ---- | M] () -- C:\Users\anadin\Application
Data\Microsoft\Internet Explorer\Quick Launch\Torrent.lnk
[2013.03.14 17:34:42 | 000,000,913 | ---- | M] () -- C:\Users\Public\Desktop\Torr
ent.lnk
[2013.03.14 00:28:39 | 000,002,005 | ---- | M] () -- C:\Users\anadin\Desktop\Sou
nd Forge 5.0.lnk
[2013.03.13 23:44:26 | 000,406,912 | ---- | M] () -- C:\Windows\System32\FNTCACH
E.DAT
[2013.03.13 22:31:27 | 000,000,376 | ---- | M] () -- C:\Windows\ODBC.INI
[2013.03.13 21:41:34 | 000,693,976 | ---- | M] (Adobe Systems Incorporated) -- C
:\Windows\System32\FlashPlayerApp.exe
[2013.03.13 21:41:34 | 000,073,432 | ---- | M] (Adobe Systems Incorporated) -- C
:\Windows\System32\FlashPlayerCPLApp.cpl
[2013.03.13 21:14:11 | 000,094,112 | ---- | M] (Oracle Corporation) -- C:\Window
s\System32\WindowsAccessBridge.dll
[2013.03.13 21:14:10 | 000,861,088 | ---- | M] (Oracle Corporation) -- C:\Window
s\System32\npDeployJava1.dll
[2013.03.13 21:14:10 | 000,782,240 | ---- | M] (Oracle Corporation) -- C:\Window
s\System32\deployJava1.dll
[2013.03.13 21:14:10 | 000,262,560 | ---- | M] (Oracle Corporation) -- C:\Window
s\System32\javaws.exe
[2013.03.13 21:14:10 | 000,174,496 | ---- | M] (Oracle Corporation) -- C:\Window
s\System32\javaw.exe
[2013.03.13 21:14:10 | 000,174,496 | ---- | M] (Oracle Corporation) -- C:\Window
s\System32\java.exe
[2013.03.13 20:52:28 | 000,001,024 | ---- | M] () -- C:\Users\Public\Desktop\VLC
media player.lnk
[2013.03.13 20:50:20 | 000,001,109 | ---- | M] () -- C:\Users\anadin\Application
Data\Microsoft\Internet Explorer\Quick Launch\GOM Player.lnk
[2013.03.13 20:50:20 | 000,001,085 | ---- | M] () -- C:\Users\Public\Desktop\GOM
Player.lnk
[2013.03.13 20:39:21 | 000,001,407 | ---- | M] () -- C:\Users\anadin\Application
Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.
lnk
[2013.03.13 20:33:53 | 000,409,088 | ---- | M] (Microsoft Corporation) -- C:\Win
dows\System32\systemcpl.dll
[2013.03.13 20:33:53 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Win
dows\System32\slwga.dll
[2013.03.13 20:12:37 | 000,116,385 | ---- | M] () -- C:\Windows\System32\license
.rtf
[2013.03.13 20:10:52 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin
[2013.03.13 20:10:38 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers
\Msft_User_WpdFs_01_09_00.Wdf
[color=#E56717]========== Files Created - No Company Name ==========[/color]
[2013.04.01 16:47:20 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Wi
ndows\Start Menu\Programs\Adobe Reader XI.lnk
[2013.04.01 16:47:20 | 000,001,989 | ---- | C] () -- C:\Users\Public\Desktop\Ado

be Reader XI.lnk
[2013.03.29 22:11:12 | 000,078,085 | ---- | C] () -- C:\Users\anadin\Desktop\216
791_4819026675078_1272319201_n.jpg
[2013.03.28 18:52:15 | 000,002,112 | ---- | C] () -- C:\Users\anadin\Application
Data\Microsoft\Internet Explorer\Quick Launch\Samsung New PC Studio.lnk
[2013.03.28 18:50:09 | 000,110,592 | ---- | C] () -- C:\Windows\System32\FsUsbEx
Device.Dll
[2013.03.28 18:50:09 | 000,036,608 | ---- | C] () -- C:\Windows\System32\FsUsbEx
Disk.Sys
[2013.03.28 18:49:08 | 000,002,116 | ---- | C] () -- C:\Users\Public\Desktop\Sam
sung New PC Studio.lnk
[2013.03.26 22:07:35 | 000,000,974 | ---- | C] () -- C:\Users\anadin\Desktop\Net
TV+ Player4.lnk
[2013.03.26 21:24:02 | 000,001,896 | ---- | C] () -- C:\Users\Public\Desktop\DAE
MON Tools Lite.lnk
[2013.03.25 14:33:37 | 000,001,117 | ---- | C] () -- C:\ProgramData\Microsoft\Wi
ndows\Start Menu\Programs\Mozilla Firefox.lnk
[2013.03.25 14:33:37 | 000,001,105 | ---- | C] () -- C:\Users\Public\Desktop\Moz
illa Firefox.lnk
[2013.03.18 19:52:51 | 000,000,622 | ---- | C] () -- C:\Users\anadin\Documents\F
C.xspf
[2013.03.16 10:12:09 | 000,000,961 | ---- | C] () -- C:\Users\anadin\Application
Data\Microsoft\Internet Explorer\Quick Launch\Winamp.lnk
[2013.03.16 10:12:09 | 000,000,937 | ---- | C] () -- C:\Users\Public\Desktop\Win
amp.lnk
[2013.03.14 18:32:58 | 000,000,583 | ---- | C] () -- C:\Users\anadin\AppData\Roa
ming\Microsoft\Windows\Start Menu\Programs\Startup\configuration.lnk
[2013.03.14 18:26:14 | 000,001,004 | ---- | C] () -- C:\Users\Public\Desktop\YTD
Video Downloader.lnk
[2013.03.14 17:34:32 | 000,000,937 | ---- | C] () -- C:\Users\anadin\Application
Data\Microsoft\Internet Explorer\Quick Launch\Torrent.lnk
[2013.03.14 17:34:32 | 000,000,913 | ---- | C] () -- C:\Users\Public\Desktop\Torr
ent.lnk
[2013.03.14 00:28:39 | 000,002,005 | ---- | C] () -- C:\Users\anadin\Desktop\Sou
nd Forge 5.0.lnk
[2013.03.14 00:28:33 | 000,028,160 | ---- | C] () -- C:\Windows\System32\regcode
c.exe
[2013.03.13 22:31:27 | 000,000,376 | ---- | C] () -- C:\Windows\ODBC.INI
[2013.03.13 21:41:35 | 000,000,830 | ---- | C] () -- C:\Windows\tasks\Adobe Flas
h Player Updater.job
[2013.03.13 20:52:28 | 000,001,024 | ---- | C] () -- C:\Users\Public\Desktop\VLC
media player.lnk
[2013.03.13 20:50:20 | 000,001,109 | ---- | C] () -- C:\Users\anadin\Application
Data\Microsoft\Internet Explorer\Quick Launch\GOM Player.lnk
[2013.03.13 20:50:20 | 000,001,085 | ---- | C] () -- C:\Users\Public\Desktop\GOM
Player.lnk
[2013.03.13 20:49:51 | 000,000,414 | ---- | C] () -- C:\Windows\System32\lame_ac
m.xml
[2013.03.13 20:49:50 | 000,650,752 | ---- | C] () -- C:\Windows\System32\xvidcor
e.dll
[2013.03.13 20:49:50 | 000,243,200 | ---- | C] () -- C:\Windows\System32\xvidvfw
.dll
[2013.03.13 20:49:50 | 000,175,616 | ---- | C] () -- C:\Windows\System32\unrar.d
ll
[2013.03.13 20:49:48 | 000,079,360 | ---- | C] () -- C:\Windows\System32\ff_vfw.
dll
[2013.03.13 20:45:56 | 000,159,744 | ---- | C] () -- C:\Windows\System32\atitmmx
x.dll
[2013.03.13 20:45:54 | 000,189,051 | ---- | C] () -- C:\Windows\System32\atiicdx
x.dat

[2013.03.13 20:45:54 | 000,152,496 | ---- | C] () -- C:\Windows\System32\atiumdv


a.cap
[2013.03.13 20:45:54 | 000,015,577 | ---- | C] () -- C:\Windows\atiogl.xml
[2013.03.13 20:44:12 | 000,000,000 | ---- | C] () -- C:\Windows\System32\RTLCPAP
I.dll
[2013.03.13 20:44:12 | 000,000,000 | ---- | C] () -- C:\Windows\System32\RtkPgEx
t.dll
[2013.03.13 20:44:12 | 000,000,000 | ---- | C] () -- C:\Windows\System32\RtkCfg.
dll
[2013.03.13 20:44:12 | 000,000,000 | ---- | C] () -- C:\Windows\System32\RtkAPO.
dll
[2013.03.13 20:44:11 | 000,000,000 | ---- | C] () -- C:\Windows\SOUNDMAN.EXE
[2013.03.13 20:44:11 | 000,000,000 | ---- | C] () -- C:\Windows\System32\RTLCPL.
EXE
[2013.03.13 20:43:52 | 000,141,016 | ---- | C] () -- C:\Windows\System32\ALSNDMG
R.WAV
[2013.03.13 20:40:16 | 000,039,656 | ---- | C] () -- C:\Windows\System32\OEMLOGO
.bmp
[2013.03.13 20:39:21 | 000,001,407 | ---- | C] () -- C:\Users\anadin\Application
Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.
lnk
[2013.03.13 20:35:34 | 000,001,413 | ---- | C] () -- C:\Users\anadin\AppData\Roa
ming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2013.03.13 20:35:03 | 000,000,290 | ---- | C] () -- C:\Users\anadin\Application
Data\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk
[2013.03.13 20:35:03 | 000,000,272 | ---- | C] () -- C:\Users\anadin\Application
Data\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk
[2013.03.13 20:12:22 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Wi
ndows\Start Menu\Programs\Media Center.lnk
[2013.03.13 20:12:12 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Wi
ndows\Start Menu\Programs\Windows DVD Maker.lnk
[2013.03.13 20:10:52 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2013.03.13 20:10:38 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers
\Msft_User_WpdFs_01_09_00.Wdf
[2013.03.13 20:09:01 | 1610,223,616 | -HS- | C] () -- C:\hiberfil.sys
< End of report >

You might also like