Премини към съдържанието
Форумът в приложение

По-лесно сърфиране. Научи повече.

Kaldata.com - Форуми

Приложение на форума на цял екран с push известия, значки и други.

За да инсталирате това приложение на iOS и iPadOS
  1. Докоснете Иконата за споделяне в Safari
  2. Превъртете менюто и докоснете Добавяне към началния екран.
  3. Докоснете Добавяне в горния десен ъгъл.
За да инсталирате това приложение на Android
  1. Докоснете менюто с 3 точки (⋮) в горния десен ъгъл на браузъра.
  2. Докоснете Добавяне към началния екран или Инсталиране на приложение.
  3. Потвърдете, като докоснете Инсталиране.

nucleatora

Потребител
  • Регистрация

  • Последно онлайн

Всичко публикувано от nucleatora

  1. е как ще нямам имам nod32 какъв проблем да описвам имам си mbam и си сканирам с нея просто не знаех че пречи
  2. OTL.txt OTL logfile created on: 8.5.2011 г. 00:03:51 - Run 1 OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\Desi\Desktop 64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000402 | Country: Bulgaria | Language: BGR | Date Format: d.M.yyyy 'г.' 2,00 Gb Total Physical Memory | 0,00 Gb Available Physical Memory | 20,00% Memory free 3,00 Gb Paging File | 2,00 Gb Available in Paging File | 48,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 48,83 Gb Total Space | 7,86 Gb Free Space | 16,09% Space Free | Partition Type: NTFS Drive D: | 249,25 Gb Total Space | 166,78 Gb Free Space | 66,91% Space Free | Partition Type: NTFS Computer Name: DESI-PC | User Name: Desi | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - C:\Users\Desi\Desktop\OTL.exe (OldTimer Tools) PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) PRC - C:\Windows\SysWOW64\PnkBstrA.exe () PRC - C:\Windows\SysWOW64\drivers\CDAC11BA.EXE (Macrovision) PRC - C:\Program Files (x86)\TeamViewer\Version5\TeamViewer_Service.exe (TeamViewer GmbH) PRC - C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe () PRC - C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent, Inc.) PRC - C:\Program Files (x86)\McAfee Security Scan\2.0.181\SSScheduler.exe (McAfee, Inc.) PRC - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe (ESET) PRC - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd) PRC - C:\Program Files (x86)\TeamViewer3\TeamViewer.exe (TeamViewer GmbH) PRC - C:\Program Files (x86)\TeamViewer3\TeamViewer_Service.exe (TeamViewer GmbH) PRC - C:\xampp\apache\bin\apache.exe (Apache Software Foundation) PRC - c:\xampp\apache\bin\apache.exe (Apache Software Foundation) PRC - C:\Program Files (x86)\RocketDock\RocketDock.exe () PRC - C:\Program Files\ATKGFNEX\GFNEXSrv.exe () PRC - c:\xampp\mysql\bin\mysqld-nt.exe () ========== Modules (SafeList) ========== MOD - C:\Users\Desi\Desktop\OTL.exe (OldTimer Tools) MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll (Microsoft Corporation) MOD - C:\Program Files (x86)\Unlocker\UnlockerHook.dll () MOD - C:\Program Files (x86)\RocketDock\RocketDock.dll () ========== Win32 Services (SafeList) ========== SRV:64bit: - (AMD External Events Utility) -- C:\Windows\SysNative\atiesrxx.exe (AMD) SRV:64bit: - (EhttpSrv) -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe (ESET) SRV:64bit: - (ekrn) -- C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe (ESET) SRV:64bit: - (WinDefend) -- C:\Program Files\Windows Defender\mpsvc.dll (Microsoft Corporation) SRV:64bit: - (AppMgmt) -- C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation) SRV:64bit: - (msvsmon90) -- C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x64\msvsmon.exe (Microsoft Corporation) SRV:64bit: - (ATKGFNEXSrv) -- C:\Program Files\ATKGFNEX\GFNEXSrv.exe () SRV - (Akamai) -- c:\program files (x86)\common files\akamai\netsession_win_3f211bc.dll () SRV - (PnkBstrA) -- C:\Windows\SysWOW64\PnkBstrA.exe () SRV - (C-DillaCdaC11BA) -- C:\Windows\SysWOW64\drivers\CDAC11BA.EXE (Macrovision) SRV - (TeamViewer5) -- C:\Program Files (x86)\TeamViewer\Version5\TeamViewer_Service.exe (TeamViewer GmbH) SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) SRV - (McComponentHostService) -- C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe (McAfee, Inc.) SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation) SRV - (TeamViewer) -- C:\Program Files (x86)\TeamViewer3\TeamViewer_Service.exe (TeamViewer GmbH) SRV - (Apache2.2) -- c:\xampp\apache\bin\apache.exe (Apache Software Foundation) SRV - (mysql) -- c:\xampp\mysql\bin\mysqld-nt.exe () SRV - (FileZilla Server) -- c:\xampp\FileZillaFTP\FileZillaServer.exe (FileZilla Project) ========== Driver Services (SafeList) ========== DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices) DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices) DRV:64bit: - (atksgt) -- C:\Windows\SysNative\drivers\atksgt.sys () DRV:64bit: - (lirsgt) -- C:\Windows\SysNative\drivers\lirsgt.sys () DRV:64bit: - (atikmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (ATI Technologies Inc.) DRV:64bit: - (amdkmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (ATI Technologies Inc.) DRV:64bit: - (amdkmdap) -- C:\Windows\SysNative\drivers\atikmpag.sys (Advanced Micro Devices, Inc.) DRV:64bit: - (sptd) -- C:\Windows\SysNative\drivers\sptd.sys () DRV:64bit: - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek ) DRV:64bit: - (vpcvmm) -- C:\Windows\SysNative\drivers\vpcvmm.sys (Microsoft Corporation) DRV:64bit: - (vpcbus) -- C:\Windows\SysNative\drivers\vpchbus.sys (Microsoft Corporation) DRV:64bit: - (vpcusb) -- C:\Windows\SysNative\drivers\vpcusb.sys (Microsoft Corporation) DRV:64bit: - (epfwwfpr) -- C:\Windows\SysNative\drivers\epfwwfpr.sys (ESET) DRV:64bit: - (ehdrv) -- C:\Windows\SysNative\drivers\ehdrv.sys (ESET) DRV:64bit: - (eamon) -- C:\Windows\SysNative\drivers\eamon.sys (ESET) DRV:64bit: - (athr) -- C:\Windows\SysNative\drivers\athrx.sys (Atheros Communications, Inc.) DRV:64bit: - (BthAvrcp) -- C:\Windows\SysNative\drivers\BthAvrcp.sys (CSR, plc) DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.) DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation) DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company) DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology) DRV:64bit: - (smserial) -- C:\Windows\SysNative\drivers\SmSerl64.sys (Motorola Inc.) DRV:64bit: - (Ntfs) -- C:\Windows\SysNative\wbem\ntfs.mof () DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation) DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation) DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation) DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.) DRV:64bit: - (AtiPcie) ATI PCI Express (3GIO) -- C:\Windows\SysNative\drivers\AtiPcie.sys (ATI Technologies Inc.) DRV:64bit: - (CRFILTER) -- C:\Windows\SysNative\drivers\CRFILTER.sys (Generic) DRV:64bit: - (SynTP) -- C:\Windows\SysNative\drivers\SynTP.sys (Synaptics, Inc.) DRV:64bit: - (FiltUSBET) -- C:\Windows\SysNative\drivers\etFilter64.sys (eMPIA Technology Inc.) DRV:64bit: - (SNP2UVC) USB2.0 PC Camera (SNP2UVC) -- C:\Windows\SysNative\drivers\snp2uvc.sys () DRV:64bit: - (ScanUSBET) -- C:\Windows\SysNative\drivers\etScan64.sys (eMPIA Technology, Inc.) DRV:64bit: - (DCamUSBET) -- C:\Windows\SysNative\drivers\etDevice64.sys (eMPIA Technology, Inc.) DRV:64bit: - (MTsensor) -- C:\Windows\SysNative\drivers\ATK64AMD.sys () DRV:64bit: - (ASMMAP64) -- C:\Program Files\ATKGFNEX\ASMMAP64.sys () DRV - (CdaC15BA) -- C:\Windows\SysWOW64\drivers\CDAC15BA.SYS (Macrovision Europe Ltd) DRV - (speedfan) -- C:\Windows\SysWOW64\speedfan.sys (Windows ® Server 2003 DDK provider) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1538854459-2880547577-984557396-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://youtube.com/ IE - HKU\S-1-5-21-1538854459-2880547577-984557396-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/ IE - HKU\S-1-5-21-1538854459-2880547577-984557396-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us IE - HKU\S-1-5-21-1538854459-2880547577-984557396-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = D2 F4 9C 49 54 C1 CA 01 [binary data] IE - HKU\S-1-5-21-1538854459-2880547577-984557396-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://search.conduit.com?SearchSource=10&ctid=CT2776682 IE - HKU\S-1-5-21-1538854459-2880547577-984557396-1000\..\URLSearchHook: {51a86bb3-6602-4c85-92a5-130ee4864f13} - Reg Error: Key error. File not found IE - HKU\S-1-5-21-1538854459-2880547577-984557396-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1538854459-2880547577-984557396-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 109.123.111.99:80 ========== FireFox ========== FF - HKLM\software\mozilla\Mozilla Firefox 3.6.17\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011.04.30 09:34:30 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.17\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011.04.30 09:34:30 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Thunderbird\Extensions\\[email protected]: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2010.03.11 23:46:40 | 000,000,000 | ---D | M] [2010.03.19 15:59:41 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Desi\AppData\Roaming\mozilla\Extensions [2011.05.07 23:03:03 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Desi\AppData\Roaming\mozilla\Firefox\Profiles\54urv0b7.default\extensions [2010.11.07 14:09:57 | 000,000,000 | ---D | M] (BrotherSoft Extreme Community Toolbar) -- C:\Users\Desi\AppData\Roaming\mozilla\Firefox\Profiles\54urv0b7.default\extensions\{51a86bb3-6602-4c85-92a5-130ee4864f13} [2010.07.22 18:43:43 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Users\Desi\AppData\Roaming\mozilla\Firefox\Profiles\54urv0b7.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2010.09.21 13:53:54 | 000,000,000 | ---D | M] (Easy Youtube Video Downloader) -- C:\Users\Desi\AppData\Roaming\mozilla\Firefox\Profiles\54urv0b7.default\extensions\{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b} [2010.07.22 18:43:43 | 000,000,000 | ---D | M] (Download Statusbar) -- C:\Users\Desi\AppData\Roaming\mozilla\Firefox\Profiles\54urv0b7.default\extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389} [2010.07.04 15:28:49 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Users\Desi\AppData\Roaming\mozilla\Firefox\Profiles\54urv0b7.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781} [2010.06.19 13:08:42 | 000,000,000 | ---D | M] (FoxTab) -- C:\Users\Desi\AppData\Roaming\mozilla\Firefox\Profiles\54urv0b7.default\extensions\{ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a} [2010.03.21 16:59:49 | 000,000,000 | ---D | M] (TVU Web Player) -- C:\Users\Desi\AppData\Roaming\mozilla\Firefox\Profiles\54urv0b7.default\extensions\[email protected] [2011.05.07 23:03:03 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions [2010.07.01 20:44:17 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} [2011.01.23 14:48:52 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} [2010.06.19 21:34:09 | 000,000,000 | ---D | M] (QuickStores-Toolbar) -- C:\Program Files (x86)\mozilla firefox\extensions\[email protected] [2010.11.12 19:53:06 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll [2010.09.21 18:03:46 | 000,001,083 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\911bg.xml [2010.09.21 18:03:46 | 000,002,442 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\diribg.xml [2010.09.21 18:03:46 | 000,001,515 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\pe-bg.xml [2010.09.21 18:03:46 | 000,001,857 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\portalbgdict.xml [2010.09.21 18:03:46 | 000,001,220 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-bg.xml O1 HOSTS File: ([2009.06.11 00:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O3 - HKLM\..\Toolbar: (no name) - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - No CLSID value found. O4:64bit: - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET) O4 - HKLM..\Run: [startCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.) O4 - HKLM..\Run: [unlockerAssistant] C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe () O4 - HKU\S-1-5-19..\Run: [sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\S-1-5-20..\Run: [sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\S-1-5-21-1538854459-2880547577-984557396-1000..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd) O4 - HKU\S-1-5-21-1538854459-2880547577-984557396-1000..\Run: [RocketDock] C:\Program Files (x86)\RocketDock\RocketDock.exe () O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] File not found O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] File not found O4 - Startup: C:\Users\Desi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk = C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O7 - HKU\S-1-5-21-1538854459-2880547577-984557396-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1538854459-2880547577-984557396-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSecurityTab = 1 O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL (Microsoft Corporation) O13 - gopher Prefix: missing O13 - gopher Prefix: missing O16 - DPF: {4C833081-D026-4FF8-968F-7EAB660D2FBA} http://download.livetv.ru/livetv.ru/cab/tvants.cab.rar (Reg Error: Key error.) O16 - DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} file:///C:/Program%20Files%20(x86)/AutoCAD%202002/AcDcToday.ocx (AcDcToday Control) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23) O16 - DPF: {AE563720-B4F5-11D4-A415-00108302FDFD} file:///C:/Program%20Files%20(x86)/AutoCAD%202002/InstBanr.ocx (NOXLATE-BANR) O16 - DPF: {C6637286-300D-11D4-AE0A-0010830243BD} file:///C:/Program%20Files%20(x86)/AutoCAD%202002/InstFred.ocx (InstaFred) O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O16 - DPF: {F281A59C-7B65-11D3-8617-0010830243BD} file:///C:/Program%20Files%20(x86)/AutoCAD%202002/AcPreview.ocx (AcPreview Control) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 193.151.80.14 193.151.80.3 O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found O18:64bit: - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) O18:64bit: - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010.10.02 13:04:24 | 000,000,051 | -H-- | M] () - D:\autorun.inf -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35:64bit: - HKLM\..comfile [open] -- "%1" %* O35:64bit: - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %* O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation) Drivers32:64bit: aux - wdmaud.drv (Microsoft Corporation) Drivers32:64bit: midi - wdmaud.drv (Microsoft Corporation) Drivers32:64bit: midimapper - midimap.dll (Microsoft Corporation) Drivers32:64bit: mixer - wdmaud.drv (Microsoft Corporation) Drivers32:64bit: msacm.imaadpcm - imaadp32.acm (Microsoft Corporation) Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS) Drivers32:64bit: msacm.msadpcm - msadp32.acm (Microsoft Corporation) Drivers32:64bit: msacm.msg711 - msg711.acm (Microsoft Corporation) Drivers32:64bit: msacm.msgsm610 - msgsm32.acm (Microsoft Corporation) Drivers32:64bit: MSVideo8 - VfWWDM32.dll (Microsoft Corporation) Drivers32:64bit: VIDC.FPS1 - frapsv64.dll (Beepa P/L) Drivers32:64bit: vidc.i420 - iyuv_32.dll (Microsoft Corporation) Drivers32:64bit: VIDC.IYUV - iyuv_32.dll (Microsoft Corporation) Drivers32:64bit: vidc.mrle - msrle32.dll (Microsoft Corporation) Drivers32:64bit: vidc.msvc - msvidc32.dll (Microsoft Corporation) Drivers32:64bit: VIDC.UYVY - msyuv.dll (Microsoft Corporation) Drivers32:64bit: VIDC.YUY2 - msyuv.dll (Microsoft Corporation) Drivers32:64bit: VIDC.YVU9 - tsbyuv.dll (Microsoft Corporation) Drivers32:64bit: VIDC.YVYU - msyuv.dll (Microsoft Corporation) Drivers32:64bit: wave - wdmaud.drv (Microsoft Corporation) Drivers32:64bit: wavemapper - msacm32.drv (Microsoft Corporation) Drivers32: aux - C:\Windows\SysWow64\wdmaud.drv (Microsoft Corporation) Drivers32: midi - C:\Windows\SysWow64\wdmaud.drv (Microsoft Corporation) Drivers32: midimapper - C:\Windows\SysWow64\midimap.dll (Microsoft Corporation) Drivers32: mixer - C:\Windows\SysWow64\wdmaud.drv (Microsoft Corporation) Drivers32: msacm.ac3acm - C:\Windows\SysWow64\ac3acm.acm (fccHandler) Drivers32: msacm.imaadpcm - C:\Windows\SysWow64\imaadp32.acm (Microsoft Corporation) Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS) Drivers32: msacm.lameacm - C:\Windows\SysWow64\lameACM.acm (http://www.mp3dev.org/) Drivers32: msacm.msadpcm - C:\Windows\SysWow64\msadp32.acm (Microsoft Corporation) Drivers32: msacm.msg711 - C:\Windows\SysWow64\msg711.acm (Microsoft Corporation) Drivers32: msacm.msgsm610 - C:\Windows\SysWow64\msgsm32.acm (Microsoft Corporation) Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.) Drivers32: VIDC.FFDS - C:\Windows\SysWow64\ff_vfw.dll () Drivers32: VIDC.FPS1 - C:\Windows\SysWow64\frapsvid.dll (Beepa P/L) Drivers32: vidc.i420 - C:\Windows\SysWow64\iyuv_32.dll (Microsoft Corporation) Drivers32: vidc.iyuv - C:\Windows\SysWow64\iyuv_32.dll (Microsoft Corporation) Drivers32: vidc.mrle - C:\Windows\SysWow64\msrle32.dll (Microsoft Corporation) Drivers32: vidc.msvc - C:\Windows\SysWow64\msvidc32.dll (Microsoft Corporation) Drivers32: vidc.tscc - C:\Windows\SysWow64\tsccvid.dll (TechSmith Corporation) Drivers32: vidc.uyvy - C:\Windows\SysWow64\msyuv.dll (Microsoft Corporation) Drivers32: VIDC.XVID - C:\Windows\SysWow64\xvidvfw.dll () Drivers32: vidc.yuy2 - C:\Windows\SysWow64\msyuv.dll (Microsoft Corporation) Drivers32: VIDC.YV12 - C:\Windows\SysWow64\yv12vfw.dll (www.helixcommunity.org) Drivers32: vidc.yvu9 - C:\Windows\SysWow64\tsbyuv.dll (Microsoft Corporation) Drivers32: vidc.yvyu - C:\Windows\SysWow64\msyuv.dll (Microsoft Corporation) Drivers32: wave - C:\Windows\SysWow64\wdmaud.drv (Microsoft Corporation) Drivers32: wavemapper - C:\Windows\SysWow64\msacm32.drv (Microsoft Corporation) ========== Files/Folders - Created Within 30 Days ========== [2011.05.08 00:02:26 | 000,580,608 | ---- | C] (OldTimer Tools) -- C:\Users\Desi\Desktop\OTL.exe [2011.05.07 22:08:01 | 000,000,000 | ---D | C] -- C:\Users\Desi\AppData\Roaming\Malwarebytes [2011.05.07 22:07:25 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys [2011.05.07 22:07:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware [2011.05.07 22:07:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2011.05.07 22:07:21 | 000,024,152 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys [2011.05.07 22:07:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware [2011.05.07 22:05:25 | 007,734,240 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Desi\Desktop\mbam-setup.exe [2011.05.07 21:53:52 | 000,880,640 | ---- | C] (binaerkombinat) -- C:\Users\Desi\Desktop\SkypeLauncher1.5.exe [2011.05.06 17:55:48 | 000,000,000 | ---D | C] -- C:\Users\Desi\AppData\Local\ApplicationHistory [2011.05.06 17:30:05 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\URTTEMP [2011.04.20 17:09:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Download Toolz [2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ] ========== Files - Modified Within 30 Days ========== [2011.05.08 00:02:39 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Users\Desi\Desktop\OTL.exe [2011.05.07 23:44:04 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2011.05.07 23:44:03 | 000,001,004 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1538854459-2880547577-984557396-1000UA.job [2011.05.07 22:39:59 | 000,625,664 | ---- | M] () -- C:\Users\Desi\Desktop\dds(2).scr [2011.05.07 22:39:31 | 000,625,664 | ---- | M] () -- C:\Users\Desi\Desktop\dds.scr [2011.05.07 22:32:21 | 000,016,944 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2011.05.07 22:32:21 | 000,016,944 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2011.05.07 22:24:16 | 000,000,890 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2011.05.07 22:24:04 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2011.05.07 22:23:58 | 1408,614,400 | -HS- | M] () -- C:\hiberfil.sys [2011.05.07 22:07:26 | 000,001,109 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2011.05.07 22:06:09 | 007,734,240 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Desi\Desktop\mbam-setup.exe [2011.05.07 21:54:07 | 000,880,640 | ---- | M] (binaerkombinat) -- C:\Users\Desi\Desktop\SkypeLauncher1.5.exe [2011.05.07 20:31:05 | 000,229,489 | ---- | M] () -- C:\Users\Desi\Desktop\618x346.jpg [2011.05.07 20:04:57 | 000,000,000 | ---- | M] () -- C:\Users\Desi\Desktop\skypelauncher-setup.exe [2011.05.07 08:58:33 | 000,000,069 | ---- | M] () -- C:\Windows\NeroDigital.ini [2011.05.07 08:44:01 | 000,000,952 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1538854459-2880547577-984557396-1000Core.job [2011.05.06 17:55:49 | 000,000,092 | ---- | M] () -- C:\Users\Desi\AppData\Local\fusioncache.dat [2011.05.06 17:55:26 | 000,801,294 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2011.05.06 17:55:26 | 000,661,354 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2011.05.06 17:55:26 | 000,125,544 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2011.05.01 08:32:01 | 000,000,842 | ---- | M] () -- C:\Users\Public\Desktop\Guitar Hero - World Tour.lnk [2011.04.29 11:02:19 | 000,000,648 | ---- | M] () -- C:\Users\Public\Desktop\Play Guitar Hero Aerosmith.lnk [2011.04.27 13:03:52 | 002,621,464 | ---- | M] () -- C:\snp2uvc-001.raw [2011.04.27 08:54:22 | 000,778,278 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2011.04.20 17:33:38 | 000,000,000 | ---- | M] () -- C:\Users\Desi\Documents\Vanessa Lane Is A Nympho.flv_ [2011.04.20 14:47:05 | 070,224,828 | ---- | M] () -- C:\Users\Desi\9a.rar [2011.04.20 14:43:05 | 012,650,154 | ---- | M] () -- C:\Users\Desi\Movie.rar [2011.04.19 19:08:26 | 000,012,288 | ---- | M] () -- C:\Users\Desi\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011.04.19 14:16:38 | 000,351,792 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT [2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ] ========== Files Created - No Company Name ========== [2011.05.07 22:39:57 | 000,625,664 | ---- | C] () -- C:\Users\Desi\Desktop\dds(2).scr [2011.05.07 22:39:19 | 000,625,664 | ---- | C] () -- C:\Users\Desi\Desktop\dds.scr [2011.05.07 22:07:26 | 000,001,109 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2011.05.07 20:31:05 | 000,229,489 | ---- | C] () -- C:\Users\Desi\Desktop\618x346.jpg [2011.05.07 20:04:57 | 000,000,000 | ---- | C] () -- C:\Users\Desi\Desktop\skypelauncher-setup.exe [2011.05.06 17:55:49 | 000,000,092 | ---- | C] () -- C:\Users\Desi\AppData\Local\fusioncache.dat [2011.05.06 12:43:53 | 000,269,474 | ---- | C] () -- C:\Users\Desi\Desktop\CRIM0001.JPG [2011.04.28 19:33:30 | 000,001,036 | ---- | C] () -- C:\Users\Desi\Desktop\FIFA10.exe - Пряк път.lnk [2011.04.20 17:10:48 | 000,000,000 | ---- | C] () -- C:\Users\Desi\Documents\Vanessa Lane Is A Nympho.flv_ [2011.04.20 14:41:46 | 070,224,828 | ---- | C] () -- C:\Users\Desi\9a.rar [2011.04.20 14:41:46 | 012,650,154 | ---- | C] () -- C:\Users\Desi\Movie.rar [2011.04.04 13:49:41 | 000,021,840 | ---- | C] () -- C:\Windows\SysWow64\SIntfNT.dll [2011.04.04 13:49:41 | 000,017,212 | ---- | C] () -- C:\Windows\SysWow64\SIntf32.dll [2011.04.04 13:49:41 | 000,012,067 | ---- | C] () -- C:\Windows\SysWow64\SIntf16.dll [2011.03.17 19:48:17 | 000,189,248 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe [2011.03.17 19:48:13 | 000,075,136 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe [2011.02.26 20:51:08 | 000,033,454 | ---- | C] () -- C:\Users\Desi\AppData\Roaming\Desilog.dat [2011.01.20 17:15:02 | 001,970,176 | ---- | C] () -- C:\Windows\SysWow64\d3dx9.dll [2011.01.01 02:08:24 | 000,000,745 | ---- | C] () -- C:\Windows\CoD.INI [2010.11.21 14:48:56 | 000,001,025 | ---- | C] () -- C:\Windows\SysWow64\sysprs7.dll [2010.11.21 14:48:56 | 000,000,205 | ---- | C] () -- C:\Windows\SysWow64\lsprst7.dll [2010.09.27 19:33:14 | 000,801,294 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2010.07.15 23:50:34 | 000,000,535 | ---- | C] () -- C:\Windows\ODBCINST.INI [2010.07.15 23:50:34 | 000,000,288 | ---- | C] () -- C:\Windows\ODBC.INI [2010.07.01 20:49:18 | 000,165,376 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll [2010.07.01 20:49:17 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.. Extras OTL Extras logfile created on: 8.5.2011 г. 00:03:51 - Run 1 OTL by OldTimer - Version 3.2.22.3 Folder = C:\Users\Desi\Desktop 64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000402 | Country: Bulgaria | Language: BGR | Date Format: d.M.yyyy 'г.' 2,00 Gb Total Physical Memory | 0,00 Gb Available Physical Memory | 20,00% Memory free 3,00 Gb Paging File | 2,00 Gb Available in Paging File | 48,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 48,83 Gb Total Space | 7,86 Gb Free Space | 16,09% Space Free | Partition Type: NTFS Drive D: | 249,25 Gb Total Space | 166,78 Gb Free Space | 66,91% Space Free | Partition Type: NTFS Computer Name: DESI-PC | User Name: Desi | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days ========== Extra Registry (SafeList) ========== ========== File Associations ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .html[@ = Opera.HTML] -- Reg Error: Key error. File not found .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = Opera.HTML] -- Reg Error: Key error. File not found [HKEY_USERS\S-1-5-21-1538854459-2880547577-984557396-1000\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) ========== Shell Spawning ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* File not found cmdfile [open] -- "%1" %* File not found comfile [open] -- "%1" %* File not found exefile [open] -- "%1" %* File not found helpfile [open] -- Reg Error: Key error. http [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" File not found https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" File not found inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* File not found regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" File not found scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l File not found scrfile [open] -- "%1" /S File not found txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 File not found Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. http [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Directory [Winamp.Bookmark] -- "C:\Program Files (x86)\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files (x86)\Winamp\winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files (x86)\Winamp\winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) ========== Security Center Settings ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] ========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 ========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files\PotPlayer64\PotPlayerMini64.exe" = C:\Program Files\PotPlayer64\PotPlayerMini64.exe:*:Enabled:Daum PotPlayer -- () "C:\Program Files\PotPlayer64\PotPlayerMini64.exe" = C:\Program Files\PotPlayer64\PotPlayerMini64.exe:*:Enabled:Daum PotPlayer -- () ========== HKEY_LOCAL_MACHINE Uninstall List ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0826F9E4-787E-481D-83E0-BC6A57B056D5}" = Microsoft SQL Server VSS Writer "{13AC856A-A22D-FCE4-B451-ED692DB1CAC8}" = ccc-utility64 "{1735EBA8-D6B2-4E46-91CE-1426A55B4290}_is1" = Daum PotPlayer 1.4.20879 (64-bit) BG "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{57B012C9-5EAD-441B-9925-6B560B543D87}" = ESET NOD32 Antivirus "{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}" = Microsoft Visual C++ 2005 Redistributable (x64) "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2007 "{90120000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007 "{90A80D89-A0E4-33C1-B13D-B93CB3496867}" = Microsoft Visual Studio 2008 Remote Debugger Light (x64) - ENU "{C5DBD2A7-041C-4127-6EC6-F163B94611D0}" = ATI Catalyst Install Manager "{C79A7EAB-9D6F-4072-8A6D-F8F54957CD93}" = Microsoft SQL Server 2008 Native Client "{D1EF69B7-7A97-40FC-9AF1-6D6656FF874F}" = ATI AVIVO64 Codecs "{DFB3AD2B-4EE2-3077-BF1D-3CA164BC5336}" = Microsoft Windows SDK for Visual Studio 2008 SP1 Express Tools for .NET Framework - enu "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "{F5C819A5-E068-4f7d-B91A-1BD18702AFFB}" = Microsoft Windows SDK for Visual Studio 2008 SP1 Express Tools for Win32 "Adobe Flash Player ActiveX 64" = Adobe Flash Player 10 ActiveX 64-bit "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft Visual Studio 2008 Remote Debugger Light (x64) - ENU" = Microsoft Visual Studio 2008 Remote Debugger Light (x64) - ENU "SAMSUNG Mobile Modem" = SAMSUNG Mobile Modem Driver Set "Samsung Mobile phone USB driver Drive" = Samsung Mobile phone USB driver Drive Software "SAMSUNG Mobile USB Modem" = SAMSUNG Mobile USB Modem Software "SAMSUNG Mobile USB Modem 1.0" = SAMSUNG Mobile USB Modem 1.0 Software "SynTPDeinstKey" = Synaptics Pointing Device Driver "Unlocker" = Unlocker 1.9.0-x64 "USB 2.0 1.3M UVC WebCam" = USB 2.0 1.3M UVC WebCam "WinRAR archiver" = WinRAR archiver [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00C5F4F4-62F9-40D7-8000-AD8A9CD0C669}" = Microsoft Games for Windows - LIVE Redistributable "{0C19D563-5F25-4621-BF10-01F741BD283F}" = Microsoft SQL Server Compact 3.5 SP1 Design Tools English "{11202615-E557-4ECF-9B86-F59C81E52909}" = FIFA 10 "{196E77C5-F524-4B50-BD1A-2C21EEE9B8F7}" = Microsoft SQL Server 2008 Common Files "{1E47EF59-E939-A9F1-D29B-0B3FC952A0AF}" = Catalyst Control Center Localization All "{236BB7C4-4419-42FD-0409-1E257A25E34D}" = Adobe Photoshop CS2 "{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java 6 Update 23 "{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Atheros Client Installation Program "{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}" = Microsoft Games for Windows - LIVE "{342D4AD7-EC4C-4EC8-AEA6-E70F5905A490}" = SQL Server System CLR Types "{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 "{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX "{453E989A-CD2B-1562-01FD-0C8F3E23A2AD}" = ccc-core-static "{46F42615-BA31-45A0-BE10-2D2119749E95}" = Guitar Hero: Aerosmith "{4815BD99-96A4-49FE-A885-DCF06E9E4E78}" = Microsoft SQL Server 2008 Database Engine Shared "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4A6F34E2-09E5-4616-B227-4A26A488A6F9}" = Microsoft SQL Server 2008 Common Files "{53FA9A9F-3C19-4D43-AD6B-DEF365D469BA}" = Camtasia Studio 7 "{58721EC3-8D4E-4B79-BC51-1054E2DDCD10}" = Microsoft SQL Server 2008 Database Engine Services "{62FC357F-022B-4F90-9376-7A0DF9FBE7A1}" = Sonic Foundry Sound Forge 6.0 "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{786C5747-1033-0000-B58E-000000000001}" = Adobe Stock Photos 1.0 "{78DDE3AC-B0EF-40D3-ADCA-7C002F9E11D1}_is1" = Guitar Hero - World Tour v1.0 "{8059E364-A2B7-4B1E-B95F-2D2DD37C62FA}" = viewet "{847E0734-4457-4B48-BF49-998D1CF2CFA1}_is1" = Free MP3 Cutter 1.01 "{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8EDBA74D-0686-4C99-BFDD-F894678E5B39}" = Adobe Common File Installer "{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007 "{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007 "{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007 "{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007 "{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007 "{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007 "{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007 "{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007 "{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007 "{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007 "{90120000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2007 "{90120000-0114-0409-0000-0000000FF1CE}" = Microsoft Office Groove Setup Metadata MUI (English) 2007 "{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007 "{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007 "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9D6D76A6-4328-49E8-97A7-531A74841DA5}" = Microsoft SQL Server 2008 Setup Support Files (English) "{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AB7ED389-33A8-B46A-4A8A-F685EF451A5C}" = Catalyst Control Center Graphics Previews Vista "{AC76BA86-7AD7-1026-7B44-A94000000001}" = Adobe Reader 9.4.3 - Bulgarian "{B5153233-9AEE-4CD4-9D2C-4FAAC870DBE2}" = Microsoft SQL Server 2008 Database Engine Services "{B74D4E10-1033-0000-0000-000000000001}" = Adobe Bridge 1.0 "{B9C11A0C-C3FF-FCB2-1BFA-B30400FAFF96}" = Catalyst Control Center InstallProxy "{C25215FC-5900-48B0-B93C-8D3379027312}" = PASW Statistics 18 "{C688457E-03FD-4941-923B-A27F4D42A7DD}" = Microsoft SQL Server 2008 Browser "{C965F01C-76EA-4BD7-973E-46236AE312D7}" = Sql Server Customer Experience Improvement Program "{CAA36239-C550-451E-B645-9CFC946F6144}" = PowerArchiver 2010 "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1" = Rapture3D 2.3.22 Game "{D3D54F3E-C5C3-443D-978F-87A72E5616E8}" = ATK Generic Function Service "{DA41F9E9-B878-467F-95E7-27E4D1943533}" = Multimedia Card Reader "{DD622B1D-A78E-3FE8-9C8C-246F5764B0D0}" = Microsoft Visual Basic 2008 Express Edition with SP1 - ENU "{E59113EB-0285-4BFD-A37A-B79EAC6B8F4B}" = Microsoft SQL Server Compact 3.5 SP1 English "{E633D396-5188-4E9D-8F6B-BFB8BF3467E8}" = Skype™ 5.1 "{E9787678-1033-0000-8E67-000000000001}" = Adobe Help Center 1.0 "{EBA29752-DDD2-4B62-B2E3-9841F92A3E3A}" = Samsung PC Studio 3 USB Driver Installer "{F1DC7648-8623-442F-92B7-E118DF61872E}" = Microsoft SQL Server 2008 RsFx Driver "{F3494AB6-6900-41C6-AF57-823626827ED8}" = Microsoft SQL Server 2008 Database Engine Shared "{F5E87B12-3C27-452F-8E78-21D42164FD83}" = Microsoft SQL Server 2008 Management Objects "{F68D9C4D-DC60-D021-8B2D-CD14E6BD43EA}" = CCC Help English "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0409-1E257A25E34D}" = Adobe Photoshop CS2 "Akamai" = Akamai NetSession Interface "AnswerWorks" = AnswerWorks Runtime "Autodesk Express Viewer" = Autodesk Express Viewer "CdaC13Ba" = SafeCast Shared Components "Counter-Strike" = Counter-Strike 1.0 "ENTERPRISE" = Microsoft Office Enterprise 2007 "FormatFactory" = FormatFactory 2.30 "Fraps" = Fraps (remove only) "KLiteCodecPack_is1" = K-Lite Codec Pack 6.0.4 (Full) "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "McAfee Security Scan" = McAfee Security Scan Plus "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1 "Microsoft SQL Server 10" = Microsoft SQL Server 2008 "Microsoft SQL Server 10 Release" = Microsoft SQL Server 2008 "Microsoft Visual Basic 2008 Express Edition with SP1 - ENU" = Microsoft Visual Basic 2008 Express Edition with SP1 - ENU "Mozilla Firefox (3.6.17)" = Mozilla Firefox (3.6.17) "MV2Player" = MV2Player (remove only) "Nero8Lite_is1" = Nero 8 Micro "OpenAL" = OpenAL "PunkBusterSvc" = PunkBuster Services "RocketDock_is1" = RocketDock 1.3.5 "SpeedFan" = SpeedFan (remove only) "TeamViewer 3" = TeamViewer 3 "TeamViewer 5" = TeamViewer 5 "TVAnts ActiveX Control 1.0" = TVAnts ActiveX Control 1.0 "Unlocker" = Unlocker 1.9.0 "USB Mass Storage Filter Driver" = Multimedia Card Reader "USB2.0 1.3M UVC WebCam" = USB2.0 1.3M UVC WebCam "uTorrent" = µTorrent "Veetle TV" = Veetle TV 0.9.18 "Visual Basic 6.0 Professional Edition" = Microsoft Visual Basic 6.0 Professional Edition "VLC media player" = VLC media player 1.1.5 "WebPost" = Microsoft Web Publishing Wizard 1.53 "Winamp" = Winamp "Worms 4 Mayhem_is1" = Worms 4 Mayhem "xampp" = XAMPP 1.6.4 ========== HKEY_USERS Uninstall List ========== [HKEY_USERS\S-1-5-21-1538854459-2880547577-984557396-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Google Chrome" = Google Chrome "Power Loader" = Power Challenge Game Plugin "WM Recorder 14" = WM Recorder 14 ========== Last 10 Event Log Errors ========== [ Application Events ] Error - 27.4.2011 г. 02:25:20 | Computer Name = Desi-PC | Source = SideBySide | ID = 16842815 Description = Activation context generation failed for "c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll".Error in manifest or policy file "c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll" on line 3. The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid. Error - 28.4.2011 г. 12:13:49 | Computer Name = Desi-PC | Source = SideBySide | ID = 16842832 Description = Activation context generation failed for "C:\Users\Desi\Downloads\SoftonicDownloader_for_cheat-engine.exe".Error in manifest or policy file "" on line . A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest. Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest. Error - 29.4.2011 г. 04:02:25 | Computer Name = Desi-PC | Source = Application Error | ID = 1000 Description = Име на приложение с грешки: Guitar Hero Aerosmith.exe, версия: 1.0.1.9078, времево клеймо: 0x48ab3e5f Име на модул с грешки: Guitar Hero Aerosmith.exe, версия: 1.0.1.9078, времево клеймо: 0x48ab3e5f Код на изключение: 0xc0000005 Отместване на грешка: 0x00253d45 ИД на процес на грешка: 0xd8 Начален час на приложението с грешки: 0x01cc0643c3564825 Път на приложението с грешки: D:\Install games\GHA\Guitar Hero Aerosmith.exe Път на модула с грешки: D:\Install games\GHA\Guitar Hero Aerosmith.exe ИД на доклад: 04b636b8-7237-11e0-93ae-0023546b4cc2 Error - 29.4.2011 г. 04:46:19 | Computer Name = Desi-PC | Source = SideBySide | ID = 16842815 Description = Activation context generation failed for "c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll".Error in manifest or policy file "c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll" on line 3. The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid. Error - 1.5.2011 г. 02:13:50 | Computer Name = Desi-PC | Source = Application Hang | ID = 1002 Description = The program hl.exe version 1.1.1.1 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 6e0 Start Time: 01cc07c6912ed9dc Termination Time: 189 Application Path: C:\Program Files (x86)\Counter-Strike 1.6\hl.exe Report Id: 1837ae3d-73ba-11e0-8e9e-0023546b4cc2 Error - 1.5.2011 г. 02:15:23 | Computer Name = Desi-PC | Source = Application Hang | ID = 1002 Description = The program hl.exe version 1.1.1.1 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 124c Start Time: 01cc07c6f23c4af0 Termination Time: 185 Application Path: C:\Program Files (x86)\Counter-Strike 1.6\hl.exe Report Id: 643cec69-73ba-11e0-8e9e-0023546b4cc2 Error - 6.5.2011 г. 13:23:43 | Computer Name = Desi-PC | Source = SideBySide | ID = 16842815 Description = Activation context generation failed for "c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll".Error in manifest or policy file "c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll" on line 3. The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid. Error - 7.5.2011 г. 01:54:52 | Computer Name = Desi-PC | Source = Application Error | ID = 1000 Description = Име на приложение с грешки: winamp.exe, версия: 5.5.7.2792, времево клеймо: 0x4b2acd71 Име на модул с грешки: mp4v.w5s, версия: 0.0.0.0, времево клеймо: 0x4b2acd7b Код на изключение: 0xc0000005 Отместване на грешка: 0x00002870 ИД на процес на грешка: 0x1014 Начален час на приложението с грешки: 0x01cc0c7b3dc168e6 Път на приложението с грешки: C:\Program Files (x86)\Winamp\winamp.exe Път на модула с грешки: C:\Program Files (x86)\Winamp\System\mp4v.w5s ИД на доклад: 860b83f7-786e-11e0-bfec-0023546b4cc2 Error - 7.5.2011 г. 13:05:51 | Computer Name = Desi-PC | Source = Application Hang | ID = 1002 Description = The program firefox.exe version 1.9.2.4127 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 9d4 Start Time: 01cc0cd8c33907a8 Termination Time: 70 Application Path: C:\Program Files (x86)\Mozilla Firefox\firefox.exe Report Id: 3af36f98-78cc-11e0-a9bc-0023546b4cc2 Error - 7.5.2011 г. 13:05:52 | Computer Name = Desi-PC | Source = Application Error | ID = 1000 Description = Име на приложение с грешки: plugin-container.exe, версия: 1.9.2.4127, времево клеймо: 0x4daf62c6 Име на модул с грешки: ntdll.dll, версия: 6.1.7600.20826, времево клеймо: 0x4cc7a929 Код на изключение: 0xc0000005 Отместване на грешка: 0x000222d2 ИД на процес на грешка: 0x12ac Начален час на приложението с грешки: 0x01cc0cd8c8f4f5d0 Път на приложението с грешки: C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe Път на модула с грешки: C:\Windows\SysWOW64\ntdll.dll ИД на доклад: 43011989-78cc-11e0-a9bc-0023546b4cc2 [ Media Center Events ] Error - 25.4.2010 г. 15:07:27 | Computer Name = Desi-PC | Source = MCUpdate | ID = 0 Description = 10:07:27 PM - Failed to retrieve NetTV (Error: The operation has timed out) Error - 26.4.2010 г. 15:25:27 | Computer Name = Desi-PC | Source = MCUpdate | ID = 0 Description = 10:25:27 PM - Failed to retrieve Directory (Error: The underlying connection was closed: An unexpected error occurred on a receive.) Error - 26.4.2010 г. 15:28:04 | Computer Name = Desi-PC | Source = MCUpdate | ID = 0 Description = 10:28:03 PM - Failed to retrieve SportsSchedule (Error: The underlying connection was closed: An unexpected error occurred on a receive.) Error - 27.4.2010 г. 02:58:33 | Computer Name = Desi-PC | Source = MCUpdate | ID = 0 Description = 9:58:32 AM - Error connecting to the internet. 9:58:32 AM - Unable to contact server.. Error - 26.5.2010 г. 02:58:48 | Computer Name = Desi-PC | Source = MCUpdate | ID = 0 Description = 9:58:47 AM - Error connecting to the internet. 9:58:47 AM - Unable to contact server.. Error - 31.5.2010 г. 01:53:28 | Computer Name = Desi-PC | Source = MCUpdate | ID = 0 Description = 8:53:28 AM - Error connecting to the internet. 8:53:28 AM - Unable to contact server.. Error - 1.6.2010 г. 03:12:12 | Computer Name = Desi-PC | Source = MCUpdate | ID = 0 Description = 10:12:11 AM - Error connecting to the internet. 10:12:12 AM - Unable to contact server.. Error - 1.6.2010 г. 09:34:43 | Computer Name = Desi-PC | Source = MCUpdate | ID = 0 Description = 4:34:43 PM - Error connecting to the internet. 4:34:43 PM - Unable to contact server.. Error - 1.6.2010 г. 10:34:56 | Computer Name = Desi-PC | Source = MCUpdate | ID = 0 Description = 5:34:55 PM - Error connecting to the internet. 5:34:55 PM - Unable to contact server.. Error - 1.7.2010 г. 13:20:36 | Computer Name = Desi-PC | Source = MCUpdate | ID = 0 Description = 8:20:36 PM - Error connecting to the internet. 8:20:36 PM - Unable to contact server.. [ System Events ] Error - 7.5.2011 г. 12:02:26 | Computer Name = Desi-PC | Source = cdrom | ID = 262151 Description = The device, \Device\CdRom0, has a bad block. Error - 7.5.2011 г. 12:02:26 | Computer Name = Desi-PC | Source = cdrom | ID = 262151 Description = The device, \Device\CdRom0, has a bad block. Error - 7.5.2011 г. 12:02:26 | Computer Name = Desi-PC | Source = cdrom | ID = 262151 Description = The device, \Device\CdRom0, has a bad block. Error - 7.5.2011 г. 12:02:26 | Computer Name = Desi-PC | Source = cdrom | ID = 262151 Description = The device, \Device\CdRom0, has a bad block. Error - 7.5.2011 г. 12:02:26 | Computer Name = Desi-PC | Source = cdrom | ID = 262151 Description = The device, \Device\CdRom0, has a bad block. Error - 7.5.2011 г. 12:02:26 | Computer Name = Desi-PC | Source = cdrom | ID = 262151 Description = The device, \Device\CdRom0, has a bad block. Error - 7.5.2011 г. 12:02:26 | Computer Name = Desi.. checkup.txt 22 Results of screen317's Security Check version 0.99.10 Windows 7 (UAC is disabled!) Internet Explorer 8 `````````````````````````````` Antivirus/Firewall Check: Windows Firewall Enabled! McAfee Security Scan Plus WMI entry may not exist for antivirus; attempting automatic update. ``````````````````````````````` Anti-malware/Other Utilities Check: Malwarebytes' Anti-Malware Java 6 Update 23 Out of date Java installed! Adobe Flash Player 10.1.102.64 Adobe Reader 9.4.3 - Bulgarian Out of date Adobe Reader installed! ```````````````````````````````` Process Check: objlist.exe by Laurent ``````````End of Log```````````` Malwarebytes' Anti-Malware 1.50.1.1100 www.malwarebytes.org Database version: 6528 Windows 6.1.7600 Internet Explorer 8.0.7600.16385 8.5.2011 г. 00:26:48 mbam-log-2011-05-08 (00-26-47).txt Scan type: Quick scan Objects scanned: 164348 Time elapsed: 6 minute(s), 59 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 0 Registry Values Infected: 0 Registry Data Items Infected: 0 Folders Infected: 0 Files Infected: 0 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: (No malicious items detected) Registry Values Infected: (No malicious items detected) Registry Data Items Infected: (No malicious items detected) Folders Infected: (No malicious items detected) Files Infected: (No malicious items detected)
  3. Malwarebytes' Anti-Malware 1.50.1.1100 www.malwarebytes.org Database version: 6528 Windows 6.1.7600 Internet Explorer 8.0.7600.16385 7.5.2011 г. 22:21:03 mbam-log-2011-05-07 (22-21-03).txt Scan type: Quick scan Objects scanned: 164818 Time elapsed: 11 minute(s), 24 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 1 Registry Values Infected: 1 Registry Data Items Infected: 0 Folders Infected: 0 Files Infected: 3 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: HKEY_CURRENT_USER\SOFTWARE\AdTools, Inc. (Adware.AdTools) -> Quarantined and deleted successfully. Registry Values Infected: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Microsoft Configuration (Backdoor.Agent.Gen) -> Value: Microsoft Configuration -> Quarantined and deleted successfully. Registry Data Items Infected: (No malicious items detected) Folders Infected: (No malicious items detected) Files Infected: c:\Users\Desi\AppData\Local\Temp\icreinstall\videotomp3setup.exe (Adware.Agent) -> Quarantined and deleted successfully. c:\Users\Desi\downloads\profilecrazeinstaller.exe (Trojan.Backdoor) -> Quarantined and deleted successfully. c:\Users\Desi\downloads\setupgamevance.exe (PUP.Gamevance) -> Quarantined and deleted successfully. DDS . DDS (Ver_11-03-05.01) - NTFS_AMD64 Run by Desi at 22:40:16,87 on бкЎ 07.05.2011 Ј. Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_23 Microsoft Windows 7 Ultimate 6.1.7600.0.1251.359.1033.18.1791.725 [GMT 3:00] . AV: ESET NOD32 Antivirus 4.0 *Enabled/Updated* {CB0F8167-5331-BA19-698E-64816B6801A5} SP: ESET NOD32 Antivirus 4.0 *Enabled/Updated* {706E6083-750B-B597-533E-5FF310EF4B18} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . ============== Running Processes =============== . C:\Windows\system32\wininit.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\system32\atiesrxx.exe C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\system32\atieclxx.exe C:\Program Files\ATKGFNEX\GFNEXSrv.exe C:\Windows\system32\Dwm.exe C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Windows\Explorer.EXE C:\Windows\system32\taskhost.exe C:\Windows\SysWOW64\svchost.exe -k Akamai c:\xampp\apache\bin\apache.exe C:\Windows\SysWOW64\drivers\CDAC11BA.EXE C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe c:\xampp\mysql\bin\mysqld-nt.exe C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe C:\Windows\SysWOW64\PnkBstrA.exe C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe C:\Windows\system32\svchost.exe -k imgsvc C:\Program Files (x86)\TeamViewer3\TeamViewer_Service.exe C:\Program Files\Synaptics\SynTP\SynTPHelper.exe C:\Program Files (x86)\RocketDock\RocketDock.exe C:\Program Files (x86)\TeamViewer\Version5\TeamViewer_Service.exe C:\Program Files (x86)\Skype\Phone\Skype.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files (x86)\McAfee Security Scan\2.0.181\SSScheduler.exe C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe C:\xampp\apache\bin\apache.exe C:\Windows\system32\SearchIndexer.exe C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Windows\system32\WUDFHost.exe C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Windows\System32\svchost.exe -k secsvcs C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Program Files (x86)\TeamViewer3\TeamViewer.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe C:\Windows\explorer.exe C:\Users\Desi\Desktop\dds.scr C:\Windows\system32\conhost.exe C:\Windows\system32\wbem\wmiprvse.exe . ============== Pseudo HJT Report =============== . uStart Page = hxxp://youtube.com/ uInternet Settings,ProxyServer = 109.123.111.99:80 uURLSearchHooks: H - No File mWinlogon: Userinit=userinit.exe, BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll TB: {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - No File uRun: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun uRun: [Google Update] "C:\Users\Desi\AppData\Local\Google\Update\GoogleUpdate.exe" /c uRun: [RocketDock] "C:\Program Files (x86)\RocketDock\RocketDock.exe" uRun: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized uRun: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun mRun: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" mRun: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" mRun: [unlockerAssistant] "C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe" StartupFolder: C:\Users\Desi\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\ADOBEG~1.LNK - C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\MCAFEE~1.LNK - C:\Program Files (x86)\McAfee Security Scan\2.0.181\SSScheduler.exe uPolicies-explorer: NoSecurityTab = 1 (0x1) mPolicies-explorer: NoActiveDesktop = 1 (0x1) mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0) mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3) mPolicies-system: EnableLUA = 0 (0x0) mPolicies-system: EnableUIADesktopToggle = 0 (0x0) mPolicies-system: PromptOnSecureDesktop = 0 (0x0) IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL DPF: {78AF2F24-A9C3-11D3-BF8C-0060B0FCC122} - file:///C:/Program%20Files%20(x86)/AutoCAD%202002/AcDcToday.ocx DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab DPF: {AE563720-B4F5-11D4-A415-00108302FDFD} - file:///C:/Program%20Files%20(x86)/AutoCAD%202002/InstBanr.ocx DPF: {C6637286-300D-11D4-AE0A-0010830243BD} - file:///C:/Program%20Files%20(x86)/AutoCAD%202002/InstFred.ocx DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab DPF: {F281A59C-7B65-11D3-8617-0010830243BD} - file:///C:/Program%20Files%20(x86)/AutoCAD%202002/AcPreview.ocx Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL mASetup: {PE0O0826-CY11-JA5W-838G-C3353E65153W} - C:\Windows\system32\vb2008source.exe Restart mRun-x64: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice mRun-x64: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe . ================= FIREFOX =================== . FF - ProfilePath - C:\Users\Desi\AppData\Roaming\Mozilla\Firefox\Profiles\54urv0b7.default\ FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2776682&SearchSource=3&q={searchTerms} FF - prefs.js: browser.startup.homepage - hxxp://sharecash.org/members/home.php FF - component: C:\Users\Desi\AppData\Roaming\Mozilla\Firefox\Profiles\54urv0b7.default\extensions\{51a86bb3-6602-4c85-92a5-130ee4864f13}\components\FFExternalAlert.dll FF - component: C:\Users\Desi\AppData\Roaming\Mozilla\Firefox\Profiles\54urv0b7.default\extensions\{51a86bb3-6602-4c85-92a5-130ee4864f13}\components\RadioWMPCore.dll FF - plugin: C:\Program Files (x86)\Google\Update\1.2.183.39\npGoogleOneClick8.dll FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.53\npGoogleUpdate3.dll FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll FF - plugin: C:\Program Files (x86)\Veetle\Player\npvlc.dll FF - plugin: C:\Program Files (x86)\Veetle\plugins\npVeetle.dll FF - plugin: C:\Program Files (x86)\Veetle\VLCBroadcast\npvbp.dll FF - plugin: C:\Users\Desi\AppData\Local\Google\Update\1.3.21.53\npGoogleUpdate3.dll FF - plugin: C:\Users\Desi\AppData\LocalLow\POWERC~1\nppowerloader.dll FF - plugin: C:\Users\Desi\AppData\Roaming\Mozilla\Firefox\Profiles\54urv0b7.default\extensions\[email protected]\plugins\npTVUAx.dll FF - plugin: C:\Windows\system32\TVUAx\npTVUAx.dll FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} FF - Ext: QuickStores-Toolbar: [email protected] - C:\Program Files (x86)\Mozilla Firefox\extensions\[email protected] FF - Ext: Java Console: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} FF - Ext: TVU Web Player: [email protected] - %profile%\extensions\[email protected] FF - Ext: Download Statusbar: {D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389} - %profile%\extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389} FF - Ext: FoxTab: {ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a} - %profile%\extensions\{ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a} FF - Ext: DownloadHelper: {b9db16a4-6edc-47ec-a1f4-b86292ed211d} - %profile%\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} FF - Ext: Greasemonkey: {e4a8a97b-f2ed-450b-b12d-ee082ba24781} - %profile%\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781} FF - Ext: Easy Youtube Video Downloader: {c0c9a2c7-2e5c-4447-bc53-97718bc91e1b} - %profile%\extensions\{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b} FF - Ext: BrotherSoft Extreme Community Toolbar: {51a86bb3-6602-4c85-92a5-130ee4864f13} - %profile%\extensions\{51a86bb3-6602-4c85-92a5-130ee4864f13} . ============= SERVICES / DRIVERS =============== . . =============== Created Last 30 ================ . 2011-05-07 19:08:01 -------- d-----w- C:\Users\Desi\AppData\Roaming\Malwarebytes 2011-05-07 19:07:25 38224 ----a-w- C:\Windows\SysWow64\drivers\mbamswissarmy.sys 2011-05-07 19:07:25 -------- d-----w- C:\PROGRA~3\Malwarebytes 2011-05-07 19:07:21 24152 ----a-w- C:\Windows\System32\drivers\mbam.sys 2011-05-07 19:07:21 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware 2011-05-06 14:55:48 -------- d-----w- C:\Users\Desi\AppData\Local\ApplicationHistory 2011-05-06 14:30:05 -------- d-----w- C:\Windows\SysWow64\URTTEMP 2011-05-06 06:34:26 8802128 ----a-w- C:\PROGRA~3\Microsoft\Windows Defender\Definition Updates\{B233E5A5-F303-4509-A78E-7EA39D69B01E}\mpengine.dll 2011-04-27 13:38:17 2870272 ----a-w- C:\Windows\explorer.exe 2011-04-27 13:38:15 2614784 ----a-w- C:\Windows\SysWow64\explorer.exe 2011-04-27 13:38:14 442880 ----a-w- C:\Windows\SysWow64\XpsPrint.dll 2011-04-27 13:38:13 662528 ----a-w- C:\Windows\System32\XpsPrint.dll 2011-04-18 16:29:14 476160 ----a-w- C:\Windows\System32\XpsGdiConverter.dll 2011-04-18 16:29:13 288256 ----a-w- C:\Windows\SysWow64\XpsGdiConverter.dll 2011-04-18 16:29:05 612352 ----a-w- C:\Windows\System32\vbscript.dll 2011-04-18 16:29:04 428032 ----a-w- C:\Windows\SysWow64\vbscript.dll 2011-04-18 16:26:22 286720 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys 2011-04-18 16:25:59 267776 ----a-w- C:\Windows\System32\FXSCOVER.exe . ==================== Find3M ==================== . 2011-04-07 11:29:27 21840 ----atw- C:\Windows\SysWow64\SIntfNT.dll 2011-04-07 11:29:27 17212 ----atw- C:\Windows\SysWow64\SIntf32.dll 2011-04-07 11:29:27 12067 ----atw- C:\Windows\SysWow64\SIntf16.dll 2011-03-17 16:48:17 189248 ----a-w- C:\Windows\SysWow64\PnkBstrB.exe 2011-03-17 16:48:13 75136 ----a-w- C:\Windows\SysWow64\PnkBstrA.exe 2011-03-11 06:25:53 1685888 ----a-w- C:\Windows\System32\drivers\ntfs.sys 2011-03-11 06:23:13 187264 ----a-w- C:\Windows\System32\drivers\storport.sys 2011-03-11 06:23:06 166272 ----a-w- C:\Windows\System32\drivers\nvstor.sys 2011-03-11 06:23:06 148352 ----a-w- C:\Windows\System32\drivers\nvraid.sys 2011-03-11 06:23:00 410496 ----a-w- C:\Windows\System32\drivers\iaStorV.sys 2011-03-11 06:22:41 107904 ----a-w- C:\Windows\System32\drivers\amdsata.sys 2011-03-11 06:22:40 27008 ----a-w- C:\Windows\System32\drivers\amdxata.sys 2011-03-11 06:19:26 1395712 ----a-w- C:\Windows\System32\mfc42.dll 2011-03-11 06:19:26 1359872 ----a-w- C:\Windows\System32\mfc42u.dll 2011-03-11 06:18:20 2566144 ----a-w- C:\Windows\System32\esent.dll 2011-03-11 06:15:54 96768 ----a-w- C:\Windows\System32\fsutil.exe 2011-03-11 05:40:24 1164288 ----a-w- C:\Windows\SysWow64\mfc42u.dll 2011-03-11 05:40:24 1137664 ----a-w- C:\Windows\SysWow64\mfc42.dll 2011-03-11 05:39:35 1686016 ----a-w- C:\Windows\SysWow64\esent.dll 2011-03-11 05:37:34 74240 ----a-w- C:\Windows\SysWow64\fsutil.exe 2011-03-08 06:14:30 976896 ----a-w- C:\Windows\System32\inetcomm.dll 2011-03-08 05:38:13 740864 ----a-w- C:\Windows\SysWow64\inetcomm.dll 2011-03-04 06:17:25 135168 ----a-w- C:\Windows\apppatch\AppPatch64\AcXtrnal.dll 2011-03-04 06:17:24 347648 ----a-w- C:\Windows\apppatch\AppPatch64\AcLayers.dll 2011-03-03 06:17:10 182272 ----a-w- C:\Windows\System32\dnsrslvr.dll 2011-03-03 06:14:38 30208 ----a-w- C:\Windows\System32\dnscacheugc.exe 2011-03-03 05:27:30 28672 ----a-w- C:\Windows\SysWow64\dnscacheugc.exe 2011-03-03 03:58:32 3133440 ----a-w- C:\Windows\System32\win32k.sys 2011-03-02 11:35:42 0 ----a-w- C:\Users\Desi\Defiant Map Pack DLC.exe 2011-02-24 06:29:15 1197056 ----a-w- C:\Windows\System32\wininet.dll 2011-02-24 06:24:57 57856 ----a-w- C:\Windows\System32\licmgr10.dll 2011-02-24 05:32:44 981504 ----a-w- C:\Windows\SysWow64\wininet.dll 2011-02-24 05:30:16 44544 ----a-w- C:\Windows\SysWow64\licmgr10.dll 2011-02-24 05:05:13 482816 ----a-w- C:\Windows\System32\html.iec 2011-02-24 04:24:57 1638912 ----a-w- C:\Windows\System32\mshtml.tlb 2011-02-24 04:23:48 386048 ----a-w- C:\Windows\SysWow64\html.iec 2011-02-24 04:00:33 1638912 ----a-w- C:\Windows\SysWow64\mshtml.tlb 2011-02-23 05:16:28 461312 ----a-w- C:\Windows\System32\drivers\srv.sys 2011-02-23 05:16:01 401920 ----a-w- C:\Windows\System32\drivers\srv2.sys 2011-02-23 05:15:50 161792 ----a-w- C:\Windows\System32\drivers\srvnet.sys 2011-02-23 05:15:27 157696 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys 2011-02-23 05:15:13 126464 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys 2011-02-23 05:15:06 90624 ----a-w- C:\Windows\System32\drivers\bowser.sys 2011-02-19 06:37:44 1135104 ----a-w- C:\Windows\System32\FntCache.dll 2011-02-19 06:37:10 1540608 ----a-w- C:\Windows\System32\DWrite.dll 2011-02-19 06:36:49 902656 ----a-w- C:\Windows\System32\d2d1.dll 2011-02-19 06:36:13 46080 ----a-w- C:\Windows\System32\atmlib.dll 2011-02-19 05:32:48 1074176 ----a-w- C:\Windows\SysWow64\DWrite.dll 2011-02-19 05:32:35 739840 ----a-w- C:\Windows\SysWow64\d2d1.dll 2011-02-19 05:32:08 34304 ----a-w- C:\Windows\SysWow64\atmlib.dll 2011-02-19 04:13:39 367104 ----a-w- C:\Windows\System32\atmfd.dll 2011-02-19 03:37:02 294912 ----a-w- C:\Windows\SysWow64\atmfd.dll 2011-02-18 06:33:50 31232 ----a-w- C:\Windows\System32\prevhost.exe 2011-02-18 05:33:29 31232 ----a-w- C:\Windows\SysWow64\prevhost.exe . ============= FINISH: 22:41:59,49 =============== attach . UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG. IF REQUESTED, ZIP IT UP & ATTACH IT . DDS (Ver_11-03-05.01) . Microsoft Windows 7 Ultimate Boot Device: \Device\HarddiskVolume1 Install Date: 11.3.2010 г. 20:29:56 System Uptime: 7.5.2011 г. 22:23:46 (0 hours ago) . Motherboard: ASUSTeK Computer Inc. | | F5Z Processor: AMD Athlon X2 Dual-Core QL-62 | CPU 1 | 2000/200mhz . ==== Disk Partitions ========================= . C: is FIXED (NTFS) - 49 GiB total, 7,886 GiB free. D: is FIXED (NTFS) - 249 GiB total, 166,784 GiB free. E: is CDROM () F: is Removable H: is CDROM (CDFS) . ==== Disabled Device Manager Items ============= . ==== System Restore Points =================== . No restore point in system. . ==== Installed Programs ====================== . µTorrent Adobe AIR Adobe Bridge 1.0 Adobe Common File Installer Adobe Flash Player 10 ActiveX Adobe Flash Player 10 Plugin Adobe Help Center 1.0 Adobe Photoshop CS2 Adobe Reader 9.4.3 - Bulgarian Adobe Stock Photos 1.0 Akamai NetSession Interface AnswerWorks Runtime Atheros Client Installation Program ATK Generic Function Service Autodesk Express Viewer Camtasia Studio 7 Catalyst Control Center Graphics Previews Vista Catalyst Control Center InstallProxy Catalyst Control Center Localization All ccc-core-static CCC Help English Counter-Strike 1.0 FIFA 10 FormatFactory 2.30 Fraps (remove only) Free MP3 Cutter 1.01 Google Chrome Google Update Helper Guitar Hero - World Tour v1.0 Guitar Hero: Aerosmith Hotfix for Microsoft Visual Basic 2008 Express Edition with SP1 - ENU (KB945282) Hotfix for Microsoft Visual Basic 2008 Express Edition with SP1 - ENU (KB946040) Hotfix for Microsoft Visual Basic 2008 Express Edition with SP1 - ENU (KB946308) Hotfix for Microsoft Visual Basic 2008 Express Edition with SP1 - ENU (KB946344) Hotfix for Microsoft Visual Basic 2008 Express Edition with SP1 - ENU (KB947540) Hotfix for Microsoft Visual Basic 2008 Express Edition with SP1 - ENU (KB947789) Hotfix for Microsoft Visual Basic 2008 Express Edition with SP1 - ENU (KB948127) Hotfix for Microsoft Visual Basic 2008 Express Edition with SP1 - ENU (KB951708) Hotfix for Microsoft Visual Studio 2008 Remote Debugger Light (x64) - ENU (KB944899) Java Auto Updater Java 6 Update 23 K-Lite Codec Pack 6.0.4 (Full) Malwarebytes' Anti-Malware McAfee Security Scan Plus Microsoft .NET Framework 1.1 Microsoft Games for Windows - LIVE Microsoft Games for Windows - LIVE Redistributable Microsoft Office Access MUI (English) 2007 Microsoft Office Access Setup Metadata MUI (English) 2007 Microsoft Office Enterprise 2007 Microsoft Office Excel MUI (English) 2007 Microsoft Office Groove MUI (English) 2007 Microsoft Office Groove Setup Metadata MUI (English) 2007 Microsoft Office InfoPath MUI (English) 2007 Microsoft Office OneNote MUI (English) 2007 Microsoft Office Outlook MUI (English) 2007 Microsoft Office PowerPoint MUI (English) 2007 Microsoft Office Proof (English) 2007 Microsoft Office Proof (French) 2007 Microsoft Office Proof (Spanish) 2007 Microsoft Office Proofing (English) 2007 Microsoft Office Publisher MUI (English) 2007 Microsoft Office Shared MUI (English) 2007 Microsoft Office Shared Setup Metadata MUI (English) 2007 Microsoft Office Word MUI (English) 2007 Microsoft Silverlight Microsoft SQL Server 2008 Microsoft SQL Server 2008 Browser Microsoft SQL Server 2008 Common Files Microsoft SQL Server 2008 Database Engine Services Microsoft SQL Server 2008 Database Engine Shared Microsoft SQL Server 2008 Management Objects Microsoft SQL Server 2008 RsFx Driver Microsoft SQL Server 2008 Setup Support Files (English) Microsoft SQL Server Compact 3.5 SP1 Design Tools English Microsoft SQL Server Compact 3.5 SP1 English Microsoft Visual Basic 2008 Express Edition with SP1 - ENU Microsoft Visual Basic 6.0 Professional Edition Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual Studio 2008 Remote Debugger Light (x64) - ENU Service Pack 1 (KB945140) Microsoft Web Publishing Wizard 1.53 Mozilla Firefox (3.6.17) Multimedia Card Reader MV2Player (remove only) Nero 8 Micro NVIDIA PhysX OpenAL PASW Statistics 18 Power Challenge Game Plugin PowerArchiver 2010 PunkBuster Services Rapture3D 2.3.22 Game RocketDock 1.3.5 SafeCast Shared Components Samsung PC Studio 3 USB Driver Installer Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841) Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708) Security Update for Microsoft .NET Framework 4 Extended (KB2416472) Skype™ 5.1 Sonic Foundry Sound Forge 6.0 SpeedFan (remove only) Sql Server Customer Experience Improvement Program SQL Server System CLR Types TeamViewer 3 TeamViewer 5 TVAnts ActiveX Control 1.0 Ubisoft Game Launcher Unlocker 1.9.0 USB2.0 1.3M UVC WebCam Veetle TV 0.9.18 viewet VLC media player 1.1.5 Winamp Windows Media Player Firefox Plugin WM Recorder 14 Worms 4 Mayhem XAMPP 1.6.4 . ==== Event Viewer Messages From Past Week ======== . 7.5.2011 г. 22:24:12, Error: Service Control Manager [7000] - Услуга CdaC15BA не може да бъде стартирана поради следната грешка: Зареждането на този драйвер е блокирано 7.5.2011 г. 22:24:12, Error: Application Popup [1060] - \??\C:\Windows\SysWow64\drivers\CDAC15BA.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. 7.5.2011 г. 21:11:33, Error: Microsoft-Windows-HAL [12] - The platform firmware has corrupted memory across the previous system power transition. Please check for updated firmware for your system. 7.5.2011 г. 18:37:04, Error: Service Control Manager [7000] - Услуга CdaC15BA не може да бъде стартирана поради следната грешка: Зареждането на този драйвер е блокирано 7.5.2011 г. 18:37:04, Error: Application Popup [1060] - \??\C:\Windows\SysWow64\drivers\CDAC15BA.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. 7.5.2011 г. 08:32:02, Error: Service Control Manager [7000] - Услуга CdaC15BA не може да бъде стартирана поради следната грешка: Зареждането на този драйвер е блокирано 7.5.2011 г. 08:32:02, Error: Application Popup [1060] - \??\C:\Windows\SysWow64\drivers\CDAC15BA.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. 6.5.2011 г. 20:49:27, Error: volsnap [36] - The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit. 6.5.2011 г. 18:00:43, Error: Microsoft-Windows-HAL [12] - The platform firmware has corrupted memory across the previous system power transition. Please check for updated firmware for your system. 6.5.2011 г. 09:27:15, Error: Service Control Manager [7000] - Услуга CdaC15BA не може да бъде стартирана поради следната грешка: Зареждането на този драйвер е блокирано 6.5.2011 г. 09:27:15, Error: Application Popup [1060] - \??\C:\Windows\SysWow64\drivers\CDAC15BA.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. 5.5.2011 г. 15:18:25, Error: Service Control Manager [7000] - Услуга CdaC15BA не може да бъде стартирана поради следната грешка: Зареждането на този драйвер е блокирано 5.5.2011 г. 15:18:25, Error: Application Popup [1060] - \??\C:\Windows\SysWow64\drivers\CDAC15BA.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. 5.5.2011 г. 13:37:48, Error: Service Control Manager [7000] - Услуга CdaC15BA не може да бъде стартирана поради следната грешка: Зареждането на този драйвер е блокирано 5.5.2011 г. 13:37:48, Error: Application Popup [1060] - \??\C:\Windows\SysWow64\drivers\CDAC15BA.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. 5.5.2011 г. 06:42:25, Error: Service Control Manager [7000] - Услуга CdaC15BA не може да бъде стартирана поради следната грешка: Зареждането на този драйвер е блокирано 5.5.2011 г. 06:42:25, Error: Application Popup [1060] - \??\C:\Windows\SysWow64\drivers\CDAC15BA.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. 4.5.2011 г. 18:31:35, Error: Microsoft-Windows-HAL [12] - The platform firmware has corrupted memory across the previous system power transition. Please check for updated firmware for your system. 4.5.2011 г. 14:49:09, Error: Service Control Manager [7000] - Услуга CdaC15BA не може да бъде стартирана поради следната грешка: Зареждането на този драйвер е блокирано 4.5.2011 г. 14:49:09, Error: Application Popup [1060] - \??\C:\Windows\SysWow64\drivers\CDAC15BA.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. 4.5.2011 г. 06:39:11, Error: Service Control Manager [7000] - Услуга CdaC15BA не може да бъде стартирана поради следната грешка: Зареждането на този драйвер е блокирано 4.5.2011 г. 06:39:11, Error: Application Popup [1060] - \??\C:\Windows\SysWow64\drivers\CDAC15BA.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. 30.4.2011 г. 18:58:40, Error: volsnap [36] - The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit. 30.4.2011 г. 09:33:55, Error: Service Control Manager [7011] - Изтекъл период на изчакване (30000 милисекунди) при изчакване на отговор за транзакция от услуга ShellHWDetection. 3.5.2011 г. 22:21:03, Error: volsnap [36] - The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit. 3.5.2011 г. 17:20:20, Error: Service Control Manager [7011] - Изтекъл период на изчакване (30000 милисекунди) при изчакване на отговор за транзакция от услуга ShellHWDetection. 3.5.2011 г. 16:10:17, Error: Microsoft-Windows-HAL [12] - The platform firmware has corrupted memory across the previous system power transition. Please check for updated firmware for your system. 3.5.2011 г. 13:52:04, Error: Service Control Manager [7000] - Услуга CdaC15BA не може да бъде стартирана поради следната грешка: Зареждането на този драйвер е блокирано 3.5.2011 г. 13:52:04, Error: Application Popup [1060] - \??\C:\Windows\SysWow64\drivers\CDAC15BA.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. 2.5.2011 г. 18:55:44, Error: Service Control Manager [7011] - Изтекъл период на изчакване (30000 милисекунди) при изчакване на отговор за транзакция от услуга ShellHWDetection. 2.5.2011 г. 18:22:02, Error: Microsoft-Windows-HAL [12] - The platform firmware has corrupted memory across the previous system power transition. Please check for updated firmware for your system. 2.5.2011 г. 14:25:34, Error: Service Control Manager [7000] - Услуга CdaC15BA не може да бъде стартирана поради следната грешка: Зареждането на този драйвер е блокирано 2.5.2011 г. 14:25:34, Error: Application Popup [1060] - \??\C:\Windows\SysWow64\drivers\CDAC15BA.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. 1.5.2011 г. 20:00:17, Error: Microsoft-Windows-HAL [12] - The platform firmware has corrupted memory across the previous system power transition. Please check for updated firmware for your system. 1.5.2011 г. 17:17:52, Error: Service Control Manager [7000] - Услуга CdaC15BA не може да бъде стартирана поради следната грешка: Зареждането на този драйвер е блокирано 1.5.2011 г. 17:17:52, Error: Application Popup [1060] - \??\C:\Windows\SysWow64\drivers\CDAC15BA.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. 1.5.2011 г. 08:18:21, Error: Service Control Manager [7000] - Услуга CdaC15BA не може да бъде стартирана поради следната грешка: Зареждането на този драйвер е блокирано 1.5.2011 г. 08:18:21, Error: Application Popup [1060] - \??\C:\Windows\SysWow64\drivers\CDAC15BA.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver. . ==== End Of File ===========================

Разглеждащи това в момента 0

  • Няма регистрирани потребители разглеждащи тази страница.

Профил

Навигация

Търсене

Търсене

Конфигуриране на push известия в браузъра

Chrome (Android)
  1. Докоснете иконата на катинар до адресната лента.
  2. Докоснете Разрешения → Известия.
  3. Променете предпочитанията си.
Chrome (Desktop)
  1. Кликнете върху иконата на катинар в адресната лента.
  2. Изберете Настройки на сайта.
  3. Намерете Известия и коригирайте предпочитанията си.