Ga naar inhoud

pc werkt niet optimaal


Aanbevolen berichten

OTL logfile created on: 08/11/2013 13:18:11 - Run 2

OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\User\Desktop

Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation

Internet Explorer (Version = 8.0.6001.19088)

Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

3.00 Gb Total Physical Memory | 2.15 Gb Available Physical Memory | 71.87% Memory free

6.19 Gb Paging File | 5.46 Gb Available in Paging File | 88.21% Paging File free

Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files

Drive C: | 111.19 Gb Total Space | 51.51 Gb Free Space | 46.33% Space Free | Partition Type: NTFS

Drive D: | 107.69 Gb Total Space | 43.37 Gb Free Space | 40.27% Space Free | Partition Type: NTFS

Computer Name: ACER | User Name: User | Logged in as Administrator.

Boot Mode: Normal | Scan Mode: Current user

Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2013/11/08 13:12:52 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\User\Desktop\OTL.com

PRC - [2013/10/18 13:22:56 | 001,140,736 | ---- | M] (Spotify Ltd) -- C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe

PRC - [2013/10/07 18:54:20 | 004,908,592 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgui.exe

PRC - [2013/10/03 21:00:24 | 003,538,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgidsagent.exe

PRC - [2013/09/25 20:47:22 | 000,301,152 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgwdsvc.exe

PRC - [2013/09/15 22:08:30 | 000,895,024 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgnsx.exe

PRC - [2013/09/03 21:22:16 | 000,588,336 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgcsrvx.exe

PRC - [2013/08/20 22:03:42 | 000,728,624 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgrsx.exe

PRC - [2013/03/01 11:11:32 | 000,161,384 | R--- | M] (Skype Technologies) -- C:\Program Files\Skype\Updater\Updater.exe

PRC - [2012/02/26 23:02:02 | 000,249,440 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Windows\System32\spool\drivers\w32x86\3\E_TATIIVE.EXE

PRC - [2011/12/11 23:00:00 | 000,122,000 | ---- | M] (Seiko Epson Corporation) -- C:\Windows\System32\escsvc.exe

PRC - [2011/06/28 19:12:32 | 000,009,216 | ---- | M] (Vodafone) -- C:\Program Files\Vodafone\Vodafone Mobile Broadband\Bin\VmbService.exe

PRC - [2009/04/11 14:18:30 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe

========== Modules (No Company Name) ==========

MOD - [2008/05/08 22:14:24 | 000,159,744 | ---- | M] () -- C:\Windows\System32\atitmmxx.dll

========== Services (SafeList) ==========

SRV - File not found [On_Demand | Stopped] -- C:\Users\User\AppData\Local\Temp\SGNITIQPEOFL.exe -- (SGNITIQPEOFL)

SRV - File not found [On_Demand | Stopped] -- C:\Users\User\AppData\Local\Temp\HDYEHKZ.exe -- (HDYEHKZ)

SRV - File not found [On_Demand | Stopped] -- C:\Users\User\AppData\Local\Temp\CSPEH.exe -- (CSPEH)

SRV - [2013/10/31 13:15:40 | 000,257,416 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)

SRV - [2013/10/03 21:00:24 | 003,538,480 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2014\avgidsagent.exe -- (AVGIDSAgent)

SRV - [2013/09/25 20:47:22 | 000,301,152 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2014\avgwdsvc.exe -- (avgwd)

SRV - [2013/04/18 11:14:29 | 000,115,608 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)

SRV - [2013/03/01 11:11:32 | 000,161,384 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)

SRV - [2011/12/11 23:00:00 | 000,122,000 | ---- | M] (Seiko Epson Corporation) [Auto | Running] -- C:\Windows\System32\escsvc.exe -- (EpsonScanSvc)

SRV - [2011/06/28 19:12:32 | 000,009,216 | ---- | M] (Vodafone) [Auto | Running] -- C:\Program Files\Vodafone\Vodafone Mobile Broadband\Bin\VmbService.exe -- (VmbService)

SRV - [2008/01/21 03:23:32 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)

========== Driver Services (SafeList) ==========

DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)

DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)

DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ipinip.sys -- (IpInIp)

DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ewusbfake.sys -- (hwusbfake)

DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ewusbmdm.sys -- (hwdatacard)

DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ewdcsc.sys -- (Huawei)

DRV - [2013/09/25 19:57:14 | 000,120,632 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\System32\drivers\avgdiskx.sys -- (Avgdiskx)

DRV - [2013/09/10 21:11:44 | 000,022,840 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgidsshimx.sys -- (AVGIDSShim)

DRV - [2013/09/08 21:12:16 | 000,027,448 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\System32\drivers\avgrkx86.sys -- (Avgrkx86)

DRV - [2013/09/02 09:39:32 | 000,176,952 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\System32\drivers\avgldx86.sys -- (Avgldx86)

DRV - [2013/09/02 09:28:06 | 000,145,720 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\System32\drivers\avgidshx.sys -- (AVGIDSHX)

DRV - [2013/09/02 09:28:04 | 000,209,208 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\System32\drivers\avgidsdriverx.sys -- (AVGIDSDriver)

DRV - [2013/09/02 09:28:00 | 000,223,032 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\System32\drivers\avglogx.sys -- (Avglogx)

DRV - [2013/08/20 21:54:04 | 000,102,200 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\System32\drivers\avgmfx86.sys -- (Avgmfx86)

DRV - [2013/08/01 15:08:52 | 000,193,848 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgtdix.sys -- (Avgtdix)

DRV - [2013/08/01 08:54:20 | 000,037,664 | ---- | M] (AVG Technologies) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgtpx86.sys -- (avgtp)

DRV - [2010/09/01 13:33:12 | 000,080,000 | ---- | M] (Vodafone) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\vodafone_K3805-z_dc_enum.sys -- (vodafone_K3805-z_dc_enum)

DRV - [2010/09/01 13:33:12 | 000,050,304 | ---- | M] (Vodafone) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vodafone_K3805-z_cdc_ecm.sys -- (vodafone_K3805-z_cdc_ecm)

DRV - [2010/09/01 13:33:12 | 000,009,728 | ---- | M] (Vodafone) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vodafone_K3805-z_cpo.sys -- (vodafone_K3805-z_cpo)

DRV - [2010/09/01 13:33:10 | 000,085,888 | ---- | M] (Vodafone) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vodafone_K3805-z_cdc_acm.sys -- (vodafone_K3805-z_cdc_acm)

DRV - [2008/07/25 19:18:52 | 000,033,792 | ---- | M] (TASCAM) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tscusb2a.sys -- (TASCAM_US122L_WDM)

DRV - [2008/07/25 19:18:08 | 000,018,944 | ---- | M] (TASCAM) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tscusb2m.sys -- (TASCAM_US122L_MIDI)

DRV - [2008/07/25 19:17:36 | 000,367,616 | ---- | M] (TASCAM) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tascusb2.sys -- (TASCAM_US122144)

DRV - [2008/05/09 01:01:44 | 003,552,256 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atikmdag.sys -- (atikmdag)

DRV - [2008/01/21 03:23:20 | 002,225,664 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\NETw3v32.sys -- (NETw3v32)

DRV - [2007/08/13 13:54:22 | 001,749,376 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\snp2uvc.sys -- (SNP2UVC)

DRV - [2007/08/08 20:42:08 | 000,045,568 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimmptsk.sys -- (rimmptsk)

DRV - [2007/08/07 14:24:00 | 000,008,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\XAudio.sys -- (XAudio)

DRV - [2007/07/30 11:54:02 | 000,038,400 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rixdptsk.sys -- (rismxdp)

DRV - [2007/07/30 10:42:58 | 000,043,008 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimsptsk.sys -- (rimsptsk)

DRV - [2007/03/28 07:51:40 | 000,043,008 | ---- | M] (Winbond Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\winbondcir.sys -- (winbondcir)

DRV - [2006/11/23 18:20:06 | 000,018,432 | ---- | M] (SIA Syncrosoft) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\synasUSB.sys -- (SynasUSB)

========== Standard Registry (SafeList) ==========

========== Internet Explorer ==========

IE - HKLM\..\SearchScopes,DefaultScope = {5B7706E6-3034-21B5-1074-6208B644849D}

IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = MSN UK - Outlook.com formerly Hotmail, Bing, Skype and Latest News

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-gb

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 10 E2 ED 65 C6 74 CA 01 [binary data]

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1

IE - HKCU\..\SearchScopes,DefaultScope =

IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC

IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}

IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..extensions.enabledAddons: %7B23fcfd51-4958-4f00-80a3-ae97e717ed8b%7D:2.1.2.172

FF - prefs.js..extensions.enabledAddons: %7BCAFEEFAC-0016-0000-0033-ABCDEFFEDCBA%7D:6.0.33

FF - prefs.js..extensions.enabledAddons: adblockpopups%40jessehakanen.net:0.9.1

FF - prefs.js..extensions.enabledAddons: %7Bb9db16a4-6edc-47ec-a1f4-b86292ed211d%7D:4.9.21

FF - prefs.js..extensions.enabledAddons: %7B53A03D43-5363-4669-8190-99061B2DEBA5%7D:1.5.8

FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:20.0.1

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll ()

FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found

FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()

FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)

FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)

FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)

FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.15.2: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)

FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)

FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.15.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)

FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)

FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)

FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)

FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)

FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)

FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.448: C:\Program Files\VistaCodecPack\rm\browser\plugins\nppl3260.dll (RealNetworks, Inc.)

FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: C:\Program Files\VistaCodecPack\rm\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)

FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found

FF - HKLM\Software\MozillaPlugins\@RIM.com/WebSLLauncher,version=1.0: C:\Program Files\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ()

FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)

FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)

FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKCU\Software\MozillaPlugins\@facebook.com/FBPlugin,version=1.0.3: C:\Users\User\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll File not found

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2013/02/21 13:58:32 | 000,000,000 | ---D | M]

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 20.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2013/04/18 11:14:30 | 000,000,000 | ---D | M]

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 20.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2013/10/28 18:40:50 | 000,000,000 | ---D | M]

FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 20.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2013/04/18 11:14:30 | 000,000,000 | ---D | M]

FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 20.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2013/10/28 18:40:50 | 000,000,000 | ---D | M]

[2013/10/24 20:02:58 | 000,000,000 | ---D | M] (No name found) -- C:\Users\User\AppData\Roaming\Mozilla\Extensions

[2010/09/09 12:45:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\User\AppData\Roaming\Mozilla\Extensions\IMVUClientXUL@imvu.com

[2013/11/02 13:06:50 | 000,000,000 | ---D | M] (No name found) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\gca71xw1.default\extensions

[2012/01/17 11:37:20 | 000,000,000 | ---D | M] ("Free YouTube Download (Free Studio) Menu") -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\gca71xw1.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}

[2013/08/27 15:33:01 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\gca71xw1.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}

[2013/10/08 14:11:38 | 000,000,000 | ---D | M] (BlackFox V2) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\gca71xw1.default\extensions\zigboom@hotmail.com

[2013/08/27 14:19:34 | 000,128,676 | ---- | M] () (No name found) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\gca71xw1.default\extensions\adblockpopups@jessehakanen.net.xpi

[2012/01/16 17:33:00 | 002,581,018 | ---- | M] () (No name found) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\gca71xw1.default\extensions\flaminglow-ff3-30@glowplug.bitasylum.net.xpi

[2012/01/16 17:32:54 | 002,281,245 | ---- | M] () (No name found) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\gca71xw1.default\extensions\glowygold-ff3-30@glowplug.bitasylum.net.xpi

[2013/10/24 17:32:41 | 002,737,915 | ---- | M] () (No name found) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\gca71xw1.default\extensions\nasanightlaunch@example.com.xpi

[2013/10/11 12:17:25 | 000,850,224 | ---- | M] () (No name found) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\gca71xw1.default\extensions\{53A03D43-5363-4669-8190-99061B2DEBA5}.xpi

[2013/08/02 09:27:28 | 000,224,035 | ---- | M] () (No name found) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\gca71xw1.default\extensions\{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}.xpi

[2013/10/11 13:20:17 | 000,915,554 | ---- | M] () (No name found) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\gca71xw1.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

[2013/10/24 17:32:04 | 001,195,896 | ---- | M] () (No name found) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\gca71xw1.default\extensions\{ff356687-aa08-463d-a46c-11c451824939}.xpi

[2013/08/10 09:29:13 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions

[2013/04/18 11:14:23 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}

[2013/11/08 11:36:30 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\updated\extensions

[2013/11/08 11:36:30 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\updated\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

[2013/11/08 11:36:30 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\updated\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}

[2013/11/08 11:36:38 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\updated\browser\extensions

[2013/11/08 11:36:38 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\updated\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

[2013/02/21 13:58:32 | 000,000,000 | ---D | M] (No name found) -- C:\PROGRAM FILES\DIVX\DIVX PLUS WEB PLAYER\FIREFOX\DIVXHTML5

[2013/04/18 11:14:30 | 000,263,064 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll

[2012/11/05 19:12:28 | 000,172,032 | ---- | M] (iVIDI.org) -- C:\Program Files\mozilla firefox\plugins\npffividiplg.dll

[2013/04/18 11:14:27 | 000,001,738 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazon-en-GB.xml

[2013/04/18 11:14:27 | 000,002,465 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml

[2013/04/18 11:14:27 | 000,001,148 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\chambers-en-GB.xml

[2013/04/18 11:14:27 | 000,001,379 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-en-GB.xml

[2013/04/18 11:14:27 | 000,002,086 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\twitter.xml

[2013/04/18 11:14:27 | 000,001,334 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-en-GB.xml

========== Chrome ==========

CHR - default_search_provider: Google (Enabled)

CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}

CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter},

CHR - Extension: Google Docs = C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\

CHR - Extension: Google Drive = C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_1\

CHR - Extension: YouTube = C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_1\

CHR - Extension: Google Search = C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\

CHR - Extension: Google Wallet = C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0\

CHR - Extension: DivX Plus Web Player HTML5 \u003Cvideo\u003E = C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.172_1\

CHR - Extension: Gmail = C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_2\

O1 HOSTS File: ([2006/09/18 22:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts

O1 - Hosts: 127.0.0.1 localhost

O1 - Hosts: ::1 localhost

O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)

O2 - BHO: (Java Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)

O2 - BHO: (Easy Photo Print) - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.)

O2 - BHO: (Java Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)

O3 - HKLM\..\Toolbar: (Easy Photo Print) - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.)

O4 - HKLM..\Run: [AVG_UI] C:\Program Files\AVG\AVG2014\avgui.exe (AVG Technologies CZ, s.r.o.)

O4 - HKLM..\Run: [PLFSetL] C:\Windows\PLFSetL.exe (sonix)

O4 - HKCU..\Run: [EPLTarget\P0000000000000001] C:\Windows\System32\spool\DRIVERS\W32X86\3\E_TATIIVE.EXE (SEIKO EPSON CORPORATION)

O4 - HKCU..\Run: [fsm] File not found

O4 - HKCU..\Run: [spotify Web Helper] C:\Users\User\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Spotify Ltd)

O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\User\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm File not found

O9 - Extra Button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IMVU\Run IMVU.lnk File not found

O13 - gopher Prefix: missing

O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinstall-1_7_0_15-windows-i586.cab (Java Plug-in 10.15.2)

O16 - DPF: {CAFEEFAC-0017-0000-0015-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_15-windows-i586.cab (Java Plug-in 1.7.0_15)

O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_15-windows-i586.cab (Java Plug-in 1.7.0_15)

O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{344B84F1-73BE-4B04-9E5E-313DD545CA7D}: DhcpNameServer = 192.168.1.1

O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9CAE3D71-3C89-49E0-921B-60654D002DCB}: DhcpNameServer = 80.58.61.250 80.58.61.254

O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)

O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)

O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)

O24 - Desktop WallPaper: C:\Users\User\AppData\Roaming\Microsoft\Windows Live Photo Gallery\Windows Live Photo Gallery Wallpaper.jpg

O24 - Desktop BackupWallPaper: C:\Users\User\AppData\Roaming\Microsoft\Windows Live Photo Gallery\Windows Live Photo Gallery Wallpaper.jpg

O32 - HKLM CDRom: AutoRun - 1

O32 - AutoRun File - [2006/09/18 22:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]

O33 - MountPoints2\{38a8cc80-92a5-11e0-9d16-8e343c86b69c}\Shell\AutoRun\command - "" = autorun.exe

O33 - MountPoints2\{38a8cc80-92a5-11e0-9d16-8e343c86b69c}\Shell\open\command - "" = autorun.exe

O33 - MountPoints2\{67845589-db58-11de-8955-001e683f07d3}\Shell\AutoRun\command - "" = WD_Windows_Tools\setup.exe

O33 - MountPoints2\{91926928-421d-11df-9f77-001e683f07d3}\Shell - "" = AutoRun

O33 - MountPoints2\{91926928-421d-11df-9f77-001e683f07d3}\Shell\AutoRun\command - "" = F:\AutoRun.exe

O33 - MountPoints2\{a66c3b94-d905-11de-9b54-001e683f07d3}\Shell - "" = AutoRun

O33 - MountPoints2\{a66c3b94-d905-11de-9b54-001e683f07d3}\Shell\AutoRun\command - "" = F:\AutoRun.exe

O33 - MountPoints2\{e564f2fa-37ab-11e0-bca8-001e683f07d3}\Shell - "" = AutoRun

O33 - MountPoints2\{e564f2fa-37ab-11e0-bca8-001e683f07d3}\Shell\AutoRun\command - "" = F:\setup.exe

O33 - MountPoints2\{e564f2fe-37ab-11e0-bca8-001e683f07d3}\Shell - "" = AutoRun

O33 - MountPoints2\{e564f2fe-37ab-11e0-bca8-001e683f07d3}\Shell\AutoRun\command - "" = F:\setup.exe

O33 - MountPoints2\{ebe24485-a02d-11e1-86f4-bb401d358903}\Shell - "" = AutoRun

O33 - MountPoints2\{ebe24485-a02d-11e1-86f4-bb401d358903}\Shell\AutoRun\command - "" = F:\setup_vmb_lite.exe /checkApplicationPresence

O33 - MountPoints2\{ebe244af-a02d-11e1-86f4-b3b4735106cc}\Shell - "" = AutoRun

O33 - MountPoints2\{ebe244af-a02d-11e1-86f4-b3b4735106cc}\Shell\AutoRun\command - "" = F:\setup_vmb_lite.exe /checkApplicationPresence

O34 - HKLM BootExecute: (autocheck autochk *)

O35 - HKLM\..comfile [open] -- "%1" %*

O35 - HKLM\..exefile [open] -- "%1" %*

O37 - HKLM\...com [@ = comfile] -- "%1" %*

O37 - HKLM\...exe [@ = exefile] -- "%1" %*

O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)

O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)

========== Files/Folders - Created Within 30 Days ==========

[2013/11/08 13:13:49 | 000,000,000 | ---D | C] -- C:\_OTL

[2013/11/08 13:12:29 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\User\Desktop\OTL.com

[2013/11/05 11:13:34 | 000,000,000 | ---D | C] -- C:\Users\User\Music

[2013/11/02 12:59:54 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN

[2013/11/02 12:56:10 | 000,000,000 | ---D | C] -- C:\Windows\Temp

[2013/11/02 12:56:10 | 000,000,000 | ---D | C] -- C:\Users\User\AppData\Local\Temp

[2013/11/02 12:49:41 | 000,000,000 | ---D | C] -- C:\zoek

[2013/11/02 12:42:08 | 000,000,000 | ---D | C] -- C:\zoek_backup

[2013/10/31 13:15:40 | 000,692,616 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe

[2013/10/31 13:15:40 | 000,071,048 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl

[2013/10/31 12:38:29 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro

[2013/10/31 12:38:29 | 000,000,000 | ---D | C] -- C:\rsit

[2013/10/30 14:22:51 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT

[2013/10/30 14:22:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ERUNT

[2013/10/30 14:22:13 | 000,000,000 | ---D | C] -- C:\Program Files\ERUNT

[2013/10/24 19:00:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\snp2uvc

[2013/10/24 18:06:01 | 000,000,000 | ---D | C] -- C:\Users\User\AppData\Roaming\Unitech LLC

[2013/10/24 18:00:44 | 000,000,000 | ---D | C] -- C:\Users\User\AppData\Roaming\AVG2014

[2013/10/24 17:55:08 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG2014

[2013/10/24 17:38:27 | 000,000,000 | ---D | C] -- C:\Users\User\AppData\Local\Avg2014

[2013/10/15 12:57:57 | 000,000,000 | ---D | C] -- C:\Users\User\Documents\New Folder

[2013/10/13 15:38:06 | 000,000,000 | ---D | C] -- C:\Users\User\Documents\ZIP FILES

[2013/10/13 13:42:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes

[2013/10/13 13:41:48 | 000,000,000 | ---D | C] -- C:\Program Files\iPod

[2013/10/13 13:41:46 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes

[2013/10/13 13:41:46 | 000,000,000 | ---D | C] -- C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1

[2013/10/13 13:38:28 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update

[2013/10/13 12:50:20 | 000,000,000 | ---D | C] -- C:\Program Files\jZip

[2013/10/13 12:47:01 | 000,000,000 | ---D | C] -- C:\Users\User\all zip files for ipad 2

========== Files - Modified Within 30 Days ==========

[2013/11/08 13:20:13 | 000,000,416 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{D6A5BA18-8CD6-4C00-B34F-1C1CF83A5543}.job

[2013/11/08 13:16:28 | 000,000,878 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job

[2013/11/08 13:16:23 | 000,003,760 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0

[2013/11/08 13:16:23 | 000,003,760 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0

[2013/11/08 13:16:18 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat

[2013/11/08 13:16:15 | 3219,578,880 | -HS- | M] () -- C:\hiberfil.sys

[2013/11/08 13:12:52 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\User\Desktop\OTL.com

[2013/11/08 13:01:43 | 000,002,593 | ---- | M] () -- C:\Users\User\Desktop\Microsoft Office Outlook 2007.lnk

[2013/11/08 12:46:00 | 000,000,882 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

[2013/11/08 12:37:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job

[2013/11/08 09:39:36 | 000,600,378 | ---- | M] () -- C:\Windows\System32\perfh009.dat

[2013/11/08 09:39:36 | 000,105,852 | ---- | M] () -- C:\Windows\System32\perfc009.dat

[2013/11/05 12:56:08 | 000,002,587 | ---- | M] () -- C:\Users\User\Desktop\ NBVC (5).lnk

[2013/11/05 10:59:17 | 000,193,024 | ---- | M] () -- C:\Users\User\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

[2013/11/02 12:42:07 | 000,024,064 | ---- | M] () -- C:\Windows\zoek-delete.exe

[2013/10/31 13:15:40 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe

[2013/10/31 13:15:40 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl

[2013/10/30 14:32:37 | 000,005,839 | ---- | M] () -- C:\Users\User\Documents\hijackthis007

[2013/10/28 18:00:33 | 000,150,722 | ---- | M] () -- C:\Users\User\karafuncatalog_uk.pdf

[2013/10/28 17:59:53 | 001,002,598 | ---- | M] () -- C:\Users\User\karafuncatalog_uk_all.pdf

[2013/10/28 17:56:04 | 000,324,991 | ---- | M] () -- C:\Users\User\KCLOUD_DTE.pdf

[2013/10/24 20:10:49 | 000,260,784 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT

[2013/10/24 17:57:29 | 000,000,802 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2014.lnk

[2013/10/15 14:50:54 | 000,100,721 | ---- | M] () -- C:\Users\User\529165_10201477125797256_75829981_n.jpg

[2013/10/15 14:48:29 | 000,057,162 | ---- | M] () -- C:\Users\User\480526_10151002459950800_11452403_n.jpg

[2013/10/15 14:47:38 | 000,144,532 | ---- | M] () -- C:\Users\User\1064978_561848020544987_373758459_o.jpg

[2013/10/15 14:40:57 | 000,000,866 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk

[2013/10/13 13:42:27 | 000,001,624 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk

[2013/10/13 12:51:40 | 000,000,740 | ---- | M] () -- C:\Users\User\Desktop\jZip.lnk

========== Files Created - No Company Name ==========

[2013/11/02 12:56:10 | 000,024,064 | ---- | C] () -- C:\Windows\zoek-delete.exe

[2013/10/31 13:15:41 | 000,000,830 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job

[2013/10/30 14:32:37 | 000,005,839 | ---- | C] () -- C:\Users\User\Documents\hijackthis007

[2013/10/28 18:00:33 | 000,150,722 | ---- | C] () -- C:\Users\User\karafuncatalog_uk.pdf

[2013/10/28 17:59:45 | 001,002,598 | ---- | C] () -- C:\Users\User\karafuncatalog_uk_all.pdf

[2013/10/28 17:56:03 | 000,324,991 | ---- | C] () -- C:\Users\User\KCLOUD_DTE.pdf

[2013/10/24 17:57:29 | 000,000,802 | ---- | C] () -- C:\Users\Public\Desktop\AVG 2014.lnk

[2013/10/15 14:50:52 | 000,100,721 | ---- | C] () -- C:\Users\User\529165_10201477125797256_75829981_n.jpg

[2013/10/15 14:48:24 | 000,057,162 | ---- | C] () -- C:\Users\User\480526_10151002459950800_11452403_n.jpg

[2013/10/15 14:47:34 | 000,144,532 | ---- | C] () -- C:\Users\User\1064978_561848020544987_373758459_o.jpg

[2013/10/13 13:42:27 | 000,001,624 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk

[2013/10/13 13:38:29 | 000,001,830 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk

[2013/10/13 12:51:40 | 000,000,770 | ---- | C] () -- C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\jZip.lnk

[2013/10/13 12:51:40 | 000,000,740 | ---- | C] () -- C:\Users\User\Desktop\jZip.lnk

[2013/07/02 12:15:01 | 000,053,734 | ---- | C] () -- C:\Users\User\282741_420147591400807_286203601_n.jpg

[2013/05/28 17:26:28 | 000,021,377 | ---- | C] () -- C:\Users\User\T116672232.pdf

[2012/12/24 12:14:38 | 000,279,121 | ---- | C] () -- C:\Users\User\photo.JPG

[2012/12/24 12:11:24 | 000,495,258 | ---- | C] () -- C:\Users\User\meandmydeb.jpg

[2012/12/24 12:07:37 | 000,495,258 | ---- | C] () -- C:\Users\User\meand mydeb.jpg

[2012/10/24 11:52:22 | 001,749,376 | ---- | C] () -- C:\Windows\System32\snp2uvc.sys

[2012/10/24 11:52:22 | 001,749,376 | ---- | C] () -- C:\Windows\System32\drivers\snp2uvc.sys

[2012/10/24 11:52:22 | 000,028,032 | ---- | C] () -- C:\Windows\System32\sncduvc.sys

[2012/10/24 11:52:22 | 000,028,032 | ---- | C] () -- C:\Windows\System32\drivers\sncduvc.sys

[2012/10/24 11:52:21 | 000,172,032 | ---- | C] ( ) -- C:\Windows\System32\rsnp2uvc.dll

[2012/10/24 11:52:21 | 000,053,248 | ---- | C] ( ) -- C:\Windows\System32\csnp2uvc.dll

[2012/10/24 11:52:21 | 000,000,131 | ---- | C] () -- C:\Windows\System32\PidList.ini

[2012/10/24 11:52:21 | 000,000,131 | ---- | C] () -- C:\Windows\PidList.ini

[2012/09/14 12:08:44 | 000,913,149 | ---- | C] () -- C:\Users\User\DSC00800.jpg

[2012/09/14 12:08:26 | 000,903,380 | ---- | C] () -- C:\Users\User\My man and me.jpg

[2012/06/24 10:15:23 | 000,000,375 | ---- | C] () -- C:\Users\User\Pictures.lnk

[2012/05/30 12:09:05 | 000,000,558 | ---- | C] () -- C:\Users\User\DALIDA Ti amo - Shortcut.lnk

[2012/02/09 15:11:50 | 000,010,286 | ---- | C] () -- C:\Users\User\397575_308295802544150_179578625415869_906098_1180149251_n.jpg

[2011/09/25 14:51:40 | 000,202,262 | ---- | C] () -- C:\Users\User\champagne_glasses.jpg

[2011/06/27 18:26:36 | 000,232,496 | R--- | C] () -- C:\ProgramData\DeviceManager.xml.rc4

[2011/05/30 11:51:48 | 004,510,704 | ---- | C] () -- C:\Users\User\bpmpro4-manual-en.pdf

[2011/05/30 11:51:44 | 004,389,473 | ---- | C] () -- C:\Users\User\bpmpro4-manual-de.pdf

[2011/04/16 14:12:43 | 000,372,179 | ---- | C] () -- C:\Users\User\VDJ5-UserGuide_for_Updates.pdf

[2011/03/27 07:42:58 | 000,153,250 | ---- | C] () -- C:\Users\User\172249_105912529484017_100001958112883_47147_2462797_o.jpg

[2011/02/22 05:47:19 | 028,212,348 | ---- | C] () -- C:\Users\User\Phils mix rev0.wav

[2011/01/21 16:04:21 | 000,004,219 | ---- | C] () -- C:\Users\User\images.jpg

[2011/01/19 18:21:55 | 029,818,344 | ---- | C] () -- C:\Users\User\something stupid.wav

[2011/01/10 12:47:53 | 000,145,095 | ---- | C] () -- C:\Users\User\lets_party_clear.gif

[2010/05/07 17:23:06 | 002,760,619 | ---- | C] () -- C:\Users\User\SPC014 - 23 - Williams, Andy - Moon River.mp3

[2010/05/07 17:23:06 | 001,241,664 | ---- | C] () -- C:\Users\User\SPC014 - 23 - Williams, Andy - Moon River.cdg

[2010/03/23 10:29:47 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat

[2009/11/24 15:47:21 | 000,193,024 | ---- | C] () -- C:\Users\User\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

[2009/11/24 12:59:10 | 000,007,620 | ---- | C] () -- C:\Users\User\AppData\Local\d3d9caps.dat

[2008/09/15 12:55:03 | 003,056,117 | ---- | C] () -- C:\Users\User\Singin' in the rain.mp3

[2008/09/15 12:55:03 | 001,375,200 | ---- | C] () -- C:\Users\User\Singin' in the rain.cdg

========== ZeroAccess Check ==========

[2006/11/02 13:54:22 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

"" = %SystemRoot%\system32\shell32.dll -- [2011/01/21 17:35:22 | 011,586,048 | ---- | M] (Microsoft Corporation)

"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]

"" = %systemroot%\system32\wbem\fastprox.dll -- [2009/04/11 14:18:30 | 000,614,912 | ---- | M] (Microsoft Corporation)

"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

"" = %systemroot%\system32\wbem\wbemess.dll -- [2009/04/11 14:18:20 | 000,347,648 | ---- | M] (Microsoft Corporation)

"ThreadingModel" = Both

========== Alternate Data Streams ==========

@Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:DFC5A2B2

@Alternate Data Stream - 112 bytes -> C:\ProgramData\TEMP:D1B5B4F1

@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:A8ADE5D8

< End of report >

Link naar reactie
Delen op andere sites

×
×
  • Nieuwe aanmaken...

Belangrijke informatie

We hebben cookies geplaatst op je toestel om deze website voor jou beter te kunnen maken. Je kunt de cookie instellingen aanpassen, anders gaan we er van uit dat het goed is om verder te gaan.