alexger
Topic Starter
Hello,
I need help trying to clean my son's computer.
I ran an avast scan and it shows 253 files infected with threat: win32:parite
I tried to move it to the chest but it says not enough disk space although there is 78 GB of free space.
Malwarebytes hasn't found any malicious threats.
Any help is greatly appreciated.
Here is the OTL log
OTL logfile created on: 22/7/2010 3:33:00 μμ - Run 4
OTL by OldTimer - Version 3.2.1.0 Folder = C:\Documents and Settings\Alex\Τα έγγραφά μου\Ληφθέντα αρχεία
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000*** | Country: Ελλάδα | Language: ELL | Date Format: d/M/yyyy
1.015,00 Mb Total Physical Memory | 395,00 Mb Available Physical Memory | 39,00% Memory free
2,00 Gb Paging File | 2,00 Gb Available in Paging File | 69,00% Paging File free
Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 149,04 Gb Total Space | 77,88 Gb Free Space | 52,26% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: ***
Current User Name: ***
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
========== Processes (SafeList) ==========
PRC - [2010/07/22 15:27:56 | 000,561,664 | —- | M] (OldTimer Tools) – C:\Documents and Settings\Alex\Τα έγγραφά μου\Ληφθέντα αρχεία\OTL.exe
PRC - [2010/07/19 15:07:26 | 000,134,808 | —- | M] (Google Inc.) – C:\Documents and Settings\Alex\Local Settings\Application Data\Google\Update\1.2.183.29\GoogleCrashHandler.exe
PRC - [2010/07/09 22:04:34 | 003,493,776 | —- | M] (Xfire Inc.) – C:\Program Files\Xfire\Xfire.exe
PRC - [2010/07/04 22:51:26 | 000,017,408 | —- | M] () – C:\Program Files\Unlocker\UnlockerAssistant.exe
PRC - [2010/07/02 11:23:56 | 002,403,568 | —- | M] (SUPERAntiSpyware.com) – C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
PRC - [2010/06/28 23:57:18 | 002,837,864 | —- | M] (AVAST Software) – C:\Program Files\Alwil Software\Avast5\AvastUI.exe
PRC - [2010/06/28 23:57:15 | 000,040,384 | —- | M] (AVAST Software) – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
PRC - [2010/02/04 14:39:53 | 000,198,160 | —- | M] (RealNetworks, Inc.) – C:\Program Files\Common Files\Real\Update_OB\realsched.exe
PRC - [2010/01/11 17:28:34 | 000,113,152 | —- | M] () – C:\WINDOWS\svcadmin.exe
PRC - [2009/10/27 21:46:16 | 000,323,392 | —- | M] (BitTorrent, Inc.) – C:\Program Files\DNA\btdna.exe
PRC - [2009/04/02 01:51:00 | 000,288,560 | —- | M] (syncables, LLC) – C:\Program Files\syncables\syncables desktop\MigoMapi.exe
PRC - [2009/04/02 01:51:00 | 000,173,360 | —- | M] (syncables, LLC) – C:\Program Files\syncables\syncables desktop\Syncables.exe
PRC - [2009/04/02 01:51:00 | 000,135,168 | —- | M] (Sun Microsystems, Inc.) – C:\Program Files\syncables\syncables desktop\jre\bin\javaw.exe
PRC - [2009/03/30 23:47:00 | 000,483,428 | —- | M] (IDT, Inc.) – C:\Program Files\IDT\WDM\sttray.exe
PRC - [2009/03/30 23:47:00 | 000,254,042 | —- | M] (IDT, Inc.) – c:\Program Files\IDT\WDM\stacsv.exe
PRC - [2009/03/30 16:02:08 | 000,319,488 | —- | M] () – C:\Program Files\HP\HPBTWD.exe
PRC - [2009/02/26 15:24:50 | 000,097,680 | —- | M] (Microsoft Corporation) – C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
PRC - [2009/02/19 00:41:56 | 000,737,280 | —- | M] (Andrea Electronics Corporation) – C:\WINDOWS\system32\AESTFltr.exe
PRC - [2008/12/11 22:46:22 | 000,125,424 | —- | M] () – C:\Program Files\Roxio\BackOnTrack\Disaster Recovery\SaibSVC.exe
PRC - [2008/07/07 15:12:42 | 000,600,680 | —- | M] (Broadcom Corporation.) – C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
PRC - [2008/04/16 15:00:00 | 001,038,336 | —- | M] (Microsoft Corporation) – C:\WINDOWS\explorer.exe
PRC - [2007/10/23 10:45:40 | 001,336,632 | —- | M] () – C:\Documents and Settings\All Users\Application Data\U3\U3Launcher\LaunchU3.exe
PRC - [2003/05/28 12:37:00 | 000,118,784 | —- | M] () – C:\Program Files\SpeedTouch\Dr SpeedTouch\drst.exe
========== Modules (SafeList) ==========
MOD - [2010/07/22 15:27:56 | 000,561,664 | —- | M] (OldTimer Tools) – C:\Documents and Settings\Alex\Τα έγγραφά μου\Ληφθέντα αρχεία\OTL.exe
MOD - [2010/07/09 22:04:44 | 000,970,640 | —- | M] (Xfire Inc.) – C:\Program Files\Xfire\xfire_toucan_43094.dll
MOD - [2010/07/05 00:32:36 | 000,004,608 | —- | M] () – C:\Program Files\Unlocker\UnlockerHook.dll
MOD - [2008/07/07 15:11:06 | 000,073,728 | —- | M] (Broadcom Corporation.) – C:\WINDOWS\system32\BtMmHook.dll
MOD - [2008/07/07 15:08:46 | 000,040,960 | —- | M] () – C:\Program Files\WIDCOMM\Bluetooth Software\BTKeyInd.dll
MOD - [2008/04/16 15:00:00 | 000,586,240 | —- | M] (Microsoft Corporation) – C:\WINDOWS\system32\mlang.dll
MOD - [2008/04/16 15:00:00 | 000,027,136 | —- | M] (Microsoft Corporation) – C:\WINDOWS\system32\wsock32.dll
MOD - [2004/01/12 00:00:00 | 000,348,160 | —- | M] (Microsoft Corporation) – C:\WINDOWS\system32\msvcr71.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [Auto | Stopped] – – (RichVideo) Cyberlink RichVideo Service(CRVS)
SRV - File not found [On_Demand | Stopped] – – (gusvc)
SRV - File not found [Auto | Stopped] – – (gupdate) Google Update Service (gupdate)
SRV - [2010/06/28 23:57:15 | 000,040,384 | —- | M] (AVAST Software) [On_Demand | Running] – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe – (avast! Web Scanner)
SRV - [2010/06/28 23:57:15 | 000,040,384 | —- | M] (AVAST Software) [On_Demand | Running] – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe – (avast! Mail Scanner)
SRV - [2010/06/28 23:57:15 | 000,040,384 | —- | M] (AVAST Software) [Auto | Running] – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe – (avast! Antivirus)
SRV - [2010/01/11 17:28:34 | 000,113,152 | —- | M] () [Auto | Running] – C:\WINDOWS\svcadmin.exe – (Anyplace Control Security)
SRV - [2009/10/12 00:27:07 | 003,369,044 | —- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] – C:\WINDOWS\System32\GameMon.des – (npggsvc)
SRV - [2009/03/30 23:47:00 | 000,254,042 | —- | M] (IDT, Inc.) [Auto | Running] – c:\Program Files\IDT\WDM\stacsv.exe – (STacSV)
SRV - [2008/12/11 22:46:22 | 000,125,424 | —- | M] () [Auto | Running] – C:\Program Files\Roxio\BackOnTrack\Disaster Recovery\SaibSVC.exe – (9734BF6A-2DCD-40f0-BAB0-5AAFEEBE1269)
========== Driver Services (SafeList) ==========
DRV - [2010/06/28 23:37:52 | 000,046,672 | —- | M] (ALWIL Software) [Kernel | System | Running] – C:\WINDOWS\system32\drivers\aswTdi.sys – (aswTdi)
DRV - [2010/06/28 23:37:30 | 000,165,456 | —- | M] (ALWIL Software) [Kernel | System | Running] – C:\WINDOWS\system32\drivers\aswSP.sys – (aswSP)
DRV - [2010/06/28 23:33:13 | 000,023,376 | —- | M] (ALWIL Software) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\aswRdr.sys – (aswRdr)
DRV - [2010/06/28 23:32:45 | 000,100,176 | —- | M] (ALWIL Software) [File_System | Auto | Running] – C:\WINDOWS\system32\drivers\aswmon2.sys – (aswMon2)
DRV - [2010/06/28 23:32:33 | 000,017,744 | —- | M] (ALWIL Software) [File_System | Auto | Running] – C:\WINDOWS\system32\drivers\aswFsBlk.sys – (aswFsBlk)
DRV - [2010/06/28 23:32:16 | 000,028,880 | —- | M] (ALWIL Software) [Kernel | System | Running] – C:\WINDOWS\system32\drivers\aavmker4.sys – (Aavmker4)
DRV - [2010/06/15 23:19:16 | 000,004,096 | —- | M] () [Kernel | On_Demand | Stopped] – C:\WINDOWS\system32\drivers\nocashio.sys – (nocashio)
DRV - [2010/05/31 13:36:37 | 000,067,656 | —- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] – C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS – (SASKUTIL)
DRV - [2010/02/17 11:25:50 | 000,012,872 | —- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] – C:\Program Files\SUPERAntiSpyware\sasdifsv.sys – (SASDIFSV)
DRV - [2010/02/17 11:15:58 | 000,012,872 | R— | M] ( SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | On_Demand | Stopped] – C:\Program Files\SUPERAntiSpyware\SASENUM.SYS – (SASENUM)
DRV - [2009/10/17 01:22:53 | 000,015,781 | —- | M] (Meetinghouse Data Communications) [Kernel | Auto | Running] – C:\WINDOWS\system32\drivers\mdc8021x.sys – (MDC8021X) AEGIS Protocol (IEEE 802.1x)
DRV - [2009/08/05 22:48:42 | 000,054,752 | —- | M] (Microsoft Corporation) [Kernel | Auto | Running] – C:\WINDOWS\system32\drivers\fssfltr_tdi.sys – (fssfltr)
DRV - [2009/06/09 17:52:37 | 001,735,040 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\BCMWL5.SYS – (BCM43XX)
DRV - [2009/03/30 23:47:00 | 001,550,891 | —- | M] (IDT, Inc.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\sthda.sys – (STHDA)
DRV - [2009/03/19 21:55:06 | 000,113,664 | —- | M] (Andrea Electronics Corporation) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\AESTAud.sys – (AESTAud)
DRV - [2009/03/03 00:03:48 | 000,038,912 | —- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\l1c51x86.sys – (L1c)
DRV - [2009/01/16 05:41:00 | 000,206,512 | —- | M] (Synaptics, Inc.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\SynTP.sys – (SynTP)
DRV - [2008/12/11 01:00:00 | 000,025,584 | —- | M] (Sonic Solutions) [Kernel | System | Running] – C:\WINDOWS\system32\drivers\SaibVd32.sys – (SaibVd32)
DRV - [2008/12/11 01:00:00 | 000,021,488 | —- | M] (Sonic Solutions) [Kernel | Boot | Running] – C:\WINDOWS\System32\Drivers\SahdIa32.sys – (SahdIa32)
DRV - [2008/12/11 01:00:00 | 000,015,856 | —- | M] (Sonic Solutions) [Kernel | Boot | Running] – C:\WINDOWS\System32\Drivers\SaibIa32.sys – (SaibIa32)
DRV - [2008/11/22 04:36:46 | 000,160,256 | —- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] – C:\WINDOWS\system32\drivers\RTS5121.sys – (RSUSBSTOR)
DRV - [2008/09/24 22:09:40 | 000,103,792 | —- | M] (Sonic Solutions) [File_System | Boot | Running] – C:\WINDOWS\system32\drivers\syscow32x.sys – (SysCow)
DRV - [2008/09/13 08:32:00 | 000,327,192 | —- | M] (Intel Corporation) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\drivers\iaStor.sys – (iaStor)
DRV - [2008/07/25 04:37:04 | 000,047,272 | —- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] – C:\WINDOWS\system32\drivers\btwusb.sys – (BTWUSB)
DRV - [2008/06/24 20:59:08 | 000,991,400 | —- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\btkrnl.sys – (btkrnl)
DRV - [2008/04/16 15:00:00 | 000,144,384 | —- | M] (Windows ® Server 2003 DDK provider) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\hdaudbus.sys – (HDAudBus)
DRV - [2008/04/16 15:00:00 | 000,088,320 | —- | M] (Microsoft Corporation) [Kernel | Auto | Running] – C:\WINDOWS\system32\drivers\nwlnkipx.sys – (NwlnkIpx)
DRV - [2008/04/16 15:00:00 | 000,063,232 | —- | M] (Microsoft Corporation) [Kernel | Auto | Running] – C:\WINDOWS\system32\drivers\nwlnknb.sys – (NwlnkNb)
DRV - [2008/04/16 15:00:00 | 000,055,936 | —- | M] (Microsoft Corporation) [Kernel | Auto | Running] – C:\WINDOWS\system32\drivers\nwlnkspx.sys – (NwlnkSpx)
DRV - [2008/04/14 17:06:40 | 000,043,008 | —- | M] (Advanced Micro Devices, Inc.) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\amdagp.sys – (amdagp)
DRV - [2008/04/14 17:06:40 | 000,040,960 | —- | M] (Silicon Integrated Systems Corporation) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\sisagp.sys – (sisagp)
DRV - [2008/02/16 01:12:06 | 005,854,752 | —- | M] (Intel Corporation) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\igxpmp32.sys – (ialm)
DRV - [2007/08/14 08:12:44 | 000,005,760 | —- | M] (Sophos Plc) [Kernel | On_Demand | Stopped] – C:\WINDOWS\system32\21D.tmp – (MEMSWEEP2)
DRV - [2005/10/16 08:00:00 | 000,012,928 | —- | M] (Bo Brantén) [Kernel | System | Running] – C:\WINDOWS\system32\drivers\filedisk.sys – (FileDisk)
DRV - [2005/01/03 00:43:08 | 000,004,682 | —- | M] (INCA Internet Co., Ltd.) [Kernel | On_Demand | Stopped] – C:\WINDOWS\system32\npptNT2.sys – (NPPTNT2)
DRV - [2001/11/27 15:59:14 | 000,006,784 | —- | M] (CMD Technology, Inc.) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\cmdide.sys – (CmdIde)
DRV - [2001/08/18 14:07:44 | 000,019,072 | —- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\sparrow.sys – (Sparrow)
DRV - [2001/08/18 14:07:42 | 000,030,688 | —- | M] (LSI Logic) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\sym_u3.sys – (sym_u3)
DRV - [2001/08/18 14:07:40 | 000,028,384 | —- | M] (LSI Logic) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\sym_hi.sys – (sym_hi)
DRV - [2001/08/18 14:07:36 | 000,032,640 | —- | M] (LSI Logic) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\symc8xx.sys – (symc8xx)
DRV - [2001/08/18 14:07:34 | 000,016,256 | —- | M] (Symbios Logic Inc.) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\symc810.sys – (symc810)
DRV - [2001/08/18 13:52:22 | 000,036,736 | —- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\ultra.sys – (ultra)
DRV - [2001/08/18 13:52:20 | 000,045,312 | —- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\ql12160.sys – (ql12160)
DRV - [2001/08/18 13:52:20 | 000,040,320 | —- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\ql1080.sys – (ql1080)
DRV - [2001/08/18 13:52:18 | 000,049,024 | —- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\ql1280.sys – (ql1280)
DRV - [2001/08/18 13:52:16 | 000,179,584 | —- | M] (Mylex Corporation) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\dac2w2k.sys – (dac2w2k)
DRV - [2001/08/18 13:52:12 | 000,017,280 | —- | M] (American Megatrends Inc.) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\mraid35x.sys – (mraid35x)
DRV - [2001/08/18 13:52:00 | 000,026,496 | —- | M] (Advanced System Products, Inc.) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\asc.sys – (asc)
DRV - [2001/08/18 13:51:58 | 000,014,848 | —- | M] (Advanced System Products, Inc.) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\asc3550.sys – (asc3550)
DRV - [2001/08/18 13:51:56 | 000,005,248 | —- | M] (Acer Laboratories Inc.) [Kernel | Boot | Running] – C:\WINDOWS\system32\DRIVERS\aliide.sys – (AliIde)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "http://www.google.gr/firefox"
FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:1.0
FF - prefs.js..extensions.enabledItems: [removed]:1.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - HKLM\software\mozilla\Firefox\extensions\\{6E19037A-12E3-4295-8915-ED48BC341614}: C:\Program Files\PremierOpinion
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/07/19 14:49:33 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/07/19 14:49:25 | 000,000,000 | —D | M]
[2010/07/13 19:25:35 | 000,000,000 | —D | M] – C:\Documents and Settings\Alex\Application Data\Mozilla\Extensions
[2010/07/13 19:25:35 | 000,000,000 | —D | M] – C:\Documents and Settings\Alex\Application Data\Mozilla\Extensions\[removed]
[2010/07/19 17:18:29 | 000,000,000 | —D | M] – C:\Documents and Settings\Alex\Application Data\Mozilla\Firefox\Profiles\idww0b55.default\extensions
[2010/07/05 16:39:05 | 000,000,000 | —D | M] (Microsoft .NET Framework Assistant) – C:\Documents and Settings\Alex\Application Data\Mozilla\Firefox\Profiles\idww0b55.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/07/19 17:18:29 | 000,000,000 | —D | M] – C:\Program Files\Mozilla Firefox\extensions
[2010/07/19 15:05:28 | 000,000,000 | —D | M] (Java Console) – C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010/07/19 15:04:16 | 000,423,656 | —- | M] (Oracle) – C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2010/06/26 10:28:18 | 000,001,525 | —- | M] () – C:\Program Files\Mozilla Firefox\searchplugins\amazon-en-GB.xml
[2010/06/26 10:28:18 | 000,000,760 | —- | M] () – C:\Program Files\Mozilla Firefox\searchplugins\eBay-en-GB.xml
[2010/06/26 10:28:18 | 000,001,219 | —- | M] () – C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-el.xml
O1 HOSTS File: ([2010/04/23 22:07:50 | 000,000,098 | —- | M]) - C:\WINDOWS\system32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (CescrtHlpr Object) - {64182481-4F71-486b-A045-B233BD0DA8FC} - C:\Program Files\facemoods.com\facemoods\1.3.62.1\facemoods.dll (facemoods.com)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll File not found
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll File not found
O2 - BHO: (Microsoft Live Search Toolbar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files\MSN\Toolbar\3.0.0559.0\msneshellx.dll File not found
O2 - BHO: (Nuclear Games Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll File not found
O2 - BHO: (no name) - {EAEE5C74-6D0D-4aca-9232-0DA4A7B866BA} - C:\Program Files\PicLensIE\cooliris.dll (Cooliris Inc.)
O3 - HKLM\..\Toolbar: (Microsoft Live Search Toolbar) - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files\MSN\Toolbar\3.0.0559.0\msneshellx.dll File not found
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll File not found
O3 - HKLM\..\Toolbar: (Nuclear Games Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll File not found
O3 - HKLM\..\Toolbar: (facemoods Toolbar) - {DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - C:\Program Files\facemoods.com\facemoods\1.3.62.1\facemoodsTlbr.dll (facemoods.com)
O3 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll File not found
O3 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006\..\Toolbar\WebBrowser: (Nuclear Games Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll File not found
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe File not found
O4 - HKLM..\Run: [AESTFltr] C:\WINDOWS\System32\AESTFltr.exe (Andrea Electronics Corporation)
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
O4 - HKLM..\Run: [HP BTW Detect Program] C:\Program Files\HP\HPBTWD.exe ()
O4 - HKLM..\Run: [Syncables] C:\Program Files\syncables\syncables desktop\Syncables.exe (syncables, LLC)
O4 - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe (IDT, Inc.)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [UCam_Menu] C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe File not found
O4 - HKLM..\Run: [UnlockerAssistant] C:\Program Files\Unlocker\UnlockerAssistant.exe ()
O4 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006..\Run: [BitTorrent DNA] C:\Program Files\DNA\btdna.exe (BitTorrent, Inc.)
O4 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006..\Run: [RGSC] C:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe (Take-Two Interactive Software, Inc.)
O4 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006..\Run: [Steam] C:\Program Files\Steam\Steam.exe File not found
O4 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006..\Run: [STManager] C:\Program Files\SpeedTouch\Dr SpeedTouch\drst.exe ()
O4 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE (SUPERAntiSpyware.com)
O4 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe File not found
O4 - Startup: C:\Documents and Settings\Alex\Start Menu\Προγράμματα\Εκκίνηση\LaunchU3.exe.lnk = C:\Documents and Settings\Alex\Application Data\Microsoft\Installer\{D8E363A7-88B7-446D-B2C0-E26CE4DC8E54}\_294823.exe ()
O4 - Startup: C:\Documents and Settings\Alex\Start Menu\Προγράμματα\Εκκίνηση\OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\Alex\Start Menu\Προγράμματα\Εκκίνηση\OneNote Table Of Contents.onetoc2 ()
O4 - Startup: C:\Documents and Settings\Alex\Start Menu\Προγράμματα\Εκκίνηση\Xfire.lnk = C:\Program Files\Xfire\Xfire.exe (Xfire Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Προγράμματα\Εκκίνηση\Bluetooth.lnk = C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
O4 - Startup: C:\Documents and Settings\Αlexandra\Start Menu\Προγράμματα\Εκκίνηση\OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Αποστολή σε Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O8 - Extra context menu item: Αποστολή στη συσκευή &Bluetooth;… - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : S&end; to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Launch Cooliris - {3437D640-C91A-458f-89F5-B9095EA4C28B} - C:\Program Files\PicLensIE\cooliris.dll (Cooliris Inc.)
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll File not found
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll File not found
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwa…director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab (Checkers Class)
O16 - DPF: {32C11E38-E587-4BE9-9ABB-D69158C21CE5} http://view.conn-x.gr/surveillance/software/mpeg4_dec.cab (Moonlight MPEG-4 Video Decoder)
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} http://messenger.zone.msn.com/binary/Solit…wn.cab56986.cab (Solitaire Showdown Class)
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} http://messenger.zone.msn.com/MessengerGam…1/GAME_UNO1.cab (UnoCtrl Class)
O16 - DPF: {67B1A88A-B5D2-48B1-BF93-EB74D6FCB077} http://view.conn-x.gr/surveillance/software/AMC.cab (AxisRTPSrcFilterEmb)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/Messe…nt.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} http://messenger.zone.msn.com/binary/MineS…er.cab56986.cab (Minesweeper Flags Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll File not found
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll (SUPERAntiSpyware.com)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O24 - Desktop Components:0 (Τρέχουσα αρχική σελίδα) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Alex\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Alex\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {4F07DA45-8170-4859-9B5F-037EF2970034} - Reg Error: Key error. File not found
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{78366410-670e-11df-8dee-0025b37102d0}\Shell\AutoRun\command - "" = __DTMEDIA\DTMedia.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37 - HKLM\…com [@ = ComFile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:\WINDOWS\system32\ias [2009/10/04 01:38:50 | 000,000,000 | —D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Wmi - C:\WINDOWS\system32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found
Drivers32: midi - C:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: midimapper - C:\WINDOWS\System32\midimap.dll (Microsoft Corporation)
Drivers32: mixer - C:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.imaadpcm - C:\WINDOWS\System32\imaadp32.acm (Microsoft Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.lhacm - lhacm.acm File not found
Drivers32: msacm.msadpcm - C:\WINDOWS\System32\msadp32.acm (Microsoft Corporation)
Drivers32: msacm.msaudio1 - C:\WINDOWS\System32\msaud32.acm (Microsoft Corporation)
Drivers32: msacm.msg711 - C:\WINDOWS\System32\msg711.acm (Microsoft Corporation)
Drivers32: msacm.msg723 - C:\WINDOWS\System32\msg723.acm (Microsoft Corporation)
Drivers32: msacm.msgsm610 - C:\WINDOWS\System32\msgsm32.acm (Microsoft Corporation)
Drivers32: msacm.siren - C:\WINDOWS\System32\sirenacm.dll (Microsoft Corporation)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.I420 - C:\WINDOWS\System32\msh263.drv (Microsoft Corporation)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: VIDC.IYUV - C:\WINDOWS\System32\iyuv_32.dll (Microsoft Corporation)
Drivers32: vidc.M261 - C:\WINDOWS\System32\msh261.drv (Microsoft Corporation)
Drivers32: vidc.M263 - C:\WINDOWS\System32\msh263.drv (Microsoft Corporation)
Drivers32: vidc.mrle - C:\WINDOWS\System32\msrle32.dll (Microsoft Corporation)
Drivers32: vidc.msvc - C:\WINDOWS\System32\msvidc32.dll (Microsoft Corporation)
Drivers32: VIDC.UYVY - C:\WINDOWS\System32\msyuv.dll (Microsoft Corporation)
Drivers32: VIDC.XFR1 - C:\WINDOWS\System32\xfcodec.dll ()
Drivers32: VIDC.YUY2 - C:\WINDOWS\System32\msyuv.dll (Microsoft Corporation)
Drivers32: VIDC.YVU9 - C:\WINDOWS\System32\tsbyuv.dll (Microsoft Corporation)
Drivers32: VIDC.YVYU - C:\WINDOWS\System32\msyuv.dll (Microsoft Corporation)
Drivers32: wave - C:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: wavemapper - C:\WINDOWS\System32\msacm32.drv (Microsoft Corporation)
CREATERESTOREPOINT
Error starting restore point: System Restore is disabled.
Error closing restore point: System Restore is disabled.
========== Files/Folders - Created Within 30 Days ==========
[2010/07/22 15:09:32 | 000,038,848 | —- | C] (ALWIL Software) – C:\WINDOWS\avastSS.scr
[2010/07/19 20:57:38 | 000,290,816 | —- | C] (Microsoft Corporation) – C:\WINDOWS\winhlp32.exe
[2010/07/19 20:57:37 | 000,015,872 | —- | C] (Microsoft Corporation) – C:\WINDOWS\taskman.exe
[2010/07/19 20:57:34 | 000,025,600 | —- | C] (Twain Working Group) – C:\WINDOWS\twunk_32.exe
[2010/07/19 16:29:26 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Τα έγγραφά μου\Ληφθέντα αρχεία
[2010/07/19 15:05:21 | 000,073,728 | —- | C] (Oracle) – C:\WINDOWS\System32\javacpl.cpl
[2010/07/19 15:05:20 | 000,153,376 | —- | C] (Oracle) – C:\WINDOWS\System32\javaws.exe
[2010/07/19 15:05:20 | 000,145,184 | —- | C] (Oracle) – C:\WINDOWS\System32\javaw.exe
[2010/07/19 15:05:20 | 000,145,184 | —- | C] (Oracle) – C:\WINDOWS\System32\java.exe
[2010/07/19 15:04:03 | 000,000,000 | —D | C] – C:\Program Files\Java
[2010/07/19 12:47:47 | 000,000,000 | —D | C] – C:\Program Files\Common Files\Skype
[2010/07/18 16:55:01 | 000,000,000 | —D | C] – C:\Program Files\Common Files\Java
[2010/07/17 23:23:21 | 000,000,000 | —D | C] – C:\Program Files\Counter-Strike 1.6
[2010/07/17 15:19:44 | 000,165,456 | —- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswSP.sys
[2010/07/17 15:19:44 | 000,017,744 | —- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2010/07/17 15:19:41 | 000,023,376 | —- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswRdr.sys
[2010/07/17 15:19:39 | 000,046,672 | —- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswTdi.sys
[2010/07/17 15:19:36 | 000,100,176 | —- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswmon2.sys
[2010/07/17 15:19:36 | 000,094,544 | —- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswmon.sys
[2010/07/17 15:19:35 | 000,028,880 | —- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aavmker4.sys
[2010/07/17 15:17:25 | 000,165,032 | —- | C] (AVAST Software) – C:\WINDOWS\System32\aswBoot.exe
[2010/07/17 12:59:07 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Patch
[2010/07/17 12:54:25 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\system
[2010/07/16 13:59:08 | 000,000,000 | —D | C] – C:\Program Files\Wolfenstein - Enemy Territory
[2010/07/16 11:52:51 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Saved Games
[2010/07/16 11:52:51 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\Floodlight Games
[2010/07/16 11:52:51 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\Floodlight Games
[2010/07/15 21:44:40 | 000,000,000 | —D | C] – C:\Program Files\Nice-Games
[2010/07/15 21:24:59 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\WildTangent
[2010/07/15 15:54:19 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\Sahmon Games
[2010/07/14 22:19:21 | 000,000,000 | —D | C] – C:\Program Files\Steam
[2010/07/14 21:11:18 | 000,000,000 | —D | C] – C:\Program Files\GameTop.com
[2010/07/14 13:32:16 | 000,744,448 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\helpsvc.exe
[2010/07/14 11:56:50 | 001,414,440 | —- | C] (Nero AG) – C:\WINDOWS\System32\ShellManager310E2D762.dll
[2010/07/13 19:28:51 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\Vivox
[2010/07/13 19:25:14 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\IMVU
[2010/07/13 19:24:13 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\IMVUClient
[2010/07/13 18:17:08 | 000,000,000 | —D | C] – C:\Netgame
[2010/07/13 13:50:36 | 000,000,000 | —D | C] – C:\Program Files\Z8Games
[2010/07/12 20:08:16 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\supertuxkart
[2010/07/12 17:52:39 | 000,000,000 | —D | C] – C:\Program Files\OpenAL
[2010/07/12 17:52:38 | 000,444,952 | —- | C] (Creative Labs) – C:\WINDOWS\System32\wrap_oal.dll
[2010/07/12 17:52:38 | 000,109,080 | —- | C] (Portions © Creative Labs Inc. and NVIDIA Corp.) – C:\WINDOWS\System32\OpenAL32.dll
[2010/07/12 17:46:32 | 000,000,000 | —D | C] – C:\Alien Arena 7_40
[2010/07/12 16:30:14 | 000,000,000 | —D | C] – C:\Program Files\Windows Live Safety Center
[2010/07/12 13:50:45 | 000,000,000 | —D | M] – C:\Documents and Settings\NetworkService\Application Data\Xfire
[2010/07/11 18:54:30 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Τα έγγραφά μου\Cross Fire
[2010/07/11 18:54:13 | 000,000,000 | —D | C] – C:\CFLog
[2010/07/11 18:13:12 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\facemoods.com
[2010/07/11 17:58:04 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\Xfire
[2010/07/11 17:57:35 | 000,000,000 | —D | C] – C:\Program Files\Xfire
[2010/07/11 11:40:43 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Local Settings\Application Data\Rockstar Games
[2010/07/11 11:38:12 | 000,000,000 | —D | C] – C:\Program Files\Rockstar Games
[2010/07/08 18:06:56 | 003,369,044 | —- | C] (INCA Internet Co., Ltd.) – C:\WINDOWS\System32\GameMon.des
[2010/07/08 18:06:27 | 000,004,682 | —- | C] (INCA Internet Co., Ltd.) – C:\WINDOWS\System32\npptNT2.sys
[2010/07/08 18:05:38 | 000,000,000 | —D | C] – C:\Program Files\Common Files\INCA Shared
[2010/07/08 16:29:41 | 000,000,000 | —D | C] – C:\Program Files\facemoods.com
[2010/07/08 15:36:34 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\uTorrent
[2010/07/07 14:27:39 | 000,000,000 | —D | C] – C:\Program Files\Windows Garbage Collector
[2010/07/07 14:24:00 | 000,000,000 | —D | C] – C:\Program Files\Unlocker
[2010/07/04 16:39:02 | 000,000,000 | —D | C] – C:\TEMP
[2010/07/04 15:26:15 | 000,000,000 | -H-D | C] – C:\WINDOWS\PIF
[2010/07/04 13:28:57 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Anyplace Control 4
[2010/07/04 13:01:26 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Local Settings\Application Data\CrossLoop
[2010/07/03 19:39:08 | 000,038,912 | —- | C] (RealVNC Ltd.) – C:\vnchooks.dll
[2010/07/03 19:27:28 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\TeamViewer
[2010/07/03 18:55:51 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Ôá ÝããñáöÜ ìïõ
[2010/07/03 18:53:05 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Τα έγγραφά μου\Battlefield 2
[2010/07/03 18:41:05 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Τα έγγραφά μου\Crazy Taxi 3
[2010/07/03 12:48:43 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\Jugilus
[2010/07/03 12:44:50 | 000,000,000 | —D | C] – C:\Program Files\bfgclient
[2010/07/01 13:05:29 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\Mozilla
[2010/07/01 12:41:55 | 000,000,000 | —D | C] – C:\Program Files\Mozilla Firefox
[2010/05/30 16:45:33 | 000,000,000 | —D | M] – C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2010/05/29 18:49:12 | 000,000,000 | —D | M] – C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2010/02/12 17:05:41 | 000,000,000 | —D | M] – C:\Documents and Settings\LocalService\Local Settings\Application Data\Adobe
[2009/10/26 21:04:00 | 000,000,000 | —D | M] – C:\Documents and Settings\NetworkService\Local Settings\Application Data\Google
[2009/10/26 20:59:05 | 000,000,000 | —D | M] – C:\Documents and Settings\LocalService\Local Settings\Application Data\Google
[2009/10/04 01:38:11 | 000,000,000 | –SD | M] – C:\Documents and Settings\NetworkService\Application Data\Microsoft
[2009/10/04 01:38:11 | 000,000,000 | –SD | M] – C:\Documents and Settings\LocalService\Application Data\Microsoft
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2010/07/22 15:12:05 | 000,001,274 | —- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1329424299-2075852907-1434492207-1006UA.job
[2010/07/22 15:12:02 | 000,001,222 | —- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1329424299-2075852907-1434492207-1006Core.job
[2010/07/22 15:09:33 | 000,003,023 | —- | M] () – C:\WINDOWS\System32\CONFIG.NT
[2010/07/22 15:01:37 | 000,000,454 | -H– | M] () – C:\WINDOWS\tasks\User_Feed_Synchronization-{654D911E-481C-43FE-81C7-99ED4C05CABD}.job
[2010/07/22 14:58:44 | 000,002,659 | —- | M] () – C:\Documents and Settings\Alex\Start Menu\Προγράμματα\Εκκίνηση\LaunchU3.exe.lnk
[2010/07/22 14:57:14 | 000,001,178 | —- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2010/07/22 14:57:14 | 000,000,006 | -H– | M] () – C:\WINDOWS\tasks\SA.DAT
[2010/07/22 14:55:45 | 000,002,048 | –S- | M] () – C:\WINDOWS\bootstat.dat
[2010/07/22 14:55:43 | 1064,620,032 | -HS- | M] () – C:\hiberfil.sys
[2010/07/22 14:28:55 | 009,699,328 | —- | M] () – C:\Documents and Settings\Alex\ntuser.dat
[2010/07/22 14:28:51 | 000,000,178 | -HS- | M] () – C:\Documents and Settings\Alex\ntuser.ini
[2010/07/22 14:28:18 | 003,766,370 | -H– | M] () – C:\Documents and Settings\Alex\Local Settings\Application Data\IconCache.db
[2010/07/22 02:01:04 | 000,000,924 | —- | M] () – C:\Documents and Settings\Alex\Επιφάνεια εργασίας\Συντόμευση για το HiJackThis.lnk
[2010/07/21 18:13:49 | 000,000,372 | —- | M] () – C:\Documents and Settings\Alex\Τα έγγραφά μου\spider.sav
[2010/07/21 17:03:49 | 001,162,174 | —- | M] () – C:\WINDOWS\System32\PerfStringBackup.INI
[2010/07/21 17:03:49 | 000,548,378 | —- | M] () – C:\WINDOWS\System32\perfh008.dat
[2010/07/21 17:03:49 | 000,438,390 | —- | M] () – C:\WINDOWS\System32\perfh009.dat
[2010/07/21 17:03:49 | 000,093,878 | —- | M] () – C:\WINDOWS\System32\perfc008.dat
[2010/07/21 17:03:49 | 000,070,320 | —- | M] () – C:\WINDOWS\System32\perfc009.dat
[2010/07/21 16:54:00 | 000,001,182 | —- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2010/07/21 16:49:52 | 000,000,384 | -H– | M] () – C:\WINDOWS\tasks\{F897AA24-BDC3-11D1-B85B-00C04FB93981}_ΑΛΕΞ_Alex.job
[2010/07/19 17:03:50 | 000,000,747 | —- | M] () – C:\Documents and Settings\Alex\Επιφάνεια εργασίας\Counter-Strike 1.6.lnk
[2010/07/19 15:09:51 | 000,002,277 | —- | M] () – C:\Documents and Settings\Alex\Επιφάνεια εργασίας\Google Chrome.lnk
[2010/07/19 15:04:12 | 000,153,376 | —- | M] (Oracle) – C:\WINDOWS\System32\javaws.exe
[2010/07/19 15:04:12 | 000,145,184 | —- | M] (Oracle) – C:\WINDOWS\System32\javaw.exe
[2010/07/19 15:04:12 | 000,145,184 | —- | M] (Oracle) – C:\WINDOWS\System32\java.exe
[2010/07/19 15:04:12 | 000,073,728 | —- | M] (Oracle) – C:\WINDOWS\System32\javacpl.cpl
[2010/07/19 15:04:10 | 000,423,656 | —- | M] (Oracle) – C:\WINDOWS\System32\deployJava1.dll
[2010/07/18 14:18:10 | 269,350,966 | —- | M] () – C:\Documents and Settings\Alex\Τα έγγραφά μου\Counter Strike 1.6 Reloaded1.7z
[2010/07/17 14:22:28 | 000,000,664 | —- | M] () – C:\WINDOWS\System32\d3d9caps.dat
[2010/07/16 15:20:58 | 000,001,158 | —- | M] () – C:\WINDOWS\System32\wpa.dbl
[2010/07/14 12:20:41 | 000,000,000 | —- | M] () – C:\WINDOWS\lgfwup.ini
[2010/07/13 13:49:42 | 000,000,069 | —- | M] () – C:\WINDOWS\NeroDigital.ini
[2010/07/12 17:52:39 | 000,444,952 | —- | M] (Creative Labs) – C:\WINDOWS\System32\wrap_oal.dll
[2010/07/12 17:52:38 | 000,109,080 | —- | M] (Portions © Creative Labs Inc. and NVIDIA Corp.) – C:\WINDOWS\System32\OpenAL32.dll
[2010/07/12 17:52:34 | 000,000,088 | —- | M] () – C:\WINDOWS\galaxy.ini
[2010/07/11 17:57:59 | 000,000,650 | —- | M] () – C:\Documents and Settings\Alex\Start Menu\Προγράμματα\Εκκίνηση\Xfire.lnk
[2010/07/09 22:04:40 | 000,041,872 | —- | M] () – C:\WINDOWS\System32\xfcodec.dll
[2010/07/08 19:32:46 | 000,000,765 | —- | M] () – C:\Documents and Settings\Alex\Επιφάνεια εργασίας\Lineage II.lnk
[2010/07/08 12:06:53 | 000,000,029 | —- | M] () – C:\WINDOWS\PControl.ini
[2010/07/03 19:31:56 | 000,053,248 | —- | M] () – C:\othread2.dll
[2010/07/03 19:31:56 | 000,038,912 | —- | M] (RealVNC Ltd.) – C:\vnchooks.dll
[2010/07/03 18:51:22 | 000,014,336 | —- | M] () – C:\Documents and Settings\Alex\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/07/02 18:47:31 | 000,000,124 | —- | M] () – C:\My Bluetooth Places (Οι θέσεις Bluetooth μου).lnk
[2010/07/02 14:48:54 | 000,000,100 | —- | M] () – C:\WINDOWS\dinksmallwood.ini
[2010/07/01 12:42:33 | 000,001,602 | —- | M] () – C:\Documents and Settings\Alex\Επιφάνεια εργασίας\Mozilla Firefox.lnk
[2010/06/28 23:57:33 | 000,038,848 | —- | M] (ALWIL Software) – C:\WINDOWS\avastSS.scr
[2010/06/28 23:57:12 | 000,165,032 | —- | M] (AVAST Software) – C:\WINDOWS\System32\aswBoot.exe
[2010/06/28 23:37:52 | 000,046,672 | —- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswTdi.sys
[2010/06/28 23:37:30 | 000,165,456 | —- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswSP.sys
[2010/06/28 23:33:13 | 000,023,376 | —- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswRdr.sys
[2010/06/28 23:32:45 | 000,100,176 | —- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswmon2.sys
[2010/06/28 23:32:42 | 000,094,544 | —- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswmon.sys
[2010/06/28 23:32:33 | 000,017,744 | —- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2010/06/28 23:32:16 | 000,028,880 | —- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aavmker4.sys
[2010/06/24 17:51:39 | 000,000,705 | —- | M] () – C:\Documents and Settings\Alex\Επιφάνεια εργασίας\Play Dink Smallwood.lnk
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010/07/22 14:17:22 | 1064,620,032 | -HS- | C] () – C:\hiberfil.sys
[2010/07/22 02:01:04 | 000,000,924 | —- | C] () – C:\Documents and Settings\Alex\Επιφάνεια εργασίας\Συντόμευση για το HiJackThis.lnk
[2010/07/20 23:19:54 | 000,000,372 | —- | C] () – C:\Documents and Settings\Alex\Τα έγγραφά μου\spider.sav
[2010/07/19 17:03:50 | 000,000,747 | —- | C] () – C:\Documents and Settings\Alex\Επιφάνεια εργασίας\Counter-Strike 1.6.lnk
[2010/07/19 15:07:31 | 000,001,274 | —- | C] () – C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1329424299-2075852907-1434492207-1006UA.job
[2010/07/19 15:07:30 | 000,001,222 | —- | C] () – C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1329424299-2075852907-1434492207-1006Core.job
[2010/07/18 13:53:34 | 269,350,966 | —- | C] () – C:\Documents and Settings\Alex\Τα έγγραφά μου\Counter Strike 1.6 Reloaded1.7z
[2010/07/17 14:22:28 | 000,000,664 | —- | C] () – C:\WINDOWS\System32\d3d9caps.dat
[2010/07/14 12:20:41 | 000,000,000 | —- | C] () – C:\WINDOWS\lgfwup.ini
[2010/07/14 11:56:51 | 000,784,384 | —- | C] () – C:\WINDOWS\System32\NEROINSTAEC43759.DB
[2010/07/12 17:52:34 | 000,000,088 | —- | C] () – C:\WINDOWS\galaxy.ini
[2010/07/11 17:57:59 | 000,000,650 | —- | C] () – C:\Documents and Settings\Alex\Start Menu\Προγράμματα\Εκκίνηση\Xfire.lnk
[2010/07/09 22:04:40 | 000,041,872 | —- | C] () – C:\WINDOWS\System32\xfcodec.dll
[2010/07/08 19:32:46 | 000,000,765 | —- | C] () – C:\Documents and Settings\Alex\Επιφάνεια εργασίας\Lineage II.lnk
[2010/07/08 18:06:27 | 000,005,174 | —- | C] () – C:\WINDOWS\System32\nppt9x.vxd
[2010/07/08 12:02:18 | 000,000,029 | —- | C] () – C:\WINDOWS\PControl.ini
[2010/07/03 19:39:08 | 000,053,248 | —- | C] () – C:\othread2.dll
[2010/07/02 18:47:31 | 000,000,124 | —- | C] () – C:\My Bluetooth Places (Οι θέσεις Bluetooth μου).lnk
[2010/07/01 12:42:33 | 000,001,602 | —- | C] () – C:\Documents and Settings\Alex\Επιφάνεια εργασίας\Mozilla Firefox.lnk
[2010/06/29 14:24:55 | 000,340,616 | —- | C] () – C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2010/06/15 23:19:16 | 000,004,096 | —- | C] () – C:\WINDOWS\System32\drivers\nocashio.sys
[2010/06/14 11:49:24 | 000,139,152 | —- | C] () – C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010/06/14 11:49:23 | 000,139,152 | —- | C] () – C:\Documents and Settings\Alex\Application Data\PnkBstrK.sys
[2010/05/29 21:56:02 | 000,054,461 | —- | C] () – C:\Documents and Settings\Alex\AdobeFnt10.lst
[2010/03/29 22:16:15 | 000,000,162 | —- | C] () – C:\WINDOWS\ODBC.INI
[2010/03/27 14:47:29 | 000,000,083 | —- | C] () – C:\Documents and Settings\Alex\Local Settings\Application Data\X-Plane Installer.prf
[2010/03/20 22:12:05 | 000,000,100 | —- | C] () – C:\WINDOWS\dinksmallwood.ini
[2010/02/28 14:00:07 | 000,000,088 | —- | C] () – C:\Documents and Settings\Alex\Application Data\usb.inf
[2010/02/27 21:01:30 | 000,000,111 | —- | C] () – C:\WINDOWS\LOGO.INI
[2010/02/03 11:44:51 | 002,128,896 | —- | C] () – C:\Documents and Settings\Alex\Local Settings\Application Data\cooliris-win-ie-release-1.11.7.31969.en-US.msi
[2010/01/30 23:54:35 | 000,000,430 | —- | C] () – C:\Documents and Settings\Alex\Application Data\wklnhst.dat
[2010/01/30 23:00:33 | 000,014,336 | —- | C] () – C:\Documents and Settings\Alex\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/12/15 10:51:55 | 000,093,162 | —- | C] () – C:\Documents and Settings\Alex\Local Settings\Application Data\cooliris-win-ie-release-1.11.6.31225.en-US.msi
[2009/11/08 12:56:55 | 000,000,008 | —- | C] () – C:\Documents and Settings\Alex\Application Data\usb.dat
[2009/11/07 20:12:30 | 000,000,069 | —- | C] () – C:\WINDOWS\NeroDigital.ini
[2009/10/23 22:53:36 | 000,000,070 | —- | C] () – C:\Documents and Settings\Alex\Local Settings\Application Data\FASTWiz.log
[2009/10/19 18:38:29 | 009,699,328 | —- | C] () – C:\Documents and Settings\Alex\ntuser.dat
[2009/10/03 15:55:58 | 000,000,127 | —- | C] () – C:\Documents and Settings\Alex\Local Settings\Application Data\fusioncache.dat
[2009/10/03 15:55:56 | 000,001,024 | -H– | C] () – C:\Documents and Settings\Alex\ntuser.dat.LOG
[2009/10/03 15:55:56 | 000,000,178 | -HS- | C] () – C:\Documents and Settings\Alex\ntuser.ini
[2009/10/03 15:54:53 | 000,262,144 | —- | C] () – C:\Documents and Settings\All Users\NTUSER.DAT
[2009/10/03 15:54:53 | 000,001,024 | -H– | C] () – C:\Documents and Settings\All Users\NTUSER.DAT.LOG
[2009/06/09 18:03:30 | 000,029,900 | —- | C] () – C:\WINDOWS\System32\oeminfo.ini
[2009/06/09 17:49:29 | 000,147,456 | —- | C] () – C:\WINDOWS\System32\igfxCoIn_v4926.dll
[2008/12/01 20:33:42 | 000,000,061 | —- | C] () – C:\WINDOWS\smscfg.ini
[2008/07/07 15:11:32 | 002,854,912 | —- | C] () – C:\WINDOWS\System32\btwicons.dll
[2005/02/17 12:41:32 | 000,000,603 | —- | C] () – C:\WINDOWS\System32\BTNeighborhood.dll.manifest
[2005/02/17 12:41:30 | 000,000,593 | —- | C] () – C:\WINDOWS\System32\btcss.dll.manifest
[2001/11/14 13:56:00 | 001,802,240 | —- | C] () – C:\WINDOWS\System32\lcppn21.dll
========== Custom Scans ==========
< >
< %SYSTEMDRIVE%\*.* >
[2010/05/14 22:30:23 | 000,000,238 | —- | M] () – C:\Boot.bak
[2010/05/15 01:13:16 | 000,000,308 | RHS- | M] () – C:\boot.ini
[2009/10/03 16:00:34 | 003,170,304 | RHS- | M] () – C:\Boot.sdi
[2009/10/03 16:00:33 | 183,560,527 | RHS- | M] () – C:\BootENU.wim
[2008/04/16 15:00:00 | 000,004,952 | RHS- | M] () – C:\Bootfont.bin
[2009/10/03 16:00:34 | 000,333,203 | RHS- | M] () – C:\bootmgr
[2010/04/01 13:25:51 | 000,003,695 | —- | M] () – C:\CLDMA.LOG
[2004/08/03 23:00:00 | 000,260,272 | —- | M] () – C:\cmldr
[2010/05/15 01:58:28 | 000,029,577 | —- | M] () – C:\ComboFix.txt
[2009/10/24 15:32:41 | 000,000,281 | —- | M] () – C:\debugInstaller.txt
[2009/10/10 00:23:32 | 000,000,000 | —- | M] () – C:\exit_c-g.jpg
[2009/10/18 17:51:07 | 000,000,000 | —- | M] () – C:\exit_c.jpg
[2009/10/10 00:23:32 | 000,000,000 | —- | M] () – C:\exit_o-g.jpg
[2009/10/18 17:51:07 | 000,000,000 | —- | M] () – C:\exit_o.jpg
[2010/07/22 14:55:43 | 1064,620,032 | -HS- | M] () – C:\hiberfil.sys
[2009/10/10 00:23:32 | 000,000,000 | —- | M] () – C:\home_c-g.jpg
[2009/10/18 17:51:07 | 000,000,000 | —- | M] () – C:\home_c.jpg
[2009/10/10 00:23:32 | 000,000,000 | —- | M] () – C:\home_o-g.jpg
[2009/10/18 17:51:07 | 000,000,000 | —- | M] () – C:\home_o.jpg
[2009/10/24 10:49:02 | 000,000,000 | RHS- | M] () – C:\IO.SYS
[2010/05/28 13:26:02 | 000,230,410 | —- | M] () – C:\Lemm_log.txt
[2010/04/30 12:14:20 | 000,000,109 | —- | M] () – C:\mbam-error.txt
[2009/11/09 22:51:21 | 000,071,696 | —- | M] () – C:\mdebug.log
[2009/10/24 10:49:02 | 000,000,000 | RHS- | M] () – C:\MSDOS.SYS
[2010/07/02 18:47:31 | 000,000,124 | —- | M] () – C:\My Bluetooth Places (Οι θέσεις Bluetooth μου).lnk
[2008/04/16 15:00:00 | 000,047,564 | -HS- | M] () – C:\NTDETECT.COM
[2008/04/16 15:00:00 | 000,252,256 | -HS- | M] () – C:\NTLDR
[2010/07/03 19:31:56 | 000,053,248 | —- | M] () – C:\othread2.dll
[2010/07/22 14:55:41 | 1598,029,824 | -HS- | M] () – C:\pagefile.sys
[2009/10/10 00:23:32 | 000,000,000 | —- | M] () – C:\save_c-g.jpg
[2009/10/18 17:51:07 | 000,000,000 | —- | M] () – C:\save_c.jpg
[2009/10/10 00:23:32 | 000,000,000 | —- | M] () – C:\save_o-g.jpg
[2009/10/18 17:51:07 | 000,000,000 | —- | M] () – C:\save_o.jpg
[2009/10/03 16:18:08 | 000,000,268 | -H– | M] () – C:\sqmdata00.sqm
[2009/10/03 20:04:13 | 000,000,268 | -H– | M] () – C:\sqmdata01.sqm
[2009/10/03 20:26:58 | 000,000,268 | -H– | M] () – C:\sqmdata02.sqm
[2009/10/03 21:19:53 | 000,000,268 | -H– | M] () – C:\sqmdata03.sqm
[2009/10/03 22:52:06 | 000,000,268 | -H– | M] () – C:\sqmdata04.sqm
[2009/10/04 10:39:50 | 000,000,268 | -H– | M] () – C:\sqmdata05.sqm
[2009/10/03 16:18:08 | 000,000,244 | -H– | M] () – C:\sqmnoopt00.sqm
[2009/10/03 20:04:13 | 000,000,244 | -H– | M] () – C:\sqmnoopt01.sqm
[2009/10/03 20:26:58 | 000,000,244 | -H– | M] () – C:\sqmnoopt02.sqm
[2009/10/03 21:19:53 | 000,000,244 | -H– | M] () – C:\sqmnoopt03.sqm
[2009/10/03 22:52:06 | 000,000,244 | -H– | M] () – C:\sqmnoopt04.sqm
[2009/10/04 10:39:50 | 000,000,244 | -H– | M] () – C:\sqmnoopt05.sqm
[2009/10/18 17:51:07 | 000,000,000 | —- | M] () – C:\uk_c.bmp
[2009/10/18 17:51:07 | 000,000,000 | —- | M] () – C:\uk_o.bmp
[2010/07/03 19:31:56 | 000,038,912 | —- | M] (RealVNC Ltd.) – C:\vnchooks.dll
[2009/07/08 03:11:18 | 000,197,915 | —- | M] () – C:\wubildr
[2009/07/08 03:11:18 | 000,008,192 | —- | M] () – C:\wubildr.mbr
< %systemroot%\system32\*.wt >
< %systemroot%\system32\*.ruy >
< %systemroot%\Fonts\*.com >
[2006/04/18 15:39:28 | 000,026,040 | —- | M] () – C:\WINDOWS\Fonts\GlobalMonospace.CompositeFont
[2006/06/29 14:53:56 | 000,026,489 | —- | M] () – C:\WINDOWS\Fonts\GlobalSansSerif.CompositeFont
[2006/04/18 15:39:28 | 000,029,779 | —- | M] () – C:\WINDOWS\Fonts\GlobalSerif.CompositeFont
[2006/06/29 14:58:52 | 000,030,808 | —- | M] () – C:\WINDOWS\Fonts\GlobalUserInterface.CompositeFont
< %systemroot%\Fonts\*.dll >
< %systemroot%\Fonts\*.ini >
[2008/12/01 19:51:44 | 000,000,067 | -HS- | M] () – C:\WINDOWS\Fonts\desktop.ini
< %systemroot%\Fonts\*.ini2 >
< %systemroot%\system32\spool\prtprocs\w32x86\*.tmp >
< %systemroot%\system32\Spool\prtprocs\w32x86\*.dll >
[2008/07/06 15:06:10 | 000,089,088 | —- | M] (Microsoft Corporation) – C:\WINDOWS\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll
[2006/10/26 19:56:12 | 000,033,104 | —- | M] (Microsoft Corporation) – C:\WINDOWS\system32\spool\prtprocs\w32x86\msonpppr.dll
< %systemroot%\REPAIR\*.bak1 >
< %systemroot%\REPAIR\*.ini >
< %systemroot%\system32\*.jpg >
< %systemroot%\*.scr >
[2010/06/28 23:57:33 | 000,038,848 | —- | M] (ALWIL Software) – C:\WINDOWS\avastSS.scr
< %systemroot%\*._sy >
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\Tasks\*.job /lockedfiles >
< %systemroot%\System32\config\*.sav >
[2008/12/01 21:47:18 | 000,094,208 | —- | M] () – C:\WINDOWS\system32\config\default.sav
[2008/12/01 21:47:18 | 001,073,152 | —- | M] () – C:\WINDOWS\system32\config\software.sav
[2008/12/01 21:47:18 | 000,450,560 | —- | M] () – C:\WINDOWS\system32\config\system.sav
< %systemroot%\system32\user32.dll /md5 >
[2008/04/16 15:00:00 | 000,580,608 | —- | M] (Microsoft Corporation) MD5=5BB2A1C2290E910AE145C80DF491B600 – C:\WINDOWS\system32\user32.dll
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\system32\ws2_32.dll /md5 >
[2008/04/16 15:00:00 | 000,082,432 | —- | M] (Microsoft Corporation) MD5=EC57996DC47ADF15ECD1C65E6AB5613F – C:\WINDOWS\system32\ws2_32.dll
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\system32\ws2help.dll /md5 >
[2008/04/16 15:00:00 | 000,019,968 | —- | M] (Microsoft Corporation) MD5=2AFC6866F8E07625D38CDE0991B20B4E – C:\WINDOWS\system32\ws2help.dll
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2010-06-23 07:14:54
========== Alternate Data Streams ==========
@Alternate Data Stream - 134 bytes -> C:\Documents and Settings\All Users\Application Data\Temp:F5F96E70
@Alternate Data Stream - 12 bytes -> C:\WINDOWS\system32:{DA6227CB-326B-4B4D-9A81-04B61F1538DD}
@Alternate Data Stream - 119 bytes -> C:\Documents and Settings\All Users\Application Data\Temp:D0D0FFBF
@Alternate Data Stream - 118 bytes -> C:\Documents and Settings\All Users\Application Data\Temp:5C321E34
< End of report >
I need help trying to clean my son's computer.
I ran an avast scan and it shows 253 files infected with threat: win32:parite
I tried to move it to the chest but it says not enough disk space although there is 78 GB of free space.
Malwarebytes hasn't found any malicious threats.
Any help is greatly appreciated.
Here is the OTL log
OTL logfile created on: 22/7/2010 3:33:00 μμ - Run 4
OTL by OldTimer - Version 3.2.1.0 Folder = C:\Documents and Settings\Alex\Τα έγγραφά μου\Ληφθέντα αρχεία
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000*** | Country: Ελλάδα | Language: ELL | Date Format: d/M/yyyy
1.015,00 Mb Total Physical Memory | 395,00 Mb Available Physical Memory | 39,00% Memory free
2,00 Gb Paging File | 2,00 Gb Available in Paging File | 69,00% Paging File free
Paging file location(s): C:\pagefile.sys 1524 3048 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 149,04 Gb Total Space | 77,88 Gb Free Space | 52,26% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: ***
Current User Name: ***
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
========== Processes (SafeList) ==========
PRC - [2010/07/22 15:27:56 | 000,561,664 | —- | M] (OldTimer Tools) – C:\Documents and Settings\Alex\Τα έγγραφά μου\Ληφθέντα αρχεία\OTL.exe
PRC - [2010/07/19 15:07:26 | 000,134,808 | —- | M] (Google Inc.) – C:\Documents and Settings\Alex\Local Settings\Application Data\Google\Update\1.2.183.29\GoogleCrashHandler.exe
PRC - [2010/07/09 22:04:34 | 003,493,776 | —- | M] (Xfire Inc.) – C:\Program Files\Xfire\Xfire.exe
PRC - [2010/07/04 22:51:26 | 000,017,408 | —- | M] () – C:\Program Files\Unlocker\UnlockerAssistant.exe
PRC - [2010/07/02 11:23:56 | 002,403,568 | —- | M] (SUPERAntiSpyware.com) – C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
PRC - [2010/06/28 23:57:18 | 002,837,864 | —- | M] (AVAST Software) – C:\Program Files\Alwil Software\Avast5\AvastUI.exe
PRC - [2010/06/28 23:57:15 | 000,040,384 | —- | M] (AVAST Software) – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
PRC - [2010/02/04 14:39:53 | 000,198,160 | —- | M] (RealNetworks, Inc.) – C:\Program Files\Common Files\Real\Update_OB\realsched.exe
PRC - [2010/01/11 17:28:34 | 000,113,152 | —- | M] () – C:\WINDOWS\svcadmin.exe
PRC - [2009/10/27 21:46:16 | 000,323,392 | —- | M] (BitTorrent, Inc.) – C:\Program Files\DNA\btdna.exe
PRC - [2009/04/02 01:51:00 | 000,288,560 | —- | M] (syncables, LLC) – C:\Program Files\syncables\syncables desktop\MigoMapi.exe
PRC - [2009/04/02 01:51:00 | 000,173,360 | —- | M] (syncables, LLC) – C:\Program Files\syncables\syncables desktop\Syncables.exe
PRC - [2009/04/02 01:51:00 | 000,135,168 | —- | M] (Sun Microsystems, Inc.) – C:\Program Files\syncables\syncables desktop\jre\bin\javaw.exe
PRC - [2009/03/30 23:47:00 | 000,483,428 | —- | M] (IDT, Inc.) – C:\Program Files\IDT\WDM\sttray.exe
PRC - [2009/03/30 23:47:00 | 000,254,042 | —- | M] (IDT, Inc.) – c:\Program Files\IDT\WDM\stacsv.exe
PRC - [2009/03/30 16:02:08 | 000,319,488 | —- | M] () – C:\Program Files\HP\HPBTWD.exe
PRC - [2009/02/26 15:24:50 | 000,097,680 | —- | M] (Microsoft Corporation) – C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
PRC - [2009/02/19 00:41:56 | 000,737,280 | —- | M] (Andrea Electronics Corporation) – C:\WINDOWS\system32\AESTFltr.exe
PRC - [2008/12/11 22:46:22 | 000,125,424 | —- | M] () – C:\Program Files\Roxio\BackOnTrack\Disaster Recovery\SaibSVC.exe
PRC - [2008/07/07 15:12:42 | 000,600,680 | —- | M] (Broadcom Corporation.) – C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
PRC - [2008/04/16 15:00:00 | 001,038,336 | —- | M] (Microsoft Corporation) – C:\WINDOWS\explorer.exe
PRC - [2007/10/23 10:45:40 | 001,336,632 | —- | M] () – C:\Documents and Settings\All Users\Application Data\U3\U3Launcher\LaunchU3.exe
PRC - [2003/05/28 12:37:00 | 000,118,784 | —- | M] () – C:\Program Files\SpeedTouch\Dr SpeedTouch\drst.exe
========== Modules (SafeList) ==========
MOD - [2010/07/22 15:27:56 | 000,561,664 | —- | M] (OldTimer Tools) – C:\Documents and Settings\Alex\Τα έγγραφά μου\Ληφθέντα αρχεία\OTL.exe
MOD - [2010/07/09 22:04:44 | 000,970,640 | —- | M] (Xfire Inc.) – C:\Program Files\Xfire\xfire_toucan_43094.dll
MOD - [2010/07/05 00:32:36 | 000,004,608 | —- | M] () – C:\Program Files\Unlocker\UnlockerHook.dll
MOD - [2008/07/07 15:11:06 | 000,073,728 | —- | M] (Broadcom Corporation.) – C:\WINDOWS\system32\BtMmHook.dll
MOD - [2008/07/07 15:08:46 | 000,040,960 | —- | M] () – C:\Program Files\WIDCOMM\Bluetooth Software\BTKeyInd.dll
MOD - [2008/04/16 15:00:00 | 000,586,240 | —- | M] (Microsoft Corporation) – C:\WINDOWS\system32\mlang.dll
MOD - [2008/04/16 15:00:00 | 000,027,136 | —- | M] (Microsoft Corporation) – C:\WINDOWS\system32\wsock32.dll
MOD - [2004/01/12 00:00:00 | 000,348,160 | —- | M] (Microsoft Corporation) – C:\WINDOWS\system32\msvcr71.dll
========== Win32 Services (SafeList) ==========
SRV - File not found [Auto | Stopped] – – (RichVideo) Cyberlink RichVideo Service(CRVS)
SRV - File not found [On_Demand | Stopped] – – (gusvc)
SRV - File not found [Auto | Stopped] – – (gupdate) Google Update Service (gupdate)
SRV - [2010/06/28 23:57:15 | 000,040,384 | —- | M] (AVAST Software) [On_Demand | Running] – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe – (avast! Web Scanner)
SRV - [2010/06/28 23:57:15 | 000,040,384 | —- | M] (AVAST Software) [On_Demand | Running] – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe – (avast! Mail Scanner)
SRV - [2010/06/28 23:57:15 | 000,040,384 | —- | M] (AVAST Software) [Auto | Running] – C:\Program Files\Alwil Software\Avast5\AvastSvc.exe – (avast! Antivirus)
SRV - [2010/01/11 17:28:34 | 000,113,152 | —- | M] () [Auto | Running] – C:\WINDOWS\svcadmin.exe – (Anyplace Control Security)
SRV - [2009/10/12 00:27:07 | 003,369,044 | —- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] – C:\WINDOWS\System32\GameMon.des – (npggsvc)
SRV - [2009/03/30 23:47:00 | 000,254,042 | —- | M] (IDT, Inc.) [Auto | Running] – c:\Program Files\IDT\WDM\stacsv.exe – (STacSV)
SRV - [2008/12/11 22:46:22 | 000,125,424 | —- | M] () [Auto | Running] – C:\Program Files\Roxio\BackOnTrack\Disaster Recovery\SaibSVC.exe – (9734BF6A-2DCD-40f0-BAB0-5AAFEEBE1269)
========== Driver Services (SafeList) ==========
DRV - [2010/06/28 23:37:52 | 000,046,672 | —- | M] (ALWIL Software) [Kernel | System | Running] – C:\WINDOWS\system32\drivers\aswTdi.sys – (aswTdi)
DRV - [2010/06/28 23:37:30 | 000,165,456 | —- | M] (ALWIL Software) [Kernel | System | Running] – C:\WINDOWS\system32\drivers\aswSP.sys – (aswSP)
DRV - [2010/06/28 23:33:13 | 000,023,376 | —- | M] (ALWIL Software) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\aswRdr.sys – (aswRdr)
DRV - [2010/06/28 23:32:45 | 000,100,176 | —- | M] (ALWIL Software) [File_System | Auto | Running] – C:\WINDOWS\system32\drivers\aswmon2.sys – (aswMon2)
DRV - [2010/06/28 23:32:33 | 000,017,744 | —- | M] (ALWIL Software) [File_System | Auto | Running] – C:\WINDOWS\system32\drivers\aswFsBlk.sys – (aswFsBlk)
DRV - [2010/06/28 23:32:16 | 000,028,880 | —- | M] (ALWIL Software) [Kernel | System | Running] – C:\WINDOWS\system32\drivers\aavmker4.sys – (Aavmker4)
DRV - [2010/06/15 23:19:16 | 000,004,096 | —- | M] () [Kernel | On_Demand | Stopped] – C:\WINDOWS\system32\drivers\nocashio.sys – (nocashio)
DRV - [2010/05/31 13:36:37 | 000,067,656 | —- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] – C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS – (SASKUTIL)
DRV - [2010/02/17 11:25:50 | 000,012,872 | —- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] – C:\Program Files\SUPERAntiSpyware\sasdifsv.sys – (SASDIFSV)
DRV - [2010/02/17 11:15:58 | 000,012,872 | R— | M] ( SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | On_Demand | Stopped] – C:\Program Files\SUPERAntiSpyware\SASENUM.SYS – (SASENUM)
DRV - [2009/10/17 01:22:53 | 000,015,781 | —- | M] (Meetinghouse Data Communications) [Kernel | Auto | Running] – C:\WINDOWS\system32\drivers\mdc8021x.sys – (MDC8021X) AEGIS Protocol (IEEE 802.1x)
DRV - [2009/08/05 22:48:42 | 000,054,752 | —- | M] (Microsoft Corporation) [Kernel | Auto | Running] – C:\WINDOWS\system32\drivers\fssfltr_tdi.sys – (fssfltr)
DRV - [2009/06/09 17:52:37 | 001,735,040 | —- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\BCMWL5.SYS – (BCM43XX)
DRV - [2009/03/30 23:47:00 | 001,550,891 | —- | M] (IDT, Inc.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\sthda.sys – (STHDA)
DRV - [2009/03/19 21:55:06 | 000,113,664 | —- | M] (Andrea Electronics Corporation) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\AESTAud.sys – (AESTAud)
DRV - [2009/03/03 00:03:48 | 000,038,912 | —- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\l1c51x86.sys – (L1c)
DRV - [2009/01/16 05:41:00 | 000,206,512 | —- | M] (Synaptics, Inc.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\SynTP.sys – (SynTP)
DRV - [2008/12/11 01:00:00 | 000,025,584 | —- | M] (Sonic Solutions) [Kernel | System | Running] – C:\WINDOWS\system32\drivers\SaibVd32.sys – (SaibVd32)
DRV - [2008/12/11 01:00:00 | 000,021,488 | —- | M] (Sonic Solutions) [Kernel | Boot | Running] – C:\WINDOWS\System32\Drivers\SahdIa32.sys – (SahdIa32)
DRV - [2008/12/11 01:00:00 | 000,015,856 | —- | M] (Sonic Solutions) [Kernel | Boot | Running] – C:\WINDOWS\System32\Drivers\SaibIa32.sys – (SaibIa32)
DRV - [2008/11/22 04:36:46 | 000,160,256 | —- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] – C:\WINDOWS\system32\drivers\RTS5121.sys – (RSUSBSTOR)
DRV - [2008/09/24 22:09:40 | 000,103,792 | —- | M] (Sonic Solutions) [File_System | Boot | Running] – C:\WINDOWS\system32\drivers\syscow32x.sys – (SysCow)
DRV - [2008/09/13 08:32:00 | 000,327,192 | —- | M] (Intel Corporation) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\drivers\iaStor.sys – (iaStor)
DRV - [2008/07/25 04:37:04 | 000,047,272 | —- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] – C:\WINDOWS\system32\drivers\btwusb.sys – (BTWUSB)
DRV - [2008/06/24 20:59:08 | 000,991,400 | —- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\btkrnl.sys – (btkrnl)
DRV - [2008/04/16 15:00:00 | 000,144,384 | —- | M] (Windows ® Server 2003 DDK provider) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\hdaudbus.sys – (HDAudBus)
DRV - [2008/04/16 15:00:00 | 000,088,320 | —- | M] (Microsoft Corporation) [Kernel | Auto | Running] – C:\WINDOWS\system32\drivers\nwlnkipx.sys – (NwlnkIpx)
DRV - [2008/04/16 15:00:00 | 000,063,232 | —- | M] (Microsoft Corporation) [Kernel | Auto | Running] – C:\WINDOWS\system32\drivers\nwlnknb.sys – (NwlnkNb)
DRV - [2008/04/16 15:00:00 | 000,055,936 | —- | M] (Microsoft Corporation) [Kernel | Auto | Running] – C:\WINDOWS\system32\drivers\nwlnkspx.sys – (NwlnkSpx)
DRV - [2008/04/14 17:06:40 | 000,043,008 | —- | M] (Advanced Micro Devices, Inc.) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\amdagp.sys – (amdagp)
DRV - [2008/04/14 17:06:40 | 000,040,960 | —- | M] (Silicon Integrated Systems Corporation) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\sisagp.sys – (sisagp)
DRV - [2008/02/16 01:12:06 | 005,854,752 | —- | M] (Intel Corporation) [Kernel | On_Demand | Running] – C:\WINDOWS\system32\drivers\igxpmp32.sys – (ialm)
DRV - [2007/08/14 08:12:44 | 000,005,760 | —- | M] (Sophos Plc) [Kernel | On_Demand | Stopped] – C:\WINDOWS\system32\21D.tmp – (MEMSWEEP2)
DRV - [2005/10/16 08:00:00 | 000,012,928 | —- | M] (Bo Brantén) [Kernel | System | Running] – C:\WINDOWS\system32\drivers\filedisk.sys – (FileDisk)
DRV - [2005/01/03 00:43:08 | 000,004,682 | —- | M] (INCA Internet Co., Ltd.) [Kernel | On_Demand | Stopped] – C:\WINDOWS\system32\npptNT2.sys – (NPPTNT2)
DRV - [2001/11/27 15:59:14 | 000,006,784 | —- | M] (CMD Technology, Inc.) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\cmdide.sys – (CmdIde)
DRV - [2001/08/18 14:07:44 | 000,019,072 | —- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\sparrow.sys – (Sparrow)
DRV - [2001/08/18 14:07:42 | 000,030,688 | —- | M] (LSI Logic) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\sym_u3.sys – (sym_u3)
DRV - [2001/08/18 14:07:40 | 000,028,384 | —- | M] (LSI Logic) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\sym_hi.sys – (sym_hi)
DRV - [2001/08/18 14:07:36 | 000,032,640 | —- | M] (LSI Logic) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\symc8xx.sys – (symc8xx)
DRV - [2001/08/18 14:07:34 | 000,016,256 | —- | M] (Symbios Logic Inc.) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\symc810.sys – (symc810)
DRV - [2001/08/18 13:52:22 | 000,036,736 | —- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\ultra.sys – (ultra)
DRV - [2001/08/18 13:52:20 | 000,045,312 | —- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\ql12160.sys – (ql12160)
DRV - [2001/08/18 13:52:20 | 000,040,320 | —- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\ql1080.sys – (ql1080)
DRV - [2001/08/18 13:52:18 | 000,049,024 | —- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\ql1280.sys – (ql1280)
DRV - [2001/08/18 13:52:16 | 000,179,584 | —- | M] (Mylex Corporation) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\dac2w2k.sys – (dac2w2k)
DRV - [2001/08/18 13:52:12 | 000,017,280 | —- | M] (American Megatrends Inc.) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\mraid35x.sys – (mraid35x)
DRV - [2001/08/18 13:52:00 | 000,026,496 | —- | M] (Advanced System Products, Inc.) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\asc.sys – (asc)
DRV - [2001/08/18 13:51:58 | 000,014,848 | —- | M] (Advanced System Products, Inc.) [Kernel | Disabled | Stopped] – C:\WINDOWS\system32\DRIVERS\asc3550.sys – (asc3550)
DRV - [2001/08/18 13:51:56 | 000,005,248 | —- | M] (Acer Laboratories Inc.) [Kernel | Boot | Running] – C:\WINDOWS\system32\DRIVERS\aliide.sys – (AliIde)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "http://www.google.gr/firefox"
FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:1.0
FF - prefs.js..extensions.enabledItems: [removed]:1.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - HKLM\software\mozilla\Firefox\extensions\\{6E19037A-12E3-4295-8915-ED48BC341614}: C:\Program Files\PremierOpinion
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/07/19 14:49:33 | 000,000,000 | —D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/07/19 14:49:25 | 000,000,000 | —D | M]
[2010/07/13 19:25:35 | 000,000,000 | —D | M] – C:\Documents and Settings\Alex\Application Data\Mozilla\Extensions
[2010/07/13 19:25:35 | 000,000,000 | —D | M] – C:\Documents and Settings\Alex\Application Data\Mozilla\Extensions\[removed]
[2010/07/19 17:18:29 | 000,000,000 | —D | M] – C:\Documents and Settings\Alex\Application Data\Mozilla\Firefox\Profiles\idww0b55.default\extensions
[2010/07/05 16:39:05 | 000,000,000 | —D | M] (Microsoft .NET Framework Assistant) – C:\Documents and Settings\Alex\Application Data\Mozilla\Firefox\Profiles\idww0b55.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/07/19 17:18:29 | 000,000,000 | —D | M] – C:\Program Files\Mozilla Firefox\extensions
[2010/07/19 15:05:28 | 000,000,000 | —D | M] (Java Console) – C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010/07/19 15:04:16 | 000,423,656 | —- | M] (Oracle) – C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2010/06/26 10:28:18 | 000,001,525 | —- | M] () – C:\Program Files\Mozilla Firefox\searchplugins\amazon-en-GB.xml
[2010/06/26 10:28:18 | 000,000,760 | —- | M] () – C:\Program Files\Mozilla Firefox\searchplugins\eBay-en-GB.xml
[2010/06/26 10:28:18 | 000,001,219 | —- | M] () – C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-el.xml
O1 HOSTS File: ([2010/04/23 22:07:50 | 000,000,098 | —- | M]) - C:\WINDOWS\system32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (CescrtHlpr Object) - {64182481-4F71-486b-A045-B233BD0DA8FC} - C:\Program Files\facemoods.com\facemoods\1.3.62.1\facemoods.dll (facemoods.com)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll File not found
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll File not found
O2 - BHO: (Microsoft Live Search Toolbar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files\MSN\Toolbar\3.0.0559.0\msneshellx.dll File not found
O2 - BHO: (Nuclear Games Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll File not found
O2 - BHO: (no name) - {EAEE5C74-6D0D-4aca-9232-0DA4A7B866BA} - C:\Program Files\PicLensIE\cooliris.dll (Cooliris Inc.)
O3 - HKLM\..\Toolbar: (Microsoft Live Search Toolbar) - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files\MSN\Toolbar\3.0.0559.0\msneshellx.dll File not found
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll File not found
O3 - HKLM\..\Toolbar: (Nuclear Games Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll File not found
O3 - HKLM\..\Toolbar: (facemoods Toolbar) - {DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - C:\Program Files\facemoods.com\facemoods\1.3.62.1\facemoodsTlbr.dll (facemoods.com)
O3 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll File not found
O3 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006\..\Toolbar\WebBrowser: (Nuclear Games Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll File not found
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe File not found
O4 - HKLM..\Run: [AESTFltr] C:\WINDOWS\System32\AESTFltr.exe (Andrea Electronics Corporation)
O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
O4 - HKLM..\Run: [HP BTW Detect Program] C:\Program Files\HP\HPBTWD.exe ()
O4 - HKLM..\Run: [Syncables] C:\Program Files\syncables\syncables desktop\Syncables.exe (syncables, LLC)
O4 - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray.exe (IDT, Inc.)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [UCam_Menu] C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe File not found
O4 - HKLM..\Run: [UnlockerAssistant] C:\Program Files\Unlocker\UnlockerAssistant.exe ()
O4 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006..\Run: [BitTorrent DNA] C:\Program Files\DNA\btdna.exe (BitTorrent, Inc.)
O4 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006..\Run: [RGSC] C:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe (Take-Two Interactive Software, Inc.)
O4 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006..\Run: [Steam] C:\Program Files\Steam\Steam.exe File not found
O4 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006..\Run: [STManager] C:\Program Files\SpeedTouch\Dr SpeedTouch\drst.exe ()
O4 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE (SUPERAntiSpyware.com)
O4 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe File not found
O4 - Startup: C:\Documents and Settings\Alex\Start Menu\Προγράμματα\Εκκίνηση\LaunchU3.exe.lnk = C:\Documents and Settings\Alex\Application Data\Microsoft\Installer\{D8E363A7-88B7-446D-B2C0-E26CE4DC8E54}\_294823.exe ()
O4 - Startup: C:\Documents and Settings\Alex\Start Menu\Προγράμματα\Εκκίνηση\OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\Alex\Start Menu\Προγράμματα\Εκκίνηση\OneNote Table Of Contents.onetoc2 ()
O4 - Startup: C:\Documents and Settings\Alex\Start Menu\Προγράμματα\Εκκίνηση\Xfire.lnk = C:\Program Files\Xfire\Xfire.exe (Xfire Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Προγράμματα\Εκκίνηση\Bluetooth.lnk = C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
O4 - Startup: C:\Documents and Settings\Αlexandra\Start Menu\Προγράμματα\Εκκίνηση\OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-1329424299-2075852907-1434492207-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Αποστολή σε Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O8 - Extra context menu item: Αποστολή στη συσκευή &Bluetooth;… - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : S&end; to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Launch Cooliris - {3437D640-C91A-458f-89F5-B9095EA4C28B} - C:\Program Files\PicLensIE\cooliris.dll (Cooliris Inc.)
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll File not found
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll File not found
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwa…director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab (Checkers Class)
O16 - DPF: {32C11E38-E587-4BE9-9ABB-D69158C21CE5} http://view.conn-x.gr/surveillance/software/mpeg4_dec.cab (Moonlight MPEG-4 Video Decoder)
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} http://messenger.zone.msn.com/binary/Solit…wn.cab56986.cab (Solitaire Showdown Class)
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} http://messenger.zone.msn.com/MessengerGam…1/GAME_UNO1.cab (UnoCtrl Class)
O16 - DPF: {67B1A88A-B5D2-48B1-BF93-EB74D6FCB077} http://view.conn-x.gr/surveillance/software/AMC.cab (AxisRTPSrcFilterEmb)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/Messe…nt.cab56907.cab (MessengerStatsClient Class)
O16 - DPF: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-…indows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} http://messenger.zone.msn.com/binary/MineS…er.cab56986.cab (Minesweeper Flags Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll File not found
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\!SASWinLogon: DllName - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll (SUPERAntiSpyware.com)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O24 - Desktop Components:0 (Τρέχουσα αρχική σελίδα) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Alex\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Alex\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {4F07DA45-8170-4859-9B5F-037EF2970034} - Reg Error: Key error. File not found
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{78366410-670e-11df-8dee-0025b37102d0}\Shell\AutoRun\command - "" = __DTMEDIA\DTMedia.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] – "%1" %*
O35 - HKLM\..exefile [open] – "%1" %*
O37 - HKLM\…com [@ = ComFile] – "%1" %*
O37 - HKLM\…exe [@ = exefile] – "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:\WINDOWS\system32\ias [2009/10/04 01:38:50 | 000,000,000 | —D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Wmi - C:\WINDOWS\system32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found
Drivers32: midi - C:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: midimapper - C:\WINDOWS\System32\midimap.dll (Microsoft Corporation)
Drivers32: mixer - C:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.imaadpcm - C:\WINDOWS\System32\imaadp32.acm (Microsoft Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.lhacm - lhacm.acm File not found
Drivers32: msacm.msadpcm - C:\WINDOWS\System32\msadp32.acm (Microsoft Corporation)
Drivers32: msacm.msaudio1 - C:\WINDOWS\System32\msaud32.acm (Microsoft Corporation)
Drivers32: msacm.msg711 - C:\WINDOWS\System32\msg711.acm (Microsoft Corporation)
Drivers32: msacm.msg723 - C:\WINDOWS\System32\msg723.acm (Microsoft Corporation)
Drivers32: msacm.msgsm610 - C:\WINDOWS\System32\msgsm32.acm (Microsoft Corporation)
Drivers32: msacm.siren - C:\WINDOWS\System32\sirenacm.dll (Microsoft Corporation)
Drivers32: msacm.sl_anet - C:\WINDOWS\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\WINDOWS\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: MSVideo8 - C:\WINDOWS\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\WINDOWS\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.I420 - C:\WINDOWS\System32\msh263.drv (Microsoft Corporation)
Drivers32: vidc.iv31 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\WINDOWS\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\WINDOWS\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\WINDOWS\System32\ir50_32.dll (Intel Corporation)
Drivers32: VIDC.IYUV - C:\WINDOWS\System32\iyuv_32.dll (Microsoft Corporation)
Drivers32: vidc.M261 - C:\WINDOWS\System32\msh261.drv (Microsoft Corporation)
Drivers32: vidc.M263 - C:\WINDOWS\System32\msh263.drv (Microsoft Corporation)
Drivers32: vidc.mrle - C:\WINDOWS\System32\msrle32.dll (Microsoft Corporation)
Drivers32: vidc.msvc - C:\WINDOWS\System32\msvidc32.dll (Microsoft Corporation)
Drivers32: VIDC.UYVY - C:\WINDOWS\System32\msyuv.dll (Microsoft Corporation)
Drivers32: VIDC.XFR1 - C:\WINDOWS\System32\xfcodec.dll ()
Drivers32: VIDC.YUY2 - C:\WINDOWS\System32\msyuv.dll (Microsoft Corporation)
Drivers32: VIDC.YVU9 - C:\WINDOWS\System32\tsbyuv.dll (Microsoft Corporation)
Drivers32: VIDC.YVYU - C:\WINDOWS\System32\msyuv.dll (Microsoft Corporation)
Drivers32: wave - C:\WINDOWS\System32\wdmaud.drv (Microsoft Corporation)
Drivers32: wavemapper - C:\WINDOWS\System32\msacm32.drv (Microsoft Corporation)
CREATERESTOREPOINT
Error starting restore point: System Restore is disabled.
Error closing restore point: System Restore is disabled.
========== Files/Folders - Created Within 30 Days ==========
[2010/07/22 15:09:32 | 000,038,848 | —- | C] (ALWIL Software) – C:\WINDOWS\avastSS.scr
[2010/07/19 20:57:38 | 000,290,816 | —- | C] (Microsoft Corporation) – C:\WINDOWS\winhlp32.exe
[2010/07/19 20:57:37 | 000,015,872 | —- | C] (Microsoft Corporation) – C:\WINDOWS\taskman.exe
[2010/07/19 20:57:34 | 000,025,600 | —- | C] (Twain Working Group) – C:\WINDOWS\twunk_32.exe
[2010/07/19 16:29:26 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Τα έγγραφά μου\Ληφθέντα αρχεία
[2010/07/19 15:05:21 | 000,073,728 | —- | C] (Oracle) – C:\WINDOWS\System32\javacpl.cpl
[2010/07/19 15:05:20 | 000,153,376 | —- | C] (Oracle) – C:\WINDOWS\System32\javaws.exe
[2010/07/19 15:05:20 | 000,145,184 | —- | C] (Oracle) – C:\WINDOWS\System32\javaw.exe
[2010/07/19 15:05:20 | 000,145,184 | —- | C] (Oracle) – C:\WINDOWS\System32\java.exe
[2010/07/19 15:04:03 | 000,000,000 | —D | C] – C:\Program Files\Java
[2010/07/19 12:47:47 | 000,000,000 | —D | C] – C:\Program Files\Common Files\Skype
[2010/07/18 16:55:01 | 000,000,000 | —D | C] – C:\Program Files\Common Files\Java
[2010/07/17 23:23:21 | 000,000,000 | —D | C] – C:\Program Files\Counter-Strike 1.6
[2010/07/17 15:19:44 | 000,165,456 | —- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswSP.sys
[2010/07/17 15:19:44 | 000,017,744 | —- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2010/07/17 15:19:41 | 000,023,376 | —- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswRdr.sys
[2010/07/17 15:19:39 | 000,046,672 | —- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswTdi.sys
[2010/07/17 15:19:36 | 000,100,176 | —- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswmon2.sys
[2010/07/17 15:19:36 | 000,094,544 | —- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswmon.sys
[2010/07/17 15:19:35 | 000,028,880 | —- | C] (ALWIL Software) – C:\WINDOWS\System32\drivers\aavmker4.sys
[2010/07/17 15:17:25 | 000,165,032 | —- | C] (AVAST Software) – C:\WINDOWS\System32\aswBoot.exe
[2010/07/17 12:59:07 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Patch
[2010/07/17 12:54:25 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\system
[2010/07/16 13:59:08 | 000,000,000 | —D | C] – C:\Program Files\Wolfenstein - Enemy Territory
[2010/07/16 11:52:51 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Saved Games
[2010/07/16 11:52:51 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\Floodlight Games
[2010/07/16 11:52:51 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\Floodlight Games
[2010/07/15 21:44:40 | 000,000,000 | —D | C] – C:\Program Files\Nice-Games
[2010/07/15 21:24:59 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\WildTangent
[2010/07/15 15:54:19 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\Sahmon Games
[2010/07/14 22:19:21 | 000,000,000 | —D | C] – C:\Program Files\Steam
[2010/07/14 21:11:18 | 000,000,000 | —D | C] – C:\Program Files\GameTop.com
[2010/07/14 13:32:16 | 000,744,448 | —- | C] (Microsoft Corporation) – C:\WINDOWS\System32\dllcache\helpsvc.exe
[2010/07/14 11:56:50 | 001,414,440 | —- | C] (Nero AG) – C:\WINDOWS\System32\ShellManager310E2D762.dll
[2010/07/13 19:28:51 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\Vivox
[2010/07/13 19:25:14 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\IMVU
[2010/07/13 19:24:13 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\IMVUClient
[2010/07/13 18:17:08 | 000,000,000 | —D | C] – C:\Netgame
[2010/07/13 13:50:36 | 000,000,000 | —D | C] – C:\Program Files\Z8Games
[2010/07/12 20:08:16 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\supertuxkart
[2010/07/12 17:52:39 | 000,000,000 | —D | C] – C:\Program Files\OpenAL
[2010/07/12 17:52:38 | 000,444,952 | —- | C] (Creative Labs) – C:\WINDOWS\System32\wrap_oal.dll
[2010/07/12 17:52:38 | 000,109,080 | —- | C] (Portions © Creative Labs Inc. and NVIDIA Corp.) – C:\WINDOWS\System32\OpenAL32.dll
[2010/07/12 17:46:32 | 000,000,000 | —D | C] – C:\Alien Arena 7_40
[2010/07/12 16:30:14 | 000,000,000 | —D | C] – C:\Program Files\Windows Live Safety Center
[2010/07/12 13:50:45 | 000,000,000 | —D | M] – C:\Documents and Settings\NetworkService\Application Data\Xfire
[2010/07/11 18:54:30 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Τα έγγραφά μου\Cross Fire
[2010/07/11 18:54:13 | 000,000,000 | —D | C] – C:\CFLog
[2010/07/11 18:13:12 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\facemoods.com
[2010/07/11 17:58:04 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\Xfire
[2010/07/11 17:57:35 | 000,000,000 | —D | C] – C:\Program Files\Xfire
[2010/07/11 11:40:43 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Local Settings\Application Data\Rockstar Games
[2010/07/11 11:38:12 | 000,000,000 | —D | C] – C:\Program Files\Rockstar Games
[2010/07/08 18:06:56 | 003,369,044 | —- | C] (INCA Internet Co., Ltd.) – C:\WINDOWS\System32\GameMon.des
[2010/07/08 18:06:27 | 000,004,682 | —- | C] (INCA Internet Co., Ltd.) – C:\WINDOWS\System32\npptNT2.sys
[2010/07/08 18:05:38 | 000,000,000 | —D | C] – C:\Program Files\Common Files\INCA Shared
[2010/07/08 16:29:41 | 000,000,000 | —D | C] – C:\Program Files\facemoods.com
[2010/07/08 15:36:34 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\uTorrent
[2010/07/07 14:27:39 | 000,000,000 | —D | C] – C:\Program Files\Windows Garbage Collector
[2010/07/07 14:24:00 | 000,000,000 | —D | C] – C:\Program Files\Unlocker
[2010/07/04 16:39:02 | 000,000,000 | —D | C] – C:\TEMP
[2010/07/04 15:26:15 | 000,000,000 | -H-D | C] – C:\WINDOWS\PIF
[2010/07/04 13:28:57 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Anyplace Control 4
[2010/07/04 13:01:26 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Local Settings\Application Data\CrossLoop
[2010/07/03 19:39:08 | 000,038,912 | —- | C] (RealVNC Ltd.) – C:\vnchooks.dll
[2010/07/03 19:27:28 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\TeamViewer
[2010/07/03 18:55:51 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Ôá ÝããñáöÜ ìïõ
[2010/07/03 18:53:05 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Τα έγγραφά μου\Battlefield 2
[2010/07/03 18:41:05 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Τα έγγραφά μου\Crazy Taxi 3
[2010/07/03 12:48:43 | 000,000,000 | —D | C] – C:\Documents and Settings\All Users\Application Data\Jugilus
[2010/07/03 12:44:50 | 000,000,000 | —D | C] – C:\Program Files\bfgclient
[2010/07/01 13:05:29 | 000,000,000 | —D | C] – C:\Documents and Settings\Alex\Application Data\Mozilla
[2010/07/01 12:41:55 | 000,000,000 | —D | C] – C:\Program Files\Mozilla Firefox
[2010/05/30 16:45:33 | 000,000,000 | —D | M] – C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2010/05/29 18:49:12 | 000,000,000 | —D | M] – C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2010/02/12 17:05:41 | 000,000,000 | —D | M] – C:\Documents and Settings\LocalService\Local Settings\Application Data\Adobe
[2009/10/26 21:04:00 | 000,000,000 | —D | M] – C:\Documents and Settings\NetworkService\Local Settings\Application Data\Google
[2009/10/26 20:59:05 | 000,000,000 | —D | M] – C:\Documents and Settings\LocalService\Local Settings\Application Data\Google
[2009/10/04 01:38:11 | 000,000,000 | –SD | M] – C:\Documents and Settings\NetworkService\Application Data\Microsoft
[2009/10/04 01:38:11 | 000,000,000 | –SD | M] – C:\Documents and Settings\LocalService\Application Data\Microsoft
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2010/07/22 15:12:05 | 000,001,274 | —- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1329424299-2075852907-1434492207-1006UA.job
[2010/07/22 15:12:02 | 000,001,222 | —- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1329424299-2075852907-1434492207-1006Core.job
[2010/07/22 15:09:33 | 000,003,023 | —- | M] () – C:\WINDOWS\System32\CONFIG.NT
[2010/07/22 15:01:37 | 000,000,454 | -H– | M] () – C:\WINDOWS\tasks\User_Feed_Synchronization-{654D911E-481C-43FE-81C7-99ED4C05CABD}.job
[2010/07/22 14:58:44 | 000,002,659 | —- | M] () – C:\Documents and Settings\Alex\Start Menu\Προγράμματα\Εκκίνηση\LaunchU3.exe.lnk
[2010/07/22 14:57:14 | 000,001,178 | —- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2010/07/22 14:57:14 | 000,000,006 | -H– | M] () – C:\WINDOWS\tasks\SA.DAT
[2010/07/22 14:55:45 | 000,002,048 | –S- | M] () – C:\WINDOWS\bootstat.dat
[2010/07/22 14:55:43 | 1064,620,032 | -HS- | M] () – C:\hiberfil.sys
[2010/07/22 14:28:55 | 009,699,328 | —- | M] () – C:\Documents and Settings\Alex\ntuser.dat
[2010/07/22 14:28:51 | 000,000,178 | -HS- | M] () – C:\Documents and Settings\Alex\ntuser.ini
[2010/07/22 14:28:18 | 003,766,370 | -H– | M] () – C:\Documents and Settings\Alex\Local Settings\Application Data\IconCache.db
[2010/07/22 02:01:04 | 000,000,924 | —- | M] () – C:\Documents and Settings\Alex\Επιφάνεια εργασίας\Συντόμευση για το HiJackThis.lnk
[2010/07/21 18:13:49 | 000,000,372 | —- | M] () – C:\Documents and Settings\Alex\Τα έγγραφά μου\spider.sav
[2010/07/21 17:03:49 | 001,162,174 | —- | M] () – C:\WINDOWS\System32\PerfStringBackup.INI
[2010/07/21 17:03:49 | 000,548,378 | —- | M] () – C:\WINDOWS\System32\perfh008.dat
[2010/07/21 17:03:49 | 000,438,390 | —- | M] () – C:\WINDOWS\System32\perfh009.dat
[2010/07/21 17:03:49 | 000,093,878 | —- | M] () – C:\WINDOWS\System32\perfc008.dat
[2010/07/21 17:03:49 | 000,070,320 | —- | M] () – C:\WINDOWS\System32\perfc009.dat
[2010/07/21 16:54:00 | 000,001,182 | —- | M] () – C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2010/07/21 16:49:52 | 000,000,384 | -H– | M] () – C:\WINDOWS\tasks\{F897AA24-BDC3-11D1-B85B-00C04FB93981}_ΑΛΕΞ_Alex.job
[2010/07/19 17:03:50 | 000,000,747 | —- | M] () – C:\Documents and Settings\Alex\Επιφάνεια εργασίας\Counter-Strike 1.6.lnk
[2010/07/19 15:09:51 | 000,002,277 | —- | M] () – C:\Documents and Settings\Alex\Επιφάνεια εργασίας\Google Chrome.lnk
[2010/07/19 15:04:12 | 000,153,376 | —- | M] (Oracle) – C:\WINDOWS\System32\javaws.exe
[2010/07/19 15:04:12 | 000,145,184 | —- | M] (Oracle) – C:\WINDOWS\System32\javaw.exe
[2010/07/19 15:04:12 | 000,145,184 | —- | M] (Oracle) – C:\WINDOWS\System32\java.exe
[2010/07/19 15:04:12 | 000,073,728 | —- | M] (Oracle) – C:\WINDOWS\System32\javacpl.cpl
[2010/07/19 15:04:10 | 000,423,656 | —- | M] (Oracle) – C:\WINDOWS\System32\deployJava1.dll
[2010/07/18 14:18:10 | 269,350,966 | —- | M] () – C:\Documents and Settings\Alex\Τα έγγραφά μου\Counter Strike 1.6 Reloaded1.7z
[2010/07/17 14:22:28 | 000,000,664 | —- | M] () – C:\WINDOWS\System32\d3d9caps.dat
[2010/07/16 15:20:58 | 000,001,158 | —- | M] () – C:\WINDOWS\System32\wpa.dbl
[2010/07/14 12:20:41 | 000,000,000 | —- | M] () – C:\WINDOWS\lgfwup.ini
[2010/07/13 13:49:42 | 000,000,069 | —- | M] () – C:\WINDOWS\NeroDigital.ini
[2010/07/12 17:52:39 | 000,444,952 | —- | M] (Creative Labs) – C:\WINDOWS\System32\wrap_oal.dll
[2010/07/12 17:52:38 | 000,109,080 | —- | M] (Portions © Creative Labs Inc. and NVIDIA Corp.) – C:\WINDOWS\System32\OpenAL32.dll
[2010/07/12 17:52:34 | 000,000,088 | —- | M] () – C:\WINDOWS\galaxy.ini
[2010/07/11 17:57:59 | 000,000,650 | —- | M] () – C:\Documents and Settings\Alex\Start Menu\Προγράμματα\Εκκίνηση\Xfire.lnk
[2010/07/09 22:04:40 | 000,041,872 | —- | M] () – C:\WINDOWS\System32\xfcodec.dll
[2010/07/08 19:32:46 | 000,000,765 | —- | M] () – C:\Documents and Settings\Alex\Επιφάνεια εργασίας\Lineage II.lnk
[2010/07/08 12:06:53 | 000,000,029 | —- | M] () – C:\WINDOWS\PControl.ini
[2010/07/03 19:31:56 | 000,053,248 | —- | M] () – C:\othread2.dll
[2010/07/03 19:31:56 | 000,038,912 | —- | M] (RealVNC Ltd.) – C:\vnchooks.dll
[2010/07/03 18:51:22 | 000,014,336 | —- | M] () – C:\Documents and Settings\Alex\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/07/02 18:47:31 | 000,000,124 | —- | M] () – C:\My Bluetooth Places (Οι θέσεις Bluetooth μου).lnk
[2010/07/02 14:48:54 | 000,000,100 | —- | M] () – C:\WINDOWS\dinksmallwood.ini
[2010/07/01 12:42:33 | 000,001,602 | —- | M] () – C:\Documents and Settings\Alex\Επιφάνεια εργασίας\Mozilla Firefox.lnk
[2010/06/28 23:57:33 | 000,038,848 | —- | M] (ALWIL Software) – C:\WINDOWS\avastSS.scr
[2010/06/28 23:57:12 | 000,165,032 | —- | M] (AVAST Software) – C:\WINDOWS\System32\aswBoot.exe
[2010/06/28 23:37:52 | 000,046,672 | —- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswTdi.sys
[2010/06/28 23:37:30 | 000,165,456 | —- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswSP.sys
[2010/06/28 23:33:13 | 000,023,376 | —- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswRdr.sys
[2010/06/28 23:32:45 | 000,100,176 | —- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswmon2.sys
[2010/06/28 23:32:42 | 000,094,544 | —- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswmon.sys
[2010/06/28 23:32:33 | 000,017,744 | —- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aswFsBlk.sys
[2010/06/28 23:32:16 | 000,028,880 | —- | M] (ALWIL Software) – C:\WINDOWS\System32\drivers\aavmker4.sys
[2010/06/24 17:51:39 | 000,000,705 | —- | M] () – C:\Documents and Settings\Alex\Επιφάνεια εργασίας\Play Dink Smallwood.lnk
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ==========
[2010/07/22 14:17:22 | 1064,620,032 | -HS- | C] () – C:\hiberfil.sys
[2010/07/22 02:01:04 | 000,000,924 | —- | C] () – C:\Documents and Settings\Alex\Επιφάνεια εργασίας\Συντόμευση για το HiJackThis.lnk
[2010/07/20 23:19:54 | 000,000,372 | —- | C] () – C:\Documents and Settings\Alex\Τα έγγραφά μου\spider.sav
[2010/07/19 17:03:50 | 000,000,747 | —- | C] () – C:\Documents and Settings\Alex\Επιφάνεια εργασίας\Counter-Strike 1.6.lnk
[2010/07/19 15:07:31 | 000,001,274 | —- | C] () – C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1329424299-2075852907-1434492207-1006UA.job
[2010/07/19 15:07:30 | 000,001,222 | —- | C] () – C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1329424299-2075852907-1434492207-1006Core.job
[2010/07/18 13:53:34 | 269,350,966 | —- | C] () – C:\Documents and Settings\Alex\Τα έγγραφά μου\Counter Strike 1.6 Reloaded1.7z
[2010/07/17 14:22:28 | 000,000,664 | —- | C] () – C:\WINDOWS\System32\d3d9caps.dat
[2010/07/14 12:20:41 | 000,000,000 | —- | C] () – C:\WINDOWS\lgfwup.ini
[2010/07/14 11:56:51 | 000,784,384 | —- | C] () – C:\WINDOWS\System32\NEROINSTAEC43759.DB
[2010/07/12 17:52:34 | 000,000,088 | —- | C] () – C:\WINDOWS\galaxy.ini
[2010/07/11 17:57:59 | 000,000,650 | —- | C] () – C:\Documents and Settings\Alex\Start Menu\Προγράμματα\Εκκίνηση\Xfire.lnk
[2010/07/09 22:04:40 | 000,041,872 | —- | C] () – C:\WINDOWS\System32\xfcodec.dll
[2010/07/08 19:32:46 | 000,000,765 | —- | C] () – C:\Documents and Settings\Alex\Επιφάνεια εργασίας\Lineage II.lnk
[2010/07/08 18:06:27 | 000,005,174 | —- | C] () – C:\WINDOWS\System32\nppt9x.vxd
[2010/07/08 12:02:18 | 000,000,029 | —- | C] () – C:\WINDOWS\PControl.ini
[2010/07/03 19:39:08 | 000,053,248 | —- | C] () – C:\othread2.dll
[2010/07/02 18:47:31 | 000,000,124 | —- | C] () – C:\My Bluetooth Places (Οι θέσεις Bluetooth μου).lnk
[2010/07/01 12:42:33 | 000,001,602 | —- | C] () – C:\Documents and Settings\Alex\Επιφάνεια εργασίας\Mozilla Firefox.lnk
[2010/06/29 14:24:55 | 000,340,616 | —- | C] () – C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2010/06/15 23:19:16 | 000,004,096 | —- | C] () – C:\WINDOWS\System32\drivers\nocashio.sys
[2010/06/14 11:49:24 | 000,139,152 | —- | C] () – C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010/06/14 11:49:23 | 000,139,152 | —- | C] () – C:\Documents and Settings\Alex\Application Data\PnkBstrK.sys
[2010/05/29 21:56:02 | 000,054,461 | —- | C] () – C:\Documents and Settings\Alex\AdobeFnt10.lst
[2010/03/29 22:16:15 | 000,000,162 | —- | C] () – C:\WINDOWS\ODBC.INI
[2010/03/27 14:47:29 | 000,000,083 | —- | C] () – C:\Documents and Settings\Alex\Local Settings\Application Data\X-Plane Installer.prf
[2010/03/20 22:12:05 | 000,000,100 | —- | C] () – C:\WINDOWS\dinksmallwood.ini
[2010/02/28 14:00:07 | 000,000,088 | —- | C] () – C:\Documents and Settings\Alex\Application Data\usb.inf
[2010/02/27 21:01:30 | 000,000,111 | —- | C] () – C:\WINDOWS\LOGO.INI
[2010/02/03 11:44:51 | 002,128,896 | —- | C] () – C:\Documents and Settings\Alex\Local Settings\Application Data\cooliris-win-ie-release-1.11.7.31969.en-US.msi
[2010/01/30 23:54:35 | 000,000,430 | —- | C] () – C:\Documents and Settings\Alex\Application Data\wklnhst.dat
[2010/01/30 23:00:33 | 000,014,336 | —- | C] () – C:\Documents and Settings\Alex\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/12/15 10:51:55 | 000,093,162 | —- | C] () – C:\Documents and Settings\Alex\Local Settings\Application Data\cooliris-win-ie-release-1.11.6.31225.en-US.msi
[2009/11/08 12:56:55 | 000,000,008 | —- | C] () – C:\Documents and Settings\Alex\Application Data\usb.dat
[2009/11/07 20:12:30 | 000,000,069 | —- | C] () – C:\WINDOWS\NeroDigital.ini
[2009/10/23 22:53:36 | 000,000,070 | —- | C] () – C:\Documents and Settings\Alex\Local Settings\Application Data\FASTWiz.log
[2009/10/19 18:38:29 | 009,699,328 | —- | C] () – C:\Documents and Settings\Alex\ntuser.dat
[2009/10/03 15:55:58 | 000,000,127 | —- | C] () – C:\Documents and Settings\Alex\Local Settings\Application Data\fusioncache.dat
[2009/10/03 15:55:56 | 000,001,024 | -H– | C] () – C:\Documents and Settings\Alex\ntuser.dat.LOG
[2009/10/03 15:55:56 | 000,000,178 | -HS- | C] () – C:\Documents and Settings\Alex\ntuser.ini
[2009/10/03 15:54:53 | 000,262,144 | —- | C] () – C:\Documents and Settings\All Users\NTUSER.DAT
[2009/10/03 15:54:53 | 000,001,024 | -H– | C] () – C:\Documents and Settings\All Users\NTUSER.DAT.LOG
[2009/06/09 18:03:30 | 000,029,900 | —- | C] () – C:\WINDOWS\System32\oeminfo.ini
[2009/06/09 17:49:29 | 000,147,456 | —- | C] () – C:\WINDOWS\System32\igfxCoIn_v4926.dll
[2008/12/01 20:33:42 | 000,000,061 | —- | C] () – C:\WINDOWS\smscfg.ini
[2008/07/07 15:11:32 | 002,854,912 | —- | C] () – C:\WINDOWS\System32\btwicons.dll
[2005/02/17 12:41:32 | 000,000,603 | —- | C] () – C:\WINDOWS\System32\BTNeighborhood.dll.manifest
[2005/02/17 12:41:30 | 000,000,593 | —- | C] () – C:\WINDOWS\System32\btcss.dll.manifest
[2001/11/14 13:56:00 | 001,802,240 | —- | C] () – C:\WINDOWS\System32\lcppn21.dll
========== Custom Scans ==========
< >
< %SYSTEMDRIVE%\*.* >
[2010/05/14 22:30:23 | 000,000,238 | —- | M] () – C:\Boot.bak
[2010/05/15 01:13:16 | 000,000,308 | RHS- | M] () – C:\boot.ini
[2009/10/03 16:00:34 | 003,170,304 | RHS- | M] () – C:\Boot.sdi
[2009/10/03 16:00:33 | 183,560,527 | RHS- | M] () – C:\BootENU.wim
[2008/04/16 15:00:00 | 000,004,952 | RHS- | M] () – C:\Bootfont.bin
[2009/10/03 16:00:34 | 000,333,203 | RHS- | M] () – C:\bootmgr
[2010/04/01 13:25:51 | 000,003,695 | —- | M] () – C:\CLDMA.LOG
[2004/08/03 23:00:00 | 000,260,272 | —- | M] () – C:\cmldr
[2010/05/15 01:58:28 | 000,029,577 | —- | M] () – C:\ComboFix.txt
[2009/10/24 15:32:41 | 000,000,281 | —- | M] () – C:\debugInstaller.txt
[2009/10/10 00:23:32 | 000,000,000 | —- | M] () – C:\exit_c-g.jpg
[2009/10/18 17:51:07 | 000,000,000 | —- | M] () – C:\exit_c.jpg
[2009/10/10 00:23:32 | 000,000,000 | —- | M] () – C:\exit_o-g.jpg
[2009/10/18 17:51:07 | 000,000,000 | —- | M] () – C:\exit_o.jpg
[2010/07/22 14:55:43 | 1064,620,032 | -HS- | M] () – C:\hiberfil.sys
[2009/10/10 00:23:32 | 000,000,000 | —- | M] () – C:\home_c-g.jpg
[2009/10/18 17:51:07 | 000,000,000 | —- | M] () – C:\home_c.jpg
[2009/10/10 00:23:32 | 000,000,000 | —- | M] () – C:\home_o-g.jpg
[2009/10/18 17:51:07 | 000,000,000 | —- | M] () – C:\home_o.jpg
[2009/10/24 10:49:02 | 000,000,000 | RHS- | M] () – C:\IO.SYS
[2010/05/28 13:26:02 | 000,230,410 | —- | M] () – C:\Lemm_log.txt
[2010/04/30 12:14:20 | 000,000,109 | —- | M] () – C:\mbam-error.txt
[2009/11/09 22:51:21 | 000,071,696 | —- | M] () – C:\mdebug.log
[2009/10/24 10:49:02 | 000,000,000 | RHS- | M] () – C:\MSDOS.SYS
[2010/07/02 18:47:31 | 000,000,124 | —- | M] () – C:\My Bluetooth Places (Οι θέσεις Bluetooth μου).lnk
[2008/04/16 15:00:00 | 000,047,564 | -HS- | M] () – C:\NTDETECT.COM
[2008/04/16 15:00:00 | 000,252,256 | -HS- | M] () – C:\NTLDR
[2010/07/03 19:31:56 | 000,053,248 | —- | M] () – C:\othread2.dll
[2010/07/22 14:55:41 | 1598,029,824 | -HS- | M] () – C:\pagefile.sys
[2009/10/10 00:23:32 | 000,000,000 | —- | M] () – C:\save_c-g.jpg
[2009/10/18 17:51:07 | 000,000,000 | —- | M] () – C:\save_c.jpg
[2009/10/10 00:23:32 | 000,000,000 | —- | M] () – C:\save_o-g.jpg
[2009/10/18 17:51:07 | 000,000,000 | —- | M] () – C:\save_o.jpg
[2009/10/03 16:18:08 | 000,000,268 | -H– | M] () – C:\sqmdata00.sqm
[2009/10/03 20:04:13 | 000,000,268 | -H– | M] () – C:\sqmdata01.sqm
[2009/10/03 20:26:58 | 000,000,268 | -H– | M] () – C:\sqmdata02.sqm
[2009/10/03 21:19:53 | 000,000,268 | -H– | M] () – C:\sqmdata03.sqm
[2009/10/03 22:52:06 | 000,000,268 | -H– | M] () – C:\sqmdata04.sqm
[2009/10/04 10:39:50 | 000,000,268 | -H– | M] () – C:\sqmdata05.sqm
[2009/10/03 16:18:08 | 000,000,244 | -H– | M] () – C:\sqmnoopt00.sqm
[2009/10/03 20:04:13 | 000,000,244 | -H– | M] () – C:\sqmnoopt01.sqm
[2009/10/03 20:26:58 | 000,000,244 | -H– | M] () – C:\sqmnoopt02.sqm
[2009/10/03 21:19:53 | 000,000,244 | -H– | M] () – C:\sqmnoopt03.sqm
[2009/10/03 22:52:06 | 000,000,244 | -H– | M] () – C:\sqmnoopt04.sqm
[2009/10/04 10:39:50 | 000,000,244 | -H– | M] () – C:\sqmnoopt05.sqm
[2009/10/18 17:51:07 | 000,000,000 | —- | M] () – C:\uk_c.bmp
[2009/10/18 17:51:07 | 000,000,000 | —- | M] () – C:\uk_o.bmp
[2010/07/03 19:31:56 | 000,038,912 | —- | M] (RealVNC Ltd.) – C:\vnchooks.dll
[2009/07/08 03:11:18 | 000,197,915 | —- | M] () – C:\wubildr
[2009/07/08 03:11:18 | 000,008,192 | —- | M] () – C:\wubildr.mbr
< %systemroot%\system32\*.wt >
< %systemroot%\system32\*.ruy >
< %systemroot%\Fonts\*.com >
[2006/04/18 15:39:28 | 000,026,040 | —- | M] () – C:\WINDOWS\Fonts\GlobalMonospace.CompositeFont
[2006/06/29 14:53:56 | 000,026,489 | —- | M] () – C:\WINDOWS\Fonts\GlobalSansSerif.CompositeFont
[2006/04/18 15:39:28 | 000,029,779 | —- | M] () – C:\WINDOWS\Fonts\GlobalSerif.CompositeFont
[2006/06/29 14:58:52 | 000,030,808 | —- | M] () – C:\WINDOWS\Fonts\GlobalUserInterface.CompositeFont
< %systemroot%\Fonts\*.dll >
< %systemroot%\Fonts\*.ini >
[2008/12/01 19:51:44 | 000,000,067 | -HS- | M] () – C:\WINDOWS\Fonts\desktop.ini
< %systemroot%\Fonts\*.ini2 >
< %systemroot%\system32\spool\prtprocs\w32x86\*.tmp >
< %systemroot%\system32\Spool\prtprocs\w32x86\*.dll >
[2008/07/06 15:06:10 | 000,089,088 | —- | M] (Microsoft Corporation) – C:\WINDOWS\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll
[2006/10/26 19:56:12 | 000,033,104 | —- | M] (Microsoft Corporation) – C:\WINDOWS\system32\spool\prtprocs\w32x86\msonpppr.dll
< %systemroot%\REPAIR\*.bak1 >
< %systemroot%\REPAIR\*.ini >
< %systemroot%\system32\*.jpg >
< %systemroot%\*.scr >
[2010/06/28 23:57:33 | 000,038,848 | —- | M] (ALWIL Software) – C:\WINDOWS\avastSS.scr
< %systemroot%\*._sy >
< %systemroot%\*. /mp /s >
< %systemroot%\system32\*.dll /lockedfiles >
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\Tasks\*.job /lockedfiles >
< %systemroot%\System32\config\*.sav >
[2008/12/01 21:47:18 | 000,094,208 | —- | M] () – C:\WINDOWS\system32\config\default.sav
[2008/12/01 21:47:18 | 001,073,152 | —- | M] () – C:\WINDOWS\system32\config\software.sav
[2008/12/01 21:47:18 | 000,450,560 | —- | M] () – C:\WINDOWS\system32\config\system.sav
< %systemroot%\system32\user32.dll /md5 >
[2008/04/16 15:00:00 | 000,580,608 | —- | M] (Microsoft Corporation) MD5=5BB2A1C2290E910AE145C80DF491B600 – C:\WINDOWS\system32\user32.dll
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\system32\ws2_32.dll /md5 >
[2008/04/16 15:00:00 | 000,082,432 | —- | M] (Microsoft Corporation) MD5=EC57996DC47ADF15ECD1C65E6AB5613F – C:\WINDOWS\system32\ws2_32.dll
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\system32\ws2help.dll /md5 >
[2008/04/16 15:00:00 | 000,019,968 | —- | M] (Microsoft Corporation) MD5=2AFC6866F8E07625D38CDE0991B20B4E – C:\WINDOWS\system32\ws2help.dll
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >
< HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2010-06-23 07:14:54
========== Alternate Data Streams ==========
@Alternate Data Stream - 134 bytes -> C:\Documents and Settings\All Users\Application Data\Temp:F5F96E70
@Alternate Data Stream - 12 bytes -> C:\WINDOWS\system32:{DA6227CB-326B-4B4D-9A81-04B61F1538DD}
@Alternate Data Stream - 119 bytes -> C:\Documents and Settings\All Users\Application Data\Temp:D0D0FFBF
@Alternate Data Stream - 118 bytes -> C:\Documents and Settings\All Users\Application Data\Temp:5C321E34
< End of report >