Tietokone boottaa itestään Hjt-logi

Discussion in 'Virukset ja haittaohjelmat - HijackThis -logit' started by Soija2000, Jan 13, 2011.

  1. Soija2000

    Soija2000 Guest

    Tietokoneeni boottaillee itestään silloin kun sitä ei käytä, missähän on vika?

    Tässä hjt-logi:

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 22:50:10, on 13.1.2011
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Sygate\SPF\smc.exe
    C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
    C:\WINDOWS\system32\LEXBCES.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\LEXPPS.EXE
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
    C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\Common Files\Java\Java Update\jusched.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\Documents and Settings\Acer\Local Settings\Application Data\Google\Update\1.2.183.39\GoogleCrashHandler.exe
    C:\WINDOWS\system32\wbem\wmiapsrv.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    O4 - HKLM\..\Run: [SoundMax] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
    O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    O4 - HKCU\..\Run: [EA Core] "C:\Program Files\Electronic Arts\EADM\Core.exe" -silent
    O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Acer\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
    O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
    O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
    O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe
    O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe
    O9 - Extra button: Poker Rewards - {00000000-0000-0000-0000-000000000000} - C:\MicroGaming\Poker\pokerrewardsMPP\MPPoker.exe (file missing) (HKCU)
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
    O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} (Windows Live Hotmail Photo Upload Tool) - http://gfx1.hotmail.com/mail/w4/pr01/photouploadcontrol/MSNPUpld.cab
    O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
    O23 - Service: avast! Mail Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
    O23 - Service: avast! Web Scanner - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
    O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: Google-päivityspalvelu (gupdate1ca20fb8ef381e6) (gupdate1ca20fb8ef381e6) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
    O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPod-palvelu (iPod Service) - Unknown owner - C:\Program Files\iPod\bin\iPodService.exe (file missing)
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
    O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: Sygate Personal Firewall (SmcService) - Sygate Technologies, Inc. - C:\Program Files\Sygate\SPF\smc.exe
    O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe

    --
    End of file - 5148 bytes
     
  2. kalminen

    kalminen Regular member

    Joined:
    May 4, 2007
    Messages:
    3,915
    Likes Received:
    0
    Trophy Points:
    46
    .
    Logi on jostain syystä vajavainen ???

    Lataa työpöydälle => TÄMÄ
    * Sulje kaikki päälläolevat ikkunat ja sovellukset.
    * Tuplaklikkaa OTL.exeä käynnistääksesi OTListIt:n.
    * Valitse Scan All Users (laita siihen ruxi).
    * Klikkaa Run Scan nappulaa.
    * Kun tarkistus on valmis, OTListIt luo kaksi tekstitiedostoa työpöydälle, tai alapalkkiin OTListIt.Txt ja Extras.txt
    * Kopioi ja lähetä tiedostojen sisältö tänne.

    :)
     
  3. Soija2000

    Soija2000 Guest

    Joo tässä ois nää tiedostot:

    OTL logfile created on: 16.1.2011 17:20:35 - Run 1
    OTL by OldTimer - Version 3.2.20.2 Folder = C:\Documents and Settings\Acer\Työpöytä
    Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
    Internet Explorer (Version = 8.0.6001.18702)
    Locale: 0000040B | Country: Suomi | Language: FIN | Date Format: d.M.yyyy

    1 023,00 Mb Total Physical Memory | 631,00 Mb Available Physical Memory | 62,00% Memory free
    2,00 Gb Paging File | 2,00 Gb Available in Paging File | 90,00% Paging File free
    Paging file location(s): [Binary data over 100 bytes]

    %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
    Drive C: | 34,58 Gb Total Space | 6,33 Gb Free Space | 18,30% Space Free | Partition Type: NTFS
    Drive D: | 35,06 Gb Total Space | 16,52 Gb Free Space | 47,12% Space Free | Partition Type: FAT32
    Drive J: | 232,88 Gb Total Space | 10,11 Gb Free Space | 4,34% Space Free | Partition Type: NTFS

    Computer Name: ACER-AD390BDE86 | User Name: Acer | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: All users
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

    ========== Processes (SafeList) ==========

    PRC - [2011.01.16 17:19:40 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Acer\Työpöytä\OTL.exe
    PRC - [2010.10.16 14:37:19 | 000,134,808 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Acer\Local Settings\Application Data\Google\Update\1.2.183.39\GoogleCrashHandler.exe
    PRC - [2010.09.07 17:12:02 | 002,838,912 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe
    PRC - [2010.09.07 17:11:59 | 000,040,384 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
    PRC - [2008.04.14 18:12:11 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
    PRC - [2004.09.23 12:41:54 | 000,860,160 | ---- | M] (Analog Devices, Inc.) -- C:\Program Files\Analog Devices\SoundMAX\SMax4.exe
    PRC - [2002.09.20 14:50:10 | 000,045,056 | ---- | M] (Analog Devices, Inc.) -- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe


    ========== Modules (SafeList) ==========

    MOD - [2011.01.16 17:19:40 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Acer\Työpöytä\OTL.exe
    MOD - [2010.08.23 18:12:31 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
    MOD - [2009.01.15 08:19:00 | 001,507,328 | ---- | M] () -- C:\WINDOWS\system32\nview.dll
    MOD - [2009.01.15 08:19:00 | 000,081,920 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvwddi.dll


    ========== Win32 Services (SafeList) ==========

    SRV - File not found [On_Demand | Stopped] -- -- (iPod Service)
    SRV - File not found [Disabled | Stopped] -- -- (AVG Anti-Spyware Guard)
    SRV - File not found [Disabled | Stopped] -- -- (Automatic LiveUpdate Scheduler)
    SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt)
    SRV - [2010.09.07 17:11:59 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Web Scanner)
    SRV - [2010.09.07 17:11:59 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Mail Scanner)
    SRV - [2010.09.07 17:11:59 | 000,040,384 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
    SRV - [2008.10.08 12:04:44 | 000,203,280 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\McAfee\SiteAdvisor\McSACore.exe -- (McAfee SiteAdvisor Service)
    SRV - [2007.10.25 15:27:54 | 000,266,240 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Live\installer\WLSetupSvc.exe -- (WLSetupSvc)
    SRV - [2007.03.26 12:06:24 | 000,292,864 | ---- | M] (Nokia.) [Disabled | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
    SRV - [2006.11.16 04:53:00 | 000,462,848 | ---- | M] (BUFFALO INC.) [Disabled | Stopped] -- C:\Program Files\BUFFALO\Client Manager3\bwsvc\bwsvc.exe -- (Bwsvc)
    SRV - [2005.09.21 13:46:56 | 000,438,272 | ---- | M] (Acer Inc.) [Disabled | Stopped] -- C:\Program Files\Acer\Acer eConsole\MediaServerService.exe -- (Acer Media Server)
    SRV - [2005.01.06 18:42:12 | 000,654,848 | ---- | M] (Macrovision Europe Ltd.) [Disabled | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
    SRV - [2004.10.15 18:40:56 | 002,577,632 | ---- | M] (Sygate Technologies, Inc.) [Auto | Stopped] -- C:\Program Files\Sygate\SPF\Smc.exe -- (SmcService)
    SRV - [2002.12.17 17:26:22 | 007,520,337 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe -- (MSSQL$SONY_MEDIAMGR)
    SRV - [2002.12.17 17:23:30 | 000,311,872 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE -- (SQLAgent$SONY_MEDIAMGR)
    SRV - [2002.09.20 14:50:10 | 000,045,056 | ---- | M] (Analog Devices, Inc.) [Auto | Running] -- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe -- (SoundMAX Agent Service (default))


    ========== Driver Services (SafeList) ==========

    DRV - [2010.09.07 16:52:25 | 000,046,672 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
    DRV - [2010.09.07 16:52:03 | 000,165,584 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
    DRV - [2010.09.07 16:47:46 | 000,023,376 | ---- | M] (AVAST Software) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr)
    DRV - [2010.09.07 16:47:19 | 000,100,176 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
    DRV - [2010.09.07 16:47:07 | 000,017,744 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
    DRV - [2010.09.07 16:46:51 | 000,028,880 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4)
    DRV - [2009.01.15 08:19:00 | 006,301,248 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
    DRV - [2008.07.28 17:19:28 | 000,116,736 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mcdbus.sys -- (mcdbus)
    DRV - [2008.06.26 12:00:00 | 000,072,704 | ---- | M] (WIBU-SYSTEMS AG) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\WibuKey.sys -- (WIBUKEY)
    DRV - [2007.08.28 17:05:12 | 000,055,808 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\xusb21.sys -- (xusb21)
    DRV - [2007.08.26 12:35:00 | 000,009,088 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\RivaTuner v2.03\RivaTuner32.sys -- (RivaTuner32)
    DRV - [2007.03.16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\TBPanel.sys -- (TBPanel)
    DRV - [2007.02.22 09:15:56 | 000,137,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcd.sys -- (nmwcd)
    DRV - [2007.02.22 09:15:14 | 000,012,288 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdcm.sys -- (nmwcdcm)
    DRV - [2007.02.22 09:15:14 | 000,012,288 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdcj.sys -- (nmwcdcj)
    DRV - [2007.02.22 09:15:14 | 000,008,320 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdc.sys -- (nmwcdc)
    DRV - [2007.02.08 23:49:35 | 000,646,392 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
    DRV - [2007.01.25 22:04:30 | 000,005,273 | ---- | M] (Arrowkey) [Kernel | Auto | Running] -- C:\Program Files\Quintessential Media Player\cdrpdacc.sys -- (CDRPDACC) Quinnware CDDA Driver (by InfinaDyne)
    DRV - [2007.01.20 09:11:07 | 000,031,644 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\scdemu.sys -- (SCDEmu)
    DRV - [2007.01.11 09:19:00 | 000,011,008 | R--- | M] (BUFFALO INC.) [Kernel | System | Running] -- C:\WINDOWS\system32\BUFADPT.SYS -- (BUFADPT)
    DRV - [2006.03.14 07:22:00 | 000,090,176 | ---- | M] (SafeNet, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\System32\Drivers\SENTINEL.SYS -- (Sentinel)
    DRV - [2006.01.24 07:40:40 | 000,006,144 | ---- | M] (NewTech Infosystems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NTIDrvr.sys -- (NTIDrvr)
    DRV - [2005.12.27 17:06:20 | 000,032,256 | ---- | M] (SiS Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sisnic.sys -- (SISNIC)
    DRV - [2005.12.27 16:46:42 | 000,088,960 | ---- | M] (Analog Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\MidiSyn.sys -- (MidiSyn)
    DRV - [2005.12.27 16:46:02 | 000,392,704 | ---- | M] (Sensaura) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\senfilt.sys -- (senfilt)
    DRV - [2005.06.02 19:28:38 | 000,171,008 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\MarvinBus.sys -- (MarvinBus)
    DRV - [2005.04.22 21:34:56 | 000,052,608 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TosRfhid.sys -- (Tosrfhid)
    DRV - [2005.04.22 20:11:30 | 000,098,048 | ---- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TosRfbd.sys -- (Tosrfbd)
    DRV - [2005.04.06 08:54:44 | 000,050,048 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TosRfSnd.sys -- (TosRfSnd) Bluetooth Audio Device (WDM)
    DRV - [2005.03.30 11:42:54 | 000,047,230 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Tosporte.sys -- (tosporte)
    DRV - [2005.03.09 15:53:00 | 000,038,912 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8)
    DRV - [2005.02.23 14:58:56 | 000,011,776 | ---- | M] (Arcsoft, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\afc.sys -- (Afc)
    DRV - [2005.02.09 12:59:00 | 000,014,165 | ---- | M] (Pinnacle Systems GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\Pclepci.sys -- (PCLEPCI)
    DRV - [2005.01.14 18:14:07 | 000,047,616 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfdrv01.sys -- (sfdrv01) StarForce Protection Environment Driver (version 1.x)
    DRV - [2005.01.13 14:46:16 | 000,069,632 | ---- | M] () [Kernel | Auto | Running] -- C:\Acer\Empowering Technology\eRecovery\int15.sys -- (int15.sys)
    DRV - [2005.01.06 12:42:42 | 000,018,612 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\tosrfnds.sys -- (tosrfnds)
    DRV - [2005.01.04 20:43:08 | 000,004,682 | ---- | M] (INCA Internet Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\npptNT2.sys -- (NPPTNT2)
    DRV - [2004.12.21 10:38:12 | 000,034,816 | ---- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\tosrfusb.sys -- (Tosrfusb)
    DRV - [2004.12.17 17:14:44 | 000,013,952 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\UBHelper.sys -- (UBHelper)
    DRV - [2004.12.03 12:20:41 | 000,020,544 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfsync02.sys -- (sfsync02) StarForce Protection Synchronization Driver (version 2.x)
    DRV - [2004.10.28 12:47:59 | 000,006,656 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfhlp02.sys -- (sfhlp02) StarForce Protection Helper Driver (version 2.x)
    DRV - [2004.10.15 17:32:44 | 000,014,568 | ---- | M] (Sygate Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\SYSTEM32\Drivers\wg6n.sys -- (wg6n)
    DRV - [2004.10.15 17:32:42 | 000,014,568 | ---- | M] (Sygate Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\SYSTEM32\Drivers\wg5n.sys -- (wg5n)
    DRV - [2004.10.15 17:32:40 | 000,014,568 | ---- | M] (Sygate Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\SYSTEM32\Drivers\wg4n.sys -- (wg4n)
    DRV - [2004.10.15 17:32:38 | 000,014,568 | ---- | M] (Sygate Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\SYSTEM32\Drivers\wg3n.sys -- (wg3n)
    DRV - [2004.10.15 17:18:46 | 000,021,075 | ---- | M] (Sygate Technologies, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\wpsdrvnt.sys -- (wpsdrvnt)
    DRV - [2004.10.15 17:17:02 | 000,060,496 | ---- | M] (Sygate Technologies, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\SYSTEM32\Drivers\Teefer.sys -- (Teefer)
    DRV - [2004.10.04 09:33:02 | 000,062,799 | ---- | M] (TOSHIBA Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\tosrfcom.sys -- (Tosrfcom)
    DRV - [2004.07.08 16:07:34 | 000,036,531 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\tosrfbnp.sys -- (Tosrfbnp)
    DRV - [2002.10.16 12:55:48 | 000,002,851 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Toshidpt.sys -- (toshidpt)


    ========== Standard Registry (SafeList) ==========


    ========== Internet Explorer ==========

    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search, =
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie


    IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

    IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



    IE - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
    IE - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
    IE - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

    ========== FireFox ==========

    FF - prefs.js..browser.search.defaultenginename: "Web Search"
    FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT1529850&SearchSource=3&q="
    FF - prefs.js..browser.search.useDBForOrder: true
    FF - prefs.js..browser.startup.homepage: "http://elisa.net/"
    FF - prefs.js..extensions.enabledItems: npfax@microgaming.co.uk:2.1.0.19
    FF - prefs.js..extensions.enabledItems: {19503e42-ca3c-4c27-b1e2-9cdb2170ee34}:1.2.1.31
    FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
    FF - prefs.js..extensions.enabledItems: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:2.8
    FF - prefs.js..extensions.enabledItems: moveplayer@movenetworks.com:1.0.0.071303000004
    FF - prefs.js..extensions.enabledItems: turntoolviewer@turntool.com:2.9.5.5
    FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22

    FF - HKLM\software\mozilla\Firefox\Extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files\McAfee\SiteAdvisor [2009.01.17 21:34:00 | 000,000,000 | ---D | M]
    FF - HKLM\software\mozilla\Mozilla Firefox 3.0.19\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.12.04 10:42:46 | 000,000,000 | ---D | M]
    FF - HKLM\software\mozilla\Mozilla Firefox 3.0.19\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010.12.11 11:10:47 | 000,000,000 | ---D | M]

    [2008.09.08 17:44:14 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Acer\Application Data\Mozilla\Extensions
    [2011.01.16 15:23:01 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Acer\Application Data\Mozilla\Firefox\Profiles\lmbqiwos.default\extensions
    [2010.09.15 17:46:54 | 000,000,000 | ---D | M] (FlashGot) -- C:\Documents and Settings\Acer\Application Data\Mozilla\Firefox\Profiles\lmbqiwos.default\extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}
    [2010.09.15 17:46:53 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Acer\Application Data\Mozilla\Firefox\Profiles\lmbqiwos.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
    [2009.07.18 21:23:52 | 000,000,000 | ---D | M] (Move Media Player) -- C:\Documents and Settings\Acer\Application Data\Mozilla\Firefox\Profiles\lmbqiwos.default\extensions\moveplayer@movenetworks.com
    [2009.01.27 10:01:02 | 000,000,000 | ---D | M] (Flash AX Control) -- C:\Documents and Settings\Acer\Application Data\Mozilla\Firefox\Profiles\lmbqiwos.default\extensions\npfax@microgaming.co.uk
    [2008.08.26 15:28:55 | 000,000,000 | ---D | M] ("TurnTool Viewer") -- C:\Documents and Settings\Acer\Application Data\Mozilla\Firefox\Profiles\lmbqiwos.default\extensions\turntoolviewer@turntool.com
    [2008.11.01 01:11:01 | 000,002,687 | ---- | M] () -- C:\Documents and Settings\Acer\Application Data\Mozilla\Firefox\Profiles\lmbqiwos.default\searchplugins\opensubtitles.xml
    [2008.03.19 17:30:34 | 000,002,386 | ---- | M] () -- C:\Documents and Settings\Acer\Application Data\Mozilla\Firefox\Profiles\lmbqiwos.default\searchplugins\siteadvisor.xml
    [2007.07.24 21:49:40 | 000,001,074 | ---- | M] () -- C:\Documents and Settings\Acer\Application Data\Mozilla\Firefox\Profiles\lmbqiwos.default\searchplugins\wikisanakirja-suomi.xml
    [2011.01.16 15:23:01 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
    [2010.12.11 11:10:49 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
    [2008.11.08 13:24:38 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
    [2009.01.17 21:34:00 | 000,000,000 | ---D | M] (McAfee SiteAdvisor) -- C:\PROGRAM FILES\MCAFEE\SITEADVISOR
    [2010.09.15 04:50:38 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll

    O1 HOSTS File: ([2009.01.24 18:16:42 | 000,000,686 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\HOSTS
    O1 - Hosts: 127.0.0.1 localhost
    O3 - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006\..\Toolbar\ShellBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found.
    O3 - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
    O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
    O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
    O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
    O4 - HKLM..\Run: [SoundMax] C:\Program Files\Analog Devices\SoundMAX\Smax4.exe (Analog Devices, Inc.)
    O4 - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006..\Run: [EA Core] File not found
    O4 - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006..\Run: [Steam] File not found
    O4 - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
    O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
    O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
    O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
    O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
    O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
    O7 - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O7 - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
    O7 - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = [binary data]
    O8 - Extra context menu item: &D&ownload &with BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
    O8 - Extra context menu item: &D&ownload all video with BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
    O8 - Extra context menu item: &D&ownload all with BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
    O9 - Extra Button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe ()
    O9 - Extra 'Tools' menuitem : PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe ()
    O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
    O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
    O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
    O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} http://gfx1.hotmail.com/mail/w4/pr01/photouploadcontrol/MSNPUpld.cab (Windows Live Hotmail Photo Upload Tool)
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 193.229.0.40 193.229.0.42
    O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
    O24 - Desktop WallPaper: C:\Documents and Settings\Acer\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
    O24 - Desktop BackupWallPaper: C:\Documents and Settings\Acer\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
    O28 - HKLM ShellExecuteHooks: {57B86673-276A-48B2-BAE7-C6DBB3020EB8} - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll (GRISOFT s.r.o.)
    O32 - HKLM CDRom: AutoRun - 1
    O32 - AutoRun File - [2009.01.01 20:20:39 | 000,000,189 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
    O34 - HKLM BootExecute: (autocheck autochk /r \??\J:) - File not found
    O34 - HKLM BootExecute: (autocheck autochk *) - File not found
    O35 - HKLM\..comfile [open] -- "%1" %*
    O35 - HKLM\..exefile [open] -- "%1" %*
    O37 - HKLM\...com [@ = comfile] -- "%1" %*
    O37 - HKLM\...exe [@ = exefile] -- "%1" %*

    ========== Files/Folders - Created Within 30 Days ==========

    [2011.01.16 17:19:40 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Acer\Työpöytä\OTL.exe
    [2011.01.10 11:41:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Acer\Työpöytä\tigerland.(2000).fin.1cd.(28973)
    [2011.01.09 21:28:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Acer\Työpöytä\The.Social.Network.2010.divxfinland.org.v1.1b
    [2010.12.19 23:39:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\NCH Swift Sound
    [2010.12.19 23:39:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Käynnistä-valikko\Ohjelmat\NCH Software Suite
    [2010.12.19 23:39:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Käynnistä-valikko\Ohjelmat\Audio Related Programs
    [2010.12.19 23:39:25 | 000,000,000 | ---D | C] -- C:\Program Files\NCH Swift Sound
    [2007.12.30 01:26:55 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\Acer\Application Data\pcouffin.sys
    [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

    ========== Files - Modified Within 30 Days ==========

    [2011.01.16 17:19:40 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Acer\Työpöytä\OTL.exe
    [2011.01.16 17:00:00 | 000,000,260 | -H-- | M] () -- C:\WINDOWS\tasks\A1C92DF591A2A989.job
    [2011.01.16 16:46:00 | 000,001,084 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1173613074-4256019773-1026456786-1006UA.job
    [2011.01.16 16:38:00 | 000,000,996 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
    [2011.01.16 15:46:00 | 000,001,032 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1173613074-4256019773-1026456786-1006Core.job
    [2011.01.16 15:09:25 | 000,207,365 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
    [2011.01.16 15:09:16 | 000,000,900 | ---- | M] () -- C:\WINDOWS\tasks\Google Software Updater.job
    [2011.01.16 15:09:15 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
    [2011.01.16 15:09:08 | 000,000,992 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
    [2011.01.16 15:08:56 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
    [2011.01.16 15:08:55 | 1073,139,712 | -HS- | M] () -- C:\hiberfil.sys
    [2011.01.16 00:18:06 | 000,000,012 | ---- | M] () -- C:\WINDOWS\bthservsdp.dat
    [2011.01.14 22:47:15 | 000,002,281 | ---- | M] () -- C:\Documents and Settings\Acer\Työpöytä\Google Chrome.lnk
    [2011.01.14 22:47:15 | 000,002,259 | ---- | M] () -- C:\Documents and Settings\Acer\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
    [2011.01.10 11:42:08 | 000,162,816 | ---- | M] () -- C:\Documents and Settings\Acer\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [2011.01.10 11:41:34 | 000,024,278 | ---- | M] () -- C:\Documents and Settings\Acer\Työpöytä\tigerland.(2000).fin.1cd.(28973).zip
    [2011.01.09 21:27:57 | 000,052,953 | ---- | M] () -- C:\Documents and Settings\Acer\Työpöytä\The.Social.Network.2010.divxfinland.org.v1.1b.rar
    [2011.01.07 19:34:20 | 000,000,558 | ---- | M] () -- C:\WINDOWS\DFC.INI
    [2011.01.07 13:28:35 | 000,786,001 | ---- | M] () -- C:\Documents and Settings\Acer\Työpöytä\menusuomi.pdf
    [2011.01.05 14:44:00 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
    [2010.12.22 23:42:02 | 000,000,296 | ---- | M] () -- C:\WINDOWS\tasks\expressburnShakeIcon.job
    [2010.12.19 23:39:26 | 000,000,874 | ---- | M] () -- C:\Documents and Settings\All Users\Työpöytä\Express Burn Disc Burning Software.lnk
    [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

    ========== Files Created - No Company Name ==========

    [2011.01.10 11:41:34 | 000,024,278 | ---- | C] () -- C:\Documents and Settings\Acer\Työpöytä\tigerland.(2000).fin.1cd.(28973).zip
    [2011.01.09 21:27:57 | 000,052,953 | ---- | C] () -- C:\Documents and Settings\Acer\Työpöytä\The.Social.Network.2010.divxfinland.org.v1.1b.rar
    [2011.01.07 13:28:34 | 000,786,001 | ---- | C] () -- C:\Documents and Settings\Acer\Työpöytä\menusuomi.pdf
    [2010.12.19 23:42:51 | 000,000,296 | ---- | C] () -- C:\WINDOWS\tasks\expressburnShakeIcon.job
    [2010.12.19 23:39:26 | 000,000,874 | ---- | C] () -- C:\Documents and Settings\All Users\Työpöytä\Express Burn Disc Burning Software.lnk
    [2010.10.04 18:11:21 | 000,000,058 | ---- | C] () -- C:\WINDOWS\TEN.INI
    [2010.09.17 15:55:34 | 000,000,448 | ---- | C] () -- C:\WINDOWS\scummvm.ini
    [2010.03.03 18:05:10 | 000,000,736 | ---- | C] () -- C:\WINDOWS\SamsungMaster.INI
    [2009.12.03 21:07:52 | 000,000,391 | ---- | C] () -- C:\WINDOWS\ODBC.INI
    [2009.05.14 16:49:21 | 000,000,425 | ---- | C] () -- C:\WINDOWS\lexstat.ini
    [2009.05.14 16:47:21 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\lxbrvs.dll
    [2009.05.14 16:47:21 | 000,000,181 | ---- | C] () -- C:\WINDOWS\System32\lxbrcoin.ini
    [2009.01.28 13:23:28 | 000,001,536 | ---- | C] () -- C:\WINDOWS\System32\bwsvc_event.dll
    [2009.01.19 10:00:57 | 000,021,840 | ---- | C] () -- C:\WINDOWS\System32\SIntfNT.dll
    [2009.01.19 10:00:57 | 000,017,212 | ---- | C] () -- C:\WINDOWS\System32\SIntf32.dll
    [2009.01.19 10:00:57 | 000,012,067 | ---- | C] () -- C:\WINDOWS\System32\SIntf16.dll
    [2009.01.15 08:19:00 | 001,724,416 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
    [2009.01.15 08:19:00 | 001,507,328 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
    [2009.01.15 08:19:00 | 001,101,824 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
    [2009.01.15 08:19:00 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
    [2009.01.01 20:20:39 | 000,001,182 | ---- | C] () -- C:\WINDOWS\VFO.INI
    [2008.10.07 09:13:30 | 000,197,912 | ---- | C] () -- C:\WINDOWS\System32\physxcudart_20.dll
    [2008.10.07 09:13:22 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelTraditionalChinese.dll
    [2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSwedish.dll
    [2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSpanish.dll
    [2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll
    [2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelPortugese.dll
    [2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelKorean.dll
    [2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelJapanese.dll
    [2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelGerman.dll
    [2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelFrench.dll
    [2008.05.30 14:06:01 | 000,250,867 | -HS- | C] () -- C:\WINDOWS\System32\ilUuvyay.ini2
    [2008.05.28 01:15:11 | 001,453,970 | -HS- | C] () -- C:\WINDOWS\System32\dkqkbkge.ini
    [2008.05.28 01:14:26 | 000,250,867 | -HS- | C] () -- C:\WINDOWS\System32\ilUuvyay.ini
    [2008.03.18 19:58:03 | 000,000,080 | RHS- | C] () -- C:\WINDOWS\System32\EB1EE4543D.dll
    [2008.01.25 18:14:46 | 000,162,304 | ---- | C] () -- C:\WINDOWS\System32\ztvunrar36.dll
    [2008.01.25 18:14:46 | 000,153,088 | ---- | C] () -- C:\WINDOWS\System32\UNRAR3.dll
    [2008.01.25 18:14:46 | 000,077,312 | ---- | C] () -- C:\WINDOWS\System32\ztvunace26.dll
    [2008.01.25 18:14:46 | 000,075,264 | ---- | C] () -- C:\WINDOWS\System32\unacev2.dll
    [2008.01.16 19:46:04 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
    [2007.12.30 01:27:02 | 000,000,034 | ---- | C] () -- C:\Documents and Settings\Acer\Application Data\pcouffin.log
    [2007.12.30 01:26:55 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\Acer\Application Data\inst.exe
    [2007.12.30 01:26:55 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\Acer\Application Data\pcouffin.cat
    [2007.12.30 01:26:55 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\Acer\Application Data\pcouffin.inf
    [2007.10.25 02:36:49 | 000,006,144 | ---- | C] () -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [2007.08.29 17:51:51 | 000,000,558 | ---- | C] () -- C:\WINDOWS\DFC.INI
    [2007.08.29 17:14:16 | 000,032,768 | ---- | C] () -- C:\WINDOWS\TBPanelExt.dll
    [2007.08.29 17:14:16 | 000,012,285 | ---- | C] () -- C:\WINDOWS\Cadx3.ini
    [2007.08.29 17:14:16 | 000,005,120 | ---- | C] () -- C:\WINDOWS\TBManage.dll
    [2007.08.26 19:25:09 | 000,000,019 | ---- | C] () -- C:\WINDOWS\9DSetup.ini
    [2007.08.01 19:51:17 | 000,000,083 | ---- | C] () -- C:\WINDOWS\wwp.INI
    [2007.05.29 11:23:11 | 000,299,008 | ---- | C] () -- C:\WINDOWS\System32\LAME_MP3.dll
    [2007.04.26 02:17:56 | 000,000,237 | ---- | C] () -- C:\WINDOWS\wininit.ini
    [2007.04.25 07:11:07 | 000,007,247 | ---- | C] () -- C:\WINDOWS\cadx2.ini
    [2007.03.26 03:06:23 | 000,001,362 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
    [2007.03.07 15:22:03 | 000,001,682 | -HS- | C] () -- C:\WINDOWS\System32\KGyGaAvL.sys
    [2007.03.07 15:22:03 | 000,000,088 | RHS- | C] () -- C:\WINDOWS\System32\3D54E41EEB.sys
    [2007.02.23 13:51:55 | 000,000,098 | ---- | C] () -- C:\WINDOWS\WirelessFTP.INI
    [2007.02.21 23:27:17 | 000,000,011 | ---- | C] () -- C:\WINDOWS\asf.INI
    [2007.02.21 23:27:17 | 000,000,009 | ---- | C] () -- C:\WINDOWS\fra.INI
    [2007.02.21 23:27:17 | 000,000,008 | ---- | C] () -- C:\WINDOWS\dsg.INI
    [2007.02.21 23:26:57 | 000,000,014 | ---- | C] () -- C:\WINDOWS\vas.INI
    [2007.02.21 23:26:57 | 000,000,012 | ---- | C] () -- C:\WINDOWS\vaikeusasa.INI
    [2007.02.21 23:26:34 | 000,000,008 | ---- | C] () -- C:\WINDOWS\rqw.INI
    [2007.02.13 00:31:02 | 000,010,752 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
    [2007.02.08 23:49:35 | 000,646,392 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
    [2007.02.04 05:06:17 | 000,000,025 | ---- | C] () -- C:\WINDOWS\cdplayer.ini
    [2007.02.02 17:03:40 | 000,000,000 | ---- | C] () -- C:\WINDOWS\tosOBEX.INI
    [2007.02.01 15:55:09 | 000,162,816 | ---- | C] () -- C:\Documents and Settings\Acer\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [2007.01.30 07:03:40 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
    [2007.01.29 09:22:48 | 000,000,816 | ---- | C] () -- C:\WINDOWS\System32\eRLog.ini
    [2007.01.29 09:20:46 | 000,092,985 | ---- | C] () -- C:\WINDOWS\VGAsetup.ini
    [2007.01.29 09:20:38 | 000,154,147 | ---- | C] () -- C:\WINDOWS\System32\VGAunistlog.ini
    [2007.01.29 09:16:10 | 000,000,131 | ---- | C] () -- C:\Documents and Settings\Acer\Local Settings\Application Data\fusioncache.dat
    [2007.01.11 15:20:00 | 000,026,096 | ---- | C] () -- C:\WINDOWS\UN800114.INI
    [2006.01.27 03:29:50 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
    [2006.01.24 07:41:40 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIBUN4.dll
    [2006.01.24 07:40:44 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIMPEG2.dll
    [2006.01.24 07:40:44 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIMP3.dll
    [2006.01.24 07:40:44 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIFCD3.dll
    [2006.01.24 07:40:44 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTICDMK7.dll
    [2006.01.24 07:17:34 | 000,004,381 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
    [2006.01.20 18:22:42 | 000,000,083 | ---- | C] () -- C:\WINDOWS\ALaunch.ini
    [2006.01.04 12:05:12 | 000,008,096 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
    [2004.12.20 18:24:03 | 001,663,068 | ---- | C] () -- C:\WINDOWS\System32\libmmd.dll
    [2004.12.20 10:08:28 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
    [2004.12.20 10:03:26 | 000,765,952 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
    [2004.12.17 17:14:44 | 000,013,952 | ---- | C] () -- C:\WINDOWS\System32\drivers\UBHelper.sys
    [2004.12.02 14:20:14 | 000,114,688 | ---- | C] () -- C:\WINDOWS\System32\TosBtAcc.dll
    [2004.10.15 17:31:56 | 000,218,264 | ---- | C] () -- C:\WINDOWS\System32\SetAid.dll
    [2004.09.22 09:09:06 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\TosCommAPI.dll
    [2004.09.15 22:00:00 | 000,003,704 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
    [2004.07.20 16:04:02 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\TosBtHcrpAPI.dll
    [2004.01.15 13:43:28 | 000,114,688 | ---- | C] () -- C:\WINDOWS\System32\TBTMonUI.dll
    [2003.07.29 14:33:26 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\TosHidAPI.dll
    [2003.01.07 15:05:08 | 000,002,695 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI
    [2001.12.26 16:12:30 | 000,065,536 | R--- | C] () -- C:\WINDOWS\System32\multiplex_vcd.dll
    [2001.09.03 23:46:38 | 000,110,592 | R--- | C] () -- C:\WINDOWS\System32\Hmpg12.dll
    [2001.07.30 16:33:56 | 000,118,784 | R--- | C] () -- C:\WINDOWS\System32\HMPV2_ENC.dll
    [2001.07.23 22:04:36 | 000,118,784 | R--- | C] () -- C:\WINDOWS\System32\HMPV2_ENC_MMX.dll
    [1997.06.14 10:56:08 | 000,056,832 | ---- | C] () -- C:\WINDOWS\System32\iyvu9_32.dll
    [1996.04.03 21:33:26 | 000,005,248 | ---- | C] () -- C:\WINDOWS\System32\giveio.sys

    ========== Alternate Data Streams ==========

    @Alternate Data Stream - 487 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:05EE1EEF
    @Alternate Data Stream - 142 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:CB0AACC9
    @Alternate Data Stream - 122 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:8CEFE51A
    @Alternate Data Stream - 120 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:5C321E34
    @Alternate Data Stream - 115 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DD85067F
    @Alternate Data Stream - 106 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DFC5A2B2

    < End of report >



    OTL Extras logfile created on: 16.1.2011 17:20:35 - Run 1
    OTL by OldTimer - Version 3.2.20.2 Folder = C:\Documents and Settings\Acer\Työpöytä
    Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
    Internet Explorer (Version = 8.0.6001.18702)
    Locale: 0000040B | Country: Suomi | Language: FIN | Date Format: d.M.yyyy

    1 023,00 Mb Total Physical Memory | 631,00 Mb Available Physical Memory | 62,00% Memory free
    2,00 Gb Paging File | 2,00 Gb Available in Paging File | 90,00% Paging File free
    Paging file location(s): [Binary data over 100 bytes]

    %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
    Drive C: | 34,58 Gb Total Space | 6,33 Gb Free Space | 18,30% Space Free | Partition Type: NTFS
    Drive D: | 35,06 Gb Total Space | 16,52 Gb Free Space | 47,12% Space Free | Partition Type: FAT32
    Drive J: | 232,88 Gb Total Space | 10,11 Gb Free Space | 4,34% Space Free | Partition Type: NTFS

    Computer Name: ACER-AD390BDE86 | User Name: Acer | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: All users
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

    ========== Extra Registry (SafeList) ==========


    ========== File Associations ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

    [HKEY_USERS\S-1-5-21-1173613074-4256019773-1026456786-1006\SOFTWARE\Classes\<extension>]
    .html [@ = htmlfile] -- Reg Error: Key error. File not found

    ========== Shell Spawning ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [open] -- "%1" %*
    cmdfile [open] -- "%1" %*
    comfile [open] -- "%1" %*
    exefile [open] -- "%1" %*
    piffile [open] -- "%1" %*
    regfile [merge] -- Reg Error: Key error.
    scrfile [config] -- "%1"
    scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
    scrfile [open] -- "%1" /S
    txtfile [edit] -- Reg Error: Key error.
    Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Directory [Winamp.Bookmark] -- "D:\Ohjelmat\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft)
    Directory [Winamp.Enqueue] -- "D:\Ohjelmat\Winamp\winamp.exe" /ADD "%1" (Nullsoft)
    Directory [Winamp.Play] -- "D:\Ohjelmat\Winamp\winamp.exe" "%1" (Nullsoft)
    Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
    Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
    Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

    ========== Security Center Settings ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
    "FirstRunDisabled" = 1
    "AntiVirusDisableNotify" = 0
    "FirewallDisableNotify" = 0
    "UpdatesDisableNotify" = 0
    "AntiVirusOverride" = 0
    "FirewallOverride" = 0

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

    ========== System Restore Settings ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
    "DisableSR" = 0

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
    "Start" = 0

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
    "Start" = 2

    ========== Firewall Settings ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
    "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:mad:xpsp2res.dll,-22007
    "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:mad:xpsp2res.dll,-22008

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
    "EnableFirewall" = 1
    "DoNotAllowExceptions" = 0
    "DisableNotifications" = 0

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
    "25505:TCP" = 25505:TCP:*:Enabled:BitComet 25505 TCP
    "25505:UDP" = 25505:UDP:*:Enabled:BitComet 25505 UDP
    "1412:UDP" = 1412:UDP:*:Enabled:dc++
    "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:mad:xpsp2res.dll,-22008
    "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:mad:xpsp2res.dll,-22007
    "24277:TCP" = 24277:TCP:*:Enabled:BitComet 24277 TCP
    "24277:UDP" = 24277:UDP:*:Enabled:BitComet 24277 UDP
    "27025:UDP" = 27025:UDP:*:Enabled:cs source
    "2412:TCP" = 2412:TCP:*:Enabled:dc++
    "3414:UDP" = 3414:UDP:*:Disabled:steam
    "139:TCP" = 139:TCP:LocalSubNet:Disabled:mad:xpsp2res.dll,-22004
    "445:TCP" = 445:TCP:LocalSubNet:Disabled:mad:xpsp2res.dll,-22005
    "137:UDP" = 137:UDP:LocalSubNet:Disabled:mad:xpsp2res.dll,-22001
    "138:UDP" = 138:UDP:LocalSubNet:Disabled:mad:xpsp2res.dll,-22002

    ========== Authorized Applications List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
    "C:\Program Files\Acer\Acer eConsole\MediaSync.exe" = C:\Program Files\Acer\Acer eConsole\MediaSync.exe:LocalSubNet:Enabled:Media Synchoronizer -- (Acer Inc.)
    "C:\Program Files\Acer\Acer eConsole\eConsole.exe" = C:\Program Files\Acer\Acer eConsole\eConsole.exe:LocalSubNet:Enabled:eConsole -- (Acer Inc.)
    "C:\Program Files\Acer\Acer eConsole\MediaServerService.exe" = C:\Program Files\Acer\Acer eConsole\MediaServerService.exe:LocalSubNet:Enabled:Acer Media Server -- (Acer Inc.)
    "D:\Ohjelmat\eMule\emule.exe" = D:\Ohjelmat\eMule\emule.exe:*:Enabled:eMule
    "D:\Ohjelmat\BitDownload\BitDownload.exe" = D:\Ohjelmat\BitDownload\BitDownload.exe:*:Disabled:Torrent P2P application
    "D:\Ohjelmat\Mozilla Firefox\firefox.exe" = D:\Ohjelmat\Mozilla Firefox\firefox.exe:*:Enabled:Firefox
    "C:\Program Files\Java\jre1.5.0_11\bin\javaw.exe" = C:\Program Files\Java\jre1.5.0_11\bin\javaw.exe:*:Enabled:Java(TM) 2 Platform Standard Edition binary
    "C:\Program Files\Toshiba\Bluetooth Toshiba Stack\ECCenter1.exe" = C:\Program Files\Toshiba\Bluetooth Toshiba Stack\ECCenter1.exe:*:Enabled:Bluetooth-asetukset -- (TOSHIBA CORPORATION.)
    "J:\bitcomet downloads\Counter-Strike Source\001\hl2.exe" = J:\bitcomet downloads\Counter-Strike Source\001\hl2.exe:*:Enabled:hl2 -- ()
    "D:\Pelit\america's army\System\ArmyOps.exe" = D:\Pelit\america's army\System\ArmyOps.exe:*:Enabled:ArmyOps
    "C:\Documents and Settings\Acer\Työpöytä\SetupInstRe.exe" = C:\Documents and Settings\Acer\Työpöytä\SetupInstRe.exe:*:Enabled:SetupInstRe
    "D:\Ohjelmat\SuperVegasCasino\CASINO.EXE" = D:\Ohjelmat\SuperVegasCasino\CASINO.EXE:*:Enabled:CASINO
    "D:\Pelit\cs 1.6\hl.exe" = D:\Pelit\cs 1.6\hl.exe:*:Disabled:Half-Life Launcher
    "D:\Ohjelmat\LimeWire\LimeWire.exe" = D:\Ohjelmat\LimeWire\LimeWire.exe:*:Disabled:LimeWire
    "C:\StubInstaller.exe" = C:\StubInstaller.exe:*:Disabled:LimeWire swarmed installer
    "J:\Pelit\game.exe" = J:\Pelit\game.exe:*:Disabled:Main executable for Red Alert 2
    "J:\bitcomet downloads\Duke Nukem 3D High Res 2006, with gore effects\Duke Nukem 3D High Res 2006, with gore effects\Duke Nukem 3D High Res 2006, with gore effects\eduke32.exe" = J:\bitcomet downloads\Duke Nukem 3D High Res 2006, with gore effects\Duke Nukem 3D High Res 2006, with gore effects\Duke Nukem 3D High Res 2006, with gore effects\eduke32.exe:*:Disabled:eduke32
    "D:\Pelit\quake2\quake2.exe" = D:\Pelit\quake2\quake2.exe:*:Enabled:quake2
    "C:\Program Files\BitComet\BitComet.exe" = C:\Program Files\BitComet\BitComet.exe:*:Enabled:BitComet - a BitTorrent Client -- (www.BitComet.com)
    "C:\Program Files\Skype\Phone\Skype.exe" = C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype
    "C:\ijji\ENGLISH\u_sf\soldierfront.exe" = C:\ijji\ENGLISH\u_sf\soldierfront.exe:*:Enabled:soldierfront
    "D:\Pelit\delta force\UPDATE.EXE" = D:\Pelit\delta force\UPDATE.EXE:*:Enabled:UPDATE
    "D:\Steam\steamapps\soija2000\day of defeat source\hl2.exe" = D:\Steam\steamapps\soija2000\day of defeat source\hl2.exe:*:Enabled:hl2 -- ()
    "C:\Program Files\EMCO Malware Destroyer\MalwareDestroyer.exe" = C:\Program Files\EMCO Malware Destroyer\MalwareDestroyer.exe:*:Enabled:Malware Scanner for Home User's
    "D:\Ohjelmat\BSplayer\bsplayer.exe" = D:\Ohjelmat\BSplayer\bsplayer.exe:*:Disabled:BSplayer
    "D:\Ohjelmat\DC++\DCPlusPlus.exe" = D:\Ohjelmat\DC++\DCPlusPlus.exe:*:Enabled:DC++
    "D:\Pelit\worms world party\wwp.exe" = D:\Pelit\worms world party\wwp.exe:*:Disabled:Worms World Party
    "D:\Steam\Steam.exe" = D:\Steam\Steam.exe:*:Enabled:Steam -- (Valve Corporation)
    "C:\Documents and Settings\Acer\Työpöytä\DCPlusPlus-0.699\DCPlusPlus.exe" = C:\Documents and Settings\Acer\Työpöytä\DCPlusPlus-0.699\DCPlusPlus.exe:*:Enabled:DC++
    "D:\Pelit\age of empire 2\empires2.exe" = D:\Pelit\age of empire 2\empires2.exe:*:Disabled:Age of Empires II
    "C:\Valve\Condition Zero\czero.exe" = C:\Valve\Condition Zero\czero.exe:*:Disabled:Condition Zero Launcher
    "C:\Program Files\Operation Flashpoint\FLASHPOINTRESISTANCE.EXE" = C:\Program Files\Operation Flashpoint\FLASHPOINTRESISTANCE.EXE:*:Enabled:Operation Flashpoint
    "C:\Program Files\Winamp Remote\bin\Orb.exe" = C:\Program Files\Winamp Remote\bin\Orb.exe:*:Enabled:Orb
    "C:\Program Files\Winamp Remote\bin\OrbTray.exe" = C:\Program Files\Winamp Remote\bin\OrbTray.exe:*:Enabled:OrbTray
    "C:\Program Files\Winamp Remote\bin\OrbStreamerClient.exe" = C:\Program Files\Winamp Remote\bin\OrbStreamerClient.exe:*:Enabled:Orb Stream Client
    "C:\Program Files\Warcraft III\Warcraft III.exe" = C:\Program Files\Warcraft III\Warcraft III.exe:*:Enabled:Warcraft III
    "C:\Program Files\uTorrent\uTorrent.exe" = C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent, Inc.)
    "C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software)
    "C:\Program Files\Pinnacle\Studio 10\programs\RM.exe" = C:\Program Files\Pinnacle\Studio 10\programs\RM.exe:*:Enabled:Render Manager
    "C:\Program Files\Pinnacle\Studio 10\programs\Studio.exe" = C:\Program Files\Pinnacle\Studio 10\programs\Studio.exe:*:Enabled:Studio
    "C:\Program Files\Pinnacle\Studio 10\programs\PMSRegisterFile.exe" = C:\Program Files\Pinnacle\Studio 10\programs\PMSRegisterFile.exe:*:Enabled:pMSRegisterFile
    "C:\Program Files\Pinnacle\Studio 10\programs\umi.exe" = C:\Program Files\Pinnacle\Studio 10\programs\umi.exe:*:Enabled:umi
    "C:\Program Files\BUFFALO\Client Manager3\BWSVC\bwsvc.exe" = C:\Program Files\BUFFALO\Client Manager3\BWSVC\bwsvc.exe:*:Enabled:ClientMgr3 -- (BUFFALO INC.)
    "C:\Program Files\BUFFALO\Client Manager3\AOSS\aoss.exe" = C:\Program Files\BUFFALO\Client Manager3\AOSS\aoss.exe:*:Enabled:Aoss -- ()
    "C:\Program Files\B2BPOKER\Pokerihuone\jre\bin\javaw.exe" = C:\Program Files\B2BPOKER\Pokerihuone\jre\bin\javaw.exe:*:Enabled:Java(TM) 2 Platform Standard Edition binary -- (Sun Microsystems, Inc.)
    "D:\Pelit\NHL 09\nhl2009.exe" = D:\Pelit\NHL 09\nhl2009.exe:*:Enabled:nhl2009
    "C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe" = C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe:*:Enabled:CoD2MP_s
    "D:\Ohjelmat\CarbonPoker\client.exe" = D:\Ohjelmat\CarbonPoker\client.exe:*:Enabled:Carbon Poker Client
    "C:\Program Files\GigaTribe\gigatribe_3x.exe" = C:\Program Files\GigaTribe\gigatribe_3x.exe:*:Enabled:GigaTribe
    "D:\Graphisoft\ArchiCAD.exe" = D:\Graphisoft\ArchiCAD.exe:*:Disabled:ArchiCAD 12.0.0 Component -- (Graphisoft R&D)
    "D:\Steam\steamapps\soija2000\half-life 2 deathmatch\hl2.exe" = D:\Steam\steamapps\soija2000\half-life 2 deathmatch\hl2.exe:*:Enabled:hl2 -- ()
    "C:\Program Files\Electronic Arts\EADM\Core.exe" = C:\Program Files\Electronic Arts\EADM\Core.exe:*:Enabled:EA Download Manager
    "C:\Program Files\DC++\DCPlusPlus.exe" = C:\Program Files\DC++\DCPlusPlus.exe:*:Enabled:DC++ -- ()
    "C:\Program Files\duke3d\duke3d.exe" = C:\Program Files\duke3d\duke3d.exe:*:Enabled:duke3d
    "C:\Program Files\Google\Google Earth\plugin\geplugin.exe" = C:\Program Files\Google\Google Earth\plugin\geplugin.exe:*:Enabled:Google Earth -- (Google)
    "D:\Steam\steamapps\soija2000\counter-strike source\hl2.exe" = D:\Steam\steamapps\soija2000\counter-strike source\hl2.exe:*:Enabled:Counter-Strike: Source -- ()


    ========== HKEY_LOCAL_MACHINE Uninstall List ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{00060000-0000-1004-8002-0000C06B5161}" = WIBU-KEY Setup (WIBU-KEY Remove)
    "{0224CACC-994D-45F8-B973-D65056EA9C2F}" = Adobe XMP DVA Panels CS3
    "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
    "{04AF207D-9A77-465A-8B76-991F6AB66245}" = Adobe Help Viewer CS3
    "{066D65EA-ED53-44E4-A96A-F81B6E409D2E}" = PC Connectivity Solution
    "{08B32819-6EEF-4057-AEDA-5AB681A36A23}" = Adobe Bridge Start Meeting
    "{0D499481-22C6-4B25-8AC2-6D3F6C885FB9}" = OpenOffice.org Installer 1.0
    "{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2}" = NTI CD & DVD-Maker
    "{18D10072035C4515918F7E37EAFAACFC}" = AutoUpdate
    "{1A3E23D7-7A1E-43EC-B35D-EB8A31BED943}" = FinalBurner Free v1.29.0.125
    "{1BC4026B-1957-4514-9058-2B542557F143}" = Opera 9.63
    "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
    "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Liven lataustyökalu
    "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
    "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
    "{26A24AE4-039D-4CA4-87B4-2F83216011FF}" = Java(TM) 6 Update 22
    "{2CCBABCB-6427-4A55-B091-49864623C43F}" = Google Toolbar for Firefox
    "{350C940b-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
    "{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}" = McAfee SiteAdvisor
    "{385979FE-DC4F-4140-8EAD-A59625000D72}" = NTI Backup NOW! 4
    "{3CB05291-F546-458E-A796-B5BCF5A3CDC4}" = Studio 10
    "{3F0D0ABE-CDAF-431A-00BC-CBBE018EA74E}" = SimCity 4 Deluxe
    "{3FC7CBBC4C1E11DCA1A752EA55D89593}" = DivX Version Checker
    "{4286E640-B5FB-11DF-AC4B-005056C00008}" = Google Earth
    "{43DCF766-6838-4F9A-8C91-D92DA586DFA8}" = Microsoft Windows Journal Viewer
    "{4538A1AF-6894-4F10-ABDA-6CB9E6ACF8B6}" = Microsoft .NET Framework 1.1 Finnish Language Pack
    "{476E9A2B-7A33-4634-9B39-815B7C376F8E}" = Avid DIO Runtime
    "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
    "{50F102CA-4BE2-41A9-9810-5BB05EB91B9A}" = Adobe Premiere Pro CS3 Functional Content
    "{54793AA1-5001-42F4-ABB6-C364617C6078}" = Adobe Linguistics CS3
    "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
    "{57922B53-02D4-4DFC-AC24-A3519DC1F49A}" = Adobe Premiere Pro FC
    "{58DCEEE5-532E-44F4-B1D7-A146EF9E9FDA}" = Adobe Premiere Pro CS3
    "{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
    "{65CDEC30-4BF4-48FB-8059-9FC480E4E94F}" = Acer eMode Management
    "{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
    "{68AD6F25-07A0-4CFE-9555-A30633329B08}" = muvee autoProducer 3.5 magicMoments
    "{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
    "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
    "{6ABE0BEE-D572-4FE8-B434-9E72A289431B}" = Adobe Fonts All
    "{6DC0632A-A838-4B34-AC19-0FA18E1C533C}" = Sentinel Protection Installer 7.2.2
    "{6E7DD182-9FC6-4651-0095-2E666CC6AF35}" = The Sims 2
    "{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}" = Adobe Asset Services CS3
    "{71A41426-C7A4-4DCF-A9ED-C5B4B105ED1D}" = Sony Media Manager 2.2
    "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
    "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
    "{7B63B2922B174135AFC0E1377DD81EC2}" = DivX Codec
    "{7F34A21F-2DEB-4598-BB19-611D6BD24271}" = Managed DirectX (0901)
    "{85EB1E72-4FAA-40E4-A511-DF3A9A0A4CA8}" = Windows Live Messenger
    "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
    "{8AAB4176-A747-493A-A42C-B63CFADFD8E3}" = NVIDIA PhysX
    "{8ADFC4160D694100B5B8A22DE9DCABD9}" = DivX Player
    "{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}" = Adobe Device Central CS3
    "{8DC42D05-680B-41B0-8878-6C14D24602DB}" = QuickTime
    "{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}" = Adobe Type Support
    "{8EDBA74D-0686-4C99-BFDD-F894678E5102}" = Adobe Common File Installer
    "{90110409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
    "{90176341-0A8B-4CCC-A78D-F862228A6B95}" = Adobe Anchor Service CS3
    "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
    "{9580813D-94B1-4C28-9426-A441E2BB29A5}" = Counter-Strike: Source
    "{98736A65-3C79-49EC-B7E9-A3C77774B0E6}" = Google SketchUp 6
    "{998152E5-B605-4BBB-9853-E749AEE02B21}" = Windows Liven kirjautumisavustaja
    "{9C87F6BB-75E4-4F35-8353-F5E295264E98}" = Windows Live Call
    "{9C9824D9-9000-4373-A6A5-D0E5D4831394}" = Adobe Bridge CS3
    "{A0383B7D-81A2-49D3-BE06-C0FD9EFB9DFC}" = Corel Painter IX
    "{A0E27BA8-353A-4288-AB60-5DE8EDA18E16}" = Symantec Technical Support Web Controls
    "{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI
    "{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}" = Adobe CMaps
    "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
    "{A77F3C2D-50CC-4A29-A1FB-1E018BE4DCA2}" = DiscAPI
    "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
    "{AA2BCB44-B44F-445A-A80C-E6C50218940C}" = Windows Liven asennustyökalu
    "{AC76BA86-7AD7-1033-7B44-A71000000002}" = Adobe Reader 7.1.0
    "{B13A7C41581B411290FBC0395694E2A9}" = DivX Converter
    "{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}" = Adobe Camera Raw 4.0
    "{B3D8B2F8-3C2C-45BC-933E-8B60E78F6684}" = Google SketchUp 6
    "{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Web Player
    "{B8A6F713-D72D-47AD-A92D-B5C0E13F98C1}" = NTI HomeVideo-Maker
    "{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}" = Adobe Default Language CS3
    "{BA63612E-0458-416A-ADCD-B2349194F20F}" = Creative ZEN Nano Plus
    "{BB406CEB-6207-4512-9BB2-89950DC9D6B6}_is1" = ConvertXtoDVD 2.2.3.258h
    "{BB81360F-041C-4CF7-B15E-71380D154244}" = Adobe Setup
    "{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}" = Creative MediaSource 5
    "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
    "{C151CE54-E7EA-4804-854B-F515368B0798}" = Athlon 64 Processor Driver
    "{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}" = Adobe ExtendScript Toolkit 2
    "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
    "{CD95F661-A5C4-44F5-A6AA-ECDD91C240B2}" = WinZip 11.2
    "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
    "{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Billionton
    "{D0DFF92A-492E-4C40-B862-A74A173C25C5}" = Adobe Version Cue CS3 Client
    "{D2559B88-CC9D-4B48-81BB-F492BAA9C48C}" = Adobe PDF Library Files
    "{D5A31AB1-345D-47C7-A87B-036A669F6DF1}" = Adobe XMP Panels CS3
    "{DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9}" = Adobe Color Common Settings
    "{DBEA1034-5882-4A88-8033-81C4EF0CFA29}" = Google Toolbar for Internet Explorer
    "{E09B48B5-E141-427A-AB0C-D3605127224A}" = Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR)
    "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
    "{E69AE897-9E0B-485C-8552-7841F48D42D8}" = Adobe Update Manager CS3
    "{EC028E6B-F3F1-4192-B63E-A7C97302ED5A}" = Acer eConsole
    "{ED00D08A-3C5F-488D-93A0-A04F21F23956}" = Windows Live Communications Platform
    "{EFE1AB94-5466-4B6E-BE31-FF4C115FD25D}" = Max Payne 2
    "{F0A37341-D692-11D4-A984-009027EC0A9C}" = SoundMAX
    "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
    "{F34D9A5F-484A-4E31-A9D3-908CB265B289}" = Sygate Personal Firewall
    "{F5346614-B7C4-4E94-826A-E2363155233D}" = EasyCleaner
    "{F9B3DD02-B0B3-42E9-8650-030DFF0D133D}" = Microsoft SQL Server Native Client
    "001FFFFFFF12FF00FF0701F02F02F000-R1" = ArchiCAD 12 INT
    "0C5EDC3653FED5B121F464339EAC12534D253B25" = Windows Driver Package - Nokia Modem (02/15/2007 3.1)
    "7-Zip" = 7-Zip 4.20
    "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
    "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
    "Adobe Photoshop 7.0" = Adobe Photoshop 7.0
    "Adobe Shockwave Player" = Adobe Shockwave Player 11.5
    "Adobe_32fdd767b4383606e8168e834af5d90" = Adobe Premiere Pro CS3
    "Ashampoo WinOptimizer 4 FREE_is1" = Ashampoo WinOptimizer 4 FREE
    "ASIO4ALL" = ASIO4ALL
    "Audacity_is1" = Audacity 1.2.6
    "avast5" = avast! Free Antivirus
    "Betsson" = Betsson (remove only)
    "Betway.com Casino" = Betway.com Casino
    "Betway.com Poker" = Betway.com Poker
    "BitComet" = BitComet 0.91
    "Burn4Free CD & DVD_is1" = Burn4Free CD & DVD 5.1.0.0
    "Collab" = Collab
    "DC++" = DC++ 0.770
    "DirectVobSub" = DirectVobSub (remove only)
    "DivX Content Uploader" = DivX Content Uploader
    "Driver Cleaner Pro" = DH Driver Cleaner Professional Edition
    "EasyBurning" = Easy Burning (remove only)
    "EVEREST Home Edition_is1" = EVEREST Home Edition v1.51
    "ExpressBurn" = Express Burn Disc Burning Software
    "F064B256B4A20996EA9E333B5E0F14B61AB3333D" = Windows Driver Package - Nokia (WUDFRd) WPD (03/19/2007 6.83.31.1)
    "ffdshow_is1" = ffdshow [rev 918] [2007-02-12]
    "FL Studio 5" = FL Studio 5
    "Gainward" = EXPERTool
    "GOM Player" = GOM Player
    "Google Updater" = Google Updater
    "HijackThis" = HijackThis 2.0.2
    "ie8" = Windows Internet Explorer 8
    "IL Download Manager" = IL Download Manager
    "InstallShield_{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2}" = NTI CD & DVD-Maker
    "InstallShield_{385979FE-DC4F-4140-8EAD-A59625000D72}" = NTI Backup NOW! 4
    "Lexmark 3100 Series" = Lexmark 3100 Series
    "Magic ISO Maker v5.4 (build 0251)" = Magic ISO Maker v5.4 (build 0251)
    "MagicDisc 2.7.105" = MagicDisc 2.7.105
    "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
    "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
    "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
    "Mozilla Firefox (3.0.19)" = Mozilla Firefox (3.0.19)
    "MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
    "nordicbet (Poker)" = NordicBet
    "NVIDIA Drivers" = NVIDIA Drivers
    "Packard Bell Data Secure" = Packard Bell Data Secure
    "PAFPoker" = PAF POKER (remove only)
    "Paradise Poker" = Paradise Poker
    "ParadisePoker" = ParadisePoker
    "PartyPoker" = PartyPoker
    "PoiZone" = PoiZone
    "PowerISO" = PowerISO
    "Quintessential Media Player" = Quintessential Media Player
    "raypoker" = RAY Pokeri
    "RealPlayer 6.0" = RealPlayer
    "RivaTuner" = RivaTuner v2.03
    "SiS VGA Driver" = SiS VGA Utilities
    "SiSLan" = SiS 900 PCI Fast Ethernet Adapter Driver
    "SubtitleWorkshop" = Subtitle Workshop 2.51
    "SysInfo" = Creative System Information
    "SystemRequirementsLab" = System Requirements Lab
    "ToggleFI Toolbar" = ToggleFI Toolbar
    "Toxic Biohazard" = Toxic Biohazard
    "UN800114" = BUFFALO Client Manager 3
    "Unibet Poker" = Unibet Poker
    "Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
    "Winamp" = Winamp
    "Windows Media Format Runtime" = Windows Media Format 11 runtime
    "Windows Media Player" = Windows Media Player 11
    "Windows XP Service Pack" = Windows XP Service Pack 3
    "WinLiveSuite_Wave3" = Windows Liven asennustyökalu
    "WinRAR archiver" = WinRAR archiver
    "Virtual DJ - Atomix Productions" = Virtual DJ - Atomix Productions
    "VLC media player" = VideoLAN VLC media player 0.8.6d
    "WMFDist11" = Windows Media Format 11 runtime
    "wmp11" = Windows Media Player 11
    "WOLAPI" = Westwood Shared Internet Components
    "Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
    "Xfire" = Xfire (remove only)
    "XVid;-)" = XVid;-)
    "XviD_is1" = XviD MPEG-4 Video Codec

    ========== HKEY_USERS Uninstall List ==========

    [HKEY_USERS\S-1-5-21-1173613074-4256019773-1026456786-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "bibjoyscr" = CiD Help
    "Facebook Plug-In" = Facebook Plug-In
    "Google Chrome" = Google Chrome
    "Steam App 6950" = Hitman: Blood Money Demo
    "uTorrent" = µTorrent
    "World of Warcraft Trial" = World of Warcraft Trial

    ========== Last 10 Event Log Errors ==========

    [ Antivirus Events ]
    Error - 7.11.2009 10:44:35 | Computer Name = ACER-AD390BDE86 | Source = avast! | ID = 33554522
    Description =

    Error - 8.11.2009 9:32:31 | Computer Name = ACER-AD390BDE86 | Source = avast! | ID = 33554522
    Description =

    Error - 10.11.2009 3:38:58 | Computer Name = ACER-AD390BDE86 | Source = avast! | ID = 33554522
    Description =

    Error - 10.11.2009 4:13:04 | Computer Name = ACER-AD390BDE86 | Source = avast! | ID = 33554522
    Description =

    Error - 14.3.2010 11:54:31 | Computer Name = ACER-AD390BDE86 | Source = avast! | ID = 33554522
    Description =

    [ Application Events ]
    Error - 15.1.2011 18:12:03 | Computer Name = ACER-AD390BDE86 | Source = nview_info | ID = 11141121
    Description =

    [ System Events ]
    Error - 16.1.2011 11:19:36 | Computer Name = ACER-AD390BDE86 | Source = DCOM | ID = 10005
    Description = DCOM vastaanotti virheen "%1058" yrittäessään käynnistää palvelun
    McAfee SiteAdvisor Service argumenteilla "" suorittaakseen palvelinosan: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}

    Error - 16.1.2011 11:19:36 | Computer Name = ACER-AD390BDE86 | Source = DCOM | ID = 10005
    Description = DCOM vastaanotti virheen "%1058" yrittäessään käynnistää palvelun
    McAfee SiteAdvisor Service argumenteilla "" suorittaakseen palvelinosan: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}

    Error - 16.1.2011 11:19:36 | Computer Name = ACER-AD390BDE86 | Source = DCOM | ID = 10005
    Description = DCOM vastaanotti virheen "%1058" yrittäessään käynnistää palvelun
    McAfee SiteAdvisor Service argumenteilla "" suorittaakseen palvelinosan: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}

    Error - 16.1.2011 11:19:36 | Computer Name = ACER-AD390BDE86 | Source = DCOM | ID = 10005
    Description = DCOM vastaanotti virheen "%1058" yrittäessään käynnistää palvelun
    McAfee SiteAdvisor Service argumenteilla "" suorittaakseen palvelinosan: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}

    Error - 16.1.2011 11:19:37 | Computer Name = ACER-AD390BDE86 | Source = DCOM | ID = 10005
    Description = DCOM vastaanotti virheen "%1058" yrittäessään käynnistää palvelun
    McAfee SiteAdvisor Service argumenteilla "" suorittaakseen palvelinosan: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}

    Error - 16.1.2011 11:19:37 | Computer Name = ACER-AD390BDE86 | Source = DCOM | ID = 10005
    Description = DCOM vastaanotti virheen "%1058" yrittäessään käynnistää palvelun
    McAfee SiteAdvisor Service argumenteilla "" suorittaakseen palvelinosan: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}

    Error - 16.1.2011 11:19:43 | Computer Name = ACER-AD390BDE86 | Source = DCOM | ID = 10005
    Description = DCOM vastaanotti virheen "%1058" yrittäessään käynnistää palvelun
    McAfee SiteAdvisor Service argumenteilla "" suorittaakseen palvelinosan: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}

    Error - 16.1.2011 11:19:43 | Computer Name = ACER-AD390BDE86 | Source = DCOM | ID = 10005
    Description = DCOM vastaanotti virheen "%1058" yrittäessään käynnistää palvelun
    McAfee SiteAdvisor Service argumenteilla "" suorittaakseen palvelinosan: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}

    Error - 16.1.2011 11:19:49 | Computer Name = ACER-AD390BDE86 | Source = DCOM | ID = 10005
    Description = DCOM vastaanotti virheen "%1058" yrittäessään käynnistää palvelun
    McAfee SiteAdvisor Service argumenteilla "" suorittaakseen palvelinosan: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}

    Error - 16.1.2011 11:19:49 | Computer Name = ACER-AD390BDE86 | Source = DCOM | ID = 10005
    Description = DCOM vastaanotti virheen "%1058" yrittäessään käynnistää palvelun
    McAfee SiteAdvisor Service argumenteilla "" suorittaakseen palvelinosan: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}


    < End of report >
     
  4. Soija2000

    Soija2000 Guest

    Joo tässä ois nää tiedostot:

    OTL logfile created on: 16.1.2011 17:20:35 - Run 1
    OTL by OldTimer - Version 3.2.20.2 Folder = C:\Documents and Settings\Acer\Työpöytä
    Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
    Internet Explorer (Version = 8.0.6001.18702)
    Locale: 0000040B | Country: Suomi | Language: FIN | Date Format: d.M.yyyy

    1 023,00 Mb Total Physical Memory | 631,00 Mb Available Physical Memory | 62,00% Memory free
    2,00 Gb Paging File | 2,00 Gb Available in Paging File | 90,00% Paging File free
    Paging file location(s): [Binary data over 100 bytes]

    %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
    Drive C: | 34,58 Gb Total Space | 6,33 Gb Free Space | 18,30% Space Free | Partition Type: NTFS
    Drive D: | 35,06 Gb Total Space | 16,52 Gb Free Space | 47,12% Space Free | Partition Type: FAT32
    Drive J: | 232,88 Gb Total Space | 10,11 Gb Free Space | 4,34% Space Free | Partition Type: NTFS

    Computer Name: ACER-AD390BDE86 | User Name: Acer | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: All users
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

    ========== Processes (SafeList) ==========

    PRC - [2011.01.16 17:19:40 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Acer\Työpöytä\OTL.exe
    PRC - [2010.10.16 14:37:19 | 000,134,808 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Acer\Local Settings\Application Data\Google\Update\1.2.183.39\GoogleCrashHandler.exe
    PRC - [2010.09.07 17:12:02 | 002,838,912 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe
    PRC - [2010.09.07 17:11:59 | 000,040,384 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
    PRC - [2008.04.14 18:12:11 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
    PRC - [2004.09.23 12:41:54 | 000,860,160 | ---- | M] (Analog Devices, Inc.) -- C:\Program Files\Analog Devices\SoundMAX\SMax4.exe
    PRC - [2002.09.20 14:50:10 | 000,045,056 | ---- | M] (Analog Devices, Inc.) -- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe


    ========== Modules (SafeList) ==========

    MOD - [2011.01.16 17:19:40 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Acer\Työpöytä\OTL.exe
    MOD - [2010.08.23 18:12:31 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
    MOD - [2009.01.15 08:19:00 | 001,507,328 | ---- | M] () -- C:\WINDOWS\system32\nview.dll
    MOD - [2009.01.15 08:19:00 | 000,081,920 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvwddi.dll


    ========== Win32 Services (SafeList) ==========

    SRV - File not found [On_Demand | Stopped] -- -- (iPod Service)
    SRV - File not found [Disabled | Stopped] -- -- (AVG Anti-Spyware Guard)
    SRV - File not found [Disabled | Stopped] -- -- (Automatic LiveUpdate Scheduler)
    SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt)
    SRV - [2010.09.07 17:11:59 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Web Scanner)
    SRV - [2010.09.07 17:11:59 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Mail Scanner)
    SRV - [2010.09.07 17:11:59 | 000,040,384 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
    SRV - [2008.10.08 12:04:44 | 000,203,280 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\McAfee\SiteAdvisor\McSACore.exe -- (McAfee SiteAdvisor Service)
    SRV - [2007.10.25 15:27:54 | 000,266,240 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Live\installer\WLSetupSvc.exe -- (WLSetupSvc)
    SRV - [2007.03.26 12:06:24 | 000,292,864 | ---- | M] (Nokia.) [Disabled | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
    SRV - [2006.11.16 04:53:00 | 000,462,848 | ---- | M] (BUFFALO INC.) [Disabled | Stopped] -- C:\Program Files\BUFFALO\Client Manager3\bwsvc\bwsvc.exe -- (Bwsvc)
    SRV - [2005.09.21 13:46:56 | 000,438,272 | ---- | M] (Acer Inc.) [Disabled | Stopped] -- C:\Program Files\Acer\Acer eConsole\MediaServerService.exe -- (Acer Media Server)
    SRV - [2005.01.06 18:42:12 | 000,654,848 | ---- | M] (Macrovision Europe Ltd.) [Disabled | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
    SRV - [2004.10.15 18:40:56 | 002,577,632 | ---- | M] (Sygate Technologies, Inc.) [Auto | Stopped] -- C:\Program Files\Sygate\SPF\Smc.exe -- (SmcService)
    SRV - [2002.12.17 17:26:22 | 007,520,337 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe -- (MSSQL$SONY_MEDIAMGR)
    SRV - [2002.12.17 17:23:30 | 000,311,872 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE -- (SQLAgent$SONY_MEDIAMGR)
    SRV - [2002.09.20 14:50:10 | 000,045,056 | ---- | M] (Analog Devices, Inc.) [Auto | Running] -- C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe -- (SoundMAX Agent Service (default))


    ========== Driver Services (SafeList) ==========

    DRV - [2010.09.07 16:52:25 | 000,046,672 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
    DRV - [2010.09.07 16:52:03 | 000,165,584 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
    DRV - [2010.09.07 16:47:46 | 000,023,376 | ---- | M] (AVAST Software) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr)
    DRV - [2010.09.07 16:47:19 | 000,100,176 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
    DRV - [2010.09.07 16:47:07 | 000,017,744 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
    DRV - [2010.09.07 16:46:51 | 000,028,880 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4)
    DRV - [2009.01.15 08:19:00 | 006,301,248 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
    DRV - [2008.07.28 17:19:28 | 000,116,736 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mcdbus.sys -- (mcdbus)
    DRV - [2008.06.26 12:00:00 | 000,072,704 | ---- | M] (WIBU-SYSTEMS AG) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\WibuKey.sys -- (WIBUKEY)
    DRV - [2007.08.28 17:05:12 | 000,055,808 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\xusb21.sys -- (xusb21)
    DRV - [2007.08.26 12:35:00 | 000,009,088 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\RivaTuner v2.03\RivaTuner32.sys -- (RivaTuner32)
    DRV - [2007.03.16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\TBPanel.sys -- (TBPanel)
    DRV - [2007.02.22 09:15:56 | 000,137,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcd.sys -- (nmwcd)
    DRV - [2007.02.22 09:15:14 | 000,012,288 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdcm.sys -- (nmwcdcm)
    DRV - [2007.02.22 09:15:14 | 000,012,288 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdcj.sys -- (nmwcdcj)
    DRV - [2007.02.22 09:15:14 | 000,008,320 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmwcdc.sys -- (nmwcdc)
    DRV - [2007.02.08 23:49:35 | 000,646,392 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
    DRV - [2007.01.25 22:04:30 | 000,005,273 | ---- | M] (Arrowkey) [Kernel | Auto | Running] -- C:\Program Files\Quintessential Media Player\cdrpdacc.sys -- (CDRPDACC) Quinnware CDDA Driver (by InfinaDyne)
    DRV - [2007.01.20 09:11:07 | 000,031,644 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\scdemu.sys -- (SCDEmu)
    DRV - [2007.01.11 09:19:00 | 000,011,008 | R--- | M] (BUFFALO INC.) [Kernel | System | Running] -- C:\WINDOWS\system32\BUFADPT.SYS -- (BUFADPT)
    DRV - [2006.03.14 07:22:00 | 000,090,176 | ---- | M] (SafeNet, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\System32\Drivers\SENTINEL.SYS -- (Sentinel)
    DRV - [2006.01.24 07:40:40 | 000,006,144 | ---- | M] (NewTech Infosystems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NTIDrvr.sys -- (NTIDrvr)
    DRV - [2005.12.27 17:06:20 | 000,032,256 | ---- | M] (SiS Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sisnic.sys -- (SISNIC)
    DRV - [2005.12.27 16:46:42 | 000,088,960 | ---- | M] (Analog Devices, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\MidiSyn.sys -- (MidiSyn)
    DRV - [2005.12.27 16:46:02 | 000,392,704 | ---- | M] (Sensaura) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\senfilt.sys -- (senfilt)
    DRV - [2005.06.02 19:28:38 | 000,171,008 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\MarvinBus.sys -- (MarvinBus)
    DRV - [2005.04.22 21:34:56 | 000,052,608 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TosRfhid.sys -- (Tosrfhid)
    DRV - [2005.04.22 20:11:30 | 000,098,048 | ---- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TosRfbd.sys -- (Tosrfbd)
    DRV - [2005.04.06 08:54:44 | 000,050,048 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TosRfSnd.sys -- (TosRfSnd) Bluetooth Audio Device (WDM)
    DRV - [2005.03.30 11:42:54 | 000,047,230 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Tosporte.sys -- (tosporte)
    DRV - [2005.03.09 15:53:00 | 000,038,912 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8)
    DRV - [2005.02.23 14:58:56 | 000,011,776 | ---- | M] (Arcsoft, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\afc.sys -- (Afc)
    DRV - [2005.02.09 12:59:00 | 000,014,165 | ---- | M] (Pinnacle Systems GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\Pclepci.sys -- (PCLEPCI)
    DRV - [2005.01.14 18:14:07 | 000,047,616 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfdrv01.sys -- (sfdrv01) StarForce Protection Environment Driver (version 1.x)
    DRV - [2005.01.13 14:46:16 | 000,069,632 | ---- | M] () [Kernel | Auto | Running] -- C:\Acer\Empowering Technology\eRecovery\int15.sys -- (int15.sys)
    DRV - [2005.01.06 12:42:42 | 000,018,612 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\tosrfnds.sys -- (tosrfnds)
    DRV - [2005.01.04 20:43:08 | 000,004,682 | ---- | M] (INCA Internet Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\npptNT2.sys -- (NPPTNT2)
    DRV - [2004.12.21 10:38:12 | 000,034,816 | ---- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\tosrfusb.sys -- (Tosrfusb)
    DRV - [2004.12.17 17:14:44 | 000,013,952 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\UBHelper.sys -- (UBHelper)
    DRV - [2004.12.03 12:20:41 | 000,020,544 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfsync02.sys -- (sfsync02) StarForce Protection Synchronization Driver (version 2.x)
    DRV - [2004.10.28 12:47:59 | 000,006,656 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sfhlp02.sys -- (sfhlp02) StarForce Protection Helper Driver (version 2.x)
    DRV - [2004.10.15 17:32:44 | 000,014,568 | ---- | M] (Sygate Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\SYSTEM32\Drivers\wg6n.sys -- (wg6n)
    DRV - [2004.10.15 17:32:42 | 000,014,568 | ---- | M] (Sygate Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\SYSTEM32\Drivers\wg5n.sys -- (wg5n)
    DRV - [2004.10.15 17:32:40 | 000,014,568 | ---- | M] (Sygate Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\SYSTEM32\Drivers\wg4n.sys -- (wg4n)
    DRV - [2004.10.15 17:32:38 | 000,014,568 | ---- | M] (Sygate Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\SYSTEM32\Drivers\wg3n.sys -- (wg3n)
    DRV - [2004.10.15 17:18:46 | 000,021,075 | ---- | M] (Sygate Technologies, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\wpsdrvnt.sys -- (wpsdrvnt)
    DRV - [2004.10.15 17:17:02 | 000,060,496 | ---- | M] (Sygate Technologies, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\SYSTEM32\Drivers\Teefer.sys -- (Teefer)
    DRV - [2004.10.04 09:33:02 | 000,062,799 | ---- | M] (TOSHIBA Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\tosrfcom.sys -- (Tosrfcom)
    DRV - [2004.07.08 16:07:34 | 000,036,531 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\tosrfbnp.sys -- (Tosrfbnp)
    DRV - [2002.10.16 12:55:48 | 000,002,851 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Toshidpt.sys -- (toshidpt)


    ========== Standard Registry (SafeList) ==========


    ========== Internet Explorer ==========

    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search, =
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie


    IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

    IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



    IE - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
    IE - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
    IE - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

    ========== FireFox ==========

    FF - prefs.js..browser.search.defaultenginename: "Web Search"
    FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT1529850&SearchSource=3&q="
    FF - prefs.js..browser.search.useDBForOrder: true
    FF - prefs.js..browser.startup.homepage: "http://elisa.net/"
    FF - prefs.js..extensions.enabledItems: npfax@microgaming.co.uk:2.1.0.19
    FF - prefs.js..extensions.enabledItems: {19503e42-ca3c-4c27-b1e2-9cdb2170ee34}:1.2.1.31
    FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
    FF - prefs.js..extensions.enabledItems: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:2.8
    FF - prefs.js..extensions.enabledItems: moveplayer@movenetworks.com:1.0.0.071303000004
    FF - prefs.js..extensions.enabledItems: turntoolviewer@turntool.com:2.9.5.5
    FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22

    FF - HKLM\software\mozilla\Firefox\Extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files\McAfee\SiteAdvisor [2009.01.17 21:34:00 | 000,000,000 | ---D | M]
    FF - HKLM\software\mozilla\Mozilla Firefox 3.0.19\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.12.04 10:42:46 | 000,000,000 | ---D | M]
    FF - HKLM\software\mozilla\Mozilla Firefox 3.0.19\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010.12.11 11:10:47 | 000,000,000 | ---D | M]

    [2008.09.08 17:44:14 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Acer\Application Data\Mozilla\Extensions
    [2011.01.16 15:23:01 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Acer\Application Data\Mozilla\Firefox\Profiles\lmbqiwos.default\extensions
    [2010.09.15 17:46:54 | 000,000,000 | ---D | M] (FlashGot) -- C:\Documents and Settings\Acer\Application Data\Mozilla\Firefox\Profiles\lmbqiwos.default\extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}
    [2010.09.15 17:46:53 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Acer\Application Data\Mozilla\Firefox\Profiles\lmbqiwos.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
    [2009.07.18 21:23:52 | 000,000,000 | ---D | M] (Move Media Player) -- C:\Documents and Settings\Acer\Application Data\Mozilla\Firefox\Profiles\lmbqiwos.default\extensions\moveplayer@movenetworks.com
    [2009.01.27 10:01:02 | 000,000,000 | ---D | M] (Flash AX Control) -- C:\Documents and Settings\Acer\Application Data\Mozilla\Firefox\Profiles\lmbqiwos.default\extensions\npfax@microgaming.co.uk
    [2008.08.26 15:28:55 | 000,000,000 | ---D | M] ("TurnTool Viewer") -- C:\Documents and Settings\Acer\Application Data\Mozilla\Firefox\Profiles\lmbqiwos.default\extensions\turntoolviewer@turntool.com
    [2008.11.01 01:11:01 | 000,002,687 | ---- | M] () -- C:\Documents and Settings\Acer\Application Data\Mozilla\Firefox\Profiles\lmbqiwos.default\searchplugins\opensubtitles.xml
    [2008.03.19 17:30:34 | 000,002,386 | ---- | M] () -- C:\Documents and Settings\Acer\Application Data\Mozilla\Firefox\Profiles\lmbqiwos.default\searchplugins\siteadvisor.xml
    [2007.07.24 21:49:40 | 000,001,074 | ---- | M] () -- C:\Documents and Settings\Acer\Application Data\Mozilla\Firefox\Profiles\lmbqiwos.default\searchplugins\wikisanakirja-suomi.xml
    [2011.01.16 15:23:01 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
    [2010.12.11 11:10:49 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
    [2008.11.08 13:24:38 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
    [2009.01.17 21:34:00 | 000,000,000 | ---D | M] (McAfee SiteAdvisor) -- C:\PROGRAM FILES\MCAFEE\SITEADVISOR
    [2010.09.15 04:50:38 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll

    O1 HOSTS File: ([2009.01.24 18:16:42 | 000,000,686 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\HOSTS
    O1 - Hosts: 127.0.0.1 localhost
    O3 - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006\..\Toolbar\ShellBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found.
    O3 - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
    O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (AVAST Software)
    O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
    O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
    O4 - HKLM..\Run: [SoundMax] C:\Program Files\Analog Devices\SoundMAX\Smax4.exe (Analog Devices, Inc.)
    O4 - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006..\Run: [EA Core] File not found
    O4 - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006..\Run: [Steam] File not found
    O4 - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
    O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
    O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
    O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
    O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
    O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
    O7 - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O7 - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
    O7 - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = [binary data]
    O8 - Extra context menu item: &D&ownload &with BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
    O8 - Extra context menu item: &D&ownload all video with BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
    O8 - Extra context menu item: &D&ownload all with BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
    O9 - Extra Button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe ()
    O9 - Extra 'Tools' menuitem : PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe ()
    O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\WINDOWS\system32\nwprovau.dll (Microsoft Corporation)
    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
    O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
    O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
    O16 - DPF: {E77F23EB-E7AB-4502-8F37-247DBAF1A147} http://gfx1.hotmail.com/mail/w4/pr01/photouploadcontrol/MSNPUpld.cab (Windows Live Hotmail Photo Upload Tool)
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 193.229.0.40 193.229.0.42
    O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
    O24 - Desktop WallPaper: C:\Documents and Settings\Acer\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
    O24 - Desktop BackupWallPaper: C:\Documents and Settings\Acer\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
    O28 - HKLM ShellExecuteHooks: {57B86673-276A-48B2-BAE7-C6DBB3020EB8} - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll (GRISOFT s.r.o.)
    O32 - HKLM CDRom: AutoRun - 1
    O32 - AutoRun File - [2009.01.01 20:20:39 | 000,000,189 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
    O34 - HKLM BootExecute: (autocheck autochk /r \??\J:) - File not found
    O34 - HKLM BootExecute: (autocheck autochk *) - File not found
    O35 - HKLM\..comfile [open] -- "%1" %*
    O35 - HKLM\..exefile [open] -- "%1" %*
    O37 - HKLM\...com [@ = comfile] -- "%1" %*
    O37 - HKLM\...exe [@ = exefile] -- "%1" %*

    ========== Files/Folders - Created Within 30 Days ==========

    [2011.01.16 17:19:40 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Acer\Työpöytä\OTL.exe
    [2011.01.10 11:41:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Acer\Työpöytä\tigerland.(2000).fin.1cd.(28973)
    [2011.01.09 21:28:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Acer\Työpöytä\The.Social.Network.2010.divxfinland.org.v1.1b
    [2010.12.19 23:39:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\NCH Swift Sound
    [2010.12.19 23:39:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Käynnistä-valikko\Ohjelmat\NCH Software Suite
    [2010.12.19 23:39:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Käynnistä-valikko\Ohjelmat\Audio Related Programs
    [2010.12.19 23:39:25 | 000,000,000 | ---D | C] -- C:\Program Files\NCH Swift Sound
    [2007.12.30 01:26:55 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\Acer\Application Data\pcouffin.sys
    [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

    ========== Files - Modified Within 30 Days ==========

    [2011.01.16 17:19:40 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Acer\Työpöytä\OTL.exe
    [2011.01.16 17:00:00 | 000,000,260 | -H-- | M] () -- C:\WINDOWS\tasks\A1C92DF591A2A989.job
    [2011.01.16 16:46:00 | 000,001,084 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1173613074-4256019773-1026456786-1006UA.job
    [2011.01.16 16:38:00 | 000,000,996 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
    [2011.01.16 15:46:00 | 000,001,032 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1173613074-4256019773-1026456786-1006Core.job
    [2011.01.16 15:09:25 | 000,207,365 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
    [2011.01.16 15:09:16 | 000,000,900 | ---- | M] () -- C:\WINDOWS\tasks\Google Software Updater.job
    [2011.01.16 15:09:15 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
    [2011.01.16 15:09:08 | 000,000,992 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
    [2011.01.16 15:08:56 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
    [2011.01.16 15:08:55 | 1073,139,712 | -HS- | M] () -- C:\hiberfil.sys
    [2011.01.16 00:18:06 | 000,000,012 | ---- | M] () -- C:\WINDOWS\bthservsdp.dat
    [2011.01.14 22:47:15 | 000,002,281 | ---- | M] () -- C:\Documents and Settings\Acer\Työpöytä\Google Chrome.lnk
    [2011.01.14 22:47:15 | 000,002,259 | ---- | M] () -- C:\Documents and Settings\Acer\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
    [2011.01.10 11:42:08 | 000,162,816 | ---- | M] () -- C:\Documents and Settings\Acer\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [2011.01.10 11:41:34 | 000,024,278 | ---- | M] () -- C:\Documents and Settings\Acer\Työpöytä\tigerland.(2000).fin.1cd.(28973).zip
    [2011.01.09 21:27:57 | 000,052,953 | ---- | M] () -- C:\Documents and Settings\Acer\Työpöytä\The.Social.Network.2010.divxfinland.org.v1.1b.rar
    [2011.01.07 19:34:20 | 000,000,558 | ---- | M] () -- C:\WINDOWS\DFC.INI
    [2011.01.07 13:28:35 | 000,786,001 | ---- | M] () -- C:\Documents and Settings\Acer\Työpöytä\menusuomi.pdf
    [2011.01.05 14:44:00 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job
    [2010.12.22 23:42:02 | 000,000,296 | ---- | M] () -- C:\WINDOWS\tasks\expressburnShakeIcon.job
    [2010.12.19 23:39:26 | 000,000,874 | ---- | M] () -- C:\Documents and Settings\All Users\Työpöytä\Express Burn Disc Burning Software.lnk
    [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

    ========== Files Created - No Company Name ==========

    [2011.01.10 11:41:34 | 000,024,278 | ---- | C] () -- C:\Documents and Settings\Acer\Työpöytä\tigerland.(2000).fin.1cd.(28973).zip
    [2011.01.09 21:27:57 | 000,052,953 | ---- | C] () -- C:\Documents and Settings\Acer\Työpöytä\The.Social.Network.2010.divxfinland.org.v1.1b.rar
    [2011.01.07 13:28:34 | 000,786,001 | ---- | C] () -- C:\Documents and Settings\Acer\Työpöytä\menusuomi.pdf
    [2010.12.19 23:42:51 | 000,000,296 | ---- | C] () -- C:\WINDOWS\tasks\expressburnShakeIcon.job
    [2010.12.19 23:39:26 | 000,000,874 | ---- | C] () -- C:\Documents and Settings\All Users\Työpöytä\Express Burn Disc Burning Software.lnk
    [2010.10.04 18:11:21 | 000,000,058 | ---- | C] () -- C:\WINDOWS\TEN.INI
    [2010.09.17 15:55:34 | 000,000,448 | ---- | C] () -- C:\WINDOWS\scummvm.ini
    [2010.03.03 18:05:10 | 000,000,736 | ---- | C] () -- C:\WINDOWS\SamsungMaster.INI
    [2009.12.03 21:07:52 | 000,000,391 | ---- | C] () -- C:\WINDOWS\ODBC.INI
    [2009.05.14 16:49:21 | 000,000,425 | ---- | C] () -- C:\WINDOWS\lexstat.ini
    [2009.05.14 16:47:21 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\lxbrvs.dll
    [2009.05.14 16:47:21 | 000,000,181 | ---- | C] () -- C:\WINDOWS\System32\lxbrcoin.ini
    [2009.01.28 13:23:28 | 000,001,536 | ---- | C] () -- C:\WINDOWS\System32\bwsvc_event.dll
    [2009.01.19 10:00:57 | 000,021,840 | ---- | C] () -- C:\WINDOWS\System32\SIntfNT.dll
    [2009.01.19 10:00:57 | 000,017,212 | ---- | C] () -- C:\WINDOWS\System32\SIntf32.dll
    [2009.01.19 10:00:57 | 000,012,067 | ---- | C] () -- C:\WINDOWS\System32\SIntf16.dll
    [2009.01.15 08:19:00 | 001,724,416 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
    [2009.01.15 08:19:00 | 001,507,328 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
    [2009.01.15 08:19:00 | 001,101,824 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
    [2009.01.15 08:19:00 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
    [2009.01.01 20:20:39 | 000,001,182 | ---- | C] () -- C:\WINDOWS\VFO.INI
    [2008.10.07 09:13:30 | 000,197,912 | ---- | C] () -- C:\WINDOWS\System32\physxcudart_20.dll
    [2008.10.07 09:13:22 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelTraditionalChinese.dll
    [2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSwedish.dll
    [2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSpanish.dll
    [2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll
    [2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelPortugese.dll
    [2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelKorean.dll
    [2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelJapanese.dll
    [2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelGerman.dll
    [2008.10.07 09:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelFrench.dll
    [2008.05.30 14:06:01 | 000,250,867 | -HS- | C] () -- C:\WINDOWS\System32\ilUuvyay.ini2
    [2008.05.28 01:15:11 | 001,453,970 | -HS- | C] () -- C:\WINDOWS\System32\dkqkbkge.ini
    [2008.05.28 01:14:26 | 000,250,867 | -HS- | C] () -- C:\WINDOWS\System32\ilUuvyay.ini
    [2008.03.18 19:58:03 | 000,000,080 | RHS- | C] () -- C:\WINDOWS\System32\EB1EE4543D.dll
    [2008.01.25 18:14:46 | 000,162,304 | ---- | C] () -- C:\WINDOWS\System32\ztvunrar36.dll
    [2008.01.25 18:14:46 | 000,153,088 | ---- | C] () -- C:\WINDOWS\System32\UNRAR3.dll
    [2008.01.25 18:14:46 | 000,077,312 | ---- | C] () -- C:\WINDOWS\System32\ztvunace26.dll
    [2008.01.25 18:14:46 | 000,075,264 | ---- | C] () -- C:\WINDOWS\System32\unacev2.dll
    [2008.01.16 19:46:04 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI
    [2007.12.30 01:27:02 | 000,000,034 | ---- | C] () -- C:\Documents and Settings\Acer\Application Data\pcouffin.log
    [2007.12.30 01:26:55 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\Acer\Application Data\inst.exe
    [2007.12.30 01:26:55 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\Acer\Application Data\pcouffin.cat
    [2007.12.30 01:26:55 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\Acer\Application Data\pcouffin.inf
    [2007.10.25 02:36:49 | 000,006,144 | ---- | C] () -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [2007.08.29 17:51:51 | 000,000,558 | ---- | C] () -- C:\WINDOWS\DFC.INI
    [2007.08.29 17:14:16 | 000,032,768 | ---- | C] () -- C:\WINDOWS\TBPanelExt.dll
    [2007.08.29 17:14:16 | 000,012,285 | ---- | C] () -- C:\WINDOWS\Cadx3.ini
    [2007.08.29 17:14:16 | 000,005,120 | ---- | C] () -- C:\WINDOWS\TBManage.dll
    [2007.08.26 19:25:09 | 000,000,019 | ---- | C] () -- C:\WINDOWS\9DSetup.ini
    [2007.08.01 19:51:17 | 000,000,083 | ---- | C] () -- C:\WINDOWS\wwp.INI
    [2007.05.29 11:23:11 | 000,299,008 | ---- | C] () -- C:\WINDOWS\System32\LAME_MP3.dll
    [2007.04.26 02:17:56 | 000,000,237 | ---- | C] () -- C:\WINDOWS\wininit.ini
    [2007.04.25 07:11:07 | 000,007,247 | ---- | C] () -- C:\WINDOWS\cadx2.ini
    [2007.03.26 03:06:23 | 000,001,362 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
    [2007.03.07 15:22:03 | 000,001,682 | -HS- | C] () -- C:\WINDOWS\System32\KGyGaAvL.sys
    [2007.03.07 15:22:03 | 000,000,088 | RHS- | C] () -- C:\WINDOWS\System32\3D54E41EEB.sys
    [2007.02.23 13:51:55 | 000,000,098 | ---- | C] () -- C:\WINDOWS\WirelessFTP.INI
    [2007.02.21 23:27:17 | 000,000,011 | ---- | C] () -- C:\WINDOWS\asf.INI
    [2007.02.21 23:27:17 | 000,000,009 | ---- | C] () -- C:\WINDOWS\fra.INI
    [2007.02.21 23:27:17 | 000,000,008 | ---- | C] () -- C:\WINDOWS\dsg.INI
    [2007.02.21 23:26:57 | 000,000,014 | ---- | C] () -- C:\WINDOWS\vas.INI
    [2007.02.21 23:26:57 | 000,000,012 | ---- | C] () -- C:\WINDOWS\vaikeusasa.INI
    [2007.02.21 23:26:34 | 000,000,008 | ---- | C] () -- C:\WINDOWS\rqw.INI
    [2007.02.13 00:31:02 | 000,010,752 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
    [2007.02.08 23:49:35 | 000,646,392 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
    [2007.02.04 05:06:17 | 000,000,025 | ---- | C] () -- C:\WINDOWS\cdplayer.ini
    [2007.02.02 17:03:40 | 000,000,000 | ---- | C] () -- C:\WINDOWS\tosOBEX.INI
    [2007.02.01 15:55:09 | 000,162,816 | ---- | C] () -- C:\Documents and Settings\Acer\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [2007.01.30 07:03:40 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
    [2007.01.29 09:22:48 | 000,000,816 | ---- | C] () -- C:\WINDOWS\System32\eRLog.ini
    [2007.01.29 09:20:46 | 000,092,985 | ---- | C] () -- C:\WINDOWS\VGAsetup.ini
    [2007.01.29 09:20:38 | 000,154,147 | ---- | C] () -- C:\WINDOWS\System32\VGAunistlog.ini
    [2007.01.29 09:16:10 | 000,000,131 | ---- | C] () -- C:\Documents and Settings\Acer\Local Settings\Application Data\fusioncache.dat
    [2007.01.11 15:20:00 | 000,026,096 | ---- | C] () -- C:\WINDOWS\UN800114.INI
    [2006.01.27 03:29:50 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
    [2006.01.24 07:41:40 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIBUN4.dll
    [2006.01.24 07:40:44 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIMPEG2.dll
    [2006.01.24 07:40:44 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIMP3.dll
    [2006.01.24 07:40:44 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTIFCD3.dll
    [2006.01.24 07:40:44 | 000,001,024 | RH-- | C] () -- C:\WINDOWS\System32\NTICDMK7.dll
    [2006.01.24 07:17:34 | 000,004,381 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
    [2006.01.20 18:22:42 | 000,000,083 | ---- | C] () -- C:\WINDOWS\ALaunch.ini
    [2006.01.04 12:05:12 | 000,008,096 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
    [2004.12.20 18:24:03 | 001,663,068 | ---- | C] () -- C:\WINDOWS\System32\libmmd.dll
    [2004.12.20 10:08:28 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
    [2004.12.20 10:03:26 | 000,765,952 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
    [2004.12.17 17:14:44 | 000,013,952 | ---- | C] () -- C:\WINDOWS\System32\drivers\UBHelper.sys
    [2004.12.02 14:20:14 | 000,114,688 | ---- | C] () -- C:\WINDOWS\System32\TosBtAcc.dll
    [2004.10.15 17:31:56 | 000,218,264 | ---- | C] () -- C:\WINDOWS\System32\SetAid.dll
    [2004.09.22 09:09:06 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\TosCommAPI.dll
    [2004.09.15 22:00:00 | 000,003,704 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
    [2004.07.20 16:04:02 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\TosBtHcrpAPI.dll
    [2004.01.15 13:43:28 | 000,114,688 | ---- | C] () -- C:\WINDOWS\System32\TBTMonUI.dll
    [2003.07.29 14:33:26 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\TosHidAPI.dll
    [2003.01.07 15:05:08 | 000,002,695 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI
    [2001.12.26 16:12:30 | 000,065,536 | R--- | C] () -- C:\WINDOWS\System32\multiplex_vcd.dll
    [2001.09.03 23:46:38 | 000,110,592 | R--- | C] () -- C:\WINDOWS\System32\Hmpg12.dll
    [2001.07.30 16:33:56 | 000,118,784 | R--- | C] () -- C:\WINDOWS\System32\HMPV2_ENC.dll
    [2001.07.23 22:04:36 | 000,118,784 | R--- | C] () -- C:\WINDOWS\System32\HMPV2_ENC_MMX.dll
    [1997.06.14 10:56:08 | 000,056,832 | ---- | C] () -- C:\WINDOWS\System32\iyvu9_32.dll
    [1996.04.03 21:33:26 | 000,005,248 | ---- | C] () -- C:\WINDOWS\System32\giveio.sys

    ========== Alternate Data Streams ==========

    @Alternate Data Stream - 487 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:05EE1EEF
    @Alternate Data Stream - 142 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:CB0AACC9
    @Alternate Data Stream - 122 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:8CEFE51A
    @Alternate Data Stream - 120 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:5C321E34
    @Alternate Data Stream - 115 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DD85067F
    @Alternate Data Stream - 106 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DFC5A2B2

    < End of report >



    OTL Extras logfile created on: 16.1.2011 17:20:35 - Run 1
    OTL by OldTimer - Version 3.2.20.2 Folder = C:\Documents and Settings\Acer\Työpöytä
    Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
    Internet Explorer (Version = 8.0.6001.18702)
    Locale: 0000040B | Country: Suomi | Language: FIN | Date Format: d.M.yyyy

    1 023,00 Mb Total Physical Memory | 631,00 Mb Available Physical Memory | 62,00% Memory free
    2,00 Gb Paging File | 2,00 Gb Available in Paging File | 90,00% Paging File free
    Paging file location(s): [Binary data over 100 bytes]

    %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
    Drive C: | 34,58 Gb Total Space | 6,33 Gb Free Space | 18,30% Space Free | Partition Type: NTFS
    Drive D: | 35,06 Gb Total Space | 16,52 Gb Free Space | 47,12% Space Free | Partition Type: FAT32
    Drive J: | 232,88 Gb Total Space | 10,11 Gb Free Space | 4,34% Space Free | Partition Type: NTFS

    Computer Name: ACER-AD390BDE86 | User Name: Acer | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: All users
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

    ========== Extra Registry (SafeList) ==========


    ========== File Associations ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

    [HKEY_USERS\S-1-5-21-1173613074-4256019773-1026456786-1006\SOFTWARE\Classes\<extension>]
    .html [@ = htmlfile] -- Reg Error: Key error. File not found

    ========== Shell Spawning ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [open] -- "%1" %*
    cmdfile [open] -- "%1" %*
    comfile [open] -- "%1" %*
    exefile [open] -- "%1" %*
    piffile [open] -- "%1" %*
    regfile [merge] -- Reg Error: Key error.
    scrfile [config] -- "%1"
    scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
    scrfile [open] -- "%1" /S
    txtfile [edit] -- Reg Error: Key error.
    Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Directory [Winamp.Bookmark] -- "D:\Ohjelmat\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft)
    Directory [Winamp.Enqueue] -- "D:\Ohjelmat\Winamp\winamp.exe" /ADD "%1" (Nullsoft)
    Directory [Winamp.Play] -- "D:\Ohjelmat\Winamp\winamp.exe" "%1" (Nullsoft)
    Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
    Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
    Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

    ========== Security Center Settings ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
    "FirstRunDisabled" = 1
    "AntiVirusDisableNotify" = 0
    "FirewallDisableNotify" = 0
    "UpdatesDisableNotify" = 0
    "AntiVirusOverride" = 0
    "FirewallOverride" = 0

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

    ========== System Restore Settings ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
    "DisableSR" = 0

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
    "Start" = 0

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
    "Start" = 2

    ========== Firewall Settings ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
    "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:mad:xpsp2res.dll,-22007
    "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:mad:xpsp2res.dll,-22008

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
    "EnableFirewall" = 1
    "DoNotAllowExceptions" = 0
    "DisableNotifications" = 0

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
    "25505:TCP" = 25505:TCP:*:Enabled:BitComet 25505 TCP
    "25505:UDP" = 25505:UDP:*:Enabled:BitComet 25505 UDP
    "1412:UDP" = 1412:UDP:*:Enabled:dc++
    "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:mad:xpsp2res.dll,-22008
    "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:mad:xpsp2res.dll,-22007
    "24277:TCP" = 24277:TCP:*:Enabled:BitComet 24277 TCP
    "24277:UDP" = 24277:UDP:*:Enabled:BitComet 24277 UDP
    "27025:UDP" = 27025:UDP:*:Enabled:cs source
    "2412:TCP" = 2412:TCP:*:Enabled:dc++
    "3414:UDP" = 3414:UDP:*:Disabled:steam
    "139:TCP" = 139:TCP:LocalSubNet:Disabled:mad:xpsp2res.dll,-22004
    "445:TCP" = 445:TCP:LocalSubNet:Disabled:mad:xpsp2res.dll,-22005
    "137:UDP" = 137:UDP:LocalSubNet:Disabled:mad:xpsp2res.dll,-22001
    "138:UDP" = 138:UDP:LocalSubNet:Disabled:mad:xpsp2res.dll,-22002

    ========== Authorized Applications List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
    "C:\Program Files\Acer\Acer eConsole\MediaSync.exe" = C:\Program Files\Acer\Acer eConsole\MediaSync.exe:LocalSubNet:Enabled:Media Synchoronizer -- (Acer Inc.)
    "C:\Program Files\Acer\Acer eConsole\eConsole.exe" = C:\Program Files\Acer\Acer eConsole\eConsole.exe:LocalSubNet:Enabled:eConsole -- (Acer Inc.)
    "C:\Program Files\Acer\Acer eConsole\MediaServerService.exe" = C:\Program Files\Acer\Acer eConsole\MediaServerService.exe:LocalSubNet:Enabled:Acer Media Server -- (Acer Inc.)
    "D:\Ohjelmat\eMule\emule.exe" = D:\Ohjelmat\eMule\emule.exe:*:Enabled:eMule
    "D:\Ohjelmat\BitDownload\BitDownload.exe" = D:\Ohjelmat\BitDownload\BitDownload.exe:*:Disabled:Torrent P2P application
    "D:\Ohjelmat\Mozilla Firefox\firefox.exe" = D:\Ohjelmat\Mozilla Firefox\firefox.exe:*:Enabled:Firefox
    "C:\Program Files\Java\jre1.5.0_11\bin\javaw.exe" = C:\Program Files\Java\jre1.5.0_11\bin\javaw.exe:*:Enabled:Java(TM) 2 Platform Standard Edition binary
    "C:\Program Files\Toshiba\Bluetooth Toshiba Stack\ECCenter1.exe" = C:\Program Files\Toshiba\Bluetooth Toshiba Stack\ECCenter1.exe:*:Enabled:Bluetooth-asetukset -- (TOSHIBA CORPORATION.)
    "J:\bitcomet downloads\Counter-Strike Source\001\hl2.exe" = J:\bitcomet downloads\Counter-Strike Source\001\hl2.exe:*:Enabled:hl2 -- ()
    "D:\Pelit\america's army\System\ArmyOps.exe" = D:\Pelit\america's army\System\ArmyOps.exe:*:Enabled:ArmyOps
    "C:\Documents and Settings\Acer\Työpöytä\SetupInstRe.exe" = C:\Documents and Settings\Acer\Työpöytä\SetupInstRe.exe:*:Enabled:SetupInstRe
    "D:\Ohjelmat\SuperVegasCasino\CASINO.EXE" = D:\Ohjelmat\SuperVegasCasino\CASINO.EXE:*:Enabled:CASINO
    "D:\Pelit\cs 1.6\hl.exe" = D:\Pelit\cs 1.6\hl.exe:*:Disabled:Half-Life Launcher
    "D:\Ohjelmat\LimeWire\LimeWire.exe" = D:\Ohjelmat\LimeWire\LimeWire.exe:*:Disabled:LimeWire
    "C:\StubInstaller.exe" = C:\StubInstaller.exe:*:Disabled:LimeWire swarmed installer
    "J:\Pelit\game.exe" = J:\Pelit\game.exe:*:Disabled:Main executable for Red Alert 2
    "J:\bitcomet downloads\Duke Nukem 3D High Res 2006, with gore effects\Duke Nukem 3D High Res 2006, with gore effects\Duke Nukem 3D High Res 2006, with gore effects\eduke32.exe" = J:\bitcomet downloads\Duke Nukem 3D High Res 2006, with gore effects\Duke Nukem 3D High Res 2006, with gore effects\Duke Nukem 3D High Res 2006, with gore effects\eduke32.exe:*:Disabled:eduke32
    "D:\Pelit\quake2\quake2.exe" = D:\Pelit\quake2\quake2.exe:*:Enabled:quake2
    "C:\Program Files\BitComet\BitComet.exe" = C:\Program Files\BitComet\BitComet.exe:*:Enabled:BitComet - a BitTorrent Client -- (www.BitComet.com)
    "C:\Program Files\Skype\Phone\Skype.exe" = C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype
    "C:\ijji\ENGLISH\u_sf\soldierfront.exe" = C:\ijji\ENGLISH\u_sf\soldierfront.exe:*:Enabled:soldierfront
    "D:\Pelit\delta force\UPDATE.EXE" = D:\Pelit\delta force\UPDATE.EXE:*:Enabled:UPDATE
    "D:\Steam\steamapps\soija2000\day of defeat source\hl2.exe" = D:\Steam\steamapps\soija2000\day of defeat source\hl2.exe:*:Enabled:hl2 -- ()
    "C:\Program Files\EMCO Malware Destroyer\MalwareDestroyer.exe" = C:\Program Files\EMCO Malware Destroyer\MalwareDestroyer.exe:*:Enabled:Malware Scanner for Home User's
    "D:\Ohjelmat\BSplayer\bsplayer.exe" = D:\Ohjelmat\BSplayer\bsplayer.exe:*:Disabled:BSplayer
    "D:\Ohjelmat\DC++\DCPlusPlus.exe" = D:\Ohjelmat\DC++\DCPlusPlus.exe:*:Enabled:DC++
    "D:\Pelit\worms world party\wwp.exe" = D:\Pelit\worms world party\wwp.exe:*:Disabled:Worms World Party
    "D:\Steam\Steam.exe" = D:\Steam\Steam.exe:*:Enabled:Steam -- (Valve Corporation)
    "C:\Documents and Settings\Acer\Työpöytä\DCPlusPlus-0.699\DCPlusPlus.exe" = C:\Documents and Settings\Acer\Työpöytä\DCPlusPlus-0.699\DCPlusPlus.exe:*:Enabled:DC++
    "D:\Pelit\age of empire 2\empires2.exe" = D:\Pelit\age of empire 2\empires2.exe:*:Disabled:Age of Empires II
    "C:\Valve\Condition Zero\czero.exe" = C:\Valve\Condition Zero\czero.exe:*:Disabled:Condition Zero Launcher
    "C:\Program Files\Operation Flashpoint\FLASHPOINTRESISTANCE.EXE" = C:\Program Files\Operation Flashpoint\FLASHPOINTRESISTANCE.EXE:*:Enabled:Operation Flashpoint
    "C:\Program Files\Winamp Remote\bin\Orb.exe" = C:\Program Files\Winamp Remote\bin\Orb.exe:*:Enabled:Orb
    "C:\Program Files\Winamp Remote\bin\OrbTray.exe" = C:\Program Files\Winamp Remote\bin\OrbTray.exe:*:Enabled:OrbTray
    "C:\Program Files\Winamp Remote\bin\OrbStreamerClient.exe" = C:\Program Files\Winamp Remote\bin\OrbStreamerClient.exe:*:Enabled:Orb Stream Client
    "C:\Program Files\Warcraft III\Warcraft III.exe" = C:\Program Files\Warcraft III\Warcraft III.exe:*:Enabled:Warcraft III
    "C:\Program Files\uTorrent\uTorrent.exe" = C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent, Inc.)
    "C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software)
    "C:\Program Files\Pinnacle\Studio 10\programs\RM.exe" = C:\Program Files\Pinnacle\Studio 10\programs\RM.exe:*:Enabled:Render Manager
    "C:\Program Files\Pinnacle\Studio 10\programs\Studio.exe" = C:\Program Files\Pinnacle\Studio 10\programs\Studio.exe:*:Enabled:Studio
    "C:\Program Files\Pinnacle\Studio 10\programs\PMSRegisterFile.exe" = C:\Program Files\Pinnacle\Studio 10\programs\PMSRegisterFile.exe:*:Enabled:pMSRegisterFile
    "C:\Program Files\Pinnacle\Studio 10\programs\umi.exe" = C:\Program Files\Pinnacle\Studio 10\programs\umi.exe:*:Enabled:umi
    "C:\Program Files\BUFFALO\Client Manager3\BWSVC\bwsvc.exe" = C:\Program Files\BUFFALO\Client Manager3\BWSVC\bwsvc.exe:*:Enabled:ClientMgr3 -- (BUFFALO INC.)
    "C:\Program Files\BUFFALO\Client Manager3\AOSS\aoss.exe" = C:\Program Files\BUFFALO\Client Manager3\AOSS\aoss.exe:*:Enabled:Aoss -- ()
    "C:\Program Files\B2BPOKER\Pokerihuone\jre\bin\javaw.exe" = C:\Program Files\B2BPOKER\Pokerihuone\jre\bin\javaw.exe:*:Enabled:Java(TM) 2 Platform Standard Edition binary -- (Sun Microsystems, Inc.)
    "D:\Pelit\NHL 09\nhl2009.exe" = D:\Pelit\NHL 09\nhl2009.exe:*:Enabled:nhl2009
    "C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe" = C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe:*:Enabled:CoD2MP_s
    "D:\Ohjelmat\CarbonPoker\client.exe" = D:\Ohjelmat\CarbonPoker\client.exe:*:Enabled:Carbon Poker Client
    "C:\Program Files\GigaTribe\gigatribe_3x.exe" = C:\Program Files\GigaTribe\gigatribe_3x.exe:*:Enabled:GigaTribe
    "D:\Graphisoft\ArchiCAD.exe" = D:\Graphisoft\ArchiCAD.exe:*:Disabled:ArchiCAD 12.0.0 Component -- (Graphisoft R&D)
    "D:\Steam\steamapps\soija2000\half-life 2 deathmatch\hl2.exe" = D:\Steam\steamapps\soija2000\half-life 2 deathmatch\hl2.exe:*:Enabled:hl2 -- ()
    "C:\Program Files\Electronic Arts\EADM\Core.exe" = C:\Program Files\Electronic Arts\EADM\Core.exe:*:Enabled:EA Download Manager
    "C:\Program Files\DC++\DCPlusPlus.exe" = C:\Program Files\DC++\DCPlusPlus.exe:*:Enabled:DC++ -- ()
    "C:\Program Files\duke3d\duke3d.exe" = C:\Program Files\duke3d\duke3d.exe:*:Enabled:duke3d
    "C:\Program Files\Google\Google Earth\plugin\geplugin.exe" = C:\Program Files\Google\Google Earth\plugin\geplugin.exe:*:Enabled:Google Earth -- (Google)
    "D:\Steam\steamapps\soija2000\counter-strike source\hl2.exe" = D:\Steam\steamapps\soija2000\counter-strike source\hl2.exe:*:Enabled:Counter-Strike: Source -- ()


    ========== HKEY_LOCAL_MACHINE Uninstall List ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{00060000-0000-1004-8002-0000C06B5161}" = WIBU-KEY Setup (WIBU-KEY Remove)
    "{0224CACC-994D-45F8-B973-D65056EA9C2F}" = Adobe XMP DVA Panels CS3
    "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
    "{04AF207D-9A77-465A-8B76-991F6AB66245}" = Adobe Help Viewer CS3
    "{066D65EA-ED53-44E4-A96A-F81B6E409D2E}" = PC Connectivity Solution
    "{08B32819-6EEF-4057-AEDA-5AB681A36A23}" = Adobe Bridge Start Meeting
    "{0D499481-22C6-4B25-8AC2-6D3F6C885FB9}" = OpenOffice.org Installer 1.0
    "{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2}" = NTI CD & DVD-Maker
    "{18D10072035C4515918F7E37EAFAACFC}" = AutoUpdate
    "{1A3E23D7-7A1E-43EC-B35D-EB8A31BED943}" = FinalBurner Free v1.29.0.125
    "{1BC4026B-1957-4514-9058-2B542557F143}" = Opera 9.63
    "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
    "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Windows Liven lataustyökalu
    "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
    "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
    "{26A24AE4-039D-4CA4-87B4-2F83216011FF}" = Java(TM) 6 Update 22
    "{2CCBABCB-6427-4A55-B091-49864623C43F}" = Google Toolbar for Firefox
    "{350C940b-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
    "{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}" = McAfee SiteAdvisor
    "{385979FE-DC4F-4140-8EAD-A59625000D72}" = NTI Backup NOW! 4
    "{3CB05291-F546-458E-A796-B5BCF5A3CDC4}" = Studio 10
    "{3F0D0ABE-CDAF-431A-00BC-CBBE018EA74E}" = SimCity 4 Deluxe
    "{3FC7CBBC4C1E11DCA1A752EA55D89593}" = DivX Version Checker
    "{4286E640-B5FB-11DF-AC4B-005056C00008}" = Google Earth
    "{43DCF766-6838-4F9A-8C91-D92DA586DFA8}" = Microsoft Windows Journal Viewer
    "{4538A1AF-6894-4F10-ABDA-6CB9E6ACF8B6}" = Microsoft .NET Framework 1.1 Finnish Language Pack
    "{476E9A2B-7A33-4634-9B39-815B7C376F8E}" = Avid DIO Runtime
    "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
    "{50F102CA-4BE2-41A9-9810-5BB05EB91B9A}" = Adobe Premiere Pro CS3 Functional Content
    "{54793AA1-5001-42F4-ABB6-C364617C6078}" = Adobe Linguistics CS3
    "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
    "{57922B53-02D4-4DFC-AC24-A3519DC1F49A}" = Adobe Premiere Pro FC
    "{58DCEEE5-532E-44F4-B1D7-A146EF9E9FDA}" = Adobe Premiere Pro CS3
    "{5EE7D259-D137-4438-9A5F-42F432EC0421}" = VC80CRTRedist - 8.0.50727.4053
    "{65CDEC30-4BF4-48FB-8059-9FC480E4E94F}" = Acer eMode Management
    "{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
    "{68AD6F25-07A0-4CFE-9555-A30633329B08}" = muvee autoProducer 3.5 magicMoments
    "{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
    "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
    "{6ABE0BEE-D572-4FE8-B434-9E72A289431B}" = Adobe Fonts All
    "{6DC0632A-A838-4B34-AC19-0FA18E1C533C}" = Sentinel Protection Installer 7.2.2
    "{6E7DD182-9FC6-4651-0095-2E666CC6AF35}" = The Sims 2
    "{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}" = Adobe Asset Services CS3
    "{71A41426-C7A4-4DCF-A9ED-C5B4B105ED1D}" = Sony Media Manager 2.2
    "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
    "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
    "{7B63B2922B174135AFC0E1377DD81EC2}" = DivX Codec
    "{7F34A21F-2DEB-4598-BB19-611D6BD24271}" = Managed DirectX (0901)
    "{85EB1E72-4FAA-40E4-A511-DF3A9A0A4CA8}" = Windows Live Messenger
    "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
    "{8AAB4176-A747-493A-A42C-B63CFADFD8E3}" = NVIDIA PhysX
    "{8ADFC4160D694100B5B8A22DE9DCABD9}" = DivX Player
    "{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}" = Adobe Device Central CS3
    "{8DC42D05-680B-41B0-8878-6C14D24602DB}" = QuickTime
    "{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}" = Adobe Type Support
    "{8EDBA74D-0686-4C99-BFDD-F894678E5102}" = Adobe Common File Installer
    "{90110409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
    "{90176341-0A8B-4CCC-A78D-F862228A6B95}" = Adobe Anchor Service CS3
    "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
    "{9580813D-94B1-4C28-9426-A441E2BB29A5}" = Counter-Strike: Source
    "{98736A65-3C79-49EC-B7E9-A3C77774B0E6}" = Google SketchUp 6
    "{998152E5-B605-4BBB-9853-E749AEE02B21}" = Windows Liven kirjautumisavustaja
    "{9C87F6BB-75E4-4F35-8353-F5E295264E98}" = Windows Live Call
    "{9C9824D9-9000-4373-A6A5-D0E5D4831394}" = Adobe Bridge CS3
    "{A0383B7D-81A2-49D3-BE06-C0FD9EFB9DFC}" = Corel Painter IX
    "{A0E27BA8-353A-4288-AB60-5DE8EDA18E16}" = Symantec Technical Support Web Controls
    "{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}" = Segoe UI
    "{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}" = Adobe CMaps
    "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
    "{A77F3C2D-50CC-4A29-A1FB-1E018BE4DCA2}" = DiscAPI
    "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
    "{AA2BCB44-B44F-445A-A80C-E6C50218940C}" = Windows Liven asennustyökalu
    "{AC76BA86-7AD7-1033-7B44-A71000000002}" = Adobe Reader 7.1.0
    "{B13A7C41581B411290FBC0395694E2A9}" = DivX Converter
    "{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}" = Adobe Camera Raw 4.0
    "{B3D8B2F8-3C2C-45BC-933E-8B60E78F6684}" = Google SketchUp 6
    "{B7050CBDB2504B34BC2A9CA0A692CC29}" = DivX Web Player
    "{B8A6F713-D72D-47AD-A92D-B5C0E13F98C1}" = NTI HomeVideo-Maker
    "{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}" = Adobe Default Language CS3
    "{BA63612E-0458-416A-ADCD-B2349194F20F}" = Creative ZEN Nano Plus
    "{BB406CEB-6207-4512-9BB2-89950DC9D6B6}_is1" = ConvertXtoDVD 2.2.3.258h
    "{BB81360F-041C-4CF7-B15E-71380D154244}" = Adobe Setup
    "{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}" = Creative MediaSource 5
    "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
    "{C151CE54-E7EA-4804-854B-F515368B0798}" = Athlon 64 Processor Driver
    "{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}" = Adobe ExtendScript Toolkit 2
    "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
    "{CD95F661-A5C4-44F5-A6AA-ECDD91C240B2}" = WinZip 11.2
    "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
    "{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Billionton
    "{D0DFF92A-492E-4C40-B862-A74A173C25C5}" = Adobe Version Cue CS3 Client
    "{D2559B88-CC9D-4B48-81BB-F492BAA9C48C}" = Adobe PDF Library Files
    "{D5A31AB1-345D-47C7-A87B-036A669F6DF1}" = Adobe XMP Panels CS3
    "{DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9}" = Adobe Color Common Settings
    "{DBEA1034-5882-4A88-8033-81C4EF0CFA29}" = Google Toolbar for Internet Explorer
    "{E09B48B5-E141-427A-AB0C-D3605127224A}" = Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR)
    "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
    "{E69AE897-9E0B-485C-8552-7841F48D42D8}" = Adobe Update Manager CS3
    "{EC028E6B-F3F1-4192-B63E-A7C97302ED5A}" = Acer eConsole
    "{ED00D08A-3C5F-488D-93A0-A04F21F23956}" = Windows Live Communications Platform
    "{EFE1AB94-5466-4B6E-BE31-FF4C115FD25D}" = Max Payne 2
    "{F0A37341-D692-11D4-A984-009027EC0A9C}" = SoundMAX
    "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
    "{F34D9A5F-484A-4E31-A9D3-908CB265B289}" = Sygate Personal Firewall
    "{F5346614-B7C4-4E94-826A-E2363155233D}" = EasyCleaner
    "{F9B3DD02-B0B3-42E9-8650-030DFF0D133D}" = Microsoft SQL Server Native Client
    "001FFFFFFF12FF00FF0701F02F02F000-R1" = ArchiCAD 12 INT
    "0C5EDC3653FED5B121F464339EAC12534D253B25" = Windows Driver Package - Nokia Modem (02/15/2007 3.1)
    "7-Zip" = 7-Zip 4.20
    "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
    "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
    "Adobe Photoshop 7.0" = Adobe Photoshop 7.0
    "Adobe Shockwave Player" = Adobe Shockwave Player 11.5
    "Adobe_32fdd767b4383606e8168e834af5d90" = Adobe Premiere Pro CS3
    "Ashampoo WinOptimizer 4 FREE_is1" = Ashampoo WinOptimizer 4 FREE
    "ASIO4ALL" = ASIO4ALL
    "Audacity_is1" = Audacity 1.2.6
    "avast5" = avast! Free Antivirus
    "Betsson" = Betsson (remove only)
    "Betway.com Casino" = Betway.com Casino
    "Betway.com Poker" = Betway.com Poker
    "BitComet" = BitComet 0.91
    "Burn4Free CD & DVD_is1" = Burn4Free CD & DVD 5.1.0.0
    "Collab" = Collab
    "DC++" = DC++ 0.770
    "DirectVobSub" = DirectVobSub (remove only)
    "DivX Content Uploader" = DivX Content Uploader
    "Driver Cleaner Pro" = DH Driver Cleaner Professional Edition
    "EasyBurning" = Easy Burning (remove only)
    "EVEREST Home Edition_is1" = EVEREST Home Edition v1.51
    "ExpressBurn" = Express Burn Disc Burning Software
    "F064B256B4A20996EA9E333B5E0F14B61AB3333D" = Windows Driver Package - Nokia (WUDFRd) WPD (03/19/2007 6.83.31.1)
    "ffdshow_is1" = ffdshow [rev 918] [2007-02-12]
    "FL Studio 5" = FL Studio 5
    "Gainward" = EXPERTool
    "GOM Player" = GOM Player
    "Google Updater" = Google Updater
    "HijackThis" = HijackThis 2.0.2
    "ie8" = Windows Internet Explorer 8
    "IL Download Manager" = IL Download Manager
    "InstallShield_{1577A05B-EE62-4BBC-9DB7-FE748FA44EC2}" = NTI CD & DVD-Maker
    "InstallShield_{385979FE-DC4F-4140-8EAD-A59625000D72}" = NTI Backup NOW! 4
    "Lexmark 3100 Series" = Lexmark 3100 Series
    "Magic ISO Maker v5.4 (build 0251)" = Magic ISO Maker v5.4 (build 0251)
    "MagicDisc 2.7.105" = MagicDisc 2.7.105
    "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
    "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
    "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
    "Mozilla Firefox (3.0.19)" = Mozilla Firefox (3.0.19)
    "MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
    "nordicbet (Poker)" = NordicBet
    "NVIDIA Drivers" = NVIDIA Drivers
    "Packard Bell Data Secure" = Packard Bell Data Secure
    "PAFPoker" = PAF POKER (remove only)
    "Paradise Poker" = Paradise Poker
    "ParadisePoker" = ParadisePoker
    "PartyPoker" = PartyPoker
    "PoiZone" = PoiZone
    "PowerISO" = PowerISO
    "Quintessential Media Player" = Quintessential Media Player
    "raypoker" = RAY Pokeri
    "RealPlayer 6.0" = RealPlayer
    "RivaTuner" = RivaTuner v2.03
    "SiS VGA Driver" = SiS VGA Utilities
    "SiSLan" = SiS 900 PCI Fast Ethernet Adapter Driver
    "SubtitleWorkshop" = Subtitle Workshop 2.51
    "SysInfo" = Creative System Information
    "SystemRequirementsLab" = System Requirements Lab
    "ToggleFI Toolbar" = ToggleFI Toolbar
    "Toxic Biohazard" = Toxic Biohazard
    "UN800114" = BUFFALO Client Manager 3
    "Unibet Poker" = Unibet Poker
    "Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
    "Winamp" = Winamp
    "Windows Media Format Runtime" = Windows Media Format 11 runtime
    "Windows Media Player" = Windows Media Player 11
    "Windows XP Service Pack" = Windows XP Service Pack 3
    "WinLiveSuite_Wave3" = Windows Liven asennustyökalu
    "WinRAR archiver" = WinRAR archiver
    "Virtual DJ - Atomix Productions" = Virtual DJ - Atomix Productions
    "VLC media player" = VideoLAN VLC media player 0.8.6d
    "WMFDist11" = Windows Media Format 11 runtime
    "wmp11" = Windows Media Player 11
    "WOLAPI" = Westwood Shared Internet Components
    "Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
    "Xfire" = Xfire (remove only)
    "XVid;-)" = XVid;-)
    "XviD_is1" = XviD MPEG-4 Video Codec

    ========== HKEY_USERS Uninstall List ==========

    [HKEY_USERS\S-1-5-21-1173613074-4256019773-1026456786-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "bibjoyscr" = CiD Help
    "Facebook Plug-In" = Facebook Plug-In
    "Google Chrome" = Google Chrome
    "Steam App 6950" = Hitman: Blood Money Demo
    "uTorrent" = µTorrent
    "World of Warcraft Trial" = World of Warcraft Trial

    ========== Last 10 Event Log Errors ==========

    [ Antivirus Events ]
    Error - 7.11.2009 10:44:35 | Computer Name = ACER-AD390BDE86 | Source = avast! | ID = 33554522
    Description =

    Error - 8.11.2009 9:32:31 | Computer Name = ACER-AD390BDE86 | Source = avast! | ID = 33554522
    Description =

    Error - 10.11.2009 3:38:58 | Computer Name = ACER-AD390BDE86 | Source = avast! | ID = 33554522
    Description =

    Error - 10.11.2009 4:13:04 | Computer Name = ACER-AD390BDE86 | Source = avast! | ID = 33554522
    Description =

    Error - 14.3.2010 11:54:31 | Computer Name = ACER-AD390BDE86 | Source = avast! | ID = 33554522
    Description =

    [ Application Events ]
    Error - 15.1.2011 18:12:03 | Computer Name = ACER-AD390BDE86 | Source = nview_info | ID = 11141121
    Description =

    [ System Events ]
    Error - 16.1.2011 11:19:36 | Computer Name = ACER-AD390BDE86 | Source = DCOM | ID = 10005
    Description = DCOM vastaanotti virheen "%1058" yrittäessään käynnistää palvelun
    McAfee SiteAdvisor Service argumenteilla "" suorittaakseen palvelinosan: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}

    Error - 16.1.2011 11:19:36 | Computer Name = ACER-AD390BDE86 | Source = DCOM | ID = 10005
    Description = DCOM vastaanotti virheen "%1058" yrittäessään käynnistää palvelun
    McAfee SiteAdvisor Service argumenteilla "" suorittaakseen palvelinosan: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}

    Error - 16.1.2011 11:19:36 | Computer Name = ACER-AD390BDE86 | Source = DCOM | ID = 10005
    Description = DCOM vastaanotti virheen "%1058" yrittäessään käynnistää palvelun
    McAfee SiteAdvisor Service argumenteilla "" suorittaakseen palvelinosan: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}

    Error - 16.1.2011 11:19:36 | Computer Name = ACER-AD390BDE86 | Source = DCOM | ID = 10005
    Description = DCOM vastaanotti virheen "%1058" yrittäessään käynnistää palvelun
    McAfee SiteAdvisor Service argumenteilla "" suorittaakseen palvelinosan: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}

    Error - 16.1.2011 11:19:37 | Computer Name = ACER-AD390BDE86 | Source = DCOM | ID = 10005
    Description = DCOM vastaanotti virheen "%1058" yrittäessään käynnistää palvelun
    McAfee SiteAdvisor Service argumenteilla "" suorittaakseen palvelinosan: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}

    Error - 16.1.2011 11:19:37 | Computer Name = ACER-AD390BDE86 | Source = DCOM | ID = 10005
    Description = DCOM vastaanotti virheen "%1058" yrittäessään käynnistää palvelun
    McAfee SiteAdvisor Service argumenteilla "" suorittaakseen palvelinosan: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}

    Error - 16.1.2011 11:19:43 | Computer Name = ACER-AD390BDE86 | Source = DCOM | ID = 10005
    Description = DCOM vastaanotti virheen "%1058" yrittäessään käynnistää palvelun
    McAfee SiteAdvisor Service argumenteilla "" suorittaakseen palvelinosan: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}

    Error - 16.1.2011 11:19:43 | Computer Name = ACER-AD390BDE86 | Source = DCOM | ID = 10005
    Description = DCOM vastaanotti virheen "%1058" yrittäessään käynnistää palvelun
    McAfee SiteAdvisor Service argumenteilla "" suorittaakseen palvelinosan: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}

    Error - 16.1.2011 11:19:49 | Computer Name = ACER-AD390BDE86 | Source = DCOM | ID = 10005
    Description = DCOM vastaanotti virheen "%1058" yrittäessään käynnistää palvelun
    McAfee SiteAdvisor Service argumenteilla "" suorittaakseen palvelinosan: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}

    Error - 16.1.2011 11:19:49 | Computer Name = ACER-AD390BDE86 | Source = DCOM | ID = 10005
    Description = DCOM vastaanotti virheen "%1058" yrittäessään käynnistää palvelun
    McAfee SiteAdvisor Service argumenteilla "" suorittaakseen palvelinosan: {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C}


    < End of report >
     
  5. kalminen

    kalminen Regular member

    Joined:
    May 4, 2007
    Messages:
    3,915
    Likes Received:
    0
    Trophy Points:
    46
    .
    En kyllä löytänyt mitään Bootti manageria !!!

    Mene Windowsin ControlPaneliin (Ohjauspaneli) ja sieltä Lisää / Poista sovellus
    Vistassa (7) Ohjelmat ja toiminnot
    Etsi ja poista ohjelma jonka nimessä on:

    HijackThis 2.0.2
    ToggleFI Toolbar

    -------------------------------------------------------

    Päivitä ja skannaa Malwarebytes' Anti-Malwarella

    * Käynnistä Malwarebytes' Anti-Malware
    * Klikkaa päivitys
    * Tarkista päivitykset
    * Kun ohjelma on latautunut ja päivitykset tehty, valitse Suorita täysi tarkistus ja klikkaa Tarkista.
    * Kun tarkistus on valmis, klikkaa OK ja sitten Näytä tulokset nähdäksesi tulokset.
    * Varmistu, että kaikki on merkitty ja klikkaa Poista valitut.
    * Tämän jälkeen loki avautuu muistioon. Tallenna se paikkaan, josta löydät sen helposti. Loki löytyy myös täältä: C:\Documents and Settings\Käyttäjänimi\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-päiväys.txt
    * Lähetä lokin sisältö seuraavassa viestissäsi.

    Huom. Jos Mbam ei pystynyt poistamaan tiedostoa, se pyytää sinua käynnistämään koneesi uudelleen. Käynnistä koneesi silloin uudelleen heti. Mbam voi tehdä muutoksia rekisteriisi osana puhdistusta. Jos käytät suojausohjelmaa, joka havaitsee rekisterin muutokset, salli Mbamin tehdä muutokset.

    ----------------------------------------------------------------

    Heti MB'AM:n jälkeen katso EVEREST Home Editionilla lämmöt ???

    -----------------------------------------------------------------

    Kopioi alla olevasta laatikosta kaikki muistiin.

    Code:
    :OTL
    FF - HKLM\software\mozilla\Firefox\Extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files\McAfee\SiteAdvisor [2009.01.17 21:34:00 | 000,000,000 | ---D | M] 
    SRV - File not found [Disabled | Stopped] -- -- (AVG Anti-Spyware Guard) 
    SRV - [2008.10.08 12:04:44 | 000,203,280 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\McAfee\SiteAdvisor\McSACore.exe -- (McAfee SiteAdvisor Service) 
    O3 - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006\..\Toolbar\ShellBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found.
    O3 - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found. 
    O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe () 
    O4 - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006..\Run: [EA Core] File not found
    O4 - HKU\S-1-5-21-1173613074-4256019773-1026456786-1006..\Run: [Steam] File not found 
    [2011.01.16 17:00:00 | 000,000,260 | -H-- | M] () -- C:\WINDOWS\tasks\A1C92DF591A2A989.job 
    :commands
    [EMPTYTEMP]
    Käynnistä OTL.EXE ohjelma.
    Liitä muistista texti OTL:n valkoiseen laatikkoon (Custom Scans/Fixes)
    Paina sitten Run Fix nappia
    Lopuksi se pyytää koneen ReStarttia => OK
    Logi aukeaa muistioon josta kopioit sen viestiisi.

    ***************************************************************************

    Toimiiko sulla textitiedostot Notepadissa (Muistio)

    ----------------------------------------------------------------------

    Udempi HJT:

    Lataa TÄÄLTÄ
    * Tallenna HijaskThis.exe työpöydällesi tai tee sille
    oma kansio.
    * Tuplaklikkaa HijaskThis.exe ajaaksesi sen.

    -------------------------------------------------------------

    Lähetä:
    Kopioi Malwarebytes' Anti-Malwaren Logitiedostot välilehdeltä uusin logi tänne.
    OTL:n logi
    HJT logi
    Koneen lämmöt ???
    :)
     

Share This Page