joo elikkä tämä ikkuna aukee aina kun windowsin käynnistää http://aijaa.com/1IDxCy poistin juuri haittaohjelmia koneeltani Malwarebytes Anti-Malware ohjelman avulla,mutta tuo ei hävinnyt, ja järjestelmän palautuskaan ei onnistu jonkun virheen takia,apuja siis tarvitsen tuohon kiitos
Lataa AdwCleaner tästä. Sulje kaikki avoimet ohjelmat ja Internet-selain tarkistuksen ajaksi. Tuplaklikkaa AdwCleaner.exe auki ja valitse " Scan ". Kun tarkistus on valmis, Valitse " Clean ". Tietokone käynnistyy automaattisesti ohjelman valmistuttua. Käynnistyessään, se avaa tekstitiedoston, jonka sisällön voit lähettää seuraavassa postissasi. --------------------- Lisäksi Tehdään vielä lopuksi tarkistus OTL ohjelmalla. Lataa OTL ( OldTimerListIt ) tästä. * Tallenna ohjelma työpöydällesi * käynnistä OTL.exe * Vaihda File age kohtaa " 30 days " jos ei tämä ollut jo vakiona ja aloita tarkistus " Run Scan ". * Kun tarkistus on valmis , saat näkyviin tekstitiedoston (OTL.txt) ja (Extras.txt), joissa on listattu muutoksia/tapahtumia 30 päivän ajan. * Lisää OTL.txt -tiedoston sisältö seuraavaan viestiisi.
OTL Extras logfile created on: 8.11.2014 11:45:59 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jarppa\Desktop 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.17358) Locale: 0000040b | Country: Suomi | Language: FIN | Date Format: d.M.yyyy 3,98 Gb Total Physical Memory | 1,63 Gb Available Physical Memory | 40,98% Memory free 7,97 Gb Paging File | 5,33 Gb Available in Paging File | 66,86% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 458,95 Gb Total Space | 274,80 Gb Free Space | 59,88% Space Free | Partition Type: NTFS Drive D: | 459,27 Gb Total Space | 338,58 Gb Free Space | 73,72% Space Free | Partition Type: NTFS Computer Name: JARPPA-PC | User Name: Jarppa | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Extra Registry (SafeList) ========== ========== File Associations ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) ========== Shell Spawning ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. ========== Security Center Settings ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] ========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 ========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] ========== Vista Active Open Ports Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0A14872C-D103-4B8A-A32E-2FA7976A3447}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{15D9EF55-F7C9-434F-8898-21FFBB631EC2}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{1662E5F6-6271-4E60-AAD1-FC557AD6D787}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{1738EC95-A0C2-4683-9D05-9EF63775E8C0}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{1973CC73-61D3-4C3C-BAB7-1C1C0AF59F5D}" = rport=10243 | protocol=6 | dir=out | app=system | "{27389872-BEF8-455E-AAE9-9CF443936389}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{301A4BFD-F0FC-4D9E-9470-9122B7B288A2}" = lport=2869 | protocol=6 | dir=in | app=system | "{400B4906-6C88-4F4D-BC4D-436ACA201147}" = lport=137 | protocol=17 | dir=in | app=system | "{622B716A-FE6A-496D-9D79-5D1012F85F2F}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{707710F0-71CC-4BB1-9DF6-565768DB2A0F}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{76724E47-5A34-4B01-B599-AEEE2C14E1CF}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{7BD010C2-49AA-4534-AD18-92D51620702A}" = lport=10243 | protocol=6 | dir=in | app=system | "{84C498C7-6725-4C32-82FE-D99BF859572B}" = rport=139 | protocol=6 | dir=out | app=system | "{84F86FFE-F1F0-4318-BBC8-5824EE537BE7}" = lport=47984 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe | "{884602EC-5516-4005-A4FA-43B6E5ED9245}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{8D20D0D3-752F-4F2A-BEC6-7DC3612F20C7}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{939A7E9D-6AE3-42B6-9BB0-D9645731EEEA}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{B646CEC5-DBC1-4ABB-A479-9D226421102F}" = rport=138 | protocol=17 | dir=out | app=system | "{BD265D18-B3C8-4D3A-BC6B-BF1570B4BA00}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe | "{BFABD6A3-FBCC-4A3D-927F-EBE011A6E27B}" = lport=445 | protocol=6 | dir=in | app=system | "{C1E4249F-560F-416F-A93A-295A1C7EA7D2}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{C5DAC4C8-4BFD-4D40-89D7-D5590590B94E}" = rport=137 | protocol=17 | dir=out | app=system | "{CCBFA8E3-23C3-49FF-ABD6-738288D03CB4}" = rport=445 | protocol=6 | dir=out | app=system | "{D1DF0B19-9046-4A2D-8478-B905A8A6701D}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{D2A10009-DF50-4E12-8B7B-DDE266B2193F}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{D4DC9960-790C-42E4-BEEA-610FDB71048E}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{DFDFDDD1-028C-440B-A2C5-43B176D97B80}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{DFE8DC59-59E5-4318-89E6-D225B194CFA4}" = lport=139 | protocol=6 | dir=in | app=system | "{E2B43F55-988D-4EC0-87F3-65FBFBDA94AC}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{F32D6C91-EA22-4651-9132-D1C2D50E7F07}" = lport=138 | protocol=17 | dir=in | app=system | "{FE136034-FE80-4AA6-8D8C-783731AD9030}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | ========== Vista Active Application Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0439B6A5-69FA-4CFD-AAFD-20823397ECBA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{05EF5A9F-C65C-4960-A81F-9F5C881DE855}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{05FD7586-E7F1-4CB8-B457-7AC079A276CC}" = protocol=6 | dir=in | app=e:\routersetup\qiswizard.exe | "{063C14F2-8CA0-4E8A-B92F-2DA8154D7537}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{104C9DBF-7548-4DC1-B61F-32E4702F9005}" = protocol=17 | dir=in | app=c:\program files (x86)\asus\rt-n10e wireless router utilities\qiswizard.exe | "{217FCE06-715D-4E17-BF70-66A63832D93A}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{26393984-F142-41AC-91B2-18A994F7FADB}" = protocol=6 | dir=in | app=c:\program files (x86)\asus\rt-n10e wireless router utilities\qiswizard.exe | "{3B88CC4F-E9F9-439E-9BDF-0332C66421A9}" = protocol=17 | dir=in | app=c:\program files (x86)\asus\rt-n10e wireless router utilities\discovery.exe | "{3D80389A-5E31-4240-806D-115D4470A958}" = protocol=17 | dir=in | app=e:\routersetup\qiswizard.exe | "{4415B5BA-88FF-47E8-96B9-F611D275949A}" = protocol=17 | dir=in | app=c:\program files (x86)\asus\rt-n10e wireless router utilities\rescue.exe | "{48DDECB1-E224-42A6-A3DE-60EA55EF8C53}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{49B7CD39-E9E0-436F-AAF7-0D68241DBF95}" = protocol=6 | dir=in | app=c:\program files (x86)\asus\rt-n10e wireless router utilities\discovery.exe | "{4A0902EF-299F-47A3-B559-D4EE38BE52A4}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{5660D809-834F-4068-BA8C-9953B2043E94}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{59443C77-ECC6-4F68-9C9E-E053F46976FD}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{618F4CDB-7FD5-49A3-99E3-0BC72CAD9FB4}" = dir=in | app=c:\program files\hp\hp photosmart 5510 series\bin\devicesetup.exe | "{625FE970-6D0E-4AB8-B314-BFB4CC1C7CBD}" = protocol=6 | dir=in | app=c:\program files (x86)\asus\rt-n10e wireless router utilities\rescue.exe | "{6FA05ABB-0DFA-4CAE-A1C7-1E5A56E4BD55}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{79A14AD9-4E33-4498-9ABA-160CD0C5AC7F}" = dir=in | app=c:\program files\hp\hp photosmart 5510 series\bin\hpnetworkcommunicator.exe | "{801E383C-3406-4F8F-843D-E0EDE5B9D019}" = protocol=6 | dir=in | app=c:\program files (x86)\nero\nero blu-ray player\blu-rayplayer.exe | "{852ABDC2-C50C-4872-A448-FEDB0965769D}" = protocol=17 | dir=in | app=e:\routersetup\qiswizard.exe | "{99F0762B-BFAE-4EE3-B1B1-34E9C65ADE8F}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{9D21DF8C-1666-4138-B3A5-321AB4268BEF}" = protocol=6 | dir=in | app=c:\program files (x86)\asus\rt-n10e wireless router utilities\liveupdate.exe | "{AA2B7EFF-B8D4-4862-A76E-D126B1D3F3C1}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{AF9AB282-F9C0-4903-A801-2B0F0D368290}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{AFD27EA2-183F-4B38-9919-FA1ADCC2BB93}" = protocol=6 | dir=in | app=c:\program files (x86)\asus\rt-n10e wireless router utilities\rescue.exe | "{B13C219D-6BBD-454E-9B7B-94746CACEEFA}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{B59F0CB4-17DC-4FEC-9439-44F151B86BCB}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{B7515260-3039-4153-8445-2670CE0FA9E1}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{B94742AD-5E62-4D0A-BFDD-EE96CA82CE1C}" = protocol=17 | dir=in | app=c:\users\jarppa\appdata\roaming\utorrent\utorrent.exe | "{C0283FE0-121D-42E6-A4FC-2F44F32AC603}" = dir=in | app=c:\program files (x86)\acer arcade deluxe\playmovie\playmovie.exe | "{C2DD5301-50FB-44FD-8E19-E0A0C8E8E4AA}" = protocol=6 | dir=in | app=e:\routersetup\qiswizard.exe | "{C8DD4AD6-29A6-4849-AFE0-12D8AF83E57A}" = protocol=17 | dir=in | app=c:\program files (x86)\nero\nero blu-ray player\blu-rayplayer.exe | "{D1F7C9B9-47F0-4064-9765-AFEF1EC10DF5}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{D574A868-EFA6-4C02-99DA-9103A26DDE35}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{D589C664-DBF5-48D6-8A37-1CC80BD49174}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{D7387DA1-7781-47C7-9517-D5CD19FDBFD1}" = protocol=6 | dir=out | app=system | "{D836304D-83B5-47DF-AB4C-6BDAF86ED99A}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{DC30BA2F-C884-463B-9A35-3A083A8234C9}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{E1FC7373-88FF-402B-A322-11E13F025921}" = protocol=6 | dir=in | app=c:\users\jarppa\appdata\roaming\utorrent\utorrent.exe | "{E6D28590-F2A3-4C62-AB6D-A52064502034}" = dir=in | app=c:\program files (x86)\acer arcade deluxe\homemedia\homemedia.exe | "{EB84D3A1-FC30-47A5-95B2-8755989FE20D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{EBDD42C6-4F32-49A4-8980-F20EFAC2AA1B}" = dir=in | app=c:\program files (x86)\windows live\sync\windowslivesync.exe | "{EE279441-F626-4658-8060-211EA202CA09}" = dir=in | app=c:\program files (x86)\acer arcade deluxe\acer arcade deluxe\acer arcade deluxe.exe | "{EE9958E5-D624-4F07-918C-FF8B563F0BFC}" = protocol=17 | dir=in | app=c:\program files (x86)\asus\rt-n10e wireless router utilities\liveupdate.exe | "{F18323FE-9917-4616-BAA2-301285A23F2E}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{F4E2B9F8-3BDA-425A-8D38-B8A33F6F2736}" = dir=in | app=c:\program files (x86)\acer arcade deluxe\playmovie\pmvservice.exe | "{FA1D5F44-DD5B-45FE-9F82-9988A4AB2CC8}" = protocol=17 | dir=in | app=c:\program files (x86)\asus\rt-n10e wireless router utilities\rescue.exe | "TCP Query User{0646C834-1E2B-44D4-8A37-368EC55834C6}C:\program files (x86)\asus\rt-n10e wireless router utilities\liveupdate.exe" = protocol=6 | dir=in | app=c:\program files (x86)\asus\rt-n10e wireless router utilities\liveupdate.exe | "TCP Query User{07F03A09-CF70-446F-8078-455E4643E7EC}C:\program files (x86)\x-chat 2\xchat.exe" = protocol=6 | dir=in | app=c:\program files (x86)\x-chat 2\xchat.exe | "TCP Query User{0ED5906D-96C3-4F8A-80CC-9AE722EFF3DB}C:\users\jarppa\desktop\autogg_0.9.2_rev67_pack\autogg_0.9.2\common\xebuild.exe" = protocol=6 | dir=in | app=c:\users\jarppa\desktop\autogg_0.9.2_rev67_pack\autogg_0.9.2\common\xebuild.exe | "TCP Query User{4135E45B-93C7-4E6D-917E-5F520DFCF33B}C:\program files (x86)\dvbviewer\dvbviewer.exe" = protocol=6 | dir=in | app=c:\program files (x86)\dvbviewer\dvbviewer.exe | "TCP Query User{4428E433-B75C-408E-B2CA-4E60BA51CA12}C:\program files (x86)\asus\rt-n10e wireless router utilities\qiswizard.exe" = protocol=6 | dir=in | app=c:\program files (x86)\asus\rt-n10e wireless router utilities\qiswizard.exe | "TCP Query User{9E48D309-02E5-4100-A383-1D1F1025FE2F}C:\program files (x86)\virtualdj\virtualdj_pro.exe" = protocol=6 | dir=in | app=c:\program files (x86)\virtualdj\virtualdj_pro.exe | "TCP Query User{C87C3E38-CBD2-4DC1-92F5-0BAE12BC0A28}C:\program files (x86)\asus\rt-n10e wireless router utilities\discovery.exe" = protocol=6 | dir=in | app=c:\program files (x86)\asus\rt-n10e wireless router utilities\discovery.exe | "TCP Query User{D005C606-76F8-41C1-BC5F-BDF435584394}C:\program files (x86)\skype\phone\skype.exe" = protocol=6 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "TCP Query User{FD58ECA5-508F-4976-BE80-C366F684281C}C:\program files (x86)\x-chat 2\xchat.exe" = protocol=6 | dir=in | app=c:\program files (x86)\x-chat 2\xchat.exe | "UDP Query User{416506F2-9D32-47ED-9591-4D949F2E4338}C:\program files (x86)\skype\phone\skype.exe" = protocol=17 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "UDP Query User{63AF7E15-09A2-405F-9329-2E2A137F170F}C:\program files (x86)\virtualdj\virtualdj_pro.exe" = protocol=17 | dir=in | app=c:\program files (x86)\virtualdj\virtualdj_pro.exe | "UDP Query User{63BF5313-3C27-49D6-AF58-E727AB9093F4}C:\program files (x86)\asus\rt-n10e wireless router utilities\liveupdate.exe" = protocol=17 | dir=in | app=c:\program files (x86)\asus\rt-n10e wireless router utilities\liveupdate.exe | "UDP Query User{952B5598-F001-46E0-9ED9-B1E6223D83B6}C:\program files (x86)\asus\rt-n10e wireless router utilities\qiswizard.exe" = protocol=17 | dir=in | app=c:\program files (x86)\asus\rt-n10e wireless router utilities\qiswizard.exe | "UDP Query User{98247011-F395-4555-ADD1-C5E59ABFF02E}C:\program files (x86)\dvbviewer\dvbviewer.exe" = protocol=17 | dir=in | app=c:\program files (x86)\dvbviewer\dvbviewer.exe | "UDP Query User{B0F25849-24FD-4DD2-8A2A-5F910457942B}C:\program files (x86)\x-chat 2\xchat.exe" = protocol=17 | dir=in | app=c:\program files (x86)\x-chat 2\xchat.exe | "UDP Query User{B23DE68E-BD71-4381-8D26-F06522B4568E}C:\program files (x86)\x-chat 2\xchat.exe" = protocol=17 | dir=in | app=c:\program files (x86)\x-chat 2\xchat.exe | "UDP Query User{D056D5E6-905D-43DD-ABCE-12099A2D4D8F}C:\program files (x86)\asus\rt-n10e wireless router utilities\discovery.exe" = protocol=17 | dir=in | app=c:\program files (x86)\asus\rt-n10e wireless router utilities\discovery.exe | "UDP Query User{E97DC03C-5D38-409D-9C83-08850FC0F15C}C:\users\jarppa\desktop\autogg_0.9.2_rev67_pack\autogg_0.9.2\common\xebuild.exe" = protocol=17 | dir=in | app=c:\users\jarppa\desktop\autogg_0.9.2_rev67_pack\autogg_0.9.2\common\xebuild.exe | ========== HKEY_LOCAL_MACHINE Uninstall List ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{01D42BF0-ED08-463f-8A28-99EB6FEE962B}" = ZTE Handset USB Driver "{1C819A99-37D1-DE8C-68DF-3AEB5A2C9BE6}" = AMD Catalyst Install Manager "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{23F2C78C-E131-4CA0-8F84-3473FB7728BA}" = Microsoft Security Client "{25058321-C33E-496B-8915-6FD64D362CAF}" = Windows Live MIME IFilter "{2DF79A08-9BFB-3120-B62D-F7E489A984EE}" = Microsoft .NET Framework 4.5.1 (FIN) "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2007 "{90120000-002A-040B-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Finnish) 2007 "{90120000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007 "{9038319C-BD57-216C-6BF0-3C1D9DA25C24}" = AMD Fuel "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1035" = Microsoft .NET Framework 4.5.1 (suomi) "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 "{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA-ohjauspaneeli 340.52 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Grafiikkaohjain 340.52 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 2.1.2 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA-päivitykset 16.13.42 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService" = NVIDIA GeForce Experience Service "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA HD-ääniohjain 1.3.30.1 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 16.13.42 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController" = SHIELD Wireless Controller Driver "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.25 "{CE52672C-A0E9-4450-8875-88A221D5CD50}" = Windows Live ID Sign-in Assistant "{D2D77DC2-8299-11D1-8949-444553540000}_is1" = Handset USB Driver "{D649E37D-2A77-7356-5BBE-8DF9D3FBED18}" = ccc-utility64 "{D9C50188-12D5-4D3E-8F00-682346C2AA5F}" = Microsoft Xbox 360 Accessories 1.2 "{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64 "{F7803315-9424-4433-9DE8-94D8011D87D9}" = HP Photosmart 5510 series -peruslaiteohjelmisto "LSI Soft Modem" = LSI PCI-SV92PP Soft Modem "Microsoft Security Client" = Microsoft Security Essentials "Speccy" = Speccy "Unlocker" = Unlocker 1.9.2 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}" = Windows Live UX Platform "{04F1ADC6-54AA-47F5-94BF-643B649FF49A}" = Windows Live Writer Resources "{07AAB66E-4718-422D-9218-4AFB3C922A71}" = Photo Gallery "{0BE9E708-5DC0-4963-9CFD-0AA519090E79}" = Junk Mail filter update "{0CF7D22B-977C-43B2-9219-E03017FBAC6D}" = Nero Recode Help (CHM) "{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 "{13C96625-28E4-4c58-ADE0-CDAFC64752EB}" = JMicron 1394 Filter Driver "{15134cb0-b767-4960-a911-f2d16ae54797}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 "{15D967B5-A4BE-42AE-9E84-64CD062B25AA}" = eSobi v2 "{1700CB77-6F4A-CD00-CFCF-F23140F7A8B8}" = CCC Help Spanish "{175B10C0-E632-984B-D147-EBA55712B83E}" = AMD Catalyst Control Center "{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser "{1B6F5E51-575E-4693-BCA2-7543570D076D}" = Nero Kwik Themes Basic "{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}" = Windows Live Photo Common "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{22154f09-719a-4619-bb71-5b3356999fbf}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 "{23F20D12-1D01-4806-8AA8-AC79055109DE}" = VirtualDJ PRO Full "{2432E589-6256-4513-B0BF-EFA8E325D5F0}" = Nero SharedVideoCodecs "{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype™ 6.21 "{2637C347-9DAD-11D6-9EA2-00055D0CA761}" = Acer Arcade Deluxe "{26E474C7-E63A-4EC2-A08C-909B996AA75D}" = Movie Maker "{29F67D84-3A70-456E-806A-52301B02070B}" = Nero Effects Basic "{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 "{30075A70-B5D2-440B-AFA3-FB2021740121}" = Backup Manager Advance "{36DA8969-4DCD-48FF-894A-6BD3936050C3}" = Nero Blu-ray Player Help (CHM) "{3B27F4EF-23C4-4D9F-871C-B284E8CDA97A}" = Windows Live Sync "{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}" = Microsoft ASP.NET MVC 4 Runtime "{40E51513-D917-4563-84F6-4EF6ADD46E2F}" = Nero Recode "{41C61308-6CFD-4D54-AB6A-7136ED08A18E}" = Windows Live Communications Platform "{4A484403-A09E-26F1-0B9E-B3037A72E4FE}" = CCC Help Chinese Standard "{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}" = Google Earth Plug-in "{4CA46F9F-174C-4766-9EA2-2325DF414B9E}" = Nero Express Help (CHM) "{4DBF9CD9-3594-395F-B0BB-E6AB7ED817DC}" = CCC Help Korean "{511B5F54-CB1D-4F5B-BE0E-09B1D86BE586}" = Nero Video "{5446D3AF-B060-49B6-9535-F300E1532022}" = Nero Video Help (CHM) "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{57249CFD-11FC-444A-A1C7-9315CEECCC38}" = CCC Help German "{580CA891-08DB-4B6F-B0C1-DF1D149671D7}" = ASUS RT-N10E Wireless Router Utilities "{5909A89E-C97F-407C-AE2B-47BDED86BF5D}" = Prerequisite installer "{659CB81C-B54E-4DF1-B618-F35777393A54}" = Windows Live Installer "{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}" = Nero Update "{65FD10C6-0D53-4754-A4AA-AEFFA29E86CB}" = Windows Liven peruspaketti "{66B7053A-9FD2-4A23-DB1C-FB9CD69D4819}" = Catalyst Control Center InstallProxy "{68301905-2DEA-41CE-A4D4-E8B443B099BA}" = MyWinLocker "{6B59CE42-F89E-42B2-8B9F-3EC704EA53F9}" = Catalyst Control Center - Branding "{710023A1-ECDF-4E31-884C-CCA24D00A702}" = Windows Liven sähköposti "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{714E162E-CD4F-4F1B-8302-7F5179409C25}" = Windows Live Writer "{75CA8AAE-5346-4312-A9A8-5CF89955930F}" = Nero MediaHome Help (CHM) "{7BBAEC47-1CC0-4CB8-ADB4-531B78DBD1DD}" = Adobe AIR "{7D9EF8C1-1B76-44AF-A918-86CBA6FD24C8}" = Microsoft Works "{7F811A54-5A09-4579-90E1-C93498E230D9}" = Acer eRecovery Management "{80407BA7-7763-4395-AB98-5233F1B34E65}" = NVIDIA PhysX "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{85DF2EED-08BC-46FB-90DA-28B0D0A8E8A8}" = HP Update "{89748482-0886-A689-EBE6-FA7EBEFD8000}" = CCC Help Russian "{8A4A80C2-87B1-44FB-BC24-9168930EB150}" = RAIDXpert "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110 "{8ed9688e-4f79-4308-91ca-f1c37ca142b4}_is1" = Acer GameZone Console "{90120000-0015-040B-0000-0000000FF1CE}" = Microsoft Office Access MUI (Finnish) 2007 "{90120000-0015-040B-0000-0000000FF1CE}_OMUI.fi-fi_{FA5CC73F-DD50-44F9-9530-DCB3C4C453F1}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007 "{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-040B-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Finnish) 2007 "{90120000-0016-040B-0000-0000000FF1CE}_OMUI.fi-fi_{FA5CC73F-DD50-44F9-9530-DCB3C4C453F1}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0017-040B-0000-0000000FF1CE}" = Microsoft Office SharePoint Designer MUI (Finnish) 2007 "{90120000-0017-040B-0000-0000000FF1CE}_OMUI.fi-fi_{46E8EE25-8B2B-449A-8095-41EF377F8ACB}" = Microsoft Office SharePoint Designer 2007 Service Pack 3 (SP3) "{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007 "{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-040B-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Finnish) 2007 "{90120000-0018-040B-0000-0000000FF1CE}_OMUI.fi-fi_{FA5CC73F-DD50-44F9-9530-DCB3C4C453F1}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0019-040B-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Finnish) 2007 "{90120000-0019-040B-0000-0000000FF1CE}_OMUI.fi-fi_{FA5CC73F-DD50-44F9-9530-DCB3C4C453F1}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001A-040B-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Finnish) 2007 "{90120000-001A-040B-0000-0000000FF1CE}_OMUI.fi-fi_{FA5CC73F-DD50-44F9-9530-DCB3C4C453F1}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007 "{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-040B-0000-0000000FF1CE}" = Microsoft Office Word MUI (Finnish) 2007 "{90120000-001B-040B-0000-0000000FF1CE}_OMUI.fi-fi_{FA5CC73F-DD50-44F9-9530-DCB3C4C453F1}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_OMUI.fi-fi_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}_OMUI.fi-fi_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-040B-0000-0000000FF1CE}" = Microsoft Office Proof (Finnish) 2007 "{90120000-001F-040B-0000-0000000FF1CE}_OMUI.fi-fi_{C3B4672B-3FE7-4D6F-AFF3-80D290C1131E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007 "{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-041D-0000-0000000FF1CE}" = Microsoft Office Proof (Swedish) 2007 "{90120000-001F-041D-0000-0000000FF1CE}_OMUI.fi-fi_{4A960AFC-E28F-4233-953F-1903BE859B79}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007 "{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-0020-040B-0000-0000000FF1CE}" = 2007 Office Systemin yhteensopivuuspaketti "{90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002A-0409-1000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002A-040B-1000-0000000FF1CE}_OMUI.fi-fi_{B001E294-354F-45E2-B1CB-4C3AE5A8D01F}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007 "{90120000-002C-040B-0000-0000000FF1CE}" = Microsoft Office Proofing (Finnish) 2007 "{90120000-0044-040B-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Finnish) 2007 "{90120000-0044-040B-0000-0000000FF1CE}_OMUI.fi-fi_{FA5CC73F-DD50-44F9-9530-DCB3C4C453F1}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007 "{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-006E-040B-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Finnish) 2007 "{90120000-006E-040B-0000-0000000FF1CE}_OMUI.fi-fi_{B001E294-354F-45E2-B1CB-4C3AE5A8D01F}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007 "{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00A1-040B-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Finnish) 2007 "{90120000-00A1-040B-0000-0000000FF1CE}_OMUI.fi-fi_{FA5CC73F-DD50-44F9-9530-DCB3C4C453F1}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00BA-040B-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Finnish) 2007 "{90120000-00BA-040B-0000-0000000FF1CE}_OMUI.fi-fi_{FA5CC73F-DD50-44F9-9530-DCB3C4C453F1}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0100-040B-0000-0000000FF1CE}" = Microsoft Office O MUI (Finnish) 2007 "{90120000-0100-040B-0000-0000000FF1CE}_OMUI.fi-fi_{FA5CC73F-DD50-44F9-9530-DCB3C4C453F1}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0101-040B-0000-0000000FF1CE}" = Microsoft Office X MUI (Finnish) 2007 "{90120000-0101-040B-0000-0000000FF1CE}_OMUI.fi-fi_{FA5CC73F-DD50-44F9-9530-DCB3C4C453F1}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007 "{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0116-0409-1000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In "{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007 "{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{95120000-00AF-040B-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (Finnish) "{9926F263-65B9-5234-88F8-CB32CC2D4EFD}" = Catalyst Control Center Localization All "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A2FE691E-3F8E-4E30-AA7D-FF17AC77EA87}" = Nero Blu-ray Player "{A5457401-D56A-43F2-9524-78E54A7FC07A}" = SlimDrivers "{A7A0BF2E-31CC-49E3-9913-52C503EB969D}" = Nero Audio Pack 1 "{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{A98C00C0-7A86-D540-E130-4B5F7F77967F}" = CCC Help French "{ABC88553-8770-4B97-B43E-5A90647A5B63}" = Nero ControlCenter "{AC76BA86-7AD7-1033-7B44-AB0000000001}" = Adobe Reader XI (11.0.09) "{ACE49D50-19CD-44A6-B192-46F985283B26}" = Nero PiP Effects Basic "{B0679BC6-29A6-1AF7-FC70-F9B03A3807CE}" = CCC Help Chinese Traditional "{B166374C-105E-445E-8E5D-A86CA5742645}" = Nero Burning Core "{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}" = Windows Live PIMT Platform "{B315ABA6-8217-484E-9AC5-38806E265664}" = Valokuvavalikoima "{B3DAF54F-DB25-4586-9EF1-96D24BB14088}" = Windows Movie Maker 2.6 "{B4C88CF0-B617-4658-8F84-C4E847FBC9F7}" = Microsoft Managed DirectX (1126) "{B775C26B-EAA8-4A11-ACBF-76E52DF6B805}" = Windows Live Mail "{B791E0AB-87A9-41A4-8D98-D13C2E37D928}" = Nero Info "{BEBEE34D-84A2-4EDD-8BEA-96CC54371263}" = Nero Core Components "{BEEBDEDF-1FEF-43D1-825C-B045FFC5F184}" = Photo Common "{C03E2FB3-250B-44A1-8B9E-61DFCD544133}" = Nero Disc to Device "{CC4D98F2-CC8E-9C2D-AEAD-43FC9A6DB188}" = CCC Help Japanese "{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}" = Windows Live SOXE "{CDFE8F95-F80F-4115-9C3F-0E1FD8F9F58C}" = Nero ControlCenter Help (CHM) "{ce085a78-074e-4823-8dc1-8a721b94b76d}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 "{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64 "{D1893000-EA77-493C-8DDD-E262436E959B}" = Windows Live SOXE Definitions "{D5115C78-2D22-4668-A5E2-6C87DED3ED1B}" = Nero Launcher "{DD67BE4B-7E62-4215-AFA3-F123A800A389}" = Movie Maker "{E02964EA-0E1B-4620-A26E-CBAB0341B1BB}" = HP Photosmart 5510 series Ohje "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E0B3E395-2ACC-A9B6-4943-9814448D018C}" = CCC Help Italian "{E17BCB76-9924-4BD5-B6D6-50D3407B4E74}" = Nero Disc Menus Basic "{E18F5C38-A4C9-437A-A65A-4F1BD5056CD1}" = Windows Live UX Platform Language Pack "{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}" = Microsoft Office Suite Activation Assistant "{ED7943A4-2FF0-4096-BBEA-DE3CC206E3D4}" = Nero Express "{EE171732-BEB4-4576-887D-CB62727F01CA}" = Acer Updater "{EF262F3B-11B7-66E4-82EB-EDDEF07F89EF}" = CCC Help English "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F384C1E1-3A16-4073-95C3-7271FE0ED4C2}" = Nero 2014 "{F69D4104-5394-4F7C-801C-D96DC92E7F69}" = Nero RescueAgent Help (CHM) "{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 "{FA78CC15-9F90-443B-BA61-A66595F06432}" = Nero Burning ROM Help (CHM) "{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 "Acer Registration" = Acer Registration "Acer Screensaver" = Acer ScreenSaver "Acer Welcome Center" = Welcome Center "Adobe Flash Player ActiveX" = Adobe Flash Player 15 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 15 Plugin "Advanced SystemCare 7_is1" = Advanced SystemCare 7 "BSPlayerp" = BS.Player PRO "DAEMON Tools Lite" = DAEMON Tools Lite "FileHippo.com" = FileHippo App Manager "HOMESTUDENTR" = Microsoft Office Home and Student 2007 "Hotkey Utility" = Hotkey Utility "Identity Card" = Identity Card "InstallShield_{15D967B5-A4BE-42AE-9E84-64CD062B25AA}" = eSobi v2 "InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}" = Acer Arcade Deluxe "InstallShield_{30075A70-B5D2-440B-AFA3-FB2021740121}" = Acer Backup Manager "InstallShield_{8A4A80C2-87B1-44FB-BC24-9168930EB150}" = RAIDXpert "IObitUninstall" = IObit Uninstaller "Marvell Miniport Driver" = Marvell Miniport Driver "Mozilla Firefox 34.0 (x86 fi)" = Mozilla Firefox 34.0 (x86 fi) "MozillaMaintenanceService" = Mozilla Maintenance Service "Murdered Soul Suspect_is1" = Murdered Soul Suspect "OMUI.fi-fi" = Microsoft Office Language Pack 2007 - Finnish/suomi "QuicktimeAlt_is1" = QuickTime Alternative 3.2.2 "TVEpaDrv" = HiVision DVB-T Hybrid BDA Drivers "WinLiveSuite" = Windows Liven peruspaketti "X-Chat 2_is1" = X-Chat 2.8.6-2 ========== HKEY_CURRENT_USER Uninstall List ========== [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "uTorrent" = µTorrent ========== Last 20 Event Log Errors ========== [ Application Events ] Error - 7.11.2014 8:02:03 | Computer Name = Jarppa-PC | Source = Windows Search Service | ID = 7040 Description = Error - 7.11.2014 8:02:03 | Computer Name = Jarppa-PC | Source = Windows Search Service | ID = 7042 Description = Error - 7.11.2014 8:02:03 | Computer Name = Jarppa-PC | Source = Windows Search Service | ID = 9002 Description = Error - 7.11.2014 8:02:03 | Computer Name = Jarppa-PC | Source = Windows Search Service | ID = 3029 Description = Error - 7.11.2014 8:02:03 | Computer Name = Jarppa-PC | Source = Windows Search Service | ID = 3029 Description = Error - 7.11.2014 8:02:03 | Computer Name = Jarppa-PC | Source = Windows Search Service | ID = 3028 Description = Error - 7.11.2014 8:02:03 | Computer Name = Jarppa-PC | Source = Windows Search Service | ID = 3058 Description = Error - 7.11.2014 8:02:03 | Computer Name = Jarppa-PC | Source = Windows Search Service | ID = 7010 Description = Error - 7.11.2014 9:09:41 | Computer Name = Jarppa-PC | Source = System Restore | ID = 8206 Description = Error - 8.11.2014 2:59:15 | Computer Name = Jarppa-PC | Source = Application Error | ID = 1000 Description = Viallisen sovelluksen nimi: svchost.exe_stisvc, versio: 6.1.7600.16385, aikaleima: 0x4a5bc3c1 Viallisen moduulin nimi: wiaservc.dll, versio: 6.1.7601.17514, aikaleima: 0x4ce7ca0f Poikkeuskoodi: 0x40000015 Virhepoikkeama: 0x0000000000047a6b Viallisen prosessin tunnus: 0xb30 Viallisen sovelluksen käynnistysaika: 0x01cffb217d0f3fee Viallisen sovelluksen polku: C:\Windows\system32\svchost.exe Viallisen moduulin polku: c:\windows\system32\wiaservc.dll Raportin tunnus: bfe61f0b-6714-11e4-9757-90fba64b2d3b [ System Events ] Error - 19.10.2014 2:23:28 | Computer Name = Jarppa-PC | Source = Service Control Manager | ID = 7001 Description = Palvelu Kotiryhmäpalvelu on riippuvainen palvelusta Toiminnonetsintäpalvelun isäntä, jonka käynnistyminen epäonnistui virheen vuoksi: %%1058 Error - 19.10.2014 2:24:21 | Computer Name = Jarppa-PC | Source = Service Control Manager | ID = 7001 Description = Palvelu Kotiryhmäpalvelu on riippuvainen palvelusta Toiminnonetsintäpalvelun isäntä, jonka käynnistyminen epäonnistui virheen vuoksi: %%1058 Error - 19.10.2014 3:04:32 | Computer Name = Jarppa-PC | Source = Service Control Manager | ID = 7001 Description = Palvelu Kotiryhmäpalvelu on riippuvainen palvelusta Toiminnonetsintäpalvelun isäntä, jonka käynnistyminen epäonnistui virheen vuoksi: %%1058 Error - 19.10.2014 12:40:08 | Computer Name = Jarppa-PC | Source = Service Control Manager | ID = 7001 Description = Palvelu Kotiryhmäpalvelu on riippuvainen palvelusta Toiminnonetsintäpalvelun isäntä, jonka käynnistyminen epäonnistui virheen vuoksi: %%1058 Error - 20.10.2014 1:46:21 | Computer Name = Jarppa-PC | Source = volmgr | ID = 262190 Description = Kaatumisvedoksen valmistelu epäonnistui. Error - 20.10.2014 1:47:04 | Computer Name = Jarppa-PC | Source = Service Control Manager | ID = 7009 Description = Aikakatkaisu (30000 millisekuntia) odotettaessa Microsoft Antimalware Service-palvelun yhteyden muodostusta. Error - 20.10.2014 1:47:04 | Computer Name = Jarppa-PC | Source = Service Control Manager | ID = 7000 Description = Palvelua Microsoft Antimalware Service ei voi käynnistää. Virhekoodi on %%1053 Error - 20.10.2014 1:47:06 | Computer Name = Jarppa-PC | Source = Service Control Manager | ID = 7001 Description = Palvelu Kotiryhmäpalvelu on riippuvainen palvelusta Toiminnonetsintäpalvelun isäntä, jonka käynnistyminen epäonnistui virheen vuoksi: %%1058 Error - 20.10.2014 1:47:30 | Computer Name = Jarppa-PC | Source = Service Control Manager | ID = 7001 Description = Palvelu Kotiryhmäpalvelu on riippuvainen palvelusta Toiminnonetsintäpalvelun isäntä, jonka käynnistyminen epäonnistui virheen vuoksi: %%1058 Error - 20.10.2014 7:04:38 | Computer Name = Jarppa-PC | Source = Service Control Manager | ID = 7001 Description = Palvelu Kotiryhmäpalvelu on riippuvainen palvelusta Toiminnonetsintäpalvelun isäntä, jonka käynnistyminen epäonnistui virheen vuoksi: %%1058 < End of report >
OTL logfile created on: 8.11.2014 11:45:59 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Jarppa\Desktop 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.17358) Locale: 0000040b | Country: Suomi | Language: FIN | Date Format: d.M.yyyy 3,98 Gb Total Physical Memory | 1,63 Gb Available Physical Memory | 40,98% Memory free 7,97 Gb Paging File | 5,33 Gb Available in Paging File | 66,86% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 458,95 Gb Total Space | 274,80 Gb Free Space | 59,88% Space Free | Partition Type: NTFS Drive D: | 459,27 Gb Total Space | 338,58 Gb Free Space | 73,72% Space Free | Partition Type: NTFS Computer Name: JARPPA-PC | User Name: Jarppa | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - [2014.11.08 11:45:29 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Jarppa\Desktop\OTL.exe PRC - [2014.11.07 21:27:37 | 000,337,520 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe PRC - [2014.09.17 04:15:08 | 002,460,488 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe PRC - [2014.09.17 04:14:57 | 001,795,912 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe PRC - [2014.09.12 11:43:06 | 000,064,704 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe PRC - [2013.12.18 16:55:24 | 002,285,344 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe PRC - [2013.12.09 14:01:58 | 000,881,440 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe PRC - [2013.07.18 15:39:40 | 000,762,192 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Nero\Update\NASvc.exe PRC - [2013.03.19 15:16:32 | 000,073,728 | ---- | M] (AMD) -- C:\Program Files (x86)\AMD\RAIDXpert\bin\RAIDXpert.exe PRC - [2013.03.19 15:16:28 | 000,139,264 | ---- | M] (AMD) -- C:\Windows\SysWOW64\WinMsgBalloonClient.exe PRC - [2013.03.19 15:16:28 | 000,122,880 | ---- | M] (AMD) -- C:\Windows\SysWOW64\WinMsgBalloonServer.exe PRC - [2013.03.19 15:16:28 | 000,081,920 | ---- | M] (AMD) -- C:\Program Files (x86)\AMD\RAIDXpert\bin\RAIDXpertService.exe PRC - [2009.08.13 00:04:44 | 000,062,208 | ---- | M] (NewTech Infosystems, Inc.) -- C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe ========== Modules (No Company Name) ========== MOD - [2014.11.07 21:27:35 | 003,757,680 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll MOD - [2014.10.15 09:57:45 | 012,435,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\1453d9e9a4989833ef3db4b22549ba1a\System.Windows.Forms.ni.dll MOD - [2014.10.15 09:57:38 | 001,593,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\836e10dfd0811b303553216f5cb092ef\System.Drawing.ni.dll MOD - [2014.10.15 09:57:33 | 005,467,648 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\2cf12fa95900b4488a6cb9e4aac51c5c\System.Xml.ni.dll MOD - [2014.10.15 09:57:29 | 000,978,432 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\237d509a79aeef6e4635b09450d98f2a\System.Configuration.ni.dll MOD - [2014.10.15 09:57:15 | 007,991,808 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\908ba9e296e92b4e14bdc2437edac603\System.ni.dll MOD - [2014.09.11 07:53:21 | 000,025,600 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\Accessibility\0483c93466914f3fbd5b44454b0c8a98\Accessibility.ni.dll MOD - [2014.09.11 07:52:39 | 011,497,984 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dll MOD - [2014.03.31 20:35:26 | 000,278,208 | ---- | M] () -- C:\Program Files (x86)\Windows Live\Writer\fi\WindowsLive.Writer.Localization.resources.dll MOD - [2013.01.15 17:47:56 | 000,893,248 | ---- | M] () -- C:\Program Files (x86)\IObit\Advanced SystemCare 7\webres.dll ========== Services (SafeList) ========== SRV:64bit: - [2014.09.19 03:25:49 | 000,111,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService) SRV:64bit: - [2014.09.17 04:14:56 | 001,148,744 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe -- (GfExperienceService) SRV:64bit: - [2014.09.17 04:14:52 | 019,439,944 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe -- (NvStreamSvc) SRV:64bit: - [2014.08.22 14:14:34 | 000,368,624 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv) SRV:64bit: - [2014.08.22 14:14:34 | 000,023,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc) SRV:64bit: - [2014.08.19 21:51:04 | 000,344,064 | ---- | M] (Advanced Micro Devices, Inc.) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service) SRV:64bit: - [2013.05.27 07:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV:64bit: - [2009.07.04 03:47:12 | 000,240,160 | ---- | M] (Acer) [Disabled | Stopped] -- C:\Program Files\Acer\Acer Updater\UpdaterService.exe -- (Updater Service) SRV - [2014.11.07 21:27:36 | 000,114,800 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2014.11.07 19:11:30 | 000,267,440 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2014.09.17 04:14:57 | 001,795,912 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe -- (NvNetworkService) SRV - [2014.09.12 11:43:06 | 000,064,704 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice) SRV - [2014.05.04 15:37:30 | 002,152,736 | ---- | M] (IObit) [Auto | Stopped] -- C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe -- (LiveUpdateSvc) SRV - [2014.03.21 00:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) SRV - [2013.12.09 14:01:58 | 000,881,440 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe -- (AdvancedSystemCareService7) SRV - [2013.09.11 20:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32) SRV - [2013.07.18 15:39:40 | 000,762,192 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files (x86)\Nero\Update\NASvc.exe -- (NAUpdate) SRV - [2013.03.19 15:16:28 | 000,081,920 | ---- | M] (AMD) [Auto | Running] -- C:\Program Files (x86)\AMD\RAIDXpert\bin\RAIDXpertService.exe -- (AMD_RAIDXpert) SRV - [2009.09.10 15:42:46 | 000,305,448 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe -- (MWLService) SRV - [2009.08.28 11:38:58 | 001,150,496 | ---- | M] (Acer Incorporated) [Disabled | Stopped] -- C:\Program Files (x86)\Acer\Registration\GregHSRW.exe -- (Greg_Service) SRV - [2009.08.13 00:04:44 | 000,062,208 | ---- | M] (NewTech Infosystems, Inc.) [Auto | Running] -- C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe -- (NTI IScheduleSvc) ========== Driver Services (SafeList) ========== DRV:64bit: - [2014.11.05 21:45:03 | 000,015,008 | ---- | M] (Highresolution Enterprises [www.highrez.co.uk]) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\inpoutx64.sys -- (inpoutx64) DRV:64bit: - [2014.09.17 04:14:52 | 000,019,272 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys -- (NvStreamKms) DRV:64bit: - [2014.09.04 21:14:38 | 000,038,048 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvvad64v.sys -- (nvvad_WaveExtensible) DRV:64bit: - [2014.07.17 17:05:06 | 000,125,584 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv) DRV:64bit: - [2014.06.28 19:22:27 | 000,082,048 | ---- | M] (VSO Software) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pcouffin64a.sys -- (Pcouffin64) DRV:64bit: - [2014.06.15 08:58:56 | 000,283,064 | ---- | M] (Disc Soft Ltd) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01) DRV:64bit: - [2014.05.20 04:44:03 | 000,197,408 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA) DRV:64bit: - [2014.03.19 02:24:44 | 000,111,896 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LMouKE.Sys -- (LMouKE) DRV:64bit: - [2014.03.19 02:24:40 | 000,059,160 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LMouFilt.Sys -- (LMouFilt) DRV:64bit: - [2014.03.19 02:24:38 | 000,076,568 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LHidFilt.Sys -- (LHidFilt) DRV:64bit: - [2014.03.19 02:24:36 | 000,013,080 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LHidEqd.sys -- (LHidEqd) DRV:64bit: - [2014.03.19 02:24:34 | 000,077,592 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LEqdUsb.sys -- (LEqdUsb) DRV:64bit: - [2014.03.19 02:24:28 | 000,089,368 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\L8042mou.Sys -- (L8042mou) DRV:64bit: - [2014.03.19 02:24:28 | 000,030,488 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\L8042Kbd.sys -- (L8042Kbd) DRV:64bit: - [2014.02.11 16:36:52 | 000,059,616 | ---- | M] (Advanced Micro Devices) [Kernel | Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys -- (AODDriver4.3) DRV:64bit: - [2013.10.02 04:22:20 | 000,056,832 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt) DRV:64bit: - [2012.08.23 16:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport) DRV:64bit: - [2012.06.08 14:29:26 | 000,131,080 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\zghsmdm.sys -- (zghsmdm) DRV:64bit: - [2012.06.08 14:29:22 | 000,020,232 | ---- | M] (HandSet Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\massfilter_hs.sys -- (massfilter_hs) DRV:64bit: - [2012.03.27 16:48:00 | 000,398,112 | ---- | M] (Marvell) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7) DRV:64bit: - [2012.03.01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec) DRV:64bit: - [2011.03.11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata) DRV:64bit: - [2011.03.11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata) DRV:64bit: - [2010.11.20 15:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD) DRV:64bit: - [2010.09.07 08:27:24 | 000,038,912 | R--- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\PcaSp60.sys -- (PcaSp60) DRV:64bit: - [2010.07.01 19:11:24 | 000,012,352 | ---- | M] () [Kernel | "Start" not found. | Unknown] -- C:\Program Files\Unlocker\UnlockerDriver5.sys -- (UnlockerDriver5) DRV:64bit: - [2009.08.21 00:52:10 | 000,079,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\xusb21.sys -- (xusb21) DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs) DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2) DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor) DRV:64bit: - [2009.07.14 02:35:32 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\serscan.sys -- (StillCam) DRV:64bit: - [2009.07.13 23:59:33 | 005,020,672 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag) DRV:64bit: - [2009.06.11 07:34:38 | 001,208,320 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\agrsm64.sys -- (AgereSoftModem) DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv) DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv) DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a) DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir) DRV:64bit: - [2009.06.02 13:15:30 | 000,060,464 | ---- | M] (Egis Technology Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\mwlPSDVDisk.sys -- (mwlPSDVDisk) DRV:64bit: - [2009.06.02 13:15:30 | 000,022,576 | ---- | M] (Egis Technology Inc.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\mwlPSDFilter.sys -- (mwlPSDFilter) DRV:64bit: - [2009.06.02 13:15:30 | 000,020,016 | ---- | M] (Egis Technology Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\mwlPSDNserv.sys -- (mwlPSDNServ) DRV:64bit: - [2009.05.06 01:46:08 | 000,018,432 | ---- | M] (NewTech Infosystems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NTIDrvr.sys -- (NTIDrvr) DRV:64bit: - [2009.05.06 01:46:08 | 000,016,896 | ---- | M] (NewTech Infosystems Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\UBHelper.sys -- (UBHelper) DRV:64bit: - [2009.05.04 18:30:28 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie.sys -- (AtiPcie) DRV:64bit: - [2008.09.12 13:21:38 | 000,651,776 | ---- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\emBDA64.sys -- (USB28xxBGA) DRV:64bit: - [2008.09.12 13:21:00 | 000,539,520 | ---- | M] (eMPIA Technology, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\emOEM64.sys -- (USB28xxOEM) DRV:64bit: - [2000.01.01 02:00:00 | 000,060,640 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbfilter.sys -- (usbfilter) DRV:64bit: - [2000.01.01 02:00:00 | 000,026,208 | ---- | M] (JMicron Technology Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\johci.sys -- (johci) DRV - [2010.09.07 08:27:24 | 000,038,912 | R--- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\PcaSp60.sys -- (PcaSp60) DRV - [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE:64bit: - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={sea...putEncoding}&oe={outputEncoding}&sourceid=ie7 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKLM\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" = http://www.google.com/search?source...nputEncoding}&oe={outputEncoding}&rlz=1I7ACAW IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={sea...putEncoding}&oe={outputEncoding}&sourceid=ie7 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com IE - HKCU\..\SearchScopes,DefaultScope = IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC IE - HKCU\..\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64}: "URL" = http://www.google.com/search?source...ding}&oe={outputEncoding}&rlz=1I7ACAW_fiFI590 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:34.0 FF - user.js - File not found FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_222.dll File not found FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_222.dll () FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 34.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 34.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2014.08.08 21:07:33 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jarppa\AppData\Roaming\mozilla\Extensions [2014.11.07 13:19:50 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jarppa\AppData\Roaming\mozilla\Firefox\Profiles\u1u39uet.default-1413136271523\extensions [2014.11.03 11:06:40 | 000,979,610 | ---- | M] () (No name found) -- C:\Users\Jarppa\AppData\Roaming\mozilla\firefox\profiles\u1u39uet.default-1413136271523\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014.11.07 21:27:30 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions [2014.11.07 21:27:30 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ========== Chrome ========== CHR - default_search_provider: Google (Enabled) CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{googleriginalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{googlemniboxStartMarginParameter}ie={inputEncoding} CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:currentPageUrl}{googleageClassification}sugkey={google:suggestAPIKeyParameter}, CHR - homepage:
CHR - plugin: Error reading preferences file CHR - Extension: Google-dokumentit = C:\Users\Jarppa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\ CHR - Extension: Google Drive = C:\Users\Jarppa\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\ CHR - Extension: APP = C:\Users\Jarppa\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbmegnmpleoagolcnjnejdacakedpcgd\1.0.0_0\ CHR - Extension: YouTube = C:\Users\Jarppa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\ CHR - Extension: Google-haku = C:\Users\Jarppa\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\ CHR - Extension: WGT Golf Challenge = C:\Users\Jarppa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcilimldmomiaihcfkmaldanopfejefg\45.0.0_0\ CHR - Extension: AdBlock = C:\Users\Jarppa\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.1_0\ CHR - Extension: Myymälä = C:\Users\Jarppa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd\1.0.0_0\ CHR - Extension: Google Wallet = C:\Users\Jarppa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\ CHR - Extension: Gmail = C:\Users\Jarppa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\ O1 HOSTS File: ([2014.10.11 11:15:28 | 000,000,849 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O2:64bit: - BHO: (ExplorerWnd Helper) - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit) O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found. O4:64bit: - HKLM..\Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation) O4:64bit: - HKLM..\Run: [NvBackend] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) O4 - HKCU..\Run: [Advanced SystemCare 7] C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe (IObit) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O1364bit: - gopher Prefix: missing O13 - gopher Prefix: missing O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1A9D124B-391B-4D09-9313-EC1F1AFBD2BC}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1A9D124B-391B-4D09-9313-EC1F1AFBD2BC}: NameServer = 109.204.194.2,109.204.194.3 O18:64bit: - Protocol\Handler\ms-help - No CLSID value found O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found O18:64bit: - Protocol\Handler\wlpg - No CLSID value found O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation) O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O27:64bit: - HKLM IFEO\GREG.exe: Debugger - C:\Program Files (x86)\IObit\Advanced SystemCare 7\AutoReactivator.exe (IObit) O27:64bit: - HKLM IFEO\GregHSRW.exe: Debugger - C:\Program Files (x86)\IObit\Advanced SystemCare 7\AutoReactivator.exe (IObit) O27 - HKLM IFEO\GREG.exe: Debugger - C:\Program Files (x86)\IObit\Advanced SystemCare 7\AutoReactivator.exe (IObit) O27 - HKLM IFEO\GregHSRW.exe: Debugger - C:\Program Files (x86)\IObit\Advanced SystemCare 7\AutoReactivator.exe (IObit) O32 - HKLM CDRom: AutoRun - 1 O33 - MountPoints2\{24346823-5b6b-11e4-9982-90fba64b2d3b}\Shell - "" = AutoRun O33 - MountPoints2\{24346823-5b6b-11e4-9982-90fba64b2d3b}\Shell\AutoRun\command - "" = K:\AutoRun.exe {D2D77DC2-8299-11D1-8949-444553540000} 5.2066.1.A14B04 PID_0083 {01D42BF0-ED08-463f-8A28-99EB6FEE962B} O33 - MountPoints2\{e1a2844d-e887-11e3-b721-90fba64b2d3b}\Shell - "" = AutoRun O33 - MountPoints2\K\Shell - "" = AutoRun O34 - HKLM BootExecute: (autocheck autochk *) O35:64bit: - HKLM\..comfile [open] -- "%1" %* O35:64bit: - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %* O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) ========== Files/Folders - Created Within 30 Days ========== [2014.11.08 11:45:26 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Jarppa\Desktop\OTL.exe [2014.11.08 09:08:40 | 000,536,576 | ---- | C] (SQLite Development Team) -- C:\Windows\SysWow64\sqlite3.dll [2014.11.08 09:05:34 | 000,000,000 | ---D | C] -- C:\AdwCleaner [2014.11.07 22:35:53 | 000,000,000 | ---D | C] -- C:\Users\Jarppa\Desktop\Torrentlataukset [2014.11.07 21:27:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox [2014.11.05 23:25:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service [2014.11.05 22:27:06 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_7.dll [2014.11.05 22:27:06 | 000,518,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_7.dll [2014.11.05 22:27:06 | 000,077,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_5.dll [2014.11.05 22:27:06 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_5.dll [2014.11.05 22:27:04 | 002,526,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_43.dll [2014.11.05 22:27:04 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_43.dll [2014.11.05 22:27:04 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx11_43.dll [2014.11.05 22:27:04 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_43.dll [2014.11.05 22:26:46 | 000,523,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_42.dll [2014.11.05 22:26:46 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_42.dll [2014.11.05 22:26:23 | 004,398,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_32.dll [2014.11.05 22:26:23 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_32.dll [2014.11.05 21:45:03 | 000,015,008 | ---- | C] (Highresolution Enterprises [www.highrez.co.uk]) -- C:\Windows\SysNative\drivers\inpoutx64.sys [2014.11.05 18:43:44 | 000,000,000 | ---D | C] -- C:\Users\Jarppa\AppData\Local\Microsoft_Corporation [2014.11.05 18:39:49 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\xuninst.exe [2014.11.03 22:28:58 | 000,000,000 | ---D | C] -- C:\Users\Jarppa\AppData\Local\Daring_Development_Inc [2014.11.03 21:31:56 | 000,000,000 | ---D | C] -- C:\Users\Jarppa\AppData\Roaming\FileZilla [2014.11.01 21:30:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime Alternative [2014.11.01 21:30:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer [2014.11.01 21:29:58 | 000,180,224 | ---- | C] (Apple Inc.) -- C:\Windows\SysWow64\QTCF.dll [2014.11.01 21:29:58 | 000,094,208 | ---- | C] (Apple Inc.) -- C:\Windows\SysWow64\QuickTimeVR.qtx [2014.11.01 21:29:58 | 000,069,632 | ---- | C] (Apple Inc.) -- C:\Windows\SysWow64\QuickTime.qts [2014.11.01 21:29:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\QuickTime Alternative [2014.10.30 22:18:59 | 000,000,000 | ---D | C] -- C:\Users\Jarppa\AppData\Roaming\InstallShield [2014.10.24 21:35:24 | 000,000,000 | ---D | C] -- C:\Users\Jarppa\.android [2014.10.24 21:35:00 | 000,165,128 | ---- | C] (ZTE Incorporated) -- C:\Windows\SysNative\drivers\zghsnet.sys [2014.10.24 21:35:00 | 000,131,080 | ---- | C] (ZTE Incorporated) -- C:\Windows\SysNative\drivers\zghsvousb.sys [2014.10.24 21:35:00 | 000,131,080 | ---- | C] (ZTE Incorporated) -- C:\Windows\SysNative\drivers\zghstrace.sys [2014.10.24 21:35:00 | 000,131,080 | ---- | C] (ZTE Incorporated) -- C:\Windows\SysNative\drivers\zghsnmea.sys [2014.10.24 21:35:00 | 000,131,080 | ---- | C] (ZTE Incorporated) -- C:\Windows\SysNative\drivers\zghsmdm.sys [2014.10.24 21:35:00 | 000,131,080 | ---- | C] (ZTE Incorporated) -- C:\Windows\SysNative\drivers\zghsdiagmdm.sys [2014.10.24 21:35:00 | 000,131,080 | ---- | C] (ZTE Incorporated) -- C:\Windows\SysNative\drivers\zghsdiag.sys [2014.10.24 21:35:00 | 000,131,080 | ---- | C] (ZTE Incorporated) -- C:\Windows\SysNative\drivers\zghsat.sys [2014.10.24 21:35:00 | 000,130,952 | ---- | C] (HS Incorporated) -- C:\Windows\SysNative\drivers\ghsnmea.sys [2014.10.24 21:35:00 | 000,130,952 | ---- | C] (HS Incorporated) -- C:\Windows\SysNative\drivers\ghsmdm.sys [2014.10.24 21:35:00 | 000,130,952 | ---- | C] (HS Incorporated) -- C:\Windows\SysNative\drivers\ghsdiagMDM.sys [2014.10.24 21:35:00 | 000,130,952 | ---- | C] (HS Incorporated) -- C:\Windows\SysNative\drivers\ghsdiagAP.sys [2014.10.24 21:35:00 | 000,130,952 | ---- | C] (HS Incorporated) -- C:\Windows\SysNative\drivers\ghsat.sys [2014.10.24 21:35:00 | 000,041,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\zghsvcom.sys [2014.10.24 21:35:00 | 000,020,232 | ---- | C] (HandSet Incorporated) -- C:\Windows\SysNative\drivers\massfilter_hs.sys [2014.10.24 21:34:58 | 001,002,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinUSBCoInstaller2.dll [2014.10.24 21:34:57 | 001,721,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WdfCoInstaller01009.dll [2014.10.24 21:34:57 | 000,102,936 | ---- | C] (Google, inc) -- C:\Windows\AdbWinApi.dll [2014.10.24 21:34:57 | 000,067,608 | ---- | C] (Google, inc) -- C:\Windows\AdbWinUsbApi.dll [2014.10.24 21:34:56 | 000,000,000 | ---D | C] -- C:\Program Files\Handset_USB_Driver [2014.10.17 09:07:07 | 000,000,000 | ---D | C] -- C:\ProgramData\IsolatedStorage [2014.10.15 09:32:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft ASP.NET [2014.10.15 09:27:27 | 000,276,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\generaltel.dll [2014.10.15 09:27:26 | 000,507,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll [2014.10.15 09:27:26 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll [2014.10.15 09:27:25 | 001,943,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dfshim.dll [2014.10.15 09:27:25 | 001,131,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfshim.dll [2014.10.15 09:27:25 | 000,156,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscorier.dll [2014.10.15 09:27:25 | 000,156,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mscorier.dll [2014.10.15 09:27:24 | 000,081,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscories.dll [2014.10.15 09:27:24 | 000,073,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mscories.dll [2014.10.15 09:27:20 | 003,179,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorets.dll [2014.10.15 09:27:16 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll [2014.10.15 09:27:15 | 000,710,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe [2014.10.15 09:27:15 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll [2014.10.15 09:27:15 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll [2014.10.15 09:27:15 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll [2014.10.15 09:27:15 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll [2014.10.15 09:27:14 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll [2014.10.15 09:27:14 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll [2014.10.15 09:27:14 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll [2014.10.15 09:27:12 | 002,017,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl [2014.10.15 09:27:12 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll [2014.10.15 09:27:11 | 000,446,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll [2014.10.15 09:27:11 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe [2014.10.15 09:27:11 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll [2014.10.15 09:27:10 | 000,731,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll [2014.10.15 09:27:10 | 000,440,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll [2014.10.15 09:27:09 | 002,108,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl [2014.10.15 09:27:09 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll [2014.10.15 09:27:08 | 001,068,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll [2014.10.15 09:27:08 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe [2014.10.15 09:27:07 | 000,678,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll [2014.10.15 09:27:07 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll [2014.10.15 09:27:07 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll [2014.10.15 09:27:06 | 000,595,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll [2014.10.15 09:27:06 | 000,289,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll [2014.10.15 09:27:05 | 005,829,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll [2014.10.15 09:27:05 | 001,249,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll [2014.10.15 09:27:05 | 000,758,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll [2014.10.15 09:27:05 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe [2014.10.15 09:27:05 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll [2014.10.15 09:27:04 | 000,775,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll [2014.10.15 09:27:04 | 000,547,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll [2014.10.15 09:27:03 | 000,940,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe [2014.10.15 09:27:03 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll [2014.10.15 09:27:03 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll [2014.10.15 09:26:55 | 000,842,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\blackbox.dll [2014.10.15 09:26:55 | 000,744,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\blackbox.dll [2014.10.15 09:26:54 | 001,202,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drmv2clt.dll [2014.10.15 09:26:53 | 000,988,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drmv2clt.dll [2014.10.15 09:26:51 | 014,632,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmp.dll [2014.10.15 09:26:51 | 004,120,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mf.dll [2014.10.15 09:26:50 | 011,411,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll [2014.10.15 09:26:50 | 000,782,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmsdk.dll [2014.10.15 09:26:50 | 000,617,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmsdk.dll [2014.10.15 09:26:50 | 000,500,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AUDIOKSE.dll [2014.10.15 09:26:49 | 003,208,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mf.dll [2014.10.15 09:26:49 | 000,497,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drmmgrtn.dll [2014.10.15 09:26:48 | 001,574,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll [2014.10.15 09:26:48 | 000,693,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.efi [2014.10.15 09:26:48 | 000,616,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.efi [2014.10.15 09:26:48 | 000,457,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ci.dll [2014.10.15 09:26:48 | 000,442,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AUDIOKSE.dll [2014.10.15 09:26:48 | 000,440,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioEng.dll [2014.10.15 09:26:48 | 000,406,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drmmgrtn.dll [2014.10.15 09:26:47 | 005,551,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe [2014.10.15 09:26:47 | 000,619,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.exe [2014.10.15 09:26:47 | 000,532,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.exe [2014.10.15 09:26:47 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll [2014.10.15 09:26:46 | 003,970,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe [2014.10.15 09:26:46 | 003,914,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe [2014.10.15 09:26:46 | 001,480,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll [2014.10.15 09:26:46 | 001,069,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptui.dll [2014.10.15 09:26:46 | 000,631,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\evr.dll [2014.10.15 09:26:46 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioSes.dll [2014.10.15 09:26:46 | 000,284,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\EncDump.dll [2014.10.15 09:26:45 | 000,489,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\evr.dll [2014.10.15 09:26:45 | 000,432,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfplat.dll [2014.10.15 09:26:44 | 001,329,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll [2014.10.15 09:26:43 | 001,005,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cryptui.dll [2014.10.15 09:26:42 | 000,503,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll [2014.10.15 09:26:42 | 000,354,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfplat.dll [2014.10.15 09:26:40 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptsp.dll [2014.10.15 09:26:37 | 000,641,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msscp.dll [2014.10.15 09:26:35 | 000,325,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msnetobj.dll [2014.10.15 09:26:34 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rstrui.exe [2014.10.15 09:26:33 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msscp.dll [2014.10.15 09:26:33 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appidapi.dll [2014.10.15 09:26:32 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\audiodg.exe [2014.10.15 09:26:31 | 000,265,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msnetobj.dll [2014.10.15 09:26:31 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfps.dll [2014.10.15 09:26:31 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appidpolicyconverter.exe [2014.10.15 09:26:31 | 000,103,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfps.dll [2014.10.15 09:26:31 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rrinstaller.exe [2014.10.15 09:26:31 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\appidapi.dll [2014.10.15 09:26:31 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rrinstaller.exe [2014.10.15 09:26:31 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfpmp.exe [2014.10.15 09:26:30 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL [2014.10.15 09:26:30 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\setbcdlocale.dll [2014.10.15 09:26:30 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srclient.dll [2014.10.15 09:26:30 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfpmp.exe [2014.10.15 09:26:30 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appidcertstorecheck.exe [2014.10.15 09:26:30 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwmp.dll [2014.10.15 09:26:30 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwmp.dll [2014.10.15 09:26:30 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdxm.ocx [2014.10.15 09:26:30 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxmasf.dll [2014.10.15 09:26:30 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdxm.ocx [2014.10.15 09:26:30 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxmasf.dll [2014.10.15 09:26:30 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mferror.dll [2014.10.15 09:26:30 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mferror.dll [2014.10.15 09:26:29 | 012,625,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmploc.DLL [2014.10.15 09:26:06 | 003,241,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msi.dll [2014.10.15 09:25:57 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsta.dll [2014.10.15 09:25:57 | 000,150,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorekmts.dll [2014.10.15 09:25:56 | 000,455,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winlogon.exe [2014.10.15 09:25:47 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rastls.dll [2014.10.15 09:25:47 | 000,372,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastls.dll [2014.10.15 09:22:31 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\packager.dll [2014.10.15 09:22:31 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\packager.dll [2014.10.15 09:22:30 | 006,584,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll [2014.10.15 09:22:30 | 005,703,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll [2014.10.12 10:13:24 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software [2014.10.12 08:46:46 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM [2014.10.12 08:46:18 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek [2014.10.12 08:46:10 | 002,162,992 | ---- | C] (Yamaha Corporation) -- C:\Windows\SysNative\YamahaAE.dll [2014.10.12 08:46:08 | 002,101,848 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\WavesGUILib64.dll [2014.10.12 08:46:07 | 000,871,856 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tossaeapo64.dll [2014.10.12 08:46:07 | 000,162,224 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\toseaeapo64.dll [2014.10.12 08:46:06 | 001,361,336 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tosade.dll [2014.10.12 08:46:06 | 000,582,056 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tosasfapo64.dll [2014.10.12 08:46:05 | 000,856,992 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tadefxapo264.dll [2014.10.12 08:46:05 | 000,148,416 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tadefxapo.dll [2014.10.12 08:46:05 | 000,065,944 | ---- | C] (TOSHIBA CORPORATION.) -- C:\Windows\SysNative\tepeqapo64.dll [2014.10.12 08:46:04 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll [2014.10.12 08:46:03 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll [2014.10.12 08:46:03 | 000,211,184 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSH64.dll [2014.10.12 08:46:03 | 000,198,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSHP64.dll [2014.10.12 08:46:01 | 000,724,728 | ---- | C] (DTS, Inc.) -- C:\Windows\SysNative\sltech64.dll [2014.10.12 08:46:01 | 000,246,008 | ---- | C] (TODO: <Company name>) -- C:\Windows\SysNative\slprp64.dll [2014.10.12 08:45:58 | 001,048,824 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\slcnt64.dll [2014.10.12 08:45:57 | 000,947,760 | ---- | C] (Sony Corporation) -- C:\Windows\SysNative\SFSS_APO.dll [2014.10.12 08:45:57 | 000,889,592 | ---- | C] (DTS, Inc.) -- C:\Windows\SysNative\sl3apo64.dll [2014.10.12 08:45:56 | 000,221,024 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFNHK64.dll [2014.10.12 08:45:56 | 000,081,248 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFCOM64.dll [2014.10.12 08:45:56 | 000,074,064 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysWow64\SFCOM.dll [2014.10.12 08:45:55 | 000,078,688 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFAPO64.dll [2014.10.12 08:45:53 | 001,959,128 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTSnMg64.cpl [2014.10.12 08:45:51 | 002,860,760 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtPgEx64.dll [2014.10.12 08:45:50 | 000,331,880 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtlCPAPI64.dll [2014.10.12 08:45:44 | 000,149,608 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCfg64.dll [2014.10.12 08:45:44 | 000,014,952 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCoLDR64.dll [2014.10.12 08:45:43 | 001,024,728 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkApi64.dll [2014.10.12 08:45:42 | 000,375,128 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEP64A.dll [2014.10.12 08:45:42 | 000,204,120 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEED64A.dll [2014.10.12 08:45:42 | 000,101,208 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEL64A.dll [2014.10.12 08:45:42 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEG64A.dll [2014.10.12 08:45:41 | 000,628,952 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtDataProc64.dll [2014.10.12 08:45:36 | 001,286,872 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTCOM64.dll [2014.10.12 08:45:36 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll [2014.10.12 08:45:35 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll [2014.10.12 08:45:34 | 002,805,464 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RltkAPO64.dll [2014.10.12 08:45:30 | 067,255,296 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoRes64.dat [2014.10.12 08:45:30 | 000,949,976 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoInstII64.dll [2014.10.12 08:45:29 | 007,164,176 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEP64A.dll [2014.10.12 08:45:29 | 005,751,560 | ---- | C] (Nahimic Inc) -- C:\Windows\SysNative\NAHIMICAPOlfx.dll [2014.10.12 08:45:29 | 000,942,384 | ---- | C] (Nahimic Inc) -- C:\Windows\SysNative\NAHIMICAPOSettingsIPC.dll [2014.10.12 08:45:29 | 000,434,960 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EED64A.dll [2014.10.12 08:45:29 | 000,141,584 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEL64A.dll [2014.10.12 08:45:29 | 000,124,176 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEA64A.dll [2014.10.12 08:45:29 | 000,075,024 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEG64A.dll [2014.10.12 08:45:28 | 000,906,800 | ---- | C] (Sony Corporation) -- C:\Windows\SysNative\MISS_APO.dll [2014.10.12 08:45:26 | 012,894,808 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxVoiceAPO3064.dll [2014.10.12 08:45:26 | 000,956,504 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxVoiceAPO2064.dll [2014.10.12 08:45:26 | 000,662,784 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxVolumeSDAPO.dll [2014.10.12 08:45:25 | 003,959,384 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioVnN64.dll [2014.10.12 08:45:25 | 001,313,904 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxSpeechAPO64.dll [2014.10.12 08:45:24 | 028,343,384 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioVnA64.dll [2014.10.12 08:45:24 | 014,863,448 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioRealtek64.dll [2014.10.12 08:45:24 | 001,934,424 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioRealtek264.dll [2014.10.12 08:45:23 | 002,041,432 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioEQ64.dll [2014.10.12 08:45:23 | 001,317,976 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO6064.dll [2014.10.12 08:45:23 | 001,168,472 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO5064.dll [2014.10.12 08:45:23 | 001,063,512 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPOShell64.dll [2014.10.12 08:45:23 | 000,900,696 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysWow64\MaxxAudioAPOShell.dll [2014.10.12 08:45:22 | 001,136,728 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO4064.dll [2014.10.12 08:45:22 | 000,663,296 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO30.dll [2014.10.12 08:45:22 | 000,603,984 | ---- | C] (Knowles Acoustics ) -- C:\Windows\SysNative\KAAPORT64.dll [2014.10.12 08:45:22 | 000,318,808 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO20.dll [2014.10.12 08:45:22 | 000,298,144 | ---- | C] (ICEpower a/s) -- C:\Windows\SysNative\ICEsoundAPO64.dll [2014.10.12 08:45:16 | 002,770,976 | ---- | C] (Fortemedia Corporation) -- C:\Windows\SysNative\FMAPO64.dll [2014.10.12 08:45:16 | 000,693,352 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSVoiceClarityDLL64.dll [2014.10.12 08:45:15 | 001,756,264 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2SpeakerDLL64.dll [2014.10.12 08:45:15 | 001,568,360 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2HeadphoneDLL64.dll [2014.10.12 08:45:15 | 000,712,296 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSSymmetryDLL64.dll [2014.10.12 08:45:15 | 000,501,184 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PLFX64.dll [2014.10.12 08:45:15 | 000,487,360 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PGFX64.dll [2014.10.12 08:45:15 | 000,415,680 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PREC64.dll [2014.10.12 08:45:14 | 006,218,072 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPP64A.dll [2014.10.12 08:45:14 | 001,486,952 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBoostDLL64.dll [2014.10.12 08:45:14 | 000,728,680 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBassEnhancementDLL64.dll [2014.10.12 08:45:14 | 000,491,112 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSNeoPCDLL64.dll [2014.10.12 08:45:14 | 000,432,744 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLimiterDLL64.dll [2014.10.12 08:45:14 | 000,428,648 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGainCompensatorDLL64.dll [2014.10.12 08:45:14 | 000,315,736 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPO64A.dll [2014.10.12 08:45:14 | 000,242,792 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLFXAPO64.dll [2014.10.12 08:45:14 | 000,242,792 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPO64.dll [2014.10.12 08:45:14 | 000,241,768 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPONS64.dll [2014.10.12 08:45:13 | 001,939,800 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPD64A.dll [2014.10.12 08:45:13 | 001,530,560 | ---- | C] (Conexant Systems Inc.) -- C:\Windows\SysNative\CX64APO.dll [2014.10.12 08:45:13 | 000,261,464 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPA64.dll [2014.10.12 08:45:13 | 000,113,576 | ---- | C] (Real Sound Lab SIA) -- C:\Windows\SysNative\CONEQMSAPOGUILibrary.dll [2014.10.12 08:45:12 | 000,560,328 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAC64.dll [2014.10.12 08:45:12 | 000,108,640 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAR64.dll [2014.10.11 22:15:24 | 000,409,832 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsp.sys.1413098601 [2014.10.11 20:55:39 | 000,000,000 | -H-D | C] -- C:\Users\Jarppa\Documents\NeroVideo [2014.10.11 20:22:59 | 000,060,640 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\usbfilter.sys [2014.10.11 20:22:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center [2014.10.11 20:19:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD [2014.10.11 20:19:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD [2014.10.11 11:19:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller [2014.06.24 22:16:33 | 000,082,816 | ---- | C] (VSO Software) -- C:\Users\Jarppa\AppData\Roaming\pcouffin.sys [2009.10.12 13:24:23 | 000,036,136 | ---- | C] (Oberon Media) -- C:\ProgramData\FullRemove.exe [3 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ] [2 C:\Windows\SysNative\*.tmp files -> C:\Windows\SysNative\*.tmp -> ] ========== Files - Modified Within 30 Days ========== [2014.11.08 11:49:39 | 000,018,736 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2014.11.08 11:49:39 | 000,018,736 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2014.11.08 11:48:16 | 001,353,774 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2014.11.08 11:48:16 | 000,653,928 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2014.11.08 11:48:16 | 000,481,234 | ---- | M] () -- C:\Windows\SysNative\perfh00B.dat [2014.11.08 11:48:16 | 000,121,800 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2014.11.08 11:48:16 | 000,101,326 | ---- | M] () -- C:\Windows\SysNative\perfc00B.dat [2014.11.08 11:45:29 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Jarppa\Desktop\OTL.exe [2014.11.08 11:45:00 | 000,001,008 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2014.11.08 11:43:35 | 000,001,004 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2014.11.08 11:41:16 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2014.11.08 11:41:03 | 3208,544,256 | -HS- | M] () -- C:\hiberfil.sys [2014.11.08 11:39:34 | 000,001,170 | ---- | M] () -- C:\Users\Jarppa\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk [2014.11.08 11:11:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2014.11.08 09:03:51 | 001,375,089 | ---- | M] () -- C:\Users\Jarppa\Desktop\AdwCleaner.exe [2014.11.07 19:11:29 | 000,701,104 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe [2014.11.07 19:11:29 | 000,071,344 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl [2014.11.07 17:34:31 | 000,000,000 | ---- | M] () -- C:\asc_rdflag [2014.11.05 23:27:07 | 000,000,020 | ---- | M] () -- C:\Windows\Xù¼ [2014.11.05 22:28:59 | 000,000,020 | ---- | M] () -- C:\Windows\ óŸ [2014.11.05 22:16:07 | 018,327,556 | ---- | M] () -- C:\Users\Jarppa\Desktop\11-05_22-15-05_MTV3 (fin)_Kymmenen Uutiset.ts [2014.11.05 21:45:03 | 000,015,008 | ---- | M] (Highresolution Enterprises [www.highrez.co.uk]) -- C:\Windows\SysNative\drivers\inpoutx64.sys [2014.11.05 18:39:49 | 000,073,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\xuninst.exe [2014.10.26 10:21:52 | 000,000,146 | ---- | M] () -- C:\Users\Jarppa\Desktop\Ääni – Pikakuvake.lnk [2014.10.25 09:03:11 | 000,002,008 | ---- | M] () -- C:\Windows\epplauncher.mif [2014.10.24 21:35:34 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_WinUsb_01009.Wdf [2014.10.22 19:56:16 | 000,000,131 | ---- | M] () -- C:\Windows\SysWow64\test.aok [2014.10.18 12:12:01 | 000,018,960 | ---- | M] (Logitech, Inc.) -- C:\Windows\SysNative\drivers\LNonPnP.sys [2014.10.15 09:47:12 | 000,343,608 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT [2014.10.12 09:37:02 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\config.nt [2014.10.11 22:15:37 | 000,409,832 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsp.sys.1413098601 [2014.10.10 04:05:59 | 000,276,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\generaltel.dll [2014.10.10 04:05:42 | 000,507,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll [2014.10.10 04:00:38 | 000,424,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll [3 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ] [2 C:\Windows\SysNative\*.tmp files -> C:\Windows\SysNative\*.tmp -> ] ========== Files Created - No Company Name ========== [2014.11.08 09:03:46 | 001,375,089 | ---- | C] () -- C:\Users\Jarppa\Desktop\AdwCleaner.exe [2014.11.07 17:34:31 | 000,000,000 | ---- | C] () -- C:\asc_rdflag [2014.11.05 23:27:05 | 000,000,020 | ---- | C] () -- C:\Windows\Xù¼ [2014.11.05 23:25:30 | 000,001,069 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk [2014.11.05 22:28:59 | 000,000,020 | ---- | C] () -- C:\Windows\ óŸ [2014.11.05 22:19:03 | 000,000,971 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk [2014.11.05 22:15:05 | 018,327,556 | ---- | C] () -- C:\Users\Jarppa\Desktop\11-05_22-15-05_MTV3 (fin)_Kymmenen Uutiset.ts [2014.10.26 10:21:51 | 000,000,146 | ---- | C] () -- C:\Users\Jarppa\Desktop\Ääni – Pikakuvake.lnk [2014.10.24 21:35:34 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_WinUsb_01009.Wdf [2014.10.24 21:34:56 | 000,584,584 | ---- | C] () -- C:\Windows\adb.exe [2014.10.22 10:52:05 | 000,002,121 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk [2014.10.17 09:07:05 | 000,002,056 | ---- | C] () -- C:\Users\Jarppa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileHippo App Manager.lnk [2014.10.12 09:37:02 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\config.nt [2014.10.12 08:46:04 | 002,121,008 | ---- | C] () -- C:\Windows\SysNative\SStudio.dll [2014.10.12 08:45:53 | 005,804,772 | ---- | C] () -- C:\Windows\SysNative\drivers\rtvienna.dat [2014.10.12 08:45:36 | 001,262,807 | ---- | C] () -- C:\Windows\SysNative\drivers\RTAIODAT.DAT [2014.10.12 08:45:12 | 000,109,848 | ---- | C] () -- C:\Windows\SysNative\AcpiServiceVnA64.dll [2014.10.12 08:45:12 | 000,096,568 | ---- | C] () -- C:\Windows\SysNative\audioLibVc.dll [2014.10.11 20:19:55 | 000,023,040 | ---- | C] () -- C:\Windows\SysWow64\BeepApp.exe [2014.10.11 20:19:55 | 000,014,416 | R--- | C] () -- C:\Windows\SysNative\WinIo64.sys [2014.08.08 18:38:57 | 000,000,017 | ---- | C] () -- C:\Users\Jarppa\AppData\Local\resmon.resmoncfg [2014.08.01 22:51:52 | 000,000,286 | RHS- | C] () -- C:\ProgramData\ntuser.pol [2014.06.24 22:16:33 | 000,099,384 | ---- | C] () -- C:\Users\Jarppa\AppData\Roaming\inst.exe [2014.06.24 22:16:33 | 000,007,859 | ---- | C] () -- C:\Users\Jarppa\AppData\Roaming\pcouffin.cat [2014.06.24 22:16:33 | 000,001,167 | ---- | C] () -- C:\Users\Jarppa\AppData\Roaming\pcouffin.inf [2014.06.19 07:43:09 | 000,000,024 | ---- | C] () -- C:\Users\Jarppa\AppData\Roaming\temp.ini [2014.06.12 19:22:58 | 000,006,144 | ---- | C] () -- C:\Users\Jarppa\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2014.05.30 14:12:32 | 000,000,198 | ---- | C] () -- C:\Users\Jarppa\AppData\Roaming\die.bat [2014.05.29 13:20:05 | 000,000,000 | -H-- | C] () -- C:\ProgramData\DP45977C.lfl [2014.05.29 12:30:40 | 000,000,057 | ---- | C] () -- C:\ProgramData\Ament.ini [2014.05.29 12:01:26 | 000,451,072 | ---- | C] () -- C:\Windows\emunist.exe [2014.05.29 12:01:25 | 000,001,409 | ---- | C] () -- C:\Windows\TVEpaDrv.ini [2014.05.28 20:59:44 | 001,326,606 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI ========== ZeroAccess Check ========== [2009.07.14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 "" = C:\Windows\SysNative\shell32.dll -- [2014.06.25 04:05:42 | 014,175,744 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shell32.dll -- [2014.06.25 03:41:30 | 012,874,240 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.20 14:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] ========== Alternate Data Streams ========== @Alternate Data Stream - 724 bytes -> C:\Users\Jarppa\Desktop\11-05_22-15-05_MTV3 (fin)_Kymmenen Uutiset.tsocumentSummaryInformation @Alternate Data Stream - 360 bytes -> C:\Users\Jarppa\Desktop\11-05_22-15-05_MTV3 (fin)_Kymmenen Uutiset.ts:SummaryInformation @Alternate Data Stream - 156 bytes -> C:\Users\Jarppa\Desktop\11-05_22-15-05_MTV3 (fin)_Kymmenen Uutiset.ts:OzngklrtOwudrp0bAayojd1qWh @Alternate Data Stream - 136 bytes -> C:\Users\Jarppa\Desktop\11-05_22-15-05_MTV3 (fin)_Kymmenen Uutiset.ts:SebiesnrMkudrfcoIaamtykdDa < End of report >
Tässä yksivaihtoehto poistamiseen: http://www.uninstallvirus.com/download/ Jos rekisterin muokkaaminen on tuttua niin voit myöskin etsiä tuolla haitakkeen nimellä sieltä jos löytyy merkintöjä rekisteristä. Ccleaneria myöskin poistojen jälkeen kehiin. Jos ei auta niin kerro lisää tarvittaessa.
Minä en tuota uskaltaisi käyttää, koska WOT antaa ko. sivusta punaisen hälytyksen, liittyen haittaohjelmiin ja viruksiin.
Käynnistä uudelleen OTL.exe Kopioi ja Liitä alla oleva teksti, " Custom Scans/ Fixes tekstilaatikkoon ". Spoiler: OTL - Kopioi Code: :otl :processes killallprocesses PRC - [2013.12.18 16:55:24 | 002,285,344 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe PRC - [2013.12.09 14:01:58 | 000,881,440 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare7\ASCService.exe MOD - [2013.01.15 17:47:56 | 000,893,248 | ---- | M] () -- C:\Program Files (x86)\IObit\Advanced SystemCare 7\webres.dll SRV - [2014.05.04 15:37:30 | 002,152,736 | ---- | M] (IObit) [Auto | Stopped] -- C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe -- (LiveUpdateSvc) SRV - [2013.12.09 14:01:58 | 000,881,440 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe -- (AdvancedSystemCareService7) FF - user.js - File not found FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_222.dll File not found FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found O2:64bit: - BHO: (ExplorerWnd Helper) - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit) O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found. O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found. O4 - HKCU..\Run: [Advanced SystemCare 7] C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe (IObit) O1364bit: - gopher Prefix: missing O13 - gopher Prefix: missing O18:64bit: - Protocol\Handler\ms-help - No CLSID value found O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found O18:64bit: - Protocol\Handler\wlpg - No CLSID value found O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O27:64bit: - HKLM IFEO\GREG.exe: Debugger - C:\Program Files (x86)\IObit\Advanced SystemCare7\AutoReactivator.exe (IObit) O27:64bit: - HKLM IFEO\GregHSRW.exe: Debugger - C:\Program Files (x86)\IObit\Advanced SystemCare 7\AutoReactivator.exe (IObit) O27 - HKLM IFEO\GREG.exe: Debugger - C:\Program Files (x86)\IObit\Advanced SystemCare 7\AutoReactivator.exe (IObit) O27 - HKLM IFEO\GregHSRW.exe: Debugger - C:\Program Files (x86)\IObit\Advanced SystemCare 7\AutoReactivator.exe (IObit) [2014.10.11 11:19:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller [2009.10.12 13:24:23 | 000,036,136 | ---- | C] (Oberon Media) -- C:\ProgramData\FullRemove.exe [2014.11.08 11:49:39 | 000,018,736 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2014.11.08 11:49:39 | 000,018,736 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2014.05.30 14:12:32 | 000,000,198 | ---- | C] () -- C:\Users\Jarppa\AppData\Roaming\die.bat [2014.05.29 13:20:05 | 000,000,000 | -H-- | C] () -- C:\ProgramData\DP45977C.lfl :Files ipconfig /flushdns /c :Commands [PURITY] [EMPTYTEMP] [EMPTYFLASH] [RESETHOSTS] Paina " Run Fix " . Ja lähetä tulokset seuraavassa postissasi. Jos OTL haluaa käynnistää tietokoneen uudelleen, anna sen tehdä niin. ----------- Ja lisäksi, Jos et ole vielä ajanut AdwCleaneriä , niin tee se. Lokitiedosto löytyy myös polusta: C:\AdwCleaner\
Tuo sivu ja noissa olevat linkit niin Malwarebytes Anti-Malware (Premium) ei ainakaan herjaa noista. Tuo ohj. herjaa helposti jos erehdyt "väärään" paikkaan. Haitallisten verkkosivujen esto on päällä ohjelmasta. Eikä myöskään Avast valita sivustosta.
nyt sain sen virheen pois,mutta mikä ihme tuossa windows updatessa oikeen on vikana,kun siitä poistuu itsestään automaattiset päivitykset käytöstä,aina sillon kun koneen käynnistää uudestaan,laitan kohtaan asenna päivitykset automaattisesti,ja sitten lopuksi käytä,mutta se ei pysy siinä ja sitten vielä tuohon kun noita haittaohjelma tarkistuksia tein,ja sain yhden lokitiedoston,en muista mistä se tuli, mutta en muistanut laittaa sitä tänne,niin sielä luki jotain c:/user/vieras,jotain tollasta,en muista tarkkaan,mutta vaikuttaa ouodolta itselle tuli heti mieleen että joku ulkopuolinen päässy tunkeutumaan koneelleni jotenkin
Vastaavia ongelmia Windows päivityksiin liittyen on täällä jossain. Yritän kaivaa ohjeet jostain esiin. Mene: Käynnistä > Apuohjelmat > Komentokehote Kopioi ja liitä alla oleva teksti: Tässä muutama eri komento. Windows Update asetukset: Ota käyttöön automaattiset Windows-päivitykset Code: reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update" /v AUOptions /t REG_DWORD /d 0 /f Lataa päivitykset, mutta anna minun valita, asennetaanko ne Code: reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update" /v AUOptions /t REG_DWORD /d 3 /f Ota automaattiset päivitykset pois käytöstä Code: reg add "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update" /v AUOptions /t REG_DWORD /d 1 /f Windows update palvelut: Automaattiset päivitykset -palvelu [ päälle ] Code: sc config wuauserv start= auto Automaattiset päivitykset -palvelu [ pois päältä ] Code: sc config wuauserv start= disabled Automaattiset päivitykset -palvelu [ käynnistä ] Code: net start wuauserv Automaattiset päivitykset -palvelu [ pysäytys ] Code: net stop wuauserv